rfc9964v2.txt   rfc9964.txt 
skipping to change at line 210 skipping to change at line 210
| ML-DSA-87 | 4896 | 2592 | 4627 | | ML-DSA-87 | 4896 | 2592 | 4627 |
+-----------+-------------+------------+----------------+ +-----------+-------------+------------+----------------+
Table 1: Sizes (In Bytes) of Keys and Signatures of Table 1: Sizes (In Bytes) of Keys and Signatures of
ML-DSA ML-DSA
Note that priv size is always 32 bytes and that KeyGen_internal is Note that priv size is always 32 bytes and that KeyGen_internal is
called to produce the expanded private keys for "Private Key" in called to produce the expanded private keys for "Private Key" in
the table above. the table above.
See Section 4 and ML-DSA Private Keys for further details. See Section 4 for further details.
* These algorithms are used to produce signatures as described in * These algorithms are used to produce signatures as described in
Algorithm 2 of US NIST [FIPS-204]. Algorithm 2 of US NIST [FIPS-204].
* The ctx parameter MUST be the empty string for ML-DSA-44, ML-DSA- * The ctx parameter MUST be the empty string for ML-DSA-44, ML-DSA-
65, and ML-DSA-87. 65, and ML-DSA-87.
* Signatures are encoded as byte strings using the algorithms * Signatures are encoded as byte strings using the algorithms
defined in Section 7.2 of US NIST [FIPS-204]. defined in Section 7.2 of US NIST [FIPS-204].
 End of changes. 1 change blocks. 
1 lines changed or deleted 1 lines changed or added

This html diff was produced by rfcdiff 1.48.