[Cryptography] RSA equivalent key length/strength

James A. Donald jamesd at echeque.com
Mon Sep 30 20:00:40 EDT 2013


On 2013-10-01 08:24, John Kelsey wrote:
> Maybe you should check your code first?  A couple nist people verified that the curves were generated by the described process when the questions about the curves first came out.

And a non NIST person verified that the curves were /not/ generated by 
the described process after the scandal broke.

The process that actually generates the curves looks like the end result 
of trying a trillion curves, until you hit one that has desirable 
properties, which desirable properties you are disinclined to tell 
anyone else.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20131001/67b046f1/attachment.html>


More information about the cryptography mailing list