Skip to content

Commit 4a3bd7e

Browse files
committed
Implement GetKey for KeyMap
Create a `KeyMay` type to replace the current `BTreeMap` alias and implement `bitcoin::psbt::GetKey` for it. Close: rust-bitcoin#709
1 parent 3a85952 commit 4a3bd7e

File tree

3 files changed

+293
-10
lines changed

3 files changed

+293
-10
lines changed

src/descriptor/key_map.rs

+289
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,289 @@
1+
// SPDX-License-Identifier: CC0-1.0
2+
3+
//! A map of public key to secret key.
4+
5+
use bitcoin::psbt::{GetKey, GetKeyError, KeyRequest};
6+
use bitcoin::secp256k1::{Secp256k1, Signing};
7+
8+
use super::{DescriptorPublicKey, DescriptorSecretKey, SinglePubKey};
9+
use crate::prelude::BTreeMap;
10+
11+
/// Alias type for a map of public key to secret key
12+
///
13+
/// This map is returned whenever a descriptor that contains secrets is parsed using
14+
/// [`Descriptor::parse_descriptor`], since the descriptor will always only contain
15+
/// public keys. This map allows looking up the corresponding secret key given a
16+
/// public key from the descriptor.
17+
#[derive(Debug, Eq, PartialEq, Clone)]
18+
pub struct KeyMap {
19+
/// The map.
20+
pub map: BTreeMap<DescriptorPublicKey, DescriptorSecretKey>,
21+
}
22+
23+
impl KeyMap {
24+
/// Creates a new empty `KeyMap`.
25+
pub fn new() -> Self { Self { map: BTreeMap::new() } }
26+
27+
/// Inserts `key` and `value` into the map.
28+
///
29+
/// See [`BTreeMap::insert`] for more information.
30+
pub fn insert(
31+
&mut self,
32+
key: DescriptorPublicKey,
33+
value: DescriptorSecretKey,
34+
) -> Option<DescriptorSecretKey> {
35+
self.map.insert(key, value)
36+
}
37+
38+
/// Gets `key` if it exists.
39+
///
40+
/// See [`BTreeMap::insert`] for more information.
41+
pub fn get(&self, key: &DescriptorPublicKey) -> Option<&DescriptorSecretKey> {
42+
self.map.get(key)
43+
}
44+
45+
/// Returns the number of items in this map.
46+
///
47+
/// See [`BTreeMap::insert`] for more information.
48+
pub fn len(&self) -> usize { self.map.len() }
49+
}
50+
51+
impl GetKey for KeyMap {
52+
type Error = GetKeyError;
53+
54+
fn get_key<C: Signing>(
55+
&self,
56+
key_request: KeyRequest,
57+
secp: &Secp256k1<C>,
58+
) -> Result<Option<bitcoin::PrivateKey>, Self::Error> {
59+
Ok(self.map.iter().find_map(|(k, v)| {
60+
match k {
61+
DescriptorPublicKey::Single(ref pk) => match key_request {
62+
KeyRequest::Pubkey(ref request) => match pk.key {
63+
SinglePubKey::FullKey(ref pk) => {
64+
if pk == request {
65+
match v {
66+
DescriptorSecretKey::Single(ref sk) => Some(sk.key),
67+
_ => unreachable!("Single maps to Single"),
68+
}
69+
} else {
70+
None
71+
}
72+
}
73+
SinglePubKey::XOnly(_) => None,
74+
},
75+
_ => None,
76+
},
77+
// Performance: Might be faster to check the origin and then if it matches return
78+
// the key directly instead of calling `get_key` on the xpriv.
79+
DescriptorPublicKey::XPub(ref xpub) => {
80+
let pk = xpub.xkey.public_key;
81+
match key_request {
82+
KeyRequest::Pubkey(ref request) => {
83+
if pk == request.inner {
84+
match v {
85+
DescriptorSecretKey::XPrv(xpriv) => {
86+
let xkey = xpriv.xkey;
87+
if let Ok(child) = xkey.derive_priv(secp, &xpriv.derivation_path) {
88+
Some(bitcoin::PrivateKey::new(
89+
child.private_key,
90+
xkey.network,
91+
))
92+
} else {
93+
None
94+
}
95+
}
96+
_ => unreachable!("XPrv maps to XPrv"),
97+
}
98+
} else {
99+
None
100+
}
101+
}
102+
KeyRequest::Bip32(..) => match v {
103+
DescriptorSecretKey::XPrv(xpriv) => {
104+
// This clone goes away in next release of rust-bitcoin.
105+
if let Ok(Some(sk)) = xpriv.xkey.get_key(key_request.clone(), secp) {
106+
Some(sk)
107+
} else {
108+
None
109+
}
110+
}
111+
_ => unreachable!("XPrv maps to XPrv"),
112+
},
113+
_ => unreachable!("rust-bitcoin v0.32"),
114+
}
115+
}
116+
DescriptorPublicKey::MultiXPub(ref xpub) => {
117+
let pk = xpub.xkey.public_key;
118+
match key_request {
119+
KeyRequest::Pubkey(ref request) => {
120+
if pk == request.inner {
121+
match v {
122+
DescriptorSecretKey::MultiXPrv(xpriv) => {
123+
Some(xpriv.xkey.to_priv())
124+
}
125+
_ => unreachable!("MultiXPrv maps to MultiXPrv"),
126+
}
127+
} else {
128+
None
129+
}
130+
}
131+
KeyRequest::Bip32(..) => match v {
132+
DescriptorSecretKey::MultiXPrv(xpriv) => {
133+
// These clones goes away in next release of rust-bitcoin.
134+
if let Ok(Some(sk)) = xpriv.xkey.get_key(key_request.clone(), secp) {
135+
Some(sk)
136+
} else {
137+
None
138+
}
139+
}
140+
_ => unreachable!("MultiXPrv maps to MultiXPrv"),
141+
},
142+
_ => unreachable!("rust-bitcoin v0.32"),
143+
}
144+
}
145+
}
146+
}))
147+
}
148+
}
149+
150+
#[cfg(test)]
151+
mod tests {
152+
// use bitcoin::NetworkKind;
153+
use bitcoin::bip32::{ChildNumber, IntoDerivationPath, Xpriv};
154+
155+
use super::*;
156+
use crate::Descriptor;
157+
158+
#[test]
159+
fn get_key_single_key() {
160+
let secp = Secp256k1::new();
161+
162+
let descriptor_sk_s =
163+
"[90b6a706/44'/0'/0'/0/0]cMk8gWmj1KpjdYnAWwsEDekodMYhbyYBhG8gMtCCxucJ98JzcNij";
164+
165+
let single = match descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap() {
166+
DescriptorSecretKey::Single(single) => single,
167+
_ => panic!("unexpected DescriptorSecretKey variant"),
168+
};
169+
170+
let want_sk = single.key;
171+
let descriptor_s = format!("wpkh({})", descriptor_sk_s);
172+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
173+
174+
let pk = want_sk.public_key(&secp);
175+
let request = KeyRequest::Pubkey(pk);
176+
let got_sk = keymap
177+
.get_key(request, &secp)
178+
.expect("get_key call errored")
179+
.expect("failed to find the key");
180+
assert_eq!(got_sk, want_sk)
181+
}
182+
183+
#[test]
184+
fn get_key_xpriv_single_key_xpriv() {
185+
let secp = Secp256k1::new();
186+
187+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
188+
189+
let xpriv = s.parse::<Xpriv>().unwrap();
190+
let xpriv_fingerprint = xpriv.fingerprint(&secp);
191+
192+
// Sanity check.
193+
{
194+
let descriptor_sk_s = format!("[{}]{}", xpriv_fingerprint, xpriv);
195+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
196+
let got = match descriptor_sk {
197+
DescriptorSecretKey::XPrv(x) => x.xkey,
198+
_ => panic!("unexpected DescriptorSecretKey variant"),
199+
};
200+
assert_eq!(got, xpriv);
201+
}
202+
203+
let want_sk = xpriv.to_priv();
204+
let descriptor_s = format!("wpkh([{}]{})", xpriv_fingerprint, xpriv);
205+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
206+
207+
let pk = want_sk.public_key(&secp);
208+
let request = KeyRequest::Pubkey(pk);
209+
let got_sk = keymap
210+
.get_key(request, &secp)
211+
.expect("get_key call errored")
212+
.expect("failed to find the key");
213+
assert_eq!(got_sk, want_sk)
214+
}
215+
216+
#[test]
217+
fn get_key_xpriv_child_depth_one() {
218+
let secp = Secp256k1::new();
219+
220+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
221+
let master = s.parse::<Xpriv>().unwrap();
222+
let master_fingerprint = master.fingerprint(&secp);
223+
224+
let child_number = ChildNumber::from_hardened_idx(44).unwrap();
225+
let child = master.derive_priv(&secp, &[child_number]).unwrap();
226+
227+
// Sanity check.
228+
{
229+
let descriptor_sk_s = format!("[{}/44']{}", master_fingerprint, child);
230+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
231+
let got = match descriptor_sk {
232+
DescriptorSecretKey::XPrv(ref x) => x.xkey,
233+
_ => panic!("unexpected DescriptorSecretKey variant"),
234+
};
235+
assert_eq!(got, child);
236+
}
237+
238+
let want_sk = child.to_priv();
239+
let descriptor_s = format!("wpkh({}/44')", s);
240+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
241+
242+
let pk = want_sk.public_key(&secp);
243+
let request = KeyRequest::Pubkey(pk);
244+
let got_sk = keymap
245+
.get_key(request, &secp)
246+
.expect("get_key call errored")
247+
.expect("failed to find the key");
248+
assert_eq!(got_sk, want_sk)
249+
}
250+
251+
#[test]
252+
fn get_key_xpriv_with_path() {
253+
let secp = Secp256k1::new();
254+
255+
let s = "xprv9s21ZrQH143K3QTDL4LXw2F7HEK3wJUD2nW2nRk4stbPy6cq3jPPqjiChkVvvNKmPGJxWUtg6LnF5kejMRNNU3TGtRBeJgk33yuGBxrMPHi";
256+
let master = s.parse::<Xpriv>().unwrap();
257+
let master_fingerprint = master.fingerprint(&secp);
258+
259+
let first_external_child = "44'/0'/0'/0/0";
260+
let derivation_path = first_external_child.into_derivation_path().unwrap();
261+
262+
let child = master.derive_priv(&secp, &derivation_path).unwrap();
263+
264+
// Sanity check.
265+
{
266+
let descriptor_sk_s =
267+
format!("[{}/{}]{}", master_fingerprint, first_external_child, child);
268+
let descriptor_sk = descriptor_sk_s.parse::<DescriptorSecretKey>().unwrap();
269+
let got = match descriptor_sk {
270+
DescriptorSecretKey::XPrv(ref x) => x.xkey,
271+
_ => panic!("unexpected DescriptorSecretKey variant"),
272+
};
273+
assert_eq!(got, child);
274+
}
275+
276+
let want_sk = child.to_priv();
277+
let descriptor_s = format!("wpkh({}/44'/0'/0'/0/*)", s);
278+
let (_, keymap) = Descriptor::parse_descriptor(&secp, &descriptor_s).unwrap();
279+
280+
let key_source = (master_fingerprint, derivation_path);
281+
let request = KeyRequest::Bip32(key_source);
282+
let got_sk = keymap
283+
.get_key(request, &secp)
284+
.expect("get_key call errored")
285+
.expect("failed to find the key");
286+
287+
assert_eq!(got_sk, want_sk)
288+
}
289+
}

src/descriptor/mod.rs

+3-9
Original file line numberDiff line numberDiff line change
@@ -46,20 +46,14 @@ pub use self::tr::{TapTree, Tr};
4646

4747
pub mod checksum;
4848
mod key;
49+
mod key_map;
4950

5051
pub use self::key::{
5152
ConversionError, DefiniteDescriptorKey, DerivPaths, DescriptorKeyParseError,
5253
DescriptorMultiXKey, DescriptorPublicKey, DescriptorSecretKey, DescriptorXKey, InnerXKey,
5354
SinglePriv, SinglePub, SinglePubKey, Wildcard,
5455
};
55-
56-
/// Alias type for a map of public key to secret key
57-
///
58-
/// This map is returned whenever a descriptor that contains secrets is parsed using
59-
/// [`Descriptor::parse_descriptor`], since the descriptor will always only contain
60-
/// public keys. This map allows looking up the corresponding secret key given a
61-
/// public key from the descriptor.
62-
pub type KeyMap = BTreeMap<DescriptorPublicKey, DescriptorSecretKey>;
56+
pub use self::key_map::KeyMap;
6357

6458
/// Script descriptor
6559
#[derive(Clone, PartialEq, Eq, PartialOrd, Ord, Hash)]
@@ -728,7 +722,7 @@ impl Descriptor<DescriptorPublicKey> {
728722
Ok(public_key)
729723
}
730724

731-
let mut keymap_pk = KeyMapWrapper(BTreeMap::new(), secp);
725+
let mut keymap_pk = KeyMapWrapper(KeyMap::new(), secp);
732726

733727
struct KeyMapWrapper<'a, C: secp256k1::Signing>(KeyMap, &'a secp256k1::Secp256k1<C>);
734728

src/plan.rs

+1-1
Original file line numberDiff line numberDiff line change
@@ -661,7 +661,7 @@ pub trait IntoAssets {
661661
}
662662

663663
impl IntoAssets for KeyMap {
664-
fn into_assets(self) -> Assets { Assets::from_iter(self.into_iter().map(|(k, _)| k)) }
664+
fn into_assets(self) -> Assets { Assets::from_iter(self.map.into_iter().map(|(k, _)| k)) }
665665
}
666666

667667
impl IntoAssets for DescriptorPublicKey {

0 commit comments

Comments
 (0)