3075a54b60de7a623d612351b3c815cd57cfc42f
[rust-lightning] / fuzz / src / onion_message.rs
1 // Imports that need to be added manually
2 use bitcoin::bech32::u5;
3 use bitcoin::blockdata::script::Script;
4 use bitcoin::secp256k1::{PublicKey, Scalar, Secp256k1, SecretKey};
5 use bitcoin::secp256k1::ecdh::SharedSecret;
6 use bitcoin::secp256k1::ecdsa::RecoverableSignature;
7
8 use lightning::chain::keysinterface::{Recipient, KeyMaterial, EntropySource, NodeSigner, SignerProvider};
9 use lightning::ln::msgs::{self, DecodeError, OnionMessageHandler};
10 use lightning::ln::script::ShutdownScript;
11 use lightning::util::enforcing_trait_impls::EnforcingSigner;
12 use lightning::util::logger::Logger;
13 use lightning::util::ser::{Readable, Writeable, Writer};
14 use lightning::onion_message::{CustomOnionMessageContents, CustomOnionMessageHandler, OnionMessenger};
15
16 use crate::utils::test_logger;
17
18 use std::io::{self, Cursor};
19 use std::sync::atomic::{AtomicU64, Ordering};
20
21 #[inline]
22 /// Actual fuzz test, method signature and name are fixed
23 pub fn do_test<L: Logger>(data: &[u8], logger: &L) {
24         if let Ok(msg) = <msgs::OnionMessage as Readable>::read(&mut Cursor::new(data)) {
25                 let mut secret_bytes = [0; 32];
26                 secret_bytes[31] = 2;
27                 let secret = SecretKey::from_slice(&secret_bytes).unwrap();
28                 let keys_manager = KeyProvider {
29                         node_secret: secret,
30                         counter: AtomicU64::new(0),
31                 };
32                 let custom_msg_handler = TestCustomMessageHandler {};
33                 let onion_messenger = OnionMessenger::new(&keys_manager, logger, &custom_msg_handler);
34                 let mut pk = [2; 33]; pk[1] = 0xff;
35                 let peer_node_id_not_used = PublicKey::from_slice(&pk).unwrap();
36                 onion_messenger.handle_onion_message(&peer_node_id_not_used, &msg);
37         }
38 }
39
40 /// Method that needs to be added manually, {name}_test
41 pub fn onion_message_test<Out: test_logger::Output>(data: &[u8], out: Out) {
42         let logger = test_logger::TestLogger::new("".to_owned(), out);
43         do_test(data, &logger);
44 }
45
46 /// Method that needs to be added manually, {name}_run
47 #[no_mangle]
48 pub extern "C" fn onion_message_run(data: *const u8, datalen: usize) {
49         let logger = test_logger::TestLogger::new("".to_owned(), test_logger::DevNull {});
50         do_test(unsafe { std::slice::from_raw_parts(data, datalen) }, &logger);
51 }
52
53 struct TestCustomMessage {}
54
55 const CUSTOM_MESSAGE_TYPE: u64 = 4242;
56 const CUSTOM_MESSAGE_CONTENTS: [u8; 32] = [42; 32];
57
58 impl CustomOnionMessageContents for TestCustomMessage {
59         fn tlv_type(&self) -> u64 {
60                 CUSTOM_MESSAGE_TYPE
61         }
62 }
63
64 impl Writeable for TestCustomMessage {
65         fn write<W: Writer>(&self, w: &mut W) -> Result<(), io::Error> {
66                 Ok(CUSTOM_MESSAGE_CONTENTS.write(w)?)
67         }
68 }
69
70 struct TestCustomMessageHandler {}
71
72 impl CustomOnionMessageHandler for TestCustomMessageHandler {
73         type CustomMessage = TestCustomMessage;
74         fn handle_custom_message(&self, _msg: Self::CustomMessage) {}
75         fn read_custom_message<R: io::Read>(&self, _message_type: u64, buffer: &mut R) -> Result<Option<Self::CustomMessage>, msgs::DecodeError> {
76                 let mut buf = Vec::new();
77                 buffer.read_to_end(&mut buf)?;
78                 return Ok(Some(TestCustomMessage {}))
79         }
80 }
81
82 pub struct VecWriter(pub Vec<u8>);
83 impl Writer for VecWriter {
84         fn write_all(&mut self, buf: &[u8]) -> Result<(), ::std::io::Error> {
85                 self.0.extend_from_slice(buf);
86                 Ok(())
87         }
88 }
89 struct KeyProvider {
90         node_secret: SecretKey,
91         counter: AtomicU64,
92 }
93
94 impl EntropySource for KeyProvider {
95         fn get_secure_random_bytes(&self) -> [u8; 32] {
96                 let ctr = self.counter.fetch_add(1, Ordering::Relaxed);
97                 [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0,
98                         (ctr >> 8*7) as u8, (ctr >> 8*6) as u8, (ctr >> 8*5) as u8, (ctr >> 8*4) as u8, (ctr >> 8*3) as u8, (ctr >> 8*2) as u8, (ctr >> 8*1) as u8, 14, (ctr >> 8*0) as u8]
99         }
100 }
101
102 impl NodeSigner for KeyProvider {
103         fn get_node_secret(&self, _recipient: Recipient) -> Result<SecretKey, ()> {
104                 Ok(self.node_secret.clone())
105         }
106
107         fn get_node_id(&self, recipient: Recipient) -> Result<PublicKey, ()> {
108                 let secp_ctx = Secp256k1::signing_only();
109                 Ok(PublicKey::from_secret_key(&secp_ctx, &self.get_node_secret(recipient)?))
110         }
111
112         fn ecdh(&self, recipient: Recipient, other_key: &PublicKey, tweak: Option<&Scalar>) -> Result<SharedSecret, ()> {
113                 let mut node_secret = self.get_node_secret(recipient)?;
114                 if let Some(tweak) = tweak {
115                         node_secret = node_secret.mul_tweak(tweak).map_err(|_| ())?;
116                 }
117                 Ok(SharedSecret::new(other_key, &node_secret))
118         }
119
120         fn get_inbound_payment_key_material(&self) -> KeyMaterial { unreachable!() }
121
122         fn sign_invoice(&self, _hrp_bytes: &[u8], _invoice_data: &[u5], _recipient: Recipient) -> Result<RecoverableSignature, ()> {
123                 unreachable!()
124         }
125 }
126
127 impl SignerProvider for KeyProvider {
128         type Signer = EnforcingSigner;
129
130         fn generate_channel_keys_id(&self, _inbound: bool, _channel_value_satoshis: u64, _user_channel_id: u128) -> [u8; 32] { unreachable!() }
131
132         fn derive_channel_signer(&self, _channel_value_satoshis: u64, _channel_keys_id: [u8; 32]) -> Self::Signer {
133                 unreachable!()
134         }
135
136         fn read_chan_signer(&self, _data: &[u8]) -> Result<EnforcingSigner, DecodeError> { unreachable!() }
137
138         fn get_destination_script(&self) -> Script { unreachable!() }
139
140         fn get_shutdown_scriptpubkey(&self) -> ShutdownScript { unreachable!() }
141 }
142
143 #[cfg(test)]
144 mod tests {
145         use lightning::util::logger::{Logger, Record};
146         use std::collections::HashMap;
147         use std::sync::Mutex;
148
149         struct TrackingLogger {
150                 /// (module, message) -> count
151                 pub lines: Mutex<HashMap<(String, String), usize>>,
152         }
153         impl Logger for TrackingLogger {
154                 fn log(&self, record: &Record) {
155                         *self.lines.lock().unwrap().entry((record.module_path.to_string(), format!("{}", record.args))).or_insert(0) += 1;
156                         println!("{:<5} [{} : {}, {}] {}", record.level.to_string(), record.module_path, record.file, record.line, record.args);
157                 }
158         }
159
160         #[test]
161         fn test_no_onion_message_breakage() {
162                 let one_hop_om = "020000000000000000000000000000000000000000000000000000000000000e01055600020000000000000000000000000000000000000000000000000000000000000e0136041095000000000000000000000000000000fd1092202a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000e800000000000000000000000000000000000000000000000000000000000000";
163                 let logger = TrackingLogger { lines: Mutex::new(HashMap::new()) };
164                 super::do_test(&::hex::decode(one_hop_om).unwrap(), &logger);
165                 {
166                         let log_entries = logger.lines.lock().unwrap();
167                         assert_eq!(log_entries.get(&("lightning::onion_message::messenger".to_string(),
168                                                 "Received an onion message with path_id None and no reply_path".to_string())), Some(&1));
169                 }
170
171                 let two_unblinded_hops_om = "020000000000000000000000000000000000000000000000000000000000000e01055600020000000000000000000000000000000000000000000000000000000000000e0135043304210200000000000000000000000000000000000000000000000000000000000000029500000000000000000000000000000036000000000000000000000000000000000000000000000000000000000000003604104b000000000000000000000000000000fd1092202a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000b200000000000000000000000000000000000000000000000000000000000000";
172                 let logger = TrackingLogger { lines: Mutex::new(HashMap::new()) };
173                 super::do_test(&::hex::decode(two_unblinded_hops_om).unwrap(), &logger);
174                 {
175                         let log_entries = logger.lines.lock().unwrap();
176                         assert_eq!(log_entries.get(&("lightning::onion_message::messenger".to_string(), "Forwarding an onion message to peer 020000000000000000000000000000000000000000000000000000000000000002".to_string())), Some(&1));
177                 }
178
179                 let two_unblinded_two_blinded_om = "020000000000000000000000000000000000000000000000000000000000000e01055600020000000000000000000000000000000000000000000000000000000000000e01350433042102000000000000000000000000000000000000000000000000000000000000000295000000000000000000000000000000400000000000000000000000000000000000000000000000000000000000000058045604210200000000000000000000000000000000000000000000000000000000000000020821020000000000000000000000000000000000000000000000000000000000000e014b000000000000000000000000000000b20000000000000000000000000000000000000000000000000000000000000035043304210200000000000000000000000000000000000000000000000000000000000000029500000000000000000000000000000036000000000000000000000000000000000000000000000000000000000000003604104b000000000000000000000000000000fd1092202a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000b200000000000000000000000000000000000000000000000000000000000000";
180                 let logger = TrackingLogger { lines: Mutex::new(HashMap::new()) };
181                 super::do_test(&::hex::decode(two_unblinded_two_blinded_om).unwrap(), &logger);
182                 {
183                         let log_entries = logger.lines.lock().unwrap();
184                         assert_eq!(log_entries.get(&("lightning::onion_message::messenger".to_string(), "Forwarding an onion message to peer 020000000000000000000000000000000000000000000000000000000000000002".to_string())), Some(&1));
185                 }
186
187                 let three_blinded_om = "020000000000000000000000000000000000000000000000000000000000000e01055600020000000000000000000000000000000000000000000000000000000000000e013504330421020000000000000000000000000000000000000000000000000000000000000002950000000000000000000000000000006c0000000000000000000000000000000000000000000000000000000000000035043304210200000000000000000000000000000000000000000000000000000000000000024b000000000000000000000000000000ac00000000000000000000000000000000000000000000000000000000000000360410d1000000000000000000000000000000fd1092202a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a2a0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000b200000000000000000000000000000000000000000000000000000000000000";
188                 let logger = TrackingLogger { lines: Mutex::new(HashMap::new()) };
189                 super::do_test(&::hex::decode(three_blinded_om).unwrap(), &logger);
190                 {
191                         let log_entries = logger.lines.lock().unwrap();
192                         assert_eq!(log_entries.get(&("lightning::onion_message::messenger".to_string(), "Forwarding an onion message to peer 020000000000000000000000000000000000000000000000000000000000000002".to_string())), Some(&1));
193                 }
194         }
195 }