[Cfrg] Addition of elliptic curves that are compatible with Russian GOST

"Stanislav V. Smyshlyaev" <smyshsv@gmail.com> Wed, 04 February 2015 07:57 UTC

Dear colleagues,

We kindly ask you to agree to add two Twisted Edwards curves with p =
2^{512}-d and p = 2^{256}-d to the proposed draft.

If you see it possible, we can generate these two curves ourselves –
completely with accordance to the method described in the current draft
(including deterministic "rigid" "non-random" method of curve search

It can be done very quickly – we have a big interest in it, since only
curves with 2^{254}<q<2^{256} and 2^{508}<q<2^{512} are allowed with our
GOST and we want our Russian PKI standards to be as much connected with
international ones as possible.

P.S.: Description of our GOST can be found in ISO/IEC
14888-3:2006/Amd.1:2010(en) Information technology — Security techniques —
Digital signatures with appendix — Part 3: Discrete logarithm based
mechanisms AMENDMENT 1: Elliptic Curve Russian Digital Signature Algorithm,
Schnorr Digital Signature Algorithm, Elliptic Curve Schnorr Digital
Signature Algorithm, and Elliptic Curve Full Schnorr Digital Signature

Best regards,
Stanislav V. Smyshlyaev, Ph.D.,
Head of Information Security Department,
CryptoPro LLC