Fork of https://filippo.io/edwards25519 with unsafe faster operations. https://filippo.io/edwards25519
Go to file
2022-07-31 17:08:28 -04:00
.github/workflows edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
field edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
doc.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
edwards25519.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
edwards25519_test.go edwards25519: extend benchmarks 2022-05-24 17:21:59 +02:00
extra.go extra: explain the absence of SetMontgomeryBytes (#30) 2022-07-26 10:28:42 -04:00
extra_test.go scalar: replace the Christmas tree with a fiat-crypto generated scalar field 2022-07-31 17:08:28 -04:00
fiat_scalar.go scalar: update fiat code to v0.0.12-f4c7f3717364cf39b716170bf39f81b78acf544e 2022-07-31 17:08:28 -04:00
go.mod all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00
LICENSE all: flatten the package and make FieldElement opaque 2020-09-28 14:18:44 +02:00
README.md edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
scalar.go scalar: fix aliasing of MultiplyAdd addend and receiver 2022-07-31 17:08:28 -04:00
scalar_alias_test.go scalar: fix aliasing of MultiplyAdd addend and receiver 2022-07-31 17:08:28 -04:00
scalar_test.go scalar: update fiat code to v0.0.12-f4c7f3717364cf39b716170bf39f81b78acf544e 2022-07-31 17:08:28 -04:00
scalarmult.go all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00
scalarmult_test.go scalar: replace the Christmas tree with a fiat-crypto generated scalar field 2022-07-31 17:08:28 -04:00
tables.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
tables_test.go all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00

filippo.io/edwards25519

import "filippo.io/edwards25519"

This library implements the edwards25519 elliptic curve, exposing the necessary APIs to build a wide array of higher-level primitives. Read the docs at pkg.go.dev/filippo.io/edwards25519.

The code is originally derived from Adam Langley's internal implementation in the Go standard library, and includes George Tankersley's performance improvements. It was then further developed by Henry de Valence for use in ristretto255, and was finally merged back into the Go standard library as of Go 1.17. It now tracks the upstream codebase and extends it with additional functionality.

Most users don't need this package, and should instead use crypto/ed25519 for signatures, golang.org/x/crypto/curve25519 for Diffie-Hellman, or github.com/gtank/ristretto255 for prime order group logic. However, for anyone currently using a fork of crypto/internal/edwards25519/crypto/ed25519/internal/edwards25519 or github.com/agl/edwards25519, this package should be a safer, faster, and more powerful alternative.

Since this package is meant to curb proliferation of edwards25519 implementations in the Go ecosystem, it welcomes requests for new APIs or reviewable performance improvements.