Edwards-curve Digital Signature Algorithm (EdDSA)

The information below is for an old version of the document
Document Type None Internet-Draft (cfrg RG)
Last updated 2016-08-18
Replaces draft-josefsson-eddsa-ed25519
Stream IRTF
Intended RFC status Informational
Expired & archived
pdf htmlized bibtex
IETF conflict review conflict-review-irtf-cfrg-eddsa
Additional URLs
- Mailing list discussion
Stream IRTF state (None)
Consensus Boilerplate Yes
Document shepherd No shepherd assigned
IESG IESG state Unknown state
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


The elliptic curve signature scheme Edwards-curve Digital Signature Algorithm (EdDSA) is described. The algorithm is instantiated with recommended parameters for the edwards25519 and edwards448 curves. An example implementation and test vectors are provided.


Simon Josefsson (simon@josefsson.org)
Ilari Liusvaara (ilariliusvaara@welho.com)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)