Jun 27 2017, 10:00 AM - 11:00 AM

This event is an instance of E6: Weekly Standup, and repeats every week.

Jun 22 2017, 8:50 AM
gniibe changed the end date for this event from Jun 26 2017, 11:00 AM to Jun 27 2017, 11:00 AM.
gniibe is attending this event.

I think that: This should be applied to libgcrypt master:
(That's because the exposure to side-channel is not only to RSA.)

And then, let us apply exponent blinding patch.

Let's wait the reply from Yarom.

In my opinion, 255-bit of nonce is enough for RSA-2048.

I will backport the changes to 1.7 branch.