2 * Copyright (c) 2013-2016 Apple Inc. All Rights Reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * This file contains Original Code and/or Modifications of Original Code
7 * as defined in and that are subject to the Apple Public Source License
8 * Version 2.0 (the 'License'). You may not use this file except in
9 * compliance with the License. Please obtain a copy of the License at
10 * http://www.opensource.apple.com/apsl/ and read it before using this
13 * The Original Code and all software distributed under the License are
14 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
15 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
16 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE, QUIET ENJOYMENT OR NON-INFRINGEMENT.
18 * Please see the License for the specific language governing rights and
19 * limitations under the License.
21 * @APPLE_LICENSE_HEADER_END@
24 #import <Foundation/Foundation.h>
25 #include "recovery_key.h"
30 #include <utilities/SecCFWrappers.h>
32 #include <Security/SecureObjectSync/SOSCloudCircle.h>
33 #include <Security/SecureObjectSync/SOSCloudCircleInternal.h>
34 #include <Security/SecRecoveryKey.h>
36 #import <CoreCDP/CoreCDP.h>
39 #include "secToolFileIO.h"
42 recovery_key(int argc, char * const *argv)
45 CFErrorRef error = NULL;
46 BOOL hadError = false;
47 SOSLogSetOutputTo(NULL, NULL);
49 static struct option long_options[] =
51 /* These options set a flag. */
52 {"generate", required_argument, NULL, 'G'},
53 {"set", required_argument, NULL, 's'},
54 {"get", no_argument, NULL, 'g'},
55 {"clear", no_argument, NULL, 'c'},
56 {"follow-up", no_argument, NULL, 'F'},
61 while ((ch = getopt_long(argc, argv, "FG:Rs:gcV:", long_options, &option_index)) != -1)
64 NSError *nserror = NULL;
65 NSString *testString = [NSString stringWithUTF8String:optarg];
69 SecRecoveryKey *rk = SecRKCreateRecoveryKeyWithError(testString, &nserror);
71 printmsg(CFSTR("SecRKCreateRecoveryKeyWithError: %@\n"), nserror);
74 NSData *publicKey = SecRKCopyBackupPublicKey(rk);
78 printmsg(CFSTR("public recovery key: %@\n"), publicKey);
82 NSString *testString = SecRKCreateRecoveryKeyString(NULL);
86 printmsg(CFSTR("public recovery string: %@\n"), testString);
92 NSError *nserror = NULL;
93 NSString *testString = [NSString stringWithUTF8String:optarg];
97 SecRecoveryKey *rk = SecRKCreateRecoveryKeyWithError(testString, &nserror);
99 printmsg(CFSTR("SecRKCreateRecoveryKeyWithError: %@\n"), nserror);
103 NSData *publicKey = SecRKCopyBackupPublicKey(rk);
107 hadError = SOSCCRegisterRecoveryPublicKey((__bridge CFDataRef)(publicKey), &error) != true;
112 CFDataRef recovery_key = SOSCCCopyRecoveryPublicKey(&error);
113 hadError = recovery_key == NULL;
115 printmsg(CFSTR("recovery key: %@\n"), recovery_key);
116 CFReleaseNull(recovery_key);
121 hadError = SOSCCRegisterRecoveryPublicKey(NULL, &error) != true;
126 NSError *localError = nil;
128 CDPFollowUpController *cdpd = [[CDPFollowUpController alloc] init];
130 CDPFollowUpContext *context = [CDPFollowUpContext contextForRecoveryKeyRepair];
131 context.force = true;
133 [cdpd postFollowUpWithContext:context error:&localError];
135 printmsg(CFSTR("Request to CoreCDP to follow up failed: %@\n"), localError);
137 printmsg(CFSTR("CoreCDP handling follow up\n"));
142 NSError *localError = nil;
143 NSString *testString = [NSString stringWithUTF8String:optarg];
144 NSString *fileName = [NSString stringWithFormat:@"%@.plist", testString];
145 if(testString == nil)
148 NSDictionary *ver = SecRKCopyAccountRecoveryVerifier(testString, &localError);
150 printmsg(CFSTR("Failed to make verifier dictionary: %@\n"), localError);
154 printmsg(CFSTR("Verifier Dictionary: %@\n\n"), ver);
155 printmsg(CFSTR("Writing plist to %@\n"), (__bridge CFStringRef) fileName);
157 [ver writeToFile:fileName atomically:YES];
165 printf("%s [...options]\n", getprogname());
166 for (unsigned n = 0; n < sizeof(long_options)/sizeof(long_options[0]); n++) {
167 printf("\t [-%c|--%s\n", long_options[n].val, long_options[n].name);
173 printerr(CFSTR("Error: %@\n"), error);