/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Contents of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log


Revision 85 - (show annotations)
Fri Nov 18 07:20:40 2005 UTC (19 years, 3 months ago) by twoaday
File size: 13283 byte(s)
2005-11-17  Timo Schulz  <ts@g10code.com>
 
        * wptGPG.cpp (check_last_gnupg_access): Kludge to avoid that
        the cache will be loaded twice.
        * wptRegistry.cpp (regist_inst_winpt): More comments.
        * wptKeyManagerDlg.cpp (do_center_window): Make sure that
        neg. coordinates are never used.
        * wptClipVerifyDlg.cpp (clip_verify_dlg_proc): Localize all
        strings.
        * wptPassphraseCB.cpp (passphrase_callback_proc): Likewise.
        * wptFileManagerDlg.cpp (filemanager_dlg_proc): Localize menu
        and save 'AlwaysOnTop' in the registry.
         

1 /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2 * Copyright (C) 2001, 2002, 2003, 2005 Timo Schulz
3 * Copyright (C) 2005 g10 Code GmbH
4 *
5 * This file is part of WinPT.
6 *
7 * WinPT is free software; you can redistribute it and/or
8 * modify it under the terms of the GNU General Public License
9 * as published by the Free Software Foundation; either version 2
10 * of the License, or (at your option) any later version.
11 *
12 * WinPT is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15 * General Public License for more details.
16 *
17 * You should have received a copy of the GNU General Public License
18 * along with WinPT; if not, write to the Free Software Foundation,
19 * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
20 */
21
22 #ifdef HAVE_CONFIG_H
23 #include <config.h>
24 #endif
25
26 #include <windows.h>
27 #include <ctype.h>
28
29 #include "resource.h"
30 #include "wptNLS.h"
31 #include "wptW32API.h"
32 #include "wptVersion.h"
33 #include "wptGPG.h"
34 #include "wptCommonCtl.h"
35 #include "wptContext.h"
36 #include "wptDlgs.h"
37 #include "wptUTF8.h"
38 #include "wptErrors.h"
39 #include "wptTypes.h"
40 #include "wptKeylist.h"
41 #include "wptAgent.h"
42 #include "wptRegistry.h"
43
44 const char* get_symkey_algo (int algo);
45
46 #define item_ctrl_id( cmd ) \
47 ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
48
49 #define item_ctrl_id2(cmd) \
50 ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
51
52
53 /* Overwrite passphrase and free memory. */
54 static void
55 burn_passphrase (char **pwd)
56 {
57 char *pass = *pwd;
58 wipememory (pass, strlen (pass));
59 delete []pass;
60 *pwd = NULL;
61 }
62
63
64 /* Dialog procedure for the passphrase callback. */
65 static BOOL CALLBACK
66 passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
67 {
68 static passphrase_cb_s *c;
69 gpgme_decrypt_result_t res=NULL;
70 gpgme_sign_result_t res_sig=NULL;
71 gpgme_key_t key;
72 gpgme_recipient_t recip=NULL, r;
73 void *item;
74 const char *id;
75 char *info;
76 int n;
77
78 switch (msg) {
79 case WM_INITDIALOG:
80 c = (passphrase_cb_s *)lparam;
81 if (!c)
82 BUG (0);
83 SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
84 SetWindowText (dlg, c->title);
85 if (c->gpg_cmd == GPG_CMD_DECRYPT) {
86 SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
87 _("Encrypted with the following public key(s)"));
88 CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
89 }
90 else if (c->gpg_cmd == GPG_CMD_SIGN)
91 CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
92 if (c->recipients)
93 recip = c->recipients; /* recipients were already extracted. */
94 else {
95 /* XXX: not all ENCRYPT_TO entries are listed here. */
96 res = gpgme_op_decrypt_result (c->gpg);
97 if (res && res->recipients)
98 recip = res->recipients;
99 }
100 if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
101 for (r = res->recipients; r; r = r->next) {
102 get_pubkey (r->keyid, &key);
103 if (key) {
104 char *uid;
105 id = key->uids->name;
106 if (!id)
107 id = _("Invalid User ID");
108 uid = utf8_to_wincp (id, strlen (id));
109 info = new char [32+strlen (uid)+1 + 4 + strlen (r->keyid)+1
110 + strlen (key->uids->email)+1];
111 if (!info)
112 BUG (NULL);
113 sprintf (info, "%s <%s> (%s, 0x%s)", uid, key->uids->email,
114 get_key_pubalgo (r->pubkey_algo), r->keyid+8);
115 free (uid);
116
117 }
118 else {
119 info = new char [32 + strlen (r->keyid)+1 + 4];
120 if (!info)
121 BUG (NULL);
122 sprintf (info, _("Unknown key ID (%s, 0x%s)"),
123 get_key_pubalgo (r->pubkey_algo), r->keyid+8);
124 }
125 listbox_add_string (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);
126 free_if_alloc (info);
127 }
128 }
129 else if (c->gpg_cmd == GPG_CMD_DECRYPT)
130 EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
131 SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
132 IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
133 c->bad_pwd? _("Bad passphrase; Enter passphrase again") :
134 _("Please enter your passphrase"));
135 if (c->gpg_cmd == GPG_CMD_DECRYPT) {
136 SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
137 if (res && !res->recipients) {
138 const char *s = _("Symmetric encryption.\n"
139 "%s encrypted data.");
140 const char *alg = get_symkey_algo (c->sym.sym_algo);
141 info = new char[strlen (s) + strlen (alg) + 2];
142 if (!info)
143 BUG (NULL);
144 sprintf (info, s, alg);
145 SetDlgItemText (dlg, IDC_DECRYPT_MSG, info);
146 free_if_alloc (info);
147 }
148 else
149 SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
150 }
151 else {
152 SetFocus( GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
153 SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
154 }
155 center_window (dlg, NULL);
156 SetForegroundWindow (dlg);
157 set_active_window (dlg);
158 return FALSE;
159
160 case WM_SYSCOMMAND:
161 if (LOWORD (wparam) == SC_CLOSE) {
162 SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
163 c->cancel = 1;
164 EndDialog (dlg, TRUE);
165 }
166 break;
167
168 case WM_COMMAND:
169 switch (HIWORD (wparam)) {
170 case BN_CLICKED:
171 if (LOWORD (wparam) == IDC_DECRYPT_HIDE
172 || LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
173 HWND hwnd;
174 int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
175 hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
176 SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
177 SetFocus (hwnd);
178 }
179 }
180
181 switch (LOWORD (wparam)) {
182 case IDOK:
183 /* XXX: the item is even cached when the passphrase is not
184 correct, which means that the user needs to delete all
185 cached entries to continue. */
186 if (c->pwd)
187 burn_passphrase (&c->pwd);
188 n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
189 if (!n) {
190 c->pwd = new char[2];
191 if (!c->pwd)
192 BUG (NULL);
193 strcpy (c->pwd, "");
194 }
195 else {
196 c->pwd = new char[n+2];
197 if (!c->pwd)
198 BUG (NULL);
199 GetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), c->pwd, n+1);
200 }
201 res = gpgme_op_decrypt_result (c->gpg);
202 if (!res)
203 res_sig = gpgme_op_sign_result (c->gpg);
204 if (reg_prefs.cache_time > 0 && !c->is_card &&
205 (res || res_sig)) {
206 if (agent_get_cache (c->keyid, &item))
207 agent_unlock_cache_entry (&item);
208 else
209 agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);
210 }
211 c->cancel = 0;
212 EndDialog (dlg, TRUE);
213 return TRUE;
214
215 case IDCANCEL:
216 SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
217 c->cancel = 1;
218 EndDialog (dlg, FALSE);
219 return FALSE;
220 }
221 break;
222 }
223
224 return FALSE;
225 }
226
227
228 /* Extract the main keyid from @pass_info.
229 Return value: long main keyid or NULL for an error. */
230 static const char*
231 parse_gpg_keyid (const char *pass_info)
232 {
233 static char keyid[16+1];
234
235 /* XXX: check for leading alpha-chars? */
236 if (strlen (pass_info) < 16) {
237 log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
238 return NULL;
239 }
240 /* the format of the desc buffer looks like this:
241 request_keyid[16] main_keyid[16] keytype[1] keylength[4]
242 we use the main keyid to use only one cache entry. */
243 strncpy (keyid, pass_info+17, 16);
244 keyid[16] = 0;
245 return keyid;
246 }
247
248
249 /* Parse the information in @uid_hint and @pass_info to generate
250 a input message for the user in @desc. */
251 static int
252 parse_gpg_description (const char *uid_hint, const char *pass_info,
253 char *desc, int size)
254 {
255 gpgme_pubkey_algo_t algo;
256 char usedkey[16+1];
257 char mainkey[16+1];
258 char *uid, *p;
259 int n=0;
260
261 algo = (gpgme_pubkey_algo_t)0;
262 /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
263 if (strlen (uid_hint) < 17) {
264 *desc = 0;
265 log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
266 return -1;
267 }
268
269 while (p = strsep ((char**)&pass_info, " ")) {
270 switch (n++) {
271 case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;
272 case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;
273 case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;
274 }
275 }
276 uid_hint += 16; /* skip keyid */
277 uid_hint += 1; /* space */
278
279 uid = utf8_to_wincp (uid_hint, strlen (uid_hint));
280
281 if (strcmp (usedkey, mainkey))
282 _snprintf (desc, size-1,
283 _("You need a passphrase to unlock the secret key for\n"
284 "user: \"%s\"\n"
285 "%s key, ID %s (main key ID %s)\n"),
286 uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);
287 else if (!strcmp (usedkey, mainkey))
288 _snprintf (desc, size-1,
289 _("You need a passphrase to unlock the secret key for\n"
290 "user: \"%s\"\n"
291 "%s key, ID %s\n"),
292 uid, get_key_pubalgo (algo), usedkey+8);
293 free (uid);
294 return 0;
295 }
296
297
298 /* Extract the serial number from the card ID @id and return it. */
299 const char*
300 extract_serial_no (const char *id)
301 {
302 static char buf[8];
303 char *p;
304
305 p = strchr (id, '/');
306 if (!p) {
307 log_debug ("extract_serial_no: error '%s'\r\n", id);
308 return NULL;
309 }
310 strncpy (buf, id+(p-id)-6, 6);
311 return buf;
312 }
313
314
315 /* Passphrase callback with the ability to support caching. */
316 gpgme_error_t
317 passphrase_cb (void *hook, const char *uid_hint,
318 const char *passphrase_info,
319 int prev_was_bad, int fd)
320 {
321 passphrase_cb_s *c = (passphrase_cb_s*)hook;
322 HANDLE hd = (HANDLE)fd;
323 void *item;
324 const char *keyid=NULL, *pass;
325 DWORD n;
326 int rc = 0;
327
328 if (!c) {
329 log_debug ("passphrase_cb: error '!c'\r\n");
330 return gpg_error (GPG_ERR_INV_ARG);
331 }
332 c->bad_pwd = prev_was_bad? 1 : 0;
333 if (prev_was_bad && !c->cancel) {
334 if (c->pwd)
335 burn_passphrase (&c->pwd);
336 agent_del_cache (c->keyid);
337 c->pwd_init = 1;
338 }
339
340 if (passphrase_info) {
341 if (strlen (passphrase_info) < 16 &&
342 !strstr (passphrase_info, "OPENPGP")) {
343 /* assume symetric encryption. */
344 int pos=2;
345 c->sym.sym_algo = atoi (passphrase_info);
346 if (c->sym.sym_algo > 9)
347 pos++;
348 /* XXX: be more strict. */
349 c->sym.s2k_mode = atoi (passphrase_info+pos);
350 c->sym.s2k_hash = atoi (passphrase_info+pos+2);
351 }
352
353 keyid = parse_gpg_keyid (passphrase_info);
354 pass = agent_get_cache (keyid+8, &item);
355 if (pass) {
356 agent_unlock_cache_entry (&item);
357 c->pwd_init = 0;
358 if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
359 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
360 if (!WriteFile (hd, "\n", 1, &n, NULL))
361 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
362 return 0;
363 }
364 }
365
366 if (c->pwd_init) {
367 if (keyid && strlen (keyid) == 16)
368 strcpy (c->keyid, keyid+8);
369
370 /* if @passphrase_info contains 'OPENPGP' we assume a smart card
371 has been used. */
372 if (strstr (passphrase_info, "OPENPGP")) {
373 const char *s=passphrase_info;
374 while (s && *s && *s != 'D')
375 s++;
376 _snprintf (c->info, sizeof c->info-1,
377 _("Please enter the PIN to unlock your secret card key\n"
378 "Card: %s"), extract_serial_no (s));
379 c->is_card = 1;
380 }
381 else if (uid_hint)
382 parse_gpg_description (uid_hint, passphrase_info,
383 c->info, sizeof c->info - 1);
384 if (c->gpg_cmd == GPG_CMD_DECRYPT) {
385 rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
386 (HWND)c->hwnd, passphrase_callback_proc,
387 (LPARAM)c);
388 }
389 else if (c->gpg_cmd == GPG_CMD_SIGN) {
390 rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
391 (HWND)c->hwnd, passphrase_callback_proc,
392 (LPARAM)c);
393 }
394 if (rc == -1) {
395 if (!WriteFile (hd, "\n", 1, &n, NULL))
396 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
397 return 0;
398 }
399 c->pwd_init = 0;
400 }
401 if (c->cancel) {
402 if (!WriteFile (hd, "\n", 1, &n, NULL))
403 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
404 return 0;
405 }
406
407 if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
408 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
409 if (!WriteFile (hd, "\n", 1, &n, NULL))
410 log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
411 return 0;
412 }
413
414
415 /* Initialize the given passphrase callback @cb with the
416 used gpgme context @ctx, the command @cmd and a title
417 @title for the dialog. */
418 void
419 set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
420 int cmd, HWND hwnd, const char *title)
421 {
422 memset (cb, 0, sizeof *cb);
423 cb->gpg_cmd = cmd;
424 cb->bad_pwd = 0;
425 cb->is_card = 0;
426 cb->cancel = 0;
427 cb->hwnd = hwnd;
428 cb->pwd_init = 1;
429 free_if_alloc (cb->title);
430 cb->title = m_strdup (title);
431 if (!cb->title)
432 BUG (NULL);
433 gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
434 cb->gpg = ctx;
435 }
436
437
438 /* Release a passphrase callback @ctx. */
439 void
440 release_gpg_passphrase_cb (passphrase_cb_s *ctx)
441 {
442 gpgme_recipient_t r, n;
443
444 if (!ctx)
445 return;
446 sfree_if_alloc (ctx->pwd);
447 free_if_alloc (ctx->title);
448 r = ctx->recipients;
449 while (r) {
450 n = r->next;
451 safe_free (r->keyid);
452 safe_free (r);
453 r = n;
454 }
455 }
456
457
458 /* Simple check to measure passphrase (@pass) quality.
459 Return value: 0 on success. */
460 int
461 check_passwd_quality (const char *pass, int strict)
462 {
463 int i, nd=0, nc=0, n;
464
465 n = strlen (pass);
466 if (n < 8)
467 return -1;
468
469 for (i=0; i < n; i++) {
470 if (isdigit (pass[i]))
471 nd++;
472 if (isalpha (pass[i]))
473 nc++;
474 }
475
476 /* check that the passphrase contains letters and numbers. */
477 if (nd == n || nc == n)
478 return -1;
479
480 return 0;
481 }

Properties

Name Value
svn:eol-style native

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26