/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Diff of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 24 by twoaday, Sat Oct 8 10:43:08 2005 UTC revision 304 by twoaday, Wed Mar 21 10:59:31 2007 UTC
# Line 1  Line 1 
1  /* wptPassphraseCB.cpp - GPGME Passphrase Callback  /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2   *      Copyright (C) 2001, 2002, 2003, 2005 Timo Schulz   *      Copyright (C) 2001, 2002-2006 Timo Schulz
3   *      Copyright (C) 2005 g10 Code GmbH   *      Copyright (C) 2005 g10 Code GmbH
4   *   *
5   * This file is part of WinPT.   * This file is part of WinPT.
6   *   *
7   * WinPT is free software; you can redistribute it and/or   * WinPT is free software; you can redistribute it and/or
8   * modify it under the terms of the GNU General Public License   * modify it under the terms of the GNU General Public License
9   * as published by the Free Software Foundation; either version 2   * as published by the Free Software Foundation; either version 2
10   * of the License, or (at your option) any later version.   * of the License, or (at your option) any later version.
11   *     *  
12   * WinPT is distributed in the hope that it will be useful,   * WinPT is distributed in the hope that it will be useful,
13   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * but WITHOUT ANY WARRANTY; without even the implied warranty of
14   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15   * General Public License for more details.   * General Public License for more details.
16   *   */
17   * You should have received a copy of the GNU General Public License  #ifdef HAVE_CONFIG_H
18   * along with WinPT; if not, write to the Free Software Foundation,  #include <config.h>
19   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA  #endif
20   */  
21    #include <windows.h>
22  #include <windows.h>  #include <ctype.h>
23  #include <ctype.h>  
24    #include "resource.h"
25  #include "../resource.h"  #include "wptNLS.h"
26  #include "wptNLS.h"  #include "wptW32API.h"
27  #include "wptW32API.h"  #include "wptVersion.h"
28  #include "wptVersion.h"  #include "wptGPG.h"
29  #include "wptGPG.h"  #include "wptCommonCtl.h"
30  #include "wptCommonCtl.h"  #include "wptContext.h"
31  #include "wptContext.h"  #include "wptDlgs.h"
32  #include "wptDlgs.h"  #include "wptErrors.h"
33  #include "wptUTF8.h"  #include "wptTypes.h"
34  #include "wptErrors.h"  #include "wptKeylist.h"
35  #include "wptTypes.h"  #include "wptAgent.h"
36  #include "wptKeyList.h"  #include "wptRegistry.h"
37  #include "wptAgent.h"  #include "wptUTF8.h"
38  #include "wptRegistry.h"  #include "StringBuffer.h"
39    
40    
41  #define item_ctrl_id( cmd ) \  /* Return the control ID dependent on the mode (sign or decrypt). */
42      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)  #define item_ctrl_id(cmd) \
43        ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
44  #define item_ctrl_id2(cmd) \  
45      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)  #define item_ctrl_id2(cmd) \
46        ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
47    
48  /* Dialog procedure for the passphrase callback. */  const char* get_symkey_algo (int algo);
49  static BOOL CALLBACK  void ListBox_AddString_utf8 (HWND lb, const char *txt);
50  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)  
51  {      
52      static passphrase_cb_s * c;  /* Overwrite passphrase and free memory. */
53      gpgme_decrypt_result_t res;  static void
54      gpgme_sign_result_t res_sig;  burn_passphrase (char **pwd)
55      gpgme_key_t key;  {
56      const char *id;      char *pass = *pwd;
57      char *info;  
58      void *ctx = NULL, *item;      wipememory (pass, strlen (pass));
59      int n;      delete []pass;
60        *pwd = NULL;
61      switch (msg) {  }
62      case WM_INITDIALOG:  
63          c = (passphrase_cb_s *)lparam;  
64          if (!c)  /* Dialog procedure for the passphrase callback. */
65              BUG (0);  static BOOL CALLBACK
66          SetWindowText (dlg, c->title);  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
67          if (c->gpg_cmd == GPG_CMD_DECRYPT) {  {    
68              SetDlgItemText( dlg, IDC_DECRYPT_LISTINF,      static passphrase_cb_s *c;
69                  _("Encrypted with the following public key(s)") );      gpgme_decrypt_result_t res=NULL;
70              CheckDlgButton( dlg, IDC_DECRYPT_HIDE, BST_CHECKED );      gpgme_sign_result_t res_sig=NULL;
71          }      gpgme_recipient_t recip=NULL, r;
72          else if( c->gpg_cmd == GPG_CMD_SIGN )      winpt_key_s key;
73              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);      void *item;
74          res = gpgme_op_decrypt_result (c->gpg);      int n;
75          if (res != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {  
76              gpgme_recipient_t r;      switch (msg) {
77        case WM_ACTIVATE:
78              for (r = res->recipients; r; r = r->next) {          /* Some people complained that it is no longer possible to
79                  get_pubkey (r->keyid, &key);             paste in the passphrase in this dialog. When this option
80                  if (key) {             is enabled, the ordinary passphrase control will be used. */
81                      char *uid;          if (!reg_prefs.no_safe_pwd_ctrl)
82                      id = key->uids->name;              safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd));
83                      if (!id)          break;
84                          id = _("Invalid User ID");  
85                      uid = utf8_to_wincp (id, strlen (id));      case WM_DESTROY:
86                      info = new char [16+strlen (uid) + 4 + strlen (r->keyid) + strlen (key->uids->email) +  3];          if (!reg_prefs.no_safe_pwd_ctrl)
87                      if (!info)              safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd));
88                          BUG (NULL);          break;
89                      sprintf (info, "%s <%s> (%s, 0x%s)", uid, key->uids->email,  
90                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);      case WM_INITDIALOG:
91                      free (uid);          c = (passphrase_cb_s *)lparam;
92                                if (!c)
93                  }              BUG (0);
94                  else {          SetDlgItemText (dlg, IDCANCEL, _("&Cancel"));
95                      info = new char [32 + strlen (r->keyid) + 2];          SetWindowText (dlg, c->title);
96                      if (!info)          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
97                          BUG (NULL);              SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
98                      sprintf (info, _("Unknown (key ID 0x%s)"),              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
99                               r->keyid? r->keyid+8 : "????????");                              _("Encrypted with the following public key(s)"));
100                  }              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
101                  listbox_add_string (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);          }
102                  free (info);          else if (c->gpg_cmd == GPG_CMD_SIGN) {
103              }              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing"));
104          }              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
105          else if (c->gpg_cmd == GPG_CMD_DECRYPT)          }
106              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);          /* Because it depends on the order the keys are stored in the
107          SetDlgItemText( dlg, c->gpg_cmd == GPG_CMD_DECRYPT?             keyring whether res->recipients is complete or not, we also
108                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,             support that the recipients were externally extracted and then
109                          _("Please enter your passphrase") );             we use this list. */
110          if (c->gpg_cmd == GPG_CMD_DECRYPT) {          if (c->recipients)
111              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));              recip = c->recipients; /* recipients were already extracted. */
112              if (res && !res->recipients)          else {
113                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, _("Symmetric encryption.\n"));                                                                  res = gpgme_op_decrypt_result (c->gpg);
114              else              if (res && res->recipients)
115                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);                  recip = res->recipients;
116          }          }
117          else {          if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
118              SetFocus( GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));              StringBuffer inf;
119              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);  
120          }              for (r = recip; r; r = r->next) {
121          center_window (dlg, NULL);                  memset (&key, 0, sizeof (key));
122          SetForegroundWindow (dlg);                  if (!winpt_get_pubkey (r->keyid, &key)) {
123          set_active_window (dlg);                      gpgme_user_id_t u = key.ctx->uids;
124          return FALSE;                      
125                        inf = (u->name? u->name : _("Invalid User ID"));
126          case WM_SYSCOMMAND:                      if (u->email != NULL && strlen (u->email) > 1)
127              if( LOWORD( wparam ) == SC_CLOSE ) {                          inf = inf + " <" + u->email + ">";
128                  SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" );                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
129                  c->cancel = 1;                      inf = inf + ", 0x" + (r->keyid+8) + ")";
130                  EndDialog( dlg, TRUE );                  }
131              }                  else {
132              break;                      inf = _("Unknown key ID");
133                        inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
134          case WM_COMMAND:                      inf = inf + ", 0x" + (r->keyid+8) + ")";
135              switch( HIWORD( wparam ) ) {                  }
136              case BN_CLICKED:                  ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST),
137                  if ( LOWORD( wparam ) == IDC_DECRYPT_HIDE                                          inf.getBuffer ());
138                      || LOWORD( wparam ) == IDC_DECRYPT_SIGN_HIDE ) {                  winpt_release_pubkey (&key);
139                      HWND hwnd;              }
140                      int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));          }
141                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));          else if (c->gpg_cmd == GPG_CMD_DECRYPT)
142                      SendMessage( hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0 );              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
143                      SetFocus (hwnd);          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
144                  }                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
145              }                          c->bad_pwd? _("Bad passphrase; Enter passphrase again") :
146                            _("Please enter your passphrase"));
147              switch (LOWORD (wparam)) {          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
148              case IDOK:                SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
149                  /* fixme: the item is even cached when the passphrase is not              if (res && !res->recipients) {
150                            correct, which means that the user needs to delete all                  StringBuffer sinf;
151                            cached entries to continue. */  
152                  if (c->pwd) {                  sinf = _("Symmetric encryption.");
153                      delete []c->pwd;                  sinf = sinf + "\n" + get_symkey_algo (c->sym.sym_algo);
154                      c->pwd = NULL;                  sinf = sinf + " " + _("encrypted data.");
155                  }                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, sinf.getBuffer ());
156                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));              }
157                  if (!n) {              else
158                      c->pwd = new char[2];                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
159                      strcpy (c->pwd, "");          }
160                  }          else {
161                  else {              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
162                      c->pwd = new char[n+2];              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
163                      if (!c->pwd)          }
164                          BUG (NULL);          center_window (dlg, NULL);
165                      GetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), c->pwd, n+1);          SetForegroundWindow (dlg);
166                  }          return FALSE;
167                  res = gpgme_op_decrypt_result (c->gpg);  
168                  if (!res)          case WM_COMMAND:
169                      res_sig = gpgme_op_sign_result (c->gpg);              switch (HIWORD (wparam)) {
170                  if (reg_prefs.cache_time > 0 && !c->is_card &&              case BN_CLICKED:
171                      ((res && res->recipients) || (res_sig && res_sig->signatures))) {                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE
172                      if (agent_get_cache (c->keyid, &item))                      || LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
173                          agent_unlock_cache_entry (&item);                      HWND hwnd;
174                      else                      int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
175                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
176                  }                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
177                  EndDialog (dlg, TRUE);                      SetFocus (hwnd);
178                  return TRUE;                  }
179                                }
180              case IDCANCEL:  
181                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "" );              switch (LOWORD (wparam)) {
182                  c->cancel = 1;              case IDOK:  
183                  EndDialog (dlg, FALSE);                  /* XXX: the item is even cached when the passphrase is not
184                  return FALSE;                          correct, which means that the user needs to delete all
185              }                          cached entries to continue. */
186              break;                  if (c->pwd)
187      }                      burn_passphrase (&c->pwd);
188                        n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
189      return FALSE;                  if (!n) {
190  }                      c->pwd = new char[2];
191                        if (!c->pwd)
192                            BUG (NULL);
193  /* Extract the main keyid from @pass_info.                      strcpy (c->pwd, "");
194     Return value: long main keyid or NULL for an error. */                  }
195  static const char*                  else {
196  parse_gpg_keyid (const char *pass_info)                      char *p = new char[n+2];
197  {                      if (!p)
198      static char keyid[16+1];                          BUG (NULL);
199                            /* Get the passphrase and convert it utf8.
200      if (strlen (pass_info) < 16)                         This does not just the us-ascii charset. */
201          return NULL;                      SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1);
202      /* the format of the desc buffer looks like this:                      c->pwd = native_to_utf8 (p);
203         request_keyid[16] main_keyid[16] keytype[1] keylength[4]                      sfree_if_alloc (p);
204         we use the main keyid to use only one cache entry. */                  }
205      strncpy (keyid, pass_info+17, 16);                  res = gpgme_op_decrypt_result (c->gpg);
206      keyid[16] = 0;                  if (!res)
207      return keyid;                      res_sig = gpgme_op_sign_result (c->gpg);
208  }                  if (!c->is_card && reg_prefs.cache_time > 0 &&
209                        (res || res_sig)) {
210                        if (agent_get_cache (c->keyid, &item))
211  /* Parse the information in @uid_hint and @pass_info to generate                          agent_unlock_cache_entry (&item);
212     a input message for the user in @desc. */                      else
213  static void                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);
214  parse_gpg_description (const char *uid_hint, const char *pass_info,                  }
215                         char *desc, int size)                  c->cancel = 0;
216  {                  EndDialog (dlg, TRUE);
217      gpgme_pubkey_algo_t algo;                  return TRUE;
218      char usedkey[16+1], mainkey[16+1];                  
219      char *uid, *p;              case IDCANCEL:
220      int n=0;                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
221                    c->cancel = 1;
222      while (p = strsep ((char**)&pass_info, " ")) {                  EndDialog (dlg, FALSE);
223          switch (n++) {                  return TRUE;
224          case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;              }
225          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;              break;
226          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;      }
227          }      
228      }      return FALSE;
229      uid_hint += 16; /* skip keyid */  }
230      uid_hint += 1;  /* space */  
231    
232      uid = utf8_to_wincp (uid_hint, strlen (uid_hint));  /* Extract the main keyid from @pass_info.
233       Return value: long main keyid or NULL for an error. */
234      if (strcmp (usedkey, mainkey))  static const char*
235          _snprintf (desc, size-1,  parse_gpg_keyid (const char *pass_info)
236                     _("You need a passphrase to unlock the secret key for\n"  {
237                       "user: \"%s\"\n"      static char keyid[16+1];
238                       "%s key, ID %s (main key ID %s)\n"),      
239                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);      /* XXX: check for leading alpha-chars? */
240      else if (!strcmp (usedkey, mainkey))      if (strlen (pass_info) < 16) {
241          _snprintf (desc, size-1,          log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
242                     _("You need a passphrase to unlock the secret key for\n"          return NULL;
243                       "user: \"%s\"\n"      }
244                       "%s key, ID %s\n"),      /* the format of the desc buffer looks like this:
245                       uid, get_key_pubalgo (algo), usedkey+8);         request_keyid[16] main_keyid[16] keytype[1] keylength[4]
246      free (uid);         we use the main keyid to use only one cache entry. */
247  }      strncpy (keyid, pass_info+17, 16);
248        keyid[16] = 0;
249        return keyid;
250  static int inline  }
251  is_hexstring (const char * p)  
252  {  
253      size_t i;  /* Parse the information in @uid_hint and @pass_info to generate
254       a input message for the user in @desc. */
255      for (i=0; i < strlen (p); i++) {  static int
256          if (!isxdigit (p[i]))  parse_gpg_description (const char *uid_hint, const char *pass_info,
257              return -1;                         char *desc, int size)
258      }  {
259      return 0;      gpgme_pubkey_algo_t algo;
260  }      char usedkey[16+1];
261        char mainkey[16+1];
262        char *p, *uid;
263  /* Passphrase callback with the ability to support caching. */      int n=0;
264  gpgme_error_t  
265  passphrase_cb (void *hook, const char *uid_hint,      algo = (gpgme_pubkey_algo_t)0;
266                 const char *passphrase_info,      /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
267                 int prev_was_bad, int fd)      if (strlen (uid_hint) < 17) {
268  {          *desc = 0;
269      passphrase_cb_s *c = (passphrase_cb_s*)hook;          log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
270      HANDLE hd = (HANDLE)fd;          return -1;
271      void *item;      }
272      const char *keyid, *pass;  
273      DWORD n;      while (p = strsep ((char**)&pass_info, " ")) {
274      int rc;          switch (n++) {
275            case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;
276      /* XXX: pubkey_enc cancel does not quit gpg.exe */          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;
277      /* XXX: handle prev_was_bad case. */          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;
278      if (!c)          }
279          return gpg_error (GPG_ERR_INV_ARG);      }
280        uid_hint += 16; /* skip keyid */
281      if (passphrase_info) {      uid_hint += 1;  /* space */
282          keyid = parse_gpg_keyid (passphrase_info);  
283          pass = agent_get_cache (keyid+8, &item);      uid = utf8_to_native (uid_hint);
284          if (pass) {      if (strcmp (usedkey, mainkey))
285              agent_unlock_cache_entry (&item);          _snprintf (desc, size-1,
286              c->pwd_init = 0;                     _("You need a passphrase to unlock the secret key for user:\n"
287              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))                       "\"%s\"\n"
288                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);                       "%s key, ID 0x%s (main key ID 0x%s)\n"),
289              if (!WriteFile (hd, "\n", 1, &n, NULL))                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);
290                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);      else if (!strcmp (usedkey, mainkey))
291              return 0;          _snprintf (desc, size-1,
292          }                     _("You need a passphrase to unlock the secret key for user:\n"
293      }                       "\"%s\"\n"
294                         "%s key, ID 0x%s\n"),
295      if (c->pwd_init) {                       uid, get_key_pubalgo (algo), usedkey+8);
296          if (keyid && strlen (keyid) == 16)      safe_free (uid);
297              strcpy (c->keyid, keyid+8);      return 0;
298    }
299          /* if the desc has a length of 32 and only hex digits, we assume a  
300             smart card has been used. */  
301          if (uid_hint && strlen (uid_hint) == 32 && !is_hexstring (uid_hint)) {  /* Extract the serial number from the card ID @id and return it. */
302              char buf[16];  const char*
303              memset (buf, 0, sizeof buf);  extract_serial_no (const char *id)
304              strncpy (buf, uid_hint+20, 8);  {
305              _snprintf (c->info, sizeof c->info-1,      static char buf[8];
306                         _("Please enter the PIN to unlock your secret card key\n"      char *p;
307                           "Card: %s"), buf);  
308              c->is_card = 1;      p = strchr (id, '/');
309          }      if (!p) {
310          else if (uid_hint)          log_debug ("extract_serial_no: error '%s'\r\n", id);
311              parse_gpg_description (uid_hint, passphrase_info,          return "";
312                                     c->info, sizeof c->info - 1);      }
313          if (c->gpg_cmd == GPG_CMD_DECRYPT) {      memset (buf, 0, sizeof (buf));
314              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,      strncpy (buf, id+(p-id)-6, 6);
315                                   (HWND)c->hwnd, passphrase_callback_proc,      return buf;
316                                   (LPARAM)c);  }
317          }  
318          else if (c->gpg_cmd == GPG_CMD_SIGN) {  
319              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,  /* Passphrase callback with the ability to support caching. */
320                                   (HWND)c->hwnd, passphrase_callback_proc,  gpgme_error_t
321                                   (LPARAM)c);  passphrase_cb (void *hook, const char *uid_hint,
322          }                 const char *passphrase_info,
323          if (rc == -1) {                 int prev_was_bad, int fd)
324              WriteFile (hd, "\n", 1, &n, NULL);  {
325              return gpg_error (GPG_ERR_EOF);      passphrase_cb_s *c = (passphrase_cb_s*)hook;
326          }      HANDLE hd = (HANDLE)fd;
327          c->pwd_init = 0;      void *item;
328      }      const char *keyid=NULL, *pass;
329      if (c->cancel) {      DWORD n;
330          WriteFile (hd, "\n", 1, &n, NULL);      int rc = 0;
331          return gpg_error (GPG_ERR_EOF);  
332      }      if (!c) {
333            log_debug ("passphrase_cb: error no valid callback\r\n");
334      WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL);          return gpg_error (GPG_ERR_INV_ARG);
335      WriteFile (hd, "\n", 1, &n, NULL);      }
336      return 0;      c->bad_pwd = prev_was_bad? 1 : 0;
337  }      if (prev_was_bad && !c->cancel) {
338            if (c->pwd)
339                burn_passphrase (&c->pwd);
340  /* Initialize the given passphrase callback @cb with the          agent_del_cache (c->keyid);
341     used gpgme context @ctx, the command @cmd and a title          c->pwd_init = 1;
342     @title for the dialog. */      }
343  void  
344  set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,      if (passphrase_info) {
345                         int cmd, HWND hwnd, const char *title)          if (strlen (passphrase_info) < 16 &&
346  {              !strstr (passphrase_info, "OPENPGP")) {
347      memset (cb, 0, sizeof *cb);              /* assume symetric encryption. */
348      cb->gpg_cmd = cmd;              int pos=2;
349      cb->is_card = 0;              c->sym.sym_algo = atoi (passphrase_info);
350      cb->cancel = 0;              if (c->sym.sym_algo > 9)
351      cb->hwnd = hwnd;                  pos++;
352      cb->pwd_init = 1;              /* XXX: be more strict. */
353      free_if_alloc (cb->title);              c->sym.s2k_mode = atoi (passphrase_info+pos);
354      cb->title = m_strdup (title);              c->sym.s2k_hash = atoi (passphrase_info+pos+2);
355      if (!cb->title)          }
356          BUG (NULL);  
357      gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);          keyid = parse_gpg_keyid (passphrase_info);
358      cb->gpg = ctx;          pass = agent_get_cache (keyid+8, &item);        
359  }          if (pass) {
360                agent_unlock_cache_entry (&item);
361                c->pwd_init = 0;
362  /* Release a passphrase callback @ctx. */              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
363  void                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
364  release_gpg_passphrase_cb (passphrase_cb_s *ctx)              if (!WriteFile (hd, "\n", 1, &n, NULL))
365  {                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
366      if (!ctx)              return 0;
367          return;          }
368      sfree_if_alloc (ctx->pwd);      }
369      free_if_alloc (ctx->title);  
370  }      if (c->pwd_init) {
371            if (keyid && strlen (keyid) == 16)
372  /* Simple check to measure passphrase (@pass) quality.              strcpy (c->keyid, keyid+8);
373     Return value: 0 on success. */  
374  int          /* if @passphrase_info contains 'OPENPGP' we assume a smart card
375  check_passwd_quality (const char *pass, int strict)              has been used. */
376  {          if (strstr (passphrase_info, "OPENPGP")) {
377      int i, nd=0, nc=0, n;              const char *s=passphrase_info;
378                while (s && *s && *s != 'D')
379      n = strlen (pass);                  s++;
380      if (n < 8)              _snprintf (c->info, DIM (c->info)-1,
381          return -1;                         _("Please enter the PIN to unlock your secret card key\n"
382                             "Card: %s"), extract_serial_no (s));
383      for (i=0; i < n; i++) {              c->is_card = 1;
384          if (isdigit (pass[i])) nd++;          }
385          if (isalpha (pass[i])) nc++;          else if (uid_hint)
386      }              parse_gpg_description (uid_hint, passphrase_info,
387                                       c->info, sizeof (c->info) - 1);
388      if (nd == n || nc == n)          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
389          return -1;              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
390                                     (HWND)c->hwnd, passphrase_callback_proc,
391      return 0;                                   (LPARAM)c);
392  }          }
393            else if (c->gpg_cmd == GPG_CMD_SIGN) {
394                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
395                                     (HWND)c->hwnd, passphrase_callback_proc,
396                                     (LPARAM)c);
397            }
398            if (rc == -1) {
399                if (!WriteFile (hd, "\n", 1, &n, NULL))
400                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
401                log_debug ("passphrase_cb: could not create dialog box\n");
402                return 0;
403            }
404            c->pwd_init = 0;
405        }
406        if (c->cancel || !c->pwd) {
407            if (!WriteFile (hd, "\n", 1, &n, NULL))
408                log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
409            return 0;
410        }
411    
412        if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
413            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
414        if (!WriteFile (hd, "\n", 1, &n, NULL))
415            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
416        return 0;
417    }
418    
419    
420    /* Initialize the given passphrase callback @cb with the
421       used gpgme context @ctx, the command @cmd and a title
422       @title for the dialog. */
423    void
424    set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
425                           int cmd, HWND hwnd, const char *title)
426    {
427        memset (cb, 0, sizeof *cb);
428        cb->gpg_cmd = cmd;
429        cb->bad_pwd = 0;
430        cb->is_card = 0;
431        cb->cancel = 0;
432        cb->hwnd = hwnd;
433        cb->pwd_init = 1;
434        free_if_alloc (cb->title);
435        cb->title = m_strdup (title);
436        gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
437        cb->gpg = ctx;
438    }
439    
440    
441    /* Release the gpg recipient list. */
442    void
443    release_gpg_recipients (gpgme_recipient_t *recipients)
444    {
445        gpgme_recipient_t r, n;
446    
447        r = *recipients;
448        while (r != NULL) {
449            n = r->next;
450            safe_free (r->keyid);
451            safe_free (r);
452            r = n;
453        }
454        *recipients = NULL;
455    }
456    
457    
458    
459    /* Release a passphrase callback @ctx. */
460    void
461    release_gpg_passphrase_cb (passphrase_cb_s *ctx)
462    {
463        if (!ctx)
464            return;
465        sfree_if_alloc (ctx->pwd);
466        free_if_alloc (ctx->title);
467        release_gpg_recipients (&ctx->recipients);
468    }
469    
470    
471    /* _Simple_ check to measure passphrase (@pass) quality.
472       Return value: 0 on success. */
473    int
474    check_passwd_quality (const char *pass, int strict)
475    {
476        int i, nd=0, nc=0, n;
477    
478        /* A good passphrase should be at least 8 characters. */
479        n = strlen (pass);
480        if (n < 8)
481            return -1;
482    
483        for (i=0; i < n; i++) {
484            if (isdigit (pass[i]))
485                nd++;
486            if (isalpha (pass[i]))
487                nc++;
488        }
489    
490        /* Check that the passphrase contains letters and numbers. */
491        if (nd == n || nc == n)
492            return -1;
493    
494        return 0;
495    }

Legend:
Removed from v.24  
changed lines
  Added in v.304

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26