Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 1 | /* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */ |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 2 | /* |
Davide Pesavento | 9510c91 | 2024-02-25 17:50:05 -0500 | [diff] [blame^] | 3 | * Copyright (c) 2017-2024, Regents of the University of California. |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 4 | * |
| 5 | * This file is part of ndncert, a certificate management system based on NDN. |
| 6 | * |
| 7 | * ndncert is free software: you can redistribute it and/or modify it under the terms |
| 8 | * of the GNU General Public License as published by the Free Software Foundation, either |
| 9 | * version 3 of the License, or (at your option) any later version. |
| 10 | * |
| 11 | * ndncert is distributed in the hope that it will be useful, but WITHOUT ANY |
| 12 | * WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A |
| 13 | * PARTICULAR PURPOSE. See the GNU General Public License for more details. |
| 14 | * |
| 15 | * You should have received copies of the GNU General Public License along with |
| 16 | * ndncert, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>. |
| 17 | * |
| 18 | * See AUTHORS.md for complete list of ndncert authors and contributors. |
| 19 | */ |
| 20 | |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 21 | #include "requester-request.hpp" |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 22 | |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 23 | #include <ndn-cxx/face.hpp> |
| 24 | #include <ndn-cxx/security/key-chain.hpp> |
Zhiyi Zhang | 90c7578 | 2020-10-06 15:04:03 -0700 | [diff] [blame] | 25 | #include <ndn-cxx/security/verification-helpers.hpp> |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 26 | |
Davide Pesavento | 9510c91 | 2024-02-25 17:50:05 -0500 | [diff] [blame^] | 27 | #include <boost/algorithm/string/case_conv.hpp> |
| 28 | #include <boost/asio/signal_set.hpp> |
Davide Pesavento | b48bbda | 2020-07-27 19:41:37 -0400 | [diff] [blame] | 29 | #include <boost/program_options/options_description.hpp> |
| 30 | #include <boost/program_options/parsers.hpp> |
| 31 | #include <boost/program_options/variables_map.hpp> |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 32 | |
Zhiyi Zhang | 48f2378 | 2020-09-28 12:11:24 -0700 | [diff] [blame] | 33 | #include <iostream> |
Zhiyi Zhang | 48f2378 | 2020-09-28 12:11:24 -0700 | [diff] [blame] | 34 | |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 35 | namespace ndncert::requester { |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 36 | |
Zhiyi Zhang | 48f2378 | 2020-09-28 12:11:24 -0700 | [diff] [blame] | 37 | static void |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 38 | selectCaProfile(const std::string& configFilePath); |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 39 | |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 40 | static void |
| 41 | runProbe(CaProfile profile); |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 42 | |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 43 | static void |
| 44 | runNew(CaProfile profile, Name identityName); |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 45 | |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 46 | static void |
| 47 | runChallenge(const std::string& challengeType); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 48 | |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 49 | static size_t nStep = 1; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 50 | static const std::string defaultChallenge = "email"; |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 51 | static ndn::Face face; |
| 52 | static ndn::KeyChain keyChain; |
| 53 | static std::shared_ptr<Request> requesterState; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 54 | static std::shared_ptr<std::multimap<std::string, std::string>> capturedProbeParams; |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 55 | static std::shared_ptr<Certificate> trustedCert; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 56 | static Name newlyCreatedIdentityName; |
| 57 | static Name newlyCreatedKeyName; |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 58 | |
Zhiyi Zhang | 4604983 | 2020-09-28 17:08:12 -0700 | [diff] [blame] | 59 | static void |
tylerliu | 4022633 | 2020-11-11 15:37:16 -0800 | [diff] [blame] | 60 | captureParams(std::multimap<std::string, std::string>& requirement) |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 61 | { |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 62 | std::list<std::string> results; |
Zhiyi Zhang | 4604983 | 2020-09-28 17:08:12 -0700 | [diff] [blame] | 63 | for (auto& item : requirement) { |
| 64 | std::cerr << std::get<1>(item) << std::endl; |
| 65 | std::string captured; |
| 66 | getline(std::cin, captured); |
| 67 | std::get<1>(item) = captured; |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 68 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 69 | std::cerr << "Got it. This is what you've provided:" << std::endl; |
Zhiyi Zhang | 4604983 | 2020-09-28 17:08:12 -0700 | [diff] [blame] | 70 | for (const auto& item : requirement) { |
| 71 | std::cerr << std::get<0>(item) << " : " << std::get<1>(item) << std::endl; |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 72 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 73 | } |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 74 | |
tylerliu | 4022633 | 2020-11-11 15:37:16 -0800 | [diff] [blame] | 75 | static std::multimap<std::string, std::string> |
Zhiyi Zhang | 2de4ea3 | 2020-12-13 17:45:25 -0800 | [diff] [blame] | 76 | captureParams(const std::vector<std::string>& requirement) |
Zhiyi Zhang | 547c851 | 2019-06-18 23:46:14 -0700 | [diff] [blame] | 77 | { |
tylerliu | 4022633 | 2020-11-11 15:37:16 -0800 | [diff] [blame] | 78 | std::multimap<std::string, std::string> results; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 79 | for (const auto& r : requirement) { |
tylerliu | 4022633 | 2020-11-11 15:37:16 -0800 | [diff] [blame] | 80 | results.emplace(r, "Please input: " + r); |
Zhiyi Zhang | 547c851 | 2019-06-18 23:46:14 -0700 | [diff] [blame] | 81 | } |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 82 | captureParams(results); |
Zhiyi Zhang | 547c851 | 2019-06-18 23:46:14 -0700 | [diff] [blame] | 83 | return results; |
| 84 | } |
| 85 | |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 86 | static int |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 87 | captureValidityPeriod(time::hours maxValidityPeriod) |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 88 | { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 89 | std::cerr << "\n***************************************\n" |
| 90 | << "Step " << nStep++ |
Zhiyi Zhang | ad9e04f | 2020-03-27 12:04:31 -0700 | [diff] [blame] | 91 | << ": Please type in your expected validity period of your certificate." |
| 92 | << " Type the number of hours (168 for week, 730 for month, 8760 for year)." |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 93 | << " The CA may reject your application if your expected period is too long." |
| 94 | << " The maximum validity period allowed by this CA is " << maxValidityPeriod << "."<< std::endl; |
Zhiyi Zhang | 87ded73 | 2021-01-08 14:05:24 -0800 | [diff] [blame] | 95 | size_t count = 0; |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 96 | while (count < 3) { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 97 | std::string periodStr = ""; |
| 98 | getline(std::cin, periodStr); |
| 99 | try { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 100 | return std::stoul(periodStr); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 101 | } |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 102 | catch (const std::exception&) { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 103 | std::cerr << "Your input is invalid. Try again: " << std::endl; |
Zhiyi Zhang | 87ded73 | 2021-01-08 14:05:24 -0800 | [diff] [blame] | 104 | count++; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 105 | } |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 106 | } |
Zhiyi Zhang | 87ded73 | 2021-01-08 14:05:24 -0800 | [diff] [blame] | 107 | std::cerr << "Invalid input for too many times, exit. " << std::endl; |
| 108 | exit(1); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 109 | } |
| 110 | |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 111 | static Name |
| 112 | captureKeyName(ndn::security::pib::Identity& identity, ndn::security::pib::Key& defaultKey) |
| 113 | { |
| 114 | size_t count = 0; |
| 115 | std::cerr << "***************************************\n" |
| 116 | << "Step " << nStep++ << ": KEY SELECTION" << std::endl; |
| 117 | for (const auto& key : identity.getKeys()) { |
| 118 | std::cerr << "> Index: " << count++ << std::endl |
| 119 | << ">> Key Name:"; |
| 120 | if (key == defaultKey) { |
| 121 | std::cerr << " +->* "; |
| 122 | } |
| 123 | else { |
| 124 | std::cerr << " +-> "; |
| 125 | } |
| 126 | std::cerr << key.getName() << std::endl; |
| 127 | } |
| 128 | |
| 129 | std::cerr << "Please type in the key's index that you want to certify or type in NEW if you want to certify a new key:\n"; |
| 130 | std::string indexStr = ""; |
| 131 | std::string indexStrLower = ""; |
| 132 | size_t keyIndex; |
| 133 | getline(std::cin, indexStr); |
| 134 | |
| 135 | indexStrLower = indexStr; |
| 136 | boost::algorithm::to_lower(indexStrLower); |
| 137 | if (indexStrLower == "new") { |
| 138 | auto newlyCreatedKey = keyChain.createKey(identity); |
| 139 | newlyCreatedKeyName = newlyCreatedKey.getName(); |
| 140 | std::cerr << "New key generated: " << newlyCreatedKeyName << std::endl; |
| 141 | return newlyCreatedKeyName; |
| 142 | } |
| 143 | else { |
| 144 | try { |
| 145 | keyIndex = std::stoul(indexStr); |
| 146 | } |
| 147 | catch (const std::exception&) { |
| 148 | std::cerr << "Your input is neither NEW nor a valid index. Exit" << std::endl; |
| 149 | exit(1); |
| 150 | } |
| 151 | |
| 152 | if (keyIndex >= count) { |
| 153 | std::cerr << "Your input is not an existing index. Exit" << std::endl; |
| 154 | exit(1); |
| 155 | } |
| 156 | else { |
| 157 | auto itemIterator = identity.getKeys().begin(); |
| 158 | std::advance(itemIterator, keyIndex); |
| 159 | auto targetKeyItem = *itemIterator; |
| 160 | return targetKeyItem.getName(); |
| 161 | } |
| 162 | } |
| 163 | } |
| 164 | |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 165 | [[noreturn]] static void |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 166 | onNackCb() |
| 167 | { |
| 168 | std::cerr << "Got NACK\n"; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 169 | exit(1); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 170 | } |
| 171 | |
| 172 | static void |
| 173 | timeoutCb() |
| 174 | { |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 175 | std::cerr << "Interest timeout\n"; |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 176 | } |
| 177 | |
| 178 | static void |
swa770 | cf1d8f7 | 2020-04-21 23:12:39 -0700 | [diff] [blame] | 179 | certFetchCb(const Data& reply) |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 180 | { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 181 | auto item = Request::onCertFetchResponse(reply); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 182 | if (item) { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 183 | keyChain.addCertificate(keyChain.getPib().getIdentity(item->getIdentity()).getKey(item->getKeyName()), *item); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 184 | } |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 185 | std::cerr << "\n***************************************\n" |
| 186 | << "Step " << nStep++ |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 187 | << ": DONE\nCertificate with Name: " << reply.getName() |
| 188 | << " has been installed to your local keychain\n" |
| 189 | << "Exit now" << std::endl; |
Davide Pesavento | 3e48184 | 2023-11-11 18:01:32 -0500 | [diff] [blame] | 190 | face.getIoContext().stop(); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 191 | } |
| 192 | |
| 193 | static void |
| 194 | challengeCb(const Data& reply) |
| 195 | { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 196 | try { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 197 | requesterState->onChallengeResponse(reply); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 198 | } |
| 199 | catch (const std::exception& e) { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 200 | std::cerr << "Error when decoding challenge step: " << e.what() << std::endl; |
| 201 | exit(1); |
| 202 | } |
Zhiyi Zhang | 6499edd | 2021-02-17 22:37:21 -0800 | [diff] [blame] | 203 | if (requesterState->m_status == Status::SUCCESS) { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 204 | std::cerr << "Certificate has already been issued, downloading certificate..." << std::endl; |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 205 | face.expressInterest(*requesterState->genCertFetchInterest(), |
| 206 | [] (const auto&, const auto& data) { certFetchCb(data); }, |
| 207 | [] (auto&&...) { onNackCb(); }, |
| 208 | [] (auto&&...) { timeoutCb(); }); |
Zhiyi Zhang | 4d89fe0 | 2017-04-28 18:51:51 -0700 | [diff] [blame] | 209 | return; |
| 210 | } |
Zhiyi Zhang | 6499edd | 2021-02-17 22:37:21 -0800 | [diff] [blame] | 211 | runChallenge(requesterState->m_challengeType); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 212 | } |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 213 | |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 214 | static void |
| 215 | newCb(const Data& reply) |
| 216 | { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 217 | std::list<std::string> challengeList; |
| 218 | try { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 219 | challengeList = requesterState->onNewRenewRevokeResponse(reply); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 220 | } |
| 221 | catch (const std::exception& e) { |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 222 | std::cerr << "Error on decoding NEW step reply because: " << e.what() << std::endl; |
| 223 | exit(1); |
| 224 | } |
| 225 | |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 226 | size_t challengeIndex = 0; |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 227 | if (challengeList.empty()) { |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 228 | std::cerr << "There is no available challenge provided by the CA. Exit" << std::endl; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 229 | exit(1); |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 230 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 231 | |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 232 | auto item = std::find(challengeList.begin(), challengeList.end(), defaultChallenge); |
| 233 | if (item != challengeList.end()) { |
| 234 | runChallenge(defaultChallenge); |
| 235 | } |
| 236 | else { |
| 237 | // default challenge not available |
| 238 | std::cerr << "\n***************************************\n" |
| 239 | << "Step " << nStep++ |
| 240 | << ": CHALLENGE SELECTION" << std::endl; |
| 241 | size_t count = 0; |
| 242 | std::string choice = ""; |
| 243 | for (const auto& item : challengeList) { |
| 244 | std::cerr << "> Index: " << count++ << std::endl |
| 245 | << ">> Challenge: " << item << std::endl; |
Zhiyi Zhang | 87ded73 | 2021-01-08 14:05:24 -0800 | [diff] [blame] | 246 | } |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 247 | std::cerr << "Please type in the index of the challenge that you want to perform:" << std::endl; |
| 248 | size_t inputCount = 0; |
| 249 | while (inputCount < 3) { |
| 250 | getline(std::cin, choice); |
| 251 | try { |
| 252 | challengeIndex = std::stoul(choice); |
| 253 | } |
| 254 | catch (const std::exception&) { |
| 255 | std::cerr << "Your input is not valid. Try again:" << std::endl; |
| 256 | inputCount++; |
| 257 | continue; |
| 258 | } |
| 259 | if (challengeIndex >= count) { |
| 260 | std::cerr << "Your input index is out of range. Try again:" << std::endl; |
| 261 | inputCount++; |
| 262 | continue; |
| 263 | } |
| 264 | break; |
| 265 | } |
| 266 | if (inputCount == 3) { |
| 267 | std::cerr << "Invalid input for too many times, exit. " << std::endl; |
| 268 | exit(1); |
| 269 | } |
| 270 | |
| 271 | auto it = challengeList.begin(); |
| 272 | std::advance(it, challengeIndex); |
| 273 | std::cerr << "The challenge has been selected: " << *it << std::endl; |
| 274 | runChallenge(*it); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 275 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 276 | } |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 277 | |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 278 | static void |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 279 | infoCb(const Data& reply, const Name& certFullName) |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 280 | { |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 281 | std::optional<CaProfile> profile; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 282 | try { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 283 | if (certFullName.empty()) { |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 284 | if (trustedCert && !ndn::security::verifySignature(reply, *trustedCert)) { |
| 285 | NDN_THROW(std::runtime_error("Cannot verify replied Data packet signature.")); |
| 286 | } |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 287 | profile = Request::onCaProfileResponse(reply); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 288 | } |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 289 | else { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 290 | profile = Request::onCaProfileResponseAfterRedirection(reply, certFullName); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 291 | } |
| 292 | } |
| 293 | catch (const std::exception& e) { |
| 294 | std::cerr << "The fetched CA information cannot be used because: " << e.what() << std::endl; |
| 295 | return; |
Zhiyi Zhang | caab546 | 2019-10-18 13:41:02 -0700 | [diff] [blame] | 296 | } |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 297 | if (!trustedCert) |
| 298 | { |
| 299 | std::cerr << "\n***************************************\n" |
| 300 | << "Step " << nStep++ |
| 301 | << ": Will use the following CA, please double check the identity info:" << std::endl |
| 302 | << "> CA name: " << profile->caPrefix << std::endl |
| 303 | << "> This CA information is signed by: " << reply.getSignatureInfo().getKeyLocator() << std::endl |
| 304 | << "> The certificate:" << std::endl << *profile->cert << std::endl |
| 305 | << "Do you trust the information? Type in YES or NO" << std::endl; |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 306 | |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 307 | std::string answer; |
| 308 | getline(std::cin, answer); |
| 309 | boost::algorithm::to_lower(answer); |
| 310 | if (answer == "yes") { |
| 311 | std::cerr << "You answered YES: new CA " << profile->caPrefix << " will be used" << std::endl; |
| 312 | trustedCert = profile->cert; |
| 313 | runProbe(*profile); |
| 314 | } |
| 315 | else { |
| 316 | std::cerr << "You answered NO: new CA " << profile->caPrefix << " will not be used" << std::endl; |
| 317 | exit(0); |
| 318 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 319 | } |
| 320 | else { |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 321 | runProbe(*profile); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 322 | } |
| 323 | } |
| 324 | |
| 325 | static void |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 326 | probeCb(const Data& reply, CaProfile profile) |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 327 | { |
tylerliu | b47dad7 | 2020-10-08 21:36:55 -0700 | [diff] [blame] | 328 | std::vector<std::pair<Name, int>> names; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 329 | std::vector<Name> redirects; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 330 | try { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 331 | Request::onProbeResponse(reply, profile, names, redirects); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 332 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 333 | catch (const std::exception& e) { |
| 334 | std::cerr << "The probed CA response cannot be used because: " << e.what() << std::endl; |
Zhiyi Zhang | 87ded73 | 2021-01-08 14:05:24 -0800 | [diff] [blame] | 335 | exit(1); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 336 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 337 | |
| 338 | size_t count = 0; |
| 339 | Name selectedName; |
| 340 | Name redirectedCaFullName; |
| 341 | // always prefer redirection over direct assignment |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 342 | if (!redirects.empty()) { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 343 | if (redirects.size() < 2) { |
| 344 | redirectedCaFullName = redirects.front(); |
| 345 | } |
| 346 | else { |
| 347 | std::cerr << "\n***************************************\n" |
| 348 | << "Step " << nStep++ |
| 349 | << " Choose another trusted CA suggested by the CA: " << std::endl; |
| 350 | for (const auto& redirect : redirects) { |
| 351 | std::cerr << "> Index: " << count++ << std::endl |
| 352 | << ">> Suggested CA: " << ndn::security::extractIdentityFromCertName(redirect.getPrefix(-1)) |
| 353 | << std::endl; |
tylerliu | d82cc5c | 2020-12-21 23:58:39 -0800 | [diff] [blame] | 354 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 355 | std::cerr << "Please type in the index of your choice:" << std::endl; |
| 356 | size_t index = 0; |
| 357 | try { |
| 358 | std::string input; |
| 359 | getline(std::cin, input); |
| 360 | index = std::stoul(input); |
| 361 | } |
| 362 | catch (const std::exception&) { |
| 363 | std::cerr << "Your input is Invalid. Exit" << std::endl; |
| 364 | exit(1); |
| 365 | } |
| 366 | if (index >= redirects.size()) { |
| 367 | std::cerr << "Your input is not an existing index. Exit" << std::endl; |
| 368 | exit(1); |
| 369 | } |
| 370 | redirectedCaFullName = redirects[index]; |
tylerliu | d82cc5c | 2020-12-21 23:58:39 -0800 | [diff] [blame] | 371 | } |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 372 | auto redirectedCaName = ndn::security::extractIdentityFromCertName(redirectedCaFullName.getPrefix(-1)); |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 373 | std::cerr << "You will be redirected to CA: " << redirectedCaName << std::endl; |
Zhiyi Zhang | fbcab84 | 2020-10-07 15:17:13 -0700 | [diff] [blame] | 374 | face.expressInterest( |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 375 | *Request::genCaProfileDiscoveryInterest(redirectedCaName), |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 376 | [&, redirectedCaFullName] (const auto&, const auto& data) { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 377 | auto fetchingInterest = Request::genCaProfileInterestFromDiscoveryResponse(data); |
Zhiyi Zhang | fbcab84 | 2020-10-07 15:17:13 -0700 | [diff] [blame] | 378 | face.expressInterest(*fetchingInterest, |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 379 | [=] (const auto&, const auto& data2) { infoCb(data2, redirectedCaFullName); }, |
| 380 | [] (auto&&...) { onNackCb(); }, |
| 381 | [] (auto&&...) { timeoutCb(); }); |
Zhiyi Zhang | fbcab84 | 2020-10-07 15:17:13 -0700 | [diff] [blame] | 382 | }, |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 383 | [] (auto&&...) { onNackCb(); }, |
| 384 | [] (auto&&...) { timeoutCb(); }); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 385 | } |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 386 | else if (!names.empty()) { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 387 | if (names.size() < 2) { |
| 388 | selectedName = names.front().first; |
| 389 | } |
| 390 | else { |
| 391 | std::cerr << "\n***************************************\n" |
| 392 | << "Step " << nStep++ |
| 393 | << ": You can either select one of the following names suggested by the CA: " << std::endl; |
| 394 | for (const auto& name : names) { |
| 395 | std::cerr << "> Index: " << count++ << std::endl |
| 396 | << ">> Suggested name: " << name.first << std::endl |
| 397 | << ">> Corresponding max suffix length: " << name.second << std::endl; |
| 398 | } |
| 399 | std::cerr << "Please type in the index of your choice:" << std::endl; |
| 400 | size_t index = 0; |
| 401 | try { |
| 402 | std::string input; |
| 403 | getline(std::cin, input); |
| 404 | index = std::stoul(input); |
| 405 | } |
| 406 | catch (const std::exception&) { |
| 407 | std::cerr << "Your input is invalid. Exit" << std::endl; |
| 408 | exit(1); |
| 409 | } |
| 410 | if (index >= names.size()) { |
| 411 | std::cerr << "Your input is not an existing index. Exit" << std::endl; |
| 412 | exit(1); |
| 413 | } |
| 414 | selectedName = names[index].first; |
| 415 | } |
| 416 | std::cerr << "You are applying for name: " << selectedName << std::endl; |
| 417 | runNew(profile, selectedName); |
| 418 | } |
| 419 | else { |
| 420 | std::cerr << "Neither name assignment nor redirection is available, exit." << std::endl; |
| 421 | exit(1); |
| 422 | } |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 423 | } |
| 424 | |
| 425 | static void |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 426 | selectCaProfile(const std::string& configFilePath) |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 427 | { |
Zhiyi Zhang | a16b758 | 2020-10-29 18:59:46 -0700 | [diff] [blame] | 428 | ProfileStorage profileStorage; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 429 | try { |
Zhiyi Zhang | a16b758 | 2020-10-29 18:59:46 -0700 | [diff] [blame] | 430 | profileStorage.load(configFilePath); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 431 | } |
| 432 | catch (const std::exception& e) { |
| 433 | std::cerr << "Cannot load the configuration file: " << e.what() << std::endl; |
| 434 | exit(1); |
| 435 | } |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 436 | size_t count = 0; |
| 437 | std::cerr << "***************************************\n" |
| 438 | << "Step " << nStep++ << ": CA SELECTION" << std::endl; |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 439 | for (const auto& item : profileStorage.getKnownProfiles()) { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 440 | std::cerr << "> Index: " << count++ << std::endl |
Zhiyi Zhang | 44c6a35 | 2020-12-14 10:57:17 -0800 | [diff] [blame] | 441 | << ">> CA prefix:" << item.caPrefix << std::endl |
| 442 | << ">> Introduction: " << item.caInfo << std::endl; |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 443 | } |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 444 | std::cerr << "Please type in the CA's index that you want to apply or type in NONE if your expected CA is not in the list:\n"; |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 445 | |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 446 | std::string caIndexS, caIndexSLower; |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 447 | getline(std::cin, caIndexS); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 448 | caIndexSLower = caIndexS; |
| 449 | boost::algorithm::to_lower(caIndexSLower); |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 450 | Name selectedCaName; |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 451 | if (caIndexSLower == "none") { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 452 | std::cerr << "\n***************************************\n" |
| 453 | << "Step " << nStep << ": ADD NEW CA\nPlease type in the CA's Name:" << std::endl; |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 454 | std::string targetCaName; |
| 455 | getline(std::cin, targetCaName); |
| 456 | try { |
| 457 | selectedCaName = Name(targetCaName); |
| 458 | } |
| 459 | catch (const std::exception&) { |
| 460 | std::cerr << "Your input is not a valid name. Exit" << std::endl; |
| 461 | exit(1); |
| 462 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 463 | } |
| 464 | else { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 465 | size_t caIndex; |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 466 | try { |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 467 | caIndex = std::stoul(caIndexS); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 468 | } |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 469 | catch (const std::exception&) { |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 470 | std::cerr << "Your input is neither NONE nor a valid index. Exit" << std::endl; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 471 | exit(1); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 472 | } |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 473 | if (caIndex >= count) { |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 474 | std::cerr << "Your input is not an existing index. Exit" << std::endl; |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 475 | exit(1); |
Zhiyi Zhang | 3670683 | 2019-07-04 21:33:03 -0700 | [diff] [blame] | 476 | } |
Zhiyi Zhang | 84e1184 | 2020-11-19 20:03:23 -0800 | [diff] [blame] | 477 | auto itemIterator = profileStorage.getKnownProfiles().cbegin(); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 478 | std::advance(itemIterator, caIndex); |
| 479 | auto targetCaItem = *itemIterator; |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 480 | trustedCert = targetCaItem.cert; |
| 481 | selectedCaName = targetCaItem.caPrefix; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 482 | } |
Tianyuan Yu | 48903c2 | 2022-05-02 15:30:07 -0700 | [diff] [blame] | 483 | face.expressInterest( |
| 484 | *Request::genCaProfileDiscoveryInterest(selectedCaName), |
| 485 | [&] (const auto&, const auto& data) { |
| 486 | auto fetchingInterest = Request::genCaProfileInterestFromDiscoveryResponse(data); |
| 487 | face.expressInterest(*fetchingInterest, |
| 488 | [] (const auto&, const auto& data2) { infoCb(data2, {}); }, |
| 489 | [] (auto&&...) { onNackCb(); }, |
| 490 | [] (auto&&...) { timeoutCb(); }); |
| 491 | }, |
| 492 | [] (auto&&...) { onNackCb(); }, |
| 493 | [] (auto&&...) { timeoutCb(); }); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 494 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 495 | |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 496 | static void |
| 497 | runProbe(CaProfile profile) |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 498 | { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 499 | if (!capturedProbeParams) { |
| 500 | std::cerr << "\n***************************************\n" |
| 501 | << "Step " << nStep++ << ": Please provide information for name assignment" << std::endl; |
| 502 | auto captured = captureParams(profile.probeParameterKeys); |
Tianyuan Yu | b5d3a4f | 2022-03-11 17:03:24 -0800 | [diff] [blame] | 503 | auto it = captured.find(defaultChallenge); |
| 504 | if (it != captured.end()) { |
| 505 | it->second = boost::algorithm::to_lower_copy(it->second); |
| 506 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 507 | capturedProbeParams = std::make_shared<std::multimap<std::string, std::string>>(captured); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 508 | } |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 509 | face.expressInterest(*Request::genProbeInterest(profile, std::move(*capturedProbeParams)), |
| 510 | [profile] (const auto&, const auto& data) { probeCb(data, profile); }, |
| 511 | [] (auto&&...) { onNackCb(); }, |
| 512 | [] (auto&&...) { timeoutCb(); }); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 513 | } |
| 514 | |
| 515 | static void |
| 516 | runNew(CaProfile profile, Name identityName) |
| 517 | { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 518 | int validityPeriod = captureValidityPeriod(time::duration_cast<time::hours>(profile.maxValidityPeriod)); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 519 | auto now = time::system_clock::now(); |
| 520 | std::cerr << "The validity period of your certificate will be: " << validityPeriod << " hours" << std::endl; |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 521 | requesterState = std::make_shared<Request>(keyChain, profile, RequestType::NEW); |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 522 | |
| 523 | // generate a newly key pair or choose an existing key |
| 524 | const auto& pib = keyChain.getPib(); |
| 525 | ndn::security::pib::Identity identity; |
| 526 | ndn::security::pib::Key defaultKey; |
| 527 | try { |
| 528 | identity = pib.getIdentity(identityName); |
| 529 | } |
| 530 | catch (const ndn::security::Pib::Error&) { |
| 531 | identity = keyChain.createIdentity(identityName); |
| 532 | newlyCreatedIdentityName = identity.getName(); |
| 533 | } |
| 534 | try { |
| 535 | defaultKey = identity.getDefaultKey(); |
| 536 | } |
| 537 | catch (const ndn::security::Pib::Error&) { |
| 538 | defaultKey = keyChain.createKey(identity); |
| 539 | newlyCreatedKeyName = defaultKey.getName(); |
| 540 | } |
| 541 | |
| 542 | Name keyName; |
| 543 | if (newlyCreatedIdentityName.empty()) { |
| 544 | keyName = captureKeyName(identity, defaultKey); |
| 545 | } |
| 546 | else { |
| 547 | keyName = defaultKey.getName(); |
| 548 | } |
| 549 | auto interest = requesterState->genNewInterest(keyName, now, now + time::hours(validityPeriod)); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 550 | if (interest != nullptr) { |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 551 | face.expressInterest(*interest, |
| 552 | [] (const auto&, const auto& data) { newCb(data); }, |
| 553 | [] (auto&&...) { onNackCb(); }, |
| 554 | [] (auto&&...) { timeoutCb(); }); |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 555 | } |
| 556 | else { |
| 557 | std::cerr << "Cannot generate the Interest for NEW step. Exit" << std::endl; |
| 558 | } |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 559 | } |
| 560 | |
| 561 | static void |
| 562 | runChallenge(const std::string& challengeType) |
| 563 | { |
tylerliu | 4022633 | 2020-11-11 15:37:16 -0800 | [diff] [blame] | 564 | std::multimap<std::string, std::string> requirement; |
Zhiyi Zhang | c5d93a9 | 2020-10-14 17:07:35 -0700 | [diff] [blame] | 565 | try { |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 566 | requirement = requesterState->selectOrContinueChallenge(challengeType); |
Zhiyi Zhang | c5d93a9 | 2020-10-14 17:07:35 -0700 | [diff] [blame] | 567 | } |
| 568 | catch (const std::exception& e) { |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 569 | std::cerr << "Error. Cannot successfully load the Challenge Module with error: " << e.what() |
| 570 | << "\nExit." << std::endl; |
Zhiyi Zhang | c5d93a9 | 2020-10-14 17:07:35 -0700 | [diff] [blame] | 571 | exit(1); |
| 572 | } |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 573 | if (!requirement.empty()) { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 574 | if (requesterState->m_status == Status::BEFORE_CHALLENGE && challengeType == defaultChallenge) { |
| 575 | requirement.find(challengeType)->second = capturedProbeParams->find(defaultChallenge)->second; |
| 576 | } |
| 577 | else { |
| 578 | std::cerr << "\n***************************************\n" |
| 579 | << "Step " << nStep |
| 580 | << ": Please provide parameters used for Identity Verification Challenge" << std::endl; |
| 581 | captureParams(requirement); |
| 582 | } |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 583 | } |
tylerliu | 4140fe8 | 2021-01-27 15:45:44 -0800 | [diff] [blame] | 584 | face.expressInterest(*requesterState->genChallengeInterest(std::move(requirement)), |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 585 | [] (const auto&, const auto& data) { challengeCb(data); }, |
| 586 | [] (auto&&...) { onNackCb(); }, |
| 587 | [] (auto&&...) { timeoutCb(); }); |
Zhiyi Zhang | af7c290 | 2019-03-14 22:13:21 -0700 | [diff] [blame] | 588 | } |
| 589 | |
Zhiyi Zhang | ad9e04f | 2020-03-27 12:04:31 -0700 | [diff] [blame] | 590 | static void |
| 591 | handleSignal(const boost::system::error_code& error, int signalNum) |
| 592 | { |
| 593 | if (error) { |
| 594 | return; |
| 595 | } |
| 596 | const char* signalName = ::strsignal(signalNum); |
| 597 | std::cerr << "Exiting on signal "; |
| 598 | if (signalName == nullptr) { |
| 599 | std::cerr << signalNum; |
| 600 | } |
| 601 | else { |
| 602 | std::cerr << signalName; |
| 603 | } |
| 604 | std::cerr << std::endl; |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 605 | if (requesterState) { |
Tianyuan Yu | ca23bb0 | 2022-03-09 14:09:14 -0800 | [diff] [blame] | 606 | if (!newlyCreatedIdentityName.empty()) { |
| 607 | auto identity = keyChain.getPib().getIdentity(newlyCreatedIdentityName); |
| 608 | keyChain.deleteIdentity(identity); |
| 609 | } |
| 610 | else if (!newlyCreatedKeyName.empty()) { |
| 611 | auto identity = keyChain.getPib().getIdentity(ndn::security::extractIdentityFromKeyName(newlyCreatedKeyName)); |
| 612 | keyChain.deleteKey(identity, identity.getKey(newlyCreatedKeyName)); |
| 613 | } |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 614 | } |
Davide Pesavento | 3e48184 | 2023-11-11 18:01:32 -0500 | [diff] [blame] | 615 | face.getIoContext().stop(); |
tylerliu | feabfdc | 2020-10-03 15:09:58 -0700 | [diff] [blame] | 616 | exit(1); |
Zhiyi Zhang | ad9e04f | 2020-03-27 12:04:31 -0700 | [diff] [blame] | 617 | } |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 618 | |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 619 | static int |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 620 | main(int argc, char* argv[]) |
| 621 | { |
Davide Pesavento | 3e48184 | 2023-11-11 18:01:32 -0500 | [diff] [blame] | 622 | boost::asio::signal_set terminateSignals(face.getIoContext()); |
Zhiyi Zhang | ad9e04f | 2020-03-27 12:04:31 -0700 | [diff] [blame] | 623 | terminateSignals.add(SIGINT); |
| 624 | terminateSignals.add(SIGTERM); |
| 625 | terminateSignals.async_wait(handleSignal); |
| 626 | |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 627 | namespace po = boost::program_options; |
Zhiyi Zhang | 840afd9 | 2020-10-21 13:24:08 -0700 | [diff] [blame] | 628 | std::string configFilePath = std::string(NDNCERT_SYSCONFDIR) + "/ndncert/client.conf"; |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 629 | po::options_description description("Usage: ndncert-client [-h] [-c FILE]\n"); |
| 630 | description.add_options() |
| 631 | ("help,h", "produce help message") |
| 632 | ("config-file,c", po::value<std::string>(&configFilePath), "configuration file name") |
| 633 | ; |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 634 | po::positional_options_description p; |
| 635 | |
| 636 | po::variables_map vm; |
| 637 | try { |
| 638 | po::store(po::command_line_parser(argc, argv).options(description).positional(p).run(), vm); |
| 639 | po::notify(vm); |
| 640 | } |
| 641 | catch (const std::exception& e) { |
| 642 | std::cerr << "ERROR: " << e.what() << std::endl; |
| 643 | return 1; |
| 644 | } |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 645 | |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 646 | if (vm.count("help") != 0) { |
| 647 | std::cerr << description << std::endl; |
| 648 | return 0; |
| 649 | } |
Davide Pesavento | e5b4369 | 2021-11-15 22:05:03 -0500 | [diff] [blame] | 650 | |
Zhiyi Zhang | 837406d | 2020-10-05 22:01:31 -0700 | [diff] [blame] | 651 | selectCaProfile(configFilePath); |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 652 | face.processEvents(); |
| 653 | return 0; |
| 654 | } |
| 655 | |
Davide Pesavento | 0d1d11c | 2022-04-11 22:11:34 -0400 | [diff] [blame] | 656 | } // namespace ndncert::requester |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 657 | |
Zhiyi Zhang | 48f2378 | 2020-09-28 12:11:24 -0700 | [diff] [blame] | 658 | int |
| 659 | main(int argc, char* argv[]) |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 660 | { |
Davide Pesavento | 0dc0201 | 2021-11-23 22:55:03 -0500 | [diff] [blame] | 661 | return ndncert::requester::main(argc, argv); |
Zhiyi Zhang | 08e0e98 | 2017-03-01 10:10:42 -0800 | [diff] [blame] | 662 | } |