@@ -1353,12 +1353,27 @@ pub fn create_payment_onion<T: secp256k1::Signing>(
1353
1353
keysend_preimage : & Option < PaymentPreimage > , invoice_request : Option < & InvoiceRequest > ,
1354
1354
prng_seed : [ u8 ; 32 ] ,
1355
1355
) -> Result < ( msgs:: OnionPacket , u64 , u32 ) , APIError > {
1356
- let mut trampoline_payloads = vec ! [ ] ;
1356
+ create_payment_onion_internal ( secp_ctx, path, session_priv, total_msat, recipient_onion,
1357
+ cur_block_height, payment_hash, keysend_preimage, invoice_request,
1358
+ prng_seed, None , None , None )
1359
+ }
1360
+
1361
+ /// Build a payment onion, returning the first hop msat and cltv values as well.
1362
+ /// `cur_block_height` should be set to the best known block height + 1.
1363
+ pub ( crate ) fn create_payment_onion_internal < T : secp256k1:: Signing > (
1364
+ secp_ctx : & Secp256k1 < T > , path : & Path , session_priv : & SecretKey , total_msat : u64 ,
1365
+ recipient_onion : & RecipientOnionFields , cur_block_height : u32 , payment_hash : & PaymentHash ,
1366
+ keysend_preimage : & Option < PaymentPreimage > , invoice_request : Option < & InvoiceRequest > ,
1367
+ prng_seed : [ u8 ; 32 ] , secondary_payment_secret : Option < PaymentSecret > ,
1368
+ secondary_session_priv : Option < SecretKey > , secondary_prng_seed : Option < [ u8 ; 32 ] >
1369
+ ) -> Result < ( msgs:: OnionPacket , u64 , u32 ) , APIError > {
1357
1370
let mut outer_total_msat = total_msat;
1358
1371
let mut outer_starting_htlc_offset = cur_block_height;
1359
1372
let mut outer_session_priv_override = None ;
1373
+ let mut trampoline_packet_option = None ;
1360
1374
1361
1375
if !path. trampoline_hops . is_empty ( ) {
1376
+ let trampoline_payloads;
1362
1377
( trampoline_payloads, outer_total_msat, outer_starting_htlc_offset) =
1363
1378
build_trampoline_onion_payloads (
1364
1379
path,
@@ -1367,18 +1382,7 @@ pub fn create_payment_onion<T: secp256k1::Signing>(
1367
1382
cur_block_height,
1368
1383
keysend_preimage,
1369
1384
) ?;
1370
- }
1371
1385
1372
- let ( mut onion_payloads, htlc_msat, htlc_cltv) = build_onion_payloads (
1373
- & path,
1374
- total_msat,
1375
- recipient_onion,
1376
- cur_block_height,
1377
- keysend_preimage,
1378
- invoice_request,
1379
- ) ?;
1380
-
1381
- if !path. trampoline_hops . is_empty ( ) {
1382
1386
let onion_keys =
1383
1387
construct_trampoline_onion_keys ( & secp_ctx, & path, & session_priv) . map_err ( |_| {
1384
1388
APIError :: InvalidRoute {
@@ -1396,26 +1400,42 @@ pub fn create_payment_onion<T: secp256k1::Signing>(
1396
1400
err : "Route size too large considering onion data" . to_owned ( ) ,
1397
1401
} ) ?;
1398
1402
1403
+ trampoline_packet_option = Some ( trampoline_packet) ;
1404
+ }
1405
+
1406
+ let ( mut onion_payloads, htlc_msat, htlc_cltv) = build_onion_payloads (
1407
+ & path,
1408
+ outer_total_msat,
1409
+ recipient_onion,
1410
+ outer_starting_htlc_offset,
1411
+ keysend_preimage,
1412
+ invoice_request,
1413
+ ) ?;
1414
+
1415
+ if !path. trampoline_hops . is_empty ( ) {
1399
1416
let last_payload = onion_payloads. pop ( ) . ok_or ( APIError :: InvalidRoute {
1400
1417
err : "Non-Trampoline path needs at least one hop" . to_owned ( ) ,
1401
1418
} ) ?;
1402
1419
1403
1420
match last_payload {
1404
1421
OutboundOnionPayload :: Receive { payment_data, .. } => {
1422
+ let fee_delta = path. hops . last ( ) . map_or ( 0 , |h| h. fee_msat ) ;
1423
+ let cltv_delta = path. hops . last ( ) . map_or ( 0 , |h| h. cltv_expiry_delta ) ;
1405
1424
let multipath_trampoline_data = payment_data. map ( |d| {
1406
- let trampoline_payment_secret =
1407
- Sha256 :: hash ( & d. payment_secret . 0 ) . to_byte_array ( ) ;
1408
- let total_msat = d. total_msat + path. hops . last ( ) . map_or ( 0 , |h| h. fee_msat ) ;
1425
+ let trampoline_payment_secret = secondary_payment_secret. unwrap_or_else ( || {
1426
+ PaymentSecret ( Sha256 :: hash ( & d. payment_secret . 0 ) . to_byte_array ( ) )
1427
+ } ) ;
1428
+ let total_msat = fee_delta;
1409
1429
FinalOnionHopData {
1410
- payment_secret : PaymentSecret ( trampoline_payment_secret) ,
1430
+ payment_secret : trampoline_payment_secret,
1411
1431
total_msat,
1412
1432
}
1413
1433
} ) ;
1414
1434
onion_payloads. push ( OutboundOnionPayload :: TrampolineEntrypoint {
1415
- amt_to_forward : outer_total_msat ,
1416
- outgoing_cltv_value : outer_starting_htlc_offset,
1435
+ amt_to_forward : fee_delta ,
1436
+ outgoing_cltv_value : outer_starting_htlc_offset + cltv_delta ,
1417
1437
multipath_trampoline_data,
1418
- trampoline_packet,
1438
+ trampoline_packet : trampoline_packet_option . unwrap ( ) ,
1419
1439
} ) ;
1420
1440
} ,
1421
1441
_ => {
@@ -1426,16 +1446,18 @@ pub fn create_payment_onion<T: secp256k1::Signing>(
1426
1446
} ,
1427
1447
} ;
1428
1448
1429
- let session_priv_hash = Sha256 :: hash ( & session_priv. secret_bytes ( ) ) . to_byte_array ( ) ;
1430
- outer_session_priv_override =
1431
- Some ( SecretKey :: from_slice ( & session_priv_hash[ ..] ) . expect ( "You broke SHA-256!" ) ) ;
1449
+ outer_session_priv_override = Some ( secondary_session_priv. unwrap_or_else ( || {
1450
+ let session_priv_hash = Sha256 :: hash ( & session_priv. secret_bytes ( ) ) . to_byte_array ( ) ;
1451
+ SecretKey :: from_slice ( & session_priv_hash[ ..] ) . expect ( "You broke SHA-256!" )
1452
+ } ) ) ;
1432
1453
}
1433
1454
1434
1455
let outer_session_priv = outer_session_priv_override. as_ref ( ) . unwrap_or ( session_priv) ;
1435
1456
let onion_keys = construct_onion_keys ( & secp_ctx, & path, outer_session_priv) . map_err ( |_| {
1436
1457
APIError :: InvalidRoute { err : "Pubkey along hop was maliciously selected" . to_owned ( ) }
1437
1458
} ) ?;
1438
- let onion_packet = construct_onion_packet ( onion_payloads, onion_keys, prng_seed, payment_hash)
1459
+ let outer_onion_prng_seed = secondary_prng_seed. unwrap_or ( prng_seed) ;
1460
+ let onion_packet = construct_onion_packet ( onion_payloads, onion_keys, outer_onion_prng_seed, payment_hash)
1439
1461
. map_err ( |_| APIError :: InvalidRoute {
1440
1462
err : "Route size too large considering onion data" . to_owned ( ) ,
1441
1463
} ) ?;
0 commit comments