Hacker News new | past | comments | ask | show | jobs | submit login

> all others (RSA, DSA, ECDSA, Ed25519, etc.)

This table is incorrect. Ed25519 was explicitly designed with the intention of only needing preimage resistance, not collision resistance.




The table is correct. First because design intent is irrelevant. Second because the author clearly states that the focus of his comparative study is on *-preimage resistance vs collision. There is more to the article than the table :)


I really do not understand what you are trying to say. Just like SPHINCS, Ed25519 only cares that the hash function used with it has *-preimage resistance and it would not be broken if a collision was found in it. See https://ed25519.cr.yp.to/ed25519-20110926.pdf

> There is more to the article than the table :)

I am aware but my issue was with the table...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: