The ristretto255 and decaf448 Groups
RFC 9496, “The ristretto255 and decaf448 Groups”, is an Informational document published in December 2023 by H. de Valence, J. Grigg, M. Hamburg, I. Lovecruft, G. Tankersley, F. Valsorda. The canonical text is published by the RFC Editor.
Abstract
This memo specifies two prime-order groups, ristretto255 and decaf448, suitable for safely implementing higher-level and complex cryptographic protocols. The ristretto255 group can be implemented using Curve25519, allowing existing Curve25519 implementations to be reused and extended to provide a prime-order group. Likewise, the decaf448 group can be implemented using edwards448.
This document is a product of the Crypto Forum Research Group (CFRG) in the IRTF.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 9496 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9495 Certification Authority Authorization Processing for Email Addresses
- RFC 9497 Oblivious Pseudorandom Functions Using Prime-Order Groups
- RFC 9494 Long-Lived Graceful Restart for BGP
- RFC 9498 The GNU Name System
- RFC 9493 Subject Identifiers for Security Event Tokens
- RFC 9492 OSPF Application-Specific Link Attributes
- RFC 9500 Standard Public Key Cryptography Test Keys
- RFC 9491 Integration of the Network Service Header and Segment Routing for Service Function Chaining