Files
math/params/params_test.go
Hanzo AI e018a9c3d1 LP-107 Phase 2: math substrate — params, backend, codec, modarith,
ntt, poly, rns, sample

Eight pure-Go reference packages that own the canonical semantics of
every cryptographic-math primitive Lux protocols share. Backends
(AVX2 / NEON / cgo+C++ / CUDA / Metal / WGSL) plug in behind the
substrate; KATs gate byte-equality across them.

Packages added:

* params/    — ModulusID, NTTParamID, FHEParamID, PulsarParamID,
               HashSuiteID, BackendID; KATHeader required-fields
               schema. Stable string IDs; renaming is a breaking
               change.

* backend/   — Policy enum (PureGo / NativeCPU / GPUPreferred /
               GPURequired); Resolve(policy, registered) returns the
               BackendID per LP-107's fallback chain. GPURequired
               returns ErrUnavailable when no GPU backend is
               registered.

* codec/     — Bounded readers (closes lattice issues #2 + #4 DoS
               class permanently). Limits + LimitError + Reader.
               ReadUint{16,32,64}Slice all reject the 70T-element
               attack input before allocating; depth + frame-bytes
               caps; iterative (no recursion). Regression test
               TestReadUint64Slice_RejectsHugeLength encodes the
               original lattice issue #4 input.

* modarith/  — Modulus type with QInv, R2, Barrett constants
               (computed via math/big once per modulus). AddMod /
               SubMod / MulMod (Div64 reference path). MontMulMod /
               ToMontgomery / FromMontgomery cross-checked against
               MulMod across 100 random Pulsar-Q pairs.
               ReductionMode enum byte-equal to lattice/types.

* ntt/       — Service + Backend interface; pure-Go backend
               delegates to lattice/v7/ring.SubRing.NTT/INTT (the
               canonical Lattigo-derived Montgomery NTT body — no
               re-implementation, just dispatch). Round-trip +
               batch + determinism tests on Pulsar N=256.

* poly/      — Add / Sub / ScalarMul / PointwiseMul (NTT-domain) /
               negacyclic Mul (NTT round-trip). Composes modarith +
               ntt; no lower-level reach.

* rns/       — Basis(Moduli, Name) for FHE RNS chains. Single +
               two-prime construction validated; rejects even moduli.
               Phase 3 will add basis-extension and modulus-switching.

* sample/    — Uniform (rejection sampling, mask-and-retry); Ternary
               (density + sign byte); CenteredBinomial (popcount
               difference); DiscreteGaussianRejection (6-sigma cutoff).
               All take an io.Reader so callers can KAT-replay.

Architecture invariants enforced in package docs:

  - Go is the canonical semantic reference.
  - Backend selection MUST NOT alter transcript bytes (consensus
    paths default to PolicyPureGo / PolicyNativeCPU).
  - No unbounded codec readers anywhere near wire formats.
  - No re-implementation: where lattice/v7/ring already owns the
    canonical body, we delegate, not fork.
  - One ID space; renaming is a breaking change.

Test posture: 8/8 packages green via `GOWORK=off go test ./...`.

Phases 3-7 (queued):
  3. lattice consumes math
  4. pulsar consumes lattice + math
  5. fhe consumes math
  6. luxcpp/crypto/math native backend mirror
  7. cross-runtime KAT release gate

See SUBSTRATE.md for the full posture and migration plan; full LP at
~/work/lux/lps/LP-107-lux-math-substrate.md.
2026-05-04 09:28:23 -07:00

97 lines
2.2 KiB
Go

// Copyright (c) 2026 Lux Industries Inc.
// SPDX-License-Identifier: BSD-3-Clause
package params
import "testing"
func TestModulusID_Validate(t *testing.T) {
for _, id := range []ModulusID{
ModPulsarQ, ModNTT998,
ModFHE_PN10QP27, ModFHE_PN11QP54, ModFHE_PN9QP28_STD128,
} {
if err := id.Validate(); err != nil {
t.Errorf("%s: %v", id, err)
}
}
if err := ModulusID("not-a-real-id").Validate(); err == nil {
t.Error("Validate(unknown) returned nil")
}
}
func TestNTTParamID_Validate(t *testing.T) {
for _, id := range []NTTParamID{
NTTPulsarN256, NTTFHE_PN10QP27_N1024,
NTTFHE_PN11QP54_N2048, NTTFHE_PN9QP28_N512,
} {
if err := id.Validate(); err != nil {
t.Errorf("%s: %v", id, err)
}
}
}
func TestFHEParamID_Validate(t *testing.T) {
for _, id := range []FHEParamID{
FHE_PN10QP27, FHE_PN11QP54, FHE_PN9QP28_STD128,
} {
if err := id.Validate(); err != nil {
t.Errorf("%s: %v", id, err)
}
}
}
func TestPulsarParamID_Validate(t *testing.T) {
if err := PulsarLP073.Validate(); err != nil {
t.Errorf("%s: %v", PulsarLP073, err)
}
}
func TestHashSuiteID_Validate(t *testing.T) {
for _, id := range []HashSuiteID{HashPulsarSHA3, HashBLAKE3} {
if err := id.Validate(); err != nil {
t.Errorf("%s: %v", id, err)
}
}
}
func TestBackendID_Validate(t *testing.T) {
for _, id := range []BackendID{
BackendPureGo, BackendNative, BackendAVX2, BackendNEON,
BackendCUDA, BackendMetal, BackendWGSL,
} {
if err := id.Validate(); err != nil {
t.Errorf("%s: %v", id, err)
}
}
}
func TestKATHeader_Validate(t *testing.T) {
good := KATHeader{
ParameterSet: "pulsar-lp073",
ModulusID: ModPulsarQ,
BackendID: BackendPureGo,
HashSuiteID: HashPulsarSHA3,
ImplementationName: "luxfi/pulsar",
ImplementationVersion: "v0.1.4",
}
if err := good.Validate(); err != nil {
t.Errorf("good KATHeader: %v", err)
}
bad := KATHeader{}
if err := bad.Validate(); err == nil {
t.Error("empty KATHeader.Validate() returned nil")
}
noVer := good
noVer.ImplementationVersion = ""
if err := noVer.Validate(); err == nil {
t.Error("missing ImplementationVersion returned nil")
}
var nilHdr *KATHeader
if err := nilHdr.Validate(); err == nil {
t.Error("nil KATHeader returned nil")
}
}