fb6c4c5642d602f858c078df787c286250b95b96
[claws.git] / src / ssl_manager.c
1 /*
2  * Claws Mail -- a GTK+ based, lightweight, and fast e-mail client
3  * Copyright (C) 1999-2016 Colin Leroy and the Claws Mail team
4  *
5  * This program is free software; you can redistribute it and/or modify
6  * it under the terms of the GNU General Public License as published by
7  * the Free Software Foundation; either version 3 of the License, or
8  * (at your option) any later version.
9  *
10  * This program is distributed in the hope that it will be useful,
11  * but WITHOUT ANY WARRANTY; without even the implied warranty of
12  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
13  * GNU General Public License for more details.
14  *
15  * You should have received a copy of the GNU General Public License
16  * along with this program. If not, see <http://www.gnu.org/licenses/>.
17  */
18 #ifdef HAVE_CONFIG_H
19 #  include "config.h"
20 #include "claws-features.h"
21 #endif
22
23 #ifdef USE_GNUTLS
24 #include <gtk/gtk.h>
25 #include <glib.h>
26 #include <glib/gi18n.h>
27 #include <gdk/gdkkeysyms.h>
28 #include <sys/types.h>
29 #include <dirent.h>
30
31 #include "ssl_manager.h"
32 #include "ssl_certificate.h"
33 #include "manage_window.h"
34 #include "utils.h"
35 #include "mainwindow.h"
36 #include "alertpanel.h"
37 #include "sslcertwindow.h"
38 #include "prefs_common.h"
39
40 enum {
41         SSL_MANAGER_HOST,
42         SSL_MANAGER_PORT,
43         SSL_MANAGER_CERT,
44         N_SSL_MANAGER_COLUMNS
45 };
46
47
48 static struct SSLManager
49 {
50         GtkWidget *window;
51         GtkWidget *hbox1;
52         GtkWidget *vbox1;
53         GtkWidget *certlist;
54         GtkWidget *view_btn;
55         GtkWidget *delete_btn;
56         GtkWidget *close_btn;
57 } manager;
58
59 static void ssl_manager_view_cb         (GtkWidget *widget, gpointer data);
60 static void ssl_manager_delete_cb       (GtkWidget *widget, gpointer data);
61 static void ssl_manager_close_cb        (GtkWidget *widget, gpointer data);
62 static gboolean key_pressed             (GtkWidget *widget, GdkEventKey *event,
63                                          gpointer data);
64 static void ssl_manager_load_certs      (void);
65 static void ssl_manager_double_clicked(GtkTreeView              *list_view,
66                                         GtkTreePath             *path,
67                                         GtkTreeViewColumn       *column,
68                                         gpointer                 data);
69
70 void ssl_manager_open(MainWindow *mainwin)
71 {
72         if (!manager.window)
73                 ssl_manager_create();
74
75         manage_window_set_transient(GTK_WINDOW(manager.window));
76         gtk_widget_grab_focus(manager.close_btn);
77
78         ssl_manager_load_certs();
79
80         gtk_widget_show(manager.window);
81
82 }
83
84 static GtkListStore* ssl_manager_create_data_store(void)
85 {
86         return gtk_list_store_new(N_SSL_MANAGER_COLUMNS,
87                                   G_TYPE_STRING,
88                                   G_TYPE_STRING,
89                                   G_TYPE_POINTER,
90                                   -1);
91 }
92
93 static void ssl_manager_create_list_view_columns(GtkWidget *list_view)
94 {
95         GtkTreeViewColumn *column;
96         GtkCellRenderer *renderer;
97
98         renderer = gtk_cell_renderer_text_new();
99         column = gtk_tree_view_column_new_with_attributes
100                 (_("Server"),
101                  renderer,
102                  "text", SSL_MANAGER_HOST,
103                  NULL);
104         gtk_tree_view_append_column(GTK_TREE_VIEW(list_view), column);          
105
106         renderer = gtk_cell_renderer_text_new();
107         column = gtk_tree_view_column_new_with_attributes
108                 (_("Port"),
109                  renderer,
110                  "text", SSL_MANAGER_PORT,
111                  NULL);
112         gtk_tree_view_append_column(GTK_TREE_VIEW(list_view), column);          
113 }
114
115 static GtkWidget *ssl_manager_list_view_create  (void)
116 {
117         GtkTreeView *list_view;
118         GtkTreeSelection *selector;
119         GtkTreeModel *model;
120
121         model = GTK_TREE_MODEL(ssl_manager_create_data_store());
122         list_view = GTK_TREE_VIEW(gtk_tree_view_new_with_model(model));
123         g_object_unref(model);  
124         
125         gtk_tree_sortable_set_sort_column_id(GTK_TREE_SORTABLE(model),
126                                              0, GTK_SORT_ASCENDING);
127         gtk_tree_view_set_rules_hint(list_view, prefs_common.use_stripes_everywhere);
128         
129         selector = gtk_tree_view_get_selection(list_view);
130         gtk_tree_selection_set_mode(selector, GTK_SELECTION_BROWSE);
131
132         g_signal_connect(G_OBJECT(list_view), "row_activated",
133                          G_CALLBACK(ssl_manager_double_clicked),
134                          list_view);
135
136         /* create the columns */
137         ssl_manager_create_list_view_columns(GTK_WIDGET(list_view));
138
139         return GTK_WIDGET(list_view);
140
141 }
142
143 void ssl_manager_create(void)
144 {
145         GtkWidget *window;
146         GtkWidget *scroll;
147         GtkWidget *hbox1;
148         GtkWidget *vbox1;
149         GtkWidget *certlist;
150         GtkWidget *view_btn;
151         GtkWidget *delete_btn;
152         GtkWidget *close_btn;
153
154         window = gtkut_window_new(GTK_WINDOW_TOPLEVEL, "ssl_manager");
155         gtk_window_set_title (GTK_WINDOW(window),
156                               _("Saved SSL/TLS certificates"));
157
158         gtk_container_set_border_width (GTK_CONTAINER (window), 8);
159         gtk_window_set_position (GTK_WINDOW (window), GTK_WIN_POS_CENTER);
160         gtk_window_set_resizable(GTK_WINDOW (window), TRUE);
161         g_signal_connect(G_OBJECT(window), "delete_event",
162                          G_CALLBACK(ssl_manager_close_cb), NULL);
163         g_signal_connect(G_OBJECT(window), "key_press_event",
164                          G_CALLBACK(key_pressed), NULL);
165         MANAGE_WINDOW_SIGNALS_CONNECT (window);
166
167         hbox1 = gtk_hbox_new(FALSE, 6);
168         vbox1 = gtk_vbox_new(FALSE, 0);
169         delete_btn = gtk_button_new_from_stock(GTK_STOCK_DELETE);
170
171         g_signal_connect(G_OBJECT(delete_btn), "clicked",
172                          G_CALLBACK(ssl_manager_delete_cb), NULL);
173
174         view_btn = gtk_button_new_from_stock(GTK_STOCK_PROPERTIES);
175         g_signal_connect(G_OBJECT(view_btn), "clicked",
176                          G_CALLBACK(ssl_manager_view_cb), NULL);
177
178         close_btn = gtk_button_new_from_stock(GTK_STOCK_CLOSE);
179         g_signal_connect(G_OBJECT(close_btn), "clicked",
180                          G_CALLBACK(ssl_manager_close_cb), NULL);
181
182         certlist = ssl_manager_list_view_create();
183
184         scroll = gtk_scrolled_window_new (NULL, NULL);
185         gtk_scrolled_window_set_policy (GTK_SCROLLED_WINDOW (scroll),
186                                         GTK_POLICY_NEVER,
187                                         GTK_POLICY_AUTOMATIC);
188         gtk_container_add(GTK_CONTAINER (scroll), certlist);
189
190         gtk_box_pack_start(GTK_BOX(hbox1), scroll, TRUE, TRUE, 0);
191         gtk_box_pack_start(GTK_BOX(hbox1), vbox1, FALSE, FALSE, 0);
192         gtk_box_pack_start(GTK_BOX(vbox1), view_btn, FALSE, FALSE, 4);
193         gtk_box_pack_start(GTK_BOX(vbox1), delete_btn, FALSE, FALSE, 4);
194         gtk_box_pack_end(GTK_BOX(vbox1), close_btn, FALSE, FALSE, 4);
195
196         gtk_widget_show(certlist);
197         gtk_widget_show(scroll);
198         gtk_widget_show(hbox1);
199         gtk_widget_show(vbox1);
200         gtk_widget_show(close_btn);
201         gtk_widget_show(delete_btn);
202         gtk_widget_show(view_btn);
203         gtk_container_add(GTK_CONTAINER (window), hbox1);
204
205         manager.window = window;
206         manager.hbox1 = hbox1;
207         manager.vbox1 = vbox1;
208         manager.certlist = certlist;
209         manager.view_btn = view_btn;
210         manager.delete_btn = delete_btn;
211         manager.close_btn = close_btn;
212
213         gtk_widget_show(window);
214 }
215
216 static gboolean get_serverport(const gchar *str, gchar **server, gchar **port)
217 {
218         const gchar *pos, *prevpos;
219
220         g_return_val_if_fail(str != NULL, FALSE);
221
222         for (prevpos = str, pos = strstr(str, ".") + 1;
223                         pos != NULL;
224                         prevpos = pos, pos = strstr(pos, ".") + 1) {
225                 if (!strcmp(pos, "cert") || !strcmp(pos, "cert.chain")) {
226                         *server = strndup(str, prevpos - str - 1);
227                         *port = strndup(prevpos, pos - prevpos - 1);
228                         return TRUE;
229                 }
230         }
231
232         return FALSE;
233 }
234
235 static char *get_port(const char *str)
236 {
237         const char *pos, *prevpos;
238         char *port;
239
240         g_return_val_if_fail(str != NULL, NULL);
241
242         /* Iterate through all '.'-separated chunks, and the last one
243          * before the .cert or .cert.chain suffix is the port number. */
244         for (prevpos = str, pos = strstr(str, ".") + 1;
245                         pos != NULL;
246                         prevpos = pos, pos = strstr(pos, ".") + 1) {
247                 if (!strcmp(pos, "cert") || !strcmp(pos, "cert.chain")) {
248                         port = strndup(prevpos, pos - prevpos - 1);
249                         return port;
250                 }
251         }
252
253         return NULL;
254 }
255
256 static char *get_fingerprint(const char *str)
257 {
258         char *ret = NULL, *tmp = g_strdup(str);
259         char *previous_pos = NULL, *last_pos = NULL;
260
261         if (!strchr(tmp, ':')) {
262                 /* no fingerprint */
263                 if (strstr(tmp, ".cert"))
264                         *(strstr(tmp, ".cert")+1) = '.';
265         }
266
267         while (tmp && (tmp = strstr(tmp,".")) != NULL) {
268                 tmp++;
269                 previous_pos = last_pos;
270                 last_pos = tmp;
271         }
272         if (last_pos && previous_pos && (int)(last_pos - previous_pos - 1) > 0)
273                 ret = g_strndup(previous_pos, (int)(last_pos - previous_pos - 1));
274         else
275                 ret = NULL;
276         g_free(tmp);
277         return ret;
278         
279 }
280
281 static void ssl_manager_list_view_insert_cert(GtkWidget *list_view,
282                                                   GtkTreeIter *row_iter,
283                                                   gchar *host, 
284                                                   gchar *port,
285                                                   SSLCertificate *cert) 
286 {
287         GtkTreeIter iter;
288         GtkListStore *list_store = GTK_LIST_STORE(gtk_tree_view_get_model
289                                         (GTK_TREE_VIEW(list_view)));
290
291         if (row_iter == NULL) {
292                 /* append new */
293                 gtk_list_store_append(list_store, &iter);
294                 gtk_list_store_set(list_store, &iter,
295                                    SSL_MANAGER_HOST, host,
296                                    SSL_MANAGER_PORT, port,
297                                    SSL_MANAGER_CERT, cert,
298                                    -1);
299         } else {
300                 gtk_list_store_set(list_store, row_iter,
301                                    SSL_MANAGER_HOST, host,
302                                    SSL_MANAGER_PORT, port,
303                                    SSL_MANAGER_CERT, cert,
304                                    -1);
305         }
306 }
307
308 static void ssl_manager_load_certs (void) 
309 {
310         GDir *dir;
311         const gchar *d;
312         GError *error = NULL;
313         gchar *path;
314         int row = 0;
315         GtkListStore *store;
316
317         store = GTK_LIST_STORE(gtk_tree_view_get_model
318                                 (GTK_TREE_VIEW(manager.certlist)));
319
320         gtk_list_store_clear(store);
321
322         path = g_strconcat(get_rc_dir(), G_DIR_SEPARATOR_S, 
323                           "certs", G_DIR_SEPARATOR_S, NULL);
324
325         if((dir = g_dir_open(path, 0, &error)) == NULL) {
326                 debug_print("couldn't open dir '%s': %s (%d)\n", path,
327                                 error->message, error->code);
328                 g_error_free(error);
329                 return;
330         }
331         
332         while ((d = g_dir_read_name(dir)) != NULL) {
333                 gchar *server = NULL, *port = NULL, *fp = NULL;
334                 SSLCertificate *cert;
335
336                 if(strstr(d, ".cert") != d + (strlen(d) - strlen(".cert"))) 
337                         continue;
338
339                 get_serverport(d, &server, &port);
340                 fp = get_fingerprint(d);
341                 
342                 cert = ssl_certificate_find(server, atoi(port), fp);
343
344                 ssl_manager_list_view_insert_cert(manager.certlist, NULL, 
345                                                   server, port, cert);
346                 
347                 g_free(server);
348                 g_free(port);
349                 g_free(fp);
350                 row++;
351         }
352         g_dir_close(dir);
353         g_free(path);
354 }
355
356 static void ssl_manager_close(void) 
357 {
358         gtk_widget_hide(manager.window);
359 }
360
361 static void ssl_manager_close_cb(GtkWidget *widget,
362                                  gpointer data) 
363 {
364         ssl_manager_close();
365 }
366
367 static gboolean key_pressed(GtkWidget *widget, GdkEventKey *event, gpointer data)
368 {
369         if (event && event->keyval == GDK_KEY_Escape)
370                 ssl_manager_close();
371         return FALSE;
372 }
373
374 static void ssl_manager_double_clicked(GtkTreeView              *list_view,
375                                         GtkTreePath             *path,
376                                         GtkTreeViewColumn       *column,
377                                         gpointer                 data)
378 {
379         SSLCertificate *cert;
380         GtkTreeIter iter;
381         GtkTreeModel *model = gtk_tree_view_get_model(list_view);
382
383         if (!gtk_tree_model_get_iter(model, &iter, path))
384                 return;
385
386         gtk_tree_model_get(model, &iter, 
387                            SSL_MANAGER_CERT, &cert,
388                            -1);
389
390         if (!cert)
391                 return;
392
393         sslcertwindow_show_cert(cert);
394
395         return;
396 }
397
398
399
400 static void ssl_manager_delete_cb(GtkWidget *widget, 
401                               gpointer data) 
402 {
403         SSLCertificate *cert;
404         int val;
405         GtkTreeIter sel;
406         GtkTreeModel *model;
407
408         if (!gtk_tree_selection_get_selected(gtk_tree_view_get_selection
409                                 (GTK_TREE_VIEW(manager.certlist)),
410                                 &model, &sel))
411                 return;
412         
413         gtk_tree_model_get(model, &sel,
414                            SSL_MANAGER_CERT, &cert,
415                            -1);
416         if (!cert)
417                 return;
418
419         val = alertpanel_full(_("Delete certificate"),
420                               _("Do you really want to delete this certificate?"),
421                               GTK_STOCK_CANCEL, GTK_STOCK_DELETE, NULL, FALSE,
422                               NULL, ALERT_WARNING, G_ALERTDEFAULT);
423
424                              
425         if (val != G_ALERTALTERNATE)
426                 return;
427         
428         ssl_certificate_delete_from_disk(cert);
429         ssl_certificate_destroy(cert);
430         gtk_list_store_remove(GTK_LIST_STORE(model), &sel);
431 }
432
433 static void ssl_manager_view_cb(GtkWidget *widget, 
434                                 gpointer data) 
435 {
436         SSLCertificate *cert;
437         GtkTreeIter sel;
438         GtkTreeModel *model;
439
440         if (!gtk_tree_selection_get_selected(gtk_tree_view_get_selection
441                                 (GTK_TREE_VIEW(manager.certlist)),
442                                 &model, &sel))
443                 return;
444         
445         gtk_tree_model_get(model, &sel,
446                            SSL_MANAGER_CERT, &cert,
447                            -1);
448         if (!cert)
449                 return;
450
451         sslcertwindow_show_cert(cert);
452 }
453 #endif