@bascule @matthew_d_green @JacksDismay Not so. That curve is birationally equivalent to Curve25519. It's the same curve in disguise.
-
-
Replying to @pbarreto
@pbarreto@matthew_d_green@JacksDismay you could reimplement Curve25519 in terms of Ed25519 to get the perf benefits but why bother?2 replies 0 retweets 0 likes -
Replying to @bascule
@bascule@pbarreto@matthew_d_green@JacksDismay DH wants Montgomery repres, sign wants Edwards; fixed basepoint scalar mult. best w Edwards1 reply 0 retweets 0 likes -
Replying to @hyperelliptic
@hyperelliptic so, in your opinion, no reason to use Curve25519 over Ed25519 for a DSA? /cc@pbarreto@matthew_d_green@JacksDismay1 reply 0 retweets 0 likes -
Replying to @bascule
@bascule@pbarreto@matthew_d_green@JacksDismay it's the same curve, it's one math object. Use Ed representation for signatures as in EdDSA2 replies 1 retweet 0 likes -
Replying to @hyperelliptic
@hyperelliptic@tqbf@bascule@matthew_d_green@JacksDismay I had pointed this out already, but outdated tweets get RT time and again.3 replies 0 retweets 0 likes
@pbarreto @hyperelliptic @tqbf @matthew_d_green @JacksDismay here, have a look at some of my Ed25519 work:https://gist.github.com/tarcieri/4760215 …
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.