EdDSA for more curves

D.J. Bernstein, S. Josefsson, T. Lange, P. Schwabe, B.Y. Yang

Research output: Book/ReportReportAcademic

162 Downloads (Pure)


The original specification of EdDSA was suitable only for finite fields Fq with q mod 4 = 1. The main purpose of this document is to extend EdDSA to allow finite fields Fq with any odd q. This document also extends EdDSA to support prehashing, i.e., signing the hash of a message. Keywords: Signatures, elliptic curves, Edwards curves, Ed25519, Curve41417, Ed448-Goldilocks, Ed521
Original languageEnglish
Number of pages5
Publication statusPublished - 2015

Publication series

NameCryptology ePrint Archive

Fingerprint Dive into the research topics of 'EdDSA for more curves'. Together they form a unique fingerprint.

  • Cite this

    Bernstein, D. J., Josefsson, S., Lange, T., Schwabe, P., & Yang, B. Y. (2015). EdDSA for more curves. (Cryptology ePrint Archive; Vol. 2015/677). IACR.