2013-03-02 12:28:13 -05:00
|
|
|
/// Implements Bitcoin's feature for signing arbitrary messages.
|
2014-03-28 16:20:46 +11:00
|
|
|
var Address = require('./address')
|
2014-05-13 16:38:13 +10:00
|
|
|
var bufferutils = require('./bufferutils')
|
2014-04-08 22:13:03 +10:00
|
|
|
var crypto = require('./crypto')
|
2014-03-28 16:20:46 +11:00
|
|
|
var ecdsa = require('./ecdsa')
|
2014-05-16 15:39:17 +10:00
|
|
|
var networks = require('./networks')
|
2013-03-02 12:28:13 -05:00
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
var Address = require('./address')
|
|
|
|
var ECPubKey = require('./ecpubkey')
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
function magicHash(message, network) {
|
|
|
|
var magicPrefix = new Buffer(network.magicPrefix)
|
2014-05-05 07:44:51 +10:00
|
|
|
var messageBuffer = new Buffer(message)
|
2014-05-13 16:38:13 +10:00
|
|
|
var lengthBuffer = new Buffer(bufferutils.varIntSize(messageBuffer.length))
|
|
|
|
bufferutils.writeVarInt(lengthBuffer, messageBuffer.length, 0)
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-05 07:44:51 +10:00
|
|
|
var buffer = Buffer.concat([
|
2014-05-16 15:39:17 +10:00
|
|
|
magicPrefix, lengthBuffer, messageBuffer
|
2014-05-05 07:44:51 +10:00
|
|
|
])
|
2014-04-08 22:13:03 +10:00
|
|
|
return crypto.hash256(buffer)
|
2014-03-26 21:00:08 -04:00
|
|
|
}
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
function sign(key, message, network) {
|
|
|
|
network = network || networks.bitcoin
|
|
|
|
|
|
|
|
var hash = magicHash(message, network)
|
2014-04-24 07:22:10 +10:00
|
|
|
var sig = ecdsa.parseSig(key.sign(hash))
|
|
|
|
var i = ecdsa.calcPubKeyRecoveryParam(key.pub.Q, sig.r, sig.s, hash)
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-17 00:27:54 +10:00
|
|
|
return ecdsa.serializeSigCompact(sig.r, sig.s, i, key.pub.compressed)
|
2014-03-26 21:00:08 -04:00
|
|
|
}
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
// TODO: network could be implied from address
|
|
|
|
function verify(address, compactSig, message, network) {
|
2014-04-20 04:54:50 +10:00
|
|
|
if (typeof address === 'string') {
|
2014-04-17 23:31:45 +10:00
|
|
|
address = Address.fromBase58Check(address)
|
|
|
|
}
|
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
network = network || networks.bitcoin
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-16 15:39:17 +10:00
|
|
|
var hash = magicHash(message, network)
|
|
|
|
var sig = ecdsa.parseSigCompact(compactSig)
|
|
|
|
var Q = ecdsa.recoverPubKey(sig.r, sig.s, hash, sig.i)
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-05-17 00:28:39 +10:00
|
|
|
var pubKey = new ECPubKey(Q, sig.compressed)
|
2014-03-29 06:03:43 +11:00
|
|
|
return pubKey.getAddress(address.version).toString() === address.toString()
|
2014-03-26 21:00:08 -04:00
|
|
|
}
|
2012-08-16 00:25:06 +02:00
|
|
|
|
2014-03-29 06:03:43 +11:00
|
|
|
module.exports = {
|
|
|
|
magicHash: magicHash,
|
|
|
|
sign: sign,
|
|
|
|
verify: verify
|
|
|
|
}
|