P-521

E831967

P-521 is a NIST-recommended 521-bit elliptic curve over a prime field widely used for high-security digital signatures in ECDSA.

All labels observed (3)

Label Occurrences
NIST P-521 1
P-521 canonical 1
secp521r1 1

How this entity was disambiguated

Statements (48)

Predicate Object
instanceOf ECDSA curve
NIST-recommended elliptic curve
elliptic curve
prime-field elliptic curve
approximateSecurity 256-bit classical security
basePointOrder large prime order
belongsTo NIST prime curves
bitLength 521 bits
category high-security elliptic curve
cofactor 1
coordinateSystem Weierstrass form
curveEquationForm y^2 = x^3 - 3x + b
curveFamily NIST P-curves
linked to: NIST P-curve family
curveName secp521r1
linked to: P-521
definedInStandard FIPS 186-4
FIPS 186-5
designedFor long-term security
fieldPrimeSize 521 bits
fieldType prime field
hasBasePoint yes
introducedBy NIST
keySizeType asymmetric key
largerThan P-256
P-384
OID 1.3.132.0.35
primeModulusForm 2^521 - 1
privateKeySize 521 bits
publicKeySize larger than P-256 and P-384
recommendedBy NIST Suite B (historical)
recommendedFor digital signatures
relativeTo P-256
P-384
securityLevel high
standardizedBy NIST
suitableFor government-grade applications
high-value data protection
supports authentication
data integrity
key agreement
public key cryptography
usedFor SSH
TLS
X.509 certificates
code signing
document signing
usedIn ECDH
linked to: ECC

ECDSA
ECMQV

How these facts were elicited

Referenced by (3)

Full triples — surface form annotated when it differs from this entity's canonical label.

brainpool curves comparedTo NIST P-521
linked to: P-521
P-521 curveName secp521r1
linked to: P-521