aboutsummaryrefslogtreecommitdiff
path: root/src/crypto/shen_ed25519_ref/ref10/sign.c
diff options
context:
space:
mode:
authorShenNoether <Shen.Noether@gmx.com>2015-08-23 14:48:50 -0600
committerShenNoether <Shen.Noether@gmx.com>2015-08-23 14:48:50 -0600
commit0a4bc84b2f681dfd89b501648f65a951d876e2d8 (patch)
tree9f37622b56f26724b4c057dd28f4c9a0ee7ecd74 /src/crypto/shen_ed25519_ref/ref10/sign.c
parentrevert to 776b4fc91a821be152f0f23e6873aabb78a72029 (diff)
downloadmonero-0a4bc84b2f681dfd89b501648f65a951d876e2d8.tar.xz
Added ref10 shen_ed25519_ref code, which includes code that can replace crypto-ops with a version straight from Bernstein's ref 10
Diffstat (limited to 'src/crypto/shen_ed25519_ref/ref10/sign.c')
-rw-r--r--src/crypto/shen_ed25519_ref/ref10/sign.c41
1 files changed, 41 insertions, 0 deletions
diff --git a/src/crypto/shen_ed25519_ref/ref10/sign.c b/src/crypto/shen_ed25519_ref/ref10/sign.c
new file mode 100644
index 000000000..de53742a6
--- /dev/null
+++ b/src/crypto/shen_ed25519_ref/ref10/sign.c
@@ -0,0 +1,41 @@
+#include <string.h>
+#include "crypto_sign.h"
+#include "crypto_hash_sha512.h"
+#include "ge.h"
+#include "sc.h"
+
+int crypto_sign(
+ unsigned char *sm,unsigned long long *smlen,
+ const unsigned char *m,unsigned long long mlen,
+ const unsigned char *sk
+)
+{
+ unsigned char pk[32];
+ unsigned char az[64];
+ unsigned char nonce[64];
+ unsigned char hram[64];
+ ge_p3 R;
+
+ memmove(pk,sk + 32,32);
+
+ crypto_hash_sha512(az,sk,32);
+ az[0] &= 248;
+ az[31] &= 63;
+ az[31] |= 64;
+
+ *smlen = mlen + 64;
+ memmove(sm + 64,m,mlen);
+ memmove(sm + 32,az + 32,32);
+ crypto_hash_sha512(nonce,sm + 32,mlen + 32);
+ memmove(sm + 32,pk,32);
+
+ sc_reduce(nonce);
+ ge_scalarmult_base(&R,nonce);
+ ge_p3_tobytes(sm,&R);
+
+ crypto_hash_sha512(hram,sm,mlen + 64);
+ sc_reduce(hram);
+ sc_muladd(sm + 32,hram,az,nonce);
+
+ return 0;
+}