configuration.dart 7.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227
  1. import 'dart:convert';
  2. import 'dart:io' as io;
  3. import 'dart:typed_data';
  4. import 'package:flutter/foundation.dart';
  5. import 'package:flutter_secure_storage/flutter_secure_storage.dart';
  6. import 'package:flutter_sodium/flutter_sodium.dart';
  7. import 'package:path_provider/path_provider.dart';
  8. import 'package:photos/models/key_attributes.dart';
  9. import 'package:photos/models/key_gen_result.dart';
  10. import 'package:photos/models/private_key_attributes.dart';
  11. import 'package:shared_preferences/shared_preferences.dart';
  12. import 'package:photos/utils/crypto_util.dart';
  13. class Configuration {
  14. Configuration._privateConstructor();
  15. static final Configuration instance = Configuration._privateConstructor();
  16. static const endpointKey = "endpoint";
  17. static const userIDKey = "user_id";
  18. static const emailKey = "email";
  19. static const tokenKey = "token";
  20. static const hasOptedForE2EKey = "has_opted_for_e2e_encryption";
  21. static const foldersToBackUpKey = "folders_to_back_up";
  22. static const keyKey = "key";
  23. static const secretKeyKey = "secret_key";
  24. static const keyAttributesKey = "key_attributes";
  25. SharedPreferences _preferences;
  26. FlutterSecureStorage _secureStorage;
  27. String _key;
  28. String _secretKey;
  29. String _documentsDirectory;
  30. String _tempDirectory;
  31. String _thumbnailsDirectory;
  32. Future<void> init() async {
  33. _preferences = await SharedPreferences.getInstance();
  34. _secureStorage = FlutterSecureStorage();
  35. _documentsDirectory = (await getApplicationDocumentsDirectory()).path;
  36. _tempDirectory = _documentsDirectory + "/temp/";
  37. _thumbnailsDirectory = _documentsDirectory + "/thumbnails/";
  38. new io.Directory(_tempDirectory).createSync(recursive: true);
  39. new io.Directory(_thumbnailsDirectory).createSync(recursive: true);
  40. _key = await _secureStorage.read(key: keyKey);
  41. _secretKey = await _secureStorage.read(key: secretKeyKey);
  42. }
  43. Future<KeyGenResult> generateKey(String passphrase) async {
  44. // Create a master key
  45. final key = CryptoUtil.generateKey();
  46. // Derive a key from the passphrase that will be used to encrypt and
  47. // decrypt the master key
  48. final kekSalt = CryptoUtil.getSaltToDeriveKey();
  49. final kek = CryptoUtil.deriveKey(utf8.encode(passphrase), kekSalt);
  50. // Encrypt the key with this derived key
  51. final encryptedKeyData = CryptoUtil.encryptSync(key, kek);
  52. // Hash the passphrase so that its correctness can be compared later
  53. final kekHash = await CryptoUtil.hash(kek);
  54. // Generate a public-private keypair and encrypt the latter
  55. final keyPair = await CryptoUtil.generateKeyPair();
  56. final encryptedSecretKeyData = CryptoUtil.encryptSync(keyPair.sk, kek);
  57. final attributes = KeyAttributes(
  58. Sodium.bin2base64(kekSalt),
  59. kekHash,
  60. Sodium.bin2base64(encryptedKeyData.encryptedData),
  61. Sodium.bin2base64(encryptedKeyData.nonce),
  62. Sodium.bin2base64(keyPair.pk),
  63. Sodium.bin2base64(encryptedSecretKeyData.encryptedData),
  64. Sodium.bin2base64(encryptedSecretKeyData.nonce),
  65. );
  66. final privateAttributes = PrivateKeyAttributes(
  67. Sodium.bin2base64(key), Sodium.bin2base64(keyPair.sk));
  68. return KeyGenResult(attributes, privateAttributes);
  69. }
  70. Future<void> decryptAndSaveKey(
  71. String passphrase, KeyAttributes attributes) async {
  72. final kek = CryptoUtil.deriveKey(
  73. utf8.encode(passphrase), Sodium.base642bin(attributes.kekSalt));
  74. bool correctPassphrase =
  75. await CryptoUtil.verifyHash(kek, attributes.kekHash);
  76. if (!correctPassphrase) {
  77. throw Exception("Incorrect passphrase");
  78. }
  79. final key = CryptoUtil.decryptSync(
  80. Sodium.base642bin(attributes.encryptedKey),
  81. kek,
  82. Sodium.base642bin(attributes.keyDecryptionNonce));
  83. final secretKey = CryptoUtil.decryptSync(
  84. Sodium.base642bin(attributes.encryptedSecretKey),
  85. kek,
  86. Sodium.base642bin(attributes.secretKeyDecryptionNonce));
  87. await setKey(Sodium.bin2base64(key));
  88. await setSecretKey(Sodium.bin2base64(secretKey));
  89. }
  90. String getHttpEndpoint() {
  91. if (kDebugMode) {
  92. return "http://192.168.0.100";
  93. }
  94. return "https://api.staging.ente.io";
  95. }
  96. Future<void> setEndpoint(String endpoint) async {
  97. await _preferences.setString(endpointKey, endpoint);
  98. }
  99. String getToken() {
  100. return _preferences.getString(tokenKey);
  101. }
  102. Future<void> setToken(String token) async {
  103. await _preferences.setString(tokenKey, token);
  104. }
  105. String getEmail() {
  106. return _preferences.getString(emailKey);
  107. }
  108. Future<void> setEmail(String email) async {
  109. await _preferences.setString(emailKey, email);
  110. }
  111. int getUserID() {
  112. return _preferences.getInt(userIDKey);
  113. }
  114. Future<void> setUserID(int userID) async {
  115. await _preferences.setInt(userIDKey, userID);
  116. }
  117. Future<void> setOptInForE2E(bool hasOptedForE2E) async {
  118. await _preferences.setBool(hasOptedForE2EKey, hasOptedForE2E);
  119. }
  120. bool hasOptedForE2E() {
  121. return true;
  122. // return _preferences.getBool(hasOptedForE2EKey);
  123. }
  124. Set<String> getPathsToBackUp() {
  125. if (_preferences.containsKey(foldersToBackUpKey)) {
  126. return _preferences.getStringList(foldersToBackUpKey).toSet();
  127. } else {
  128. final foldersToBackUp = Set<String>();
  129. foldersToBackUp.add("Camera");
  130. foldersToBackUp.add("Recents");
  131. foldersToBackUp.add("DCIM");
  132. foldersToBackUp.add("Download");
  133. foldersToBackUp.add("Screenshot");
  134. return foldersToBackUp;
  135. }
  136. }
  137. Future<void> setPathsToBackUp(Set<String> folders) async {
  138. await _preferences.setStringList(foldersToBackUpKey, folders.toList());
  139. }
  140. Future<void> addPathToFoldersToBeBackedUp(String path) async {
  141. final currentPaths = getPathsToBackUp();
  142. currentPaths.add(path);
  143. return setPathsToBackUp(currentPaths);
  144. }
  145. Future<void> setKeyAttributes(KeyAttributes attributes) async {
  146. await _preferences.setString(
  147. keyAttributesKey, attributes == null ? null : attributes.toJson());
  148. }
  149. KeyAttributes getKeyAttributes() {
  150. final jsonValue = _preferences.getString(keyAttributesKey);
  151. if (jsonValue == null) {
  152. return null;
  153. } else {
  154. return KeyAttributes.fromJson(jsonValue);
  155. }
  156. }
  157. Future<void> setKey(String key) async {
  158. _key = key;
  159. if (key == null) {
  160. await _secureStorage.delete(key: keyKey);
  161. } else {
  162. await _secureStorage.write(key: keyKey, value: key);
  163. }
  164. }
  165. Future<void> setSecretKey(String secretKey) async {
  166. _secretKey = secretKey;
  167. if (secretKey == null) {
  168. await _secureStorage.delete(key: secretKeyKey);
  169. } else {
  170. await _secureStorage.write(key: secretKeyKey, value: secretKey);
  171. }
  172. }
  173. Uint8List getKey() {
  174. return _key == null ? null : Sodium.base642bin(_key);
  175. }
  176. Uint8List getSecretKey() {
  177. return _secretKey == null ? null : Sodium.base642bin(_secretKey);
  178. }
  179. String getDocumentsDirectory() {
  180. return _documentsDirectory;
  181. }
  182. String getThumbnailsDirectory() {
  183. return _thumbnailsDirectory;
  184. }
  185. String getTempDirectory() {
  186. return _tempDirectory;
  187. }
  188. bool hasConfiguredAccount() {
  189. return getToken() != null && getKey() != null;
  190. }
  191. }