2011-01-28 07:07:18 +00:00
|
|
|
/*
|
|
|
|
Copyright 2011 Google Inc.
|
|
|
|
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
you may not use this file except in compliance with the License.
|
|
|
|
You may obtain a copy of the License at
|
|
|
|
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
See the License for the specific language governing permissions and
|
|
|
|
limitations under the License.
|
|
|
|
*/
|
|
|
|
|
2010-12-09 03:24:48 +00:00
|
|
|
package jsonsign
|
|
|
|
|
|
|
|
import (
|
|
|
|
"bytes"
|
|
|
|
"camli/blobref"
|
2011-02-02 20:29:51 +00:00
|
|
|
"crypto"
|
2010-12-09 03:24:48 +00:00
|
|
|
"crypto/openpgp/armor"
|
|
|
|
"crypto/openpgp/packet"
|
|
|
|
"fmt"
|
|
|
|
"json"
|
|
|
|
"log"
|
|
|
|
"os"
|
|
|
|
"strings"
|
|
|
|
"crypto/sha1"
|
|
|
|
)
|
|
|
|
|
|
|
|
var logf = log.Printf
|
|
|
|
|
|
|
|
const sigSeparator = `,"camliSig":"`
|
|
|
|
|
|
|
|
// reArmor takes a camliSig (single line armor) and turns it back into an PGP-style
|
|
|
|
// multi-line armored string
|
|
|
|
func reArmor(line string) string {
|
|
|
|
lastEq := strings.LastIndex(line, "=")
|
|
|
|
if lastEq == -1 {
|
|
|
|
return ""
|
|
|
|
}
|
2011-03-16 00:37:52 +00:00
|
|
|
buf := new(bytes.Buffer)
|
|
|
|
fmt.Fprintf(buf, "-----BEGIN PGP SIGNATURE-----\n\n")
|
|
|
|
payload := line[0:lastEq]
|
|
|
|
crc := line[lastEq:]
|
|
|
|
for len(payload) > 0 {
|
|
|
|
chunkLen := len(payload)
|
|
|
|
if chunkLen > 60 {
|
|
|
|
chunkLen = 60
|
|
|
|
}
|
|
|
|
fmt.Fprintf(buf, "%s\n", payload[0:chunkLen])
|
|
|
|
payload = payload[chunkLen:]
|
|
|
|
}
|
|
|
|
fmt.Fprintf(buf, "%s\n-----BEGIN PGP SIGNATURE-----\n", crc)
|
|
|
|
return buf.String()
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
// See doc/json-signing/* for background and details
|
|
|
|
// on these variable names.
|
|
|
|
type VerifyRequest struct {
|
|
|
|
fetcher blobref.Fetcher // fetcher used to find public key blob
|
|
|
|
|
|
|
|
ba []byte // "bytes all"
|
|
|
|
bp []byte // "bytes payload" (the part that is signed)
|
|
|
|
bpj []byte // "bytes payload, JSON" (BP + "}")
|
|
|
|
bs []byte // "bytes signature", "{" + separator + camliSig, valid JSON
|
|
|
|
|
2010-12-17 17:59:03 +00:00
|
|
|
CamliSigner *blobref.BlobRef
|
2010-12-09 03:24:48 +00:00
|
|
|
PayloadMap map[string]interface{} // The JSON values from BPJ
|
|
|
|
CamliSig string
|
|
|
|
|
2011-03-15 05:51:36 +00:00
|
|
|
PublicKeyPacket *packet.PublicKey
|
2010-12-09 03:24:48 +00:00
|
|
|
|
|
|
|
Err os.Error // last error encountered
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) fail(msg string) bool {
|
2011-03-16 00:37:52 +00:00
|
|
|
vr.Err = os.NewError("jsonsign: " + msg)
|
2010-12-09 03:24:48 +00:00
|
|
|
return false
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) ParseSigMap() bool {
|
|
|
|
sigMap := make(map[string]interface{})
|
|
|
|
if err := json.Unmarshal(vr.bs, &sigMap); err != nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("invalid JSON in signature")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
if len(sigMap) != 1 {
|
|
|
|
return vr.fail("signature JSON didn't have exactly 1 key")
|
|
|
|
}
|
|
|
|
|
|
|
|
sigVal, hasCamliSig := sigMap["camliSig"]
|
|
|
|
if !hasCamliSig {
|
|
|
|
return vr.fail("no 'camliSig' key in signature")
|
|
|
|
}
|
|
|
|
|
|
|
|
var ok bool
|
|
|
|
vr.CamliSig, ok = sigVal.(string)
|
|
|
|
if !ok {
|
|
|
|
return vr.fail("camliSig not a string")
|
|
|
|
}
|
|
|
|
|
|
|
|
return true
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) ParsePayloadMap() bool {
|
|
|
|
vr.PayloadMap = make(map[string]interface{})
|
|
|
|
pm := vr.PayloadMap
|
|
|
|
|
|
|
|
if err := json.Unmarshal(vr.bpj, &pm); err != nil {
|
|
|
|
return vr.fail("parse error; payload JSON is invalid")
|
|
|
|
}
|
|
|
|
|
|
|
|
if _, hasVersion := pm["camliVersion"]; !hasVersion {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("missing 'camliVersion' in the JSON payload")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
signer, hasSigner := pm["camliSigner"]
|
|
|
|
if !hasSigner {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("missing 'camliSigner' in the JSON payload")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
if _, ok := signer.(string); !ok {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("invalid 'camliSigner' in the JSON payload")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
vr.CamliSigner = blobref.Parse(signer.(string))
|
|
|
|
if vr.CamliSigner == nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("malformed 'camliSigner' blobref in the JSON payload")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
return true
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) FindAndParsePublicKeyBlob() bool {
|
2010-12-14 02:20:31 +00:00
|
|
|
reader, _, err := vr.fetcher.Fetch(vr.CamliSigner)
|
2010-12-09 03:24:48 +00:00
|
|
|
if err != nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail(fmt.Sprintf("error fetching public key blob: %v", err))
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
pk, err := openArmoredPublicKeyFile(reader)
|
|
|
|
if err != nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail(fmt.Sprintf("error opening public key file: %v", err))
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
vr.PublicKeyPacket = pk
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) VerifySignature() bool {
|
|
|
|
armorData := reArmor(vr.CamliSig)
|
2011-03-15 05:51:36 +00:00
|
|
|
block, _ := armor.Decode(bytes.NewBufferString(armorData))
|
2010-12-09 03:24:48 +00:00
|
|
|
if block == nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("can't parse camliSig armor")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
2011-03-15 05:51:36 +00:00
|
|
|
var p packet.Packet
|
|
|
|
var err os.Error
|
|
|
|
p, err = packet.Read(block.Body)
|
2010-12-09 03:24:48 +00:00
|
|
|
if err != nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
return vr.fail("error reading PGP packet from camliSig: " + err.String())
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
2011-03-15 05:51:36 +00:00
|
|
|
sig, ok := p.(*packet.Signature)
|
2010-12-09 03:24:48 +00:00
|
|
|
if !ok {
|
|
|
|
return vr.fail("PGP packet isn't a signature packet")
|
|
|
|
}
|
2011-03-15 05:51:36 +00:00
|
|
|
if sig.Hash != crypto.SHA1 {
|
2010-12-09 03:24:48 +00:00
|
|
|
return vr.fail("I can only verify SHA1 signatures")
|
|
|
|
}
|
|
|
|
if sig.SigType != packet.SigTypeBinary {
|
|
|
|
return vr.fail("I can only verify binary signatures")
|
|
|
|
}
|
|
|
|
hash := sha1.New()
|
|
|
|
hash.Write(vr.bp) // payload bytes
|
2011-03-15 05:51:36 +00:00
|
|
|
err = vr.PublicKeyPacket.VerifySignature(hash, sig)
|
2010-12-09 03:24:48 +00:00
|
|
|
if err != nil {
|
|
|
|
return vr.fail(fmt.Sprintf("bad signature: %s", err))
|
|
|
|
}
|
|
|
|
return true
|
|
|
|
}
|
|
|
|
|
|
|
|
func NewVerificationRequest(sjson string, fetcher blobref.Fetcher) (vr *VerifyRequest) {
|
|
|
|
vr = new(VerifyRequest)
|
|
|
|
vr.ba = []byte(sjson)
|
|
|
|
vr.fetcher = fetcher
|
|
|
|
|
|
|
|
sigIndex := bytes.LastIndex(vr.ba, []byte(sigSeparator))
|
|
|
|
if sigIndex == -1 {
|
2011-03-16 00:37:52 +00:00
|
|
|
vr.Err = os.NewError("jsonsign: no 13-byte camliSig separator found in sjson")
|
2010-12-09 03:24:48 +00:00
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
// "Bytes Payload"
|
|
|
|
vr.bp = vr.ba[0:sigIndex]
|
|
|
|
|
|
|
|
// "Bytes Payload JSON". Note we re-use the memory (the ",")
|
|
|
|
// from BA in BPJ, so we can't re-use that "," byte for
|
|
|
|
// the opening "{" in "BS".
|
|
|
|
vr.bpj = vr.ba[0:sigIndex+1]
|
|
|
|
vr.bpj[sigIndex] = '}'
|
|
|
|
vr.bs = []byte("{" + sjson[sigIndex+1:])
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
func (vr *VerifyRequest) Verify() bool {
|
|
|
|
if vr.Err != nil {
|
|
|
|
return false
|
|
|
|
}
|
|
|
|
|
|
|
|
if vr.ParseSigMap() &&
|
|
|
|
vr.ParsePayloadMap() &&
|
|
|
|
vr.FindAndParsePublicKeyBlob() &&
|
|
|
|
vr.VerifySignature() {
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
// Don't allow dumbs callers to accidentally check this
|
|
|
|
// if it's not valid.
|
|
|
|
vr.PayloadMap = nil
|
|
|
|
if vr.Err == nil {
|
2011-03-16 00:37:52 +00:00
|
|
|
// The other functions should have filled this in
|
|
|
|
// already, but just in case:
|
|
|
|
vr.Err = os.NewError("jsonsign: verification failed")
|
2010-12-09 03:24:48 +00:00
|
|
|
}
|
|
|
|
return false
|
|
|
|
}
|