Source file baking_nonces.ml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
open Protocol
open Alpha_context
module Events = Baking_events.Nonces
type state = {
  cctxt : Protocol_client_context.full;
  chain : Chain_services.chain;
  constants : Constants.t;
  config : Baking_configuration.nonce_config;
  legacy_location : [`Legacy_nonce] Baking_files.location;
  stateful_location : [`Stateful_nonce] Baking_files.location;
  orphaned_location : [`Orphaned_nonce] Baking_files.location;
  mutable last_predecessor : Block_hash.t;
}
type t = state
(** [nonce_state] tracks the current state of committed nonces. It is used to
    optimise nonce processing by further reducing queries for nonce metadata. *)
type nonce_state =
  | Committed
      (** [Committed] is initial state and signals that the nonce was committed at
          some cycle:
       - If baker in current cycle: do nothing
       - If baker in cycle + 1:
           - If block with commitment is part of the
             cannonical chain: then transition to injected
           - else: safe to delete
       - If current cycle > cycle + 1: too stale, so safe to delete *)
  | Revealed of Raw_level.t
      (** [Revealed] signals that the nonce revelation operation was injected at
      [injected_level]
      - At each level, get the last finalized block (level - 2)
      - If the revelation operation found in that block: nonce is safe to
        delete
      - If not found:
          - If pass `re_injection_threshold`:
              - consider revelation operation lost, so re-inject
              - transition to injected with updated level
          - If pass `nonce_revelation_threshold`:
              - missed out revelation operation, so delete
          - else: do nothing *)
type nonce_data = {
  nonce : Nonce.t;
  nonce_hash : Nonce_hash.t;
  block_hash : Block_hash.t; 
  cycle : Cycle.t;
  level : Raw_level.t;
  round : Round.t option;
  nonce_state : nonce_state;
}
type nonces = nonce_data Nonce_hash.Map.t
let empty = Nonce_hash.Map.empty
let legacy_empty = Block_hash.Map.empty
let reinjection_threshold = 2l
let nonce_state_encoding =
  let open Data_encoding in
  union
    [
      case
        (Tag 0)
        ~title:"Committed"
        (constant "committed")
        (function Committed -> Some () | _ -> None)
        (fun () -> Committed);
      case
        (Tag 1)
        ~title:"Revealed"
        (obj1 (req "injection_level" Raw_level.encoding))
        (function
          | Revealed injection_level -> Some injection_level | _ -> None)
        (fun injection_level -> Revealed injection_level);
    ]
let nonce_data_encoding =
  let open Data_encoding in
  def "nonce_data"
  @@ conv
       (fun {nonce; nonce_hash; block_hash; cycle; level; round; nonce_state} ->
         (nonce, nonce_hash, block_hash, cycle, level, round, nonce_state))
       (fun (nonce, nonce_hash, block_hash, cycle, level, round, nonce_state) ->
         {nonce; nonce_hash; block_hash; cycle; level; round; nonce_state})
       (obj7
          (req "nonce" Nonce.encoding)
          (req "hash" Nonce_hash.encoding)
          (req "block" Block_hash.encoding)
          (req "cycle" Cycle.encoding)
          (req "level" Raw_level.encoding)
          (opt "round" Round.encoding)
          (req "state" nonce_state_encoding))
let legacy_encoding =
  let open Data_encoding in
  def "legacy_seed_nonce"
  @@ conv
       (fun m ->
         Block_hash.Map.fold (fun hash nonce acc -> (hash, nonce) :: acc) m [])
       (fun l ->
         List.fold_left
           (fun map (hash, nonce) -> Block_hash.Map.add hash nonce map)
           Block_hash.Map.empty
           l)
  @@ list (obj2 (req "block" Block_hash.encoding) (req "nonce" Nonce.encoding))
let encoding =
  let open Data_encoding in
  def "seed_nonce"
  @@ conv
       (fun m ->
         Nonce_hash.Map.fold
           (fun _hash nonce_data acc -> nonce_data :: acc)
           m
           [])
       (fun l ->
         List.fold_left
           (fun map data -> Nonce_hash.Map.add data.nonce_hash data map)
           Nonce_hash.Map.empty
           l)
  @@ list nonce_data_encoding
let load (wallet : #Client_context.wallet)
    ~(stateful_location : [`Stateful_nonce] Baking_files.location) =
  let location = Baking_files.filename stateful_location in
  wallet#load location ~default:empty encoding
let save (wallet : #Client_context.wallet)
    ~(legacy_location : [`Legacy_nonce] Baking_files.location)
    ~(stateful_location : [`Stateful_nonce] Baking_files.location)
    ~(orphaned_location : [`Orphaned_nonce] Baking_files.location) nonces =
  let open Lwt_result_syntax in
  let legacy_location = Baking_files.filename legacy_location in
  let stateful_location = Baking_files.filename stateful_location in
  let orphaned_location = Baking_files.filename orphaned_location in
  
  let* () = wallet#write stateful_location nonces encoding in
  
  let* orphaned_nonces =
    wallet#load orphaned_location ~default:legacy_empty legacy_encoding
  in
  let legacy_nonces =
    Nonce_hash.Map.fold
      (fun _ {nonce; block_hash; _} legacy_nonces ->
        Block_hash.Map.add block_hash nonce legacy_nonces)
      nonces
      orphaned_nonces
  in
  wallet#write legacy_location legacy_nonces legacy_encoding
let add nonces nonce = Nonce_hash.Map.add nonce.nonce_hash nonce nonces
let is_outdated constants committed_cycle current_cycle =
  let {Constants.parametric = {consensus_rights_delay; _}; _} = constants in
  Int32.sub (Cycle.to_int32 current_cycle) (Cycle.to_int32 committed_cycle)
  > Int32.of_int consensus_rights_delay
(** [try_migrate_legacy_nonces] makes a best effort to migrate nonces in the legacy format
    to new format. Legacy nonces that cannot be migrated are dropped. No updates to the legacy
    file are made *)
let try_migrate_legacy_nonces state =
  let {
    cctxt;
    chain;
    legacy_location;
    stateful_location;
    orphaned_location;
    constants;
    _;
  } =
    state
  in
  let migrate () =
    let open Lwt_result_syntax in
    let legacy_location = Baking_files.filename legacy_location in
    let* legacy_nonces =
      cctxt#load legacy_location ~default:legacy_empty legacy_encoding
    in
    let new_location = Baking_files.filename stateful_location in
    let* nonces = cctxt#load new_location ~default:empty encoding in
    let* {cycle = current_cycle; _} =
      Plugin.RPC.current_level cctxt (chain, `Head 0)
    in
    let*! nonces, failed_migration =
      Block_hash.Map.fold_s
        (fun block_hash nonce (existing_nonces, failed_migration) ->
          let*! updated_nonces =
            if Nonce_hash.Map.mem (Nonce.hash nonce) existing_nonces then
              
              return existing_nonces
            else
              let* {cycle = nonce_cycle; level = nonce_level; _} =
                Plugin.RPC.current_level cctxt (chain, `Hash (block_hash, 0))
              in
              match is_outdated constants nonce_cycle current_cycle with
              | true ->
                  let*! () = Events.(emit outdated_nonce block_hash) in
                  return existing_nonces
              | false -> (
                  let* nonce_info =
                    Alpha_services.Nonce.get cctxt (chain, `Head 0) nonce_level
                  in
                  match nonce_info with
                  | Missing nonce_hash when Nonce.check_hash nonce nonce_hash ->
                      
                      let data =
                        {
                          nonce;
                          nonce_hash = Nonce.hash nonce;
                          block_hash;
                          cycle = nonce_cycle;
                          level = nonce_level;
                          round = None;
                          nonce_state = Committed;
                        }
                      in
                      return
                        (Nonce_hash.Map.add
                           data.nonce_hash
                           data
                           existing_nonces)
                  | Missing _nonce_hash ->
                      let*! () = Events.(emit unexpected_nonce block_hash) in
                      return existing_nonces
                  | Revealed _nonce_hash ->
                      let*! () = Events.(emit revealed_nonce block_hash) in
                      return existing_nonces
                  | Forgotten -> return existing_nonces)
          in
          Lwt.return
            (match updated_nonces with
            | Ok updated_nonces -> (updated_nonces, failed_migration)
            | Error _ ->
                ( existing_nonces,
                  Block_hash.Map.add block_hash nonce failed_migration )))
        legacy_nonces
        (nonces, legacy_empty)
    in
    let* () = cctxt#write new_location nonces encoding in
    let+ () =
      if Block_hash.Map.is_empty failed_migration then return_unit
      else
        let orphaned_location = Baking_files.filename orphaned_location in
        state.cctxt#write orphaned_location failed_migration legacy_encoding
    in
    failed_migration
  in
  let open Lwt_syntax in
  let* res = migrate () in
  match res with
  | Ok failed_migration when Block_hash.Map.is_empty failed_migration ->
      Events.(emit success_migrate_nonces ())
  | Ok failed_migration ->
      let failed_block_hashes =
        Block_hash.Map.fold
          (fun block_hash _ acc -> block_hash :: acc)
          failed_migration
          []
      in
      Events.(emit ignore_failed_nonce_migration failed_block_hashes)
  | Error _ -> return_unit
(** [partition_unrevealed_nonces state nonces current_cycle current_level] partitions
    nonces into 2 groups: 
     - nonces that need to be re/revealed
     - nonces that are live 
    Nonces that are not relevant can be dropped.
*)
let partition_unrevealed_nonces {cctxt; chain; _} nonces current_cycle
    current_level =
  let open Lwt_result_syntax in
  match Cycle.pred current_cycle with
  | None ->
      
      return (empty, nonces)
  | Some previous_cycle ->
      
      Nonce_hash.Map.fold_es
        (fun _hash nonce_data (nonces_to_reveal, live) ->
          let {nonce_hash; cycle; level; nonce_state; _} = nonce_data in
          match cycle with
          | cycle when Cycle.(cycle = previous_cycle) -> (
              
              let+ nonce_info =
                Alpha_services.Nonce.get cctxt (chain, `Head 0) level
              in
              match (nonce_state, nonce_info) with
              | Committed, Missing expected_nonce_hash
                when Nonce_hash.(nonce_hash = expected_nonce_hash) ->
                  
                  (add nonces_to_reveal nonce_data, live)
              | Committed, _ ->
                  
                  (nonces_to_reveal, live)
              | Revealed injection_level, Missing expected_nonce_hash
                when Nonce_hash.(nonce_hash = expected_nonce_hash) ->
                  if
                    Raw_level.diff current_level injection_level
                    > reinjection_threshold
                  then
                    
                    (add nonces_to_reveal nonce_data, live)
                  else
                    
                    (nonces_to_reveal, add live nonce_data)
              | Revealed _injection_level, Missing _
              | Revealed _injection_level, Forgotten
              | Revealed _injection_level, Revealed _ ->
                  (nonces_to_reveal, live))
          | cycle when Cycle.(cycle = current_cycle) ->
              
              return (nonces_to_reveal, add live nonce_data)
          | _ ->
              
              return (nonces_to_reveal, live))
        nonces
        (empty, empty)
let generate_seed_nonce (nonce_config : Baking_configuration.nonce_config)
    (delegate : Baking_state.consensus_key) level =
  let open Lwt_result_syntax in
  let* nonce =
    match nonce_config with
    | Deterministic ->
        let data = Data_encoding.Binary.to_bytes_exn Raw_level.encoding level in
        let* nonce =
          Client_keys.deterministic_nonce delegate.secret_key_uri data
        in
        return (Data_encoding.Binary.of_bytes_exn Nonce.encoding nonce)
    | Random -> (
        match
          Nonce.of_bytes (Tezos_crypto.Rand.generate Constants.nonce_length)
        with
        | Error _errs -> assert false
        | Ok nonce -> return nonce)
  in
  return (Nonce.hash nonce, nonce)
let register_nonce (cctxt : #Protocol_client_context.full) ~chain_id block_hash
    nonce ~cycle ~level ~round =
  let open Lwt_result_syntax in
  let*! () = Events.(emit registering_nonce block_hash) in
  
  let legacy_location = Baking_files.resolve_location ~chain_id `Legacy_nonce in
  let stateful_location =
    Baking_files.resolve_location ~chain_id `Stateful_nonce
  in
  let orphaned_location =
    Baking_files.resolve_location ~chain_id `Orphaned_nonce
  in
  cctxt#with_lock @@ fun () ->
  let* nonces = load cctxt ~stateful_location in
  let nonces =
    add
      nonces
      {
        nonce;
        nonce_hash = Nonce.hash nonce;
        block_hash;
        cycle;
        level;
        round = Some round;
        nonce_state = Committed;
      }
  in
  let* () =
    save cctxt ~legacy_location ~stateful_location nonces ~orphaned_location
  in
  return_unit
(** [inject_seed_nonce_revelation cctxt ~chain ~block ~branch nonces] forges one 
    [Seed_nonce_revelation] operation per each nonce to be revealed, together with
    a signature and then injects these operations. *)
let inject_seed_nonce_revelation (cctxt : #Protocol_client_context.full) ~chain
    ~block ~branch nonces =
  let open Lwt_result_syntax in
  match nonces with
  | [] ->
      let*! () = Events.(emit nothing_to_reveal branch) in
      return_unit
  | _ ->
      List.iter_es
        (fun (level, nonce) ->
          let* bytes =
            Plugin.RPC.Forge.seed_nonce_revelation
              cctxt
              (chain, block)
              ~branch
              ~level
              ~nonce
              ()
          in
          let bytes = Signature.concat bytes Signature.zero in
          let* oph =
            Shell_services.Injection.operation ~async:true cctxt ~chain bytes
          in
          let*! () =
            Events.(
              emit
                revealing_nonce
                (Raw_level.to_int32 level, Chain_services.to_string chain, oph))
          in
          return_unit)
        nonces
(** [reveal_potential_nonces state new_proposal] updates the internal [state] 
    of the worker each time a proposal with a new predecessor is received; this means
    revealing the necessary nonces. *)
let reveal_potential_nonces state new_proposal =
  let open Lwt_result_syntax in
  let {
    cctxt;
    chain;
    legacy_location;
    stateful_location;
    orphaned_location;
    last_predecessor;
    _;
  } =
    state
  in
  let new_predecessor_hash = new_proposal.Baking_state.predecessor.hash in
  if
    Block_hash.(last_predecessor <> new_predecessor_hash)
    && not (Baking_state.is_first_block_in_protocol new_proposal)
  then (
    
    state.last_predecessor <- new_predecessor_hash ;
    let block = `Head 0 in
    let branch = new_predecessor_hash in
    
    cctxt#with_lock @@ fun () ->
    let*! nonces = load cctxt ~stateful_location in
    match nonces with
    | Error err ->
        let*! () = Events.(emit cannot_read_nonces err) in
        return_unit
    | Ok nonces -> (
        let* {cycle; level; _} =
          Plugin.RPC.current_level cctxt (chain, `Head 0)
        in
        let*! partitioned_nonces =
          partition_unrevealed_nonces state nonces cycle level
        in
        match partitioned_nonces with
        | Error err ->
            let*! () = Events.(emit cannot_retrieve_unrevealed_nonces err) in
            return_unit
        | Ok (nonces_to_reveal, live_nonces) -> (
            if Nonce_hash.Map.is_empty nonces_to_reveal then return_unit
            else
              let prepared_nonces =
                Nonce_hash.Map.fold
                  (fun _ {level; nonce; _} acc -> (level, nonce) :: acc)
                  nonces_to_reveal
                  []
              in
              let*! result =
                inject_seed_nonce_revelation
                  cctxt
                  ~chain
                  ~block
                  ~branch
                  prepared_nonces
              in
              match result with
              | Error err ->
                  let*! () = Events.(emit cannot_inject_nonces err) in
                  return_unit
              | Ok () ->
                  let updated_nonces =
                    let nonce_with_new_states =
                      Nonce_hash.Map.map
                        (fun nonce_data ->
                          {nonce_data with nonce_state = Revealed level})
                        nonces_to_reveal
                    in
                    Nonce_hash.Map.fold
                      (fun hash nonce acc -> Nonce_hash.Map.add hash nonce acc)
                      nonce_with_new_states
                      live_nonces
                  in
                  let* () =
                    save
                      cctxt
                      ~legacy_location
                      ~stateful_location
                      ~orphaned_location
                      updated_nonces
                  in
                  return_unit)))
  else return_unit
let start_revelation_worker cctxt config chain_id constants block_stream =
  let open Lwt_syntax in
  let legacy_location = Baking_files.resolve_location ~chain_id `Legacy_nonce in
  let stateful_location =
    Baking_files.resolve_location ~chain_id `Stateful_nonce
  in
  let chain = `Hash chain_id in
  let canceler = Lwt_canceler.create () in
  let should_shutdown = ref false in
  let state =
    {
      cctxt;
      chain;
      constants;
      config;
      legacy_location;
      stateful_location;
      orphaned_location =
        Baking_files.resolve_location ~chain_id `Orphaned_nonce;
      last_predecessor = Block_hash.zero;
    }
  in
  
  let* () = try_migrate_legacy_nonces state in
  let rec worker_loop () =
    Lwt_canceler.on_cancel canceler (fun () ->
        should_shutdown := true ;
        Lwt.return_unit) ;
    let* new_proposal = Lwt_stream.get block_stream in
    match new_proposal with
    | None ->
        
        return_unit
    | Some new_proposal ->
        if !should_shutdown then return_unit
        else
          let* _ = reveal_potential_nonces state new_proposal in
          worker_loop ()
  in
  Lwt.dont_wait
    (fun () ->
      Lwt.finalize
        (fun () ->
          let* () = Events.(emit revelation_worker_started ()) in
          let* () = worker_loop () in
           Lwt.return_unit)
        (fun () ->  Lwt.return_unit))
    (fun _exn -> ()) ;
  Lwt.return canceler