2014-04-22 15:36:18 -07:00
|
|
|
var ECKey = require('../../browser/vendor-bundle.js').ECKey;
|
2014-04-22 18:43:22 -07:00
|
|
|
var SecureRandom = require('../SecureRandom');
|
2014-04-23 17:15:55 -07:00
|
|
|
var Curve = require('../Curve');
|
2014-05-06 23:14:10 -07:00
|
|
|
var bignum = require('bignum');
|
2014-07-04 13:11:52 -07:00
|
|
|
var elliptic = require('elliptic');
|
2014-04-20 07:19:54 -07:00
|
|
|
|
|
|
|
var Key = function() {
|
|
|
|
this._pub = null;
|
2014-04-23 17:15:55 -07:00
|
|
|
this._compressed = true; // default
|
2014-04-20 07:19:54 -07:00
|
|
|
};
|
|
|
|
|
|
|
|
var bufferToArray = Key.bufferToArray = function(buffer) {
|
|
|
|
var ret = [];
|
|
|
|
|
|
|
|
var l = buffer.length;
|
2014-06-23 10:57:02 -07:00
|
|
|
for (var i = 0; i < l; i++) {
|
2014-04-20 07:19:54 -07:00
|
|
|
ret.push(buffer.readUInt8(i));
|
|
|
|
}
|
|
|
|
|
|
|
|
return ret;
|
|
|
|
}
|
|
|
|
|
|
|
|
Object.defineProperty(Key.prototype, 'public', {
|
2014-06-23 10:57:02 -07:00
|
|
|
set: function(p) {
|
|
|
|
if (!Buffer.isBuffer(p)) {
|
2014-04-20 07:19:54 -07:00
|
|
|
throw new Error('Arg should be a buffer');
|
|
|
|
}
|
|
|
|
var type = p[0];
|
2014-06-23 10:57:02 -07:00
|
|
|
this._compressed = type !== 0x04;
|
2014-04-20 07:19:54 -07:00
|
|
|
this._pub = p;
|
|
|
|
},
|
2014-06-23 10:57:02 -07:00
|
|
|
get: function() {
|
2014-04-20 07:19:54 -07:00
|
|
|
return this._pub;
|
|
|
|
}
|
|
|
|
});
|
|
|
|
|
2014-04-23 17:15:55 -07:00
|
|
|
Object.defineProperty(Key.prototype, 'compressed', {
|
|
|
|
set: function(c) {
|
|
|
|
var oldc = this._compressed;
|
|
|
|
this._compressed = !!c;
|
|
|
|
if (oldc == this._compressed)
|
|
|
|
return;
|
|
|
|
var oldp = this._pub;
|
|
|
|
if (this._pub) {
|
|
|
|
var eckey = new ECKey();
|
|
|
|
eckey.setPub(bufferToArray(this.public));
|
|
|
|
eckey.setCompressed(this._compressed);
|
|
|
|
this._pub = new Buffer(eckey.getPub());
|
|
|
|
}
|
|
|
|
if (!this._compressed) {
|
|
|
|
//bug in eckey
|
|
|
|
//oldp.slice(1).copy(this._pub, 1);
|
|
|
|
}
|
|
|
|
},
|
|
|
|
get: function() {
|
|
|
|
return this._compressed;
|
|
|
|
}
|
|
|
|
});
|
|
|
|
|
2014-04-20 07:19:54 -07:00
|
|
|
Key.generateSync = function() {
|
2014-04-23 17:15:55 -07:00
|
|
|
var privbuf;
|
|
|
|
|
2014-06-23 10:57:02 -07:00
|
|
|
while (true) {
|
2014-04-23 17:15:55 -07:00
|
|
|
privbuf = SecureRandom.getRandomBuffer(32);
|
2014-06-23 10:57:02 -07:00
|
|
|
if ((bignum.fromBuffer(privbuf, {
|
|
|
|
size: 32
|
|
|
|
})).cmp(Curve.getN()) < 0)
|
2014-04-23 17:15:55 -07:00
|
|
|
break;
|
|
|
|
}
|
|
|
|
|
2014-04-22 18:43:22 -07:00
|
|
|
var privhex = privbuf.toString('hex');
|
|
|
|
var eck = new ECKey(privhex);
|
2014-04-20 07:19:54 -07:00
|
|
|
eck.setCompressed(true);
|
|
|
|
var pub = eck.getPub();
|
|
|
|
|
2014-04-22 18:43:22 -07:00
|
|
|
ret = new Key();
|
|
|
|
ret.private = privbuf;
|
2014-04-23 17:15:55 -07:00
|
|
|
ret._compressed = true;
|
2014-04-22 18:43:22 -07:00
|
|
|
ret.public = new Buffer(eck.getPub());
|
|
|
|
|
2014-04-20 07:19:54 -07:00
|
|
|
return ret;
|
|
|
|
};
|
|
|
|
|
|
|
|
Key.prototype.regenerateSync = function() {
|
|
|
|
if (!this.private) {
|
|
|
|
throw new Error('Key does not have a private key set');
|
|
|
|
}
|
|
|
|
|
2014-07-04 13:11:52 -07:00
|
|
|
var ec = elliptic.curves.secp256k1;
|
|
|
|
var g = ec.g;
|
|
|
|
var ecp = ec.g.mul(this.private);
|
|
|
|
var x = new bignum(ecp.x.toArray());
|
|
|
|
var y = new bignum(ecp.y.toArray());
|
|
|
|
var p = new Point(x, y);
|
|
|
|
if (this.compressed)
|
|
|
|
this._pub = p.toCompressedPubKey();
|
|
|
|
else
|
|
|
|
this._pub = p.toUncompressedPubKey();
|
|
|
|
|
2014-04-20 07:19:54 -07:00
|
|
|
return this;
|
|
|
|
};
|
|
|
|
|
|
|
|
Key.prototype.signSync = function(hash) {
|
2014-07-05 16:05:38 -07:00
|
|
|
/*
|
2014-04-25 11:00:51 -07:00
|
|
|
var getSECCurveByName = require('../../browser/vendor-bundle.js').getSECCurveByName;
|
|
|
|
var BigInteger = require('../../browser/vendor-bundle.js').BigInteger;
|
|
|
|
var rng = new SecureRandom();
|
|
|
|
var ecparams = getSECCurveByName('secp256k1');
|
2014-07-05 16:05:38 -07:00
|
|
|
*/
|
|
|
|
var ec = elliptic.curves.secp256k1;
|
2014-04-25 11:00:51 -07:00
|
|
|
|
2014-07-05 16:05:38 -07:00
|
|
|
var genk = function() {
|
|
|
|
//TODO: account for when >= n
|
|
|
|
return new bignum(SecureRandom.getRandomBuffer(8));
|
2014-04-25 11:00:51 -07:00
|
|
|
};
|
2014-06-23 10:57:02 -07:00
|
|
|
|
|
|
|
var sign = function(hash, priv) {
|
2014-04-25 11:00:51 -07:00
|
|
|
var d = priv;
|
2014-07-05 16:05:38 -07:00
|
|
|
//var n = ecparams.getN();
|
|
|
|
var n = ec.n;
|
|
|
|
//var e = BigInteger.fromByteArrayUnsigned(hash);
|
|
|
|
var e = new bignum(hash);
|
2014-04-25 11:00:51 -07:00
|
|
|
|
|
|
|
do {
|
2014-07-05 16:05:38 -07:00
|
|
|
var k = genk();
|
|
|
|
var G = ec.g;
|
|
|
|
var Q = G.mul(k);
|
|
|
|
var r = Q.getX().mod(n);
|
|
|
|
var s = k.invm(n).mul(e.add(d.mul(r))).mod(n);
|
|
|
|
} while (r.cmp(new bignum(0)) <= 0 || s.cmp(new bignum(0)) <= 0);
|
2014-04-25 11:00:51 -07:00
|
|
|
|
|
|
|
return serializeSig(r, s);
|
|
|
|
};
|
|
|
|
|
2014-06-23 10:57:02 -07:00
|
|
|
var serializeSig = function(r, s) {
|
2014-07-05 16:05:38 -07:00
|
|
|
var rBa = r.toArray();
|
|
|
|
var sBa = s.toArray();
|
2014-04-25 11:00:51 -07:00
|
|
|
|
|
|
|
var sequence = [];
|
|
|
|
sequence.push(0x02); // INTEGER
|
|
|
|
sequence.push(rBa.length);
|
|
|
|
sequence = sequence.concat(rBa);
|
|
|
|
|
|
|
|
sequence.push(0x02); // INTEGER
|
|
|
|
sequence.push(sBa.length);
|
|
|
|
sequence = sequence.concat(sBa);
|
|
|
|
|
|
|
|
sequence.unshift(sequence.length);
|
|
|
|
sequence.unshift(0x30); // SEQUENCE
|
|
|
|
|
|
|
|
return sequence;
|
|
|
|
};
|
|
|
|
|
2014-04-20 07:19:54 -07:00
|
|
|
if (!this.private) {
|
|
|
|
throw new Error('Key does not have a private key set');
|
|
|
|
}
|
|
|
|
|
|
|
|
if (!Buffer.isBuffer(hash) || hash.length !== 32) {
|
|
|
|
throw new Error('Arg should be a 32 bytes hash buffer');
|
|
|
|
}
|
2014-07-05 16:05:38 -07:00
|
|
|
//var privhex = this.private.toString('hex');
|
|
|
|
//var privnum = new BigInteger(privhex, 16);
|
|
|
|
var privnum = new bignum(this.private);
|
|
|
|
//var signature = sign(bufferToArray(hash), privnum);
|
|
|
|
var signature = sign(hash, privnum);
|
2014-04-25 11:00:51 -07:00
|
|
|
|
2014-04-20 07:19:54 -07:00
|
|
|
return new Buffer(signature);
|
|
|
|
};
|
|
|
|
|
|
|
|
Key.prototype.verifySignature = function(hash, sig, callback) {
|
|
|
|
try {
|
|
|
|
var result = this.verifySignatureSync(hash, sig);
|
|
|
|
callback(null, result);
|
|
|
|
} catch (e) {
|
|
|
|
callback(e);
|
|
|
|
}
|
|
|
|
};
|
|
|
|
|
|
|
|
Key.prototype.verifySignatureSync = function(hash, sig) {
|
|
|
|
var self = this;
|
|
|
|
|
|
|
|
if (!Buffer.isBuffer(hash) || hash.length !== 32) {
|
|
|
|
throw new Error('Arg 1 should be a 32 bytes hash buffer');
|
|
|
|
}
|
|
|
|
if (!Buffer.isBuffer(sig)) {
|
|
|
|
throw new Error('Arg 2 should be a buffer');
|
|
|
|
}
|
|
|
|
if (!self.public) {
|
|
|
|
throw new Error('Key does not have a public key set');
|
|
|
|
}
|
|
|
|
|
|
|
|
var eck = new ECKey();
|
|
|
|
eck.setPub(bufferToArray(self.public));
|
2014-04-23 17:15:55 -07:00
|
|
|
eck.setCompressed(self._compressed);
|
2014-04-20 07:19:54 -07:00
|
|
|
var sigA = bufferToArray(sig);
|
2014-06-23 10:57:02 -07:00
|
|
|
var ret = eck.verify(bufferToArray(hash), sigA);
|
2014-04-20 07:19:54 -07:00
|
|
|
return ret;
|
|
|
|
};
|
|
|
|
|
|
|
|
module.exports = Key;
|