fedilab-Android-App/app/src/main/java/app/fedilab/android/client/TLSSocketFactory.java

130 lines
4.5 KiB
Java
Raw Normal View History

2019-05-18 11:10:30 +02:00
package app.fedilab.android.client;
2017-08-29 15:57:51 +02:00
2020-03-08 11:28:51 +01:00
import android.annotation.SuppressLint;
2019-02-14 10:06:18 +01:00
import android.content.SharedPreferences;
2019-09-06 17:55:14 +02:00
2017-08-29 15:57:51 +02:00
import java.io.IOException;
import java.net.InetAddress;
import java.net.Socket;
import java.security.KeyManagementException;
import java.security.NoSuchAlgorithmException;
2018-11-27 18:18:05 +01:00
2017-08-29 15:57:51 +02:00
import javax.net.ssl.SSLContext;
import javax.net.ssl.SSLSocket;
import javax.net.ssl.SSLSocketFactory;
import javax.net.ssl.TrustManager;
import javax.net.ssl.X509TrustManager;
2017-08-29 15:57:51 +02:00
2019-05-18 11:10:30 +02:00
import app.fedilab.android.activities.MainApplication;
import app.fedilab.android.helper.Helper;
2019-02-14 10:06:18 +01:00
2017-08-29 15:57:51 +02:00
/**
* Created by Thomas on 29/08/2017.
*/
public class TLSSocketFactory extends SSLSocketFactory {
2021-01-19 17:43:51 +01:00
private final SSLSocketFactory sSLSocketFactory;
private final SSLContext sslContext;
private final boolean isOnion;
2017-08-29 15:57:51 +02:00
public TLSSocketFactory(String instance) throws KeyManagementException, NoSuchAlgorithmException {
2017-08-29 15:57:51 +02:00
2019-05-24 15:13:28 +02:00
2019-09-06 17:55:14 +02:00
if (instance == null || !instance.endsWith(".onion")) {
2019-05-24 15:13:28 +02:00
sslContext = SSLContext.getInstance("TLS");
2019-05-23 21:36:02 +02:00
isOnion = false;
sslContext.init(null, null, null);
2020-03-08 11:28:51 +01:00
} else { //Onion URLs
2019-05-24 15:13:28 +02:00
sslContext = SSLContext.getInstance("SSL");
2019-05-23 21:36:02 +02:00
isOnion = true;
2019-05-24 15:13:28 +02:00
TrustManager[] trustAllCerts = new TrustManager[]{
new X509TrustManager() {
public java.security.cert.X509Certificate[] getAcceptedIssuers() {
return null;
}
2019-09-06 17:55:14 +02:00
2020-03-08 11:28:51 +01:00
@SuppressLint("TrustAllX509TrustManager")
2019-05-24 15:13:28 +02:00
public void checkClientTrusted(
java.security.cert.X509Certificate[] certs, String authType) {
}
2019-09-06 17:55:14 +02:00
2020-03-08 11:28:51 +01:00
@SuppressLint("TrustAllX509TrustManager")
2019-05-24 15:13:28 +02:00
public void checkServerTrusted(
java.security.cert.X509Certificate[] certs, String authType) {
}
}
};
2019-05-24 15:13:28 +02:00
sslContext.init(null, trustAllCerts, null);
2019-05-23 21:36:02 +02:00
}
2018-11-27 18:18:05 +01:00
sSLSocketFactory = sslContext.getSocketFactory();
2019-05-23 21:36:02 +02:00
2017-08-29 15:57:51 +02:00
}
2019-09-06 17:55:14 +02:00
public SSLContext getSSLContext() {
2018-11-27 18:18:05 +01:00
return this.sslContext;
2018-10-30 13:46:24 +01:00
}
2018-10-30 17:15:29 +01:00
2017-08-29 15:57:51 +02:00
@Override
public String[] getDefaultCipherSuites() {
return sSLSocketFactory.getDefaultCipherSuites();
2017-08-29 15:57:51 +02:00
}
@Override
public String[] getSupportedCipherSuites() {
return sSLSocketFactory.getSupportedCipherSuites();
2017-08-29 15:57:51 +02:00
}
@Override
public Socket createSocket() throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket());
2017-08-29 15:57:51 +02:00
}
@Override
public Socket createSocket(Socket s, String host, int port, boolean autoClose) throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket(s, host, port, autoClose));
2017-08-29 15:57:51 +02:00
}
@Override
2017-12-02 08:39:01 +01:00
public Socket createSocket(String host, int port) throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket(host, port));
2017-08-29 15:57:51 +02:00
}
@Override
2017-12-02 08:39:01 +01:00
public Socket createSocket(String host, int port, InetAddress localHost, int localPort) throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket(host, port, localHost, localPort));
2017-08-29 15:57:51 +02:00
}
@Override
public Socket createSocket(InetAddress host, int port) throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket(host, port));
2017-08-29 15:57:51 +02:00
}
@Override
public Socket createSocket(InetAddress address, int port, InetAddress localAddress, int localPort) throws IOException {
return enableTLSOnSocket(sSLSocketFactory.createSocket(address, port, localAddress, localPort));
2017-08-29 15:57:51 +02:00
}
private Socket enableTLSOnSocket(Socket socket) {
2019-09-06 17:55:14 +02:00
if ((socket instanceof SSLSocket)) {
if (!isOnion) {
2019-05-23 21:36:02 +02:00
boolean security_provider = false;
try {
SharedPreferences sharedpreferences = MainApplication.getApp().getSharedPreferences(Helper.APP_PREFS, android.content.Context.MODE_PRIVATE);
security_provider = sharedpreferences.getBoolean(Helper.SET_SECURITY_PROVIDER, true);
2019-09-06 17:55:14 +02:00
} catch (Exception ignored) {
}
if (security_provider)
((SSLSocket) socket).setEnabledProtocols(new String[]{"TLSv1.1", "TLSv1.2", "TLSv1.3"});
2019-05-23 21:36:02 +02:00
else
2019-09-06 17:55:14 +02:00
((SSLSocket) socket).setEnabledProtocols(new String[]{"TLSv1.1", "TLSv1.2"});
} else {
((SSLSocket) socket).setEnabledProtocols(new String[]{"TLSv1.1", "TLSv1.2",});
2019-05-23 21:36:02 +02:00
}
2017-08-29 15:57:51 +02:00
}
return socket;
}
}