Onionr/docs/html/onionr/onionrutils/validatemetadata.html

283 lines
16 KiB
HTML

<!doctype html>
<html lang="en">
<head>
<meta charset="utf-8">
<meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1" />
<meta name="generator" content="pdoc 0.6.3" />
<title>onionr.onionrutils.validatemetadata API documentation</title>
<meta name="description" content="Onionr - Private P2P Communication …" />
<link href='https://cdnjs.cloudflare.com/ajax/libs/normalize/8.0.0/normalize.min.css' rel='stylesheet'>
<link href='https://cdnjs.cloudflare.com/ajax/libs/10up-sanitize.css/8.0.0/sanitize.min.css' rel='stylesheet'>
<link href="https://cdnjs.cloudflare.com/ajax/libs/highlight.js/9.12.0/styles/github.min.css" rel="stylesheet">
<style>.flex{display:flex !important}body{line-height:1.5em}#content{padding:20px}#sidebar{padding:30px;overflow:hidden}.http-server-breadcrumbs{font-size:130%;margin:0 0 15px 0}#footer{font-size:.75em;padding:5px 30px;border-top:1px solid #ddd;text-align:right}#footer p{margin:0 0 0 1em;display:inline-block}#footer p:last-child{margin-right:30px}h1,h2,h3,h4,h5{font-weight:300}h1{font-size:2.5em;line-height:1.1em}h2{font-size:1.75em;margin:1em 0 .50em 0}h3{font-size:1.4em;margin:25px 0 10px 0}h4{margin:0;font-size:105%}a{color:#058;text-decoration:none;transition:color .3s ease-in-out}a:hover{color:#e82}.title code{font-weight:bold}h2[id^="header-"]{margin-top:2em}.ident{color:#900}pre code{background:#f8f8f8;font-size:.8em;line-height:1.4em}code{background:#f2f2f1;padding:1px 4px;overflow-wrap:break-word}h1 code{background:transparent}pre{background:#f8f8f8;border:0;border-top:1px solid #ccc;border-bottom:1px solid #ccc;margin:1em 0;padding:1ex}#http-server-module-list{display:flex;flex-flow:column}#http-server-module-list div{display:flex}#http-server-module-list dt{min-width:10%}#http-server-module-list p{margin-top:0}.toc ul,#index{list-style-type:none;margin:0;padding:0}#index code{background:transparent}#index h3{border-bottom:1px solid #ddd}#index ul{padding:0}#index h4{font-weight:bold}#index h4 + ul{margin-bottom:.6em}@media (min-width:200ex){#index .two-column{column-count:2}}@media (min-width:300ex){#index .two-column{column-count:3}}dl{margin-bottom:2em}dl dl:last-child{margin-bottom:4em}dd{margin:0 0 1em 3em}#header-classes + dl > dd{margin-bottom:3em}dd dd{margin-left:2em}dd p{margin:10px 0}.name{background:#eee;font-weight:bold;font-size:.85em;padding:5px 10px;display:inline-block;min-width:40%}.name:hover{background:#e0e0e0}.name > span:first-child{white-space:nowrap}.name.class > span:nth-child(2){margin-left:.4em}.inherited{color:#999;border-left:5px solid #eee;padding-left:1em}.inheritance em{font-style:normal;font-weight:bold}.desc h2{font-weight:400;font-size:1.25em}.desc h3{font-size:1em}.desc dt code{background:inherit}.source summary{color:#666;text-align:right;font-weight:400;font-size:.8em;text-transform:uppercase;cursor:pointer}.source pre{max-height:500px;overflow:auto;margin:0}.source pre code{font-size:12px;overflow:visible}.hlist{list-style:none}.hlist li{display:inline}.hlist li:after{content:',\2002'}.hlist li:last-child:after{content:none}.hlist .hlist{display:inline;padding-left:1em}img{max-width:100%}.admonition{padding:.1em .5em;margin-bottom:1em}.admonition-title{font-weight:bold}.admonition.note,.admonition.info,.admonition.important{background:#aef}.admonition.todo,.admonition.versionadded,.admonition.tip,.admonition.hint{background:#dfd}.admonition.warning,.admonition.versionchanged,.admonition.deprecated{background:#fd4}.admonition.error,.admonition.danger,.admonition.caution{background:lightpink}</style>
<style media="screen and (min-width: 700px)">@media screen and (min-width:700px){#sidebar{width:30%}#content{width:70%;max-width:100ch;padding:3em 4em;border-left:1px solid #ddd}pre code{font-size:1em}.item .name{font-size:1em}main{display:flex;flex-direction:row-reverse;justify-content:flex-end}.toc ul ul,#index ul{padding-left:1.5em}.toc > ul > li{margin-top:.5em}}</style>
<style media="print">@media print{#sidebar h1{page-break-before:always}.source{display:none}}@media print{*{background:transparent !important;color:#000 !important;box-shadow:none !important;text-shadow:none !important}a[href]:after{content:" (" attr(href) ")";font-size:90%}a[href][title]:after{content:none}abbr[title]:after{content:" (" attr(title) ")"}.ir a:after,a[href^="javascript:"]:after,a[href^="#"]:after{content:""}pre,blockquote{border:1px solid #999;page-break-inside:avoid}thead{display:table-header-group}tr,img{page-break-inside:avoid}img{max-width:100% !important}@page{margin:0.5cm}p,h2,h3{orphans:3;widows:3}h1,h2,h3,h4,h5,h6{page-break-after:avoid}}</style>
</head>
<body>
<main>
<article id="content">
<header>
<h1 class="title">Module <code>onionr.onionrutils.validatemetadata</code></h1>
</header>
<section id="section-intro">
<p>Onionr - Private P2P Communication</p>
<p>validate new block's metadata</p>
<details class="source">
<summary>Source code</summary>
<pre><code class="python">&#39;&#39;&#39;
Onionr - Private P2P Communication
validate new block&#39;s metadata
&#39;&#39;&#39;
&#39;&#39;&#39;
This program is free software: you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation, either version 3 of the License, or
(at your option) any later version.
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License
along with this program. If not, see &lt;https://www.gnu.org/licenses/&gt;.
&#39;&#39;&#39;
import json
import logger, onionrexceptions
from etc import onionrvalues
from onionrutils import stringvalidators, epoch, bytesconverter
import config, filepaths, onionrcrypto
def validate_metadata(metadata, block_data) -&gt; bool:
&#39;&#39;&#39;Validate metadata meets onionr spec (does not validate proof value computation), take in either dictionary or json string&#39;&#39;&#39;
ret_data = False
max_clock_difference = onionrvalues.MAX_BLOCK_CLOCK_SKEW
# convert to dict if it is json string
if type(metadata) is str:
try:
metadata = json.loads(metadata)
except json.JSONDecodeError:
pass
# Validate metadata dict for invalid keys to sizes that are too large
maxAge = min(config.get(&#34;general.max_block_age&#34;, onionrvalues.DEFAULT_EXPIRE), onionrvalues.DEFAULT_EXPIRE)
if type(metadata) is dict:
for i in metadata:
try:
onionrvalues.BLOCK_METADATA_LENGTHS[i]
except KeyError:
logger.warn(&#39;Block has invalid metadata key &#39; + i)
break
else:
testData = metadata[i]
try:
testData = len(testData)
except (TypeError, AttributeError) as e:
testData = len(str(testData))
if onionrvalues.BLOCK_METADATA_LENGTHS[i] &lt; testData:
logger.warn(&#39;Block metadata key &#39; + i + &#39; exceeded maximum size&#39;)
break
if i == &#39;time&#39;:
if not stringvalidators.is_integer_string(metadata[i]):
logger.warn(&#39;Block metadata time stamp is not integer string or int&#39;)
break
isFuture = (metadata[i] - epoch.get_epoch())
if isFuture &gt; max_clock_difference:
logger.warn(&#39;Block timestamp is skewed to the future over the max %s: %s&#39; (max_clock_difference, isFuture))
break
if (epoch.get_epoch() - metadata[i]) &gt; maxAge:
logger.warn(&#39;Block is outdated: %s&#39; % (metadata[i],))
break
elif i == &#39;expire&#39;:
try:
if not int(metadata[i]) &gt; epoch.get_epoch(): raise ValueError
except ValueError:
logger.warn(&#39;Block is expired: %s less than %s&#39; % (metadata[i], epoch.get_epoch()))
break
elif i == &#39;encryptType&#39;:
try:
if not metadata[i] in (&#39;asym&#39;, &#39;sym&#39;, &#39;&#39;): raise ValueError
except ValueError:
logger.warn(&#39;Invalid encryption mode&#39;)
break
elif i == &#39;sig&#39;:
try:
metadata[&#39;encryptType&#39;]
except KeyError:
signer = metadata[&#39;signer&#39;]
sig = metadata[&#39;sig&#39;]
encodedMeta = bytesconverter.str_to_bytes(metadata[&#39;meta&#39;])
encodedBlock = bytesconverter.str_to_bytes(block_data)
if not onionrcrypto.signing.ed_verify(encodedMeta + encodedBlock[1:], signer, sig):
break
else:
# if metadata loop gets no errors, it does not break, therefore metadata is valid
# make sure we do not have another block with the same data content (prevent data duplication and replay attacks)
# Make sure time is set (validity was checked above if it is)
try:
metadata[&#39;time&#39;]
except KeyError:
return False
nonce = bytesconverter.bytes_to_str(onionrcrypto.hashers.sha3_hash(block_data))
try:
with open(filepaths.data_nonce_file, &#39;r&#39;) as nonceFile:
if nonce in nonceFile.read():
# we&#39;ve seen that nonce before, so we can&#39;t pass metadata
raise onionrexceptions.DataExists
except FileNotFoundError:
ret_data = True
except onionrexceptions.DataExists:
# do not set ret_data to True, because data has been seen before
logger.warn(f&#39;{nonce} seen before&#39;)
raise onionrexceptions.DataExists
else:
ret_data = True
else:
logger.warn(&#39;In call to utils.validateMetadata, metadata must be JSON string or a dictionary object&#39;)
return ret_data</code></pre>
</details>
</section>
<section>
</section>
<section>
</section>
<section>
<h2 class="section-title" id="header-functions">Functions</h2>
<dl>
<dt id="onionr.onionrutils.validatemetadata.validate_metadata"><code class="name flex">
<span>def <span class="ident">validate_metadata</span></span>(<span>metadata, block_data)</span>
</code></dt>
<dd>
<section class="desc"><p>Validate metadata meets onionr spec (does not validate proof value computation), take in either dictionary or json string</p></section>
<details class="source">
<summary>Source code</summary>
<pre><code class="python">def validate_metadata(metadata, block_data) -&gt; bool:
&#39;&#39;&#39;Validate metadata meets onionr spec (does not validate proof value computation), take in either dictionary or json string&#39;&#39;&#39;
ret_data = False
max_clock_difference = onionrvalues.MAX_BLOCK_CLOCK_SKEW
# convert to dict if it is json string
if type(metadata) is str:
try:
metadata = json.loads(metadata)
except json.JSONDecodeError:
pass
# Validate metadata dict for invalid keys to sizes that are too large
maxAge = min(config.get(&#34;general.max_block_age&#34;, onionrvalues.DEFAULT_EXPIRE), onionrvalues.DEFAULT_EXPIRE)
if type(metadata) is dict:
for i in metadata:
try:
onionrvalues.BLOCK_METADATA_LENGTHS[i]
except KeyError:
logger.warn(&#39;Block has invalid metadata key &#39; + i)
break
else:
testData = metadata[i]
try:
testData = len(testData)
except (TypeError, AttributeError) as e:
testData = len(str(testData))
if onionrvalues.BLOCK_METADATA_LENGTHS[i] &lt; testData:
logger.warn(&#39;Block metadata key &#39; + i + &#39; exceeded maximum size&#39;)
break
if i == &#39;time&#39;:
if not stringvalidators.is_integer_string(metadata[i]):
logger.warn(&#39;Block metadata time stamp is not integer string or int&#39;)
break
isFuture = (metadata[i] - epoch.get_epoch())
if isFuture &gt; max_clock_difference:
logger.warn(&#39;Block timestamp is skewed to the future over the max %s: %s&#39; (max_clock_difference, isFuture))
break
if (epoch.get_epoch() - metadata[i]) &gt; maxAge:
logger.warn(&#39;Block is outdated: %s&#39; % (metadata[i],))
break
elif i == &#39;expire&#39;:
try:
if not int(metadata[i]) &gt; epoch.get_epoch(): raise ValueError
except ValueError:
logger.warn(&#39;Block is expired: %s less than %s&#39; % (metadata[i], epoch.get_epoch()))
break
elif i == &#39;encryptType&#39;:
try:
if not metadata[i] in (&#39;asym&#39;, &#39;sym&#39;, &#39;&#39;): raise ValueError
except ValueError:
logger.warn(&#39;Invalid encryption mode&#39;)
break
elif i == &#39;sig&#39;:
try:
metadata[&#39;encryptType&#39;]
except KeyError:
signer = metadata[&#39;signer&#39;]
sig = metadata[&#39;sig&#39;]
encodedMeta = bytesconverter.str_to_bytes(metadata[&#39;meta&#39;])
encodedBlock = bytesconverter.str_to_bytes(block_data)
if not onionrcrypto.signing.ed_verify(encodedMeta + encodedBlock[1:], signer, sig):
break
else:
# if metadata loop gets no errors, it does not break, therefore metadata is valid
# make sure we do not have another block with the same data content (prevent data duplication and replay attacks)
# Make sure time is set (validity was checked above if it is)
try:
metadata[&#39;time&#39;]
except KeyError:
return False
nonce = bytesconverter.bytes_to_str(onionrcrypto.hashers.sha3_hash(block_data))
try:
with open(filepaths.data_nonce_file, &#39;r&#39;) as nonceFile:
if nonce in nonceFile.read():
# we&#39;ve seen that nonce before, so we can&#39;t pass metadata
raise onionrexceptions.DataExists
except FileNotFoundError:
ret_data = True
except onionrexceptions.DataExists:
# do not set ret_data to True, because data has been seen before
logger.warn(f&#39;{nonce} seen before&#39;)
raise onionrexceptions.DataExists
else:
ret_data = True
else:
logger.warn(&#39;In call to utils.validateMetadata, metadata must be JSON string or a dictionary object&#39;)
return ret_data</code></pre>
</details>
</dd>
</dl>
</section>
<section>
</section>
</article>
<nav id="sidebar">
<h1>Index</h1>
<div class="toc">
<ul></ul>
</div>
<ul id="index">
<li><h3>Super-module</h3>
<ul>
<li><code><a title="onionr.onionrutils" href="index.html">onionr.onionrutils</a></code></li>
</ul>
</li>
<li><h3><a href="#header-functions">Functions</a></h3>
<ul class="">
<li><code><a title="onionr.onionrutils.validatemetadata.validate_metadata" href="#onionr.onionrutils.validatemetadata.validate_metadata">validate_metadata</a></code></li>
</ul>
</li>
</ul>
</nav>
</main>
<footer id="footer">
<p>Generated by <a href="https://pdoc3.github.io/pdoc"><cite>pdoc</cite> 0.6.3</a>.</p>
</footer>
<script src="https://cdnjs.cloudflare.com/ajax/libs/highlight.js/9.12.0/highlight.min.js"></script>
<script>hljs.initHighlightingOnLoad()</script>
</body>
</html>