autosign.py 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965
  1. #!/usr/bin/env python3
  2. #
  3. # MMGen Wallet, a terminal-based cryptocurrency wallet
  4. # Copyright (C)2013-2025 The MMGen Project <mmgen@tuta.io>
  5. # Licensed under the GNU General Public License, Version 3:
  6. # https://www.gnu.org/licenses
  7. # Public project repositories:
  8. # https://github.com/mmgen/mmgen-wallet
  9. # https://gitlab.com/mmgen/mmgen-wallet
  10. """
  11. autosign: Autosign MMGen transactions, message files and XMR wallet output files
  12. """
  13. import sys, os, asyncio
  14. from stat import S_IWUSR, S_IRUSR
  15. from pathlib import Path
  16. from subprocess import run, PIPE, DEVNULL
  17. from .cfg import Config
  18. from .util import msg, msg_r, ymsg, rmsg, gmsg, bmsg, die, suf, fmt, fmt_list, is_int, have_sudo, capfirst
  19. from .color import yellow, red, orange, brown, blue
  20. from .wallet import Wallet, get_wallet_cls
  21. from .addrlist import AddrIdxList
  22. from .filename import find_file_in_dir
  23. from .fileutil import shred_file
  24. from .ui import keypress_confirm
  25. def SwapMgr(*args, **kwargs):
  26. match sys.platform:
  27. case 'linux':
  28. return SwapMgrLinux(*args, **kwargs)
  29. case 'darwin':
  30. return SwapMgrMacOS(*args, **kwargs)
  31. class SwapMgrBase:
  32. def __init__(self, cfg, *, ignore_zram=False):
  33. self.cfg = cfg
  34. self.ignore_zram = ignore_zram
  35. self.desc = 'disk swap' if ignore_zram else 'swap'
  36. def enable(self, *, quiet=False):
  37. ret = self.do_enable()
  38. if not quiet:
  39. self.cfg._util.qmsg(
  40. f'{capfirst(self.desc)} successfully enabled' if ret else
  41. f'{capfirst(self.desc)} is already enabled' if ret is None else
  42. f'Could not enable {self.desc}')
  43. return ret
  44. def disable(self, *, quiet=False):
  45. self.cfg._util.qmsg_r(f'Attempting to disable {self.desc}...')
  46. ret = self.do_disable()
  47. self.cfg._util.qmsg('success')
  48. if not quiet:
  49. self.cfg._util.qmsg(
  50. f'{capfirst(self.desc)} successfully disabled ({fmt_list(ret, fmt="no_quotes")})'
  51. if ret and isinstance(ret, list) else
  52. f'{capfirst(self.desc)} successfully disabled' if ret else
  53. f'No active {self.desc}')
  54. return ret
  55. def process_cmds(self, op, cmds):
  56. if not cmds:
  57. return
  58. if have_sudo(silent=True) and not self.cfg.test_suite:
  59. for cmd in cmds:
  60. run(cmd.split(), check=True)
  61. else:
  62. pre = 'failure\n' if op == 'disable' else ''
  63. fs = blue('{a} {b} manually by executing the following command{c}:\n{d}')
  64. post = orange('[To prevent this message in the future, enable sudo without a password]')
  65. m = pre + fs.format(
  66. a = 'Please disable' if op == 'disable' else 'Enable',
  67. b = self.desc,
  68. c = suf(cmds),
  69. d = fmt_list(cmds, indent=' ', fmt='col')) + '\n' + post
  70. msg(m)
  71. if not self.cfg.test_suite:
  72. sys.exit(1)
  73. class SwapMgrLinux(SwapMgrBase):
  74. def get_active(self):
  75. for cmd in ('/sbin/swapon', 'swapon'):
  76. try:
  77. cp = run([cmd, '--show=NAME', '--noheadings'], stdout=PIPE, text=True, check=True)
  78. break
  79. except Exception:
  80. if cmd == 'swapon':
  81. raise
  82. res = cp.stdout.splitlines()
  83. return [e for e in res if not e.startswith('/dev/zram')] if self.ignore_zram else res
  84. def do_enable(self):
  85. if ret := self.get_active():
  86. ymsg(f'Warning: {self.desc} is already enabled: ({fmt_list(ret, fmt="no_quotes")})')
  87. self.process_cmds('enable', ['sudo swapon --all'])
  88. return True
  89. def do_disable(self):
  90. swapdevs = self.get_active()
  91. if not swapdevs:
  92. return None
  93. self.process_cmds('disable', [f'sudo swapoff {swapdev}' for swapdev in swapdevs])
  94. return swapdevs
  95. class SwapMgrMacOS(SwapMgrBase):
  96. def get_active(self):
  97. cmd = 'launchctl print system/com.apple.dynamic_pager'
  98. return run(cmd.split(), stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  99. def _do_action(self, active, op, cmd):
  100. if self.get_active() is active:
  101. return None
  102. else:
  103. cmd = f'sudo launchctl {cmd} -w /System/Library/LaunchDaemons/com.apple.dynamic_pager.plist'
  104. self.process_cmds(op, [cmd])
  105. return True
  106. def do_enable(self):
  107. return self._do_action(active=True, op='enable', cmd='load')
  108. def do_disable(self):
  109. return self._do_action(active=False, op='disable', cmd='unload')
  110. class Signable:
  111. non_xmr_signables = (
  112. 'transaction',
  113. 'automount_transaction',
  114. 'message')
  115. xmr_signables = ( # order is important!
  116. 'xmr_wallet_outputs_file', # import XMR wallet outputs BEFORE signing transactions
  117. 'xmr_transaction')
  118. class base:
  119. clean_all = False
  120. multiple_ok = True
  121. action_desc = 'signed'
  122. fail_msg = 'failed to sign'
  123. def __init__(self, parent):
  124. self.parent = parent
  125. self.cfg = parent.cfg
  126. self.dir = getattr(parent, self.dir_name)
  127. self.name = type(self).__name__
  128. @property
  129. def unsigned(self):
  130. return self._unprocessed('_unsigned', self.rawext, self.sigext)
  131. def _unprocessed(self, attrname, rawext, sigext):
  132. if not hasattr(self, attrname):
  133. dirlist = sorted(self.dir.iterdir())
  134. names = {f.name for f in dirlist}
  135. setattr(
  136. self,
  137. attrname,
  138. tuple(f for f in dirlist
  139. if f.name.endswith('.' + rawext)
  140. and f.name[:-len(rawext)] + sigext not in names))
  141. return getattr(self, attrname)
  142. def print_bad_list(self, bad_files):
  143. msg('\n{a}\n{b}'.format(
  144. a = red(f'Failed {self.desc}s:'),
  145. b = ' {}\n'.format('\n '.join(
  146. self.gen_bad_list(sorted(bad_files, key=lambda f: f.name))))))
  147. def gen_bad_list(self, bad_files):
  148. for f in bad_files:
  149. yield red(f.name)
  150. class transaction(base):
  151. desc = 'non-automount transaction'
  152. rawext = 'rawtx'
  153. sigext = 'sigtx'
  154. dir_name = 'tx_dir'
  155. automount = False
  156. async def sign(self, f):
  157. from .tx import UnsignedTX
  158. tx1 = UnsignedTX(
  159. cfg = self.cfg,
  160. filename = f,
  161. automount = self.automount)
  162. if tx1.proto.sign_mode == 'daemon':
  163. from .rpc import rpc_init
  164. tx1.rpc = await rpc_init(self.cfg, tx1.proto, ignore_wallet=True)
  165. from .tx.keys import TxKeys
  166. tx2 = await tx1.sign(
  167. TxKeys(
  168. self.cfg,
  169. tx1,
  170. seedfiles = self.parent.wallet_files[:],
  171. keylist = self.parent.keylist,
  172. passwdfile = str(self.parent.keyfile),
  173. autosign = True).keys)
  174. if tx2:
  175. tx2.file.write(ask_write=False, outdir=self.dir)
  176. return tx2
  177. else:
  178. return False
  179. def print_summary(self, signables):
  180. if self.cfg.full_summary:
  181. bmsg('\nAutosign summary:\n')
  182. msg_r('\n'.join(tx.info.format(terse=True) for tx in signables))
  183. return
  184. def gen():
  185. for tx in signables:
  186. non_mmgen = [o for o in tx.outputs if not o.mmid]
  187. if non_mmgen:
  188. yield (tx, non_mmgen)
  189. body = list(gen())
  190. if body:
  191. bmsg('\nAutosign summary:')
  192. fs = '{} {} {}'
  193. t_wid, a_wid = 6, 44
  194. def gen():
  195. yield fs.format('TX ID ', 'Non-MMGen outputs'+' '*(a_wid-17), 'Amount')
  196. yield fs.format('-'*t_wid, '-'*a_wid, '-'*7)
  197. for tx, non_mmgen in body:
  198. for nm in non_mmgen:
  199. yield fs.format(
  200. tx.txid.fmt(t_wid, color=True) if nm is non_mmgen[0] else ' '*t_wid,
  201. nm.addr.fmt(nm.addr.view_pref, a_wid, color=True),
  202. nm.amt.hl() + ' ' + yellow(tx.coin))
  203. msg('\n' + '\n'.join(gen()))
  204. else:
  205. msg('\nNo non-MMGen outputs')
  206. class automount_transaction(transaction):
  207. desc = 'automount transaction'
  208. dir_name = 'txauto_dir'
  209. rawext = 'arawtx'
  210. sigext = 'asigtx'
  211. subext = 'asubtx'
  212. multiple_ok = False
  213. automount = True
  214. @property
  215. def unsubmitted(self):
  216. return self._unprocessed('_unsubmitted', self.sigext, self.subext)
  217. @property
  218. def unsubmitted_raw(self):
  219. return self._unprocessed('_unsubmitted_raw', self.rawext, self.subext)
  220. unsent = unsubmitted
  221. unsent_raw = unsubmitted_raw
  222. @property
  223. def submitted(self):
  224. return self._processed('_submitted', self.subext)
  225. def _processed(self, attrname, ext):
  226. if not hasattr(self, attrname):
  227. setattr(self, attrname, tuple(f for f in sorted(self.dir.iterdir())
  228. if f.name.endswith('.' + ext)))
  229. return getattr(self, attrname)
  230. def die_wrong_num_txs(self, tx_type, *, msg=None, desc=None, show_dir=False):
  231. num_txs = len(getattr(self, tx_type))
  232. die('AutosignTXError', '{m}{a} {b} transaction{c} {d} {e}!'.format(
  233. m = msg + '\n' if msg else '',
  234. a = 'One' if num_txs == 1 else 'More than one' if num_txs else 'No',
  235. b = desc or tx_type,
  236. c = suf(num_txs),
  237. d = 'already present' if num_txs else 'present',
  238. e = f'in ‘{getattr(self.parent, self.dir_name)}’'
  239. if show_dir else 'on removable device'))
  240. def check_create_ok(self):
  241. if len(self.unsigned):
  242. self.die_wrong_num_txs('unsigned', msg='Cannot create transaction')
  243. if len(self.unsent):
  244. die('AutosignTXError', 'Cannot create transaction: you have an unsent transaction')
  245. def get_unsubmitted(self, tx_type='unsubmitted'):
  246. if len(self.unsubmitted) == 1:
  247. return self.unsubmitted[0]
  248. else:
  249. self.die_wrong_num_txs(tx_type)
  250. def get_unsent(self):
  251. return self.get_unsubmitted('unsent')
  252. def get_submitted(self):
  253. if len(self.submitted) == 0:
  254. self.die_wrong_num_txs('submitted')
  255. else:
  256. return self.submitted
  257. def get_abortable(self):
  258. if len(self.unsent_raw) != 1:
  259. self.die_wrong_num_txs('unsent_raw', desc='unsent')
  260. if len(self.unsent) > 1:
  261. self.die_wrong_num_txs('unsent')
  262. if self.unsent:
  263. if self.unsent[0].stem != self.unsent_raw[0].stem:
  264. die(1, f'{self.unsent[0]}, {self.unsent_raw[0]}: file mismatch')
  265. return self.unsent_raw + self.unsent
  266. def shred_abortable(self):
  267. files = self.get_abortable() # raises AutosignTXError if no unsent TXs available
  268. keypress_confirm(
  269. self.cfg,
  270. 'The following file{} will be securely deleted:\n{}\nOK?'.format(
  271. suf(files),
  272. fmt_list(map(str, files), fmt='col', indent=' ')),
  273. do_exit = True)
  274. for fn in files:
  275. msg(f'Shredding file ‘{fn}’')
  276. shred_file(self.cfg, fn, iterations=15)
  277. sys.exit(0)
  278. async def get_last_created(self):
  279. from .tx import CompletedTX
  280. files = [f for f in self.dir.iterdir() if f.name.endswith(self.subext)]
  281. return sorted(
  282. [await CompletedTX(cfg=self.cfg, filename=str(txfile), quiet_open=True)
  283. for txfile in files],
  284. key = lambda x: x.timestamp)[-1]
  285. class xmr_signable: # mixin class
  286. automount = True
  287. def need_daemon_restart(self, m, new_idx):
  288. old_idx = self.parent.xmr_cur_wallet_idx
  289. self.parent.xmr_cur_wallet_idx = new_idx
  290. return old_idx != new_idx or m.wd.state != 'ready'
  291. def print_summary(self, signables):
  292. bmsg('\nAutosign summary:')
  293. msg('\n'.join(s.get_info(indent=' ') for s in signables) + self.summary_footer)
  294. class xmr_transaction(xmr_signable, automount_transaction):
  295. dir_name = 'xmr_tx_dir'
  296. desc = 'Monero transaction'
  297. rawext = 'rawtx'
  298. sigext = 'sigtx'
  299. subext = 'subtx'
  300. summary_footer = ''
  301. async def sign(self, f):
  302. from . import xmrwallet
  303. from .xmrwallet.file.tx import MoneroMMGenTX
  304. tx1 = MoneroMMGenTX.Completed(self.parent.xmrwallet_cfg, f)
  305. m = xmrwallet.op(
  306. 'sign',
  307. self.parent.xmrwallet_cfg,
  308. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  309. wallets = str(tx1.src_wallet_idx))
  310. tx2 = await m.main(f, restart_daemon=self.need_daemon_restart(m, tx1.src_wallet_idx))
  311. tx2.write(ask_write=False)
  312. return tx2
  313. class xmr_wallet_outputs_file(xmr_signable, base):
  314. desc = 'Monero wallet outputs file'
  315. rawext = 'raw'
  316. sigext = 'sig'
  317. dir_name = 'xmr_outputs_dir'
  318. clean_all = True
  319. summary_footer = '\n'
  320. @property
  321. def unsigned(self):
  322. import json
  323. return tuple(
  324. f for f in super().unsigned
  325. if not json.loads(f.read_text())['MoneroMMGenWalletOutputsFile']['data']['imported'])
  326. async def sign(self, f):
  327. from . import xmrwallet
  328. wallet_idx = xmrwallet.op_cls('wallet').get_idx_from_fn(f)
  329. m = xmrwallet.op(
  330. 'import_outputs',
  331. self.parent.xmrwallet_cfg,
  332. infile = str(self.parent.wallet_files[0]), # MMGen wallet file
  333. wallets = str(wallet_idx))
  334. obj = await m.main(f, wallet_idx, restart_daemon=self.need_daemon_restart(m, wallet_idx))
  335. obj.write(quiet=not obj.data.sign)
  336. self.action_desc = 'imported and signed' if obj.data.sign else 'imported'
  337. return obj
  338. class message(base):
  339. desc = 'message file'
  340. rawext = 'rawmsg.json'
  341. sigext = 'sigmsg.json'
  342. dir_name = 'msg_dir'
  343. fail_msg = 'failed to sign or signed incompletely'
  344. async def sign(self, f):
  345. from .msg import UnsignedMsg, SignedMsg
  346. m = UnsignedMsg(self.cfg, infile=f)
  347. await m.sign(wallet_files=self.parent.wallet_files[:], passwd_file=str(self.parent.keyfile))
  348. m = SignedMsg(self.cfg, data=m.__dict__)
  349. m.write_to_file(
  350. outdir = self.dir.resolve(),
  351. ask_overwrite = False)
  352. if m.data.get('failed_sids'):
  353. die(
  354. 'MsgFileFailedSID',
  355. f'Failed Seed IDs: {fmt_list(m.data["failed_sids"], fmt="bare")}')
  356. return m
  357. def print_summary(self, signables):
  358. gmsg('\nSigned message files:')
  359. for message in signables:
  360. gmsg(' ' + message.signed_filename)
  361. def gen_bad_list(self, bad_files):
  362. for f in bad_files:
  363. sigfile = f.parent / (f.name[:-len(self.rawext)] + self.sigext)
  364. yield orange(sigfile.name) if sigfile.exists() else red(f.name)
  365. class Autosign:
  366. dev_label = 'MMGEN_TX'
  367. linux_mount_subdir = 'mmgen_autosign'
  368. macOS_ramdisk_name = 'AutosignRamDisk'
  369. wallet_subdir = 'autosign'
  370. linux_blkid_cmd = 'sudo blkid -s LABEL -o value'
  371. keylist_fn = 'keylist.mmenc'
  372. cmds = ('setup', 'xmr_setup', 'sign', 'wait')
  373. util_cmds = (
  374. 'gen_key',
  375. 'macos_ramdisk_setup',
  376. 'macos_ramdisk_delete',
  377. 'enable_swap',
  378. 'disable_swap',
  379. 'clean',
  380. 'wipe_key')
  381. mn_fmts = {
  382. 'mmgen': 'words',
  383. 'bip39': 'bip39'}
  384. dfl_mn_fmt = 'mmgen'
  385. non_xmr_dirs = {
  386. 'tx_dir': 'tx',
  387. 'txauto_dir': 'txauto',
  388. 'msg_dir': 'msg'}
  389. xmr_dirs = {
  390. 'xmr_dir': 'xmr',
  391. 'xmr_tx_dir': 'xmr/tx',
  392. 'xmr_outputs_dir': 'xmr/outputs'}
  393. have_xmr = False
  394. xmr_only = False
  395. def init_fixup(self): # see test/overlay/fakemods/mmgen/autosign.py
  396. pass
  397. def __init__(self, cfg, *, cmd=None):
  398. if cfg.mnemonic_fmt:
  399. if cfg.mnemonic_fmt not in self.mn_fmts:
  400. die(1, '{!r}: invalid mnemonic format (must be one of: {})'.format(
  401. cfg.mnemonic_fmt,
  402. fmt_list(self.mn_fmts, fmt='no_spc')))
  403. match sys.platform:
  404. case 'linux':
  405. self.dfl_mountpoint = f'/mnt/{self.linux_mount_subdir}'
  406. self.dfl_shm_dir = '/dev/shm'
  407. # linux-only attrs:
  408. self.old_dfl_mountpoint = '/mnt/tx'
  409. self.old_dfl_mountpoint_errmsg = f"""
  410. Mountpoint ‘{self.old_dfl_mountpoint}’ is no longer supported!
  411. Please rename ‘{self.old_dfl_mountpoint}’ to ‘{self.dfl_mountpoint}’
  412. and update your fstab accordingly.
  413. """
  414. self.mountpoint_errmsg_fs = """
  415. Mountpoint ‘{}’ does not exist or does not point
  416. to a directory! Please create the mountpoint and add an entry
  417. to your fstab as described in this script’s help text.
  418. """
  419. case 'darwin':
  420. self.dfl_mountpoint = f'/Volumes/{self.dev_label}'
  421. self.dfl_shm_dir = f'/Volumes/{self.macOS_ramdisk_name}'
  422. self.cfg = cfg
  423. self.dfl_wallet_dir = f'{self.dfl_shm_dir}/{self.wallet_subdir}'
  424. self.mountpoint = Path(cfg.mountpoint or self.dfl_mountpoint)
  425. self.shm_dir = Path(self.dfl_shm_dir)
  426. self.wallet_dir = Path(cfg.wallet_dir or self.dfl_wallet_dir)
  427. match sys.platform:
  428. case 'linux':
  429. self.mount_cmd = f'mount {self.mountpoint}'
  430. self.umount_cmd = f'umount {self.mountpoint}'
  431. case 'darwin':
  432. self.mount_cmd = f'diskutil mount {self.dev_label}'
  433. self.umount_cmd = f'diskutil eject {self.dev_label}'
  434. self.init_fixup()
  435. if sys.platform == 'darwin': # test suite uses ‘fixed-up’ shm_dir
  436. from .platform.darwin.util import MacOSRamDisk
  437. self.ramdisk = MacOSRamDisk(
  438. cfg,
  439. self.macOS_ramdisk_name,
  440. self._get_macOS_ramdisk_size(),
  441. path = self.shm_dir)
  442. self.keyfile = self.mountpoint / 'autosign.key'
  443. if any(k in cfg._uopts for k in ('help', 'longhelp')):
  444. return
  445. self.coins = cfg.coins.upper().split(',') if cfg.coins else []
  446. if cfg.xmrwallets and not 'XMR' in self.coins:
  447. self.coins.append('XMR')
  448. if not self.coins and cmd in self.cmds:
  449. ymsg('Warning: no coins specified, defaulting to BTC')
  450. self.coins = ['BTC']
  451. if 'XMR' in self.coins:
  452. self.have_xmr = True
  453. if len(self.coins) == 1:
  454. self.xmr_only = True
  455. self.xmr_cur_wallet_idx = None
  456. self.dirs = {}
  457. self.signables = ()
  458. if not self.xmr_only:
  459. self.dirs |= self.non_xmr_dirs
  460. self.signables += Signable.non_xmr_signables
  461. if self.have_xmr:
  462. self.dirs |= self.xmr_dirs
  463. self.signables += Signable.xmr_signables
  464. for name, path in self.dirs.items():
  465. setattr(self, name, self.mountpoint / path)
  466. self.swap = SwapMgr(self.cfg, ignore_zram=True)
  467. async def check_daemons_running(self):
  468. from .protocol import init_proto
  469. for coin in self.coins:
  470. proto = init_proto(self.cfg, coin, network=self.cfg.network, need_amt=True)
  471. if proto.sign_mode == 'daemon':
  472. self.cfg._util.vmsg(f'Checking {coin} daemon')
  473. from .rpc import rpc_init
  474. from .exception import SocketError
  475. try:
  476. await rpc_init(self.cfg, proto, ignore_wallet=True)
  477. except SocketError as e:
  478. from .daemon import CoinDaemon
  479. d = CoinDaemon(self.cfg, proto=proto, test_suite=self.cfg.test_suite)
  480. die(2,
  481. f'\n{e}\nIs the {d.coind_name} daemon ({d.exec_fn}) running '
  482. + 'and listening on the correct port?')
  483. @property
  484. def wallet_files(self):
  485. if not hasattr(self, '_wallet_files'):
  486. try:
  487. dirlist = self.wallet_dir.iterdir()
  488. except:
  489. die(1,
  490. f'Cannot open wallet directory ‘{self.wallet_dir}’. '
  491. 'Did you run ‘mmgen-autosign setup’?')
  492. self._wallet_files = [f for f in dirlist if f.suffix == '.mmdat']
  493. if not self._wallet_files:
  494. die(1, 'No wallet files present!')
  495. return self._wallet_files
  496. def do_mount(self, *, silent=False, verbose=False):
  497. def check_or_create(dirname):
  498. path = getattr(self, dirname)
  499. if path.is_dir():
  500. if not path.stat().st_mode & S_IWUSR|S_IRUSR == S_IWUSR|S_IRUSR:
  501. die(1, f'‘{path}’ is not read/write for this user!')
  502. elif path.exists():
  503. die(1, f'‘{path}’ is not a directory!')
  504. elif path.is_symlink():
  505. die(1, f'‘{path}’ is a symlink not pointing to a directory!')
  506. else:
  507. msg(f'Creating ‘{path}’')
  508. path.mkdir(parents=True)
  509. if sys.platform == 'linux' and not self.mountpoint.is_dir():
  510. def do_die(m):
  511. die(1, '\n' + yellow(fmt(m.strip(), indent=' ')))
  512. if Path(self.old_dfl_mountpoint).is_dir():
  513. do_die(self.old_dfl_mountpoint_errmsg)
  514. else:
  515. do_die(self.mountpoint_errmsg_fs.format(self.mountpoint))
  516. if not self.mountpoint.is_mount():
  517. redir = None if verbose else DEVNULL
  518. if run(self.mount_cmd.split(), stderr=redir, stdout=redir).returncode == 0:
  519. if not silent:
  520. msg(f'Mounting ‘{self.mountpoint}’')
  521. else:
  522. die(1, f'Unable to mount device ‘{self.dev_label}’ at ‘{self.mountpoint}’')
  523. for dirname in self.dirs:
  524. check_or_create(dirname)
  525. def do_umount(self, *, silent=False, verbose=False):
  526. if self.mountpoint.is_mount():
  527. run(['sync'], check=True)
  528. if not silent:
  529. msg(f'Unmounting ‘{self.mountpoint}’')
  530. redir = None if verbose else DEVNULL
  531. run(self.umount_cmd.split(), stdout=redir, check=True)
  532. if not silent:
  533. bmsg('It is now safe to extract the removable device')
  534. def decrypt_wallets(self):
  535. msg(f'Unlocking wallet{suf(self.wallet_files)} with key from ‘{self.keyfile}’')
  536. fails = 0
  537. for wf in self.wallet_files:
  538. try:
  539. Wallet(self.cfg, fn=wf, ignore_in_fmt=True, passwd_file=str(self.keyfile))
  540. except SystemExit as e:
  541. if e.code != 0:
  542. fails += 1
  543. return not fails
  544. async def sign_all(self, target_name):
  545. target = getattr(Signable, target_name)(self)
  546. if target.unsigned:
  547. good = []
  548. bad = []
  549. if len(target.unsigned) > 1 and not target.multiple_ok:
  550. ymsg(f'Autosign error: only one unsigned {target.desc} transaction allowed at a time!')
  551. target.print_bad_list(target.unsigned)
  552. return False
  553. for f in target.unsigned:
  554. ret = None
  555. try:
  556. ret = await target.sign(f)
  557. except Exception as e:
  558. ymsg('An error occurred with {} ‘{}’:\n {}: ‘{}’'.format(
  559. target.desc, f.name, type(e).__name__, e))
  560. except:
  561. ymsg('An error occurred with {} ‘{}’'.format(target.desc, f.name))
  562. good.append(ret) if ret else bad.append(f)
  563. self.cfg._util.qmsg('')
  564. await asyncio.sleep(0.3)
  565. msg(brown(f'{len(good)} {target.desc}{suf(good)} {target.action_desc}'))
  566. if bad:
  567. rmsg(f'{len(bad)} {target.desc}{suf(bad)} {target.fail_msg}')
  568. if good and not self.cfg.no_summary:
  569. target.print_summary(good)
  570. if bad:
  571. target.print_bad_list(bad)
  572. return not bad
  573. else:
  574. return f'No unsigned {target.desc}s'
  575. async def do_sign(self):
  576. if not self.cfg.stealth_led:
  577. self.led.set('busy')
  578. self.do_mount()
  579. key_ok = self.decrypt_wallets()
  580. self.init_non_mmgen_keys()
  581. if key_ok:
  582. if self.cfg.stealth_led:
  583. self.led.set('busy')
  584. ret = [await self.sign_all(signable) for signable in self.signables]
  585. for val in ret:
  586. if isinstance(val, str):
  587. msg(val)
  588. if self.cfg.test_suite_autosign_threaded:
  589. await asyncio.sleep(0.3)
  590. self.do_umount()
  591. self.led.set('error' if not all(ret) else 'off' if self.cfg.stealth_led else 'standby')
  592. return all(ret)
  593. else:
  594. msg('Password is incorrect!')
  595. self.do_umount()
  596. if not self.cfg.stealth_led:
  597. self.led.set('error')
  598. return False
  599. def wipe_encryption_key(self):
  600. if self.keyfile.exists():
  601. ymsg(f'Shredding wallet encryption key ‘{self.keyfile}’')
  602. shred_file(self.cfg, self.keyfile)
  603. else:
  604. gmsg('No wallet encryption key on removable device')
  605. def create_key(self):
  606. desc = f'key file ‘{self.keyfile}’'
  607. msg('Creating ' + desc)
  608. try:
  609. self.keyfile.write_text(os.urandom(32).hex())
  610. self.keyfile.chmod(0o400)
  611. except:
  612. die(2, 'Unable to write ' + desc)
  613. msg('Wrote ' + desc)
  614. def gen_key(self, *, no_unmount=False):
  615. if not self.device_inserted:
  616. die(1, 'Removable device not present!')
  617. self.do_mount()
  618. self.wipe_encryption_key()
  619. self.create_key()
  620. if not no_unmount:
  621. self.do_umount()
  622. def macos_ramdisk_setup(self):
  623. self.ramdisk.create()
  624. def macos_ramdisk_delete(self):
  625. self.ramdisk.destroy()
  626. def _get_macOS_ramdisk_size(self):
  627. from .platform.darwin.util import MacOSRamDisk, warn_ramdisk_too_small
  628. # allow 1MB for each Monero wallet
  629. xmr_size = len(AddrIdxList(fmt_str=self.cfg.xmrwallets)) if self.cfg.xmrwallets else 0
  630. calc_size = xmr_size + 1
  631. usr_size = self.cfg.macos_ramdisk_size or self.cfg.macos_autosign_ramdisk_size
  632. if is_int(usr_size):
  633. usr_size = int(usr_size)
  634. else:
  635. die(1, f'{usr_size}: invalid user-specified macOS ramdisk size (not an integer)')
  636. min_size = MacOSRamDisk.min_size
  637. size = max(usr_size, calc_size, min_size)
  638. if usr_size and usr_size < min_size:
  639. warn_ramdisk_too_small(usr_size, min_size)
  640. return size
  641. def setup(self):
  642. def remove_wallet_dir():
  643. msg(f'Deleting ‘{self.wallet_dir}’')
  644. import shutil
  645. try:
  646. shutil.rmtree(self.wallet_dir)
  647. except:
  648. pass
  649. def create_wallet_dir():
  650. try:
  651. self.wallet_dir.mkdir(parents=True)
  652. except:
  653. pass
  654. try:
  655. self.wallet_dir.stat()
  656. except:
  657. die(2, f'Unable to create wallet directory ‘{self.wallet_dir}’')
  658. self.gen_key(no_unmount=True)
  659. self.swap.disable()
  660. if sys.platform == 'darwin':
  661. self.macos_ramdisk_setup()
  662. remove_wallet_dir()
  663. create_wallet_dir()
  664. wf = find_file_in_dir(get_wallet_cls('mmgen'), self.cfg.data_dir)
  665. if wf and keypress_confirm(
  666. cfg = self.cfg,
  667. prompt = f'Default wallet ‘{wf}’ found.\nUse default wallet for autosigning?',
  668. default_yes = True):
  669. ss_in = Wallet(Config(), fn=wf)
  670. else:
  671. ss_in = Wallet(self.cfg, in_fmt=self.mn_fmts[self.cfg.mnemonic_fmt or self.dfl_mn_fmt])
  672. ss_out = Wallet(self.cfg, ss=ss_in, passwd_file=str(self.keyfile))
  673. ss_out.write_to_file(desc='autosign wallet', outdir=self.wallet_dir)
  674. if self.cfg.keys_from_file:
  675. self.setup_non_mmgen_keys()
  676. @property
  677. def xmrwallet_cfg(self):
  678. if not hasattr(self, '_xmrwallet_cfg'):
  679. self._xmrwallet_cfg = Config({
  680. '_clone': self.cfg,
  681. 'coin': 'xmr',
  682. 'wallet_rpc_user': 'autosign',
  683. 'wallet_rpc_password': 'autosign password',
  684. 'wallet_rpc_port': 23232 if self.cfg.test_suite_xmr_autosign else None,
  685. 'wallet_dir': str(self.wallet_dir),
  686. 'autosign': True,
  687. 'autosign_mountpoint': str(self.mountpoint),
  688. 'offline': True,
  689. 'compat': False,
  690. 'passwd_file': str(self.keyfile)})
  691. return self._xmrwallet_cfg
  692. def xmr_setup(self):
  693. def create_signing_wallets():
  694. from . import xmrwallet
  695. if len(self.wallet_files) > 1:
  696. ymsg(
  697. 'Warning: more than one wallet file, using the first '
  698. f'({self.wallet_files[0]}) for xmrwallet generation')
  699. m = xmrwallet.op(
  700. 'create_offline',
  701. self.xmrwallet_cfg,
  702. infile = str(self.wallet_files[0]), # MMGen wallet file
  703. wallets = self.cfg.xmrwallets) # XMR wallet idxs
  704. asyncio.run(m.main())
  705. asyncio.run(m.stop_wallet_daemon())
  706. self.clean_old_files()
  707. create_signing_wallets()
  708. def clean_old_files(self):
  709. def do_shred(fn):
  710. nonlocal count
  711. msg_r('.')
  712. shred_file(self.cfg, fn, iterations=15)
  713. count += 1
  714. def clean_dir(s_name):
  715. def clean_files(rawext, sigext):
  716. for f in s.dir.iterdir():
  717. if s.clean_all and (f.name.endswith(f'.{rawext}') or f.name.endswith(f'.{sigext}')):
  718. do_shred(f)
  719. elif f.name.endswith(f'.{sigext}'):
  720. raw = f.parent / (f.name[:-len(sigext)] + rawext)
  721. if raw.is_file():
  722. do_shred(raw)
  723. s = getattr(Signable, s_name)(self)
  724. msg_r(f'Cleaning directory ‘{s.dir}’..')
  725. if s.dir.is_dir():
  726. clean_files(s.rawext, s.sigext)
  727. if hasattr(s, 'subext'):
  728. clean_files(s.rawext, s.subext)
  729. clean_files(s.sigext, s.subext)
  730. msg('done' if s.dir.is_dir() else 'skipped (no dir)')
  731. count = 0
  732. for s_name in self.signables:
  733. clean_dir(s_name)
  734. bmsg(f'{count} file{suf(count)} shredded')
  735. @property
  736. def device_inserted(self):
  737. if self.cfg.no_insert_check:
  738. return True
  739. match sys.platform:
  740. case 'linux':
  741. cp = run(self.linux_blkid_cmd.split(), stdout=PIPE, text=True)
  742. if cp.returncode not in (0, 2):
  743. die(2, f'blkid exited with error code {cp.returncode}')
  744. return self.dev_label in cp.stdout.splitlines()
  745. case 'darwin':
  746. if self.cfg.test_suite_root_pfx:
  747. return self.mountpoint.exists()
  748. else:
  749. return run(
  750. ['diskutil', 'info', self.dev_label],
  751. stdout=DEVNULL, stderr=DEVNULL).returncode == 0
  752. async def main_loop(self):
  753. if not self.cfg.stealth_led:
  754. self.led.set('standby')
  755. threaded = self.cfg.test_suite_autosign_threaded
  756. n = 1 if threaded else 0
  757. prev_status = False
  758. while True:
  759. status = self.device_inserted
  760. if status and not prev_status:
  761. msg('Device insertion detected')
  762. await self.do_sign()
  763. prev_status = status
  764. if not n % 10:
  765. msg_r(f'\r{" "*17}\rWaiting')
  766. await asyncio.sleep(0.2 if threaded else 1)
  767. if not threaded:
  768. msg_r('.')
  769. n += 1
  770. def at_exit(self, exit_val, message=None):
  771. if message:
  772. msg(message)
  773. self.led.stop()
  774. sys.exit(0 if self.cfg.test_suite_autosign_threaded else int(exit_val))
  775. def init_exit_handler(self):
  776. def handler(arg1, arg2):
  777. self.at_exit(1, '\nCleaning up...')
  778. import signal
  779. signal.signal(signal.SIGTERM, handler)
  780. signal.signal(signal.SIGINT, handler)
  781. def init_led(self):
  782. from .led import LEDControl
  783. self.led = LEDControl(
  784. enabled = self.cfg.led,
  785. simulate = self.cfg.test_suite_autosign_led_simulate)
  786. self.led.set('off')
  787. def setup_non_mmgen_keys(self):
  788. from .fileutil import get_lines_from_file, write_data_to_file
  789. from .crypto import Crypto
  790. lines = get_lines_from_file(self.cfg, self.cfg.keys_from_file, desc='keylist data')
  791. write_data_to_file(
  792. self.cfg,
  793. str(self.wallet_dir / self.keylist_fn),
  794. Crypto(self.cfg).mmgen_encrypt(
  795. data = '\n'.join(lines).encode(),
  796. passwd = self.keyfile.read_text()),
  797. desc = 'encrypted keylist data',
  798. binary = True)
  799. if keypress_confirm(self.cfg, 'Securely delete original keylist file?'):
  800. shred_file(self.cfg, self.cfg.keys_from_file)
  801. def init_non_mmgen_keys(self):
  802. if not hasattr(self, 'keylist'):
  803. path = self.wallet_dir / self.keylist_fn
  804. if path.exists():
  805. from .crypto import Crypto
  806. from .fileutil import get_data_from_file
  807. self.keylist = Crypto(self.cfg).mmgen_decrypt(
  808. get_data_from_file(
  809. self.cfg,
  810. path,
  811. desc = 'encrypted keylist data',
  812. binary = True),
  813. passwd = self.keyfile.read_text()).decode().split()
  814. else:
  815. self.keylist = None