/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Diff of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 2 by twoaday, Mon Jan 31 11:02:21 2005 UTC revision 333 by twoaday, Tue Oct 13 10:51:21 2009 UTC
# Line 1  Line 1 
1  /* wptPassphraseCB.cpp - GPGME Passphrase Callback  /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2   *      Copyright (C) 2001, 2002, 2003 Timo Schulz   *      Copyright (C) 2001, 2002-2006, 2009 Timo Schulz
3   *   *      Copyright (C) 2005 g10 Code GmbH
4   * This file is part of WinPT.   *
5   *   * This file is part of WinPT.
6   * WinPT is free software; you can redistribute it and/or   *
7   * modify it under the terms of the GNU General Public License   * WinPT is free software; you can redistribute it and/or
8   * as published by the Free Software Foundation; either version 2   * modify it under the terms of the GNU General Public License
9   * of the License, or (at your option) any later version.   * as published by the Free Software Foundation; either version 2
10   *     * of the License, or (at your option) any later version.
11   * WinPT is distributed in the hope that it will be useful,   *  
12   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * WinPT is distributed in the hope that it will be useful,
13   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * but WITHOUT ANY WARRANTY; without even the implied warranty of
14   * General Public License for more details.   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15   *   * General Public License for more details.
16   * You should have received a copy of the GNU General Public License   */
17   * along with WinPT; if not, write to the Free Software Foundation,  #ifdef HAVE_CONFIG_H
18   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA  #include <config.h>
19   */  #endif
20    
21  #include <windows.h>  #include <windows.h>
22  #include <ctype.h>  #include <ctype.h>
23    
24  #include "../resource.h"  #include "resource.h"
25  #include "wptNLS.h"  #include "wptNLS.h"
26  #include "wptW32API.h"  #include "wptW32API.h"
27  #include "wptVersion.h"  #include "wptVersion.h"
28  #include "wptGPG.h"  #include "wptGPG.h"
29  #include "wptCommonCtl.h"  #include "wptCommonCtl.h"
30  #include "wptContext.h"  #include "wptContext.h"
31  #include "wptDlgs.h"  #include "wptDlgs.h"
32  #include "wptUTF8.h"  #include "wptErrors.h"
33  #include "wptErrors.h"  #include "wptTypes.h"
34  #include "wptTypes.h"  #include "wptKeylist.h"
35  #include "wptAgent.h"  #include "wptAgent.h"
36  #include "wptRegistry.h"  #include "wptRegistry.h"
37    #include "wptUTF8.h"
38    #include "StringBuffer.h"
39  #define item_ctrl_id( cmd ) \  
40      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)  
41    /* Return the control ID dependent on the mode (sign or decrypt). */
42    #define item_ctrl_id(cmd) \
43  BOOL CALLBACK      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
44  passphrase_callback_proc( HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam )  
45  {      #define item_ctrl_id2(cmd) \
46      static passphrase_cb_s * c;      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
47      static int yes = 1;  
48      gpgme_key_t key;  const char* get_symkey_algo (int algo);
49      const char * s, * id;  
50      char info[768] = {0};  
51      void * ctx = NULL, * item;  /* Overwrites the passphrase and free the memory.
52      unsigned int pkalgo;     Pointer is also reset to NULL. */
53    static void
54      switch( msg )  {  burn_passphrase (char **pwd)
55      case WM_INITDIALOG:  {
56          c = (passphrase_cb_s *)lparam;      char *pass = *pwd;
57          if( !c )  
58              BUG( NULL );      wipememory (pass, strlen (pass));
59          SetWindowText( dlg, c->title );      delete []pass;
60          if( c->gpg_cmd == GPG_CMD_DECRYPT ) {      *pwd = NULL;
61              SetDlgItemText( dlg, IDC_DECRYPT_LISTINF,  }
62                  _("Encrypted with the following public key(s)") );  
63              CheckDlgButton( dlg, IDC_DECRYPT_HIDE, BST_CHECKED );  
64          }  /* Dialog procedure for the passphrase callback. */
65          else if( c->gpg_cmd == GPG_CMD_SIGN )  static BOOL CALLBACK
66              CheckDlgButton( dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED );  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
67          if( c->enc_to && c->gpg_cmd == GPG_CMD_DECRYPT ) {  {    
68              gpgme_recipients_enum_open( c->enc_to, &ctx );      static passphrase_cb_s *c;
69              while ( (s = gpgme_recipients_enum_read( c->enc_to, &ctx )) ) {      gpgme_decrypt_result_t res=NULL;
70                  pkalgo = *s; s++;      gpgme_sign_result_t res_sig=NULL;
71                  get_pubkey( s, &key );      gpgme_recipient_t recip=NULL, r;
72                  if( key ) {      winpt_key_s key;
73                      char * uid = NULL;      void *item;
74                      id = gpgme_key_get_string_attr( key, GPGME_ATTR_USERID, NULL, 0 );      int n;
75                      if( !id )  
76                          id = _("Invalid User ID");      switch (msg) {
77                      uid = utf8_to_wincp (id, strlen (id));                      case WM_ACTIVATE:
78                      _snprintf( info, sizeof info - 1, "%s (%s, 0x%s)", uid,          /* Some people complained that it is no longer possible to
79                                  gpgme_key_expand_attr( GPGME_ATTR_ALGO, pkalgo ), s+8 );             paste in the passphrase in this dialog. When this option
80                      free( uid );             is enabled, the ordinary passphrase control will be used. */
81                  }          if (!reg_prefs.no_safe_pwd_ctrl)
82                  else              safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd));
83                      _snprintf( info, sizeof info - 1, _("Unknown (key ID 0x%s)"),          break;
84                                 s? s + 8 : "DEADBEEF" );  
85                  listbox_add_string( GetDlgItem( dlg, IDC_DECRYPT_LIST ), info );      case WM_DESTROY:
86              }          if (!reg_prefs.no_safe_pwd_ctrl)
87              gpgme_recipients_enum_close( c->enc_to, &ctx );              safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd));
88          }          break;
89          SetDlgItemText( dlg, c->gpg_cmd == GPG_CMD_DECRYPT?  
90                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,      case WM_INITDIALOG:
91                          _("Please enter your passphrase") );          c = (passphrase_cb_s *)lparam;
92          if( c->gpg_cmd == GPG_CMD_DECRYPT ) {          if (!c)
93              SetFocus( GetDlgItem( dlg, IDC_DECRYPT_PWD ) );              BUG (0);
94              SetDlgItemText( dlg, IDC_DECRYPT_MSG, c->info );          SetDlgItemText (dlg, IDCANCEL, _("&Cancel"));
95          }          SetWindowText (dlg, c->title);
96          else {          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
97              SetFocus( GetDlgItem( dlg, IDC_DECRYPT_SIGN_PWD ) );              SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
98              SetDlgItemText( dlg, IDC_DECRYPT_SIGN_MSG, c->info );              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
99          }                              _("Encrypted with the following public key(s):"));
100          center_window( dlg );              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
101          SetForegroundWindow( dlg );          }
102          set_active_window( dlg );          else if (c->gpg_cmd == GPG_CMD_SIGN) {
103          return FALSE;              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing"));
104                CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
105          case WM_SYSCOMMAND:          }
106              if( LOWORD( wparam ) == SC_CLOSE ) {          /* Because it depends on the order the keys are stored in the
107                  SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" );             keyring, whether res->recipients is complete or not, we also
108                  c->cancel = 1;             support that the recipients were externally extracted and then
109                  EndDialog( dlg, TRUE );             we use this list. */
110              }          if (c->recipients) /* recipients were already extracted. */
111              return FALSE;              recip = c->recipients;
112            else if (c->gpg) {
113          case WM_COMMAND:              res = gpgme_op_decrypt_result (c->gpg);
114              switch( HIWORD( wparam ) ) {              if (res && res->recipients)
115              case BN_CLICKED:                  recip = res->recipients;
116                  if ( LOWORD( wparam ) == IDC_DECRYPT_HIDE          }
117                      || LOWORD( wparam ) == IDC_DECRYPT_SIGN_HIDE ) {          if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
118                      HWND hwnd;              StringBuffer inf;
119                      yes ^= 1;  
120                      hwnd = GetDlgItem( dlg, item_ctrl_id( c->gpg_cmd ) );              for (r = recip; r; r = r->next) {
121                      SendMessage( hwnd, EM_SETPASSWORDCHAR, yes? '*' : 0, 0 );                  memset (&key, 0, sizeof (key));
122                      SetFocus( hwnd );                  if (!winpt_get_pubkey (r->keyid, &key)) {
123                  }                      gpgme_user_id_t u = key.ctx->uids;
124              }                      inf = (u->name? u->name : _("Invalid User ID"));
125                        if (u->email != NULL && strlen (u->email) > 1)
126              switch( LOWORD( wparam ) ) {                          inf = inf + " <" + u->email + ">";
127              case IDOK:                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
128                  /* fixme: the item is even cached when the passphrase is not                      inf = inf + ", 0x" + (r->keyid+8) + ")";
129                            correct, which means that the user needs to delete all                  }
130                            cached entries to continue. */                  else {
131                  GetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), c->pwd, sizeof c->pwd -1 );                      inf = _("Unknown key ID");
132                  if( reg_prefs.cache_time > 0 && !c->is_card ) {                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
133                      if( agent_get_cache( c->keyid, &item ) )                                          inf = inf + ", 0x" + (r->keyid+8) + ")";
134                          agent_unlock_cache_entry( &item );                  }
135                      else                  ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST),
136                          agent_put_cache( c->keyid, c->pwd, reg_prefs.cache_time );                                          inf.getBuffer ());
137                  }                  winpt_release_pubkey (&key);
138                  EndDialog( dlg, TRUE );              }
139                  return TRUE;          }
140                            else if (c->gpg_cmd == GPG_CMD_DECRYPT)
141              case IDCANCEL:              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
142                  SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), ""  );          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
143                  c->cancel = 1;                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
144                  EndDialog( dlg, FALSE );                          c->bad_pwd? _("Invalid passphrase; Please enter your passphrase again") :
145                  return FALSE;                          _("Please enter your passphrase"));
146              }          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
147              break;              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
148      }              /* no recipients means symmetric encryption */
149                    if (res && !res->recipients) {
150      return FALSE;                  StringBuffer sinf;
151  } /* passphrase_callback_proc */  
152                    sinf = _("Symmetric encryption.");
153                    sinf = sinf + "\n" + get_symkey_algo (c->sym.sym_algo);
154  static const char *                  sinf = sinf + " " + _("encrypted data") + ".";
155  parse_gpg_keyid( const char * desc )                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, sinf.getBuffer ());
156  {              }
157      static char keyid[16+1];              else
158      char * p;                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
159                }
160      p = strrchr( desc, '\n' );          else {
161      if( !p )              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
162          return NULL;              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
163      /* the format of the desc buffer looks like this:          }
164         request_keyid[16] main_keyid[16] keytype[1] keylength[4]          center_window (dlg, NULL);
165         we use the main keyid to use only one cache entry. */          SetForegroundWindow (dlg);
166      strncpy( keyid, desc+(p-desc+1+17), 16 );          return FALSE;
167      return keyid;  
168  } /* parse_gpg_keyid */          case WM_COMMAND:
169                switch (HIWORD (wparam)) {
170                case BN_CLICKED:
171  static void                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE ||
172  parse_gpg_description( char * desc, int size )                       LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
173  {                      HWND hwnd;
174      char * buffer = NULL, ch, uid[128] = {0}, * uid2 = NULL;                      int hide;
175      char usedkey[16+1] = {0}, mainkey[16+1] = {0};                      hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
176      const char * buf;                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
177      int i, algo, try_again = 0;                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
178                        SetFocus (hwnd);
179      if( stristr( desc, "[User ID hint missing]" )                  }
180          || stristr( desc, "[passphrase info missing]" ) ) {              }
181          _snprintf( desc, size-1,  
182                     _("You need a passphrase to unlock the secret key for\n"              switch (LOWORD (wparam)) {
183                       "user: [UserID hint missing]\n"              case IDOK:
184                       "      [passphrase info missing]\n") );                  /* XXX: the item is even cached when the passphrase is not
185          return;                          correct, which means that the user needs to delete all
186      }                          cached entries to continue. */
187                    if (c->pwd)
188      buffer = new char[size+1];                      burn_passphrase (&c->pwd);
189      if( !buffer )                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
190          BUG( NULL );                  if (!n) {
191      strcpy( buffer, desc );                      c->pwd = new char[2];
192      buf = buffer;                      strcpy (c->pwd, "");
193      if( strstr( buf, "TRY_AGAIN" ) ) {                  }
194          buf += strlen( "TRY_AGAIN\n" );                  else {
195          try_again = 1;                      char *p = new char[n+2];
196      }                      SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1);
197      else if( strstr( buf, "ENTER_PASSPHRASE" ) )                      if (emulate_utf8_bug)
198          buf += strlen( "ENTER_PASSPHRASE\n" );                          c->pwd = native_to_utf8 (p);
199      else                      else
200          BUG( NULL );                          c->pwd = m_strdup (p);
201      buf += 17;                      sfree_if_alloc (p);
202      for( i = 0; i < sizeof uid-1; i++ ) {                  }
203          ch = *buf++;                  if (c->gpg != NULL) {
204          if( ch == '\n' ) {                      res = gpgme_op_decrypt_result (c->gpg);
205              uid[i] = '\0';                      if (!res)
206              break;                          res_sig = gpgme_op_sign_result (c->gpg);
207          }                      if (!c->is_card && reg_prefs.cache_time > 0 &&
208          uid[i] = ch;                          (res || res_sig)) {
209      }                          if (agent_get_cache (c->keyid, &item))
210      memcpy( usedkey, buf, 16 );                              agent_unlock_cache_entry (&item);
211      usedkey[16] = '\0';                          else
212      buf += 17;                              agent_put_cache (c->keyid, c->pwd,
213      memcpy( mainkey, buf, 16 );                                               reg_prefs.cache_time);
214      mainkey[16] = '\0';                      }
215      buf += 17;                  }
216      if( !buf )                  c->cancel = 0;
217          BUG( NULL );                  EndDialog (dlg, TRUE);
218      algo = atol( buf );                  return TRUE;
219      free_if_alloc( buffer );                  
220                case IDCANCEL:
221      uid2 = utf8_to_wincp (uid, strlen (uid));                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
222                    c->cancel = 1;
223      if( strcmp( usedkey, mainkey ) )                  EndDialog (dlg, FALSE);
224          _snprintf( desc, size-1,                  return TRUE;
225                     _("You need a passphrase to unlock the secret key for\n"              }
226                       "user: \"%s\"\n"              break;
227                       "%s key, ID %s (main key ID %s)\n"),      }
228                     uid2, gpgme_key_expand_attr( GPGME_ATTR_ALGO, algo ),      
229                     usedkey+8, mainkey+8 );      return FALSE;
230      else if( !strcmp( usedkey, mainkey ) )  }
231          _snprintf( desc, size-1,  
232                     _("You need a passphrase to unlock the secret key for\n"  
233                       "user: \"%s\"\n"  /* Extract the main keyid from @pass_info.
234                       "%s key, ID %s\n"),     Return value: long main keyid or NULL for an error. */
235                       uid2, gpgme_key_expand_attr( GPGME_ATTR_ALGO, algo ),  static const char*
236                       usedkey+8 );  parse_gpg_keyid (const char *pass_info)
237      free( uid2 );  {
238  } /* parse_gpg_describtion */      static char keyid[16+1];
239        
240        /* XXX: check for leading alpha-chars? */
241  static int inline      if (strlen (pass_info) < 16) {
242  is_hexstring( const char * p )          log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
243  {          return NULL;
244      size_t i;      }
245      for( i=0; i < strlen( p ); i++ ) {      /* the format of the desc buffer looks like this:
246          if( !isxdigit( p[i] ) )         request_keyid[16] main_keyid[16] keytype[1] keylength[4]
247              return -1;         we use the main keyid to use only one cache entry. */
248      }      strncpy (keyid, pass_info+17, 16);
249      return 0;      keyid[16] = 0;
250  }      return keyid;
251    }
252    
253  const char *  
254  passphrase_cb( void * opaque, const char * desc, void * r_hd )  /* Parse the information in @uid_hint and @pass_info to generate
255  {       a input message for the user in @desc. */
256      passphrase_cb_s * c = (passphrase_cb_s *)opaque;  static int
257      void * item;  parse_gpg_description (const char *uid_hint, const char *pass_info,
258      const char * pass, * keyid;                         char *desc, size_t desc_size)
259      int rc = 0;  {
260        gpgme_pubkey_algo_t algo;
261      if( !c )      char usedkey[16+1];
262          return NULL;      char mainkey[16+1];
263        char *p, *uid;
264      if( desc ) {      int n=0;
265          keyid = parse_gpg_keyid( desc );  
266          pass = agent_get_cache( keyid, &item );      algo = (gpgme_pubkey_algo_t)0;
267          if( pass ) {      /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
268              agent_unlock_cache_entry( &item );      if (strlen (uid_hint) < 17) {
269              c->pwd_init = 0;          *desc = 0;
270              return pass;          log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
271          }          return -1;
272      }      }
273    
274      if( c->pwd_init ) {      while ((p = strsep ((char**)&pass_info, " "))) {
275          c->keyid = keyid;          switch (n++) {
276          /* if the desc has a length of 32 and only hex digits, we assume a          case 0:
277             smart card has been used. */              strncpy (mainkey, p, 16);
278          /*log_box( "", 0, "%s %d %d", desc,strlen( desc), is_hexstring( desc ) );*/              mainkey[16] = 0;
279          if( desc && strlen( desc ) == 32 && !is_hexstring( desc ) ) {              break;
280              char buf[16];  
281              memset( buf, 0, sizeof buf );          case 1:
282              strncpy( buf, desc+20, 8 );              strncpy (usedkey, p, 16);
283              _snprintf( c->info, sizeof c->info-1,              usedkey[16] = 0;
284                      _("Please enter the PIN to unlock your secret card key\n"              break;
285                        "Card: %s"), buf );  
286              c->is_card = 1;          case 2:
287          }              algo = (gpgme_pubkey_algo_t)atol (p);
288          else if( desc ) {              break;
289              strcpy( c->info, desc );          }
290              parse_gpg_description( c->info, sizeof c->info - 1 );      }
291          }      uid_hint += 16; /* skip keyid */
292          if( c->gpg_cmd == GPG_CMD_DECRYPT ) {      uid_hint += 1;  /* space */
293              rc = DialogBoxParam( glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,  
294                                  (HWND)c->hwnd, passphrase_callback_proc,      struct winpt_key_s skey;
295                                  (LPARAM)c );      gpgme_subkey_t sk;
296          }      if (winpt_get_seckey (mainkey, &skey))
297          else if( c->gpg_cmd == GPG_CMD_SIGN ) {          BUG (0);
298              rc = DialogBoxParam( glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,      for (sk = skey.ctx->subkeys; sk; sk = sk->next) {
299                                  (HWND)c->hwnd, passphrase_callback_proc,          if (memcmp (sk->keyid, usedkey, 8) == 0)
300                                  (LPARAM)c );              break;
301          }      }
302          if( rc == -1 )      uid = utf8_to_native (uid_hint);
303              return NULL;      if (strcmp (usedkey, mainkey))
304          c->pwd_init = 0;          _snprintf (desc, desc_size-1,
305      }                     _("You need a passphrase to unlock the secret key for user:\n"
306                         "\"%s\"\n"
307      if( c->cancel )                       "%d-bit %s key, ID 0x%s, created %s (main key ID 0x%s)\n"),
308          return NULL;                     uid, sk->length, get_key_pubalgo (algo),
309                       usedkey+8, get_key_created (sk->timestamp), mainkey+8);
310      return c->pwd;      else if (!strcmp (usedkey, mainkey))
311  } /* passphrase_cb */          _snprintf (desc, desc_size-1,
312                       _("You need a passphrase to unlock the secret key for user:\n"
313                         "\"%s\"\n"
314  void                       "%d-bit %s key, created %s, ID 0x%s\n"),
315  set_gpg_passphrase_cb( gpgme_ctx_t c, passphrase_cb_s * ctx, int cmd,                       uid, sk->length, get_key_pubalgo (algo),
316                         HWND hwnd, const char * title )                       get_key_created (sk->timestamp), usedkey+8);
317  {      safe_free (uid);
318      ctx->gpg_cmd = cmd;      return 0;
319      ctx->is_card = 0;  }
320      ctx->cancel = 0;  
321      ctx->hwnd = hwnd;  
322      ctx->pwd_init = 1;  /* Extract the serial number from the card ID @id and return it. */
323      if( strlen( title ) > 256 )  const char*
324          BUG( NULL ); /* check bounds */  extract_serial_no (const char *id)
325      strcpy( ctx->title, title );  {
326      gpgme_set_passphrase_cb( c, passphrase_cb, ctx );      static char buf[8];
327  } /* set_gpg_passphrase_cb */      char *p;
328    
329        p = strchr (id, '/');
330        if (!p) {
331            log_debug ("extract_serial_no: error '%s'\r\n", id);
332            return "";
333        }
334        memset (buf, 0, sizeof (buf));
335        strncpy (buf, id+(p-id)-6, 6);
336        return buf;
337    }
338    
339    
340    /* Passphrase callback with the ability to support caching. */
341    gpgme_error_t
342    passphrase_cb (void *hook, const char *uid_hint,
343                   const char *passphrase_info,
344                   int prev_was_bad, int fd)
345    {
346        passphrase_cb_s *c = (passphrase_cb_s*)hook;
347        HANDLE hd = (HANDLE)fd;
348        void *item;
349        const char *keyid=NULL, *pass;
350        DWORD n;
351    
352        if (!c) {
353            log_debug ("passphrase_cb: error no valid callback\r\n");
354            return gpg_error (GPG_ERR_INV_ARG);
355        }
356    
357        /* If the last entered passphrase was wrong, we delete a
358           possible cached entry, we reset the passphrase buffer
359           and switch to the initial state. */
360        c->bad_pwd = prev_was_bad? 1 : 0;
361        if (prev_was_bad && !c->cancel) {
362            if (c->pwd)
363                burn_passphrase (&c->pwd);
364            agent_del_cache (c->keyid);
365            c->pwd_init = 1;
366        }
367    
368        if (passphrase_info) {
369            if (strlen (passphrase_info) < 16 &&
370                !strstr (passphrase_info, "OPENPGP")) {
371                /* assume symetric encryption. */
372                int pos=2;
373                c->sym.sym_algo = atoi (passphrase_info);
374                if (c->sym.sym_algo > 9)
375                    pos++;
376                c->sym.s2k_mode = atoi (passphrase_info+pos);
377                c->sym.s2k_hash = atoi (passphrase_info+pos+2);
378            }
379    
380            keyid = parse_gpg_keyid (passphrase_info);
381            pass = agent_get_cache (keyid+8, &item);        
382            if (pass) {
383                agent_unlock_cache_entry (&item);
384                c->pwd_init = 0;
385                if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
386                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
387                if (!WriteFile (hd, "\n", 1, &n, NULL))
388                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
389                return 0;
390            }
391        }
392    
393        if (c->pwd_init) {
394            if (keyid && strlen (keyid) == 16)
395                strcpy (c->keyid, keyid+8);
396    
397            /* if @passphrase_info contains 'OPENPGP' we assume a smart card
398                has been used. */
399            if (strstr (passphrase_info, "OPENPGP")) {
400                const char *s=passphrase_info;
401                while (s && *s && *s != 'D')
402                    s++;
403                _snprintf (c->info, DIM (c->info)-1,
404                           _("Please enter the PIN to unlock your secret card key\n"
405                             "Card: %s"), extract_serial_no (s));
406                c->is_card = 1;
407            }
408            else if (uid_hint)
409                parse_gpg_description (uid_hint, passphrase_info,
410                                       c->info, DIM (c->info) - 1);
411            int rc = 0;
412            if (c->gpg_cmd == GPG_CMD_DECRYPT) {
413                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
414                                     (HWND)c->hwnd, passphrase_callback_proc,
415                                     (LPARAM)c);
416            }
417            else if (c->gpg_cmd == GPG_CMD_SIGN) {
418                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
419                                     (HWND)c->hwnd, passphrase_callback_proc,
420                                     (LPARAM)c);
421            }
422            if (rc == -1) {
423                if (!WriteFile (hd, "\n", 1, &n, NULL))
424                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
425                log_debug ("passphrase_cb: could not create dialog box\n");
426                return 0;
427            }
428            c->pwd_init = 0;
429        }
430        if (c->cancel || !c->pwd) {
431            if (!WriteFile (hd, "\n", 1, &n, NULL))
432                log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
433            return 0;
434        }
435    
436        if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
437            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
438        if (!WriteFile (hd, "\n", 1, &n, NULL))
439            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
440        return 0;
441    }
442    
443    
444    /* Initialize the given passphrase callback @cb with the
445       used gpgme context @ctx, the command @cmd and a title
446       @title for the dialog. */
447    void
448    set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
449                           int cmd, HWND hwnd, const char *title)
450    {    
451        memset (cb, 0, sizeof *cb);
452        cb->gpg_cmd = cmd;
453        cb->bad_pwd = 0;
454        cb->is_card = 0;
455        cb->cancel = 0;
456        cb->hwnd = hwnd;
457        cb->pwd_init = 1;
458        cb->title = m_strdup (title);
459        gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
460        cb->gpg = ctx;
461    }
462    
463    void
464    set_gpg_auto_passphrase_cb (passphrase_cb_s *cb, const char *title)
465    {
466        memset (cb, 0, sizeof *cb);
467        cb->gpg_cmd = GPG_CMD_SIGN;
468        cb->bad_pwd = 0;
469        cb->is_card = 0;
470        cb->cancel = 0;
471        cb->hwnd = GetActiveWindow ();
472        cb->pwd_init = 1;
473        cb->title = m_strdup (title);
474    }
475    
476    
477    /* Release a passphrase callback @ctx. */
478    void
479    release_gpg_passphrase_cb (passphrase_cb_s *ctx)
480    {
481        if (!ctx)
482            return;
483        sfree_if_alloc (ctx->pwd);
484        free_if_alloc (ctx->title);
485        release_gpg_recipients (&ctx->recipients);
486    }
487    
488    
489    /* Release the gpg recipient list. */
490    void
491    release_gpg_recipients (gpgme_recipient_t *recipients)
492    {
493        gpgme_recipient_t r, n;
494    
495        r = *recipients;
496        while (r != NULL) {
497            n = r->next;
498            safe_free (r->keyid);
499            safe_free (r);
500            r = n;
501        }
502        *recipients = NULL;
503    }
504    
505    
506    /* _Simple_ check to measure passphrase (@pass) quality.
507       Return value: 0 on success. */
508    int
509    check_passwd_quality (const char *pass, int strict)
510    {
511        int i, nd=0, nc=0, n;
512    
513        /* A good passphrase should be at least 8 characters. */
514        n = strlen (pass);
515        if (n < 8)
516            return -1;
517    
518        for (i=0; i < n; i++) {
519            if (isdigit (pass[i]))
520                nd++;
521            if (isalpha (pass[i]))
522                nc++;
523        }
524    
525        /* Check that the passphrase contains letters and numbers. */
526        if (nd == n || nc == n)
527            return -1;
528    
529        return 0;
530    }

Legend:
Removed from v.2  
changed lines
  Added in v.333

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26