Introduce secp256k1_sha256_initialize_midstate() in the hash layer and use it at all tagged-hash midstate call sites across schnorrsig, musig, and ellswift. Document the byte-counter contract at the declaration site in hash.h and add run_sha256_initialize_midstate_tests() to directly verify helper behavior against initialize_tagged. Also switch the helper to take const uint32_t state[8] to reduce argument-order risk at call sites.
49 lines
2.1 KiB
C
49 lines
2.1 KiB
C
/***********************************************************************
|
|
* Copyright (c) 2014 Pieter Wuille *
|
|
* Distributed under the MIT software license, see the accompanying *
|
|
* file COPYING or https://www.opensource.org/licenses/mit-license.php.*
|
|
***********************************************************************/
|
|
|
|
#ifndef SECP256K1_HASH_H
|
|
#define SECP256K1_HASH_H
|
|
|
|
#include <stdlib.h>
|
|
#include <stdint.h>
|
|
|
|
typedef struct {
|
|
uint32_t s[8];
|
|
unsigned char buf[64];
|
|
uint64_t bytes;
|
|
} secp256k1_sha256;
|
|
|
|
static void secp256k1_sha256_initialize(secp256k1_sha256 *hash);
|
|
/* Initialize a SHA256 hash state with a precomputed midstate.
|
|
* The byte counter must be a multiple of 64, i.e., there must be no unwritten
|
|
* bytes in the buffer. */
|
|
static void secp256k1_sha256_initialize_midstate(secp256k1_sha256 *hash, uint64_t bytes, const uint32_t state[8]);
|
|
static void secp256k1_sha256_write(secp256k1_sha256 *hash, const unsigned char *data, size_t size);
|
|
static void secp256k1_sha256_finalize(secp256k1_sha256 *hash, unsigned char *out32);
|
|
static void secp256k1_sha256_clear(secp256k1_sha256 *hash);
|
|
|
|
typedef struct {
|
|
secp256k1_sha256 inner, outer;
|
|
} secp256k1_hmac_sha256;
|
|
|
|
static void secp256k1_hmac_sha256_initialize(secp256k1_hmac_sha256 *hash, const unsigned char *key, size_t size);
|
|
static void secp256k1_hmac_sha256_write(secp256k1_hmac_sha256 *hash, const unsigned char *data, size_t size);
|
|
static void secp256k1_hmac_sha256_finalize(secp256k1_hmac_sha256 *hash, unsigned char *out32);
|
|
static void secp256k1_hmac_sha256_clear(secp256k1_hmac_sha256 *hash);
|
|
|
|
typedef struct {
|
|
unsigned char v[32];
|
|
unsigned char k[32];
|
|
int retry;
|
|
} secp256k1_rfc6979_hmac_sha256;
|
|
|
|
static void secp256k1_rfc6979_hmac_sha256_initialize(secp256k1_rfc6979_hmac_sha256 *rng, const unsigned char *key, size_t keylen);
|
|
static void secp256k1_rfc6979_hmac_sha256_generate(secp256k1_rfc6979_hmac_sha256 *rng, unsigned char *out, size_t outlen);
|
|
static void secp256k1_rfc6979_hmac_sha256_finalize(secp256k1_rfc6979_hmac_sha256 *rng);
|
|
static void secp256k1_rfc6979_hmac_sha256_clear(secp256k1_rfc6979_hmac_sha256 *rng);
|
|
|
|
#endif /* SECP256K1_HASH_H */
|