
* data.c (gpgme_data_read): For GPGME_DATA_TYPE_NONE, return EOF instead an error. The following changes make it possible to flush an inbound data pipe before invoking a command handler: * posix-io.c (_gpgme_io_select): Accept new argument NONBLOCK to _gpgme_io_select. Set timeout of 0 if this is set. * w32-io.c (_gpgme_io_select): Likewise. * io.h: Add new argument NONBLOCK to _gpgme_io_select prototype. * wait.c (do_select): Add new argument to _gpgme_io_select invocation. * rungpg.h (_gpgme_gpg_set_command_handler): Add new argument linked_data to prototype. * engine.h (_gpgme_engine_set_command_handler): Likewise. * engine.c (_gpgme_engine_set_command_handler): Likewise. * passphrase.c (_gpgme_passphrase_start): Pass NULL as linked_data argument to _gpgme_engine_set_command_handler. * rungpg.c (struct gpg_object_s): New members linked_data and linked_idx in CMD. (_gpgme_gpg_new): Initialize those new members. (_gpgme_gpg_set_command_handler): Accept new argument linked_data. (build_argv): Handle linked_data in the same hack as cb_data. (read_status): If linked_data is in use, flush the pipe before activating the command handler. * gpgme.h: Add prototypes for gpgme_op_edit_start and gpgme_op_edit. The next changes export the status codes to the user: * decrypt.c (_gpgme_decrypt_status_handler): Likewise, also prefix all STATUS_ with GPGME_. * delete.c (delete_status_handler): Likewise. * decrypt-verify.c (decrypt_verify_status_handler): Likewise. * encrypt.c (_gpgme_encrypt_status_handler): Likewise. (_gpgme_encrypt_sym_status_handler): Likewise. * encrypt-sign.c (encrypt_sign_status_handler): Likewise. * engine-gpgsm.c (parse_status): Likewise. (gpgsm_status_handler): Likewise. (gpgsm_set_recipients): Likewise. * export.c (export_status_handler): Likewise. * genkey.c (genkey_status_handler): Likewise. * import.c (append_xml_impinfo): Likewise. (import_status_handler): Likewise. * keylist.c (keylist_status_handler): Likewise. * passphrase.c (_gpgme_passphrase_status_handler): Likewise. (command_handler): Likewise. * progress.c (_gpgme_progress_status_handler): Likewise. * sign.c (_gpgme_sign_status_handler): Likewise. * trustlist.c (trustlist_status_handler): Likewise. * verify.c (_gpgme_verify_status_handler): Likewise. * gpgme.h (GpgmeEditCb): New type. * rungpg.h (GpgStatusCode): Rename and move to ... * gpgme.h (GpgmeStatusCode): ... this and here. * Makefile.am (status-table.h): Run mkstatus on gpgme.h, not rungpg.h. * mkstatus: Prefix STATUS with GPGME_. * rungpg.h (GpgStatusHandler, GpgCommandHandler): Change type accordingly. * ops.h (_gpgme_verify_status_handler, _gpgme_decrypt_status_handler, _gpgme_sign_status_handler, _gpgme_encrypt_status_handler, _gpgme_passphrase_status_handler, _gpgme_progress_status_handler): Likewise. * rungpg.c (struct gpg_object_s): Likewise for CMD.code. These changes add an edit operation to GPGME: * context.h (struct gpgme_context_s): New member RESULT.edit. * ops.h: Add prototype for _gpgme_release_edit_result and _gpgme_passphrase_command_handler. * passphrase.c (command_handler): Make non-static and rename to ... (_gpgme_passphrase_command_handler): ... this. (_gpgme_passphrase_start): Use new name for command handler. * types.h: Add EditResult type. * gpgme.c (_gpgme_release_result): Release EDIT result. * edit.c: New file. * Makefile.am (libgpgme_la_SOURCES): Add edit.c. (libgpgme_la_LDADD): Rename to libgpgme_la_LIBADD, and include assuan_libobjs. (assuan_libobjs): New variable, set this instead libgpgme_la_LIBADD. * engine.h (_gpgme_engine_op_edit): New prototype. * engine.c (_gpgme_engine_op_edit): New function. * rungpg.h (_gpgme_gpg_op_edit): New prototype. * rungpg.c (_gpgme_gpg_op_edit): New function.
262 lines
6.8 KiB
C
262 lines
6.8 KiB
C
/* sign.c - signing functions
|
|
* Copyright (C) 2000 Werner Koch (dd9jn)
|
|
* Copyright (C) 2001, 2002 g10 Code GmbH
|
|
*
|
|
* This file is part of GPGME.
|
|
*
|
|
* GPGME is free software; you can redistribute it and/or modify
|
|
* it under the terms of the GNU General Public License as published by
|
|
* the Free Software Foundation; either version 2 of the License, or
|
|
* (at your option) any later version.
|
|
*
|
|
* GPGME is distributed in the hope that it will be useful,
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
* GNU General Public License for more details.
|
|
*
|
|
* You should have received a copy of the GNU General Public License
|
|
* along with this program; if not, write to the Free Software
|
|
* Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA
|
|
*/
|
|
|
|
#include <config.h>
|
|
#include <stdio.h>
|
|
#include <stdlib.h>
|
|
#include <string.h>
|
|
#include <assert.h>
|
|
|
|
#include "util.h"
|
|
#include "context.h"
|
|
#include "ops.h"
|
|
|
|
#define SKIP_TOKEN_OR_RETURN(a) do { \
|
|
while (*(a) && *(a) != ' ') (a)++; \
|
|
while (*(a) == ' ') (a)++; \
|
|
if (!*(a)) \
|
|
return; /* oops */ \
|
|
} while (0)
|
|
|
|
struct sign_result_s
|
|
{
|
|
int okay;
|
|
GpgmeData xmlinfo;
|
|
};
|
|
|
|
void
|
|
_gpgme_release_sign_result (SignResult result)
|
|
{
|
|
if (!result)
|
|
return;
|
|
gpgme_data_release (result->xmlinfo);
|
|
xfree (result);
|
|
}
|
|
|
|
/* Parse the args and save the information
|
|
* <type> <pubkey algo> <hash algo> <class> <timestamp> <key fpr>
|
|
* in an XML structure. With args of NULL the xml structure is closed.
|
|
*/
|
|
static void
|
|
append_xml_siginfo (GpgmeData *rdh, char *args)
|
|
{
|
|
GpgmeData dh;
|
|
char helpbuf[100];
|
|
int i;
|
|
char *s;
|
|
unsigned long ul;
|
|
|
|
if (!*rdh)
|
|
{
|
|
if (gpgme_data_new (rdh))
|
|
{
|
|
return; /* fixme: We are ignoring out-of-core */
|
|
}
|
|
dh = *rdh;
|
|
_gpgme_data_append_string (dh, "<GnupgOperationInfo>\n");
|
|
}
|
|
else
|
|
{
|
|
dh = *rdh;
|
|
_gpgme_data_append_string (dh, " </signature>\n");
|
|
}
|
|
|
|
if (!args)
|
|
{
|
|
/* Just close the XML containter. */
|
|
_gpgme_data_append_string (dh, "</GnupgOperationInfo>\n");
|
|
return;
|
|
}
|
|
|
|
_gpgme_data_append_string (dh, " <signature>\n");
|
|
|
|
_gpgme_data_append_string (dh,
|
|
*args == 'D' ? " <detached/>\n" :
|
|
*args == 'C' ? " <cleartext/>\n" :
|
|
*args == 'S' ? " <standard/>\n" : "");
|
|
SKIP_TOKEN_OR_RETURN (args);
|
|
|
|
sprintf (helpbuf, " <algo>%d</algo>\n", atoi (args));
|
|
_gpgme_data_append_string (dh, helpbuf);
|
|
SKIP_TOKEN_OR_RETURN (args);
|
|
|
|
i = atoi (args);
|
|
sprintf (helpbuf, " <hashalgo>%d</hashalgo>\n", atoi (args));
|
|
_gpgme_data_append_string (dh, helpbuf);
|
|
switch (i)
|
|
{
|
|
case 1: s = "pgp-md5"; break;
|
|
case 2: s = "pgp-sha1"; break;
|
|
case 3: s = "pgp-ripemd160"; break;
|
|
case 5: s = "pgp-md2"; break;
|
|
case 6: s = "pgp-tiger192"; break;
|
|
case 7: s = "pgp-haval-5-160"; break;
|
|
case 8: s = "pgp-sha256"; break;
|
|
case 9: s = "pgp-sha384"; break;
|
|
case 10: s = "pgp-sha512"; break;
|
|
default: s = "pgp-unknown"; break;
|
|
}
|
|
sprintf (helpbuf, " <micalg>%s</micalg>\n", s);
|
|
_gpgme_data_append_string (dh,helpbuf);
|
|
SKIP_TOKEN_OR_RETURN (args);
|
|
|
|
sprintf (helpbuf, " <sigclass>%.2s</sigclass>\n", args);
|
|
_gpgme_data_append_string (dh, helpbuf);
|
|
SKIP_TOKEN_OR_RETURN (args);
|
|
|
|
ul = strtoul (args, NULL, 10);
|
|
sprintf (helpbuf, " <created>%lu</created>\n", ul);
|
|
_gpgme_data_append_string (dh, helpbuf);
|
|
SKIP_TOKEN_OR_RETURN (args);
|
|
|
|
/* Count the length of the finperprint. */
|
|
for (i = 0; args[i] && args[i] != ' '; i++)
|
|
;
|
|
_gpgme_data_append_string (dh, " <fpr>");
|
|
_gpgme_data_append (dh, args, i);
|
|
_gpgme_data_append_string (dh, "</fpr>\n");
|
|
}
|
|
|
|
void
|
|
_gpgme_sign_status_handler (GpgmeCtx ctx, GpgmeStatusCode code, char *args)
|
|
{
|
|
_gpgme_passphrase_status_handler (ctx, code, args);
|
|
|
|
if (ctx->error)
|
|
return;
|
|
test_and_allocate_result (ctx, sign);
|
|
|
|
switch (code)
|
|
{
|
|
case GPGME_STATUS_EOF:
|
|
if (ctx->result.sign->okay)
|
|
{
|
|
append_xml_siginfo (&ctx->result.sign->xmlinfo, NULL);
|
|
_gpgme_set_op_info (ctx, ctx->result.sign->xmlinfo);
|
|
ctx->result.sign->xmlinfo = NULL;
|
|
}
|
|
if (!ctx->error && !ctx->result.sign->okay)
|
|
ctx->error = mk_error (No_Data); /* Hmmm: choose a better error? */
|
|
break;
|
|
|
|
case GPGME_STATUS_SIG_CREATED:
|
|
/* FIXME: We have no error return for multiple signatures. */
|
|
append_xml_siginfo (&ctx->result.sign->xmlinfo, args);
|
|
ctx->result.sign->okay = 1;
|
|
break;
|
|
|
|
default:
|
|
break;
|
|
}
|
|
}
|
|
|
|
static GpgmeError
|
|
_gpgme_op_sign_start (GpgmeCtx ctx, int synchronous,
|
|
GpgmeData in, GpgmeData out,
|
|
GpgmeSigMode mode)
|
|
{
|
|
GpgmeError err = 0;
|
|
|
|
if (mode != GPGME_SIG_MODE_NORMAL
|
|
&& mode != GPGME_SIG_MODE_DETACH
|
|
&& mode != GPGME_SIG_MODE_CLEAR)
|
|
return mk_error (Invalid_Value);
|
|
|
|
err = _gpgme_op_reset (ctx, synchronous);
|
|
if (err)
|
|
goto leave;
|
|
|
|
/* Check the supplied data. */
|
|
if (gpgme_data_get_type (in) == GPGME_DATA_TYPE_NONE)
|
|
{
|
|
err = mk_error (No_Data);
|
|
goto leave;
|
|
}
|
|
_gpgme_data_set_mode (in, GPGME_DATA_MODE_OUT);
|
|
if (!out || gpgme_data_get_type (out) != GPGME_DATA_TYPE_NONE)
|
|
{
|
|
err = mk_error (Invalid_Value);
|
|
goto leave;
|
|
}
|
|
_gpgme_data_set_mode (out, GPGME_DATA_MODE_IN);
|
|
|
|
err = _gpgme_passphrase_start (ctx);
|
|
if (err)
|
|
goto leave;
|
|
|
|
_gpgme_engine_set_status_handler (ctx->engine, _gpgme_sign_status_handler,
|
|
ctx);
|
|
_gpgme_engine_set_verbosity (ctx->engine, ctx->verbosity);
|
|
|
|
_gpgme_engine_op_sign (ctx->engine, in, out, mode, ctx->use_armor,
|
|
ctx->use_textmode, ctx->include_certs,
|
|
ctx /* FIXME */);
|
|
|
|
/* And kick off the process. */
|
|
err = _gpgme_engine_start (ctx->engine, ctx);
|
|
|
|
leave:
|
|
if (err)
|
|
{
|
|
ctx->pending = 0;
|
|
_gpgme_engine_release (ctx->engine);
|
|
ctx->engine = NULL;
|
|
}
|
|
return err;
|
|
}
|
|
|
|
GpgmeError
|
|
gpgme_op_sign_start (GpgmeCtx ctx, GpgmeData in, GpgmeData out,
|
|
GpgmeSigMode mode)
|
|
{
|
|
return _gpgme_op_sign_start (ctx, 0, in, out, mode);
|
|
}
|
|
|
|
/**
|
|
* gpgme_op_sign:
|
|
* @ctx: The context
|
|
* @in: Data to be signed
|
|
* @out: Detached signature
|
|
* @mode: Signature creation mode
|
|
*
|
|
* Create a detached signature for @in and write it to @out.
|
|
* The data will be signed using either the default key or the ones
|
|
* defined through @ctx.
|
|
* The defined modes for signature create are:
|
|
* <literal>
|
|
* GPGME_SIG_MODE_NORMAL (or 0)
|
|
* GPGME_SIG_MODE_DETACH
|
|
* GPGME_SIG_MODE_CLEAR
|
|
* </literal>
|
|
* Note that the settings done by gpgme_set_armor() and gpgme_set_textmode()
|
|
* are ignore for @mode GPGME_SIG_MODE_CLEAR.
|
|
*
|
|
* Return value: 0 on success or an error code.
|
|
**/
|
|
GpgmeError
|
|
gpgme_op_sign (GpgmeCtx ctx, GpgmeData in, GpgmeData out, GpgmeSigMode mode)
|
|
{
|
|
GpgmeError err = _gpgme_op_sign_start (ctx, 1, in, out, mode);
|
|
if (!err)
|
|
err = _gpgme_wait_one (ctx);
|
|
return err;
|
|
}
|