On Thu, Apr 24, 2014 at 11:39 AM, Colin Percival <cperc...@tarsnap.com> wrote: > Replying here rather than directly, for the benefit of the list... > Right. 256 bits of blinding is enough to obscure the entire exponent. > >> Ah, of course that blinding method doesn't help in this case! So if >> you're the only one using this method, what do other programs that do >> Diffie-Hellman do for exponent blinding (if anything)? > > Nothing, as far as I know.
Thanks! That clears things up for me. -- Fred