2014-03-29 19:32:57 +11:00
|
|
|
var assert = require('assert')
|
2014-04-04 05:10:12 +11:00
|
|
|
var base58check = require('./base58check')
|
2014-03-29 19:32:57 +11:00
|
|
|
var ecdsa = require('./ecdsa')
|
2014-05-05 13:23:22 +10:00
|
|
|
var networks = require('./networks')
|
2014-04-17 19:08:16 +10:00
|
|
|
var secureRandom = require('secure-random')
|
2013-02-17 00:39:15 -05:00
|
|
|
|
2014-05-13 16:44:29 +10:00
|
|
|
var BigInteger = require('bigi')
|
|
|
|
var ECPubKey = require('./ecpubkey')
|
2013-02-17 00:39:15 -05:00
|
|
|
|
2014-06-07 16:24:27 +10:00
|
|
|
var ecurve = require('ecurve')
|
|
|
|
var curve = ecurve.getCurveByName('secp256k1')
|
2014-03-29 19:32:57 +11:00
|
|
|
|
2014-06-07 18:24:16 +10:00
|
|
|
function ECKey(d, compressed) {
|
|
|
|
assert(d.signum() > 0, 'Private key must be greater than 0')
|
2014-06-16 01:36:05 +10:00
|
|
|
assert(d.compareTo(curve.n) < 0, 'Private key must be less than the curve order')
|
2014-03-29 19:32:57 +11:00
|
|
|
|
2014-06-16 01:36:05 +10:00
|
|
|
var Q = curve.G.multiply(d)
|
2014-03-29 19:32:57 +11:00
|
|
|
|
2014-06-07 18:24:16 +10:00
|
|
|
this.d = d
|
2014-04-17 19:08:16 +10:00
|
|
|
this.pub = new ECPubKey(Q, compressed)
|
2014-03-29 19:32:57 +11:00
|
|
|
}
|
2013-02-17 00:39:15 -05:00
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
// Static constructors
|
|
|
|
ECKey.fromWIF = function(string) {
|
2014-06-03 17:02:59 +10:00
|
|
|
var payload = base58check.decode(string)
|
2014-05-16 13:46:06 +10:00
|
|
|
var compressed = false
|
|
|
|
|
2014-06-03 17:02:59 +10:00
|
|
|
// Ignore the version byte
|
|
|
|
payload = payload.slice(1)
|
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
if (payload.length === 33) {
|
2014-05-29 16:00:27 +10:00
|
|
|
assert.strictEqual(payload[32], 0x01, 'Invalid compression flag')
|
2014-01-11 15:51:31 +07:00
|
|
|
|
2014-06-03 17:02:59 +10:00
|
|
|
// Truncate the compression flag
|
2014-05-16 13:46:06 +10:00
|
|
|
payload = payload.slice(0, -1)
|
|
|
|
compressed = true
|
2014-04-17 19:08:16 +10:00
|
|
|
}
|
|
|
|
|
2014-05-16 13:46:06 +10:00
|
|
|
assert.equal(payload.length, 32, 'Invalid WIF payload length')
|
|
|
|
|
2014-06-07 18:24:16 +10:00
|
|
|
var d = BigInteger.fromBuffer(payload)
|
|
|
|
return new ECKey(d, compressed)
|
2014-01-11 15:51:31 +07:00
|
|
|
}
|
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
ECKey.makeRandom = function(compressed, rng) {
|
|
|
|
rng = rng || secureRandom
|
2014-04-09 18:06:50 +10:00
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
var buffer = new Buffer(rng(32))
|
2014-06-07 18:24:16 +10:00
|
|
|
var d = BigInteger.fromBuffer(buffer)
|
2014-06-16 01:36:05 +10:00
|
|
|
d = d.mod(curve.n)
|
2014-04-09 18:06:50 +10:00
|
|
|
|
2014-06-07 18:24:16 +10:00
|
|
|
return new ECKey(d, compressed)
|
2013-11-18 23:47:56 -05:00
|
|
|
}
|
2013-02-17 00:39:15 -05:00
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
// Export functions
|
2014-06-03 21:43:10 +10:00
|
|
|
ECKey.prototype.toWIF = function(network) {
|
|
|
|
network = network || networks.bitcoin
|
2014-03-25 02:44:43 +11:00
|
|
|
|
2014-06-03 17:02:59 +10:00
|
|
|
var bufferLen = this.pub.compressed ? 34 : 33
|
|
|
|
var buffer = new Buffer(bufferLen)
|
|
|
|
|
2014-06-03 21:43:10 +10:00
|
|
|
buffer.writeUInt8(network.wif, 0)
|
2014-06-07 18:24:16 +10:00
|
|
|
this.d.toBuffer(32).copy(buffer, 1)
|
2014-06-03 17:02:59 +10:00
|
|
|
|
2014-04-17 19:08:16 +10:00
|
|
|
if (this.pub.compressed) {
|
2014-06-03 17:02:59 +10:00
|
|
|
buffer.writeUInt8(0x01, 33)
|
2014-03-28 18:14:46 +11:00
|
|
|
}
|
|
|
|
|
2014-06-03 17:02:59 +10:00
|
|
|
return base58check.encode(buffer)
|
2014-01-08 17:13:26 -05:00
|
|
|
}
|
2014-01-04 13:26:03 -05:00
|
|
|
|
2014-05-16 13:46:06 +10:00
|
|
|
// Operations
|
|
|
|
ECKey.prototype.sign = function(hash) {
|
2014-06-07 16:24:27 +10:00
|
|
|
return ecdsa.sign(curve, hash, this.d)
|
2014-05-16 13:46:06 +10:00
|
|
|
}
|
|
|
|
|
2014-05-13 16:44:29 +10:00
|
|
|
module.exports = ECKey
|