D. J. Bernstein
Authenticators and signatures

Frequently asked questions

Is there a nistp224 mailing list?

nistp224 discussions take place on the misc mailing list.

How secure is nistp224?

Breaking nistp224's cryptographic protection by current methods is roughly 2^60 (a quintillion: a billion billion) times as difficult as the ECC2K-108 computation carried out in 2000. I have a separate page discussing cryptanalysis in more detail.

Are there any patents covering nistp224?

As far as I know, there is no risk in using nistp224. I have a separate page on this topic.