2018-12-31 22:04:05 +03:00
|
|
|
//
|
2018-01-02 16:42:31 +03:00
|
|
|
// Copyright Aliaksei Levin (levlam@telegram.org), Arseny Smirnov (arseny30@gmail.com) 2014-2018
|
2018-12-31 22:04:05 +03:00
|
|
|
//
|
|
|
|
// Distributed under the Boost Software License, Version 1.0. (See accompanying
|
|
|
|
// file LICENSE_1_0.txt or copy at http://www.boost.org/LICENSE_1_0.txt)
|
|
|
|
//
|
|
|
|
#pragma once
|
|
|
|
|
|
|
|
#include "td/telegram/net/NetQuery.h"
|
2018-03-27 16:11:15 +03:00
|
|
|
#include "td/telegram/SecureStorage.h"
|
2018-12-31 22:04:05 +03:00
|
|
|
|
2018-08-04 09:55:49 +03:00
|
|
|
#include "td/telegram/td_api.h"
|
|
|
|
#include "td/telegram/telegram_api.h"
|
|
|
|
|
2018-07-03 22:29:04 +03:00
|
|
|
#include "td/actor/actor.h"
|
|
|
|
#include "td/actor/PromiseFuture.h"
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
#include "td/utils/Container.h"
|
|
|
|
#include "td/utils/logging.h"
|
2018-03-27 16:11:15 +03:00
|
|
|
#include "td/utils/optional.h"
|
2018-08-04 09:55:49 +03:00
|
|
|
#include "td/utils/Slice.h"
|
2018-12-31 22:04:05 +03:00
|
|
|
#include "td/utils/Status.h"
|
|
|
|
#include "td/utils/tl_helpers.h"
|
|
|
|
|
|
|
|
namespace td {
|
|
|
|
|
|
|
|
struct TempPasswordState {
|
|
|
|
bool has_temp_password = false;
|
|
|
|
string temp_password;
|
|
|
|
int32 valid_until = 0; // unix_time
|
|
|
|
|
|
|
|
tl_object_ptr<td_api::temporaryPasswordState> as_td_api() const;
|
|
|
|
|
|
|
|
template <class T>
|
|
|
|
void store(T &storer) const {
|
|
|
|
using ::td::store;
|
|
|
|
CHECK(has_temp_password);
|
|
|
|
store(temp_password, storer);
|
|
|
|
store(valid_until, storer);
|
|
|
|
}
|
|
|
|
|
|
|
|
template <class T>
|
|
|
|
void parse(T &parser) {
|
|
|
|
using ::td::parse;
|
|
|
|
has_temp_password = true;
|
|
|
|
parse(temp_password, parser);
|
|
|
|
parse(valid_until, parser);
|
|
|
|
}
|
|
|
|
};
|
|
|
|
|
|
|
|
class PasswordManager : public NetQueryCallback {
|
|
|
|
public:
|
|
|
|
using State = tl_object_ptr<td_api::passwordState>;
|
|
|
|
using TempState = tl_object_ptr<td_api::temporaryPasswordState>;
|
|
|
|
|
|
|
|
explicit PasswordManager(ActorShared<> parent) : parent_(std::move(parent)) {
|
|
|
|
}
|
2018-07-03 20:28:00 +03:00
|
|
|
|
2018-08-04 09:55:49 +03:00
|
|
|
static BufferSlice calc_password_hash(Slice password, Slice client_salt, Slice server_salt);
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
void get_state(Promise<State> promise);
|
|
|
|
void set_password(string current_password, string new_password, string new_hint, bool set_recovery_email_address,
|
|
|
|
string recovery_email_address, Promise<State> promise);
|
|
|
|
void set_recovery_email_address(string password, string new_recovery_email_address, Promise<State> promise);
|
|
|
|
void get_recovery_email_address(string password, Promise<tl_object_ptr<td_api::recoveryEmailAddress>> promise);
|
|
|
|
|
2018-04-09 19:04:21 +03:00
|
|
|
void send_email_address_verification_code(
|
|
|
|
string email, Promise<td_api::object_ptr<td_api::emailAddressAuthenticationCodeInfo>> promise);
|
|
|
|
void resend_email_address_verification_code(
|
|
|
|
Promise<td_api::object_ptr<td_api::emailAddressAuthenticationCodeInfo>> promise);
|
|
|
|
void check_email_address_verification_code(string code, Promise<td_api::object_ptr<td_api::ok>> promise);
|
|
|
|
|
2018-04-09 21:06:37 +03:00
|
|
|
void request_password_recovery(Promise<td_api::object_ptr<td_api::emailAddressAuthenticationCodeInfo>> promise);
|
2018-12-31 22:04:05 +03:00
|
|
|
void recover_password(string code, Promise<State> promise);
|
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
void get_secure_secret(string password, optional<int64> hash, Promise<secure_storage::Secret> promise);
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
void get_temp_password_state(Promise<TempState> promise) /*const*/;
|
|
|
|
void create_temp_password(string password, int32 timeout, Promise<TempState> promise);
|
|
|
|
void drop_temp_password();
|
|
|
|
|
|
|
|
static TempPasswordState get_temp_password_state_sync();
|
|
|
|
|
|
|
|
private:
|
2018-04-06 15:20:20 +03:00
|
|
|
static constexpr size_t MIN_NEW_SALT_SIZE = 8;
|
|
|
|
static constexpr size_t MIN_NEW_SECURE_SALT_SIZE = 8;
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
ActorShared<> parent_;
|
|
|
|
|
|
|
|
struct PasswordState {
|
|
|
|
bool has_password = false;
|
|
|
|
string password_hint;
|
|
|
|
bool has_recovery_email_address = false;
|
2018-04-18 17:28:48 +03:00
|
|
|
bool has_secure_values = false;
|
2018-08-04 09:55:49 +03:00
|
|
|
string unconfirmed_recovery_email_address_pattern;
|
2018-12-31 22:04:05 +03:00
|
|
|
|
2018-08-04 09:55:49 +03:00
|
|
|
string current_client_salt;
|
|
|
|
string current_server_salt;
|
|
|
|
string new_client_salt;
|
|
|
|
string new_server_salt;
|
2018-12-31 22:04:05 +03:00
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
string new_secure_salt;
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
State as_td_api() const {
|
|
|
|
return td_api::make_object<td_api::passwordState>(has_password, password_hint, has_recovery_email_address,
|
2018-04-18 17:28:48 +03:00
|
|
|
has_secure_values, unconfirmed_recovery_email_address_pattern);
|
2018-12-31 22:04:05 +03:00
|
|
|
}
|
|
|
|
};
|
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
struct PasswordPrivateState {
|
|
|
|
string email;
|
|
|
|
optional<secure_storage::Secret> secret;
|
|
|
|
};
|
|
|
|
|
|
|
|
struct PasswordFullState {
|
|
|
|
PasswordState state;
|
|
|
|
PasswordPrivateState private_state;
|
|
|
|
};
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
struct UpdateSettings {
|
|
|
|
string current_password;
|
|
|
|
|
|
|
|
bool update_password = false;
|
|
|
|
string new_password;
|
|
|
|
string new_hint;
|
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
bool update_secure_secret = false;
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
bool update_recovery_email_address = false;
|
|
|
|
string recovery_email_address;
|
|
|
|
};
|
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
optional<secure_storage::Secret> secret_;
|
2018-12-31 22:04:05 +03:00
|
|
|
TempPasswordState temp_password_state_;
|
|
|
|
Promise<TempState> create_temp_password_promise_;
|
|
|
|
|
2018-07-03 20:28:00 +03:00
|
|
|
string last_verified_email_address_;
|
|
|
|
|
2018-08-04 09:55:49 +03:00
|
|
|
static Result<secure_storage::Secret> decrypt_secure_secret(
|
|
|
|
Slice password, tl_object_ptr<telegram_api::SecurePasswordKdfAlgo> algo_ptr, Slice secret, int64 secret_id);
|
|
|
|
|
|
|
|
BufferSlice calc_password_hash(Slice password, const PasswordState &state) const;
|
|
|
|
|
2018-12-31 22:04:05 +03:00
|
|
|
void update_password_settings(UpdateSettings update_settings, Promise<State> promise);
|
2018-03-27 16:11:15 +03:00
|
|
|
void do_update_password_settings(UpdateSettings update_settings, PasswordFullState full_state, Promise<bool> promise);
|
2018-12-31 22:04:05 +03:00
|
|
|
void do_get_state(Promise<PasswordState> promise);
|
2018-03-27 16:11:15 +03:00
|
|
|
void get_full_state(string password, Promise<PasswordFullState> promise);
|
|
|
|
void do_get_secure_secret(bool recursive, string passwod, optional<int64>, Promise<secure_storage::Secret> promise);
|
|
|
|
void do_get_full_state(string password, PasswordState state, Promise<PasswordFullState> promise);
|
|
|
|
void cache_secret(secure_storage::Secret secret);
|
2018-12-31 22:04:05 +03:00
|
|
|
|
|
|
|
void do_create_temp_password(string password, int32 timeout, PasswordState &&password_state,
|
|
|
|
Promise<TempPasswordState> promise);
|
|
|
|
void on_finish_create_temp_password(Result<TempPasswordState> result, bool dummy);
|
|
|
|
|
|
|
|
void on_result(NetQueryPtr query) override;
|
|
|
|
|
|
|
|
void start_up() override;
|
2018-04-19 18:39:30 +03:00
|
|
|
void hangup() override;
|
2018-12-31 22:04:05 +03:00
|
|
|
|
|
|
|
Container<Promise<NetQueryPtr>> container_;
|
|
|
|
void send_with_promise(NetQueryPtr query, Promise<NetQueryPtr> promise);
|
|
|
|
};
|
|
|
|
|
|
|
|
} // namespace td
|