> 
> * Schnorr identification requires that the prover implement both
> arithmetic routines modulo the group order 

The GPS scheme (which is a simple Schnorr variant) avoids this but you need to 
choose a larger challenge.
-- 
Johannes
_______________________________________________
Curves mailing list
[email protected]
https://moderncrypto.org/mailman/listinfo/curves

Reply via email to