vodozemac/olm/session/
chain_key.rsuse hmac::{Hmac, Mac};
use serde::{Deserialize, Serialize};
use sha2::{digest::CtOutput, Sha256};
use zeroize::{Zeroize, ZeroizeOnDrop};
use super::{
message_key::{MessageKey, RemoteMessageKey},
ratchet::RatchetPublicKey,
};
const MESSAGE_KEY_SEED: &[u8; 1] = b"\x01";
const ADVANCEMENT_SEED: &[u8; 1] = b"\x02";
fn expand_chain_key(key: &[u8; 32]) -> Box<[u8; 32]> {
let mut mac =
Hmac::<Sha256>::new_from_slice(key).expect("Can't create HmacSha256 from the key");
mac.update(MESSAGE_KEY_SEED);
let mut output = mac.finalize().into_bytes();
let mut key = Box::new([0u8; 32]);
key.copy_from_slice(output.as_slice());
output.zeroize();
key
}
fn advance(key: &[u8; 32]) -> CtOutput<Hmac<Sha256>> {
let mut mac = Hmac::<Sha256>::new_from_slice(key)
.expect("Couldn't create a valid Hmac object to advance the ratchet");
mac.update(ADVANCEMENT_SEED);
mac.finalize()
}
#[derive(Clone, Serialize, Deserialize, Zeroize, ZeroizeOnDrop)]
pub(super) struct ChainKey {
key: Box<[u8; 32]>,
index: u64,
}
#[derive(Clone, Serialize, Deserialize, Zeroize, ZeroizeOnDrop)]
pub(super) struct RemoteChainKey {
key: Box<[u8; 32]>,
index: u64,
}
impl RemoteChainKey {
pub const fn new(bytes: Box<[u8; 32]>) -> Self {
Self { key: bytes, index: 0 }
}
pub const fn chain_index(&self) -> u64 {
self.index
}
#[cfg(feature = "libolm-compat")]
pub fn from_bytes_and_index(bytes: Box<[u8; 32]>, index: u32) -> Self {
Self { key: bytes, index: index.into() }
}
pub fn advance(&mut self) {
let output = advance(&self.key).into_bytes();
self.key.copy_from_slice(output.as_slice());
self.index += 1;
}
pub fn create_message_key(&mut self) -> RemoteMessageKey {
let key = expand_chain_key(&self.key);
let message_key = RemoteMessageKey::new(key, self.index);
self.advance();
message_key
}
}
impl ChainKey {
pub const fn new(bytes: Box<[u8; 32]>) -> Self {
Self { key: bytes, index: 0 }
}
#[cfg(feature = "libolm-compat")]
pub fn from_bytes_and_index(bytes: Box<[u8; 32]>, index: u32) -> Self {
Self { key: bytes, index: index.into() }
}
pub fn advance(&mut self) {
let output = advance(&self.key).into_bytes();
self.key.copy_from_slice(output.as_slice());
self.index += 1;
}
pub const fn index(&self) -> u64 {
self.index
}
pub fn create_message_key(&mut self, ratchet_key: RatchetPublicKey) -> MessageKey {
let key = expand_chain_key(&self.key);
let message_key = MessageKey::new(key, ratchet_key, self.index);
self.advance();
message_key
}
}
#[cfg(test)]
mod tests {
use super::ChainKey;
use crate::olm::session::chain_key::RemoteChainKey;
#[test]
fn advancing_chain_key_increments_index() {
let mut key = ChainKey::new(Box::new(*b"aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa"));
assert_eq!(key.index(), 0);
key.advance();
assert_eq!(key.index(), 1);
}
#[test]
fn advancing_remote_chain_key_increments_index() {
let mut key = RemoteChainKey::new(Box::new(*b"aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa"));
assert_eq!(key.chain_index(), 0);
key.advance();
assert_eq!(key.chain_index(), 1);
}
}