index.js 1.1 KB

1234567891011121314151617181920212223242526272829303132333435363738
  1. 'use strict';
  2. var BN = require('bn.js');
  3. var randomBytes = require('randombytes');
  4. var Buffer = require('safe-buffer').Buffer;
  5. function getr(priv) {
  6. var len = priv.modulus.byteLength();
  7. var r;
  8. do {
  9. r = new BN(randomBytes(len));
  10. } while (r.cmp(priv.modulus) >= 0 || !r.umod(priv.prime1) || !r.umod(priv.prime2));
  11. return r;
  12. }
  13. function blind(priv) {
  14. var r = getr(priv);
  15. var blinder = r.toRed(BN.mont(priv.modulus)).redPow(new BN(priv.publicExponent)).fromRed();
  16. return { blinder: blinder, unblinder: r.invm(priv.modulus) };
  17. }
  18. function crt(msg, priv) {
  19. var blinds = blind(priv);
  20. var len = priv.modulus.byteLength();
  21. var blinded = new BN(msg).mul(blinds.blinder).umod(priv.modulus);
  22. var c1 = blinded.toRed(BN.mont(priv.prime1));
  23. var c2 = blinded.toRed(BN.mont(priv.prime2));
  24. var qinv = priv.coefficient;
  25. var p = priv.prime1;
  26. var q = priv.prime2;
  27. var m1 = c1.redPow(priv.exponent1).fromRed();
  28. var m2 = c2.redPow(priv.exponent2).fromRed();
  29. var h = m1.isub(m2).imul(qinv).umod(p).imul(q);
  30. return m2.iadd(h).imul(blinds.unblinder).umod(priv.modulus).toArrayLike(Buffer, 'be', len);
  31. }
  32. crt.getr = getr;
  33. module.exports = crt;