You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Comrad/komrade/backend/komrades.py

488 lines
15 KiB
Python

4 years ago
import os,sys; sys.path.append(os.path.abspath(os.path.join(os.path.abspath(os.path.join(os.path.dirname(__file__),'..')),'..')))
from komrade import *
from komrade.backend import *
4 years ago
from komrade.backend.keymaker import *
4 years ago
4 years ago
class KomradeX(Caller):
4 years ago
4 years ago
def __init__(self, name=None, pubkey=None):
super().__init__(name=name)
4 years ago
# self.log(f'booted komrade with {name} and {passphrase} and\n\n{dict_format(self.keychain())}')
4 years ago
# if SHOW_STATUS:
# from komrade.cli import CLI
# self.cli = CLI(name=name, komrade=self)
4 years ago
self.boot(create=False)
4 years ago
# self.name=name
# pass
4 years ago
4 years ago
def boot(self,create=False,ping=False):
4 years ago
# Do I already have my keys?
# yes? -- login
4 years ago
4 years ago
keys = self.keychain()
4 years ago
# self.log(f'booting {self}!',dict_format(keys))
4 years ago
if keys.get('pubkey') and keys.get('privkey'):
4 years ago
# self.log('already booted! @'+self.name)
4 years ago
return True
4 years ago
4 years ago
if self.exists_locally_as_account():
self.log(f'this account (@{self.name}) can be logged into')
return self.login()
elif self.exists_locally_as_contact():
self.log(f'this account (@{self.name}) is a contact')
return #pass #???
elif ping and self.exists_on_server():
self.log(f'this account exists on server. introduce?')
return
elif create:
self.log('account is free: register?')
return self.register()
4 years ago
4 years ago
def exists_locally(self):
return bool(self.pubkey)
4 years ago
def exists_locally_as_contact(self):
4 years ago
return bool(self.pubkey) and not bool(self.privkey)
4 years ago
4 years ago
def exists_locally_as_account(self):
4 years ago
return bool(self.pubkey) and bool(self.privkey_encr)
4 years ago
def exists_on_server(self):
4 years ago
answer = self.phone.ring_ring({
4 years ago
'_route':'does_username_exist',
'name':self.name
})
4 years ago
self.log('answer??',answer)
4 years ago
return answer
4 years ago
4 years ago
# login?
4 years ago
# def login(self):
# if keys.get('pubkey') and keys.get('privkey')
4 years ago
4 years ago
def register(self, name = None, passphrase = None, is_group=None, show_intro=0,show_body=True):
4 years ago
# global PHONEBOOK
4 years ago
# print('got name:',name)
4 years ago
## Defaults
4 years ago
if name and not self.name: self.name=name
if not name and self.name: name=self.name
4 years ago
# if not name and not self.name: name=''
4 years ago
# print('got name',name)
4 years ago
# already have it?
if self.exists_locally_as_account():
4 years ago
return {'success':False, 'status':'You have already created this account.'}
4 years ago
if self.exists_locally_as_contact():
4 years ago
return {'success':False, 'status':'This is already a contact of yours'}
4 years ago
4 years ago
## 1) Have name?
4 years ago
tolog=''
4 years ago
if SHOW_STATUS and show_intro:
4 years ago
self.name = name = self.cli.status_keymaker_part1(name)
elif not name:
4 years ago
self.name = name = input('\nHello, this is Komrade @')
print('\nI would like to sign up for the socialist network revolution.',flush=True)
do_pause()
else:
print(f'Hello, this is Komrade @{name}.\n\nI would like to sign up for the socialist network revolution.')
do_pause()
clear_screen()
self.log(f'@Keymaker: Excellent. But to communicate with komrades securely,\nyou must first cut your public & private encryption keys. ')
# do_pause()
4 years ago
## 2) Make pub public/private keys
4 years ago
keypair = KomradeAsymmetricKey()
pubkey,privkey = keypair.pubkey_obj,keypair.privkey_obj
4 years ago
self.log(f'@Keymaker: I have cut for you a private and public asymmetric key pair\nusing the Elliptic Curve algorithm from Themis cryptography library:\n\n(1) {pubkey}\n\n(2) {privkey}{ART_KEY_PAIR}',clear=False,pause=True)
4 years ago
4 years ago
## 3) Have passphrase?
4 years ago
if SHOW_STATUS and not passphrase:
4 years ago
passphrase = self.cli.status_keymaker_part2(name,passphrase,pubkey,privkey,hasher,self)
4 years ago
else:
4 years ago
if not passphrase: passphrase = DEBUG_DEFAULT_PASSPHRASE
4 years ago
while not passphrase:
4 years ago
passphrase=getpass(f'@Keymaker: Enter a memorable password to encrypt your private key with: \n\n@{self.name}: ')
4 years ago
clear_screen()
4 years ago
## 4) Get hashed password
4 years ago
passhash = hasher(passphrase)
4 years ago
self.log(f'''@Keymaker: I have replaced your password with a disguised, hashed version\nusing a salted SHA-256 algorithm from python's hashlib:\n\n\t{make_key_discreet_str(passhash)}''')
4 years ago
## 5) Encrypt private key
4 years ago
privkey_decr = KomradeSymmetricKeyWithPassphrase(passphrase)
4 years ago
privkey_encr = privkey_decr.encrypt(privkey.data)
4 years ago
privkey_encr_obj = KomradeEncryptedAsymmetricPrivateKey(privkey_encr)
4 years ago
self.log(f"@Keymaker: Store your private key on your device hardware ONLY\nas it was encrypted by your password-generated key:\n\n[Encrypted Private Key]\n({make_key_discreet_str(privkey_encr_obj.data_b64)})")
4 years ago
## 6) Test keychain works
4 years ago
#privkey_decr2 = KomradeSymmetricKeyWithPassphrase(passphrase)
#assert privkey_decr2.decrypt(privkey_encr) == privkey.data
4 years ago
self._keychain['pubkey']=pubkey
self._keychain['privkey_encr']=privkey_encr_obj
4 years ago
self._keychain['privkey']=privkey
4 years ago
# self._keychain['privkey_decr']=privkey_decr
4 years ago
# we should be able to reassemble privkey now?
4 years ago
# self.log('this is my keychain now:')
4 years ago
#assert 'privkey' in self.keychain()
4 years ago
self.log('My keychain now looks like:',dict_format(self.keychain()))
4 years ago
# More narration?
if SHOW_STATUS: self.cli.status_keymaker_part3(privkey,privkey_decr,privkey_encr,passphrase)
# 6) Save for now on client -- will delete if fails on server
4 years ago
4 years ago
# storing myself in memory phonebook
# PHONEBOOK[name]=self
4 years ago
## 7) Save data to server
4 years ago
data = {
4 years ago
'name':name,
4 years ago
'pubkey': pubkey.data,
4 years ago
}
4 years ago
self.log('@Keymaker: Store your public key both on your device hardware\nas well as register it with Komrade @Operator on the remote server:\n\n',dict_format(data,tab=2))
4 years ago
4 years ago
# ring operator
4 years ago
# call from phone since I don't have pubkey on record on Op yet
4 years ago
# self.log('my keychain:',self._keychain,pubkey,self.op._keychain)
4 years ago
resp_msg_d = self.ring_ring(
4 years ago
{
'name':name,
'pubkey': pubkey.data,
},
route='register_new_user'
)
4 years ago
if not resp_msg_d.get('success'):
self.log(f'Registration failed. Message from operator was:\n\n{dict_format(resp_msg_d)}')
return
# otherwise, save things on our end
4 years ago
self.log(f'Registration successful. Message from operator was:\n\n{dict_format(resp_msg_d)}')
4 years ago
4 years ago
self.name=resp_msg_d.get('name')
4 years ago
pubkey_b = resp_msg_d.get('pubkey')
4 years ago
assert pubkey_b == pubkey.data
4 years ago
uri_id = pubkey.data_b64
4 years ago
sec_login = resp_msg_d.get('secret_login')
4 years ago
4 years ago
self.log(f'''Now saving name and public key on local device:''')
4 years ago
self.crypt_keys.set(name, pubkey_b, prefix='/pubkey/')
self.crypt_keys.set(uri_id, name, prefix='/name/')
4 years ago
self.crypt_keys.set(uri_id,sec_login,prefix='/secret_login/')
4 years ago
4 years ago
# store privkey pieces
self.crypt_keys.set(uri_id, privkey_encr_obj.data, prefix='/privkey_encr/')
# just to show we used a passphrase -->
self.crypt_keys.set(uri_id, KomradeSymmetricKeyWithPassphrase.__name__, prefix='/privkey_decr/')
4 years ago
# save qr too:
4 years ago
self.save_uri_as_qrcode(uri_id)
4 years ago
# self.log(f'saved public key as QR code to:\n {fnfn}\n\n{qr_str}')
4 years ago
4 years ago
return resp_msg_d
4 years ago
# done!
4 years ago
self.log(f'Congratulations. Welcome, Komrade {self}.')
4 years ago
4 years ago
@property
def secret_login(self):
return self.crypt_keys.get(
4 years ago
self.pubkey.data_b64,
prefix='/secret_login/'
4 years ago
)
4 years ago
def login(self,passphrase=None):
# what keys do I have?
keys = self.keychain()
# self.log('here are my keys:',dict_format(keys))
4 years ago
# check hardware
if not 'pubkey' in keys:
emsg='''Login impossible. I do not have this komrade's public key, much less private one.'''
# self.log()
return {'success':False, 'status':emsg}
if not 'privkey_encr' in keys:
emsg='''Login impossible. I do not have this komrade's private key on this hardware.'''
self.log(emsg)
return {'success':False, 'status':emsg}
4 years ago
if not 'privkey' in keys:
emsg='''Login failed. Private key did not unlock from passphrase.'''
return {'success':False, 'status': emsg}
4 years ago
# compose message
msg = {
'name':self.name,
'pubkey':keys['pubkey'].data,
4 years ago
'secret_login':self.secret_login
}
# ask operator and get response
resp_msg = self.ring_ring(
msg,
route='login'
)
# get result
self.log('Got result back from operator:',resp_msg)
4 years ago
return resp_msg
4 years ago
4 years ago
## MEETING PEOPLE
def find(self,someone):
if type(someone)==str:
return Komrade(name=someone)
if type(someone)==bytes:
return Komrade(pubkey=someone)
self.log('what is type of someoen here?',type(someone))
return someone
def meet(self,someone):
# get person obj
someone = self.find(someone)
self.log('got someone =',someone,type(someone))
4 years ago
def contacts(self):
# who do I know?
return sorted([fn.split('.png')[0] for fn in os.listdir(PATH_QRCODES)])
4 years ago
4 years ago
4 years ago
4 years ago
def ring_ring(self,msg,route=None,**y):
if type(msg)==dict and not ROUTE_KEYNAME in msg:
msg[ROUTE_KEYNAME]=route
return super().ring_ring(msg,caller=self,**y)
4 years ago
4 years ago
def msg(self,someone,something):
# find or boot
someone = Komrade(someone)
self.log(f'found {someone}')
# can we?
if not someone.pubkey:
self.log(f'''Don't know the public key of {someone}!''')
4 years ago
msg_obj = self.compose_msg_to(
something,
someone
4 years ago
)
self.log('composed msg:',msg_obj)
# encrypting
4 years ago
msg_obj.encrypt()
# attaching
direct_msg_data = msg_obj.msg
self.log('going to send only this to op:',direct_msg_data)
# enclosing
msg_to_op = {
'deliver_from':self.pubkey.data_b64,
'deliver_to':someone.pubkey.data_b64,
'deliver_msg':direct_msg_data,
}
self.log('going to send msg to op?',msg_to_op)
4 years ago
return self.ring_ring(
msg_to_op,
route='deliver_msg'
)
4 years ago
4 years ago
def check_msgs(self,inbox=None):
4 years ago
if not self.pubkey and self.privkey:
return {'success':False,'status':'Need to be logged in'}
# checking my own mail I presume?
if not inbox:
inbox=self.pubkey.data_b64
# send info op needs
msg = {
'secret_login':self.secret_login,
'name':self.name,
4 years ago
'pubkey':self.uri,
4 years ago
'inbox':inbox
}
self.log('sending msg to op:',msg)
4 years ago
res = self.ring_ring(msg,route='check_msgs')
4 years ago
self.log('got back response:',res)
4 years ago
# decrypt?
4 years ago
if not res.get('data_encr'):
return {'success':False, 'status':'No data'}
4 years ago
inbox_encr = res['data_encr']
# overwrite my local inbox with encrypted one from op?
self.crypt_keys.set(
self.uri,
inbox_encr,
prefix='/inbox/',
override=True
)
4 years ago
4 years ago
# decrypt inbox?
4 years ago
inbox = SMessage(
self.privkey.data,
self.op.pubkey.data
4 years ago
).unwrap(inbox_encr)
4 years ago
self.log('inbox decrypted:',inbox)
4 years ago
# find the unread ones
4 years ago
unread = []
4 years ago
inbox = inbox.split(b'\n')
for post_id in inbox:
4 years ago
if not post_id: continue
4 years ago
if not self.crypt_keys.get(post_id,prefix='/post/'):
unread.append(post_id)
4 years ago
4 years ago
self.log(f'I {self} have {len(unread)} new messages')
4 years ago
return {
'success':True,
'status':'Inbox retrieved.',
'unread':unread,
'inbox':inbox
}
4 years ago
def read_msg(self,post_id):
# get post
post = self.crypt_keys.get(post_id,prefix='/post/')
if not post:
return {
'success':False,
'status':'Post not found.'
}
# it should be twice decrypted
msg_op2me = Message(
from_whom=self.op,
to_whom=self,
msg=post_encr
)
self.log('assuming this is the message:',msg_op2me)
# decrypt
msg_op2me.decrypt()
4 years ago
4 years ago
self.log('msg_op2me is now')
return msg_op2me
def download_msgs(self,post_ids=[],inbox=None):
4 years ago
if not post_ids:
# get unerad
post_ids = self.check_msgs(inbox).get('unread',[])
if not post_ids:
return {'success':False,'status':'No messages requested'}
# ask Op for them
4 years ago
res = self.ring_ring(
4 years ago
{
'secret_login':self.secret_login,
'name':self.name,
4 years ago
'pubkey':self.uri,
4 years ago
'post_ids':post_ids,
},
4 years ago
route='download_msgs'
4 years ago
)
4 years ago
self.log('got back from op!',res)
if not 'data_encr' or not res['data_encr'] or type(res['data_encr'])!=dict:
return {'success':False, 'status':'No valid data returned.'}
# store -- encrypted!
for post_id,post_encr in res['data_encr'].items():
print('storing...',post_id)
self.crypt_keys.set(
post_id,
post_encr,
prefix='/post/'
)
4 years ago
return msgs
4 years ago
4 years ago
def test_register():
import random
num = random.choice(list(range(0,1000)))
4 years ago
botname=f'marx{str(num).zfill(3)}'
4 years ago
marxbot = Komrade(botname)
# marxbot=Komrade()
4 years ago
marxbot.register(passphrase='boo')
4 years ago
4 years ago
4 years ago
4 years ago
def test_msg():
4 years ago
b = Komrade('bez')
b.login()
4 years ago
print(b.download_msgs())
4 years ago
# z = Komrade('zuckbot')
4 years ago
4 years ago
# b.msg(z,'you ssssssuck')
4 years ago
4 years ago
def test_loading():
4 years ago
z1 = Komrade('elon')
4 years ago
# z1.register()
4 years ago
print(z1.keychain())
4 years ago
# exit()
z2 = Komrade(b'VUVDMgAAAC08BCMVA+0dMJXc66/W7hty669+3/3S61Q1yjmgJW8I0k3lqfDi')
print(z2)
print(z2.keychain())
4 years ago
pprint(PHONEBOOK)
return
# z1.login()
4 years ago
4 years ago
def test_sign():
from pythemis import smessage
b = Komrade('bez')
m = Komrade('marx')
z = Komrade('zuckbot')
msg = b'this is cool. --bez'
signed_msg = smessage.ssign(b.privkey.data, msg)
print(signed_msg)
verified_msg = smessage.sverify(b.pubkey.data, signed_msg)
print(verified_msg)
4 years ago
def test_send():
z = Komrade('zuckbot')
4 years ago
if __name__=='__main__':
4 years ago
test_msg()