mirror of https://github.com/python/cpython
325e9b8ef4
This replaces the existing hashlib Blake2 module with a single implementation that uses HACL\*'s Blake2b/Blake2s implementations. We added support for all the modes exposed by the Python API, including tree hashing, leaf nodes, and so on. We ported and merged all of these changes upstream in HACL\*, added test vectors based on Python's existing implementation, and exposed everything needed for hashlib. This was joint work done with @R1kM. See the PR for much discussion and benchmarking details. TL;DR: On many systems, 8-50% faster (!) than `libb2`, on some systems it appeared 10-20% slower than `libb2`. |
||
---|---|---|
.. | ||
include/krml | ||
internal | ||
Hacl_Hash_Blake2b.c | ||
Hacl_Hash_Blake2b.h | ||
Hacl_Hash_Blake2b_Simd256.c | ||
Hacl_Hash_Blake2b_Simd256.h | ||
Hacl_Hash_Blake2s.c | ||
Hacl_Hash_Blake2s.h | ||
Hacl_Hash_Blake2s_Simd128.c | ||
Hacl_Hash_Blake2s_Simd128.h | ||
Hacl_Hash_MD5.c | ||
Hacl_Hash_MD5.h | ||
Hacl_Hash_SHA1.c | ||
Hacl_Hash_SHA1.h | ||
Hacl_Hash_SHA2.c | ||
Hacl_Hash_SHA2.h | ||
Hacl_Hash_SHA3.c | ||
Hacl_Hash_SHA3.h | ||
Hacl_Streaming_Types.h | ||
Lib_Memzero0.c | ||
README.md | ||
lib_memzero0.h | ||
libintvector.h | ||
python_hacl_namespaces.h | ||
refresh.sh |
README.md
Algorithm implementations used by the hashlib
module.
This code comes from the HACL* project.
HACL* is a cryptographic library that has been formally verified for memory safety, functional correctness, and secret independence.
Updating HACL*
Use the refresh.sh
script in this directory to pull in a new upstream code
version. The upstream git hash used for the most recent code pull is recorded
in the script. Modify the script as needed to bring in more if changes are
needed based on upstream code refactoring.
Never manually edit HACL* files. Always add transformation shell code to the
refresh.sh
script to perform any necessary edits. If there are serious code
changes needed, work with the upstream repository.
Local files
./include/python_hacl_namespaces.h
./README.md
./refresh.sh
ACKS
- Jonathan Protzenko aka @msprotz on Github contributed our HACL* based builtin code.