NCNetworkingE2EE.swift 25 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393
  1. //
  2. // NCNetworkingE2EE.swift
  3. // Nextcloud
  4. //
  5. // Created by Marino Faggiana on 05/05/2020.
  6. // Copyright © 2020 Marino Faggiana. All rights reserved.
  7. //
  8. // This program is free software: you can redistribute it and/or modify
  9. // it under the terms of the GNU General Public License as published by
  10. // the Free Software Foundation, either version 3 of the License, or
  11. // (at your option) any later version.
  12. //
  13. // This program is distributed in the hope that it will be useful,
  14. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  15. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  16. // GNU General Public License for more details.
  17. //
  18. // You should have received a copy of the GNU General Public License
  19. // along with this program. If not, see <http://www.gnu.org/licenses/>.
  20. //
  21. import Foundation
  22. import OpenSSL
  23. import NCCommunication
  24. @objc class NCNetworkingE2EE: NSObject {
  25. @objc public static let shared: NCNetworkingE2EE = {
  26. let instance = NCNetworkingE2EE()
  27. return instance
  28. }()
  29. //MARK: - WebDav Create Folder
  30. func createFolder(fileName: String, serverUrl: String, account: String, url: String, completion: @escaping (_ errorCode: Int, _ errorDescription: String)->()) {
  31. var fileNameFolder = CCUtility.removeForbiddenCharactersServer(fileName)!
  32. var fileNameFolderUrl = ""
  33. var fileNameIdentifier = ""
  34. var key: NSString?
  35. var initializationVector: NSString?
  36. fileNameFolder = NCUtility.sharedInstance.createFileName(fileNameFolder, serverUrl: serverUrl, account: account)
  37. if fileNameFolder.count == 0 {
  38. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": Int(0)], errorDescription: "", completion: completion)
  39. return
  40. }
  41. fileNameIdentifier = CCUtility.generateRandomIdentifier()
  42. fileNameFolderUrl = serverUrl + "/" + fileNameIdentifier
  43. self.lock(account: account, serverUrl: serverUrl) { (directory, e2eToken, errorCode, errorDescription) in
  44. if errorCode == 0 && e2eToken != nil && directory != nil {
  45. NCCommunication.shared.createFolder(fileNameFolderUrl, addCustomHeaders: ["e2e-token" : e2eToken!]) { (account, ocId, date, errorCode, errorDescription) in
  46. if errorCode == 0 {
  47. NCNetworking.shared.readFile(serverUrlFileName: fileNameFolderUrl, account: account) { (account, metadataFolder, errorCode, errorDescription) in
  48. if errorCode == 0 {
  49. // Add Metadata
  50. metadataFolder?.fileNameView = fileNameFolder
  51. metadataFolder?.e2eEncrypted = true
  52. NCManageDatabase.sharedInstance.addMetadata(metadataFolder!)
  53. // Add folder
  54. NCManageDatabase.sharedInstance.addDirectory(encrypted: true, favorite: metadataFolder!.favorite, ocId: metadataFolder!.ocId, fileId: metadataFolder!.fileId, etag: nil, permissions: metadataFolder!.permissions, serverUrl: fileNameFolderUrl, richWorkspace: metadataFolder!.richWorkspace, account: account)
  55. NCCommunication.shared.markE2EEFolder(fileId: metadataFolder!.fileId, delete: false) { (account, errorCode, errorDescription) in
  56. if errorCode == 0 {
  57. let object = tableE2eEncryption()
  58. NCEndToEndEncryption.sharedManager()?.encryptkey(&key, initializationVector: &initializationVector)
  59. object.account = account
  60. object.authenticationTag = nil
  61. object.fileName = fileNameFolder
  62. object.fileNameIdentifier = fileNameIdentifier
  63. object.fileNamePath = ""
  64. object.key = key! as String
  65. object.initializationVector = initializationVector! as String
  66. if let result = NCManageDatabase.sharedInstance.getE2eEncryption(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@", account, serverUrl)) {
  67. object.metadataKey = result.metadataKey
  68. object.metadataKeyIndex = result.metadataKeyIndex
  69. } else {
  70. object.metadataKey = (NCEndToEndEncryption.sharedManager()?.generateKey(16)?.base64EncodedString(options: []))! as String // AES_KEY_128_LENGTH
  71. object.metadataKeyIndex = 0
  72. }
  73. object.mimeType = "httpd/unix-directory"
  74. object.serverUrl = serverUrl
  75. if let e2eeApiVersion = NCManageDatabase.sharedInstance.getCapabilitiesServerString(account: account, elements: NCElementsJSON.shared.capabilitiesE2EEApiVersion) {
  76. object.version = Int(e2eeApiVersion) ?? 1
  77. } else {
  78. object.version = 1
  79. }
  80. let _ = NCManageDatabase.sharedInstance.addE2eEncryption(object)
  81. self.sendE2EMetadata(account: account, serverUrl: serverUrl, fileNameRename: nil, fileNameNewRename: nil, deleteE2eEncryption: nil, url: url) { (e2eToken, errorCode, errorDescription) in
  82. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  83. }
  84. } else {
  85. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  86. }
  87. }
  88. } else {
  89. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  90. }
  91. }
  92. } else {
  93. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  94. }
  95. }
  96. } else {
  97. self.NotificationPost(name: k_notificationCenter_createFolder, serverUrl: serverUrl, userInfo: ["fileName": fileName, "serverUrl": serverUrl, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  98. }
  99. }
  100. }
  101. //MARK: - WebDav Delete
  102. func deleteMetadata(_ metadata: tableMetadata, url: String, completion: @escaping (_ errorCode: Int, _ errorDescription: String)->()) {
  103. self.lock(account:metadata.account, serverUrl: metadata.serverUrl) { (directory, e2eToken, errorCode, errorDescription) in
  104. if errorCode == 0 && e2eToken != nil && directory != nil {
  105. let deleteE2eEncryption = NSPredicate(format: "account == %@ AND serverUrl == %@ AND fileNameIdentifier == %@", metadata.account, metadata.serverUrl, metadata.fileName)
  106. NCNetworking.shared.deleteMetadataPlain(metadata, addCustomHeaders: ["e2e-token" :e2eToken!]) { (errorCode, errorDescription) in
  107. let webDavRoot = NCManageDatabase.sharedInstance.getCapabilitiesServerString(account: metadata.account, elements: NCElementsJSON.shared.capabilitiesWebDavRoot) ?? "remote.php/webdav"
  108. let home = url + "/" + webDavRoot
  109. if metadata.serverUrl != home {
  110. self.sendE2EMetadata(account: metadata.account, serverUrl: metadata.serverUrl, fileNameRename: nil, fileNameNewRename: nil, deleteE2eEncryption: deleteE2eEncryption, url: url) { (e2eToken, errorCode, errorDescription) in
  111. self.NotificationPost(name: k_notificationCenter_deleteFile, serverUrl: metadata.serverUrl, userInfo: ["metadata": metadata, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  112. }
  113. } else {
  114. self.NotificationPost(name: k_notificationCenter_deleteFile, serverUrl: metadata.serverUrl, userInfo: ["metadata": metadata, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  115. }
  116. }
  117. } else {
  118. self.NotificationPost(name: k_notificationCenter_deleteFile, serverUrl: metadata.serverUrl, userInfo: ["metadata": metadata, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  119. }
  120. }
  121. }
  122. //MARK: - WebDav Rename
  123. func renameMetadata(_ metadata: tableMetadata, fileNameNew: String, url: String, completion: @escaping (_ errorCode: Int, _ errorDescription: String?)->()) {
  124. // verify if exists the new fileName
  125. if NCManageDatabase.sharedInstance.getE2eEncryption(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@ AND fileName == %@", metadata.account, metadata.serverUrl, fileNameNew)) != nil {
  126. self.NotificationPost(name: k_notificationCenter_renameFile, serverUrl: metadata.serverUrl, userInfo: ["metadata": metadata, "errorCode": Int(k_CCErrorInternalError)], errorDescription: "_file_already_exists_", completion: completion)
  127. } else {
  128. self.sendE2EMetadata(account: metadata.account, serverUrl: metadata.serverUrl, fileNameRename: metadata.fileName, fileNameNewRename: fileNameNew, deleteE2eEncryption: nil, url: url) { (e2eToken, errorCode, errorDescription) in
  129. if errorCode == 0 {
  130. NCManageDatabase.sharedInstance.setMetadataFileNameView(serverUrl: metadata.serverUrl, fileName: metadata.fileName, newFileNameView: fileNameNew, account: metadata.account)
  131. // Move file system
  132. let atPath = CCUtility.getDirectoryProviderStorageOcId(metadata.ocId) + "/" + metadata.fileNameView
  133. let toPath = CCUtility.getDirectoryProviderStorageOcId(metadata.ocId) + "/" + fileNameNew
  134. do {
  135. try FileManager.default.moveItem(atPath: atPath, toPath: toPath)
  136. } catch { }
  137. let atPathIcon = CCUtility.getDirectoryProviderStorageIconOcId(metadata.ocId, fileNameView: metadata.fileNameView)!
  138. let toPathIcon = CCUtility.getDirectoryProviderStorageIconOcId(metadata.ocId, fileNameView: fileNameNew)!
  139. do {
  140. try FileManager.default.moveItem(atPath: atPathIcon, toPath: toPathIcon)
  141. } catch { }
  142. }
  143. self.NotificationPost(name: k_notificationCenter_deleteFile, serverUrl: metadata.serverUrl, userInfo: ["metadata": metadata, "errorCode": errorCode], errorDescription: errorDescription, completion: completion)
  144. }
  145. }
  146. }
  147. //MARK: - Upload
  148. @objc func upload(metadata: tableMetadata) {
  149. var metadataForUpload: tableMetadata?
  150. let internalContenType = NCCommunicationCommon.shared.getInternalContenType(fileName: metadata.fileNameView, contentType: metadata.contentType, directory: false)
  151. var fileNameLocalPath = CCUtility.getDirectoryProviderStorageOcId(metadata.ocId, fileNameView: metadata.fileNameView)!
  152. let fileNameIdentifier = CCUtility.generateRandomIdentifier()!
  153. if CCUtility.fileProviderStorageExists(metadata.ocId, fileNameView: metadata.fileNameView) {
  154. metadata.fileName = fileNameIdentifier
  155. metadata.e2eEncrypted = true
  156. metadata.contentType = internalContenType.contentType
  157. metadata.iconName = internalContenType.iconName
  158. metadata.typeFile = internalContenType.typeFile
  159. metadata.date = NCUtilityFileSystem.shared.getFileModificationDate(filePath: fileNameLocalPath) as NSDate
  160. metadata.size = NCUtilityFileSystem.shared.getFileSize(filePath: fileNameLocalPath)
  161. if metadata.size > Double(k_max_filesize_E2EE) {
  162. NotificationCenter.default.post(name: Notification.Name.init(rawValue: k_notificationCenter_uploadedFile), object: nil, userInfo: ["metadata":metadata, "errorCode":k_CCErrorInternalError, "errorDescription":"E2E Error file too big"])
  163. return
  164. }
  165. metadataForUpload = NCManageDatabase.sharedInstance.addMetadata(metadata)
  166. self.upload(metadataForUpload: metadataForUpload!)
  167. } else {
  168. CCUtility.extractImageVideoFromAssetLocalIdentifier(forUpload: metadata, notification: true) { (extractMetadata, fileNamePath) in
  169. guard let extractMetadata = extractMetadata else {
  170. NCManageDatabase.sharedInstance.deleteMetadata(predicate: NSPredicate(format: "ocId == %@", metadata.ocId))
  171. return
  172. }
  173. fileNameLocalPath = CCUtility.getDirectoryProviderStorageOcId(extractMetadata.ocId, fileNameView: extractMetadata.fileNameView)
  174. CCUtility.moveFile(atPath: fileNamePath, toPath: fileNameLocalPath)
  175. metadata.fileName = fileNameIdentifier
  176. metadata.e2eEncrypted = true
  177. metadata.size = NCUtilityFileSystem.shared.getFileSize(filePath: fileNameLocalPath)
  178. if metadata.size > Double(k_max_filesize_E2EE) {
  179. NotificationCenter.default.post(name: Notification.Name.init(rawValue: k_notificationCenter_uploadedFile), object: nil, userInfo: ["metadata":metadata, "errorCode":k_CCErrorInternalError, "errorDescription":"E2E Error file too big"])
  180. return
  181. }
  182. metadataForUpload = NCManageDatabase.sharedInstance.addMetadata(metadata)
  183. self.upload(metadataForUpload: metadataForUpload!)
  184. }
  185. }
  186. }
  187. private func upload(metadataForUpload: tableMetadata) {
  188. let object = tableE2eEncryption()
  189. var key: NSString?, initializationVector: NSString?, authenticationTag: NSString?
  190. var e2eMetadataKey = ""
  191. var e2eMetadataKeyIndex = 0
  192. let fileNameLocalPath = CCUtility.getDirectoryProviderStorageOcId(metadataForUpload.ocId, fileNameView: metadataForUpload.fileNameView)!
  193. NCEndToEndEncryption.sharedManager()?.encryptFileName(metadataForUpload.fileNameView, fileNameIdentifier: metadataForUpload.fileName, directory: CCUtility.getDirectoryProviderStorageOcId(metadataForUpload.ocId), key: &key, initializationVector: &initializationVector, authenticationTag: &authenticationTag)
  194. if let object = NCManageDatabase.sharedInstance.getE2eEncryption(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@", metadataForUpload.account, metadataForUpload.serverUrl)) {
  195. e2eMetadataKey = object.metadataKey
  196. e2eMetadataKeyIndex = object.metadataKeyIndex
  197. } else {
  198. let key = NCEndToEndEncryption.sharedManager()?.generateKey(16) as NSData?
  199. e2eMetadataKey = key!.base64EncodedString()
  200. }
  201. object.account = metadataForUpload.account
  202. object.authenticationTag = authenticationTag as String?
  203. object.fileName = metadataForUpload.fileNameView
  204. object.fileNameIdentifier = metadataForUpload.fileName
  205. object.fileNamePath = fileNameLocalPath
  206. object.key = key! as String
  207. object.initializationVector = initializationVector! as String
  208. object.metadataKey = e2eMetadataKey
  209. object.metadataKeyIndex = e2eMetadataKeyIndex
  210. object.mimeType = metadataForUpload.contentType
  211. object.serverUrl = metadataForUpload.serverUrl
  212. let e2eeApiVersion = NCManageDatabase.sharedInstance.getCapabilitiesServerString(account: metadataForUpload.account, elements: NCElementsJSON.shared.capabilitiesE2EEApiVersion)!
  213. object.version = Int(e2eeApiVersion) ?? 1
  214. if NCManageDatabase.sharedInstance.addE2eEncryption(object) == false {
  215. NotificationCenter.default.post(name: Notification.Name.init(rawValue: k_notificationCenter_uploadedFile), object: nil, userInfo: ["metadata":metadataForUpload, "errorCode":k_CCErrorInternalError, "errorDescription":"_e2e_error_create_encrypted_"])
  216. return
  217. }
  218. let serverUrlFileName = metadataForUpload.serverUrl + "/" + metadataForUpload.fileName
  219. _ = NCCommunication.shared.upload(serverUrlFileName: serverUrlFileName, fileNameLocalPath: fileNameLocalPath, dateCreationFile: metadataForUpload.date as Date, dateModificationFile: metadataForUpload.date as Date, progressHandler: { (progress) in
  220. }) { (account, ocId, etag, date, size, errorCode, errorDescription) in
  221. }
  222. }
  223. //MARK: - E2EE
  224. @objc func lock(account:String, serverUrl: String, completion: @escaping (_ direcrtory: tableDirectory?, _ e2eToken: String?, _ errorCode: Int, _ errorDescription: String?)->()) {
  225. var e2eToken: String?
  226. guard let directory = NCManageDatabase.sharedInstance.getTableDirectory(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@", account, serverUrl)) else {
  227. completion(nil, nil, 0, "")
  228. return
  229. }
  230. if let tableLock = NCManageDatabase.sharedInstance.getE2ETokenLock(serverUrl: serverUrl) {
  231. e2eToken = tableLock.e2eToken
  232. }
  233. NCCommunication.shared.lockE2EEFolder(fileId: directory.fileId, e2eToken: e2eToken, delete: false) { (account, e2eToken, errorCode, errorDescription) in
  234. if errorCode == 0 && e2eToken != nil {
  235. NCManageDatabase.sharedInstance.setE2ETokenLock(serverUrl: serverUrl, fileId: directory.fileId, e2eToken: e2eToken!)
  236. }
  237. completion(directory, e2eToken, errorCode, errorDescription)
  238. }
  239. }
  240. @objc func unlock(account:String, serverUrl: String, completion: @escaping (_ direcrtory: tableDirectory?, _ e2eToken: String?, _ errorCode: Int, _ errorDescription: String?)->()) {
  241. var e2eToken: String?
  242. guard let directory = NCManageDatabase.sharedInstance.getTableDirectory(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@", account, serverUrl)) else {
  243. completion(nil, nil, 0, "")
  244. return
  245. }
  246. if let tableLock = NCManageDatabase.sharedInstance.getE2ETokenLock(serverUrl: serverUrl) {
  247. e2eToken = tableLock.e2eToken
  248. }
  249. NCCommunication.shared.lockE2EEFolder(fileId: directory.fileId, e2eToken: e2eToken, delete: true) { (account, e2eToken, errorCode, errorDescription) in
  250. if errorCode == 0 {
  251. NCManageDatabase.sharedInstance.deteleE2ETokenLock(serverUrl: serverUrl)
  252. }
  253. completion(directory, e2eToken, errorCode, errorDescription)
  254. }
  255. }
  256. @objc func sendE2EMetadata(account: String, serverUrl: String, fileNameRename: String?, fileNameNewRename: String?, deleteE2eEncryption : NSPredicate?, url: String, upload: Bool = false, completion: @escaping (_ e2eToken: String?, _ errorCode: Int, _ errorDescription: String?)->()) {
  257. self.lock(account: account, serverUrl: serverUrl) { (directory, e2eToken, errorCode, errorDescription) in
  258. if errorCode == 0 && e2eToken != nil && directory != nil {
  259. NCCommunication.shared.getE2EEMetadata(fileId: directory!.fileId, e2eToken: e2eToken) { (account, e2eMetadata, errorCode, errorDescription) in
  260. var method = "POST"
  261. var e2eMetadataNew: String?
  262. if errorCode == 0 && e2eMetadata != nil {
  263. if !NCEndToEndMetadata.sharedInstance.decoderMetadata(e2eMetadata!, privateKey: CCUtility.getEndToEndPrivateKey(account), serverUrl: serverUrl, account: account, url: url) {
  264. completion(e2eToken, Int(k_CCErrorInternalError), NSLocalizedString("_e2e_error_encode_metadata_", comment: ""))
  265. return
  266. }
  267. method = "PUT"
  268. }
  269. // Rename
  270. if (fileNameRename != nil && fileNameNewRename != nil) {
  271. NCManageDatabase.sharedInstance.renameFileE2eEncryption(serverUrl: serverUrl, fileNameIdentifier: fileNameRename!, newFileName: fileNameNewRename!, newFileNamePath: CCUtility.returnFileNamePath(fromFileName: fileNameNewRename!, serverUrl: serverUrl, activeUrl: url))
  272. }
  273. // Delete
  274. if deleteE2eEncryption != nil {
  275. NCManageDatabase.sharedInstance.deleteE2eEncryption(predicate: deleteE2eEncryption!)
  276. }
  277. // Rebuild metadata for send it
  278. let tableE2eEncryption = NCManageDatabase.sharedInstance.getE2eEncryptions(predicate: NSPredicate(format: "account == %@ AND serverUrl == %@", account, serverUrl))
  279. if tableE2eEncryption != nil {
  280. e2eMetadataNew = NCEndToEndMetadata.sharedInstance.encoderMetadata(tableE2eEncryption!, privateKey: CCUtility.getEndToEndPrivateKey(account), serverUrl: serverUrl)
  281. }
  282. NCCommunication.shared.putE2EEMetadata(fileId: directory!.fileId, e2eToken: e2eToken!, e2eMetadata: e2eMetadataNew, method: method) { (account, e2eMetadata, errorCode, errorDescription) in
  283. if upload {
  284. completion(e2eToken, errorCode, errorDescription)
  285. } else {
  286. self.unlock(account: account, serverUrl: serverUrl) { (_, e2eToken, _, _) in
  287. completion(e2eToken, errorCode, errorDescription)
  288. }
  289. }
  290. }
  291. }
  292. } else {
  293. completion(e2eToken, errorCode, errorDescription)
  294. }
  295. }
  296. }
  297. //MARK: - Notification Post
  298. private func NotificationPost(name: String, serverUrl: String, userInfo: [AnyHashable : Any], errorDescription: Any?, completion: @escaping (_ errorCode: Int, _ errorDescription: String)->()) {
  299. var userInfo = userInfo
  300. DispatchQueue.main.async {
  301. // unlock
  302. if let tableLock = NCManageDatabase.sharedInstance.getE2ETokenLock(serverUrl: serverUrl) {
  303. NCCommunication.shared.lockE2EEFolder(fileId: tableLock.fileId, e2eToken: tableLock.e2eToken, delete: true) { (_, _, _, _) in }
  304. }
  305. if errorDescription == nil { userInfo["errorDescription"] = "" }
  306. else { userInfo["errorDescription"] = NSLocalizedString(errorDescription as! String, comment: "") }
  307. NotificationCenter.default.post(name: Notification.Name.init(rawValue: name), object: nil, userInfo: userInfo)
  308. completion(userInfo["errorCode"] as! Int, userInfo["errorDescription"] as! String)
  309. }
  310. }
  311. }