/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Diff of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 24 by twoaday, Sat Oct 8 10:43:08 2005 UTC revision 271 by twoaday, Sun Nov 5 08:57:45 2006 UTC
# Line 1  Line 1 
1  /* wptPassphraseCB.cpp - GPGME Passphrase Callback  /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2   *      Copyright (C) 2001, 2002, 2003, 2005 Timo Schulz   *      Copyright (C) 2001, 2002-2006 Timo Schulz
3   *      Copyright (C) 2005 g10 Code GmbH   *      Copyright (C) 2005 g10 Code GmbH
4   *   *
5   * This file is part of WinPT.   * This file is part of WinPT.
6   *   *
7   * WinPT is free software; you can redistribute it and/or   * WinPT is free software; you can redistribute it and/or
8   * modify it under the terms of the GNU General Public License   * modify it under the terms of the GNU General Public License
9   * as published by the Free Software Foundation; either version 2   * as published by the Free Software Foundation; either version 2
10   * of the License, or (at your option) any later version.   * of the License, or (at your option) any later version.
11   *     *  
12   * WinPT is distributed in the hope that it will be useful,   * WinPT is distributed in the hope that it will be useful,
13   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * but WITHOUT ANY WARRANTY; without even the implied warranty of
14   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15   * General Public License for more details.   * General Public License for more details.
16   *   *
17   * You should have received a copy of the GNU General Public License   * You should have received a copy of the GNU General Public License
18   * along with WinPT; if not, write to the Free Software Foundation,   * along with WinPT; if not, write to the Free Software Foundation,
19   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
20   */   */
21    
22  #include <windows.h>  #ifdef HAVE_CONFIG_H
23  #include <ctype.h>  #include <config.h>
24    #endif
25  #include "../resource.h"  
26  #include "wptNLS.h"  #include <windows.h>
27  #include "wptW32API.h"  #include <ctype.h>
28  #include "wptVersion.h"  
29  #include "wptGPG.h"  #include "resource.h"
30  #include "wptCommonCtl.h"  #include "wptNLS.h"
31  #include "wptContext.h"  #include "wptW32API.h"
32  #include "wptDlgs.h"  #include "wptVersion.h"
33  #include "wptUTF8.h"  #include "wptGPG.h"
34  #include "wptErrors.h"  #include "wptCommonCtl.h"
35  #include "wptTypes.h"  #include "wptContext.h"
36  #include "wptKeyList.h"  #include "wptDlgs.h"
37  #include "wptAgent.h"  #include "wptErrors.h"
38  #include "wptRegistry.h"  #include "wptTypes.h"
39    #include "wptKeylist.h"
40    #include "wptAgent.h"
41  #define item_ctrl_id( cmd ) \  #include "wptRegistry.h"
42      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)  #include "wptUTF8.h"
43    
44  #define item_ctrl_id2(cmd) \  
45      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)  /* Return the control ID dependent on the mode (sign or decrypt). */
46    #define item_ctrl_id(cmd) \
47        ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
48  /* Dialog procedure for the passphrase callback. */  
49  static BOOL CALLBACK  #define item_ctrl_id2(cmd) \
50  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
51  {      
52      static passphrase_cb_s * c;  const char* get_symkey_algo (int algo);
53      gpgme_decrypt_result_t res;  void ListBox_AddString_utf8 (HWND lb, const char *txt);
54      gpgme_sign_result_t res_sig;  
55      gpgme_key_t key;  
56      const char *id;  /* Overwrite passphrase and free memory. */
57      char *info;  static void
58      void *ctx = NULL, *item;  burn_passphrase (char **pwd)
59      int n;  {
60        char *pass = *pwd;
61      switch (msg) {  
62      case WM_INITDIALOG:      wipememory (pass, strlen (pass));
63          c = (passphrase_cb_s *)lparam;      delete []pass;
64          if (!c)      *pwd = NULL;
65              BUG (0);  }
66          SetWindowText (dlg, c->title);  
67          if (c->gpg_cmd == GPG_CMD_DECRYPT) {  
68              SetDlgItemText( dlg, IDC_DECRYPT_LISTINF,  /* Dialog procedure for the passphrase callback. */
69                  _("Encrypted with the following public key(s)") );  static BOOL CALLBACK
70              CheckDlgButton( dlg, IDC_DECRYPT_HIDE, BST_CHECKED );  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
71          }  {    
72          else if( c->gpg_cmd == GPG_CMD_SIGN )      static passphrase_cb_s *c;
73              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);      gpgme_decrypt_result_t res=NULL;
74          res = gpgme_op_decrypt_result (c->gpg);      gpgme_sign_result_t res_sig=NULL;
75          if (res != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {      gpgme_recipient_t recip=NULL, r;
76              gpgme_recipient_t r;      winpt_key_s key;
77        void *item;
78              for (r = res->recipients; r; r = r->next) {      const char *id;
79                  get_pubkey (r->keyid, &key);      char *info;
80                  if (key) {      int n;
81                      char *uid;  
82                      id = key->uids->name;      switch (msg) {
83                      if (!id)      case WM_ACTIVATE:
84                          id = _("Invalid User ID");          safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd));
85                      uid = utf8_to_wincp (id, strlen (id));          break;
86                      info = new char [16+strlen (uid) + 4 + strlen (r->keyid) + strlen (key->uids->email) +  3];  
87                      if (!info)      case WM_DESTROY:
88                          BUG (NULL);          safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd));
89                      sprintf (info, "%s <%s> (%s, 0x%s)", uid, key->uids->email,          break;
90                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);  
91                      free (uid);      case WM_INITDIALOG:
92                                c = (passphrase_cb_s *)lparam;
93                  }          if (!c)
94                  else {              BUG (0);
95                      info = new char [32 + strlen (r->keyid) + 2];          SetDlgItemText (dlg, IDCANCEL, _("&Cancel"));
96                      if (!info)          SetWindowText (dlg, c->title);
97                          BUG (NULL);          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
98                      sprintf (info, _("Unknown (key ID 0x%s)"),              SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
99                               r->keyid? r->keyid+8 : "????????");              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
100                  }                              _("Encrypted with the following public key(s)"));
101                  listbox_add_string (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
102                  free (info);          }
103              }          else if (c->gpg_cmd == GPG_CMD_SIGN) {
104          }              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing"));
105          else if (c->gpg_cmd == GPG_CMD_DECRYPT)              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
106              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);          }
107          SetDlgItemText( dlg, c->gpg_cmd == GPG_CMD_DECRYPT?          /* Because it depends on the order the keys are stored in the
108                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,             keyring whether res->recipients is complete or not, we also
109                          _("Please enter your passphrase") );             support that the recipients were externally extracted and then
110          if (c->gpg_cmd == GPG_CMD_DECRYPT) {             we use this list. */
111              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));          if (c->recipients)
112              if (res && !res->recipients)              recip = c->recipients; /* recipients were already extracted. */
113                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, _("Symmetric encryption.\n"));                                                              else {
114              else              res = gpgme_op_decrypt_result (c->gpg);
115                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);              if (res && res->recipients)
116          }                  recip = res->recipients;
117          else {          }
118              SetFocus( GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));          if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
119              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);              for (r = recip; r; r = r->next) {
120          }                  memset (&key, 0, sizeof (key));
121          center_window (dlg, NULL);                  if (!winpt_get_pubkey (r->keyid, &key)) {
122          SetForegroundWindow (dlg);                      gpgme_user_id_t u = key.ctx->uids;
123          set_active_window (dlg);  
124          return FALSE;                      id = u->name;
125                        if (!id)
126          case WM_SYSCOMMAND:                          id = _("Invalid User ID");
127              if( LOWORD( wparam ) == SC_CLOSE ) {                      n = 32+strlen (id)+1+4+strlen (r->keyid)+1;
128                  SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" );                      if (u->email)
129                  c->cancel = 1;                          n += strlen (u->email)+1;
130                  EndDialog( dlg, TRUE );                      info = new char [n+1];
131              }                      if (!info)
132              break;                          BUG (NULL);
133                        if (!u->email || strlen (u->email) < 1)
134          case WM_COMMAND:                          sprintf (info, "%s (%s, 0x%s)", id,
135              switch( HIWORD( wparam ) ) {                                   get_key_pubalgo (r->pubkey_algo), r->keyid+8);
136              case BN_CLICKED:                      else
137                  if ( LOWORD( wparam ) == IDC_DECRYPT_HIDE                          sprintf (info, "%s <%s> (%s, 0x%s)", id, u->email,
138                      || LOWORD( wparam ) == IDC_DECRYPT_SIGN_HIDE ) {                                   get_key_pubalgo (r->pubkey_algo), r->keyid+8);
139                      HWND hwnd;                  }
140                      int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));                  else {
141                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));                      info = new char [32 + strlen (r->keyid)+1 + 4];
142                      SendMessage( hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0 );                      if (!info)
143                      SetFocus (hwnd);                          BUG (NULL);
144                  }                      sprintf (info, _("Unknown key ID (%s, 0x%s)"),
145              }                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);
146                    }
147              switch (LOWORD (wparam)) {                  ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);
148              case IDOK:                    free_if_alloc (info);
149                  /* fixme: the item is even cached when the passphrase is not                  winpt_release_pubkey (&key);
150                            correct, which means that the user needs to delete all              }
151                            cached entries to continue. */          }
152                  if (c->pwd) {          else if (c->gpg_cmd == GPG_CMD_DECRYPT)
153                      delete []c->pwd;              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
154                      c->pwd = NULL;          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
155                  }                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
156                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));                          c->bad_pwd? _("Bad passphrase; Enter passphrase again") :
157                  if (!n) {                          _("Please enter your passphrase"));
158                      c->pwd = new char[2];          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
159                      strcpy (c->pwd, "");              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
160                  }              if (res && !res->recipients) {
161                  else {                  const char *s = _("Symmetric encryption.\n"
162                      c->pwd = new char[n+2];                                    "%s encrypted data.");
163                      if (!c->pwd)                  const char *alg = get_symkey_algo (c->sym.sym_algo);
164                          BUG (NULL);                  info = new char[strlen (s) + strlen (alg) + 2];
165                      GetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), c->pwd, n+1);                  if (!info)
166                  }                      BUG (NULL);
167                  res = gpgme_op_decrypt_result (c->gpg);                  sprintf (info, s, alg);
168                  if (!res)                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, info);
169                      res_sig = gpgme_op_sign_result (c->gpg);                  free_if_alloc (info);
170                  if (reg_prefs.cache_time > 0 && !c->is_card &&              }
171                      ((res && res->recipients) || (res_sig && res_sig->signatures))) {              else
172                      if (agent_get_cache (c->keyid, &item))                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
173                          agent_unlock_cache_entry (&item);          }
174                      else          else {
175                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
176                  }              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
177                  EndDialog (dlg, TRUE);          }
178                  return TRUE;          center_window (dlg, NULL);
179                            SetForegroundWindow (dlg);
180              case IDCANCEL:          return FALSE;
181                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "" );  
182                  c->cancel = 1;          case WM_COMMAND:
183                  EndDialog (dlg, FALSE);              switch (HIWORD (wparam)) {
184                  return FALSE;              case BN_CLICKED:
185              }                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE
186              break;                      || LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
187      }                      HWND hwnd;
188                            int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
189      return FALSE;                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
190  }                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
191                        SetFocus (hwnd);
192                    }
193  /* Extract the main keyid from @pass_info.              }
194     Return value: long main keyid or NULL for an error. */  
195  static const char*              switch (LOWORD (wparam)) {
196  parse_gpg_keyid (const char *pass_info)              case IDOK:  
197  {                  /* XXX: the item is even cached when the passphrase is not
198      static char keyid[16+1];                          correct, which means that the user needs to delete all
199                                cached entries to continue. */
200      if (strlen (pass_info) < 16)                  if (c->pwd)
201          return NULL;                      burn_passphrase (&c->pwd);
202      /* the format of the desc buffer looks like this:                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
203         request_keyid[16] main_keyid[16] keytype[1] keylength[4]                  if (!n) {
204         we use the main keyid to use only one cache entry. */                      c->pwd = new char[2];
205      strncpy (keyid, pass_info+17, 16);                      if (!c->pwd)
206      keyid[16] = 0;                          BUG (NULL);
207      return keyid;                      strcpy (c->pwd, "");
208  }                  }
209                    else {
210                        char *p = new char[n+2];
211  /* Parse the information in @uid_hint and @pass_info to generate                      if (!p)
212     a input message for the user in @desc. */                          BUG (NULL);
213  static void                      /* Get the passphrase and convert it utf8.
214  parse_gpg_description (const char *uid_hint, const char *pass_info,                         This does not just the us-ascii charset. */
215                         char *desc, int size)                      SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1);
216  {                      c->pwd = native_to_utf8 (p);
217      gpgme_pubkey_algo_t algo;                      sfree_if_alloc (p);
218      char usedkey[16+1], mainkey[16+1];                  }
219      char *uid, *p;                  res = gpgme_op_decrypt_result (c->gpg);
220      int n=0;                  if (!res)
221                        res_sig = gpgme_op_sign_result (c->gpg);
222      while (p = strsep ((char**)&pass_info, " ")) {                  if (!c->is_card && reg_prefs.cache_time > 0 &&
223          switch (n++) {                      (res || res_sig)) {
224          case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;                      if (agent_get_cache (c->keyid, &item))
225          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;                          agent_unlock_cache_entry (&item);
226          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;                      else
227          }                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);
228      }                  }
229      uid_hint += 16; /* skip keyid */                  c->cancel = 0;
230      uid_hint += 1;  /* space */                  EndDialog (dlg, TRUE);
231                    return TRUE;
232      uid = utf8_to_wincp (uid_hint, strlen (uid_hint));                  
233                case IDCANCEL:
234      if (strcmp (usedkey, mainkey))                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
235          _snprintf (desc, size-1,                  c->cancel = 1;
236                     _("You need a passphrase to unlock the secret key for\n"                  EndDialog (dlg, FALSE);
237                       "user: \"%s\"\n"                  return TRUE;
238                       "%s key, ID %s (main key ID %s)\n"),              }
239                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);              break;
240      else if (!strcmp (usedkey, mainkey))      }
241          _snprintf (desc, size-1,      
242                     _("You need a passphrase to unlock the secret key for\n"      return FALSE;
243                       "user: \"%s\"\n"  }
244                       "%s key, ID %s\n"),  
245                       uid, get_key_pubalgo (algo), usedkey+8);  
246      free (uid);  /* Extract the main keyid from @pass_info.
247  }     Return value: long main keyid or NULL for an error. */
248    static const char*
249    parse_gpg_keyid (const char *pass_info)
250  static int inline  {
251  is_hexstring (const char * p)      static char keyid[16+1];
252  {      
253      size_t i;      /* XXX: check for leading alpha-chars? */
254        if (strlen (pass_info) < 16) {
255      for (i=0; i < strlen (p); i++) {          log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
256          if (!isxdigit (p[i]))          return NULL;
257              return -1;      }
258      }      /* the format of the desc buffer looks like this:
259      return 0;         request_keyid[16] main_keyid[16] keytype[1] keylength[4]
260  }         we use the main keyid to use only one cache entry. */
261        strncpy (keyid, pass_info+17, 16);
262        keyid[16] = 0;
263  /* Passphrase callback with the ability to support caching. */      return keyid;
264  gpgme_error_t  }
265  passphrase_cb (void *hook, const char *uid_hint,  
266                 const char *passphrase_info,  
267                 int prev_was_bad, int fd)  /* Parse the information in @uid_hint and @pass_info to generate
268  {     a input message for the user in @desc. */
269      passphrase_cb_s *c = (passphrase_cb_s*)hook;  static int
270      HANDLE hd = (HANDLE)fd;  parse_gpg_description (const char *uid_hint, const char *pass_info,
271      void *item;                         char *desc, int size)
272      const char *keyid, *pass;  {
273      DWORD n;      gpgme_pubkey_algo_t algo;
274      int rc;      char usedkey[16+1];
275        char mainkey[16+1];
276      /* XXX: pubkey_enc cancel does not quit gpg.exe */      char *p, *uid;
277      /* XXX: handle prev_was_bad case. */      int n=0;
278      if (!c)  
279          return gpg_error (GPG_ERR_INV_ARG);      algo = (gpgme_pubkey_algo_t)0;
280        /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
281      if (passphrase_info) {      if (strlen (uid_hint) < 17) {
282          keyid = parse_gpg_keyid (passphrase_info);          *desc = 0;
283          pass = agent_get_cache (keyid+8, &item);          log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
284          if (pass) {          return -1;
285              agent_unlock_cache_entry (&item);      }
286              c->pwd_init = 0;  
287              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))      while (p = strsep ((char**)&pass_info, " ")) {
288                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);          switch (n++) {
289              if (!WriteFile (hd, "\n", 1, &n, NULL))          case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;
290                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;
291              return 0;          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;
292          }          }
293      }      }
294        uid_hint += 16; /* skip keyid */
295      if (c->pwd_init) {      uid_hint += 1;  /* space */
296          if (keyid && strlen (keyid) == 16)  
297              strcpy (c->keyid, keyid+8);      uid = utf8_to_native (uid_hint);
298        if (strcmp (usedkey, mainkey))
299          /* if the desc has a length of 32 and only hex digits, we assume a          _snprintf (desc, size-1,
300             smart card has been used. */                     _("You need a passphrase to unlock the secret key for user:\n"
301          if (uid_hint && strlen (uid_hint) == 32 && !is_hexstring (uid_hint)) {                       "\"%s\"\n"
302              char buf[16];                       "%s key, ID 0x%s (main key ID 0x%s)\n"),
303              memset (buf, 0, sizeof buf);                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);
304              strncpy (buf, uid_hint+20, 8);      else if (!strcmp (usedkey, mainkey))
305              _snprintf (c->info, sizeof c->info-1,          _snprintf (desc, size-1,
306                         _("Please enter the PIN to unlock your secret card key\n"                     _("You need a passphrase to unlock the secret key for user:\n"
307                           "Card: %s"), buf);                       "\"%s\"\n"
308              c->is_card = 1;                       "%s key, ID 0x%s\n"),
309          }                       uid, get_key_pubalgo (algo), usedkey+8);
310          else if (uid_hint)      safe_free (uid);
311              parse_gpg_description (uid_hint, passphrase_info,      return 0;
312                                     c->info, sizeof c->info - 1);  }
313          if (c->gpg_cmd == GPG_CMD_DECRYPT) {  
314              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,  
315                                   (HWND)c->hwnd, passphrase_callback_proc,  /* Extract the serial number from the card ID @id and return it. */
316                                   (LPARAM)c);  const char*
317          }  extract_serial_no (const char *id)
318          else if (c->gpg_cmd == GPG_CMD_SIGN) {  {
319              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,      static char buf[8];
320                                   (HWND)c->hwnd, passphrase_callback_proc,      char *p;
321                                   (LPARAM)c);  
322          }      p = strchr (id, '/');
323          if (rc == -1) {      if (!p) {
324              WriteFile (hd, "\n", 1, &n, NULL);          log_debug ("extract_serial_no: error '%s'\r\n", id);
325              return gpg_error (GPG_ERR_EOF);          return "";
326          }      }
327          c->pwd_init = 0;      memset (buf, 0, sizeof (buf));
328      }      strncpy (buf, id+(p-id)-6, 6);
329      if (c->cancel) {      return buf;
330          WriteFile (hd, "\n", 1, &n, NULL);  }
331          return gpg_error (GPG_ERR_EOF);  
332      }  
333    /* Passphrase callback with the ability to support caching. */
334      WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL);  gpgme_error_t
335      WriteFile (hd, "\n", 1, &n, NULL);  passphrase_cb (void *hook, const char *uid_hint,
336      return 0;                 const char *passphrase_info,
337  }                 int prev_was_bad, int fd)
338    {
339        passphrase_cb_s *c = (passphrase_cb_s*)hook;
340  /* Initialize the given passphrase callback @cb with the      HANDLE hd = (HANDLE)fd;
341     used gpgme context @ctx, the command @cmd and a title      void *item;
342     @title for the dialog. */      const char *keyid=NULL, *pass;
343  void      DWORD n;
344  set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,      int rc = 0;
345                         int cmd, HWND hwnd, const char *title)  
346  {      if (!c) {
347      memset (cb, 0, sizeof *cb);          log_debug ("passphrase_cb: error no valid callback\r\n");
348      cb->gpg_cmd = cmd;          return gpg_error (GPG_ERR_INV_ARG);
349      cb->is_card = 0;      }
350      cb->cancel = 0;      c->bad_pwd = prev_was_bad? 1 : 0;
351      cb->hwnd = hwnd;      if (prev_was_bad && !c->cancel) {
352      cb->pwd_init = 1;          if (c->pwd)
353      free_if_alloc (cb->title);              burn_passphrase (&c->pwd);
354      cb->title = m_strdup (title);          agent_del_cache (c->keyid);
355      if (!cb->title)          c->pwd_init = 1;
356          BUG (NULL);      }
357      gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);  
358      cb->gpg = ctx;      if (passphrase_info) {
359  }          if (strlen (passphrase_info) < 16 &&
360                !strstr (passphrase_info, "OPENPGP")) {
361                /* assume symetric encryption. */
362  /* Release a passphrase callback @ctx. */              int pos=2;
363  void              c->sym.sym_algo = atoi (passphrase_info);
364  release_gpg_passphrase_cb (passphrase_cb_s *ctx)              if (c->sym.sym_algo > 9)
365  {                  pos++;
366      if (!ctx)              /* XXX: be more strict. */
367          return;              c->sym.s2k_mode = atoi (passphrase_info+pos);
368      sfree_if_alloc (ctx->pwd);              c->sym.s2k_hash = atoi (passphrase_info+pos+2);
369      free_if_alloc (ctx->title);          }
370  }  
371            keyid = parse_gpg_keyid (passphrase_info);
372  /* Simple check to measure passphrase (@pass) quality.          pass = agent_get_cache (keyid+8, &item);        
373     Return value: 0 on success. */          if (pass) {
374  int              agent_unlock_cache_entry (&item);
375  check_passwd_quality (const char *pass, int strict)              c->pwd_init = 0;
376  {              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
377      int i, nd=0, nc=0, n;                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
378                if (!WriteFile (hd, "\n", 1, &n, NULL))
379      n = strlen (pass);                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
380      if (n < 8)              return 0;
381          return -1;          }
382        }
383      for (i=0; i < n; i++) {  
384          if (isdigit (pass[i])) nd++;      if (c->pwd_init) {
385          if (isalpha (pass[i])) nc++;          if (keyid && strlen (keyid) == 16)
386      }              strcpy (c->keyid, keyid+8);
387    
388      if (nd == n || nc == n)          /* if @passphrase_info contains 'OPENPGP' we assume a smart card
389          return -1;              has been used. */
390            if (strstr (passphrase_info, "OPENPGP")) {
391      return 0;              const char *s=passphrase_info;
392  }              while (s && *s && *s != 'D')
393                    s++;
394                _snprintf (c->info, sizeof c->info-1,
395                           _("Please enter the PIN to unlock your secret card key\n"
396                             "Card: %s"), extract_serial_no (s));
397                c->is_card = 1;
398            }
399            else if (uid_hint)
400                parse_gpg_description (uid_hint, passphrase_info,
401                                       c->info, sizeof (c->info) - 1);
402            if (c->gpg_cmd == GPG_CMD_DECRYPT) {
403                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
404                                     (HWND)c->hwnd, passphrase_callback_proc,
405                                     (LPARAM)c);
406            }
407            else if (c->gpg_cmd == GPG_CMD_SIGN) {
408                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
409                                     (HWND)c->hwnd, passphrase_callback_proc,
410                                     (LPARAM)c);
411            }
412            if (rc == -1) {
413                if (!WriteFile (hd, "\n", 1, &n, NULL))
414                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
415                log_debug ("passphrase_cb: could not create dialog box\n");
416                return 0;
417            }
418            c->pwd_init = 0;
419        }
420        if (c->cancel || !c->pwd) {
421            if (!WriteFile (hd, "\n", 1, &n, NULL))
422                log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
423            return 0;
424        }
425    
426        if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
427            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
428        if (!WriteFile (hd, "\n", 1, &n, NULL))
429            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
430        return 0;
431    }
432    
433    
434    /* Initialize the given passphrase callback @cb with the
435       used gpgme context @ctx, the command @cmd and a title
436       @title for the dialog. */
437    void
438    set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
439                           int cmd, HWND hwnd, const char *title)
440    {
441        memset (cb, 0, sizeof *cb);
442        cb->gpg_cmd = cmd;
443        cb->bad_pwd = 0;
444        cb->is_card = 0;
445        cb->cancel = 0;
446        cb->hwnd = hwnd;
447        cb->pwd_init = 1;
448        free_if_alloc (cb->title);
449        cb->title = m_strdup (title);
450        gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
451        cb->gpg = ctx;
452    }
453    
454    
455    /* Release the gpg recipient list. */
456    void
457    release_gpg_recipients (gpgme_recipient_t *recipients)
458    {
459        gpgme_recipient_t r, n;
460    
461        r = *recipients;
462        while (r != NULL) {
463            n = r->next;
464            safe_free (r->keyid);
465            safe_free (r);
466            r = n;
467        }
468        *recipients = NULL;
469    }
470    
471    
472    
473    /* Release a passphrase callback @ctx. */
474    void
475    release_gpg_passphrase_cb (passphrase_cb_s *ctx)
476    {
477        if (!ctx)
478            return;
479        sfree_if_alloc (ctx->pwd);
480        free_if_alloc (ctx->title);
481        release_gpg_recipients (&ctx->recipients);
482    }
483    
484    
485    /* _Simple_ check to measure passphrase (@pass) quality.
486       Return value: 0 on success. */
487    int
488    check_passwd_quality (const char *pass, int strict)
489    {
490        int i, nd=0, nc=0, n;
491    
492        /* A good passphrase should be at least 8 characters. */
493        n = strlen (pass);
494        if (n < 8)
495            return -1;
496    
497        for (i=0; i < n; i++) {
498            if (isdigit (pass[i]))
499                nd++;
500            if (isalpha (pass[i]))
501                nc++;
502        }
503    
504        /* Check that the passphrase contains letters and numbers. */
505        if (nd == n || nc == n)
506            return -1;
507    
508        return 0;
509    }

Legend:
Removed from v.24  
changed lines
  Added in v.271

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26