You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Joost Rijneveld bbbb95e869
Fix erroneous index length for XMSSMT
7 years ago
test Also fix underflow for XMSSMT 7 years ago
.gitignore Add test to check deterministic signatures 7 years ago
LICENSE Simplify licensing using LICENSE file 7 years ago
Makefile Add test to check deterministic signatures 7 years ago
README.md Document and simplify library usage 7 years ago
fips202.c Clean up includes 7 years ago
fips202.h Perform various reformatting / renaming 7 years ago
hash.c Reorder ull_to_bytes parameters to group output 7 years ago
hash.h Perform various reformatting / renaming 7 years ago
hash_address.c Combine auth path and keygen root functions 7 years ago
hash_address.h Abstract address types into macro constants 7 years ago
params.c Fix erroneous index length for XMSSMT 7 years ago
params.h Perform various reformatting / renaming 7 years ago
randombytes.c Refactor for more consistent style and readability 7 years ago
randombytes.h Perform various reformatting / renaming 7 years ago
wots.c Reorder ull_to_bytes parameters to group output 7 years ago
wots.h Refactor and deduplicate WOTS 7 years ago
xmss.c Revert to using runtime-only parameter struct 7 years ago
xmss.h Perform various reformatting / renaming 7 years ago
xmss_commons.c Abstract address types into macro constants 7 years ago
xmss_commons.h Clean up signing functions 7 years ago
xmss_core.c Fix erroneous index length for XMSSMT 7 years ago
xmss_core.h Perform various reformatting / renaming 7 years ago
xmss_core_fast.c Reorder ull_to_bytes parameters to group output 7 years ago
xmss_core_fast.h Simplify licensing using LICENSE file 7 years ago

README.md

XMSS reference code

This repository contains the reference implementation that accompanies the Internet Draft “XMSS: Extended Hash-Based Signatures”, draft-irtf-cfrg-xmss-hash-based-signatures.

This reference implementation supports all parameter sets as defined in the Draft at run-time (specified by prefixing the public and private keys with a 32-bit oid). Implementations that want to use compile-time parameter sets can remove the struct xmss_params function parameter.

While the behavior of the code in this repository is supposed to be stable, the API is not yet fully complete. In particular, the wrapper for run-time parameters does not yet support the back-end functions that make use of BDS traversal (TODO). We will also add more extensive test functionality, making it easier to compare to other XMSS implementations (TODO).

When using the current code base, please be careful, expect changes and watch this document for further documentation.

Dependencies

For the SHA-2 hash functions (i.e. SHA-256 and SHA-512), we rely on OpenSSL. Make sure to install the OpenSSL development headers. On Debian-based systems, this is achieved by installing the OpenSSL development package libssl-dev.

License

This reference implementation was written by Andreas Hülsing and Joost Rijneveld. All included code is available under the CC0 1.0 Universal Public Domain Dedication.