TIL that Ed25519 digital signatures have 2 modes: pure-ed25519 and ed25519ph. The former operates on a raw message, the latter on a pre-hashed message. The purpose of ed25519ph is to run on HSMs. The YubiHSM does not support it... so for $800, it can only sign 2019 bytes max. 🥲
3,19K