Skip to main content

Module seal

Module seal 

Source
Expand description

End-to-end seal scheme 1 (macula 13, E2E design, amendment A1): what a provider’s advertisement names its KEM key by. A key travels as carried, ML-KEM-1024’s encapsulation key under pq_pure, followed by a P-384 point under pq_hybrid, and is named by its id, the first 8 bytes of its SHA-384, as macula_seal’s key_id/1. Pinned by tests/vectors/seal/e2e_seal_v1.json.

Constants§

KEY_ID_SIZE
The bytes of a key id.

Functions§

carried_key_size
The size of a KEM key as carried under profile.
is_carried_key_size
Whether len is a carried KEM key’s size under some profile, as macula_record’s kem_key_sizes/0: an advertisement’s key is checked by size alone, whatever the reader’s profile.
key_id
A carried key’s id: the first 8 bytes of its SHA-384.