auth.py 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148
  1. # mautrix-signal - A Matrix-Signal puppeting bridge
  2. # Copyright (C) 2020 Tulir Asokan
  3. #
  4. # This program is free software: you can redistribute it and/or modify
  5. # it under the terms of the GNU Affero General Public License as published by
  6. # the Free Software Foundation, either version 3 of the License, or
  7. # (at your option) any later version.
  8. #
  9. # This program is distributed in the hope that it will be useful,
  10. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  11. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  12. # GNU Affero General Public License for more details.
  13. #
  14. # You should have received a copy of the GNU Affero General Public License
  15. # along with this program. If not, see <https://www.gnu.org/licenses/>.
  16. from typing import Union
  17. import io
  18. from mausignald.errors import UnexpectedResponse
  19. from mautrix.client import Client
  20. from mautrix.bridge import custom_puppet as cpu
  21. from mautrix.appservice import IntentAPI
  22. from mautrix.types import MediaMessageEventContent, MessageType, ImageInfo
  23. from mautrix.bridge.commands import HelpSection, command_handler
  24. from .. import puppet as pu
  25. from .typehint import CommandEvent
  26. try:
  27. import qrcode
  28. import PIL as _
  29. except ImportError:
  30. qrcode = None
  31. SECTION_AUTH = HelpSection("Authentication", 10, "")
  32. remove_extra_chars = str.maketrans("", "", " .,-()")
  33. async def make_qr(intent: IntentAPI, data: Union[str, bytes], body: str = None
  34. ) -> MediaMessageEventContent:
  35. # TODO always encrypt QR codes?
  36. buffer = io.BytesIO()
  37. image = qrcode.make(data)
  38. size = image.pixel_size
  39. image.save(buffer, "PNG")
  40. qr = buffer.getvalue()
  41. mxc = await intent.upload_media(qr, "image/png", "qr.png", len(qr))
  42. return MediaMessageEventContent(body=body or data, url=mxc, msgtype=MessageType.IMAGE,
  43. info=ImageInfo(mimetype="image/png", size=len(qr),
  44. width=size, height=size))
  45. @command_handler(needs_auth=False, management_only=True, help_section=SECTION_AUTH,
  46. help_text="Link the bridge as a secondary device", help_args="[device name]")
  47. async def link(evt: CommandEvent) -> None:
  48. if qrcode is None:
  49. await evt.reply("Can't generate QR code: qrcode and/or PIL not installed")
  50. return
  51. # TODO make default device name configurable
  52. device_name = " ".join(evt.args) or "Mautrix-Signal bridge"
  53. async def callback(uri: str) -> None:
  54. content = await make_qr(evt.az.intent, uri)
  55. await evt.az.intent.send_message(evt.room_id, content)
  56. account = await evt.bridge.signal.link(callback, device_name=device_name)
  57. await evt.sender.on_signin(account)
  58. await evt.reply(f"Successfully logged in as {pu.Puppet.fmt_phone(evt.sender.username)}")
  59. @command_handler(needs_auth=False, management_only=True, help_section=SECTION_AUTH,
  60. help_text="Sign into Signal as the primary device", help_args="<phone>")
  61. async def register(evt: CommandEvent) -> None:
  62. if len(evt.args) == 0:
  63. await evt.reply("**Usage**: $cmdprefix+sp register [--voice] <phone>")
  64. return
  65. voice = False
  66. if evt.args[0].lower() == "--voice":
  67. voice = True
  68. evt.args = evt.args[1:]
  69. phone = evt.args[0].translate(remove_extra_chars)
  70. if not phone.startswith("+") or not phone[1:].isdecimal():
  71. await evt.reply(f"Please enter the phone number in international format (E.164)")
  72. return
  73. username = await evt.bridge.signal.register(phone, voice=voice)
  74. evt.sender.command_status = {
  75. "action": "Register",
  76. "room_id": evt.room_id,
  77. "next": enter_register_code,
  78. "username": username,
  79. }
  80. await evt.reply("Register SMS requested, please enter the code here.")
  81. async def enter_register_code(evt: CommandEvent) -> None:
  82. try:
  83. username = evt.sender.command_status["username"]
  84. account = await evt.bridge.signal.verify(username, code=evt.args[0])
  85. except UnexpectedResponse as e:
  86. if e.resp_type == "error":
  87. await evt.reply(e.data)
  88. else:
  89. raise
  90. else:
  91. await evt.sender.on_signin(account)
  92. await evt.reply(f"Successfully logged in as {pu.Puppet.fmt_phone(evt.sender.username)}."
  93. f"\n\n**N.B.** You must set a Signal profile name with `$cmdprefix+sp "
  94. f"set-profile-name <name>` before you can participate in new groups.")
  95. @command_handler(needs_auth=True, management_only=True, help_section=SECTION_AUTH,
  96. help_text="Remove all local data about your Signal link")
  97. async def logout(evt: CommandEvent) -> None:
  98. if not evt.sender.username:
  99. await evt.reply("You're not logged in")
  100. return
  101. await evt.sender.logout()
  102. await evt.reply("Successfully logged out")
  103. @command_handler(needs_auth=True, management_only=True, help_args="<_access token_>",
  104. help_section=SECTION_AUTH, help_text="Replace your Signal account's Matrix puppet"
  105. " with your Matrix account")
  106. async def login_matrix(evt: CommandEvent) -> None:
  107. puppet = await pu.Puppet.get_by_address(evt.sender.address)
  108. _, homeserver = Client.parse_mxid(evt.sender.mxid)
  109. if homeserver != pu.Puppet.hs_domain:
  110. await evt.reply("You can't log in with an account on a different homeserver")
  111. return
  112. try:
  113. await puppet.switch_mxid(" ".join(evt.args), evt.sender.mxid)
  114. await evt.reply("Successfully replaced your Signal account's "
  115. "Matrix puppet with your Matrix account.")
  116. except cpu.OnlyLoginSelf:
  117. await evt.reply("You may only log in with your own Matrix account")
  118. except cpu.InvalidAccessToken:
  119. await evt.reply("Invalid access token")
  120. @command_handler(needs_auth=True, management_only=True, help_section=SECTION_AUTH,
  121. help_text="Revert your Signal account's Matrix puppet to the original")
  122. async def logout_matrix(evt: CommandEvent) -> None:
  123. puppet = await pu.Puppet.get_by_address(evt.sender.address)
  124. if not puppet.is_real_user:
  125. await evt.reply("You're not logged in with your Matrix account")
  126. return
  127. await puppet.switch_mxid(None, None)
  128. await evt.reply("Restored the original puppet for your Signal account")