2021-10-07 15:48:52 +02:00
|
|
|
// SPDX-FileCopyrightText: 2021 Paul Schaub <vanitasvitae@fsfe.org>
|
|
|
|
//
|
|
|
|
// SPDX-License-Identifier: Apache-2.0
|
|
|
|
|
2021-10-01 13:54:51 +02:00
|
|
|
package org.pgpainless.decryption_verification;
|
2021-02-17 21:04:05 +01:00
|
|
|
|
|
|
|
import java.io.IOException;
|
|
|
|
import java.io.InputStream;
|
2021-08-15 15:32:16 +02:00
|
|
|
import javax.annotation.Nonnull;
|
|
|
|
|
2021-02-17 21:04:05 +01:00
|
|
|
import org.bouncycastle.openpgp.PGPEncryptedData;
|
|
|
|
import org.bouncycastle.openpgp.PGPException;
|
2021-04-27 12:27:25 +02:00
|
|
|
import org.pgpainless.exception.ModificationDetectionException;
|
2022-10-24 17:49:30 +02:00
|
|
|
import org.slf4j.Logger;
|
|
|
|
import org.slf4j.LoggerFactory;
|
2021-02-17 21:04:05 +01:00
|
|
|
|
|
|
|
public class IntegrityProtectedInputStream extends InputStream {
|
|
|
|
|
2022-10-24 17:49:30 +02:00
|
|
|
private static final Logger LOGGER = LoggerFactory.getLogger(IntegrityProtectedInputStream.class);
|
|
|
|
|
2021-02-17 21:04:05 +01:00
|
|
|
private final InputStream inputStream;
|
|
|
|
private final PGPEncryptedData encryptedData;
|
2021-10-01 13:54:51 +02:00
|
|
|
private final ConsumerOptions options;
|
2022-10-24 17:49:30 +02:00
|
|
|
private boolean closed = false;
|
2021-02-17 21:04:05 +01:00
|
|
|
|
2021-10-01 13:54:51 +02:00
|
|
|
public IntegrityProtectedInputStream(InputStream inputStream, PGPEncryptedData encryptedData, ConsumerOptions options) {
|
2021-02-17 21:04:05 +01:00
|
|
|
this.inputStream = inputStream;
|
|
|
|
this.encryptedData = encryptedData;
|
2021-10-01 13:54:51 +02:00
|
|
|
this.options = options;
|
2021-02-17 21:04:05 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
@Override
|
|
|
|
public int read() throws IOException {
|
|
|
|
return inputStream.read();
|
|
|
|
}
|
|
|
|
|
2021-08-15 15:32:16 +02:00
|
|
|
@Override
|
|
|
|
public int read(@Nonnull byte[] b, int offset, int length) throws IOException {
|
|
|
|
return inputStream.read(b, offset, length);
|
|
|
|
}
|
|
|
|
|
2021-02-17 21:04:05 +01:00
|
|
|
@Override
|
|
|
|
public void close() throws IOException {
|
2022-10-24 17:49:30 +02:00
|
|
|
if (closed) {
|
|
|
|
return;
|
|
|
|
}
|
|
|
|
closed = true;
|
|
|
|
|
2021-10-01 13:54:51 +02:00
|
|
|
if (encryptedData.isIntegrityProtected() && !options.isIgnoreMDCErrors()) {
|
2021-02-17 21:04:05 +01:00
|
|
|
try {
|
|
|
|
if (!encryptedData.verify()) {
|
2021-04-27 12:27:25 +02:00
|
|
|
throw new ModificationDetectionException();
|
2021-02-17 21:04:05 +01:00
|
|
|
}
|
2022-10-24 17:49:30 +02:00
|
|
|
LOGGER.debug("Integrity Protection check passed");
|
2021-02-17 21:04:05 +01:00
|
|
|
} catch (PGPException e) {
|
2021-04-27 12:27:25 +02:00
|
|
|
throw new IOException("Failed to verify integrity protection", e);
|
2021-02-17 21:04:05 +01:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|