tbls

package
v3.7.4 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Apr 9, 2022 License: MPL-2.0 Imports: 5 Imported by: 0

Documentation

Overview

Package tbls implements the (t,n)-threshold Boneh-Lynn-Shacham signature scheme. During setup a group of n participants runs a distributed key generation algorithm (see kyber/share/dkg) to compute a joint public signing key X and one secret key share xi for each of the n signers. To compute a signature S on a message m, at least t ouf of n signers have to provide partial (BLS) signatures Si on m using their individual key shares xi which can then be used to recover the full (regular) BLS signature S via Lagrange interpolation. The signature S can be verified with the initially established group key X. Signatures are points on curve G1 and public keys are points on curve G2.

Index

Constants

This section is empty.

Variables

This section is empty.

Functions

func Recover

func Recover(suite pairing.Suite, public *share.PubPoly, msg []byte, sigs [][]byte, t, n int) ([]byte, error)

Recover reconstructs the full BLS signature S = x * H(m) from a threshold t of signature shares Si using Lagrange interpolation. The full signature S can be verified through the regular BLS verification routine using the shared public key X. The shared public key can be computed by evaluating the public sharing polynomial at index 0.

func Sign

func Sign(suite pairing.Suite, private *share.PriShare, msg []byte) ([]byte, error)

Sign creates a threshold BLS signature Si = xi * H(m) on the given message m using the provided secret key share xi.

func Verify

func Verify(suite pairing.Suite, public *share.PubPoly, msg, sig []byte) error

Verify checks the given threshold BLS signature Si on the message m using the public key share Xi that is associated to the secret key share xi. This public key share Xi can be computed by evaluating the public sharing polynonmial at the share's index i.

Types

type SigShare

type SigShare []byte

SigShare encodes a threshold BLS signature share Si = i || v where the 2-byte big-endian value i corresponds to the share's index and v represents the share's value. The signature share Si is a point on curve G1.

func (SigShare) Index

func (s SigShare) Index() (int, error)

Index returns the index i of the TBLS share Si.

func (*SigShare) Value

func (s *SigShare) Value() []byte

Value returns the value v of the TBLS share Si.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL