Conceptual feedback on new ECC JEP

Michael StJohns mstjohns at comcast.net
Sat Sep 1 18:03:45 UTC 2018


On 8/23/2018 1:50 PM, Adam Petcher wrote:
> It will only support a subset of the API that is supported by the 
> implementation in SunEC. In particular, it will reject any private 
> keys with scalar values specified using BigInteger (as in 
> ECPrivateKeySpec), and its private keys will not return scalar values 
> as BigInteger (as in ECPrivateKey.getS()). 

Um... why?   EC Private keys are integers.... I've said this multiple 
times and - with the single exception of EDDSA keys because of a very 
idiosyncratic (and IMHO short-sighted) RFC specification - all of the EC 
private keys of whatever curve can be expressed as integers.

Mike





More information about the security-dev mailing list