Also, for what its worth, if you are going to deploy electronic coins, why on earth make them expensive to create? That's just burning money - the idea is to make something unforgeable as cheaply as possible. This is why all modern currencies are fiat currencies instead of being made out of gold. Bitcoins are designed to be expensive to make: they rely on proof-of-work. It is far more sensible to use signatures over random numbers as a basis, as asymmetric encryption gives us the required unforgeability without any need to involve work. This is how Chaum's original system worked. And the only real improvement since then has been Brands' selective disclosure work.
If you want to limit supply, there are cheaper ways to do that, too. And proof-of-work doesn't, anyway (it just gives the lion's share to the guy with the cheapest/biggest hardware).