/[winpt]/trunk/Src/wptPassphraseCB.cpp
ViewVC logotype

Diff of /trunk/Src/wptPassphraseCB.cpp

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 25 by twoaday, Wed Oct 12 10:04:26 2005 UTC revision 340 by twoaday, Sun Nov 27 13:15:07 2011 UTC
# Line 1  Line 1 
1  /* wptPassphraseCB.cpp - GPGME Passphrase Callback  /* wptPassphraseCB.cpp - GPGME Passphrase Callback
2   *      Copyright (C) 2001, 2002, 2003, 2005 Timo Schulz   *      Copyright (C) 2001, 2002-2006, 2009 Timo Schulz
3   *      Copyright (C) 2005 g10 Code GmbH   *      Copyright (C) 2005 g10 Code GmbH
4   *   *
5   * This file is part of WinPT.   * This file is part of WinPT.
6   *   *
7   * WinPT is free software; you can redistribute it and/or   * WinPT is free software; you can redistribute it and/or
8   * modify it under the terms of the GNU General Public License   * modify it under the terms of the GNU General Public License
9   * as published by the Free Software Foundation; either version 2   * as published by the Free Software Foundation; either version 2
10   * of the License, or (at your option) any later version.   * of the License, or (at your option) any later version.
11   *     *  
12   * WinPT is distributed in the hope that it will be useful,   * WinPT is distributed in the hope that it will be useful,
13   * but WITHOUT ANY WARRANTY; without even the implied warranty of   * but WITHOUT ANY WARRANTY; without even the implied warranty of
14   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU   * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15   * General Public License for more details.   * General Public License for more details.
16   *   */
17   * You should have received a copy of the GNU General Public License  #ifdef HAVE_CONFIG_H
18   * along with WinPT; if not, write to the Free Software Foundation,  #include <config.h>
19   * Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA  #endif
20   */  
21    #include <windows.h>
22  #include <windows.h>  #include <ctype.h>
23  #include <ctype.h>  
24    #include "resource.h"
25  #include "../resource.h"  #include "wptNLS.h"
26  #include "wptNLS.h"  #include "wptW32API.h"
27  #include "wptW32API.h"  #include "wptVersion.h"
28  #include "wptVersion.h"  #include "wptGPG.h"
29  #include "wptGPG.h"  #include "wptCommonCtl.h"
30  #include "wptCommonCtl.h"  #include "wptContext.h"
31  #include "wptContext.h"  #include "wptDlgs.h"
32  #include "wptDlgs.h"  #include "wptErrors.h"
33  #include "wptUTF8.h"  #include "wptTypes.h"
34  #include "wptErrors.h"  #include "wptKeylist.h"
35  #include "wptTypes.h"  #include "wptAgent.h"
36  #include "wptKeyList.h"  #include "wptRegistry.h"
37  #include "wptAgent.h"  #include "wptUTF8.h"
38  #include "wptRegistry.h"  #include "StringBuffer.h"
39    
40  const char* get_symkey_algo (int algo);  
41    /* Return the control ID dependent on the mode (sign or decrypt). */
42  #define item_ctrl_id( cmd ) \  #define item_ctrl_id(cmd) \
43      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_PWD : IDC_DECRYPT_SIGN_PWD)
44    
45  #define item_ctrl_id2(cmd) \  #define item_ctrl_id2(cmd) \
46      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)      ((cmd) == GPG_CMD_DECRYPT? IDC_DECRYPT_HIDE : IDC_DECRYPT_SIGN_HIDE)
47    
48    const char* get_symkey_algo (int algo);
49  /* Dialog procedure for the passphrase callback. */  
50  static BOOL CALLBACK  
51  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)  /* Overwrites the passphrase and free the memory.
52  {         Pointer is also reset to NULL. */
53      static passphrase_cb_s * c;  static void
54      gpgme_decrypt_result_t res;  burn_passphrase (char **pwd)
55      gpgme_sign_result_t res_sig;  {
56      gpgme_key_t key;      char *pass = *pwd;
57      void *ctx = NULL, *item;  
58      const char *id;      wipememory (pass, strlen (pass));
59      char *info;      delete []pass;
60      int n;      *pwd = NULL;
61    }
62      switch (msg) {  
63      case WM_INITDIALOG:  
64          c = (passphrase_cb_s *)lparam;  /* Dialog procedure for the passphrase callback. */
65          if (!c)  static BOOL CALLBACK
66              BUG (0);  passphrase_callback_proc (HWND dlg, UINT msg, WPARAM wparam, LPARAM lparam)
67          SetWindowText (dlg, c->title);  {    
68          if (c->gpg_cmd == GPG_CMD_DECRYPT) {      static passphrase_cb_s *c;
69              SetDlgItemText( dlg, IDC_DECRYPT_LISTINF,      gpgme_decrypt_result_t res=NULL;
70                  _("Encrypted with the following public key(s)") );      gpgme_sign_result_t res_sig=NULL;
71              CheckDlgButton( dlg, IDC_DECRYPT_HIDE, BST_CHECKED );      gpgme_recipient_t recip=NULL, r;
72          }      winpt_key_s key;
73          else if (c->gpg_cmd == GPG_CMD_SIGN)      void *item;
74              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);      int n;
75          res = gpgme_op_decrypt_result (c->gpg);  
76          if (res != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {      switch (msg) {
77              gpgme_recipient_t r;      case WM_ACTIVATE:
78            /* Some people complained that it is no longer possible to
79              /* XXX: not all ENCRYPT_TO entries are listed here. */             paste in the passphrase in this dialog. When this option
80              for (r = res->recipients; r; r = r->next) {             is enabled, the ordinary passphrase control will be used. */
81                  get_pubkey (r->keyid, &key);          if (!reg_prefs.no_safe_pwd_ctrl)
82                  if (key) {              safe_edit_control_init (dlg, item_ctrl_id (c->gpg_cmd));
83                      char *uid;          break;
84                      id = key->uids->name;  
85                      if (!id)      case WM_DESTROY:
86                          id = _("Invalid User ID");          if (!reg_prefs.no_safe_pwd_ctrl)
87                      uid = utf8_to_wincp (id, strlen (id));              safe_edit_control_free (dlg, item_ctrl_id (c->gpg_cmd));
88                      info = new char [32+strlen (uid)+1 + 4 + strlen (r->keyid)+1          break;
89                                       + strlen (key->uids->email)+1];  
90                      if (!info)      case WM_INITDIALOG:
91                          BUG (NULL);          c = (passphrase_cb_s *)lparam;
92                      sprintf (info, "%s <%s> (%s, 0x%s)", uid, key->uids->email,          if (!c)
93                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);              BUG (0);
94                      free (uid);          SetDlgItemText (dlg, IDCANCEL, _("&Cancel"));
95                                SetWindowText (dlg, c->title);
96                  }          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
97                  else {              SetDlgItemText (dlg, IDC_DECRYPT_HIDE, _("&Hide Typing"));
98                      info = new char [32 + strlen (r->keyid)+1 + 4];              SetDlgItemText (dlg, IDC_DECRYPT_LISTINF,
99                      if (!info)                              _("Encrypted with the following public key(s):"));
100                          BUG (NULL);              CheckDlgButton (dlg, IDC_DECRYPT_HIDE, BST_CHECKED);
101                      sprintf (info, _("Unknown key ID (%s, 0x%s)"),          }
102                               get_key_pubalgo (r->pubkey_algo), r->keyid+8);          else if (c->gpg_cmd == GPG_CMD_SIGN) {
103                  }              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_HIDE, _("&Hide Typing"));
104                  listbox_add_string (GetDlgItem (dlg, IDC_DECRYPT_LIST), info);              CheckDlgButton (dlg, IDC_DECRYPT_SIGN_HIDE, BST_CHECKED);
105                  free_if_alloc (info);          }
106              }          /* Because it depends on the order the keys are stored in the
107          }             keyring, whether res->recipients is complete or not, we also
108          else if (c->gpg_cmd == GPG_CMD_DECRYPT)             support that the recipients were externally extracted and then
109              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);             we use this list. */
110          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?          if (c->recipients) /* recipients were already extracted. */
111                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,              recip = c->recipients;
112                          _("Please enter your passphrase"));          else if (c->gpg) {
113          if (c->gpg_cmd == GPG_CMD_DECRYPT) {              res = gpgme_op_decrypt_result (c->gpg);
114              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));              if (res && res->recipients)
115              if (res && !res->recipients) {                  recip = res->recipients;
116                  const char *s = _("Symmetric encryption.\n"          }
117                                    "%s encrypted data.");          if (recip != NULL && c->gpg_cmd == GPG_CMD_DECRYPT) {
118                  const char *alg = get_symkey_algo (c->sym.sym_algo);              StringBuffer inf;
119                  info = new char[strlen (s) + strlen (alg) + 2];  
120                  if (!info)              for (r = recip; r; r = r->next) {
121                      BUG (NULL);                  memset (&key, 0, sizeof (key));
122                  sprintf (info, s, alg);                  if (!winpt_get_pubkey (r->keyid, &key)) {
123                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, info);                      gpgme_user_id_t u = key.ctx->uids;
124                  free_if_alloc (info);                      inf = (u->name? u->name : _("Invalid User ID"));
125              }                      if (u->email != NULL && strlen (u->email) > 1)
126              else                          inf = inf + " <" + u->email + ">";
127                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
128          }                      inf = inf + ", 0x" + (r->keyid+8) + ")";
129          else {                  }
130              SetFocus( GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));                  else {
131              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);                      inf = _("Unknown key ID");
132          }                      inf = inf + " (" + get_key_pubalgo (r->pubkey_algo);
133          center_window (dlg, NULL);                      inf = inf + ", 0x" + (r->keyid+8) + ")";
134          SetForegroundWindow (dlg);                  }
135          set_active_window (dlg);                  ListBox_AddString_utf8 (GetDlgItem (dlg, IDC_DECRYPT_LIST),
136          return FALSE;                                          inf.getBuffer ());
137                    winpt_release_pubkey (&key);
138          case WM_SYSCOMMAND:              }
139              if( LOWORD( wparam ) == SC_CLOSE ) {          }
140                  SetDlgItemText( dlg, item_ctrl_id( c->gpg_cmd ), "" );          else if (c->gpg_cmd == GPG_CMD_DECRYPT)
141                  c->cancel = 1;              EnableWindow (GetDlgItem (dlg, IDC_DECRYPT_LIST), FALSE);
142                  EndDialog( dlg, TRUE );          SetDlgItemText (dlg, c->gpg_cmd == GPG_CMD_DECRYPT?
143              }                          IDC_DECRYPT_PWDINFO : IDC_DECRYPT_SIGN_PWDINFO,
144              break;                          c->bad_pwd? _("Invalid passphrase; Please enter your passphrase again") :
145                            _("Please enter your passphrase"));
146          case WM_COMMAND:          if (c->gpg_cmd == GPG_CMD_DECRYPT) {
147              switch( HIWORD( wparam ) ) {              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_PWD));
148              case BN_CLICKED:              /* no recipients means symmetric encryption */
149                  if ( LOWORD( wparam ) == IDC_DECRYPT_HIDE              if (res && !res->recipients) {
150                      || LOWORD( wparam ) == IDC_DECRYPT_SIGN_HIDE ) {                  StringBuffer sinf;
151                      HWND hwnd;  
152                      int hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));                  sinf = _("Symmetric encryption.");
153                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));                  sinf = sinf + "\n" + get_symkey_algo (c->sym.sym_algo);
154                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);                  sinf = sinf + " " + _("encrypted data") + ".";
155                      SetFocus (hwnd);                  SetDlgItemText (dlg, IDC_DECRYPT_MSG, sinf.getBuffer ());
156                  }              }
157              }              else
158                    SetDlgItemText (dlg, IDC_DECRYPT_MSG, c->info);
159              switch (LOWORD (wparam)) {          }
160              case IDOK:            else {
161                  /* fixme: the item is even cached when the passphrase is not              SetFocus (GetDlgItem (dlg, IDC_DECRYPT_SIGN_PWD));
162                            correct, which means that the user needs to delete all              SetDlgItemText (dlg, IDC_DECRYPT_SIGN_MSG, c->info);
163                            cached entries to continue. */          }
164                  if (c->pwd) {          center_window (dlg, NULL);
165                      delete []c->pwd;          SetForegroundWindow (dlg);
166                      c->pwd = NULL;          return FALSE;
167                  }  
168                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));          case WM_COMMAND:
169                  if (!n) {              switch (HIWORD (wparam)) {
170                      c->pwd = new char[2];              case BN_CLICKED:
171                      strcpy (c->pwd, "");                  if  (LOWORD (wparam) == IDC_DECRYPT_HIDE ||
172                  }                       LOWORD (wparam) == IDC_DECRYPT_SIGN_HIDE) {
173                  else {                      HWND hwnd;
174                      c->pwd = new char[n+2];                      int hide;
175                      if (!c->pwd)                      hide = IsDlgButtonChecked (dlg, item_ctrl_id2 (c->gpg_cmd));
176                          BUG (NULL);                      hwnd = GetDlgItem (dlg, item_ctrl_id (c->gpg_cmd));
177                      GetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), c->pwd, n+1);                      SendMessage (hwnd, EM_SETPASSWORDCHAR, hide? '*' : 0, 0);
178                  }                      SetFocus (hwnd);
179                  res = gpgme_op_decrypt_result (c->gpg);                  }
180                  if (!res)              }
181                      res_sig = gpgme_op_sign_result (c->gpg);  
182                  if (reg_prefs.cache_time > 0 && !c->is_card &&              switch (LOWORD (wparam)) {
183                      ((res && res->recipients) || (res_sig && res_sig->signatures))) {              case IDOK:
184                      if (agent_get_cache (c->keyid, &item))                  /* XXX: the item is even cached when the passphrase is not
185                          agent_unlock_cache_entry (&item);                          correct, which means that the user needs to delete all
186                      else                          cached entries to continue. */
187                          agent_put_cache (c->keyid, c->pwd, reg_prefs.cache_time);                  if (c->pwd)
188                  }                      burn_passphrase (&c->pwd);
189                  EndDialog (dlg, TRUE);                  n = item_get_text_length (dlg, item_ctrl_id (c->gpg_cmd));
190                  return TRUE;                  if (!n) {
191                                        c->pwd = new char[2];
192              case IDCANCEL:                      strcpy (c->pwd, "");
193                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "" );                  }
194                  c->cancel = 1;                  else {
195                  EndDialog (dlg, FALSE);                      char *p = new char[n+2];
196                  return FALSE;                      SafeGetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), p, n+1);
197              }                      c->pwd = m_strdup (p);
198              break;                      sfree_if_alloc (p);
199      }                  }
200                        if (c->gpg != NULL) {
201      return FALSE;                      res = gpgme_op_decrypt_result (c->gpg);
202  }                      if (!res)
203                            res_sig = gpgme_op_sign_result (c->gpg);
204                        if (!c->is_card && reg_prefs.cache_time > 0 &&
205  /* Extract the main keyid from @pass_info.                          (res || res_sig)) {
206     Return value: long main keyid or NULL for an error. */                          if (agent_get_cache (c->keyid, &item))
207  static const char*                              agent_unlock_cache_entry (&item);
208  parse_gpg_keyid (const char *pass_info)                          else
209  {                              agent_put_cache (c->keyid, c->pwd,
210      static char keyid[16+1];                                               reg_prefs.cache_time);
211                            }
212      if (strlen (pass_info) < 16)                  }
213          return NULL;                  c->cancel = 0;
214      /* the format of the desc buffer looks like this:                  EndDialog (dlg, TRUE);
215         request_keyid[16] main_keyid[16] keytype[1] keylength[4]                  return TRUE;
216         we use the main keyid to use only one cache entry. */                  
217      strncpy (keyid, pass_info+17, 16);              case IDCANCEL:
218      keyid[16] = 0;                  SetDlgItemText (dlg, item_ctrl_id (c->gpg_cmd), "");
219      return keyid;                  c->cancel = 1;
220  }                  EndDialog (dlg, FALSE);
221                    return TRUE;
222                }
223  /* Parse the information in @uid_hint and @pass_info to generate              break;
224     a input message for the user in @desc. */      }
225  static void      
226  parse_gpg_description (const char *uid_hint, const char *pass_info,      return FALSE;
227                         char *desc, int size)  }
228  {  
229      gpgme_pubkey_algo_t algo;  
230      char usedkey[16+1], mainkey[16+1];  /* Extract the main keyid from @pass_info.
231      char *uid, *p;     Return value: long main keyid or NULL for an error. */
232      int n=0;  static const char*
233    parse_gpg_keyid (const char *pass_info)
234      while (p = strsep ((char**)&pass_info, " ")) {  {
235          switch (n++) {      static char keyid[16+1];
236          case 0: strncpy (mainkey, p, 16); mainkey[16] = 0; break;      
237          case 1: strncpy (usedkey, p, 16); usedkey[16] = 0; break;      /* XXX: check for leading alpha-chars? */
238          case 2: algo = (gpgme_pubkey_algo_t)atol (p); break;      if (strlen (pass_info) < 16) {
239          }          log_debug ("parse_gpg_keyid: error '%s'\r\n", pass_info);
240      }          return NULL;
241      uid_hint += 16; /* skip keyid */      }
242      uid_hint += 1;  /* space */      /* the format of the desc buffer looks like this:
243           request_keyid[16] main_keyid[16] keytype[1] keylength[4]
244      uid = utf8_to_wincp (uid_hint, strlen (uid_hint));         we use the main keyid to use only one cache entry. */
245        strncpy (keyid, pass_info+17, 16);
246      if (strcmp (usedkey, mainkey))      keyid[16] = 0;
247          _snprintf (desc, size-1,      return keyid;
248                     _("You need a passphrase to unlock the secret key for\n"  }
249                       "user: \"%s\"\n"  
250                       "%s key, ID %s (main key ID %s)\n"),  
251                     uid, get_key_pubalgo (algo), usedkey+8, mainkey+8);  /* Parse the information in @uid_hint and @pass_info to generate
252      else if (!strcmp (usedkey, mainkey))     a input message for the user in @desc. */
253          _snprintf (desc, size-1,  static int
254                     _("You need a passphrase to unlock the secret key for\n"  parse_gpg_description (const char *uid_hint, const char *pass_info,
255                       "user: \"%s\"\n"                         char *desc, size_t desc_size)
256                       "%s key, ID %s\n"),  {
257                       uid, get_key_pubalgo (algo), usedkey+8);      gpgme_pubkey_algo_t algo;
258      free (uid);      char usedkey[16+1];
259  }      char mainkey[16+1];
260        char *p, *uid;
261        int n=0;
262  static int inline  
263  is_hexstring (const char * p)      algo = (gpgme_pubkey_algo_t)0;
264  {      /* Each uid_hint contains a long key-ID so it is at least 16 bytes. */
265      size_t i;      if (strlen (uid_hint) < 17) {
266            *desc = 0;
267      for (i=0; i < strlen (p); i++) {          log_debug ("parse_gpg_description: error '%s'\r\n", uid_hint);
268          if (!isxdigit (p[i]))          return -1;
269              return -1;      }
270      }  
271      return 0;      while ((p = strsep ((char**)&pass_info, " "))) {
272  }          switch (n++) {
273            case 0:
274                strncpy (mainkey, p, 16);
275  /* Passphrase callback with the ability to support caching. */              mainkey[16] = 0;
276  gpgme_error_t              break;
277  passphrase_cb (void *hook, const char *uid_hint,  
278                 const char *passphrase_info,          case 1:
279                 int prev_was_bad, int fd)              strncpy (usedkey, p, 16);
280  {              usedkey[16] = 0;
281      passphrase_cb_s *c = (passphrase_cb_s*)hook;              break;
282      HANDLE hd = (HANDLE)fd;  
283      void *item;          case 2:
284      const char *keyid, *pass;              algo = (gpgme_pubkey_algo_t)atol (p);
285      DWORD n;              break;
286      int rc;          }
287        }
288      /* XXX: pubkey_enc cancel does not quit gpg.exe */      uid_hint += 16; /* skip keyid */
289      /* XXX: handle prev_was_bad case. */      uid_hint += 1;  /* space */
290      if (!c)  
291          return gpg_error (GPG_ERR_INV_ARG);      struct winpt_key_s skey;
292        gpgme_subkey_t sk;
293      if (passphrase_info) {      if (winpt_get_seckey (mainkey, &skey))
294          if (strlen (passphrase_info) < 16) {/* assume symetric encryption. */          BUG (0);
295              int n=2;      for (sk = skey.ctx->subkeys; sk; sk = sk->next) {
296              c->sym.sym_algo = atoi (passphrase_info);          if (memcmp (sk->keyid, usedkey, 8) == 0)
297              if (c->sym.sym_algo > 9)              break;
298                  n++;      }
299              /* XXX: be more strict. */      uid = utf8_to_native (uid_hint);
300              c->sym.s2k_mode = atoi (passphrase_info+n);      if (strcmp (usedkey, mainkey))
301              c->sym.s2k_hash = atoi (passphrase_info+n+2);          _snprintf (desc, desc_size-1,
302          }                     _("You need a passphrase to unlock the secret key for user:\n"
303                         "\"%s\"\n"
304          keyid = parse_gpg_keyid (passphrase_info);                       "%d-bit %s key, ID 0x%s, created %s (main key ID 0x%s)\n"),
305          pass = agent_get_cache (keyid+8, &item);                     uid, sk->length, get_key_pubalgo (algo),
306          if (pass) {                     usedkey+8, get_key_created (sk->timestamp), mainkey+8);
307              agent_unlock_cache_entry (&item);      else if (!strcmp (usedkey, mainkey))
308              c->pwd_init = 0;          _snprintf (desc, desc_size-1,
309              if (!WriteFile (hd, pass, strlen (pass), &n, NULL))                     _("You need a passphrase to unlock the secret key for user:\n"
310                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);                       "\"%s\"\n"
311              if (!WriteFile (hd, "\n", 1, &n, NULL))                       "%d-bit %s key, created %s, ID 0x%s\n"),
312                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);                       uid, sk->length, get_key_pubalgo (algo),
313              return 0;                       get_key_created (sk->timestamp), usedkey+8);
314          }      safe_free (uid);
315      }      return 0;
316    }
317      if (c->pwd_init) {  
318          if (keyid && strlen (keyid) == 16)  
319              strcpy (c->keyid, keyid+8);  /* Extract the serial number from the card ID @id and return it. */
320    const char*
321          /* if the desc has a length of 32 and only hex digits, we assume a  extract_serial_no (const char *id)
322             smart card has been used. */  {
323          if (uid_hint && strlen (uid_hint) == 32 && !is_hexstring (uid_hint)) {      static char buf[8];
324              char buf[16];      char *p;
325              memset (buf, 0, sizeof buf);  
326              strncpy (buf, uid_hint+20, 8);      p = strchr (id, '/');
327              _snprintf (c->info, sizeof c->info-1,      if (!p) {
328                         _("Please enter the PIN to unlock your secret card key\n"          log_debug ("extract_serial_no: error '%s'\r\n", id);
329                           "Card: %s"), buf);          return "";
330              c->is_card = 1;      }
331          }      memset (buf, 0, sizeof (buf));
332          else if (uid_hint)      strncpy (buf, id+(p-id)-6, 6);
333              parse_gpg_description (uid_hint, passphrase_info,      return buf;
334                                     c->info, sizeof c->info - 1);  }
335          if (c->gpg_cmd == GPG_CMD_DECRYPT) {  
336              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,  
337                                   (HWND)c->hwnd, passphrase_callback_proc,  /* Passphrase callback with the ability to support caching. */
338                                   (LPARAM)c);  gpgme_error_t
339          }  passphrase_cb (void *hook, const char *uid_hint,
340          else if (c->gpg_cmd == GPG_CMD_SIGN) {                 const char *passphrase_info,
341              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,                 int prev_was_bad, int fd)
342                                   (HWND)c->hwnd, passphrase_callback_proc,  {
343                                   (LPARAM)c);      passphrase_cb_s *c = (passphrase_cb_s*)hook;
344          }      HANDLE hd = (HANDLE)fd;
345          if (rc == -1) {      void *item;
346              WriteFile (hd, "\n", 1, &n, NULL);      const char *keyid=NULL, *pass;
347              return gpg_error (GPG_ERR_EOF);      DWORD n;
348          }  
349          c->pwd_init = 0;      if (!c) {
350      }          log_debug ("passphrase_cb: error no valid callback\r\n");
351      if (c->cancel) {          return gpg_error (GPG_ERR_INV_ARG);
352          WriteFile (hd, "\n", 1, &n, NULL);      }
353          return gpg_error (GPG_ERR_EOF);  
354      }      /* If the last entered passphrase was wrong, we delete a
355           possible cached entry, we reset the passphrase buffer
356      WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL);         and switch to the initial state. */
357      WriteFile (hd, "\n", 1, &n, NULL);      c->bad_pwd = prev_was_bad? 1 : 0;
358      return 0;      if (prev_was_bad && !c->cancel) {
359  }          if (c->pwd)
360                burn_passphrase (&c->pwd);
361            agent_del_cache (c->keyid);
362  /* Initialize the given passphrase callback @cb with the          c->pwd_init = 1;
363     used gpgme context @ctx, the command @cmd and a title      }
364     @title for the dialog. */  
365  void      if (passphrase_info) {
366  set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,          if (strlen (passphrase_info) < 16 &&
367                         int cmd, HWND hwnd, const char *title)              !strstr (passphrase_info, "OPENPGP")) {
368  {              /* assume symetric encryption. */
369      memset (cb, 0, sizeof *cb);              int pos=2;
370      cb->gpg_cmd = cmd;              c->sym.sym_algo = atoi (passphrase_info);
371      cb->is_card = 0;              if (c->sym.sym_algo > 9)
372      cb->cancel = 0;                  pos++;
373      cb->hwnd = hwnd;              c->sym.s2k_mode = atoi (passphrase_info+pos);
374      cb->pwd_init = 1;              c->sym.s2k_hash = atoi (passphrase_info+pos+2);
375      free_if_alloc (cb->title);          }
376      cb->title = m_strdup (title);  
377      if (!cb->title)          keyid = parse_gpg_keyid (passphrase_info);
378          BUG (NULL);          pass = agent_get_cache (keyid+8, &item);        
379      gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);          if (pass) {
380      cb->gpg = ctx;              agent_unlock_cache_entry (&item);
381  }              c->pwd_init = 0;
382                if (!WriteFile (hd, pass, strlen (pass), &n, NULL))
383                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
384  /* Release a passphrase callback @ctx. */              if (!WriteFile (hd, "\n", 1, &n, NULL))
385  void                  log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
386  release_gpg_passphrase_cb (passphrase_cb_s *ctx)              return 0;
387  {          }
388      if (!ctx)      }
389          return;  
390      sfree_if_alloc (ctx->pwd);      if (c->pwd_init) {
391      free_if_alloc (ctx->title);          if (keyid && strlen (keyid) == 16)
392  }              strcpy (c->keyid, keyid+8);
393    
394  /* Simple check to measure passphrase (@pass) quality.          /* if @passphrase_info contains 'OPENPGP' we assume a smart card
395     Return value: 0 on success. */              has been used. */
396  int          if (strstr (passphrase_info, "OPENPGP")) {
397  check_passwd_quality (const char *pass, int strict)              const char *s=passphrase_info;
398  {              while (s && *s && *s != 'D')
399      int i, nd=0, nc=0, n;                  s++;
400                _snprintf (c->info, DIM (c->info)-1,
401      n = strlen (pass);                         _("Please enter the PIN to unlock your secret card key\n"
402      if (n < 8)                           "Card: %s"), extract_serial_no (s));
403          return -1;              c->is_card = 1;
404            }
405      for (i=0; i < n; i++) {          else if (uid_hint)
406          if (isdigit (pass[i])) nd++;              parse_gpg_description (uid_hint, passphrase_info,
407          if (isalpha (pass[i])) nc++;                                     c->info, DIM (c->info) - 1);
408      }          int rc = 0;
409            if (c->gpg_cmd == GPG_CMD_DECRYPT) {
410      if (nd == n || nc == n)              rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT,
411          return -1;                                   (HWND)c->hwnd, passphrase_callback_proc,
412                                     (LPARAM)c);
413      return 0;          }
414  }          else if (c->gpg_cmd == GPG_CMD_SIGN) {
415                rc = DialogBoxParam (glob_hinst, (LPCSTR)IDD_WINPT_DECRYPT_SIGN,
416                                     (HWND)c->hwnd, passphrase_callback_proc,
417                                     (LPARAM)c);
418            }
419            if (rc == -1) {
420                if (!WriteFile (hd, "\n", 1, &n, NULL))
421                    log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
422                log_debug ("passphrase_cb: could not create dialog box\n");
423                return 0;
424            }
425            c->pwd_init = 0;
426        }
427        if (c->cancel || !c->pwd) {
428            if (!WriteFile (hd, "\n", 1, &n, NULL))
429                log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
430            return 0;
431        }
432    
433        if (!WriteFile (hd, c->pwd, strlen (c->pwd), &n, NULL))
434            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
435        if (!WriteFile (hd, "\n", 1, &n, NULL))
436            log_debug ("passphrase_cb: WriteFile() failed ec=%d\n", w32_errno);
437        return 0;
438    }
439    
440    
441    /* Initialize the given passphrase callback @cb with the
442       used gpgme context @ctx, the command @cmd and a title
443       @title for the dialog. */
444    void
445    set_gpg_passphrase_cb (passphrase_cb_s *cb, gpgme_ctx_t ctx,
446                           int cmd, HWND hwnd, const char *title)
447    {    
448        memset (cb, 0, sizeof *cb);
449        cb->gpg_cmd = cmd;
450        cb->bad_pwd = 0;
451        cb->is_card = 0;
452        cb->cancel = 0;
453        cb->hwnd = hwnd;
454        cb->pwd_init = 1;
455        cb->title = m_strdup (title);
456        gpgme_set_passphrase_cb (ctx, passphrase_cb, cb);
457        cb->gpg = ctx;
458    }
459    
460    void
461    set_gpg_auto_passphrase_cb (passphrase_cb_s *cb, const char *title)
462    {
463        memset (cb, 0, sizeof *cb);
464        cb->gpg_cmd = GPG_CMD_SIGN;
465        cb->bad_pwd = 0;
466        cb->is_card = 0;
467        cb->cancel = 0;
468        cb->hwnd = GetActiveWindow ();
469        cb->pwd_init = 1;
470        cb->title = m_strdup (title);
471    }
472    
473    
474    /* Release a passphrase callback @ctx. */
475    void
476    release_gpg_passphrase_cb (passphrase_cb_s *ctx)
477    {
478        if (!ctx)
479            return;
480        sfree_if_alloc (ctx->pwd);
481        free_if_alloc (ctx->title);
482        release_gpg_recipients (&ctx->recipients);
483    }
484    
485    
486    /* Release the gpg recipient list. */
487    void
488    release_gpg_recipients (gpgme_recipient_t *recipients)
489    {
490        gpgme_recipient_t r, n;
491    
492        r = *recipients;
493        while (r != NULL) {
494            n = r->next;
495            safe_free (r->keyid);
496            safe_free (r);
497            r = n;
498        }
499        *recipients = NULL;
500    }
501    
502    
503    /* _Simple_ check to measure passphrase (@pass) quality.
504       Return value: 0 on success. */
505    int
506    check_passwd_quality (const char *pass, int strict)
507    {
508        int i, nd=0, nc=0, n;
509    
510        /* A good passphrase should be at least 8 characters. */
511        n = strlen (pass);
512        if (n < 8)
513            return -1;
514    
515        for (i=0; i < n; i++) {
516            if (isdigit (pass[i]))
517                nd++;
518            if (isalpha (pass[i]))
519                nc++;
520        }
521    
522        /* Check that the passphrase contains letters and numbers. */
523        if (nd == n || nc == n)
524            return -1;
525    
526        return 0;
527    }

Legend:
Removed from v.25  
changed lines
  Added in v.340

[email protected]
ViewVC Help
Powered by ViewVC 1.1.26