[noise] Noise HFS Kyber question

Rhys Weatherley rhys.weatherley at gmail.com
Sat Feb 2 23:58:39 PST 2019

On Sun, Feb 3, 2019 at 3:16 PM dawuud <dawuud at riseup.net> wrote:

> duh i just read a section from
> https://pq-crystals.org/kyber/data/kyber-specification.pdf
> (at the top of page 17)
> and now Kyber1024 seems like the obvious choice for Katzenpost.
> I wonder, Why does Rhys's Noise HFS Kyber spec extension to Noise uses
> Kyber768?

It's been a long time since I looked at the Kyber specification, but there
may have only been a single parameter set at the time or I didn't read the
specification clearly enough.  Obviously it should be replaced with
whatever Peter considers the "recommended for wide use" bit size now and/or
we should define alternative names like "Kyber768" and "Kyber1024" instead
of using just "Kyber".


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://moderncrypto.org/mail-archive/noise/attachments/20190203/47225de1/attachment.html>

More information about the Noise mailing list