Simon Josefsson <[email protected]> writes:

> Niels Möller <[email protected]> writes:
>
>>> 2. I think first there should be at least one fast and short option
>>> available.
>>
>> Makes sense, I'm working on adding slh-dsa-shake-128f.
>
> Having 256-bit options would be nice, as a conservative long-term
> signature algorithm choice, any chance you could add those?
>
> The SHA2 alternatives would be nice too, some environments have better
> performance for SHA2 than SHAKE.

An update: I've now added support for slh-dsa-shake-128s and
slh-dsa-shake-128f to the master branch. I think I'll look at
sha2-variants next, I'm also curious about their performance.

Regards,
/Niels

-- 
Niels Möller. PGP key CB4962D070D77D7FCB8BA36271D8F1FF368C6677.
Internet email is subject to wholesale government surveillance.
_______________________________________________
nettle-bugs mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to