pub struct EphemeralSecret<C>where
C: CurveArithmetic,{ /* private fields */ }Expand description
Ephemeral Diffie-Hellman Secret.
These are ephemeral “secret key” values which are deliberately designed to avoid being persisted.
To perform an ephemeral Diffie-Hellman exchange, do the following:
- Have each participant generate an
EphemeralSecretvalue - Compute the
PublicKeyfor that value - Have each peer provide their
PublicKeyto their counterpart - Use
EphemeralSecretand the other participant’sPublicKeyto compute aSharedSecretvalue.
§⚠️ SECURITY WARNING ⚠️
Ephemeral Diffie-Hellman exchanges are unauthenticated and without a further authentication step are trivially vulnerable to man-in-the-middle attacks!
These exchanges should be performed in the context of a protocol which takes further steps to authenticate the peers in a key exchange.
Implementations§
Source§impl<C> EphemeralSecret<C>where
C: CurveArithmetic,
impl<C> EphemeralSecret<C>where
C: CurveArithmetic,
Sourcepub fn random(rng: &mut impl CryptoRngCore) -> EphemeralSecret<C>
pub fn random(rng: &mut impl CryptoRngCore) -> EphemeralSecret<C>
Generate a cryptographically random EphemeralSecret.
Sourcepub fn public_key(&self) -> PublicKey<C>
pub fn public_key(&self) -> PublicKey<C>
Get the public key associated with this ephemeral secret.
The compress flag enables point compression.
Sourcepub fn diffie_hellman(&self, public_key: &PublicKey<C>) -> SharedSecret<C>
pub fn diffie_hellman(&self, public_key: &PublicKey<C>) -> SharedSecret<C>
Compute a Diffie-Hellman shared secret from an ephemeral secret and the public key of the other participant in the exchange.
Trait Implementations§
Source§impl<C> Drop for EphemeralSecret<C>where
C: CurveArithmetic,
impl<C> Drop for EphemeralSecret<C>where
C: CurveArithmetic,
Source§impl<C> Zeroize for EphemeralSecret<C>where
C: CurveArithmetic,
impl<C> Zeroize for EphemeralSecret<C>where
C: CurveArithmetic,
impl<C> ZeroizeOnDrop for EphemeralSecret<C>where
C: CurveArithmetic,
Auto Trait Implementations§
impl<C> Freeze for EphemeralSecret<C>
impl<C> RefUnwindSafe for EphemeralSecret<C>
impl<C> Send for EphemeralSecret<C>
impl<C> Sync for EphemeralSecret<C>
impl<C> Unpin for EphemeralSecret<C>
impl<C> UnwindSafe for EphemeralSecret<C>
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more