42
37
from dbus.mainloop.glib import DBusGMainLoop
 
46
 
    from gi.repository import GObject as gobject
 
52
 
if sys.version_info[0] == 2:
 
55
46
locale.setlocale(locale.LC_ALL, '')
 
58
49
logging.getLogger('dbus.proxies').setLevel(logging.CRITICAL)
 
60
51
# Some useful constants
 
61
 
domain = 'se.recompile'
 
 
52
domain = 'se.bsnet.fukt'
 
62
53
server_interface = domain + '.Mandos'
 
63
54
client_interface = domain + '.Mandos.Client'
 
 
57
# Always run in monochrome mode
 
 
58
urwid.curses_display.curses.has_colors = lambda : False
 
 
60
# Urwid doesn't support blinking, but we want it.  Since we have no
 
 
61
# use for underline on its own, we make underline also always blink.
 
 
62
urwid.curses_display.curses.A_UNDERLINE |= (
 
 
63
    urwid.curses_display.curses.A_BLINK)
 
66
65
def isoformat_to_datetime(iso):
 
67
66
    "Parse an ISO 8601 date string to a datetime.datetime()"
 
 
84
83
    properties and calls a hook function when any of them are
 
87
 
    def __init__(self, proxy_object=None, properties=None, **kwargs):
 
 
86
    def __init__(self, proxy_object=None, *args, **kwargs):
 
88
87
        self.proxy = proxy_object # Mandos Client proxy object
 
89
 
        self.properties = dict() if properties is None else properties
 
 
89
        self.properties = dict()
 
90
90
        self.property_changed_match = (
 
91
91
            self.proxy.connect_to_signal("PropertyChanged",
 
92
 
                                         self._property_changed,
 
 
92
                                         self.property_changed,
 
96
 
        if properties is None:
 
97
 
            self.properties.update(
 
98
 
                self.proxy.GetAll(client_interface,
 
100
 
                                  = dbus.PROPERTIES_IFACE))
 
102
 
        super(MandosClientPropertyCache, self).__init__(**kwargs)
 
104
 
    def _property_changed(self, property, value):
 
105
 
        """Helper which takes positional arguments"""
 
106
 
        return self.property_changed(property=property, value=value)
 
 
96
        self.properties.update(
 
 
97
            self.proxy.GetAll(client_interface,
 
 
98
                              dbus_interface = dbus.PROPERTIES_IFACE))
 
 
100
        #XXX This breaks good super behaviour
 
 
101
#        super(MandosClientPropertyCache, self).__init__(
 
108
104
    def property_changed(self, property=None, value=None):
 
109
105
        """This is called whenever we get a PropertyChanged signal
 
 
132
130
        self.logger = logger
 
134
132
        self._update_timer_callback_tag = None
 
 
133
        self._update_timer_callback_lock = 0
 
 
134
        self.last_checker_failed = False
 
136
136
        # The widget shown normally
 
137
137
        self._text_widget = urwid.Text("")
 
138
138
        # The widget shown when we have focus
 
139
139
        self._focus_text_widget = urwid.Text("")
 
140
 
        super(MandosClientWidget, self).__init__(**kwargs)
 
 
140
        super(MandosClientWidget, self).__init__(
 
 
141
            update_hook=update_hook, delete_hook=delete_hook,
 
142
144
        self.opened = False
 
 
146
        last_checked_ok = isoformat_to_datetime(self.properties
 
 
148
        if last_checked_ok is None:
 
 
149
            self.last_checker_failed = True
 
 
151
            self.last_checker_failed = ((datetime.datetime.utcnow()
 
 
158
        if self.last_checker_failed:
 
 
159
            self.using_timer(True)
 
 
161
        if self.need_approval:
 
 
162
            self.using_timer(True)
 
144
164
        self.match_objects = (
 
145
165
            self.proxy.connect_to_signal("CheckerCompleted",
 
146
166
                                         self.checker_completed,
 
 
163
183
                                         client_interface,
 
164
184
                                         byte_arrays=True))
 
165
 
        #self.logger('Created client {0}'
 
166
 
        #            .format(self.properties["Name"]))
 
 
185
        #self.logger('Created client %s' % (self.properties["Name"]))
 
 
187
    def property_changed(self, property=None, value=None):
 
 
188
        super(self, MandosClientWidget).property_changed(property,
 
 
190
        if property == "ApprovalPending":
 
 
191
            using_timer(bool(value))
 
168
193
    def using_timer(self, flag):
 
169
194
        """Call this method with True or False when timer should be
 
170
195
        activated or deactivated.
 
172
 
        if flag and self._update_timer_callback_tag is None:
 
173
 
            # Will update the shown timer value every second
 
 
197
        old = self._update_timer_callback_lock
 
 
199
            self._update_timer_callback_lock += 1
 
 
201
            self._update_timer_callback_lock -= 1
 
 
202
        if old == 0 and self._update_timer_callback_lock:
 
174
203
            self._update_timer_callback_tag = (gobject.timeout_add
 
176
205
                                                self.update_timer))
 
177
 
        elif not (flag or self._update_timer_callback_tag is None):
 
 
206
        elif old and self._update_timer_callback_lock == 0:
 
178
207
            gobject.source_remove(self._update_timer_callback_tag)
 
179
208
            self._update_timer_callback_tag = None
 
181
210
    def checker_completed(self, exitstatus, condition, command):
 
182
211
        if exitstatus == 0:
 
 
212
            if self.last_checker_failed:
 
 
213
                self.last_checker_failed = False
 
 
214
                self.using_timer(False)
 
 
215
            #self.logger('Checker for client %s (command "%s")'
 
 
217
            #            % (self.properties["Name"], command))
 
 
221
        if not self.last_checker_failed:
 
 
222
            self.last_checker_failed = True
 
 
223
            self.using_timer(True)
 
186
224
        if os.WIFEXITED(condition):
 
187
 
            self.logger('Checker for client {0} (command "{1}")'
 
188
 
                        ' failed with exit code {2}'
 
189
 
                        .format(self.properties["Name"], command,
 
190
 
                                os.WEXITSTATUS(condition)))
 
 
225
            self.logger('Checker for client %s (command "%s")'
 
 
226
                        ' failed with exit code %s'
 
 
227
                        % (self.properties["Name"], command,
 
 
228
                           os.WEXITSTATUS(condition)))
 
191
229
        elif os.WIFSIGNALED(condition):
 
192
 
            self.logger('Checker for client {0} (command "{1}") was'
 
193
 
                        ' killed by signal {2}'
 
194
 
                        .format(self.properties["Name"], command,
 
195
 
                                os.WTERMSIG(condition)))
 
 
230
            self.logger('Checker for client %s (command "%s")'
 
 
231
                        ' was killed by signal %s'
 
 
232
                        % (self.properties["Name"], command,
 
 
233
                           os.WTERMSIG(condition)))
 
196
234
        elif os.WCOREDUMP(condition):
 
197
 
            self.logger('Checker for client {0} (command "{1}")'
 
 
235
            self.logger('Checker for client %s (command "%s")'
 
199
 
                        .format(self.properties["Name"], command))
 
 
237
                        % (self.properties["Name"], command))
 
201
 
            self.logger('Checker for client {0} completed'
 
203
 
                        .format(self.properties["Name"]))
 
 
239
            self.logger('Checker for client %s completed'
 
206
243
    def checker_started(self, command):
 
207
 
        """Server signals that a checker started. This could be useful
 
208
 
           to log in the future. """
 
209
 
        #self.logger('Client {0} started checker "{1}"'
 
210
 
        #            .format(self.properties["Name"],
 
 
244
        #self.logger('Client %s started checker "%s"'
 
 
245
        #            % (self.properties["Name"], unicode(command)))
 
214
248
    def got_secret(self):
 
215
 
        self.logger('Client {0} received its secret'
 
216
 
                    .format(self.properties["Name"]))
 
 
249
        self.last_checker_failed = False
 
 
250
        self.logger('Client %s received its secret'
 
 
251
                    % self.properties["Name"])
 
218
253
    def need_approval(self, timeout, default):
 
220
 
            message = 'Client {0} needs approval within {1} seconds'
 
 
255
            message = 'Client %s needs approval within %s seconds'
 
222
 
            message = 'Client {0} will get its secret in {1} seconds'
 
223
 
        self.logger(message.format(self.properties["Name"],
 
 
257
            message = 'Client %s will get its secret in %s seconds'
 
 
259
                    % (self.properties["Name"], timeout/1000))
 
 
260
        self.using_timer(True)
 
226
262
    def rejected(self, reason):
 
227
 
        self.logger('Client {0} was rejected; reason: {1}'
 
228
 
                    .format(self.properties["Name"], reason))
 
 
263
        self.logger('Client %s was rejected; reason: %s'
 
 
264
                    % (self.properties["Name"], reason))
 
230
266
    def selectable(self):
 
231
267
        """Make this a "selectable" widget.
 
 
268
304
            last_approval_request = isoformat_to_datetime(
 
269
305
                self.properties["LastApprovalRequest"])
 
270
306
            if last_approval_request is not None:
 
271
 
                timer = max(timeout - (datetime.datetime.utcnow()
 
272
 
                                       - last_approval_request),
 
273
 
                            datetime.timedelta())
 
 
307
                timer = timeout - (datetime.datetime.utcnow()
 
 
308
                                   - last_approval_request)
 
275
310
                timer = datetime.timedelta()
 
276
311
            if self.properties["ApprovedByDefault"]:
 
277
 
                message = "Approval in {0}. (d)eny?"
 
279
 
                message = "Denial in {0}. (a)pprove?"
 
280
 
            message = message.format(str(timer).rsplit(".", 1)[0])
 
281
 
            self.using_timer(True)
 
282
 
        elif self.properties["LastCheckerStatus"] != 0:
 
283
 
            # When checker has failed, show timer until client expires
 
284
 
            expires = self.properties["Expires"]
 
286
 
                timer = datetime.timedelta(0)
 
288
 
                expires = (datetime.datetime.strptime
 
289
 
                           (expires, '%Y-%m-%dT%H:%M:%S.%f'))
 
290
 
                timer = max(expires - datetime.datetime.utcnow(),
 
291
 
                            datetime.timedelta())
 
 
312
                message = "Approval in %s. (d)eny?"
 
 
314
                message = "Denial in %s. (a)pprove?"
 
 
315
            message = message % unicode(timer).rsplit(".", 1)[0]
 
 
316
        elif self.last_checker_failed:
 
 
317
            timeout = datetime.timedelta(milliseconds
 
 
320
            last_ok = isoformat_to_datetime(
 
 
321
                max((self.properties["LastCheckedOK"]
 
 
322
                     or self.properties["Created"]),
 
 
323
                    self.properties["LastEnabled"]))
 
 
324
            timer = timeout - (datetime.datetime.utcnow() - last_ok)
 
292
325
            message = ('A checker has failed! Time until client'
 
293
 
                       ' gets disabled: {0}'
 
294
 
                       .format(str(timer).rsplit(".", 1)[0]))
 
295
 
            self.using_timer(True)
 
 
327
                           % unicode(timer).rsplit(".", 1)[0])
 
297
329
            message = "enabled"
 
298
 
            self.using_timer(False)
 
299
 
        self._text = "{0}{1}".format(base, message)
 
 
330
        self._text = "%s%s" % (base, message)
 
301
332
        if not urwid.supports_unicode():
 
302
333
            self._text = self._text.encode("ascii", "replace")
 
303
334
        textlist = [("normal", self._text)]
 
 
380
 
    def property_changed(self, property=None, **kwargs):
 
 
410
    def property_changed(self, property=None, value=None,
 
381
412
        """Call self.update() if old value is not new value.
 
382
413
        This overrides the method from MandosClientPropertyCache"""
 
383
 
        property_name = str(property)
 
 
414
        property_name = unicode(property)
 
384
415
        old_value = self.properties.get(property_name)
 
385
416
        super(MandosClientWidget, self).property_changed(
 
386
 
            property=property, **kwargs)
 
 
417
            property=property, value=value, *args, **kwargs)
 
387
418
        if self.properties.get(property_name) != old_value:
 
 
414
445
                 "default", "default", None),
 
416
 
                 "bold", "default", "bold"),
 
 
447
                 "default", "default", "bold"),
 
417
448
                ("underline-blink",
 
418
 
                 "underline,blink", "default", "underline,blink"),
 
 
449
                 "default", "default", "underline"),
 
420
 
                 "standout", "default", "standout"),
 
 
451
                 "default", "default", "standout"),
 
421
452
                ("bold-underline-blink",
 
422
 
                 "bold,underline,blink", "default", "bold,underline,blink"),
 
 
453
                 "default", "default", ("bold", "underline")),
 
423
454
                ("bold-standout",
 
424
 
                 "bold,standout", "default", "bold,standout"),
 
 
455
                 "default", "default", ("bold", "standout")),
 
425
456
                ("underline-blink-standout",
 
426
 
                 "underline,blink,standout", "default",
 
427
 
                 "underline,blink,standout"),
 
 
457
                 "default", "default", ("underline", "standout")),
 
428
458
                ("bold-underline-blink-standout",
 
429
 
                 "bold,underline,blink,standout", "default",
 
430
 
                 "bold,underline,blink,standout"),
 
 
459
                 "default", "default", ("bold", "underline",
 
433
463
        if urwid.supports_unicode():
 
 
466
496
        self.busname = domain + '.Mandos'
 
467
497
        self.main_loop = gobject.MainLoop()
 
 
498
        self.bus = dbus.SystemBus()
 
 
499
        mandos_dbus_objc = self.bus.get_object(
 
 
500
            self.busname, "/", follow_name_owner_changes=True)
 
 
501
        self.mandos_serv = dbus.Interface(mandos_dbus_objc,
 
 
505
            mandos_clients = (self.mandos_serv
 
 
506
                              .GetAllClientsWithProperties())
 
 
507
        except dbus.exceptions.DBusException:
 
 
508
            mandos_clients = dbus.Dictionary()
 
 
511
         .connect_to_signal("ClientRemoved",
 
 
512
                            self.find_and_remove_client,
 
 
513
                            dbus_interface=server_interface,
 
 
516
         .connect_to_signal("ClientAdded",
 
 
518
                            dbus_interface=server_interface,
 
 
521
         .connect_to_signal("ClientNotFound",
 
 
522
                            self.client_not_found,
 
 
523
                            dbus_interface=server_interface,
 
 
525
        for path, client in mandos_clients.iteritems():
 
 
526
            client_proxy_object = self.bus.get_object(self.busname,
 
 
528
            self.add_client(MandosClientWidget(server_proxy_object
 
 
531
                                               =client_proxy_object,
 
469
541
    def client_not_found(self, fingerprint, address):
 
470
 
        self.log_message("Client with address {0} and fingerprint"
 
471
 
                         " {1} could not be found"
 
472
 
                         .format(address, fingerprint))
 
 
542
        self.log_message(("Client with address %s and fingerprint %s"
 
 
543
                          " could not be found" % (address,
 
474
546
    def rebuild(self):
 
475
547
        """This rebuilds the User Interface.
 
 
572
649
        """Start the main loop and exit when it's done."""
 
573
 
        self.bus = dbus.SystemBus()
 
574
 
        mandos_dbus_objc = self.bus.get_object(
 
575
 
            self.busname, "/", follow_name_owner_changes=True)
 
576
 
        self.mandos_serv = dbus.Interface(mandos_dbus_objc,
 
580
 
            mandos_clients = (self.mandos_serv
 
581
 
                              .GetAllClientsWithProperties())
 
582
 
            if not mandos_clients:
 
583
 
                self.log_message_raw(("bold", "Note: Server has no clients."))
 
584
 
        except dbus.exceptions.DBusException:
 
585
 
            self.log_message_raw(("bold", "Note: No Mandos server running."))
 
586
 
            mandos_clients = dbus.Dictionary()
 
589
 
         .connect_to_signal("ClientRemoved",
 
590
 
                            self.find_and_remove_client,
 
591
 
                            dbus_interface=server_interface,
 
594
 
         .connect_to_signal("ClientAdded",
 
596
 
                            dbus_interface=server_interface,
 
599
 
         .connect_to_signal("ClientNotFound",
 
600
 
                            self.client_not_found,
 
601
 
                            dbus_interface=server_interface,
 
603
 
        for path, client in mandos_clients.items():
 
604
 
            client_proxy_object = self.bus.get_object(self.busname,
 
606
 
            self.add_client(MandosClientWidget(server_proxy_object
 
609
 
                                               =client_proxy_object,
 
620
651
        self._input_callback_tag = (gobject.io_add_watch
 
621
652
                                    (sys.stdin.fileno(),