2017-03-01 10:17:27 +00:00
|
|
|
/*
|
|
|
|
gpggencardkeyinteractor.cpp - Edit Interactor to generate a key on a card
|
Change copyright from Intevation to BSI
* lang/cpp/src/gpggencardkeyinteractor.cpp,
lang/cpp/src/gpggencardkeyinteractor.h,
lang/cpp/src/gpgmepp_export.h,
lang/cpp/src/swdbresult.cpp,
lang/cpp/src/swdbresult.h,
lang/cpp/src/tofuinfo.cpp,
lang/cpp/src/tofuinfo.h,
lang/qt/src/abstractimportjob.h,
lang/qt/src/adduseridjob.h,
lang/qt/src/changeexpiryjob.h,
lang/qt/src/changeownertrustjob.h,
lang/qt/src/changepasswdjob.h,
lang/qt/src/cryptoconfig.cpp,
lang/qt/src/cryptoconfig.h,
lang/qt/src/dataprovider.cpp,
lang/qt/src/dataprovider.h,
lang/qt/src/decryptjob.h,
lang/qt/src/decryptverifyjob.h,
lang/qt/src/deletejob.h,
lang/qt/src/dn.cpp,
lang/qt/src/dn.h,
lang/qt/src/downloadjob.h,
lang/qt/src/encryptjob.h,
lang/qt/src/exportjob.h,
lang/qt/src/hierarchicalkeylistjob.h,
lang/qt/src/importfromkeyserverjob.h,
lang/qt/src/importjob.h,
lang/qt/src/job.cpp,
lang/qt/src/job.h,
lang/qt/src/keyformailboxjob.h,
lang/qt/src/keygenerationjob.h,
lang/qt/src/keylistjob.h,
lang/qt/src/listallkeysjob.h,
lang/qt/src/multideletejob.h,
lang/qt/src/protocol.h,
lang/qt/src/protocol_p.h,
lang/qt/src/qgpgme_export.h,
lang/qt/src/qgpgmeadduseridjob.cpp,
lang/qt/src/qgpgmeadduseridjob.h,
lang/qt/src/qgpgmebackend.cpp,
lang/qt/src/qgpgmebackend.h,
lang/qt/src/qgpgmechangeexpiryjob.cpp,
lang/qt/src/qgpgmechangeexpiryjob.h,
lang/qt/src/qgpgmechangeownertrustjob.cpp,
lang/qt/src/qgpgmechangeownertrustjob.h,
lang/qt/src/qgpgmechangepasswdjob.cpp,
lang/qt/src/qgpgmechangepasswdjob.h,
lang/qt/src/qgpgmedecryptjob.cpp,
lang/qt/src/qgpgmedecryptjob.h,
lang/qt/src/qgpgmedecryptverifyjob.cpp,
lang/qt/src/qgpgmedecryptverifyjob.h,
lang/qt/src/qgpgmedeletejob.cpp,
lang/qt/src/qgpgmedeletejob.h,
lang/qt/src/qgpgmedownloadjob.cpp,
lang/qt/src/qgpgmedownloadjob.h,
lang/qt/src/qgpgmeencryptjob.cpp,
lang/qt/src/qgpgmeencryptjob.h,
lang/qt/src/qgpgmeexportjob.cpp,
lang/qt/src/qgpgmeexportjob.h,
lang/qt/src/qgpgmeimportfromkeyserverjob.cpp,
lang/qt/src/qgpgmeimportfromkeyserverjob.h,
lang/qt/src/qgpgmeimportjob.cpp,
lang/qt/src/qgpgmeimportjob.h,
lang/qt/src/qgpgmekeyformailboxjob.cpp,
lang/qt/src/qgpgmekeyformailboxjob.h,
lang/qt/src/qgpgmekeygenerationjob.cpp,
lang/qt/src/qgpgmekeygenerationjob.h,
lang/qt/src/qgpgmekeylistjob.cpp,
lang/qt/src/qgpgmekeylistjob.h,
lang/qt/src/qgpgmelistallkeysjob.cpp,
lang/qt/src/qgpgmelistallkeysjob.h,
lang/qt/src/qgpgmenewcryptoconfig.cpp,
lang/qt/src/qgpgmenewcryptoconfig.h,
lang/qt/src/qgpgmerefreshkeysjob.cpp,
lang/qt/src/qgpgmerefreshkeysjob.h,
lang/qt/src/qgpgmesecretkeyexportjob.cpp,
lang/qt/src/qgpgmesecretkeyexportjob.h,
lang/qt/src/qgpgmesignencryptjob.cpp,
lang/qt/src/qgpgmesignencryptjob.h,
lang/qt/src/qgpgmesignjob.cpp,
lang/qt/src/qgpgmesignjob.h,
lang/qt/src/qgpgmesignkeyjob.cpp,
lang/qt/src/qgpgmesignkeyjob.h,
lang/qt/src/qgpgmetofupolicyjob.cpp,
lang/qt/src/qgpgmetofupolicyjob.h,
lang/qt/src/qgpgmeverifydetachedjob.cpp,
lang/qt/src/qgpgmeverifydetachedjob.h,
lang/qt/src/qgpgmeverifyopaquejob.cpp,
lang/qt/src/qgpgmeverifyopaquejob.h,
lang/qt/src/qgpgmewkspublishjob.cpp,
lang/qt/src/qgpgmewkspublishjob.h,
lang/qt/src/refreshkeysjob.h,
lang/qt/src/signencryptjob.h,
lang/qt/src/signjob.h,
lang/qt/src/signkeyjob.h,
lang/qt/src/specialjob.h,
lang/qt/src/threadedjobmixin.cpp,
lang/qt/src/threadedjobmixin.h,
lang/qt/src/tofupolicyjob.h,
lang/qt/src/verifydetachedjob.h,
lang/qt/src/verifyopaquejob.h,
lang/qt/src/wkspublishjob.h,
lang/qt/tests/run-keyformailboxjob.cpp,
lang/qt/tests/t-config.cpp,
lang/qt/tests/t-encrypt.cpp,
lang/qt/tests/t-keylist.cpp,
lang/qt/tests/t-keylocate.cpp,
lang/qt/tests/t-ownertrust.cpp,
lang/qt/tests/t-support.cpp,
lang/qt/tests/t-support.h,
lang/qt/tests/t-tofuinfo.cpp,
lang/qt/tests/t-various.cpp,
lang/qt/tests/t-verify.cpp,
lang/qt/tests/t-wkspublish.cpp,
tests/gpg/t-encrypt-mixed.c,
tests/gpg/t-thread-keylist-verify.c,
tests/gpg/t-thread-keylist.c,
tests/run-decrypt.c: Change Intevation GmbH copyright to BSI.
--
This should make it more transparent where the BSI is the actual
copyright holder as the code was mostly developed as part of a
development contract.
2017-04-25 08:24:11 +00:00
|
|
|
Copyright (C) 2017 by Bundesamt für Sicherheit in der Informationstechnik
|
|
|
|
Software engineering by Intevation GmbH
|
2017-03-01 10:17:27 +00:00
|
|
|
|
|
|
|
This file is part of GPGME++.
|
|
|
|
|
|
|
|
GPGME++ is free software; you can redistribute it and/or
|
|
|
|
modify it under the terms of the GNU Library General Public
|
|
|
|
License as published by the Free Software Foundation; either
|
|
|
|
version 2 of the License, or (at your option) any later version.
|
|
|
|
|
|
|
|
GPGME++ is distributed in the hope that it will be useful,
|
|
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
GNU Library General Public License for more details.
|
|
|
|
|
|
|
|
You should have received a copy of the GNU Library General Public License
|
|
|
|
along with GPGME++; see the file COPYING.LIB. If not, write to the
|
|
|
|
Free Software Foundation, Inc., 51 Franklin Street, Fifth Floor,
|
|
|
|
Boston, MA 02110-1301, USA.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#ifdef HAVE_CONFIG_H
|
|
|
|
#include "config.h"
|
|
|
|
#endif
|
|
|
|
|
|
|
|
#include "gpggencardkeyinteractor.h"
|
|
|
|
|
|
|
|
#include "error.h"
|
|
|
|
|
|
|
|
#include <gpgme.h>
|
|
|
|
|
|
|
|
using namespace GpgME;
|
|
|
|
|
|
|
|
class GpgGenCardKeyInteractor::Private
|
|
|
|
{
|
|
|
|
public:
|
2018-08-08 07:22:46 +00:00
|
|
|
Private() : keysize("2048"), backup(false)
|
2017-03-01 10:17:27 +00:00
|
|
|
{
|
|
|
|
|
|
|
|
}
|
2018-08-08 07:22:46 +00:00
|
|
|
std::string name, email, backupFileName, expiry, serial, keysize;
|
2017-03-01 10:17:27 +00:00
|
|
|
bool backup;
|
|
|
|
};
|
|
|
|
|
|
|
|
GpgGenCardKeyInteractor::~GpgGenCardKeyInteractor() {}
|
|
|
|
|
|
|
|
GpgGenCardKeyInteractor::GpgGenCardKeyInteractor(const std::string &serial):
|
|
|
|
d(new Private)
|
|
|
|
{
|
|
|
|
d->serial = serial;
|
|
|
|
}
|
|
|
|
|
|
|
|
void GpgGenCardKeyInteractor::setNameUtf8(const std::string &name)
|
|
|
|
{
|
|
|
|
d->name = name;
|
|
|
|
}
|
|
|
|
|
|
|
|
void GpgGenCardKeyInteractor::setEmailUtf8(const std::string &email)
|
|
|
|
{
|
|
|
|
d->email = email;
|
|
|
|
}
|
|
|
|
|
|
|
|
void GpgGenCardKeyInteractor::setDoBackup(bool value)
|
|
|
|
{
|
|
|
|
d->backup = value;
|
|
|
|
}
|
|
|
|
|
|
|
|
void GpgGenCardKeyInteractor::setKeySize(int value)
|
|
|
|
{
|
2018-08-08 07:22:46 +00:00
|
|
|
d->keysize = std::to_string(value);
|
2017-03-01 10:17:27 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
void GpgGenCardKeyInteractor::setExpiry(const std::string &timeStr)
|
|
|
|
{
|
|
|
|
d->expiry = timeStr;
|
|
|
|
}
|
|
|
|
|
|
|
|
std::string GpgGenCardKeyInteractor::backupFileName() const
|
|
|
|
{
|
|
|
|
return d->backupFileName;
|
|
|
|
}
|
|
|
|
|
|
|
|
namespace GpgGenCardKeyInteractor_Private
|
|
|
|
{
|
|
|
|
enum {
|
|
|
|
START = EditInteractor::StartState,
|
|
|
|
DO_ADMIN,
|
|
|
|
EXPIRE,
|
|
|
|
|
|
|
|
GOT_SERIAL,
|
|
|
|
COMMAND,
|
|
|
|
NAME,
|
|
|
|
EMAIL,
|
|
|
|
COMMENT,
|
|
|
|
BACKUP,
|
|
|
|
REPLACE,
|
|
|
|
SIZE,
|
|
|
|
SIZE2,
|
|
|
|
SIZE3,
|
|
|
|
BACKUP_KEY_CREATED,
|
|
|
|
KEY_CREATED,
|
|
|
|
QUIT,
|
|
|
|
SAVE,
|
|
|
|
|
|
|
|
ERROR = EditInteractor::ErrorState
|
|
|
|
};
|
|
|
|
}
|
|
|
|
|
|
|
|
const char *GpgGenCardKeyInteractor::action(Error &err) const
|
|
|
|
{
|
|
|
|
|
|
|
|
using namespace GpgGenCardKeyInteractor_Private;
|
|
|
|
|
|
|
|
switch (state()) {
|
|
|
|
case DO_ADMIN:
|
|
|
|
return "admin";
|
|
|
|
case COMMAND:
|
|
|
|
return "generate";
|
|
|
|
case NAME:
|
|
|
|
return d->name.c_str();
|
|
|
|
case EMAIL:
|
|
|
|
return d->email.c_str();
|
|
|
|
case EXPIRE:
|
|
|
|
return d->expiry.c_str();
|
|
|
|
case BACKUP:
|
|
|
|
return d->backup ? "Y" : "N";
|
|
|
|
case REPLACE:
|
|
|
|
return "Y";
|
|
|
|
case SIZE:
|
|
|
|
case SIZE2:
|
|
|
|
case SIZE3:
|
2018-08-08 07:22:46 +00:00
|
|
|
return d->keysize.c_str();
|
2017-03-01 10:17:27 +00:00
|
|
|
case COMMENT:
|
|
|
|
return "";
|
|
|
|
case SAVE:
|
|
|
|
return "Y";
|
|
|
|
case QUIT:
|
|
|
|
return "quit";
|
|
|
|
case KEY_CREATED:
|
|
|
|
case START:
|
|
|
|
case GOT_SERIAL:
|
|
|
|
case BACKUP_KEY_CREATED:
|
|
|
|
case ERROR:
|
2018-12-03 11:20:33 +00:00
|
|
|
return nullptr;
|
2017-03-01 10:17:27 +00:00
|
|
|
default:
|
|
|
|
err = Error::fromCode(GPG_ERR_GENERAL);
|
2018-12-03 11:20:33 +00:00
|
|
|
return nullptr;
|
2017-03-01 10:17:27 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
unsigned int GpgGenCardKeyInteractor::nextState(unsigned int status, const char *args, Error &err) const
|
|
|
|
{
|
|
|
|
|
|
|
|
static const Error GENERAL_ERROR = Error::fromCode(GPG_ERR_GENERAL);
|
|
|
|
static const Error INV_NAME_ERROR = Error::fromCode(GPG_ERR_INV_NAME);
|
|
|
|
static const Error INV_EMAIL_ERROR = Error::fromCode(GPG_ERR_INV_USER_ID);
|
|
|
|
static const Error INV_COMMENT_ERROR = Error::fromCode(GPG_ERR_INV_USER_ID);
|
|
|
|
|
|
|
|
if (needsNoResponse(status)) {
|
|
|
|
return state();
|
|
|
|
}
|
|
|
|
|
|
|
|
using namespace GpgGenCardKeyInteractor_Private;
|
|
|
|
|
|
|
|
switch (state()) {
|
|
|
|
case START:
|
|
|
|
if (status == GPGME_STATUS_CARDCTRL &&
|
|
|
|
!d->serial.empty()) {
|
|
|
|
const std::string sArgs = args;
|
|
|
|
if (sArgs.find(d->serial) == std::string::npos) {
|
|
|
|
// Wrong smartcard
|
|
|
|
err = Error::fromCode(GPG_ERR_WRONG_CARD);
|
|
|
|
return ERROR;
|
|
|
|
} else {
|
|
|
|
printf("EditInteractor: Confirmed S/N: %s %s\n",
|
|
|
|
d->serial.c_str(), sArgs.c_str());
|
|
|
|
}
|
|
|
|
return GOT_SERIAL;
|
|
|
|
} else if (d->serial.empty()) {
|
|
|
|
return GOT_SERIAL;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case GOT_SERIAL:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.prompt") == 0) {
|
|
|
|
return DO_ADMIN;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case DO_ADMIN:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.prompt") == 0) {
|
|
|
|
return COMMAND;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case COMMAND:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.genkeys.backup_enc") == 0) {
|
|
|
|
return BACKUP;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case BACKUP:
|
|
|
|
if (status == GPGME_STATUS_GET_BOOL &&
|
|
|
|
strcmp(args, "cardedit.genkeys.replace_keys") == 0) {
|
|
|
|
return REPLACE;
|
|
|
|
}
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.genkeys.size") == 0) {
|
|
|
|
return SIZE;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case REPLACE:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.genkeys.size") == 0) {
|
|
|
|
printf("Moving to SIZE\n");
|
|
|
|
return SIZE;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case SIZE:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.genkeys.size") == 0) {
|
|
|
|
return SIZE2;
|
|
|
|
}
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.valid") == 0) {
|
|
|
|
return EXPIRE;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case SIZE2:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.genkeys.size") == 0) {
|
|
|
|
return SIZE3;
|
|
|
|
}
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.valid") == 0) {
|
|
|
|
return EXPIRE;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case SIZE3:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.valid") == 0) {
|
|
|
|
return EXPIRE;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case EXPIRE:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.name") == 0) {
|
|
|
|
return NAME;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case NAME:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.email") == 0) {
|
|
|
|
return EMAIL;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.name") == 0) {
|
|
|
|
err = INV_NAME_ERROR;
|
|
|
|
}
|
|
|
|
return ERROR;
|
|
|
|
case EMAIL:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.comment") == 0) {
|
|
|
|
return COMMENT;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.email") == 0) {
|
|
|
|
err = INV_EMAIL_ERROR;
|
|
|
|
}
|
|
|
|
return ERROR;
|
|
|
|
case COMMENT:
|
|
|
|
if (status == GPGME_STATUS_BACKUP_KEY_CREATED) {
|
|
|
|
std::string sArgs = args;
|
|
|
|
const auto pos = sArgs.rfind(" ");
|
|
|
|
if (pos != std::string::npos) {
|
|
|
|
d->backupFileName = sArgs.substr(pos + 1);
|
|
|
|
return BACKUP_KEY_CREATED;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if (status == GPGME_STATUS_KEY_CREATED) {
|
|
|
|
return KEY_CREATED;
|
|
|
|
}
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keyedit.prompt") == 0) {
|
|
|
|
return QUIT;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keygen.comment") == 0) {
|
|
|
|
err = INV_COMMENT_ERROR;
|
|
|
|
}
|
|
|
|
return ERROR;
|
|
|
|
case BACKUP_KEY_CREATED:
|
|
|
|
if (status == GPGME_STATUS_KEY_CREATED) {
|
|
|
|
return KEY_CREATED;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case KEY_CREATED:
|
|
|
|
return QUIT;
|
|
|
|
case QUIT:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "cardedit.prompt") == 0) {
|
|
|
|
return QUIT;
|
|
|
|
}
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
case ERROR:
|
|
|
|
if (status == GPGME_STATUS_GET_LINE &&
|
|
|
|
strcmp(args, "keyedit.prompt") == 0) {
|
|
|
|
return QUIT;
|
|
|
|
}
|
|
|
|
err = lastError();
|
|
|
|
return ERROR;
|
|
|
|
default:
|
|
|
|
err = GENERAL_ERROR;
|
|
|
|
return ERROR;
|
|
|
|
}
|
|
|
|
}
|