Joost Rijneveld
1a7df37f59
Add accidentally omitted params.h
Previously this was generated and thus gitignored
7 years ago
Joost Rijneveld
6a8571d880
Revert to using runtime-only parameter struct
Using global defines for parameters (as seems to be typical in
academic crypto code) does not play nice with multithreading at all.
7 years ago
Joost Rijneveld
2f87bf5a1f
Simplify runtime parameter globals
7 years ago
Joost Rijneveld
9d5884e120
Refactor for more consistent style and readability
7 years ago
Joost Rijneveld
1076b37321
Remove stray zerobytes
7 years ago
Joost Rijneveld
3134fafd91
Merge branch 'master' into defined-parameters
The defined-parameters branch should be the new leading branch,
as it supersedes master. This merge is performed using --strategy ours
as there are numerous conflicting changes regarding the different ways
in which SHA3 was added. The master branch is considered to not contain
anything of value that is not contained in the defined-parameters branch.
Prior to merging, the defined-parameters branch was rebased to prevent
the cherry-picked commits from showing up twice.
7 years ago
Joost Rijneveld
7fbd28a78b
Clarify status of run-time parameter selection
7 years ago
Joost Rijneveld
9b35b00d98
Add wrapper that allows for runtime parameters
7 years ago
Joost Rijneveld
65ee8202d8
Refactor to prepare for runtime parameters
7 years ago
Joost Rijneveld
1e041f25d5
Simplify hash family parameter definition
7 years ago
Joost Rijneveld
073e093ce0
Remove unused leafaddr structures
7 years ago
Joost Rijneveld
3ea7e8ace3
Mention branch-specific purpose on README
7 years ago
Joost Rijneveld
b8ec30fc2c
Clarify compile-time parameters in README
7 years ago
Joost Rijneveld
0986ceb2b7
Add README file mentioning XDR
7 years ago
Joost Rijneveld
3c0f6668ef
Add parameter for hash alg family, support SHAKE
7 years ago
Joost Rijneveld
880cfaa2d3
Remove stray local kdev config files
7 years ago
Andreas
dd067bd23e
some old changes
7 years ago
Joost Rijneveld
8befb0d550
Add SHAKE128 and SHAKE256
This also performs numerous consistency fixes
7 years ago
Joost Rijneveld
5122ac6f73
Reduce code duplication
A large number of functions was repeated in xmss_fast; these are now
shared between the two implementations via the xmss_commons file.
Notably, we ensure compatability by sharing the verification functions.
7 years ago
Joost Rijneveld
1e00c92c18
Refactor to use compile-time parameter sets
This starts a cleanup / refactor, but there is still some low-hanging fruit.
7 years ago
Joost Rijneveld
d4bc8656e3
Fix bug in addressing during fast xmssmt key gen
7 years ago
Andreas
9f512fa8dc
v06
8 years ago
Andreas
ddddfd9739
handle that most machines are little endian but addresses here are big endian...
8 years ago
Andreas
2c290d39be
upgraded to draft-06
8 years ago
Andreas
2b73688b7c
fixed endianess for toByte and base_w
8 years ago
Andreas
c37b9dcfca
SWITCH from v01 to v03
Versions are incompatible due to different address formats and differing message compression!
8 years ago
Andreas
59a4846fbd
changed version date
Merge branch 'master' of bitbucket.org:ahuelsing/xmss_ref
8 years ago
Andreas
622a9513b1
local changes
8 years ago
Joost Rijneveld
c1f0721f4a
Also fix int overflow for systems with 4-byte ULs
8 years ago
Joost Rijneveld
951848fe89
Remove redundant address changes
8 years ago
Joost Rijneveld
e2f1cee548
Fix error for d=1 cases as introduced by 719cb46
8 years ago
Joost Rijneveld
1e503b665e
Make codestyle more consistent, fix -Wextra warns
8 years ago
Joost Rijneveld
719cb467df
Prevent allocating for a 'next' tree on top layer
8 years ago
Joost Rijneveld
8cbbfe0f05
Prevent int overflow for h >= 32
8 years ago
Joost Rijneveld
97331f09c0
Fix update bug (partially re-implement BDS)
The bug occured for cases where d=3 and indicated
a lack of updates. Re-implementing the higher-level
structure of BDS resolved this.
8 years ago
Joost Rijneveld
17c5b2842f
Make address masks more explicit and strict
8 years ago
Andreas
077e57f60e
fixed bug in address for WOTS Key
9 years ago
Andreas
9d9b782ff9
added support for n = m = 64
9 years ago
Joost Rijneveld
05c52526c6
Uncomment lcrypto in chacha_test
9 years ago
Joost Rijneveld
f5a5231c72
Do not perform bds_round for the last leaf
9 years ago
Joost Rijneveld
c2807695e8
Make test_xmss_fast stack large enough for pkgen
9 years ago
Andreas
cb05927c24
corrected test cases
9 years ago
Joost Rijneveld
594d67aeb9
Use proper size limits for state structures
9 years ago
Joost Rijneveld
2af61cea82
Check if a NEXT-tree exists before updating it
9 years ago
Joost Rijneveld
4c19fe61e4
Make XMSSMT also use BDS tree traversal
9 years ago
Joost Rijneveld
a075747462
Store BDS state in passable struct, not in globals
9 years ago
Joost Rijneveld
a33aef699c
Adhere to more strict storage bounds
9 years ago
Joost Rijneveld
5d469d118f
Use BDS for auth paths in XMSS (but not XMSSMT yet)
9 years ago
Joost Rijneveld
3b75e0e133
Make xmss and xmss_fast test verify each signature
9 years ago
Joost Rijneveld
6ee57d1883
Make auth tree computation stop at the root
9 years ago