/[winpt]/trunk/Src/wptGPGME.cpp
ViewVC logotype

Diff of /trunk/Src/wptGPGME.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 22 by twoaday, Wed Aug 10 11:33:35 2005 UTC revision 175 by twoaday, Tue Feb 7 08:58:04 2006 UTC
# Line 1  Line 1 
1  /* wptGPGME.cpp - WinPT GPGME interface  /* wptGPGME.cpp - WinPT GPGME interface
2   *      Copyright (C) 2001-2005 Timo Schulz   *      Copyright (C) 2001-2005 Timo Schulz
3   *   *
4   * This file is part of WinPT.   * This file is part of WinPT.
5   *   *
6   * WinPT is free software; you can redistribute it and/or   * WinPT is free software; you can redistribute it and/or
7   * modify it under the terms of the GNU General Public License   * modify it under the terms of the GNU General Public License
8   * as published by the Free Software Foundation; either version 2   * as published by the Free Software Foundation; either version 2
9   * of the License, or (at your option) any later version.   * of the License, or (at your option) any later version.
10   *     *  
11   * WinPT is distributed in the hope that it will be useful,   * WinPT is distributed in the hope that it will be useful,
12   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * but WITHOUT ANY WARRANTY; without even the implied warranty of
13   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14   * General Public License for more details.   * General Public License for more details.
15   *   *
16   * You should have received a copy of the GNU General Public License   * You should have received a copy of the GNU General Public License
17   * along with WinPT; if not, write to the Free Software Foundation,   * along with WinPT; if not, write to the Free Software Foundation,
18   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
19   */   */
20    #ifdef HAVE_CONFIG_H
21  #include <sys/types.h>  #include <config.h>
22  #include <windows.h>  #endif
23    
24  #include "../resource.h"  #include <sys/types.h>
25  #include "wptNLS.h"  #include <windows.h>
26  #include "wptGPG.h"  
27  #include "wptErrors.h"  #include "resource.h"
28  #include "wptTypes.h"  #include "wptNLS.h"
29  #include "wptW32API.h"  #include "wptGPG.h"
30  #include "wptVersion.h"  #include "wptErrors.h"
31  #include "wptCommonCtl.h"  #include "wptTypes.h"
32  #include "wptContext.h"  #include "wptW32API.h"
33  #include "wptRegistry.h"  #include "wptVersion.h"
34  #include "wptDlgs.h"  #include "wptCommonCtl.h"
35    #include "wptContext.h"
36  #include "openpgp.h"  #include "wptRegistry.h"
37    #include "wptDlgs.h"
38  BOOL CALLBACK  keycache_dlg_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam);  
39  void progress_cleanup (progress_filter_s * pfx);  #include "openpgp.h"
40    
41  static gpgme_keycache_t pub = NULL;  BOOL CALLBACK  keycache_dlg_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam);
42  static gpgme_keycache_t sec = NULL;  void progress_cleanup (progress_filter_s * pfx);
43  static unsigned int reload = 0;  
44  static char *gpg_secring = NULL;  static gpg_keycache_t pub = NULL;
45    static gpg_keycache_t sec = NULL;
46  void  static char *gpg_secring = NULL;
47  keycache_reload (HWND dlg)  
48  {        
49      refresh_cache_s rcs;  /* Reload the key cache. */
50    void
51      memset (&rcs, 0, sizeof rcs);  keycache_reload (HWND dlg)
52      rcs.kr_reload = rcs.kr_update = 1;  {      
53      rcs.tr_update = 0;      refresh_cache_s rcs;
54      DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_KEYCACHE, dlg,                                          
55                      keycache_dlg_proc, (LPARAM)&rcs);      memset (&rcs, 0, sizeof rcs);
56  } /* keycache_reload */      rcs.kr_reload = rcs.kr_update = 1;
57        rcs.tr_update = 0;
58  void      DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_KEYCACHE, dlg,                                        
59  keycache_release (void)                      keycache_dlg_proc, (LPARAM)&rcs);
60  {  }
61      int n = gpgme_keycache_count (pub);  
62      char tmpbuf[64];  
63    /* Release both key cache objects. If @cleanup is 1,
64      /* XXX: update the value when the cache has changed. */     also release other global structs. */
65      sprintf (tmpbuf, "%d", n);  void
66      set_reg_key (HKEY_CURRENT_USER, "Software\\WinPT", "nKeys", tmpbuf);  keycache_release (int cleanup)
67    {
68      if (pub) {      int n = gpg_keycache_get_size (pub);
69          gpgme_keycache_release (pub);      char tmpbuf[64];
70          pub = NULL;  
71      }      /* XXX: update the value when the cache has changed. */
72      if (sec) {      sprintf (tmpbuf, "%d", n);
73          gpgme_keycache_release (sec);      set_reg_key (HKEY_CURRENT_USER, "Software\\WinPT", "nKeys", tmpbuf);
74          sec = NULL;  
75      }      if (pub) {
76  } /* keycache_release */          gpg_keycache_release (pub);
77            pub = NULL;
78        }
79  gpgme_error_t      if (sec) {
80  keycache_update (int is_sec, const char *keyid)          gpg_keycache_release (sec);
81  {          sec = NULL;
82      gpgme_keycache_t ctx = pub;      }
83      gpgme_error_t err;      if (cleanup) {
84            if (gpg_secring)
85      if (is_sec)              free (gpg_secring);
86          ctx = sec;          gpg_secring = NULL;
87      err =  gpgme_keycache_update_key (ctx, is_sec, pub, keyid);      }
88      if (is_sec)  }
89          gpgme_keycache_prepare_single (ctx, keyid, NULL, gpg_secring);  
90      return err;  
91  }  /* Update the key with the keyid @keyid in the key cache.
92       If @is_sec is 1, the secret key cache is used. */
93  /* XXX: cache_keyring_names must be called then the GPG homedir changes! */  gpgme_error_t
94    keycache_update (int is_sec, const char *keyid)
95  gpgme_error_t  {
96  keycache_init (const char *pubring, const char * secring)      gpg_keycache_t ctx = pub;
97  {      gpgme_error_t err;
98      struct progress_filter_s pfx;  
99      gpgme_error_t err;      if (is_sec)
100      int val = 0;          ctx = sec;
101      char * p;      err = gpg_keycache_update_key (ctx, is_sec, pub, keyid);
102        if (is_sec)
103      if (secring != NULL) {          gpg_keycache_prepare_single (ctx, keyid, NULL, gpg_secring);
104          free_if_alloc (gpg_secring);      return err;
105          gpg_secring = get_gnupg_keyring (0, NO_STRICT);  }
106      }  
107    
108      if (reload) {  /* Initialize both cache contexts. Use @pubring for the public
109          keycache_release ();     keyring and @secring for the secret keyring. */
110          reload = 0;  gpgme_error_t
111      }  keycache_init (const char *pubring, const char *secring)
112      p = get_reg_entry (HKEY_CURRENT_USER, "Software\\WinPT", "nKeys");  {
113      if (p && *p != ' ') {      struct progress_filter_s pfx;
114          val = atoi (p);      gpgme_error_t err;
115          free_if_alloc (p);      int val = 0;
116          memset (&pfx, 0, sizeof (pfx));      char *p;
117      }  
118        if (secring != NULL) {
119      err = gpgme_keycache_new (&pub);          free_if_alloc (gpg_secring);
120      if (err)          gpg_secring = get_gnupg_keyring (0, NO_STRICT);
121          return err;      }
122      if (val != 0)      
123          gpgme_keycache_set_cb (pub, progress_callback, &pfx, val);      p = get_reg_entry (HKEY_CURRENT_USER, "Software\\WinPT", "nKeys");
124      err = gpgme_keycache_new (&sec);      if (p && *p != ' ') {
125      if (!err)          val = atoi (p);
126          err = gpgme_keycache_init (pub, NULL, 0);          free_if_alloc (p);
127      if (!err)          memset (&pfx, 0, sizeof (pfx));
128          err = gpgme_keycache_init( sec, NULL, 1 );      }
129      if( !err && pubring && *pubring )  
130          err = gpgme_keycache_prepare( pub, pubring, NULL );      /* Release old contexts first. */
131      if( !err && secring && * secring )      keycache_release (0);
132          err = gpgme_keycache_prepare( sec, NULL, secring );  
133      if (!err)      err = gpg_keycache_new (&pub);
134          gpgme_keycache_sync (pub, sec);      if (err)
135      if (val != 0)          return err;
136          progress_cleanup (&pfx);      if (val != 0)
137      return err;          gpg_keycache_set_cb (pub, progress_callback, &pfx, val);
138  } /* keycache_init */      err = gpg_keycache_new (&sec);
139        if (!err)
140            err = gpg_keycache_init (pub, NULL, 0);
141  void      if (!err)
142  keycache_set_reload( int yes )          err = gpg_keycache_init (sec, NULL, 1);
143  {      if (!err && pubring && *pubring)
144      reload = yes;          err = gpg_keycache_prepare( pub, pubring, NULL);
145  } /* keycache_set_reload */      if (!err && secring && * secring)
146            err = gpg_keycache_prepare (sec, NULL, secring);
147        if (!err)
148  int          gpg_keycache_sync (pub, sec);
149  keycache_get_reload( void )      if (val != 0)
150  {          progress_cleanup (&pfx);
151      return reload;      return err;
152  } /* keycache_get_reload */  }
153    
154    
155  gpgme_keycache_t  /* Return the public cache context if @is_pub is set
156  keycache_get_ctx (int is_pub)     the secre cache context otherwise. */
157  {  gpg_keycache_t
158      return is_pub? pub : sec;  keycache_get_ctx (int is_pub)
159  } /* keycache_get_ctx */  {
160        return is_pub? pub : sec;
161    }
162  static int  
163  get_key( const char *keyid, gpgme_key_t *r_key, int secret )  
164  {  /* Get the GPG key with keyid @keyid from the cache. Return it
165      gpgme_keycache_t cache;     in @r_key on success. */
166      gpgme_error_t err;  static int
167      int mode = secret? KEYCACHE_PRV : KEYCACHE_PUB;  get_key_from_cache (const char *keyid, gpgme_key_t *r_key,
168                        struct keycache_s **c, int secret)
169      if( !keyid )  {
170          return WPTERR_GENERAL;      gpg_keycache_t cache;
171      if( r_key )      gpgme_error_t err;
172          *r_key = NULL;      int mode = secret? KEYCACHE_PRV : KEYCACHE_PUB;
173      cache = keycache_get_ctx( mode );  
174      if( !cache )      if (!keyid)
175          BUG( NULL );          return WPTERR_GENERAL;
176      err = gpgme_keycache_find_key( cache, keyid, 0, r_key );      if (r_key)
177      if( err )          *r_key = NULL;
178          return WPTERR_GENERAL;      cache = keycache_get_ctx (mode);
179      return 0;      if (!cache)
180  } /* get_key */          BUG( NULL );
181        if (!c)
182            err = gpg_keycache_find_key (cache, keyid, 0, r_key);
183  static int      else
184  get_key2( const char * keyid, gpgme_key_t * r_key, int secret )          err = gpg_keycache_find_key2 (cache, keyid, 0, r_key, c);
185  {      return err? WPTERR_GENERAL : 0;
186      gpg_iobuf_t inp;  }
187      char * p;  
188      int rc;  
189    /* Get GPG key with keyid @keyid directly from GPG and return
190      p = get_gnupg_keyring (1, !NO_STRICT);     it in @r_key on success. */
191      if( !p )  static int
192          BUG( NULL );  get_key_directly (const char *keyid, gpgme_key_t *r_key, int secret)
193    {
194      inp = gpg_iobuf_open( p );      gpgme_ctx_t ctx;
195      if( !inp ) {      gpgme_error_t err;
196          const char *s = winpt_strerror( WPTERR_FILE_OPEN );  
197          log_box( _("WinPT Error"), 0, "%s: %s", p, s );      err = gpgme_new (&ctx);
198          free_if_alloc( p );      if (err)
199          return NULL;          return WPTERR_GENERAL;
200      }      err = gpgme_get_key (ctx, keyid, r_key, secret);
201      gpg_iobuf_ioctl( inp, 3, 1, NULL ); /* disable cache */      gpgme_release (ctx);
202      rc = gpgme_getkey_bykeyid( inp, keyid, r_key );      return err? WPTERR_GENERAL : 0;
203    }
204      gpg_iobuf_close( inp );  
205      free_if_alloc( p );  
206      return rc;  /* Search the public key with @keyid as the keyid in the cache and
207  } /* get_key2 */     return the item in @k. */
208    int
209    winpt_get_pubkey (const char *keyid, winpt_key_s *k)
210  int  {
211  get_pubkey (const char *keyid, gpgme_key_t *ret_key)      int rc;
212  {      
213      int rc = 0;      rc = get_key_from_cache (keyid, &k->ctx, &k->ext, 0);
214        if (rc)
215      if (pub && sec)          return rc;
216          rc = get_key (keyid, ret_key, 0);      k->is_v3 = k->ctx->subkeys->pubkey_algo == GPGME_PK_RSA &&
217      else                  strlen (k->ctx->subkeys->fpr) == 32;
218          rc = get_key2 (keyid, ret_key, 0);      k->is_protected = k->ext->gloflags.is_protected;
219      return rc;      k->keyid = k->ctx->subkeys->keyid;
220  } /* get_pubkey */      k->uid = k->ctx->uids->uid;
221        return rc;
222    }
223  int  
224  get_seckey( const char *keyid, gpgme_key_t *ret_skey )  
225  {  int
226      int rc = 0;  winpt_get_seckey (const char *keyid, winpt_key_s *k)
227    {
228      if( pub && sec )      int rc;
229          rc = get_key( keyid, ret_skey, 1 );      rc = get_key_from_cache (keyid, &k->ctx, &k->ext, 1);
230      else      if (rc)
231          rc = get_key2( keyid, ret_skey, 1 );          return rc;
232      return rc;      k->is_v3 = k->ctx->subkeys->pubkey_algo == GPGME_PK_RSA &&
233  } /* get_seckey */                  strlen (k->ctx->subkeys->fpr) == 32;
234        k->is_protected = k->ext->gloflags.is_protected;
235        k->keyid = k->ctx->subkeys->keyid;
236  int      k->uid = k->ctx->uids->uid;
237  count_insecure_elgkeys (void)      return rc;
238  {  }
239      gpgme_keycache_t pc;  
240      gpgme_key_t key;  
241      int n=0;  int
242    get_pubkey (const char *keyid, gpgme_key_t *ret_key)
243      pc = keycache_get_ctx (1);  {
244      if (!pc)      int rc;
245          BUG (0);  
246      while (!gpgme_keycache_next_key (pc, 0, &key)) {      if (pub && sec)
247          if (gpgme_key_get_ulong_attr (key, GPGME_ATTR_ALGO, NULL, 0)          rc = get_key_from_cache (keyid, ret_key, NULL, 0);
248              == GPGME_PK_ELG_ES)      else
249              n++;          rc = get_key_directly (keyid, ret_key, 0);
250      }      return rc;
251      gpgme_keycache_rewind (pc);  }
252      return n;  
253  }  
254    int
255    get_seckey (const char *keyid, gpgme_key_t *ret_skey)
256    {
257        int rc;
258    
259        if (pub && sec)
260            rc = get_key_from_cache (keyid, ret_skey, NULL, 1);
261        else
262            rc = get_key_directly (keyid, ret_skey, 1);
263        return rc;
264    }
265    
266    
267    /* Search for insecure ElGamal keys and return the
268       number of founded keys. */
269    int
270    count_insecure_elgkeys (void)
271    {
272        gpg_keycache_t pc;
273        gpgme_key_t key;
274        int n=0;
275    
276        pc = keycache_get_ctx (1);
277        if (!pc)
278            BUG (0);
279        while (!gpg_keycache_next_key (pc, 0, &key)) {
280            if (key->subkeys->pubkey_algo == GPGME_PK_ELG)
281                n++;
282        }
283        gpg_keycache_rewind (pc);
284        return n;
285    }
286    
287    
288    
289    /* Map the signature summary in @sum to signature status table index.
290       Return value: index to table. */
291    static int
292    sigsum_to_index (gpgme_sigsum_t sum)
293    {
294        if ((sum & GPGME_SIGSUM_VALID) && (sum & GPGME_SIGSUM_KEY_REVOKED))
295            return 7;
296        if ((sum & GPGME_SIGSUM_VALID) && (sum & GPGME_SIGSUM_SIG_EXPIRED))
297            return 6;
298        if (sum & GPGME_SIGSUM_GREEN)
299            return 1;
300        else if (sum & GPGME_SIGSUM_RED)
301            return 2;
302        else if (sum & GPGME_SIGSUM_KEY_MISSING)
303            return 3;
304        return 0;
305    }
306    
307    
308    /* Return a humand readable description for the signature status @sum. */
309    const char*
310    get_gpg_sigstat (gpgme_sigsum_t sum)
311    {
312        const char *gpg_sigstat[] = {
313            _("Error during verification process."),
314            _("The signature is good."),
315            _("The signature is BAD!"),
316            _("The signature could not be checked due to a missing key."),
317            _("No valid OpenPGP signature."),
318            _("Signature Error"),
319            _("Good Signature (Expired Key)"),
320            _("Good Signature (Revoked Key)"),
321            NULL
322        };
323        const unsigned int mask = 8;
324    
325        return gpg_sigstat[sigsum_to_index (sum) % mask];
326    }
327    
328    
329    /* Check if the secret keyring contains at least one
330       key with ultimate trust.
331       Return value: 0 on success. */
332    int
333    check_ultimate_trusted_key (void)
334    {
335        struct keycache_s *n;
336    
337        for (n = sec->item; n; n = n->next) {
338            if (n->pubpart &&
339                n->pubpart->key->owner_trust == GPGME_VALIDITY_ULTIMATE)
340            return 0;
341        }
342        return -1;
343    }

Legend:
Removed from v.22  
changed lines
  Added in v.175

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26