498 lines
18 KiB
TypeScript
498 lines
18 KiB
TypeScript
/*
|
|
Copyright 2018, 2019 New Vector Ltd
|
|
Copyright 2020 The Matrix.org Foundation C.I.C.
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
you may not use this file except in compliance with the License.
|
|
You may obtain a copy of the License at
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
See the License for the specific language governing permissions and
|
|
limitations under the License.
|
|
*/
|
|
|
|
import React from 'react';
|
|
import { MatrixClient } from 'matrix-js-sdk/src/client';
|
|
import { IKeyBackupInfo, IKeyBackupRestoreResult } from "matrix-js-sdk/src/crypto/keybackup";
|
|
import { ISecretStorageKeyInfo } from "matrix-js-sdk/src/crypto/api";
|
|
import { logger } from "matrix-js-sdk/src/logger";
|
|
|
|
import { MatrixClientPeg } from '../../../../MatrixClientPeg';
|
|
import { _t } from '../../../../languageHandler';
|
|
import { accessSecretStorage } from '../../../../SecurityManager';
|
|
import * as sdk from '../../../../index';
|
|
import { IDialogProps } from "../IDialogProps";
|
|
|
|
enum RestoreType {
|
|
Passphrase = "passphrase",
|
|
RecoveryKey = "recovery_key",
|
|
SecretStorage = "secret_storage"
|
|
}
|
|
|
|
enum ProgressState {
|
|
PreFetch = "prefetch",
|
|
Fetch = "fetch",
|
|
LoadKeys = "load_keys",
|
|
|
|
}
|
|
|
|
interface IProps extends IDialogProps {
|
|
// if false, will close the dialog as soon as the restore completes succesfully
|
|
// default: true
|
|
showSummary?: boolean;
|
|
// If specified, gather the key from the user but then call the function with the backup
|
|
// key rather than actually (necessarily) restoring the backup.
|
|
keyCallback?: (key: Uint8Array) => void;
|
|
}
|
|
|
|
interface IState {
|
|
backupInfo: IKeyBackupInfo;
|
|
backupKeyStored: Record<string, ISecretStorageKeyInfo>;
|
|
loading: boolean;
|
|
loadError: string;
|
|
restoreError: {
|
|
errcode: string;
|
|
};
|
|
recoveryKey: string;
|
|
recoverInfo: IKeyBackupRestoreResult;
|
|
recoveryKeyValid: boolean;
|
|
forceRecoveryKey: boolean;
|
|
passPhrase: string;
|
|
restoreType: RestoreType;
|
|
progress: {
|
|
stage: ProgressState;
|
|
total?: number;
|
|
successes?: number;
|
|
failures?: number;
|
|
};
|
|
}
|
|
|
|
/*
|
|
* Dialog for restoring e2e keys from a backup and the user's recovery key
|
|
*/
|
|
export default class RestoreKeyBackupDialog extends React.PureComponent<IProps, IState> {
|
|
static defaultProps = {
|
|
showSummary: true,
|
|
};
|
|
|
|
constructor(props) {
|
|
super(props);
|
|
this.state = {
|
|
backupInfo: null,
|
|
backupKeyStored: null,
|
|
loading: false,
|
|
loadError: null,
|
|
restoreError: null,
|
|
recoveryKey: "",
|
|
recoverInfo: null,
|
|
recoveryKeyValid: false,
|
|
forceRecoveryKey: false,
|
|
passPhrase: '',
|
|
restoreType: null,
|
|
progress: { stage: ProgressState.PreFetch },
|
|
};
|
|
}
|
|
|
|
public componentDidMount(): void {
|
|
this.loadBackupStatus();
|
|
}
|
|
|
|
private onCancel = (): void => {
|
|
this.props.onFinished(false);
|
|
};
|
|
|
|
private onDone = (): void => {
|
|
this.props.onFinished(true);
|
|
};
|
|
|
|
private onUseRecoveryKeyClick = (): void => {
|
|
this.setState({
|
|
forceRecoveryKey: true,
|
|
});
|
|
};
|
|
|
|
private progressCallback = (data): void => {
|
|
this.setState({
|
|
progress: data,
|
|
});
|
|
};
|
|
|
|
private onResetRecoveryClick = (): void => {
|
|
this.props.onFinished(false);
|
|
accessSecretStorage(async () => {}, /* forceReset = */ true);
|
|
};
|
|
|
|
private onRecoveryKeyChange = (e): void => {
|
|
this.setState({
|
|
recoveryKey: e.target.value,
|
|
recoveryKeyValid: MatrixClientPeg.get().isValidRecoveryKey(e.target.value),
|
|
});
|
|
};
|
|
|
|
private onPassPhraseNext = async (): Promise<void> => {
|
|
this.setState({
|
|
loading: true,
|
|
restoreError: null,
|
|
restoreType: RestoreType.Passphrase,
|
|
});
|
|
try {
|
|
// We do still restore the key backup: we must ensure that the key backup key
|
|
// is the right one and restoring it is currently the only way we can do this.
|
|
const recoverInfo = await MatrixClientPeg.get().restoreKeyBackupWithPassword(
|
|
this.state.passPhrase, undefined, undefined, this.state.backupInfo,
|
|
{ progressCallback: this.progressCallback },
|
|
);
|
|
if (this.props.keyCallback) {
|
|
const key = await MatrixClientPeg.get().keyBackupKeyFromPassword(
|
|
this.state.passPhrase, this.state.backupInfo,
|
|
);
|
|
this.props.keyCallback(key);
|
|
}
|
|
|
|
if (!this.props.showSummary) {
|
|
this.props.onFinished(true);
|
|
return;
|
|
}
|
|
this.setState({
|
|
loading: false,
|
|
recoverInfo,
|
|
});
|
|
} catch (e) {
|
|
logger.log("Error restoring backup", e);
|
|
this.setState({
|
|
loading: false,
|
|
restoreError: e,
|
|
});
|
|
}
|
|
};
|
|
|
|
private onRecoveryKeyNext = async (): Promise<void> => {
|
|
if (!this.state.recoveryKeyValid) return;
|
|
|
|
this.setState({
|
|
loading: true,
|
|
restoreError: null,
|
|
restoreType: RestoreType.RecoveryKey,
|
|
});
|
|
try {
|
|
const recoverInfo = await MatrixClientPeg.get().restoreKeyBackupWithRecoveryKey(
|
|
this.state.recoveryKey, undefined, undefined, this.state.backupInfo,
|
|
{ progressCallback: this.progressCallback },
|
|
);
|
|
if (this.props.keyCallback) {
|
|
const key = MatrixClientPeg.get().keyBackupKeyFromRecoveryKey(this.state.recoveryKey);
|
|
this.props.keyCallback(key);
|
|
}
|
|
if (!this.props.showSummary) {
|
|
this.props.onFinished(true);
|
|
return;
|
|
}
|
|
this.setState({
|
|
loading: false,
|
|
recoverInfo,
|
|
});
|
|
} catch (e) {
|
|
logger.log("Error restoring backup", e);
|
|
this.setState({
|
|
loading: false,
|
|
restoreError: e,
|
|
});
|
|
}
|
|
};
|
|
|
|
private onPassPhraseChange = (e): void => {
|
|
this.setState({
|
|
passPhrase: e.target.value,
|
|
});
|
|
};
|
|
|
|
private async restoreWithSecretStorage(): Promise<void> {
|
|
this.setState({
|
|
loading: true,
|
|
restoreError: null,
|
|
restoreType: RestoreType.SecretStorage,
|
|
});
|
|
try {
|
|
// `accessSecretStorage` may prompt for storage access as needed.
|
|
await accessSecretStorage(async () => {
|
|
await MatrixClientPeg.get().restoreKeyBackupWithSecretStorage(
|
|
this.state.backupInfo, undefined, undefined,
|
|
{ progressCallback: this.progressCallback },
|
|
);
|
|
});
|
|
this.setState({
|
|
loading: false,
|
|
});
|
|
} catch (e) {
|
|
logger.log("Error restoring backup", e);
|
|
this.setState({
|
|
restoreError: e,
|
|
loading: false,
|
|
});
|
|
}
|
|
}
|
|
|
|
private async restoreWithCachedKey(backupInfo): Promise<boolean> {
|
|
if (!backupInfo) return false;
|
|
try {
|
|
const recoverInfo = await MatrixClientPeg.get().restoreKeyBackupWithCache(
|
|
undefined, /* targetRoomId */
|
|
undefined, /* targetSessionId */
|
|
backupInfo,
|
|
{ progressCallback: this.progressCallback },
|
|
);
|
|
this.setState({
|
|
recoverInfo,
|
|
});
|
|
return true;
|
|
} catch (e) {
|
|
logger.log("restoreWithCachedKey failed:", e);
|
|
return false;
|
|
}
|
|
}
|
|
|
|
private async loadBackupStatus(): Promise<void> {
|
|
this.setState({
|
|
loading: true,
|
|
loadError: null,
|
|
});
|
|
try {
|
|
const cli = MatrixClientPeg.get();
|
|
const backupInfo = await cli.getKeyBackupVersion();
|
|
const has4S = await cli.hasSecretStorageKey();
|
|
const backupKeyStored = has4S && (await cli.isKeyBackupKeyStored());
|
|
this.setState({
|
|
backupInfo,
|
|
backupKeyStored,
|
|
});
|
|
|
|
const gotCache = await this.restoreWithCachedKey(backupInfo);
|
|
if (gotCache) {
|
|
logger.log("RestoreKeyBackupDialog: found cached backup key");
|
|
this.setState({
|
|
loading: false,
|
|
});
|
|
return;
|
|
}
|
|
|
|
// If the backup key is stored, we can proceed directly to restore.
|
|
if (backupKeyStored) {
|
|
return this.restoreWithSecretStorage();
|
|
}
|
|
|
|
this.setState({
|
|
loadError: null,
|
|
loading: false,
|
|
});
|
|
} catch (e) {
|
|
logger.log("Error loading backup status", e);
|
|
this.setState({
|
|
loadError: e,
|
|
loading: false,
|
|
});
|
|
}
|
|
}
|
|
|
|
public render(): JSX.Element {
|
|
// FIXME: Making these into imports will break tests
|
|
const DialogButtons = sdk.getComponent('views.elements.DialogButtons');
|
|
const AccessibleButton = sdk.getComponent('elements.AccessibleButton');
|
|
const BaseDialog = sdk.getComponent('views.dialogs.BaseDialog');
|
|
const Spinner = sdk.getComponent("elements.Spinner");
|
|
|
|
const backupHasPassphrase = (
|
|
this.state.backupInfo &&
|
|
this.state.backupInfo.auth_data &&
|
|
this.state.backupInfo.auth_data.private_key_salt &&
|
|
this.state.backupInfo.auth_data.private_key_iterations
|
|
);
|
|
|
|
let content;
|
|
let title;
|
|
if (this.state.loading) {
|
|
title = _t("Restoring keys from backup");
|
|
let details;
|
|
if (this.state.progress.stage === ProgressState.Fetch) {
|
|
details = _t("Fetching keys from server...");
|
|
} else if (this.state.progress.stage === ProgressState.LoadKeys) {
|
|
const { total, successes, failures } = this.state.progress;
|
|
details = _t("%(completed)s of %(total)s keys restored", { total, completed: successes + failures });
|
|
} else if (this.state.progress.stage === ProgressState.PreFetch) {
|
|
details = _t("Fetching keys from server...");
|
|
}
|
|
content = <div>
|
|
<div>{ details }</div>
|
|
<Spinner />
|
|
</div>;
|
|
} else if (this.state.loadError) {
|
|
title = _t("Error");
|
|
content = _t("Unable to load backup status");
|
|
} else if (this.state.restoreError) {
|
|
if (this.state.restoreError.errcode === MatrixClient.RESTORE_BACKUP_ERROR_BAD_KEY) {
|
|
if (this.state.restoreType === RestoreType.RecoveryKey) {
|
|
title = _t("Security Key mismatch");
|
|
content = <div>
|
|
<p>{ _t(
|
|
"Backup could not be decrypted with this Security Key: " +
|
|
"please verify that you entered the correct Security Key.",
|
|
) }</p>
|
|
</div>;
|
|
} else {
|
|
title = _t("Incorrect Security Phrase");
|
|
content = <div>
|
|
<p>{ _t(
|
|
"Backup could not be decrypted with this Security Phrase: " +
|
|
"please verify that you entered the correct Security Phrase.",
|
|
) }</p>
|
|
</div>;
|
|
}
|
|
} else {
|
|
title = _t("Error");
|
|
content = _t("Unable to restore backup");
|
|
}
|
|
} else if (this.state.backupInfo === null) {
|
|
title = _t("Error");
|
|
content = _t("No backup found!");
|
|
} else if (this.state.recoverInfo) {
|
|
title = _t("Keys restored");
|
|
let failedToDecrypt;
|
|
if (this.state.recoverInfo.total > this.state.recoverInfo.imported) {
|
|
failedToDecrypt = <p>{ _t(
|
|
"Failed to decrypt %(failedCount)s sessions!",
|
|
{ failedCount: this.state.recoverInfo.total - this.state.recoverInfo.imported },
|
|
) }</p>;
|
|
}
|
|
content = <div>
|
|
<p>{ _t("Successfully restored %(sessionCount)s keys", { sessionCount: this.state.recoverInfo.imported }) }</p>
|
|
{ failedToDecrypt }
|
|
<DialogButtons primaryButton={_t('OK')}
|
|
onPrimaryButtonClick={this.onDone}
|
|
hasCancel={false}
|
|
focus={true}
|
|
/>
|
|
</div>;
|
|
} else if (backupHasPassphrase && !this.state.forceRecoveryKey) {
|
|
title = _t("Enter Security Phrase");
|
|
content = <div>
|
|
<p>{ _t(
|
|
"<b>Warning</b>: you should only set up key backup " +
|
|
"from a trusted computer.", {},
|
|
{ b: sub => <b>{ sub }</b> },
|
|
) }</p>
|
|
<p>{ _t(
|
|
"Access your secure message history and set up secure " +
|
|
"messaging by entering your Security Phrase.",
|
|
) }</p>
|
|
|
|
<form className="mx_RestoreKeyBackupDialog_primaryContainer">
|
|
<input type="password"
|
|
className="mx_RestoreKeyBackupDialog_passPhraseInput"
|
|
onChange={this.onPassPhraseChange}
|
|
value={this.state.passPhrase}
|
|
autoFocus={true}
|
|
/>
|
|
<DialogButtons
|
|
primaryButton={_t('Next')}
|
|
onPrimaryButtonClick={this.onPassPhraseNext}
|
|
primaryIsSubmit={true}
|
|
hasCancel={true}
|
|
onCancel={this.onCancel}
|
|
focus={false}
|
|
/>
|
|
</form>
|
|
{ _t(
|
|
"If you've forgotten your Security Phrase you can "+
|
|
"<button1>use your Security Key</button1> or " +
|
|
"<button2>set up new recovery options</button2>",
|
|
{},
|
|
{
|
|
button1: s => <AccessibleButton
|
|
className="mx_linkButton"
|
|
element="span"
|
|
onClick={this.onUseRecoveryKeyClick}
|
|
>
|
|
{ s }
|
|
</AccessibleButton>,
|
|
button2: s => <AccessibleButton
|
|
className="mx_linkButton"
|
|
element="span"
|
|
onClick={this.onResetRecoveryClick}
|
|
>
|
|
{ s }
|
|
</AccessibleButton>,
|
|
}) }
|
|
</div>;
|
|
} else {
|
|
title = _t("Enter Security Key");
|
|
|
|
let keyStatus;
|
|
if (this.state.recoveryKey.length === 0) {
|
|
keyStatus = <div className="mx_RestoreKeyBackupDialog_keyStatus" />;
|
|
} else if (this.state.recoveryKeyValid) {
|
|
keyStatus = <div className="mx_RestoreKeyBackupDialog_keyStatus">
|
|
{ "\uD83D\uDC4D " }{ _t("This looks like a valid Security Key!") }
|
|
</div>;
|
|
} else {
|
|
keyStatus = <div className="mx_RestoreKeyBackupDialog_keyStatus">
|
|
{ "\uD83D\uDC4E " }{ _t("Not a valid Security Key") }
|
|
</div>;
|
|
}
|
|
|
|
content = <div>
|
|
<p>{ _t(
|
|
"<b>Warning</b>: You should only set up key backup " +
|
|
"from a trusted computer.", {},
|
|
{ b: sub => <b>{ sub }</b> },
|
|
) }</p>
|
|
<p>{ _t(
|
|
"Access your secure message history and set up secure " +
|
|
"messaging by entering your Security Key.",
|
|
) }</p>
|
|
|
|
<div className="mx_RestoreKeyBackupDialog_primaryContainer">
|
|
<input className="mx_RestoreKeyBackupDialog_recoveryKeyInput"
|
|
onChange={this.onRecoveryKeyChange}
|
|
value={this.state.recoveryKey}
|
|
autoFocus={true}
|
|
/>
|
|
{ keyStatus }
|
|
<DialogButtons primaryButton={_t('Next')}
|
|
onPrimaryButtonClick={this.onRecoveryKeyNext}
|
|
hasCancel={true}
|
|
onCancel={this.onCancel}
|
|
focus={false}
|
|
primaryDisabled={!this.state.recoveryKeyValid}
|
|
/>
|
|
</div>
|
|
{ _t(
|
|
"If you've forgotten your Security Key you can "+
|
|
"<button>set up new recovery options</button>",
|
|
{},
|
|
{
|
|
button: s => <AccessibleButton className="mx_linkButton"
|
|
element="span"
|
|
onClick={this.onResetRecoveryClick}
|
|
>
|
|
{ s }
|
|
</AccessibleButton>,
|
|
},
|
|
) }
|
|
</div>;
|
|
}
|
|
|
|
return (
|
|
<BaseDialog className='mx_RestoreKeyBackupDialog'
|
|
onFinished={this.props.onFinished}
|
|
title={title}
|
|
>
|
|
<div className='mx_RestoreKeyBackupDialog_content'>
|
|
{ content }
|
|
</div>
|
|
</BaseDialog>
|
|
);
|
|
}
|
|
}
|