follower.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666
  1. package main
  2. //#cgo CFLAGS: -fopenmp -O2
  3. //#cgo LDFLAGS: -lcrypto -lm -fopenmp
  4. //#include "../c/dpf.h"
  5. //#include "../c/okv.h"
  6. //#include "../c/dpf.c"
  7. //#include "../c/okv.c"
  8. import "C"
  9. //ssssssssssssss
  10. import (
  11. "2PPS/lib"
  12. "crypto/rand"
  13. "crypto/rsa"
  14. "crypto/sha256"
  15. "crypto/tls"
  16. "crypto/x509"
  17. "crypto/x509/pkix"
  18. "encoding/pem"
  19. "fmt"
  20. "math/big"
  21. "net"
  22. "strconv"
  23. "sync"
  24. "time"
  25. "unsafe"
  26. "golang.org/x/crypto/nacl/box"
  27. )
  28. const leader string = "127.0.0.1:4442"
  29. //needs to be changed at leader/follower/client at the same time
  30. const neededSubscriptions = 1
  31. //this stores all neccessary information for each client
  32. type clientKeys struct {
  33. SharedSecret [32]byte
  34. PirQuery [][]byte
  35. }
  36. //uses clients publicKey as key
  37. var clientData = make(map[[32]byte]clientKeys)
  38. var topicList []byte
  39. var topicAmount int
  40. var followerPrivateKey *[32]byte
  41. var followerPublicKey *[32]byte
  42. var leaderPublicKey *[32]byte
  43. var numThreads int = 12
  44. //has to be dividable by 32
  45. var dataLength int = 32
  46. var dbWriteSize int = 2
  47. var round int = 1
  48. var startTime time.Time
  49. var maxTimePerRound time.Duration = 5 * time.Second
  50. func main() {
  51. generatedPublicKey, generatedPrivateKey, err := box.GenerateKey(rand.Reader)
  52. if err != nil {
  53. panic(err)
  54. }
  55. followerPrivateKey = generatedPrivateKey
  56. followerPublicKey = generatedPublicKey
  57. /*
  58. if len(os.Args) != 4 {
  59. fmt.Println("try again: numThreads, dataLength, numRows")
  60. return
  61. }
  62. numThreads, _ = strconv.Atoi(os.Args[2])
  63. dataLength, _ = strconv.Atoi(os.Args[3])
  64. numRows, _ = strconv.Atoi(os.Args[4])
  65. */
  66. C.initializeServer(C.int(numThreads))
  67. followerConnectionPrivateKey, err := rsa.GenerateKey(rand.Reader, 2048)
  68. if err != nil {
  69. panic(err)
  70. }
  71. // Generate a pem block with the private key
  72. keyPem := pem.EncodeToMemory(&pem.Block{
  73. Type: "RSA PRIVATE KEY",
  74. Bytes: x509.MarshalPKCS1PrivateKey(followerConnectionPrivateKey),
  75. })
  76. tml := x509.Certificate{
  77. // you can add any attr that you need
  78. NotBefore: time.Now(),
  79. NotAfter: time.Now().AddDate(5, 0, 0),
  80. // you have to generate a different serial number each execution
  81. SerialNumber: big.NewInt(123123),
  82. Subject: pkix.Name{
  83. CommonName: "New Name",
  84. Organization: []string{"New Org."},
  85. },
  86. BasicConstraintsValid: true,
  87. }
  88. cert, err := x509.CreateCertificate(rand.Reader, &tml, &tml, &followerConnectionPrivateKey.PublicKey, followerConnectionPrivateKey)
  89. if err != nil {
  90. panic(err)
  91. }
  92. // Generate a pem block with the certificate
  93. certPem := pem.EncodeToMemory(&pem.Block{
  94. Type: "CERTIFICATE",
  95. Bytes: cert,
  96. })
  97. tlsCert, err := tls.X509KeyPair(certPem, keyPem)
  98. if err != nil {
  99. panic(err)
  100. }
  101. config := &tls.Config{Certificates: []tls.Certificate{tlsCert}}
  102. fmt.Println("start leader")
  103. //listens for leader
  104. lnLeader, err := tls.Listen("tcp", ":4443", config)
  105. if err != nil {
  106. panic(err)
  107. }
  108. defer lnLeader.Close()
  109. leaderConnection, err := lnLeader.Accept()
  110. if err != nil {
  111. panic(err)
  112. }
  113. //send publicKey to leader
  114. _, err = leaderConnection.Write(followerPublicKey[:])
  115. if err != nil {
  116. panic(err)
  117. }
  118. //receives leader PublicKey
  119. var tmpLeaderPubKey [32]byte
  120. _, err = leaderConnection.Read(tmpLeaderPubKey[:])
  121. if err != nil {
  122. panic(err)
  123. }
  124. leaderPublicKey = &tmpLeaderPubKey
  125. //setup ends here
  126. //locks access to DB
  127. var m sync.Mutex
  128. wg := &sync.WaitGroup{}
  129. for {
  130. //phase1
  131. fmt.Println("phase1")
  132. //create write db for this round
  133. for i := 0; i < dbWriteSize; i++ {
  134. C.createDb(C.int(0), C.int(dataLength))
  135. }
  136. for i := 0; i < numThreads; i++ {
  137. wg.Add(1)
  138. leaderConnection, err := lnLeader.Accept()
  139. if err != nil {
  140. panic(err)
  141. }
  142. leaderConnection.SetDeadline(time.Time{})
  143. startTime = time.Now()
  144. go phase1(i, leaderConnection, m, wg)
  145. }
  146. wg.Wait()
  147. //phase2
  148. fmt.Println("phase2")
  149. leaderConnection, err := lnLeader.Accept()
  150. if err != nil {
  151. panic(err)
  152. }
  153. leaderConnection.SetDeadline(time.Time{})
  154. phase2(leaderConnection)
  155. //phase3
  156. fmt.Println("phase3")
  157. if round == 1 {
  158. //addTestTweets()
  159. }
  160. //no tweets -> continue to phase 1 and mb get tweets
  161. topicList, topicAmount = lib.GetTopicList(0)
  162. if len(topicList) == 0 {
  163. continue
  164. }
  165. for i := 0; i < numThreads; i++ {
  166. wg.Add(1)
  167. leaderConnection, err := lnLeader.Accept()
  168. if err != nil {
  169. panic(err)
  170. }
  171. leaderConnection.SetDeadline(time.Time{})
  172. startTime = time.Now()
  173. go phase3(leaderConnection, wg)
  174. }
  175. wg.Wait()
  176. lib.CleanUpdbR(round)
  177. round++
  178. }
  179. }
  180. func phase1(id int, leaderWorkerConnection net.Conn, m sync.Mutex, wg *sync.WaitGroup) {
  181. gotClient := make([]byte, 1)
  182. for {
  183. _, err := leaderWorkerConnection.Read(gotClient)
  184. if err != nil {
  185. panic(err)
  186. }
  187. //this worker is done
  188. if gotClient[0] == 0 {
  189. wg.Done()
  190. return
  191. }
  192. //setup the worker-specific db
  193. dbSize := int(C.dbSize)
  194. db := make([][]byte, dbSize)
  195. for i := 0; i < dbSize; i++ {
  196. db[i] = make([]byte, int(C.db[i].dataSize))
  197. }
  198. //gets clients publicKey
  199. var clientPublicKey *[32]byte
  200. var tmpClientPublicKey [32]byte
  201. _, err = leaderWorkerConnection.Read(tmpClientPublicKey[:])
  202. if err != nil {
  203. panic(err)
  204. }
  205. clientPublicKey = &tmpClientPublicKey
  206. //gets dpfQuery from leader
  207. dpfLengthBytes := make([]byte, 4)
  208. _, err = leaderWorkerConnection.Read(dpfLengthBytes)
  209. if err != nil {
  210. panic(err)
  211. }
  212. dpfLength := byteToInt(dpfLengthBytes)
  213. dpfQueryBEncrypted := make([]byte, dpfLength)
  214. _, err = leaderWorkerConnection.Read(dpfQueryBEncrypted)
  215. if err != nil {
  216. panic(err)
  217. }
  218. //decrypt dpfQueryB for sorting into db
  219. var decryptNonce [24]byte
  220. copy(decryptNonce[:], dpfQueryBEncrypted[:24])
  221. dpfQueryB, ok := box.Open(nil, dpfQueryBEncrypted[24:], &decryptNonce, clientPublicKey, followerPrivateKey)
  222. if !ok {
  223. panic("dpfQueryB decryption not ok")
  224. }
  225. vector := make([]byte, dbSize*16)
  226. //run dpf, xor into local db
  227. for i := 0; i < dbSize; i++ {
  228. ds := int(C.db[i].dataSize)
  229. dataShare := make([]byte, ds)
  230. pos := C.getUint128_t(C.int(i))
  231. //fmt.Println(i, pos)
  232. v := C.evalDPF(C.ctx[id], (*C.uchar)(&dpfQueryB[0]), pos, C.int(ds), (*C.uchar)(&dataShare[0]))
  233. copy(vector[i*16:(i+1)*16], C.GoBytes(unsafe.Pointer(&v), 16))
  234. for j := 0; j < ds; j++ {
  235. db[i][j] = db[i][j] ^ dataShare[j]
  236. }
  237. }
  238. //xor the worker's DB into the main DB
  239. for i := 0; i < dbSize; i++ {
  240. m.Lock()
  241. C.xorIn(C.int(i), (*C.uchar)(&db[i][0]))
  242. m.Unlock()
  243. }
  244. }
  245. }
  246. func phase2(leaderWorkerConnection net.Conn) {
  247. //gets current seed
  248. seedFollower := make([]byte, 16)
  249. C.readSeed((*C.uchar)(&seedFollower[0]))
  250. //get data
  251. dbSize := int(C.dbSize)
  252. tmpdbFollower := make([][]byte, dbSize)
  253. for i := range tmpdbFollower {
  254. tmpdbFollower[i] = make([]byte, dataLength)
  255. }
  256. for i := 0; i < dbSize; i++ {
  257. C.readData(C.int(i), (*C.uchar)(&tmpdbFollower[i][0]))
  258. }
  259. //receive seed from leader
  260. seedLeader := make([]byte, 16)
  261. _, err := leaderWorkerConnection.Read(seedLeader)
  262. if err != nil {
  263. panic(err)
  264. }
  265. //receive data from leader
  266. tmpdbLeader := make([][]byte, dbSize)
  267. for i := range tmpdbLeader {
  268. tmpdbLeader[i] = make([]byte, dataLength)
  269. }
  270. for i := 0; i < dbSize; i++ {
  271. _, err = leaderWorkerConnection.Read(tmpdbLeader[i])
  272. if err != nil {
  273. panic(err)
  274. }
  275. }
  276. //writes seed to leader
  277. _, err = leaderWorkerConnection.Write(seedFollower)
  278. if err != nil {
  279. panic(err)
  280. }
  281. //write data to leader
  282. for i := 0; i < dbSize; i++ {
  283. _, err = leaderWorkerConnection.Write(tmpdbFollower[i])
  284. if err != nil {
  285. panic(err)
  286. }
  287. }
  288. //put together the db
  289. tmpdb := make([][]byte, dbSize)
  290. for i := range tmpdb {
  291. tmpdb[i] = make([]byte, dataLength)
  292. }
  293. //get own Ciphers
  294. ciphersFollowers := make([]*C.uchar, dbSize)
  295. for i := 0; i < dbSize; i++ {
  296. ciphersFollowers[i] = (*C.uchar)(C.malloc(16))
  297. }
  298. for i := 0; i < dbSize; i++ {
  299. C.getCipher(0, C.int(i), ciphersFollowers[i])
  300. }
  301. //receive ciphers from leader
  302. ciphersLeader := make([]byte, dbSize*16)
  303. for i := 0; i < dbSize; i++ {
  304. _, err = leaderWorkerConnection.Read(ciphersLeader[i*16:])
  305. if err != nil {
  306. panic(err)
  307. }
  308. }
  309. //send own Ciphers to leader
  310. for i := 0; i < dbSize; i++ {
  311. _, err = leaderWorkerConnection.Write(C.GoBytes(unsafe.Pointer(ciphersFollowers[i]), 16))
  312. if err != nil {
  313. panic(err)
  314. }
  315. }
  316. //put in ciphers from leader
  317. for i := 0; i < dbSize; i++ {
  318. C.putCipher(0, C.int(i), (*C.uchar)(&ciphersLeader[i*16]))
  319. }
  320. for i := 0; i < dbSize; i++ {
  321. C.decryptRow(C.int(i), (*C.uchar)(&tmpdb[i][0]), (*C.uchar)(&tmpdbLeader[i][0]), (*C.uchar)(&tmpdbFollower[i][0]), (*C.uchar)(&seedLeader[0]), (*C.uchar)(&seedFollower[0]))
  322. }
  323. var tweets []lib.Tweet
  324. for i := 0; i < dbSize; i++ {
  325. //discard cover message
  326. if tmpdb[i][0] == 0 {
  327. continue
  328. } else {
  329. //reconstruct tweet
  330. var position int = 0
  331. var topics []string
  332. var topic string
  333. var text string
  334. for _, letter := range tmpdb[i] {
  335. if string(letter) == ";" {
  336. if topic != "" {
  337. topics = append(topics, topic)
  338. topic = ""
  339. }
  340. position++
  341. } else {
  342. if position == 0 {
  343. if string(letter) == "," {
  344. topics = append(topics, topic)
  345. topic = ""
  346. } else {
  347. topic = topic + string(letter)
  348. }
  349. } else if position == 1 {
  350. text = text + string(letter)
  351. }
  352. }
  353. }
  354. tweet := lib.Tweet{"", -1, topics, text, round}
  355. tweets = append(tweets, tweet)
  356. }
  357. }
  358. //fmt.Println("tweets recovered: ", tweets)
  359. //sort into read db
  360. lib.NewEntries(tweets, 0)
  361. //reset write db after the tweets were moved to read db
  362. C.resetDb()
  363. //gets current dbWriteSize from leader
  364. dbWriteSizeBytes := make([]byte, 4)
  365. _, err = leaderWorkerConnection.Read(dbWriteSizeBytes)
  366. if err != nil {
  367. panic(err)
  368. }
  369. dbWriteSize = byteToInt(dbWriteSizeBytes)
  370. }
  371. func addTestTweets() {
  372. //creates test tweets
  373. tweets := make([]lib.Tweet, 5)
  374. for i := range tweets {
  375. j := i
  376. if i == 1 {
  377. j = 0
  378. }
  379. text := "Text " + strconv.Itoa(i)
  380. var topics []string
  381. topics = append(topics, "Topic "+strconv.Itoa(j))
  382. tweets[i] = lib.Tweet{"", -1, topics, text, i}
  383. }
  384. lib.NewEntries(tweets, 0)
  385. }
  386. func phase3(leaderWorkerConnection net.Conn, wg *sync.WaitGroup) {
  387. gotClient := make([]byte, 1)
  388. for {
  389. _, err := leaderWorkerConnection.Read(gotClient)
  390. if err != nil {
  391. panic(err)
  392. }
  393. //this worker is done
  394. if gotClient[0] == 0 {
  395. wg.Done()
  396. return
  397. }
  398. subPhase := make([]byte, 1)
  399. _, err = leaderWorkerConnection.Read(subPhase)
  400. if err != nil {
  401. panic(err)
  402. }
  403. var clientPublicKey [32]byte
  404. _, err = leaderWorkerConnection.Read(clientPublicKey[:])
  405. if err != nil {
  406. panic(err)
  407. }
  408. //gets the client data
  409. clientKeys := clientData[clientPublicKey]
  410. if subPhase[0] == 0 || subPhase[0] == 1 {
  411. clientKeys, _ = handlePirQuery(clientKeys, leaderWorkerConnection, int(subPhase[0]), clientPublicKey)
  412. }
  413. getSendTweets(clientKeys, nil, leaderWorkerConnection)
  414. wantsArchive := make([]byte, 1)
  415. _, err = leaderWorkerConnection.Read(wantsArchive)
  416. if err != nil {
  417. panic(err)
  418. }
  419. if wantsArchive[0] == 1 {
  420. _, archiveQuerys := handlePirQuery(clientKeys, leaderWorkerConnection, -1, clientPublicKey)
  421. getSendTweets(clientKeys, archiveQuerys, leaderWorkerConnection)
  422. }
  423. //saves clientKeys
  424. clientData[clientPublicKey] = clientKeys
  425. }
  426. }
  427. func getSendTweets(clientKeys clientKeys, archiveQuerys [][]byte, leaderWorkerConnection net.Conn) {
  428. tmpNeededSubscriptions := neededSubscriptions
  429. if archiveQuerys != nil {
  430. tmpNeededSubscriptions = len(archiveQuerys)
  431. }
  432. for i := 0; i < tmpNeededSubscriptions; i++ {
  433. //gets all requested tweets
  434. var tweets []byte
  435. if archiveQuerys == nil {
  436. tweets = lib.GetTweets(clientKeys.PirQuery[i], dataLength, 0)
  437. } else {
  438. tweets = lib.GetTweets(archiveQuerys[i], dataLength, 1)
  439. }
  440. //expand sharedSecret so it is of right length
  441. expandBy := len(tweets) / 32
  442. var expandedSharedSecret []byte
  443. for i := 0; i < expandBy; i++ {
  444. expandedSharedSecret = append(expandedSharedSecret, clientKeys.SharedSecret[:]...)
  445. }
  446. //Xor's sharedSecret with all tweets
  447. lib.Xor(expandedSharedSecret[:], tweets)
  448. lib.Xor(tweets, expandedSharedSecret[:])
  449. //sends tweets to leader
  450. tweetsLengthBytes := intToByte(len(tweets))
  451. _, err := leaderWorkerConnection.Write(tweetsLengthBytes)
  452. if err != nil {
  453. panic(err)
  454. }
  455. _, err = leaderWorkerConnection.Write(tweets)
  456. if err != nil {
  457. panic(err)
  458. }
  459. }
  460. }
  461. func handlePirQuery(clientKeys clientKeys, leaderWorkerConnection net.Conn, subPhase int, clientPublicKey [32]byte) (clientKeys, [][]byte) {
  462. archiveNeededSubscriptions := make([]byte, 4)
  463. if subPhase == -1 {
  464. _, err := leaderWorkerConnection.Read(archiveNeededSubscriptions)
  465. if err != nil {
  466. panic(err)
  467. }
  468. }
  469. //gets the msg length
  470. msgLengthBytes := make([]byte, 4)
  471. _, err := leaderWorkerConnection.Read(msgLengthBytes)
  472. if err != nil {
  473. panic(err)
  474. }
  475. msgLength := byteToInt(msgLengthBytes)
  476. message := make([]byte, msgLength)
  477. //gets the message
  478. _, err = leaderWorkerConnection.Read(message)
  479. if err != nil {
  480. panic(err)
  481. }
  482. var decryptNonce [24]byte
  483. copy(decryptNonce[:], message[:24])
  484. decrypted, ok := box.Open(nil, message[24:], &decryptNonce, &clientPublicKey, followerPrivateKey)
  485. if !ok {
  486. panic("pirQuery decryption not ok")
  487. }
  488. //gets sharedSecret
  489. if subPhase == 0 {
  490. //bs!
  491. var newSharedSecret [32]byte
  492. for index := 0; index < 32; index++ {
  493. newSharedSecret[index] = decrypted[index]
  494. }
  495. clientKeys.SharedSecret = newSharedSecret
  496. decrypted = decrypted[32:]
  497. //follower updates sharedSecret
  498. } else if subPhase == 1 {
  499. sharedSecret := clientKeys.SharedSecret
  500. sharedSecret = sha256.Sum256(sharedSecret[:])
  501. clientKeys.SharedSecret = sharedSecret
  502. }
  503. //follower expects pirQuery
  504. //transforms byteArray to ints of wanted topics
  505. pirQueryFlattened := decrypted
  506. tmpNeededSubscriptions := neededSubscriptions
  507. tmpTopicAmount := topicAmount
  508. if subPhase == -1 {
  509. tmpNeededSubscriptions = byteToInt(archiveNeededSubscriptions)
  510. _, tmpTopicAmount = lib.GetTopicList(1)
  511. }
  512. pirQuerys := make([][]byte, tmpNeededSubscriptions)
  513. for i := range pirQuerys {
  514. pirQuerys[i] = make([]byte, tmpTopicAmount)
  515. }
  516. for i := 0; i < tmpNeededSubscriptions; i++ {
  517. pirQuerys[i] = pirQueryFlattened[i*tmpTopicAmount : (i+1)*tmpTopicAmount]
  518. }
  519. //sets the pirQuery for the client in case whe are not archiving
  520. if subPhase != -1 {
  521. clientKeys.PirQuery = pirQuerys
  522. }
  523. return clientKeys, pirQuerys
  524. }
  525. func transformBytesToStringArray(topicsAsBytes []byte) []string {
  526. var topics []string
  527. var topic string
  528. var position int = 0
  529. for _, letter := range topicsAsBytes {
  530. if string(letter) == "," {
  531. topics[position] = topic
  532. topic = ""
  533. position++
  534. } else {
  535. topic = topic + string(letter)
  536. }
  537. }
  538. return topics
  539. }
  540. func byteToInt(myBytes []byte) (x int) {
  541. x = int(myBytes[3])<<24 + int(myBytes[2])<<16 + int(myBytes[1])<<8 + int(myBytes[0])
  542. return
  543. }
  544. func intToByte(myInt int) (retBytes []byte) {
  545. retBytes = make([]byte, 4)
  546. retBytes[3] = byte((myInt >> 24) & 0xff)
  547. retBytes[2] = byte((myInt >> 16) & 0xff)
  548. retBytes[1] = byte((myInt >> 8) & 0xff)
  549. retBytes[0] = byte(myInt & 0xff)
  550. return
  551. }