split-secret/scripts/classes/Generate.py

130 lines
5.9 KiB
Python
Raw Normal View History

2022-12-09 12:03:45 +01:00
import random
import string
import math
import numpy
import re
import json
from .AbstractSplittedSecret import AbstractSplittedSecret
2022-12-09 12:03:45 +01:00
2022-12-09 13:22:57 +01:00
class Generate(AbstractSplittedSecret):
2022-12-09 12:03:45 +01:00
def __init__(self, amount_of_secret_holders, decryption_quota,master_password):
super(Generate, self).__init__()
2022-12-09 12:03:45 +01:00
self.amount_of_secret_holders = amount_of_secret_holders
self.decryption_quota = decryption_quota
self.master_password = master_password
2022-12-09 12:03:45 +01:00
self.quota_factor=self.decryption_quota/100
self.group_members_amount=math.ceil(self.amount_of_secret_holders * self.quota_factor)
2022-12-09 12:11:46 +01:00
2022-12-09 12:03:45 +01:00
def getStartnumber(self):
index = 0
start_number = ''
while index < self.group_members_amount:
start_number += '1'
index += 1
return int(start_number)
def getEndnumber(self):
index = 0
start_number = ''
while index < self.group_members_amount:
start_number += str(self.amount_of_secret_holders)
index += 1
return int(start_number)
def savePassword(self,password,password_file_path):
print("Saving password to: " + password_file_path)
master_password_file = open(password_file_path, "a")
master_password_file.seek(0)
master_password_file.truncate()
master_password_file.write(password)
master_password_file.close()
2022-12-09 17:32:02 +01:00
def createPassword(self,length):
2022-12-09 12:03:45 +01:00
characters = string.ascii_letters + string.digits
2022-12-09 17:32:02 +01:00
return (''.join(random.choice(characters) for i in range(length)).upper())
2022-12-09 12:03:45 +01:00
2022-12-09 12:11:46 +01:00
def isGroupValid(self,password_group_index_str):
secret_stakeholders_range=range(1,(self.amount_of_secret_holders+1))
valid_numbers = re.compile("([" + ','.join([str(x) for x in secret_stakeholders_range]) + "]{" + str(self.group_members_amount) + "})")
2022-12-09 12:03:45 +01:00
unvalid_sequenz = re.compile("(.)\\1+")
2022-12-09 12:11:46 +01:00
return re.search(valid_numbers, password_group_index_str) and not re.search(unvalid_sequenz, password_group_index_str)
2022-12-09 14:05:54 +01:00
def createUserMappedDataFrame(self):
self.user_mapped_data = {}
user_count = 1
while user_count <= self.amount_of_secret_holders:
2022-12-09 17:32:02 +01:00
self.user_mapped_data[str(user_count)] = {"groups":{},"user_password":self.createPassword(64)}
2022-12-09 14:05:54 +01:00
user_count += 1;
def createGroupMappedDataFrame(self):
self.group_mapped_data = {}
def generateMappedData(self):
self.createUserMappedDataFrame()
self.createGroupMappedDataFrame()
2022-12-09 12:03:45 +01:00
index = self.getStartnumber()
while index < self.getEndnumber():
password_group_index_str = ''.join(sorted(str(index)))
2022-12-09 12:11:46 +01:00
if self.isGroupValid(password_group_index_str):
2022-12-09 12:03:45 +01:00
password_group_index_int = int(password_group_index_str)
2022-12-09 14:05:54 +01:00
if not password_group_index_int in self.group_mapped_data:
self.group_mapped_data[password_group_index_int] = {}
self.group_mapped_data[password_group_index_int]['members'] = {}
self.group_mapped_data[password_group_index_int]['password'] = ''
2022-12-09 12:03:45 +01:00
password = ''
for secret_holder_index in password_group_index_str:
2022-12-09 14:05:54 +01:00
self.group_mapped_data[password_group_index_int]['members'][secret_holder_index]={}
2022-12-09 17:32:02 +01:00
particial_password_length= int(128*self.quota_factor);
password_part = self.createPassword(particial_password_length)
2022-12-09 14:05:54 +01:00
self.group_mapped_data[password_group_index_int]['members'][secret_holder_index] = password_part
2022-12-09 12:03:45 +01:00
password += password_part
2022-12-09 17:32:02 +01:00
self.user_mapped_data[secret_holder_index]['groups'][password_group_index_str] = password_part
2022-12-09 14:05:54 +01:00
self.group_mapped_data[password_group_index_int]['password'] += password
index += 1
2022-12-09 17:32:02 +01:00
def encryptStringToFile(self,text,output_file,password):
self.executeCommand('echo \'' + text + '\' | gpg --symmetric --armor --batch --passphrase "' + password + '" -o "' + output_file + '.gpg"')
print(self.getCommandString())
def generateEncryptedGroupFiles(self):
2022-12-09 14:05:54 +01:00
for password_group_index_int in self.group_mapped_data:
2022-12-09 17:32:02 +01:00
encrypted_splitted_password_file = AbstractSplittedSecret().encrypted_splitted_password_files_folder + str(password_group_index_int) + ".txt"
self.encryptStringToFile(self.master_password,encrypted_splitted_password_file,self.group_mapped_data[password_group_index_int]['password'])
2022-12-09 17:32:02 +01:00
def encryptToJsonFile(self,data,file_path,password):
self.encryptStringToFile(json.dumps(data,ensure_ascii=False), file_path, password)
def encryptUserMappedData(self):
for user_id in self.user_mapped_data:
2022-12-09 17:32:02 +01:00
file_path=self.encrypted_password_files_folder+user_id+'.json'
self.encryptToJsonFile(self.user_mapped_data[user_id]['groups'],file_path,self.user_mapped_data[user_id]['user_password'])
2022-12-09 14:05:54 +01:00
2022-12-09 17:32:02 +01:00
def encryptAccumulatedMappedData(self):
file_path=self.encrypted_password_files_folder+'accumulated.json'
data={"user_mapped": self.user_mapped_data, "group_mapped": self.group_mapped_data}
self.encryptToJsonFile(data,file_path,self.master_password)
def saveMappedData(self):
2022-12-09 17:32:02 +01:00
self.encryptUserMappedData()
self.encryptAccumulatedMappedData()
def encryptMappedUserData(self):
self.user_passwords = {}
for user_id in self.user_mapped_data:
self.user_passwords[user_id] = self.createPassword(64)
def encryptMappedData(self):
self.encryptMappedUserData()
def generate(self):
2022-12-09 14:05:54 +01:00
self.generateMappedData()
self.saveMappedData()
2022-12-09 17:32:02 +01:00
self.encryptMappedData()
self.generateEncryptedGroupFiles()
2022-12-09 14:05:54 +01:00
def getUserMappedData(self):
return self.user_mapped_data
def getGroupMappedData(self):
return self.group_mapped_data