sshkeygenerator.cpp 6.24 KB
Newer Older
ck's avatar
ck committed
1
2
3
4
/**************************************************************************
**
** This file is part of Qt Creator
**
con's avatar
con committed
5
** Copyright (c) 2011 Nokia Corporation and/or its subsidiary(-ies).
ck's avatar
ck committed
6
**
hjk's avatar
hjk committed
7
** Contact: Nokia Corporation (info@qt.nokia.com)
ck's avatar
ck committed
8
9
10
11
**
**
** GNU Lesser General Public License Usage
**
hjk's avatar
hjk committed
12
13
14
15
16
17
** This file may be used under the terms of the GNU Lesser General Public
** License version 2.1 as published by the Free Software Foundation and
** appearing in the file LICENSE.LGPL included in the packaging of this file.
** Please review the following information to ensure the GNU Lesser General
** Public License version 2.1 requirements will be met:
** http://www.gnu.org/licenses/old-licenses/lgpl-2.1.html.
ck's avatar
ck committed
18
**
con's avatar
con committed
19
** In addition, as a special exception, Nokia gives you certain additional
hjk's avatar
hjk committed
20
** rights. These rights are described in the Nokia Qt LGPL Exception
con's avatar
con committed
21
22
** version 1.1, included in the file LGPL_EXCEPTION.txt in this package.
**
hjk's avatar
hjk committed
23
24
25
26
27
** Other Usage
**
** Alternatively, this file may be used in accordance with the terms and
** conditions contained in a signed written agreement between you and Nokia.
**
con's avatar
con committed
28
** If you have questions regarding the use of this file, please contact
Tobias Hunger's avatar
Tobias Hunger committed
29
** Nokia at info@qt.nokia.com.
ck's avatar
ck committed
30
31
32
**
**************************************************************************/

33
34
#include "sshkeygenerator.h"

ck's avatar
ck committed
35
36
37
#include "sshbotanconversions_p.h"
#include "sshcapabilities_p.h"
#include "sshpacket_p.h"
38

ck's avatar
ck committed
39
40
41
42
43
44
45
46
#include <botan/auto_rng.h>
#include <botan/bigint.h>
#include <botan/der_enc.h>
#include <botan/dsa.h>
#include <botan/pem.h>
#include <botan/pkcs8.h>
#include <botan/rsa.h>
#include <botan/x509_key.h>
47

ck's avatar
ck committed
48
#include <QtCore/QDateTime>
49
50
51
#include <QtGui/QInputDialog>

#include <string>
52

53
namespace Utils {
54

ck's avatar
ck committed
55
56
using namespace Botan;
using namespace Internal;
57

58
SshKeyGenerator::SshKeyGenerator() : m_type(Rsa)
kh1's avatar
kh1 committed
59
60
{
}
ck's avatar
ck committed
61

62
bool SshKeyGenerator::generateKeys(KeyType type, PrivateKeyFormat format, int keySize)
63
{
kh1's avatar
kh1 committed
64
65
    m_type = type;

ck's avatar
ck committed
66
67
68
    try {
        AutoSeeded_RNG rng;
        KeyPtr key;
kh1's avatar
kh1 committed
69
        if (m_type == Rsa)
ck's avatar
ck committed
70
71
            key = KeyPtr(new RSA_PrivateKey(rng, keySize));
        else
72
73
74
            key = KeyPtr(new DSA_PrivateKey(rng, DL_Group(rng, DL_Group::DSA_Kosherizer, keySize)));
        switch (format) {
        case Pkcs8:
75
            generatePkcs8KeyStrings(key, rng);
76
77
78
79
80
81
            break;
        case OpenSsl:
            generateOpenSslKeyStrings(key);
            break;
        case Mixed:
        default:
82
            generatePkcs8KeyString(key, true, rng);
83
84
85
            generateOpenSslPublicKeyString(key);
        }
        return true;
ck's avatar
ck committed
86
87
    } catch (Botan::Exception &e) {
        m_error = tr("Error generating key: %1").arg(e.what());
88
89
        return false;
    }
ck's avatar
ck committed
90
}
91

92
void SshKeyGenerator::generatePkcs8KeyStrings(const KeyPtr &key, Botan::RandomNumberGenerator &rng)
ck's avatar
ck committed
93
{
94
95
    generatePkcs8KeyString(key, false, rng);
    generatePkcs8KeyString(key, true, rng);
ck's avatar
ck committed
96
97
}

98
99
void SshKeyGenerator::generatePkcs8KeyString(const KeyPtr &key, bool privateKey,
    Botan::RandomNumberGenerator &rng)
ck's avatar
ck committed
100
101
102
103
104
{
    Pipe pipe;
    pipe.start_msg();
    QByteArray *keyData;
    if (privateKey) {
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
        QInputDialog d;
        d.setInputMode(QInputDialog::TextInput);
        d.setTextEchoMode(QLineEdit::Password);
        d.setWindowTitle(tr("Password for Private Key"));
        d.setLabelText(tr("It is recommended that you secure your private key\n"
            "with a password, which you can can enter below."));
        d.setOkButtonText(tr("Encrypt key file"));
        d.setCancelButtonText(tr("Do not encrypt key file"));
        int result = QDialog::Accepted;
        QString password;
        while (result == QDialog::Accepted && password.isEmpty()) {
            result = d.exec();
            password = d.textValue();
        }
        if (result == QDialog::Accepted)
            PKCS8::encrypt_key(*key, pipe, rng, password.toLocal8Bit().data());
        else
            PKCS8::encode(*key, pipe);
ck's avatar
ck committed
123
124
125
126
        keyData = &m_privateKey;
    } else {
        X509::encode(*key, pipe);
        keyData = &m_publicKey;
127
    }
ck's avatar
ck committed
128
129
130
131
132
    pipe.end_msg();
    keyData->resize(pipe.remaining(pipe.message_count() - 1));
    pipe.read(convertByteArray(*keyData), keyData->size(),
        pipe.message_count() - 1);
}
133

134
void SshKeyGenerator::generateOpenSslKeyStrings(const KeyPtr &key)
ck's avatar
ck committed
135
{
136
137
138
139
140
141
142
    generateOpenSslPublicKeyString(key);
    generateOpenSslPrivateKeyString(key);
}

void SshKeyGenerator::generateOpenSslPublicKeyString(const KeyPtr &key)
{
    QList<BigInt> params;
ck's avatar
ck committed
143
    QByteArray keyId;
kh1's avatar
kh1 committed
144
    if (m_type == Rsa) {
145
146
        const QSharedPointer<RSA_PrivateKey> rsaKey = key.dynamicCast<RSA_PrivateKey>();
        params << rsaKey->get_e() << rsaKey->get_n();
ck's avatar
ck committed
147
148
        keyId = SshCapabilities::PubKeyRsa;
    } else {
149
150
        const QSharedPointer<DSA_PrivateKey> dsaKey = key.dynamicCast<DSA_PrivateKey>();
        params << dsaKey->group_p() << dsaKey->group_q() << dsaKey->group_g() << dsaKey->get_y();
ck's avatar
ck committed
151
        keyId = SshCapabilities::PubKeyDss;
152
153
    }

ck's avatar
ck committed
154
    QByteArray publicKeyBlob = AbstractSshPacket::encodeString(keyId);
155
    foreach (const BigInt &b, params)
ck's avatar
ck committed
156
157
158
159
160
        publicKeyBlob += AbstractSshPacket::encodeMpInt(b);
    publicKeyBlob = publicKeyBlob.toBase64();
    const QByteArray id = "QtCreator/"
        + QDateTime::currentDateTime().toString(Qt::ISODate).toUtf8();
    m_publicKey = keyId + ' ' + publicKeyBlob + ' ' + id;
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
}

void SshKeyGenerator::generateOpenSslPrivateKeyString(const KeyPtr &key)
{
    QList<BigInt> params;
    QByteArray keyId;
    const char *label;
    if (m_type == Rsa) {
        const QSharedPointer<RSA_PrivateKey> rsaKey
            = key.dynamicCast<RSA_PrivateKey>();
        params << rsaKey->get_n() << rsaKey->get_e() << rsaKey->get_d() << rsaKey->get_p()
            << rsaKey->get_q();
        keyId = SshCapabilities::PubKeyRsa;
        label = "RSA PRIVATE KEY";
    } else {
        const QSharedPointer<DSA_PrivateKey> dsaKey = key.dynamicCast<DSA_PrivateKey>();
        params << dsaKey->group_p() << dsaKey->group_q() << dsaKey->group_g() << dsaKey->get_y()
            << dsaKey->get_x();
        keyId = SshCapabilities::PubKeyDss;
        label = "DSA PRIVATE KEY";
    }
ck's avatar
ck committed
182
183

    DER_Encoder encoder;
184
185
    encoder.start_cons(SEQUENCE).encode(0U);
    foreach (const BigInt &b, params)
ck's avatar
ck committed
186
187
        encoder.encode(b);
    encoder.end_cons();
188
    m_privateKey = QByteArray(PEM_Code::encode (encoder.get_contents(), label).c_str());
189
190
}

191
} // namespace Utils