TrustKeysActivity.java

  1package eu.siacs.conversations.ui;
  2
  3import android.app.ActionBar;
  4import android.content.Intent;
  5import android.os.Bundle;
  6import android.util.Log;
  7import android.view.Gravity;
  8import android.view.Menu;
  9import android.view.MenuItem;
 10import android.view.View;
 11import android.view.View.OnClickListener;
 12import android.widget.Button;
 13import android.widget.CompoundButton;
 14import android.widget.LinearLayout;
 15import android.widget.TextView;
 16import android.widget.Toast;
 17
 18import com.google.zxing.integration.android.IntentIntegrator;
 19
 20import org.whispersystems.libsignal.IdentityKey;
 21
 22import java.util.ArrayList;
 23import java.util.Arrays;
 24import java.util.HashMap;
 25import java.util.List;
 26import java.util.Map;
 27import java.util.Set;
 28import java.util.concurrent.atomic.AtomicBoolean;
 29
 30import eu.siacs.conversations.Config;
 31import eu.siacs.conversations.R;
 32import eu.siacs.conversations.crypto.axolotl.AxolotlService;
 33import eu.siacs.conversations.crypto.axolotl.FingerprintStatus;
 34import eu.siacs.conversations.entities.Account;
 35import eu.siacs.conversations.entities.Conversation;
 36import eu.siacs.conversations.utils.CryptoHelper;
 37import eu.siacs.conversations.utils.XmppUri;
 38import eu.siacs.conversations.xmpp.OnKeyStatusUpdated;
 39import eu.siacs.conversations.xmpp.jid.InvalidJidException;
 40import eu.siacs.conversations.xmpp.jid.Jid;
 41
 42public class TrustKeysActivity extends OmemoActivity implements OnKeyStatusUpdated {
 43	private List<Jid> contactJids;
 44
 45	private Account mAccount;
 46	private Conversation mConversation;
 47	private TextView keyErrorMessage;
 48	private LinearLayout keyErrorMessageCard;
 49	private TextView ownKeysTitle;
 50	private LinearLayout ownKeys;
 51	private LinearLayout ownKeysCard;
 52	private LinearLayout foreignKeys;
 53	private Button mSaveButton;
 54	private Button mCancelButton;
 55
 56	private AtomicBoolean mUseCameraHintShown = new AtomicBoolean(false);
 57
 58	private AxolotlService.FetchStatus lastFetchReport = AxolotlService.FetchStatus.SUCCESS;
 59
 60	private final Map<String, Boolean> ownKeysToTrust = new HashMap<>();
 61	private final Map<Jid,Map<String, Boolean>> foreignKeysToTrust = new HashMap<>();
 62
 63	private final OnClickListener mSaveButtonListener = new OnClickListener() {
 64		@Override
 65		public void onClick(View v) {
 66			commitTrusts();
 67			finishOk();
 68		}
 69	};
 70
 71	private final OnClickListener mCancelButtonListener = new OnClickListener() {
 72		@Override
 73		public void onClick(View v) {
 74			setResult(RESULT_CANCELED);
 75			finish();
 76		}
 77	};
 78	private Toast mUseCameraHintToast = null;
 79
 80	@Override
 81	protected void refreshUiReal() {
 82		invalidateOptionsMenu();
 83		populateView();
 84	}
 85
 86	@Override
 87	protected void onCreate(final Bundle savedInstanceState) {
 88		super.onCreate(savedInstanceState);
 89		setContentView(R.layout.activity_trust_keys);
 90		this.contactJids = new ArrayList<>();
 91		for(String jid : getIntent().getStringArrayExtra("contacts")) {
 92			try {
 93				this.contactJids.add(Jid.fromString(jid));
 94			} catch (InvalidJidException e) {
 95				e.printStackTrace();
 96			}
 97		}
 98
 99		keyErrorMessageCard = (LinearLayout) findViewById(R.id.key_error_message_card);
100		keyErrorMessage = (TextView) findViewById(R.id.key_error_message);
101		ownKeysTitle = (TextView) findViewById(R.id.own_keys_title);
102		ownKeys = (LinearLayout) findViewById(R.id.own_keys_details);
103		ownKeysCard = (LinearLayout) findViewById(R.id.own_keys_card);
104		foreignKeys = (LinearLayout) findViewById(R.id.foreign_keys);
105		mCancelButton = (Button) findViewById(R.id.cancel_button);
106		mCancelButton.setOnClickListener(mCancelButtonListener);
107		mSaveButton = (Button) findViewById(R.id.save_button);
108		mSaveButton.setOnClickListener(mSaveButtonListener);
109
110
111		if (getActionBar() != null) {
112			getActionBar().setHomeButtonEnabled(true);
113			getActionBar().setDisplayHomeAsUpEnabled(true);
114		}
115
116		if (savedInstanceState != null) {
117			mUseCameraHintShown.set(savedInstanceState.getBoolean("camera_hint_shown",false));
118		}
119	}
120
121	@Override
122	public void onSaveInstanceState(Bundle savedInstanceState) {
123		savedInstanceState.putBoolean("camera_hint_shown", mUseCameraHintShown.get());
124		super.onSaveInstanceState(savedInstanceState);
125	}
126
127	@Override
128	public boolean onCreateOptionsMenu(Menu menu) {
129		getMenuInflater().inflate(R.menu.trust_keys, menu);
130		MenuItem scanQrCode = menu.findItem(R.id.action_scan_qr_code);
131		scanQrCode.setVisible(ownKeysToTrust.size() > 0 || foreignActuallyHasKeys());
132		return super.onCreateOptionsMenu(menu);
133	}
134
135	private void showCameraToast() {
136		mUseCameraHintToast = Toast.makeText(this,R.string.use_camera_icon_to_scan_barcode,Toast.LENGTH_LONG);
137		ActionBar actionBar = getActionBar();
138		mUseCameraHintToast.setGravity(Gravity.TOP | Gravity.END, 0 ,actionBar == null ? 0 : actionBar.getHeight());
139		mUseCameraHintToast.show();
140	}
141
142	@Override
143	public boolean onOptionsItemSelected(MenuItem item) {
144		switch (item.getItemId()) {
145			case R.id.action_scan_qr_code:
146				if (hasPendingKeyFetches()) {
147					Toast.makeText(this, R.string.please_wait_for_keys_to_be_fetched, Toast.LENGTH_SHORT).show();
148				} else {
149					new IntentIntegrator(this).initiateScan(Arrays.asList("AZTEC","QR_CODE"));
150					return true;
151				}
152		}
153		return super.onOptionsItemSelected(item);
154	}
155
156	@Override
157	protected void onStop() {
158		super.onStop();
159		if (mUseCameraHintToast != null) {
160			mUseCameraHintToast.cancel();
161		}
162	}
163
164	@Override
165	protected void processFingerprintVerification(XmppUri uri) {
166		if (mConversation != null
167				&& mAccount != null
168				&& uri.hasFingerprints()
169				&& mAccount.getAxolotlService().getCryptoTargets(mConversation).contains(uri.getJid())) {
170			boolean performedVerification = xmppConnectionService.verifyFingerprints(mAccount.getRoster().getContact(uri.getJid()),uri.getFingerprints());
171			boolean keys = reloadFingerprints();
172			if (performedVerification && !keys && !hasNoOtherTrustedKeys() && !hasPendingKeyFetches()) {
173				Toast.makeText(this,R.string.all_omemo_keys_have_been_verified, Toast.LENGTH_SHORT).show();
174				finishOk();
175				return;
176			} else if (performedVerification) {
177				Toast.makeText(this,R.string.verified_fingerprints,Toast.LENGTH_SHORT).show();
178			}
179		} else {
180			reloadFingerprints();
181			Log.d(Config.LOGTAG,"xmpp uri was: "+uri.getJid()+" has Fingerprints: "+Boolean.toString(uri.hasFingerprints()));
182			Toast.makeText(this,R.string.barcode_does_not_contain_fingerprints_for_this_conversation,Toast.LENGTH_SHORT).show();
183		}
184		populateView();
185	}
186
187	private void populateView() {
188		setTitle(getString(R.string.trust_omemo_fingerprints));
189		ownKeys.removeAllViews();
190		foreignKeys.removeAllViews();
191		boolean hasOwnKeys = false;
192		boolean hasForeignKeys = false;
193		for(final String fingerprint : ownKeysToTrust.keySet()) {
194			hasOwnKeys = true;
195			addFingerprintRowWithListeners(ownKeys, mAccount, fingerprint, false,
196					FingerprintStatus.createActive(ownKeysToTrust.get(fingerprint)), false, false,
197					new CompoundButton.OnCheckedChangeListener() {
198						@Override
199						public void onCheckedChanged(CompoundButton buttonView, boolean isChecked) {
200							ownKeysToTrust.put(fingerprint, isChecked);
201							// own fingerprints have no impact on locked status.
202						}
203					}
204			);
205		}
206
207		synchronized (this.foreignKeysToTrust) {
208			for (Map.Entry<Jid, Map<String, Boolean>> entry : foreignKeysToTrust.entrySet()) {
209				hasForeignKeys = true;
210				final LinearLayout layout = (LinearLayout) getLayoutInflater().inflate(R.layout.keys_card, foreignKeys, false);
211				final Jid jid = entry.getKey();
212				final TextView header = (TextView) layout.findViewById(R.id.foreign_keys_title);
213				final LinearLayout keysContainer = (LinearLayout) layout.findViewById(R.id.foreign_keys_details);
214				final TextView informNoKeys = (TextView) layout.findViewById(R.id.no_keys_to_accept);
215				header.setText(jid.toString());
216				final Map<String, Boolean> fingerprints = entry.getValue();
217				for (final String fingerprint : fingerprints.keySet()) {
218					addFingerprintRowWithListeners(keysContainer, mAccount, fingerprint, false,
219							FingerprintStatus.createActive(fingerprints.get(fingerprint)), false, false,
220							new CompoundButton.OnCheckedChangeListener() {
221								@Override
222								public void onCheckedChanged(CompoundButton buttonView, boolean isChecked) {
223									fingerprints.put(fingerprint, isChecked);
224									lockOrUnlockAsNeeded();
225								}
226							}
227					);
228				}
229				if (fingerprints.size() == 0) {
230					informNoKeys.setVisibility(View.VISIBLE);
231					if (hasNoOtherTrustedKeys(jid)) {
232						if (!mAccount.getRoster().getContact(jid).mutualPresenceSubscription()) {
233							informNoKeys.setText(R.string.error_no_keys_to_trust_presence);
234						} else {
235							informNoKeys.setText(R.string.error_no_keys_to_trust_server_error);
236						}
237					} else {
238						informNoKeys.setText(getString(R.string.no_keys_just_confirm, mAccount.getRoster().getContact(jid).getDisplayName()));
239					}
240				} else {
241					informNoKeys.setVisibility(View.GONE);
242				}
243				foreignKeys.addView(layout);
244			}
245		}
246
247		if ((hasOwnKeys || foreignActuallyHasKeys()) && mUseCameraHintShown.compareAndSet(false,true)) {
248			showCameraToast();
249		}
250
251		ownKeysTitle.setText(mAccount.getJid().toBareJid().toString());
252		ownKeysCard.setVisibility(hasOwnKeys ? View.VISIBLE : View.GONE);
253		foreignKeys.setVisibility(hasForeignKeys ? View.VISIBLE : View.GONE);
254		if(hasPendingKeyFetches()) {
255			setFetching();
256			lock();
257		} else {
258			if (!hasForeignKeys && hasNoOtherTrustedKeys()) {
259				keyErrorMessageCard.setVisibility(View.VISIBLE);
260				if (lastFetchReport == AxolotlService.FetchStatus.ERROR
261						|| mAccount.getAxolotlService().fetchMapHasErrors(contactJids)) {
262					if (anyWithoutMutualPresenceSubscription(contactJids)) {
263						keyErrorMessage.setText(R.string.error_no_keys_to_trust_presence);
264					} else {
265						keyErrorMessage.setText(R.string.error_no_keys_to_trust_server_error);
266					}
267				} else {
268					keyErrorMessage.setText(R.string.error_no_keys_to_trust);
269				}
270				ownKeys.removeAllViews();
271				ownKeysCard.setVisibility(View.GONE);
272				foreignKeys.removeAllViews();
273				foreignKeys.setVisibility(View.GONE);
274			}
275			lockOrUnlockAsNeeded();
276			setDone();
277		}
278	}
279
280	private boolean anyWithoutMutualPresenceSubscription(List<Jid> contactJids){
281		for(Jid jid : contactJids) {
282			if (!mAccount.getRoster().getContact(jid).mutualPresenceSubscription()) {
283				return true;
284			}
285		}
286		return false;
287	}
288
289	private boolean foreignActuallyHasKeys() {
290		synchronized (this.foreignKeysToTrust) {
291			for (Map.Entry<Jid, Map<String, Boolean>> entry : foreignKeysToTrust.entrySet()) {
292				if (entry.getValue().size() > 0) {
293					return true;
294				}
295			}
296		}
297		return false;
298	}
299
300	private boolean reloadFingerprints() {
301		List<Jid> acceptedTargets = mConversation == null ? new ArrayList<Jid>() : mConversation.getAcceptedCryptoTargets();
302		ownKeysToTrust.clear();
303		AxolotlService service = this.mAccount.getAxolotlService();
304		Set<IdentityKey> ownKeysSet = service.getKeysWithTrust(FingerprintStatus.createActiveUndecided());
305		for(final IdentityKey identityKey : ownKeysSet) {
306			final String fingerprint = CryptoHelper.bytesToHex(identityKey.getPublicKey().serialize());
307			if(!ownKeysToTrust.containsKey(fingerprint)) {
308				ownKeysToTrust.put(fingerprint, false);
309			}
310		}
311		synchronized (this.foreignKeysToTrust) {
312			foreignKeysToTrust.clear();
313			for (Jid jid : contactJids) {
314				Set<IdentityKey> foreignKeysSet = service.getKeysWithTrust(FingerprintStatus.createActiveUndecided(), jid);
315				if (hasNoOtherTrustedKeys(jid) && ownKeysSet.size() == 0) {
316					foreignKeysSet.addAll(service.getKeysWithTrust(FingerprintStatus.createActive(false), jid));
317				}
318				Map<String, Boolean> foreignFingerprints = new HashMap<>();
319				for (final IdentityKey identityKey : foreignKeysSet) {
320					final String fingerprint = CryptoHelper.bytesToHex(identityKey.getPublicKey().serialize());
321					if (!foreignFingerprints.containsKey(fingerprint)) {
322						foreignFingerprints.put(fingerprint, false);
323					}
324				}
325				if (foreignFingerprints.size() > 0 || !acceptedTargets.contains(jid)) {
326					foreignKeysToTrust.put(jid, foreignFingerprints);
327				}
328			}
329		}
330		return ownKeysSet.size() + foreignKeysToTrust.size() > 0;
331	}
332
333	public void onBackendConnected() {
334		Intent intent = getIntent();
335		this.mAccount = extractAccount(intent);
336		if (this.mAccount != null && intent != null) {
337			String uuid = intent.getStringExtra("conversation");
338			this.mConversation = xmppConnectionService.findConversationByUuid(uuid);
339			if (this.mPendingFingerprintVerificationUri != null) {
340				processFingerprintVerification(this.mPendingFingerprintVerificationUri);
341				this.mPendingFingerprintVerificationUri = null;
342			} else {
343				reloadFingerprints();
344				populateView();
345				invalidateOptionsMenu();
346			}
347		}
348	}
349
350	private boolean hasNoOtherTrustedKeys() {
351		return mAccount == null || mAccount.getAxolotlService().anyTargetHasNoTrustedKeys(contactJids);
352	}
353
354	private boolean hasNoOtherTrustedKeys(Jid contact) {
355		return mAccount == null || mAccount.getAxolotlService().getNumTrustedKeys(contact) == 0;
356	}
357
358	private boolean hasPendingKeyFetches() {
359		return mAccount != null && mAccount.getAxolotlService().hasPendingKeyFetches(mAccount, contactJids);
360	}
361
362
363	@Override
364	public void onKeyStatusUpdated(final AxolotlService.FetchStatus report) {
365		final boolean keysToTrust = reloadFingerprints();
366		if (report != null) {
367			lastFetchReport = report;
368			runOnUiThread(new Runnable() {
369				@Override
370				public void run() {
371					if (mUseCameraHintToast != null && !keysToTrust) {
372						mUseCameraHintToast.cancel();
373					}
374					switch (report) {
375						case ERROR:
376							Toast.makeText(TrustKeysActivity.this,R.string.error_fetching_omemo_key,Toast.LENGTH_SHORT).show();
377							break;
378						case SUCCESS_TRUSTED:
379							Toast.makeText(TrustKeysActivity.this,R.string.blindly_trusted_omemo_keys,Toast.LENGTH_LONG).show();
380							break;
381						case SUCCESS_VERIFIED:
382							Toast.makeText(TrustKeysActivity.this,
383									Config.X509_VERIFICATION ? R.string.verified_omemo_key_with_certificate : R.string.all_omemo_keys_have_been_verified,
384									Toast.LENGTH_LONG).show();
385							break;
386					}
387				}
388			});
389
390		}
391		if (keysToTrust || hasPendingKeyFetches() || hasNoOtherTrustedKeys()) {
392			refreshUi();
393		} else {
394			runOnUiThread(new Runnable() {
395				@Override
396				public void run() {
397					finishOk();
398				}
399			});
400
401		}
402	}
403
404	private void finishOk() {
405		Intent data = new Intent();
406		data.putExtra("choice", getIntent().getIntExtra("choice", ConversationActivity.ATTACHMENT_CHOICE_INVALID));
407		setResult(RESULT_OK, data);
408		finish();
409	}
410
411	private void commitTrusts() {
412		for(final String fingerprint :ownKeysToTrust.keySet()) {
413			mAccount.getAxolotlService().setFingerprintTrust(
414					fingerprint,
415					FingerprintStatus.createActive(ownKeysToTrust.get(fingerprint)));
416		}
417		List<Jid> acceptedTargets = mConversation == null ? new ArrayList<Jid>() : mConversation.getAcceptedCryptoTargets();
418		synchronized (this.foreignKeysToTrust) {
419			for (Map.Entry<Jid, Map<String, Boolean>> entry : foreignKeysToTrust.entrySet()) {
420				Jid jid = entry.getKey();
421				Map<String, Boolean> value = entry.getValue();
422				if (!acceptedTargets.contains(jid)) {
423					acceptedTargets.add(jid);
424				}
425				for (final String fingerprint : value.keySet()) {
426					mAccount.getAxolotlService().setFingerprintTrust(
427							fingerprint,
428							FingerprintStatus.createActive(value.get(fingerprint)));
429				}
430			}
431		}
432		if (mConversation != null && mConversation.getMode() == Conversation.MODE_MULTI) {
433			mConversation.setAcceptedCryptoTargets(acceptedTargets);
434			xmppConnectionService.updateConversation(mConversation);
435		}
436	}
437
438	private void unlock() {
439		mSaveButton.setEnabled(true);
440		mSaveButton.setTextColor(getPrimaryTextColor());
441	}
442
443	private void lock() {
444		mSaveButton.setEnabled(false);
445		mSaveButton.setTextColor(getSecondaryTextColor());
446	}
447
448	private void lockOrUnlockAsNeeded() {
449		synchronized (this.foreignKeysToTrust) {
450			for (Jid jid : contactJids) {
451				Map<String, Boolean> fingerprints = foreignKeysToTrust.get(jid);
452				if (hasNoOtherTrustedKeys(jid) && (fingerprints == null || !fingerprints.values().contains(true))) {
453					lock();
454					return;
455				}
456			}
457		}
458		unlock();
459
460	}
461
462	private void setDone() {
463		mSaveButton.setText(getString(R.string.done));
464	}
465
466	private void setFetching() {
467		mSaveButton.setText(getString(R.string.fetching_keys));
468	}
469}