Properties

Unforgeability: only key holder can sign. Verifiability: anyone can check. Non-repudiation: signer can't later deny.

Advertisement

RSA-PSS

Modern RSA signature with probabilistic salt. Replaces textbook RSA + PKCS#1v1.5 which had vulnerabilities.

Advertisement

ECDSA

Elliptic curve DSA. Requires random nonce (avoid reuse!). RFC 6979 deterministic k.

Ed25519

Modern default. Deterministic. Fast. Small keys + signatures. Everywhere possible.