15#include <gtest/gtest.h>
58 if (is_hiding_kernel) {
71 EXPECT_EQ(ivc->verification_queue.size(), 1);
72 EXPECT_EQ(ivc->verification_queue[0].type, QUEUE_TYPE::HN);
76 EXPECT_EQ(ivc->verification_queue.size(), 1);
77 EXPECT_EQ(ivc->verification_queue[0].type, QUEUE_TYPE::HN_TAIL);
81 EXPECT_EQ(ivc->verification_queue.size(), 1);
82 EXPECT_EQ(ivc->verification_queue[0].type, QUEUE_TYPE::HN_FINAL);
91 const size_t num_gates = (1 << log_num_gates);
92 for (
size_t i = 0; i < num_gates; ++i) {
94 uint32_t a_idx =
builder.add_variable(
a);
99 uint32_t b_idx =
builder.add_variable(
b);
100 uint32_t c_idx =
builder.add_variable(c);
101 uint32_t d_idx =
builder.add_variable(d);
103 builder.create_big_add_gate({ a_idx, b_idx, c_idx, d_idx,
fr(1),
fr(1),
fr(1),
fr(-1),
fr(0) });
142 EXPECT_FALSE(verifier.
verify_proof(inner_proof).result);
148 StdlibProof stdlib_inner_proof(circuit, inner_proof);
149 VerifierOutput output = verifier.
verify_proof(stdlib_inner_proof);
153 inputs.pairing_inputs = output.points_accumulator;
176 input.
honk_vk->to_field_elements(),
182 constraint.
proof = {};
206 hn_recursion_constraints.reserve(verification_queue.size());
207 for (
const auto& queue_entry : verification_queue) {
216 hn_recursion_constraints.size() == 1
228 auto kernel = acir_format::create_circuit<Builder>(mock_kernel_program, metadata);
229 const bool is_hiding_kernel = ivc->num_circuits_accumulated == ivc->get_num_circuits() - 1;
231 ivc->accumulate(kernel, kernel_vk);
248 AcirProgram& program,
bool is_hiding_kernel =
false)
251 auto kernel = acir_format::create_circuit<Builder>(program);
252 if (is_hiding_kernel) {
261 bool is_hiding_kernel =
false)
263 if (is_hiding_kernel) {
281 EXPECT_EQ(merge_proof.size(), MERGE_PROOF_SIZE);
293 construct_and_accumulate_mock_app(ivc);
296 construct_and_accumulate_mock_kernel(ivc);
299 construct_and_accumulate_trailing_kernels(ivc);
301 auto proof = ivc->prove();
303 auto vk_and_hash = ivc->get_hiding_kernel_vk_and_hash();
305 EXPECT_TRUE(verifier.
verify(proof));
319 construct_and_accumulate_mock_app(ivc);
324 construct_and_accumulate_mock_kernel(ivc);
327 construct_and_accumulate_mock_app(ivc);
330 construct_and_accumulate_mock_kernel(ivc);
333 construct_and_accumulate_trailing_kernels(ivc);
335 auto proof = ivc->prove();
338 EXPECT_TRUE(verifier.
verify(proof));
352 construct_and_accumulate_mock_app(ivc);
355 construct_and_accumulate_mock_kernel(ivc);
356 expected_kernel_vk = ivc->verification_queue.back().honk_vk;
366 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
369 kernel_vk = construct_kernel_vk_from_acir_program(program);
373 EXPECT_EQ(*kernel_vk.get(), *expected_kernel_vk.get());
388 construct_and_accumulate_mock_app(ivc);
391 construct_and_accumulate_mock_kernel(ivc);
392 EXPECT_TRUE(ivc->verification_queue.size() == 1);
396 construct_and_accumulate_mock_kernel(ivc);
397 expected_kernel_vk = ivc->verification_queue.back().honk_vk;
407 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
409 kernel_vk = construct_kernel_vk_from_acir_program(program);
413 EXPECT_EQ(*kernel_vk.get(), *expected_kernel_vk.get());
428 construct_and_accumulate_mock_app(ivc);
431 construct_and_accumulate_mock_kernel(ivc);
434 construct_and_accumulate_mock_kernel(ivc);
437 EXPECT_TRUE(ivc->verification_queue.size() == 1);
439 construct_and_accumulate_mock_kernel(ivc);
441 expected_kernel_vk = ivc->verification_queue.back().honk_vk;
451 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
454 kernel_vk = construct_kernel_vk_from_acir_program(program);
458 EXPECT_EQ(*kernel_vk.get(), *expected_kernel_vk.get());
475 construct_and_accumulate_mock_app(ivc);
479 construct_and_accumulate_mock_kernel(ivc);
482 construct_and_accumulate_mock_app(ivc);
486 EXPECT_TRUE(ivc->verification_queue.size() == 2);
488 construct_and_accumulate_mock_kernel(ivc);
491 expected_kernel_vk = ivc->verification_queue.back().honk_vk;
502 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
505 kernel_vk = construct_kernel_vk_from_acir_program(program);
509 EXPECT_EQ(*kernel_vk.get(), *expected_kernel_vk.get());
524 construct_and_accumulate_mock_app(ivc);
529 construct_and_accumulate_mock_kernel(ivc);
532 construct_and_accumulate_trailing_kernels(ivc);
535 expected_hiding_kernel_vk = ivc->verification_queue[0].honk_vk;
546 Chonk::QUEUE_TYPE::HN_FINAL,
548 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
550 kernel_vk = construct_kernel_vk_from_acir_program(program,
true);
554 EXPECT_EQ(*kernel_vk.get(), *expected_hiding_kernel_vk.get());
565 Builder app_circuit = construct_mock_UH_recursion_app_circuit(ivc,
false);
568 ivc->accumulate(app_circuit, get_verification_key(app_circuit));
571 construct_and_accumulate_mock_kernel(ivc);
573 construct_and_accumulate_trailing_kernels(ivc);
575 auto proof = ivc->prove();
578 EXPECT_TRUE(verifier.
verify(proof));
593 Builder app_circuit = construct_mock_UH_recursion_app_circuit(ivc,
true);
594 ivc->accumulate(app_circuit, get_verification_key(app_circuit));
597 construct_and_accumulate_mock_kernel(ivc);
600 construct_and_accumulate_trailing_kernels(ivc);
603 auto proof = ivc->prove();
606 EXPECT_FALSE(verifier.
verify(proof));
622 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
625 auto kernel = acir_format::create_circuit<Builder>(program, metadata);
634 size_t actual_ecc_rows = kernel.op_queue->get_num_rows();
638 size_t actual_ultra_ops = kernel.op_queue->get_current_subtable_size();
655 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
658 auto kernel = acir_format::create_circuit<Builder>(program, metadata);
667 size_t actual_ecc_rows = kernel.op_queue->get_num_rows();
671 size_t actual_ultra_ops = kernel.op_queue->get_current_subtable_size();
687 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
690 auto kernel = acir_format::create_circuit<Builder>(program, metadata);
699 size_t actual_ecc_rows = kernel.op_queue->get_num_rows();
703 size_t actual_ultra_ops = kernel.op_queue->get_current_subtable_size();
719 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
722 auto kernel = acir_format::create_circuit<Builder>(program, metadata);
731 size_t actual_ecc_rows = kernel.op_queue->get_num_rows();
735 size_t actual_ultra_ops = kernel.op_queue->get_current_subtable_size();
751 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
759 "hn_recursion_data constraints/indices size mismatch");
770 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
779 "mismatch in number of recursive verifications");
790 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
798 "unexpected non-empty public_inputs in HN constraint");
809 AcirProgram program = construct_mock_kernel_program(ivc->verification_queue);
818 "ACIR constraint proof_type does not match IVC queue type");
#define EXPECT_THROW_WITH_MESSAGE(code, expectedMessageRegex)
#define BB_DISABLE_ASSERTS()
Shared type definitions for the Barretenberg RPC API.
static void construct_and_accumulate_mock_app(std::shared_ptr< Chonk > ivc)
static std::shared_ptr< Chonk::MegaVerificationKey > get_kernel_vk_from_circuit(Builder &kernel, bool is_hiding_kernel=false)
static void construct_and_accumulate_mock_kernel(std::shared_ptr< Chonk > ivc)
static UltraCircuitBuilder create_inner_circuit(size_t log_num_gates=10)
static constexpr size_t NUM_TRAILING_KERNELS
static AcirProgram construct_mock_kernel_program(const VerificationQueue &verification_queue)
Generate an acir program {constraints, witness} for a mock kernel.
Chonk::VerificationQueue VerificationQueue
static void construct_and_accumulate_trailing_kernels(const std::shared_ptr< Chonk > &ivc)
static std::shared_ptr< Chonk::MegaVerificationKey > construct_kernel_vk_from_acir_program(AcirProgram &program, bool is_hiding_kernel=false)
Construct a kernel circuit VK from an acir program with IVC recursion constraints.
static Builder construct_mock_app_circuit(const std::shared_ptr< Chonk > &ivc)
Constuct a simple arbitrary circuit to represent a mock app circuit.
static Builder construct_mock_UH_recursion_app_circuit(const std::shared_ptr< Chonk > &ivc, const bool tamper_vk)
Constuct a mock app circuit with a UH recursive verifier.
static std::shared_ptr< VerificationKey > get_verification_key(Builder &builder_in, bool is_hiding_kernel=false)
static RecursionConstraint create_recursion_constraint(const VerifierInputs &input, std::vector< FF > &witness)
Create an ACIR RecursionConstraint given the corresponding verifier inputs.
QUEUE_TYPE
Proof type determining recursive verification logic in kernel circuits.
std::deque< VerifierInputs > VerificationQueue
stdlib::recursion::PairingPoints< stdlib::bn254< ClientCircuit > > PairingPoints
Verifier for Chonk IVC proofs (both native and recursive).
Output verify(const Proof &proof)
Verify a Chonk proof.
MergeProver::MergeProof MergeProof
static void add_some_ecc_op_gates(MegaBuilder &builder)
Generate a simple test circuit with some ECC op gates and conventional arithmetic gates.
std::shared_ptr< ECCOpQueue > op_queue
NativeVerificationKey_< PrecomputedEntities< Commitment >, Codec, HashFunction, CommitmentKey > VerificationKey
The verification key stores commitments to the precomputed (non-witness) polynomials used by the veri...
static void add_arithmetic_gates(Builder &builder, const size_t num_gates=4)
Add a specified number of arithmetic gates to the provided circuit.
Base Native verification key class.
The recursive counterpart to the "native" Ultra flavor.
Output verify_proof(const Proof &proof)
Perform ultra verification.
static constexpr element one
A simple wrapper around a vector of stdlib field elements representing a proof.
Manages the data that is propagated on the public inputs of an application/function circuit.
static void add_default(Builder &builder)
Add default public inputs when they are not present.
std::filesystem::path bb_crs_path()
void init_file_crs_factory(const std::filesystem::path &path)
TEST_F(BoomerangGoblinRecursiveVerifierTests, graph_description_basic)
Construct and check a goblin recursive verification circuit.
Entry point for Barretenberg command-line interface.
field< Bn254FrParams > fr
MegaCircuitBuilder_< field< Bn254FrParams > > MegaCircuitBuilder
VerifierCommitmentKey< Curve > vk
constexpr decltype(auto) get(::tuplet::tuple< T... > &&t) noexcept
static field random_element(numeric::RNG *engine=nullptr) noexcept
static constexpr field zero()
Output type for recursive ultra verification.