3 * $Id: gfshare.h,v 1.3 2000/06/18 23:12:15 mdw Exp $
5 * Secret sharing over %$\gf{2^8}$%
7 * (c) 2000 Straylight/Edgeware
10 /*----- Licensing notice --------------------------------------------------*
12 * This file is part of Catacomb.
14 * Catacomb is free software; you can redistribute it and/or modify
15 * it under the terms of the GNU Library General Public License as
16 * published by the Free Software Foundation; either version 2 of the
17 * License, or (at your option) any later version.
19 * Catacomb is distributed in the hope that it will be useful,
20 * but WITHOUT ANY WARRANTY; without even the implied warranty of
21 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
22 * GNU Library General Public License for more details.
24 * You should have received a copy of the GNU Library General Public
25 * License along with Catacomb; if not, write to the Free
26 * Software Foundation, Inc., 59 Temple Place - Suite 330, Boston,
30 /*----- Revision history --------------------------------------------------*
33 * Revision 1.3 2000/06/18 23:12:15 mdw
34 * Change typesetting of Galois Field names.
36 * Revision 1.2 2000/06/17 11:05:27 mdw
37 * Add a commentary on the system.
39 * Revision 1.1 2000/06/17 10:56:30 mdw
40 * Fast but nonstandard secret sharing system.
44 /*----- Notes on the system -----------------------------------------------*
46 * This uses a variant of Shamir's secret sharing system. Shamir's original
47 * system used polynomials modulo a large prime. This implementation instead
48 * uses the field %$\gf{2^8}$%, represented by
50 * %$\gf{2}[x]/(x^8 + x^4 + x^3 + x^2 + 1)$%
52 * and shares each byte of the secret independently. It is therefore limited
53 * to 255 players, although this probably isn't a serious limitation in
56 * Share creation and reconstruction is extremely efficient. Contrast the
57 * performance of the straightforward implementation based on multiprecision
61 #ifndef CATACOMB_GFSHARE_H
62 #define CATACOMB_GFSHARE_H
68 /*----- Header files ------------------------------------------------------*/
70 #include <mLib/bits.h>
72 #ifndef CATACOMB_GRAND_H
76 /*----- Data structures ---------------------------------------------------*/
78 /* --- A secret sharing context --- */
80 typedef struct gfshare_pt
{
81 octet x
; /* %$x$%-coordinate of the share */
82 octet
*y
; /* Pointer to share payload */
85 typedef struct gfshare
{
86 unsigned t
; /* Threshold */
87 unsigned n
; /* The number of shares to make */
88 unsigned i
; /* Next free slot in vector */
89 size_t sz
; /* Size of the secret and shares */
90 octet
*s
; /* The secret */
91 gfshare_pt
*v
; /* Vector of share information */
94 #define GFSHARE_INIT(t, n, sz) { t, n, 0, sz, 0, 0 }
96 /*----- Functions provided ------------------------------------------------*/
98 /* --- @gfshare_create@ --- *
100 * Arguments: @gfshare *s@ = pointer to share context to initialize
101 * @unsigned t, n@ = threshold parameters for the system
102 * @size_t sz@ = size of the secret
106 * Use: Initializes a sharing context.
109 extern void gfshare_create(gfshare */
*s*/
, unsigned /*t*/, unsigned /*n*/,
112 /* --- @gfshare_destroy@ --- *
114 * Arguments: @gfshare *s@ = pointer to share context to destroy
118 * Use: Disposes of a sharing context. The allocations for the
119 * individual shares and the vector @v@ are freed; the secret is
123 extern void gfshare_destroy(gfshare */
*s*/
);
125 /* --- @gfshare_mkshares@ --- *
127 * Arguments: @gfshare *s@ = pointer to share context to fill in
128 * @grand *r@ = pointer to random number source
132 * Use: Generates @c->n@ secret shares, such that any @c->t@ of them
133 * may be used to recover the secret.
135 * The context structure is expected to be mostly filled in. In
136 * particular, @t@, @n@, @ssz@ and @s@ must be initialized. If
137 * @v@ is zero, a vector of appropriate size is allocated. You
138 * should use the macro @GFSHARE_INIT@ or @gfshare_create@ to
139 * construct sharing contexts.
142 extern void gfshare_mkshares(gfshare */
*s*/
, grand */
*r*/
);
144 /* --- @gfshare_add@ --- *
146 * Arguments: @gfshare *s@ = pointer to sharing context
147 * @unsigned x@ = which share number this is
148 * @const octet *y@ = the share value
150 * Returns: Number of shares required before recovery may be performed.
152 * Use: Adds a share to the context. The context must have been
153 * initialized with the correct threshold @t@.
156 extern unsigned gfshare_add(gfshare */
*s*/
,
157 unsigned /*x*/, const octet */
*y*/
);
159 /* --- @gfshare_combine@ --- *
161 * Arguments: @gfshare *s@ = pointer to share context
162 * @octet *buf@ = pointer to output buffer for the secret
166 * Use: Reconstructs a secret, given enough shares.
169 extern void gfshare_combine(gfshare */
*s*/
, octet */
*buf*/
);
171 /*----- That's all, folks -------------------------------------------------*/