Skip to main content

Crate p521

Crate p521 

Source
Expand description

§RustCrypto: NIST P-521 (secp521r1) elliptic curve

crate Docs Build Status Apache2/MIT licensed Rust Version Project Chat

Pure Rust implementation of the NIST P-521 (a.k.a. secp521r1) elliptic curve.

Documentation

§⚠️ Security Warning

The elliptic curve arithmetic contained in this crate has never been independently audited!

This crate has been designed with the goal of ensuring that secret-dependent operations are performed in constant time (using the subtle crate and constant-time formulas). However, it has not been thoroughly assessed to ensure that generated assembly is constant time on common CPU architectures.

USE AT YOUR OWN RISK!

§Supported Algorithms

§PKCS#8 Key Encoding

PKCS#8 is a private key format with support for multiple algorithms. It can be encoded as binary DER or text PEM.

You can recognize PEM encoded PKCS#8 private keys because they do not have an algorithm name in the type label, e.g.:

-----BEGIN PRIVATE KEY-----

PKCS#8 support is gated under the pkcs8 feature. The pem feature, which is enabled by default, adds PEM decoding and also enables pkcs8.

The same pattern is used by the other curve crates in this repository which re-export pkcs8.

The following traits can be used to decode/encode secret and public keys as PKCS#8/SPKI. Note that pkcs8 is re-exported from p521 when the pkcs8 feature is enabled:

For private keys, SecretKey::from_der and SecretKey::from_pem provide convenience methods which can decode PKCS#8 keys. Use the trait methods above when the input is expected to be specifically PKCS#8.

§Example

use p521::SecretKey;

// WARNING: Do not hardcode private keys in your source code. This is for demonstration purposes only.
let pem = r#"-----BEGIN PRIVATE KEY-----
MIHuAgEAMBAGByqGSM49AgEGBSuBBAAjBIHWMIHTAgEBBEIByaZTgvsr3gfiXU71
+Au6v1YYaPtUWe4FCJ38cCutPzCvcwvPHV2nGcoPhYsBH//k6csxIXM8QA7iOgyg
PlcACgWhgYkDgYYABABr4iMOYmF94apb1qW8QWvU7dzvyO1ViCmIjYIE9sELyDJc
ZH18n2gLXxV3ixCUONKI7zRNXKZK8yehHvkeRK1nFwDRl3sC7JFsxGoypRgwZjyU
wlSMrGNHcHqvicQG5RhY23YF/kLB397onuEibmoDhiknKcnuRgFQ7atqU5Grcz+Y
LQ==
-----END PRIVATE KEY-----"#;
let secret_key = SecretKey::from_pem(pem)?;

§About P-521

NIST P-521 is a Weierstrass curve specified in SP 800-186: Recommendations for Discrete Logarithm-based Cryptography: Elliptic Curve Domain Parameters.

Also known as secp521r1 (SECG).

§License

All crates licensed under either of

at your option.

§Contribution

Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.

§serde support

When the serde feature of this crate is enabled, Serialize and Deserialize are impl’d for the following types:

Please see type-specific documentation for more information.

Re-exports§

pub use elliptic_curve;
pub use elliptic_curve::pkcs8;pkcs8
pub use hash2curve;hash2curve

Modules§

ecdhecdh
Elliptic Curve Diffie-Hellman (Ephemeral) Support.
ecdsaecdsa-core
Elliptic Curve Digital Signature Algorithm (ECDSA)
test_vectorstest-vectors
secp521r1 test vectors.

Structs§

NistP521
NIST P-521 elliptic curve.
Scalararithmetic
Element in the NIST P-521 scalar field modulo n.

Type Aliases§

AffinePointarithmetic
Elliptic curve point in affine coordinates.
CompressedPoint
Compressed SEC1-encoded NIST P-521 curve point.
FieldBytes
NIST P-521 field element serialized as bytes.
NonZeroScalararithmetic
Non-zero NIST P-521 scalar field element.
ProjectivePointarithmetic
Elliptic curve point in projective coordinates.
PublicKeyarithmetic
NIST P-521 public key.
Sec1Point
NIST P-521 SEC1 encoded point.
SecretKey
NIST P-521 secret key.