Skip to main content

Module xmss

Module xmss 

Source
Expand description

XMSS: a Merkle tree of 2^LOG_LIFETIME WOTS public-key hashes.

A signature is a WOTS signature at one epoch plus the authentication path linking that epoch’s leaf to the committed root. Verification recovers the WOTS public key from the chain tips, hashes it into the leaf, and climbs the path.

XMSS is stateful: signing twice at one epoch breaks the one-time signature, and so the key.

Structs§

XmssPublicKey
An XMSS public key.
XmssSignature
An XMSS signature.
XmssSignatureWires
The wires an XmssSignature occupies in circuit.

Enums§

XmssVerifyError
Why a signature failed to verify.

Functions§

circuit_xmss_verify
In-circuit form of xmss_verify.
generate_signature
Generates a key and a signature on message at epoch, for witness generation.
merkle_node
A Merkle parent, hashed under the tweak that fixes its level and index.
xmss_verify
Verifies an XMSS signature.