Beyond Curve25519

lists-gnupgdev at lists-gnupgdev at
Thu Jan 15 23:01:10 CET 2015

Am Thu, 15 Jan 2015 21:53:33 +0100
schrieb Hanno Böck <hanno at>:

> On Thu, 15 Jan 2015 12:54:58 +0100
> Milan Kral <milan.kral at> wrote:
> > the security of Curve25519 is about 2^125. Are there plans to
> > implement stronger ECC in GnuPG? Good candidate would be E-521, it's
> > one of the recommended curves on
> I find the search for "better than curve25119 curves" quite
> questionable.

I wish we had Curve 25519 and EdDSA with Ed25519 in OpenPGP, then we
can go on with other safe curves. Why are the RFCs  all so NIST


