add.c 8.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223
  1. #include "add.h"
  2. #include <stdlib.h>
  3. #include <lib/toolbox/args.h>
  4. #include "../../../list/list.h"
  5. #include "../../../../types/token_info.h"
  6. #include "../../../config/config.h"
  7. #include "../../cli_helpers.h"
  8. #include "../../../../scenes/scene_director.h"
  9. #define TOTP_CLI_COMMAND_ADD_ARG_NAME "name"
  10. #define TOTP_CLI_COMMAND_ADD_ARG_ALGO "algo"
  11. #define TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX "-a"
  12. #define TOTP_CLI_COMMAND_ADD_ARG_DIGITS "digits"
  13. #define TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX "-d"
  14. #define TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX "-u"
  15. static bool token_info_set_digits_from_str(TokenInfo* token_info, const FuriString* str) {
  16. switch(furi_string_get_char(str, 0)) {
  17. case '6':
  18. token_info->digits = TOTP_6_DIGITS;
  19. return true;
  20. case '8':
  21. token_info->digits = TOTP_8_DIGITS;
  22. return true;
  23. }
  24. return false;
  25. }
  26. static bool token_info_set_algo_from_str(TokenInfo* token_info, const FuriString* str) {
  27. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA1_NAME) == 0) {
  28. token_info->algo = SHA1;
  29. return true;
  30. }
  31. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA256_NAME) == 0) {
  32. token_info->algo = SHA256;
  33. return true;
  34. }
  35. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA512_NAME) == 0) {
  36. token_info->algo = SHA512;
  37. return true;
  38. }
  39. return false;
  40. }
  41. void totp_cli_command_add_docopt_commands() {
  42. TOTP_CLI_PRINTF(" " TOTP_CLI_COMMAND_ADD ", " TOTP_CLI_COMMAND_ADD_ALT
  43. ", " TOTP_CLI_COMMAND_ADD_ALT2 " Add new token\r\n");
  44. }
  45. void totp_cli_command_add_docopt_usage() {
  46. TOTP_CLI_PRINTF(
  47. " " TOTP_CLI_COMMAND_NAME
  48. " " DOCOPT_REQUIRED(TOTP_CLI_COMMAND_ADD " | " TOTP_CLI_COMMAND_ADD_ALT " | " TOTP_CLI_COMMAND_ADD_ALT2) " " DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_NAME) " " DOCOPT_OPTIONAL(
  49. DOCOPT_OPTION(
  50. TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX,
  51. DOCOPT_ARGUMENT(
  52. TOTP_CLI_COMMAND_ADD_ARG_ALGO))) " " DOCOPT_OPTIONAL(DOCOPT_OPTION(TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX, DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_DIGITS))) " " DOCOPT_OPTIONAL(DOCOPT_SWITCH(TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX)) "\r\n");
  53. }
  54. void totp_cli_command_add_docopt_arguments() {
  55. TOTP_CLI_PRINTF(" " TOTP_CLI_COMMAND_ADD_ARG_NAME " Token name\r\n");
  56. }
  57. void totp_cli_command_add_docopt_options() {
  58. TOTP_CLI_PRINTF(" " DOCOPT_OPTION(
  59. TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX,
  60. DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_ALGO)) " Token hashing algorithm.\r\n");
  61. TOTP_CLI_PRINTF(
  62. " Could be one of: sha1, sha256, sha512 " DOCOPT_DEFAULT("sha1") "\r\n");
  63. TOTP_CLI_PRINTF(" " DOCOPT_OPTION(
  64. TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX,
  65. DOCOPT_ARGUMENT(
  66. TOTP_CLI_COMMAND_ADD_ARG_DIGITS)) " Number of digits to generate, one of: 6, 8 " DOCOPT_DEFAULT("6") "\r\n");
  67. TOTP_CLI_PRINTF(" " DOCOPT_SWITCH(
  68. TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX) " Show console user input as-is without masking\r\n");
  69. }
  70. static void furi_string_secure_free(FuriString* str) {
  71. for(long i = furi_string_size(str) - 1; i >= 0; i--) {
  72. furi_string_set_char(str, i, '\0');
  73. }
  74. furi_string_free(str);
  75. }
  76. static bool totp_cli_read_secret(Cli* cli, FuriString* out_str, bool mask_user_input) {
  77. uint8_t c;
  78. while(cli_read(cli, &c, 1) == 1) {
  79. if(c == CliSymbolAsciiEsc) {
  80. // Some keys generating escape-sequences
  81. // We need to ignore them as we case about alpha-numerics only
  82. uint8_t c2;
  83. cli_read_timeout(cli, &c2, 1, 0);
  84. cli_read_timeout(cli, &c2, 1, 0);
  85. } else if(c == CliSymbolAsciiETX) {
  86. TOTP_CLI_DELETE_CURRENT_LINE();
  87. TOTP_CLI_PRINTF("Cancelled by user\r\n");
  88. return false;
  89. } else if((c >= '0' && c <= '9') || (c >= 'a' && c <= 'z') || (c >= 'A' && c <= 'Z')) {
  90. if(mask_user_input) {
  91. putc('*', stdout);
  92. } else {
  93. putc(c, stdout);
  94. }
  95. fflush(stdout);
  96. furi_string_push_back(out_str, c);
  97. } else if(c == CliSymbolAsciiBackspace || c == CliSymbolAsciiDel) {
  98. size_t out_str_size = furi_string_size(out_str);
  99. if(out_str_size > 0) {
  100. TOTP_CLI_DELETE_LAST_CHAR();
  101. furi_string_left(out_str, out_str_size - 1);
  102. }
  103. } else if(c == CliSymbolAsciiCR) {
  104. cli_nl();
  105. break;
  106. }
  107. }
  108. TOTP_CLI_DELETE_LAST_LINE();
  109. return true;
  110. }
  111. void totp_cli_command_add_handle(PluginState* plugin_state, FuriString* args, Cli* cli) {
  112. FuriString* temp_str = furi_string_alloc();
  113. TokenInfo* token_info = token_info_alloc();
  114. // Reading token name
  115. if(!args_read_probably_quoted_string_and_trim(args, temp_str)) {
  116. TOTP_CLI_PRINT_INVALID_ARGUMENTS();
  117. furi_string_free(temp_str);
  118. token_info_free(token_info);
  119. return;
  120. }
  121. size_t temp_cstr_len = furi_string_size(temp_str);
  122. token_info->name = malloc(temp_cstr_len + 1);
  123. strlcpy(token_info->name, furi_string_get_cstr(temp_str), temp_cstr_len + 1);
  124. // Read optional arguments
  125. bool mask_user_input = true;
  126. while(args_read_string_and_trim(args, temp_str)) {
  127. bool parsed = false;
  128. if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX) == 0) {
  129. if(!args_read_string_and_trim(args, temp_str)) {
  130. TOTP_CLI_PRINTF("Missed value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX
  131. "\"\r\n");
  132. } else if(!token_info_set_algo_from_str(token_info, temp_str)) {
  133. TOTP_CLI_PRINTF(
  134. "\"%s\" is incorrect value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX
  135. "\"\r\n",
  136. furi_string_get_cstr(temp_str));
  137. } else {
  138. parsed = true;
  139. }
  140. } else if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX) == 0) {
  141. if(!args_read_string_and_trim(args, temp_str)) {
  142. TOTP_CLI_PRINTF(
  143. "Missed value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX
  144. "\"\r\n");
  145. } else if(!token_info_set_digits_from_str(token_info, temp_str)) {
  146. TOTP_CLI_PRINTF(
  147. "\"%s\" is incorrect value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX
  148. "\"\r\n",
  149. furi_string_get_cstr(temp_str));
  150. } else {
  151. parsed = true;
  152. }
  153. } else if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX) == 0) {
  154. mask_user_input = false;
  155. parsed = true;
  156. }
  157. if(!parsed) {
  158. TOTP_CLI_PRINT_INVALID_ARGUMENTS();
  159. furi_string_free(temp_str);
  160. token_info_free(token_info);
  161. return;
  162. }
  163. }
  164. // Reading token secret
  165. furi_string_reset(temp_str);
  166. TOTP_CLI_PRINTF("Enter token secret and confirm with [ENTER]\r\n");
  167. if(!totp_cli_read_secret(cli, temp_str, mask_user_input) ||
  168. !totp_cli_ensure_authenticated(plugin_state, cli)) {
  169. furi_string_secure_free(temp_str);
  170. token_info_free(token_info);
  171. return;
  172. }
  173. if(!token_info_set_secret(
  174. token_info,
  175. furi_string_get_cstr(temp_str),
  176. furi_string_size(temp_str),
  177. plugin_state->iv)) {
  178. TOTP_CLI_PRINTF("Token secret seems to be invalid and can not be parsed\r\n");
  179. furi_string_secure_free(temp_str);
  180. token_info_free(token_info);
  181. return;
  182. }
  183. furi_string_secure_free(temp_str);
  184. bool load_generate_token_scene = false;
  185. if(plugin_state->current_scene == TotpSceneGenerateToken) {
  186. totp_scene_director_activate_scene(plugin_state, TotpSceneNone, NULL);
  187. load_generate_token_scene = true;
  188. }
  189. TOTP_LIST_INIT_OR_ADD(plugin_state->tokens_list, token_info);
  190. plugin_state->tokens_count++;
  191. totp_config_file_save_new_token(token_info);
  192. if(load_generate_token_scene) {
  193. totp_scene_director_activate_scene(plugin_state, TotpSceneGenerateToken, NULL);
  194. }
  195. TOTP_CLI_PRINTF("Token \"%s\" has been successfully added\r\n", token_info->name);
  196. }