|
|
@ -8,9 +8,9 @@ clang, icc). |
|
|
|
`crypto_core_ed25519_is_valid_point()`, `crypto_core_ed25519_add()`, |
|
|
|
`crypto_core_ed25519_sub()` and `crypto_core_ed25519_from_uniform()` |
|
|
|
(elligator representative to point). |
|
|
|
- `crypto_sign_ed25519_open()` and `crypto_sign_ed25519_verify_detached() |
|
|
|
now reject public keys in non-canonical form in addition to low-order |
|
|
|
points. |
|
|
|
- `crypto_sign_open()`, `crypto_sign_verify_detached() and |
|
|
|
`crypto_sign_edwards25519sha512batch_open` now reject public keys in |
|
|
|
non-canonical form in addition to low-order points. |
|
|
|
- The library can be built with `ED25519_NONDETERMINISTIC` defined in |
|
|
|
order to use synthetic nonces for EdDSA. This is disabled by default. |
|
|
|
- Webassembly: `crypto_pwhash_*()` functions are now included in |
|
|
|