> > * Schnorr identification requires that the prover implement both > arithmetic routines modulo the group order
The GPS scheme (which is a simple Schnorr variant) avoids this but you need to choose a larger challenge. -- Johannes _______________________________________________ Curves mailing list [email protected] https://moderncrypto.org/mailman/listinfo/curves
