2 * Copyright (C) 1998, 1999, 2000, 2001 Free Software Foundation, Inc.
4 * This file is part of GnuPG.
6 * GnuPG is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 3 of the License, or
9 * (at your option) any later version.
11 * GnuPG is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, see <https://www.gnu.org/licenses/>.
26 #include <sys/types.h>
44 #define HEXTOBIN(x) ( (x) >= '0' && (x) <= '9' ? ((x)-'0') : \
45 (x) >= 'A' && (x) <= 'F' ? ((x)-'A'+10) : ((x)-'a'+10))
49 * Write a record; die on error.
52 write_record( TRUSTREC *rec )
54 int rc = tdbio_write_record( rec );
57 log_error(_("trust record %lu, type %d: write failed: %s\n"),
58 rec->recnum, rec->rectype, gpg_strerror (rc) );
64 * Dump the entire trustdb to FP or only the entries of one key.
67 list_trustdb (estream_t fp, const char *username)
74 /* For now we ignore the user ID. */
80 es_fprintf (fp, "TrustDB: %s\n", tdbio_get_dbname ());
81 for (i = 9 + strlen (tdbio_get_dbname()); i > 0; i-- )
84 for (recnum=0; !tdbio_read_record (recnum, &rec, 0); recnum++)
85 tdbio_dump_record (&rec, fp);
94 * Print a list of all defined owner trust value.
105 es_printf (_("# List of assigned trustvalues, created %s\n"
106 "# (Use \"gpg --import-ownertrust\" to restore them)\n"),
107 asctimestamp( make_timestamp() ) );
108 for (recnum=0; !tdbio_read_record (recnum, &rec, 0); recnum++ )
110 if (rec.rectype == RECTYPE_TRUST)
112 if (!rec.r.trust.ownertrust)
114 p = rec.r.trust.fingerprint;
115 for (i=0; i < 20; i++, p++ )
116 es_printf("%02X", *p );
117 es_printf (":%u:\n", (unsigned int)rec.r.trust.ownertrust );
124 import_ownertrust( const char *fname )
137 if( iobuf_is_pipe_filename (fname) ) {
142 else if( !(fp = es_fopen( fname, "r" )) ) {
143 log_error ( _("can't open '%s': %s\n"), fname, strerror(errno) );
147 if (is_secured_file (es_fileno (fp)))
150 gpg_err_set_errno (EPERM);
151 log_error (_("can't open '%s': %s\n"), fname, strerror(errno) );
155 while (es_fgets (line, DIM(line)-1, fp)) {
158 if( !*line || *line == '#' )
161 if( line[n-1] != '\n' ) {
162 log_error (_("error in '%s': %s\n"), fname, _("line too long") );
163 /* ... or last line does not have a LF */
164 break; /* can't continue */
166 for(p = line; *p && *p != ':' ; p++ )
170 log_error (_("error in '%s': %s\n"), fname, _("colon missing") );
174 if( fprlen != 32 && fprlen != 40 ) {
175 log_error (_("error in '%s': %s\n"),
176 fname, _("invalid fingerprint") );
179 if( sscanf(p, ":%u:", &otrust ) != 1 ) {
180 log_error (_("error in '%s': %s\n"),
181 fname, _("ownertrust value missing"));
185 continue; /* no otrust defined - no need to update or insert */
186 /* convert the ascii fingerprint to binary */
187 for(p=line, fprlen=0; fprlen < 20 && *p != ':'; p += 2 )
188 fpr[fprlen++] = HEXTOBIN(p[0]) * 16 + HEXTOBIN(p[1]);
192 rc = tdbio_search_trust_byfpr (fpr, &rec);
193 if( !rc ) { /* found: update */
194 if (rec.r.trust.ownertrust != otrust)
196 if( rec.r.trust.ownertrust )
197 log_info("changing ownertrust from %u to %u\n",
198 rec.r.trust.ownertrust, otrust );
200 log_info("setting ownertrust to %u\n", otrust );
201 rec.r.trust.ownertrust = otrust;
202 write_record (&rec );
206 else if (gpg_err_code (rc) == GPG_ERR_NOT_FOUND) { /* insert */
207 log_info("inserting ownertrust of %u\n", otrust );
208 memset (&rec, 0, sizeof rec);
209 rec.recnum = tdbio_new_recnum ();
210 rec.rectype = RECTYPE_TRUST;
211 memcpy (rec.r.trust.fingerprint, fpr, 20);
212 rec.r.trust.ownertrust = otrust;
213 write_record (&rec );
217 log_error (_("error finding trust record in '%s': %s\n"),
218 fname, gpg_strerror (rc));
221 log_error ( _("read error in '%s': %s\n"), fname, strerror(errno) );
227 revalidation_mark ();
230 log_error (_("trustdb: sync failed: %s\n"), gpg_strerror (rc) );