Paper 2015/677

EdDSA for more curves

Daniel J. Bernstein, Simon Josefsson, Tanja Lange, Peter Schwabe, and Bo-Yin Yang

Abstract

The original specification of EdDSA was suitable only for finite fields Fq with q mod 4 = 1. The main purpose of this document is to extend EdDSA to allow finite fields Fq with any odd q. This document also extends EdDSA to support prehashing, i.e., signing the hash of a message.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint. Minor revision.
Keywords
Signatureselliptic curvesEdwards curvesEd25519Curve41417Ed448-GoldilocksEd521
Contact author(s)
tanja @ hyperelliptic org
History
2015-07-05: received
Short URL
https://ia.cr/2015/677
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2015/677,
      author = {Daniel J.  Bernstein and Simon Josefsson and Tanja Lange and Peter Schwabe and Bo-Yin Yang},
      title = {EdDSA for more curves},
      howpublished = {Cryptology ePrint Archive, Paper 2015/677},
      year = {2015},
      note = {\url{https://eprint.iacr.org/2015/677}},
      url = {https://eprint.iacr.org/2015/677}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.