2014-10-24 05:45:09 +02:00
|
|
|
/* vim: ts=4:sw=4:expandtab
|
2014-05-14 20:58:12 +02:00
|
|
|
*
|
|
|
|
* This program is free software: you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU Lesser General Public License as published by
|
|
|
|
* the Free Software Foundation, either version 3 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU Lesser General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU Lesser General Public License
|
|
|
|
* along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
*/
|
|
|
|
|
2014-04-04 08:33:02 +02:00
|
|
|
/* Web Crypto polyfill. TODO: replace with web crypto */
|
|
|
|
// All inputs/outputs are arraybuffers!
|
2014-10-24 06:30:36 +02:00
|
|
|
window.textsecure.subtle = (function() {
|
2014-10-24 05:45:09 +02:00
|
|
|
/* if (window.crypto.subtle !== undefined && window.crypto.subtle !== null) {
|
|
|
|
return window.crypto.subtle;
|
|
|
|
} else*/ {
|
|
|
|
var StaticArrayBufferProto = new ArrayBuffer().__proto__;
|
|
|
|
function assertIsArrayBuffer(thing) {
|
|
|
|
if (thing !== Object(thing) || thing.__proto__ != StaticArrayBufferProto)
|
|
|
|
throw new Error("Needed a ArrayBuffer");
|
|
|
|
}
|
2014-05-09 09:43:23 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
// private implementation functions
|
|
|
|
function HmacSHA256(key, input) {
|
|
|
|
assertIsArrayBuffer(key);
|
|
|
|
assertIsArrayBuffer(input);
|
|
|
|
return CryptoJS.HmacSHA256(
|
|
|
|
CryptoJS.lib.WordArray.create(toArrayBuffer(input)),
|
|
|
|
CryptoJS.enc.Latin1.parse(getString(key))
|
|
|
|
).toString(CryptoJS.enc.Latin1);
|
|
|
|
};
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
function encryptAESCTR(plaintext, key, counter) {
|
|
|
|
assertIsArrayBuffer(plaintext);
|
|
|
|
assertIsArrayBuffer(key);
|
|
|
|
assertIsArrayBuffer(counter);
|
|
|
|
return CryptoJS.AES.encrypt(CryptoJS.enc.Latin1.parse(getString(plaintext)),
|
|
|
|
CryptoJS.enc.Latin1.parse(getString(key)),
|
|
|
|
{mode: CryptoJS.mode.CTR, iv: CryptoJS.enc.Latin1.parse(getString(counter)),
|
|
|
|
padding: CryptoJS.pad.NoPadding})
|
|
|
|
.ciphertext.toString(CryptoJS.enc.Latin1);
|
|
|
|
};
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
function decryptAESCTR(ciphertext, key, counter) {
|
|
|
|
assertIsArrayBuffer(ciphertext);
|
|
|
|
assertIsArrayBuffer(key);
|
|
|
|
assertIsArrayBuffer(counter);
|
|
|
|
return CryptoJS.AES.decrypt(btoa(getString(ciphertext)),
|
|
|
|
CryptoJS.enc.Latin1.parse(getString(key)),
|
|
|
|
{mode: CryptoJS.mode.CTR, iv: CryptoJS.enc.Latin1.parse(getString(counter)),
|
|
|
|
padding: CryptoJS.pad.NoPadding})
|
|
|
|
.toString(CryptoJS.enc.Latin1);
|
|
|
|
};
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-25 04:09:58 +02:00
|
|
|
function encryptAESCBC(plaintext, key, iv) {
|
|
|
|
assertIsArrayBuffer(plaintext);
|
|
|
|
assertIsArrayBuffer(key);
|
|
|
|
assertIsArrayBuffer(iv);
|
2014-10-26 04:45:21 +01:00
|
|
|
return CryptoJS.AES.encrypt(CryptoJS.enc.Latin1.parse(getString(plaintext)),
|
2014-10-25 04:09:58 +02:00
|
|
|
CryptoJS.enc.Latin1.parse(getString(key)),
|
|
|
|
{iv: CryptoJS.enc.Latin1.parse(getString(iv))})
|
2014-10-26 04:45:21 +01:00
|
|
|
.ciphertext.toString(CryptoJS.enc.Latin1);
|
2014-10-25 04:09:58 +02:00
|
|
|
};
|
2014-10-24 05:45:09 +02:00
|
|
|
function decryptAESCBC(ciphertext, key, iv) {
|
|
|
|
assertIsArrayBuffer(ciphertext);
|
|
|
|
assertIsArrayBuffer(key);
|
|
|
|
assertIsArrayBuffer(iv);
|
|
|
|
return CryptoJS.AES.decrypt(btoa(getString(ciphertext)),
|
|
|
|
CryptoJS.enc.Latin1.parse(getString(key)),
|
|
|
|
{iv: CryptoJS.enc.Latin1.parse(getString(iv))})
|
|
|
|
.toString(CryptoJS.enc.Latin1);
|
|
|
|
};
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
// utility function for connecting front and back ends via promises
|
|
|
|
// Takes an implementation function and 0 or more arguments
|
|
|
|
function promise(implementation) {
|
|
|
|
var args = Array.prototype.slice.call(arguments);
|
|
|
|
args.shift();
|
|
|
|
return Promise.resolve(toArrayBuffer(implementation.apply(this, args)));
|
|
|
|
}
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
// public interface functions
|
|
|
|
function encrypt(algorithm, key, data) {
|
|
|
|
if (algorithm.name === "AES-CTR")
|
|
|
|
return promise(encryptAESCTR, data, key, algorithm.counter);
|
2014-10-25 04:09:58 +02:00
|
|
|
if (algorithm.name === "AES-CBC")
|
|
|
|
return promise(encryptAESCBC, data, key, algorithm.iv);
|
2014-10-24 05:45:09 +02:00
|
|
|
};
|
|
|
|
function decrypt(algorithm, key, data) {
|
|
|
|
if (algorithm.name === "AES-CTR")
|
|
|
|
return promise(decryptAESCTR, data, key, algorithm.counter);
|
|
|
|
if (algorithm.name === "AES-CBC")
|
|
|
|
return promise(decryptAESCBC, data, key, algorithm.iv);
|
|
|
|
};
|
|
|
|
function sign(algorithm, key, data) {
|
|
|
|
if (algorithm.name === "HMAC" && algorithm.hash === "SHA-256")
|
|
|
|
return promise(HmacSHA256, key, data);
|
|
|
|
};
|
2014-04-04 08:33:02 +02:00
|
|
|
|
2014-10-24 05:45:09 +02:00
|
|
|
return {
|
|
|
|
encrypt : encrypt,
|
|
|
|
decrypt : decrypt,
|
|
|
|
sign : sign,
|
|
|
|
}
|
|
|
|
}
|
2014-04-04 08:33:02 +02:00
|
|
|
})();
|