EdDSA for more curves

D.J. Bernstein, S. Josefsson, T. Lange, P. Schwabe, B.Y. Yang

Research output: Book/ReportReportAcademic

243 Downloads (Pure)


The original specification of EdDSA was suitable only for finite fields Fq with q mod 4 = 1. The main purpose of this document is to extend EdDSA to allow finite fields Fq with any odd q. This document also extends EdDSA to support prehashing, i.e., signing the hash of a message. Keywords: Signatures, elliptic curves, Edwards curves, Ed25519, Curve41417, Ed448-Goldilocks, Ed521
Original languageEnglish
Number of pages5
Publication statusPublished - 2015

Publication series

NameCryptology ePrint Archive


Dive into the research topics of 'EdDSA for more curves'. Together they form a unique fingerprint.

Cite this