[PATCH] Truncate hash values for ECDSA signature scheme

Dmitry Eremin-Solenikov dbaryshkov at gmail.com
Mon Dec 16 20:57:00 CET 2013


On Mon, Dec 16, 2013 at 11:23 PM, Werner Koch <wk at gnupg.org> wrote:
> On Mon, 16 Dec 2013 19:05, dbaryshkov at gmail.com said:
>
>> Note: we are truncating hash, so there should be no difference in truncating
>> LSB or MSB. Both should be equally distributed.
>
> But that would we incompatible.  I have not checked but it might be that
> we do the truncation in GnuPG.  Needs to be further researched.
>
> Would you mind to open a ticket for this?

https://bugs.g10code.com/gnupg/issue1583


-- 
With best wishes
Dmitry



More information about the Gcrypt-devel mailing list