2013-03-12 16:54:05 -04:00
|
|
|
/*
|
|
|
|
* Copyright (C) 2013 Felix Geyer <debfx@fobos.de>
|
2017-06-09 17:40:36 -04:00
|
|
|
* Copyright (C) 2017 KeePassXC Team <team@keepassxc.org>
|
2013-03-12 16:54:05 -04:00
|
|
|
*
|
|
|
|
* This program is free software: you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
|
|
|
* the Free Software Foundation, either version 2 or (at your option)
|
|
|
|
* version 3 of the License.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License
|
|
|
|
* along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include "PasswordGenerator.h"
|
|
|
|
|
|
|
|
#include "crypto/Random.h"
|
2016-11-23 21:59:24 -05:00
|
|
|
#include "zxcvbn/zxcvbn.h"
|
2013-03-12 16:54:05 -04:00
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
PasswordGenerator::PasswordGenerator()
|
|
|
|
: m_length(0)
|
|
|
|
, m_classes(0)
|
|
|
|
, m_flags(0)
|
|
|
|
{
|
|
|
|
}
|
|
|
|
|
2016-11-23 21:59:24 -05:00
|
|
|
double PasswordGenerator::calculateEntropy(QString password)
|
|
|
|
{
|
|
|
|
return ZxcvbnMatch(password.toLatin1(), 0, 0);
|
|
|
|
}
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
void PasswordGenerator::setLength(int length)
|
|
|
|
{
|
|
|
|
m_length = length;
|
|
|
|
}
|
|
|
|
|
|
|
|
void PasswordGenerator::setCharClasses(const CharClasses& classes)
|
|
|
|
{
|
|
|
|
m_classes = classes;
|
|
|
|
}
|
|
|
|
|
|
|
|
void PasswordGenerator::setFlags(const GeneratorFlags& flags)
|
|
|
|
{
|
|
|
|
m_flags = flags;
|
|
|
|
}
|
2013-03-12 16:54:05 -04:00
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
QString PasswordGenerator::generatePassword() const
|
2013-03-12 16:54:05 -04:00
|
|
|
{
|
2014-01-12 17:33:36 -05:00
|
|
|
Q_ASSERT(isValid());
|
2013-03-12 16:54:05 -04:00
|
|
|
|
2016-09-02 13:51:51 -04:00
|
|
|
const QVector<PasswordGroup> groups = passwordGroups();
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
QVector<QChar> passwordChars;
|
2016-09-02 13:51:51 -04:00
|
|
|
for (const PasswordGroup& group : groups) {
|
|
|
|
for (QChar ch : group) {
|
2013-03-12 16:54:05 -04:00
|
|
|
passwordChars.append(ch);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
QString password;
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_flags & CharFromEveryGroup) {
|
2013-03-12 16:54:05 -04:00
|
|
|
for (int i = 0; i < groups.size(); i++) {
|
2013-10-09 16:06:32 -04:00
|
|
|
int pos = randomGen()->randomUInt(groups[i].size());
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
password.append(groups[i][pos]);
|
|
|
|
}
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
for (int i = groups.size(); i < m_length; i++) {
|
2013-10-09 16:06:32 -04:00
|
|
|
int pos = randomGen()->randomUInt(passwordChars.size());
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
password.append(passwordChars[pos]);
|
|
|
|
}
|
|
|
|
|
|
|
|
// shuffle chars
|
|
|
|
for (int i = (password.size() - 1); i >= 1; i--) {
|
2013-10-09 16:06:32 -04:00
|
|
|
int j = randomGen()->randomUInt(i + 1);
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
QChar tmp = password[i];
|
|
|
|
password[i] = password[j];
|
|
|
|
password[j] = tmp;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
else {
|
2014-01-12 17:33:36 -05:00
|
|
|
for (int i = 0; i < m_length; i++) {
|
2013-10-09 16:06:32 -04:00
|
|
|
int pos = randomGen()->randomUInt(passwordChars.size());
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
password.append(passwordChars[pos]);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return password;
|
|
|
|
}
|
|
|
|
|
2014-03-22 21:13:27 -04:00
|
|
|
int PasswordGenerator::getbits() const
|
|
|
|
{
|
2017-03-10 09:45:00 -05:00
|
|
|
const QVector<PasswordGroup> groups = passwordGroups();
|
2014-03-22 21:13:27 -04:00
|
|
|
|
|
|
|
int bits = 0;
|
|
|
|
QVector<QChar> passwordChars;
|
2017-03-10 09:45:00 -05:00
|
|
|
for (const PasswordGroup& group: groups) {
|
2014-03-22 21:13:27 -04:00
|
|
|
bits += group.size();
|
|
|
|
}
|
|
|
|
|
|
|
|
bits *= m_length;
|
|
|
|
|
|
|
|
return bits;
|
|
|
|
}
|
|
|
|
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
bool PasswordGenerator::isValid() const
|
2013-03-12 16:54:05 -04:00
|
|
|
{
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes == 0) {
|
2013-03-12 16:54:05 -04:00
|
|
|
return false;
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
else if (m_length == 0) {
|
2013-03-12 16:54:05 -04:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
if ((m_flags & CharFromEveryGroup) && (m_length < numCharClasses())) {
|
2013-03-12 16:54:05 -04:00
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
QVector<PasswordGroup> PasswordGenerator::passwordGroups() const
|
2013-03-12 16:54:05 -04:00
|
|
|
{
|
|
|
|
QVector<PasswordGroup> passwordGroups;
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & LowerLetters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
PasswordGroup group;
|
|
|
|
|
|
|
|
for (int i = 97; i < (97 + 26); i++) {
|
2014-01-12 17:33:36 -05:00
|
|
|
if ((m_flags & ExcludeLookAlike) && (i == 108)) { // "l"
|
2013-03-12 16:54:05 -04:00
|
|
|
continue;
|
|
|
|
}
|
|
|
|
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
passwordGroups.append(group);
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & UpperLetters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
PasswordGroup group;
|
|
|
|
|
|
|
|
for (int i = 65; i < (65 + 26); i++) {
|
2014-01-12 17:33:36 -05:00
|
|
|
if ((m_flags & ExcludeLookAlike) && (i == 73 || i == 79)) { // "I" and "O"
|
2013-03-12 16:54:05 -04:00
|
|
|
continue;
|
|
|
|
}
|
|
|
|
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
passwordGroups.append(group);
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & Numbers) {
|
2013-03-12 16:54:05 -04:00
|
|
|
PasswordGroup group;
|
|
|
|
|
|
|
|
for (int i = 48; i < (48 + 10); i++) {
|
2014-01-12 17:33:36 -05:00
|
|
|
if ((m_flags & ExcludeLookAlike) && (i == 48 || i == 49)) { // "0" and "1"
|
2013-03-12 16:54:05 -04:00
|
|
|
continue;
|
|
|
|
}
|
|
|
|
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
passwordGroups.append(group);
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & SpecialCharacters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
PasswordGroup group;
|
|
|
|
|
|
|
|
for (int i = 33; i <= 47; i++) {
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
for (int i = 58; i <= 64; i++) {
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
for (int i = 91; i <= 96; i++) {
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
for (int i = 123; i <= 126; i++) {
|
2014-01-12 17:33:36 -05:00
|
|
|
if ((m_flags & ExcludeLookAlike) && (i == 124)) { // "|"
|
2013-03-12 16:54:05 -04:00
|
|
|
continue;
|
|
|
|
}
|
|
|
|
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
passwordGroups.append(group);
|
|
|
|
}
|
2017-02-25 17:41:37 -05:00
|
|
|
if (m_classes & EASCII) {
|
|
|
|
PasswordGroup group;
|
|
|
|
|
2017-04-30 19:18:42 -04:00
|
|
|
// [U+0080, U+009F] are C1 control characters,
|
|
|
|
// U+00A0 is non-breaking space
|
|
|
|
for (int i = 161; i <= 172; i++) {
|
2017-02-25 17:41:37 -05:00
|
|
|
group.append(i);
|
|
|
|
}
|
2017-04-30 19:18:42 -04:00
|
|
|
// U+00AD is soft hyphen (format character)
|
|
|
|
for (int i = 174; i <= 255; i++) {
|
2017-02-25 17:41:37 -05:00
|
|
|
if ((m_flags & ExcludeLookAlike) && (i == 249)) { // "﹒"
|
|
|
|
continue;
|
|
|
|
}
|
|
|
|
group.append(i);
|
|
|
|
}
|
|
|
|
|
|
|
|
passwordGroups.append(group);
|
|
|
|
}
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
return passwordGroups;
|
|
|
|
}
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
int PasswordGenerator::numCharClasses() const
|
2013-03-12 16:54:05 -04:00
|
|
|
{
|
|
|
|
int numClasses = 0;
|
|
|
|
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & LowerLetters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
numClasses++;
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & UpperLetters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
numClasses++;
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & Numbers) {
|
2013-03-12 16:54:05 -04:00
|
|
|
numClasses++;
|
|
|
|
}
|
2014-01-12 17:33:36 -05:00
|
|
|
if (m_classes & SpecialCharacters) {
|
2013-03-12 16:54:05 -04:00
|
|
|
numClasses++;
|
|
|
|
}
|
2017-04-28 15:36:43 -04:00
|
|
|
if (m_classes & EASCII) {
|
|
|
|
numClasses++;
|
|
|
|
}
|
2013-03-12 16:54:05 -04:00
|
|
|
|
|
|
|
return numClasses;
|
|
|
|
}
|