Class EdDSAPrivateKey
- All Implemented Interfaces:
Serializable
,Key
,PrivateKey
,Destroyable
,EdDSAKey
Warning: Private key encoding is based on the current curdle WG draft, and is subject to change. See getEncoded().
For compatibility with older releases, decoding supports both the old and new draft specifications. See decode().
Ref: https://tools.ietf.org/html/draft-ietf-curdle-pkix-04
Old Ref: https://tools.ietf.org/html/draft-josefsson-pkix-eddsa-04
- See Also:
-
Field Summary
FieldsModifier and TypeFieldDescriptionprivate final byte[]
private final GroupElement
private final byte[]
private final EdDSAParameterSpec
private final byte[]
private static final int
private static final int
private static final int
private static final int
private final byte[]
private static final long
Fields inherited from interface net.i2p.crypto.eddsa.EdDSAKey
KEY_ALGORITHM
-
Constructor Summary
ConstructorsConstructorDescription -
Method Summary
Methods inherited from class java.lang.Object
clone, finalize, getClass, notify, notifyAll, toString, wait, wait, wait
Methods inherited from interface javax.security.auth.Destroyable
destroy, isDestroyed
-
Field Details
-
serialVersionUID
private static final long serialVersionUID- See Also:
-
seed
private final byte[] seed -
h
private final byte[] h -
a
private final byte[] a -
A
-
Abyte
private final byte[] Abyte -
edDsaSpec
-
OID_OLD
private static final int OID_OLD- See Also:
-
OID_ED25519
private static final int OID_ED25519- See Also:
-
OID_BYTE
private static final int OID_BYTE- See Also:
-
IDLEN_BYTE
private static final int IDLEN_BYTE- See Also:
-
-
Constructor Details
-
EdDSAPrivateKey
-
EdDSAPrivateKey
- Throws:
InvalidKeySpecException
-
-
Method Details
-
getAlgorithm
- Specified by:
getAlgorithm
in interfaceKey
-
getFormat
-
getEncoded
public byte[] getEncoded()Returns the public key in its canonical encoding.This implements the following specs:
- General encoding: https://tools.ietf.org/html/draft-ietf-curdle-pkix-04
- Key encoding: https://tools.ietf.org/html/rfc8032
This encodes the seed. It will return null if constructed from a spec which was directly constructed from H, in which case seed is null.
For keys in older formats, decoding and then re-encoding is sufficient to migrate them to the canonical encoding.
Relevant spec quotes:OneAsymmetricKey ::= SEQUENCE { version Version, privateKeyAlgorithm PrivateKeyAlgorithmIdentifier, privateKey PrivateKey, attributes [0] Attributes OPTIONAL, ..., [[2: publicKey [1] PublicKey OPTIONAL ]], ... } Version ::= INTEGER PrivateKeyAlgorithmIdentifier ::= AlgorithmIdentifier PrivateKey ::= OCTET STRING PublicKey ::= OCTET STRING Attributes ::= SET OF Attribute
... when encoding a OneAsymmetricKey object, the private key is wrapped in a CurvePrivateKey object and wrapped by the OCTET STRING of the 'privateKey' field. CurvePrivateKey ::= OCTET STRING
AlgorithmIdentifier ::= SEQUENCE { algorithm OBJECT IDENTIFIER, parameters ANY DEFINED BY algorithm OPTIONAL } For all of the OIDs, the parameters MUST be absent.
id-Ed25519 OBJECT IDENTIFIER ::= { 1 3 101 112 }
- Specified by:
getEncoded
in interfaceKey
- Returns:
- 48 bytes for Ed25519, null for other curves
-
decode
Extracts the private key bytes from the provided encoding.This will decode data conforming to the current spec at https://tools.ietf.org/html/draft-ietf-curdle-pkix-04 or as inferred from the old spec at https://tools.ietf.org/html/draft-josefsson-pkix-eddsa-04.
Contrary to draft-ietf-curdle-pkix-04, it WILL accept a parameter value of NULL, as it is required for interoperability with the default Java keystore. Other implementations MUST NOT copy this behaviour from here unless they also need to read keys from the default Java keystore.
This is really dumb for now. It does not use a general-purpose ASN.1 decoder. See also getEncoded().
- Returns:
- 32 bytes for Ed25519, throws for other curves
- Throws:
InvalidKeySpecException
-
getParams
-
getSeed
public byte[] getSeed()- Returns:
- will be null if constructed from a spec which was directly constructed from H
-
getH
public byte[] getH()- Returns:
- the hash of the seed
-
geta
public byte[] geta()- Returns:
- the private key
-
getA
- Returns:
- the public key
-
getAbyte
public byte[] getAbyte()- Returns:
- the public key
-
hashCode
public int hashCode() -
equals
-