[noise] Noise HFS Kyber question

Rhys Weatherley rhys.weatherley at gmail.com
Sat Feb 2 23:58:39 PST 2019


On Sun, Feb 3, 2019 at 3:16 PM dawuud <dawuud at riseup.net> wrote:

>
> duh i just read a section from
> https://pq-crystals.org/kyber/data/kyber-specification.pdf
> (at the top of page 17)
> and now Kyber1024 seems like the obvious choice for Katzenpost.
> I wonder, Why does Rhys's Noise HFS Kyber spec extension to Noise uses
> Kyber768?
>

It's been a long time since I looked at the Kyber specification, but there
may have only been a single parameter set at the time or I didn't read the
specification clearly enough.  Obviously it should be replaced with
whatever Peter considers the "recommended for wide use" bit size now and/or
we should define alternative names like "Kyber768" and "Kyber1024" instead
of using just "Kyber".

Cheers,

Rhys.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/noise/attachments/20190203/47225de1/attachment.html>


More information about the Noise mailing list