Skip to content

Commit

Permalink
Remove two TODOs (#60)
Browse files Browse the repository at this point in the history
  • Loading branch information
bwesterb authored Dec 12, 2024
1 parent e4838fc commit be15c14
Showing 1 changed file with 4 additions and 4 deletions.
8 changes: 4 additions & 4 deletions draft-ietf-lamps-dilithium-certificates.md
Original file line number Diff line number Diff line change
Expand Up @@ -500,10 +500,10 @@ than 2^{64} chosen messages.
and how that does not apply to PQ like Dilithium. And how committing to a
message is additional security. Reference NIST discussion from Peiker and
Makku.-->
<aside markdown="block">
<!--<aside markdown="block">
EDNOTE: Discuss deterministic vs randomized signing and the impact on
security.
</aside>
</aside>-->

ML-DSA offers both deterministic and randomized signing. By default
ML-DSA signatures are non-deterministic. The private random seed (rho')
Expand All @@ -516,9 +516,9 @@ including the signers private key and message into the derivation. The
primary purpose of rnd is to facilitate countermeasures to side-channel
attacks and fault attacks on deterministic signatures.

<aside markdown="block">
<!--<aside markdown="block">
EDNOTE: Discuss side-channels for ML-DSA.
</aside>
</aside>-->


In the design of ML-DSA, care has been taken to make side-channel
Expand Down

0 comments on commit be15c14

Please sign in to comment.