github.com/Finschia/finschia-sdk@v0.48.1/x/auth/ante/sigverify_test.go (about) 1 package ante_test 2 3 import ( 4 "fmt" 5 6 "github.com/Finschia/finschia-sdk/client" 7 "github.com/Finschia/finschia-sdk/codec" 8 "github.com/Finschia/finschia-sdk/crypto/keys/ed25519" 9 kmultisig "github.com/Finschia/finschia-sdk/crypto/keys/multisig" 10 "github.com/Finschia/finschia-sdk/crypto/keys/secp256k1" 11 "github.com/Finschia/finschia-sdk/crypto/keys/secp256r1" 12 cryptotypes "github.com/Finschia/finschia-sdk/crypto/types" 13 "github.com/Finschia/finschia-sdk/crypto/types/multisig" 14 "github.com/Finschia/finschia-sdk/simapp" 15 "github.com/Finschia/finschia-sdk/testutil/testdata" 16 sdk "github.com/Finschia/finschia-sdk/types" 17 "github.com/Finschia/finschia-sdk/types/tx/signing" 18 "github.com/Finschia/finschia-sdk/x/auth/ante" 19 "github.com/Finschia/finschia-sdk/x/auth/legacy/legacytx" 20 "github.com/Finschia/finschia-sdk/x/auth/types" 21 ) 22 23 func (suite *AnteTestSuite) TestSetPubKey() { 24 suite.SetupTest(true) // setup 25 require := suite.Require() 26 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() 27 28 // keys and addresses 29 priv1, pub1, addr1 := testdata.KeyTestPubAddr() 30 priv2, pub2, addr2 := testdata.KeyTestPubAddr() 31 priv3, pub3, addr3 := testdata.KeyTestPubAddrSecp256R1(require) 32 33 addrs := []sdk.AccAddress{addr1, addr2, addr3} 34 pubs := []cryptotypes.PubKey{pub1, pub2, pub3} 35 36 msgs := make([]sdk.Msg, len(addrs)) 37 // set accounts and create msg for each address 38 for i, addr := range addrs { 39 acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr) 40 require.NoError(acc.SetAccountNumber(uint64(i))) 41 suite.app.AccountKeeper.SetAccount(suite.ctx, acc) 42 msgs[i] = testdata.NewTestMsg(addr) 43 } 44 require.NoError(suite.txBuilder.SetMsgs(msgs...)) 45 suite.txBuilder.SetFeeAmount(testdata.NewTestFeeAmount()) 46 suite.txBuilder.SetGasLimit(testdata.NewTestGasLimit()) 47 48 privs, accNums, accSeqs := []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0} 49 tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID()) 50 require.NoError(err) 51 52 spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper) 53 antehandler := sdk.ChainAnteDecorators(spkd) 54 55 ctx, err := antehandler(suite.ctx, tx, false) 56 require.NoError(err) 57 58 // Require that all accounts have pubkey set after Decorator runs 59 for i, addr := range addrs { 60 pk, err := suite.app.AccountKeeper.GetPubKey(ctx, addr) 61 require.NoError(err, "Error on retrieving pubkey from account") 62 require.True(pubs[i].Equals(pk), 63 "Wrong Pubkey retrieved from AccountKeeper, idx=%d\nexpected=%s\n got=%s", i, pubs[i], pk) 64 } 65 } 66 67 func (suite *AnteTestSuite) TestConsumeSignatureVerificationGas() { 68 params := types.DefaultParams() 69 msg := []byte{1, 2, 3, 4} 70 cdc := simapp.MakeTestEncodingConfig().Amino 71 72 p := types.DefaultParams() 73 skR1, _ := secp256r1.GenPrivKey() 74 pkSet1, sigSet1 := generatePubKeysAndSignatures(5, msg, false) 75 multisigKey1 := kmultisig.NewLegacyAminoPubKey(2, pkSet1) 76 multisignature1 := multisig.NewMultisig(len(pkSet1)) 77 expectedCost1 := expectedGasCostByKeys(pkSet1) 78 for i := 0; i < len(pkSet1); i++ { 79 stdSig := legacytx.StdSignature{PubKey: pkSet1[i], Signature: sigSet1[i]} 80 sigV2, err := legacytx.StdSignatureToSignatureV2(cdc, stdSig) 81 suite.Require().NoError(err) 82 err = multisig.AddSignatureV2(multisignature1, sigV2, pkSet1) 83 suite.Require().NoError(err) 84 } 85 86 type args struct { 87 meter sdk.GasMeter 88 sig signing.SignatureData 89 pubkey cryptotypes.PubKey 90 params types.Params 91 } 92 tests := []struct { 93 name string 94 args args 95 gasConsumed uint64 96 shouldErr bool 97 }{ 98 {"PubKeyEd25519", args{sdk.NewInfiniteGasMeter(), nil, ed25519.GenPrivKey().PubKey(), params}, p.SigVerifyCostED25519, true}, 99 {"PubKeySecp256k1", args{sdk.NewInfiniteGasMeter(), nil, secp256k1.GenPrivKey().PubKey(), params}, p.SigVerifyCostSecp256k1, false}, 100 {"PubKeySecp256r1", args{sdk.NewInfiniteGasMeter(), nil, skR1.PubKey(), params}, p.SigVerifyCostSecp256r1(), false}, 101 {"Multisig", args{sdk.NewInfiniteGasMeter(), multisignature1, multisigKey1, params}, expectedCost1, false}, 102 {"unknown key", args{sdk.NewInfiniteGasMeter(), nil, nil, params}, 0, true}, 103 } 104 for _, tt := range tests { 105 sigV2 := signing.SignatureV2{ 106 PubKey: tt.args.pubkey, 107 Data: tt.args.sig, 108 Sequence: 0, // Arbitrary account sequence 109 } 110 err := ante.DefaultSigVerificationGasConsumer(tt.args.meter, sigV2, tt.args.params) 111 112 if tt.shouldErr { 113 suite.Require().NotNil(err) 114 } else { 115 suite.Require().Nil(err) 116 suite.Require().Equal(tt.gasConsumed, tt.args.meter.GasConsumed(), fmt.Sprintf("%d != %d", tt.gasConsumed, tt.args.meter.GasConsumed())) 117 } 118 } 119 } 120 121 func (suite *AnteTestSuite) TestSigVerification() { 122 suite.SetupTest(true) // setup 123 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() 124 125 // make block height non-zero to ensure account numbers part of signBytes 126 suite.ctx = suite.ctx.WithBlockHeight(1) 127 128 // keys and addresses 129 priv1, _, addr1 := testdata.KeyTestPubAddr() 130 priv2, _, addr2 := testdata.KeyTestPubAddr() 131 priv3, _, addr3 := testdata.KeyTestPubAddr() 132 133 addrs := []sdk.AccAddress{addr1, addr2, addr3} 134 135 msgs := make([]sdk.Msg, len(addrs)) 136 // set accounts and create msg for each address 137 for i, addr := range addrs { 138 acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr) 139 suite.Require().NoError(acc.SetAccountNumber(uint64(i))) 140 suite.app.AccountKeeper.SetAccount(suite.ctx, acc) 141 msgs[i] = testdata.NewTestMsg(addr) 142 } 143 144 feeAmount := testdata.NewTestFeeAmount() 145 gasLimit := testdata.NewTestGasLimit() 146 147 spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper) 148 svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler()) 149 antehandler := sdk.ChainAnteDecorators(spkd, svd) 150 151 type testCase struct { 152 name string 153 privs []cryptotypes.PrivKey 154 accNums []uint64 155 accSeqs []uint64 156 invalidSigs bool 157 recheck bool 158 shouldErr bool 159 } 160 validSigs := false 161 testCases := []testCase{ 162 {"no signers", []cryptotypes.PrivKey{}, []uint64{}, []uint64{}, validSigs, false, true}, 163 {"not enough signers", []cryptotypes.PrivKey{priv1, priv2}, []uint64{0, 1}, []uint64{0, 0}, validSigs, false, true}, 164 {"wrong order signers", []cryptotypes.PrivKey{priv3, priv2, priv1}, []uint64{2, 1, 0}, []uint64{0, 0, 0}, validSigs, false, true}, 165 {"wrong accnums", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{7, 8, 9}, []uint64{0, 0, 0}, validSigs, false, true}, 166 {"wrong sequences", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{3, 4, 5}, validSigs, false, true}, 167 {"valid tx", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, validSigs, false, false}, 168 {"no err on recheck", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 0, 0}, []uint64{0, 0, 0}, !validSigs, true, false}, 169 } 170 for i, tc := range testCases { 171 suite.ctx = suite.ctx.WithIsReCheckTx(tc.recheck) 172 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() // Create new txBuilder for each test 173 174 suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...)) 175 suite.txBuilder.SetFeeAmount(feeAmount) 176 suite.txBuilder.SetGasLimit(gasLimit) 177 178 tx, err := suite.CreateTestTx(tc.privs, tc.accNums, tc.accSeqs, suite.ctx.ChainID()) 179 suite.Require().NoError(err) 180 if tc.invalidSigs { 181 txSigs, _ := tx.GetSignaturesV2() 182 badSig, _ := tc.privs[0].Sign([]byte("unrelated message")) 183 txSigs[0] = signing.SignatureV2{ 184 PubKey: tc.privs[0].PubKey(), 185 Data: &signing.SingleSignatureData{ 186 SignMode: suite.clientCtx.TxConfig.SignModeHandler().DefaultMode(), 187 Signature: badSig, 188 }, 189 Sequence: tc.accSeqs[0], 190 } 191 suite.txBuilder.SetSignatures(txSigs...) 192 tx = suite.txBuilder.GetTx() 193 } 194 195 _, err = antehandler(suite.ctx, tx, false) 196 if tc.shouldErr { 197 suite.Require().NotNil(err, "TestCase %d: %s did not error as expected", i, tc.name) 198 } else { 199 suite.Require().Nil(err, "TestCase %d: %s errored unexpectedly. Err: %v", i, tc.name, err) 200 } 201 } 202 } 203 204 // This test is exactly like the one above, but we set the codec explicitly to 205 // Amino. 206 // Once https://github.com/cosmos/cosmos-sdk/issues/6190 is in, we can remove 207 // this, since it'll be handled by the test matrix. 208 // In the meantime, we want to make double-sure amino compatibility works. 209 // ref: https://github.com/cosmos/cosmos-sdk/issues/7229 210 func (suite *AnteTestSuite) TestSigVerification_ExplicitAmino() { 211 suite.app, suite.ctx = createTestApp(true) 212 suite.ctx = suite.ctx.WithBlockHeight(1) 213 214 // Set up TxConfig. 215 aminoCdc := codec.NewLegacyAmino() 216 // We're using TestMsg amino encoding in some tests, so register it here. 217 txConfig := legacytx.StdTxConfig{Cdc: aminoCdc} 218 219 suite.clientCtx = client.Context{}. 220 WithTxConfig(txConfig) 221 222 anteHandler, err := ante.NewAnteHandler( 223 ante.HandlerOptions{ 224 AccountKeeper: suite.app.AccountKeeper, 225 BankKeeper: suite.app.BankKeeper, 226 FeegrantKeeper: suite.app.FeeGrantKeeper, 227 SignModeHandler: txConfig.SignModeHandler(), 228 SigGasConsumer: ante.DefaultSigVerificationGasConsumer, 229 }, 230 ) 231 232 suite.Require().NoError(err) 233 suite.anteHandler = anteHandler 234 235 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() 236 237 // make block height non-zero to ensure account numbers part of signBytes 238 suite.ctx = suite.ctx.WithBlockHeight(1) 239 240 // keys and addresses 241 priv1, _, addr1 := testdata.KeyTestPubAddr() 242 priv2, _, addr2 := testdata.KeyTestPubAddr() 243 priv3, _, addr3 := testdata.KeyTestPubAddr() 244 245 addrs := []sdk.AccAddress{addr1, addr2, addr3} 246 247 msgs := make([]sdk.Msg, len(addrs)) 248 // set accounts and create msg for each address 249 for i, addr := range addrs { 250 acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr) 251 suite.Require().NoError(acc.SetAccountNumber(uint64(i))) 252 suite.app.AccountKeeper.SetAccount(suite.ctx, acc) 253 msgs[i] = testdata.NewTestMsg(addr) 254 } 255 256 feeAmount := testdata.NewTestFeeAmount() 257 gasLimit := testdata.NewTestGasLimit() 258 259 spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper) 260 svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler()) 261 antehandler := sdk.ChainAnteDecorators(spkd, svd) 262 263 type testCase struct { 264 name string 265 privs []cryptotypes.PrivKey 266 accNums []uint64 267 accSeqs []uint64 268 recheck bool 269 shouldErr bool 270 } 271 testCases := []testCase{ 272 {"no signers", []cryptotypes.PrivKey{}, []uint64{}, []uint64{}, false, true}, 273 {"not enough signers", []cryptotypes.PrivKey{priv1, priv2}, []uint64{0, 1}, []uint64{0, 0}, false, true}, 274 {"wrong order signers", []cryptotypes.PrivKey{priv3, priv2, priv1}, []uint64{2, 1, 0}, []uint64{0, 0, 0}, false, true}, 275 {"wrong accnums", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{7, 8, 9}, []uint64{0, 0, 0}, false, true}, 276 {"wrong sequences", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{3, 4, 5}, false, true}, 277 {"valid tx", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, false, false}, 278 {"no err on recheck", []cryptotypes.PrivKey{priv1, priv2, priv3}, []uint64{0, 1, 2}, []uint64{0, 0, 0}, true, false}, 279 } 280 for i, tc := range testCases { 281 suite.ctx = suite.ctx.WithIsReCheckTx(tc.recheck) 282 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() // Create new txBuilder for each test 283 284 suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...)) 285 suite.txBuilder.SetFeeAmount(feeAmount) 286 suite.txBuilder.SetGasLimit(gasLimit) 287 288 tx, err := suite.CreateTestTx(tc.privs, tc.accNums, tc.accSeqs, suite.ctx.ChainID()) 289 suite.Require().NoError(err) 290 291 _, err = antehandler(suite.ctx, tx, false) 292 if tc.shouldErr { 293 suite.Require().NotNil(err, "TestCase %d: %s did not error as expected", i, tc.name) 294 } else { 295 suite.Require().Nil(err, "TestCase %d: %s errored unexpectedly. Err: %v", i, tc.name, err) 296 } 297 } 298 } 299 300 func (suite *AnteTestSuite) TestSigIntegration() { 301 // generate private keys 302 privs := []cryptotypes.PrivKey{ 303 secp256k1.GenPrivKey(), 304 secp256k1.GenPrivKey(), 305 secp256k1.GenPrivKey(), 306 } 307 308 params := types.DefaultParams() 309 initialSigCost := params.SigVerifyCostSecp256k1 310 initialCost, err := suite.runSigDecorators(params, false, privs...) 311 suite.Require().Nil(err) 312 313 params.SigVerifyCostSecp256k1 *= 2 314 doubleCost, err := suite.runSigDecorators(params, false, privs...) 315 suite.Require().Nil(err) 316 317 suite.Require().Equal(initialSigCost*uint64(len(privs)), doubleCost-initialCost) 318 } 319 320 func (suite *AnteTestSuite) runSigDecorators(params types.Params, _ bool, privs ...cryptotypes.PrivKey) (sdk.Gas, error) { 321 suite.SetupTest(true) // setup 322 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() 323 324 // Make block-height non-zero to include accNum in SignBytes 325 suite.ctx = suite.ctx.WithBlockHeight(1) 326 suite.app.AccountKeeper.SetParams(suite.ctx, params) 327 328 msgs := make([]sdk.Msg, len(privs)) 329 accNums := make([]uint64, len(privs)) 330 accSeqs := make([]uint64, len(privs)) 331 // set accounts and create msg for each address 332 for i, priv := range privs { 333 addr := sdk.AccAddress(priv.PubKey().Address()) 334 acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr) 335 suite.Require().NoError(acc.SetAccountNumber(uint64(i))) 336 suite.app.AccountKeeper.SetAccount(suite.ctx, acc) 337 msgs[i] = testdata.NewTestMsg(addr) 338 accNums[i] = uint64(i) 339 accSeqs[i] = uint64(0) 340 } 341 suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...)) 342 343 feeAmount := testdata.NewTestFeeAmount() 344 gasLimit := testdata.NewTestGasLimit() 345 suite.txBuilder.SetFeeAmount(feeAmount) 346 suite.txBuilder.SetGasLimit(gasLimit) 347 348 tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID()) 349 suite.Require().NoError(err) 350 351 spkd := ante.NewSetPubKeyDecorator(suite.app.AccountKeeper) 352 svgc := ante.NewSigGasConsumeDecorator(suite.app.AccountKeeper, ante.DefaultSigVerificationGasConsumer) 353 svd := ante.NewSigVerificationDecorator(suite.app.AccountKeeper, suite.clientCtx.TxConfig.SignModeHandler()) 354 antehandler := sdk.ChainAnteDecorators(spkd, svgc, svd) 355 356 // Determine gas consumption of antehandler with default params 357 before := suite.ctx.GasMeter().GasConsumed() 358 ctx, err := antehandler(suite.ctx, tx, false) 359 after := ctx.GasMeter().GasConsumed() 360 361 return after - before, err 362 } 363 364 func (suite *AnteTestSuite) TestIncrementSequenceDecorator() { 365 suite.SetupTest(true) // setup 366 suite.txBuilder = suite.clientCtx.TxConfig.NewTxBuilder() 367 368 priv, _, addr := testdata.KeyTestPubAddr() 369 acc := suite.app.AccountKeeper.NewAccountWithAddress(suite.ctx, addr) 370 suite.Require().NoError(acc.SetAccountNumber(uint64(50))) 371 suite.app.AccountKeeper.SetAccount(suite.ctx, acc) 372 373 msgs := []sdk.Msg{testdata.NewTestMsg(addr)} 374 suite.Require().NoError(suite.txBuilder.SetMsgs(msgs...)) 375 privs := []cryptotypes.PrivKey{priv} 376 accNums := []uint64{suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetAccountNumber()} 377 accSeqs := []uint64{suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetSequence()} 378 feeAmount := testdata.NewTestFeeAmount() 379 gasLimit := testdata.NewTestGasLimit() 380 suite.txBuilder.SetFeeAmount(feeAmount) 381 suite.txBuilder.SetGasLimit(gasLimit) 382 383 tx, err := suite.CreateTestTx(privs, accNums, accSeqs, suite.ctx.ChainID()) 384 suite.Require().NoError(err) 385 386 isd := ante.NewIncrementSequenceDecorator(suite.app.AccountKeeper) 387 antehandler := sdk.ChainAnteDecorators(isd) 388 389 testCases := []struct { 390 ctx sdk.Context 391 simulate bool 392 expectedSeq uint64 393 }{ 394 {suite.ctx.WithIsReCheckTx(true), false, 1}, 395 {suite.ctx.WithIsCheckTx(true).WithIsReCheckTx(false), false, 2}, 396 {suite.ctx.WithIsReCheckTx(true), false, 3}, 397 {suite.ctx.WithIsReCheckTx(true), false, 4}, 398 {suite.ctx.WithIsReCheckTx(true), true, 5}, 399 } 400 401 for i, tc := range testCases { 402 _, err := antehandler(tc.ctx, tx, tc.simulate) 403 suite.Require().NoError(err, "unexpected error; tc #%d, %v", i, tc) 404 suite.Require().Equal(tc.expectedSeq, suite.app.AccountKeeper.GetAccount(suite.ctx, addr).GetSequence()) 405 } 406 }