| 
									
										
										
										
											2021-04-26 21:18:39 +02:00
										 |  |  | /* | 
					
						
							|  |  |  |    GoToSocial | 
					
						
							|  |  |  |    Copyright (C) 2021 GoToSocial Authors admin@gotosocial.org | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    This program is free software: you can redistribute it and/or modify | 
					
						
							|  |  |  |    it under the terms of the GNU Affero General Public License as published by | 
					
						
							|  |  |  |    the Free Software Foundation, either version 3 of the License, or | 
					
						
							|  |  |  |    (at your option) any later version. | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    This program is distributed in the hope that it will be useful, | 
					
						
							|  |  |  |    but WITHOUT ANY WARRANTY; without even the implied warranty of | 
					
						
							|  |  |  |    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the | 
					
						
							|  |  |  |    GNU Affero General Public License for more details. | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  |    You should have received a copy of the GNU Affero General Public License | 
					
						
							|  |  |  |    along with this program.  If not, see <http://www.gnu.org/licenses/>. | 
					
						
							|  |  |  | */ | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | package federation | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | import ( | 
					
						
							|  |  |  | 	"context" | 
					
						
							|  |  |  | 	"crypto" | 
					
						
							|  |  |  | 	"crypto/x509" | 
					
						
							|  |  |  | 	"encoding/json" | 
					
						
							|  |  |  | 	"encoding/pem" | 
					
						
							|  |  |  | 	"fmt" | 
					
						
							|  |  |  | 	"net/url" | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | 	"github.com/go-fed/activity/pub" | 
					
						
							|  |  |  | 	"github.com/go-fed/activity/streams" | 
					
						
							|  |  |  | 	"github.com/go-fed/activity/streams/vocab" | 
					
						
							|  |  |  | ) | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | /* | 
					
						
							|  |  |  | 	publicKeyer is BORROWED DIRECTLY FROM https://github.com/go-fed/apcore/blob/master/ap/util.go | 
					
						
							|  |  |  | 	Thank you @cj@mastodon.technology ! <3 | 
					
						
							|  |  |  | */ | 
					
						
							|  |  |  | type publicKeyer interface { | 
					
						
							|  |  |  | 	GetW3IDSecurityV1PublicKey() vocab.W3IDSecurityV1PublicKeyProperty | 
					
						
							|  |  |  | } | 
					
						
							|  |  |  | 
 | 
					
						
							|  |  |  | /* | 
					
						
							|  |  |  | 	getPublicKeyFromResponse is BORROWED DIRECTLY FROM https://github.com/go-fed/apcore/blob/master/ap/util.go | 
					
						
							|  |  |  | 	Thank you @cj@mastodon.technology ! <3 | 
					
						
							|  |  |  | */ | 
					
						
							| 
									
										
										
										
											2021-04-26 21:22:34 +02:00
										 |  |  | func getPublicKeyFromResponse(c context.Context, b []byte, keyID *url.URL) (p crypto.PublicKey, err error) { | 
					
						
							|  |  |  | 	m := make(map[string]interface{}) | 
					
						
							| 
									
										
										
										
											2021-04-26 21:18:39 +02:00
										 |  |  | 	err = json.Unmarshal(b, &m) | 
					
						
							|  |  |  | 	if err != nil { | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	var t vocab.Type | 
					
						
							|  |  |  | 	t, err = streams.ToType(c, m) | 
					
						
							|  |  |  | 	if err != nil { | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	pker, ok := t.(publicKeyer) | 
					
						
							|  |  |  | 	if !ok { | 
					
						
							|  |  |  | 		err = fmt.Errorf("ActivityStreams type cannot be converted to one known to have publicKey property: %T", t) | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	pkp := pker.GetW3IDSecurityV1PublicKey() | 
					
						
							|  |  |  | 	if pkp == nil { | 
					
						
							|  |  |  | 		err = fmt.Errorf("publicKey property is not provided") | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	var pkpFound vocab.W3IDSecurityV1PublicKey | 
					
						
							|  |  |  | 	for pkpIter := pkp.Begin(); pkpIter != pkp.End(); pkpIter = pkpIter.Next() { | 
					
						
							|  |  |  | 		if !pkpIter.IsW3IDSecurityV1PublicKey() { | 
					
						
							|  |  |  | 			continue | 
					
						
							|  |  |  | 		} | 
					
						
							|  |  |  | 		pkValue := pkpIter.Get() | 
					
						
							| 
									
										
										
										
											2021-04-26 21:22:34 +02:00
										 |  |  | 		var pkID *url.URL | 
					
						
							|  |  |  | 		pkID, err = pub.GetId(pkValue) | 
					
						
							| 
									
										
										
										
											2021-04-26 21:18:39 +02:00
										 |  |  | 		if err != nil { | 
					
						
							|  |  |  | 			return | 
					
						
							|  |  |  | 		} | 
					
						
							| 
									
										
										
										
											2021-04-26 21:22:34 +02:00
										 |  |  | 		if pkID.String() != keyID.String() { | 
					
						
							| 
									
										
										
										
											2021-04-26 21:18:39 +02:00
										 |  |  | 			continue | 
					
						
							|  |  |  | 		} | 
					
						
							|  |  |  | 		pkpFound = pkValue | 
					
						
							|  |  |  | 		break | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	if pkpFound == nil { | 
					
						
							| 
									
										
										
										
											2021-04-26 21:22:34 +02:00
										 |  |  | 		err = fmt.Errorf("cannot find publicKey with id: %s", keyID) | 
					
						
							| 
									
										
										
										
											2021-04-26 21:18:39 +02:00
										 |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	pkPemProp := pkpFound.GetW3IDSecurityV1PublicKeyPem() | 
					
						
							|  |  |  | 	if pkPemProp == nil || !pkPemProp.IsXMLSchemaString() { | 
					
						
							|  |  |  | 		err = fmt.Errorf("publicKeyPem property is not provided or it is not embedded as a value") | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	pubKeyPem := pkPemProp.Get() | 
					
						
							|  |  |  | 	var block *pem.Block | 
					
						
							|  |  |  | 	block, _ = pem.Decode([]byte(pubKeyPem)) | 
					
						
							|  |  |  | 	if block == nil || block.Type != "PUBLIC KEY" { | 
					
						
							|  |  |  | 		err = fmt.Errorf("could not decode publicKeyPem to PUBLIC KEY pem block type") | 
					
						
							|  |  |  | 		return | 
					
						
							|  |  |  | 	} | 
					
						
							|  |  |  | 	p, err = x509.ParsePKIXPublicKey(block.Bytes) | 
					
						
							|  |  |  | 	return | 
					
						
							|  |  |  | } |