From a3a5a8565efc17b1eaf23327a18b624fb47744d2 Mon Sep 17 00:00:00 2001 From: Wolmin <44748271+Wolmin@users.noreply.github.com> Date: Thu, 26 Jan 2023 10:05:14 +0100 Subject: [PATCH] JEQB #195: Verify returning false (#27) * Change sign and verify mock and test * Uncomment tests --- primitives/core/src/dilithium2.rs | 49 +++++++++++++++++++++++++--- primitives/keyring/src/dilithium2.rs | 25 +++++++------- 2 files changed, 57 insertions(+), 17 deletions(-) diff --git a/primitives/core/src/dilithium2.rs b/primitives/core/src/dilithium2.rs index 14a5acdf83970..52bcae063c7f9 100644 --- a/primitives/core/src/dilithium2.rs +++ b/primitives/core/src/dilithium2.rs @@ -471,13 +471,31 @@ impl TraitPair for Pair { Ok(Self::from_seed(&s)) } fn sign(&self, _: &[u8]) -> Self::Signature { - let sig_bytes: Vec = (0..2420).map(|_| { rand::random::() }).collect(); - Signature(<[u8; 2420]>::try_from(sig_bytes.as_slice()).unwrap()) + let pub_bytes = self.public.0; + let mut sig_bytes = [0u8; 2420]; + sig_bytes[..1312].copy_from_slice(&pub_bytes); + sig_bytes[1312..].copy_from_slice(&pub_bytes[..1108]); + + Signature(sig_bytes) } - fn verify>(_: &Self::Signature, _: M, _: &Self::Public) -> bool { - true + fn verify>(sig: &Self::Signature, mess: M, pub_key: &Self::Public) -> bool { + Self::verify_weak(&sig.0[..], mess.as_ref(), pub_key) } - fn verify_weak, M: AsRef<[u8]>>(_: &[u8], _: M, _: P) -> bool { + fn verify_weak, M: AsRef<[u8]>>(sig_bytes: &[u8], _: M, pub_key_bytes: P) -> bool { + if sig_bytes.len() != 2420 { + return false; + } + + let mut sig = [0u8; 2420]; + sig.copy_from_slice(&sig_bytes); + + let mut pub_key = [0u8; 1312]; + pub_key.copy_from_slice(pub_key_bytes.as_ref()); + + if sig[..1312] != pub_key && sig[1312..] != pub_key[..1108] { + return false; + } + true } fn public(&self) -> Self::Public { @@ -505,3 +523,24 @@ impl CryptoType for Signature { impl CryptoType for Pair { type Pair = Pair; } + +#[cfg(test)] +mod tests { + use super::*; + + #[test] + fn test_sign_and_verify() { + let pair: Pair = TraitPair::from_seed(&[1u8; 32]); + let message = [5u8; 10]; + + let sig = pair.sign(&message); + let verified = Pair::verify(&sig, message, &pair.public); + + assert!(verified); + + let incorrect_sig = Signature([2u8; 2420]); + let verified = Pair::verify(&incorrect_sig, message, &pair.public); + + assert!(!verified); + } +} diff --git a/primitives/keyring/src/dilithium2.rs b/primitives/keyring/src/dilithium2.rs index 54818e28886b3..d7e43eaae31c6 100644 --- a/primitives/keyring/src/dilithium2.rs +++ b/primitives/keyring/src/dilithium2.rs @@ -183,24 +183,25 @@ mod tests { use super::*; #[test] - fn should_work() { + fn should_sign_and_verify_correctly() { assert!(Pair::verify( &Keyring::Alice.sign(b"I am Alice!"), b"I am Alice!", &Keyring::Alice.public(), )); - // TODO JEQB-195 verify returning "false" - // assert!(!Pair::verify( - // &Keyring::Alice.sign(b"I am Alice!"), - // b"I am Bob!", - // &Keyring::Alice.public(), - // )); - // assert!(!Pair::verify( - // &Keyring::Alice.sign(b"I am Alice!"), - // b"I am Alice!", - // &Keyring::Bob.public(), - // )); + // Current mock creates signature just from public key, not the message itself + // so this test will pass regardless of the message, we just need the same signer/verifier + assert!(Pair::verify( + &Keyring::Alice.sign(b"I am Alice!"), + b"I am Bob!", + &Keyring::Alice.public(), + )); + assert!(!Pair::verify( + &Keyring::Alice.sign(b"I am Alice!"), + b"I am Alice!", + &Keyring::Bob.public(), + )); } #[test]