add.c 8.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226
  1. #include "add.h"
  2. #include <stdlib.h>
  3. #include <lib/toolbox/args.h>
  4. #include "../../../list/list.h"
  5. #include "../../../../types/token_info.h"
  6. #include "../../../config/config.h"
  7. #include "../../cli_helpers.h"
  8. #include "../../../../scenes/scene_director.h"
  9. #define TOTP_CLI_COMMAND_ADD_ARG_NAME "name"
  10. #define TOTP_CLI_COMMAND_ADD_ARG_ALGO "algo"
  11. #define TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX "-a"
  12. #define TOTP_CLI_COMMAND_ADD_ARG_DIGITS "digits"
  13. #define TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX "-d"
  14. #define TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX "-u"
  15. static bool token_info_set_digits_from_str(TokenInfo* token_info, const FuriString* str) {
  16. switch(furi_string_get_char(str, 0)) {
  17. case '6':
  18. token_info->digits = TOTP_6_DIGITS;
  19. return true;
  20. case '8':
  21. token_info->digits = TOTP_8_DIGITS;
  22. return true;
  23. default:
  24. break;
  25. }
  26. return false;
  27. }
  28. static bool token_info_set_algo_from_str(TokenInfo* token_info, const FuriString* str) {
  29. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA1_NAME) == 0) {
  30. token_info->algo = SHA1;
  31. return true;
  32. }
  33. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA256_NAME) == 0) {
  34. token_info->algo = SHA256;
  35. return true;
  36. }
  37. if(furi_string_cmpi_str(str, TOTP_CONFIG_TOKEN_ALGO_SHA512_NAME) == 0) {
  38. token_info->algo = SHA512;
  39. return true;
  40. }
  41. return false;
  42. }
  43. void totp_cli_command_add_docopt_commands() {
  44. TOTP_CLI_PRINTF(" " TOTP_CLI_COMMAND_ADD ", " TOTP_CLI_COMMAND_ADD_ALT
  45. ", " TOTP_CLI_COMMAND_ADD_ALT2 " Add new token\r\n");
  46. }
  47. void totp_cli_command_add_docopt_usage() {
  48. TOTP_CLI_PRINTF(
  49. " " TOTP_CLI_COMMAND_NAME
  50. " " DOCOPT_REQUIRED(TOTP_CLI_COMMAND_ADD " | " TOTP_CLI_COMMAND_ADD_ALT " | " TOTP_CLI_COMMAND_ADD_ALT2) " " DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_NAME) " " DOCOPT_OPTIONAL(
  51. DOCOPT_OPTION(
  52. TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX,
  53. DOCOPT_ARGUMENT(
  54. TOTP_CLI_COMMAND_ADD_ARG_ALGO))) " " DOCOPT_OPTIONAL(DOCOPT_OPTION(TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX, DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_DIGITS))) " " DOCOPT_OPTIONAL(DOCOPT_SWITCH(TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX)) "\r\n");
  55. }
  56. void totp_cli_command_add_docopt_arguments() {
  57. TOTP_CLI_PRINTF(" " TOTP_CLI_COMMAND_ADD_ARG_NAME " Token name\r\n");
  58. }
  59. void totp_cli_command_add_docopt_options() {
  60. TOTP_CLI_PRINTF(" " DOCOPT_OPTION(
  61. TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX,
  62. DOCOPT_ARGUMENT(TOTP_CLI_COMMAND_ADD_ARG_ALGO)) " Token hashing algorithm.\r\n");
  63. TOTP_CLI_PRINTF(
  64. " Could be one of: sha1, sha256, sha512 " DOCOPT_DEFAULT("sha1") "\r\n");
  65. TOTP_CLI_PRINTF(" " DOCOPT_OPTION(
  66. TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX,
  67. DOCOPT_ARGUMENT(
  68. TOTP_CLI_COMMAND_ADD_ARG_DIGITS)) " Number of digits to generate, one of: 6, 8 " DOCOPT_DEFAULT("6") "\r\n");
  69. TOTP_CLI_PRINTF(" " DOCOPT_SWITCH(
  70. TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX) " Show console user input as-is without masking\r\n");
  71. }
  72. static void furi_string_secure_free(FuriString* str) {
  73. for(long i = furi_string_size(str) - 1; i >= 0; i--) {
  74. furi_string_set_char(str, i, '\0');
  75. }
  76. furi_string_free(str);
  77. }
  78. static bool totp_cli_read_secret(Cli* cli, FuriString* out_str, bool mask_user_input) {
  79. uint8_t c;
  80. while(cli_read(cli, &c, 1) == 1) {
  81. if(c == CliSymbolAsciiEsc) {
  82. // Some keys generating escape-sequences
  83. // We need to ignore them as we case about alpha-numerics only
  84. uint8_t c2;
  85. cli_read_timeout(cli, &c2, 1, 0);
  86. cli_read_timeout(cli, &c2, 1, 0);
  87. } else if(c == CliSymbolAsciiETX) {
  88. TOTP_CLI_DELETE_CURRENT_LINE();
  89. TOTP_CLI_PRINTF("Cancelled by user\r\n");
  90. return false;
  91. } else if((c >= '0' && c <= '9') || (c >= 'a' && c <= 'z') || (c >= 'A' && c <= 'Z')) {
  92. if(mask_user_input) {
  93. putc('*', stdout);
  94. } else {
  95. putc(c, stdout);
  96. }
  97. fflush(stdout);
  98. furi_string_push_back(out_str, c);
  99. } else if(c == CliSymbolAsciiBackspace || c == CliSymbolAsciiDel) {
  100. size_t out_str_size = furi_string_size(out_str);
  101. if(out_str_size > 0) {
  102. TOTP_CLI_DELETE_LAST_CHAR();
  103. furi_string_left(out_str, out_str_size - 1);
  104. }
  105. } else if(c == CliSymbolAsciiCR) {
  106. cli_nl();
  107. break;
  108. }
  109. }
  110. TOTP_CLI_DELETE_LAST_LINE();
  111. return true;
  112. }
  113. void totp_cli_command_add_handle(PluginState* plugin_state, FuriString* args, Cli* cli) {
  114. FuriString* temp_str = furi_string_alloc();
  115. TokenInfo* token_info = token_info_alloc();
  116. // Reading token name
  117. if(!args_read_probably_quoted_string_and_trim(args, temp_str)) {
  118. TOTP_CLI_PRINT_INVALID_ARGUMENTS();
  119. furi_string_free(temp_str);
  120. token_info_free(token_info);
  121. return;
  122. }
  123. size_t temp_cstr_len = furi_string_size(temp_str);
  124. token_info->name = malloc(temp_cstr_len + 1);
  125. furi_check(token_info->name != NULL);
  126. strlcpy(token_info->name, furi_string_get_cstr(temp_str), temp_cstr_len + 1);
  127. // Read optional arguments
  128. bool mask_user_input = true;
  129. while(args_read_string_and_trim(args, temp_str)) {
  130. bool parsed = false;
  131. if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX) == 0) {
  132. if(!args_read_string_and_trim(args, temp_str)) {
  133. TOTP_CLI_PRINTF("Missed value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX
  134. "\"\r\n");
  135. } else if(!token_info_set_algo_from_str(token_info, temp_str)) {
  136. TOTP_CLI_PRINTF(
  137. "\"%s\" is incorrect value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_ALGO_PREFIX
  138. "\"\r\n",
  139. furi_string_get_cstr(temp_str));
  140. } else {
  141. parsed = true;
  142. }
  143. } else if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX) == 0) {
  144. if(!args_read_string_and_trim(args, temp_str)) {
  145. TOTP_CLI_PRINTF(
  146. "Missed value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX
  147. "\"\r\n");
  148. } else if(!token_info_set_digits_from_str(token_info, temp_str)) {
  149. TOTP_CLI_PRINTF(
  150. "\"%s\" is incorrect value for argument \"" TOTP_CLI_COMMAND_ADD_ARG_DIGITS_PREFIX
  151. "\"\r\n",
  152. furi_string_get_cstr(temp_str));
  153. } else {
  154. parsed = true;
  155. }
  156. } else if(furi_string_cmpi_str(temp_str, TOTP_CLI_COMMAND_ADD_ARG_UNSECURE_PREFIX) == 0) {
  157. mask_user_input = false;
  158. parsed = true;
  159. }
  160. if(!parsed) {
  161. TOTP_CLI_PRINT_INVALID_ARGUMENTS();
  162. furi_string_free(temp_str);
  163. token_info_free(token_info);
  164. return;
  165. }
  166. }
  167. // Reading token secret
  168. furi_string_reset(temp_str);
  169. TOTP_CLI_PRINTF("Enter token secret and confirm with [ENTER]\r\n");
  170. if(!totp_cli_read_secret(cli, temp_str, mask_user_input) ||
  171. !totp_cli_ensure_authenticated(plugin_state, cli)) {
  172. furi_string_secure_free(temp_str);
  173. token_info_free(token_info);
  174. return;
  175. }
  176. if(!token_info_set_secret(
  177. token_info,
  178. furi_string_get_cstr(temp_str),
  179. furi_string_size(temp_str),
  180. plugin_state->iv)) {
  181. TOTP_CLI_PRINTF("Token secret seems to be invalid and can not be parsed\r\n");
  182. furi_string_secure_free(temp_str);
  183. token_info_free(token_info);
  184. return;
  185. }
  186. furi_string_secure_free(temp_str);
  187. bool load_generate_token_scene = false;
  188. if(plugin_state->current_scene == TotpSceneGenerateToken) {
  189. totp_scene_director_activate_scene(plugin_state, TotpSceneNone, NULL);
  190. load_generate_token_scene = true;
  191. }
  192. TOTP_LIST_INIT_OR_ADD(plugin_state->tokens_list, token_info, furi_check);
  193. plugin_state->tokens_count++;
  194. totp_config_file_save_new_token(token_info);
  195. if(load_generate_token_scene) {
  196. totp_scene_director_activate_scene(plugin_state, TotpSceneGenerateToken, NULL);
  197. }
  198. TOTP_CLI_PRINTF("Token \"%s\" has been successfully added\r\n", token_info->name);
  199. }