mirror of
https://github.com/ElementsProject/lightning.git
synced 2025-01-08 14:50:26 +01:00
16656a85cf
We're not using the change_outnum for withdraw tx's (and the way we were calculating it was broken as of the addition of 'multiple outputs'). This removes the change output knowhow from withdraw_tx entirely, and pushes the responsibility up to the caller to include the change output in the output set if desired. Consequently, we also remove the change output knowhow from hsmd.
6.9 KiB
6.9 KiB
1 | # Clients should not give a bad request but not the HSM's decision to crash. |
---|---|
2 | msgtype,hsmstatus_client_bad_request,1000 |
3 | msgdata,hsmstatus_client_bad_request,id,node_id, |
4 | msgdata,hsmstatus_client_bad_request,description,wirestring, |
5 | msgdata,hsmstatus_client_bad_request,len,u16, |
6 | msgdata,hsmstatus_client_bad_request,msg,u8,len |
7 | #include <bitcoin/chainparams.h> |
8 | # Start the HSM. |
9 | msgtype,hsm_init,11 |
10 | msgdata,hsm_init,bip32_key_version,bip32_key_version, |
11 | msgdata,hsm_init,chainparams,chainparams, |
12 | msgdata,hsm_init,hsm_encryption_key,?secret, |
13 | msgdata,hsm_init,dev_force_privkey,?privkey, |
14 | msgdata,hsm_init,dev_force_bip32_seed,?secret, |
15 | msgdata,hsm_init,dev_force_channel_secrets,?secrets, |
16 | msgdata,hsm_init,dev_force_channel_secrets_shaseed,?sha256, |
17 | #include <common/bip32.h> |
18 | msgtype,hsm_init_reply,111 |
19 | msgdata,hsm_init_reply,node_id,node_id, |
20 | msgdata,hsm_init_reply,bip32,ext_key, |
21 | # Get a new HSM FD, with the specified capabilities |
22 | msgtype,hsm_client_hsmfd,9 |
23 | # Which identity to use for requests |
24 | msgdata,hsm_client_hsmfd,id,node_id, |
25 | # Database id for this client, if any. |
26 | msgdata,hsm_client_hsmfd,dbid,u64, |
27 | msgdata,hsm_client_hsmfd,capabilities,u64, |
28 | # No content, just an fd. |
29 | msgtype,hsm_client_hsmfd_reply,109 |
30 | #include <common/derive_basepoints.h> |
31 | # Get the basepoints and funding key for this specific channel. |
32 | msgtype,hsm_get_channel_basepoints,10 |
33 | msgdata,hsm_get_channel_basepoints,peerid,node_id, |
34 | msgdata,hsm_get_channel_basepoints,dbid,u64, |
35 | msgtype,hsm_get_channel_basepoints_reply,110 |
36 | msgdata,hsm_get_channel_basepoints_reply,basepoints,basepoints, |
37 | msgdata,hsm_get_channel_basepoints_reply,funding_pubkey,pubkey, |
38 | # Return signature for a funding tx. |
39 | #include <common/utxo.h> |
40 | # Master asks the HSM to sign a node_announcement |
41 | msgtype,hsm_node_announcement_sig_req,6 |
42 | msgdata,hsm_node_announcement_sig_req,annlen,u16, |
43 | msgdata,hsm_node_announcement_sig_req,announcement,u8,annlen |
44 | msgtype,hsm_node_announcement_sig_reply,106 |
45 | msgdata,hsm_node_announcement_sig_reply,signature,secp256k1_ecdsa_signature, |
46 | # Sign a withdrawal request |
47 | msgtype,hsm_sign_withdrawal,7 |
48 | msgdata,hsm_sign_withdrawal,num_outputs,u16, |
49 | msgdata,hsm_sign_withdrawal,outputs,bitcoin_tx_output,num_outputs |
50 | msgdata,hsm_sign_withdrawal,num_inputs,u16, |
51 | msgdata,hsm_sign_withdrawal,inputs,utxo,num_inputs |
52 | msgdata,hsm_sign_withdrawal,nlocktime,u32, |
53 | msgtype,hsm_sign_withdrawal_reply,107 |
54 | msgdata,hsm_sign_withdrawal_reply,tx,bitcoin_tx, |
55 | # Sign an invoice |
56 | msgtype,hsm_sign_invoice,8 |
57 | msgdata,hsm_sign_invoice,len,u16, |
58 | msgdata,hsm_sign_invoice,u5bytes,u8,len |
59 | msgdata,hsm_sign_invoice,hrplen,u16, |
60 | msgdata,hsm_sign_invoice,hrp,u8,hrplen |
61 | msgtype,hsm_sign_invoice_reply,108 |
62 | msgdata,hsm_sign_invoice_reply,sig,secp256k1_ecdsa_recoverable_signature, |
63 | # Give me ECDH(node-id-secret,point) |
64 | msgtype,hsm_ecdh_req,1 |
65 | msgdata,hsm_ecdh_req,point,pubkey, |
66 | msgtype,hsm_ecdh_resp,100 |
67 | msgdata,hsm_ecdh_resp,ss,secret, |
68 | msgtype,hsm_cannouncement_sig_req,2 |
69 | msgdata,hsm_cannouncement_sig_req,calen,u16, |
70 | msgdata,hsm_cannouncement_sig_req,ca,u8,calen |
71 | msgtype,hsm_cannouncement_sig_reply,102 |
72 | msgdata,hsm_cannouncement_sig_reply,node_signature,secp256k1_ecdsa_signature, |
73 | msgdata,hsm_cannouncement_sig_reply,bitcoin_signature,secp256k1_ecdsa_signature, |
74 | msgtype,hsm_cupdate_sig_req,3 |
75 | msgdata,hsm_cupdate_sig_req,culen,u16, |
76 | msgdata,hsm_cupdate_sig_req,cu,u8,culen |
77 | msgtype,hsm_cupdate_sig_reply,103 |
78 | msgdata,hsm_cupdate_sig_reply,culen,u16, |
79 | msgdata,hsm_cupdate_sig_reply,cu,u8,culen |
80 | # Master asks HSM to sign a commitment transaction. |
81 | msgtype,hsm_sign_commitment_tx,5 |
82 | msgdata,hsm_sign_commitment_tx,peer_id,node_id, |
83 | msgdata,hsm_sign_commitment_tx,channel_dbid,u64, |
84 | msgdata,hsm_sign_commitment_tx,tx,bitcoin_tx, |
85 | msgdata,hsm_sign_commitment_tx,remote_funding_key,pubkey, |
86 | msgtype,hsm_sign_commitment_tx_reply,105 |
87 | msgdata,hsm_sign_commitment_tx_reply,sig,bitcoin_signature, |
88 | # Onchaind asks HSM to sign a spend to-us. Four variants, since each set |
89 | # of keys is derived differently... |
90 | # FIXME: Have master tell hsmd the keyindex, so it can validate output! |
91 | msgtype,hsm_sign_delayed_payment_to_us,12 |
92 | msgdata,hsm_sign_delayed_payment_to_us,commit_num,u64, |
93 | msgdata,hsm_sign_delayed_payment_to_us,tx,bitcoin_tx, |
94 | msgdata,hsm_sign_delayed_payment_to_us,wscript_len,u16, |
95 | msgdata,hsm_sign_delayed_payment_to_us,wscript,u8,wscript_len |
96 | msgtype,hsm_sign_remote_htlc_to_us,13 |
97 | msgdata,hsm_sign_remote_htlc_to_us,remote_per_commitment_point,pubkey, |
98 | msgdata,hsm_sign_remote_htlc_to_us,tx,bitcoin_tx, |
99 | msgdata,hsm_sign_remote_htlc_to_us,wscript_len,u16, |
100 | msgdata,hsm_sign_remote_htlc_to_us,wscript,u8,wscript_len |
101 | msgtype,hsm_sign_penalty_to_us,14 |
102 | msgdata,hsm_sign_penalty_to_us,revocation_secret,secret, |
103 | msgdata,hsm_sign_penalty_to_us,tx,bitcoin_tx, |
104 | msgdata,hsm_sign_penalty_to_us,wscript_len,u16, |
105 | msgdata,hsm_sign_penalty_to_us,wscript,u8,wscript_len |
106 | # Onchaind asks HSM to sign a local HTLC success or HTLC timeout tx. |
107 | msgtype,hsm_sign_local_htlc_tx,16 |
108 | msgdata,hsm_sign_local_htlc_tx,commit_num,u64, |
109 | msgdata,hsm_sign_local_htlc_tx,tx,bitcoin_tx, |
110 | msgdata,hsm_sign_local_htlc_tx,wscript_len,u16, |
111 | msgdata,hsm_sign_local_htlc_tx,wscript,u8,wscript_len |
112 | # Openingd/channeld asks HSM to sign the other sides' commitment tx. |
113 | msgtype,hsm_sign_remote_commitment_tx,19 |
114 | msgdata,hsm_sign_remote_commitment_tx,tx,bitcoin_tx, |
115 | msgdata,hsm_sign_remote_commitment_tx,remote_funding_key,pubkey, |
116 | msgdata,hsm_sign_remote_commitment_tx,remote_per_commit,pubkey, |
117 | msgdata,hsm_sign_remote_commitment_tx,option_static_remotekey,bool, |
118 | # channeld asks HSM to sign remote HTLC tx. |
119 | msgtype,hsm_sign_remote_htlc_tx,20 |
120 | msgdata,hsm_sign_remote_htlc_tx,tx,bitcoin_tx, |
121 | msgdata,hsm_sign_remote_htlc_tx,len,u16, |
122 | msgdata,hsm_sign_remote_htlc_tx,wscript,u8,len |
123 | msgdata,hsm_sign_remote_htlc_tx,remote_per_commit_point,pubkey, |
124 | # closingd asks HSM to sign mutual close tx. |
125 | msgtype,hsm_sign_mutual_close_tx,21 |
126 | msgdata,hsm_sign_mutual_close_tx,tx,bitcoin_tx, |
127 | msgdata,hsm_sign_mutual_close_tx,remote_funding_key,pubkey, |
128 | # Reply for all the above requests. |
129 | msgtype,hsm_sign_tx_reply,112 |
130 | msgdata,hsm_sign_tx_reply,sig,bitcoin_signature, |
131 | # Openingd/channeld/onchaind asks for Nth per_commitment_point, if > 2, gets N-2 secret. |
132 | msgtype,hsm_get_per_commitment_point,18 |
133 | msgdata,hsm_get_per_commitment_point,n,u64, |
134 | msgtype,hsm_get_per_commitment_point_reply,118 |
135 | msgdata,hsm_get_per_commitment_point_reply,per_commitment_point,pubkey, |
136 | msgdata,hsm_get_per_commitment_point_reply,old_commitment_secret,?secret, |
137 | # master -> hsmd: do you have a memleak? |
138 | msgtype,hsm_dev_memleak,33 |
139 | msgtype,hsm_dev_memleak_reply,133 |
140 | msgdata,hsm_dev_memleak_reply,leak,bool, |
141 | # channeld asks to check if claimed future commitment_secret is correct. |
142 | msgtype,hsm_check_future_secret,22 |
143 | msgdata,hsm_check_future_secret,n,u64, |
144 | msgdata,hsm_check_future_secret,commitment_secret,secret, |
145 | msgtype,hsm_check_future_secret_reply,122 |
146 | msgdata,hsm_check_future_secret_reply,correct,bool, |
147 | # lightningd asks us to sign a string. |
148 | msgtype,hsm_sign_message,23 |
149 | msgdata,hsm_sign_message,len,u16, |
150 | msgdata,hsm_sign_message,msg,u8,len |
151 | msgtype,hsm_sign_message_reply,123 |
152 | msgdata,hsm_sign_message_reply,sig,secp256k1_ecdsa_recoverable_signature, |