why did Ed25519 used Edward25519 instead of Curve25519 directly?
-
-
Replying to @cryptodavidw
The question should rather be why use Curve25519 instead of Edwards25519 for DH? And that’s mainly because X25519 predates Edwards curves.
2 replies 0 retweets 3 likes -
Replying to @jedisct1 @cryptodavidw
Scalar multiplication with an arbitrary point by Montgomery ladder on Curve25519 is still faster than on Ed25519, isn't it?
2 replies 0 retweets 1 like
Replying to @XorNinja @cryptodavidw
David asked why Edwards25519 had been chosen for EdDSA. We are digressing a bit.
9:07 AM - 5 Aug 2019
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.