Expand description

Flexible Transcript

Flexible Transcript is a crate offering:

  • Transcript, a trait offering functions transcripts should implement.
  • DigestTranscript, a competent transcript format instantiated against a provided hash function.
  • MerlinTranscript, a wrapper of merlin into the trait (available via the merlin feature).
  • RecommendedTranscript, a transcript recommended for usage in applications. Currently, this is DigestTranscript<Blake2b512> (available via the recommended feature).

The trait was created while working on an IETF draft which defined an incredibly simple transcript format. Extensions of the protocol would quickly require a more competent format, yet implementing the one specified was mandatory to meet the specification. Accordingly, the library implementing the draft defined an IetfTranscript, dropping labels and not allowing successive challenges, yet thanks to the trait, allowed protocols building on top to provide their own transcript format as needed.

DigestTranscript takes in any hash function implementing Digest, offering a secure transcript format around it. All items are prefixed by a flag, denoting their type, and their length.

MerlinTranscript was used to justify the API, and if any issues existed with DigestTranscript, enable a fallback. It was also meant as a way to be compatible with existing Rust projects using merlin.

This library was audited by Cypher Stack in March 2023, culminating in commit 669d2dbffc1dafb82a09d9419ea182667115df06. Any subsequent changes have not undergone auditing.

This library is usable under no_std.

Modules

  • teststests
    Tests for a transcript.

Structs

  • A simple transcript format constructed around the specified hash algorithm.
  • A wrapper around a Merlin transcript which satisfiees the Transcript API.

Traits

  • A trait defining cryptographic Digests with at least a 256-bit output size, assuming at least a 128-bit level of security accordingly.
  • A transcript trait valid over a variety of transcript formats.

Type Definitions

  • The recommended transcript, guaranteed to be secure against length-extension attacks.