Schnorr signature: Revision history

Jump to navigation Jump to search
Template:FlatlistExternal tools:

Template:Endflatlist


For any version listed below, click on its date to view it. For more help, see Help:Page history and Help:Edit summary. (cur) = difference from current version, (prev) = difference from preceding version, m = minor edit, → = section edit, ← = automatic edit summary

9 June 2025

  • curprev 21:0221:02, 9 June 2025 imported>Taylor Riastradh Campbell 9,219 bytes −1 Undid revision 1294045309 by 94.114.241.218 (talk). This was not a sign error. It correctly matches the original system. You can flip the sign of the _whole system_ without changing security, but it comes at the cost of extra arithmetic during signing and verification and doesn't match Schnorr's paper.

15 March 2025

  • curprev 11:3811:38, 15 March 2025 imported>Taylor Riastradh Campbell 9,220 bytes +9,220 Undid revision 1280386708 by 78.242.194.46 (talk). This change is inconsistent with the sign convention used throughout the article, which is what originally appeared in Schnorr's paper. Although the security of the reversed-sign system is equivalent, Schnorr's original proposal improves performance over what appears in textbooks by doing inversion at one-time keygen rather than many-time verify.