<oembed><type>rich</type><version>1.0</version><author_name>npub1f2nvlx49er5c7sqa43src6ssyp6snd4qwvtkwm5avc2l84cs84esecrwet</author_name><author_url>https://nostr.ae/npub1f2nvlx49er5c7sqa43src6ssyp6snd4qwvtkwm5avc2l84cs84esecrwet</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2014-01-18&#xA;📝 Original message:On Fri, Jan 17, 2014 at 8:55 PM, Alan Reiner &lt;etotheipi at gmail.com&gt; wrote:&#xA;&gt; Isn&#39;t there a much faster asymmetric scheme that we can use?  I&#39;ve heard people talk about ed25519, though I&#39;m not sure it can be used for encryption.&#xA;&#xA;Doing ECDH with our curve is within a factor of ~2 of the fastest&#xA;encryption available at this security level, AFAIK.  And separate&#xA;encryption would ~double the amount of data vs using the ephemeral key&#xA;for derivation.&#xA;&#xA;Using another cryptosystem would mandate carry around additional code&#xA;for a fast implementation of that cryptosystem, which wouldn&#39;t be&#xA;fantastic.&#xA;&#xA;So I&#39;m not sure much can be improved there.</html></oembed>