annotate src/main/java/com/glavsoft/rfb/protocol/auth/VncAuthentication.java @ 0:daa24f8a557b

TightVNC original
author YU
date Thu, 11 Sep 2014 07:30:03 +0900
parents
children
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
0
daa24f8a557b TightVNC original
YU
parents:
diff changeset
1 // Copyright (C) 2010, 2011, 2012, 2013 GlavSoft LLC.
daa24f8a557b TightVNC original
YU
parents:
diff changeset
2 // All rights reserved.
daa24f8a557b TightVNC original
YU
parents:
diff changeset
3 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
4 //-------------------------------------------------------------------------
daa24f8a557b TightVNC original
YU
parents:
diff changeset
5 // This file is part of the TightVNC software. Please visit our Web site:
daa24f8a557b TightVNC original
YU
parents:
diff changeset
6 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
7 // http://www.tightvnc.com/
daa24f8a557b TightVNC original
YU
parents:
diff changeset
8 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
9 // This program is free software; you can redistribute it and/or modify
daa24f8a557b TightVNC original
YU
parents:
diff changeset
10 // it under the terms of the GNU General Public License as published by
daa24f8a557b TightVNC original
YU
parents:
diff changeset
11 // the Free Software Foundation; either version 2 of the License, or
daa24f8a557b TightVNC original
YU
parents:
diff changeset
12 // (at your option) any later version.
daa24f8a557b TightVNC original
YU
parents:
diff changeset
13 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
14 // This program is distributed in the hope that it will be useful,
daa24f8a557b TightVNC original
YU
parents:
diff changeset
15 // but WITHOUT ANY WARRANTY; without even the implied warranty of
daa24f8a557b TightVNC original
YU
parents:
diff changeset
16 // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
daa24f8a557b TightVNC original
YU
parents:
diff changeset
17 // GNU General Public License for more details.
daa24f8a557b TightVNC original
YU
parents:
diff changeset
18 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
19 // You should have received a copy of the GNU General Public License along
daa24f8a557b TightVNC original
YU
parents:
diff changeset
20 // with this program; if not, write to the Free Software Foundation, Inc.,
daa24f8a557b TightVNC original
YU
parents:
diff changeset
21 // 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
daa24f8a557b TightVNC original
YU
parents:
diff changeset
22 //-------------------------------------------------------------------------
daa24f8a557b TightVNC original
YU
parents:
diff changeset
23 //
daa24f8a557b TightVNC original
YU
parents:
diff changeset
24
daa24f8a557b TightVNC original
YU
parents:
diff changeset
25 package com.glavsoft.rfb.protocol.auth;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
26
daa24f8a557b TightVNC original
YU
parents:
diff changeset
27 import com.glavsoft.exceptions.CryptoException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
28 import com.glavsoft.exceptions.FatalException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
29 import com.glavsoft.exceptions.TransportException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
30 import com.glavsoft.rfb.CapabilityContainer;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
31 import com.glavsoft.rfb.IPasswordRetriever;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
32 import com.glavsoft.transport.Reader;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
33 import com.glavsoft.transport.Writer;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
34
daa24f8a557b TightVNC original
YU
parents:
diff changeset
35 import javax.crypto.*;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
36 import javax.crypto.spec.DESKeySpec;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
37 import java.security.InvalidKeyException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
38 import java.security.NoSuchAlgorithmException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
39 import java.security.spec.InvalidKeySpecException;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
40
daa24f8a557b TightVNC original
YU
parents:
diff changeset
41 public class VncAuthentication extends AuthHandler {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
42 @Override
daa24f8a557b TightVNC original
YU
parents:
diff changeset
43 public SecurityType getType() {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
44 return SecurityType.VNC_AUTHENTICATION;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
45 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
46
daa24f8a557b TightVNC original
YU
parents:
diff changeset
47 @Override
daa24f8a557b TightVNC original
YU
parents:
diff changeset
48 public boolean authenticate(Reader reader,
daa24f8a557b TightVNC original
YU
parents:
diff changeset
49 Writer writer, CapabilityContainer authCaps, IPasswordRetriever passwordRetriever)
daa24f8a557b TightVNC original
YU
parents:
diff changeset
50 throws TransportException, FatalException {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
51 byte [] challenge = reader.readBytes(16);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
52 String password = passwordRetriever.getPassword();
daa24f8a557b TightVNC original
YU
parents:
diff changeset
53 if (null == password) return false;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
54 byte [] key = new byte[8];
daa24f8a557b TightVNC original
YU
parents:
diff changeset
55 System.arraycopy(password.getBytes(), 0, key, 0, Math.min(key.length, password.getBytes().length));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
56 writer.write(encrypt(challenge, key));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
57 return false;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
58 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
59
daa24f8a557b TightVNC original
YU
parents:
diff changeset
60 /**
daa24f8a557b TightVNC original
YU
parents:
diff changeset
61 * Encript challenge by key using DES
daa24f8a557b TightVNC original
YU
parents:
diff changeset
62 * @return encripted bytes
daa24f8a557b TightVNC original
YU
parents:
diff changeset
63 * @throws CryptoException on problem with DES algorithm support or smth about
daa24f8a557b TightVNC original
YU
parents:
diff changeset
64 */
daa24f8a557b TightVNC original
YU
parents:
diff changeset
65 public byte[] encrypt(byte[] challenge, byte[] key) throws CryptoException {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
66 try {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
67 DESKeySpec desKeySpec = new DESKeySpec(mirrorBits(key));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
68 SecretKeyFactory keyFactory = SecretKeyFactory.getInstance("DES");
daa24f8a557b TightVNC original
YU
parents:
diff changeset
69 SecretKey secretKey = keyFactory.generateSecret(desKeySpec);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
70 Cipher desCipher = Cipher.getInstance("DES/ECB/NoPadding");
daa24f8a557b TightVNC original
YU
parents:
diff changeset
71 desCipher.init(Cipher.ENCRYPT_MODE, secretKey);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
72 return desCipher.doFinal(challenge);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
73 } catch (NoSuchAlgorithmException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
74 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
75 } catch (NoSuchPaddingException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
76 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
77 } catch (IllegalBlockSizeException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
78 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
79 } catch (BadPaddingException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
80 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
81 } catch (InvalidKeyException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
82 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
83 } catch (InvalidKeySpecException e) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
84 throw new CryptoException("Cannot encrypt challenge", e);
daa24f8a557b TightVNC original
YU
parents:
diff changeset
85 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
86 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
87
daa24f8a557b TightVNC original
YU
parents:
diff changeset
88 private byte[] mirrorBits(byte[] k) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
89 byte[] key = new byte[8];
daa24f8a557b TightVNC original
YU
parents:
diff changeset
90 for (int i = 0; i < 8; i++) {
daa24f8a557b TightVNC original
YU
parents:
diff changeset
91 byte s = k[i];
daa24f8a557b TightVNC original
YU
parents:
diff changeset
92 s = (byte) (((s >> 1) & 0x55) | ((s << 1) & 0xaa));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
93 s = (byte) (((s >> 2) & 0x33) | ((s << 2) & 0xcc));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
94 s = (byte) (((s >> 4) & 0x0f) | ((s << 4) & 0xf0));
daa24f8a557b TightVNC original
YU
parents:
diff changeset
95 key[i] = s;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
96 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
97 return key;
daa24f8a557b TightVNC original
YU
parents:
diff changeset
98 }
daa24f8a557b TightVNC original
YU
parents:
diff changeset
99
daa24f8a557b TightVNC original
YU
parents:
diff changeset
100 }