rfc9380v3.txt   rfc9380.txt 
skipping to change at line 2861 skipping to change at line 2861
de Valence, H., Grigg, J., Hamburg, M., Lovecruft, I., de Valence, H., Grigg, J., Hamburg, M., Lovecruft, I.,
Tankersley, G., and F. Valsorda, "The ristretto255 and Tankersley, G., and F. Valsorda, "The ristretto255 and
decaf448 Groups", Work in Progress, Internet-Draft, draft- decaf448 Groups", Work in Progress, Internet-Draft, draft-
irtf-cfrg-ristretto255-decaf448-07, 3 April 2023, irtf-cfrg-ristretto255-decaf448-07, 3 April 2023,
<https://datatracker.ietf.org/doc/html/draft-irtf-cfrg- <https://datatracker.ietf.org/doc/html/draft-irtf-cfrg-
ristretto255-decaf448-07>. ristretto255-decaf448-07>.
[RSS11] Ristenpart, T., Shacham, H., and T. Shrimpton, "Careful [RSS11] Ristenpart, T., Shacham, H., and T. Shrimpton, "Careful
with Composition: Limitations of the Indifferentiability with Composition: Limitations of the Indifferentiability
Framework", In Advances in Cryptology - EUROCRYPT 2011, Framework", In Advances in Cryptology - EUROCRYPT 2011,
pages 487506, DOI 10.1007/978-3-642-20465-4_27, May 2011, pages 487-506, DOI 10.1007/978-3-642-20465-4_27, May 2011,
<https://doi.org/10.1007/978-3-642-20465-4_27>. <https://doi.org/10.1007/978-3-642-20465-4_27>.
[S05] Skałba, M., "Points on elliptic curves over finite [S05] Skałba, M., "Points on elliptic curves over finite
fields", In Acta Arithmetica, vol 117 no 3, pages 293-301, fields", In Acta Arithmetica, vol 117 no 3, pages 293-301,
DOI 10.4064/aa117-3-7, 2005, DOI 10.4064/aa117-3-7, 2005,
<https://doi.org/10.4064/aa117-3-7>. <https://doi.org/10.4064/aa117-3-7>.
[S85] Schoof, R., "Elliptic curves over finite fields and the [S85] Schoof, R., "Elliptic curves over finite fields and the
computation of square roots mod p", In Mathematics of computation of square roots mod p", In Mathematics of
Computation, vol 44 issue 170, pages 483-494, Computation, vol 44 issue 170, pages 483-494,
skipping to change at line 3324 skipping to change at line 3324
* y = y' * y_num / y_den, where * y = y' * y_num / y_den, where
- y_num = k_(3,3) * x'^3 + k_(3,2) * x'^2 + k_(3,1) * x' + - y_num = k_(3,3) * x'^3 + k_(3,2) * x'^2 + k_(3,1) * x' +
k_(3,0) k_(3,0)
- y_den = x'^3 + k_(4,2) * x'^2 + k_(4,1) * x' + k_(4,0) - y_den = x'^3 + k_(4,2) * x'^2 + k_(4,1) * x' + k_(4,0)
The constants used to compute x_num are as follows: The constants used to compute x_num are as follows:
* k_(1,0) =0x8e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38 * k_(1,0) =
daaaaa8c7 0x8e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38daaaaa8c7
* k_(1,1) = * k_(1,1) =
0x7d3d4c80bc321d5b9f315cea7fd44c5d595d2fc0bf63b92dfff1044f17c6581 0x7d3d4c80bc321d5b9f315cea7fd44c5d595d2fc0bf63b92dfff1044f17c6581
* k_(1,2) = * k_(1,2) =
0x534c328d23f234e6e2a413deca25caece4506144037c40314ecbd0b53d9dd262 0x534c328d23f234e6e2a413deca25caece4506144037c40314ecbd0b53d9dd262
* k_(1,3) = * k_(1,3) =
0x8e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38daaaaa88c 0x8e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38e38daaaaa88c
skipping to change at line 8032 skipping to change at line 8032
Sharon Goldberg Sharon Goldberg
Boston University Boston University
Email: goldbe@cs.bu.edu Email: goldbe@cs.bu.edu
Ela Lee Ela Lee
Royal Holloway, University of London Royal Holloway, University of London
Email: Ela.Lee.2010@live.rhul.ac.uk Email: Ela.Lee.2010@live.rhul.ac.uk
Michele Orru Michele Orru
Email: michele.orru@ens.fr) Email: michele.orru@ens.fr
Authors' Addresses Authors' Addresses
Armando Faz-Hernandez Armando Faz-Hernandez
Cloudflare, Inc. Cloudflare, Inc.
101 Townsend St 101 Townsend St
San Francisco, CA 94107 San Francisco, CA 94107
United States of America United States of America
Email: armfazh@cloudflare.com Email: armfazh@cloudflare.com
 End of changes. 3 change blocks. 
4 lines changed or deleted 4 lines changed or added

This html diff was produced by rfcdiff 1.48.