<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.irtf-cfrg-ristretto255-decaf448" target="https://datatracker.ietf.org/doc/html/draft-irtf-cfrg-ristretto255-decaf448-08">
   <front>
      <title>The ristretto255 and decaf448 Groups</title>
      <author initials="H." surname="de Valence" fullname="Henry de Valence">
         </author>
      <author initials="J." surname="Grigg" fullname="Jack Grigg">
         </author>
      <author initials="M." surname="Hamburg" fullname="Mike Hamburg">
         </author>
      <author initials="I." surname="Lovecruft" fullname="Isis Lovecruft">
         </author>
      <author initials="G." surname="Tankersley" fullname="George Tankersley">
         </author>
      <author initials="F." surname="Valsorda" fullname="Filippo Valsorda">
         </author>
      <date month="September" day="5" year="2023" />
      <abstract>
	 <t>   This memo specifies two prime-order groups, ristretto255 and
   decaf448, suitable for safely implementing higher-level and complex
   cryptographic protocols.  The ristretto255 group can be implemented
   using Curve25519, allowing existing Curve25519 implementations to be
   reused and extended to provide a prime-order group.  Likewise, the
   decaf448 group can be implemented using edwards448.

   This document is a product of the Crypto Forum Research Group (CFRG)
   in the IRTF.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-irtf-cfrg-ristretto255-decaf448-08" />
   
</reference>
