/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Diff of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 32 by twoaday, Mon Oct 24 08:03:48 2005 UTC revision 344 by twoaday, Sun Nov 27 14:56:52 2011 UTC
# Line 1  Line 1 
1  /* wptPassphraseCB.cpp - GPGME Passphrase Callback  /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2   *      Copyright (C) 2001, 2002, 2003, 2005 Timo Schulz   *      Copyright (C) 2001, 2002-2006, 2009, 2011 Timo Schulz
3   *      Copyright (C) 2005 g10 Code GmbH   *      Copyright (C) 2005 g10 Code GmbH
4   *   *
5   * This file is part of WinPT.   * This file is part of WinPT.
6   *   *
7   * WinPT is free software; you can redistribute it and/or   * WinPT is free software; you can redistribute it and/or
8   * modify it under the terms of the GNU General Public License   * modify it under the terms of the GNU General Public License
9   * as published by the Free Software Foundation; either version 2   * as published by the Free Software Foundation; either version 2
10   * of the License, or (at your option) any later version.   * of the License, or (at your option) any later version.
11   *     *  
12   * WinPT is distributed in the hope that it will be useful,   * WinPT is distributed in the hope that it will be useful,
13   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * but WITHOUT ANY WARRANTY; without even the implied warranty of
14   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15   * General Public License for more details.   * General Public License for more details.
16   *   */
17   * You should have received a copy of the GNU General Public License  #ifdef HAVE_CONFIG_H
18   * along with WinPT; if not, write to the Free Software Foundation,  #include <config.h>
19   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA  #endif
20   */  
21    #include <windows.h>
22  #include <windows.h>  #include <ctype.h>
23  #include <ctype.h>  
24    #include "resource.h"
25  #include "../resource.h"  #include "wptNLS.h"
26  #include "wptNLS.h"  #include "wptW32API.h"
27  #include "wptW32API.h"  #include "wptVersion.h"
28  #include "wptVersion.h"  #include "wptGPG.h"
29  #include "wptGPG.h"  #include "wptCommonCtl.h"
30  #include "wptCommonCtl.h"  #include "wptContext.h"
31  #include "wptContext.h"  #include "wptDlgs.h"
32  #include "wptDlgs.h"  #include "wptErrors.h"
33  #include "wptUTF8.h"  #include "wptTypes.h"
34  #include "wptErrors.h"  #include "wptKeylist.h"
35  #include "wptTypes.h"  #include "wptAgent.h"
36  #include "wptKeyList.h"  #include "wptRegistry.h"
37  #include "wptAgent.h"  #include "wptUTF8.h"
38  #include "wptRegistry.h"  #include "StringBuffer.h"
39    
40  const char* get_symkey_algo (int algo);  
41    /* Return the control ID dependent on the mode (sign or decrypt). */
42  #define item_ctrl_id( cmd ) \  #define item_ctrl_id(cmd) \
43      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
44    
45  #define item_ctrl_id2(cmd) \  #define item_ctrl_id2(cmd) \
46      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
47    
48    const char* get_symkey_algo (int algo);
49  /* Overwrite passphrase and free memory. */  
50  static void  
51  burn_passphrase (char **pwd)  /* Overwrites the passphrase and free the memory.
52  {     Pointer is also reset to NULL. */
53      char *pass = *pwd;  static void
54      wipememory (pass, strlen (pass));  burn_passphrase (char **pwd)
55      delete []pass;  {
56      *pwd = NULL;      char *pass = *pwd;
57  }  
58        wipememory (pass, strlen (pass));
59        delete []pass;
60  /* Dialog procedure for the passphrase callback. */      *pwd = NULL;
61  static BOOL CALLBACK  }
62  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)  
63  {      
64      static passphrase_cb_s * c;  /* Dialog procedure for the passphrase callback. */
65      gpgme_decrypt_result_t res;  static BOOL CALLBACK
66      gpgme_sign_result_t res_sig;  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
67      gpgme_key_t key;  {    
68      void *ctx = NULL, *item;      static passphrase_cb_s *c;
69      const char *id;      gpgme_decrypt_result_t res=NULL;
70      char *info;      gpgme_sign_result_t res_sig=NULL;
71      int n;      gpgme_recipient_t recip=NULL, r;
72        winpt_key_s key;
73      switch (msg) {      void *item;
74      case WM_INITDIALOG:      int n;
75          c = (passphrase_cb_s *)lparam;  
76          if (!c)      switch (msg) {
77              BUG (0);      case WM_ACTIVATE:
78          SetWindowText (dlg, c->title);          /* Some people complained that it is no longer possible to
79          if (c->gpg_cmd == GPG_CMD_DECRYPT) {             paste in the passphrase in this dialog. When this option
80              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,             is enabled, the ordinary passphrase control will be used. */
81                              _("Encrypted with the following public key(s)"));          if (!reg_prefs.no_safe_pwd_ctrl)
82              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);              safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd));
83          }          break;
84          else if (c->gpg_cmd == GPG_CMD_SIGN)  
85              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);      case WM_DESTROY:
86          res = gpgme_op_decrypt_result (c->gpg);          if (!reg_prefs.no_safe_pwd_ctrl)
87          if (res != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {              safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd));
88              gpgme_recipient_t r;          break;
89    
90              /* XXX: not all ENCRYPT_TO entries are listed here. */      case WM_INITDIALOG:
91              for (r = res->recipients; r; r = r->next) {          c = (passphrase_cb_s *)lparam;
92                  get_pubkey (r->keyid, &key);          if (!c)
93                  if (key) {              BUG (0);
94                      char *uid;          SetDlgItemText (dlg, IDCANCEL, _("&Cancel"));
95                      id = key->uids->name;          SetWindowText (dlg, c->title);
96                      if (!id)          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
97                          id = _("Invalid User ID");              SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
98                      uid = utf8_to_wincp (id, strlen (id));              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
99                      info = new char [32+strlen (uid)+1 + 4 + strlen (r->keyid)+1                              _("Encrypted with the following public key(s):"));
100                                       + strlen (key->uids->email)+1];              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
101                      if (!info)          }
102                          BUG (NULL);          else if (c->gpg_cmd == GPG_CMD_SIGN) {
103                      sprintf (info, "%s <%s> (%s, 0x%s)", uid, key->uids->email,              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing"));
104                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
105                      free (uid);          }
106                                /* Because it depends on the order the keys are stored in the
107                  }             keyring, whether res->recipients is complete or not, we also
108                  else {             support that the recipients were externally extracted and then
109                      info = new char [32 + strlen (r->keyid)+1 + 4];             we use this list. */
110                      if (!info)          if (c->recipients) /* recipients were already extracted. */
111                          BUG (NULL);              recip = c->recipients;
112                      sprintf (info, _("Unknown key ID (%s, 0x%s)"),          else if (c->gpg) {
113                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);              res = gpgme_op_decrypt_result (c->gpg);
114                  }              if (res && res->recipients)
115                  listbox_add_string (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);                  recip = res->recipients;
116                  free_if_alloc (info);          }
117              }          if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
118          }              StringBuffer inf;
119          else if (c->gpg_cmd == GPG_CMD_DECRYPT)  
120              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);              for (r = recip; r; r = r->next) {
121          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?                  memset (&key, 0, sizeof (key));
122                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,                  if (!winpt_get_pubkey (r->keyid, &key)) {
123                          c->bad_pwd? _("Bad passphrase; Enter passphrase again") :                      gpgme_user_id_t u = key.ctx->uids;
124                          _("Please enter your passphrase"));                      inf = (u->name? u->name : _("Invalid User ID"));
125          if (c->gpg_cmd == GPG_CMD_DECRYPT) {                      if (u->email != NULL && strlen (u->email) > 1)
126              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));                          inf = inf + " <" + u->email + ">";
127              if (res && !res->recipients) {                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
128                  const char *s = _("Symmetric encryption.\n"                      inf = inf + ", 0x" + (r->keyid+8) + ")";
129                                    "%s encrypted data.");                  }
130                  const char *alg = get_symkey_algo (c->sym.sym_algo);                  else {
131                  info = new char[strlen (s) + strlen (alg) + 2];                      inf = _("Unknown key ID");
132                  if (!info)                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
133                      BUG (NULL);                      inf = inf + ", 0x" + (r->keyid+8) + ")";
134                  sprintf (info, s, alg);                  }
135                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, info);                  ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST),
136                  free_if_alloc (info);                                          inf.getBuffer ());
137              }                  winpt_release_pubkey (&key);
138              else              }
139                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);          }
140          }          else if (c->gpg_cmd == GPG_CMD_DECRYPT)
141          else {              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
142              SetFocus( GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
143              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
144          }                          c->bad_pwd? _("Invalid passphrase; Please enter your passphrase again") :
145          center_window (dlg, NULL);                          _("Please enter your passphrase"));
146          SetForegroundWindow (dlg);          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
147          set_active_window (dlg);              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
148          return FALSE;              /* no recipients means symmetric encryption */
149                if (res && !res->recipients) {
150          case WM_SYSCOMMAND:                  StringBuffer sinf;
151              if (LOWORD (wparam) == SC_CLOSE) {  
152                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");                  sinf = _("Symmetric encryption.");
153                  c->cancel = 1;                  sinf = sinf + "\n" + get_symkey_algo (c->sym.sym_algo);
154                  EndDialog (dlg, TRUE);                  sinf = sinf + " " + _("encrypted data") + ".";
155              }                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, sinf.getBuffer ());
156              break;              }
157                else
158          case WM_COMMAND:                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
159              switch (HIWORD (wparam)) {          }
160              case BN_CLICKED:          else {
161                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
162                      || LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
163                      HWND hwnd;          }
164                      int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));          center_window (dlg, NULL);
165                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));          SetForegroundWindow (dlg);
166                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);          return FALSE;
167                      SetFocus (hwnd);  
168                  }          case WM_COMMAND:
169              }              switch (HIWORD (wparam)) {
170                case BN_CLICKED:
171              switch (LOWORD (wparam)) {                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE ||
172              case IDOK:                         LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
173                  /* XXX: the item is even cached when the passphrase is not                      HWND hwnd;
174                          correct, which means that the user needs to delete all                      int hide;
175                          cached entries to continue. */                      hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
176                  if (c->pwd)                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
177                      burn_passphrase (&c->pwd);                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
178                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));                      SetFocus (hwnd);
179                  if (!n) {                  }
180                      c->pwd = new char[2];              }
181                      if (!c->pwd)  
182                          BUG (NULL);              switch (LOWORD (wparam)) {
183                      strcpy (c->pwd, "");              case IDOK:
184                  }                  /* XXX: the item is even cached when the passphrase is not
185                  else {                          correct, which means that the user needs to delete all
186                      c->pwd = new char[n+2];                          cached entries to continue. */
187                      if (!c->pwd)                  if (c->pwd)
188                          BUG (NULL);                      burn_passphrase (&c->pwd);
189                      GetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), c->pwd, n+1);                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
190                  }                  if (!n) {
191                  res = gpgme_op_decrypt_result (c->gpg);                      c->pwd = new char[2];
192                  if (!res)                      strcpy (c->pwd, "");
193                      res_sig = gpgme_op_sign_result (c->gpg);                  }
194                  if (reg_prefs.cache_time > 0 && !c->is_card &&                  else {
195                      ((res && res->recipients) || (res_sig && res_sig->signatures))) {                      char *p = new char[n+2];
196                      if (agent_get_cache (c->keyid, &item))                      SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1);
197                          agent_unlock_cache_entry (&item);                      c->pwd = m_strdup (p);
198                      else                      sfree_if_alloc (p);
199                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);                  }
200                  }                  if (c->gpg != NULL) {
201                  c->cancel = 0;                      res = gpgme_op_decrypt_result (c->gpg);
202                  EndDialog (dlg, TRUE);                      if (!res)
203                  return TRUE;                          res_sig = gpgme_op_sign_result (c->gpg);
204                                        if (!c->is_card && reg_prefs.cache_time > 0 && (res || res_sig)) {
205              case IDCANCEL:                          if (agent_get_cache (c->keyid, &item))
206                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");                              agent_unlock_cache_entry (&item);
207                  c->cancel = 1;                          else
208                  EndDialog (dlg, FALSE);                              agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);
209                  return FALSE;                      }
210              }                  }
211              break;                  c->cancel = 0;
212      }                  EndDialog (dlg, TRUE);
213                        return TRUE;
214      return FALSE;                  
215  }              case IDCANCEL:
216                    SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
217                    c->cancel = 1;
218  /* Extract the main keyid from @pass_info.                  EndDialog (dlg, FALSE);
219     Return value: long main keyid or NULL for an error. */                  return TRUE;
220  static const char*              }
221  parse_gpg_keyid (const char *pass_info)              break;
222  {      }
223      static char keyid[16+1];      
224            return FALSE;
225      /* XXX: check for leading alpha-chars? */  }
226      if (strlen (pass_info) < 16)  
227          return NULL;  
228      /* the format of the desc buffer looks like this:  /* Extract the main keyid from @pass_info.
229         request_keyid[16] main_keyid[16] keytype[1] keylength[4]     Return value: long main keyid or NULL for an error. */
230         we use the main keyid to use only one cache entry. */  static const char*
231      strncpy (keyid, pass_info+17, 16);  parse_gpg_keyid (const char *pass_info)
232      keyid[16] = 0;  {
233      return keyid;      static char keyid[16+1];
234  }      
235        /* XXX: check for leading alpha-chars? */
236        if (strlen (pass_info) < 16) {
237  /* Parse the information in @uid_hint and @pass_info to generate          log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
238     a input message for the user in @desc. */          return NULL;
239  static int      }
240  parse_gpg_description (const char *uid_hint, const char *pass_info,      /* the format of the desc buffer looks like this:
241                         char *desc, int size)         request_keyid[16] main_keyid[16] keytype[1] keylength[4]
242  {         we use the main keyid to use only one cache entry. */
243      gpgme_pubkey_algo_t algo;      strncpy (keyid, pass_info+17, 16);
244      char usedkey[16+1];      keyid[16] = 0;
245      char mainkey[16+1];      return keyid;
246      char *uid, *p;  }
247      int n=0;  
248    
249      /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */  /* Parse the information in @uid_hint and @pass_info to generate
250      if (strlen (uid_hint) < 17) {     a input message for the user in @desc. */
251          *desc = 0;  static int
252          return -1;  parse_gpg_description (const char *uid_hint, const char *pass_info,
253      }                         char *desc, size_t desc_size)
254    {
255      while (p = strsep ((char**)&pass_info, " ")) {      gpgme_pubkey_algo_t algo;
256          switch (n++) {      char usedkey[16 + 1];
257          case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;      char mainkey[16 + 1];
258          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;      char *p;
259          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;  
260          }      algo = (gpgme_pubkey_algo_t)0;
261      }      /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
262      uid_hint += 16; /* skip keyid */      if (strlen (uid_hint) < 17) {
263      uid_hint += 1;  /* space */          *desc = 0;
264            log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
265      uid = utf8_to_wincp (uid_hint, strlen (uid_hint));          return -1;
266        }
267      if (strcmp (usedkey, mainkey))  
268          _snprintf (desc, size-1,      int n = 0;
269                     _("You need a passphrase to unlock the secret key for\n"      while ((p = strsep ((char**)&pass_info, " "))) {
270                       "user: \"%s\"\n"          switch (n++) {
271                       "%s key, ID %s (main key ID %s)\n"),          case 0:
272                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);              strncpy (mainkey, p, 16);
273      else if (!strcmp (usedkey, mainkey))              mainkey[16] = 0;
274          _snprintf (desc, size-1,              break;
275                     _("You need a passphrase to unlock the secret key for\n"  
276                       "user: \"%s\"\n"          case 1:
277                       "%s key, ID %s\n"),              strncpy (usedkey, p, 16);
278                       uid, get_key_pubalgo (algo), usedkey+8);              usedkey[16] = 0;
279      free (uid);              break;
280      return 0;  
281  }          case 2:
282                algo = (gpgme_pubkey_algo_t)atol (p);
283                break;
284  /* Extract the serial number from the card ID @id and return it. */          }
285  const char*      }
286  extract_serial_no (const char *id)      uid_hint += 16; /* skip keyid */
287  {      uid_hint += 1;  /* space */
288      static char buf[8];  
289      char *p;      struct winpt_key_s skey;
290        gpgme_subkey_t sk;
291      p = strchr (id, '/');      if (winpt_get_seckey (mainkey, &skey))
292      if (!p)          BUG (0);
293          return NULL;      for (sk = skey.ctx->subkeys; sk; sk = sk->next) {
294      strncpy (buf, id+(p-id)-6, 6);          if (memcmp (sk->keyid, usedkey, 8) == 0)
295      return buf;              break;
296  }      }
297        char *uid = utf8_to_native (uid_hint);
298        if (strcmp (usedkey, mainkey))
299  /* Passphrase callback with the ability to support caching. */          _snprintf (desc, desc_size-1,
300  gpgme_error_t                     _("You need a passphrase to unlock the secret key for user:\n"
301  passphrase_cb (void *hook, const char *uid_hint,                       "\"%s\"\n"
302                 const char *passphrase_info,                       "%d-bit %s key, ID 0x%s, created %s (main key ID 0x%s)\n"),
303                 int prev_was_bad, int fd)                     uid, sk->length, get_key_pubalgo (algo),
304  {                     usedkey+8, get_key_created (sk->timestamp), mainkey+8);
305      passphrase_cb_s *c = (passphrase_cb_s*)hook;      else if (!strcmp (usedkey, mainkey))
306      HANDLE hd = (HANDLE)fd;          _snprintf (desc, desc_size-1,
307      void *item;                     _("You need a passphrase to unlock the secret key for user:\n"
308      const char *keyid, *pass;                       "\"%s\"\n"
309      DWORD n;                       "%d-bit %s key, created %s, ID 0x%s\n"),
310      int rc;                       uid, sk->length, get_key_pubalgo (algo),
311                         get_key_created (sk->timestamp), usedkey+8);
312      if (!c)      safe_free (uid);
313          return gpg_error (GPG_ERR_INV_ARG);      return 0;
314      c->bad_pwd = prev_was_bad? 1 : 0;  }
315      if (prev_was_bad && !c->cancel) {  
316          if (c->pwd)  
317              burn_passphrase (&c->pwd);  /* Extract the serial number from the card ID @id and return it. */
318          agent_del_cache (c->keyid);  const char*
319          c->pwd_init = 1;  extract_serial_no (const char *id)
320      }  {
321        static char buf[8];
322      if (passphrase_info) {      char *p;
323          if (strlen (passphrase_info) < 16 &&  
324              !strstr (passphrase_info, "OPENPGP")) {      p = strchr (id, '/');
325              /* assume symetric encryption. */      if (!p) {
326              int n=2;          log_debug ("extract_serial_no: error '%s'\r\n", id);
327              c->sym.sym_algo = atoi (passphrase_info);          return "";
328              if (c->sym.sym_algo > 9)      }
329                  n++;      memset (buf, 0, sizeof (buf));
330              /* XXX: be more strict. */      strncpy (buf, id+(p-id)-6, 6);
331              c->sym.s2k_mode = atoi (passphrase_info+n);      return buf;
332              c->sym.s2k_hash = atoi (passphrase_info+n+2);  }
333          }  
334    
335          keyid = parse_gpg_keyid (passphrase_info);  /* Passphrase callback with the ability to support caching. */
336          pass = agent_get_cache (keyid+8, &item);  gpgme_error_t
337          if (pass) {  passphrase_cb (void *hook, const char *uid_hint,
338              agent_unlock_cache_entry (&item);                 const char *passphrase_info,
339              c->pwd_init = 0;                 int prev_was_bad, int fd)
340              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))  {
341                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);      passphrase_cb_s *c = (passphrase_cb_s*)hook;
342              if (!WriteFile (hd, "\n", 1, &n, NULL))      HANDLE hd = (HANDLE)fd;
343                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);      void *item;
344              return 0;      const char *keyid=NULL, *pass;
345          }      DWORD n;
346      }  
347        if (!c) {
348      if (c->pwd_init) {          log_debug ("passphrase_cb: error no valid callback\r\n");
349          if (keyid && strlen (keyid) == 16)          return gpg_error (GPG_ERR_INV_ARG);
350              strcpy (c->keyid, keyid+8);      }
351    
352          /* if @passphrase_info contains 'OPENPGP' we assume a smart card      /* If the last entered passphrase was wrong, we delete a
353              has been used. */         possible cached entry, we reset the passphrase buffer
354          if (strstr (passphrase_info, "OPENPGP")) {         and switch to the initial state. */
355              const char *s=passphrase_info;      c->bad_pwd = prev_was_bad? 1 : 0;
356              while (s && *s && *s != 'D')      if (prev_was_bad && !c->cancel) {
357                  s++;          if (c->pwd)
358              _snprintf (c->info, sizeof c->info-1,              burn_passphrase (&c->pwd);
359                         _("Please enter the PIN to unlock your secret card key\n"          agent_del_cache (c->keyid);
360                           "Card: %s"), extract_serial_no (s));          c->pwd_init = 1;
361              c->is_card = 1;      }
362          }  
363          else if (uid_hint)      if (passphrase_info) {
364              parse_gpg_description (uid_hint, passphrase_info,          if (strlen (passphrase_info) < 16 &&
365                                     c->info, sizeof c->info - 1);              !strstr (passphrase_info, "OPENPGP")) {
366          if (c->gpg_cmd == GPG_CMD_DECRYPT) {              /* assume symetric encryption. */
367              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,              int pos = 2;
368                                   (HWND)c->hwnd, passphrase_callback_proc,              c->sym.sym_algo = atoi (passphrase_info);
369                                   (LPARAM)c);              if (c->sym.sym_algo > 9)
370          }                  pos++;
371          else if (c->gpg_cmd == GPG_CMD_SIGN) {              c->sym.s2k_mode = atoi (passphrase_info+pos);
372              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,              c->sym.s2k_hash = atoi (passphrase_info+pos+2);
373                                   (HWND)c->hwnd, passphrase_callback_proc,          }
374                                   (LPARAM)c);  
375          }          keyid = parse_gpg_keyid (passphrase_info);
376          if (rc == -1) {          pass = agent_get_cache (keyid+8, &item);        
377              if (!WriteFile (hd, "\n", 1, &n, NULL))          if (pass) {
378                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);              agent_unlock_cache_entry (&item);
379              return 0;              c->pwd_init = 0;
380          }              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
381          c->pwd_init = 0;                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
382      }              if (!WriteFile (hd, "\n", 1, &n, NULL))
383      if (c->cancel) {                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
384          if (!WriteFile (hd, "\n", 1, &n, NULL))              return 0;
385              log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);          }
386          return 0;      }
387      }  
388        if (c->pwd_init) {
389      WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL);          if (keyid && strlen (keyid) == 16)
390      WriteFile (hd, "\n", 1, &n, NULL);              strcpy (c->keyid, keyid+8);
391      return 0;  
392  }          /* if @passphrase_info contains 'OPENPGP' we assume a smart card
393                has been used. */
394            if (strstr (passphrase_info, "OPENPGP")) {
395  /* Initialize the given passphrase callback @cb with the              const char *s=passphrase_info;
396     used gpgme context @ctx, the command @cmd and a title              while (s && *s && *s != 'D')
397     @title for the dialog. */                  s++;
398  void              _snprintf (c->info, DIM (c->info)-1,
399  set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,                         _("Please enter the PIN to unlock your secret card key\n"
400                         int cmd, HWND hwnd, const char *title)                           "Card: %s"), extract_serial_no (s));
401  {              c->is_card = 1;
402      memset (cb, 0, sizeof *cb);          }
403      cb->gpg_cmd = cmd;          else if (uid_hint)
404      cb->bad_pwd = 0;              parse_gpg_description (uid_hint, passphrase_info,
405      cb->is_card = 0;                                     c->info, DIM (c->info) - 1);
406      cb->cancel = 0;          int rc = 0;
407      cb->hwnd = hwnd;          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
408      cb->pwd_init = 1;              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
409      free_if_alloc (cb->title);                                   (HWND)c->hwnd, passphrase_callback_proc,
410      cb->title = m_strdup (title);                                   (LPARAM)c);
411      if (!cb->title)          }
412          BUG (NULL);          else if (c->gpg_cmd == GPG_CMD_SIGN) {
413      gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
414      cb->gpg = ctx;                                   (HWND)c->hwnd, passphrase_callback_proc,
415  }                                   (LPARAM)c);
416            }
417            if (rc == -1) {
418  /* Release a passphrase callback @ctx. */              if (!WriteFile (hd, "\n", 1, &n, NULL))
419  void                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
420  release_gpg_passphrase_cb (passphrase_cb_s *ctx)              log_debug ("passphrase_cb: could not create dialog box\n");
421  {              return 0;
422      if (!ctx)          }
423          return;          c->pwd_init = 0;
424      sfree_if_alloc (ctx->pwd);      }
425      free_if_alloc (ctx->title);      if (c->cancel || !c->pwd) {
426  }          if (!WriteFile (hd, "\n", 1, &n, NULL))
427                log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
428            return 0;
429  /* Simple check to measure passphrase (@pass) quality.      }
430     Return value: 0 on success. */  
431  int      if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
432  check_passwd_quality (const char *pass, int strict)          log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
433  {      if (!WriteFile (hd, "\n", 1, &n, NULL))
434      int i, nd=0, nc=0, n;          log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
435        return 0;
436      n = strlen (pass);  }
437      if (n < 8)  
438          return -1;  
439    /* Initialize the given passphrase callback @cb with the
440      for (i=0; i < n; i++) {     used gpgme context @ctx, the command @cmd and a title
441          if (isdigit (pass[i]))     @title for the dialog. */
442              nd++;  void
443          if (isalpha (pass[i]))  set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
444              nc++;                         int cmd, HWND hwnd, const char *title)
445      }  {    
446        memset (cb, 0, sizeof *cb);
447      /* check that the passphrase contains letters and numbers. */      cb->gpg_cmd = cmd;
448      if (nd == n || nc == n)      cb->bad_pwd = 0;
449          return -1;      cb->is_card = 0;
450        cb->cancel = 0;
451      return 0;      cb->hwnd = hwnd;
452  }      cb->pwd_init = 1;
453        cb->title = m_strdup (title);
454        gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
455        cb->gpg = ctx;
456    }
457    
458    void
459    set_gpg_auto_passphrase_cb (passphrase_cb_s *cb, const char *title)
460    {
461        memset (cb, 0, sizeof *cb);
462        cb->gpg_cmd = GPG_CMD_SIGN;
463        cb->bad_pwd = 0;
464        cb->is_card = 0;
465        cb->cancel = 0;
466        cb->hwnd = GetActiveWindow ();
467        cb->pwd_init = 1;
468        cb->title = m_strdup (title);
469    }
470    
471    
472    /* Release a passphrase callback @ctx. */
473    void
474    release_gpg_passphrase_cb (passphrase_cb_s *ctx)
475    {
476        if (!ctx)
477            return;
478        sfree_if_alloc (ctx->pwd);
479        free_if_alloc (ctx->title);
480        release_gpg_recipients (&ctx->recipients);
481    }
482    
483    
484    /* Release the gpg recipient list. */
485    void
486    release_gpg_recipients (gpgme_recipient_t *recipients)
487    {
488        gpgme_recipient_t r, n;
489    
490        r = *recipients;
491        while (r != NULL) {
492            n = r->next;
493            safe_free (r->keyid);
494            safe_free (r);
495            r = n;
496        }
497        *recipients = NULL;
498    }
499    
500    
501    /* _Simple_ check to measure passphrase (@pass) quality.
502       Return value: 0 on success. */
503    int
504    check_passwd_quality (const char *pass, int strict)
505    {
506        size_t i, nd = 0, nc = 0, na = 0, n;
507    
508        /* A good passphrase should be at least 8 characters. */
509        n = strlen (pass);
510        if (n < 8)
511            return -1;
512    
513        for (i = 0; i < n; i++) {
514            if (isdigit (pass[i]))
515                nd++;
516            if (isalpha (pass[i]))
517                nc++;
518            else
519                na++;
520        }
521    
522        /* Check that the passphrase contains letters and numbers. */
523        if (nd == n || nc == n || na == n)
524            return -1;
525    
526        return 0;
527    }

Legend:
Removed from v.32  
changed lines
  Added in v.344

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26