mbedtls/3rdparty/everest
2019-08-19 13:37:46 +01:00
..
include/everest 3rdparty: Pull Everest x25519 key size into macro 2019-08-19 13:37:46 +01:00
library ECDH: Use macro-based sizes in Everest x25519 2019-08-19 13:37:46 +01:00
.gitignore 3rdparty: Adjust .gitignore 2019-08-19 13:37:46 +01:00
CMakeLists.txt 3rdparty: Fix Everest platform detection for CMake 2019-08-19 13:37:46 +01:00
Makefile.inc 3rdparty: Use LOCAL_FLAGS instead of CFLAGS 2019-08-19 13:37:46 +01:00
README.md 3rdparty: Improve Everest README.md 2019-08-19 13:37:46 +01:00

The files in this directory stem from Project Everest and are distributed under the Apache 2.0 license.

This is a formally verified implementation of Curve25519-based handshakes. The C code is automatically derived from the (verified) original implementation in the F* language by KreMLin. In addition to the improved safety and security of the implementation, it is also significantly faster than the default implementation of Curve25519 in mbedTLS.

The caveat is that not all platforms are supported, although the version in everest/library/legacy should work on most systems. The main issue is that some platforms do not provide a 128-bit integer type and KreMLin therefore has to use additional (also verified) code to simulate them, resulting in less of a performance gain overall. Explictly supported platforms are currently x86 and x86_64 using gcc, clang, or arm-cc, and Visual C (2010 and later).