blob: 958edce3fe4fc42599f179ef1a88387a21ce2801 [file] [log] [blame]
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/>
<meta http-equiv="X-UA-Compatible" content="IE=9"/>
<meta name="generator" content="Doxygen 1.9.1"/>
<meta name="viewport" content="width=device-width, initial-scale=1"/>
<title>libmpc: schnorr.h Source File</title>
<link href="tabs.css" rel="stylesheet" type="text/css"/>
<script type="text/javascript" src="jquery.js"></script>
<script type="text/javascript" src="dynsections.js"></script>
<link href="search/search.css" rel="stylesheet" type="text/css"/>
<script type="text/javascript" src="search/searchdata.js"></script>
<script type="text/javascript" src="search/search.js"></script>
<script type="text/x-mathjax-config">
MathJax.Hub.Config({
extensions: ["tex2jax.js"],
jax: ["input/TeX","output/HTML-CSS"],
});
</script>
<script type="text/javascript" async="async" src="https://cdnjs.cloudflare.com/ajax/libs/mathjax/2.7.5/MathJax.js"></script>
<link href="doxygen.css" rel="stylesheet" type="text/css" />
</head>
<body>
<div id="top"><!-- do not remove this div, it is closed by doxygen! -->
<div id="titlearea">
<table cellspacing="0" cellpadding="0">
<tbody>
<tr style="height: 56px;">
<td id="projectalign" style="padding-left: 0.5em;">
<div id="projectname">libmpc
</div>
</td>
</tr>
</tbody>
</table>
</div>
<!-- end header part -->
<!-- Generated by Doxygen 1.9.1 -->
<script type="text/javascript">
/* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&amp;dn=gpl-2.0.txt GPL-v2 */
var searchBox = new SearchBox("searchBox", "search",false,'Search','.html');
/* @license-end */
</script>
<script type="text/javascript" src="menudata.js"></script>
<script type="text/javascript" src="menu.js"></script>
<script type="text/javascript">
/* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&amp;dn=gpl-2.0.txt GPL-v2 */
$(function() {
initMenu('',true,false,'search.php','Search');
$(document).ready(function() { init_search(); });
});
/* @license-end */</script>
<div id="main-nav"></div>
<!-- window showing the filter options -->
<div id="MSearchSelectWindow"
onmouseover="return searchBox.OnSearchSelectShow()"
onmouseout="return searchBox.OnSearchSelectHide()"
onkeydown="return searchBox.OnSearchSelectKey(event)">
</div>
<!-- iframe showing the search results (closed by default) -->
<div id="MSearchResultsWindow">
<iframe src="javascript:void(0)" frameborder="0"
name="MSearchResults" id="MSearchResults">
</iframe>
</div>
<div id="nav-path" class="navpath">
<ul>
<li class="navelem"><a class="el" href="dir_d44c64559bbebec7f509842c48db8b23.html">include</a></li><li class="navelem"><a class="el" href="dir_a166689341c37329f24f96bdba87a08b.html">amcl</a></li> </ul>
</div>
</div><!-- top -->
<div class="header">
<div class="headertitle">
<div class="title">schnorr.h</div> </div>
</div><!--header-->
<div class="contents">
<a href="schnorr_8h.html">Go to the documentation of this file.</a><div class="fragment"><div class="line"><a name="l00001"></a><span class="lineno"> 1</span>&#160;<span class="comment">/*</span></div>
<div class="line"><a name="l00002"></a><span class="lineno"> 2</span>&#160;<span class="comment">Licensed to the Apache Software Foundation (ASF) under one</span></div>
<div class="line"><a name="l00003"></a><span class="lineno"> 3</span>&#160;<span class="comment">or more contributor license agreements. See the NOTICE file</span></div>
<div class="line"><a name="l00004"></a><span class="lineno"> 4</span>&#160;<span class="comment">distributed with this work for additional information</span></div>
<div class="line"><a name="l00005"></a><span class="lineno"> 5</span>&#160;<span class="comment">regarding copyright ownership. The ASF licenses this file</span></div>
<div class="line"><a name="l00006"></a><span class="lineno"> 6</span>&#160;<span class="comment">to you under the Apache License, Version 2.0 (the</span></div>
<div class="line"><a name="l00007"></a><span class="lineno"> 7</span>&#160;<span class="comment">&quot;License&quot;); you may not use this file except in compliance</span></div>
<div class="line"><a name="l00008"></a><span class="lineno"> 8</span>&#160;<span class="comment">with the License. You may obtain a copy of the License at</span></div>
<div class="line"><a name="l00009"></a><span class="lineno"> 9</span>&#160;<span class="comment"></span> </div>
<div class="line"><a name="l00010"></a><span class="lineno"> 10</span>&#160;<span class="comment"> http://www.apache.org/licenses/LICENSE-2.0</span></div>
<div class="line"><a name="l00011"></a><span class="lineno"> 11</span>&#160;<span class="comment"></span> </div>
<div class="line"><a name="l00012"></a><span class="lineno"> 12</span>&#160;<span class="comment">Unless required by applicable law or agreed to in writing,</span></div>
<div class="line"><a name="l00013"></a><span class="lineno"> 13</span>&#160;<span class="comment">software distributed under the License is distributed on an</span></div>
<div class="line"><a name="l00014"></a><span class="lineno"> 14</span>&#160;<span class="comment">&quot;AS IS&quot; BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY</span></div>
<div class="line"><a name="l00015"></a><span class="lineno"> 15</span>&#160;<span class="comment">KIND, either express or implied. See the License for the</span></div>
<div class="line"><a name="l00016"></a><span class="lineno"> 16</span>&#160;<span class="comment">specific language governing permissions and limitations</span></div>
<div class="line"><a name="l00017"></a><span class="lineno"> 17</span>&#160;<span class="comment">under the License.</span></div>
<div class="line"><a name="l00018"></a><span class="lineno"> 18</span>&#160;<span class="comment">*/</span></div>
<div class="line"><a name="l00019"></a><span class="lineno"> 19</span>&#160; </div>
<div class="line"><a name="l00026"></a><span class="lineno"> 26</span>&#160;<span class="preprocessor">#ifndef SCHNORR_H</span></div>
<div class="line"><a name="l00027"></a><span class="lineno"> 27</span>&#160;<span class="preprocessor">#define SCHNORR_H</span></div>
<div class="line"><a name="l00028"></a><span class="lineno"> 28</span>&#160; </div>
<div class="line"><a name="l00029"></a><span class="lineno"> 29</span>&#160;<span class="preprocessor">#include &quot;amcl/amcl.h&quot;</span></div>
<div class="line"><a name="l00030"></a><span class="lineno"> 30</span>&#160;<span class="preprocessor">#include &quot;amcl/big_256_56.h&quot;</span></div>
<div class="line"><a name="l00031"></a><span class="lineno"> 31</span>&#160;<span class="preprocessor">#include &quot;amcl/ecp_SECP256K1.h&quot;</span></div>
<div class="line"><a name="l00032"></a><span class="lineno"> 32</span>&#160; </div>
<div class="line"><a name="l00033"></a><span class="lineno"> 33</span>&#160;<span class="preprocessor">#ifdef __cplusplus</span></div>
<div class="line"><a name="l00034"></a><span class="lineno"> 34</span>&#160;<span class="keyword">extern</span> <span class="stringliteral">&quot;C&quot;</span></div>
<div class="line"><a name="l00035"></a><span class="lineno"> 35</span>&#160;{</div>
<div class="line"><a name="l00036"></a><span class="lineno"> 36</span>&#160;<span class="preprocessor">#endif</span></div>
<div class="line"><a name="l00037"></a><span class="lineno"> 37</span>&#160; </div>
<div class="line"><a name="l00038"></a><span class="lineno"> 38</span>&#160;<span class="comment">/* Field size is assumed to be greater than or equal to group size */</span></div>
<div class="line"><a name="l00039"></a><span class="lineno"> 39</span>&#160; </div>
<div class="line"><a name="l00040"></a><span class="lineno"><a class="line" href="schnorr_8h.html#ab5bcf782e8f2fcd1404d5de3b85707fd"> 40</a></span>&#160;<span class="preprocessor">#define SGS_SECP256K1 MODBYTES_256_56 </span></div>
<div class="line"><a name="l00041"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a9d25d694a29331ea767179901f8ae601"> 41</a></span>&#160;<span class="preprocessor">#define SFS_SECP256K1 MODBYTES_256_56 </span></div>
<div class="line"><a name="l00043"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a88f5f29dd2b59260b70ffcbc5f44c326"> 43</a></span>&#160;<span class="preprocessor">#define SCHNORR_OK 0 </span></div>
<div class="line"><a name="l00044"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a4a5402fd8a88039b3f9cad0f508eec31"> 44</a></span>&#160;<span class="preprocessor">#define SCHNORR_FAIL 51 </span></div>
<div class="line"><a name="l00045"></a><span class="lineno"><a class="line" href="schnorr_8h.html#aacf81adc639d9529432d969dca09eb71"> 45</a></span>&#160;<span class="preprocessor">#define SCHNORR_INVALID_ECP 52 </span></div>
<div class="line"><a name="l00053"></a><span class="lineno"><a class="line" href="schnorr_8h.html#ab8e7127fb5812f3592da6ebf08b57512"> 53</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#ab8e7127fb5812f3592da6ebf08b57512">SCHNORR_random_challenge</a>(csprng *RNG, octet *E);</div>
<div class="line"><a name="l00054"></a><span class="lineno"> 54</span>&#160; </div>
<div class="line"><a name="l00055"></a><span class="lineno"> 55</span>&#160;<span class="comment">/* Classic Schnorr&#39;s proofs API */</span></div>
<div class="line"><a name="l00056"></a><span class="lineno"> 56</span>&#160; </div>
<div class="line"><a name="l00063"></a><span class="lineno"><a class="line" href="schnorr_8h.html#aa8b82a3a089695a803f100b4a861c59b"> 63</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#aa8b82a3a089695a803f100b4a861c59b">SCHNORR_commit</a>(csprng *RNG, octet *R, octet *C);</div>
<div class="line"><a name="l00064"></a><span class="lineno"> 64</span>&#160; </div>
<div class="line"><a name="l00075"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a743028db55e66f4d30699e72a1b0bf1f"> 75</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#a743028db55e66f4d30699e72a1b0bf1f">SCHNORR_challenge</a>(<span class="keyword">const</span> octet *V, <span class="keyword">const</span> octet *C, <span class="keyword">const</span> octet *ID, <span class="keyword">const</span> octet *AD, octet *E);</div>
<div class="line"><a name="l00076"></a><span class="lineno"> 76</span>&#160; </div>
<div class="line"><a name="l00084"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a874b17623254bc1701d1f25459770200"> 84</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#a874b17623254bc1701d1f25459770200">SCHNORR_prove</a>(<span class="keyword">const</span> octet *R, <span class="keyword">const</span> octet *E, <span class="keyword">const</span> octet *X, octet *P);</div>
<div class="line"><a name="l00085"></a><span class="lineno"> 85</span>&#160; </div>
<div class="line"><a name="l00094"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a5f6c493e5b3acdc97acb0af7a0389723"> 94</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">int</span> <a class="code" href="schnorr_8h.html#a5f6c493e5b3acdc97acb0af7a0389723">SCHNORR_verify</a>(octet *V, octet *C, <span class="keyword">const</span> octet *E, <span class="keyword">const</span> octet *P);</div>
<div class="line"><a name="l00095"></a><span class="lineno"> 95</span>&#160; </div>
<div class="line"><a name="l00096"></a><span class="lineno"> 96</span>&#160;<span class="comment">/* Double Schnorr&#39;s proofs API */</span></div>
<div class="line"><a name="l00097"></a><span class="lineno"> 97</span>&#160; </div>
<div class="line"><a name="l00098"></a><span class="lineno"> 98</span>&#160;<span class="comment">// The double Schnorr Proof allows to prove knowledge of</span></div>
<div class="line"><a name="l00099"></a><span class="lineno"> 99</span>&#160;<span class="comment">// s,l s.t. V = s.R + l.G for some R ECP</span></div>
<div class="line"><a name="l00100"></a><span class="lineno"> 100</span>&#160; </div>
<div class="line"><a name="l00110"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a20d267a63789b45faaf9b82018116268"> 110</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">int</span> <a class="code" href="schnorr_8h.html#a20d267a63789b45faaf9b82018116268">SCHNORR_D_commit</a>(csprng *RNG, octet *R, octet *A, octet *B, octet *C);</div>
<div class="line"><a name="l00111"></a><span class="lineno"> 111</span>&#160; </div>
<div class="line"><a name="l00125"></a><span class="lineno"><a class="line" href="schnorr_8h.html#ad72917e4d1d2e9167c47062b4939dffb"> 125</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#ad72917e4d1d2e9167c47062b4939dffb">SCHNORR_D_challenge</a>(<span class="keyword">const</span> octet *R, <span class="keyword">const</span> octet *V, <span class="keyword">const</span> octet *C, <span class="keyword">const</span> octet* ID, <span class="keyword">const</span> octet *AD, octet *E);</div>
<div class="line"><a name="l00126"></a><span class="lineno"> 126</span>&#160; </div>
<div class="line"><a name="l00137"></a><span class="lineno"><a class="line" href="schnorr_8h.html#a726141bddf04f630fe06e2f13a3d28e5"> 137</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">void</span> <a class="code" href="schnorr_8h.html#a726141bddf04f630fe06e2f13a3d28e5">SCHNORR_D_prove</a>(<span class="keyword">const</span> octet *A, <span class="keyword">const</span> octet *B, <span class="keyword">const</span> octet *E, <span class="keyword">const</span> octet *S, <span class="keyword">const</span> octet *L, octet *T, octet *U);</div>
<div class="line"><a name="l00138"></a><span class="lineno"> 138</span>&#160; </div>
<div class="line"><a name="l00149"></a><span class="lineno"><a class="line" href="schnorr_8h.html#ab1c768caccc24700b28050962b603898"> 149</a></span>&#160;<span class="keyword">extern</span> <span class="keywordtype">int</span> <a class="code" href="schnorr_8h.html#ab1c768caccc24700b28050962b603898">SCHNORR_D_verify</a>(octet *R, octet *V, octet *C, <span class="keyword">const</span> octet *E, <span class="keyword">const</span> octet *T, <span class="keyword">const</span> octet *U);</div>
<div class="line"><a name="l00150"></a><span class="lineno"> 150</span>&#160; </div>
<div class="line"><a name="l00151"></a><span class="lineno"> 151</span>&#160;<span class="preprocessor">#ifdef __cplusplus</span></div>
<div class="line"><a name="l00152"></a><span class="lineno"> 152</span>&#160;}</div>
<div class="line"><a name="l00153"></a><span class="lineno"> 153</span>&#160;<span class="preprocessor">#endif</span></div>
<div class="line"><a name="l00154"></a><span class="lineno"> 154</span>&#160; </div>
<div class="line"><a name="l00155"></a><span class="lineno"> 155</span>&#160;<span class="preprocessor">#endif</span></div>
<div class="ttc" id="aschnorr_8h_html_a20d267a63789b45faaf9b82018116268"><div class="ttname"><a href="schnorr_8h.html#a20d267a63789b45faaf9b82018116268">SCHNORR_D_commit</a></div><div class="ttdeci">int SCHNORR_D_commit(csprng *RNG, octet *R, octet *A, octet *B, octet *C)</div><div class="ttdoc">Generate a commitment for the proof.</div></div>
<div class="ttc" id="aschnorr_8h_html_a5f6c493e5b3acdc97acb0af7a0389723"><div class="ttname"><a href="schnorr_8h.html#a5f6c493e5b3acdc97acb0af7a0389723">SCHNORR_verify</a></div><div class="ttdeci">int SCHNORR_verify(octet *V, octet *C, const octet *E, const octet *P)</div><div class="ttdoc">Verify the proof of knowledge for the DLOG.</div></div>
<div class="ttc" id="aschnorr_8h_html_a726141bddf04f630fe06e2f13a3d28e5"><div class="ttname"><a href="schnorr_8h.html#a726141bddf04f630fe06e2f13a3d28e5">SCHNORR_D_prove</a></div><div class="ttdeci">void SCHNORR_D_prove(const octet *A, const octet *B, const octet *E, const octet *S, const octet *L, octet *T, octet *U)</div><div class="ttdoc">Generate the proof for the given commitment and challenge.</div></div>
<div class="ttc" id="aschnorr_8h_html_a743028db55e66f4d30699e72a1b0bf1f"><div class="ttname"><a href="schnorr_8h.html#a743028db55e66f4d30699e72a1b0bf1f">SCHNORR_challenge</a></div><div class="ttdeci">void SCHNORR_challenge(const octet *V, const octet *C, const octet *ID, const octet *AD, octet *E)</div><div class="ttdoc">Generate the challenge for the proof.</div></div>
<div class="ttc" id="aschnorr_8h_html_a874b17623254bc1701d1f25459770200"><div class="ttname"><a href="schnorr_8h.html#a874b17623254bc1701d1f25459770200">SCHNORR_prove</a></div><div class="ttdeci">void SCHNORR_prove(const octet *R, const octet *E, const octet *X, octet *P)</div><div class="ttdoc">Generate the proof for the given commitment and challenge.</div></div>
<div class="ttc" id="aschnorr_8h_html_aa8b82a3a089695a803f100b4a861c59b"><div class="ttname"><a href="schnorr_8h.html#aa8b82a3a089695a803f100b4a861c59b">SCHNORR_commit</a></div><div class="ttdeci">void SCHNORR_commit(csprng *RNG, octet *R, octet *C)</div><div class="ttdoc">Generate a commitment for the proof.</div></div>
<div class="ttc" id="aschnorr_8h_html_ab1c768caccc24700b28050962b603898"><div class="ttname"><a href="schnorr_8h.html#ab1c768caccc24700b28050962b603898">SCHNORR_D_verify</a></div><div class="ttdeci">int SCHNORR_D_verify(octet *R, octet *V, octet *C, const octet *E, const octet *T, const octet *U)</div><div class="ttdoc">Verify the proof of knowledge for the DLOG.</div></div>
<div class="ttc" id="aschnorr_8h_html_ab8e7127fb5812f3592da6ebf08b57512"><div class="ttname"><a href="schnorr_8h.html#ab8e7127fb5812f3592da6ebf08b57512">SCHNORR_random_challenge</a></div><div class="ttdeci">void SCHNORR_random_challenge(csprng *RNG, octet *E)</div><div class="ttdoc">Generate random challenge for any Schnorr Proof.</div></div>
<div class="ttc" id="aschnorr_8h_html_ad72917e4d1d2e9167c47062b4939dffb"><div class="ttname"><a href="schnorr_8h.html#ad72917e4d1d2e9167c47062b4939dffb">SCHNORR_D_challenge</a></div><div class="ttdeci">void SCHNORR_D_challenge(const octet *R, const octet *V, const octet *C, const octet *ID, const octet *AD, octet *E)</div><div class="ttdoc">Generate the challenge for the proof.</div></div>
</div><!-- fragment --></div><!-- contents -->
<!-- start footer part -->
<hr class="footer"/><address class="footer"><small>
Generated by&#160;<a href="https://www.doxygen.org/index.html"><img class="footer" src="doxygen.svg" width="104" height="31" alt="doxygen"/></a> 1.9.1
</small></address>
</body>
</html>