[dns-operations] EdDSA status ?

Frederico A C Neves fneves at registro.br
Fri Jun 1 17:57:06 UTC 2018


On Fri, Jun 01, 2018 at 06:30:21PM +0200, Peter Koch wrote:
> On Fri, Jun 01, 2018 at 09:06:58AM -0700, Paul Hoffman wrote:
> 
> > Just so I can understand: why is anyone even interested in using EdDSA
> > instead of ECDSA in DNSSEC unless you are doing online (live) signing?
> 
> all other parameters equal, EdDSA produces consistent signatures.

EdDSA has another advantage... the public key representation is only
32 or 57 octets long. Any of them are shorter than P256, bringing even
better options for standby keys.

Fred



More information about the dns-operations mailing list