Documentation ¶
Overview ¶
Package secp256k1 wraps the bitcoin secp256k1 C library.
Index ¶
- Variables
- func CompressPubkey(keytype string, x, y *big.Int) []byte
- func DecompressPubkey(pubkey []byte) (x, y *big.Int)
- func Get_ecdsa_sign_v(rx *big.Int, ry *big.Int) int
- func MathReadBits(bigint *big.Int, buf []byte)
- func RecoverPubkey(msg []byte, sig []byte) ([]byte, error)
- func Sign(msg []byte, seckey []byte) ([]byte, error)
- func VerifySignature(pubkey, msg, signature []byte) bool
- type BitCurve
- func (BitCurve *BitCurve) Add(x1, y1, x2, y2 *big.Int) (*big.Int, *big.Int)
- func (BitCurve *BitCurve) Double(x1, y1 *big.Int) (*big.Int, *big.Int)
- func (bitCurve *BitCurve) GX() *big.Int
- func (bitCurve *BitCurve) GY() *big.Int
- func (bitCurve *BitCurve) GetY(x *big.Int) *big.Int
- func (BitCurve *BitCurve) IsOnCurve(x, y *big.Int) bool
- func (BitCurve *BitCurve) KMulG(k []byte) (*big.Int, *big.Int)
- func (BitCurve *BitCurve) Marshal(x, y *big.Int) []byte
- func (bitCurve *BitCurve) N1() *big.Int
- func (bitCurve *BitCurve) N3() *big.Int
- func (BitCurve *BitCurve) Params() *elliptic.CurveParams
- func (BitCurve *BitCurve) ScalarBaseMult(k []byte) (*big.Int, *big.Int)
- func (BitCurve *BitCurve) ScalarMult(Bx, By *big.Int, scalar []byte) (*big.Int, *big.Int)
- func (BitCurve *BitCurve) Unmarshal(data []byte) (x, y *big.Int)
- type EC256Curve
- type StarkCurve
- func (starkCurve *StarkCurve) Add(x1, y1, x2, y2 *big.Int) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) Double(x1, y1 *big.Int) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) GX() *big.Int
- func (starkCurve *StarkCurve) GY() *big.Int
- func (starkCurve *StarkCurve) GetY(x *big.Int) *big.Int
- func (starkCurve *StarkCurve) IsOnCurve(x, y *big.Int) bool
- func (starkCurve *StarkCurve) KMulG(k []byte) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) Marshal(x, y *big.Int) []byte
- func (starkCurve *StarkCurve) N1() *big.Int
- func (starkCurve *StarkCurve) N3() *big.Int
- func (starkCurve *StarkCurve) Params() *elliptic.CurveParams
- func (starkCurve *StarkCurve) ScalarBaseMult(k []byte) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) ScalarMult(Bx, By *big.Int, k []byte) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) ScalarMultInt(Bx, By, kInt *big.Int) (*big.Int, *big.Int)
- func (starkCurve *StarkCurve) Unmarshal(data []byte) (x, y *big.Int)
Constants ¶
This section is empty.
Variables ¶
var ( ErrInvalidMsgLen = errors.New("invalid message length, need 32 bytes") ErrInvalidSignatureLen = errors.New("invalid signature length") ErrInvalidRecoveryID = errors.New("invalid signature recovery id") ErrInvalidKey = errors.New("invalid private key") ErrInvalidPubkey = errors.New("invalid public key") ErrSignFailed = errors.New("signing failed") ErrRecoverFailed = errors.New("recovery failed") )
Functions ¶
func CompressPubkey ¶
CompressPubkey encodes a public key to 33-byte compressed format.
func DecompressPubkey ¶
DecompressPubkey parses a public key in the 33-byte compressed format. It returns non-nil coordinates if the public key is valid.
func MathReadBits ¶
MathReadBits encodes the absolute value of bigint as big-endian bytes. Callers must ensure that buf has enough space. If buf is too short the result will be incomplete.
func RecoverPubkey ¶
RecoverPubkey returns the public key of the signer. msg must be the 32-byte hash of the message to be signed. sig must be a 65-byte compact ECDSA signature containing the recovery id as the last element.
func Sign ¶
Sign creates a recoverable ECDSA signature. The produced signature is in the 65-byte [R || S || V] format where V is 0 or 1.
The caller is responsible for ensuring that msg cannot be chosen directly by an attacker. It is usually preferable to use a cryptographic hash function on any input before handing it to this function.
func VerifySignature ¶
VerifySignature checks that the given pubkey created signature over message. The signature should be in [R || S] format.
Types ¶
type BitCurve ¶
type BitCurve struct { P *big.Int // the order of the underlying field N *big.Int // the order of the base point B *big.Int // the constant of the BitCurve equation Gx, Gy *big.Int // (x,y) of the base point BitSize int // the size of the underlying field }
A BitCurve represents a Koblitz Curve with a=0. See http://www.hyperelliptic.org/EFD/g1p/auto-shortw.html
func (*BitCurve) Marshal ¶
Marshal converts a point into the form specified in section 4.3.6 of ANSI X9.62.
func (*BitCurve) Params ¶
func (BitCurve *BitCurve) Params() *elliptic.CurveParams
func (*BitCurve) ScalarBaseMult ¶
ScalarBaseMult returns k*G, where G is the base point of the group and k is an integer in big-endian form.
func (*BitCurve) ScalarMult ¶
type EC256Curve ¶
type EC256Curve interface { Params() *elliptic.CurveParams IsOnCurve(x, y *big.Int) bool Add(x1, y1, x2, y2 *big.Int) (*big.Int, *big.Int) Double(x1, y1 *big.Int) (*big.Int, *big.Int) ScalarMult(Bx, By *big.Int, scalar []byte) (*big.Int, *big.Int) ScalarBaseMult(k []byte) (*big.Int, *big.Int) Marshal(x, y *big.Int) []byte Unmarshal(data []byte) (x, y *big.Int) KMulG(k []byte) (*big.Int, *big.Int) N1() *big.Int N3() *big.Int GX() *big.Int GY() *big.Int GetY(x *big.Int) *big.Int }
func S256 ¶
func S256(keytype string) EC256Curve
S256 returns a BitCurve which implements secp256k1.
type StarkCurve ¶
type StarkCurve struct { P *big.Int N *big.Int Alpha, Beta *big.Int Gx, Gy *big.Int BitSize int // the size of the underlying field ShiftPointx, ShiftPointy *big.Int MinusShiftPointx, MinusShiftPointy *big.Int Max *big.Int }
Stark Curve, see https://docs.starkware.co/starkex-v4/crypto/stark-curve y^2 = x^3 + alpha*x + beta (mod p)
func (*StarkCurve) GX ¶
func (starkCurve *StarkCurve) GX() *big.Int
func (*StarkCurve) GY ¶
func (starkCurve *StarkCurve) GY() *big.Int
func (*StarkCurve) IsOnCurve ¶
func (starkCurve *StarkCurve) IsOnCurve(x, y *big.Int) bool
IsOnCurve returns true if the given (x,y) lies on the Stark Curve.
func (*StarkCurve) Marshal ¶
func (starkCurve *StarkCurve) Marshal(x, y *big.Int) []byte
Marshal converts a point into the form specified in section 4.3.6 of ANSI X9.62.
func (*StarkCurve) N1 ¶
func (starkCurve *StarkCurve) N1() *big.Int
func (*StarkCurve) N3 ¶
func (starkCurve *StarkCurve) N3() *big.Int
func (*StarkCurve) Params ¶
func (starkCurve *StarkCurve) Params() *elliptic.CurveParams
func (*StarkCurve) ScalarBaseMult ¶
ScalarBaseMult returns k*G, where G is the base point of the group and k is an integer in big-endian form.
func (*StarkCurve) ScalarMult ¶
ScalarBaseMult returns k*B, where B is a curve point and k is an integer in byte array of big-endian form.
func (*StarkCurve) ScalarMultInt ¶
ScalarBaseMult returns k*B, where B is a curve point and kInt is an integer in big.Int form.