Paper 2016/1099

Improved Parameters for the Ring-TESLA Digital Signature Scheme

Arjun Chopra


Akleylek et al have proposed Ring-TESLA, a practical and efficient digital signature scheme based on the Ring Learning With Errors problem. However we have identified there are some problems with the parameters proposed for Ring-TESLA, as we believe they do not ensure the correct operation of the scheme and do not provide the targeted levels of security under either the provable Ring-TESLA reduction, or an assessment of practical modern attacks such as lattice sieving. We recommend new Ring-TESLA parameters that target more security levels and provide for correct, secure, and efficient instantiation. We describe the necessary preliminaries, recap the Ring-TESLA scheme, and present our parameter recommendations, selection methodology, and analysis. We have implemented Ring-TESLA using our recommended parameters, and we place this software in the public domain.

Note: Minor update

Available format(s)
Publication info
Preprint. MINOR revision.
CryptographyPost-Quantum CryptographyLatticeRing-LWERing Learning With ErrorsDigital SignatureRing-TESLA
Contact author(s)
arjun chopra vsc @ outlook com
2017-02-06: revised
2016-11-22: received
See all versions
Short URL
Creative Commons Attribution


      author = {Arjun Chopra},
      title = {Improved Parameters for the Ring-{TESLA} Digital Signature Scheme},
      howpublished = {Cryptology ePrint Archive, Paper 2016/1099},
      year = {2016},
      note = {\url{}},
      url = {}
Note: In order to protect the privacy of readers, does not use cookies or embedded third party content.