autosign.py 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968
  1. #!/usr/bin/env python3
  2. #
  3. # MMGen Wallet, a terminal-based cryptocurrency wallet
  4. # Copyright (C)2013-2025 The MMGen Project <mmgen@tuta.io>
  5. # Licensed under the GNU General Public License, Version 3:
  6. # https://www.gnu.org/licenses
  7. # Public project repositories:
  8. # https://github.com/mmgen/mmgen-wallet
  9. # https://gitlab.com/mmgen/mmgen-wallet
  10. """
  11. autosign: Autosign MMGen transactions, message files and XMR wallet output files
  12. """
  13. import sys, os, asyncio
  14. from stat import S_IWUSR, S_IRUSR
  15. from pathlib import Path
  16. from subprocess import run, PIPE, DEVNULL
  17. from .cfg import Config
  18. from .util import msg, msg_r, ymsg, rmsg, gmsg, bmsg, die, suf, fmt, fmt_list, is_int, have_sudo, capfirst
  19. from .color import yellow, red, orange, brown, blue
  20. from .wallet import Wallet, get_wallet_cls
  21. from .addrlist import AddrIdxList
  22. from .filename import find_file_in_dir
  23. from .fileutil import shred_file
  24. from .ui import keypress_confirm
  25. def SwapMgr(*args, **kwargs):
  26. match sys.platform:
  27. case 'linux':
  28. return SwapMgrLinux(*args, **kwargs)
  29. case 'darwin':
  30. return SwapMgrMacOS(*args, **kwargs)
  31. class SwapMgrBase:
  32. def __init__(self, cfg, *, ignore_zram=False):
  33. self.cfg = cfg
  34. self.ignore_zram = ignore_zram
  35. self.desc = 'disk swap' if ignore_zram else 'swap'
  36. def enable(self, *, quiet=False):
  37. ret = self.do_enable()
  38. if not quiet:
  39. self.cfg._util.qmsg(
  40. f'{capfirst(self.desc)} successfully enabled' if ret else
  41. f'{capfirst(self.desc)} is already enabled' if ret is None else
  42. f'Could not enable {self.desc}')
  43. return ret
  44. def disable(self, *, quiet=False):
  45. self.cfg._util.qmsg_r(f'Attempting to disable {self.desc}...')
  46. ret = self.do_disable()
  47. self.cfg._util.qmsg('success')
  48. if not quiet:
  49. self.cfg._util.qmsg(
  50. f'{capfirst(self.desc)} successfully disabled ({fmt_list(ret, fmt="no_quotes")})'
  51. if ret and isinstance(ret, list) else
  52. f'{capfirst(self.desc)} successfully disabled' if ret else
  53. f'No active {self.desc}')
  54. return ret
  55. def process_cmds(self, op, cmds):
  56. if not cmds:
  57. return
  58. if have_sudo(silent=True) and not self.cfg.test_suite:
  59. for cmd in cmds:
  60. run(cmd.split(), check=True)
  61. else:
  62. pre = 'failure\n' if op == 'disable' else ''
  63. fs = blue('{a} {b} manually by executing the following command{c}:\n{d}')
  64. post = orange('[To prevent this message in the future, enable sudo without a password]')
  65. m = pre + fs.format(
  66. a = 'Please disable' if op == 'disable' else 'Enable',
  67. b = self.desc,
  68. c = suf(cmds),
  69. d = fmt_list(cmds, indent=' ', fmt='col')) + '\n' + post
  70. msg(m)
  71. if not self.cfg.test_suite:
  72. sys.exit(1)
  73. class SwapMgrLinux(SwapMgrBase):
  74. def get_active(self):
  75. for cmd in ('/sbin/swapon', 'swapon'):
  76. try:
  77. cp = run([cmd, '--show=NAME', '--noheadings'], stdout=PIPE, text=True, check=True)
  78. break
  79. except Exception:
  80. if cmd == 'swapon':
  81. raise
  82. res = cp.stdout.splitlines()
  83. return [e for e in res if not e.startswith('/dev/zram')] if self.ignore_zram else res
  84. def do_enable(self):
  85. if ret := self.get_active():
  86. ymsg(f'Warning: {self.desc} is already enabled: ({fmt_list(ret, fmt="no_quotes")})')
  87. self.process_cmds('enable', ['sudo swapon --all'])
  88. return True
  89. def do_disable(self):
  90. swapdevs = self.get_active()
  91. if not swapdevs:
  92. return None
  93. self.process_cmds('disable', [f'sudo swapoff {swapdev}' for swapdev in swapdevs])
  94. return swapdevs
  95. class SwapMgrMacOS(SwapMgrBase):
  96. def get_active(self):
  97. cmd = 'launchctl print system/com.apple.dynamic_pager'
  98. return run(cmd.split(), stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  99. def _do_action(self, active, op, cmd):
  100. if self.get_active() is active:
  101. return None
  102. else:
  103. cmd = f'sudo launchctl {cmd} -w /System/Library/LaunchDaemons/com.apple.dynamic_pager.plist'
  104. self.process_cmds(op, [cmd])
  105. return True
  106. def do_enable(self):
  107. return self._do_action(active=True, op='enable', cmd='load')
  108. def do_disable(self):
  109. return self._do_action(active=False, op='disable', cmd='unload')
  110. class Signable:
  111. non_xmr_signables = (
  112. 'transaction',
  113. 'automount_transaction',
  114. 'message')
  115. xmr_signables = ( # order is important!
  116. 'xmr_wallet_outputs_file', # import XMR wallet outputs BEFORE signing transactions
  117. 'xmr_transaction')
  118. class base:
  119. clean_all = False
  120. multiple_ok = True
  121. action_desc = 'signed'
  122. fail_msg = 'failed to sign'
  123. def __init__(self, parent):
  124. self.parent = parent
  125. self.cfg = parent.cfg
  126. self.dir = getattr(parent, self.dir_name)
  127. self.name = type(self).__name__
  128. @property
  129. def unsigned(self):
  130. return self._unprocessed('_unsigned', self.rawext, self.sigext)
  131. def _unprocessed(self, attrname, rawext, sigext):
  132. if not hasattr(self, attrname):
  133. dirlist = sorted(self.dir.iterdir())
  134. names = {f.name for f in dirlist}
  135. setattr(
  136. self,
  137. attrname,
  138. tuple(f for f in dirlist
  139. if f.name.endswith('.' + rawext)
  140. and f.name[:-len(rawext)] + sigext not in names))
  141. return getattr(self, attrname)
  142. def print_bad_list(self, bad_files):
  143. msg('\n{a}\n{b}'.format(
  144. a = red(f'Failed {self.desc}s:'),
  145. b = ' {}\n'.format('\n '.join(
  146. self.gen_bad_list(sorted(bad_files, key=lambda f: f.name))))))
  147. def gen_bad_list(self, bad_files):
  148. for f in bad_files:
  149. yield red(f.name)
  150. class transaction(base):
  151. desc = 'non-automount transaction'
  152. rawext = 'rawtx'
  153. sigext = 'sigtx'
  154. dir_name = 'tx_dir'
  155. automount = False
  156. async def sign(self, f):
  157. from .tx import UnsignedTX
  158. tx1 = UnsignedTX(
  159. cfg = self.cfg,
  160. filename = f,
  161. automount = self.automount)
  162. if tx1.proto.sign_mode == 'daemon':
  163. from .rpc import rpc_init
  164. tx1.rpc = await rpc_init(self.cfg, tx1.proto, ignore_wallet=True)
  165. from .tx.keys import TxKeys
  166. tx2 = await tx1.sign(
  167. TxKeys(
  168. self.cfg,
  169. tx1,
  170. seedfiles = self.parent.wallet_files[:],
  171. keylist = self.parent.keylist,
  172. passwdfile = str(self.parent.keyfile),
  173. autosign = True).keys)
  174. if tx2:
  175. tx2.file.write(ask_write=False, outdir=self.dir)
  176. return tx2
  177. else:
  178. return False
  179. def print_summary(self, signables):
  180. if self.cfg.full_summary:
  181. bmsg('\nAutosign summary:\n')
  182. msg_r('\n'.join(tx.info.format(terse=True) for tx in signables))
  183. return
  184. def gen():
  185. for tx in signables:
  186. non_mmgen = [o for o in tx.outputs if not o.mmid]
  187. if non_mmgen:
  188. yield (tx, non_mmgen)
  189. body = list(gen())
  190. if body:
  191. bmsg('\nAutosign summary:')
  192. fs = '{} {} {}'
  193. t_wid, a_wid = 6, 44
  194. def gen():
  195. yield fs.format('TX ID ', 'Non-MMGen outputs'+' '*(a_wid-17), 'Amount')
  196. yield fs.format('-'*t_wid, '-'*a_wid, '-'*7)
  197. for tx, non_mmgen in body:
  198. for nm in non_mmgen:
  199. yield fs.format(
  200. tx.txid.fmt(t_wid, color=True) if nm is non_mmgen[0] else ' '*t_wid,
  201. nm.addr.fmt(nm.addr.view_pref, a_wid, color=True),
  202. nm.amt.hl() + ' ' + yellow(tx.coin))
  203. msg('\n' + '\n'.join(gen()))
  204. else:
  205. msg('\nNo non-MMGen outputs')
  206. class automount_transaction(transaction):
  207. desc = 'automount transaction'
  208. dir_name = 'txauto_dir'
  209. rawext = 'arawtx'
  210. sigext = 'asigtx'
  211. subext = 'asubtx'
  212. multiple_ok = False
  213. automount = True
  214. @property
  215. def unsubmitted(self):
  216. return self._unprocessed('_unsubmitted', self.sigext, self.subext)
  217. @property
  218. def unsubmitted_raw(self):
  219. return self._unprocessed('_unsubmitted_raw', self.rawext, self.subext)
  220. unsent = unsubmitted
  221. unsent_raw = unsubmitted_raw
  222. @property
  223. def submitted(self):
  224. return self._processed('_submitted', self.subext)
  225. def _processed(self, attrname, ext):
  226. if not hasattr(self, attrname):
  227. setattr(self, attrname, tuple(f for f in sorted(self.dir.iterdir())
  228. if f.name.endswith('.' + ext)))
  229. return getattr(self, attrname)
  230. def die_wrong_num_txs(self, tx_type, *, msg=None, desc=None, show_dir=False):
  231. match len(getattr(self, tx_type)): # num_txs
  232. case 0: subj, suf, pred = ('No', 's', 'present')
  233. case 1: subj, suf, pred = ('One', '', 'already present')
  234. case _: subj, suf, pred = ('More than one', '', 'already present')
  235. die('AutosignTXError', '{m}{a} {b} transaction{c} {d} {e}!'.format(
  236. m = msg + '\n' if msg else '',
  237. a = subj,
  238. b = desc or tx_type,
  239. c = suf,
  240. d = pred,
  241. e = f'in ‘{getattr(self.parent, self.dir_name)}’'
  242. if show_dir else 'on removable device'))
  243. def check_create_ok(self):
  244. if len(self.unsigned):
  245. self.die_wrong_num_txs('unsigned', msg='Cannot create transaction')
  246. if len(self.unsent):
  247. die('AutosignTXError', 'Cannot create transaction: you have an unsent transaction')
  248. def get_unsubmitted(self, tx_type='unsubmitted'):
  249. if len(self.unsubmitted) == 1:
  250. return self.unsubmitted[0]
  251. else:
  252. self.die_wrong_num_txs(tx_type)
  253. def get_unsent(self):
  254. return self.get_unsubmitted('unsent')
  255. def get_submitted(self):
  256. if len(self.submitted) == 0:
  257. self.die_wrong_num_txs('submitted')
  258. else:
  259. return self.submitted
  260. def get_abortable(self):
  261. if len(self.unsent_raw) != 1:
  262. self.die_wrong_num_txs('unsent_raw', desc='unsent')
  263. if len(self.unsent) > 1:
  264. self.die_wrong_num_txs('unsent')
  265. if self.unsent:
  266. if self.unsent[0].stem != self.unsent_raw[0].stem:
  267. die(1, f'{self.unsent[0]}, {self.unsent_raw[0]}: file mismatch')
  268. return self.unsent_raw + self.unsent
  269. def shred_abortable(self):
  270. files = self.get_abortable() # raises AutosignTXError if no unsent TXs available
  271. keypress_confirm(
  272. self.cfg,
  273. 'The following file{} will be securely deleted:\n{}\nOK?'.format(
  274. suf(files),
  275. fmt_list(map(str, files), fmt='col', indent=' ')),
  276. do_exit = True)
  277. for fn in files:
  278. msg(f'Shredding file ‘{fn}’')
  279. shred_file(self.cfg, fn, iterations=15)
  280. sys.exit(0)
  281. async def get_last_created(self):
  282. from .tx import CompletedTX
  283. files = [f for f in self.dir.iterdir() if f.name.endswith(self.subext)]
  284. return sorted(
  285. [await CompletedTX(cfg=self.cfg, filename=str(txfile), quiet_open=True)
  286. for txfile in files],
  287. key = lambda x: x.timestamp)[-1]
  288. class xmr_signable: # mixin class
  289. automount = True
  290. summary_footer = ''
  291. def need_daemon_restart(self, m, new_idx):
  292. old_idx = self.parent.xmr_cur_wallet_idx
  293. self.parent.xmr_cur_wallet_idx = new_idx
  294. return old_idx != new_idx or m.wd.state != 'ready'
  295. def print_summary(self, signables):
  296. bmsg('\nAutosign summary:')
  297. msg('\n'.join(s.get_info(indent=' ') for s in signables) + self.summary_footer)
  298. async def sign(self, f):
  299. from . import xmrwallet
  300. from .xmrwallet.file.tx import MoneroMMGenTX
  301. tx1 = MoneroMMGenTX.Completed(self.parent.xmrwallet_cfg, f)
  302. m = xmrwallet.op(
  303. 'sign',
  304. self.parent.xmrwallet_cfg,
  305. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  306. wallets = str(tx1.src_wallet_idx))
  307. tx2 = await m.main(f, restart_daemon=self.need_daemon_restart(m, tx1.src_wallet_idx))
  308. tx2.write(ask_write=False)
  309. return tx2
  310. class xmr_transaction(xmr_signable, automount_transaction):
  311. dir_name = 'xmr_tx_dir'
  312. desc = 'Monero non-compat transaction'
  313. rawext = 'rawtx'
  314. sigext = 'sigtx'
  315. subext = 'subtx'
  316. class xmr_wallet_outputs_file(xmr_signable, base):
  317. desc = 'Monero wallet outputs file'
  318. rawext = 'raw'
  319. sigext = 'sig'
  320. dir_name = 'xmr_outputs_dir'
  321. clean_all = True
  322. summary_footer = '\n'
  323. @property
  324. def unsigned(self):
  325. import json
  326. return tuple(
  327. f for f in super().unsigned
  328. if not json.loads(f.read_text())['MoneroMMGenWalletOutputsFile']['data']['imported'])
  329. async def sign(self, f):
  330. from . import xmrwallet
  331. wallet_idx = xmrwallet.op_cls('wallet').get_idx_from_fn(f)
  332. m = xmrwallet.op(
  333. 'import_outputs',
  334. self.parent.xmrwallet_cfg,
  335. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  336. wallets = str(wallet_idx))
  337. obj = await m.main(f, wallet_idx, restart_daemon=self.need_daemon_restart(m, wallet_idx))
  338. obj.write(quiet=not obj.data.sign)
  339. self.action_desc = 'imported and signed' if obj.data.sign else 'imported'
  340. return obj
  341. class message(base):
  342. desc = 'message file'
  343. rawext = 'rawmsg.json'
  344. sigext = 'sigmsg.json'
  345. dir_name = 'msg_dir'
  346. fail_msg = 'failed to sign or signed incompletely'
  347. async def sign(self, f):
  348. from .msg import UnsignedMsg, SignedMsg
  349. m = UnsignedMsg(self.cfg, infile=f)
  350. await m.sign(wallet_files=self.parent.wallet_files[:], passwd_file=str(self.parent.keyfile))
  351. m = SignedMsg(self.cfg, data=m.__dict__)
  352. m.write_to_file(
  353. outdir = self.dir.resolve(),
  354. ask_overwrite = False)
  355. if m.data.get('failed_sids'):
  356. die(
  357. 'MsgFileFailedSID',
  358. f'Failed Seed IDs: {fmt_list(m.data["failed_sids"], fmt="bare")}')
  359. return m
  360. def print_summary(self, signables):
  361. gmsg('\nSigned message files:')
  362. for message in signables:
  363. gmsg(' ' + message.signed_filename)
  364. def gen_bad_list(self, bad_files):
  365. for f in bad_files:
  366. sigfile = f.parent / (f.name[:-len(self.rawext)] + self.sigext)
  367. yield orange(sigfile.name) if sigfile.exists() else red(f.name)
  368. class Autosign:
  369. dev_label = 'MMGEN_TX'
  370. linux_mount_subdir = 'mmgen_autosign'
  371. macOS_ramdisk_name = 'AutosignRamDisk'
  372. wallet_subdir = 'autosign'
  373. linux_blkid_cmd = 'sudo blkid -s LABEL -o value'
  374. keylist_fn = 'keylist.mmenc'
  375. cmds = ('setup', 'xmr_setup', 'sign', 'wait')
  376. util_cmds = (
  377. 'gen_key',
  378. 'macos_ramdisk_setup',
  379. 'macos_ramdisk_delete',
  380. 'enable_swap',
  381. 'disable_swap',
  382. 'clean',
  383. 'wipe_key')
  384. mn_fmts = {
  385. 'mmgen': 'words',
  386. 'bip39': 'bip39'}
  387. dfl_mn_fmt = 'mmgen'
  388. non_xmr_dirs = {
  389. 'tx_dir': 'tx',
  390. 'txauto_dir': 'txauto',
  391. 'msg_dir': 'msg'}
  392. xmr_dirs = {
  393. 'xmr_dir': 'xmr',
  394. 'xmr_tx_dir': 'xmr/tx',
  395. 'xmr_outputs_dir': 'xmr/outputs'}
  396. have_xmr = False
  397. xmr_only = False
  398. def init_fixup(self): # see test/overlay/fakemods/mmgen/autosign.py
  399. pass
  400. def __init__(self, cfg, *, cmd=None):
  401. if cfg.mnemonic_fmt:
  402. if cfg.mnemonic_fmt not in self.mn_fmts:
  403. die(1, '{!r}: invalid mnemonic format (must be one of: {})'.format(
  404. cfg.mnemonic_fmt,
  405. fmt_list(self.mn_fmts, fmt='no_spc')))
  406. match sys.platform:
  407. case 'linux':
  408. self.dfl_mountpoint = f'/mnt/{self.linux_mount_subdir}'
  409. self.dfl_shm_dir = '/dev/shm'
  410. # linux-only attrs:
  411. self.old_dfl_mountpoint = '/mnt/tx'
  412. self.old_dfl_mountpoint_errmsg = f"""
  413. Mountpoint ‘{self.old_dfl_mountpoint}’ is no longer supported!
  414. Please rename ‘{self.old_dfl_mountpoint}’ to ‘{self.dfl_mountpoint}’
  415. and update your fstab accordingly.
  416. """
  417. self.mountpoint_errmsg_fs = """
  418. Mountpoint ‘{}’ does not exist or does not point
  419. to a directory! Please create the mountpoint and add an entry
  420. to your fstab as described in this script’s help text.
  421. """
  422. case 'darwin':
  423. self.dfl_mountpoint = f'/Volumes/{self.dev_label}'
  424. self.dfl_shm_dir = f'/Volumes/{self.macOS_ramdisk_name}'
  425. self.cfg = cfg
  426. self.dfl_wallet_dir = f'{self.dfl_shm_dir}/{self.wallet_subdir}'
  427. self.mountpoint = Path(cfg.mountpoint or self.dfl_mountpoint)
  428. self.shm_dir = Path(self.dfl_shm_dir)
  429. self.wallet_dir = Path(cfg.wallet_dir or self.dfl_wallet_dir)
  430. match sys.platform:
  431. case 'linux':
  432. self.mount_cmd = f'mount {self.mountpoint}'
  433. self.umount_cmd = f'umount {self.mountpoint}'
  434. case 'darwin':
  435. self.mount_cmd = f'diskutil mount {self.dev_label}'
  436. self.umount_cmd = f'diskutil eject {self.dev_label}'
  437. self.init_fixup()
  438. if sys.platform == 'darwin': # test suite uses ‘fixed-up’ shm_dir
  439. from .platform.darwin.util import MacOSRamDisk
  440. self.ramdisk = MacOSRamDisk(
  441. cfg,
  442. self.macOS_ramdisk_name,
  443. self._get_macOS_ramdisk_size(),
  444. path = self.shm_dir)
  445. self.keyfile = self.mountpoint / 'autosign.key'
  446. if any(k in cfg._uopts for k in ('help', 'longhelp')):
  447. return
  448. self.coins = cfg.coins.upper().split(',') if cfg.coins else []
  449. if cfg.xmrwallets and not 'XMR' in self.coins:
  450. self.coins.append('XMR')
  451. if not self.coins and cmd in self.cmds:
  452. ymsg('Warning: no coins specified, defaulting to BTC')
  453. self.coins = ['BTC']
  454. if 'XMR' in self.coins:
  455. self.have_xmr = True
  456. if len(self.coins) == 1:
  457. self.xmr_only = True
  458. self.xmr_cur_wallet_idx = None
  459. self.dirs = {}
  460. self.signables = ()
  461. if not self.xmr_only:
  462. self.dirs |= self.non_xmr_dirs
  463. self.signables += Signable.non_xmr_signables
  464. if self.have_xmr:
  465. self.dirs |= self.xmr_dirs
  466. self.signables += Signable.xmr_signables
  467. for name, path in self.dirs.items():
  468. setattr(self, name, self.mountpoint / path)
  469. self.swap = SwapMgr(self.cfg, ignore_zram=True)
  470. async def check_daemons_running(self):
  471. from .protocol import init_proto
  472. for coin in self.coins:
  473. proto = init_proto(self.cfg, coin, network=self.cfg.network, need_amt=True)
  474. if proto.sign_mode == 'daemon':
  475. self.cfg._util.vmsg(f'Checking {coin} daemon')
  476. from .rpc import rpc_init
  477. from .exception import SocketError
  478. try:
  479. await rpc_init(self.cfg, proto, ignore_wallet=True)
  480. except SocketError as e:
  481. from .daemon import CoinDaemon
  482. d = CoinDaemon(self.cfg, proto=proto, test_suite=self.cfg.test_suite)
  483. die(2,
  484. f'\n{e}\nIs the {d.coind_name} daemon ({d.exec_fn}) running '
  485. + 'and listening on the correct port?')
  486. @property
  487. def wallet_files(self):
  488. if not hasattr(self, '_wallet_files'):
  489. try:
  490. dirlist = self.wallet_dir.iterdir()
  491. except:
  492. die(1,
  493. f'Cannot open wallet directory ‘{self.wallet_dir}’. '
  494. 'Did you run ‘mmgen-autosign setup’?')
  495. self._wallet_files = [f for f in dirlist if f.suffix == '.mmdat']
  496. if not self._wallet_files:
  497. die(1, 'No wallet files present!')
  498. return self._wallet_files
  499. def do_mount(self, *, silent=False, verbose=False):
  500. def check_or_create(dirname):
  501. path = getattr(self, dirname)
  502. if path.is_dir():
  503. if not path.stat().st_mode & S_IWUSR|S_IRUSR == S_IWUSR|S_IRUSR:
  504. die(1, f'‘{path}’ is not read/write for this user!')
  505. elif path.exists():
  506. die(1, f'‘{path}’ is not a directory!')
  507. elif path.is_symlink():
  508. die(1, f'‘{path}’ is a symlink not pointing to a directory!')
  509. else:
  510. msg(f'Creating ‘{path}’')
  511. path.mkdir(parents=True)
  512. if sys.platform == 'linux' and not self.mountpoint.is_dir():
  513. def do_die(m):
  514. die(1, '\n' + yellow(fmt(m.strip(), indent=' ')))
  515. if Path(self.old_dfl_mountpoint).is_dir():
  516. do_die(self.old_dfl_mountpoint_errmsg)
  517. else:
  518. do_die(self.mountpoint_errmsg_fs.format(self.mountpoint))
  519. if not self.mountpoint.is_mount():
  520. redir = None if verbose else DEVNULL
  521. if run(self.mount_cmd.split(), stderr=redir, stdout=redir).returncode == 0:
  522. if not silent:
  523. msg(f'Mounting ‘{self.mountpoint}’')
  524. else:
  525. die(1, f'Unable to mount device ‘{self.dev_label}’ at ‘{self.mountpoint}’')
  526. for dirname in self.dirs:
  527. check_or_create(dirname)
  528. def do_umount(self, *, silent=False, verbose=False):
  529. if self.mountpoint.is_mount():
  530. run(['sync'], check=True)
  531. if not silent:
  532. msg(f'Unmounting ‘{self.mountpoint}’')
  533. redir = None if verbose else DEVNULL
  534. run(self.umount_cmd.split(), stdout=redir, check=True)
  535. if not silent:
  536. bmsg('It is now safe to extract the removable device')
  537. def decrypt_wallets(self):
  538. msg(f'Unlocking wallet{suf(self.wallet_files)} with key from ‘{self.keyfile}’')
  539. fails = 0
  540. for wf in self.wallet_files:
  541. try:
  542. Wallet(self.cfg, fn=wf, ignore_in_fmt=True, passwd_file=str(self.keyfile))
  543. except SystemExit as e:
  544. if e.code != 0:
  545. fails += 1
  546. return not fails
  547. async def sign_all(self, target_name):
  548. target = getattr(Signable, target_name)(self)
  549. if target.unsigned:
  550. good = []
  551. bad = []
  552. if len(target.unsigned) > 1 and not target.multiple_ok:
  553. ymsg(f'Autosign error: only one unsigned {target.desc} transaction allowed at a time!')
  554. target.print_bad_list(target.unsigned)
  555. return False
  556. for f in target.unsigned:
  557. ret = None
  558. try:
  559. ret = await target.sign(f)
  560. except Exception as e:
  561. ymsg('An error occurred with {} ‘{}’:\n {}: ‘{}’'.format(
  562. target.desc, f.name, type(e).__name__, e))
  563. except:
  564. ymsg('An error occurred with {} ‘{}’'.format(target.desc, f.name))
  565. good.append(ret) if ret else bad.append(f)
  566. self.cfg._util.qmsg('')
  567. await asyncio.sleep(0.3)
  568. msg(brown(f'{len(good)} {target.desc}{suf(good)} {target.action_desc}'))
  569. if bad:
  570. rmsg(f'{len(bad)} {target.desc}{suf(bad)} {target.fail_msg}')
  571. if good and not self.cfg.no_summary:
  572. target.print_summary(good)
  573. if bad:
  574. target.print_bad_list(bad)
  575. return not bad
  576. else:
  577. return f'No unsigned {target.desc}s'
  578. async def do_sign(self):
  579. if not self.cfg.stealth_led:
  580. self.led.set('busy')
  581. self.do_mount()
  582. key_ok = self.decrypt_wallets()
  583. self.init_non_mmgen_keys()
  584. if key_ok:
  585. if self.cfg.stealth_led:
  586. self.led.set('busy')
  587. ret = [await self.sign_all(signable) for signable in self.signables]
  588. for val in ret:
  589. if isinstance(val, str):
  590. msg(val)
  591. if self.cfg.test_suite_autosign_threaded:
  592. await asyncio.sleep(0.3)
  593. self.do_umount()
  594. self.led.set('error' if not all(ret) else 'off' if self.cfg.stealth_led else 'standby')
  595. return all(ret)
  596. else:
  597. msg('Password is incorrect!')
  598. self.do_umount()
  599. if not self.cfg.stealth_led:
  600. self.led.set('error')
  601. return False
  602. def wipe_encryption_key(self):
  603. if self.keyfile.exists():
  604. ymsg(f'Shredding wallet encryption key ‘{self.keyfile}’')
  605. shred_file(self.cfg, self.keyfile)
  606. else:
  607. gmsg('No wallet encryption key on removable device')
  608. def create_key(self):
  609. desc = f'key file ‘{self.keyfile}’'
  610. msg('Creating ' + desc)
  611. try:
  612. self.keyfile.write_text(os.urandom(32).hex())
  613. self.keyfile.chmod(0o400)
  614. except:
  615. die(2, 'Unable to write ' + desc)
  616. msg('Wrote ' + desc)
  617. def gen_key(self, *, no_unmount=False):
  618. if not self.device_inserted:
  619. die(1, 'Removable device not present!')
  620. self.do_mount()
  621. self.wipe_encryption_key()
  622. self.create_key()
  623. if not no_unmount:
  624. self.do_umount()
  625. def macos_ramdisk_setup(self):
  626. self.ramdisk.create()
  627. def macos_ramdisk_delete(self):
  628. self.ramdisk.destroy()
  629. def _get_macOS_ramdisk_size(self):
  630. from .platform.darwin.util import MacOSRamDisk, warn_ramdisk_too_small
  631. # allow 1MB for each Monero wallet
  632. xmr_size = len(AddrIdxList(fmt_str=self.cfg.xmrwallets)) if self.cfg.xmrwallets else 0
  633. calc_size = xmr_size + 1
  634. usr_size = self.cfg.macos_ramdisk_size or self.cfg.macos_autosign_ramdisk_size
  635. if is_int(usr_size):
  636. usr_size = int(usr_size)
  637. else:
  638. die(1, f'{usr_size}: invalid user-specified macOS ramdisk size (not an integer)')
  639. min_size = MacOSRamDisk.min_size
  640. size = max(usr_size, calc_size, min_size)
  641. if usr_size and usr_size < min_size:
  642. warn_ramdisk_too_small(usr_size, min_size)
  643. return size
  644. def setup(self):
  645. def remove_wallet_dir():
  646. msg(f'Deleting ‘{self.wallet_dir}’')
  647. import shutil
  648. try:
  649. shutil.rmtree(self.wallet_dir)
  650. except:
  651. pass
  652. def create_wallet_dir():
  653. try:
  654. self.wallet_dir.mkdir(parents=True)
  655. except:
  656. pass
  657. try:
  658. self.wallet_dir.stat()
  659. except:
  660. die(2, f'Unable to create wallet directory ‘{self.wallet_dir}’')
  661. self.gen_key(no_unmount=True)
  662. self.swap.disable()
  663. if sys.platform == 'darwin':
  664. self.macos_ramdisk_setup()
  665. remove_wallet_dir()
  666. create_wallet_dir()
  667. wf = find_file_in_dir(get_wallet_cls('mmgen'), self.cfg.data_dir)
  668. if wf and keypress_confirm(
  669. cfg = self.cfg,
  670. prompt = f'Default wallet ‘{wf}’ found.\nUse default wallet for autosigning?',
  671. default_yes = True):
  672. ss_in = Wallet(Config(), fn=wf)
  673. else:
  674. ss_in = Wallet(self.cfg, in_fmt=self.mn_fmts[self.cfg.mnemonic_fmt or self.dfl_mn_fmt])
  675. ss_out = Wallet(self.cfg, ss=ss_in, passwd_file=str(self.keyfile))
  676. ss_out.write_to_file(desc='autosign wallet', outdir=self.wallet_dir)
  677. if self.cfg.keys_from_file:
  678. self.setup_non_mmgen_keys()
  679. @property
  680. def xmrwallet_cfg(self):
  681. if not hasattr(self, '_xmrwallet_cfg'):
  682. self._xmrwallet_cfg = Config({
  683. '_clone': self.cfg,
  684. 'coin': 'xmr',
  685. 'wallet_rpc_user': 'autosign',
  686. 'wallet_rpc_password': 'autosign password',
  687. 'wallet_rpc_port': 23232 if self.cfg.test_suite_xmr_autosign else None,
  688. 'wallet_dir': str(self.wallet_dir),
  689. 'autosign': True,
  690. 'autosign_mountpoint': str(self.mountpoint),
  691. 'offline': True,
  692. 'compat': False,
  693. 'passwd_file': str(self.keyfile)})
  694. return self._xmrwallet_cfg
  695. def xmr_setup(self):
  696. def create_signing_wallets():
  697. from . import xmrwallet
  698. if len(self.wallet_files) > 1:
  699. ymsg(
  700. 'Warning: more than one wallet file, using the first '
  701. f'({self.wallet_files[0]}) for xmrwallet generation')
  702. m = xmrwallet.op(
  703. 'create_offline',
  704. self.xmrwallet_cfg,
  705. infile = str(self.wallet_files[0]), # MMGen wallet file
  706. wallets = self.cfg.xmrwallets) # XMR wallet idxs
  707. asyncio.run(m.main())
  708. asyncio.run(m.stop_wallet_daemon())
  709. self.clean_old_files()
  710. create_signing_wallets()
  711. def clean_old_files(self):
  712. def do_shred(fn):
  713. nonlocal count
  714. msg_r('.')
  715. shred_file(self.cfg, fn, iterations=15)
  716. count += 1
  717. def clean_dir(s_name):
  718. def clean_files(rawext, sigext):
  719. for f in s.dir.iterdir():
  720. if s.clean_all and (f.name.endswith(f'.{rawext}') or f.name.endswith(f'.{sigext}')):
  721. do_shred(f)
  722. elif f.name.endswith(f'.{sigext}'):
  723. raw = f.parent / (f.name[:-len(sigext)] + rawext)
  724. if raw.is_file():
  725. do_shred(raw)
  726. s = getattr(Signable, s_name)(self)
  727. msg_r(f'Cleaning directory ‘{s.dir}’..')
  728. if s.dir.is_dir():
  729. clean_files(s.rawext, s.sigext)
  730. if hasattr(s, 'subext'):
  731. clean_files(s.rawext, s.subext)
  732. clean_files(s.sigext, s.subext)
  733. msg('done' if s.dir.is_dir() else 'skipped (no dir)')
  734. count = 0
  735. for s_name in self.signables:
  736. clean_dir(s_name)
  737. bmsg(f'{count} file{suf(count)} shredded')
  738. @property
  739. def device_inserted(self):
  740. if self.cfg.no_insert_check:
  741. return True
  742. match sys.platform:
  743. case 'linux':
  744. cp = run(self.linux_blkid_cmd.split(), stdout=PIPE, text=True)
  745. if cp.returncode not in (0, 2):
  746. die(2, f'blkid exited with error code {cp.returncode}')
  747. return self.dev_label in cp.stdout.splitlines()
  748. case 'darwin':
  749. if self.cfg.test_suite_root_pfx:
  750. return self.mountpoint.exists()
  751. else:
  752. return run(
  753. ['diskutil', 'info', self.dev_label],
  754. stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  755. async def main_loop(self):
  756. if not self.cfg.stealth_led:
  757. self.led.set('standby')
  758. threaded = self.cfg.test_suite_autosign_threaded
  759. n = 1 if threaded else 0
  760. prev_status = False
  761. while True:
  762. status = self.device_inserted
  763. if status and not prev_status:
  764. msg('Device insertion detected')
  765. await self.do_sign()
  766. prev_status = status
  767. if not n % 10:
  768. msg_r(f'\r{" "*17}\rWaiting')
  769. await asyncio.sleep(0.2 if threaded else 1)
  770. if not threaded:
  771. msg_r('.')
  772. n += 1
  773. def at_exit(self, exit_val, message=None):
  774. if message:
  775. msg(message)
  776. self.led.stop()
  777. sys.exit(0 if self.cfg.test_suite_autosign_threaded else int(exit_val))
  778. def init_exit_handler(self):
  779. def handler(arg1, arg2):
  780. self.at_exit(1, '\nCleaning up...')
  781. import signal
  782. signal.signal(signal.SIGTERM, handler)
  783. signal.signal(signal.SIGINT, handler)
  784. def init_led(self):
  785. from .led import LEDControl
  786. self.led = LEDControl(
  787. enabled = self.cfg.led,
  788. simulate = self.cfg.test_suite_autosign_led_simulate)
  789. self.led.set('off')
  790. def setup_non_mmgen_keys(self):
  791. from .fileutil import get_lines_from_file, write_data_to_file
  792. from .crypto import Crypto
  793. lines = get_lines_from_file(self.cfg, self.cfg.keys_from_file, desc='keylist data')
  794. write_data_to_file(
  795. self.cfg,
  796. str(self.wallet_dir / self.keylist_fn),
  797. Crypto(self.cfg).mmgen_encrypt(
  798. data = '\n'.join(lines).encode(),
  799. passwd = self.keyfile.read_text()),
  800. desc = 'encrypted keylist data',
  801. binary = True)
  802. if keypress_confirm(self.cfg, 'Securely delete original keylist file?'):
  803. shred_file(self.cfg, self.cfg.keys_from_file)
  804. def init_non_mmgen_keys(self):
  805. if not hasattr(self, 'keylist'):
  806. path = self.wallet_dir / self.keylist_fn
  807. if path.exists():
  808. from .crypto import Crypto
  809. from .fileutil import get_data_from_file
  810. self.keylist = Crypto(self.cfg).mmgen_decrypt(
  811. get_data_from_file(
  812. self.cfg,
  813. path,
  814. desc = 'encrypted keylist data',
  815. binary = True),
  816. passwd = self.keyfile.read_text()).decode().split()
  817. else:
  818. self.keylist = None