Barretenberg
The ZK-SNARK library at the core of Aztec
Loading...
Searching...
No Matches
ecdsa_constraints.hpp
Go to the documentation of this file.
1
// === AUDIT STATUS ===
2
// internal: { status: not started, auditors: [], date: YYYY-MM-DD }
3
// external_1: { status: not started, auditors: [], date: YYYY-MM-DD }
4
// external_2: { status: not started, auditors: [], date: YYYY-MM-DD }
5
// =====================
6
7
#pragma once
8
#include "
barretenberg/crypto/ecdsa/ecdsa.hpp
"
9
#include "
barretenberg/dsl/acir_format/witness_constant.hpp
"
10
#include "
barretenberg/serialize/msgpack.hpp
"
11
#include "
barretenberg/stdlib/primitives/byte_array/byte_array.hpp
"
12
#include <vector>
13
14
namespace
acir_format
{
15
16
using namespace
bb
;
17
35
struct
EcdsaConstraint
{
36
// The byte representation of the hashed message.
37
std::array<uint32_t, 32>
hashed_message
;
38
39
// The signature
40
std::array<uint32_t, 64>
signature
;
41
42
// The public key against which the signature must be verified.
43
// Since Fr does not have enough bits to represent the prime field in
44
// secp256k1 or secp256r1, a byte array is used.
45
std::array<uint32_t, 32>
pub_x_indices
;
46
std::array<uint32_t, 32>
pub_y_indices
;
47
48
// Predicate indicating whether the constraint should be disabled:
49
// - true: the constraint is valid
50
// - false: the constraint is disabled, i.e it must not fail and can return whatever.
51
WitnessOrConstant<bb::fr>
predicate
;
52
53
// Expected result of signature verification
54
uint32_t
result
;
55
56
// For serialization, update with any new fields
57
MSGPACK_FIELDS
(
hashed_message
,
signature
,
pub_x_indices
,
pub_y_indices
,
predicate
,
result
);
58
friend
bool
operator==
(
EcdsaConstraint
const
& lhs,
EcdsaConstraint
const
& rhs) =
default
;
59
};
60
61
template
<
typename
Curve>
62
void
create_ecdsa_verify_constraints
(
typename
Curve::Builder&
builder
,
63
const
EcdsaConstraint
& input,
64
bool
has_valid_witness_assignments =
true
);
65
66
template
<
typename
Curve>
67
void
create_dummy_ecdsa_constraint
(
typename
Curve::Builder&
builder
,
68
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& hashed_message_fields,
69
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& r_fields,
70
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& s_fields,
71
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& pub_x_fields,
72
const
std::vector<
stdlib::field_t<typename Curve::Builder>
>& pub_y_fields,
73
const
stdlib::field_t<typename Curve::Builder>
& result_field);
74
75
}
// namespace acir_format
byte_array.hpp
bb::stdlib::field_t
Definition
field.hpp:45
builder
AluTraceBuilder builder
Definition
alu.test.cpp:123
ecdsa.hpp
msgpack.hpp
acir_format
Definition
acir_format.cpp:35
acir_format::create_ecdsa_verify_constraints
void create_ecdsa_verify_constraints(typename Curve::Builder &builder, const EcdsaConstraint &input, bool has_valid_witness_assignments)
Create constraints to verify an ECDSA signature.
Definition
ecdsa_constraints.cpp:42
acir_format::create_dummy_ecdsa_constraint
void create_dummy_ecdsa_constraint(typename Curve::Builder &builder, const std::vector< stdlib::field_t< typename Curve::Builder > > &hashed_message_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &r_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &s_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &pub_x_fields, const std::vector< stdlib::field_t< typename Curve::Builder > > &pub_y_fields, const stdlib::field_t< typename Curve::Builder > &result_field)
Generate dummy ECDSA constraints when the builder doesn't have witnesses.
Definition
ecdsa_constraints.cpp:143
bb
Entry point for Barretenberg command-line interface.
Definition
acir_format_getters.cpp:6
acir_format::EcdsaConstraint
ECDSA constraints.
Definition
ecdsa_constraints.hpp:35
acir_format::EcdsaConstraint::MSGPACK_FIELDS
MSGPACK_FIELDS(hashed_message, signature, pub_x_indices, pub_y_indices, predicate, result)
acir_format::EcdsaConstraint::pub_x_indices
std::array< uint32_t, 32 > pub_x_indices
Definition
ecdsa_constraints.hpp:45
acir_format::EcdsaConstraint::hashed_message
std::array< uint32_t, 32 > hashed_message
Definition
ecdsa_constraints.hpp:37
acir_format::EcdsaConstraint::result
uint32_t result
Definition
ecdsa_constraints.hpp:54
acir_format::EcdsaConstraint::operator==
friend bool operator==(EcdsaConstraint const &lhs, EcdsaConstraint const &rhs)=default
acir_format::EcdsaConstraint::predicate
WitnessOrConstant< bb::fr > predicate
Definition
ecdsa_constraints.hpp:51
acir_format::EcdsaConstraint::signature
std::array< uint32_t, 64 > signature
Definition
ecdsa_constraints.hpp:40
acir_format::EcdsaConstraint::pub_y_indices
std::array< uint32_t, 32 > pub_y_indices
Definition
ecdsa_constraints.hpp:46
acir_format::WitnessOrConstant
Definition
witness_constant.hpp:13
witness_constant.hpp
src
barretenberg
dsl
acir_format
ecdsa_constraints.hpp
Generated by
1.9.8