@@ -1133,13 +1133,19 @@ impl NetworkGraph {
11331133 /// You probably don't want to call this directly, instead relying on a NetGraphMsgHandler's
11341134 /// RoutingMessageHandler implementation to call it indirectly. This may be useful to accept
11351135 /// routing messages from a source using a protocol other than the lightning P2P protocol.
1136+ ///
1137+ /// If built with `no-std`, any updates with a timestamp more than two weeks in the past or
1138+ /// materially in the future will be rejected.
11361139 pub fn update_channel < T : secp256k1:: Verification > ( & self , msg : & msgs:: ChannelUpdate , secp_ctx : & Secp256k1 < T > ) -> Result < ( ) , LightningError > {
11371140 self . update_channel_intern ( & msg. contents , Some ( & msg) , Some ( ( & msg. signature , secp_ctx) ) )
11381141 }
11391142
11401143 /// For an already known (from announcement) channel, update info about one of the directions
11411144 /// of the channel without verifying the associated signatures. Because we aren't given the
11421145 /// associated signatures here we cannot relay the channel update to any of our peers.
1146+ ///
1147+ /// If built with `no-std`, any updates with a timestamp more than two weeks in the past or
1148+ /// materially in the future will be rejected.
11431149 pub fn update_channel_unsigned ( & self , msg : & msgs:: UnsignedChannelUpdate ) -> Result < ( ) , LightningError > {
11441150 self . update_channel_intern ( msg, None , None :: < ( & secp256k1:: Signature , & Secp256k1 < secp256k1:: VerifyOnly > ) > )
11451151 }
@@ -1149,6 +1155,19 @@ impl NetworkGraph {
11491155 let chan_enabled = msg. flags & ( 1 << 1 ) != ( 1 << 1 ) ;
11501156 let chan_was_enabled;
11511157
1158+ #[ cfg( all( feature = "std" , not( test) , not( feature = "_test_utils" ) ) ) ]
1159+ {
1160+ // Note that many tests rely on being able to set arbitrarily old timestamps, thus we
1161+ // disable this check during tests!
1162+ let time = SystemTime :: now ( ) . duration_since ( UNIX_EPOCH ) . expect ( "Time must be > 1970" ) . as_secs ( ) ;
1163+ if ( msg. timestamp as u64 ) < time - STALE_CHANNEL_UPDATE_AGE_LIMIT_SECS {
1164+ return Err ( LightningError { err : "channel_update is older than two weeks old" . to_owned ( ) , action : ErrorAction :: IgnoreError } ) ;
1165+ }
1166+ if msg. timestamp as u64 > time + 60 * 60 * 24 {
1167+ return Err ( LightningError { err : "channel_update is older than two weeks old" . to_owned ( ) , action : ErrorAction :: IgnoreError } ) ;
1168+ }
1169+ }
1170+
11521171 let mut channels = self . channels . write ( ) . unwrap ( ) ;
11531172 match channels. get_mut ( & msg. short_channel_id ) {
11541173 None => return Err ( LightningError { err : "Couldn't find channel for update" . to_owned ( ) , action : ErrorAction :: IgnoreError } ) ,
0 commit comments