X-Git-Url: https://code.wpia.club/?p=gigi.git;a=blobdiff_plain;f=src%2Forg%2Fcacert%2Fgigi%2Femail%2FEmailProvider.java;h=d76fd6ef1d185f002b76a464717bb170e28035ea;hp=644c46218709f6fc8d28e6551c093d1fceae12ec;hb=9474df27407dd99134876f2c8a2a3b6e7d1fae6a;hpb=093f4797bc1e84c4963a67093f2b21393656edab diff --git a/src/org/cacert/gigi/email/EmailProvider.java b/src/org/cacert/gigi/email/EmailProvider.java index 644c4621..d76fd6ef 100644 --- a/src/org/cacert/gigi/email/EmailProvider.java +++ b/src/org/cacert/gigi/email/EmailProvider.java @@ -3,138 +3,181 @@ package org.cacert.gigi.email; import java.io.BufferedReader; import java.io.IOException; import java.io.InputStreamReader; +import java.io.OutputStreamWriter; import java.io.PrintWriter; import java.net.Socket; -import java.sql.PreparedStatement; -import java.sql.SQLException; -import java.util.LinkedList; +import java.security.GeneralSecurityException; +import java.security.Key; +import java.security.PrivateKey; +import java.security.cert.Certificate; +import java.security.cert.X509Certificate; +import java.util.Arrays; +import java.util.Comparator; import java.util.Properties; import java.util.regex.Pattern; +import javax.naming.NamingException; +import javax.net.ssl.SSLSocketFactory; + +import org.cacert.gigi.crypto.SMIME; import org.cacert.gigi.database.DatabaseConnection; +import org.cacert.gigi.database.GigiPreparedStatement; +import org.cacert.gigi.util.DNSUtil; public abstract class EmailProvider { - public abstract void sendmail(String to, String subject, String message, - String from, String replyto, String toname, String fromname, - String errorsto, boolean extra) throws IOException; - private static EmailProvider instance; - public static EmailProvider getInstance() { - return instance; - } - public static void init(Properties conf) { - try { - Class c = Class.forName(conf.getProperty("emailProvider")); - instance = (EmailProvider) c.getDeclaredConstructor( - Properties.class).newInstance(conf); - } catch (ReflectiveOperationException e) { - e.printStackTrace(); - } - } - - public static final String OK = "OK"; - public static final String FAIL = "FAIL"; - private static final Pattern MAIL = Pattern - .compile("^([a-zA-Z0-9])+([a-zA-Z0-9\\+\\._-])*@([a-zA-Z0-9_-])+([a-zA-Z0-9\\._-]+)+$"); - - public String checkEmailServer(int forUid, String address) - throws IOException { - if (MAIL.matcher(address).matches()) { - String[] parts = address.split("@", 2); - String domain = parts[1]; - - LinkedList mxhosts = getMxHosts(domain); - - for (String host : mxhosts) { - try (Socket s = new Socket(host, 25); - BufferedReader br = new BufferedReader( - new InputStreamReader(s.getInputStream())); - PrintWriter pw = new PrintWriter(s.getOutputStream())) { - String line; - while ((line = br.readLine()) != null - && line.startsWith("220-")) { - } - if (line == null || !line.startsWith("220")) { - continue; - } - - pw.print("HELO www.cacert.org\r\n"); - pw.flush(); - - while ((line = br.readLine()) != null - && line.startsWith("220")) { - } - - if (line == null || !line.startsWith("250")) { - continue; - } - pw.print("MAIL FROM: \r\n"); - pw.flush(); - - line = br.readLine(); - - if (line == null || !line.startsWith("250")) { - continue; - } - pw.print("RCPT TO: <" + address + ">\r\n"); - pw.flush(); - - line = br.readLine(); - pw.print("QUIT\r\n"); - pw.flush(); - - try { - PreparedStatement statmt = DatabaseConnection - .getInstance() - .prepare( - "insert into `pinglog` set `when`=NOW(), `email`=?, `result`=?, `uid`=?"); - statmt.setString(1, address); - statmt.setString(2, line); - statmt.setInt(3, forUid); - statmt.execute(); - } catch (SQLException e) { - e.printStackTrace(); - } - - if (line == null || !line.startsWith("250")) { - return line; - } else { - return OK; - } - } - - } - } - try { - PreparedStatement statmt = DatabaseConnection - .getInstance() - .prepare( - "insert into `pinglog` set `when`=NOW(), `email`=?, `result`=?, `uid`=?"); - statmt.setString(1, address); - statmt.setString(2, - "Failed to make a connection to the mail server"); - statmt.setInt(3, forUid); - statmt.execute(); - } catch (SQLException e) { - e.printStackTrace(); - } - return FAIL; - } - private static LinkedList getMxHosts(String domain) - throws IOException { - LinkedList mxhosts = new LinkedList(); - Process dig = Runtime.getRuntime().exec( - new String[]{"dig", "+short", "MX", domain}); - try (BufferedReader br = new BufferedReader(new InputStreamReader( - dig.getInputStream()))) { - String line; - while ((line = br.readLine()) != null) { - String[] mxparts = line.split(" ", 2); - if (mxparts.length != 2) { - continue; - } - mxhosts.add(mxparts[1].substring(0, mxparts[1].length() - 1)); - } - } - return mxhosts; - } + + public abstract void sendmail(String to, String subject, String message, String from, String replyto, String toname, String fromname, String errorsto, boolean extra) throws IOException; + + private static EmailProvider instance; + + private X509Certificate c; + + private PrivateKey k; + + protected final void init(Certificate c, Key k) { + this.c = (X509Certificate) c; + this.k = (PrivateKey) k; + } + + protected final void sendSigned(String contents, PrintWriter output) throws IOException, GeneralSecurityException { + SMIME.smime(contents, k, c, output); + } + + public static EmailProvider getInstance() { + return instance; + } + + protected static void setInstance(EmailProvider instance) { + EmailProvider.instance = instance; + } + + public static void initSystem(Properties conf, Certificate cert, Key pk) { + try { + Class c = Class.forName(conf.getProperty("emailProvider")); + EmailProvider ep = (EmailProvider) c.getDeclaredConstructor(Properties.class).newInstance(conf); + ep.init(cert, pk); + instance = ep; + } catch (ReflectiveOperationException e) { + e.printStackTrace(); + } + } + + public static final String OK = "OK"; + + public static final String FAIL = "FAIL"; + + public static final Pattern MAIL = Pattern.compile("^([a-zA-Z0-9])+([a-zA-Z0-9\\+\\._-])*@([a-zA-Z0-9_-])+([a-zA-Z0-9\\._-]+)+$"); + + public String checkEmailServer(int forUid, String address) throws IOException { + if (MAIL.matcher(address).matches()) { + String[] parts = address.split("@", 2); + String domain = parts[1]; + + String[] mxhosts; + try { + mxhosts = DNSUtil.getMXEntries(domain); + } catch (NamingException e1) { + return "MX lookup for your hostname failed."; + } + sortMX(mxhosts); + + for (String host : mxhosts) { + host = host.split(" ", 2)[1]; + if (host.endsWith(".")) { + host = host.substring(0, host.length() - 1); + } else { + return "Strange MX records."; + } + try (Socket s = new Socket(host, 25); BufferedReader br0 = new BufferedReader(new InputStreamReader(s.getInputStream(), "UTF-8"));// + PrintWriter pw0 = new PrintWriter(new OutputStreamWriter(s.getOutputStream(), "UTF-8"))) { + BufferedReader br = br0; + PrintWriter pw = pw0; + String line; + if ( !Sendmail.readSMTPResponse(br, 220)) { + continue; + } + + pw.print("EHLO www.cacert.org\r\n"); + pw.flush(); + boolean starttls = false; + do { + line = br.readLine(); + if (line == null) { + break; + } + starttls |= line.substring(4).equals("STARTTLS"); + } while (line.startsWith("250-")); + if (line == null || !line.startsWith("250 ")) { + continue; + } + + if (starttls) { + pw.print("STARTTLS\r\n"); + pw.flush(); + if ( !Sendmail.readSMTPResponse(br, 220)) { + continue; + } + Socket s1 = ((SSLSocketFactory) SSLSocketFactory.getDefault()).createSocket(s, host, 25, true); + br = new BufferedReader(new InputStreamReader(s1.getInputStream(), "UTF-8")); + pw = new PrintWriter(s1.getOutputStream()); + pw.print("EHLO www.cacert.org\r\n"); + pw.flush(); + if ( !Sendmail.readSMTPResponse(br, 250)) { + continue; + } + } + + pw.print("MAIL FROM: \r\n"); + pw.flush(); + + if ( !Sendmail.readSMTPResponse(br, 250)) { + continue; + } + pw.print("RCPT TO: <" + address + ">\r\n"); + pw.flush(); + + if ( !Sendmail.readSMTPResponse(br, 250)) { + continue; + } + pw.print("QUIT\r\n"); + pw.flush(); + if ( !Sendmail.readSMTPResponse(br, 221)) { + continue; + } + + GigiPreparedStatement statmt = DatabaseConnection.getInstance().prepare("insert into `emailPinglog` set `when`=NOW(), `email`=?, `result`=?, `uid`=?"); + statmt.setString(1, address); + statmt.setString(2, line); + statmt.setInt(3, forUid); + statmt.execute(); + + if (line == null || !line.startsWith("250")) { + return line; + } else { + return OK; + } + } + + } + } + GigiPreparedStatement statmt = DatabaseConnection.getInstance().prepare("insert into `emailPinglog` set `when`=NOW(), `email`=?, `result`=?, `uid`=?"); + statmt.setString(1, address); + statmt.setString(2, "Failed to make a connection to the mail server"); + statmt.setInt(3, forUid); + statmt.execute(); + return FAIL; + } + + private static void sortMX(String[] mxhosts) { + Arrays.sort(mxhosts, new Comparator() { + + @Override + public int compare(String o1, String o2) { + int i1 = Integer.parseInt(o1.split(" ")[0]); + int i2 = Integer.parseInt(o2.split(" ")[0]); + return Integer.compare(i1, i2); + } + }); + } + }