gentest.py 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327
  1. #!/usr/bin/env python3
  2. #
  3. # mmgen = Multi-Mode GENerator, command-line Bitcoin cold storage solution
  4. # Copyright (C)2013-2019 The MMGen Project <mmgen@tuta.io>
  5. #
  6. # This program is free software: you can redistribute it and/or modify
  7. # it under the terms of the GNU General Public License as published by
  8. # the Free Software Foundation, either version 3 of the License, or
  9. # (at your option) any later version.
  10. #
  11. # This program is distributed in the hope that it will be useful,
  12. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  14. # GNU General Public License for more details.
  15. #
  16. # You should have received a copy of the GNU General Public License
  17. # along with this program. If not, see <http://www.gnu.org/licenses/>.
  18. """
  19. test/gentest.py: Cryptocoin key/address generation tests for the MMGen suite
  20. """
  21. import sys,os
  22. pn = os.path.dirname(sys.argv[0])
  23. os.chdir(os.path.join(pn,os.pardir))
  24. sys.path.__setitem__(0,os.path.abspath(os.curdir))
  25. os.environ['MMGEN_TEST_SUITE'] = '1'
  26. # Import these _after_ local path's been added to sys.path
  27. from mmgen.common import *
  28. from mmgen.obj import MMGenAddrType
  29. rounds = 100
  30. opts_data = {
  31. 'text': {
  32. 'desc': 'Test address generation in various ways',
  33. 'usage':'[options] [spec] [rounds | dump file]',
  34. 'options': """
  35. -h, --help Print this help message
  36. -a, --all Test all supported coins for external generator 'ext'
  37. -k, --use-internal-keccak-module Force use of the internal keccak module
  38. --, --longhelp Print help message for long options (common options)
  39. -q, --quiet Produce quieter output
  40. -t, --type=t Specify address type (valid options: 'compressed','segwit','zcash_z')
  41. -v, --verbose Produce more verbose output
  42. """,
  43. 'notes': """
  44. Tests:
  45. A/B: {prog} a:b [rounds] (compare output of two key generators)
  46. Speed: {prog} a [rounds] (test speed of one key generator)
  47. Compare: {prog} a <dump file> (compare output of a key generator against wallet dump)
  48. where a and b are one of:
  49. '1' - native Python ecdsa library (very slow)
  50. '2' - bitcoincore.org's secp256k1 library (default from v0.8.6)
  51. EXAMPLES:
  52. {prog} 1:2 100
  53. (compare output of native Python ECDSA with secp256k1 library, 100 rounds)
  54. {prog} 2:ext 100
  55. (compare output of secp256k1 library with external library (see below), 100 rounds)
  56. {prog} 2 1000
  57. (test speed of secp256k1 library address generation, 1000 rounds)
  58. {prog} 2 my.dump
  59. (compare addrs generated with secp256k1 library to {dn} wallet dump)
  60. External libraries required for the 'ext' generator:
  61. + ethkey (for ETH,ETC) https://github.com/paritytech/parity-ethereum
  62. + zcash-mini (for zcash_z addresses) https://github.com/FiloSottile/zcash-mini
  63. + pycoin (for supported coins) https://github.com/richardkiss/pycoin
  64. + keyconv (for all other coins) https://github.com/exploitagency/vanitygen-plus
  65. ('keyconv' generates uncompressed addresses only)
  66. """
  67. },
  68. 'code': {
  69. 'notes': lambda s: s.format(
  70. prog='gentest.py',
  71. pnm=g.proj_name,
  72. snum=rounds,
  73. dn=g.proto.daemon_name)
  74. }
  75. }
  76. sys.argv = [sys.argv[0]] + ['--skip-cfg-file'] + sys.argv[1:]
  77. cmd_args = opts.init(opts_data,add_opts=['exact_output','use_old_ed25519'])
  78. if not 1 <= len(cmd_args) <= 2: opts.usage()
  79. addr_type = MMGenAddrType(opt.type or g.proto.dfl_mmtype)
  80. def ethkey_sec2addr(sec):
  81. p = sp.Popen(['ethkey','info',sec],stdout=sp.PIPE)
  82. o = p.stdout.read().decode().splitlines()
  83. return sec,o[-1].split()[1]
  84. def keyconv_sec2addr(sec):
  85. p = sp.Popen(['keyconv','-C',g.coin,sec.wif],stderr=sp.PIPE,stdout=sp.PIPE)
  86. o = p.stdout.read().decode().splitlines()
  87. return (o[1].split()[1],o[0].split()[1])
  88. def zcash_mini_sec2addr(sec):
  89. p = sp.Popen(['zcash-mini','-key','-simple'],stderr=sp.PIPE,stdin=sp.PIPE,stdout=sp.PIPE)
  90. ret = p.communicate(sec.wif.encode()+b'\n')[0].decode().strip().split('\n')
  91. return (sec.wif,ret[0],ret[-1])
  92. def pycoin_sec2addr(sec):
  93. coin = ci.external_tests['testnet']['pycoin'][g.coin] if g.testnet else g.coin
  94. network = network_for_netcode(coin)
  95. key = network.keys.private(secret_exponent=int(sec,16),is_compressed=addr_type.name != 'legacy')
  96. if key is None:
  97. die(1,"can't parse {}".format(sec))
  98. if addr_type.name in ('segwit','bech32'):
  99. hash160_c = key.hash160(is_compressed=True)
  100. if addr_type.name == 'segwit':
  101. p2sh_script = network.contract.for_p2pkh_wit(hash160_c)
  102. addr = network.address.for_p2s(p2sh_script)
  103. else:
  104. addr = network.address.for_p2pkh_wit(hash160_c)
  105. else:
  106. addr = key.address()
  107. return (key.wif(),addr)
  108. # pycoin/networks/all.py pycoin/networks/legacy_networks.py
  109. def init_external_prog():
  110. global b,b_desc,ext_lib,ext_sec2addr,sp,eth,addr_type
  111. def test_support(k):
  112. if b == k: return True
  113. if b != 'ext' and b != k: return False
  114. if g.coin in ci.external_tests['mainnet'][k] and not g.testnet: return True
  115. if g.coin in ci.external_tests['testnet'][k]: return True
  116. return False
  117. if b == 'zcash_mini' or addr_type.name == 'zcash_z':
  118. import subprocess as sp
  119. from mmgen.protocol import init_coin
  120. ext_sec2addr = zcash_mini_sec2addr
  121. ext_lib = 'zcash_mini'
  122. init_coin('zec')
  123. addr_type = MMGenAddrType('Z')
  124. elif test_support('ethkey'): # build with 'cargo build -p ethkey-cli --release'
  125. import subprocess as sp
  126. ext_sec2addr = ethkey_sec2addr
  127. ext_lib = 'ethkey'
  128. elif test_support('pycoin'):
  129. global network_for_netcode
  130. try:
  131. from pycoin.networks.registry import network_for_netcode
  132. except:
  133. raise ImportError("Unable to import pycoin.networks.registry Is pycoin installed and up-to-date?")
  134. ext_sec2addr = pycoin_sec2addr
  135. ext_lib = 'pycoin'
  136. elif test_support('keyconv'):
  137. import subprocess as sp
  138. ext_sec2addr = keyconv_sec2addr
  139. ext_lib = 'keyconv'
  140. else:
  141. m = '{}: coin supported by MMGen but unsupported by gentest.py for {}'
  142. raise ValueError(m.format(g.coin,('mainnet','testnet')[g.testnet]))
  143. b_desc = ext_lib
  144. b = 'ext'
  145. def match_error(sec,wif,a_addr,b_addr,a,b):
  146. qmsg_r(red('\nERROR: Values do not match!'))
  147. die(3,"""
  148. sec key : {}
  149. WIF key : {}
  150. {a:10}: {}
  151. {b:10}: {}
  152. """.format(sec,wif,a_addr,b_addr,pnm=g.proj_name,a=kg_a.desc,b=b_desc).rstrip())
  153. def compare_test():
  154. for k in ('segwit','compressed'):
  155. if b == 'ext' and addr_type.name == k and g.coin not in ci.external_tests_segwit_compressed[k]:
  156. m = 'skipping - external program does not support {} for coin {}'
  157. msg(m.format(addr_type.name.capitalize(),g.coin))
  158. return
  159. if 'ext_lib' in globals():
  160. if g.coin not in ci.external_tests[('mainnet','testnet')[g.testnet]][ext_lib]:
  161. msg("Coin '{}' incompatible with external generator '{}'".format(g.coin,ext_lib))
  162. return
  163. last_t = time.time()
  164. A = kg_a.desc
  165. B = ext_lib if b == 'ext' else kg_b.desc
  166. if A == B:
  167. msg('skipping - generation methods A and B are the same ({})'.format(A))
  168. return
  169. m = "Comparing address generators '{}' and '{}' for coin {}, addrtype {!r}"
  170. qmsg(green(m.format(A,B,g.coin,addr_type.name)))
  171. for i in range(rounds):
  172. if opt.verbose or time.time() - last_t >= 0.1:
  173. qmsg_r('\rRound {}/{} '.format(i+1,rounds))
  174. last_t = time.time()
  175. sec = PrivKey(os.urandom(32),compressed=addr_type.compressed,pubkey_type=addr_type.pubkey_type)
  176. ph = kg_a.to_pubhex(sec)
  177. a_addr = ag.to_addr(ph)
  178. if addr_type.name == 'zcash_z':
  179. a_vk = ag.to_viewkey(ph)
  180. if b == 'ext':
  181. if addr_type.name == 'zcash_z':
  182. b_wif,b_addr,b_vk = ext_sec2addr(sec)
  183. vmsg_r('\nvkey: {}'.format(b_vk))
  184. if b_vk != a_vk:
  185. match_error(sec,sec.wif,a_vk,b_vk,a,b)
  186. else:
  187. b_wif,b_addr = ext_sec2addr(sec)
  188. if b_wif != sec.wif:
  189. match_error(sec,sec.wif,sec.wif,b_wif,a,b)
  190. else:
  191. b_addr = ag.to_addr(kg_b.to_pubhex(sec))
  192. vmsg('\nkey: {}\naddr: {}\n'.format(sec.wif,a_addr))
  193. if a_addr != b_addr:
  194. match_error(sec,sec.wif,a_addr,b_addr,a,ext_lib if b == 'ext' else b)
  195. qmsg_r('\rRound {}/{} '.format(i+1,rounds))
  196. qmsg(green(('\n','')[bool(opt.verbose)] + 'OK'))
  197. def speed_test():
  198. m = "Testing speed of address generator '{}' for coin {}"
  199. qmsg(green(m.format(kg_a.desc,g.coin)))
  200. from struct import pack,unpack
  201. seed = os.urandom(28)
  202. print('Incrementing key with each round')
  203. print('Starting key:', (seed + pack('I',0)).hex())
  204. import time
  205. start = last_t = time.time()
  206. for i in range(rounds):
  207. if time.time() - last_t >= 0.1:
  208. qmsg_r('\rRound {}/{} '.format(i+1,rounds))
  209. last_t = time.time()
  210. sec = PrivKey(seed+pack('I',i),compressed=addr_type.compressed,pubkey_type=addr_type.pubkey_type)
  211. a_addr = ag.to_addr(kg_a.to_pubhex(sec))
  212. vmsg('\nkey: {}\naddr: {}\n'.format(sec.wif,a_addr))
  213. qmsg_r('\rRound {}/{} '.format(i+1,rounds))
  214. qmsg('\n{} addresses generated in {:.2f} seconds'.format(rounds,time.time()-start))
  215. def dump_test():
  216. m = "Comparing output of address generator '{}' against wallet dump '{}'"
  217. qmsg(green(m.format(kg_a.desc,cmd_args[1])))
  218. for n,[wif,a_addr] in enumerate(dump,1):
  219. qmsg_r('\rKey {}/{} '.format(n,len(dump)))
  220. try:
  221. sec = PrivKey(wif=wif)
  222. except:
  223. die(2,'\nInvalid {}net WIF address in dump file: {}'.format(('main','test')[g.testnet],wif))
  224. b_addr = ag.to_addr(kg_a.to_pubhex(sec))
  225. vmsg('\nwif: {}\naddr: {}\n'.format(wif,b_addr))
  226. if a_addr != b_addr:
  227. match_error(sec,wif,a_addr,b_addr,3,a)
  228. qmsg(green(('\n','')[bool(opt.verbose)] + 'OK'))
  229. from mmgen.altcoin import CoinInfo as ci
  230. urounds,fh = None,None
  231. dump = []
  232. if len(cmd_args) == 2:
  233. try:
  234. urounds = int(cmd_args[1])
  235. assert urounds > 0
  236. except:
  237. try:
  238. fh = open(cmd_args[1])
  239. except:
  240. die(1,'Second argument must be filename or positive integer')
  241. else:
  242. for line in fh.readlines():
  243. if 'addr=' in line:
  244. x,addr = line.split('addr=')
  245. dump.append([x.split()[0],addr.split()[0]])
  246. if urounds: rounds = urounds
  247. a,b = None,None
  248. b_desc = 'unknown'
  249. try:
  250. a,b = cmd_args[0].split(':')
  251. except:
  252. try:
  253. a = cmd_args[0]
  254. a = int(a)
  255. assert 1 <= a <= len(g.key_generators)
  256. except:
  257. die(1,'First argument must be one or two generator IDs, colon separated')
  258. else:
  259. try:
  260. a = int(a)
  261. assert 1 <= a <= len(g.key_generators),'{}: invalid key generator'.format(a)
  262. if b in ('ext','ethkey','pycoin','keyconv','zcash_mini'):
  263. init_external_prog()
  264. else:
  265. b = int(b)
  266. assert 1 <= b <= len(g.key_generators),'{}: invalid key generator'.format(b)
  267. assert a != b,'Key generators are the same!'
  268. except Exception as e:
  269. die(1,'{}\n{}: invalid generator argument'.format(e.args[0],cmd_args[0]))
  270. from mmgen.addr import KeyGenerator,AddrGenerator
  271. from mmgen.obj import PrivKey
  272. kg_a = KeyGenerator(addr_type,a)
  273. ag = AddrGenerator(addr_type)
  274. if a and b:
  275. if opt.all:
  276. from mmgen.protocol import init_coin,init_genonly_altcoins,CoinProtocol
  277. init_genonly_altcoins('btc',trust_level=0)
  278. mmgen_supported = CoinProtocol.get_valid_coins(upcase=True)
  279. for coin in ci.external_tests[('mainnet','testnet')[g.testnet]][ext_lib]:
  280. if coin not in mmgen_supported: continue
  281. init_coin(coin)
  282. if addr_type not in g.proto.mmtypes:
  283. addr_type = MMGenAddrType(g.proto.dfl_mmtype)
  284. kg_a = KeyGenerator(addr_type,a)
  285. ag = AddrGenerator(addr_type)
  286. compare_test()
  287. else:
  288. if b != 'ext':
  289. kg_b = KeyGenerator(addr_type,b)
  290. b_desc = kg_b.desc
  291. compare_test()
  292. elif a and not fh:
  293. speed_test()
  294. elif a and dump:
  295. b_desc = 'dump'
  296. dump_test()
  297. else:
  298. die(2,'Illegal invocation')