| <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "https://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> |
| <html xmlns="http://www.w3.org/1999/xhtml"> |
| <head> |
| <meta http-equiv="Content-Type" content="text/xhtml;charset=UTF-8"/> |
| <meta http-equiv="X-UA-Compatible" content="IE=9"/> |
| <meta name="generator" content="Doxygen 1.9.1"/> |
| <meta name="viewport" content="width=device-width, initial-scale=1"/> |
| <title>libmpc: schnorr.h File Reference</title> |
| <link href="tabs.css" rel="stylesheet" type="text/css"/> |
| <script type="text/javascript" src="jquery.js"></script> |
| <script type="text/javascript" src="dynsections.js"></script> |
| <link href="search/search.css" rel="stylesheet" type="text/css"/> |
| <script type="text/javascript" src="search/searchdata.js"></script> |
| <script type="text/javascript" src="search/search.js"></script> |
| <script type="text/x-mathjax-config"> |
| MathJax.Hub.Config({ |
| extensions: ["tex2jax.js"], |
| jax: ["input/TeX","output/HTML-CSS"], |
| }); |
| </script> |
| <script type="text/javascript" async="async" src="https://cdnjs.cloudflare.com/ajax/libs/mathjax/2.7.5/MathJax.js"></script> |
| <link href="doxygen.css" rel="stylesheet" type="text/css" /> |
| </head> |
| <body> |
| <div id="top"><!-- do not remove this div, it is closed by doxygen! --> |
| <div id="titlearea"> |
| <table cellspacing="0" cellpadding="0"> |
| <tbody> |
| <tr style="height: 56px;"> |
| <td id="projectalign" style="padding-left: 0.5em;"> |
| <div id="projectname">libmpc |
| </div> |
| </td> |
| </tr> |
| </tbody> |
| </table> |
| </div> |
| <!-- end header part --> |
| <!-- Generated by Doxygen 1.9.1 --> |
| <script type="text/javascript"> |
| /* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&dn=gpl-2.0.txt GPL-v2 */ |
| var searchBox = new SearchBox("searchBox", "search",false,'Search','.html'); |
| /* @license-end */ |
| </script> |
| <script type="text/javascript" src="menudata.js"></script> |
| <script type="text/javascript" src="menu.js"></script> |
| <script type="text/javascript"> |
| /* @license magnet:?xt=urn:btih:cf05388f2679ee054f2beb29a391d25f4e673ac3&dn=gpl-2.0.txt GPL-v2 */ |
| $(function() { |
| initMenu('',true,false,'search.php','Search'); |
| $(document).ready(function() { init_search(); }); |
| }); |
| /* @license-end */</script> |
| <div id="main-nav"></div> |
| <!-- window showing the filter options --> |
| <div id="MSearchSelectWindow" |
| onmouseover="return searchBox.OnSearchSelectShow()" |
| onmouseout="return searchBox.OnSearchSelectHide()" |
| onkeydown="return searchBox.OnSearchSelectKey(event)"> |
| </div> |
| |
| <!-- iframe showing the search results (closed by default) --> |
| <div id="MSearchResultsWindow"> |
| <iframe src="javascript:void(0)" frameborder="0" |
| name="MSearchResults" id="MSearchResults"> |
| </iframe> |
| </div> |
| |
| <div id="nav-path" class="navpath"> |
| <ul> |
| <li class="navelem"><a class="el" href="dir_d44c64559bbebec7f509842c48db8b23.html">include</a></li><li class="navelem"><a class="el" href="dir_a166689341c37329f24f96bdba87a08b.html">amcl</a></li> </ul> |
| </div> |
| </div><!-- top --> |
| <div class="header"> |
| <div class="summary"> |
| <a href="#define-members">Macros</a> | |
| <a href="#func-members">Functions</a> </div> |
| <div class="headertitle"> |
| <div class="title">schnorr.h File Reference</div> </div> |
| </div><!--header--> |
| <div class="contents"> |
| |
| <p>Schnorr's proofs declarations. |
| <a href="#details">More...</a></p> |
| <div class="textblock"><code>#include "amcl/amcl.h"</code><br /> |
| <code>#include "amcl/big_256_56.h"</code><br /> |
| <code>#include "amcl/ecp_SECP256K1.h"</code><br /> |
| </div> |
| <p><a href="schnorr_8h_source.html">Go to the source code of this file.</a></p> |
| <table class="memberdecls"> |
| <tr class="heading"><td colspan="2"><h2 class="groupheader"><a name="define-members"></a> |
| Macros</h2></td></tr> |
| <tr class="memitem:ab5bcf782e8f2fcd1404d5de3b85707fd"><td class="memItemLeft" align="right" valign="top">#define </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#ab5bcf782e8f2fcd1404d5de3b85707fd">SGS_SECP256K1</a>   MODBYTES_256_56</td></tr> |
| <tr class="separator:ab5bcf782e8f2fcd1404d5de3b85707fd"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a9d25d694a29331ea767179901f8ae601"><td class="memItemLeft" align="right" valign="top">#define </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a9d25d694a29331ea767179901f8ae601">SFS_SECP256K1</a>   MODBYTES_256_56</td></tr> |
| <tr class="separator:a9d25d694a29331ea767179901f8ae601"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a88f5f29dd2b59260b70ffcbc5f44c326"><td class="memItemLeft" align="right" valign="top">#define </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a88f5f29dd2b59260b70ffcbc5f44c326">SCHNORR_OK</a>   0</td></tr> |
| <tr class="separator:a88f5f29dd2b59260b70ffcbc5f44c326"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a4a5402fd8a88039b3f9cad0f508eec31"><td class="memItemLeft" align="right" valign="top">#define </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a4a5402fd8a88039b3f9cad0f508eec31">SCHNORR_FAIL</a>   51</td></tr> |
| <tr class="separator:a4a5402fd8a88039b3f9cad0f508eec31"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:aacf81adc639d9529432d969dca09eb71"><td class="memItemLeft" align="right" valign="top">#define </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#aacf81adc639d9529432d969dca09eb71">SCHNORR_INVALID_ECP</a>   52</td></tr> |
| <tr class="separator:aacf81adc639d9529432d969dca09eb71"><td class="memSeparator" colspan="2"> </td></tr> |
| </table><table class="memberdecls"> |
| <tr class="heading"><td colspan="2"><h2 class="groupheader"><a name="func-members"></a> |
| Functions</h2></td></tr> |
| <tr class="memitem:ab8e7127fb5812f3592da6ebf08b57512"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#ab8e7127fb5812f3592da6ebf08b57512">SCHNORR_random_challenge</a> (csprng *RNG, octet *E)</td></tr> |
| <tr class="memdesc:ab8e7127fb5812f3592da6ebf08b57512"><td class="mdescLeft"> </td><td class="mdescRight">Generate random challenge for any Schnorr Proof. <a href="schnorr_8h.html#ab8e7127fb5812f3592da6ebf08b57512">More...</a><br /></td></tr> |
| <tr class="separator:ab8e7127fb5812f3592da6ebf08b57512"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:aa8b82a3a089695a803f100b4a861c59b"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#aa8b82a3a089695a803f100b4a861c59b">SCHNORR_commit</a> (csprng *RNG, octet *R, octet *C)</td></tr> |
| <tr class="memdesc:aa8b82a3a089695a803f100b4a861c59b"><td class="mdescLeft"> </td><td class="mdescRight">Generate a commitment for the proof. <a href="schnorr_8h.html#aa8b82a3a089695a803f100b4a861c59b">More...</a><br /></td></tr> |
| <tr class="separator:aa8b82a3a089695a803f100b4a861c59b"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a743028db55e66f4d30699e72a1b0bf1f"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a743028db55e66f4d30699e72a1b0bf1f">SCHNORR_challenge</a> (const octet *V, const octet *C, const octet *ID, const octet *AD, octet *E)</td></tr> |
| <tr class="memdesc:a743028db55e66f4d30699e72a1b0bf1f"><td class="mdescLeft"> </td><td class="mdescRight">Generate the challenge for the proof. <a href="schnorr_8h.html#a743028db55e66f4d30699e72a1b0bf1f">More...</a><br /></td></tr> |
| <tr class="separator:a743028db55e66f4d30699e72a1b0bf1f"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a874b17623254bc1701d1f25459770200"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a874b17623254bc1701d1f25459770200">SCHNORR_prove</a> (const octet *R, const octet *E, const octet *X, octet *P)</td></tr> |
| <tr class="memdesc:a874b17623254bc1701d1f25459770200"><td class="mdescLeft"> </td><td class="mdescRight">Generate the proof for the given commitment and challenge. <a href="schnorr_8h.html#a874b17623254bc1701d1f25459770200">More...</a><br /></td></tr> |
| <tr class="separator:a874b17623254bc1701d1f25459770200"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a5f6c493e5b3acdc97acb0af7a0389723"><td class="memItemLeft" align="right" valign="top">int </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a5f6c493e5b3acdc97acb0af7a0389723">SCHNORR_verify</a> (octet *V, octet *C, const octet *E, const octet *P)</td></tr> |
| <tr class="memdesc:a5f6c493e5b3acdc97acb0af7a0389723"><td class="mdescLeft"> </td><td class="mdescRight">Verify the proof of knowledge for the DLOG. <a href="schnorr_8h.html#a5f6c493e5b3acdc97acb0af7a0389723">More...</a><br /></td></tr> |
| <tr class="separator:a5f6c493e5b3acdc97acb0af7a0389723"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a20d267a63789b45faaf9b82018116268"><td class="memItemLeft" align="right" valign="top">int </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a20d267a63789b45faaf9b82018116268">SCHNORR_D_commit</a> (csprng *RNG, octet *R, octet *A, octet *B, octet *C)</td></tr> |
| <tr class="memdesc:a20d267a63789b45faaf9b82018116268"><td class="mdescLeft"> </td><td class="mdescRight">Generate a commitment for the proof. <a href="schnorr_8h.html#a20d267a63789b45faaf9b82018116268">More...</a><br /></td></tr> |
| <tr class="separator:a20d267a63789b45faaf9b82018116268"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:ad72917e4d1d2e9167c47062b4939dffb"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#ad72917e4d1d2e9167c47062b4939dffb">SCHNORR_D_challenge</a> (const octet *R, const octet *V, const octet *C, const octet *ID, const octet *AD, octet *E)</td></tr> |
| <tr class="memdesc:ad72917e4d1d2e9167c47062b4939dffb"><td class="mdescLeft"> </td><td class="mdescRight">Generate the challenge for the proof. <a href="schnorr_8h.html#ad72917e4d1d2e9167c47062b4939dffb">More...</a><br /></td></tr> |
| <tr class="separator:ad72917e4d1d2e9167c47062b4939dffb"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:a726141bddf04f630fe06e2f13a3d28e5"><td class="memItemLeft" align="right" valign="top">void </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#a726141bddf04f630fe06e2f13a3d28e5">SCHNORR_D_prove</a> (const octet *A, const octet *B, const octet *E, const octet *S, const octet *L, octet *T, octet *U)</td></tr> |
| <tr class="memdesc:a726141bddf04f630fe06e2f13a3d28e5"><td class="mdescLeft"> </td><td class="mdescRight">Generate the proof for the given commitment and challenge. <a href="schnorr_8h.html#a726141bddf04f630fe06e2f13a3d28e5">More...</a><br /></td></tr> |
| <tr class="separator:a726141bddf04f630fe06e2f13a3d28e5"><td class="memSeparator" colspan="2"> </td></tr> |
| <tr class="memitem:ab1c768caccc24700b28050962b603898"><td class="memItemLeft" align="right" valign="top">int </td><td class="memItemRight" valign="bottom"><a class="el" href="schnorr_8h.html#ab1c768caccc24700b28050962b603898">SCHNORR_D_verify</a> (octet *R, octet *V, octet *C, const octet *E, const octet *T, const octet *U)</td></tr> |
| <tr class="memdesc:ab1c768caccc24700b28050962b603898"><td class="mdescLeft"> </td><td class="mdescRight">Verify the proof of knowledge for the DLOG. <a href="schnorr_8h.html#ab1c768caccc24700b28050962b603898">More...</a><br /></td></tr> |
| <tr class="separator:ab1c768caccc24700b28050962b603898"><td class="memSeparator" colspan="2"> </td></tr> |
| </table> |
| <h2 class="groupheader">Macro Definition Documentation</h2> |
| <a id="a4a5402fd8a88039b3f9cad0f508eec31"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a4a5402fd8a88039b3f9cad0f508eec31">◆ </a></span>SCHNORR_FAIL</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">#define SCHNORR_FAIL   51</td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Invalid proof </p> |
| |
| </div> |
| </div> |
| <a id="aacf81adc639d9529432d969dca09eb71"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#aacf81adc639d9529432d969dca09eb71">◆ </a></span>SCHNORR_INVALID_ECP</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">#define SCHNORR_INVALID_ECP   52</td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Not a valid point on the curve </p> |
| |
| </div> |
| </div> |
| <a id="a88f5f29dd2b59260b70ffcbc5f44c326"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a88f5f29dd2b59260b70ffcbc5f44c326">◆ </a></span>SCHNORR_OK</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">#define SCHNORR_OK   0</td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Valid proof </p> |
| |
| </div> |
| </div> |
| <a id="a9d25d694a29331ea767179901f8ae601"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a9d25d694a29331ea767179901f8ae601">◆ </a></span>SFS_SECP256K1</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">#define SFS_SECP256K1   MODBYTES_256_56</td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Schnorr Field Size </p> |
| |
| </div> |
| </div> |
| <a id="ab5bcf782e8f2fcd1404d5de3b85707fd"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#ab5bcf782e8f2fcd1404d5de3b85707fd">◆ </a></span>SGS_SECP256K1</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">#define SGS_SECP256K1   MODBYTES_256_56</td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Schnorr Group Size </p> |
| |
| </div> |
| </div> |
| <h2 class="groupheader">Function Documentation</h2> |
| <a id="a743028db55e66f4d30699e72a1b0bf1f"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a743028db55e66f4d30699e72a1b0bf1f">◆ </a></span>SCHNORR_challenge()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_challenge </td> |
| <td>(</td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>V</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>C</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>ID</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>AD</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>E</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Compute the challenge for the proof as described in RFC8235::section-3.3</p> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">V</td><td>Public ECP of the DLOG. V = x.G. Compressed form </td></tr> |
| <tr><td class="paramname">C</td><td>Public commitment value. Compressed form </td></tr> |
| <tr><td class="paramname">ID</td><td>Prover unique identifier </td></tr> |
| <tr><td class="paramname">AD</td><td>Additional data to bind in the challenge - Optional </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge generated </td></tr> |
| </table> |
| </dd> |
| </dl> |
| |
| </div> |
| </div> |
| <a id="aa8b82a3a089695a803f100b4a861c59b"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#aa8b82a3a089695a803f100b4a861c59b">◆ </a></span>SCHNORR_commit()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_commit </td> |
| <td>(</td> |
| <td class="paramtype">csprng * </td> |
| <td class="paramname"><em>RNG</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>R</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>C</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">RNG</td><td>CSPRNG to use for commitment </td></tr> |
| <tr><td class="paramname">R</td><td>Secret value used for the commitment. If RNG is NULL this is read </td></tr> |
| <tr><td class="paramname">C</td><td>Public commitment value. An ECP </td></tr> |
| </table> |
| </dd> |
| </dl> |
| |
| </div> |
| </div> |
| <a id="ad72917e4d1d2e9167c47062b4939dffb"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#ad72917e4d1d2e9167c47062b4939dffb">◆ </a></span>SCHNORR_D_challenge()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_D_challenge </td> |
| <td>(</td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>R</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>V</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>C</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>ID</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>AD</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>E</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Compute the challenge for the proof. RFC8235::section-3.3 can not be applied here, but we try to follow closely by treating R like a secondary generator. Returns H(G, R, C, V, ID[, AD])</p> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">V</td><td>Public ECP result of the DLOG. V = s.R + l.G. Compressed form </td></tr> |
| <tr><td class="paramname">R</td><td>Public ECP base of the DLOG. Compressed form </td></tr> |
| <tr><td class="paramname">C</td><td>Public commitment value. Compressed form </td></tr> |
| <tr><td class="paramname">ID</td><td>Prover unique identifier </td></tr> |
| <tr><td class="paramname">AD</td><td>Additional data to bind in the challenge - Optional </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge generated </td></tr> |
| </table> |
| </dd> |
| </dl> |
| |
| </div> |
| </div> |
| <a id="a20d267a63789b45faaf9b82018116268"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a20d267a63789b45faaf9b82018116268">◆ </a></span>SCHNORR_D_commit()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">int SCHNORR_D_commit </td> |
| <td>(</td> |
| <td class="paramtype">csprng * </td> |
| <td class="paramname"><em>RNG</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>R</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>A</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>B</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>C</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">RNG</td><td>CSPRNG to use for commitment </td></tr> |
| <tr><td class="paramname">R</td><td>Public ECP base of the DLOG. Compressed form </td></tr> |
| <tr><td class="paramname">A</td><td>Secret value used for the commitment. If RNG is NULL this is read </td></tr> |
| <tr><td class="paramname">B</td><td>Secret value used for the commitment. If RNG is NULL this is read </td></tr> |
| <tr><td class="paramname">C</td><td>Public commitment value. An ECP in compressed form </td></tr> |
| </table> |
| </dd> |
| </dl> |
| <dl class="section return"><dt>Returns</dt><dd>SCHNORR_INVALID_ECP if R is not a valid ECP, SCHNORR_OK otherwise </dd></dl> |
| |
| </div> |
| </div> |
| <a id="a726141bddf04f630fe06e2f13a3d28e5"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a726141bddf04f630fe06e2f13a3d28e5">◆ </a></span>SCHNORR_D_prove()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_D_prove </td> |
| <td>(</td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>A</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>B</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>E</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>S</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>L</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>T</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>U</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">A</td><td>Secret value used for the commitment </td></tr> |
| <tr><td class="paramname">B</td><td>Secret value used for the commitment </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge received from the verifier </td></tr> |
| <tr><td class="paramname">S</td><td>Secret exponent of the DLOG. V = s.R + l.G </td></tr> |
| <tr><td class="paramname">L</td><td>Secret exponent of the DLOG. V = s.R + l.G </td></tr> |
| <tr><td class="paramname">T</td><td>First component of the proof of knowledge of the DLOG </td></tr> |
| <tr><td class="paramname">U</td><td>Second component of the proof of knowledge of the DLOG </td></tr> |
| </table> |
| </dd> |
| </dl> |
| |
| </div> |
| </div> |
| <a id="ab1c768caccc24700b28050962b603898"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#ab1c768caccc24700b28050962b603898">◆ </a></span>SCHNORR_D_verify()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">int SCHNORR_D_verify </td> |
| <td>(</td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>R</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>V</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>C</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>E</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>T</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>U</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">R</td><td>Public ECP base of the DLOG. Compressed form </td></tr> |
| <tr><td class="paramname">V</td><td>Public ECP of the DLOG. V = s.R + l.G. Compressed form </td></tr> |
| <tr><td class="paramname">C</td><td>Commitment value received from the prover </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge for the Schnorr Proof </td></tr> |
| <tr><td class="paramname">T</td><td>First component of the proof received </td></tr> |
| <tr><td class="paramname">U</td><td>Second component of the proof received </td></tr> |
| </table> |
| </dd> |
| </dl> |
| <dl class="section return"><dt>Returns</dt><dd>SCHNORR_OK if the prove is valid or an error code </dd></dl> |
| |
| </div> |
| </div> |
| <a id="a874b17623254bc1701d1f25459770200"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a874b17623254bc1701d1f25459770200">◆ </a></span>SCHNORR_prove()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_prove </td> |
| <td>(</td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>R</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>E</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>X</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>P</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">R</td><td>Secret value used for the commitment </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge received from the verifier </td></tr> |
| <tr><td class="paramname">X</td><td>Secret exponent of the DLOG. V = x.G </td></tr> |
| <tr><td class="paramname">P</td><td>Proof of knowledge of the DLOG </td></tr> |
| </table> |
| </dd> |
| </dl> |
| |
| </div> |
| </div> |
| <a id="ab8e7127fb5812f3592da6ebf08b57512"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#ab8e7127fb5812f3592da6ebf08b57512">◆ </a></span>SCHNORR_random_challenge()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">void SCHNORR_random_challenge </td> |
| <td>(</td> |
| <td class="paramtype">csprng * </td> |
| <td class="paramname"><em>RNG</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>E</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <p>Generate a random challenge that can be used to make any of the following Schnorr Proofs interactive. This can be used to be interoperable with other implementations. </p> |
| |
| </div> |
| </div> |
| <a id="a5f6c493e5b3acdc97acb0af7a0389723"></a> |
| <h2 class="memtitle"><span class="permalink"><a href="#a5f6c493e5b3acdc97acb0af7a0389723">◆ </a></span>SCHNORR_verify()</h2> |
| |
| <div class="memitem"> |
| <div class="memproto"> |
| <table class="memname"> |
| <tr> |
| <td class="memname">int SCHNORR_verify </td> |
| <td>(</td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>V</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">octet * </td> |
| <td class="paramname"><em>C</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>E</em>, </td> |
| </tr> |
| <tr> |
| <td class="paramkey"></td> |
| <td></td> |
| <td class="paramtype">const octet * </td> |
| <td class="paramname"><em>P</em> </td> |
| </tr> |
| <tr> |
| <td></td> |
| <td>)</td> |
| <td></td><td></td> |
| </tr> |
| </table> |
| </div><div class="memdoc"> |
| <dl class="params"><dt>Parameters</dt><dd> |
| <table class="params"> |
| <tr><td class="paramname">V</td><td>Public ECP of the DLOG. V = x.G </td></tr> |
| <tr><td class="paramname">C</td><td>Commitment value received from the prover </td></tr> |
| <tr><td class="paramname">E</td><td>Challenge for the Schnorr Proof </td></tr> |
| <tr><td class="paramname">P</td><td>Proof received from the prover </td></tr> |
| </table> |
| </dd> |
| </dl> |
| <dl class="section return"><dt>Returns</dt><dd>SCHNORR_OK if the prove is valid or an error code </dd></dl> |
| |
| </div> |
| </div> |
| </div><!-- contents --> |
| <!-- start footer part --> |
| <hr class="footer"/><address class="footer"><small> |
| Generated by <a href="https://www.doxygen.org/index.html"><img class="footer" src="doxygen.svg" width="104" height="31" alt="doxygen"/></a> 1.9.1 |
| </small></address> |
| </body> |
| </html> |