#elliptic-curve #nist #equation #formulas #complete #prime #order

no-std primeorder

Pure Rust implementation of complete addition formulas for prime order elliptic curves (Renes-Costello-Batina 2015). Generic over field elements and curve equation coefficients

11 releases

0.14.0-pre.0 Jan 19, 2024
0.13.6 Nov 16, 2023
0.13.2 May 29, 2023
0.13.0 Mar 3, 2023
0.0.0 Jun 30, 2022

#1929 in Cryptography

Download history 77186/week @ 2023-12-23 132899/week @ 2023-12-30 172017/week @ 2024-01-06 176008/week @ 2024-01-13 197710/week @ 2024-01-20 201705/week @ 2024-01-27 185708/week @ 2024-02-03 198177/week @ 2024-02-10 190158/week @ 2024-02-17 204203/week @ 2024-02-24 219680/week @ 2024-03-02 219899/week @ 2024-03-09 225791/week @ 2024-03-16 204223/week @ 2024-03-23 214661/week @ 2024-03-30 165135/week @ 2024-04-06

843,885 downloads per month
Used in 345 crates (11 directly)

Apache-2.0 OR MIT

77KB
2K SLoC

RustCrypto: Prime Order Elliptic Curve Formulas

crate Docs Build Status Apache2/MIT licensed Rust Version Project Chat

Pure Rust implementation of complete addition formulas for prime order elliptic curves (Renes-Costello-Batina 2015). Generic over field elements and curve equation coefficients.

Documentation

About

This crate provides a generic implementation of complete formulas for prime order elliptic curves which are defined by the short Weierstrass equation:

y² = x³ + ax + b

It's used to implement the following elliptic curves:

⚠️ Security Warning

The elliptic curve arithmetic contained in this crate has never been independently audited!

This crate has been designed with the goal of ensuring that secret-dependent operations are performed in constant time (using the subtle crate and constant-time formulas). However, it has not been thoroughly assessed to ensure that generated assembly is constant time on common CPU architectures.

USE AT YOUR OWN RISK!

Minimum Supported Rust Version

Rust 1.73 or higher.

Minimum supported Rust version can be changed in the future, but it will be done with a minor version bump.

SemVer Policy

  • All on-by-default features of this library are covered by SemVer
  • MSRV is considered exempt from SemVer as noted above

License

All crates licensed under either of:

at your option.

Contribution

Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.

Dependencies

~2.5MB
~51K SLoC