2022-05-24 21:41:14 -04:00
|
|
|
use std::{rc::Rc, collections::HashMap};
|
2022-04-21 21:36:18 -04:00
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
use rand::rngs::OsRng;
|
2022-04-23 03:49:30 -04:00
|
|
|
|
2022-04-21 21:36:18 -04:00
|
|
|
use frost::{
|
|
|
|
|
Curve,
|
|
|
|
|
MultisigParams, MultisigKeys,
|
|
|
|
|
key_gen,
|
2022-04-23 03:49:30 -04:00
|
|
|
algorithm::{Algorithm, Schnorr, SchnorrSignature},
|
2022-04-29 22:36:43 -04:00
|
|
|
sign::{StateMachine, AlgorithmMachine}
|
2022-04-21 21:36:18 -04:00
|
|
|
};
|
|
|
|
|
|
|
|
|
|
mod common;
|
2022-04-23 03:49:30 -04:00
|
|
|
use common::{Secp256k1, TestHram};
|
2022-04-21 21:36:18 -04:00
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
const PARTICIPANTS: u16 = 8;
|
2022-04-21 21:36:18 -04:00
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
fn clone_without<K: Clone + std::cmp::Eq + std::hash::Hash, V: Clone>(
|
|
|
|
|
map: &HashMap<K, V>,
|
|
|
|
|
without: &K
|
|
|
|
|
) -> HashMap<K, V> {
|
|
|
|
|
let mut res = map.clone();
|
|
|
|
|
res.remove(without).unwrap();
|
|
|
|
|
res
|
2022-04-21 21:36:18 -04:00
|
|
|
}
|
|
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
fn key_gen<C: Curve>() -> HashMap<u16, Rc<MultisigKeys<C>>> {
|
|
|
|
|
let mut params = HashMap::new();
|
|
|
|
|
let mut machines = HashMap::new();
|
|
|
|
|
|
|
|
|
|
let mut commitments = HashMap::new();
|
2022-04-21 21:36:18 -04:00
|
|
|
for i in 1 ..= PARTICIPANTS {
|
2022-05-24 21:41:14 -04:00
|
|
|
params.insert(
|
|
|
|
|
i,
|
2022-04-21 21:36:18 -04:00
|
|
|
MultisigParams::new(
|
|
|
|
|
((PARTICIPANTS / 3) * 2) + 1,
|
|
|
|
|
PARTICIPANTS,
|
|
|
|
|
i
|
|
|
|
|
).unwrap()
|
|
|
|
|
);
|
2022-05-24 21:41:14 -04:00
|
|
|
machines.insert(
|
|
|
|
|
i,
|
|
|
|
|
key_gen::StateMachine::<C>::new(
|
|
|
|
|
params[&i],
|
|
|
|
|
"FROST test key_gen".to_string()
|
2022-04-21 21:36:18 -04:00
|
|
|
)
|
|
|
|
|
);
|
2022-05-24 21:41:14 -04:00
|
|
|
commitments.insert(
|
|
|
|
|
i,
|
|
|
|
|
machines.get_mut(&i).unwrap().generate_coefficients(&mut OsRng).unwrap()
|
|
|
|
|
);
|
2022-04-21 21:36:18 -04:00
|
|
|
}
|
|
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
let mut secret_shares = HashMap::new();
|
|
|
|
|
for (l, machine) in machines.iter_mut() {
|
|
|
|
|
secret_shares.insert(
|
|
|
|
|
*l,
|
|
|
|
|
machine.generate_secret_shares(&mut OsRng, clone_without(&commitments, l)).unwrap()
|
2022-04-21 21:36:18 -04:00
|
|
|
);
|
|
|
|
|
}
|
|
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
let mut verification_shares = None;
|
2022-04-21 21:36:18 -04:00
|
|
|
let mut group_key = None;
|
2022-05-24 21:41:14 -04:00
|
|
|
let mut keys = HashMap::new();
|
|
|
|
|
for (i, machine) in machines.iter_mut() {
|
|
|
|
|
let mut our_secret_shares = HashMap::new();
|
|
|
|
|
for (l, shares) in &secret_shares {
|
|
|
|
|
if i == l {
|
|
|
|
|
continue;
|
|
|
|
|
}
|
|
|
|
|
our_secret_shares.insert(*l, shares[&i].clone());
|
|
|
|
|
}
|
|
|
|
|
let these_keys = machine.complete(our_secret_shares).unwrap();
|
2022-04-21 21:36:18 -04:00
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
// Test serialization
|
2022-04-21 21:36:18 -04:00
|
|
|
assert_eq!(
|
2022-05-24 21:41:14 -04:00
|
|
|
MultisigKeys::<C>::deserialize(&these_keys.serialize()).unwrap(),
|
2022-04-21 21:36:18 -04:00
|
|
|
these_keys
|
|
|
|
|
);
|
|
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
if verification_shares.is_none() {
|
|
|
|
|
verification_shares = Some(these_keys.verification_shares());
|
2022-04-21 21:36:18 -04:00
|
|
|
}
|
2022-05-24 21:41:14 -04:00
|
|
|
assert_eq!(verification_shares.as_ref().unwrap(), &these_keys.verification_shares());
|
2022-04-21 21:36:18 -04:00
|
|
|
|
|
|
|
|
if group_key.is_none() {
|
|
|
|
|
group_key = Some(these_keys.group_key());
|
|
|
|
|
}
|
|
|
|
|
assert_eq!(group_key.unwrap(), these_keys.group_key());
|
2022-05-24 21:41:14 -04:00
|
|
|
|
|
|
|
|
keys.insert(*i, Rc::new(these_keys.clone()));
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
keys
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
fn sign<C: Curve, A: Algorithm<C, Signature = SchnorrSignature<C>>>(
|
|
|
|
|
algorithm: A,
|
|
|
|
|
keys: &HashMap<u16, Rc<MultisigKeys<C>>>
|
|
|
|
|
) {
|
|
|
|
|
let t = keys[&1].params().t();
|
|
|
|
|
let mut machines = HashMap::new();
|
|
|
|
|
let mut commitments = HashMap::new();
|
|
|
|
|
for i in 1 ..= t {
|
|
|
|
|
machines.insert(
|
|
|
|
|
i,
|
|
|
|
|
AlgorithmMachine::new(
|
|
|
|
|
algorithm.clone(),
|
|
|
|
|
keys[&i].clone(),
|
|
|
|
|
&(1 ..= t).collect::<Vec<_>>()
|
|
|
|
|
).unwrap()
|
|
|
|
|
);
|
|
|
|
|
commitments.insert(
|
|
|
|
|
i,
|
|
|
|
|
machines.get_mut(&i).unwrap().preprocess(&mut OsRng).unwrap()
|
|
|
|
|
);
|
2022-04-21 21:36:18 -04:00
|
|
|
}
|
|
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
let mut shares = HashMap::new();
|
|
|
|
|
for (i, machine) in machines.iter_mut() {
|
|
|
|
|
shares.insert(
|
|
|
|
|
*i,
|
|
|
|
|
machine.sign(clone_without(&commitments, i), b"Hello World").unwrap()
|
|
|
|
|
);
|
|
|
|
|
}
|
2022-04-21 21:36:18 -04:00
|
|
|
|
2022-05-24 21:41:14 -04:00
|
|
|
let mut signature = None;
|
|
|
|
|
for (i, machine) in machines.iter_mut() {
|
|
|
|
|
let sig = machine.complete(clone_without(&shares, i)).unwrap();
|
|
|
|
|
if signature.is_none() {
|
|
|
|
|
signature = Some(sig);
|
|
|
|
|
}
|
|
|
|
|
assert_eq!(sig, signature.unwrap());
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
#[test]
|
|
|
|
|
fn key_gen_and_sign() {
|
|
|
|
|
let mut keys = key_gen::<Secp256k1>();
|
|
|
|
|
|
|
|
|
|
sign(Schnorr::<Secp256k1, TestHram>::new(), &keys);
|
|
|
|
|
|
|
|
|
|
for i in 1 ..= u16::try_from(PARTICIPANTS).unwrap() {
|
|
|
|
|
keys.insert(i, Rc::new(keys[&i].offset(Secp256k1::hash_to_F(b"offset"))));
|
|
|
|
|
}
|
|
|
|
|
sign(Schnorr::<Secp256k1, TestHram>::new(), &keys);
|
2022-04-21 21:36:18 -04:00
|
|
|
}
|