autosign.py 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947
  1. #!/usr/bin/env python3
  2. #
  3. # MMGen Wallet, a terminal-based cryptocurrency wallet
  4. # Copyright (C)2013-2025 The MMGen Project <mmgen@tuta.io>
  5. # Licensed under the GNU General Public License, Version 3:
  6. # https://www.gnu.org/licenses
  7. # Public project repositories:
  8. # https://github.com/mmgen/mmgen-wallet
  9. # https://gitlab.com/mmgen/mmgen-wallet
  10. """
  11. autosign: Auto-sign MMGen transactions, message files and XMR wallet output files
  12. """
  13. import sys, os, asyncio
  14. from stat import S_IWUSR, S_IRUSR
  15. from pathlib import Path
  16. from subprocess import run, PIPE, DEVNULL
  17. from .cfg import Config
  18. from .util import msg, msg_r, ymsg, rmsg, gmsg, bmsg, die, suf, fmt, fmt_list, is_int, have_sudo, capfirst
  19. from .color import yellow, red, orange, brown, blue
  20. from .wallet import Wallet, get_wallet_cls
  21. from .addrlist import AddrIdxList
  22. from .filename import find_file_in_dir
  23. from .fileutil import shred_file
  24. from .ui import keypress_confirm
  25. def SwapMgr(*args, **kwargs):
  26. if sys.platform == 'linux':
  27. return SwapMgrLinux(*args, **kwargs)
  28. elif sys.platform == 'darwin':
  29. return SwapMgrMacOS(*args, **kwargs)
  30. class SwapMgrBase:
  31. def __init__(self, cfg, *, ignore_zram=False):
  32. self.cfg = cfg
  33. self.ignore_zram = ignore_zram
  34. self.desc = 'disk swap' if ignore_zram else 'swap'
  35. def enable(self, *, quiet=False):
  36. ret = self.do_enable()
  37. if not quiet:
  38. self.cfg._util.qmsg(
  39. f'{capfirst(self.desc)} successfully enabled' if ret else
  40. f'{capfirst(self.desc)} is already enabled' if ret is None else
  41. f'Could not enable {self.desc}')
  42. return ret
  43. def disable(self, *, quiet=False):
  44. self.cfg._util.qmsg_r(f'Attempting to disable {self.desc}...')
  45. ret = self.do_disable()
  46. self.cfg._util.qmsg('success')
  47. if not quiet:
  48. self.cfg._util.qmsg(
  49. f'{capfirst(self.desc)} successfully disabled ({fmt_list(ret, fmt="no_quotes")})'
  50. if ret and isinstance(ret, list) else
  51. f'{capfirst(self.desc)} successfully disabled' if ret else
  52. f'No active {self.desc}')
  53. return ret
  54. def process_cmds(self, op, cmds):
  55. if not cmds:
  56. return
  57. if have_sudo(silent=True) and not self.cfg.test_suite:
  58. for cmd in cmds:
  59. run(cmd.split(), check=True)
  60. else:
  61. pre = 'failure\n' if op == 'disable' else ''
  62. fs = blue('{a} {b} manually by executing the following command{c}:\n{d}')
  63. post = orange('[To prevent this message in the future, enable sudo without a password]')
  64. m = pre + fs.format(
  65. a = 'Please disable' if op == 'disable' else 'Enable',
  66. b = self.desc,
  67. c = suf(cmds),
  68. d = fmt_list(cmds, indent=' ', fmt='col')) + '\n' + post
  69. msg(m)
  70. if not self.cfg.test_suite:
  71. sys.exit(1)
  72. class SwapMgrLinux(SwapMgrBase):
  73. def get_active(self):
  74. for cmd in ('/sbin/swapon', 'swapon'):
  75. try:
  76. cp = run([cmd, '--show=NAME', '--noheadings'], stdout=PIPE, text=True, check=True)
  77. break
  78. except Exception:
  79. if cmd == 'swapon':
  80. raise
  81. res = cp.stdout.splitlines()
  82. return [e for e in res if not e.startswith('/dev/zram')] if self.ignore_zram else res
  83. def do_enable(self):
  84. if ret := self.get_active():
  85. ymsg(f'Warning: {self.desc} is already enabled: ({fmt_list(ret, fmt="no_quotes")})')
  86. self.process_cmds('enable', ['sudo swapon --all'])
  87. return True
  88. def do_disable(self):
  89. swapdevs = self.get_active()
  90. if not swapdevs:
  91. return None
  92. self.process_cmds('disable', [f'sudo swapoff {swapdev}' for swapdev in swapdevs])
  93. return swapdevs
  94. class SwapMgrMacOS(SwapMgrBase):
  95. def get_active(self):
  96. cmd = 'launchctl print system/com.apple.dynamic_pager'
  97. return run(cmd.split(), stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  98. def _do_action(self, active, op, cmd):
  99. if self.get_active() is active:
  100. return None
  101. else:
  102. cmd = f'sudo launchctl {cmd} -w /System/Library/LaunchDaemons/com.apple.dynamic_pager.plist'
  103. self.process_cmds(op, [cmd])
  104. return True
  105. def do_enable(self):
  106. return self._do_action(active=True, op='enable', cmd='load')
  107. def do_disable(self):
  108. return self._do_action(active=False, op='disable', cmd='unload')
  109. class Signable:
  110. non_xmr_signables = (
  111. 'transaction',
  112. 'automount_transaction',
  113. 'message')
  114. xmr_signables = ( # order is important!
  115. 'xmr_wallet_outputs_file', # import XMR wallet outputs BEFORE signing transactions
  116. 'xmr_transaction')
  117. class base:
  118. clean_all = False
  119. multiple_ok = True
  120. action_desc = 'signed'
  121. def __init__(self, parent):
  122. self.parent = parent
  123. self.cfg = parent.cfg
  124. self.dir = getattr(parent, self.dir_name)
  125. self.name = type(self).__name__
  126. @property
  127. def submitted(self):
  128. return self._processed('_submitted', self.subext)
  129. def _processed(self, attrname, ext):
  130. if not hasattr(self, attrname):
  131. setattr(self, attrname, tuple(f for f in sorted(self.dir.iterdir()) if f.name.endswith('.'+ext)))
  132. return getattr(self, attrname)
  133. @property
  134. def unsigned(self):
  135. return self._unprocessed('_unsigned', self.rawext, self.sigext)
  136. @property
  137. def unsubmitted(self):
  138. return self._unprocessed('_unsubmitted', self.sigext, self.subext)
  139. @property
  140. def unsubmitted_raw(self):
  141. return self._unprocessed('_unsubmitted_raw', self.rawext, self.subext)
  142. unsent = unsubmitted
  143. unsent_raw = unsubmitted_raw
  144. def _unprocessed(self, attrname, rawext, sigext):
  145. if not hasattr(self, attrname):
  146. dirlist = sorted(self.dir.iterdir())
  147. names = {f.name for f in dirlist}
  148. setattr(
  149. self,
  150. attrname,
  151. tuple(f for f in dirlist
  152. if f.name.endswith('.' + rawext)
  153. and f.name[:-len(rawext)] + sigext not in names))
  154. return getattr(self, attrname)
  155. def print_bad_list(self, bad_files):
  156. msg('\n{a}\n{b}'.format(
  157. a = red(f'Failed {self.desc}s:'),
  158. b = ' {}\n'.format('\n '.join(self.gen_bad_list(sorted(bad_files, key=lambda f: f.name))))
  159. ))
  160. def die_wrong_num_txs(self, tx_type, *, msg=None, desc=None, show_dir=False):
  161. num_txs = len(getattr(self, tx_type))
  162. die('AutosignTXError', "{m}{a} {b} transaction{c} {d} {e}!".format(
  163. m = msg + '\n' if msg else '',
  164. a = 'One' if num_txs == 1 else 'More than one' if num_txs else 'No',
  165. b = desc or tx_type,
  166. c = suf(num_txs),
  167. d = 'already present' if num_txs else 'present',
  168. e = f'in ‘{getattr(self.parent, self.dir_name)}’' if show_dir else 'on removable device',
  169. ))
  170. def check_create_ok(self):
  171. if len(self.unsigned):
  172. self.die_wrong_num_txs('unsigned', msg='Cannot create transaction')
  173. if len(self.unsent):
  174. die('AutosignTXError', 'Cannot create transaction: you have an unsent transaction')
  175. def get_unsubmitted(self, tx_type='unsubmitted'):
  176. if len(self.unsubmitted) == 1:
  177. return self.unsubmitted[0]
  178. else:
  179. self.die_wrong_num_txs(tx_type)
  180. def get_unsent(self):
  181. return self.get_unsubmitted('unsent')
  182. def get_submitted(self):
  183. if len(self.submitted) == 0:
  184. self.die_wrong_num_txs('submitted')
  185. else:
  186. return self.submitted
  187. def get_abortable(self):
  188. if len(self.unsent_raw) != 1:
  189. self.die_wrong_num_txs('unsent_raw', desc='unsent')
  190. if len(self.unsent) > 1:
  191. self.die_wrong_num_txs('unsent')
  192. if self.unsent:
  193. if self.unsent[0].stem != self.unsent_raw[0].stem:
  194. die(1, f'{self.unsent[0]}, {self.unsent_raw[0]}: file mismatch')
  195. return self.unsent_raw + self.unsent
  196. def shred_abortable(self):
  197. files = self.get_abortable() # raises AutosignTXError if no unsent TXs available
  198. keypress_confirm(
  199. self.cfg,
  200. 'The following file{} will be securely deleted:\n{}\nOK?'.format(
  201. suf(files),
  202. fmt_list(map(str, files), fmt='col', indent=' ')),
  203. do_exit = True)
  204. for fn in files:
  205. msg(f'Shredding file ‘{fn}’')
  206. shred_file(self.cfg, fn, iterations=15)
  207. sys.exit(0)
  208. async def get_last_created(self):
  209. from .tx import CompletedTX
  210. ext = '.' + Signable.automount_transaction.subext
  211. files = [f for f in self.dir.iterdir() if f.name.endswith(ext)]
  212. return sorted(
  213. [await CompletedTX(cfg=self.cfg, filename=str(txfile), quiet_open=True) for txfile in files],
  214. key = lambda x: x.timestamp)[-1]
  215. class transaction(base):
  216. desc = 'non-automount transaction'
  217. rawext = 'rawtx'
  218. sigext = 'sigtx'
  219. dir_name = 'tx_dir'
  220. fail_msg = 'failed to sign'
  221. async def sign(self, f):
  222. from .tx import UnsignedTX
  223. tx1 = UnsignedTX(
  224. cfg = self.cfg,
  225. filename = f,
  226. automount = self.name=='automount_transaction')
  227. if tx1.proto.sign_mode == 'daemon':
  228. from .rpc import rpc_init
  229. tx1.rpc = await rpc_init(self.cfg, tx1.proto, ignore_wallet=True)
  230. from .tx.keys import TxKeys
  231. tx2 = await tx1.sign(
  232. TxKeys(
  233. self.cfg,
  234. tx1,
  235. seedfiles = self.parent.wallet_files[:],
  236. keylist = self.parent.keylist,
  237. passwdfile = str(self.parent.keyfile),
  238. autosign = True).keys)
  239. if tx2:
  240. tx2.file.write(ask_write=False, outdir=self.dir)
  241. return tx2
  242. else:
  243. return False
  244. def print_summary(self, signables):
  245. if self.cfg.full_summary:
  246. bmsg('\nAutosign summary:\n')
  247. msg_r('\n'.join(tx.info.format(terse=True) for tx in signables))
  248. return
  249. def gen():
  250. for tx in signables:
  251. non_mmgen = [o for o in tx.outputs if not o.mmid]
  252. if non_mmgen:
  253. yield (tx, non_mmgen)
  254. body = list(gen())
  255. if body:
  256. bmsg('\nAutosign summary:')
  257. fs = '{} {} {}'
  258. t_wid, a_wid = 6, 44
  259. def gen():
  260. yield fs.format('TX ID ', 'Non-MMGen outputs'+' '*(a_wid-17), 'Amount')
  261. yield fs.format('-'*t_wid, '-'*a_wid, '-'*7)
  262. for tx, non_mmgen in body:
  263. for nm in non_mmgen:
  264. yield fs.format(
  265. tx.txid.fmt(t_wid, color=True) if nm is non_mmgen[0] else ' '*t_wid,
  266. nm.addr.fmt(nm.addr.view_pref, a_wid, color=True),
  267. nm.amt.hl() + ' ' + yellow(tx.coin))
  268. msg('\n' + '\n'.join(gen()))
  269. else:
  270. msg('\nNo non-MMGen outputs')
  271. def gen_bad_list(self, bad_files):
  272. for f in bad_files:
  273. yield red(f.name)
  274. class automount_transaction(transaction):
  275. desc = 'automount transaction'
  276. dir_name = 'txauto_dir'
  277. rawext = 'arawtx'
  278. sigext = 'asigtx'
  279. subext = 'asubtx'
  280. multiple_ok = False
  281. class xmr_signable(transaction): # mixin class
  282. def need_daemon_restart(self, m, new_idx):
  283. old_idx = self.parent.xmr_cur_wallet_idx
  284. self.parent.xmr_cur_wallet_idx = new_idx
  285. return old_idx != new_idx or m.wd.state != 'ready'
  286. def print_summary(self, signables):
  287. bmsg('\nAutosign summary:')
  288. msg('\n'.join(s.get_info(indent=' ') for s in signables) + self.summary_footer)
  289. class xmr_transaction(xmr_signable):
  290. dir_name = 'xmr_tx_dir'
  291. desc = 'Monero transaction'
  292. subext = 'subtx'
  293. multiple_ok = False
  294. summary_footer = ''
  295. async def sign(self, f):
  296. from . import xmrwallet
  297. from .xmrwallet.file.tx import MoneroMMGenTX
  298. tx1 = MoneroMMGenTX.Completed(self.parent.xmrwallet_cfg, f)
  299. m = xmrwallet.op(
  300. 'sign',
  301. self.parent.xmrwallet_cfg,
  302. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  303. wallets = str(tx1.src_wallet_idx))
  304. tx2 = await m.main(f, restart_daemon=self.need_daemon_restart(m, tx1.src_wallet_idx))
  305. tx2.write(ask_write=False)
  306. return tx2
  307. class xmr_wallet_outputs_file(xmr_signable):
  308. desc = 'Monero wallet outputs file'
  309. rawext = 'raw'
  310. sigext = 'sig'
  311. dir_name = 'xmr_outputs_dir'
  312. clean_all = True
  313. summary_footer = '\n'
  314. @property
  315. def unsigned(self):
  316. import json
  317. return tuple(
  318. f for f in super().unsigned
  319. if not json.loads(f.read_text())['MoneroMMGenWalletOutputsFile']['data']['imported'])
  320. async def sign(self, f):
  321. from . import xmrwallet
  322. wallet_idx = xmrwallet.op_cls('wallet').get_idx_from_fn(f)
  323. m = xmrwallet.op(
  324. 'import_outputs',
  325. self.parent.xmrwallet_cfg,
  326. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  327. wallets = str(wallet_idx))
  328. obj = await m.main(f, wallet_idx, restart_daemon=self.need_daemon_restart(m, wallet_idx))
  329. obj.write(quiet=not obj.data.sign)
  330. self.action_desc = 'imported and signed' if obj.data.sign else 'imported'
  331. return obj
  332. class message(base):
  333. desc = 'message file'
  334. rawext = 'rawmsg.json'
  335. sigext = 'sigmsg.json'
  336. dir_name = 'msg_dir'
  337. fail_msg = 'failed to sign or signed incompletely'
  338. async def sign(self, f):
  339. from .msg import UnsignedMsg, SignedMsg
  340. m = UnsignedMsg(self.cfg, infile=f)
  341. await m.sign(wallet_files=self.parent.wallet_files[:], passwd_file=str(self.parent.keyfile))
  342. m = SignedMsg(self.cfg, data=m.__dict__)
  343. m.write_to_file(
  344. outdir = self.dir.resolve(),
  345. ask_overwrite = False)
  346. if m.data.get('failed_sids'):
  347. die('MsgFileFailedSID', f'Failed Seed IDs: {fmt_list(m.data["failed_sids"], fmt="bare")}')
  348. return m
  349. def print_summary(self, signables):
  350. gmsg('\nSigned message files:')
  351. for message in signables:
  352. gmsg(' ' + message.signed_filename)
  353. def gen_bad_list(self, bad_files):
  354. for f in bad_files:
  355. sigfile = f.parent / (f.name[:-len(self.rawext)] + self.sigext)
  356. yield orange(sigfile.name) if sigfile.exists() else red(f.name)
  357. class Autosign:
  358. dev_label = 'MMGEN_TX'
  359. linux_mount_subdir = 'mmgen_autosign'
  360. macOS_ramdisk_name = 'AutosignRamDisk'
  361. wallet_subdir = 'autosign'
  362. linux_blkid_cmd = 'sudo blkid -s LABEL -o value'
  363. keylist_fn = 'keylist.mmenc'
  364. cmds = ('setup', 'xmr_setup', 'sign', 'wait')
  365. util_cmds = (
  366. 'gen_key',
  367. 'macos_ramdisk_setup',
  368. 'macos_ramdisk_delete',
  369. 'enable_swap',
  370. 'disable_swap',
  371. 'clean',
  372. 'wipe_key')
  373. mn_fmts = {
  374. 'mmgen': 'words',
  375. 'bip39': 'bip39',
  376. }
  377. dfl_mn_fmt = 'mmgen'
  378. non_xmr_dirs = {
  379. 'tx_dir': 'tx',
  380. 'txauto_dir': 'txauto',
  381. 'msg_dir': 'msg',
  382. }
  383. xmr_dirs = {
  384. 'xmr_dir': 'xmr',
  385. 'xmr_tx_dir': 'xmr/tx',
  386. 'xmr_outputs_dir': 'xmr/outputs',
  387. }
  388. have_xmr = False
  389. xmr_only = False
  390. def init_fixup(self): # see test/overlay/fakemods/mmgen/autosign.py
  391. pass
  392. def __init__(self, cfg, *, cmd=None):
  393. if cfg.mnemonic_fmt:
  394. if cfg.mnemonic_fmt not in self.mn_fmts:
  395. die(1, '{!r}: invalid mnemonic format (must be one of: {})'.format(
  396. cfg.mnemonic_fmt,
  397. fmt_list(self.mn_fmts, fmt='no_spc')))
  398. if sys.platform == 'linux':
  399. self.dfl_mountpoint = f'/mnt/{self.linux_mount_subdir}'
  400. self.dfl_shm_dir = '/dev/shm'
  401. # linux-only attrs:
  402. self.old_dfl_mountpoint = '/mnt/tx'
  403. self.old_dfl_mountpoint_errmsg = f"""
  404. Mountpoint ‘{self.old_dfl_mountpoint}’ is no longer supported!
  405. Please rename ‘{self.old_dfl_mountpoint}’ to ‘{self.dfl_mountpoint}’
  406. and update your fstab accordingly.
  407. """
  408. self.mountpoint_errmsg_fs = """
  409. Mountpoint ‘{}’ does not exist or does not point
  410. to a directory! Please create the mountpoint and add an entry
  411. to your fstab as described in this script’s help text.
  412. """
  413. elif sys.platform == 'darwin':
  414. self.dfl_mountpoint = f'/Volumes/{self.dev_label}'
  415. self.dfl_shm_dir = f'/Volumes/{self.macOS_ramdisk_name}'
  416. self.cfg = cfg
  417. self.dfl_wallet_dir = f'{self.dfl_shm_dir}/{self.wallet_subdir}'
  418. self.mountpoint = Path(cfg.mountpoint or self.dfl_mountpoint)
  419. self.shm_dir = Path(self.dfl_shm_dir)
  420. self.wallet_dir = Path(cfg.wallet_dir or self.dfl_wallet_dir)
  421. if sys.platform == 'linux':
  422. self.mount_cmd = f'mount {self.mountpoint}'
  423. self.umount_cmd = f'umount {self.mountpoint}'
  424. elif sys.platform == 'darwin':
  425. self.mount_cmd = f'diskutil mount {self.dev_label}'
  426. self.umount_cmd = f'diskutil eject {self.dev_label}'
  427. self.init_fixup()
  428. if sys.platform == 'darwin': # test suite uses ‘fixed-up’ shm_dir
  429. from .platform.darwin.util import MacOSRamDisk
  430. self.ramdisk = MacOSRamDisk(
  431. cfg,
  432. self.macOS_ramdisk_name,
  433. self._get_macOS_ramdisk_size(),
  434. path = self.shm_dir)
  435. self.keyfile = self.mountpoint / 'autosign.key'
  436. if any(k in cfg._uopts for k in ('help', 'longhelp')):
  437. return
  438. self.coins = cfg.coins.upper().split(',') if cfg.coins else []
  439. if cfg.xmrwallets and not 'XMR' in self.coins:
  440. self.coins.append('XMR')
  441. if not self.coins and cmd in self.cmds:
  442. ymsg('Warning: no coins specified, defaulting to BTC')
  443. self.coins = ['BTC']
  444. if 'XMR' in self.coins:
  445. self.have_xmr = True
  446. if len(self.coins) == 1:
  447. self.xmr_only = True
  448. self.xmr_cur_wallet_idx = None
  449. self.dirs = {}
  450. self.signables = ()
  451. if not self.xmr_only:
  452. self.dirs |= self.non_xmr_dirs
  453. self.signables += Signable.non_xmr_signables
  454. if self.have_xmr:
  455. self.dirs |= self.xmr_dirs
  456. self.signables += Signable.xmr_signables
  457. for name, path in self.dirs.items():
  458. setattr(self, name, self.mountpoint / path)
  459. self.swap = SwapMgr(self.cfg, ignore_zram=True)
  460. async def check_daemons_running(self):
  461. from .protocol import init_proto
  462. for coin in self.coins:
  463. proto = init_proto(self.cfg, coin, network=self.cfg.network, need_amt=True)
  464. if proto.sign_mode == 'daemon':
  465. self.cfg._util.vmsg(f'Checking {coin} daemon')
  466. from .rpc import rpc_init
  467. from .exception import SocketError
  468. try:
  469. await rpc_init(self.cfg, proto, ignore_wallet=True)
  470. except SocketError as e:
  471. from .daemon import CoinDaemon
  472. d = CoinDaemon(self.cfg, proto=proto, test_suite=self.cfg.test_suite)
  473. die(2,
  474. f'\n{e}\nIs the {d.coind_name} daemon ({d.exec_fn}) running '
  475. + 'and listening on the correct port?')
  476. @property
  477. def wallet_files(self):
  478. if not hasattr(self, '_wallet_files'):
  479. try:
  480. dirlist = self.wallet_dir.iterdir()
  481. except:
  482. die(1, f"Cannot open wallet directory '{self.wallet_dir}'. Did you run ‘mmgen-autosign setup’?")
  483. self._wallet_files = [f for f in dirlist if f.suffix == '.mmdat']
  484. if not self._wallet_files:
  485. die(1, 'No wallet files present!')
  486. return self._wallet_files
  487. def do_mount(self, *, silent=False, verbose=False):
  488. def check_or_create(dirname):
  489. path = getattr(self, dirname)
  490. if path.is_dir():
  491. if not path.stat().st_mode & S_IWUSR|S_IRUSR == S_IWUSR|S_IRUSR:
  492. die(1, f'‘{path}’ is not read/write for this user!')
  493. elif path.exists():
  494. die(1, f'‘{path}’ is not a directory!')
  495. elif path.is_symlink():
  496. die(1, f'‘{path}’ is a symlink not pointing to a directory!')
  497. else:
  498. msg(f'Creating ‘{path}’')
  499. path.mkdir(parents=True)
  500. if sys.platform == 'linux' and not self.mountpoint.is_dir():
  501. def do_die(m):
  502. die(1, '\n' + yellow(fmt(m.strip(), indent=' ')))
  503. if Path(self.old_dfl_mountpoint).is_dir():
  504. do_die(self.old_dfl_mountpoint_errmsg)
  505. else:
  506. do_die(self.mountpoint_errmsg_fs.format(self.mountpoint))
  507. if not self.mountpoint.is_mount():
  508. redir = None if verbose else DEVNULL
  509. if run(self.mount_cmd.split(), stderr=redir, stdout=redir).returncode == 0:
  510. if not silent:
  511. msg(f"Mounting '{self.mountpoint}'")
  512. else:
  513. die(1, f'Unable to mount device {self.dev_label} at {self.mountpoint}')
  514. for dirname in self.dirs:
  515. check_or_create(dirname)
  516. def do_umount(self, *, silent=False, verbose=False):
  517. if self.mountpoint.is_mount():
  518. run(['sync'], check=True)
  519. if not silent:
  520. msg(f"Unmounting '{self.mountpoint}'")
  521. redir = None if verbose else DEVNULL
  522. run(self.umount_cmd.split(), stdout=redir, check=True)
  523. if not silent:
  524. bmsg('It is now safe to extract the removable device')
  525. def decrypt_wallets(self):
  526. msg(f"Unlocking wallet{suf(self.wallet_files)} with key from ‘{self.keyfile}’")
  527. fails = 0
  528. for wf in self.wallet_files:
  529. try:
  530. Wallet(self.cfg, fn=wf, ignore_in_fmt=True, passwd_file=str(self.keyfile))
  531. except SystemExit as e:
  532. if e.code != 0:
  533. fails += 1
  534. return not fails
  535. async def sign_all(self, target_name):
  536. target = getattr(Signable, target_name)(self)
  537. if target.unsigned:
  538. good = []
  539. bad = []
  540. if len(target.unsigned) > 1 and not target.multiple_ok:
  541. ymsg(f'Autosign error: only one unsigned {target.desc} transaction allowed at a time!')
  542. target.print_bad_list(target.unsigned)
  543. return False
  544. for f in target.unsigned:
  545. ret = None
  546. try:
  547. ret = await target.sign(f)
  548. except Exception as e:
  549. ymsg(f"An error occurred with {target.desc} '{f.name}':\n {type(e).__name__}: {e!s}")
  550. except:
  551. ymsg(f"An error occurred with {target.desc} '{f.name}'")
  552. good.append(ret) if ret else bad.append(f)
  553. self.cfg._util.qmsg('')
  554. await asyncio.sleep(0.3)
  555. msg(brown(f'{len(good)} {target.desc}{suf(good)} {target.action_desc}'))
  556. if bad:
  557. rmsg(f'{len(bad)} {target.desc}{suf(bad)} {target.fail_msg}')
  558. if good and not self.cfg.no_summary:
  559. target.print_summary(good)
  560. if bad:
  561. target.print_bad_list(bad)
  562. return not bad
  563. else:
  564. return f'No unsigned {target.desc}s'
  565. async def do_sign(self):
  566. if not self.cfg.stealth_led:
  567. self.led.set('busy')
  568. self.do_mount()
  569. key_ok = self.decrypt_wallets()
  570. self.init_non_mmgen_keys()
  571. if key_ok:
  572. if self.cfg.stealth_led:
  573. self.led.set('busy')
  574. ret = [await self.sign_all(signable) for signable in self.signables]
  575. for val in ret:
  576. if isinstance(val, str):
  577. msg(val)
  578. if self.cfg.test_suite_autosign_threaded:
  579. await asyncio.sleep(0.3)
  580. self.do_umount()
  581. self.led.set('error' if not all(ret) else 'off' if self.cfg.stealth_led else 'standby')
  582. return all(ret)
  583. else:
  584. msg('Password is incorrect!')
  585. self.do_umount()
  586. if not self.cfg.stealth_led:
  587. self.led.set('error')
  588. return False
  589. def wipe_encryption_key(self):
  590. if self.keyfile.exists():
  591. ymsg(f'Shredding wallet encryption key ‘{self.keyfile}’')
  592. shred_file(self.cfg, self.keyfile)
  593. else:
  594. gmsg('No wallet encryption key on removable device')
  595. def create_key(self):
  596. desc = f"key file '{self.keyfile}'"
  597. msg('Creating ' + desc)
  598. try:
  599. self.keyfile.write_text(os.urandom(32).hex())
  600. self.keyfile.chmod(0o400)
  601. except:
  602. die(2, 'Unable to write ' + desc)
  603. msg('Wrote ' + desc)
  604. def gen_key(self, *, no_unmount=False):
  605. if not self.device_inserted:
  606. die(1, 'Removable device not present!')
  607. self.do_mount()
  608. self.wipe_encryption_key()
  609. self.create_key()
  610. if not no_unmount:
  611. self.do_umount()
  612. def macos_ramdisk_setup(self):
  613. self.ramdisk.create()
  614. def macos_ramdisk_delete(self):
  615. self.ramdisk.destroy()
  616. def _get_macOS_ramdisk_size(self):
  617. from .platform.darwin.util import MacOSRamDisk, warn_ramdisk_too_small
  618. # allow 1MB for each Monero wallet
  619. xmr_size = len(AddrIdxList(fmt_str=self.cfg.xmrwallets)) if self.cfg.xmrwallets else 0
  620. calc_size = xmr_size + 1
  621. usr_size = self.cfg.macos_ramdisk_size or self.cfg.macos_autosign_ramdisk_size
  622. if is_int(usr_size):
  623. usr_size = int(usr_size)
  624. else:
  625. die(1, f'{usr_size}: invalid user-specified macOS ramdisk size (not an integer)')
  626. min_size = MacOSRamDisk.min_size
  627. size = max(usr_size, calc_size, min_size)
  628. if usr_size and usr_size < min_size:
  629. warn_ramdisk_too_small(usr_size, min_size)
  630. return size
  631. def setup(self):
  632. def remove_wallet_dir():
  633. msg(f"Deleting '{self.wallet_dir}'")
  634. import shutil
  635. try:
  636. shutil.rmtree(self.wallet_dir)
  637. except:
  638. pass
  639. def create_wallet_dir():
  640. try:
  641. self.wallet_dir.mkdir(parents=True)
  642. except:
  643. pass
  644. try:
  645. self.wallet_dir.stat()
  646. except:
  647. die(2, f"Unable to create wallet directory '{self.wallet_dir}'")
  648. self.gen_key(no_unmount=True)
  649. self.swap.disable()
  650. if sys.platform == 'darwin':
  651. self.macos_ramdisk_setup()
  652. remove_wallet_dir()
  653. create_wallet_dir()
  654. wf = find_file_in_dir(get_wallet_cls('mmgen'), self.cfg.data_dir)
  655. if wf and keypress_confirm(
  656. cfg = self.cfg,
  657. prompt = f"Default wallet '{wf}' found.\nUse default wallet for autosigning?",
  658. default_yes = True):
  659. ss_in = Wallet(Config(), fn=wf)
  660. else:
  661. ss_in = Wallet(self.cfg, in_fmt=self.mn_fmts[self.cfg.mnemonic_fmt or self.dfl_mn_fmt])
  662. ss_out = Wallet(self.cfg, ss=ss_in, passwd_file=str(self.keyfile))
  663. ss_out.write_to_file(desc='autosign wallet', outdir=self.wallet_dir)
  664. if self.cfg.keys_from_file:
  665. self.setup_non_mmgen_keys()
  666. @property
  667. def xmrwallet_cfg(self):
  668. if not hasattr(self, '_xmrwallet_cfg'):
  669. self._xmrwallet_cfg = Config({
  670. '_clone': self.cfg,
  671. 'coin': 'xmr',
  672. 'wallet_rpc_user': 'autosign',
  673. 'wallet_rpc_password': 'autosign password',
  674. 'wallet_rpc_port': 23232 if self.cfg.test_suite_xmr_autosign else None,
  675. 'wallet_dir': str(self.wallet_dir),
  676. 'autosign': True,
  677. 'autosign_mountpoint': str(self.mountpoint),
  678. 'offline': True,
  679. 'passwd_file': str(self.keyfile),
  680. })
  681. return self._xmrwallet_cfg
  682. def xmr_setup(self):
  683. def create_signing_wallets():
  684. from . import xmrwallet
  685. if len(self.wallet_files) > 1:
  686. ymsg(f'Warning: more than one wallet file, using the first ({self.wallet_files[0]}) for xmrwallet generation')
  687. m = xmrwallet.op(
  688. 'create_offline',
  689. self.xmrwallet_cfg,
  690. infile = str(self.wallet_files[0]), # MMGen wallet file
  691. wallets = self.cfg.xmrwallets) # XMR wallet idxs
  692. asyncio.run(m.main())
  693. asyncio.run(m.stop_wallet_daemon())
  694. self.clean_old_files()
  695. create_signing_wallets()
  696. def clean_old_files(self):
  697. def do_shred(fn):
  698. nonlocal count
  699. msg_r('.')
  700. shred_file(self.cfg, fn, iterations=15)
  701. count += 1
  702. def clean_dir(s_name):
  703. def clean_files(rawext, sigext):
  704. for f in s.dir.iterdir():
  705. if s.clean_all and (f.name.endswith(f'.{rawext}') or f.name.endswith(f'.{sigext}')):
  706. do_shred(f)
  707. elif f.name.endswith(f'.{sigext}'):
  708. raw = f.parent / (f.name[:-len(sigext)] + rawext)
  709. if raw.is_file():
  710. do_shred(raw)
  711. s = getattr(Signable, s_name)(self)
  712. msg_r(f"Cleaning directory '{s.dir}'..")
  713. if s.dir.is_dir():
  714. clean_files(s.rawext, s.sigext)
  715. if hasattr(s, 'subext'):
  716. clean_files(s.rawext, s.subext)
  717. clean_files(s.sigext, s.subext)
  718. msg('done' if s.dir.is_dir() else 'skipped (no dir)')
  719. count = 0
  720. for s_name in self.signables:
  721. clean_dir(s_name)
  722. bmsg(f'{count} file{suf(count)} shredded')
  723. @property
  724. def device_inserted(self):
  725. if self.cfg.no_insert_check:
  726. return True
  727. if sys.platform == 'linux':
  728. cp = run(self.linux_blkid_cmd.split(), stdout=PIPE, text=True)
  729. if cp.returncode not in (0, 2):
  730. die(2, f'blkid exited with error code {cp.returncode}')
  731. return self.dev_label in cp.stdout.splitlines()
  732. elif sys.platform == 'darwin':
  733. if self.cfg.test_suite_root_pfx:
  734. return self.mountpoint.exists()
  735. else:
  736. return run(['diskutil', 'info', self.dev_label], stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  737. async def main_loop(self):
  738. if not self.cfg.stealth_led:
  739. self.led.set('standby')
  740. threaded = self.cfg.test_suite_autosign_threaded
  741. n = 1 if threaded else 0
  742. prev_status = False
  743. while True:
  744. status = self.device_inserted
  745. if status and not prev_status:
  746. msg('Device insertion detected')
  747. await self.do_sign()
  748. prev_status = status
  749. if not n % 10:
  750. msg_r(f"\r{' '*17}\rWaiting")
  751. await asyncio.sleep(0.2 if threaded else 1)
  752. if not threaded:
  753. msg_r('.')
  754. n += 1
  755. def at_exit(self, exit_val, message=None):
  756. if message:
  757. msg(message)
  758. self.led.stop()
  759. sys.exit(0 if self.cfg.test_suite_autosign_threaded else int(exit_val))
  760. def init_exit_handler(self):
  761. def handler(arg1, arg2):
  762. self.at_exit(1, '\nCleaning up...')
  763. import signal
  764. signal.signal(signal.SIGTERM, handler)
  765. signal.signal(signal.SIGINT, handler)
  766. def init_led(self):
  767. from .led import LEDControl
  768. self.led = LEDControl(
  769. enabled = self.cfg.led,
  770. simulate = self.cfg.test_suite_autosign_led_simulate)
  771. self.led.set('off')
  772. def setup_non_mmgen_keys(self):
  773. from .fileutil import get_lines_from_file, write_data_to_file
  774. from .crypto import Crypto
  775. lines = get_lines_from_file(self.cfg, self.cfg.keys_from_file, desc='keylist data')
  776. write_data_to_file(
  777. self.cfg,
  778. str(self.wallet_dir / self.keylist_fn),
  779. Crypto(self.cfg).mmgen_encrypt(
  780. data = '\n'.join(lines).encode(),
  781. passwd = self.keyfile.read_text()),
  782. desc = 'encrypted keylist data',
  783. binary = True)
  784. if keypress_confirm(self.cfg, 'Securely delete original keylist file?'):
  785. shred_file(self.cfg, self.cfg.keys_from_file)
  786. def init_non_mmgen_keys(self):
  787. if not hasattr(self, 'keylist'):
  788. path = self.wallet_dir / self.keylist_fn
  789. if path.exists():
  790. from .crypto import Crypto
  791. from .fileutil import get_data_from_file
  792. self.keylist = Crypto(self.cfg).mmgen_decrypt(
  793. get_data_from_file(
  794. self.cfg,
  795. path,
  796. desc = 'encrypted keylist data',
  797. binary = True),
  798. passwd = self.keyfile.read_text()).decode().split()
  799. else:
  800. self.keylist = None