Greg Bernstein
Greg Bernstein
The cryptographic values in the test vectors in this specification are dependent on the following IETF drafts which have been updated: 1. [The BBS Signature Scheme](https://www.ietf.org/archive/id/draft-irtf-cfrg-bbs-signatures-06.html) 2. [BBS Blind Signatures](https://datatracker.ietf.org/doc/html/draft-kalos-bbs-blind-signatures)...
The *optional features* (anonymous holder binding, pseudonyms with known PID, and pseudonyms with hidden PID) are dependent on two IETF drafts which have recently been updated: 1. [BBS Blind Signatures](https://datatracker.ietf.org/doc/html/draft-kalos-bbs-blind-signatures)...
Spec error in section on [ProofVerify ](https://www.ietf.org/archive/id/draft-irtf-cfrg-bbs-signatures-06.html#name-proof-verification-proofver) we have `proof_len_floor = 2 * octet_point_length + 4 * octet_scalar_length` while in section [octets to proof ](https://www.ietf.org/archive/id/draft-irtf-cfrg-bbs-signatures-06.html#section-4.2.4.5) we have the correct computation:...