[curves] Second day NIST workshop notes

Ron Garret ron at flownet.com
Fri Jun 12 12:17:45 PDT 2015


On Jun 12, 2015, at 12:08 PM, Michael Hamburg <mike at shiftleft.org> wrote:

> Would be nice if new curves support a=-3.  Would be even nicer if prime order.  Would be nice if sqrt(b) doesn’t exist.  Unfortunately with curve25519, sqrt(b) does exist in short Weierstrass form and a=-3 not possible.

Can you please elaborate on this a bit?  Why is it desirable if sqrt(b) doesn’t exist, and to set a=-3?

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 455 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://moderncrypto.org/mail-archive/curves/attachments/20150612/3267a095/attachment.sig>


More information about the Curves mailing list