NCKeychain.swift 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544
  1. //
  2. // NCKeychain.swift
  3. // Nextcloud
  4. //
  5. // Created by Marino Faggiana on 23/10/23.
  6. // Copyright © 2023 Marino Faggiana. All rights reserved.
  7. //
  8. // Author Marino Faggiana <marino.faggiana@nextcloud.com>
  9. //
  10. // This program is free software: you can redistribute it and/or modify
  11. // it under the terms of the GNU General Public License as published by
  12. // the Free Software Foundation, either version 3 of the License, or
  13. // (at your option) any later version.
  14. //
  15. // This program is distributed in the hope that it will be useful,
  16. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  17. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  18. // GNU General Public License for more details.
  19. //
  20. // You should have received a copy of the GNU General Public License
  21. // along with this program. If not, see <http://www.gnu.org/licenses/>.
  22. //
  23. import Foundation
  24. import KeychainAccess
  25. @objc class NCKeychain: NSObject {
  26. let keychain = Keychain(service: "com.nextcloud.keychain")
  27. var typeFilterScanDocument: NCGlobal.TypeFilterScanDocument {
  28. get {
  29. if let rawValue = try? keychain.get("ScanDocumentTypeFilter"), let value = NCGlobal.TypeFilterScanDocument(rawValue: rawValue) {
  30. return value
  31. } else {
  32. return .original
  33. }
  34. }
  35. set {
  36. keychain["ScanDocumentTypeFilter"] = newValue.rawValue
  37. }
  38. }
  39. @objc var passcode: String? {
  40. get {
  41. migrate(key: "passcodeBlock")
  42. if let value = try? keychain.get("passcodeBlock") {
  43. return value
  44. }
  45. return nil
  46. }
  47. set {
  48. keychain["passcodeBlock"] = newValue
  49. }
  50. }
  51. @objc var resetAppCounterFail: Bool {
  52. get {
  53. if let value = try? keychain.get("resetAppCounterFail"), let result = Bool(value) {
  54. return result
  55. }
  56. return false
  57. }
  58. set {
  59. keychain["resetAppCounterFail"] = String(newValue)
  60. }
  61. }
  62. var passcodeCounterFail: Int {
  63. get {
  64. if let value = try? keychain.get("passcodeCounterFail"), let result = Int(value) {
  65. return result
  66. }
  67. return 0
  68. }
  69. set {
  70. if newValue == 0 { passcodeCounterFailReset = 0 }
  71. keychain["passcodeCounterFail"] = String(newValue)
  72. }
  73. }
  74. var passcodeCounterFailReset: Int {
  75. get {
  76. if let value = try? keychain.get("passcodeCounterFailReset"), let result = Int(value) {
  77. return result
  78. }
  79. return 0
  80. }
  81. set {
  82. keychain["passcodeCounterFailReset"] = String(newValue)
  83. }
  84. }
  85. @objc var requestPasscodeAtStart: Bool {
  86. get {
  87. let keychainOLD = Keychain(service: "Crypto Cloud")
  88. if let value = keychainOLD["notPasscodeAtStart"], !value.isEmpty {
  89. if value == "true" {
  90. keychain["requestPasscodeAtStart"] = "false"
  91. } else if value == "false" {
  92. keychain["requestPasscodeAtStart"] = "true"
  93. }
  94. keychainOLD["notPasscodeAtStart"] = nil
  95. }
  96. if let value = try? keychain.get("requestPasscodeAtStart"), let result = Bool(value) {
  97. return result
  98. }
  99. return true
  100. }
  101. set {
  102. keychain["requestPasscodeAtStart"] = String(newValue)
  103. }
  104. }
  105. @objc var touchFaceID: Bool {
  106. get {
  107. migrate(key: "enableTouchFaceID")
  108. if let value = try? keychain.get("enableTouchFaceID"), let result = Bool(value) {
  109. return result
  110. }
  111. return false
  112. }
  113. set {
  114. keychain["enableTouchFaceID"] = String(newValue)
  115. }
  116. }
  117. var intro: Bool {
  118. get {
  119. migrate(key: "intro")
  120. if let value = try? keychain.get("intro"), let result = Bool(value) {
  121. return result
  122. }
  123. return false
  124. }
  125. set {
  126. keychain["intro"] = String(newValue)
  127. }
  128. }
  129. @objc var incrementalNumber: String {
  130. migrate(key: "incrementalnumber")
  131. var incrementalString = String(format: "%04ld", 0)
  132. if let value = try? keychain.get("incrementalnumber"), var result = Int(value) {
  133. result += 1
  134. incrementalString = String(format: "%04ld", result)
  135. }
  136. keychain["incrementalnumber"] = incrementalString
  137. return incrementalString
  138. }
  139. @objc var showHiddenFiles: Bool {
  140. get {
  141. migrate(key: "showHiddenFiles")
  142. if let value = try? keychain.get("showHiddenFiles"), let result = Bool(value) {
  143. return result
  144. }
  145. return false
  146. }
  147. set {
  148. keychain["showHiddenFiles"] = String(newValue)
  149. }
  150. }
  151. @objc var formatCompatibility: Bool {
  152. get {
  153. migrate(key: "formatCompatibility")
  154. if let value = try? keychain.get("formatCompatibility"), let result = Bool(value) {
  155. return result
  156. }
  157. return true
  158. }
  159. set {
  160. keychain["formatCompatibility"] = String(newValue)
  161. }
  162. }
  163. @objc var disableFilesApp: Bool {
  164. get {
  165. migrate(key: "disablefilesapp")
  166. if let value = try? keychain.get("disablefilesapp"), let result = Bool(value) {
  167. return result
  168. }
  169. return false
  170. }
  171. set {
  172. keychain["disablefilesapp"] = String(newValue)
  173. }
  174. }
  175. @objc var livePhoto: Bool {
  176. get {
  177. migrate(key: "livePhoto")
  178. if let value = try? keychain.get("livePhoto"), let result = Bool(value) {
  179. return result
  180. }
  181. return true
  182. }
  183. set {
  184. keychain["livePhoto"] = String(newValue)
  185. }
  186. }
  187. @objc var disableCrashservice: Bool {
  188. get {
  189. migrate(key: "crashservice")
  190. if let value = try? keychain.get("crashservice"), let result = Bool(value) {
  191. return result
  192. }
  193. return false
  194. }
  195. set {
  196. keychain["crashservice"] = String(newValue)
  197. }
  198. }
  199. @objc var logLevel: Int {
  200. get {
  201. migrate(key: "logLevel")
  202. if let value = try? keychain.get("logLevel"), let result = Int(value) {
  203. return result
  204. }
  205. return 1
  206. }
  207. set {
  208. keychain["logLevel"] = String(newValue)
  209. }
  210. }
  211. @objc var accountRequest: Bool {
  212. get {
  213. migrate(key: "accountRequest")
  214. if let value = try? keychain.get("accountRequest"), let result = Bool(value) {
  215. return result
  216. }
  217. return false
  218. }
  219. set {
  220. keychain["accountRequest"] = String(newValue)
  221. }
  222. }
  223. @objc var removePhotoCameraRoll: Bool {
  224. get {
  225. migrate(key: "removePhotoCameraRoll")
  226. if let value = try? keychain.get("removePhotoCameraRoll"), let result = Bool(value) {
  227. return result
  228. }
  229. return false
  230. }
  231. set {
  232. keychain["removePhotoCameraRoll"] = String(newValue)
  233. }
  234. }
  235. @objc var privacyScreenEnabled: Bool {
  236. get {
  237. migrate(key: "privacyScreen")
  238. if let value = try? keychain.get("privacyScreen"), let result = Bool(value) {
  239. return result
  240. }
  241. return false
  242. }
  243. set {
  244. keychain["privacyScreen"] = String(newValue)
  245. }
  246. }
  247. @objc var cleanUpDay: Int {
  248. get {
  249. migrate(key: "cleanUpDay")
  250. if let value = try? keychain.get("cleanUpDay"), let result = Int(value) {
  251. return result
  252. }
  253. return NCBrandOptions.shared.cleanUpDay
  254. }
  255. set {
  256. keychain["cleanUpDay"] = String(newValue)
  257. }
  258. }
  259. var mediaWidthImage: Int {
  260. get {
  261. migrate(key: "mediaWidthImage")
  262. if let value = try? keychain.get("mediaWidthImage"), let result = Int(value) {
  263. return result
  264. }
  265. return 80
  266. }
  267. set {
  268. keychain["mediaWidthImage"] = String(newValue)
  269. }
  270. }
  271. var mediaSortDate: String {
  272. get {
  273. migrate(key: "mediaSortDate")
  274. if let value = try? keychain.get("mediaSortDate") {
  275. return value
  276. }
  277. return "date"
  278. }
  279. set {
  280. keychain["mediaSortDate"] = newValue
  281. }
  282. }
  283. var textRecognitionStatus: Bool {
  284. get {
  285. migrate(key: "textRecognitionStatus")
  286. if let value = try? keychain.get("textRecognitionStatus"), let result = Bool(value) {
  287. return result
  288. }
  289. return false
  290. }
  291. set {
  292. keychain["textRecognitionStatus"] = String(newValue)
  293. }
  294. }
  295. var deleteAllScanImages: Bool {
  296. get {
  297. migrate(key: "deleteAllScanImages")
  298. if let value = try? keychain.get("deleteAllScanImages"), let result = Bool(value) {
  299. return result
  300. }
  301. return false
  302. }
  303. set {
  304. keychain["deleteAllScanImages"] = String(newValue)
  305. }
  306. }
  307. var qualityScanDocument: Double {
  308. get {
  309. migrate(key: "qualityScanDocument")
  310. if let value = try? keychain.get("qualityScanDocument"), let result = Double(value) {
  311. return result
  312. }
  313. return 2
  314. }
  315. set {
  316. keychain["qualityScanDocument"] = String(newValue)
  317. }
  318. }
  319. // MARK: -
  320. private func migrate(key: String) {
  321. let keychainOLD = Keychain(service: "Crypto Cloud")
  322. if let value = keychainOLD[key], !value.isEmpty {
  323. keychain[key] = value
  324. keychainOLD[key] = nil
  325. }
  326. }
  327. @objc func removeAll() {
  328. try? keychain.removeAll()
  329. }
  330. // MARK: -
  331. @objc func getPassword(account: String) -> String {
  332. let key = "password" + account
  333. migrate(key: key)
  334. return (try? keychain.get(key)) ?? ""
  335. }
  336. @objc func setPassword(account: String, password: String?) {
  337. let key = "password" + account
  338. keychain[key] = password
  339. }
  340. @objc func getOriginalFileName(key: String) -> Bool {
  341. migrate(key: key)
  342. if let value = try? keychain.get(key), let result = Bool(value) {
  343. return result
  344. }
  345. return false
  346. }
  347. @objc func setOriginalFileName(key: String, value: Bool) {
  348. keychain[key] = String(value)
  349. }
  350. @objc func getFileNameMask(key: String) -> String {
  351. migrate(key: key)
  352. if let value = try? keychain.get(key) {
  353. return value
  354. } else {
  355. return ""
  356. }
  357. }
  358. @objc func setFileNameMask(key: String, mask: String?) {
  359. keychain[key] = mask
  360. }
  361. @objc func getFileNameType(key: String) -> Bool {
  362. migrate(key: key)
  363. if let value = try? keychain.get(key), let result = Bool(value) {
  364. return result
  365. } else {
  366. return false
  367. }
  368. }
  369. @objc func setFileNameType(key: String, prefix: Bool) {
  370. keychain[key] = String(prefix)
  371. }
  372. // MARK: - E2EE
  373. func getEndToEndCertificate(account: String) -> String? {
  374. let key = "EndToEndCertificate_" + account
  375. migrate(key: key)
  376. return try? keychain.get(key)
  377. }
  378. func setEndToEndCertificate(account: String, certificate: String?) {
  379. let key = "EndToEndCertificate_" + account
  380. keychain[key] = certificate
  381. }
  382. func getEndToEndPrivateKey(account: String) -> String? {
  383. let key = "EndToEndPrivateKey_" + account
  384. migrate(key: key)
  385. return try? keychain.get(key)
  386. }
  387. func setEndToEndPrivateKey(account: String, privateKey: String?) {
  388. let key = "EndToEndPrivateKey_" + account
  389. keychain[key] = privateKey
  390. }
  391. func getEndToEndPublicKey(account: String) -> String? {
  392. let key = "EndToEndPublicKeyServer_" + account
  393. migrate(key: key)
  394. return try? keychain.get(key)
  395. }
  396. func setEndToEndPublicKey(account: String, publicKey: String?) {
  397. let key = "EndToEndPublicKeyServer_" + account
  398. keychain[key] = publicKey
  399. }
  400. func getEndToEndPassphrase(account: String) -> String? {
  401. let key = "EndToEndPassphrase_" + account
  402. migrate(key: key)
  403. return try? keychain.get(key)
  404. }
  405. func setEndToEndPassphrase(account: String, passphrase: String?) {
  406. let key = "EndToEndPassphrase_" + account
  407. keychain[key] = passphrase
  408. }
  409. func isEndToEndEnabled(account: String) -> Bool {
  410. guard let certificate = getEndToEndCertificate(account: account), !certificate.isEmpty,
  411. let publicKey = getEndToEndPublicKey(account: account), !publicKey.isEmpty,
  412. let privateKey = getEndToEndPrivateKey(account: account), !privateKey.isEmpty,
  413. let passphrase = getEndToEndPassphrase(account: account), !passphrase.isEmpty,
  414. NCGlobal.shared.e2eeVersions.contains(NCGlobal.shared.capabilityE2EEApiVersion) else { return false }
  415. return true
  416. }
  417. func clearAllKeysEndToEnd(account: String) {
  418. setEndToEndCertificate(account: account, certificate: nil)
  419. setEndToEndPrivateKey(account: account, privateKey: nil)
  420. setEndToEndPublicKey(account: account, publicKey: nil)
  421. setEndToEndPassphrase(account: account, passphrase: nil)
  422. }
  423. // MARK: - PUSHNOTIFICATION
  424. @objc func getPushNotificationPublicKey(account: String) -> Data? {
  425. let key = "PNPublicKey" + account
  426. return try? keychain.getData(key)
  427. }
  428. @objc func setPushNotificationPublicKey(account: String, data: Data?) {
  429. let key = "PNPublicKey" + account
  430. keychain[data: key] = data
  431. }
  432. @objc func getPushNotificationPrivateKey(account: String) -> Data? {
  433. let key = "PNPrivateKey" + account
  434. return try? keychain.getData(key)
  435. }
  436. @objc func setPushNotificationPrivateKey(account: String, data: Data?) {
  437. let key = "PNPrivateKey" + account
  438. keychain[data: key] = data
  439. }
  440. @objc func getPushNotificationSubscribingPublicKey(account: String) -> String? {
  441. let key = "PNSubscribingPublicKey" + account
  442. return try? keychain.get(key)
  443. }
  444. @objc func setPushNotificationSubscribingPublicKey(account: String, publicKey: String?) {
  445. let key = "PNSubscribingPublicKey" + account
  446. keychain[key] = publicKey
  447. }
  448. @objc func getPushNotificationToken(account: String) -> String? {
  449. let key = "PNToken" + account
  450. return try? keychain.get(key)
  451. }
  452. @objc func setPushNotificationToken(account: String, token: String?) {
  453. let key = "PNToken" + account
  454. keychain[key] = token
  455. }
  456. @objc func getPushNotificationDeviceIdentifier(account: String) -> String? {
  457. let key = "PNDeviceIdentifier" + account
  458. return try? keychain.get(key)
  459. }
  460. @objc func setPushNotificationDeviceIdentifier(account: String, deviceIdentifier: String?) {
  461. let key = "PNDeviceIdentifier" + account
  462. keychain[key] = deviceIdentifier
  463. }
  464. @objc func getPushNotificationDeviceIdentifierSignature(account: String) -> String? {
  465. let key = "PNDeviceIdentifierSignature" + account
  466. return try? keychain.get(key)
  467. }
  468. @objc func setPushNotificationDeviceIdentifierSignature(account: String, deviceIdentifierSignature: String?) {
  469. let key = "PNDeviceIdentifierSignature" + account
  470. keychain[key] = deviceIdentifierSignature
  471. }
  472. @objc func clearAllKeysPushNotification(account: String) {
  473. setPushNotificationPublicKey(account: account, data: nil)
  474. setPushNotificationSubscribingPublicKey(account: account, publicKey: nil)
  475. setPushNotificationPrivateKey(account: account, data: nil)
  476. setPushNotificationToken(account: account, token: nil)
  477. setPushNotificationDeviceIdentifier(account: account, deviceIdentifier: nil)
  478. setPushNotificationDeviceIdentifierSignature(account: account, deviceIdentifierSignature: nil)
  479. }
  480. }