config.cpp 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185
  1. #include "Enclave_t.h"
  2. #include "comms.hpp"
  3. #include "config.hpp"
  4. #include "utils.hpp"
  5. #include "route.hpp"
  6. #include "ingest.hpp"
  7. #define CEILDIV(x,y) (((x)+(y)-1)/(y))
  8. unsigned long ingestion_epoch;
  9. unsigned long storage_epoch;
  10. Config g_teems_config;
  11. static int generateMasterKeys(sgx_aes_gcm_128bit_key_t master_secret,
  12. sgx_aes_gcm_128bit_key_t &ESK, sgx_aes_gcm_128bit_key_t &TSK)
  13. {
  14. unsigned char zeroes[SGX_AESGCM_KEY_SIZE];
  15. unsigned char iv[SGX_AESGCM_IV_SIZE];
  16. sgx_aes_gcm_128bit_tag_t mac;
  17. memset(zeroes, 0, SGX_AESGCM_KEY_SIZE);
  18. memset(iv, 0, SGX_AESGCM_IV_SIZE);
  19. memcpy(iv, "Encryption", sizeof("Encryption"));
  20. sgx_status_t ret = SGX_SUCCESS;
  21. ret = sgx_rijndael128GCM_encrypt((const sgx_aes_gcm_128bit_key_t *)
  22. master_secret, zeroes, SGX_AESGCM_KEY_SIZE,
  23. (uint8_t*) ESK, iv, SGX_AESGCM_IV_SIZE, NULL, 0, &mac);
  24. if(ret!=SGX_SUCCESS) {
  25. return -1;
  26. }
  27. printf("Encryption Master Key: ");
  28. for(int i=0;i<SGX_AESGCM_KEY_SIZE;i++) {
  29. printf("%02x", ESK[i]);
  30. }
  31. printf("\n");
  32. memset(iv, 0, SGX_AESGCM_IV_SIZE);
  33. memcpy(iv, "Token", sizeof("Token"));
  34. ret = sgx_rijndael128GCM_encrypt((const sgx_aes_gcm_128bit_key_t *)
  35. master_secret, zeroes, SGX_AESGCM_KEY_SIZE,
  36. (uint8_t*) TSK, iv, SGX_AESGCM_IV_SIZE, NULL, 0, &mac);
  37. if(ret!=SGX_SUCCESS) {
  38. return -1;
  39. }
  40. printf("Token Master Key: ");
  41. for(int i=0;i<SGX_AESGCM_KEY_SIZE;i++) {
  42. printf("%02x", TSK[i]);
  43. }
  44. printf("\n");
  45. return 1;
  46. }
  47. bool ecall_config_load(threadid_t nthreads,
  48. EnclaveAPIParams *apiparams,
  49. EnclaveAPINodeConfig *apinodeconfigs,
  50. nodenum_t num_nodes, nodenum_t my_node_num)
  51. {
  52. g_teems_config.nthreads = nthreads;
  53. g_teems_config.num_nodes = num_nodes;
  54. g_teems_config.num_ingestion_nodes = 0;
  55. g_teems_config.num_routing_nodes = 0;
  56. g_teems_config.num_storage_nodes = 0;
  57. g_teems_config.my_node_num = my_node_num;
  58. g_teems_config.user_count = apiparams->user_count;
  59. g_teems_config.msg_size = apiparams->msg_size;
  60. g_teems_config.m_priv_out = apiparams->m_priv_out;
  61. g_teems_config.m_priv_in = apiparams->m_priv_in;
  62. g_teems_config.m_pub_out = apiparams->m_pub_out;
  63. g_teems_config.m_pub_in = apiparams->m_pub_in;
  64. memcpy(g_teems_config.master_secret, apiparams->master_secret,
  65. SGX_AESGCM_KEY_SIZE);
  66. g_teems_config.private_routing = apiparams->private_routing;
  67. // Temporary vectors to store node numbers for nodes of different
  68. // types, where the node numbers are smaller than our own node
  69. // number
  70. std::vector<nodenum_t> ing_smaller, rte_smaller, str_smaller;
  71. uint16_t cumul_weight = 0;
  72. g_teems_config.weights.clear();
  73. g_teems_config.ingestion_nodes.clear();
  74. g_teems_config.routing_nodes.clear();
  75. g_teems_config.storage_nodes.clear();
  76. g_teems_config.storage_map.clear();
  77. for (nodenum_t i=0; i<num_nodes; ++i) {
  78. NodeWeight nw;
  79. nw.startweight = cumul_weight;
  80. // Weights only matter for routing nodes
  81. nw.weight = 0;
  82. if (apinodeconfigs[i].roles & ROLE_INGESTION) {
  83. g_teems_config.num_ingestion_nodes += 1;
  84. if (i < my_node_num) {
  85. ing_smaller.push_back(i);
  86. } else {
  87. g_teems_config.ingestion_nodes.push_back(i);
  88. }
  89. }
  90. if (apinodeconfigs[i].roles & ROLE_ROUTING) {
  91. // Only use weights in private routing
  92. if (g_teems_config.private_routing) {
  93. nw.weight = apinodeconfigs[i].weight;
  94. } else {
  95. nw.weight = 1;
  96. }
  97. g_teems_config.num_routing_nodes += 1;
  98. if (i < my_node_num) {
  99. rte_smaller.push_back(i);
  100. } else {
  101. g_teems_config.routing_nodes.push_back(i);
  102. }
  103. }
  104. if (apinodeconfigs[i].roles & ROLE_STORAGE) {
  105. g_teems_config.num_storage_nodes += 1;
  106. if (i < my_node_num) {
  107. str_smaller.push_back(i);
  108. } else {
  109. g_teems_config.storage_nodes.push_back(i);
  110. }
  111. g_teems_config.storage_map.push_back(i);
  112. }
  113. cumul_weight += nw.weight;
  114. g_teems_config.weights.push_back(nw);
  115. g_teems_config.roles.push_back(apinodeconfigs[i].roles);
  116. if (i == my_node_num) {
  117. g_teems_config.my_weight = nw.weight;
  118. }
  119. }
  120. g_teems_config.tot_weight = cumul_weight;
  121. // Concatenate the *_smaller vectors to the ends of the
  122. // g_teems_config.*_nodes vectors. This way, each node has a list
  123. // of nodes of each role starting with itself and "looping around".
  124. // This should make the communication pattern have less of a
  125. // bottleneck.
  126. g_teems_config.ingestion_nodes.insert(
  127. g_teems_config.ingestion_nodes.end(),
  128. ing_smaller.begin(),
  129. ing_smaller.end());
  130. g_teems_config.routing_nodes.insert(
  131. g_teems_config.routing_nodes.end(),
  132. rte_smaller.begin(),
  133. rte_smaller.end());
  134. g_teems_config.storage_nodes.insert(
  135. g_teems_config.storage_nodes.end(),
  136. str_smaller.begin(),
  137. str_smaller.end());
  138. // Initialize the threadpool and the pseudorandom bytes pools
  139. threadpool_init(nthreads);
  140. uint8_t my_role = apinodeconfigs[my_node_num].roles;
  141. if ( (my_role & ROLE_INGESTION) || (my_role & ROLE_STORAGE) ) {
  142. generateMasterKeys(g_teems_config.master_secret,
  143. g_teems_config.ESK, g_teems_config.TSK);
  144. uint32_t num_clients_total = g_teems_config.user_count;
  145. if (my_role & ROLE_INGESTION) {
  146. uint32_t num_ing_nodes = g_teems_config.num_ingestion_nodes;
  147. uint32_t clients_per_server =
  148. CEILDIV(num_clients_total, num_ing_nodes);
  149. uint32_t num_clients_this_ing = clients_per_server;
  150. uint32_t client_start = ing_smaller.size();
  151. g_ing.initialize(num_clients_this_ing, client_start,
  152. g_teems_config.ESK);
  153. }
  154. }
  155. ingestion_epoch = 0;
  156. storage_epoch = 0;
  157. if (!route_init()) {
  158. return false;
  159. }
  160. return comms_init_nodestate(apinodeconfigs, num_nodes, my_node_num);
  161. }
  162. void ecall_close()
  163. {
  164. route_close();
  165. threadpool_shutdown();
  166. }