Expand description
XMSS: a Merkle tree of 2^LOG_LIFETIME WOTS public-key hashes.
A signature is a WOTS signature at one epoch plus the authentication path linking that epoch’s leaf to the committed root. Verification recovers the WOTS public key from the chain tips, hashes it into the leaf, and climbs the path.
XMSS is stateful: signing twice at one epoch breaks the one-time signature, and so the key.
Structs§
- Xmss
Public Key - An XMSS public key.
- Xmss
Signature - An XMSS signature.
- Xmss
Signature Wires - The wires an
XmssSignatureoccupies in circuit.
Enums§
- Xmss
Verify Error - Why a signature failed to verify.
Functions§
- circuit_
xmss_ verify - In-circuit form of
xmss_verify. - generate_
signature - Generates a key and a signature on
messageatepoch, for witness generation. - merkle_
node - A Merkle parent, hashed under the tweak that fixes its level and index.
- xmss_
verify - Verifies an XMSS signature.