[curves] How to find another generator on decaf_448?

Fan Jiang fan.torchz at gmail.com
Fri Jan 20 13:01:56 PST 2017

I'm currently working on a CramerShoup implementation using decaf_448,
Whereas decaf is to eliminate the cofactor by compression,
Should I still use the equation "orderQ*cofactor*P == identity" to check
the candidate generator P?
Or, What should be a "valid" generator mean in this use case?

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/curves/attachments/20170120/43487df8/attachment.html>

More information about the Curves mailing list