]> git.saurik.com Git - apple/security.git/blob - OSX/sec/SOSCircle/Tool/recovery_key.m
Security-57740.60.18.tar.gz
[apple/security.git] / OSX / sec / SOSCircle / Tool / recovery_key.m
1 /*
2 * Copyright (c) 2013-2016 Apple Inc. All Rights Reserved.
3 *
4 * @APPLE_LICENSE_HEADER_START@
5 *
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
11 * file.
12 *
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
20 *
21 * @APPLE_LICENSE_HEADER_END@
22 */
23
24 #import <Foundation/Foundation.h>
25 #include "recovery_key.h"
26
27 #include <stdio.h>
28 #include <stdlib.h>
29 #include <getopt.h>
30 #include <utilities/SecCFWrappers.h>
31
32 #include <Security/SecureObjectSync/SOSCloudCircle.h>
33 #include <Security/SecureObjectSync/SOSCloudCircleInternal.h>
34 #include <Security/SecRecoveryKey.h>
35
36 #import <CoreCDP/CoreCDP.h>
37
38
39 #include "secToolFileIO.h"
40
41 int
42 recovery_key(int argc, char * const *argv)
43 {
44 int ch, result = 0;
45 CFErrorRef error = NULL;
46 BOOL hadError = false;
47 SOSLogSetOutputTo(NULL, NULL);
48
49 static struct option long_options[] =
50 {
51 /* These options set a flag. */
52 {"generate", required_argument, NULL, 'G'},
53 {"set", required_argument, NULL, 's'},
54 {"get", no_argument, NULL, 'g'},
55 {"clear", no_argument, NULL, 'c'},
56 {"follow-up", no_argument, NULL, 'F'},
57 {0, 0, 0, 0}
58 };
59 int option_index = 0;
60
61 while ((ch = getopt_long(argc, argv, "FG:Rs:gc", long_options, &option_index)) != -1)
62 switch (ch) {
63 case 'G': {
64 NSString *testString = [NSString stringWithUTF8String:optarg];
65 if(testString == nil)
66 return 2;
67
68 SecRecoveryKey *rk = SecRKCreateRecoveryKey(testString);
69 if(rk == nil)
70 return 2;
71 NSData *publicKey = SecRKCopyBackupPublicKey(rk);
72 if(publicKey == nil)
73 return 2;
74
75 printmsg(CFSTR("public recovery key: %@\n"), publicKey);
76 break;
77 }
78 case 'R': {
79 NSString *testString = SecRKCreateRecoveryKeyString(NULL);
80 if(testString == nil)
81 return 2;
82
83 printmsg(CFSTR("public recovery string: %@\n"), testString);
84
85 break;
86 }
87 case 's':
88 {
89 NSString *testString = [NSString stringWithUTF8String:optarg];
90 if(testString == nil)
91 return 2;
92
93 SecRecoveryKey *rk = SecRKCreateRecoveryKey(testString);
94 if(rk == nil)
95 return 2;
96
97 NSData *publicKey = SecRKCopyBackupPublicKey(rk);
98 if(publicKey == nil)
99 return 2;
100
101 hadError = SOSCCRegisterRecoveryPublicKey((__bridge CFDataRef)(publicKey), &error) != true;
102 break;
103 }
104 case 'g':
105 {
106 CFDataRef recovery_key = SOSCCCopyRecoveryPublicKey(&error);
107 hadError = recovery_key == NULL;
108 if(!hadError)
109 printmsg(CFSTR("recovery key: %@\n"), recovery_key);
110 CFReleaseNull(recovery_key);
111 break;
112 }
113 case 'c':
114 {
115 CFDataRef empty = CFDataCreate(kCFAllocatorDefault, 0, 0);
116 hadError = SOSCCRegisterRecoveryPublicKey(empty, &error) != true;
117 CFReleaseNull(empty);
118 break;
119 }
120 case 'F':
121 {
122 NSError *localError = nil;
123
124 CDPFollowUpController *cdpd = [[CDPFollowUpController alloc] init];
125
126 CDPFollowUpContext *context = [CDPFollowUpContext contextForRecoveryKeyRepair];
127 context.force = true;
128
129 [cdpd postFollowUpWithContext:context error:&localError];
130 if(localError){
131 printmsg(CFSTR("Request to CoreCDP to follow up failed: %@\n"), localError);
132 } else {
133 printmsg(CFSTR("CoreCDP handling follow up\n"));
134 }
135 break;
136 }
137 case '?':
138 default:
139 {
140 printf("%s [...options]\n", getprogname());
141 for (unsigned n = 0; n < sizeof(long_options)/sizeof(long_options[0]); n++) {
142 printf("\t [-%c|--%s\n", long_options[n].val, long_options[n].name);
143 }
144 return 2;
145 }
146 }
147 if (hadError)
148 printerr(CFSTR("Error: %@\n"), error);
149
150 return result;
151 }