[curves] Finalizing XEdDSA

Brian Smith brian at briansmith.org
Wed Nov 2 16:55:01 PDT 2016


Brian Smith <brian at briansmith.org> wrote:

> xed25519_sign((A, a, prefix), M, Z):
>     pad = ""
>     randomized_prefix = prefix || Z || pad
>     return ed25519_sign((A, a, prefix), M)
>

I meant:

xed25519_sign((A, a, prefix), M, Z):
    pad = ""
    randomized_prefix = prefix || Z || pad
    return ed25519_sign((A, a, randomized_prefix), M)

Cheers,
Brian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/curves/attachments/20161102/b634a49c/attachment.html>


More information about the Curves mailing list