rippled
ValidatorKeys_test.cpp
1 //------------------------------------------------------------------------------
2 /*
3  This file is part of rippled: https://github.com/ripple/rippled
4  Copyright 2017 Ripple Labs Inc.
5 
6  Permission to use, copy, modify, and/or distribute this software for any
7  purpose with or without fee is hereby granted, provided that the above
8  copyright notice and this permission notice appear in all copies.
9 
10  THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11  WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12  MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13  ANY SPECIAL , DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14  WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
15  ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
16  OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 */
18 //==============================================================================
19 
20 #include <ripple/app/misc/Manifest.h>
21 #include <ripple/app/misc/ValidatorKeys.h>
22 #include <ripple/basics/base64.h>
23 #include <ripple/beast/unit_test.h>
24 #include <ripple/core/Config.h>
25 #include <ripple/core/ConfigSections.h>
26 #include <test/jtx/Env.h>
27 
28 #include <string>
29 
30 namespace ripple {
31 namespace test {
32 
33 class ValidatorKeys_test : public beast::unit_test::suite
34 {
35  // Used with [validation_seed]
36  const std::string seed = "shUwVw52ofnCUX5m7kPTKzJdr4HEH";
37 
38  // Used with [validation_token]
40  "paQmjZ37pKKPMrgadBLsuf9ab7Y7EUNzh27LQrZqoexpAs31nJi";
41 
43  " "
44  "eyJ2YWxpZGF0aW9uX3NlY3JldF9rZXkiOiI5ZWQ0NWY4NjYyNDFjYzE4YTI3NDdiNT\n",
45  " \tQzODdjMDYyNTkwNzk3MmY0ZTcxOTAyMzFmYWE5Mzc0NTdmYTlkYWY2IiwibWFuaWZl "
46  " \n",
47  "\tc3QiOiJKQUFBQUFGeEllMUZ0d21pbXZHdEgyaUNjTUpxQzlnVkZLaWxHZncxL3ZDeE"
48  "\n",
49  "\t "
50  "hYWExwbGMyR25NaEFrRTFhZ3FYeEJ3RHdEYklENk9NU1l1TTBGREFscEFnTms4U0tG\t "
51  "\t\n",
52  "bjdNTzJmZGtjd1JRSWhBT25ndTlzQUtxWFlvdUorbDJWMFcrc0FPa1ZCK1pSUzZQU2\n",
53  "hsSkFmVXNYZkFpQnNWSkdlc2FhZE9KYy9hQVpva1MxdnltR21WcmxIUEtXWDNZeXd1\n",
54  "NmluOEhBU1FLUHVnQkQ2N2tNYVJGR3ZtcEFUSGxHS0pkdkRGbFdQWXk1QXFEZWRGdj\n",
55  "VUSmEydzBpMjFlcTNNWXl3TFZKWm5GT3I3QzBrdzJBaVR6U0NqSXpkaXRROD0ifQ==\n"};
56 
58  "JAAAAAFxIe1FtwmimvGtH2iCcMJqC9gVFKilGfw1/vCxHXXLplc2GnMhAkE1agqXxBwD"
59  "wDbID6OMSYuM0FDAlpAgNk8SKFn7MO2fdkcwRQIhAOngu9sAKqXYouJ+l2V0W+sAOkVB"
60  "+ZRS6PShlJAfUsXfAiBsVJGesaadOJc/aAZokS1vymGmVrlHPKWX3Yywu6in8HASQKPu"
61  "gBD67kMaRFGvmpATHlGKJdvDFlWPYy5AqDedFv5TJa2w0i21eq3MYywLVJZnFOr7C0kw"
62  "2AiTzSCjIzditQ8=";
63 
64  // Manifest does not match private key
66  "eyJtYW5pZmVzdCI6IkpBQUFBQVZ4SWUyOVVBdzViZFJudHJ1elVkREk4aDNGV1JWZl\n",
67  "k3SXVIaUlKQUhJd3MxdzZzM01oQWtsa1VXQWR2RnFRVGRlSEpvS1pNY0hlS0RzOExo\n",
68  "b3d3bDlHOEdkVGNJbmFka1l3UkFJZ0h2Q01lQU1aSzlqQnV2aFhlaFRLRzVDQ3BBR1\n",
69  "k0bGtvZHRXYW84UGhzR3NDSUREVTA1d1c3bWNiMjlVNkMvTHBpZmgvakZPRGhFR21i\n",
70  "NWF6dTJMVHlqL1pjQkpBbitmNGhtQTQ0U0tYbGtTTUFqak1rSWRyR1Rxa21SNjBzVG\n",
71  "JaTjZOOUYwdk9UV3VYcUZ6eDFoSGIyL0RqWElVZXhDVGlITEcxTG9UdUp1eXdXbk55\n",
72  "RFE9PSIsInZhbGlkYXRpb25fc2VjcmV0X2tleSI6IjkyRDhCNDBGMzYwMTc5MTkwMU\n",
73  "MzQTUzMzI3NzBDMkUwMTA4MDI0NTZFOEM2QkI0NEQ0N0FFREQ0NzJGMDQ2RkYifQ==\n"};
74 
75 public:
76  void
77  run() override
78  {
79  // We're only using Env for its Journal. That Journal gives better
80  // coverage in unit tests.
81  test::jtx::Env env{
82  *this,
84  nullptr,
86  beast::Journal journal{env.app().journal("ValidatorKeys_test")};
87 
88  // Keys/ID when using [validation_seed]
89  SecretKey const seedSecretKey =
90  generateSecretKey(KeyType::secp256k1, *parseBase58<Seed>(seed));
91  PublicKey const seedPublicKey =
92  derivePublicKey(KeyType::secp256k1, seedSecretKey);
93  NodeID const seedNodeID = calcNodeID(seedPublicKey);
94 
95  // Keys when using [validation_token]
96  auto const tokenSecretKey =
97  *parseBase58<SecretKey>(TokenType::NodePrivate, tokenSecretStr);
98 
99  auto const tokenPublicKey =
100  derivePublicKey(KeyType::secp256k1, tokenSecretKey);
101 
103  BEAST_EXPECT(m);
104  NodeID const tokenNodeID = calcNodeID(m->masterKey);
105 
106  {
107  // No config -> no key but valid
108  Config c;
109  ValidatorKeys k{c, journal};
110  BEAST_EXPECT(k.publicKey.size() == 0);
111  BEAST_EXPECT(k.manifest.empty());
112  BEAST_EXPECT(!k.configInvalid());
113  }
114  {
115  // validation seed section -> empty manifest and valid seeds
116  Config c;
117  c.section(SECTION_VALIDATION_SEED).append(seed);
118 
119  ValidatorKeys k{c, journal};
120  BEAST_EXPECT(k.publicKey == seedPublicKey);
121  BEAST_EXPECT(k.secretKey == seedSecretKey);
122  BEAST_EXPECT(k.nodeID == seedNodeID);
123  BEAST_EXPECT(k.manifest.empty());
124  BEAST_EXPECT(!k.configInvalid());
125  }
126 
127  {
128  // validation seed bad seed -> invalid
129  Config c;
130  c.section(SECTION_VALIDATION_SEED).append("badseed");
131 
132  ValidatorKeys k{c, journal};
133  BEAST_EXPECT(k.configInvalid());
134  BEAST_EXPECT(k.publicKey.size() == 0);
135  BEAST_EXPECT(k.manifest.empty());
136  }
137 
138  {
139  // validator token
140  Config c;
141  c.section(SECTION_VALIDATOR_TOKEN).append(tokenBlob);
142  ValidatorKeys k{c, journal};
143 
144  BEAST_EXPECT(k.publicKey == tokenPublicKey);
145  BEAST_EXPECT(k.secretKey == tokenSecretKey);
146  BEAST_EXPECT(k.nodeID == tokenNodeID);
147  BEAST_EXPECT(k.manifest == tokenManifest);
148  BEAST_EXPECT(!k.configInvalid());
149  }
150  {
151  // invalid validator token
152  Config c;
153  c.section(SECTION_VALIDATOR_TOKEN).append("badtoken");
154  ValidatorKeys k{c, journal};
155  BEAST_EXPECT(k.configInvalid());
156  BEAST_EXPECT(k.publicKey.size() == 0);
157  BEAST_EXPECT(k.manifest.empty());
158  }
159 
160  {
161  // Cannot specify both
162  Config c;
163  c.section(SECTION_VALIDATION_SEED).append(seed);
164  c.section(SECTION_VALIDATOR_TOKEN).append(tokenBlob);
165  ValidatorKeys k{c, journal};
166 
167  BEAST_EXPECT(k.configInvalid());
168  BEAST_EXPECT(k.publicKey.size() == 0);
169  BEAST_EXPECT(k.manifest.empty());
170  }
171 
172  {
173  // Token manifest and private key must match
174  Config c;
175  c.section(SECTION_VALIDATOR_TOKEN).append(invalidTokenBlob);
176  ValidatorKeys k{c, journal};
177 
178  BEAST_EXPECT(k.configInvalid());
179  BEAST_EXPECT(k.publicKey.size() == 0);
180  BEAST_EXPECT(k.manifest.empty());
181  }
182  }
183 }; // namespace test
184 
186 
187 } // namespace test
188 } // namespace ripple
std::string
STL class.
ripple::test::ValidatorKeys_test::tokenSecretStr
const std::string tokenSecretStr
Definition: ValidatorKeys_test.cpp:39
ripple::calcNodeID
NodeID calcNodeID(PublicKey const &pk)
Calculate the 160-bit node ID from a node public key.
Definition: PublicKey.cpp:303
beast::severities::kDisabled
@ kDisabled
Definition: Journal.h:41
ripple::test::ValidatorKeys_test::tokenBlob
const std::vector< std::string > tokenBlob
Definition: ValidatorKeys_test.cpp:42
std::vector< std::string >
ripple::test::ValidatorKeys_test
Definition: ValidatorKeys_test.cpp:33
ripple::test::jtx::envconfig
std::unique_ptr< Config > envconfig()
creates and initializes a default configuration for jtx::Env
Definition: envconfig.h:49
ripple::ValidatorKeys
Validator keys and manifest as set in configuration file.
Definition: ValidatorKeys.h:36
ripple::test::ValidatorKeys_test::tokenManifest
const std::string tokenManifest
Definition: ValidatorKeys_test.cpp:57
ripple::Section::append
void append(std::vector< std::string > const &lines)
Append a set of lines to this section.
Definition: BasicConfig.cpp:38
ripple::base_uint< 160, detail::NodeIDTag >
ripple::test::ValidatorKeys_test::seed
const std::string seed
Definition: ValidatorKeys_test.cpp:36
ripple::PublicKey
A public key.
Definition: PublicKey.h:59
ripple::Config
Definition: Config.h:89
ripple::derivePublicKey
PublicKey derivePublicKey(KeyType type, SecretKey const &sk)
Derive the public key from a secret key.
Definition: SecretKey.cpp:313
ripple::base64_decode
std::string base64_decode(std::string const &data)
Definition: base64.cpp:245
ripple::generateSecretKey
SecretKey generateSecretKey(KeyType type, Seed const &seed)
Generate a new secret key deterministically.
Definition: SecretKey.cpp:291
beast::Journal
A generic endpoint for log messages.
Definition: Journal.h:58
ripple::test::ValidatorKeys_test::run
void run() override
Definition: ValidatorKeys_test.cpp:77
ripple::SecretKey
A secret key.
Definition: SecretKey.h:36
ripple::test::ValidatorKeys_test::invalidTokenBlob
const std::vector< std::string > invalidTokenBlob
Definition: ValidatorKeys_test.cpp:65
ripple::KeyType::secp256k1
@ secp256k1
ripple
Use hash_* containers for keys that do not need a cryptographically secure hashing algorithm.
Definition: RCLCensorshipDetector.h:29
ripple::deserializeManifest
std::optional< Manifest > deserializeManifest(Slice s, beast::Journal journal)
Constructs Manifest from serialized string.
Definition: app/misc/impl/Manifest.cpp:53
ripple::TokenType::NodePrivate
@ NodePrivate
ripple::test::jtx::Env
A transaction testing environment.
Definition: Env.h:116
ripple::BasicConfig::section
Section & section(std::string const &name)
Returns the section with the given name.
Definition: BasicConfig.cpp:127
ripple::test::BEAST_DEFINE_TESTSUITE
BEAST_DEFINE_TESTSUITE(DeliverMin, app, ripple)
string