@pbarreto @matthew_d_green @JacksDismay you could reimplement Curve25519 in terms of Ed25519 to get the perf benefits but why bother?
-
-
Replying to @bascule
@bascule@pbarreto@matthew_d_green@JacksDismay DH wants Montgomery repres, sign wants Edwards; fixed basepoint scalar mult. best w Edwards1 reply 0 retweets 0 likes -
Replying to @hyperelliptic
@hyperelliptic so, in your opinion, no reason to use Curve25519 over Ed25519 for a DSA? /cc@pbarreto@matthew_d_green@JacksDismay1 reply 0 retweets 0 likes -
Replying to @bascule
@bascule@pbarreto@matthew_d_green@JacksDismay it's the same curve, it's one math object. Use Ed representation for signatures as in EdDSA2 replies 1 retweet 0 likes -
Replying to @hyperelliptic
@hyperelliptic@tqbf@bascule@matthew_d_green@JacksDismay I had pointed this out already, but outdated tweets get RT time and again.3 replies 0 retweets 0 likes -
Replying to @pbarreto
@pbarreto@hyperelliptic@bascule@matthew_d_green@JacksDismay A weird and somewhat frustrating little thread.1 reply 0 retweets 0 likes -
Replying to @tqbf
@tqbf@pbarreto@hyperelliptic@matthew_d_green@JacksDismay frustrating for us all, indeed1 reply 0 retweets 0 likes -
Replying to @bascule
@bascule "obsoletes Curve25519" but Montg doesn't work for sign, thus need to fix terminology@tqbf@pbarreto@matthew_d_green@JacksDismay1 reply 0 retweets 0 likes -
Replying to @hyperelliptic
@hyperelliptic@tqbf@pbarreto@matthew_d_green@JacksDismay the Montgomery form loses 1-bit of info and doesn't support addition right?1 reply 0 retweets 0 likes -
Replying to @bascule
@bascule@hyperelliptic@tqbf@pbarreto@matthew_d_green@JacksDismay x-only coordinates do; Montgomery curves themselves don't.3 replies 0 retweets 0 likes
@sevenps @hyperelliptic @tqbf @pbarreto @matthew_d_green @JacksDismay also, Twitter is a terrible venue for this kind of conversation
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.