configuration.dart 6.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226
  1. import 'dart:convert';
  2. import 'dart:io' as io;
  3. import 'dart:typed_data';
  4. import 'package:flutter/foundation.dart';
  5. import 'package:flutter_secure_storage/flutter_secure_storage.dart';
  6. import 'package:flutter_sodium/flutter_sodium.dart';
  7. import 'package:path_provider/path_provider.dart';
  8. import 'package:photos/models/key_attributes.dart';
  9. import 'package:shared_preferences/shared_preferences.dart';
  10. import 'package:photos/utils/crypto_util.dart';
  11. class Configuration {
  12. Configuration._privateConstructor();
  13. static final Configuration instance = Configuration._privateConstructor();
  14. static const endpointKey = "endpoint";
  15. static const userIDKey = "user_id";
  16. static const emailKey = "email";
  17. static const tokenKey = "token";
  18. static const hasOptedForE2EKey = "has_opted_for_e2e_encryption";
  19. static const foldersToBackUpKey = "folders_to_back_up";
  20. static const keyKey = "key";
  21. static const secretKeyKey = "secret_key";
  22. static const keyAttributesKey = "key_attributes";
  23. SharedPreferences _preferences;
  24. FlutterSecureStorage _secureStorage;
  25. String _key;
  26. String _secretKey;
  27. String _documentsDirectory;
  28. String _tempDirectory;
  29. String _thumbnailsDirectory;
  30. Future<void> init() async {
  31. _preferences = await SharedPreferences.getInstance();
  32. _secureStorage = FlutterSecureStorage();
  33. _documentsDirectory = (await getApplicationDocumentsDirectory()).path;
  34. _tempDirectory = _documentsDirectory + "/temp/";
  35. _thumbnailsDirectory = _documentsDirectory + "/thumbnails/";
  36. new io.Directory(_tempDirectory).createSync(recursive: true);
  37. new io.Directory(_thumbnailsDirectory).createSync(recursive: true);
  38. _key = await _secureStorage.read(key: keyKey);
  39. _secretKey = await _secureStorage.read(key: secretKeyKey);
  40. }
  41. Future<KeyAttributes> generateAndSaveKey(String passphrase) async {
  42. // Create a master key
  43. final key = CryptoUtil.generateKey();
  44. // Derive a key from the passphrase that will be used to encrypt and
  45. // decrypt the master key
  46. final kekSalt = CryptoUtil.getSaltToDeriveKey();
  47. final kek = CryptoUtil.deriveKey(utf8.encode(passphrase), kekSalt);
  48. // Encrypt the key with this derived key
  49. final encryptedKeyData = CryptoUtil.encryptSync(key, kek);
  50. // Hash the passphrase so that its correctness can be compared later
  51. final kekHash = await CryptoUtil.hash(kek);
  52. // Generate a public-private keypair and encrypt the latter
  53. final keyPair = await CryptoUtil.generateKeyPair();
  54. final encryptedSecretKeyData = CryptoUtil.encryptSync(keyPair.sk, kek);
  55. final attributes = KeyAttributes(
  56. Sodium.bin2base64(kekSalt),
  57. kekHash,
  58. Sodium.bin2base64(encryptedKeyData.encryptedData),
  59. Sodium.bin2base64(encryptedKeyData.nonce),
  60. Sodium.bin2base64(keyPair.pk),
  61. Sodium.bin2base64(encryptedSecretKeyData.encryptedData),
  62. Sodium.bin2base64(encryptedSecretKeyData.nonce),
  63. );
  64. await setKey(Sodium.bin2base64(key));
  65. await setSecretKey(Sodium.bin2base64(keyPair.sk));
  66. await setKeyAttributes(attributes);
  67. return attributes;
  68. }
  69. Future<void> decryptAndSaveKey(
  70. String passphrase, KeyAttributes attributes) async {
  71. final kek = CryptoUtil.deriveKey(
  72. utf8.encode(passphrase), Sodium.base642bin(attributes.kekSalt));
  73. bool correctPassphrase =
  74. await CryptoUtil.verifyHash(kek, attributes.kekHash);
  75. if (!correctPassphrase) {
  76. throw Exception("Incorrect passphrase");
  77. }
  78. final key = CryptoUtil.decryptSync(
  79. Sodium.base642bin(attributes.encryptedKey),
  80. kek,
  81. Sodium.base642bin(attributes.keyDecryptionNonce));
  82. final secretKey = CryptoUtil.decryptSync(
  83. Sodium.base642bin(attributes.encryptedSecretKey),
  84. kek,
  85. Sodium.base642bin(attributes.secretKeyDecryptionNonce));
  86. await setKey(Sodium.bin2base64(key));
  87. await setSecretKey(Sodium.bin2base64(secretKey));
  88. }
  89. String getHttpEndpoint() {
  90. if (kDebugMode) {
  91. return "http://192.168.0.100";
  92. }
  93. return "https://api.staging.ente.io";
  94. }
  95. Future<void> setEndpoint(String endpoint) async {
  96. await _preferences.setString(endpointKey, endpoint);
  97. }
  98. String getToken() {
  99. return _preferences.getString(tokenKey);
  100. }
  101. Future<void> setToken(String token) async {
  102. await _preferences.setString(tokenKey, token);
  103. }
  104. String getEmail() {
  105. return _preferences.getString(emailKey);
  106. }
  107. Future<void> setEmail(String email) async {
  108. await _preferences.setString(emailKey, email);
  109. }
  110. int getUserID() {
  111. return _preferences.getInt(userIDKey);
  112. }
  113. Future<void> setUserID(int userID) async {
  114. await _preferences.setInt(userIDKey, userID);
  115. }
  116. Future<void> setOptInForE2E(bool hasOptedForE2E) async {
  117. await _preferences.setBool(hasOptedForE2EKey, hasOptedForE2E);
  118. }
  119. bool hasOptedForE2E() {
  120. return true;
  121. // return _preferences.getBool(hasOptedForE2EKey);
  122. }
  123. Set<String> getPathsToBackUp() {
  124. if (_preferences.containsKey(foldersToBackUpKey)) {
  125. return _preferences.getStringList(foldersToBackUpKey).toSet();
  126. } else {
  127. final foldersToBackUp = Set<String>();
  128. foldersToBackUp.add("Camera");
  129. foldersToBackUp.add("Recents");
  130. foldersToBackUp.add("DCIM");
  131. foldersToBackUp.add("Download");
  132. foldersToBackUp.add("Screenshot");
  133. return foldersToBackUp;
  134. }
  135. }
  136. Future<void> setPathsToBackUp(Set<String> folders) async {
  137. await _preferences.setStringList(foldersToBackUpKey, folders.toList());
  138. }
  139. Future<void> addPathToFoldersToBeBackedUp(String path) async {
  140. final currentPaths = getPathsToBackUp();
  141. currentPaths.add(path);
  142. return setPathsToBackUp(currentPaths);
  143. }
  144. Future<void> setKeyAttributes(KeyAttributes attributes) async {
  145. await _preferences.setString(
  146. keyAttributesKey, attributes == null ? null : attributes.toJson());
  147. }
  148. KeyAttributes getKeyAttributes() {
  149. final jsonValue = _preferences.getString(keyAttributesKey);
  150. if (jsonValue == null) {
  151. return null;
  152. } else {
  153. return KeyAttributes.fromJson(jsonValue);
  154. }
  155. }
  156. Future<void> setKey(String key) async {
  157. _key = key;
  158. if (key == null) {
  159. await _secureStorage.delete(key: keyKey);
  160. } else {
  161. await _secureStorage.write(key: keyKey, value: key);
  162. }
  163. }
  164. Future<void> setSecretKey(String secretKey) async {
  165. _secretKey = secretKey;
  166. if (secretKey == null) {
  167. await _secureStorage.delete(key: secretKeyKey);
  168. } else {
  169. await _secureStorage.write(key: secretKeyKey, value: secretKey);
  170. }
  171. }
  172. Uint8List getKey() {
  173. return _key == null ? null : Sodium.base642bin(_key);
  174. }
  175. Uint8List getSecretKey() {
  176. return _secretKey == null ? null : Sodium.base642bin(_secretKey);
  177. }
  178. String getDocumentsDirectory() {
  179. return _documentsDirectory;
  180. }
  181. String getThumbnailsDirectory() {
  182. return _thumbnailsDirectory;
  183. }
  184. String getTempDirectory() {
  185. return _tempDirectory;
  186. }
  187. bool hasConfiguredAccount() {
  188. return getToken() != null && getKey() != null;
  189. }
  190. }