NCPasscode.swift 9.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198
  1. //
  2. // NCPasscode.swift
  3. // Nextcloud
  4. //
  5. // Created by Marino Faggiana on 13/02/24.
  6. // Copyright © 2024 Marino Faggiana. All rights reserved.
  7. //
  8. // Author Marino Faggiana <marino.faggiana@nextcloud.com>
  9. //
  10. // This program is free software: you can redistribute it and/or modify
  11. // it under the terms of the GNU General Public License as published by
  12. // the Free Software Foundation, either version 3 of the License, or
  13. // (at your option) any later version.
  14. //
  15. // This program is distributed in the hope that it will be useful,
  16. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  17. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  18. // GNU General Public License for more details.
  19. //
  20. // You should have received a copy of the GNU General Public License
  21. // along with this program. If not, see <http://www.gnu.org/licenses/>.
  22. //
  23. import UIKit
  24. import LocalAuthentication
  25. import TOPasscodeViewController
  26. public protocol NCPasscodeDelegate: AnyObject {
  27. func evaluatePolicy(_ passcodeViewController: TOPasscodeViewController, isCorrectCode: Bool)
  28. func passcodeReset(_ passcodeViewController: TOPasscodeViewController)
  29. func requestedAccount(viewController: UIViewController?)
  30. }
  31. // optional func
  32. public extension NCPasscodeDelegate {
  33. func evaluatePolicy(_ passcodeViewController: TOPasscodeViewController, isCorrectCode: Bool) {}
  34. func passcodeReset() {}
  35. func requestedAccount(viewController: UIViewController?) {}
  36. }
  37. class NCPasscode: NSObject, TOPasscodeViewControllerDelegate {
  38. public static let shared: NCPasscode = {
  39. let instance = NCPasscode()
  40. return instance
  41. }()
  42. var isPasscodeReset: Bool {
  43. let passcodeCounterFailReset = NCKeychain().passcodeCounterFailReset
  44. return NCKeychain().resetAppCounterFail && passcodeCounterFailReset >= NCBrandOptions.shared.resetAppPasscodeAttempts
  45. }
  46. var isPasscodeCounterFail: Bool {
  47. let passcodeCounterFail = NCKeychain().passcodeCounterFail
  48. return passcodeCounterFail > 0 && passcodeCounterFail.isMultiple(of: 3)
  49. }
  50. var passcodeViewController: TOPasscodeViewController!
  51. var delegate: NCPasscodeDelegate?
  52. var viewController: UIViewController?
  53. func presentPasscode(viewController: UIViewController, delegate: NCPasscodeDelegate?, completion: @escaping () -> Void) {
  54. var error: NSError?
  55. self.delegate = delegate
  56. self.viewController = viewController
  57. passcodeViewController = TOPasscodeViewController(passcodeType: .sixDigits, allowCancel: false)
  58. passcodeViewController.delegate = self
  59. passcodeViewController.keypadButtonShowLettering = false
  60. if NCKeychain().touchFaceID, LAContext().canEvaluatePolicy(.deviceOwnerAuthenticationWithBiometrics, error: &error) {
  61. if error == nil {
  62. if LAContext().biometryType == .faceID {
  63. passcodeViewController.biometryType = .faceID
  64. } else if LAContext().biometryType == .touchID {
  65. passcodeViewController.biometryType = .touchID
  66. }
  67. passcodeViewController.allowBiometricValidation = true
  68. passcodeViewController.automaticallyPromptForBiometricValidation = false
  69. }
  70. }
  71. viewController.presentedViewController?.dismiss(animated: false)
  72. viewController.present(passcodeViewController, animated: true, completion: {
  73. self.openAlert(passcodeViewController: self.passcodeViewController)
  74. completion()
  75. })
  76. }
  77. func enableTouchFaceID() {
  78. guard NCKeychain().touchFaceID,
  79. NCKeychain().presentPasscode,
  80. !isPasscodeCounterFail,
  81. let passcodeViewController
  82. else { return }
  83. DispatchQueue.main.asyncAfter(deadline: .now() + 0.5) {
  84. LAContext().evaluatePolicy(.deviceOwnerAuthenticationWithBiometrics, localizedReason: NCBrandOptions.shared.brand) { success, evaluateError in
  85. if success {
  86. DispatchQueue.main.async {
  87. passcodeViewController.dismiss(animated: true) {
  88. NCKeychain().passcodeCounterFail = 0
  89. NCKeychain().passcodeCounterFailReset = 0
  90. self.delegate?.evaluatePolicy(passcodeViewController, isCorrectCode: true)
  91. if NCKeychain().accountRequest {
  92. self.delegate?.requestedAccount(viewController: self.viewController)
  93. }
  94. }
  95. }
  96. } else {
  97. if let error = evaluateError {
  98. switch error._code {
  99. case LAError.userFallback.rawValue, LAError.authenticationFailed.rawValue:
  100. if LAContext().biometryType == .faceID {
  101. NCKeychain().passcodeCounterFail = 2
  102. NCKeychain().passcodeCounterFailReset += 2
  103. } else {
  104. NCKeychain().passcodeCounterFail = 3
  105. NCKeychain().passcodeCounterFailReset += 3
  106. }
  107. self.openAlert(passcodeViewController: passcodeViewController)
  108. case LAError.biometryLockout.rawValue:
  109. LAContext().evaluatePolicy(LAPolicy.deviceOwnerAuthentication, localizedReason: NSLocalizedString("_deviceOwnerAuthentication_", comment: ""), reply: { success, _ in
  110. if success {
  111. DispatchQueue.main.async {
  112. NCKeychain().passcodeCounterFail = 0
  113. self.enableTouchFaceID()
  114. }
  115. }
  116. })
  117. case LAError.userCancel.rawValue:
  118. NCKeychain().passcodeCounterFail += 1
  119. NCKeychain().passcodeCounterFailReset += 1
  120. default:
  121. break
  122. }
  123. }
  124. }
  125. }
  126. }
  127. }
  128. func didInputCorrectPasscode(in passcodeViewController: TOPasscodeViewController) {
  129. DispatchQueue.main.async {
  130. passcodeViewController.dismiss(animated: true) {
  131. NCKeychain().passcodeCounterFail = 0
  132. NCKeychain().passcodeCounterFailReset = 0
  133. if NCKeychain().accountRequest {
  134. self.delegate?.requestedAccount(viewController: self.viewController)
  135. }
  136. }
  137. }
  138. }
  139. func passcodeViewController(_ passcodeViewController: TOPasscodeViewController, isCorrectCode code: String) -> Bool {
  140. if code == NCKeychain().passcode {
  141. self.delegate?.evaluatePolicy(passcodeViewController, isCorrectCode: true)
  142. return true
  143. } else {
  144. NCKeychain().passcodeCounterFail += 1
  145. NCKeychain().passcodeCounterFailReset += 1
  146. openAlert(passcodeViewController: passcodeViewController)
  147. self.delegate?.evaluatePolicy(passcodeViewController, isCorrectCode: false)
  148. return false
  149. }
  150. }
  151. func didPerformBiometricValidationRequest(in passcodeViewController: TOPasscodeViewController) {
  152. enableTouchFaceID()
  153. }
  154. func openAlert(passcodeViewController: TOPasscodeViewController) {
  155. DispatchQueue.main.asyncAfter(deadline: .now() + 1) {
  156. if self.isPasscodeReset {
  157. passcodeViewController.setContentHidden(true, animated: true)
  158. let alertController = UIAlertController(title: NSLocalizedString("_reset_wrong_passcode_", comment: ""), message: nil, preferredStyle: .alert)
  159. passcodeViewController.present(alertController, animated: true, completion: { })
  160. self.delegate?.passcodeReset()
  161. } else if self.isPasscodeCounterFail {
  162. passcodeViewController.setContentHidden(true, animated: true)
  163. let alertController = UIAlertController(title: NSLocalizedString("_passcode_counter_fail_", comment: ""), message: nil, preferredStyle: .alert)
  164. passcodeViewController.present(alertController, animated: true, completion: { })
  165. var seconds = NCBrandOptions.shared.passcodeSecondsFail
  166. _ = Timer.scheduledTimer(withTimeInterval: 1.0, repeats: true) { timer in
  167. alertController.message = "\(seconds) " + NSLocalizedString("_seconds_", comment: "")
  168. seconds -= 1
  169. if seconds < 0 {
  170. timer.invalidate()
  171. alertController.dismiss(animated: true)
  172. passcodeViewController.setContentHidden(false, animated: true)
  173. NCKeychain().passcodeCounterFail = 0
  174. self.enableTouchFaceID()
  175. }
  176. }
  177. }
  178. }
  179. }
  180. }