2018-03-27 16:11:15 +03:00
|
|
|
//
|
|
|
|
// Copyright Aliaksei Levin (levlam@telegram.org), Arseny Smirnov (arseny30@gmail.com) 2014-2018
|
|
|
|
//
|
|
|
|
// Distributed under the Boost Software License, Version 1.0. (See accompanying
|
|
|
|
// file LICENSE_1_0.txt or copy at http://www.boost.org/LICENSE_1_0.txt)
|
|
|
|
//
|
|
|
|
#pragma once
|
|
|
|
|
|
|
|
#include "td/telegram/td_api.h"
|
|
|
|
#include "td/telegram/telegram_api.h"
|
|
|
|
|
|
|
|
#include "td/telegram/files/FileId.h"
|
|
|
|
#include "td/telegram/SecureStorage.h"
|
|
|
|
|
|
|
|
#include "td/utils/common.h"
|
2018-04-05 16:06:03 +03:00
|
|
|
#include "td/utils/optional.h"
|
2018-04-07 02:38:28 +03:00
|
|
|
#include "td/utils/Slice.h"
|
2018-03-27 16:11:15 +03:00
|
|
|
#include "td/utils/Status.h"
|
|
|
|
|
2018-04-07 02:38:28 +03:00
|
|
|
#include <utility>
|
|
|
|
|
2018-03-27 16:11:15 +03:00
|
|
|
namespace td {
|
|
|
|
|
|
|
|
class FileManager;
|
|
|
|
|
|
|
|
enum class SecureValueType {
|
|
|
|
None,
|
|
|
|
PersonalDetails,
|
|
|
|
Passport,
|
|
|
|
DriverLicense,
|
|
|
|
IdentityCard,
|
|
|
|
Address,
|
|
|
|
UtilityBill,
|
|
|
|
BankStatement,
|
|
|
|
RentalAgreement,
|
|
|
|
PhoneNumber,
|
|
|
|
EmailAddress
|
|
|
|
};
|
|
|
|
|
2018-04-11 20:42:06 +03:00
|
|
|
SecureValueType get_secure_value_type(const tl_object_ptr<telegram_api::SecureValueType> &secure_value_type);
|
|
|
|
SecureValueType get_secure_value_type_td_api(const tl_object_ptr<td_api::PassportDataType> &passport_data_type);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
vector<SecureValueType> get_secure_value_types(
|
2018-04-11 20:42:06 +03:00
|
|
|
const vector<tl_object_ptr<telegram_api::SecureValueType>> &secure_value_types);
|
2018-04-06 22:37:30 +03:00
|
|
|
vector<SecureValueType> get_secure_value_types_td_api(
|
2018-04-11 20:42:06 +03:00
|
|
|
const vector<tl_object_ptr<td_api::PassportDataType>> &secure_value_types);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
td_api::object_ptr<td_api::PassportDataType> get_passport_data_type_object(SecureValueType type);
|
2018-04-10 20:10:20 +03:00
|
|
|
td_api::object_ptr<telegram_api::SecureValueType> get_secure_value_type_object(SecureValueType type);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
vector<td_api::object_ptr<td_api::PassportDataType>> get_passport_data_types_object(
|
|
|
|
const vector<SecureValueType> &types);
|
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
struct EncryptedSecureFile {
|
2018-03-27 16:11:15 +03:00
|
|
|
FileId file_id;
|
|
|
|
string file_hash;
|
|
|
|
string encrypted_secret;
|
|
|
|
};
|
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
bool operator==(const EncryptedSecureFile &lhs, const EncryptedSecureFile &rhs);
|
|
|
|
bool operator!=(const EncryptedSecureFile &lhs, const EncryptedSecureFile &rhs);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-07 01:29:36 +03:00
|
|
|
EncryptedSecureFile get_encrypted_secure_file(FileManager *file_manager,
|
|
|
|
tl_object_ptr<telegram_api::SecureFile> &&secure_file_ptr);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-07 01:29:36 +03:00
|
|
|
vector<EncryptedSecureFile> get_encrypted_secure_files(FileManager *file_manager,
|
|
|
|
vector<tl_object_ptr<telegram_api::SecureFile>> &&secure_files);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-03 20:49:07 +03:00
|
|
|
struct SecureInputFile {
|
|
|
|
FileId file_id;
|
|
|
|
tl_object_ptr<telegram_api::InputSecureFile> input_file;
|
|
|
|
};
|
2018-03-27 16:11:15 +03:00
|
|
|
telegram_api::object_ptr<telegram_api::InputSecureFile> get_input_secure_file_object(FileManager *file_manager,
|
2018-04-06 16:41:38 +03:00
|
|
|
const EncryptedSecureFile &file,
|
2018-04-03 20:49:07 +03:00
|
|
|
SecureInputFile &input_file);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
td_api::object_ptr<td_api::file> get_encrypted_file_object(FileManager *file_manager, const EncryptedSecureFile &file);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
vector<td_api::object_ptr<td_api::file>> get_encrypted_files_object(FileManager *file_manager,
|
2018-04-06 16:41:38 +03:00
|
|
|
const vector<EncryptedSecureFile> &files);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
vector<telegram_api::object_ptr<telegram_api::InputSecureFile>> get_input_secure_files_object(
|
2018-04-06 16:41:38 +03:00
|
|
|
FileManager *file_manager, const vector<EncryptedSecureFile> &file, vector<SecureInputFile> &input_files);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
struct EncryptedSecureData {
|
2018-03-27 16:11:15 +03:00
|
|
|
string data;
|
|
|
|
string hash;
|
|
|
|
string encrypted_secret;
|
|
|
|
};
|
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
bool operator==(const EncryptedSecureData &lhs, const EncryptedSecureData &rhs);
|
|
|
|
bool operator!=(const EncryptedSecureData &lhs, const EncryptedSecureData &rhs);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-07 01:29:36 +03:00
|
|
|
EncryptedSecureData get_encrypted_secure_data(tl_object_ptr<telegram_api::secureData> &&secure_data);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
telegram_api::object_ptr<telegram_api::secureData> get_secure_data_object(const EncryptedSecureData &data);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
struct EncryptedSecureValue {
|
|
|
|
SecureValueType type = SecureValueType::None;
|
2018-04-06 16:41:38 +03:00
|
|
|
EncryptedSecureData data;
|
|
|
|
vector<EncryptedSecureFile> files;
|
|
|
|
EncryptedSecureFile selfie;
|
2018-03-27 16:11:15 +03:00
|
|
|
string hash; // memory only
|
|
|
|
};
|
|
|
|
|
|
|
|
bool operator==(const EncryptedSecureValue &lhs, const EncryptedSecureValue &rhs);
|
|
|
|
bool operator!=(const EncryptedSecureValue &lhs, const EncryptedSecureValue &rhs);
|
|
|
|
|
|
|
|
EncryptedSecureValue get_encrypted_secure_value(FileManager *file_manager,
|
|
|
|
tl_object_ptr<telegram_api::secureValue> &&secure_value);
|
|
|
|
|
|
|
|
vector<EncryptedSecureValue> get_encrypted_secure_values(
|
|
|
|
FileManager *file_manager, vector<tl_object_ptr<telegram_api::secureValue>> &&secure_values);
|
|
|
|
|
|
|
|
td_api::object_ptr<td_api::encryptedPassportData> get_encrypted_passport_data_object(FileManager *file_manager,
|
|
|
|
const EncryptedSecureValue &value);
|
|
|
|
telegram_api::object_ptr<telegram_api::inputSecureValue> get_input_secure_value_object(
|
2018-04-05 16:06:03 +03:00
|
|
|
FileManager *file_manager, const EncryptedSecureValue &value, vector<SecureInputFile> &input_files,
|
|
|
|
optional<SecureInputFile> &selfie);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
vector<td_api::object_ptr<td_api::encryptedPassportData>> get_encrypted_passport_data_object(
|
|
|
|
FileManager *file_manager, const vector<EncryptedSecureValue> &values);
|
|
|
|
|
2018-04-06 22:37:30 +03:00
|
|
|
struct EncryptedSecureCredentials {
|
2018-03-27 16:11:15 +03:00
|
|
|
string data;
|
|
|
|
string hash;
|
|
|
|
string encrypted_secret;
|
|
|
|
};
|
|
|
|
|
2018-04-06 22:37:30 +03:00
|
|
|
bool operator==(const EncryptedSecureCredentials &lhs, const EncryptedSecureCredentials &rhs);
|
|
|
|
bool operator!=(const EncryptedSecureCredentials &lhs, const EncryptedSecureCredentials &rhs);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-07 01:29:36 +03:00
|
|
|
EncryptedSecureCredentials get_encrypted_secure_credentials(
|
2018-04-06 22:37:30 +03:00
|
|
|
tl_object_ptr<telegram_api::secureCredentialsEncrypted> &&credentials);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-06 22:37:30 +03:00
|
|
|
telegram_api::object_ptr<telegram_api::secureCredentialsEncrypted> get_secure_credentials_encrypted_object(
|
|
|
|
const EncryptedSecureCredentials &credentials);
|
|
|
|
td_api::object_ptr<td_api::encryptedCredentials> get_encrypted_credentials_object(
|
|
|
|
const EncryptedSecureCredentials &credentials);
|
|
|
|
|
|
|
|
struct SecureDataCredentials {
|
|
|
|
string secret;
|
2018-04-07 12:49:45 +03:00
|
|
|
string hash;
|
2018-04-06 22:37:30 +03:00
|
|
|
};
|
|
|
|
struct SecureFileCredentials {
|
|
|
|
string secret;
|
2018-04-07 12:49:45 +03:00
|
|
|
string hash;
|
2018-04-06 22:37:30 +03:00
|
|
|
};
|
|
|
|
|
|
|
|
struct SecureValueCredentials {
|
|
|
|
SecureValueType type;
|
|
|
|
string hash;
|
|
|
|
optional<SecureDataCredentials> data;
|
|
|
|
std::vector<SecureFileCredentials> files;
|
|
|
|
optional<SecureFileCredentials> selfie;
|
|
|
|
};
|
|
|
|
|
|
|
|
Result<EncryptedSecureCredentials> encrypted_credentials(std::vector<SecureValueCredentials> &credentials,
|
|
|
|
Slice payload, Slice public_key);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
|
|
|
class SecureValue {
|
|
|
|
public:
|
2018-04-06 19:30:36 +03:00
|
|
|
SecureValueType type = SecureValueType::None;
|
2018-03-27 16:11:15 +03:00
|
|
|
string data;
|
|
|
|
vector<FileId> files;
|
2018-04-03 19:28:37 +03:00
|
|
|
FileId selfie;
|
2018-03-27 16:11:15 +03:00
|
|
|
};
|
|
|
|
|
2018-04-06 22:37:30 +03:00
|
|
|
struct SecureValueWithCredentials {
|
|
|
|
SecureValue value;
|
|
|
|
SecureValueCredentials credentials;
|
|
|
|
};
|
|
|
|
|
2018-04-03 20:49:07 +03:00
|
|
|
Result<SecureValue> get_secure_value(FileManager *file_manager,
|
2018-04-11 17:21:24 +03:00
|
|
|
td_api::object_ptr<td_api::InputPassportData> &&input_passport_data);
|
2018-04-03 20:49:07 +03:00
|
|
|
|
2018-04-11 17:21:24 +03:00
|
|
|
Result<td_api::object_ptr<td_api::PassportData>> get_passport_data_object(FileManager *file_manager,
|
|
|
|
const SecureValue &value);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-07 01:29:36 +03:00
|
|
|
td_api::object_ptr<td_api::allPassportData> get_all_passport_data_object(FileManager *file_manager,
|
2018-04-11 17:21:24 +03:00
|
|
|
const vector<SecureValue> &values);
|
2018-04-07 01:29:36 +03:00
|
|
|
|
2018-04-06 22:37:30 +03:00
|
|
|
Result<std::pair<FileId, SecureFileCredentials>> decrypt_secure_file(FileManager *file_manager,
|
|
|
|
const secure_storage::Secret &secret,
|
|
|
|
const EncryptedSecureFile &secure_file);
|
|
|
|
Result<std::pair<vector<FileId>, vector<SecureFileCredentials>>> decrypt_secure_files(
|
|
|
|
FileManager *file_manager, const secure_storage::Secret &secret, const vector<EncryptedSecureFile> &secure_file);
|
|
|
|
Result<std::pair<string, SecureDataCredentials>> decrypt_secure_data(const secure_storage::Secret &secret,
|
|
|
|
const EncryptedSecureData &secure_data);
|
|
|
|
Result<SecureValueWithCredentials> decrypt_encrypted_secure_value(FileManager *file_manager,
|
|
|
|
const secure_storage::Secret &secret,
|
|
|
|
const EncryptedSecureValue &encrypted_secure_value);
|
2018-04-07 01:29:36 +03:00
|
|
|
Result<vector<SecureValueWithCredentials>> decrypt_encrypted_secure_values(
|
|
|
|
FileManager *file_manager, const secure_storage::Secret &secret,
|
|
|
|
const vector<EncryptedSecureValue> &encrypted_secure_values);
|
2018-03-27 16:11:15 +03:00
|
|
|
|
2018-04-06 16:41:38 +03:00
|
|
|
EncryptedSecureFile encrypt_secure_file(FileManager *file_manager, const secure_storage::Secret &master_secret,
|
|
|
|
FileId file, string &to_hash);
|
|
|
|
vector<EncryptedSecureFile> encrypt_secure_files(FileManager *file_manager, const secure_storage::Secret &master_secret,
|
|
|
|
vector<FileId> files, string &to_hash);
|
|
|
|
EncryptedSecureData encrypt_secure_data(const secure_storage::Secret &master_secret, Slice data, string &to_hash);
|
2018-03-27 16:11:15 +03:00
|
|
|
EncryptedSecureValue encrypt_secure_value(FileManager *file_manager, const secure_storage::Secret &master_secret,
|
|
|
|
const SecureValue &secure_value);
|
|
|
|
|
|
|
|
} // namespace td
|