1. 16 Jan, 2020 2 commits
  2. 15 Jan, 2020 2 commits
  3. 10 Jan, 2020 4 commits
  4. 06 Jan, 2020 2 commits
  5. 03 Jan, 2020 1 commit
  6. 02 Jan, 2020 5 commits
  7. 01 Jan, 2020 2 commits
  8. 30 Dec, 2019 1 commit
    • Niels Möller's avatar
      Reorganize eddsa, based on patch by Daiki Ueno. · 1a85646b
      Niels Möller authored
      * eddsa-internal.h (struct ecc_eddsa): New struct for eddsa
      parameters.
      * ed25519-sha512.c (_nettle_ed25519_sha512): New parameter struct.
      * eddsa-expand.c (_eddsa_expand_key): Replace input
      struct nettle_hash with struct ecc_eddsa, and generalize for
      ed448. Update all callers.
      * eddsa-sign.c (_eddsa_sign): Likewise.
      * eddsa-verify.c (_eddsa_verify): Likewise.
      * eddsa-compress.c (_eddsa_compress): Store sign bit in most
      significant bit of last byte, as specified by RFC 8032.
      * eddsa-decompress.c (_eddsa_decompress): Corresponding update.
      Also generalize to support ed448, and make validity checks
      stricter.
      * testsuite/eddsa-sign-test.c (test_ed25519_sign): New function.
      (test_main): Use it.
      * testsuite/eddsa-verify-test.c (test_ed25519): New function.
      (test_main): Use it.
      1a85646b
  9. 28 Dec, 2019 2 commits
  10. 25 Dec, 2019 5 commits
  11. 18 Dec, 2019 2 commits
  12. 17 Dec, 2019 1 commit
  13. 15 Dec, 2019 2 commits
  14. 14 Dec, 2019 3 commits
    • Niels Möller's avatar
      Comment fixes for ecc_add_ehh · e21efefa
      Niels Möller authored
      e21efefa
    • Niels Möller's avatar
      Comment fixes for ecc_add_eh · c87bd88c
      Niels Möller authored
      c87bd88c
    • Niels Möller's avatar
      New function ecc_mul_m. · b33eea3b
      Niels Möller authored
      * curve25519-mul.c (curve25519_mul): Use ecc_mul_m.
      * curve448-mul.c (curve448_mul): Likewise.
      
      * ecc-mul-m.c (ecc_mul_m): New file and function. Implements
      multipliction for curves in Montgomery representation, as used for
      curve25519 and curve448. Extracted from curve25519_mul.
      * ecc-internal.h (ecc_mul_m): Declare.
      (ECC_MUL_M_ITCH): New macro.
      * Makefile.in (hogweed_SOURCES): Add ecc-mul-m.c.
      b33eea3b
  15. 13 Dec, 2019 1 commit
  16. 09 Dec, 2019 2 commits
    • Niels Möller's avatar
      Revert itch macro changes. · a5e0d463
      Niels Möller authored
      We now have h_to_a_itch <= mul_itch, mul_g_itch. Add asserts at a few
      places relying on this.
      (ECC_ECDSA_KEYGEN_ITCH, ECC_MAX): Delete macros.
      (ECC_ECDSA_SIGN_ITCH): Revert previous change.
      a5e0d463
    • Niels Möller's avatar
      Trim scratch usage of curve448 operations. · b5ae97a8
      Niels Möller authored
      * ecc-448.c (ecc_mod_pow_446m224m1): Reduce scratch space from 9*n
      to 6*n.
      (ECC_448_INV_ITCH, ECC_448_SQRT_ITCH): Reduce accordingly.
      * curve448-mul.c (curve448_mul): Reduce allocation from 14*n to 12*n.
      b5ae97a8
  17. 08 Dec, 2019 1 commit
    • Niels Möller's avatar
      x86_64 implementation of nettle_ecc_curve448_modp · d13bb312
      Niels Möller authored
      * x86_64/ecc-curve448-modp.asm (nettle_ecc_curve448_modp): New
      assembly function.
      * ecc-448.c (ecc_448_modp) [HAVE_NATIVE_ecc_curve448_modp]: Use
      native nettle_ecc_curve448_modp if available.
      * configure.ac (asm_hogweed_optional_list): Add ecc-curve448-modp.asm.
      (HAVE_NATIVE_ecc_curve448_modp): New config.h define.
      d13bb312
  18. 07 Dec, 2019 1 commit
    • Niels Möller's avatar
      Delete tests and code for ecdsa over curve25519. · bfe24f58
      Niels Möller authored
      * ecc-eh-to-a.c (ecc_eh_to_a): Require op == 0, delete code only
      used for non-standard ecdsa over curve25519.
      * testsuite/ecdsa-sign-test.c (test_main): Delete test of ecdsa
      over curve25519.
      * testsuite/ecdsa-verify-test.c (test_main): Likewise.
      * testsuite/ecdsa-keygen-test.c (test_main): Exclude curve25519
      from test.
      bfe24f58
  19. 05 Dec, 2019 1 commit
    • Niels Möller's avatar
      Fix configure check for __builtin_bswap64. · 9f4180d6
      Niels Möller authored
      * configure.ac: Use AC_TRY_LINK rather than AC_TRY_COMPILE to
      check for __builtin_bswap64. Since calling an non-existing
      function typically results in a warning only at compile time, but
      fails at link time. Patch contributed by by George Koehler.
      9f4180d6