2020-06-18 11:06:34 +00:00
|
|
|
use derivative::Derivative;
|
2022-11-24 20:09:26 +00:00
|
|
|
use smallvec::{smallvec, SmallVec};
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
use ssz::{Decode, Encode};
|
2020-06-18 11:06:34 +00:00
|
|
|
use state_processing::{SigVerifiedOp, VerifyOperation};
|
|
|
|
use std::collections::HashSet;
|
|
|
|
use std::marker::PhantomData;
|
|
|
|
use types::{
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
AttesterSlashing, BeaconState, ChainSpec, EthSpec, ForkName, ProposerSlashing,
|
2023-01-09 00:05:28 +00:00
|
|
|
SignedBlsToExecutionChange, SignedVoluntaryExit, Slot,
|
2020-06-18 11:06:34 +00:00
|
|
|
};
|
|
|
|
|
|
|
|
/// Number of validator indices to store on the stack in `observed_validators`.
|
|
|
|
pub const SMALL_VEC_SIZE: usize = 8;
|
|
|
|
|
|
|
|
/// Stateful tracker for exit/slashing operations seen on the network.
|
|
|
|
///
|
|
|
|
/// Implements the conditions for gossip verification of exits and slashings from the P2P spec.
|
|
|
|
#[derive(Debug, Derivative)]
|
|
|
|
#[derivative(Default(bound = "T: ObservableOperation<E>, E: EthSpec"))]
|
|
|
|
pub struct ObservedOperations<T: ObservableOperation<E>, E: EthSpec> {
|
|
|
|
/// Indices of validators for whom we have already seen an instance of an operation `T`.
|
|
|
|
///
|
|
|
|
/// For voluntary exits, this is the set of all `signed_voluntary_exit.message.validator_index`.
|
|
|
|
/// For proposer slashings, this is the set of all `proposer_slashing.index`.
|
|
|
|
/// For attester slashings, this is the set of all validators who would be slashed by
|
|
|
|
/// previously seen attester slashings, i.e. those validators in the intersection of
|
|
|
|
/// `attestation_1.attester_indices` and `attestation_2.attester_indices`.
|
2020-11-22 23:02:51 +00:00
|
|
|
observed_validator_indices: HashSet<u64>,
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
/// The name of the current fork. The default will be overwritten on first use.
|
|
|
|
#[derivative(Default(value = "ForkName::Base"))]
|
|
|
|
current_fork: ForkName,
|
2020-06-18 11:06:34 +00:00
|
|
|
_phantom: PhantomData<(T, E)>,
|
|
|
|
}
|
|
|
|
|
|
|
|
/// Was the observed operation new and valid for further processing, or a useless duplicate?
|
|
|
|
#[derive(Debug, PartialEq, Eq, Clone)]
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
pub enum ObservationOutcome<T: Encode + Decode, E: EthSpec> {
|
|
|
|
New(SigVerifiedOp<T, E>),
|
2020-06-18 11:06:34 +00:00
|
|
|
AlreadyKnown,
|
|
|
|
}
|
|
|
|
|
2022-11-24 20:09:26 +00:00
|
|
|
/// Trait for operations which can be observed using `ObservedOperations`.
|
2020-06-18 11:06:34 +00:00
|
|
|
pub trait ObservableOperation<E: EthSpec>: VerifyOperation<E> + Sized {
|
|
|
|
/// The set of validator indices involved in this operation.
|
|
|
|
///
|
|
|
|
/// See the comment on `observed_validator_indices` above for detail.
|
|
|
|
fn observed_validators(&self) -> SmallVec<[u64; SMALL_VEC_SIZE]>;
|
|
|
|
}
|
|
|
|
|
|
|
|
impl<E: EthSpec> ObservableOperation<E> for SignedVoluntaryExit {
|
|
|
|
fn observed_validators(&self) -> SmallVec<[u64; SMALL_VEC_SIZE]> {
|
2022-11-24 20:09:26 +00:00
|
|
|
smallvec![self.message.validator_index]
|
2020-06-18 11:06:34 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
impl<E: EthSpec> ObservableOperation<E> for ProposerSlashing {
|
|
|
|
fn observed_validators(&self) -> SmallVec<[u64; SMALL_VEC_SIZE]> {
|
2022-11-24 20:09:26 +00:00
|
|
|
smallvec![self.signed_header_1.message.proposer_index]
|
2020-06-18 11:06:34 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
impl<E: EthSpec> ObservableOperation<E> for AttesterSlashing<E> {
|
|
|
|
fn observed_validators(&self) -> SmallVec<[u64; SMALL_VEC_SIZE]> {
|
2021-01-19 00:34:28 +00:00
|
|
|
let attestation_1_indices = self
|
|
|
|
.attestation_1
|
|
|
|
.attesting_indices
|
|
|
|
.iter()
|
|
|
|
.copied()
|
|
|
|
.collect::<HashSet<u64>>();
|
|
|
|
let attestation_2_indices = self
|
|
|
|
.attestation_2
|
|
|
|
.attesting_indices
|
|
|
|
.iter()
|
|
|
|
.copied()
|
|
|
|
.collect::<HashSet<u64>>();
|
2020-06-18 11:06:34 +00:00
|
|
|
attestation_1_indices
|
|
|
|
.intersection(&attestation_2_indices)
|
|
|
|
.copied()
|
|
|
|
.collect()
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2022-11-24 20:09:26 +00:00
|
|
|
impl<E: EthSpec> ObservableOperation<E> for SignedBlsToExecutionChange {
|
|
|
|
fn observed_validators(&self) -> SmallVec<[u64; SMALL_VEC_SIZE]> {
|
|
|
|
smallvec![self.message.validator_index]
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2020-06-18 11:06:34 +00:00
|
|
|
impl<T: ObservableOperation<E>, E: EthSpec> ObservedOperations<T, E> {
|
|
|
|
pub fn verify_and_observe(
|
2020-11-22 23:02:51 +00:00
|
|
|
&mut self,
|
2020-06-18 11:06:34 +00:00
|
|
|
op: T,
|
|
|
|
head_state: &BeaconState<E>,
|
|
|
|
spec: &ChainSpec,
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
) -> Result<ObservationOutcome<T, E>, T::Error> {
|
|
|
|
self.reset_at_fork_boundary(head_state.slot(), spec);
|
|
|
|
|
2020-11-22 23:02:51 +00:00
|
|
|
let observed_validator_indices = &mut self.observed_validator_indices;
|
2020-06-18 11:06:34 +00:00
|
|
|
let new_validator_indices = op.observed_validators();
|
|
|
|
|
|
|
|
// If all of the new validator indices have been previously observed, short-circuit
|
|
|
|
// the validation. This implements the uniqueness check part of the spec, which for attester
|
|
|
|
// slashings reads:
|
|
|
|
//
|
|
|
|
// At least one index in the intersection of the attesting indices of each attestation has
|
|
|
|
// not yet been seen in any prior attester_slashing.
|
|
|
|
if new_validator_indices
|
|
|
|
.iter()
|
|
|
|
.all(|index| observed_validator_indices.contains(index))
|
|
|
|
{
|
|
|
|
return Ok(ObservationOutcome::AlreadyKnown);
|
|
|
|
}
|
|
|
|
|
|
|
|
// Validate the op using operation-specific logic (`verify_attester_slashing`, etc).
|
|
|
|
let verified_op = op.validate(head_state, spec)?;
|
|
|
|
|
|
|
|
// Add the relevant indices to the set of known indices to prevent processing of duplicates
|
|
|
|
// in the future.
|
|
|
|
observed_validator_indices.extend(new_validator_indices);
|
|
|
|
|
|
|
|
Ok(ObservationOutcome::New(verified_op))
|
|
|
|
}
|
Refactor op pool for speed and correctness (#3312)
## Proposed Changes
This PR has two aims: to speed up attestation packing in the op pool, and to fix bugs in the verification of attester slashings, proposer slashings and voluntary exits. The changes are bundled into a single database schema upgrade (v12).
Attestation packing is sped up by removing several inefficiencies:
- No more recalculation of `attesting_indices` during packing.
- No (unnecessary) examination of the `ParticipationFlags`: a bitfield suffices. See `RewardCache`.
- No re-checking of attestation validity during packing: the `AttestationMap` provides attestations which are "correct by construction" (I have checked this using Hydra).
- No SSZ re-serialization for the clunky `AttestationId` type (it can be removed in a future release).
So far the speed-up seems to be roughly 2-10x, from 500ms down to 50-100ms.
Verification of attester slashings, proposer slashings and voluntary exits is fixed by:
- Tracking the `ForkVersion`s that were used to verify each message inside the `SigVerifiedOp`. This allows us to quickly re-verify that they match the head state's opinion of what the `ForkVersion` should be at the epoch(s) relevant to the message.
- Storing the `SigVerifiedOp` on disk rather than the raw operation. This allows us to continue track the fork versions after a reboot.
This is mostly contained in this commit 52bb1840ae5c4356a8fc3a51e5df23ed65ed2c7f.
## Additional Info
The schema upgrade uses the justified state to re-verify attestations and compute `attesting_indices` for them. It will drop any attestations that fail to verify, by the logic that attestations are most valuable in the few slots after they're observed, and are probably stale and useless by the time a node restarts. Exits and proposer slashings and similarly re-verified to obtain `SigVerifiedOp`s.
This PR contains a runtime killswitch `--paranoid-block-proposal` which opts out of all the optimisations in favour of closely verifying every included message. Although I'm quite sure that the optimisations are correct this flag could be useful in the event of an unforeseen emergency.
Finally, you might notice that the `RewardCache` appears quite useless in its current form because it is only updated on the hot-path immediately before proposal. My hope is that in future we can shift calls to `RewardCache::update` into the background, e.g. while performing the state advance. It is also forward-looking to `tree-states` compatibility, where iterating and indexing `state.{previous,current}_epoch_participation` is expensive and needs to be minimised.
2022-08-29 09:10:26 +00:00
|
|
|
|
|
|
|
/// Reset the cache when crossing a fork boundary.
|
|
|
|
///
|
|
|
|
/// This prevents an attacker from crafting a self-slashing which is only valid before the fork
|
|
|
|
/// (e.g. using the Altair fork domain at a Bellatrix epoch), in order to prevent propagation of
|
|
|
|
/// all other slashings due to the duplicate check.
|
|
|
|
///
|
|
|
|
/// It doesn't matter if this cache gets reset too often, as we reset it on restart anyway and a
|
|
|
|
/// false negative just results in propagation of messages which should have been ignored.
|
|
|
|
///
|
|
|
|
/// In future we could check slashing relevance against the op pool itself, but that would
|
|
|
|
/// require indexing the attester slashings in the op pool by validator index.
|
|
|
|
fn reset_at_fork_boundary(&mut self, head_slot: Slot, spec: &ChainSpec) {
|
|
|
|
let head_fork = spec.fork_name_at_slot::<E>(head_slot);
|
|
|
|
if head_fork != self.current_fork {
|
|
|
|
self.observed_validator_indices.clear();
|
|
|
|
self.current_fork = head_fork;
|
|
|
|
}
|
|
|
|
}
|
2020-06-18 11:06:34 +00:00
|
|
|
}
|