@@ -18,7 +18,7 @@ use crate::routing::gossip::NetworkUpdate;
1818use crate :: routing:: router:: { BlindedTail , Path , RouteHop , RouteParameters , TrampolineHop } ;
1919use crate :: sign:: NodeSigner ;
2020use crate :: types:: features:: { ChannelFeatures , NodeFeatures } ;
21- use crate :: types:: payment:: { PaymentHash , PaymentPreimage } ;
21+ use crate :: types:: payment:: { PaymentHash , PaymentPreimage , PaymentSecret } ;
2222use crate :: util:: errors:: { self , APIError } ;
2323use crate :: util:: logger:: Logger ;
2424use crate :: util:: ser:: { LengthCalculatingWriter , Readable , ReadableArgs , Writeable , Writer } ;
@@ -32,9 +32,10 @@ use bitcoin::secp256k1;
3232use bitcoin:: secp256k1:: ecdh:: SharedSecret ;
3333use bitcoin:: secp256k1:: { PublicKey , Scalar , Secp256k1 , SecretKey } ;
3434
35- use crate :: io:: { Cursor , Read } ;
3635use core:: ops:: Deref ;
3736
37+ use crate :: io:: { Cursor , Read } ;
38+ use crate :: ln:: msgs:: { FinalOnionHopData , OutboundOnionPayload } ;
3839#[ allow( unused_imports) ]
3940use crate :: prelude:: * ;
4041
@@ -347,12 +348,18 @@ pub(super) fn build_onion_payloads<'a>(
347348 let mut res: Vec < msgs:: OutboundOnionPayload > = Vec :: with_capacity (
348349 path. hops . len ( ) + path. blinded_tail . as_ref ( ) . map_or ( 0 , |t| t. hops . len ( ) ) ,
349350 ) ;
350- let blinded_tail_with_hop_iter = path. blinded_tail . as_ref ( ) . map ( |bt| BlindedTailHopIter {
351- hops : bt. hops . iter ( ) ,
352- blinding_point : bt. blinding_point ,
353- final_value_msat : bt. final_value_msat ,
354- excess_final_cltv_expiry_delta : bt. excess_final_cltv_expiry_delta ,
355- } ) ;
351+
352+ // don't include blinded tail when Trampoline hops are present
353+ let blinded_tail_with_hop_iter = if path. trampoline_hops . is_empty ( ) {
354+ path. blinded_tail . as_ref ( ) . map ( |bt| BlindedTailHopIter {
355+ hops : bt. hops . iter ( ) ,
356+ blinding_point : bt. blinding_point ,
357+ final_value_msat : bt. final_value_msat ,
358+ excess_final_cltv_expiry_delta : bt. excess_final_cltv_expiry_delta ,
359+ } )
360+ } else {
361+ None
362+ } ;
356363
357364 let ( value_msat, cltv) = build_onion_payloads_callback (
358365 path. hops . iter ( ) ,
@@ -586,7 +593,6 @@ pub(super) fn construct_onion_packet(
586593 )
587594}
588595
589- #[ allow( unused) ]
590596pub ( super ) fn construct_trampoline_onion_packet (
591597 payloads : Vec < msgs:: OutboundTrampolinePayload > , onion_keys : Vec < OnionKeys > ,
592598 prng_seed : [ u8 ; 32 ] , associated_data : & PaymentHash , length : Option < u16 > ,
@@ -1349,21 +1355,124 @@ pub fn create_payment_onion<T: secp256k1::Signing>(
13491355 keysend_preimage : & Option < PaymentPreimage > , invoice_request : Option < & InvoiceRequest > ,
13501356 prng_seed : [ u8 ; 32 ] ,
13511357) -> Result < ( msgs:: OnionPacket , u64 , u32 ) , APIError > {
1352- let onion_keys = construct_onion_keys ( & secp_ctx, & path, & session_priv) . map_err ( |_| {
1353- APIError :: InvalidRoute { err : "Pubkey along hop was maliciously selected" . to_owned ( ) }
1354- } ) ?;
1355- let ( onion_payloads, htlc_msat, htlc_cltv) = build_onion_payloads (
1356- & path,
1358+ create_payment_onion_internal (
1359+ secp_ctx,
1360+ path,
1361+ session_priv,
13571362 total_msat,
13581363 recipient_onion,
13591364 cur_block_height,
1365+ payment_hash,
13601366 keysend_preimage,
13611367 invoice_request,
1362- ) ?;
1363- let onion_packet = construct_onion_packet ( onion_payloads, onion_keys, prng_seed, payment_hash)
1368+ prng_seed,
1369+ None ,
1370+ None ,
1371+ None ,
1372+ )
1373+ }
1374+
1375+ /// Build a payment onion, returning the first hop msat and cltv values as well.
1376+ /// `cur_block_height` should be set to the best known block height + 1.
1377+ pub ( crate ) fn create_payment_onion_internal < T : secp256k1:: Signing > (
1378+ secp_ctx : & Secp256k1 < T > , path : & Path , session_priv : & SecretKey , total_msat : u64 ,
1379+ recipient_onion : & RecipientOnionFields , cur_block_height : u32 , payment_hash : & PaymentHash ,
1380+ keysend_preimage : & Option < PaymentPreimage > , invoice_request : Option < & InvoiceRequest > ,
1381+ prng_seed : [ u8 ; 32 ] , secondary_payment_secret : Option < PaymentSecret > ,
1382+ secondary_session_priv : Option < SecretKey > , secondary_prng_seed : Option < [ u8 ; 32 ] > ,
1383+ ) -> Result < ( msgs:: OnionPacket , u64 , u32 ) , APIError > {
1384+ let mut outer_total_msat = total_msat;
1385+ let mut outer_starting_htlc_offset = cur_block_height;
1386+ let mut outer_session_priv_override = None ;
1387+ let mut trampoline_packet_option = None ;
1388+
1389+ if !path. trampoline_hops . is_empty ( ) {
1390+ let trampoline_payloads;
1391+ ( trampoline_payloads, outer_total_msat, outer_starting_htlc_offset) =
1392+ build_trampoline_onion_payloads (
1393+ path,
1394+ total_msat,
1395+ recipient_onion,
1396+ cur_block_height,
1397+ keysend_preimage,
1398+ ) ?;
1399+
1400+ let onion_keys =
1401+ construct_trampoline_onion_keys ( & secp_ctx, & path, & session_priv) . map_err ( |_| {
1402+ APIError :: InvalidRoute {
1403+ err : "Pubkey along hop was maliciously selected" . to_owned ( ) ,
1404+ }
1405+ } ) ?;
1406+ let trampoline_packet = construct_trampoline_onion_packet (
1407+ trampoline_payloads,
1408+ onion_keys,
1409+ prng_seed,
1410+ payment_hash,
1411+ None ,
1412+ )
13641413 . map_err ( |_| APIError :: InvalidRoute {
13651414 err : "Route size too large considering onion data" . to_owned ( ) ,
13661415 } ) ?;
1416+
1417+ trampoline_packet_option = Some ( trampoline_packet) ;
1418+ }
1419+
1420+ let ( mut onion_payloads, htlc_msat, htlc_cltv) = build_onion_payloads (
1421+ & path,
1422+ outer_total_msat,
1423+ recipient_onion,
1424+ outer_starting_htlc_offset,
1425+ keysend_preimage,
1426+ invoice_request,
1427+ ) ?;
1428+
1429+ if !path. trampoline_hops . is_empty ( ) {
1430+ let last_payload = onion_payloads. pop ( ) . ok_or ( APIError :: InvalidRoute {
1431+ err : "Non-Trampoline path needs at least one hop" . to_owned ( ) ,
1432+ } ) ?;
1433+
1434+ match last_payload {
1435+ OutboundOnionPayload :: Receive { payment_data, .. } => {
1436+ let fee_delta = path. hops . last ( ) . map_or ( 0 , |h| h. fee_msat ) ;
1437+ let cltv_delta = path. hops . last ( ) . map_or ( 0 , |h| h. cltv_expiry_delta ) ;
1438+ let multipath_trampoline_data = payment_data. map ( |d| {
1439+ let trampoline_payment_secret = secondary_payment_secret. unwrap_or_else ( || {
1440+ PaymentSecret ( Sha256 :: hash ( & d. payment_secret . 0 ) . to_byte_array ( ) )
1441+ } ) ;
1442+ let total_msat = fee_delta;
1443+ FinalOnionHopData { payment_secret : trampoline_payment_secret, total_msat }
1444+ } ) ;
1445+ onion_payloads. push ( OutboundOnionPayload :: TrampolineEntrypoint {
1446+ amt_to_forward : fee_delta,
1447+ outgoing_cltv_value : outer_starting_htlc_offset + cltv_delta,
1448+ multipath_trampoline_data,
1449+ trampoline_packet : trampoline_packet_option. unwrap ( ) ,
1450+ } ) ;
1451+ } ,
1452+ _ => {
1453+ return Err ( APIError :: InvalidRoute {
1454+ err : "Last non-Trampoline hop must be of type OutboundOnionPayload::Receive"
1455+ . to_owned ( ) ,
1456+ } ) ;
1457+ } ,
1458+ } ;
1459+
1460+ outer_session_priv_override = Some ( secondary_session_priv. unwrap_or_else ( || {
1461+ let session_priv_hash = Sha256 :: hash ( & session_priv. secret_bytes ( ) ) . to_byte_array ( ) ;
1462+ SecretKey :: from_slice ( & session_priv_hash[ ..] ) . expect ( "You broke SHA-256!" )
1463+ } ) ) ;
1464+ }
1465+
1466+ let outer_session_priv = outer_session_priv_override. as_ref ( ) . unwrap_or ( session_priv) ;
1467+ let onion_keys = construct_onion_keys ( & secp_ctx, & path, outer_session_priv) . map_err ( |_| {
1468+ APIError :: InvalidRoute { err : "Pubkey along hop was maliciously selected" . to_owned ( ) }
1469+ } ) ?;
1470+ let outer_onion_prng_seed = secondary_prng_seed. unwrap_or ( prng_seed) ;
1471+ let onion_packet =
1472+ construct_onion_packet ( onion_payloads, onion_keys, outer_onion_prng_seed, payment_hash)
1473+ . map_err ( |_| APIError :: InvalidRoute {
1474+ err : "Route size too large considering onion data" . to_owned ( ) ,
1475+ } ) ?;
13671476 Ok ( ( onion_packet, htlc_msat, htlc_cltv) )
13681477}
13691478
0 commit comments