• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

lightningnetwork / lnd / 12250203495

10 Dec 2024 05:45AM UTC coverage: 49.842% (+0.07%) from 49.773%
12250203495

Pull #9342

github

ellemouton
docs: add release notes entry
Pull Request #9342: protofsm: update GR Manager usage and start using structured logging

100221 of 201077 relevant lines covered (49.84%)

2.07 hits per line

Source File
Press 'n' to go to next uncovered line, 'b' for previous

77.72
/routing/payment_lifecycle.go
1
package routing
2

3
import (
4
        "context"
5
        "errors"
6
        "fmt"
7
        "time"
8

9
        "github.com/btcsuite/btcd/btcec/v2"
10
        "github.com/davecgh/go-spew/spew"
11
        sphinx "github.com/lightningnetwork/lightning-onion"
12
        "github.com/lightningnetwork/lnd/channeldb"
13
        "github.com/lightningnetwork/lnd/fn/v2"
14
        "github.com/lightningnetwork/lnd/graph/db/models"
15
        "github.com/lightningnetwork/lnd/htlcswitch"
16
        "github.com/lightningnetwork/lnd/lntypes"
17
        "github.com/lightningnetwork/lnd/lnwire"
18
        "github.com/lightningnetwork/lnd/routing/route"
19
        "github.com/lightningnetwork/lnd/routing/shards"
20
        "github.com/lightningnetwork/lnd/tlv"
21
)
22

23
// ErrPaymentLifecycleExiting is used when waiting for htlc attempt result, but
24
// the payment lifecycle is exiting .
25
var ErrPaymentLifecycleExiting = errors.New("payment lifecycle exiting")
26

27
// paymentLifecycle holds all information about the current state of a payment
28
// needed to resume if from any point.
29
type paymentLifecycle struct {
30
        router                *ChannelRouter
31
        feeLimit              lnwire.MilliSatoshi
32
        identifier            lntypes.Hash
33
        paySession            PaymentSession
34
        shardTracker          shards.ShardTracker
35
        currentHeight         int32
36
        firstHopCustomRecords lnwire.CustomRecords
37

38
        // quit is closed to signal the sub goroutines of the payment lifecycle
39
        // to stop.
40
        quit chan struct{}
41

42
        // resultCollected is used to signal that the result of an attempt has
43
        // been collected. A nil error means the attempt is either successful
44
        // or failed with temporary error. Otherwise, we should exit the
45
        // lifecycle loop as a terminal error has occurred.
46
        resultCollected chan error
47

48
        // resultCollector is a function that is used to collect the result of
49
        // an HTLC attempt, which is always mounted to `p.collectResultAsync`
50
        // except in unit test, where we use a much simpler resultCollector to
51
        // decouple the test flow for the payment lifecycle.
52
        resultCollector func(attempt *channeldb.HTLCAttempt)
53
}
54

55
// newPaymentLifecycle initiates a new payment lifecycle and returns it.
56
func newPaymentLifecycle(r *ChannelRouter, feeLimit lnwire.MilliSatoshi,
57
        identifier lntypes.Hash, paySession PaymentSession,
58
        shardTracker shards.ShardTracker, currentHeight int32,
59
        firstHopCustomRecords lnwire.CustomRecords) *paymentLifecycle {
4✔
60

4✔
61
        p := &paymentLifecycle{
4✔
62
                router:                r,
4✔
63
                feeLimit:              feeLimit,
4✔
64
                identifier:            identifier,
4✔
65
                paySession:            paySession,
4✔
66
                shardTracker:          shardTracker,
4✔
67
                currentHeight:         currentHeight,
4✔
68
                quit:                  make(chan struct{}),
4✔
69
                resultCollected:       make(chan error, 1),
4✔
70
                firstHopCustomRecords: firstHopCustomRecords,
4✔
71
        }
4✔
72

4✔
73
        // Mount the result collector.
4✔
74
        p.resultCollector = p.collectResultAsync
4✔
75

4✔
76
        return p
4✔
77
}
4✔
78

79
// calcFeeBudget returns the available fee to be used for sending HTLC
80
// attempts.
81
func (p *paymentLifecycle) calcFeeBudget(
82
        feesPaid lnwire.MilliSatoshi) lnwire.MilliSatoshi {
4✔
83

4✔
84
        budget := p.feeLimit
4✔
85

4✔
86
        // We'll subtract the used fee from our fee budget. In case of
4✔
87
        // overflow, we need to check whether feesPaid exceeds our budget
4✔
88
        // already.
4✔
89
        if feesPaid <= budget {
8✔
90
                budget -= feesPaid
4✔
91
        } else {
8✔
92
                budget = 0
4✔
93
        }
4✔
94

95
        return budget
4✔
96
}
97

98
// stateStep defines an action to be taken in our payment lifecycle. We either
99
// quit, continue, or exit the lifecycle, see details below.
100
type stateStep uint8
101

102
const (
103
        // stepSkip is used when we need to skip the current lifecycle and jump
104
        // to the next one.
105
        stepSkip stateStep = iota
106

107
        // stepProceed is used when we can proceed the current lifecycle.
108
        stepProceed
109

110
        // stepExit is used when we need to quit the current lifecycle.
111
        stepExit
112
)
113

114
// decideNextStep is used to determine the next step in the payment lifecycle.
115
func (p *paymentLifecycle) decideNextStep(
116
        payment DBMPPayment) (stateStep, error) {
4✔
117

4✔
118
        // Check whether we could make new HTLC attempts.
4✔
119
        allow, err := payment.AllowMoreAttempts()
4✔
120
        if err != nil {
4✔
121
                return stepExit, err
×
122
        }
×
123

124
        if !allow {
8✔
125
                // Check whether we need to wait for results.
4✔
126
                wait, err := payment.NeedWaitAttempts()
4✔
127
                if err != nil {
4✔
128
                        return stepExit, err
×
129
                }
×
130

131
                // If we are not allowed to make new HTLC attempts and there's
132
                // no need to wait, the lifecycle is done and we can exit.
133
                if !wait {
8✔
134
                        return stepExit, nil
4✔
135
                }
4✔
136

137
                log.Tracef("Waiting for attempt results for payment %v",
4✔
138
                        p.identifier)
4✔
139

4✔
140
                // Otherwise we wait for one HTLC attempt then continue
4✔
141
                // the lifecycle.
4✔
142
                //
4✔
143
                // NOTE: we don't check `p.quit` since `decideNextStep` is
4✔
144
                // running in the same goroutine as `resumePayment`.
4✔
145
                select {
4✔
146
                case err := <-p.resultCollected:
4✔
147
                        // If an error is returned, exit with it.
4✔
148
                        if err != nil {
8✔
149
                                return stepExit, err
4✔
150
                        }
4✔
151

152
                        log.Tracef("Received attempt result for payment %v",
4✔
153
                                p.identifier)
4✔
154

155
                case <-p.router.quit:
3✔
156
                        return stepExit, ErrRouterShuttingDown
3✔
157
                }
158

159
                return stepSkip, nil
4✔
160
        }
161

162
        // Otherwise we need to make more attempts.
163
        return stepProceed, nil
4✔
164
}
165

166
// resumePayment resumes the paymentLifecycle from the current state.
167
func (p *paymentLifecycle) resumePayment(ctx context.Context) ([32]byte,
168
        *route.Route, error) {
4✔
169

4✔
170
        // When the payment lifecycle loop exits, we make sure to signal any
4✔
171
        // sub goroutine of the HTLC attempt to exit, then wait for them to
4✔
172
        // return.
4✔
173
        defer p.stop()
4✔
174

4✔
175
        // If we had any existing attempts outstanding, we'll start by spinning
4✔
176
        // up goroutines that'll collect their results and deliver them to the
4✔
177
        // lifecycle loop below.
4✔
178
        payment, err := p.router.cfg.Control.FetchPayment(p.identifier)
4✔
179
        if err != nil {
4✔
180
                return [32]byte{}, nil, err
×
181
        }
×
182

183
        for _, a := range payment.InFlightHTLCs() {
8✔
184
                a := a
4✔
185

4✔
186
                log.Infof("Resuming HTLC attempt %v for payment %v",
4✔
187
                        a.AttemptID, p.identifier)
4✔
188

4✔
189
                p.resultCollector(&a)
4✔
190
        }
4✔
191

192
        // exitWithErr is a helper closure that logs and returns an error.
193
        exitWithErr := func(err error) ([32]byte, *route.Route, error) {
8✔
194
                log.Errorf("Payment %v with status=%v failed: %v",
4✔
195
                        p.identifier, payment.GetStatus(), err)
4✔
196
                return [32]byte{}, nil, err
4✔
197
        }
4✔
198

199
        // We'll continue until either our payment succeeds, or we encounter a
200
        // critical error during path finding.
201
lifecycle:
4✔
202
        for {
8✔
203
                // We update the payment state on every iteration. Since the
4✔
204
                // payment state is affected by multiple goroutines (ie,
4✔
205
                // collectResultAsync), it is NOT guaranteed that we always
4✔
206
                // have the latest state here. This is fine as long as the
4✔
207
                // state is consistent as a whole.
4✔
208
                payment, err = p.router.cfg.Control.FetchPayment(p.identifier)
4✔
209
                if err != nil {
4✔
210
                        return exitWithErr(err)
×
211
                }
×
212

213
                ps := payment.GetState()
4✔
214
                remainingFees := p.calcFeeBudget(ps.FeesPaid)
4✔
215

4✔
216
                log.Debugf("Payment %v: status=%v, active_shards=%v, "+
4✔
217
                        "rem_value=%v, fee_limit=%v", p.identifier,
4✔
218
                        payment.GetStatus(), ps.NumAttemptsInFlight,
4✔
219
                        ps.RemainingAmt, remainingFees)
4✔
220

4✔
221
                // We now proceed our lifecycle with the following tasks in
4✔
222
                // order,
4✔
223
                //   1. check context.
4✔
224
                //   2. request route.
4✔
225
                //   3. create HTLC attempt.
4✔
226
                //   4. send HTLC attempt.
4✔
227
                //   5. collect HTLC attempt result.
4✔
228
                //
4✔
229
                // Before we attempt any new shard, we'll check to see if we've
4✔
230
                // gone past the payment attempt timeout, or if the context was
4✔
231
                // cancelled, or the router is exiting. In any of these cases,
4✔
232
                // we'll stop this payment attempt short.
4✔
233
                if err := p.checkContext(ctx); err != nil {
4✔
234
                        return exitWithErr(err)
×
235
                }
×
236

237
                // Now decide the next step of the current lifecycle.
238
                step, err := p.decideNextStep(payment)
4✔
239
                if err != nil {
8✔
240
                        return exitWithErr(err)
4✔
241
                }
4✔
242

243
                switch step {
4✔
244
                // Exit the for loop and return below.
245
                case stepExit:
4✔
246
                        break lifecycle
4✔
247

248
                // Continue the for loop and skip the rest.
249
                case stepSkip:
4✔
250
                        continue lifecycle
4✔
251

252
                // Continue the for loop and proceed the rest.
253
                case stepProceed:
4✔
254

255
                // Unknown step received, exit with an error.
256
                default:
×
257
                        err = fmt.Errorf("unknown step: %v", step)
×
258
                        return exitWithErr(err)
×
259
                }
260

261
                // Now request a route to be used to create our HTLC attempt.
262
                rt, err := p.requestRoute(ps)
4✔
263
                if err != nil {
4✔
264
                        return exitWithErr(err)
×
265
                }
×
266

267
                // We may not be able to find a route for current attempt. In
268
                // that case, we continue the loop and move straight to the
269
                // next iteration in case there are results for inflight HTLCs
270
                // that still need to be collected.
271
                if rt == nil {
8✔
272
                        log.Errorf("No route found for payment %v",
4✔
273
                                p.identifier)
4✔
274

4✔
275
                        continue lifecycle
4✔
276
                }
277

278
                log.Tracef("Found route: %s", spew.Sdump(rt.Hops))
4✔
279

4✔
280
                // Allow the traffic shaper to add custom records to the
4✔
281
                // outgoing HTLC and also adjust the amount if needed.
4✔
282
                err = p.amendFirstHopData(rt)
4✔
283
                if err != nil {
4✔
284
                        return exitWithErr(err)
×
285
                }
×
286

287
                // We found a route to try, create a new HTLC attempt to try.
288
                attempt, err := p.registerAttempt(rt, ps.RemainingAmt)
4✔
289
                if err != nil {
4✔
290
                        return exitWithErr(err)
×
291
                }
×
292

293
                // Once the attempt is created, send it to the htlcswitch.
294
                result, err := p.sendAttempt(attempt)
4✔
295
                if err != nil {
4✔
296
                        return exitWithErr(err)
×
297
                }
×
298

299
                // Now that the shard was successfully sent, launch a go
300
                // routine that will handle its result when its back.
301
                if result.err == nil {
8✔
302
                        p.resultCollector(attempt)
4✔
303
                }
4✔
304
        }
305

306
        // Once we are out the lifecycle loop, it means we've reached a
307
        // terminal condition. We either return the settled preimage or the
308
        // payment's failure reason.
309
        //
310
        // Optionally delete the failed attempts from the database.
311
        err = p.router.cfg.Control.DeleteFailedAttempts(p.identifier)
4✔
312
        if err != nil {
4✔
313
                log.Errorf("Error deleting failed htlc attempts for payment "+
×
314
                        "%v: %v", p.identifier, err)
×
315
        }
×
316

317
        htlc, failure := payment.TerminalInfo()
4✔
318
        if htlc != nil {
8✔
319
                return htlc.Settle.Preimage, &htlc.Route, nil
4✔
320
        }
4✔
321

322
        // Otherwise return the payment failure reason.
323
        return [32]byte{}, nil, *failure
4✔
324
}
325

326
// checkContext checks whether the payment context has been canceled.
327
// Cancellation occurs manually or if the context times out.
328
func (p *paymentLifecycle) checkContext(ctx context.Context) error {
4✔
329
        select {
4✔
330
        case <-ctx.Done():
4✔
331
                // If the context was canceled, we'll mark the payment as
4✔
332
                // failed. There are two cases to distinguish here: Either a
4✔
333
                // user-provided timeout was reached, or the context was
4✔
334
                // canceled, either to a manual cancellation or due to an
4✔
335
                // unknown error.
4✔
336
                var reason channeldb.FailureReason
4✔
337
                if errors.Is(ctx.Err(), context.DeadlineExceeded) {
4✔
338
                        reason = channeldb.FailureReasonTimeout
×
339
                        log.Warnf("Payment attempt not completed before "+
×
340
                                "timeout, id=%s", p.identifier.String())
×
341
                } else {
4✔
342
                        reason = channeldb.FailureReasonCanceled
4✔
343
                        log.Warnf("Payment attempt context canceled, id=%s",
4✔
344
                                p.identifier.String())
4✔
345
                }
4✔
346

347
                // By marking the payment failed, depending on whether it has
348
                // inflight HTLCs or not, its status will now either be
349
                // `StatusInflight` or `StatusFailed`. In either case, no more
350
                // HTLCs will be attempted.
351
                err := p.router.cfg.Control.FailPayment(p.identifier, reason)
4✔
352
                if err != nil {
4✔
353
                        return fmt.Errorf("FailPayment got %w", err)
×
354
                }
×
355

356
        case <-p.router.quit:
×
357
                return fmt.Errorf("check payment timeout got: %w",
×
358
                        ErrRouterShuttingDown)
×
359

360
        // Fall through if we haven't hit our time limit.
361
        default:
4✔
362
        }
363

364
        return nil
4✔
365
}
366

367
// requestRoute is responsible for finding a route to be used to create an HTLC
368
// attempt.
369
func (p *paymentLifecycle) requestRoute(
370
        ps *channeldb.MPPaymentState) (*route.Route, error) {
4✔
371

4✔
372
        remainingFees := p.calcFeeBudget(ps.FeesPaid)
4✔
373

4✔
374
        // Query our payment session to construct a route.
4✔
375
        rt, err := p.paySession.RequestRoute(
4✔
376
                ps.RemainingAmt, remainingFees,
4✔
377
                uint32(ps.NumAttemptsInFlight), uint32(p.currentHeight),
4✔
378
                p.firstHopCustomRecords,
4✔
379
        )
4✔
380

4✔
381
        // Exit early if there's no error.
4✔
382
        if err == nil {
8✔
383
                return rt, nil
4✔
384
        }
4✔
385

386
        // Otherwise we need to handle the error.
387
        log.Warnf("Failed to find route for payment %v: %v", p.identifier, err)
4✔
388

4✔
389
        // If the error belongs to `noRouteError` set, it means a non-critical
4✔
390
        // error has happened during path finding, and we will mark the payment
4✔
391
        // failed with this reason. Otherwise, we'll return the critical error
4✔
392
        // found to abort the lifecycle.
4✔
393
        var routeErr noRouteError
4✔
394
        if !errors.As(err, &routeErr) {
4✔
395
                return nil, fmt.Errorf("requestRoute got: %w", err)
×
396
        }
×
397

398
        // It's the `paymentSession`'s responsibility to find a route for us
399
        // with the best effort. When it cannot find a path, we need to treat it
400
        // as a terminal condition and fail the payment no matter it has
401
        // inflight HTLCs or not.
402
        failureCode := routeErr.FailureReason()
4✔
403
        log.Warnf("Marking payment %v permanently failed with no route: %v",
4✔
404
                p.identifier, failureCode)
4✔
405

4✔
406
        err = p.router.cfg.Control.FailPayment(p.identifier, failureCode)
4✔
407
        if err != nil {
4✔
408
                return nil, fmt.Errorf("FailPayment got: %w", err)
×
409
        }
×
410

411
        // NOTE: we decide to not return the non-critical noRouteError here to
412
        // avoid terminating the payment lifecycle as there might be other
413
        // inflight HTLCs which we must wait for their results.
414
        return nil, nil
4✔
415
}
416

417
// stop signals any active shard goroutine to exit.
418
func (p *paymentLifecycle) stop() {
4✔
419
        close(p.quit)
4✔
420
}
4✔
421

422
// attemptResult holds the HTLC attempt and a possible error returned from
423
// sending it.
424
type attemptResult struct {
425
        // err is non-nil if a non-critical error was encountered when trying
426
        // to send the attempt, and we successfully updated the control tower
427
        // to reflect this error. This can be errors like not enough local
428
        // balance for the given route etc.
429
        err error
430

431
        // attempt is the attempt structure as recorded in the database.
432
        attempt *channeldb.HTLCAttempt
433
}
434

435
// collectResultAsync launches a goroutine that will wait for the result of the
436
// given HTLC attempt to be available then handle its result. Once received, it
437
// will send a nil error to channel `resultCollected` to indicate there's a
438
// result.
439
func (p *paymentLifecycle) collectResultAsync(attempt *channeldb.HTLCAttempt) {
4✔
440
        log.Debugf("Collecting result for attempt %v in payment %v",
4✔
441
                attempt.AttemptID, p.identifier)
4✔
442

4✔
443
        go func() {
8✔
444
                // Block until the result is available.
4✔
445
                _, err := p.collectResult(attempt)
4✔
446
                if err != nil {
8✔
447
                        log.Errorf("Error collecting result for attempt %v "+
4✔
448
                                "in payment %v: %v", attempt.AttemptID,
4✔
449
                                p.identifier, err)
4✔
450
                }
4✔
451

452
                log.Debugf("Result collected for attempt %v in payment %v",
4✔
453
                        attempt.AttemptID, p.identifier)
4✔
454

4✔
455
                // Once the result is collected, we signal it by writing the
4✔
456
                // error to `resultCollected`.
4✔
457
                select {
4✔
458
                // Send the signal or quit.
459
                case p.resultCollected <- err:
4✔
460

461
                case <-p.quit:
×
462
                        log.Debugf("Lifecycle exiting while collecting "+
×
463
                                "result for payment %v", p.identifier)
×
464

465
                case <-p.router.quit:
1✔
466
                        return
1✔
467
                }
468
        }()
469
}
470

471
// collectResult waits for the result for the given attempt to be available
472
// from the Switch, then records the attempt outcome with the control tower.
473
// An attemptResult is returned, indicating the final outcome of this HTLC
474
// attempt.
475
func (p *paymentLifecycle) collectResult(attempt *channeldb.HTLCAttempt) (
476
        *attemptResult, error) {
4✔
477

4✔
478
        log.Tracef("Collecting result for attempt %v", spew.Sdump(attempt))
4✔
479

4✔
480
        // We'll retrieve the hash specific to this shard from the
4✔
481
        // shardTracker, since it will be needed to regenerate the circuit
4✔
482
        // below.
4✔
483
        hash, err := p.shardTracker.GetHash(attempt.AttemptID)
4✔
484
        if err != nil {
4✔
485
                return p.failAttempt(attempt.AttemptID, err)
×
486
        }
×
487

488
        // Regenerate the circuit for this attempt.
489
        _, circuit, err := generateSphinxPacket(
4✔
490
                &attempt.Route, hash[:], attempt.SessionKey(),
4✔
491
        )
4✔
492
        // TODO(yy): We generate this circuit to create the error decryptor,
4✔
493
        // which is then used in htlcswitch as the deobfuscator to decode the
4✔
494
        // error from `UpdateFailHTLC`. However, suppose it's an
4✔
495
        // `UpdateFulfillHTLC` message yet for some reason the sphinx packet is
4✔
496
        // failed to be generated, we'd miss settling it. This means we should
4✔
497
        // give it a second chance to try the settlement path in case
4✔
498
        // `GetAttemptResult` gives us back the preimage. And move the circuit
4✔
499
        // creation into htlcswitch so it's only constructed when there's a
4✔
500
        // failure message we need to decode.
4✔
501
        if err != nil {
4✔
502
                log.Debugf("Unable to generate circuit for attempt %v: %v",
×
503
                        attempt.AttemptID, err)
×
504

×
505
                return p.failAttempt(attempt.AttemptID, err)
×
506
        }
×
507

508
        // Using the created circuit, initialize the error decrypter, so we can
509
        // parse+decode any failures incurred by this payment within the
510
        // switch.
511
        errorDecryptor := &htlcswitch.SphinxErrorDecrypter{
4✔
512
                OnionErrorDecrypter: sphinx.NewOnionErrorDecrypter(circuit),
4✔
513
        }
4✔
514

4✔
515
        // Now ask the switch to return the result of the payment when
4✔
516
        // available.
4✔
517
        //
4✔
518
        // TODO(yy): consider using htlcswitch to create the `errorDecryptor`
4✔
519
        // since the htlc is already in db. This will also make the interface
4✔
520
        // `PaymentAttemptDispatcher` deeper and easier to use. Moreover, we'd
4✔
521
        // only create the decryptor when received a failure, further saving us
4✔
522
        // a few CPU cycles.
4✔
523
        resultChan, err := p.router.cfg.Payer.GetAttemptResult(
4✔
524
                attempt.AttemptID, p.identifier, errorDecryptor,
4✔
525
        )
4✔
526
        // Handle the switch error.
4✔
527
        if err != nil {
4✔
528
                log.Errorf("Failed getting result for attemptID %d "+
×
529
                        "from switch: %v", attempt.AttemptID, err)
×
530

×
531
                return p.handleSwitchErr(attempt, err)
×
532
        }
×
533

534
        // The switch knows about this payment, we'll wait for a result to be
535
        // available.
536
        var (
4✔
537
                result *htlcswitch.PaymentResult
4✔
538
                ok     bool
4✔
539
        )
4✔
540

4✔
541
        select {
4✔
542
        case result, ok = <-resultChan:
4✔
543
                if !ok {
8✔
544
                        return nil, htlcswitch.ErrSwitchExiting
4✔
545
                }
4✔
546

547
        case <-p.quit:
×
548
                return nil, ErrPaymentLifecycleExiting
×
549

550
        case <-p.router.quit:
×
551
                return nil, ErrRouterShuttingDown
×
552
        }
553

554
        // In case of a payment failure, fail the attempt with the control
555
        // tower and return.
556
        if result.Error != nil {
8✔
557
                return p.handleSwitchErr(attempt, result.Error)
4✔
558
        }
4✔
559

560
        // We successfully got a payment result back from the switch.
561
        log.Debugf("Payment %v succeeded with pid=%v",
4✔
562
                p.identifier, attempt.AttemptID)
4✔
563

4✔
564
        // Report success to mission control.
4✔
565
        err = p.router.cfg.MissionControl.ReportPaymentSuccess(
4✔
566
                attempt.AttemptID, &attempt.Route,
4✔
567
        )
4✔
568
        if err != nil {
4✔
569
                log.Errorf("Error reporting payment success to mc: %v", err)
×
570
        }
×
571

572
        // In case of success we atomically store settle result to the DB move
573
        // the shard to the settled state.
574
        htlcAttempt, err := p.router.cfg.Control.SettleAttempt(
4✔
575
                p.identifier, attempt.AttemptID,
4✔
576
                &channeldb.HTLCSettleInfo{
4✔
577
                        Preimage:   result.Preimage,
4✔
578
                        SettleTime: p.router.cfg.Clock.Now(),
4✔
579
                },
4✔
580
        )
4✔
581
        if err != nil {
4✔
582
                log.Errorf("Error settling attempt %v for payment %v with "+
×
583
                        "preimage %v: %v", attempt.AttemptID, p.identifier,
×
584
                        result.Preimage, err)
×
585

×
586
                // We won't mark the attempt as failed since we already have
×
587
                // the preimage.
×
588
                return nil, err
×
589
        }
×
590

591
        return &attemptResult{
4✔
592
                attempt: htlcAttempt,
4✔
593
        }, nil
4✔
594
}
595

596
// registerAttempt is responsible for creating and saving an HTLC attempt in db
597
// by using the route info provided. The `remainingAmt` is used to decide
598
// whether this is the last attempt.
599
func (p *paymentLifecycle) registerAttempt(rt *route.Route,
600
        remainingAmt lnwire.MilliSatoshi) (*channeldb.HTLCAttempt, error) {
4✔
601

4✔
602
        // If this route will consume the last remaining amount to send
4✔
603
        // to the receiver, this will be our last shard (for now).
4✔
604
        isLastAttempt := rt.ReceiverAmt() == remainingAmt
4✔
605

4✔
606
        // Using the route received from the payment session, create a new
4✔
607
        // shard to send.
4✔
608
        attempt, err := p.createNewPaymentAttempt(rt, isLastAttempt)
4✔
609
        if err != nil {
4✔
610
                return nil, err
×
611
        }
×
612

613
        // Before sending this HTLC to the switch, we checkpoint the fresh
614
        // paymentID and route to the DB. This lets us know on startup the ID
615
        // of the payment that we attempted to send, such that we can query the
616
        // Switch for its whereabouts. The route is needed to handle the result
617
        // when it eventually comes back.
618
        err = p.router.cfg.Control.RegisterAttempt(
4✔
619
                p.identifier, &attempt.HTLCAttemptInfo,
4✔
620
        )
4✔
621

4✔
622
        return attempt, err
4✔
623
}
624

625
// createNewPaymentAttempt creates a new payment attempt from the given route.
626
func (p *paymentLifecycle) createNewPaymentAttempt(rt *route.Route,
627
        lastShard bool) (*channeldb.HTLCAttempt, error) {
4✔
628

4✔
629
        // Generate a new key to be used for this attempt.
4✔
630
        sessionKey, err := generateNewSessionKey()
4✔
631
        if err != nil {
4✔
632
                return nil, err
×
633
        }
×
634

635
        // We generate a new, unique payment ID that we will use for
636
        // this HTLC.
637
        attemptID, err := p.router.cfg.NextPaymentID()
4✔
638
        if err != nil {
4✔
639
                return nil, err
×
640
        }
×
641

642
        // Request a new shard from the ShardTracker. If this is an AMP
643
        // payment, and this is the last shard, the outstanding shards together
644
        // with this one will be enough for the receiver to derive all HTLC
645
        // preimages. If this a non-AMP payment, the ShardTracker will return a
646
        // simple shard with the payment's static payment hash.
647
        shard, err := p.shardTracker.NewShard(attemptID, lastShard)
4✔
648
        if err != nil {
4✔
649
                return nil, err
×
650
        }
×
651

652
        // If this shard carries MPP or AMP options, add them to the last hop
653
        // on the route.
654
        hop := rt.Hops[len(rt.Hops)-1]
4✔
655
        if shard.MPP() != nil {
8✔
656
                hop.MPP = shard.MPP()
4✔
657
        }
4✔
658

659
        if shard.AMP() != nil {
8✔
660
                hop.AMP = shard.AMP()
4✔
661
        }
4✔
662

663
        hash := shard.Hash()
4✔
664

4✔
665
        // We now have all the information needed to populate the current
4✔
666
        // attempt information.
4✔
667
        attempt := channeldb.NewHtlcAttempt(
4✔
668
                attemptID, sessionKey, *rt, p.router.cfg.Clock.Now(), &hash,
4✔
669
        )
4✔
670

4✔
671
        return attempt, nil
4✔
672
}
673

674
// sendAttempt attempts to send the current attempt to the switch to complete
675
// the payment. If this attempt fails, then we'll continue on to the next
676
// available route.
677
func (p *paymentLifecycle) sendAttempt(
678
        attempt *channeldb.HTLCAttempt) (*attemptResult, error) {
4✔
679

4✔
680
        log.Debugf("Sending HTLC attempt(id=%v, total_amt=%v, first_hop_amt=%d"+
4✔
681
                ") for payment %v", attempt.AttemptID,
4✔
682
                attempt.Route.TotalAmount, attempt.Route.FirstHopAmount.Val,
4✔
683
                p.identifier)
4✔
684

4✔
685
        rt := attempt.Route
4✔
686

4✔
687
        // Construct the first hop.
4✔
688
        firstHop := lnwire.NewShortChanIDFromInt(rt.Hops[0].ChannelID)
4✔
689

4✔
690
        // Craft an HTLC packet to send to the htlcswitch. The metadata within
4✔
691
        // this packet will be used to route the payment through the network,
4✔
692
        // starting with the first-hop.
4✔
693
        htlcAdd := &lnwire.UpdateAddHTLC{
4✔
694
                Amount:        rt.FirstHopAmount.Val.Int(),
4✔
695
                Expiry:        rt.TotalTimeLock,
4✔
696
                PaymentHash:   *attempt.Hash,
4✔
697
                CustomRecords: rt.FirstHopWireCustomRecords,
4✔
698
        }
4✔
699

4✔
700
        // Generate the raw encoded sphinx packet to be included along
4✔
701
        // with the htlcAdd message that we send directly to the
4✔
702
        // switch.
4✔
703
        onionBlob, _, err := generateSphinxPacket(
4✔
704
                &rt, attempt.Hash[:], attempt.SessionKey(),
4✔
705
        )
4✔
706
        if err != nil {
4✔
707
                log.Errorf("Failed to create onion blob: attempt=%d in "+
×
708
                        "payment=%v, err:%v", attempt.AttemptID,
×
709
                        p.identifier, err)
×
710

×
711
                return p.failAttempt(attempt.AttemptID, err)
×
712
        }
×
713

714
        copy(htlcAdd.OnionBlob[:], onionBlob)
4✔
715

4✔
716
        // Send it to the Switch. When this method returns we assume
4✔
717
        // the Switch successfully has persisted the payment attempt,
4✔
718
        // such that we can resume waiting for the result after a
4✔
719
        // restart.
4✔
720
        err = p.router.cfg.Payer.SendHTLC(firstHop, attempt.AttemptID, htlcAdd)
4✔
721
        if err != nil {
8✔
722
                log.Errorf("Failed sending attempt %d for payment %v to "+
4✔
723
                        "switch: %v", attempt.AttemptID, p.identifier, err)
4✔
724

4✔
725
                return p.handleSwitchErr(attempt, err)
4✔
726
        }
4✔
727

728
        log.Debugf("Attempt %v for payment %v successfully sent to switch, "+
4✔
729
                "route: %v", attempt.AttemptID, p.identifier, &attempt.Route)
4✔
730

4✔
731
        return &attemptResult{
4✔
732
                attempt: attempt,
4✔
733
        }, nil
4✔
734
}
735

736
// amendFirstHopData is a function that calls the traffic shaper to allow it to
737
// add custom records to the outgoing HTLC and also adjust the amount if
738
// needed.
739
func (p *paymentLifecycle) amendFirstHopData(rt *route.Route) error {
4✔
740
        // The first hop amount on the route is the full route amount if not
4✔
741
        // overwritten by the traffic shaper. So we set the initial value now
4✔
742
        // and potentially overwrite it later.
4✔
743
        rt.FirstHopAmount = tlv.NewRecordT[tlv.TlvType0](
4✔
744
                tlv.NewBigSizeT(rt.TotalAmount),
4✔
745
        )
4✔
746

4✔
747
        // By default, we set the first hop custom records to the initial
4✔
748
        // value requested by the RPC. The traffic shaper may overwrite this
4✔
749
        // value.
4✔
750
        rt.FirstHopWireCustomRecords = p.firstHopCustomRecords
4✔
751

4✔
752
        // extraDataRequest is a helper struct to pass the custom records and
4✔
753
        // amount back from the traffic shaper.
4✔
754
        type extraDataRequest struct {
4✔
755
                customRecords fn.Option[lnwire.CustomRecords]
4✔
756

4✔
757
                amount fn.Option[lnwire.MilliSatoshi]
4✔
758
        }
4✔
759

4✔
760
        // If a hook exists that may affect our outgoing message, we call it now
4✔
761
        // and apply its side effects to the UpdateAddHTLC message.
4✔
762
        result, err := fn.MapOptionZ(
4✔
763
                p.router.cfg.TrafficShaper,
4✔
764
                //nolint:ll
4✔
765
                func(ts htlcswitch.AuxTrafficShaper) fn.Result[extraDataRequest] {
4✔
766
                        newAmt, newRecords, err := ts.ProduceHtlcExtraData(
×
767
                                rt.TotalAmount, p.firstHopCustomRecords,
×
768
                        )
×
769
                        if err != nil {
×
770
                                return fn.Err[extraDataRequest](err)
×
771
                        }
×
772

773
                        // Make sure we only received valid records.
774
                        if err := newRecords.Validate(); err != nil {
×
775
                                return fn.Err[extraDataRequest](err)
×
776
                        }
×
777

778
                        log.Debugf("Aux traffic shaper returned custom "+
×
779
                                "records %v and amount %d msat for HTLC",
×
780
                                spew.Sdump(newRecords), newAmt)
×
781

×
782
                        return fn.Ok(extraDataRequest{
×
783
                                customRecords: fn.Some(newRecords),
×
784
                                amount:        fn.Some(newAmt),
×
785
                        })
×
786
                },
787
        ).Unpack()
788
        if err != nil {
4✔
789
                return fmt.Errorf("traffic shaper failed to produce extra "+
×
790
                        "data: %w", err)
×
791
        }
×
792

793
        // Apply the side effects to the UpdateAddHTLC message.
794
        result.customRecords.WhenSome(func(records lnwire.CustomRecords) {
4✔
795
                rt.FirstHopWireCustomRecords = records
×
796
        })
×
797
        result.amount.WhenSome(func(amount lnwire.MilliSatoshi) {
4✔
798
                rt.FirstHopAmount = tlv.NewRecordT[tlv.TlvType0](
×
799
                        tlv.NewBigSizeT(amount),
×
800
                )
×
801
        })
×
802

803
        return nil
4✔
804
}
805

806
// failAttemptAndPayment fails both the payment and its attempt via the
807
// router's control tower, which marks the payment as failed in db.
808
func (p *paymentLifecycle) failPaymentAndAttempt(
809
        attemptID uint64, reason *channeldb.FailureReason,
810
        sendErr error) (*attemptResult, error) {
4✔
811

4✔
812
        log.Errorf("Payment %v failed: final_outcome=%v, raw_err=%v",
4✔
813
                p.identifier, *reason, sendErr)
4✔
814

4✔
815
        // Fail the payment via control tower.
4✔
816
        //
4✔
817
        // NOTE: we must fail the payment first before failing the attempt.
4✔
818
        // Otherwise, once the attempt is marked as failed, another goroutine
4✔
819
        // might make another attempt while we are failing the payment.
4✔
820
        err := p.router.cfg.Control.FailPayment(p.identifier, *reason)
4✔
821
        if err != nil {
4✔
822
                log.Errorf("Unable to fail payment: %v", err)
×
823
                return nil, err
×
824
        }
×
825

826
        // Fail the attempt.
827
        return p.failAttempt(attemptID, sendErr)
4✔
828
}
829

830
// handleSwitchErr inspects the given error from the Switch and determines
831
// whether we should make another payment attempt, or if it should be
832
// considered a terminal error. Terminal errors will be recorded with the
833
// control tower. It analyzes the sendErr for the payment attempt received from
834
// the switch and updates mission control and/or channel policies. Depending on
835
// the error type, the error is either the final outcome of the payment or we
836
// need to continue with an alternative route. A final outcome is indicated by
837
// a non-nil reason value.
838
func (p *paymentLifecycle) handleSwitchErr(attempt *channeldb.HTLCAttempt,
839
        sendErr error) (*attemptResult, error) {
4✔
840

4✔
841
        internalErrorReason := channeldb.FailureReasonError
4✔
842
        attemptID := attempt.AttemptID
4✔
843

4✔
844
        // reportAndFail is a helper closure that reports the failure to the
4✔
845
        // mission control, which helps us to decide whether we want to retry
4✔
846
        // the payment or not. If a non nil reason is returned from mission
4✔
847
        // control, it will further fail the payment via control tower.
4✔
848
        reportAndFail := func(srcIdx *int,
4✔
849
                msg lnwire.FailureMessage) (*attemptResult, error) {
8✔
850

4✔
851
                // Report outcome to mission control.
4✔
852
                reason, err := p.router.cfg.MissionControl.ReportPaymentFail(
4✔
853
                        attemptID, &attempt.Route, srcIdx, msg,
4✔
854
                )
4✔
855
                if err != nil {
4✔
856
                        log.Errorf("Error reporting payment result to mc: %v",
×
857
                                err)
×
858

×
859
                        reason = &internalErrorReason
×
860
                }
×
861

862
                // Fail the attempt only if there's no reason.
863
                if reason == nil {
8✔
864
                        // Fail the attempt.
4✔
865
                        return p.failAttempt(attemptID, sendErr)
4✔
866
                }
4✔
867

868
                // Otherwise fail both the payment and the attempt.
869
                return p.failPaymentAndAttempt(attemptID, reason, sendErr)
4✔
870
        }
871

872
        // If this attempt ID is unknown to the Switch, it means it was never
873
        // checkpointed and forwarded by the switch before a restart. In this
874
        // case we can safely send a new payment attempt, and wait for its
875
        // result to be available.
876
        if errors.Is(sendErr, htlcswitch.ErrPaymentIDNotFound) {
4✔
877
                log.Debugf("Attempt ID %v for payment %v not found in the "+
×
878
                        "Switch, retrying.", attempt.AttemptID, p.identifier)
×
879

×
880
                return p.failAttempt(attemptID, sendErr)
×
881
        }
×
882

883
        if errors.Is(sendErr, htlcswitch.ErrUnreadableFailureMessage) {
4✔
884
                log.Warn("Unreadable failure when sending htlc: id=%v, hash=%v",
×
885
                        attempt.AttemptID, attempt.Hash)
×
886

×
887
                // Since this error message cannot be decrypted, we will send a
×
888
                // nil error message to our mission controller and fail the
×
889
                // payment.
×
890
                return reportAndFail(nil, nil)
×
891
        }
×
892

893
        // If the error is a ClearTextError, we have received a valid wire
894
        // failure message, either from our own outgoing link or from a node
895
        // down the route. If the error is not related to the propagation of
896
        // our payment, we can stop trying because an internal error has
897
        // occurred.
898
        var rtErr htlcswitch.ClearTextError
4✔
899
        ok := errors.As(sendErr, &rtErr)
4✔
900
        if !ok {
4✔
901
                return p.failPaymentAndAttempt(
×
902
                        attemptID, &internalErrorReason, sendErr,
×
903
                )
×
904
        }
×
905

906
        // failureSourceIdx is the index of the node that the failure occurred
907
        // at. If the ClearTextError received is not a ForwardingError the
908
        // payment error occurred at our node, so we leave this value as 0
909
        // to indicate that the failure occurred locally. If the error is a
910
        // ForwardingError, it did not originate at our node, so we set
911
        // failureSourceIdx to the index of the node where the failure occurred.
912
        failureSourceIdx := 0
4✔
913
        var source *htlcswitch.ForwardingError
4✔
914
        ok = errors.As(rtErr, &source)
4✔
915
        if ok {
8✔
916
                failureSourceIdx = source.FailureSourceIdx
4✔
917
        }
4✔
918

919
        // Extract the wire failure and apply channel update if it contains one.
920
        // If we received an unknown failure message from a node along the
921
        // route, the failure message will be nil.
922
        failureMessage := rtErr.WireMessage()
4✔
923
        err := p.handleFailureMessage(
4✔
924
                &attempt.Route, failureSourceIdx, failureMessage,
4✔
925
        )
4✔
926
        if err != nil {
4✔
927
                return p.failPaymentAndAttempt(
×
928
                        attemptID, &internalErrorReason, sendErr,
×
929
                )
×
930
        }
×
931

932
        log.Tracef("Node=%v reported failure when sending htlc",
4✔
933
                failureSourceIdx)
4✔
934

4✔
935
        return reportAndFail(&failureSourceIdx, failureMessage)
4✔
936
}
937

938
// handleFailureMessage tries to apply a channel update present in the failure
939
// message if any.
940
func (p *paymentLifecycle) handleFailureMessage(rt *route.Route,
941
        errorSourceIdx int, failure lnwire.FailureMessage) error {
4✔
942

4✔
943
        if failure == nil {
4✔
944
                return nil
×
945
        }
×
946

947
        // It makes no sense to apply our own channel updates.
948
        if errorSourceIdx == 0 {
8✔
949
                log.Errorf("Channel update of ourselves received")
4✔
950

4✔
951
                return nil
4✔
952
        }
4✔
953

954
        // Extract channel update if the error contains one.
955
        update := p.router.extractChannelUpdate(failure)
4✔
956
        if update == nil {
8✔
957
                return nil
4✔
958
        }
4✔
959

960
        // Parse pubkey to allow validation of the channel update. This should
961
        // always succeed, otherwise there is something wrong in our
962
        // implementation. Therefore, return an error.
963
        errVertex := rt.Hops[errorSourceIdx-1].PubKeyBytes
4✔
964
        errSource, err := btcec.ParsePubKey(errVertex[:])
4✔
965
        if err != nil {
4✔
966
                log.Errorf("Cannot parse pubkey: idx=%v, pubkey=%v",
×
967
                        errorSourceIdx, errVertex)
×
968

×
969
                return err
×
970
        }
×
971

972
        var (
4✔
973
                isAdditionalEdge bool
4✔
974
                policy           *models.CachedEdgePolicy
4✔
975
        )
4✔
976

4✔
977
        // Before we apply the channel update, we need to decide whether the
4✔
978
        // update is for additional (ephemeral) edge or normal edge stored in
4✔
979
        // db.
4✔
980
        //
4✔
981
        // Note: the p.paySession might be nil here if it's called inside
4✔
982
        // SendToRoute where there's no payment lifecycle.
4✔
983
        if p.paySession != nil {
8✔
984
                policy = p.paySession.GetAdditionalEdgePolicy(
4✔
985
                        errSource, update.ShortChannelID.ToUint64(),
4✔
986
                )
4✔
987
                if policy != nil {
8✔
988
                        isAdditionalEdge = true
4✔
989
                }
4✔
990
        }
991

992
        // Apply channel update to additional edge policy.
993
        if isAdditionalEdge {
8✔
994
                if !p.paySession.UpdateAdditionalEdge(
4✔
995
                        update, errSource, policy) {
4✔
996

×
997
                        log.Debugf("Invalid channel update received: node=%v",
×
998
                                errVertex)
×
999
                }
×
1000
                return nil
4✔
1001
        }
1002

1003
        // Apply channel update to the channel edge policy in our db.
1004
        if !p.router.cfg.ApplyChannelUpdate(update) {
8✔
1005
                log.Debugf("Invalid channel update received: node=%v",
4✔
1006
                        errVertex)
4✔
1007
        }
4✔
1008
        return nil
4✔
1009
}
1010

1011
// failAttempt calls control tower to fail the current payment attempt.
1012
func (p *paymentLifecycle) failAttempt(attemptID uint64,
1013
        sendError error) (*attemptResult, error) {
4✔
1014

4✔
1015
        log.Warnf("Attempt %v for payment %v failed: %v", attemptID,
4✔
1016
                p.identifier, sendError)
4✔
1017

4✔
1018
        failInfo := marshallError(
4✔
1019
                sendError,
4✔
1020
                p.router.cfg.Clock.Now(),
4✔
1021
        )
4✔
1022

4✔
1023
        // Now that we are failing this payment attempt, cancel the shard with
4✔
1024
        // the ShardTracker such that it can derive the correct hash for the
4✔
1025
        // next attempt.
4✔
1026
        if err := p.shardTracker.CancelShard(attemptID); err != nil {
4✔
1027
                return nil, err
×
1028
        }
×
1029

1030
        attempt, err := p.router.cfg.Control.FailAttempt(
4✔
1031
                p.identifier, attemptID, failInfo,
4✔
1032
        )
4✔
1033
        if err != nil {
4✔
1034
                return nil, err
×
1035
        }
×
1036

1037
        return &attemptResult{
4✔
1038
                attempt: attempt,
4✔
1039
                err:     sendError,
4✔
1040
        }, nil
4✔
1041
}
1042

1043
// marshallError marshall an error as received from the switch to a structure
1044
// that is suitable for database storage.
1045
func marshallError(sendError error, time time.Time) *channeldb.HTLCFailInfo {
4✔
1046
        response := &channeldb.HTLCFailInfo{
4✔
1047
                FailTime: time,
4✔
1048
        }
4✔
1049

4✔
1050
        switch {
4✔
1051
        case errors.Is(sendError, htlcswitch.ErrPaymentIDNotFound):
×
1052
                response.Reason = channeldb.HTLCFailInternal
×
1053
                return response
×
1054

1055
        case errors.Is(sendError, htlcswitch.ErrUnreadableFailureMessage):
×
1056
                response.Reason = channeldb.HTLCFailUnreadable
×
1057
                return response
×
1058
        }
1059

1060
        var rtErr htlcswitch.ClearTextError
4✔
1061
        ok := errors.As(sendError, &rtErr)
4✔
1062
        if !ok {
4✔
1063
                response.Reason = channeldb.HTLCFailInternal
×
1064
                return response
×
1065
        }
×
1066

1067
        message := rtErr.WireMessage()
4✔
1068
        if message != nil {
8✔
1069
                response.Reason = channeldb.HTLCFailMessage
4✔
1070
                response.Message = message
4✔
1071
        } else {
4✔
1072
                response.Reason = channeldb.HTLCFailUnknown
×
1073
        }
×
1074

1075
        // If the ClearTextError received is a ForwardingError, the error
1076
        // originated from a node along the route, not locally on our outgoing
1077
        // link. We set failureSourceIdx to the index of the node where the
1078
        // failure occurred. If the error is not a ForwardingError, the failure
1079
        // occurred at our node, so we leave the index as 0 to indicate that
1080
        // we failed locally.
1081
        var fErr *htlcswitch.ForwardingError
4✔
1082
        ok = errors.As(rtErr, &fErr)
4✔
1083
        if ok {
8✔
1084
                response.FailureSourceIndex = uint32(fErr.FailureSourceIdx)
4✔
1085
        }
4✔
1086

1087
        return response
4✔
1088
}
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2025 Coveralls, Inc