[Cryptography] RSA equivalent key length/strength

John Kelsey crypto.jmk at gmail.com
Mon Sep 30 18:24:12 EDT 2013

Maybe you should check your code first?  A couple nist people verified that the curves were generated by the described process when the questions about the curves first came out.  Don't trust us, obviously--that's the whole point of the procedure.  But check your code, because the process worked right when we checked it.


