github.com/Finschia/finschia-sdk@v0.48.1/x/auth/ante/sigverify_test.go (about)

     1  package ante_test
     2  
     3  import (
     4  	"fmt"
     5  
     6  	"github.com/Finschia/finschia-sdk/client"
     7  	"github.com/Finschia/finschia-sdk/codec"
     8  	"github.com/Finschia/finschia-sdk/crypto/keys/ed25519"
     9  	kmultisig "github.com/Finschia/finschia-sdk/crypto/keys/multisig"
    10  	"github.com/Finschia/finschia-sdk/crypto/keys/secp256k1"
    11  	"github.com/Finschia/finschia-sdk/crypto/keys/secp256r1"
    12  	cryptotypes "github.com/Finschia/finschia-sdk/crypto/types"
    13  	"github.com/Finschia/finschia-sdk/crypto/types/multisig"
    14  	"github.com/Finschia/finschia-sdk/simapp"
    15  	"github.com/Finschia/finschia-sdk/testutil/testdata"
    16  	sdk "github.com/Finschia/finschia-sdk/types"
    17  	"github.com/Finschia/finschia-sdk/types/tx/signing"
    18  	"github.com/Finschia/finschia-sdk/x/auth/ante"
    19  	"github.com/Finschia/finschia-sdk/x/auth/legacy/legacytx"
    20  	"github.com/Finschia/finschia-sdk/x/auth/types"
    21  )
    22  
    23  func (suite *AnteTestSuite) TestSetPubKey() {
    24  	suite.SetupTest(true) // setup
    25  	require := suite.Require()
    26  	suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder()
    27  
    28  	// keys and addresses
    29  	priv1, pub1, addr1 := testdata.KeyTestPubAddr()
    30  	priv2, pub2, addr2 := testdata.KeyTestPubAddr()
    31  	priv3, pub3, addr3 := testdata.KeyTestPubAddrSecp256R1(require)
    32  
    33  	addrs := []sdk.AccAddress{addr1, addr2, addr3}
    34  	pubs := []cryptotypes.PubKey{pub1, pub2, pub3}
    35  
    36  	msgs := make([]sdk.Msg, len(addrs))
    37  	// set accounts and create msg for each address
    38  	for i, addr := range addrs {
    39  		acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr)
    40  		require.NoError(acc.SetAccountNumber(uint64(i)))
    41  		suite.app.AccountKeeper.SetAccount(suite.ctx, acc)
    42  		msgs[i] = testdata.NewTestMsg(addr)
    43  	}
    44  	require.NoError(suite.txBuilder.SetMsgs(msgs...))
    45  	suite.txBuilder.SetFeeAmount(testdata.NewTestFeeAmount())
    46  	suite.txBuilder.SetGasLimit(testdata.NewTestGasLimit())
    47  
    48  	privs, accNums, accSeqs := []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}
    49  	tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID())
    50  	require.NoError(err)
    51  
    52  	spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper)
    53  	antehandler := sdk.ChainAnteDecorators(spkd)
    54  
    55  	ctx, err := antehandler(suite.ctx, tx, false)
    56  	require.NoError(err)
    57  
    58  	// Require that all accounts have pubkey set after Decorator runs
    59  	for i, addr := range addrs {
    60  		pk, err := suite.app.AccountKeeper.GetPubKey(ctx, addr)
    61  		require.NoError(err, "Error on retrieving pubkey from account")
    62  		require.True(pubs[i].Equals(pk),
    63  			"Wrong Pubkey retrieved from AccountKeeper, idx=%d\nexpected=%s\n     got=%s", i, pubs[i], pk)
    64  	}
    65  }
    66  
    67  func (suite *AnteTestSuite) TestConsumeSignatureVerificationGas() {
    68  	params := types.DefaultParams()
    69  	msg := []byte{1, 2, 3, 4}
    70  	cdc := simapp.MakeTestEncodingConfig().Amino
    71  
    72  	p := types.DefaultParams()
    73  	skR1, _ := secp256r1.GenPrivKey()
    74  	pkSet1, sigSet1 := generatePubKeysAndSignatures(5, msg, false)
    75  	multisigKey1 := kmultisig.NewLegacyAminoPubKey(2, pkSet1)
    76  	multisignature1 := multisig.NewMultisig(len(pkSet1))
    77  	expectedCost1 := expectedGasCostByKeys(pkSet1)
    78  	for i := 0; i < len(pkSet1); i++ {
    79  		stdSig := legacytx.StdSignature{PubKey: pkSet1[i], Signature: sigSet1[i]}
    80  		sigV2, err := legacytx.StdSignatureToSignatureV2(cdc, stdSig)
    81  		suite.Require().NoError(err)
    82  		err = multisig.AddSignatureV2(multisignature1, sigV2, pkSet1)
    83  		suite.Require().NoError(err)
    84  	}
    85  
    86  	type args struct {
    87  		meter  sdk.GasMeter
    88  		sig    signing.SignatureData
    89  		pubkey cryptotypes.PubKey
    90  		params types.Params
    91  	}
    92  	tests := []struct {
    93  		name        string
    94  		args        args
    95  		gasConsumed uint64
    96  		shouldErr   bool
    97  	}{
    98  		{"PubKeyEd25519", args{sdk.NewInfiniteGasMeter(), nil, ed25519.GenPrivKey().PubKey(), params}, p.SigVerifyCostED25519, true},
    99  		{"PubKeySecp256k1", args{sdk.NewInfiniteGasMeter(), nil, secp256k1.GenPrivKey().PubKey(), params}, p.SigVerifyCostSecp256k1, false},
   100  		{"PubKeySecp256r1", args{sdk.NewInfiniteGasMeter(), nil, skR1.PubKey(), params}, p.SigVerifyCostSecp256r1(), false},
   101  		{"Multisig", args{sdk.NewInfiniteGasMeter(), multisignature1, multisigKey1, params}, expectedCost1, false},
   102  		{"unknown key", args{sdk.NewInfiniteGasMeter(), nil, nil, params}, 0, true},
   103  	}
   104  	for _, tt := range tests {
   105  		sigV2 := signing.SignatureV2{
   106  			PubKey:   tt.args.pubkey,
   107  			Data:     tt.args.sig,
   108  			Sequence: 0, // Arbitrary account sequence
   109  		}
   110  		err := ante.DefaultSigVerificationGasConsumer(tt.args.meter, sigV2, tt.args.params)
   111  
   112  		if tt.shouldErr {
   113  			suite.Require().NotNil(err)
   114  		} else {
   115  			suite.Require().Nil(err)
   116  			suite.Require().Equal(tt.gasConsumed, tt.args.meter.GasConsumed(), fmt.Sprintf("%d != %d", tt.gasConsumed, tt.args.meter.GasConsumed()))
   117  		}
   118  	}
   119  }
   120  
   121  func (suite *AnteTestSuite) TestSigVerification() {
   122  	suite.SetupTest(true) // setup
   123  	suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder()
   124  
   125  	// make block height non-zero to ensure account numbers part of signBytes
   126  	suite.ctx = suite.ctx.WithBlockHeight(1)
   127  
   128  	// keys and addresses
   129  	priv1, _, addr1 := testdata.KeyTestPubAddr()
   130  	priv2, _, addr2 := testdata.KeyTestPubAddr()
   131  	priv3, _, addr3 := testdata.KeyTestPubAddr()
   132  
   133  	addrs := []sdk.AccAddress{addr1, addr2, addr3}
   134  
   135  	msgs := make([]sdk.Msg, len(addrs))
   136  	// set accounts and create msg for each address
   137  	for i, addr := range addrs {
   138  		acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr)
   139  		suite.Require().NoError(acc.SetAccountNumber(uint64(i)))
   140  		suite.app.AccountKeeper.SetAccount(suite.ctx, acc)
   141  		msgs[i] = testdata.NewTestMsg(addr)
   142  	}
   143  
   144  	feeAmount := testdata.NewTestFeeAmount()
   145  	gasLimit := testdata.NewTestGasLimit()
   146  
   147  	spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper)
   148  	svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler())
   149  	antehandler := sdk.ChainAnteDecorators(spkd, svd)
   150  
   151  	type testCase struct {
   152  		name        string
   153  		privs       []cryptotypes.PrivKey
   154  		accNums     []uint64
   155  		accSeqs     []uint64
   156  		invalidSigs bool
   157  		recheck     bool
   158  		shouldErr   bool
   159  	}
   160  	validSigs := false
   161  	testCases := []testCase{
   162  		{"no signers", []cryptotypes.PrivKey{}, []uint64{}, []uint64{}, validSigs, false, true},
   163  		{"not enough signers", []cryptotypes.PrivKey{priv1, priv2}, []uint64{0, 1}, []uint64{0, 0}, validSigs, false, true},
   164  		{"wrong order signers", []cryptotypes.PrivKey{priv3, priv2, priv1}, []uint64{2, 1, 0}, []uint64{0, 0, 0}, validSigs, false, true},
   165  		{"wrong accnums", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{7, 8, 9}, []uint64{0, 0, 0}, validSigs, false, true},
   166  		{"wrong sequences", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{3, 4, 5}, validSigs, false, true},
   167  		{"valid tx", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, validSigs, false, false},
   168  		{"no err on recheck", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 0, 0}, []uint64{0, 0, 0}, !validSigs, true, false},
   169  	}
   170  	for i, tc := range testCases {
   171  		suite.ctx = suite.ctx.WithIsReCheckTx(tc.recheck)
   172  		suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() // Create new txBuilder for each test
   173  
   174  		suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...))
   175  		suite.txBuilder.SetFeeAmount(feeAmount)
   176  		suite.txBuilder.SetGasLimit(gasLimit)
   177  
   178  		tx, err := suite.CreateTestTx(tc.privs, tc.accNums, tc.accSeqs, suite.ctx.ChainID())
   179  		suite.Require().NoError(err)
   180  		if tc.invalidSigs {
   181  			txSigs, _ := tx.GetSignaturesV2()
   182  			badSig, _ := tc.privs[0].Sign([]byte("unrelated message"))
   183  			txSigs[0] = signing.SignatureV2{
   184  				PubKey: tc.privs[0].PubKey(),
   185  				Data: &signing.SingleSignatureData{
   186  					SignMode:  suite.clientCtx.TxConfig.SignModeHandler().DefaultMode(),
   187  					Signature: badSig,
   188  				},
   189  				Sequence: tc.accSeqs[0],
   190  			}
   191  			suite.txBuilder.SetSignatures(txSigs...)
   192  			tx = suite.txBuilder.GetTx()
   193  		}
   194  
   195  		_, err = antehandler(suite.ctx, tx, false)
   196  		if tc.shouldErr {
   197  			suite.Require().NotNil(err, "TestCase %d: %s did not error as expected", i, tc.name)
   198  		} else {
   199  			suite.Require().Nil(err, "TestCase %d: %s errored unexpectedly. Err: %v", i, tc.name, err)
   200  		}
   201  	}
   202  }
   203  
   204  // This test is exactly like the one above, but we set the codec explicitly to
   205  // Amino.
   206  // Once https://github.com/cosmos/cosmos-sdk/issues/6190 is in, we can remove
   207  // this, since it'll be handled by the test matrix.
   208  // In the meantime, we want to make double-sure amino compatibility works.
   209  // ref: https://github.com/cosmos/cosmos-sdk/issues/7229
   210  func (suite *AnteTestSuite) TestSigVerification_ExplicitAmino() {
   211  	suite.app, suite.ctx = createTestApp(true)
   212  	suite.ctx = suite.ctx.WithBlockHeight(1)
   213  
   214  	// Set up TxConfig.
   215  	aminoCdc := codec.NewLegacyAmino()
   216  	// We're using TestMsg amino encoding in some tests, so register it here.
   217  	txConfig := legacytx.StdTxConfig{Cdc: aminoCdc}
   218  
   219  	suite.clientCtx = client.Context{}.
   220  		WithTxConfig(txConfig)
   221  
   222  	anteHandler, err := ante.NewAnteHandler(
   223  		ante.HandlerOptions{
   224  			AccountKeeper:   suite.app.AccountKeeper,
   225  			BankKeeper:      suite.app.BankKeeper,
   226  			FeegrantKeeper:  suite.app.FeeGrantKeeper,
   227  			SignModeHandler: txConfig.SignModeHandler(),
   228  			SigGasConsumer:  ante.DefaultSigVerificationGasConsumer,
   229  		},
   230  	)
   231  
   232  	suite.Require().NoError(err)
   233  	suite.anteHandler = anteHandler
   234  
   235  	suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder()
   236  
   237  	// make block height non-zero to ensure account numbers part of signBytes
   238  	suite.ctx = suite.ctx.WithBlockHeight(1)
   239  
   240  	// keys and addresses
   241  	priv1, _, addr1 := testdata.KeyTestPubAddr()
   242  	priv2, _, addr2 := testdata.KeyTestPubAddr()
   243  	priv3, _, addr3 := testdata.KeyTestPubAddr()
   244  
   245  	addrs := []sdk.AccAddress{addr1, addr2, addr3}
   246  
   247  	msgs := make([]sdk.Msg, len(addrs))
   248  	// set accounts and create msg for each address
   249  	for i, addr := range addrs {
   250  		acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr)
   251  		suite.Require().NoError(acc.SetAccountNumber(uint64(i)))
   252  		suite.app.AccountKeeper.SetAccount(suite.ctx, acc)
   253  		msgs[i] = testdata.NewTestMsg(addr)
   254  	}
   255  
   256  	feeAmount := testdata.NewTestFeeAmount()
   257  	gasLimit := testdata.NewTestGasLimit()
   258  
   259  	spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper)
   260  	svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler())
   261  	antehandler := sdk.ChainAnteDecorators(spkd, svd)
   262  
   263  	type testCase struct {
   264  		name      string
   265  		privs     []cryptotypes.PrivKey
   266  		accNums   []uint64
   267  		accSeqs   []uint64
   268  		recheck   bool
   269  		shouldErr bool
   270  	}
   271  	testCases := []testCase{
   272  		{"no signers", []cryptotypes.PrivKey{}, []uint64{}, []uint64{}, false, true},
   273  		{"not enough signers", []cryptotypes.PrivKey{priv1, priv2}, []uint64{0, 1}, []uint64{0, 0}, false, true},
   274  		{"wrong order signers", []cryptotypes.PrivKey{priv3, priv2, priv1}, []uint64{2, 1, 0}, []uint64{0, 0, 0}, false, true},
   275  		{"wrong accnums", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{7, 8, 9}, []uint64{0, 0, 0}, false, true},
   276  		{"wrong sequences", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{3, 4, 5}, false, true},
   277  		{"valid tx", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, false, false},
   278  		{"no err on recheck", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, true, false},
   279  	}
   280  	for i, tc := range testCases {
   281  		suite.ctx = suite.ctx.WithIsReCheckTx(tc.recheck)
   282  		suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() // Create new txBuilder for each test
   283  
   284  		suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...))
   285  		suite.txBuilder.SetFeeAmount(feeAmount)
   286  		suite.txBuilder.SetGasLimit(gasLimit)
   287  
   288  		tx, err := suite.CreateTestTx(tc.privs, tc.accNums, tc.accSeqs, suite.ctx.ChainID())
   289  		suite.Require().NoError(err)
   290  
   291  		_, err = antehandler(suite.ctx, tx, false)
   292  		if tc.shouldErr {
   293  			suite.Require().NotNil(err, "TestCase %d: %s did not error as expected", i, tc.name)
   294  		} else {
   295  			suite.Require().Nil(err, "TestCase %d: %s errored unexpectedly. Err: %v", i, tc.name, err)
   296  		}
   297  	}
   298  }
   299  
   300  func (suite *AnteTestSuite) TestSigIntegration() {
   301  	// generate private keys
   302  	privs := []cryptotypes.PrivKey{
   303  		secp256k1.GenPrivKey(),
   304  		secp256k1.GenPrivKey(),
   305  		secp256k1.GenPrivKey(),
   306  	}
   307  
   308  	params := types.DefaultParams()
   309  	initialSigCost := params.SigVerifyCostSecp256k1
   310  	initialCost, err := suite.runSigDecorators(params, false, privs...)
   311  	suite.Require().Nil(err)
   312  
   313  	params.SigVerifyCostSecp256k1 *= 2
   314  	doubleCost, err := suite.runSigDecorators(params, false, privs...)
   315  	suite.Require().Nil(err)
   316  
   317  	suite.Require().Equal(initialSigCost*uint64(len(privs)), doubleCost-initialCost)
   318  }
   319  
   320  func (suite *AnteTestSuite) runSigDecorators(params types.Params, _ bool, privs ...cryptotypes.PrivKey) (sdk.Gas, error) {
   321  	suite.SetupTest(true) // setup
   322  	suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder()
   323  
   324  	// Make block-height non-zero to include accNum in SignBytes
   325  	suite.ctx = suite.ctx.WithBlockHeight(1)
   326  	suite.app.AccountKeeper.SetParams(suite.ctx, params)
   327  
   328  	msgs := make([]sdk.Msg, len(privs))
   329  	accNums := make([]uint64, len(privs))
   330  	accSeqs := make([]uint64, len(privs))
   331  	// set accounts and create msg for each address
   332  	for i, priv := range privs {
   333  		addr := sdk.AccAddress(priv.PubKey().Address())
   334  		acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr)
   335  		suite.Require().NoError(acc.SetAccountNumber(uint64(i)))
   336  		suite.app.AccountKeeper.SetAccount(suite.ctx, acc)
   337  		msgs[i] = testdata.NewTestMsg(addr)
   338  		accNums[i] = uint64(i)
   339  		accSeqs[i] = uint64(0)
   340  	}
   341  	suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...))
   342  
   343  	feeAmount := testdata.NewTestFeeAmount()
   344  	gasLimit := testdata.NewTestGasLimit()
   345  	suite.txBuilder.SetFeeAmount(feeAmount)
   346  	suite.txBuilder.SetGasLimit(gasLimit)
   347  
   348  	tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID())
   349  	suite.Require().NoError(err)
   350  
   351  	spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper)
   352  	svgc := ante.NewSigGasConsumeDecorator(suite.app.AccountKeeper, ante.DefaultSigVerificationGasConsumer)
   353  	svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler())
   354  	antehandler := sdk.ChainAnteDecorators(spkd, svgc, svd)
   355  
   356  	// Determine gas consumption of antehandler with default params
   357  	before := suite.ctx.GasMeter().GasConsumed()
   358  	ctx, err := antehandler(suite.ctx, tx, false)
   359  	after := ctx.GasMeter().GasConsumed()
   360  
   361  	return after - before, err
   362  }
   363  
   364  func (suite *AnteTestSuite) TestIncrementSequenceDecorator() {
   365  	suite.SetupTest(true) // setup
   366  	suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder()
   367  
   368  	priv, _, addr := testdata.KeyTestPubAddr()
   369  	acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr)
   370  	suite.Require().NoError(acc.SetAccountNumber(uint64(50)))
   371  	suite.app.AccountKeeper.SetAccount(suite.ctx, acc)
   372  
   373  	msgs := []sdk.Msg{testdata.NewTestMsg(addr)}
   374  	suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...))
   375  	privs := []cryptotypes.PrivKey{priv}
   376  	accNums := []uint64{suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetAccountNumber()}
   377  	accSeqs := []uint64{suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetSequence()}
   378  	feeAmount := testdata.NewTestFeeAmount()
   379  	gasLimit := testdata.NewTestGasLimit()
   380  	suite.txBuilder.SetFeeAmount(feeAmount)
   381  	suite.txBuilder.SetGasLimit(gasLimit)
   382  
   383  	tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID())
   384  	suite.Require().NoError(err)
   385  
   386  	isd := ante.NewIncrementSequenceDecorator(suite.app.AccountKeeper)
   387  	antehandler := sdk.ChainAnteDecorators(isd)
   388  
   389  	testCases := []struct {
   390  		ctx         sdk.Context
   391  		simulate    bool
   392  		expectedSeq uint64
   393  	}{
   394  		{suite.ctx.WithIsReCheckTx(true), false, 1},
   395  		{suite.ctx.WithIsCheckTx(true).WithIsReCheckTx(false), false, 2},
   396  		{suite.ctx.WithIsReCheckTx(true), false, 3},
   397  		{suite.ctx.WithIsReCheckTx(true), false, 4},
   398  		{suite.ctx.WithIsReCheckTx(true), true, 5},
   399  	}
   400  
   401  	for i, tc := range testCases {
   402  		_, err := antehandler(tc.ctx, tx, tc.simulate)
   403  		suite.Require().NoError(err, "unexpected error; tc #%d, %v", i, tc)
   404  		suite.Require().Equal(tc.expectedSeq, suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetSequence())
   405  	}
   406  }