Ви не можете вибрати більше 25 тем Теми мають розпочинатися з літери або цифри, можуть містити дефіси (-) і не повинні перевищувати 35 символів.
Joost Rijneveld fb7e3f8edc
Add note on deploying reference code
5 роки тому
test Prevent overrunning stack for large benchmarks 6 роки тому
ui Fix OID parsing 6 роки тому
.gitignore Clean up tests 7 роки тому
.travis.yml Add TravisCI configuration 7 роки тому
LICENSE Simplify licensing using LICENSE file 7 роки тому
Makefile Add benchmarking binary/target 6 роки тому
README.md Add note on deploying reference code 5 роки тому
fips202.c Clean up includes 7 роки тому
fips202.h Perform various reformatting / renaming 7 роки тому
hash.c Fix prf when n != 32 7 роки тому
hash.h Rename hash functions to tweaked hashes 7 роки тому
hash_address.c Make addr type switching not zero out remainder 7 роки тому
hash_address.h Rename parameters for readability and consistency 7 роки тому
params.c Allow more flexible parameter selection 6 роки тому
params.h Allow more flexible parameter selection 6 роки тому
randombytes.c Refactor for more consistent style and readability 7 роки тому
randombytes.h Perform various reformatting / renaming 7 роки тому
utils.c Move ull-byte-conversions to separate utils file 7 роки тому
utils.h Move ull-byte-conversions to separate utils file 7 роки тому
wots.c Rename hash functions to tweaked hashes 7 роки тому
wots.h Fix typo in WOTS comments: n-byte messages, not m 7 роки тому
xmss.c Store OID in bigendian notation in pk and sk 6 роки тому
xmss.h Perform various reformatting / renaming 7 роки тому
xmss_commons.c More explicitly label pk parts in verification 6 роки тому
xmss_commons.h Do not expose l_tree function 6 роки тому
xmss_core.c Change order of SK elements to match RFC 5 роки тому
xmss_core.h Allow more flexible parameter selection 6 роки тому
xmss_core_fast.c Change order of SK elements to match RFC 5 роки тому

README.md

XMSS reference code Build Status

This repository contains the reference implementation that accompanies RFC 8391: “XMSS: eXtended Merkle Signature Scheme”.

This reference implementation supports all parameter sets as defined in the RFC at run-time (specified by prefixing the public and private keys with a 32-bit oid). Implementations that want to use compile-time parameter sets can remove the struct xmss_params function parameter, and globally replace the use of its attributes by compile-time constants.

Please note that this reference implementation is intended for cross-validation and experimenting. Deploying cryptographic code in practice requires careful consideration of the specific deployment scenario and relevant threat model. This holds perhaps doubly so for stateful signature schemes such as XMSS.

When using the current code base, please be careful, expect changes and watch this document for further documentation. In particular, xmss_core_fast.c is long due for a serious clean-up. While this will not change its public API or output, it may affect the storage format of the BDS state (i.e. part of the secret key).

Dependencies

For the SHA-2 hash functions (i.e. SHA-256 and SHA-512), we rely on OpenSSL. Make sure to install the OpenSSL development headers. On Debian-based systems, this is achieved by installing the OpenSSL development package libssl-dev.

License

This reference implementation was written by Andreas Hülsing and Joost Rijneveld. All included code is available under the CC0 1.0 Universal Public Domain Dedication.