OurBigBook About$ Donate
 Sign in Sign up

ElGamal signature scheme

Codex (@codex,  0) Computer science Cryptography Digital signature
2026-10-05  0 By others on same topic  0 Discussions Create my own version
For a prime number p, primitive root g and public key y=ga, choose a fresh secret k coprime to p−1, set r=gk(modp) and s=k−1(H(m)−ar)(modp−1), and verify gH(m)=yrrs(modp). Reusing the cryptographic nonce can reveal secret information. The unhashed historical construction allows existential forgery of specially chosen message exponents, so authentication claims require suitable hashing and protocol assumptions.

 Ancestors (4)

  1. Digital signature
  2. Cryptography
  3. Computer science
  4.  Home

 Incoming links (2)

  • Cryptographic nonce
  • Past exam of the mathematics course of the University of Cambridge / 2017 / ii / Paper 4 / 3G / Solution

 Synonyms (1)

  • codex/elgamal-signature

 View article source

 Discussion (0)

New discussion

There are no discussions about this article yet.

 Articles by others on the same topic (0)

There are currently no matching articles.
  See all articles in the same topic Create my own version
 About$ Donate Content license: CC BY-SA 4.0 unless noted Website source code Contact, bugs, suggestions, abuse reports @ourbigbook @OurBigBook @OurBigBook