dirvote.h 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. /* Copyright (c) 2001 Matej Pfajfar.
  2. * Copyright (c) 2001-2004, Roger Dingledine.
  3. * Copyright (c) 2004-2006, Roger Dingledine, Nick Mathewson.
  4. * Copyright (c) 2007-2017, The Tor Project, Inc. */
  5. /* See LICENSE for licensing information */
  6. /**
  7. * \file dirvote.h
  8. * \brief Header file for dirvote.c.
  9. **/
  10. #ifndef TOR_DIRVOTE_H
  11. #define TOR_DIRVOTE_H
  12. #include "testsupport.h"
  13. /*
  14. * Ideally, assuming synced clocks, we should only need 1 second for each of:
  15. * - Vote
  16. * - Distribute
  17. * - Consensus Publication
  18. * As we can gather descriptors continuously.
  19. * (Could we even go as far as publishing the previous consensus,
  20. * in the same second that we vote for the next one?)
  21. * But we're not there yet: these are the lowest working values at this time.
  22. */
  23. /** Lowest allowable value for VoteSeconds. */
  24. #define MIN_VOTE_SECONDS 2
  25. /** Lowest allowable value for VoteSeconds when TestingTorNetwork is 1 */
  26. #define MIN_VOTE_SECONDS_TESTING 2
  27. /** Lowest allowable value for DistSeconds. */
  28. #define MIN_DIST_SECONDS 2
  29. /** Lowest allowable value for DistSeconds when TestingTorNetwork is 1 */
  30. #define MIN_DIST_SECONDS_TESTING 2
  31. /** Lowest allowable voting interval. */
  32. #define MIN_VOTE_INTERVAL 300
  33. /** Lowest allowable voting interval when TestingTorNetwork is 1:
  34. * Voting Interval can be:
  35. * 10, 12, 15, 18, 20, 24, 25, 30, 36, 40, 45, 50, 60, ...
  36. * Testing Initial Voting Interval can be:
  37. * 5, 6, 8, 9, or any of the possible values for Voting Interval,
  38. * as they both need to evenly divide 30 minutes.
  39. * If clock desynchronisation is an issue, use an interval of at least:
  40. * 18 * drift in seconds, to allow for a clock slop factor */
  41. #define MIN_VOTE_INTERVAL_TESTING \
  42. (((MIN_VOTE_SECONDS_TESTING)+(MIN_DIST_SECONDS_TESTING)+1)*2)
  43. #define MIN_VOTE_INTERVAL_TESTING_INITIAL \
  44. ((MIN_VOTE_SECONDS_TESTING)+(MIN_DIST_SECONDS_TESTING)+1)
  45. /* A placeholder for routerstatus_format_entry() when the consensus method
  46. * argument is not applicable. */
  47. #define ROUTERSTATUS_FORMAT_NO_CONSENSUS_METHOD 0
  48. /** The lowest consensus method that we currently support. */
  49. #define MIN_SUPPORTED_CONSENSUS_METHOD 25
  50. /** The highest consensus method that we currently support. */
  51. #define MAX_SUPPORTED_CONSENSUS_METHOD 28
  52. /** Lowest consensus method where authorities vote on ed25519 ids and ensure
  53. * ed25519 id consistency. */
  54. #define MIN_METHOD_FOR_ED25519_ID_VOTING 22
  55. /** Lowest consensus method where authorities may include a shared random
  56. * value(s). */
  57. #define MIN_METHOD_FOR_SHARED_RANDOM 23
  58. /** Lowest consensus method where authorities drop all nodes that don't get
  59. * the Valid flag. */
  60. #define MIN_METHOD_FOR_EXCLUDING_INVALID_NODES 24
  61. /** Lowest consensus method where authorities vote on required/recommended
  62. * protocols. */
  63. #define MIN_METHOD_FOR_RECOMMENDED_PROTOCOLS 25
  64. /** Lowest consensus method where authorities add protocols to routerstatus
  65. * entries. */
  66. #define MIN_METHOD_FOR_RS_PROTOCOLS 25
  67. /** Lowest consensus method where authorities initialize bandwidth weights to 1
  68. * instead of 0. See #14881 */
  69. #define MIN_METHOD_FOR_INIT_BW_WEIGHTS_ONE 26
  70. /** Lowest consensus method where the microdesc consensus contains relay IPv6
  71. * addresses. See #23826 and #20916. */
  72. #define MIN_METHOD_FOR_A_LINES_IN_MICRODESC_CONSENSUS 27
  73. /** Lowest consensus method where microdescriptors do not contain relay IPv6
  74. * addresses. See #23828 and #20916. */
  75. #define MIN_METHOD_FOR_NO_A_LINES_IN_MICRODESC 28
  76. /** Default bandwidth to clip unmeasured bandwidths to using method >=
  77. * MIN_METHOD_TO_CLIP_UNMEASURED_BW. (This is not a consensus method; do not
  78. * get confused with the above macros.) */
  79. #define DEFAULT_MAX_UNMEASURED_BW_KB 20
  80. void dirvote_free_all(void);
  81. /* vote manipulation */
  82. char *networkstatus_compute_consensus(smartlist_t *votes,
  83. int total_authorities,
  84. crypto_pk_t *identity_key,
  85. crypto_pk_t *signing_key,
  86. const char *legacy_identity_key_digest,
  87. crypto_pk_t *legacy_signing_key,
  88. consensus_flavor_t flavor);
  89. int networkstatus_add_detached_signatures(networkstatus_t *target,
  90. ns_detached_signatures_t *sigs,
  91. const char *source,
  92. int severity,
  93. const char **msg_out);
  94. char *networkstatus_get_detached_signatures(smartlist_t *consensuses);
  95. void ns_detached_signatures_free_(ns_detached_signatures_t *s);
  96. #define ns_detached_signatures_free(s) \
  97. FREE_AND_NULL(ns_detached_signatures_t, ns_detached_signatures_free_, (s))
  98. /* cert manipulation */
  99. authority_cert_t *authority_cert_dup(authority_cert_t *cert);
  100. /* vote scheduling */
  101. /** Scheduling information for a voting interval. */
  102. typedef struct {
  103. /** When do we generate and distribute our vote for this interval? */
  104. time_t voting_starts;
  105. /** When do we send an HTTP request for any votes that we haven't
  106. * been posted yet?*/
  107. time_t fetch_missing_votes;
  108. /** When do we give up on getting more votes and generate a consensus? */
  109. time_t voting_ends;
  110. /** When do we send an HTTP request for any signatures we're expecting to
  111. * see on the consensus? */
  112. time_t fetch_missing_signatures;
  113. /** When do we publish the consensus? */
  114. time_t interval_starts;
  115. /* True iff we have generated and distributed our vote. */
  116. int have_voted;
  117. /* True iff we've requested missing votes. */
  118. int have_fetched_missing_votes;
  119. /* True iff we have built a consensus and sent the signatures around. */
  120. int have_built_consensus;
  121. /* True iff we've fetched missing signatures. */
  122. int have_fetched_missing_signatures;
  123. /* True iff we have published our consensus. */
  124. int have_published_consensus;
  125. /* True iff this voting schedule was set on demand meaning not through the
  126. * normal vote operation of a dirauth or when a consensus is set. This only
  127. * applies to a directory authority that needs to recalculate the voting
  128. * timings only for the first vote even though this object was initilized
  129. * prior to voting. */
  130. int created_on_demand;
  131. } voting_schedule_t;
  132. void dirvote_get_preferred_voting_intervals(vote_timing_t *timing_out);
  133. time_t dirvote_get_start_of_next_interval(time_t now,
  134. int interval,
  135. int offset);
  136. void dirvote_recalculate_timing(const or_options_t *options, time_t now);
  137. void dirvote_act(const or_options_t *options, time_t now);
  138. time_t dirvote_get_next_valid_after_time(void);
  139. /* invoked on timers and by outside triggers. */
  140. struct pending_vote_t * dirvote_add_vote(const char *vote_body,
  141. const char **msg_out,
  142. int *status_out);
  143. int dirvote_add_signatures(const char *detached_signatures_body,
  144. const char *source,
  145. const char **msg_out);
  146. /* Item access */
  147. MOCK_DECL(const char*, dirvote_get_pending_consensus,
  148. (consensus_flavor_t flav));
  149. MOCK_DECL(const char*, dirvote_get_pending_detached_signatures, (void));
  150. #define DGV_BY_ID 1
  151. #define DGV_INCLUDE_PENDING 2
  152. #define DGV_INCLUDE_PREVIOUS 4
  153. const cached_dir_t *dirvote_get_vote(const char *fp, int flags);
  154. void set_routerstatus_from_routerinfo(routerstatus_t *rs,
  155. node_t *node,
  156. routerinfo_t *ri, time_t now,
  157. int listbadexits);
  158. networkstatus_t *
  159. dirserv_generate_networkstatus_vote_obj(crypto_pk_t *private_key,
  160. authority_cert_t *cert);
  161. microdesc_t *dirvote_create_microdescriptor(const routerinfo_t *ri,
  162. int consensus_method);
  163. ssize_t dirvote_format_microdesc_vote_line(char *out, size_t out_len,
  164. const microdesc_t *md,
  165. int consensus_method_low,
  166. int consensus_method_high);
  167. vote_microdesc_hash_t *dirvote_format_all_microdesc_vote_lines(
  168. const routerinfo_t *ri,
  169. time_t now,
  170. smartlist_t *microdescriptors_out);
  171. int vote_routerstatus_find_microdesc_hash(char *digest256_out,
  172. const vote_routerstatus_t *vrs,
  173. int method,
  174. digest_algorithm_t alg);
  175. document_signature_t *voter_get_sig_by_algorithm(
  176. const networkstatus_voter_info_t *voter,
  177. digest_algorithm_t alg);
  178. #ifdef DIRVOTE_PRIVATE
  179. STATIC int32_t dirvote_get_intermediate_param_value(
  180. const smartlist_t *param_list,
  181. const char *keyword,
  182. int32_t default_val);
  183. STATIC char *format_networkstatus_vote(crypto_pk_t *private_key,
  184. networkstatus_t *v3_ns);
  185. STATIC smartlist_t *dirvote_compute_params(smartlist_t *votes, int method,
  186. int total_authorities);
  187. STATIC char *compute_consensus_package_lines(smartlist_t *votes);
  188. STATIC char *make_consensus_method_list(int low, int high, const char *sep);
  189. STATIC int
  190. networkstatus_compute_bw_weights_v10(smartlist_t *chunks, int64_t G,
  191. int64_t M, int64_t E, int64_t D,
  192. int64_t T, int64_t weight_scale);
  193. #endif /* defined(DIRVOTE_PRIVATE) */
  194. #endif /* !defined(TOR_DIRVOTE_H) */