Barretenberg
The ZK-SNARK library at the core of Aztec
Loading...
Searching...
No Matches
ecdsa_constraints.hpp
Go to the documentation of this file.
1
// === AUDIT STATUS ===
2
// internal: { status: Complete, auditors: [Federico], commit: 05a381f8b31ae4648e480f1369e911b148216e8b}
3
// external_1: { status: not started, auditors: [], commit: }
4
// external_2: { status: not started, auditors: [], commit: }
5
// =====================
6
7
#pragma once
8
#include "
barretenberg/crypto/ecdsa/ecdsa.hpp
"
9
#include "
barretenberg/dsl/acir_format/witness_constant.hpp
"
10
#include "
barretenberg/stdlib/primitives/byte_array/byte_array.hpp
"
11
#include <vector>
12
13
namespace
acir_format
{
14
15
using namespace
bb
;
16
39
struct
EcdsaConstraint
{
40
bb::CurveType
type
;
41
42
// The byte representation of the hashed message.
43
std::array<uint32_t, 32>
hashed_message
;
44
45
// The signature
46
std::array<uint32_t, 64>
signature
;
47
48
// The public key against which the signature must be verified.
49
// Since Fr does not have enough bits to represent the prime field in
50
// secp256k1 or secp256r1, a byte array is used.
51
std::array<uint32_t, 32>
pub_x_indices
;
52
std::array<uint32_t, 32>
pub_y_indices
;
53
54
// Predicate indicating whether the constraint should be disabled:
55
// - true: the constraint is valid
56
// - false: the constraint is disabled, i.e it must not fail and can return whatever.
57
WitnessOrConstant<bb::fr>
predicate
;
58
59
// Expected result of signature verification
60
uint32_t
result
;
61
62
friend
bool
operator==
(
EcdsaConstraint
const
& lhs,
EcdsaConstraint
const
& rhs) =
default
;
63
};
64
65
template
<
typename
Curve>
66
void
create_ecdsa_verify_constraints
(
typename
Curve::Builder&
builder
,
const
EcdsaConstraint
& input);
67
68
template
<
typename
Curve>
69
void
create_dummy_ecdsa_constraint
(
typename
Curve::Builder&
builder
,
70
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& hashed_message_fields,
71
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& r_fields,
72
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& s_fields,
73
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& pub_x_fields,
74
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& pub_y_fields,
75
const
stdlib::field_t<typename Curve::Builder>
& result_field);
76
77
}
// namespace acir_format
byte_array.hpp
bb::stdlib::field_t
Definition
field.hpp:45
builder
AluTraceBuilder builder
Definition
alu.test.cpp:124
ecdsa.hpp
acir_format
Definition
acir_format.cpp:30
acir_format::create_ecdsa_verify_constraints
void create_ecdsa_verify_constraints(typename Curve::Builder &builder, const EcdsaConstraint &input)
Create constraints to verify an ECDSA signature.
Definition
ecdsa_constraints.cpp:41
acir_format::create_dummy_ecdsa_constraint
void create_dummy_ecdsa_constraint(typename Curve::Builder &builder, const std::vector< stdlib::field_t< typename Curve::Builder > > &hashed_message_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &r_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &s_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &pub_x_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &pub_y_fields, const stdlib::field_t< typename Curve::Builder > &result_field)
Generate dummy ECDSA constraints when the builder doesn't have witnesses.
Definition
ecdsa_constraints.cpp:127
bb
Entry point for Barretenberg command-line interface.
Definition
api.hpp:5
bb::CurveType
CurveType
Definition
types.hpp:10
acir_format::EcdsaConstraint
ECDSA constraints.
Definition
ecdsa_constraints.hpp:39
acir_format::EcdsaConstraint::pub_x_indices
std::array< uint32_t, 32 > pub_x_indices
Definition
ecdsa_constraints.hpp:51
acir_format::EcdsaConstraint::type
bb::CurveType type
Definition
ecdsa_constraints.hpp:40
acir_format::EcdsaConstraint::hashed_message
std::array< uint32_t, 32 > hashed_message
Definition
ecdsa_constraints.hpp:43
acir_format::EcdsaConstraint::result
uint32_t result
Definition
ecdsa_constraints.hpp:60
acir_format::EcdsaConstraint::operator==
friend bool operator==(EcdsaConstraint const &lhs, EcdsaConstraint const &rhs)=default
acir_format::EcdsaConstraint::predicate
WitnessOrConstant< bb::fr > predicate
Definition
ecdsa_constraints.hpp:57
acir_format::EcdsaConstraint::signature
std::array< uint32_t, 64 > signature
Definition
ecdsa_constraints.hpp:46
acir_format::EcdsaConstraint::pub_y_indices
std::array< uint32_t, 32 > pub_y_indices
Definition
ecdsa_constraints.hpp:52
acir_format::WitnessOrConstant
Definition
witness_constant.hpp:12
witness_constant.hpp
src
barretenberg
dsl
acir_format
ecdsa_constraints.hpp
Generated by
1.9.8