mirror of
https://github.com/bitcoin/bitcoin.git
synced 2025-02-15 11:36:00 -05:00
![Pieter Wuille](/assets/img/avatar_default.png)
4258c54f4e Merge bitcoin-core/secp256k1#1276: autotools: Don't regenerate Wycheproof header automatically 06c67dea9f autotools: Don't regenerate Wycheproof header automatically 3bab71cf05 Merge bitcoin-core/secp256k1#1268: release cleanup: bump version after 0.3.1 656c6ea8d8 release cleanup: bump version after 0.3.1 346a053d4c Merge bitcoin-core/secp256k1#1269: changelog: Fix link 6a37b2a5ea changelog: Fix link ec98fcedd5 Merge bitcoin-core/secp256k1#1266: release: Prepare for 0.3.1 898e1c676e release: Prepare for 0.3.1 1d9a13fc26 changelog: Remove inconsistent newlines 0e091669a1 changelog: Catch up in preparation of 0.3.1 7b7503dac5 Merge bitcoin-core/secp256k1#1245: tests: Add Wycheproof ECDSA vectors 145078c418 Merge bitcoin-core/secp256k1#1118: Add x-only ecmult_const version with x specified as n/d e5de454609 tests: Add Wycheproof ECDSA vectors 0f8642079b Add exhaustive tests for ecmult_const_xonly 4485926ace Add x-only ecmult_const version for x=n/d a0f4644f7e Merge bitcoin-core/secp256k1#1252: Make position of * in pointer declarations in include/ consistent 4e682626a3 Merge bitcoin-core/secp256k1#1226: Add CMake instructions to release process 2d51a454fc Merge bitcoin-core/secp256k1#1257: ct: Use volatile "trick" in all fe/scalar cmov implementations 4a496a36fb ct: Use volatile "trick" in all fe/scalar cmov implementations 3d1f430f9f Make position of * in pointer declarations in include/ consistent 2bca0a5cbf Merge bitcoin-core/secp256k1#1241: build: Improve `SECP_TRY_APPEND_DEFAULT_CFLAGS` macro afd8b23b27 Merge bitcoin-core/secp256k1#1244: Suppress `-Wunused-parameter` when building for coverage analysis 1d8f367515 Merge bitcoin-core/secp256k1#1250: No need to subtract 1 before doing a right shift 3e43041be6 No need to subtract 1 before doing a right shift 3addb4c1e8 build: Improve `SECP_TRY_APPEND_DEFAULT_CFLAGS` macro 0c07c82834 Add CMake instructions to release process 464a9115b4 Merge bitcoin-core/secp256k1#1242: Set ARM ASM symbol visibility to `hidden` f16a709fd6 Merge bitcoin-core/secp256k1#1247: Apply Checks only in VERIFY mode. 70be3cade5 Merge bitcoin-core/secp256k1#1246: Typo 4ebd82852d Apply Checks only in VERIFY mode. d1e7ca192d Typo 5bb03c2911 Replace `SECP256K1_ECMULT_TABLE_VERIFY` macro by a function 9c8c4f443c Merge bitcoin-core/secp256k1#1238: build: bump CMake minimum requirement to 3.13 0cf2fb91ef Merge bitcoin-core/secp256k1#1243: build: Ensure no optimization when building for coverage analysis fd2a408647 Set ARM ASM symbol visibility to `hidden` 4429a8c218 Suppress `-Wunused-parameter` when building for coverage analysis 8e79c7ed11 build: Ensure no optimization when building for coverage analysis 96dd062511 build: bump CMake minimum requirement to 3.13 427bc3cdcf Merge bitcoin-core/secp256k1#1236: Update comment for secp256k1_modinv32_inv256 647f0a5cb1 Update comment for secp256k1_modinv32_inv256 5658209459 Merge bitcoin-core/secp256k1#1228: release cleanup: bump version after 0.3.0 28e63f7ea7 release cleanup: bump version after 0.3.0 git-subtree-dir: src/secp256k1 git-subtree-split: 4258c54f4ebfc09390168e8a43306c46b315134b
63 lines
2.5 KiB
C
63 lines
2.5 KiB
C
#ifndef SECP256K1_ECDH_H
|
|
#define SECP256K1_ECDH_H
|
|
|
|
#include "secp256k1.h"
|
|
|
|
#ifdef __cplusplus
|
|
extern "C" {
|
|
#endif
|
|
|
|
/** A pointer to a function that hashes an EC point to obtain an ECDH secret
|
|
*
|
|
* Returns: 1 if the point was successfully hashed.
|
|
* 0 will cause secp256k1_ecdh to fail and return 0.
|
|
* Other return values are not allowed, and the behaviour of
|
|
* secp256k1_ecdh is undefined for other return values.
|
|
* Out: output: pointer to an array to be filled by the function
|
|
* In: x32: pointer to a 32-byte x coordinate
|
|
* y32: pointer to a 32-byte y coordinate
|
|
* data: arbitrary data pointer that is passed through
|
|
*/
|
|
typedef int (*secp256k1_ecdh_hash_function)(
|
|
unsigned char *output,
|
|
const unsigned char *x32,
|
|
const unsigned char *y32,
|
|
void *data
|
|
);
|
|
|
|
/** An implementation of SHA256 hash function that applies to compressed public key.
|
|
* Populates the output parameter with 32 bytes. */
|
|
SECP256K1_API_VAR const secp256k1_ecdh_hash_function secp256k1_ecdh_hash_function_sha256;
|
|
|
|
/** A default ECDH hash function (currently equal to secp256k1_ecdh_hash_function_sha256).
|
|
* Populates the output parameter with 32 bytes. */
|
|
SECP256K1_API_VAR const secp256k1_ecdh_hash_function secp256k1_ecdh_hash_function_default;
|
|
|
|
/** Compute an EC Diffie-Hellman secret in constant time
|
|
*
|
|
* Returns: 1: exponentiation was successful
|
|
* 0: scalar was invalid (zero or overflow) or hashfp returned 0
|
|
* Args: ctx: pointer to a context object.
|
|
* Out: output: pointer to an array to be filled by hashfp.
|
|
* In: pubkey: a pointer to a secp256k1_pubkey containing an initialized public key.
|
|
* seckey: a 32-byte scalar with which to multiply the point.
|
|
* hashfp: pointer to a hash function. If NULL,
|
|
* secp256k1_ecdh_hash_function_sha256 is used
|
|
* (in which case, 32 bytes will be written to output).
|
|
* data: arbitrary data pointer that is passed through to hashfp
|
|
* (can be NULL for secp256k1_ecdh_hash_function_sha256).
|
|
*/
|
|
SECP256K1_API SECP256K1_WARN_UNUSED_RESULT int secp256k1_ecdh(
|
|
const secp256k1_context *ctx,
|
|
unsigned char *output,
|
|
const secp256k1_pubkey *pubkey,
|
|
const unsigned char *seckey,
|
|
secp256k1_ecdh_hash_function hashfp,
|
|
void *data
|
|
) SECP256K1_ARG_NONNULL(1) SECP256K1_ARG_NONNULL(2) SECP256K1_ARG_NONNULL(3) SECP256K1_ARG_NONNULL(4);
|
|
|
|
#ifdef __cplusplus
|
|
}
|
|
#endif
|
|
|
|
#endif /* SECP256K1_ECDH_H */
|