aboutsummaryrefslogtreecommitdiff
path: root/nizk/stage1_test.go
blob: 8fc8970d6f9a8cf23200dbe06aafe0982e566ceb (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
package nizk

import (
	"testing"

	. "kesim.org/seal/common"
)

func TestStage1Simple(t *testing.T) {
	id := Curve.RandomScalar()
	b1 := NewBit(id, true)
	b2 := NewBit(id, false)
	bc1, _ := b1.Commit()
	bc2, _ := b2.Commit()

	s1, c1 := b1.CommitStage1()
	s2, c2 := b2.CommitStage1()
	r1, pr1 := s1.RevealStage1() // Note: no Xs.
	r2, pr2 := s2.RevealStage1() // Note: no Xs
	if !bc1.VerifyStage1(c1, r1, pr1) {
		t.Fatal("Could not verify st1 with c1 and pr1, plus=true case")
	}
	if !bc2.VerifyStage1(c2, r2, pr2) {
		t.Fatal("Could not verify st2 with c2 and pr2, plus=false case")
	}
	// Wrong proof test
	if bc1.VerifyStage1(c1, r1, pr2) {
		t.Fatal("Shouldn't be able to verify c1 with pr2")
	}
}

func TestStage1FromScalars(t *testing.T) {
	var id, α, β, x, r *Scalar
	for _, s := range []**Scalar{&id, &α, &β, &x, &r} {
		*s = Curve.RandomScalar()
	}

	b1 := NewBitFromScalars(id, true, α, β)
	b2 := NewBitFromScalars(id, false, α, β)
	bc1, _ := b1.Commit()
	bc2, _ := b2.Commit()

	s1, c1 := b1.CommitStage1FromScalars(r, x)
	s2, c2 := b2.CommitStage1FromScalars(x, r)
	r1, pr1 := s1.RevealStage1() // Note: no Xs
	r2, pr2 := s2.RevealStage1() // Note: no Xs
	if !bc1.VerifyStage1(c1, r1, pr1) {
		t.Fatal("Could not verify st1 with c1 and pr1, plus=true case")
	}
	if !bc2.VerifyStage1(c2, r2, pr2) {
		t.Fatal("Could not verify st2 with c2 and pr2, plus=false case")
	}
	// Wrong proof test
	if bc1.VerifyStage1(c1, r1, pr2) ||
		bc1.VerifyStage1(c2, r2, pr2) ||
		bc2.VerifyStage1(c1, r1, pr2) ||
		bc2.VerifyStage1(c2, r2, pr1) {
		t.Fatal("Shouldn't be able to verify bc_i with c_j or pr_j")
	}
}