Hi Wei,

> http://groups.google.com/group/sci.crypt/browse_frm/thread/351ede73af57d6bb/91124598f8a181bd?&hl=en#91124598f8a181bd.
Impressive... In a post regarding bounding of Goppa codes, you have
uncovered an unknown attack that the authors of the McEliece-based
short signature requested to be made party.

All in a day's work for you!

Jeff


On 5/26/07, Wei Dai <[EMAIL PROTECTED]> wrote:
> NR with recovery is not in Crypto++. It's patented and I think a better
> alternative would be a pairing-based short signature scheme. But I'm still
> waiting for something even better to be invented. One candidate was a coding
> based scheme, but it turned out to be broken. See
> http://groups.google.com/group/sci.crypt/browse_frm/thread/351ede73af57d6bb/91124598f8a181bd?&hl=en#91124598f8a181bd.
>
> Rabin-Williams with recovery is available as RWSS<PSSR, SHA512>.
>
> ----- Original Message -----
> From: "Jeffrey Walton" <[EMAIL PROTECTED]>
> To: "Crypto++" <[EMAIL PROTECTED]>
> Sent: Saturday, May 26, 2007 9:28 AM
> Subject: Signature Schemes (with Recovery)
>
>
> >
> > Hi Wei,
> >
> > I want to verify that I have not missed something in the Library. I
> > desire to develop metrics using RSA, Rabin, and Nyberg-Rueppel
> > Signature Schemes with Recovery. Crtypo++ has RSA. But it appears
> > Rabin and Nyberg-Rueppel are not part of the Library. Is this correct?
> >
> > Jeff
> >
> > > >
>
>
>

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the "Crypto++ Users" 
Google Group.
To unsubscribe, send an email to [EMAIL PROTECTED]
More information about Crypto++ and this group is available at 
http://www.cryptopp.com.
-~----------~----~----~----~------~----~------~--~---

Reply via email to