Go to file
Conrado Gouvea 3ac90e2e0a
fix calls to renamed DKG functions; move dkg code to its own file (#49)
2023-03-09 16:03:55 -03:00
.github test MSRV in CI 2023-03-01 18:02:39 -05:00
benches
rfcs
src fix calls to renamed DKG functions; move dkg code to its own file (#49) 2023-03-09 16:03:55 -03:00
tests add Pallas and Jubjub ciphersuites and FROST support (#33) 2023-02-28 00:01:50 +01:00
.gitignore
CHANGELOG.md Migrate to `group` 0.13, `jubjub` 0.10, `pasta_curves` 0.5 (#44) 2023-02-28 14:59:05 -03:00
Cargo.toml Migrate to `group` 0.13, `jubjub` 0.10, `pasta_curves` 0.5 (#44) 2023-02-28 14:59:05 -03:00
Dockerfile
LICENCE
LICENCE.MIT
LICENSE.Apache-2.0
README.md
cloudbuild.yaml
codecov.yml
rust-toolchain bump MSRV to 1.60.0 in rust-toolchain 2023-03-01 18:02:39 -05:00
zcash-frost-audit-report-20210323.pdf

README.md

A minimal RedDSA implementation for use in Zcash.

Two specializations of RedDSA are used in Zcash: RedJubjub and RedPallas. For each of these, two parameterizations are used, one for BindingSig and one for SpendAuthSig. This library distinguishes these in the type system, using the sealed SigType trait as a type-level enum.

In addition to the Signature, SigningKey, VerificationKey types, the library also provides VerificationKeyBytes, a refinement of a [u8; 32] indicating that bytes represent an encoding of a RedDSA verification key. This allows the VerificationKey type to cache verification checks related to the verification key encoding. For all specializations of RedDSA used in Zcash, encodings of signing and verification keys are 32 bytes.

Examples

Creating a BindingSig, serializing and deserializing it, and verifying the signature:

# use std::convert::TryFrom;
use rand::thread_rng;
use reddsa::*;

let msg = b"Hello!";

// Generate a secret key and sign the message
let sk = SigningKey::<sapling::Binding>::new(thread_rng());
let sig = sk.sign(thread_rng(), msg);

// Types can be converted to raw byte arrays using From/Into
let sig_bytes: [u8; 64] = sig.into();
let pk_bytes: [u8; 32] = VerificationKey::from(&sk).into();

// Deserialize and verify the signature.
let sig: Signature<sapling::Binding> = sig_bytes.into();
assert!(
    VerificationKey::try_from(pk_bytes)
        .and_then(|pk| pk.verify(msg, &sig))
        .is_ok()
);

docs

cargo doc --features "nightly" --open