p384/
arithmetic.rs

1//! Pure Rust implementation of group operations on secp384r1.
2//!
3//! Curve parameters can be found in [NIST SP 800-186] § G.1.3: Curve P-384.
4//!
5//! [NIST SP 800-186]: https://csrc.nist.gov/publications/detail/sp/800-186/final
6
7#[macro_use]
8mod macros;
9
10pub(crate) mod field;
11#[cfg(feature = "hash2curve")]
12mod hash2curve;
13pub(crate) mod scalar;
14
15use self::{field::FieldElement, scalar::Scalar};
16use crate::NistP384;
17use elliptic_curve::{CurveArithmetic, PrimeCurveArithmetic};
18use primeorder::{point_arithmetic, PrimeCurveParams};
19
20/// Elliptic curve point in affine coordinates.
21pub type AffinePoint = primeorder::AffinePoint<NistP384>;
22
23/// Elliptic curve point in projective coordinates.
24pub type ProjectivePoint = primeorder::ProjectivePoint<NistP384>;
25
26impl CurveArithmetic for NistP384 {
27    type AffinePoint = AffinePoint;
28    type ProjectivePoint = ProjectivePoint;
29    type Scalar = Scalar;
30}
31
32impl PrimeCurveArithmetic for NistP384 {
33    type CurveGroup = ProjectivePoint;
34}
35
36/// Adapted from [NIST SP 800-186] § G.1.3: Curve P-384.
37///
38/// [NIST SP 800-186]: https://csrc.nist.gov/publications/detail/sp/800-186/final
39impl PrimeCurveParams for NistP384 {
40    type FieldElement = FieldElement;
41    type PointArithmetic = point_arithmetic::EquationAIsMinusThree;
42
43    /// a = -3 (0xfffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffeffffffff0000000000000000fffffffc)
44    const EQUATION_A: FieldElement = FieldElement::from_u64(3).neg();
45
46    /// b = b3312fa7 e23ee7e4 988e056b e3f82d19 181d9c6e fe814112
47    ///     0314088f 5013875a c656398d 8a2ed19d 2a85c8ed d3ec2aef
48    const EQUATION_B: FieldElement = FieldElement::from_hex("b3312fa7e23ee7e4988e056be3f82d19181d9c6efe8141120314088f5013875ac656398d8a2ed19d2a85c8edd3ec2aef");
49
50    /// Base point of P-384.
51    ///
52    /// Defined in NIST SP 800-186 § G.1.3: Curve P-384.
53    ///
54    /// ```text
55    /// Gₓ = aa87ca22 be8b0537 8eb1c71e f320ad74 6e1d3b62 8ba79b98
56    ///      59f741e0 82542a38 5502f25d bf55296c 3a545e38 72760ab7
57    /// Gᵧ = 3617de4a 96262c6f 5d9e98bf 9292dc29 f8f41dbd 289a147c
58    ///      e9da3113 b5f0b8c0 0a60b1ce 1d7e819d 7a431d7c 90ea0e5f
59    /// ```
60    const GENERATOR: (FieldElement, FieldElement) = (
61        FieldElement::from_hex("aa87ca22be8b05378eb1c71ef320ad746e1d3b628ba79b9859f741e082542a385502f25dbf55296c3a545e3872760ab7"),
62        FieldElement::from_hex("3617de4a96262c6f5d9e98bf9292dc29f8f41dbd289a147ce9da3113b5f0b8c00a60b1ce1d7e819d7a431d7c90ea0e5f"),
63    );
64}