2022-03-10 05:31:11 +00:00
|
|
|
# EIP-4844 -- The Beacon Chain
|
|
|
|
|
|
|
|
**Notice**: This document is a work-in-progress for researchers and implementers.
|
|
|
|
|
|
|
|
## Table of contents
|
|
|
|
|
|
|
|
<!-- TOC -->
|
|
|
|
<!-- START doctoc generated TOC please keep comment here to allow auto update -->
|
|
|
|
<!-- DON'T EDIT THIS SECTION, INSTEAD RE-RUN doctoc TO UPDATE -->
|
|
|
|
|
|
|
|
- [Introduction](#introduction)
|
|
|
|
- [Custom types](#custom-types)
|
|
|
|
- [Constants](#constants)
|
2022-03-14 18:08:50 +00:00
|
|
|
- [Domain types](#domain-types)
|
2022-03-10 05:31:11 +00:00
|
|
|
- [Preset](#preset)
|
|
|
|
- [Trusted setup](#trusted-setup)
|
|
|
|
- [Configuration](#configuration)
|
|
|
|
- [Containers](#containers)
|
|
|
|
- [Extended containers](#extended-containers)
|
|
|
|
- [`BeaconBlockBody`](#beaconblockbody)
|
|
|
|
- [Helper functions](#helper-functions)
|
2022-03-14 18:08:50 +00:00
|
|
|
- [KZG core](#kzg-core)
|
2022-06-20 13:26:41 +00:00
|
|
|
- [`lincomb`](#lincomb)
|
2022-03-14 18:08:50 +00:00
|
|
|
- [`blob_to_kzg`](#blob_to_kzg)
|
|
|
|
- [`kzg_to_versioned_hash`](#kzg_to_versioned_hash)
|
2022-03-10 05:31:11 +00:00
|
|
|
- [Misc](#misc)
|
|
|
|
- [`tx_peek_blob_versioned_hashes`](#tx_peek_blob_versioned_hashes)
|
|
|
|
- [`verify_kzgs_against_transactions`](#verify_kzgs_against_transactions)
|
|
|
|
- [Beacon chain state transition function](#beacon-chain-state-transition-function)
|
|
|
|
- [Block processing](#block-processing)
|
|
|
|
- [Blob KZGs](#blob-kzgs)
|
|
|
|
- [Testing](#testing)
|
|
|
|
|
|
|
|
<!-- END doctoc generated TOC please keep comment here to allow auto update -->
|
|
|
|
<!-- /TOC -->
|
|
|
|
|
|
|
|
## Introduction
|
|
|
|
|
2022-03-14 17:54:54 +00:00
|
|
|
This upgrade adds blobs to the beacon chain as part of EIP-4844.
|
2022-03-10 05:31:11 +00:00
|
|
|
|
|
|
|
## Custom types
|
|
|
|
|
|
|
|
| Name | SSZ equivalent | Description |
|
|
|
|
| - | - | - |
|
|
|
|
| `BLSFieldElement` | `uint256` | `x < BLS_MODULUS` |
|
|
|
|
| `Blob` | `Vector[BLSFieldElement, FIELD_ELEMENTS_PER_BLOB]` | |
|
|
|
|
| `VersionedHash` | `Bytes32` | |
|
|
|
|
| `KZGCommitment` | `Bytes48` | Same as BLS standard "is valid pubkey" check but also allows `0x00..00` for point-at-infinity |
|
2022-06-13 12:30:12 +00:00
|
|
|
| `KZGProof` | Bytes48 | Same as for `KZGCommitment` |
|
2022-03-10 05:31:11 +00:00
|
|
|
|
|
|
|
## Constants
|
|
|
|
|
|
|
|
| Name | Value |
|
|
|
|
| - | - |
|
|
|
|
| `BLOB_TX_TYPE` | `uint8(0x05)` |
|
|
|
|
| `FIELD_ELEMENTS_PER_BLOB` | `4096` |
|
|
|
|
| `BLS_MODULUS` | `52435875175126190479447740508185965837690552500527637822603658699938581184513` |
|
2022-06-13 12:36:31 +00:00
|
|
|
| `ROOTS_OF_UNITY` | `Vector[BLSFieldElement, FIELD_ELEMENTS_PER_BLOB]` |
|
2022-03-10 05:31:11 +00:00
|
|
|
|
2022-03-14 17:54:54 +00:00
|
|
|
### Domain types
|
|
|
|
|
|
|
|
| Name | Value |
|
|
|
|
| - | - |
|
|
|
|
| `DOMAIN_BLOBS_SIDECAR` | `DomainType('0x0a000000')` |
|
2022-03-10 05:31:11 +00:00
|
|
|
|
|
|
|
## Preset
|
|
|
|
|
|
|
|
### Trusted setup
|
|
|
|
|
|
|
|
The trusted setup is part of the preset: during testing a `minimal` insecure variant may be used,
|
|
|
|
but reusing the `mainnet` settings in public networks is a critical security requirement.
|
|
|
|
|
|
|
|
| Name | Value |
|
|
|
|
| - | - |
|
|
|
|
| `KZG_SETUP_G2` | `Vector[G2Point, FIELD_ELEMENTS_PER_BLOB]`, contents TBD |
|
2022-04-13 14:04:55 +00:00
|
|
|
| `KZG_SETUP_LAGRANGE` | `Vector[KZGCommitment, FIELD_ELEMENTS_PER_BLOB]`, contents TBD |
|
2022-03-10 05:31:11 +00:00
|
|
|
|
|
|
|
## Configuration
|
|
|
|
|
|
|
|
|
|
|
|
## Containers
|
|
|
|
|
|
|
|
### Extended containers
|
|
|
|
|
|
|
|
#### `BeaconBlockBody`
|
|
|
|
|
|
|
|
Note: `BeaconBlock` and `SignedBeaconBlock` types are updated indirectly.
|
|
|
|
|
|
|
|
```python
|
|
|
|
class BeaconBlockBody(Container):
|
|
|
|
randao_reveal: BLSSignature
|
|
|
|
eth1_data: Eth1Data # Eth1 data vote
|
|
|
|
graffiti: Bytes32 # Arbitrary data
|
|
|
|
# Operations
|
|
|
|
proposer_slashings: List[ProposerSlashing, MAX_PROPOSER_SLASHINGS]
|
|
|
|
attester_slashings: List[AttesterSlashing, MAX_ATTESTER_SLASHINGS]
|
|
|
|
attestations: List[Attestation, MAX_ATTESTATIONS]
|
|
|
|
deposits: List[Deposit, MAX_DEPOSITS]
|
|
|
|
voluntary_exits: List[SignedVoluntaryExit, MAX_VOLUNTARY_EXITS]
|
|
|
|
sync_aggregate: SyncAggregate
|
|
|
|
# Execution
|
|
|
|
execution_payload: ExecutionPayload
|
2022-03-14 17:54:54 +00:00
|
|
|
blob_kzgs: List[KZGCommitment, MAX_BLOBS_PER_BLOCK] # [New in EIP-4844]
|
2022-03-10 05:31:11 +00:00
|
|
|
```
|
|
|
|
|
|
|
|
## Helper functions
|
|
|
|
|
2022-03-14 17:54:54 +00:00
|
|
|
### KZG core
|
|
|
|
|
|
|
|
KZG core functions. These are also defined in EIP-4844 execution specs.
|
|
|
|
|
2022-06-20 13:26:41 +00:00
|
|
|
#### `lincomb`
|
2022-03-14 17:54:54 +00:00
|
|
|
|
|
|
|
```python
|
2022-06-13 12:36:31 +00:00
|
|
|
def lincomb(points: List[KZGCommitment], scalars: List[BLSFieldElement]) -> KZGCommitment:
|
|
|
|
"""
|
|
|
|
BLS multiscalar multiplication. This function can be optimized using Pippenger's algorithm and variants.
|
|
|
|
"""
|
|
|
|
r = bls.Z1
|
|
|
|
for x, a in zip(points, scalars):
|
|
|
|
r = bls.add(r, bls.multiply(x, a))
|
|
|
|
return r
|
2022-06-20 13:26:41 +00:00
|
|
|
```
|
2022-06-13 12:36:31 +00:00
|
|
|
|
2022-06-20 13:26:41 +00:00
|
|
|
#### `blob_to_kzg`
|
|
|
|
|
|
|
|
```python
|
2022-03-14 17:54:54 +00:00
|
|
|
def blob_to_kzg(blob: Blob) -> KZGCommitment:
|
2022-06-13 12:36:31 +00:00
|
|
|
return lincomb(blob, KZG_SETUP_LAGRANGE)
|
2022-03-14 17:54:54 +00:00
|
|
|
```
|
|
|
|
|
|
|
|
#### `kzg_to_versioned_hash`
|
|
|
|
|
|
|
|
```python
|
|
|
|
def kzg_to_versioned_hash(kzg: KZGCommitment) -> VersionedHash:
|
|
|
|
return BLOB_COMMITMENT_VERSION_KZG + hash(kzg)[1:]
|
|
|
|
```
|
|
|
|
|
2022-03-10 05:31:11 +00:00
|
|
|
### Misc
|
|
|
|
|
|
|
|
#### `tx_peek_blob_versioned_hashes`
|
|
|
|
|
|
|
|
This function retrieves the hashes from the `SignedBlobTransaction` as defined in EIP-4844, using SSZ offsets.
|
|
|
|
Offsets are little-endian `uint32` values, as defined in the [SSZ specification](../../ssz/simple-serialize.md).
|
|
|
|
|
|
|
|
```python
|
|
|
|
def tx_peek_blob_versioned_hashes(opaque_tx: Transaction) -> Sequence[VersionedHash]:
|
|
|
|
assert opaque_tx[0] == BLOB_TX_TYPE
|
|
|
|
message_offset = 1 + uint32.decode_bytes(opaque_tx[1:5])
|
|
|
|
# field offset: 32 + 8 + 32 + 32 + 8 + 4 + 32 + 4 + 4 = 156
|
|
|
|
blob_versioned_hashes_offset = uint32.decode_bytes(opaque_tx[message_offset+156:message_offset+160])
|
|
|
|
return [VersionedHash(opaque_tx[x:x+32]) for x in range(blob_versioned_hashes_offset, len(opaque_tx), 32)]
|
|
|
|
```
|
|
|
|
|
|
|
|
#### `verify_kzgs_against_transactions`
|
|
|
|
|
|
|
|
```python
|
|
|
|
def verify_kzgs_against_transactions(transactions: Sequence[Transaction], blob_kzgs: Sequence[KZGCommitment]) -> bool:
|
|
|
|
all_versioned_hashes = []
|
|
|
|
for tx in transactions:
|
2022-03-26 15:26:52 +00:00
|
|
|
if tx[0] == BLOB_TX_TYPE:
|
2022-03-10 05:31:11 +00:00
|
|
|
all_versioned_hashes.extend(tx_peek_blob_versioned_hashes(tx))
|
2022-04-10 10:41:49 +00:00
|
|
|
return all_versioned_hashes == [kzg_to_versioned_hash(kzg) for kzg in blob_kzgs]
|
2022-03-10 05:31:11 +00:00
|
|
|
```
|
|
|
|
|
|
|
|
## Beacon chain state transition function
|
|
|
|
|
|
|
|
### Block processing
|
|
|
|
|
|
|
|
```python
|
|
|
|
def process_block(state: BeaconState, block: BeaconBlock) -> None:
|
|
|
|
process_block_header(state, block)
|
|
|
|
if is_execution_enabled(state, block.body):
|
|
|
|
process_execution_payload(state, block.body.execution_payload, EXECUTION_ENGINE)
|
|
|
|
process_randao(state, block.body)
|
|
|
|
process_eth1_data(state, block.body)
|
|
|
|
process_operations(state, block.body)
|
|
|
|
process_sync_aggregate(state, block.body.sync_aggregate)
|
2022-03-14 17:54:54 +00:00
|
|
|
process_blob_kzgs(state, block.body) # [New in EIP-4844]
|
2022-03-10 05:31:11 +00:00
|
|
|
```
|
|
|
|
|
|
|
|
#### Blob KZGs
|
|
|
|
|
|
|
|
```python
|
2022-03-14 20:50:07 +00:00
|
|
|
def process_blob_kzgs(state: BeaconState, body: BeaconBlockBody):
|
2022-03-10 05:31:11 +00:00
|
|
|
assert verify_kzgs_against_transactions(body.execution_payload.transactions, body.blob_kzgs)
|
|
|
|
```
|
|
|
|
|
|
|
|
## Testing
|
|
|
|
|
|
|
|
*Note*: The function `initialize_beacon_state_from_eth1` is modified for pure EIP-4844 testing only.
|
|
|
|
|
|
|
|
The `BeaconState` initialization is unchanged, except for the use of the updated `eip4844.BeaconBlockBody` type
|
|
|
|
when initializing the first body-root:
|
|
|
|
|
|
|
|
```python
|
|
|
|
state.latest_block_header=BeaconBlockHeader(body_root=hash_tree_root(BeaconBlockBody())),
|
|
|
|
```
|
|
|
|
|