[Cryptography] Triple Diffie-Hellman keys

Pierre Abbat phma at bezitopo.org
Mon Jan 26 14:21:05 EST 2026


Let's say that there's a big prime p, where p-1 has a big prime factor q, and 
g generates a subgroup of size q. In triple Diffie-Hellman, Alice and Bob choose 
numbers in [1,q-1] each time they start a session, but they also have long-
term keypairs. When they generate their keypairs, they don't want to choose 
small exponents, because Eve could recognize the public key as being the 
seventh (or whatever) power of the generator. What range should they choose 
the exponents for keypairs from?

Pierre
-- 
.i toljundi do .ibabo mi'afra tu'a do
.ibabo damba do .ibabo do jinga
.icu'u la ma'atman.





More information about the cryptography mailing list