2019-03-28 21:39:18 +00:00
|
|
|
import datetime
|
2020-05-13 03:23:33 +00:00
|
|
|
import os
|
2020-02-27 05:00:53 +00:00
|
|
|
import time
|
2022-12-07 11:14:59 +00:00
|
|
|
|
|
|
|
import maya
|
|
|
|
import pytest
|
2020-02-26 05:49:27 +00:00
|
|
|
from twisted.internet.task import Clock
|
|
|
|
|
2022-12-07 11:14:59 +00:00
|
|
|
from nucypher.characters.lawful import Bob, Enrico
|
2020-05-13 18:24:36 +00:00
|
|
|
from nucypher.config.constants import TEMPORARY_DOMAIN
|
2021-08-15 21:46:27 +00:00
|
|
|
from tests.constants import NUMBER_OF_URSULAS_IN_DEVELOPMENT_NETWORK
|
2020-05-13 03:21:15 +00:00
|
|
|
from tests.utils.middleware import MockRestMiddleware
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2018-10-29 11:40:34 +00:00
|
|
|
|
2022-12-01 11:14:47 +00:00
|
|
|
def test_bob_full_retrieve_flow(
|
2022-11-30 11:46:51 +00:00
|
|
|
ursulas, bob, alice, capsule_side_channel, treasure_map, enacted_policy
|
2022-12-07 11:14:59 +00:00
|
|
|
):
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2022-11-30 11:46:51 +00:00
|
|
|
for ursula in ursulas:
|
|
|
|
bob.remember_node(ursula)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2018-11-02 20:03:36 +00:00
|
|
|
# The side channel delivers all that Bob needs at this point:
|
|
|
|
# - A single MessageKit, containing a Capsule
|
|
|
|
# - A representation of the data source
|
2019-09-17 06:08:44 +00:00
|
|
|
the_message_kit = capsule_side_channel()
|
2022-11-30 11:46:51 +00:00
|
|
|
alices_verifying_key = alice.stamp.as_umbral_pubkey()
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2022-11-30 11:46:51 +00:00
|
|
|
delivered_cleartexts = bob.retrieve_and_decrypt(
|
2022-12-07 11:14:59 +00:00
|
|
|
[the_message_kit],
|
|
|
|
alice_verifying_key=alices_verifying_key,
|
2022-11-30 11:46:51 +00:00
|
|
|
encrypted_treasure_map=enacted_policy.treasure_map,
|
2022-12-07 11:14:59 +00:00
|
|
|
)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2019-02-13 20:14:25 +00:00
|
|
|
# We show that indeed this is the passage originally encrypted by the Enrico.
|
2022-12-07 11:14:59 +00:00
|
|
|
assert b"Welcome to flippering number 0." == delivered_cleartexts[0]
|
|
|
|
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2022-12-07 11:14:59 +00:00
|
|
|
def test_bob_retrieves(
|
2022-11-30 11:46:51 +00:00
|
|
|
alice, ursulas, certificates_tempdir, test_registry_source_manager
|
2022-12-07 11:14:59 +00:00
|
|
|
):
|
|
|
|
"""A test to show that Bob can retrieve data from Ursula"""
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
# Let's partition Ursulas in two parts
|
2022-11-30 11:46:51 +00:00
|
|
|
a_couple_of_ursulas = list(ursulas)[:2]
|
|
|
|
rest_of_ursulas = list(ursulas)[2:]
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
# Bob becomes
|
2022-11-30 11:46:51 +00:00
|
|
|
bob = Bob(domain=TEMPORARY_DOMAIN,
|
|
|
|
start_learning_now=True,
|
|
|
|
network_middleware=MockRestMiddleware(),
|
|
|
|
abort_on_learning_error=True,
|
|
|
|
known_nodes=a_couple_of_ursulas)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2020-08-18 18:59:15 +00:00
|
|
|
# Bob has only connected to - at most - 2 nodes.
|
|
|
|
assert sum(node.verified_node for node in bob.known_nodes) <= 2
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
# Alice creates a policy granting access to Bob
|
2018-11-02 20:03:36 +00:00
|
|
|
# Just for fun, let's assume she distributes KFrags among Ursulas unknown to Bob
|
2021-08-15 21:46:27 +00:00
|
|
|
shares = NUMBER_OF_URSULAS_IN_DEVELOPMENT_NETWORK - 2
|
2018-10-29 00:51:29 +00:00
|
|
|
label = b'label://' + os.urandom(32)
|
|
|
|
contract_end_datetime = maya.now() + datetime.timedelta(days=5)
|
2022-11-30 11:46:51 +00:00
|
|
|
policy = alice.grant(
|
2022-12-07 11:14:59 +00:00
|
|
|
bob=bob,
|
|
|
|
label=label,
|
|
|
|
threshold=3,
|
|
|
|
shares=shares,
|
|
|
|
expiration=contract_end_datetime,
|
|
|
|
ursulas=set(rest_of_ursulas),
|
|
|
|
)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
assert label == policy.label
|
|
|
|
|
2019-02-13 20:14:25 +00:00
|
|
|
# Enrico becomes
|
2023-04-08 18:47:18 +00:00
|
|
|
enrico = Enrico(encrypting_key=policy.public_key)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
plaintext = b"What's your approach? Mississippis or what?"
|
2023-04-08 18:47:18 +00:00
|
|
|
message_kit = enrico.encrypt_for_pre(plaintext)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2022-11-30 11:46:51 +00:00
|
|
|
alices_verifying_key = alice.stamp.as_umbral_pubkey()
|
2018-10-29 00:51:29 +00:00
|
|
|
|
2018-11-02 20:03:36 +00:00
|
|
|
# Bob takes the message_kit and retrieves the message within
|
2021-09-03 05:35:31 +00:00
|
|
|
delivered_cleartexts = bob.retrieve_and_decrypt([message_kit],
|
|
|
|
alice_verifying_key=alices_verifying_key,
|
|
|
|
encrypted_treasure_map=policy.treasure_map)
|
2018-10-29 00:51:29 +00:00
|
|
|
|
|
|
|
assert plaintext == delivered_cleartexts[0]
|
2018-11-30 20:18:13 +00:00
|
|
|
|
2021-09-03 05:35:31 +00:00
|
|
|
cleartexts_delivered_a_second_time = bob.retrieve_and_decrypt([message_kit],
|
|
|
|
alice_verifying_key=alices_verifying_key,
|
|
|
|
encrypted_treasure_map=policy.treasure_map)
|
2019-03-28 21:39:18 +00:00
|
|
|
|
|
|
|
# Indeed, they're the same cleartexts.
|
|
|
|
assert delivered_cleartexts == cleartexts_delivered_a_second_time
|
2019-03-04 22:10:12 +00:00
|
|
|
|
2019-03-28 21:39:18 +00:00
|
|
|
# Let's try retrieve again, but Alice revoked the policy.
|
2022-11-30 11:46:51 +00:00
|
|
|
receipt, failed_revocations = alice.revoke(policy)
|
2019-03-04 22:54:27 +00:00
|
|
|
assert len(failed_revocations) == 0
|
|
|
|
|
2021-03-30 04:46:54 +00:00
|
|
|
# One thing to note here is that Bob *can* still retrieve with the cached CFrags,
|
|
|
|
# even though this Policy has been revoked. #892
|
2021-09-03 05:35:31 +00:00
|
|
|
_cleartexts = bob.retrieve_and_decrypt([message_kit],
|
|
|
|
alice_verifying_key=alices_verifying_key,
|
|
|
|
encrypted_treasure_map=policy.treasure_map)
|
2019-03-28 21:42:24 +00:00
|
|
|
assert _cleartexts == delivered_cleartexts # TODO: 892
|
|
|
|
|
2020-07-20 20:36:33 +00:00
|
|
|
bob.disenchant()
|
|
|
|
|
2019-02-10 18:30:04 +00:00
|
|
|
|
2019-10-03 08:11:26 +00:00
|
|
|
def test_bob_retrieves_with_treasure_map(
|
2022-11-30 11:46:51 +00:00
|
|
|
bob, ursulas, enacted_policy, capsule_side_channel
|
2022-12-07 11:14:59 +00:00
|
|
|
):
|
2019-11-06 21:14:25 +00:00
|
|
|
enrico = capsule_side_channel.enrico
|
|
|
|
message_kit = capsule_side_channel()
|
2022-11-30 11:46:51 +00:00
|
|
|
treasure_map = enacted_policy.treasure_map
|
|
|
|
alice_verifying_key = enacted_policy.publisher_verifying_key
|
2019-10-03 08:11:26 +00:00
|
|
|
|
|
|
|
# Teach Bob about the network
|
2022-11-30 11:46:51 +00:00
|
|
|
bob.remember_node(list(ursulas)[0])
|
|
|
|
bob.learn_from_teacher_node(eager=True)
|
2019-10-03 08:11:26 +00:00
|
|
|
|
2019-10-03 21:59:23 +00:00
|
|
|
# Deserialized treasure map
|
2022-11-30 11:46:51 +00:00
|
|
|
text1 = bob.retrieve_and_decrypt(
|
2021-09-08 15:21:03 +00:00
|
|
|
[message_kit],
|
2019-11-06 21:14:25 +00:00
|
|
|
alice_verifying_key=alice_verifying_key,
|
2021-08-17 22:05:28 +00:00
|
|
|
encrypted_treasure_map=treasure_map)
|
2019-10-03 21:59:23 +00:00
|
|
|
|
2022-11-30 11:46:51 +00:00
|
|
|
assert text1 == [b'Welcome to flippering number 1.']
|
2020-02-26 05:49:27 +00:00
|
|
|
|
|
|
|
|
2021-10-29 21:37:37 +00:00
|
|
|
# TODO: #2813 Without kfrag and arrangement storage by nodes,
|
2021-10-29 12:18:53 +00:00
|
|
|
@pytest.mark.skip()
|
2022-11-30 11:46:51 +00:00
|
|
|
def test_bob_retrieves_too_late(bob, ursulas, enacted_policy, capsule_side_channel):
|
2020-02-26 05:49:27 +00:00
|
|
|
clock = Clock()
|
2020-02-27 05:00:53 +00:00
|
|
|
clock.advance(time.time())
|
2020-10-19 22:56:14 +00:00
|
|
|
clock.advance(86400 * 8) # 1 week # TODO: this is supposed to be seven days, not eight
|
2020-02-26 05:49:27 +00:00
|
|
|
|
|
|
|
message_kit = capsule_side_channel()
|
2022-11-30 11:46:51 +00:00
|
|
|
treasure_map = enacted_policy.treasure_map
|
|
|
|
alice_verifying_key = enacted_policy.publisher_verifying_key
|
2020-02-26 05:49:27 +00:00
|
|
|
|
2021-03-30 04:46:54 +00:00
|
|
|
# with pytest.raises(Ursula.NotEnoughUrsulas):
|
2022-11-30 11:46:51 +00:00
|
|
|
bob.retrieve_and_decrypt(
|
2021-09-08 15:21:03 +00:00
|
|
|
[message_kit],
|
2021-03-30 04:46:54 +00:00
|
|
|
alice_verifying_key=alice_verifying_key,
|
2021-10-29 12:18:53 +00:00
|
|
|
encrypted_treasure_map=treasure_map
|
|
|
|
)
|