Talk:Blum–Micali algorithm

Latest comment: 13 years ago by Doctorhook

In the method $g$ should not be a prime number; even it needs not to be a primitive root. —Preceding unsigned comment added by 193.6.218.224 (talk) 12:06, 30 March 2010 (UTC)Reply

"Prime" is probably a typo for "primitive root" in Schneier. The original paper does specify that $g$ should be a primitive root; it may not be necessary but it improves the security proof because the DLP is harder. Doctorhook (talk) 00:26, 4 June 2010 (UTC)Reply