NCEntoToEndInterface.swift 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409
  1. //
  2. // NCEntoToEndInterface.swift
  3. // Nextcloud
  4. //
  5. // Created by Marino Faggiana on 03/04/17.
  6. // Copyright © 2017 TWS. All rights reserved.
  7. //
  8. // Author Marino Faggiana <m.faggiana@twsweb.it>
  9. //
  10. // This program is free software: you can redistribute it and/or modify
  11. // it under the terms of the GNU General Public License as published by
  12. // the Free Software Foundation, either version 3 of the License, or
  13. // (at your option) any later version.
  14. //
  15. // This program is distributed in the hope that it will be useful,
  16. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  17. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  18. // GNU General Public License for more details.
  19. //
  20. // You should have received a copy of the GNU General Public License
  21. // along with this program. If not, see <http://www.gnu.org/licenses/>.
  22. //
  23. import Foundation
  24. class NCEntoToEndInterface : NSObject, OCNetworkingDelegate {
  25. let appDelegate = UIApplication.shared.delegate as! AppDelegate
  26. var deletePublicKey = false;
  27. var deletePrivateKey = false;
  28. var signPublicKey = false;
  29. var storePrivateKey = false;
  30. override init() {
  31. }
  32. // --------------------------------------------------------------------------------------------
  33. // MARK: End To End Encryption - PublicKey
  34. // --------------------------------------------------------------------------------------------
  35. @objc func initEndToEndEncryption() {
  36. let metadataNet: CCMetadataNet = CCMetadataNet.init(account: appDelegate.activeAccount)
  37. metadataNet.action = actionGetEndToEndPublicKeys;
  38. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  39. metadataNet.action = actionGetEndToEndPrivateKeyCipher;
  40. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  41. metadataNet.action = actionGetEndToEndServerPublicKey;
  42. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  43. }
  44. func getEndToEndPublicKeysSuccess(_ metadataNet: CCMetadataNet!) {
  45. CCUtility.setEndToEndPublicKeySign(appDelegate.activeAccount, publicKey: metadataNet.key)
  46. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPublicKeys, note: "E2E PublicKeys present on Server and stored to keychain", type: k_activityTypeSuccess, verbose: false, activeUrl: "")
  47. }
  48. func getEndToEndPublicKeysFailure(_ metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  49. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPublicKeys, note: message as String!, type: k_activityTypeFailure, verbose: false, activeUrl: "")
  50. switch errorCode {
  51. case 400:
  52. appDelegate.messageNotification("E2E public keys", description: "bad request: unpredictable internal error", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  53. case 404:
  54. // public keys couldn't be found
  55. // remove keychain
  56. CCUtility.setEndToEndPublicKeySign(appDelegate.activeAccount, publicKey: nil)
  57. guard let publicKey = NCEndToEndEncryption.sharedManager().createEnd(toEndPublicKey: appDelegate.activeUserID, directoryUser: appDelegate.directoryUser) else {
  58. appDelegate.messageNotification("E2E public keys", description: "E2E Error to create PublicKey", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  59. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPublicKeys, note: "E2E Error to create PublicKey", type: k_activityTypeFailure, verbose: false, activeUrl: "")
  60. return
  61. }
  62. let metadataNet: CCMetadataNet = CCMetadataNet.init(account: appDelegate.activeAccount)
  63. metadataNet.action = actionSignEndToEndPublicKey;
  64. metadataNet.key = publicKey;
  65. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  66. case 409:
  67. appDelegate.messageNotification("E2E public keys", description: "forbidden: the user can't access the public keys", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  68. default:
  69. appDelegate.messageNotification("E2E public keys", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  70. }
  71. }
  72. func signEnd(toEndPublicKeySuccess metadataNet: CCMetadataNet!) {
  73. // Insert CSR To Cheychain end delete
  74. guard let publicKey = NCEndToEndEncryption.sharedManager().getCSRFromDisk(appDelegate.directoryUser, delete: true) else {
  75. appDelegate.messageNotification("E2E public key", description: "Error : publicKey not present", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: 0)
  76. return
  77. }
  78. // OK signed key locally keychain
  79. CCUtility.setEndToEndPublicKeySign(appDelegate.activeAccount, publicKey: publicKey)
  80. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionSignEndToEndPublicKey, note: "E2E PublicKey sign on Server and stored locally", type: k_activityTypeFailure, verbose: false, activeUrl: "")
  81. signPublicKey = true
  82. if (storePrivateKey) {
  83. signPublicKey = false
  84. storePrivateKey = false
  85. alertController("_success_", message: "_e2e_settings_activated_")
  86. }
  87. }
  88. func signEnd(toEndPublicKeyFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  89. signPublicKey = false
  90. appDelegate.messageNotification("E2E sign public keys", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  91. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionSignEndToEndPublicKey, note: message, type: k_activityTypeFailure, verbose: false, activeUrl: "")
  92. }
  93. func deleteEnd(toEndPublicKeySuccess metadataNet: CCMetadataNet!) {
  94. deletePublicKey = true
  95. if (deletePrivateKey) {
  96. deletePublicKey = false
  97. deletePrivateKey = false
  98. initEndToEndEncryption()
  99. }
  100. }
  101. func deleteEnd(toEndPublicKeyFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  102. deletePublicKey = false
  103. appDelegate.messageNotification("E2E delete public key", description: message, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: 0)
  104. }
  105. // --------------------------------------------------------------------------------------------
  106. // MARK: End To End Encryption - PrivateKey
  107. // --------------------------------------------------------------------------------------------
  108. func getEndToEndPrivateKeyCipherSuccess(_ metadataNet: CCMetadataNet!) {
  109. // request Passphrase
  110. var passphraseTextField: UITextField?
  111. let alertController = UIAlertController(title: "UIAlertController", message: "UIAlertController With TextField", preferredStyle: .alert)
  112. let ok = UIAlertAction(title: "OK", style: .default, handler: { (action) -> Void in
  113. let passphrase = passphraseTextField?.text
  114. guard let privateKey = NCEndToEndEncryption.sharedManager().decryptPrivateKeyCipher(metadataNet.key, passphrase: passphrase) else {
  115. self.appDelegate.messageNotification("E2E decrypt private key", description: "E2E Error to decrypt Private Key", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: 0)
  116. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPrivateKeyCipher, note: "E2E Error to decrypt Private Key", type: k_activityTypeFailure, verbose: false, activeUrl: "")
  117. return
  118. }
  119. // Save to keychain
  120. CCUtility.setEndToEndPrivateKey(self.appDelegate.activeAccount, privateKey: privateKey)
  121. // Save passphrase to keychain
  122. CCUtility.setEndToEndPassphrase(self.appDelegate.activeAccount, passphrase:passphrase)
  123. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPrivateKeyCipher, note: "E2E PrivateKey present on Server and stored to keychain", type: k_activityTypeSuccess, verbose: false, activeUrl: "")
  124. })
  125. let cancel = UIAlertAction(title: "Cancel", style: .cancel) { (action) -> Void in
  126. }
  127. alertController.addAction(ok)
  128. alertController.addAction(cancel)
  129. alertController.addTextField { (textField) -> Void in
  130. passphraseTextField = textField
  131. passphraseTextField?.placeholder = "Enter passphrase (12 words)"
  132. }
  133. appDelegate.activeMain.present(alertController, animated: true)
  134. }
  135. func getEndToEndPrivateKeyCipherFailure(_ metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  136. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPrivateKeyCipher, note: message as String!, type: k_activityTypeFailure, verbose: false, activeUrl: "")
  137. switch errorCode {
  138. case 400:
  139. appDelegate.messageNotification("E2E public keys", description: "bad request: unpredictable internal error", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  140. case 404:
  141. // private keys couldn't be found
  142. // remove keychain
  143. CCUtility.setEndToEndPrivateKey(appDelegate.activeAccount, privateKey: nil)
  144. CCUtility.setEndToEndPassphrase(appDelegate.activeAccount, passphrase: nil)
  145. // message
  146. let e2ePassphrase = NYMnemonic.generateString(128, language: "english")
  147. let message = "\n" + NSLocalizedString("_e2e_settings_view_passphrase_", comment: "") + "\n\n" + e2ePassphrase!
  148. let alertController = UIAlertController(title: NSLocalizedString("_e2e_settings_title_", comment: ""), message: NSLocalizedString(message, comment: ""), preferredStyle: .alert)
  149. let OKAction = UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default) { action in
  150. guard let privateKeyChiper = NCEndToEndEncryption.sharedManager().createEnd(toEndPrivateKey: self.appDelegate.activeUserID, directoryUser: self.appDelegate.directoryUser, passphrase: e2ePassphrase) else {
  151. self.appDelegate.messageNotification("E2E private keys", description: "E2E Error to create PublicKey chiper", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  152. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndPrivateKeyCipher, note: "E2E Error to create PublicKey chiper", type: k_activityTypeFailure, verbose: false, activeUrl: "")
  153. return
  154. }
  155. let metadataNet: CCMetadataNet = CCMetadataNet.init(account: self.appDelegate.activeAccount)
  156. metadataNet.action = actionStoreEndToEndPrivateKeyCipher
  157. metadataNet.key = privateKeyChiper
  158. metadataNet.password = e2ePassphrase
  159. self.appDelegate.addNetworkingOperationQueue(self.appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  160. }
  161. alertController.addAction(OKAction)
  162. appDelegate.activeMain.present(alertController, animated: true)
  163. case 409:
  164. appDelegate.messageNotification("E2E private keys", description: "forbidden: the user can't access the private keys", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  165. default:
  166. appDelegate.messageNotification("E2E private keys", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  167. }
  168. }
  169. func storeEnd(toEndPrivateKeyCipherSuccess metadataNet: CCMetadataNet!) {
  170. // Insert PrivateKey (end delete) and passphrase to Cheychain
  171. guard let privateKey = NCEndToEndEncryption.sharedManager().getPrivateKey(fromDisk: appDelegate.directoryUser, delete: true) else {
  172. appDelegate.messageNotification("E2E private key", description: "Error : privateKey not present", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: 0)
  173. return
  174. }
  175. CCUtility.setEndToEndPrivateKey(appDelegate.activeAccount, privateKey: privateKey)
  176. CCUtility.setEndToEndPassphrase(appDelegate.activeAccount, passphrase:metadataNet.password)
  177. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionStoreEndToEndPrivateKeyCipher, note: "E2E PrivateKey stored on Server and stored locally", type: k_activityTypeSuccess, verbose: false, activeUrl: "")
  178. storePrivateKey = true
  179. if (signPublicKey) {
  180. signPublicKey = false
  181. storePrivateKey = false
  182. alertController("_success_", message: "_e2e_settings_activated_")
  183. }
  184. }
  185. func storeEnd(toEndPrivateKeyCipherFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  186. storePrivateKey = false
  187. appDelegate.messageNotification("E2E sign private key", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  188. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionStoreEndToEndPrivateKeyCipher, note: message, type: k_activityTypeFailure, verbose: false, activeUrl: "")
  189. }
  190. func deleteEnd(toEndPrivateKeySuccess metadataNet: CCMetadataNet!) {
  191. deletePrivateKey = true
  192. if (deletePublicKey) {
  193. deletePublicKey = false
  194. deletePrivateKey = false
  195. initEndToEndEncryption()
  196. }
  197. }
  198. func deleteEnd(toEndPrivateKeyFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  199. deletePrivateKey = false
  200. appDelegate.messageNotification("E2E delete private key", description: message, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: 0)
  201. }
  202. // --------------------------------------------------------------------------------------------
  203. // MARK: End To End Encryption - Server PublicKey
  204. // --------------------------------------------------------------------------------------------
  205. func getEndToEndServerPublicKeySuccess(_ metadataNet: CCMetadataNet!) {
  206. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndServerPublicKey, note: "E2E Server PublicKey present on Server and stored to keychain", type: k_activityTypeSuccess, verbose: false, activeUrl: "")
  207. }
  208. func getEndToEndServerPublicKeyFailure(_ metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  209. NCManageDatabase.sharedInstance.addActivityClient("", fileID: "", action: k_activityDebugActionEndToEndEncryption, selector: actionGetEndToEndServerPublicKey, note: message as String!, type: k_activityTypeFailure, verbose: false, activeUrl: "")
  210. switch (errorCode) {
  211. case 400:
  212. appDelegate.messageNotification("E2E Server public key", description: "bad request: unpredictable internal error", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  213. case 404:
  214. appDelegate.messageNotification("E2E Server public key", description: "Server publickey doesn't exists", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  215. case 409:
  216. appDelegate.messageNotification("E2E Server public key", description: "forbidden: the user can't access the Server publickey", visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  217. default:
  218. appDelegate.messageNotification("E2E Server public key", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  219. }
  220. }
  221. // --------------------------------------------------------------------------------------------
  222. // MARK: Mark/Delete Encrypted Folder
  223. // --------------------------------------------------------------------------------------------
  224. func markEnd(toEndFolderEncryptedSuccess metadataNet: CCMetadataNet!) {
  225. print("E2E mark folder success")
  226. }
  227. func markEnd(toEndFolderEncryptedFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  228. // Unauthorized
  229. if (errorCode == kOCErrorServerUnauthorized) {
  230. appDelegate.openLoginView(appDelegate.activeMain, loginType: loginModifyPasswordUser)
  231. }
  232. if (errorCode != kOCErrorServerUnauthorized) {
  233. appDelegate.messageNotification("_error_", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  234. }
  235. }
  236. @objc func markEndToEndFolderEncrypted(_ metadata: tableMetadata) {
  237. let metadataNet: CCMetadataNet = CCMetadataNet.init(account: appDelegate.activeAccount)
  238. metadataNet.action = actionMarkEndToEndFolderEncrypted;
  239. metadataNet.fileID = metadata.fileID;
  240. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  241. }
  242. func deletemarkEnd(toEndFolderEncryptedSuccess metadataNet: CCMetadataNet!) {
  243. print("E2E delete mark folder success")
  244. }
  245. func deletemarkEnd(toEndFolderEncryptedFailure metadataNet: CCMetadataNet!, message: String!, errorCode: Int) {
  246. // Unauthorized
  247. if (errorCode == kOCErrorServerUnauthorized) {
  248. appDelegate.openLoginView(appDelegate.activeMain, loginType: loginModifyPasswordUser)
  249. }
  250. if (errorCode != kOCErrorServerUnauthorized) {
  251. appDelegate.messageNotification("_error_", description: message as String!, visible: true, delay: TimeInterval(k_dismissAfterSecond), type: TWMessageBarMessageType.error, errorCode: errorCode)
  252. }
  253. }
  254. @objc func deletemarkEndToEndFolderEncrypted(_ metadata: tableMetadata) {
  255. let metadataNet: CCMetadataNet = CCMetadataNet.init(account: appDelegate.activeAccount)
  256. metadataNet.action = actionDeletemarkEndToEndFolderEncrypted;
  257. metadataNet.fileID = metadata.fileID;
  258. appDelegate.addNetworkingOperationQueue(appDelegate.netQueue, delegate: self, metadataNet: metadataNet)
  259. }
  260. // --------------------------------------------------------------------------------------------
  261. // MARK: Form
  262. // --------------------------------------------------------------------------------------------
  263. func alertController(_ title: String, message: String) {
  264. let alertController = UIAlertController(title: NSLocalizedString(title, comment: ""), message: NSLocalizedString(message, comment: ""), preferredStyle: .alert)
  265. let OKAction = UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default) { action in
  266. }
  267. alertController.addAction(OKAction)
  268. appDelegate.activeMain.present(alertController, animated: true)
  269. }
  270. }