follower.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677
  1. package main
  2. //#cgo CFLAGS: -fopenmp -O2
  3. //#cgo LDFLAGS: -lcrypto -lm -fopenmp
  4. //#include "../c/dpf.h"
  5. //#include "../c/okv.h"
  6. //#include "../c/dpf.c"
  7. //#include "../c/okv.c"
  8. import "C"
  9. //ssssssssssssss
  10. import (
  11. "2PPS/lib"
  12. "crypto/rand"
  13. "crypto/rsa"
  14. "crypto/sha256"
  15. "crypto/tls"
  16. "crypto/x509"
  17. "crypto/x509/pkix"
  18. "encoding/pem"
  19. "fmt"
  20. "math/big"
  21. "net"
  22. "strconv"
  23. "sync"
  24. "time"
  25. "unsafe"
  26. "golang.org/x/crypto/nacl/box"
  27. )
  28. const leader string = "127.0.0.1:4442"
  29. //needs to be changed at leader/follower/client at the same time
  30. const neededSubscriptions = 1
  31. //this stores all neccessary information for each client
  32. type clientKeys struct {
  33. SharedSecret [32]byte
  34. PirQuery [][]byte
  35. }
  36. //uses clients publicKey as key
  37. var clientData = make(map[[32]byte]clientKeys)
  38. var topicList []byte
  39. var topicAmount int
  40. var followerPrivateKey *[32]byte
  41. var followerPublicKey *[32]byte
  42. var leaderPublicKey *[32]byte
  43. var numThreads int = 12
  44. //has to be dividable by 32
  45. var dataLength int = 32
  46. var dbWriteSize int = 2
  47. var round int = 1
  48. var startTime time.Time
  49. var maxTimePerRound time.Duration = 5 * time.Second
  50. func main() {
  51. generatedPublicKey, generatedPrivateKey, err := box.GenerateKey(rand.Reader)
  52. if err != nil {
  53. panic(err)
  54. }
  55. followerPrivateKey = generatedPrivateKey
  56. followerPublicKey = generatedPublicKey
  57. /*
  58. if len(os.Args) != 4 {
  59. fmt.Println("try again: numThreads, dataLength, numRows")
  60. return
  61. }
  62. numThreads, _ = strconv.Atoi(os.Args[2])
  63. dataLength, _ = strconv.Atoi(os.Args[3])
  64. numRows, _ = strconv.Atoi(os.Args[4])
  65. */
  66. C.initializeServer(C.int(numThreads))
  67. followerConnectionPrivateKey, err := rsa.GenerateKey(rand.Reader, 2048)
  68. if err != nil {
  69. panic(err)
  70. }
  71. // Generate a pem block with the private key
  72. keyPem := pem.EncodeToMemory(&pem.Block{
  73. Type: "RSA PRIVATE KEY",
  74. Bytes: x509.MarshalPKCS1PrivateKey(followerConnectionPrivateKey),
  75. })
  76. tml := x509.Certificate{
  77. // you can add any attr that you need
  78. NotBefore: time.Now(),
  79. NotAfter: time.Now().AddDate(5, 0, 0),
  80. // you have to generate a different serial number each execution
  81. SerialNumber: big.NewInt(123123),
  82. Subject: pkix.Name{
  83. CommonName: "New Name",
  84. Organization: []string{"New Org."},
  85. },
  86. BasicConstraintsValid: true,
  87. }
  88. cert, err := x509.CreateCertificate(rand.Reader, &tml, &tml, &followerConnectionPrivateKey.PublicKey, followerConnectionPrivateKey)
  89. if err != nil {
  90. panic(err)
  91. }
  92. // Generate a pem block with the certificate
  93. certPem := pem.EncodeToMemory(&pem.Block{
  94. Type: "CERTIFICATE",
  95. Bytes: cert,
  96. })
  97. tlsCert, err := tls.X509KeyPair(certPem, keyPem)
  98. if err != nil {
  99. panic(err)
  100. }
  101. config := &tls.Config{Certificates: []tls.Certificate{tlsCert}}
  102. fmt.Println("start leader")
  103. //listens for leader
  104. lnLeader, err := tls.Listen("tcp", ":4443", config)
  105. if err != nil {
  106. panic(err)
  107. }
  108. defer lnLeader.Close()
  109. leaderConnection, err := lnLeader.Accept()
  110. if err != nil {
  111. panic(err)
  112. }
  113. //send publicKey to leader
  114. _, err = leaderConnection.Write(followerPublicKey[:])
  115. if err != nil {
  116. panic(err)
  117. }
  118. //receives leader PublicKey
  119. var tmpLeaderPubKey [32]byte
  120. _, err = leaderConnection.Read(tmpLeaderPubKey[:])
  121. if err != nil {
  122. panic(err)
  123. }
  124. leaderPublicKey = &tmpLeaderPubKey
  125. //setup ends here
  126. //locks access to DB
  127. var m sync.Mutex
  128. wg := &sync.WaitGroup{}
  129. for {
  130. //phase1
  131. fmt.Println("phase1")
  132. //create write db for this round
  133. for i := 0; i < dbWriteSize; i++ {
  134. C.createDb(C.int(0), C.int(dataLength))
  135. }
  136. //receives the virtualAddresses
  137. virtualAddresses := make([]int, dbWriteSize+1)
  138. for i := 0; i <= dbWriteSize; i++ {
  139. virtualAddress := make([]byte, 4)
  140. _, err = leaderConnection.Read(virtualAddress)
  141. if err != nil {
  142. panic(err)
  143. }
  144. virtualAddresses[i] = byteToInt(virtualAddress)
  145. }
  146. for i := 0; i < numThreads; i++ {
  147. wg.Add(1)
  148. leaderConnection, err := lnLeader.Accept()
  149. if err != nil {
  150. panic(err)
  151. }
  152. leaderConnection.SetDeadline(time.Time{})
  153. startTime = time.Now()
  154. go phase1(i, leaderConnection, m, wg)
  155. }
  156. wg.Wait()
  157. //phase2
  158. fmt.Println("phase2")
  159. leaderConnection, err := lnLeader.Accept()
  160. if err != nil {
  161. panic(err)
  162. }
  163. leaderConnection.SetDeadline(time.Time{})
  164. phase2(leaderConnection)
  165. //phase3
  166. fmt.Println("phase3")
  167. if round == 1 {
  168. //addTestTweets()
  169. }
  170. //no tweets -> continue to phase 1 and mb get tweets
  171. topicList, topicAmount = lib.GetTopicList(0)
  172. if len(topicList) == 0 {
  173. continue
  174. }
  175. for i := 0; i < numThreads; i++ {
  176. wg.Add(1)
  177. leaderConnection, err := lnLeader.Accept()
  178. if err != nil {
  179. panic(err)
  180. }
  181. leaderConnection.SetDeadline(time.Time{})
  182. startTime = time.Now()
  183. go phase3(leaderConnection, wg)
  184. }
  185. wg.Wait()
  186. lib.CleanUpdbR(round)
  187. round++
  188. }
  189. }
  190. func phase1(id int, leaderWorkerConnection net.Conn, m sync.Mutex, wg *sync.WaitGroup) {
  191. gotClient := make([]byte, 1)
  192. for {
  193. _, err := leaderWorkerConnection.Read(gotClient)
  194. if err != nil {
  195. panic(err)
  196. }
  197. //this worker is done
  198. if gotClient[0] == 0 {
  199. wg.Done()
  200. return
  201. }
  202. //setup the worker-specific db
  203. dbSize := int(C.dbSize)
  204. db := make([][]byte, dbSize)
  205. for i := 0; i < dbSize; i++ {
  206. db[i] = make([]byte, int(C.db[i].dataSize))
  207. }
  208. //gets clients publicKey
  209. var clientPublicKey *[32]byte
  210. var tmpClientPublicKey [32]byte
  211. _, err = leaderWorkerConnection.Read(tmpClientPublicKey[:])
  212. if err != nil {
  213. panic(err)
  214. }
  215. clientPublicKey = &tmpClientPublicKey
  216. //auditing starts here
  217. //todo!
  218. //gets dpfQuery from leader
  219. dpfLengthBytes := make([]byte, 4)
  220. _, err = leaderWorkerConnection.Read(dpfLengthBytes)
  221. if err != nil {
  222. panic(err)
  223. }
  224. dpfLength := byteToInt(dpfLengthBytes)
  225. dpfQueryBEncrypted := make([]byte, dpfLength)
  226. _, err = leaderWorkerConnection.Read(dpfQueryBEncrypted)
  227. if err != nil {
  228. panic(err)
  229. }
  230. //decrypt dpfQueryB for sorting into db
  231. var decryptNonce [24]byte
  232. copy(decryptNonce[:], dpfQueryBEncrypted[:24])
  233. dpfQueryB, ok := box.Open(nil, dpfQueryBEncrypted[24:], &decryptNonce, clientPublicKey, followerPrivateKey)
  234. if !ok {
  235. panic("dpfQueryB decryption not ok")
  236. }
  237. //run dpf, xor into local db
  238. for i := 0; i < dbSize; i++ {
  239. ds := int(C.db[i].dataSize)
  240. dataShare := make([]byte, ds)
  241. pos := C.getUint128_t(C.int(virtualAddresses[i]))
  242. C.evalDPF(C.ctx[id], (*C.uchar)(&dpfQueryB[0]), pos, C.int(ds), (*C.uchar)(&dataShare[0]))
  243. for j := 0; j < ds; j++ {
  244. db[i][j] = db[i][j] ^ dataShare[j]
  245. }
  246. }
  247. //xor the worker's DB into the main DB
  248. for i := 0; i < dbSize; i++ {
  249. m.Lock()
  250. C.xorIn(C.int(i), (*C.uchar)(&db[i][0]))
  251. m.Unlock()
  252. }
  253. }
  254. }
  255. func phase2(leaderWorkerConnection net.Conn) {
  256. //gets current seed
  257. seedFollower := make([]byte, 16)
  258. C.readSeed((*C.uchar)(&seedFollower[0]))
  259. //get data
  260. dbSize := int(C.dbSize)
  261. tmpdbFollower := make([][]byte, dbSize)
  262. for i := range tmpdbFollower {
  263. tmpdbFollower[i] = make([]byte, dataLength)
  264. }
  265. for i := 0; i < dbSize; i++ {
  266. C.readData(C.int(i), (*C.uchar)(&tmpdbFollower[i][0]))
  267. }
  268. //receive seed from leader
  269. seedLeader := make([]byte, 16)
  270. _, err := leaderWorkerConnection.Read(seedLeader)
  271. if err != nil {
  272. panic(err)
  273. }
  274. //receive data from leader
  275. tmpdbLeader := make([][]byte, dbSize)
  276. for i := range tmpdbLeader {
  277. tmpdbLeader[i] = make([]byte, dataLength)
  278. }
  279. for i := 0; i < dbSize; i++ {
  280. _, err = leaderWorkerConnection.Read(tmpdbLeader[i])
  281. if err != nil {
  282. panic(err)
  283. }
  284. }
  285. //writes seed to leader
  286. _, err = leaderWorkerConnection.Write(seedFollower)
  287. if err != nil {
  288. panic(err)
  289. }
  290. //write data to leader
  291. for i := 0; i < dbSize; i++ {
  292. _, err = leaderWorkerConnection.Write(tmpdbFollower[i])
  293. if err != nil {
  294. panic(err)
  295. }
  296. }
  297. //put together the db
  298. tmpdb := make([][]byte, dbSize)
  299. for i := range tmpdb {
  300. tmpdb[i] = make([]byte, dataLength)
  301. }
  302. //get own Ciphers
  303. ciphersFollowers := make([]*C.uchar, dbSize)
  304. for i := 0; i < dbSize; i++ {
  305. ciphersFollowers[i] = (*C.uchar)(C.malloc(16))
  306. }
  307. for i := 0; i < dbSize; i++ {
  308. C.getCipher(0, C.int(i), ciphersFollowers[i])
  309. }
  310. //receive ciphers from leader
  311. ciphersLeader := make([]byte, dbSize*16)
  312. for i := 0; i < dbSize; i++ {
  313. _, err = leaderWorkerConnection.Read(ciphersLeader[i*16:])
  314. if err != nil {
  315. panic(err)
  316. }
  317. }
  318. //send own Ciphers to leader
  319. for i := 0; i < dbSize; i++ {
  320. _, err = leaderWorkerConnection.Write(C.GoBytes(unsafe.Pointer(ciphersFollowers[i]), 16))
  321. if err != nil {
  322. panic(err)
  323. }
  324. }
  325. //put in ciphers from leader
  326. for i := 0; i < dbSize; i++ {
  327. C.putCipher(0, C.int(i), (*C.uchar)(&ciphersLeader[i*16]))
  328. }
  329. for i := 0; i < dbSize; i++ {
  330. C.decryptRow(C.int(i), (*C.uchar)(&tmpdb[i][0]), (*C.uchar)(&tmpdbLeader[i][0]), (*C.uchar)(&tmpdbFollower[i][0]), (*C.uchar)(&seedLeader[0]), (*C.uchar)(&seedFollower[0]))
  331. }
  332. var tweets []lib.Tweet
  333. for i := 0; i < dbSize; i++ {
  334. //discard cover message
  335. if tmpdb[i][0] == 0 {
  336. continue
  337. } else {
  338. //reconstruct tweet
  339. var position int = 0
  340. var topics []string
  341. var topic string
  342. var text string
  343. for _, letter := range tmpdb[i] {
  344. if string(letter) == ";" {
  345. if topic != "" {
  346. topics = append(topics, topic)
  347. topic = ""
  348. }
  349. position++
  350. } else {
  351. if position == 0 {
  352. if string(letter) == "," {
  353. topics = append(topics, topic)
  354. topic = ""
  355. } else {
  356. topic = topic + string(letter)
  357. }
  358. } else if position == 1 {
  359. text = text + string(letter)
  360. }
  361. }
  362. }
  363. tweet := lib.Tweet{"", -1, topics, text, round}
  364. tweets = append(tweets, tweet)
  365. }
  366. }
  367. //fmt.Println("tweets recovered: ", tweets)
  368. //sort into read db
  369. lib.NewEntries(tweets, 0)
  370. //reset write db after the tweets were moved to read db
  371. C.resetDb()
  372. //gets current dbWriteSize from leader
  373. dbWriteSizeBytes := make([]byte, 4)
  374. _, err = leaderWorkerConnection.Read(dbWriteSizeBytes)
  375. if err != nil {
  376. panic(err)
  377. }
  378. dbWriteSize = byteToInt(dbWriteSizeBytes)
  379. }
  380. func addTestTweets() {
  381. //creates test tweets
  382. tweets := make([]lib.Tweet, 5)
  383. for i := range tweets {
  384. j := i
  385. if i == 1 {
  386. j = 0
  387. }
  388. text := "Text " + strconv.Itoa(i)
  389. var topics []string
  390. topics = append(topics, "Topic "+strconv.Itoa(j))
  391. tweets[i] = lib.Tweet{"", -1, topics, text, i}
  392. }
  393. lib.NewEntries(tweets, 0)
  394. }
  395. func phase3(leaderWorkerConnection net.Conn, wg *sync.WaitGroup) {
  396. gotClient := make([]byte, 1)
  397. for {
  398. _, err := leaderWorkerConnection.Read(gotClient)
  399. if err != nil {
  400. panic(err)
  401. }
  402. //this worker is done
  403. if gotClient[0] == 0 {
  404. wg.Done()
  405. return
  406. }
  407. subPhase := make([]byte, 1)
  408. _, err = leaderWorkerConnection.Read(subPhase)
  409. if err != nil {
  410. panic(err)
  411. }
  412. var clientPublicKey [32]byte
  413. _, err = leaderWorkerConnection.Read(clientPublicKey[:])
  414. if err != nil {
  415. panic(err)
  416. }
  417. //gets the client data
  418. clientKeys := clientData[clientPublicKey]
  419. if subPhase[0] == 0 || subPhase[0] == 1 {
  420. clientKeys, _ = handlePirQuery(clientKeys, leaderWorkerConnection, int(subPhase[0]), clientPublicKey)
  421. }
  422. getSendTweets(clientKeys, nil, leaderWorkerConnection)
  423. wantsArchive := make([]byte, 1)
  424. _, err = leaderWorkerConnection.Read(wantsArchive)
  425. if err != nil {
  426. panic(err)
  427. }
  428. if wantsArchive[0] == 1 {
  429. _, archiveQuerys := handlePirQuery(clientKeys, leaderWorkerConnection, -1, clientPublicKey)
  430. getSendTweets(clientKeys, archiveQuerys, leaderWorkerConnection)
  431. }
  432. //saves clientKeys
  433. clientData[clientPublicKey] = clientKeys
  434. }
  435. }
  436. func getSendTweets(clientKeys clientKeys, archiveQuerys [][]byte, leaderWorkerConnection net.Conn) {
  437. tmpNeededSubscriptions := neededSubscriptions
  438. if archiveQuerys != nil {
  439. tmpNeededSubscriptions = len(archiveQuerys)
  440. }
  441. for i := 0; i < tmpNeededSubscriptions; i++ {
  442. //gets all requested tweets
  443. var tweets []byte
  444. if archiveQuerys == nil {
  445. tweets = lib.GetTweets(clientKeys.PirQuery[i], dataLength, 0)
  446. } else {
  447. tweets = lib.GetTweets(archiveQuerys[i], dataLength, 1)
  448. }
  449. //expand sharedSecret so it is of right length
  450. expandBy := len(tweets) / 32
  451. var expandedSharedSecret []byte
  452. for i := 0; i < expandBy; i++ {
  453. expandedSharedSecret = append(expandedSharedSecret, clientKeys.SharedSecret[:]...)
  454. }
  455. //Xor's sharedSecret with all tweets
  456. lib.Xor(expandedSharedSecret[:], tweets)
  457. lib.Xor(tweets, expandedSharedSecret[:])
  458. //sends tweets to leader
  459. tweetsLengthBytes := intToByte(len(tweets))
  460. _, err := leaderWorkerConnection.Write(tweetsLengthBytes)
  461. if err != nil {
  462. panic(err)
  463. }
  464. _, err = leaderWorkerConnection.Write(tweets)
  465. if err != nil {
  466. panic(err)
  467. }
  468. }
  469. }
  470. func handlePirQuery(clientKeys clientKeys, leaderWorkerConnection net.Conn, subPhase int, clientPublicKey [32]byte) (clientKeys, [][]byte) {
  471. archiveNeededSubscriptions := make([]byte, 4)
  472. if subPhase == -1 {
  473. _, err := leaderWorkerConnection.Read(archiveNeededSubscriptions)
  474. if err != nil {
  475. panic(err)
  476. }
  477. }
  478. //gets the msg length
  479. msgLengthBytes := make([]byte, 4)
  480. _, err := leaderWorkerConnection.Read(msgLengthBytes)
  481. if err != nil {
  482. panic(err)
  483. }
  484. msgLength := byteToInt(msgLengthBytes)
  485. message := make([]byte, msgLength)
  486. //gets the message
  487. _, err = leaderWorkerConnection.Read(message)
  488. if err != nil {
  489. panic(err)
  490. }
  491. var decryptNonce [24]byte
  492. copy(decryptNonce[:], message[:24])
  493. decrypted, ok := box.Open(nil, message[24:], &decryptNonce, &clientPublicKey, followerPrivateKey)
  494. if !ok {
  495. panic("pirQuery decryption not ok")
  496. }
  497. //gets sharedSecret
  498. if subPhase == 0 {
  499. //bs!
  500. var newSharedSecret [32]byte
  501. for index := 0; index < 32; index++ {
  502. newSharedSecret[index] = decrypted[index]
  503. }
  504. clientKeys.SharedSecret = newSharedSecret
  505. decrypted = decrypted[32:]
  506. //follower updates sharedSecret
  507. } else if subPhase == 1 {
  508. sharedSecret := clientKeys.SharedSecret
  509. sharedSecret = sha256.Sum256(sharedSecret[:])
  510. clientKeys.SharedSecret = sharedSecret
  511. }
  512. //follower expects pirQuery
  513. //transforms byteArray to ints of wanted topics
  514. pirQueryFlattened := decrypted
  515. tmpNeededSubscriptions := neededSubscriptions
  516. tmpTopicAmount := topicAmount
  517. if subPhase == -1 {
  518. tmpNeededSubscriptions = byteToInt(archiveNeededSubscriptions)
  519. _, tmpTopicAmount = lib.GetTopicList(1)
  520. }
  521. pirQuerys := make([][]byte, tmpNeededSubscriptions)
  522. for i := range pirQuerys {
  523. pirQuerys[i] = make([]byte, tmpTopicAmount)
  524. }
  525. for i := 0; i < tmpNeededSubscriptions; i++ {
  526. pirQuerys[i] = pirQueryFlattened[i*tmpTopicAmount : (i+1)*tmpTopicAmount]
  527. }
  528. //sets the pirQuery for the client in case whe are not archiving
  529. if subPhase != -1 {
  530. clientKeys.PirQuery = pirQuerys
  531. }
  532. return clientKeys, pirQuerys
  533. }
  534. func transformBytesToStringArray(topicsAsBytes []byte) []string {
  535. var topics []string
  536. var topic string
  537. var position int = 0
  538. for _, letter := range topicsAsBytes {
  539. if string(letter) == "," {
  540. topics[position] = topic
  541. topic = ""
  542. position++
  543. } else {
  544. topic = topic + string(letter)
  545. }
  546. }
  547. return topics
  548. }
  549. func byteToInt(myBytes []byte) (x int) {
  550. x = int(myBytes[3])<<24 + int(myBytes[2])<<16 + int(myBytes[1])<<8 + int(myBytes[0])
  551. return
  552. }
  553. func intToByte(myInt int) (retBytes []byte) {
  554. retBytes = make([]byte, 4)
  555. retBytes[3] = byte((myInt >> 24) & 0xff)
  556. retBytes[2] = byte((myInt >> 16) & 0xff)
  557. retBytes[1] = byte((myInt >> 8) & 0xff)
  558. retBytes[0] = byte(myInt & 0xff)
  559. return
  560. }