2016-05-30 15:10:05 +00:00
|
|
|
/*
|
|
|
|
* Copyright (c) Pavol Rusnak, SatoshiLabs
|
|
|
|
*
|
|
|
|
* Licensed under TREZOR License
|
|
|
|
* see LICENSE file for details
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include "py/objstr.h"
|
|
|
|
|
2016-05-31 14:24:43 +00:00
|
|
|
#include "trezor-crypto/bignum.h"
|
|
|
|
#include "ssss.h"
|
|
|
|
|
2017-06-20 15:45:27 +00:00
|
|
|
/// def split(m: int, n: int, secret: bytes) -> tuple:
|
2016-06-06 08:18:55 +00:00
|
|
|
/// '''
|
2017-06-14 15:40:50 +00:00
|
|
|
/// Split secret to (M of N) shares using Shamir's Secret Sharing Scheme.
|
2016-06-06 08:18:55 +00:00
|
|
|
/// '''
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC mp_obj_t mod_trezorcrypto_ssss_split(mp_obj_t m_obj, mp_obj_t n_obj, mp_obj_t secret_obj) {
|
|
|
|
mp_int_t m = mp_obj_get_int(m_obj);
|
|
|
|
mp_int_t n = mp_obj_get_int(n_obj);
|
2016-05-30 15:10:05 +00:00
|
|
|
mp_buffer_info_t secret;
|
2017-06-20 15:45:27 +00:00
|
|
|
mp_get_buffer_raise(secret_obj, &secret, MP_BUFFER_READ);
|
2016-05-31 14:24:43 +00:00
|
|
|
if (secret.len != 32) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Length of the secret has to be 256 bits");
|
2016-05-31 14:24:43 +00:00
|
|
|
}
|
|
|
|
if (m < 1 || n < 1 || m > 15 || n > 15 || m > n) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Invalid number of shares");
|
2016-05-31 14:24:43 +00:00
|
|
|
}
|
|
|
|
bignum256 sk;
|
|
|
|
bignum256 shares[n];
|
|
|
|
bn_read_be(secret.buf, &sk);
|
|
|
|
if (!ssss_split(&sk, m, n, shares)) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Error splitting secret");
|
2016-05-31 14:24:43 +00:00
|
|
|
}
|
2016-05-30 15:10:05 +00:00
|
|
|
mp_obj_tuple_t *tuple = MP_OBJ_TO_PTR(mp_obj_new_tuple(n, NULL));
|
|
|
|
vstr_t vstr[n];
|
|
|
|
for (int i = 0; i < n; i++) {
|
|
|
|
vstr_init_len(&vstr[i], secret.len);
|
2016-05-31 14:24:43 +00:00
|
|
|
bn_write_be(&shares[i], secret.buf);
|
2016-05-30 15:10:05 +00:00
|
|
|
tuple->items[i] = mp_obj_new_str_from_vstr(&mp_type_bytes, &vstr[i]);
|
|
|
|
}
|
|
|
|
return MP_OBJ_FROM_PTR(tuple);
|
|
|
|
}
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC MP_DEFINE_CONST_FUN_OBJ_3(mod_trezorcrypto_ssss_split_obj, mod_trezorcrypto_ssss_split);
|
2016-05-30 15:10:05 +00:00
|
|
|
|
2017-06-20 15:45:27 +00:00
|
|
|
/// def combine(shares: tuple) -> bytes:
|
2016-06-06 08:18:55 +00:00
|
|
|
/// '''
|
2017-06-14 15:40:50 +00:00
|
|
|
/// Combine M shares of Shamir's Secret Sharing Scheme into secret.
|
2016-06-06 08:18:55 +00:00
|
|
|
/// '''
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC mp_obj_t mod_trezorcrypto_ssss_combine(mp_obj_t shares_obj) {
|
2017-04-06 16:36:30 +00:00
|
|
|
size_t n;
|
2016-05-31 14:24:43 +00:00
|
|
|
mp_obj_t *share;
|
2017-06-20 15:45:27 +00:00
|
|
|
mp_obj_get_array(shares_obj, &n, &share);
|
2016-05-31 14:24:43 +00:00
|
|
|
if (n < 1 || n > 15) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Invalid number of shares");
|
2016-05-31 14:24:43 +00:00
|
|
|
}
|
|
|
|
bignum256 bnshares[n];
|
2017-04-06 16:36:30 +00:00
|
|
|
for (size_t i = 0; i < n; i++) {
|
2016-05-31 14:24:43 +00:00
|
|
|
if (MP_OBJ_IS_TYPE(share[i], &mp_type_bytes)) {
|
|
|
|
mp_buffer_info_t s;
|
|
|
|
mp_get_buffer_raise(share[i], &s, MP_BUFFER_READ);
|
2016-10-04 16:53:32 +00:00
|
|
|
if (s.len != 32) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Length of share has to be 256 bits");
|
2016-10-04 16:53:32 +00:00
|
|
|
}
|
2016-05-31 14:24:43 +00:00
|
|
|
bn_read_be(s.buf, &bnshares[n]);
|
|
|
|
} else {
|
|
|
|
memset(&bnshares[i], 0, sizeof(bignum256));
|
2016-05-30 15:10:05 +00:00
|
|
|
}
|
|
|
|
}
|
2016-05-31 14:24:43 +00:00
|
|
|
bignum256 sk;
|
|
|
|
if (!ssss_combine(bnshares, n, &sk)) {
|
2016-10-07 10:09:05 +00:00
|
|
|
mp_raise_ValueError("Error combining secret");
|
2016-05-31 14:24:43 +00:00
|
|
|
}
|
|
|
|
vstr_t vstr;
|
|
|
|
vstr_init_len(&vstr, 32);
|
|
|
|
bn_write_be(&sk, (uint8_t *)vstr.buf);
|
|
|
|
return mp_obj_new_str_from_vstr(&mp_type_bytes, &vstr);
|
2016-05-30 15:10:05 +00:00
|
|
|
}
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC MP_DEFINE_CONST_FUN_OBJ_1(mod_trezorcrypto_ssss_combine_obj, mod_trezorcrypto_ssss_combine);
|
2016-05-30 15:10:05 +00:00
|
|
|
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC const mp_rom_map_elem_t mod_trezorcrypto_ssss_globals_table[] = {
|
|
|
|
{ MP_ROM_QSTR(MP_QSTR___name__), MP_ROM_QSTR(MP_QSTR_ssss) },
|
|
|
|
{ MP_ROM_QSTR(MP_QSTR_split), MP_ROM_PTR(&mod_trezorcrypto_ssss_split_obj) },
|
|
|
|
{ MP_ROM_QSTR(MP_QSTR_combine), MP_ROM_PTR(&mod_trezorcrypto_ssss_combine_obj) },
|
2016-05-30 15:10:05 +00:00
|
|
|
};
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC MP_DEFINE_CONST_DICT(mod_trezorcrypto_ssss_globals, mod_trezorcrypto_ssss_globals_table);
|
2016-05-30 15:10:05 +00:00
|
|
|
|
2017-06-20 15:45:27 +00:00
|
|
|
STATIC const mp_obj_module_t mod_trezorcrypto_ssss_module = {
|
|
|
|
.base = { &mp_type_module },
|
|
|
|
.globals = (mp_obj_dict_t*)&mod_trezorcrypto_ssss_globals,
|
2016-05-30 15:10:05 +00:00
|
|
|
};
|