Bitcoin
Functions | Variables
key.cpp File Reference
#include <key.h>
#include <crypto/common.h>
#include <crypto/hmac_sha512.h>
#include <random.h>
#include <secp256k1.h>
#include <secp256k1_recovery.h>

Functions

static int ec_privkey_import_der (const secp256k1_context *ctx, unsigned char *out32, const unsigned char *privkey, size_t privkeylen)
 
static int ec_privkey_export_der (const secp256k1_context *ctx, unsigned char *privkey, size_t *privkeylen, const unsigned char *key32, bool compressed)
 
bool SigHasLowR (const secp256k1_ecdsa_signature *sig)
 
bool ECC_InitSanityCheck ()
 
void ECC_Start ()
 
void ECC_Stop ()
 

Variables

static secp256k1_contextsecp256k1_context_sign = nullptr
 

Function Documentation

◆ ec_privkey_export_der()

static int ec_privkey_export_der ( const secp256k1_context ctx,
unsigned char *  privkey,
size_t *  privkeylen,
const unsigned char *  key32,
bool  compressed 
)
static

This serializes to a DER encoding of the ECPrivateKey type from section C.4 of SEC 1 http://www.secg.org/sec1-v2.pdf. The optional parameters and publicKey fields are included.

privkey must point to an output buffer of length at least CKey::PRIVATE_KEY_SIZE bytes. privkeylen must initially be set to the size of the privkey buffer. Upon return it will be set to the number of bytes used in the buffer. key32 must point to a 32-byte raw private key.

◆ ec_privkey_import_der()

static int ec_privkey_import_der ( const secp256k1_context ctx,
unsigned char *  out32,
const unsigned char *  privkey,
size_t  privkeylen 
)
static

These functions are taken from the libsecp256k1 distribution and are very ugly. This parses a format loosely based on a DER encoding of the ECPrivateKey type from section C.4 of SEC 1 http://www.secg.org/sec1-v2.pdf, with the following caveats:

  • The octet-length of the SEQUENCE must be encoded as 1 or 2 octets. It is not required to be encoded as one octet if it is less than 256, as DER would require.
  • The octet-length of the SEQUENCE must not be greater than the remaining length of the key encoding, but need not match it (i.e. the encoding may contain junk after the encoded SEQUENCE).
  • The privateKey OCTET STRING is zero-filled on the left to 32 octets.
  • Anything after the encoding of the privateKey OCTET STRING is ignored, whether or not it is validly encoded DER.

out32 must point to an output buffer of length at least 32 bytes.

◆ ECC_InitSanityCheck()

bool ECC_InitSanityCheck ( )

Check that required EC support is available at runtime.

◆ ECC_Start()

void ECC_Start ( )

Initialize the elliptic curve support. May not be called twice without calling ECC_Stop first.

◆ ECC_Stop()

void ECC_Stop ( )

Deinitialize the elliptic curve support. No-op if ECC_Start wasn't called first.

◆ SigHasLowR()

bool SigHasLowR ( const secp256k1_ecdsa_signature sig)

Variable Documentation

◆ secp256k1_context_sign

secp256k1_context* secp256k1_context_sign = nullptr
static