Skip to content

Commit d2c954a

Browse files
committed
Implement GetKey for KeyMap
Create a `KeyMay` type to replace the current `BTreeMap` alias and implement `bitcoin::psbt::GetKey` for it. Close: #709
1 parent ce42c66 commit d2c954a

File tree

3 files changed

+342
-28
lines changed

3 files changed

+342
-28
lines changed

src/descriptor/key_map.rs

+322
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,322 @@
1+
// SPDX-License-Identifier: CC0-1.0
2+
3+
//! A map of public key to secret key.
4+
5+
use core::iter;
6+
7+
use bitcoin::psbt::{GetKey, GetKeyError, KeyRequest};
8+
use bitcoin::secp256k1::{Secp256k1, Signing};
9+
10+
#[cfg(doc)]
11+
use super::Descriptor;
12+
use super::{DescriptorKeyParseError, DescriptorPublicKey, DescriptorSecretKey, SinglePubKey};
13+
use crate::prelude::{btree_map, BTreeMap};
14+
15+
/// Alias type for a map of public key to secret key.
16+
///
17+
/// This map is returned whenever a descriptor that contains secrets is parsed using
18+
/// [`Descriptor::parse_descriptor`], since the descriptor will always only contain
19+
/// public keys. This map allows looking up the corresponding secret key given a
20+
/// public key from the descriptor.
21+
#[derive(Debug, Clone, Eq, PartialEq)]
22+
pub struct KeyMap {
23+
map: BTreeMap<DescriptorPublicKey, DescriptorSecretKey>,
24+
}
25+
26+
impl KeyMap {
27+
/// Creates a new empty `KeyMap`.
28+
#[inline]
29+
pub fn new() -> Self { Self { map: BTreeMap::new() } }
30+
31+
/// Inserts secret key into key map returning the associated public key.
32+
#[inline]
33+
pub fn insert<C: Signing>(
34+
&mut self,
35+
secp: &Secp256k1<C>,
36+
sk: DescriptorSecretKey,
37+
) -> Result<DescriptorPublicKey, DescriptorKeyParseError> {
38+
let pk = sk.to_public(secp)?;
39+
if !self.map.contains_key(&pk) {
40+
self.map.insert(pk.clone(), sk);
41+
}
42+
Ok(pk)
43+
}
44+
45+
/// Gets the secret key associated with `pk` if `pk` is in the map.
46+
#[inline]
47+
pub fn get(&self, pk: &DescriptorPublicKey) -> Option<&DescriptorSecretKey> { self.map.get(pk) }
48+
49+
/// Returns the number of items in this map.
50+
#[inline]
51+
pub fn len(&self) -> usize { self.map.len() }
52+
53+
/// Returns true if the map is empty.
54+
#[inline]
55+
pub fn is_empty(&self) -> bool { self.map.is_empty() }
56+
}
57+
58+
impl Default for KeyMap {
59+
fn default() -> Self { Self::new() }
60+
}
61+
62+
impl IntoIterator for KeyMap {
63+
type Item = (DescriptorPublicKey, DescriptorSecretKey);
64+
type IntoIter = btree_map::IntoIter<DescriptorPublicKey, DescriptorSecretKey>;
65+
66+
#[inline]
67+
fn into_iter(self) -> Self::IntoIter { self.map.into_iter() }
68+
}
69+
70+
impl iter::Extend<(DescriptorPublicKey, DescriptorSecretKey)> for KeyMap {
71+
#[inline]
72+
fn extend<T>(&mut self, iter: T)
73+
where
74+
T: IntoIterator<Item = (DescriptorPublicKey, DescriptorSecretKey)>,
75+
{
76+
self.map.extend(iter)
77+
}
78+
}
79+
80+
impl GetKey for KeyMap {
81+
type Error = GetKeyError;
82+
83+
fn get_key<C: Signing>(
84+
&self,
85+
key_request: KeyRequest,
86+
secp: &Secp256k1<C>,
87+
) -> Result<Option<bitcoin::PrivateKey>, Self::Error> {
88+
Ok(self.map.iter().find_map(|(k, v)| {
89+
match k {
90+
DescriptorPublicKey::Single(ref pk) => match key_request {
91+
KeyRequest::Pubkey(ref request) => match pk.key {
92+
SinglePubKey::FullKey(ref pk) => {
93+
if pk == request {
94+
match v {
95+
DescriptorSecretKey::Single(ref sk) => Some(sk.key),
96+
_ => unreachable!("Single maps to Single"),
97+
}
98+
} else {
99+
None
100+
}
101+
}
102+
SinglePubKey::XOnly(_) => None,
103+
},
104+
_ => None,
105+
},
106+
// Performance: Might be faster to check the origin and then if it matches return
107+
// the key directly instead of calling `get_key` on the xpriv.
108+
DescriptorPublicKey::XPub(ref xpub) => {
109+
let pk = xpub.xkey.public_key;
110+
match key_request {
111+
KeyRequest::Pubkey(ref request) => {
112+
if pk == request.inner {
113+
match v {
114+
DescriptorSecretKey::XPrv(xpriv) => {
115+
let xkey = xpriv.xkey;
116+
if let Ok(child) =
117+
xkey.derive_priv(secp, &xpriv.derivation_path)
118+
{
119+
Some(bitcoin::PrivateKey::new(
120+
child.private_key,
121+
xkey.network,
122+
))
123+
} else {
124+
None
125+
}
126+
}
127+
_ => unreachable!("XPrv maps to XPrv"),
128+
}
129+
} else {
130+
None
131+
}
132+
}
133+
KeyRequest::Bip32(..) => match v {
134+
DescriptorSecretKey::XPrv(xpriv) => {
135+
// This clone goes away in next release of rust-bitcoin.
136+
if let Ok(Some(sk)) = xpriv.xkey.get_key(key_request.clone(), secp)
137+
{
138+
Some(sk)
139+
} else {
140+
None
141+
}
142+
}
143+
_ => unreachable!("XPrv maps to XPrv"),
144+
},
145+
_ => unreachable!("rust-bitcoin v0.32"),
146+
}
147+
}
148+
DescriptorPublicKey::MultiXPub(ref xpub) => {
149+
let pk = xpub.xkey.public_key;
150+
match key_request {
151+
KeyRequest::Pubkey(ref request) => {
152+
if pk == request.inner {
153+
match v {
154+
DescriptorSecretKey::MultiXPrv(xpriv) => {
155+
Some(xpriv.xkey.to_priv())
156+
}
157+
_ => unreachable!("MultiXPrv maps to MultiXPrv"),
158+
}
159+
} else {
160+
None
161+
}
162+
}
163+
KeyRequest::Bip32(..) => match v {
164+
DescriptorSecretKey::MultiXPrv(xpriv) => {
165+
// These clones goes away in next release of rust-bitcoin.
166+
if let Ok(Some(sk)) = xpriv.xkey.get_key(key_request.clone(), secp)
167+
{
168+
Some(sk)
169+
} else {
170+
None
171+
}
172+
}
173+
_ => unreachable!("MultiXPrv maps to MultiXPrv"),
174+
},
175+
_ => unreachable!("rust-bitcoin v0.32"),
176+
}
177+
}
178+
}
179+
}))
180+
}
181+
}
182+
183+
#[cfg(test)]
184+
mod tests {
185+
// use bitcoin::NetworkKind;
186+
use bitcoin::bip32::{ChildNumber, IntoDerivationPath, Xpriv};
187+
188+
use super::*;
189+
use crate::Descriptor;
190+
191+
#[test]
192+
fn get_key_single_key() {
193+
let secp = Secp256k1::new();
194+
195+
let descriptor_sk_s =
196+
"[90b6a706/44'/0'/0'/0/0]cMk8gWmj1KpjdYnAWwsEDekodMYhbyYBhG8gMtCCxucJ98JzcNij";
197+
198+
let single = match descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap() {
199+
DescriptorSecretKey::Single(single) => single,
200+
_ => panic!("unexpected DescriptorSecretKey variant"),
201+
};
202+
203+
let want_sk = single.key;
204+
let descriptor_s = format!("wpkh({})", descriptor_sk_s);
205+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
206+
207+
let pk = want_sk.public_key(&secp);
208+
let request = KeyRequest::Pubkey(pk);
209+
let got_sk = keymap
210+
.get_key(request, &secp)
211+
.expect("get_key call errored")
212+
.expect("failed to find the key");
213+
assert_eq!(got_sk, want_sk)
214+
}
215+
216+
#[test]
217+
fn get_key_xpriv_single_key_xpriv() {
218+
let secp = Secp256k1::new();
219+
220+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
221+
222+
let xpriv = s.parse::<Xpriv>().unwrap();
223+
let xpriv_fingerprint = xpriv.fingerprint(&secp);
224+
225+
// Sanity check.
226+
{
227+
let descriptor_sk_s = format!("[{}]{}", xpriv_fingerprint, xpriv);
228+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
229+
let got = match descriptor_sk {
230+
DescriptorSecretKey::XPrv(x) => x.xkey,
231+
_ => panic!("unexpected DescriptorSecretKey variant"),
232+
};
233+
assert_eq!(got, xpriv);
234+
}
235+
236+
let want_sk = xpriv.to_priv();
237+
let descriptor_s = format!("wpkh([{}]{})", xpriv_fingerprint, xpriv);
238+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
239+
240+
let pk = want_sk.public_key(&secp);
241+
let request = KeyRequest::Pubkey(pk);
242+
let got_sk = keymap
243+
.get_key(request, &secp)
244+
.expect("get_key call errored")
245+
.expect("failed to find the key");
246+
assert_eq!(got_sk, want_sk)
247+
}
248+
249+
#[test]
250+
fn get_key_xpriv_child_depth_one() {
251+
let secp = Secp256k1::new();
252+
253+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
254+
let master = s.parse::<Xpriv>().unwrap();
255+
let master_fingerprint = master.fingerprint(&secp);
256+
257+
let child_number = ChildNumber::from_hardened_idx(44).unwrap();
258+
let child = master.derive_priv(&secp, &[child_number]).unwrap();
259+
260+
// Sanity check.
261+
{
262+
let descriptor_sk_s = format!("[{}/44']{}", master_fingerprint, child);
263+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
264+
let got = match descriptor_sk {
265+
DescriptorSecretKey::XPrv(ref x) => x.xkey,
266+
_ => panic!("unexpected DescriptorSecretKey variant"),
267+
};
268+
assert_eq!(got, child);
269+
}
270+
271+
let want_sk = child.to_priv();
272+
let descriptor_s = format!("wpkh({}/44')", s);
273+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
274+
275+
let pk = want_sk.public_key(&secp);
276+
let request = KeyRequest::Pubkey(pk);
277+
let got_sk = keymap
278+
.get_key(request, &secp)
279+
.expect("get_key call errored")
280+
.expect("failed to find the key");
281+
assert_eq!(got_sk, want_sk)
282+
}
283+
284+
#[test]
285+
fn get_key_xpriv_with_path() {
286+
let secp = Secp256k1::new();
287+
288+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
289+
let master = s.parse::<Xpriv>().unwrap();
290+
let master_fingerprint = master.fingerprint(&secp);
291+
292+
let first_external_child = "44'/0'/0'/0/0";
293+
let derivation_path = first_external_child.into_derivation_path().unwrap();
294+
295+
let child = master.derive_priv(&secp, &derivation_path).unwrap();
296+
297+
// Sanity check.
298+
{
299+
let descriptor_sk_s =
300+
format!("[{}/{}]{}", master_fingerprint, first_external_child, child);
301+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
302+
let got = match descriptor_sk {
303+
DescriptorSecretKey::XPrv(ref x) => x.xkey,
304+
_ => panic!("unexpected DescriptorSecretKey variant"),
305+
};
306+
assert_eq!(got, child);
307+
}
308+
309+
let want_sk = child.to_priv();
310+
let descriptor_s = format!("wpkh({}/44'/0'/0'/0/*)", s);
311+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
312+
313+
let key_source = (master_fingerprint, derivation_path);
314+
let request = KeyRequest::Bip32(key_source);
315+
let got_sk = keymap
316+
.get_key(request, &secp)
317+
.expect("get_key call errored")
318+
.expect("failed to find the key");
319+
320+
assert_eq!(got_sk, want_sk)
321+
}
322+
}

src/descriptor/mod.rs

+16-26
Original file line numberDiff line numberDiff line change
@@ -46,20 +46,14 @@ pub use self::tr::{TapTree, Tr};
4646

4747
pub mod checksum;
4848
mod key;
49+
mod key_map;
4950

5051
pub use self::key::{
5152
ConversionError, DefiniteDescriptorKey, DerivPaths, DescriptorKeyParseError,
5253
DescriptorMultiXKey, DescriptorPublicKey, DescriptorSecretKey, DescriptorXKey, InnerXKey,
5354
SinglePriv, SinglePub, SinglePubKey, Wildcard,
5455
};
55-
56-
/// Alias type for a map of public key to secret key
57-
///
58-
/// This map is returned whenever a descriptor that contains secrets is parsed using
59-
/// [`Descriptor::parse_descriptor`], since the descriptor will always only contain
60-
/// public keys. This map allows looking up the corresponding secret key given a
61-
/// public key from the descriptor.
62-
pub type KeyMap = BTreeMap<DescriptorPublicKey, DescriptorSecretKey>;
56+
pub use self::key_map::KeyMap;
6357

6458
/// Script descriptor
6559
#[derive(Clone, PartialEq, Eq, PartialOrd, Ord, Hash)]
@@ -708,28 +702,24 @@ impl Descriptor<DescriptorPublicKey> {
708702
key_map: &mut KeyMap,
709703
secp: &secp256k1::Secp256k1<C>,
710704
) -> Result<DescriptorPublicKey, Error> {
711-
let (public_key, secret_key) = match DescriptorSecretKey::from_str(s) {
712-
Ok(sk) => (
713-
sk.to_public(secp)
714-
.map_err(|e| Error::Unexpected(e.to_string()))?,
715-
Some(sk),
716-
),
717-
Err(_) => (
705+
match DescriptorSecretKey::from_str(s) {
706+
Ok(sk) => {
707+
let pk = key_map
708+
.insert(secp, sk)
709+
.map_err(|e| Error::Unexpected(e.to_string()))?;
710+
Ok(pk)
711+
}
712+
Err(_) => {
718713
// try to parse as a public key if parsing as a secret key failed
719-
s.parse()
720-
.map_err(|e| Error::Parse(ParseError::box_from_str(e)))?,
721-
None,
722-
),
723-
};
724-
725-
if let Some(secret_key) = secret_key {
726-
key_map.insert(public_key.clone(), secret_key);
714+
let pk = s
715+
.parse()
716+
.map_err(|e| Error::Parse(ParseError::box_from_str(e)))?;
717+
Ok(pk)
718+
}
727719
}
728-
729-
Ok(public_key)
730720
}
731721

732-
let mut keymap_pk = KeyMapWrapper(BTreeMap::new(), secp);
722+
let mut keymap_pk = KeyMapWrapper(KeyMap::new(), secp);
733723

734724
struct KeyMapWrapper<'a, C: secp256k1::Signing>(KeyMap, &'a secp256k1::Secp256k1<C>);
735725

0 commit comments

Comments
 (0)