1 |
/* wptPassphraseCB.cpp - GPGME Passphrase Callback |
/* wptPassphraseCB.cpp - GPGME Passphrase Callback |
2 |
* Copyright (C) 2001, 2002, 2003 Timo Schulz |
* Copyright (C) 2001, 2002-2006 Timo Schulz |
3 |
* |
* Copyright (C) 2005 g10 Code GmbH |
4 |
* This file is part of WinPT. |
* |
5 |
* |
* This file is part of WinPT. |
6 |
* WinPT is free software; you can redistribute it and/or |
* |
7 |
* modify it under the terms of the GNU General Public License |
* WinPT is free software; you can redistribute it and/or |
8 |
* as published by the Free Software Foundation; either version 2 |
* modify it under the terms of the GNU General Public License |
9 |
* of the License, or (at your option) any later version. |
* as published by the Free Software Foundation; either version 2 |
10 |
* |
* of the License, or (at your option) any later version. |
11 |
* WinPT is distributed in the hope that it will be useful, |
* |
12 |
* but WITHOUT ANY WARRANTY; without even the implied warranty of |
* WinPT is distributed in the hope that it will be useful, |
13 |
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU |
* but WITHOUT ANY WARRANTY; without even the implied warranty of |
14 |
* General Public License for more details. |
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU |
15 |
* |
* General Public License for more details. |
16 |
* You should have received a copy of the GNU General Public License |
*/ |
17 |
* along with WinPT; if not, write to the Free Software Foundation, |
#ifdef HAVE_CONFIG_H |
18 |
* Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA |
#include <config.h> |
19 |
*/ |
#endif |
20 |
|
|
21 |
#include <windows.h> |
#include <windows.h> |
22 |
#include <ctype.h> |
#include <ctype.h> |
23 |
|
|
24 |
#include "../resource.h" |
#include "resource.h" |
25 |
#include "wptNLS.h" |
#include "wptNLS.h" |
26 |
#include "wptW32API.h" |
#include "wptW32API.h" |
27 |
#include "wptVersion.h" |
#include "wptVersion.h" |
28 |
#include "wptGPG.h" |
#include "wptGPG.h" |
29 |
#include "wptCommonCtl.h" |
#include "wptCommonCtl.h" |
30 |
#include "wptContext.h" |
#include "wptContext.h" |
31 |
#include "wptDlgs.h" |
#include "wptDlgs.h" |
32 |
#include "wptUTF8.h" |
#include "wptErrors.h" |
33 |
#include "wptErrors.h" |
#include "wptTypes.h" |
34 |
#include "wptTypes.h" |
#include "wptKeylist.h" |
35 |
#include "wptAgent.h" |
#include "wptAgent.h" |
36 |
#include "wptRegistry.h" |
#include "wptRegistry.h" |
37 |
|
#include "wptUTF8.h" |
38 |
|
#include "StringBuffer.h" |
39 |
#define item_ctrl_id( cmd ) \ |
|
40 |
((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD) |
|
41 |
|
/* Return the control ID dependent on the mode (sign or decrypt). */ |
42 |
|
#define item_ctrl_id(cmd) \ |
43 |
BOOL CALLBACK |
((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD) |
44 |
passphrase_callback_proc( HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam ) |
|
45 |
{ |
#define item_ctrl_id2(cmd) \ |
46 |
static passphrase_cb_s * c; |
((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE) |
47 |
static int yes = 1; |
|
48 |
gpgme_key_t key; |
const char* get_symkey_algo (int algo); |
49 |
const char * s, * id; |
void ListBox_AddString_utf8 (HWND lb, const char *txt); |
50 |
char info[768] = {0}; |
|
51 |
void * ctx = NULL, * item; |
|
52 |
unsigned int pkalgo; |
/* Overwrite passphrase and free memory. */ |
53 |
|
static void |
54 |
switch( msg ) { |
burn_passphrase (char **pwd) |
55 |
case WM_INITDIALOG: |
{ |
56 |
c = (passphrase_cb_s *)lparam; |
char *pass = *pwd; |
57 |
if( !c ) |
|
58 |
BUG( NULL ); |
wipememory (pass, strlen (pass)); |
59 |
SetWindowText( dlg, c->title ); |
delete []pass; |
60 |
if( c->gpg_cmd == GPG_CMD_DECRYPT ) { |
*pwd = NULL; |
61 |
SetDlgItemText( dlg, IDC_DECRYPT_LISTINF, |
} |
62 |
_("Encrypted with the following public key(s)") ); |
|
63 |
CheckDlgButton( dlg, IDC_DECRYPT_HIDE, BST_CHECKED ); |
|
64 |
} |
/* Dialog procedure for the passphrase callback. */ |
65 |
else if( c->gpg_cmd == GPG_CMD_SIGN ) |
static BOOL CALLBACK |
66 |
CheckDlgButton( dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED ); |
passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam) |
67 |
if( c->enc_to && c->gpg_cmd == GPG_CMD_DECRYPT ) { |
{ |
68 |
gpgme_recipients_enum_open( c->enc_to, &ctx ); |
static passphrase_cb_s *c; |
69 |
while ( (s = gpgme_recipients_enum_read( c->enc_to, &ctx )) ) { |
gpgme_decrypt_result_t res=NULL; |
70 |
pkalgo = *s; s++; |
gpgme_sign_result_t res_sig=NULL; |
71 |
get_pubkey( s, &key ); |
gpgme_recipient_t recip=NULL, r; |
72 |
if( key ) { |
winpt_key_s key; |
73 |
char * uid = NULL; |
void *item; |
74 |
id = gpgme_key_get_string_attr( key, GPGME_ATTR_USERID, NULL, 0 ); |
int n; |
75 |
if( !id ) |
|
76 |
id = _("Invalid User ID"); |
switch (msg) { |
77 |
uid = utf8_to_wincp (id, strlen (id)); |
case WM_ACTIVATE: |
78 |
_snprintf( info, sizeof info - 1, "%s (%s, 0x%s)", uid, |
safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd)); |
79 |
gpgme_key_expand_attr( GPGME_ATTR_ALGO, pkalgo ), s+8 ); |
break; |
80 |
free( uid ); |
|
81 |
} |
case WM_DESTROY: |
82 |
else |
safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd)); |
83 |
_snprintf( info, sizeof info - 1, _("Unknown (key ID 0x%s)"), |
break; |
84 |
s? s + 8 : "DEADBEEF" ); |
|
85 |
listbox_add_string( GetDlgItem( dlg, IDC_DECRYPT_LIST ), info ); |
case WM_INITDIALOG: |
86 |
} |
c = (passphrase_cb_s *)lparam; |
87 |
gpgme_recipients_enum_close( c->enc_to, &ctx ); |
if (!c) |
88 |
} |
BUG (0); |
89 |
SetDlgItemText( dlg, c->gpg_cmd == GPG_CMD_DECRYPT? |
SetDlgItemText (dlg, IDCANCEL, _("&Cancel")); |
90 |
IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO, |
SetWindowText (dlg, c->title); |
91 |
_("Please enter your passphrase") ); |
if (c->gpg_cmd == GPG_CMD_DECRYPT) { |
92 |
if( c->gpg_cmd == GPG_CMD_DECRYPT ) { |
SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing")); |
93 |
SetFocus( GetDlgItem( dlg, IDC_DECRYPT_PWD ) ); |
SetDlgItemText (dlg, IDC_DECRYPT_LISTINF, |
94 |
SetDlgItemText( dlg, IDC_DECRYPT_MSG, c->info ); |
_("Encrypted with the following public key(s)")); |
95 |
} |
CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED); |
96 |
else { |
} |
97 |
SetFocus( GetDlgItem( dlg, IDC_DECRYPT_SIGN_PWD ) ); |
else if (c->gpg_cmd == GPG_CMD_SIGN) { |
98 |
SetDlgItemText( dlg, IDC_DECRYPT_SIGN_MSG, c->info ); |
SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing")); |
99 |
} |
CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED); |
100 |
center_window( dlg ); |
} |
101 |
SetForegroundWindow( dlg ); |
/* Because it depends on the order the keys are stored in the |
102 |
set_active_window( dlg ); |
keyring whether res->recipients is complete or not, we also |
103 |
return FALSE; |
support that the recipients were externally extracted and then |
104 |
|
we use this list. */ |
105 |
case WM_SYSCOMMAND: |
if (c->recipients) |
106 |
if( LOWORD( wparam ) == SC_CLOSE ) { |
recip = c->recipients; /* recipients were already extracted. */ |
107 |
SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" ); |
else { |
108 |
c->cancel = 1; |
res = gpgme_op_decrypt_result (c->gpg); |
109 |
EndDialog( dlg, TRUE ); |
if (res && res->recipients) |
110 |
} |
recip = res->recipients; |
111 |
return FALSE; |
} |
112 |
|
if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) { |
113 |
case WM_COMMAND: |
StringBuffer inf; |
114 |
switch( HIWORD( wparam ) ) { |
|
115 |
case BN_CLICKED: |
for (r = recip; r; r = r->next) { |
116 |
if ( LOWORD( wparam ) == IDC_DECRYPT_HIDE |
memset (&key, 0, sizeof (key)); |
117 |
|| LOWORD( wparam ) == IDC_DECRYPT_SIGN_HIDE ) { |
if (!winpt_get_pubkey (r->keyid, &key)) { |
118 |
HWND hwnd; |
gpgme_user_id_t u = key.ctx->uids; |
119 |
yes ^= 1; |
|
120 |
hwnd = GetDlgItem( dlg, item_ctrl_id( c->gpg_cmd ) ); |
inf = (u->name? u->name : _("Invalid User ID")); |
121 |
SendMessage( hwnd, EM_SETPASSWORDCHAR, yes? '*' : 0, 0 ); |
if (u->email != NULL && strlen (u->email) > 1) |
122 |
SetFocus( hwnd ); |
inf = inf + " <" + u->email + ">"; |
123 |
} |
inf = inf + " (" + get_key_pubalgo (r->pubkey_algo); |
124 |
} |
inf = inf + ", 0x" + (r->keyid+8) + ")"; |
125 |
|
} |
126 |
switch( LOWORD( wparam ) ) { |
else { |
127 |
case IDOK: |
inf = _("Unknown key ID"); |
128 |
/* fixme: the item is even cached when the passphrase is not |
inf = inf + " (" + get_key_pubalgo (r->pubkey_algo); |
129 |
correct, which means that the user needs to delete all |
inf = inf + ", 0x" + (r->keyid+8) + ")"; |
130 |
cached entries to continue. */ |
} |
131 |
GetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), c->pwd, sizeof c->pwd -1 ); |
ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST), |
132 |
if( reg_prefs.cache_time > 0 && !c->is_card ) { |
inf.getBuffer ()); |
133 |
if( agent_get_cache( c->keyid, &item ) ) |
winpt_release_pubkey (&key); |
134 |
agent_unlock_cache_entry( &item ); |
} |
135 |
else |
} |
136 |
agent_put_cache( c->keyid, c->pwd, reg_prefs.cache_time ); |
else if (c->gpg_cmd == GPG_CMD_DECRYPT) |
137 |
} |
EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE); |
138 |
EndDialog( dlg, TRUE ); |
SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT? |
139 |
return TRUE; |
IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO, |
140 |
|
c->bad_pwd? _("Bad passphrase; Enter passphrase again") : |
141 |
case IDCANCEL: |
_("Please enter your passphrase")); |
142 |
SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" ); |
if (c->gpg_cmd == GPG_CMD_DECRYPT) { |
143 |
c->cancel = 1; |
SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD)); |
144 |
EndDialog( dlg, FALSE ); |
if (res && !res->recipients) { |
145 |
return FALSE; |
StringBuffer sinf; |
146 |
} |
|
147 |
break; |
sinf = _("Symmetric encryption."); |
148 |
} |
sinf = sinf + "\n" + get_symkey_algo (c->sym.sym_algo); |
149 |
|
sinf = sinf + " " + _("encrypted data."); |
150 |
return FALSE; |
SetDlgItemText (dlg, IDC_DECRYPT_MSG, sinf.getBuffer ()); |
151 |
} /* passphrase_callback_proc */ |
} |
152 |
|
else |
153 |
|
SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info); |
154 |
static const char * |
} |
155 |
parse_gpg_keyid( const char * desc ) |
else { |
156 |
{ |
SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD)); |
157 |
static char keyid[16+1]; |
SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info); |
158 |
char * p; |
} |
159 |
|
center_window (dlg, NULL); |
160 |
p = strrchr( desc, '\n' ); |
SetForegroundWindow (dlg); |
161 |
if( !p ) |
return FALSE; |
162 |
return NULL; |
|
163 |
/* the format of the desc buffer looks like this: |
case WM_COMMAND: |
164 |
request_keyid[16] main_keyid[16] keytype[1] keylength[4] |
switch (HIWORD (wparam)) { |
165 |
we use the main keyid to use only one cache entry. */ |
case BN_CLICKED: |
166 |
strncpy( keyid, desc+(p-desc+1+17), 16 ); |
if (LOWORD (wparam) == IDC_DECRYPT_HIDE |
167 |
return keyid; |
|| LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) { |
168 |
} /* parse_gpg_keyid */ |
HWND hwnd; |
169 |
|
int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd)); |
170 |
|
hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd)); |
171 |
static void |
SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0); |
172 |
parse_gpg_description( char * desc, int size ) |
SetFocus (hwnd); |
173 |
{ |
} |
174 |
char * buffer = NULL, ch, uid[128] = {0}, * uid2 = NULL; |
} |
175 |
char usedkey[16+1] = {0}, mainkey[16+1] = {0}; |
|
176 |
const char * buf; |
switch (LOWORD (wparam)) { |
177 |
int i, algo, try_again = 0; |
case IDOK: |
178 |
|
/* XXX: the item is even cached when the passphrase is not |
179 |
if( stristr( desc, "[User ID hint missing]" ) |
correct, which means that the user needs to delete all |
180 |
|| stristr( desc, "[passphrase info missing]" ) ) { |
cached entries to continue. */ |
181 |
_snprintf( desc, size-1, |
if (c->pwd) |
182 |
_("You need a passphrase to unlock the secret key for\n" |
burn_passphrase (&c->pwd); |
183 |
"user: [UserID hint missing]\n" |
n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd)); |
184 |
" [passphrase info missing]\n") ); |
if (!n) { |
185 |
return; |
c->pwd = new char[2]; |
186 |
} |
if (!c->pwd) |
187 |
|
BUG (NULL); |
188 |
buffer = new char[size+1]; |
strcpy (c->pwd, ""); |
189 |
if( !buffer ) |
} |
190 |
BUG( NULL ); |
else { |
191 |
strcpy( buffer, desc ); |
char *p = new char[n+2]; |
192 |
buf = buffer; |
if (!p) |
193 |
if( strstr( buf, "TRY_AGAIN" ) ) { |
BUG (NULL); |
194 |
buf += strlen( "TRY_AGAIN\n" ); |
/* Get the passphrase and convert it utf8. |
195 |
try_again = 1; |
This does not just the us-ascii charset. */ |
196 |
} |
SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1); |
197 |
else if( strstr( buf, "ENTER_PASSPHRASE" ) ) |
c->pwd = native_to_utf8 (p); |
198 |
buf += strlen( "ENTER_PASSPHRASE\n" ); |
sfree_if_alloc (p); |
199 |
else |
} |
200 |
BUG( NULL ); |
res = gpgme_op_decrypt_result (c->gpg); |
201 |
buf += 17; |
if (!res) |
202 |
for( i = 0; i < sizeof uid-1; i++ ) { |
res_sig = gpgme_op_sign_result (c->gpg); |
203 |
ch = *buf++; |
if (!c->is_card && reg_prefs.cache_time > 0 && |
204 |
if( ch == '\n' ) { |
(res || res_sig)) { |
205 |
uid[i] = '\0'; |
if (agent_get_cache (c->keyid, &item)) |
206 |
break; |
agent_unlock_cache_entry (&item); |
207 |
} |
else |
208 |
uid[i] = ch; |
agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time); |
209 |
} |
} |
210 |
memcpy( usedkey, buf, 16 ); |
c->cancel = 0; |
211 |
usedkey[16] = '\0'; |
EndDialog (dlg, TRUE); |
212 |
buf += 17; |
return TRUE; |
213 |
memcpy( mainkey, buf, 16 ); |
|
214 |
mainkey[16] = '\0'; |
case IDCANCEL: |
215 |
buf += 17; |
SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), ""); |
216 |
if( !buf ) |
c->cancel = 1; |
217 |
BUG( NULL ); |
EndDialog (dlg, FALSE); |
218 |
algo = atol( buf ); |
return TRUE; |
219 |
free_if_alloc( buffer ); |
} |
220 |
|
break; |
221 |
uid2 = utf8_to_wincp (uid, strlen (uid)); |
} |
222 |
|
|
223 |
if( strcmp( usedkey, mainkey ) ) |
return FALSE; |
224 |
_snprintf( desc, size-1, |
} |
225 |
_("You need a passphrase to unlock the secret key for\n" |
|
226 |
"user: \"%s\"\n" |
|
227 |
"%s key, ID %s (main key ID %s)\n"), |
/* Extract the main keyid from @pass_info. |
228 |
uid2, gpgme_key_expand_attr( GPGME_ATTR_ALGO, algo ), |
Return value: long main keyid or NULL for an error. */ |
229 |
usedkey+8, mainkey+8 ); |
static const char* |
230 |
else if( !strcmp( usedkey, mainkey ) ) |
parse_gpg_keyid (const char *pass_info) |
231 |
_snprintf( desc, size-1, |
{ |
232 |
_("You need a passphrase to unlock the secret key for\n" |
static char keyid[16+1]; |
233 |
"user: \"%s\"\n" |
|
234 |
"%s key, ID %s\n"), |
/* XXX: check for leading alpha-chars? */ |
235 |
uid2, gpgme_key_expand_attr( GPGME_ATTR_ALGO, algo ), |
if (strlen (pass_info) < 16) { |
236 |
usedkey+8 ); |
log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info); |
237 |
free( uid2 ); |
return NULL; |
238 |
} /* parse_gpg_describtion */ |
} |
239 |
|
/* the format of the desc buffer looks like this: |
240 |
|
request_keyid[16] main_keyid[16] keytype[1] keylength[4] |
241 |
static int inline |
we use the main keyid to use only one cache entry. */ |
242 |
is_hexstring( const char * p ) |
strncpy (keyid, pass_info+17, 16); |
243 |
{ |
keyid[16] = 0; |
244 |
size_t i; |
return keyid; |
245 |
for( i=0; i < strlen( p ); i++ ) { |
} |
246 |
if( !isxdigit( p[i] ) ) |
|
247 |
return -1; |
|
248 |
} |
/* Parse the information in @uid_hint and @pass_info to generate |
249 |
return 0; |
a input message for the user in @desc. */ |
250 |
} |
static int |
251 |
|
parse_gpg_description (const char *uid_hint, const char *pass_info, |
252 |
|
char *desc, int size) |
253 |
const char * |
{ |
254 |
passphrase_cb( void * opaque, const char * desc, void * r_hd ) |
gpgme_pubkey_algo_t algo; |
255 |
{ |
char usedkey[16+1]; |
256 |
passphrase_cb_s * c = (passphrase_cb_s *)opaque; |
char mainkey[16+1]; |
257 |
void * item; |
char *p, *uid; |
258 |
const char * pass, * keyid; |
int n=0; |
259 |
int rc = 0; |
|
260 |
|
algo = (gpgme_pubkey_algo_t)0; |
261 |
if( !c ) |
/* Each uid_hint contains a long key-ID so it is at least 16 bytes. */ |
262 |
return NULL; |
if (strlen (uid_hint) < 17) { |
263 |
|
*desc = 0; |
264 |
if( desc ) { |
log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint); |
265 |
keyid = parse_gpg_keyid( desc ); |
return -1; |
266 |
pass = agent_get_cache( keyid, &item ); |
} |
267 |
if( pass ) { |
|
268 |
agent_unlock_cache_entry( &item ); |
while (p = strsep ((char**)&pass_info, " ")) { |
269 |
c->pwd_init = 0; |
switch (n++) { |
270 |
return pass; |
case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break; |
271 |
} |
case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break; |
272 |
} |
case 2: algo = (gpgme_pubkey_algo_t)atol (p); break; |
273 |
|
} |
274 |
if( c->pwd_init ) { |
} |
275 |
c->keyid = keyid; |
uid_hint += 16; /* skip keyid */ |
276 |
/* if the desc has a length of 32 and only hex digits, we assume a |
uid_hint += 1; /* space */ |
277 |
smart card has been used. */ |
|
278 |
/*log_box( "", 0, "%s %d %d", desc,strlen( desc), is_hexstring( desc ) );*/ |
uid = utf8_to_native (uid_hint); |
279 |
if( desc && strlen( desc ) == 32 && !is_hexstring( desc ) ) { |
if (strcmp (usedkey, mainkey)) |
280 |
char buf[16]; |
_snprintf (desc, size-1, |
281 |
memset( buf, 0, sizeof buf ); |
_("You need a passphrase to unlock the secret key for user:\n" |
282 |
strncpy( buf, desc+20, 8 ); |
"\"%s\"\n" |
283 |
_snprintf( c->info, sizeof c->info-1, |
"%s key, ID 0x%s (main key ID 0x%s)\n"), |
284 |
_("Please enter the PIN to unlock your secret card key\n" |
uid, get_key_pubalgo (algo), usedkey+8, mainkey+8); |
285 |
"Card: %s"), buf ); |
else if (!strcmp (usedkey, mainkey)) |
286 |
c->is_card = 1; |
_snprintf (desc, size-1, |
287 |
} |
_("You need a passphrase to unlock the secret key for user:\n" |
288 |
else if( desc ) { |
"\"%s\"\n" |
289 |
strcpy( c->info, desc ); |
"%s key, ID 0x%s\n"), |
290 |
parse_gpg_description( c->info, sizeof c->info - 1 ); |
uid, get_key_pubalgo (algo), usedkey+8); |
291 |
} |
safe_free (uid); |
292 |
if( c->gpg_cmd == GPG_CMD_DECRYPT ) { |
return 0; |
293 |
rc = DialogBoxParam( glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT, |
} |
294 |
(HWND)c->hwnd, passphrase_callback_proc, |
|
295 |
(LPARAM)c ); |
|
296 |
} |
/* Extract the serial number from the card ID @id and return it. */ |
297 |
else if( c->gpg_cmd == GPG_CMD_SIGN ) { |
const char* |
298 |
rc = DialogBoxParam( glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN, |
extract_serial_no (const char *id) |
299 |
(HWND)c->hwnd, passphrase_callback_proc, |
{ |
300 |
(LPARAM)c ); |
static char buf[8]; |
301 |
} |
char *p; |
302 |
if( rc == -1 ) |
|
303 |
return NULL; |
p = strchr (id, '/'); |
304 |
c->pwd_init = 0; |
if (!p) { |
305 |
} |
log_debug ("extract_serial_no: error '%s'\r\n", id); |
306 |
|
return ""; |
307 |
if( c->cancel ) |
} |
308 |
return NULL; |
memset (buf, 0, sizeof (buf)); |
309 |
|
strncpy (buf, id+(p-id)-6, 6); |
310 |
return c->pwd; |
return buf; |
311 |
} /* passphrase_cb */ |
} |
312 |
|
|
313 |
|
|
314 |
void |
/* Passphrase callback with the ability to support caching. */ |
315 |
set_gpg_passphrase_cb( gpgme_ctx_t c, passphrase_cb_s * ctx, int cmd, |
gpgme_error_t |
316 |
HWND hwnd, const char * title ) |
passphrase_cb (void *hook, const char *uid_hint, |
317 |
{ |
const char *passphrase_info, |
318 |
ctx->gpg_cmd = cmd; |
int prev_was_bad, int fd) |
319 |
ctx->is_card = 0; |
{ |
320 |
ctx->cancel = 0; |
passphrase_cb_s *c = (passphrase_cb_s*)hook; |
321 |
ctx->hwnd = hwnd; |
HANDLE hd = (HANDLE)fd; |
322 |
ctx->pwd_init = 1; |
void *item; |
323 |
if( strlen( title ) > 256 ) |
const char *keyid=NULL, *pass; |
324 |
BUG( NULL ); /* check bounds */ |
DWORD n; |
325 |
strcpy( ctx->title, title ); |
int rc = 0; |
326 |
gpgme_set_passphrase_cb( c, passphrase_cb, ctx ); |
|
327 |
} /* set_gpg_passphrase_cb */ |
if (!c) { |
328 |
|
log_debug ("passphrase_cb: error no valid callback\r\n"); |
329 |
|
return gpg_error (GPG_ERR_INV_ARG); |
330 |
|
} |
331 |
|
c->bad_pwd = prev_was_bad? 1 : 0; |
332 |
|
if (prev_was_bad && !c->cancel) { |
333 |
|
if (c->pwd) |
334 |
|
burn_passphrase (&c->pwd); |
335 |
|
agent_del_cache (c->keyid); |
336 |
|
c->pwd_init = 1; |
337 |
|
} |
338 |
|
|
339 |
|
if (passphrase_info) { |
340 |
|
if (strlen (passphrase_info) < 16 && |
341 |
|
!strstr (passphrase_info, "OPENPGP")) { |
342 |
|
/* assume symetric encryption. */ |
343 |
|
int pos=2; |
344 |
|
c->sym.sym_algo = atoi (passphrase_info); |
345 |
|
if (c->sym.sym_algo > 9) |
346 |
|
pos++; |
347 |
|
/* XXX: be more strict. */ |
348 |
|
c->sym.s2k_mode = atoi (passphrase_info+pos); |
349 |
|
c->sym.s2k_hash = atoi (passphrase_info+pos+2); |
350 |
|
} |
351 |
|
|
352 |
|
keyid = parse_gpg_keyid (passphrase_info); |
353 |
|
pass = agent_get_cache (keyid+8, &item); |
354 |
|
if (pass) { |
355 |
|
agent_unlock_cache_entry (&item); |
356 |
|
c->pwd_init = 0; |
357 |
|
if (!WriteFile (hd, pass, strlen (pass), &n, NULL)) |
358 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
359 |
|
if (!WriteFile (hd, "\n", 1, &n, NULL)) |
360 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
361 |
|
return 0; |
362 |
|
} |
363 |
|
} |
364 |
|
|
365 |
|
if (c->pwd_init) { |
366 |
|
if (keyid && strlen (keyid) == 16) |
367 |
|
strcpy (c->keyid, keyid+8); |
368 |
|
|
369 |
|
/* if @passphrase_info contains 'OPENPGP' we assume a smart card |
370 |
|
has been used. */ |
371 |
|
if (strstr (passphrase_info, "OPENPGP")) { |
372 |
|
const char *s=passphrase_info; |
373 |
|
while (s && *s && *s != 'D') |
374 |
|
s++; |
375 |
|
_snprintf (c->info, sizeof (c->info)-1, |
376 |
|
_("Please enter the PIN to unlock your secret card key\n" |
377 |
|
"Card: %s"), extract_serial_no (s)); |
378 |
|
c->is_card = 1; |
379 |
|
} |
380 |
|
else if (uid_hint) |
381 |
|
parse_gpg_description (uid_hint, passphrase_info, |
382 |
|
c->info, sizeof (c->info) - 1); |
383 |
|
if (c->gpg_cmd == GPG_CMD_DECRYPT) { |
384 |
|
rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT, |
385 |
|
(HWND)c->hwnd, passphrase_callback_proc, |
386 |
|
(LPARAM)c); |
387 |
|
} |
388 |
|
else if (c->gpg_cmd == GPG_CMD_SIGN) { |
389 |
|
rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN, |
390 |
|
(HWND)c->hwnd, passphrase_callback_proc, |
391 |
|
(LPARAM)c); |
392 |
|
} |
393 |
|
if (rc == -1) { |
394 |
|
if (!WriteFile (hd, "\n", 1, &n, NULL)) |
395 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
396 |
|
log_debug ("passphrase_cb: could not create dialog box\n"); |
397 |
|
return 0; |
398 |
|
} |
399 |
|
c->pwd_init = 0; |
400 |
|
} |
401 |
|
if (c->cancel || !c->pwd) { |
402 |
|
if (!WriteFile (hd, "\n", 1, &n, NULL)) |
403 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
404 |
|
return 0; |
405 |
|
} |
406 |
|
|
407 |
|
if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL)) |
408 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
409 |
|
if (!WriteFile (hd, "\n", 1, &n, NULL)) |
410 |
|
log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno); |
411 |
|
return 0; |
412 |
|
} |
413 |
|
|
414 |
|
|
415 |
|
/* Initialize the given passphrase callback @cb with the |
416 |
|
used gpgme context @ctx, the command @cmd and a title |
417 |
|
@title for the dialog. */ |
418 |
|
void |
419 |
|
set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx, |
420 |
|
int cmd, HWND hwnd, const char *title) |
421 |
|
{ |
422 |
|
memset (cb, 0, sizeof *cb); |
423 |
|
cb->gpg_cmd = cmd; |
424 |
|
cb->bad_pwd = 0; |
425 |
|
cb->is_card = 0; |
426 |
|
cb->cancel = 0; |
427 |
|
cb->hwnd = hwnd; |
428 |
|
cb->pwd_init = 1; |
429 |
|
free_if_alloc (cb->title); |
430 |
|
cb->title = m_strdup (title); |
431 |
|
gpgme_set_passphrase_cb (ctx, passphrase_cb, cb); |
432 |
|
cb->gpg = ctx; |
433 |
|
} |
434 |
|
|
435 |
|
|
436 |
|
/* Release the gpg recipient list. */ |
437 |
|
void |
438 |
|
release_gpg_recipients (gpgme_recipient_t *recipients) |
439 |
|
{ |
440 |
|
gpgme_recipient_t r, n; |
441 |
|
|
442 |
|
r = *recipients; |
443 |
|
while (r != NULL) { |
444 |
|
n = r->next; |
445 |
|
safe_free (r->keyid); |
446 |
|
safe_free (r); |
447 |
|
r = n; |
448 |
|
} |
449 |
|
*recipients = NULL; |
450 |
|
} |
451 |
|
|
452 |
|
|
453 |
|
|
454 |
|
/* Release a passphrase callback @ctx. */ |
455 |
|
void |
456 |
|
release_gpg_passphrase_cb (passphrase_cb_s *ctx) |
457 |
|
{ |
458 |
|
if (!ctx) |
459 |
|
return; |
460 |
|
sfree_if_alloc (ctx->pwd); |
461 |
|
free_if_alloc (ctx->title); |
462 |
|
release_gpg_recipients (&ctx->recipients); |
463 |
|
} |
464 |
|
|
465 |
|
|
466 |
|
/* _Simple_ check to measure passphrase (@pass) quality. |
467 |
|
Return value: 0 on success. */ |
468 |
|
int |
469 |
|
check_passwd_quality (const char *pass, int strict) |
470 |
|
{ |
471 |
|
int i, nd=0, nc=0, n; |
472 |
|
|
473 |
|
/* A good passphrase should be at least 8 characters. */ |
474 |
|
n = strlen (pass); |
475 |
|
if (n < 8) |
476 |
|
return -1; |
477 |
|
|
478 |
|
for (i=0; i < n; i++) { |
479 |
|
if (isdigit (pass[i])) |
480 |
|
nd++; |
481 |
|
if (isalpha (pass[i])) |
482 |
|
nc++; |
483 |
|
} |
484 |
|
|
485 |
|
/* Check that the passphrase contains letters and numbers. */ |
486 |
|
if (nd == n || nc == n) |
487 |
|
return -1; |
488 |
|
|
489 |
|
return 0; |
490 |
|
} |