{"draft":"draft-irtf-cfrg-frost-15","doc_id":"RFC9591","title":"The Flexible Round-Optimized Schnorr Threshold (FROST) Protocol for Two-Round Schnorr Signatures","authors":["D. Connolly","C. Komlo","I. Goldberg","C. A. Wood"],"format":["HTML","TEXT","PDF","XML"],"page_count":"47","pub_status":"INFORMATIONAL","status":"INFORMATIONAL","source":"Crypto Forum Research Group","abstract":"This document specifies the Flexible Round-Optimized Schnorr\r\nThreshold (FROST) signing protocol. FROST signatures can be issued\r\nafter a threshold number of entities cooperate to compute a\r\nsignature, allowing for improved distribution of trust and redundancy\r\nwith respect to a secret key. FROST depends only on a prime-order\r\ngroup and cryptographic hash function. This document specifies a\r\nnumber of ciphersuites to instantiate FROST using different\r\nprime-order groups and hash functions. This document is a product of\r\nthe Crypto Forum Research Group (CFRG) in the IRTF.","pub_date":"June 2024","keywords":["Threshold signature","threshold cryptography","secret sharing","EdDSA signature","Schnorr signature"],"obsoletes":[],"obsoleted_by":[],"updates":[],"updated_by":[],"see_also":[],"doi":"10.17487\/RFC9591","errata_url":null}