You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

44 lines
1.2 KiB

  1. /*
  2. Copyright 2018 0KIMS association.
  3. This file is part of circom (Zero Knowledge Circuit Compiler).
  4. circom is a free software: you can redistribute it and/or modify it
  5. under the terms of the GNU General Public License as published by
  6. the Free Software Foundation, either version 3 of the License, or
  7. (at your option) any later version.
  8. circom is distributed in the hope that it will be useful, but WITHOUT
  9. ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
  10. or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public
  11. License for more details.
  12. You should have received a copy of the GNU General Public License
  13. along with circom. If not, see <https://www.gnu.org/licenses/>.
  14. */
  15. /* Xor3 function for sha256
  16. out = a ^ b ^ c =>
  17. out = a+b+c - 2*a*b - 2*a*c - 2*b*c + 4*a*b*c =>
  18. out = a*( 1 - 2*b - 2*c + 4*b*c ) + b + c - 2*b*c =>
  19. mid = b*c
  20. out = a*( 1 - 2*b -2*c + 4*mid ) + b + c - 2 * mid
  21. */
  22. template Xor3(n) {
  23. signal input a[n];
  24. signal input b[n];
  25. signal input c[n];
  26. signal output out[n];
  27. signal mid[n];
  28. for (var k=0; k<n; k++) {
  29. mid[k] <== b[k]*c[k];
  30. out[k] <== a[k] * (1 -2*b[k] -2*c[k] +4*mid[k]) + b[k] + c[k] -2*mid[k];
  31. }
  32. }