You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Joost Rijneveld 0d019ddc9f
Change order of SK elements to match RFC
6 years ago
test Prevent overrunning stack for large benchmarks 6 years ago
ui Fix OID parsing 6 years ago
.gitignore Clean up tests 7 years ago
.travis.yml Add TravisCI configuration 7 years ago
LICENSE Simplify licensing using LICENSE file 7 years ago
Makefile Add benchmarking binary/target 6 years ago
README.md Add TravisCI badge 7 years ago
fips202.c Clean up includes 7 years ago
fips202.h Perform various reformatting / renaming 7 years ago
hash.c Fix prf when n != 32 7 years ago
hash.h Rename hash functions to tweaked hashes 7 years ago
hash_address.c Make addr type switching not zero out remainder 7 years ago
hash_address.h Rename parameters for readability and consistency 7 years ago
params.c Allow more flexible parameter selection 6 years ago
params.h Allow more flexible parameter selection 6 years ago
randombytes.c Refactor for more consistent style and readability 7 years ago
randombytes.h Perform various reformatting / renaming 7 years ago
utils.c Move ull-byte-conversions to separate utils file 7 years ago
utils.h Move ull-byte-conversions to separate utils file 7 years ago
wots.c Rename hash functions to tweaked hashes 7 years ago
wots.h Fix typo in WOTS comments: n-byte messages, not m 7 years ago
xmss.c Store OID in bigendian notation in pk and sk 6 years ago
xmss.h Perform various reformatting / renaming 7 years ago
xmss_commons.c More explicitly label pk parts in verification 7 years ago
xmss_commons.h Do not expose l_tree function 7 years ago
xmss_core.c Change order of SK elements to match RFC 6 years ago
xmss_core.h Allow more flexible parameter selection 6 years ago
xmss_core_fast.c Change order of SK elements to match RFC 6 years ago

README.md

XMSS reference code Build Status

This repository contains the reference implementation that accompanies the Internet Draft “XMSS: Extended Hash-Based Signatures”, draft-irtf-cfrg-xmss-hash-based-signatures.

This reference implementation supports all parameter sets as defined in the Draft at run-time (specified by prefixing the public and private keys with a 32-bit oid). Implementations that want to use compile-time parameter sets can remove the struct xmss_params function parameter.

When using the current code base, please be careful, expect changes and watch this document for further documentation. In particular, xmss_core_fast.c is long due for a serious clean-up. While this will not change its public API or output, it may affect the storage format of the BDS state (i.e. part of the secret key).

Dependencies

For the SHA-2 hash functions (i.e. SHA-256 and SHA-512), we rely on OpenSSL. Make sure to install the OpenSSL development headers. On Debian-based systems, this is achieved by installing the OpenSSL development package libssl-dev.

License

This reference implementation was written by Andreas Hülsing and Joost Rijneveld. All included code is available under the CC0 1.0 Universal Public Domain Dedication.