On 20/05/11 23:14, Zooko O'Whielacronx wrote:
How about the "Compact Representation", section 4.2, of RFC 6090:

http://www.rfc-editor.org/rfc/rfc6090.txt

Is that the same "point compression" that you were looking for?

Sadly not; this is the "discard y, transmit only x" scheme described in the original CRYPTO 85 paper introducing elliptic curve cryptography. This works for ECDH, but for protocols such as ECDSA it's harder to see how to make do with only one of the coordinates. Thanks for the reference though!
--
  __
\/ o\ Paul Crowley, [email protected]
/\__/ http://www.ciphergoth.org/
_______________________________________________
cryptography mailing list
[email protected]
http://lists.randombit.net/mailman/listinfo/cryptography

Reply via email to