2020-02-16 19:08:19 +01:00
|
|
|
# Constantine
|
|
|
|
# Copyright (c) 2018-2019 Status Research & Development GmbH
|
|
|
|
# Copyright (c) 2020-Present Mamy André-Ratsimbazafy
|
|
|
|
# Licensed and distributed under either of
|
|
|
|
# * MIT license (license terms in the root directory or at http://opensource.org/licenses/MIT).
|
|
|
|
# * Apache v2 license (license terms in the root directory or at http://www.apache.org/licenses/LICENSE-2.0).
|
|
|
|
# at your option. This file may not be copied, modified, or distributed except according to those terms.
|
|
|
|
|
2020-04-14 20:46:39 +02:00
|
|
|
import std/[unittest, times],
|
2022-02-27 01:49:08 +01:00
|
|
|
../../constantine/math/io/[io_bigints, io_fields],
|
|
|
|
../../constantine/math/config/curves,
|
|
|
|
../../constantine/platforms/abstractions,
|
|
|
|
../../constantine/math/arithmetic,
|
2022-02-21 01:04:53 +01:00
|
|
|
../../helpers/prng_unsafe
|
2020-02-16 19:08:19 +01:00
|
|
|
|
2020-04-14 20:46:39 +02:00
|
|
|
# Random seed for reproducibility
|
|
|
|
var rng: RngState
|
|
|
|
let seed = uint32(getTime().toUnix() and (1'i64 shl 32 - 1)) # unixTime mod 2^32
|
|
|
|
rng.seed(seed)
|
2020-06-15 22:58:56 +02:00
|
|
|
echo "\n------------------------------------------------------\n"
|
2020-04-14 20:46:39 +02:00
|
|
|
echo "test_io_fields xoshiro512** seed: ", seed
|
2020-02-16 19:08:19 +01:00
|
|
|
|
|
|
|
proc main() =
|
2023-02-16 12:45:05 +01:00
|
|
|
suite "IO - Finite fields" & " [" & $WordBitWidth & "-bit words]":
|
2020-02-16 19:08:19 +01:00
|
|
|
test "Parsing and serializing round-trip on uint64":
|
2020-03-16 16:33:51 +01:00
|
|
|
# 101 ---------------------------------
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 0
|
|
|
|
let x = BaseType(0)
|
|
|
|
let x_bytes = cast[array[sizeof(BaseType), byte]](x)
|
|
|
|
var f: Fp[Fake101]
|
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[sizeof(BaseType), byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-03-16 16:33:51 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 1
|
|
|
|
let x = BaseType(1)
|
|
|
|
let x_bytes = cast[array[sizeof(BaseType), byte]](x)
|
|
|
|
var f: Fp[Fake101]
|
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[sizeof(BaseType), byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-03-16 16:33:51 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
# Mersenne 61 ---------------------------------
|
2020-02-16 19:08:19 +01:00
|
|
|
block:
|
|
|
|
# "Little-endian" - 0
|
|
|
|
let x = 0'u64
|
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne61]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[8, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 1
|
|
|
|
let x = 1'u64
|
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne61]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[8, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 2^31
|
|
|
|
let x = 1'u64 shl 31
|
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne61]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[8, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 2^32
|
|
|
|
let x = 1'u64 shl 32
|
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne61]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[8, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes
|
|
|
|
|
|
|
|
# Mersenne 127 ---------------------------------
|
|
|
|
block:
|
|
|
|
# "Little-endian" - 2^63
|
|
|
|
let x = 1'u64 shl 63
|
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne127]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[16, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes[0 ..< 8]
|
|
|
|
|
|
|
|
block: # "Little-endian" - single random
|
2020-04-14 20:46:39 +02:00
|
|
|
let x = rng.random_unsafe(uint64)
|
2020-02-16 19:08:19 +01:00
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne127]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[16, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes[0 ..< 8]
|
|
|
|
|
|
|
|
block: # "Little-endian" - 10 random cases
|
|
|
|
for _ in 0 ..< 10:
|
2020-04-14 20:46:39 +02:00
|
|
|
let x = rng.random_unsafe(uint64)
|
2020-02-16 19:08:19 +01:00
|
|
|
let x_bytes = cast[array[8, byte]](x)
|
2020-02-24 17:10:09 +01:00
|
|
|
var f: Fp[Mersenne127]
|
2020-02-16 19:08:19 +01:00
|
|
|
f.fromUint(x)
|
|
|
|
|
|
|
|
var r_bytes: array[16, byte]
|
2022-02-28 09:23:26 +01:00
|
|
|
marshal(r_bytes, f, littleEndian)
|
2020-02-16 19:08:19 +01:00
|
|
|
check: x_bytes == r_bytes[0 ..< 8]
|
|
|
|
|
|
|
|
test "Round trip on large constant":
|
|
|
|
block: # 2^126
|
|
|
|
const p = "0x40000000000000000000000000000000"
|
2020-02-24 17:10:09 +01:00
|
|
|
let x = Fp[Mersenne127].fromBig BigInt[127].fromHex(p)
|
2020-02-16 19:08:19 +01:00
|
|
|
let hex = x.toHex(bigEndian)
|
|
|
|
|
|
|
|
check: p == hex
|
|
|
|
|
2020-03-16 16:33:51 +01:00
|
|
|
test "Round trip on prime field of NIST P256 (secp256r1) curve":
|
|
|
|
block: # 2^126
|
|
|
|
const p = "0x0000000000000000000000000000000040000000000000000000000000000000"
|
|
|
|
let x = Fp[P256].fromBig BigInt[256].fromHex(p)
|
|
|
|
let hex = x.toHex(bigEndian)
|
|
|
|
|
|
|
|
check: p == hex
|
|
|
|
|
2020-07-24 22:02:30 +02:00
|
|
|
test "Round trip on prime field of BN254 Snarks curve":
|
|
|
|
block: # 2^126
|
|
|
|
const p = "0x0000000000000000000000000000000040000000000000000000000000000000"
|
|
|
|
let x = Fp[BN254_Snarks].fromBig BigInt[254].fromHex(p)
|
|
|
|
let hex = x.toHex(bigEndian)
|
|
|
|
|
|
|
|
check: p == hex
|
|
|
|
|
2020-03-16 16:33:51 +01:00
|
|
|
test "Round trip on prime field of BLS12_381 curve":
|
|
|
|
block: # 2^126
|
|
|
|
const p = "0x000000000000000000000000000000000000000000000000000000000000000040000000000000000000000000000000"
|
|
|
|
let x = Fp[BLS12_381].fromBig BigInt[381].fromHex(p)
|
|
|
|
let hex = x.toHex(bigEndian)
|
|
|
|
|
|
|
|
check: p == hex
|
|
|
|
|
2023-07-02 17:15:02 +02:00
|
|
|
test "Fuzz #1 - incorrect reduction of BigInt":
|
|
|
|
block:
|
|
|
|
var a{.noInit.}: Fp[BN254_Snarks]
|
|
|
|
a.fromBig(BigInt[254].fromHex("0xdd1119d0c5b065898a0848e21c209153f4622f06cb763e7ef00eef28b94780f8"))
|
|
|
|
|
|
|
|
var b{.noInit.}: Fp[BN254_Snarks]
|
|
|
|
b.fromBig(BigInt[254].fromHex("0x1b7fe00540e9e4e2a8c73208161b2fdd965c84c129af1449ff8cbecd57538bdc"))
|
|
|
|
|
|
|
|
doAssert bool(a == b)
|
|
|
|
|
2020-02-16 19:08:19 +01:00
|
|
|
main()
|