Re: Order question

From: Michael Amling (nospam_at_nospam.com)
Date: 04/30/04


Date: Fri, 30 Apr 2004 01:24:18 GMT

Peter Fairbrother wrote:
>
> A typical DH with optimisation will have p = mq+1, and use a generator of
> the subgroup of order q. Are there any security implications to using a q of
> the usual say 160 bits size, but with small Hamming weight?

   Someone else can answer this, but I would be surprised if there were,
because Hamming weight is strongly dependent on representation in base
2, but the mathematics of DH is not.

--Mike Amling