Skip to main content

Algorand Puya RSA Signature Verification: RFC8017 RSASSA-PKCS1-V1.5-VERIFY function implementation

Project description

Puya RSA

Algorand Puya RSA RFC8017 RSASSA-PKCS1-V1.5-VERIFY function implementation. Intended to allow on-chain verification of RSA signatures seen in practice (e.g. JWT signatures), compliant with the Public Key Cryptography Standard v1.5. See RFC Section 8.2.2.

⚠️ Not officially production ready until documentation updated to indicate otherwise. Use at your own risk.

Features

  • Supports up to 1024 bytes (8192 bits) long modulus
  • RSASSA-PKCS1-V1.5-VERIFY function implementation

Install

Puya RSA is available on PyPI:

pip install puya-rsa

Usage

All inputs to math functions are assumed to be big-endian encoded numbers unless explicitly stated otherwise.

from puya_rsa import (
    pkcs1_v15_verify
)
# ... pkcs1_v15_verify(msg_digest_info, signature, public_modulus, exponent, barrett_reduction_factor)

The pkcs1_v15_verify function arguments are as follows:

  • msg_digest_info is a message digest with an identifier of the hashing function prepended
  • signature is the signature used to sign the message
  • public_modulus is the public RSA key (modulus)
  • exponent is the exponent used to generate the RSA key (typically 2**16)
  • barrett_reduction_factor is a precomputed factor according to the Barrett Reduction algorithm, which depends on the public key modulus. This must be calculated on-chain and proven (e.g. in contract state) to be trustless, otherwise it would act as a magic number. See Puya BigNumber.

Develop

This module uses poetry as the package manager and Python environment manager. Please see How to Build and Publish Python Packages With Poetry.

Test

poetry run pytest -v

License & Contribution

Contributions and additions are welcomed. Please respect the terms of the GNU GPL v3 license. Attribution for the author Winton Nathan-Roberts is required. No warranties or liabilities per the license. It is not yet officially production ready, although it is thoroughly tested.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

puya_rsa-0.2.1.tar.gz (14.8 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

puya_rsa-0.2.1-py3-none-any.whl (15.4 kB view details)

Uploaded Python 3

File details

Details for the file puya_rsa-0.2.1.tar.gz.

File metadata

  • Download URL: puya_rsa-0.2.1.tar.gz
  • Upload date:
  • Size: 14.8 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.8.3 CPython/3.12.5 Linux/6.10.9-350.vanilla.fc40.x86_64

File hashes

Hashes for puya_rsa-0.2.1.tar.gz
Algorithm Hash digest
SHA256 61f88545493f7e42799b8250305ec97543d1f3881972599f13ee2bbec000d6df
MD5 850ad8a3c32b18b1d800909785ec0041
BLAKE2b-256 16e7f10e3e910a73a12ccfa874a90bf33c0b73b4c807ab709c05b7a7823e7424

See more details on using hashes here.

File details

Details for the file puya_rsa-0.2.1-py3-none-any.whl.

File metadata

  • Download URL: puya_rsa-0.2.1-py3-none-any.whl
  • Upload date:
  • Size: 15.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.8.3 CPython/3.12.5 Linux/6.10.9-350.vanilla.fc40.x86_64

File hashes

Hashes for puya_rsa-0.2.1-py3-none-any.whl
Algorithm Hash digest
SHA256 688d6056595841732052e0b46c080f210fd587ac4c47d61d9ac8e10a30fb8b1d
MD5 fc2ee42bdc143ab6d049240355912ef6
BLAKE2b-256 c4605ba711b046fc57d0da1683ec89875eb3a43b2e297d120e02c525b4a54993

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page