Skip to content
/ rbcl Public

Python library that bundles libsodium and provides wrappers for its Ristretto group functions.

License

Notifications You must be signed in to change notification settings

nthparty/rbcl

Repository files navigation

rbcl

Python library that bundles libsodium and provides wrappers for its Ristretto group functions.

PyPI version and link. Read the Docs documentation status. GitHub Actions status. Coveralls test coverage summary.

Installation and Usage

This library is available as a package on PyPI:

python -m pip install rbcl

The library can be imported in the usual ways:

import rbcl
from rbcl import *

Examples

A few usage examples are presented below:

>>> from rbcl import *
>>> x = crypto_core_ristretto255_random()
>>> assert crypto_core_ristretto255_is_valid_point(x)
>>> y = crypto_core_ristretto255_from_hash(b'\xF0' * 64)
>>> assert crypto_core_ristretto255_is_valid_point(y)
>>> z1 = crypto_core_ristretto255_add(x, y)
>>> z2 = crypto_core_ristretto255_add(y, x)
>>> assert z1 == z2 # Point addition commutes.
>>> s1 = crypto_core_ristretto255_scalar_random()
>>> s2 = crypto_core_ristretto255_scalar_random()
>>> w1 = crypto_scalarmult_ristretto255(s1, crypto_scalarmult_ristretto255(s2, x))
>>> w2 = crypto_scalarmult_ristretto255(s2, crypto_scalarmult_ristretto255(s1, x))
>>> assert w1 == w2 # Multiplication of a point by a scalar is repeated addition.

This library exports Python wrappers for constructors, point arithmetic functions, and scalar arithmetic functions.

Development, Build, and Manual Installation Instructions

All development and installation dependencies are managed using setuptools and are fully specified in setup.cfg. The extras_require option is used to specify optional requirements for various development tasks. This makes it possible to specify additional options (such as docs, lint, and so on) when performing installation using pip (assuming that the library has already been built successfully):

python -m pip install .[docs,lint]

Building from Source

The library can be built manually from source within Linux and macOS using the sequence of commands below:

python -m pip install .[build]
python -m build --sdist --wheel .

Developing the library further in a local environment and/or building the library from source requires libsodium. The step python -m build --sdist --wheel . in the above attempts to automatically locate a copy of the libsodium source archive src/rbcl/libsodium.tar.gz. If the archive corresponding to the operating system is not found, the build process attempts to download it. To support building offline, it is necessary to first download the appropriate libsodium archive to its designated location:

wget -O src/rbcl/libsodium.tar.gz https://github.com/jedisct1/libsodium/releases/download/1.0.18-RELEASE/libsodium-1.0.18.tar.gz

The process for building manually from source within a Windows environment is not currently documented, but an example of one sequence of steps can be found in the Windows job entry within the GitHub Actions workflow defined in the file .github/workflows/lint-test-cover-docs-build-upload.yml.

Preparation for Local Development

Before documentation can be generated or tests can be executed, it is necessary to run the build process and then to use the command below to move the compiled libsodium shared/dynamic library file into its designated location (so that the module file src/rbcl/rbcl.py is able to import it):

cp build/lib*/rbcl/_sodium.py src/rbcl

Manual Installation

Once the package is built, it can be installed manually using the command below:

python -m pip install -f dist . --upgrade

Documentation

Once the libsodium shared library file is compiled and moved into its designated location (as described in the relevant subsection above), the documentation can be generated automatically from the source files using Sphinx:

python -m pip install .[docs]
cd docs
sphinx-apidoc -f -E --templatedir=_templates -o _source .. ../src/rbcl/_sodium_build.py && make html

Testing and Conventions

Before unit tests can be executed, it is first necessary to prepare for local development by compiling and moving into its designated location the libsodium shared library file (as described in the relevant subsection above).

All unit tests are executed and their coverage is measured when using pytest (see pyproject.toml for configuration details):

python -m pip install .[test]
python -m pytest

Alternatively, all unit tests are included in the module itself and can be executed using doctest:

python src/rbcl/rbcl.py -v

Style conventions are enforced using Pylint:

python -m pip install .[lint]
python -m pylint src/rbcl src/rbcl/_sodium.tmpl src/rbcl/_sodium_build.py --disable=duplicate-code

Contributions

In order to contribute to the source code, open an issue or submit a pull request on the GitHub page for this library.

Versioning

The version number format for this library and the changes to the library associated with version number increments conform with Semantic Versioning 2.0.0.

Publishing

This library can be published as a package on PyPI by a package maintainer. First, install the dependencies required for packaging and publishing:

python -m pip install .[publish]

Ensure that the correct version number appears in setup.cfg, and that any links in this README document to the Read the Docs documentation of this package (or its dependencies) have appropriate version numbers. Also ensure that the Read the Docs project for this library has an automation rule that activates and sets as the default all tagged versions. Create and push a tag for this version (replacing ?.?.? with the version number):

git tag ?.?.?
git push origin ?.?.?

Remove any old build/distribution files. Then, package the source into a distribution archive:

rm -rf build dist src/*.egg-info
python -m build --sdist .

Next, navigate to the appropriate GitHub Actions run of the workflow defined in lint-test-cover-docs-build-upload.yml. Click on the workflow and scroll down to the Artifacts panel. Download the archive files to the dist directory. Unzip all the archive files so that only the *.whl files remain:

cd dist && for i in `ls *.zip`; do unzip $i; done && rm *.zip && cd ..

Finally, upload the package distribution archive to PyPI:

python -m twine upload dist/*