auth.py 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147
  1. # mautrix-signal - A Matrix-Signal puppeting bridge
  2. # Copyright (C) 2020 Tulir Asokan
  3. #
  4. # This program is free software: you can redistribute it and/or modify
  5. # it under the terms of the GNU Affero General Public License as published by
  6. # the Free Software Foundation, either version 3 of the License, or
  7. # (at your option) any later version.
  8. #
  9. # This program is distributed in the hope that it will be useful,
  10. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  11. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  12. # GNU Affero General Public License for more details.
  13. #
  14. # You should have received a copy of the GNU Affero General Public License
  15. # along with this program. If not, see <https://www.gnu.org/licenses/>.
  16. from typing import Union
  17. import io
  18. from mausignald.errors import UnexpectedResponse
  19. from mautrix.client import Client
  20. from mautrix.bridge import custom_puppet as cpu
  21. from mautrix.appservice import IntentAPI
  22. from mautrix.types import MediaMessageEventContent, MessageType, ImageInfo
  23. from mautrix.bridge.commands import HelpSection, command_handler
  24. from .. import puppet as pu
  25. from .typehint import CommandEvent
  26. try:
  27. import qrcode
  28. import PIL as _
  29. except ImportError:
  30. qrcode = None
  31. SECTION_AUTH = HelpSection("Authentication", 10, "")
  32. async def make_qr(intent: IntentAPI, data: Union[str, bytes], body: str = None
  33. ) -> MediaMessageEventContent:
  34. # TODO always encrypt QR codes?
  35. buffer = io.BytesIO()
  36. image = qrcode.make(data)
  37. size = image.pixel_size
  38. image.save(buffer, "PNG")
  39. qr = buffer.getvalue()
  40. mxc = await intent.upload_media(qr, "image/png", "qr.png", len(qr))
  41. return MediaMessageEventContent(body=body or data, url=mxc, msgtype=MessageType.IMAGE,
  42. info=ImageInfo(mimetype="image/png", size=len(qr),
  43. width=size, height=size))
  44. @command_handler(needs_auth=False, management_only=True, help_section=SECTION_AUTH,
  45. help_text="Link the bridge as a secondary device", help_args="[device name]")
  46. async def link(evt: CommandEvent) -> None:
  47. if qrcode is None:
  48. await evt.reply("Can't generate QR code: qrcode and/or PIL not installed")
  49. return
  50. # TODO make default device name configurable
  51. device_name = " ".join(evt.args) or "Mautrix-Signal bridge"
  52. async def callback(uri: str) -> None:
  53. content = await make_qr(evt.az.intent, uri)
  54. await evt.az.intent.send_message(evt.room_id, content)
  55. account = await evt.bridge.signal.link(callback, device_name=device_name)
  56. await evt.sender.on_signin(account)
  57. await evt.reply(f"Successfully logged in as {pu.Puppet.fmt_phone(evt.sender.username)}")
  58. @command_handler(needs_auth=False, management_only=True, help_section=SECTION_AUTH,
  59. help_text="Sign into Signal as the primary device", help_args="<phone>")
  60. async def register(evt: CommandEvent) -> None:
  61. if len(evt.args) == 0:
  62. await evt.reply("**Usage**: $cmdprefix+sp register [--voice] <phone>")
  63. return
  64. voice = False
  65. if evt.args[0].lower() == "--voice":
  66. voice = True
  67. evt.args = evt.args[1:]
  68. phone = evt.args[0]
  69. if not phone.startswith("+") or not phone[1:].isdecimal():
  70. await evt.reply(f"Please enter the phone number in international format (E.164)")
  71. return
  72. username = await evt.bridge.signal.register(phone, voice=voice)
  73. evt.sender.command_status = {
  74. "action": "Register",
  75. "room_id": evt.room_id,
  76. "next": enter_register_code,
  77. "username": username,
  78. }
  79. await evt.reply("Register SMS requested, please enter the code here.")
  80. async def enter_register_code(evt: CommandEvent) -> None:
  81. try:
  82. username = evt.sender.command_status["username"]
  83. account = await evt.bridge.signal.verify(username, code=evt.args[0])
  84. except UnexpectedResponse as e:
  85. if e.resp_type == "error":
  86. await evt.reply(e.data)
  87. else:
  88. raise
  89. else:
  90. await evt.sender.on_signin(account)
  91. await evt.reply(f"Successfully logged in as {pu.Puppet.fmt_phone(evt.sender.username)}."
  92. f"\n\n**N.B.** You must set a Signal profile name with `$cmdprefix+sp "
  93. f"set-profile-name <name>` before you can participate in new groups.")
  94. @command_handler(needs_auth=True, management_only=True, help_section=SECTION_AUTH,
  95. help_text="Remove all local data about your Signal link")
  96. async def logout(evt: CommandEvent) -> None:
  97. if not evt.sender.username:
  98. await evt.reply("You're not logged in")
  99. return
  100. await evt.sender.logout()
  101. await evt.reply("Successfully logged out")
  102. @command_handler(needs_auth=True, management_only=True, help_args="<_access token_>",
  103. help_section=SECTION_AUTH, help_text="Replace your Signal account's Matrix puppet"
  104. " with your Matrix account")
  105. async def login_matrix(evt: CommandEvent) -> None:
  106. puppet = await pu.Puppet.get_by_address(evt.sender.address)
  107. _, homeserver = Client.parse_mxid(evt.sender.mxid)
  108. if homeserver != pu.Puppet.hs_domain:
  109. await evt.reply("You can't log in with an account on a different homeserver")
  110. return
  111. try:
  112. await puppet.switch_mxid(" ".join(evt.args), evt.sender.mxid)
  113. await evt.reply("Successfully replaced your Signal account's "
  114. "Matrix puppet with your Matrix account.")
  115. except cpu.OnlyLoginSelf:
  116. await evt.reply("You may only log in with your own Matrix account")
  117. except cpu.InvalidAccessToken:
  118. await evt.reply("Invalid access token")
  119. @command_handler(needs_auth=True, management_only=True, help_section=SECTION_AUTH,
  120. help_text="Revert your Signal account's Matrix puppet to the original")
  121. async def logout_matrix(evt: CommandEvent) -> None:
  122. puppet = await pu.Puppet.get_by_address(evt.sender.address)
  123. if not puppet.is_real_user:
  124. await evt.reply("You're not logged in with your Matrix account")
  125. return
  126. await puppet.switch_mxid(None, None)
  127. await evt.reply("Restored the original puppet for your Signal account")