ietf-openpgp
[Top] [All Lists]

Re: [openpgp] Curve3617 in OpenPGP? Beyond rfc6637.

2013-10-18 03:42:16
On Fri, Oct 18, 2013 at 1:29 AM, Werner Koch <wk(_at_)gnupg(_dot_)org> wrote:
and actually it is faster to use because there is no need for
uncompressing.

Not so at least for ECDH, e.g. the implementation in curve25519 uses a
multiplier that really does work on the X coordinate alone. For other
curves (which are not twist secure), generally time spent
uncompressing is not to much slower than the sqrt needed to check that
the point is on the curve.
_______________________________________________
openpgp mailing list
openpgp(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/openpgp