I'm not sure the analysis of Weil descent is quite right. Diem only shows there is no curve to pullback with of a certain form. But uglier possibilies abound!
-
-
-
Please feel free to study and expand on that subject. What is in the article is the limit of my knowledge with regards to Weil descent.
- Još 2 druga odgovora
Novi razgovor -
-
-
How simple is generating good keypairs? Is this easily implementable without branching/accessing memory based on secret information? (I haven't figured out the code yet. I'm rather garbage at understanding crypto math and impls.)
-
Key pair generation is included in the code. All the code is fully constant-time, even more so than usually done on microcontrollers (see section 5.1).
Kraj razgovora
Novi razgovor -
-
-
Nice!
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
This is cool
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
This is super neat! Things in the DH I was surprised not to see: Q, Q' aren't part of the pre-master secret, and there's no explicit channel ID.
-
Wow I'm now reading section A and this is great. Now I wish I'd included an appendix like that in the Adiantum paper, just talking a bit more informally about what led to the choices we made. I should write a blog post or something.
Kraj razgovora
Novi razgovor -
-
-
Very nice
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
Should I stop using Curve25519?
-
No? This curve was built by an expert but it's still brand-new. Give it some time (on the order of years, generally) to be studied, etc. before you switch.
Kraj razgovora
Novi razgovor -
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.