
665 lines
23 KiB
Raw Normal View History

2017-08-16 16:04:50 +08:00
2017-11-13 23:32:40 +08:00
], function ($, Crypto, Curve, Hash, Util, Realtime) {
'use strict';
2017-08-16 16:04:50 +08:00
var Msg = {
inputs: [],
var Types = {
message: 'MSG',
update: 'UPDATE',
unfriend: 'UNFRIEND',
mapId: 'MAP_ID',
mapIdAck: 'MAP_ID_ACK'
2017-08-22 21:55:00 +08:00
var clone = function (o) {
return JSON.parse(JSON.stringify(o));
2017-08-16 16:04:50 +08:00
// - mute a channel (hide notifications or don't open it?)
var createData = Msg.createData = function (proxy, hash) {
return {
channel: hash || Hash.createChannelId(),
displayName: proxy['cryptpad.username'],
profile: proxy.profile && proxy.profile.view,
edPublic: proxy.edPublic,
curvePublic: proxy.curvePublic,
avatar: proxy.profile && proxy.profile.avatar
var getFriend = function (proxy, pubkey) {
if (pubkey === proxy.curvePublic) {
var data = createData(proxy);
return data;
return proxy.friends ? proxy.friends[pubkey] : undefined;
var getFriendList = Msg.getFriendList = function (proxy) {
if (!proxy.friends) { proxy.friends = {}; }
return proxy.friends;
var msgAlreadyKnown = function (channel, sig) {
return channel.messages.some(function (message) {
return message[0] === sig;
Msg.messenger = function (common) {
2017-08-22 21:55:00 +08:00
var messenger = {
handlers: {
message: [],
join: [],
leave: [],
update: [],
friend: [],
2017-08-24 23:19:57 +08:00
unfriend: [],
2017-08-22 21:55:00 +08:00
2017-08-24 17:33:33 +08:00
range_requests: {},
var eachHandler = function (type, g) {
2017-08-22 21:55:00 +08:00
messenger.on = function (type, f) {
var stack = messenger.handlers[type];
if (!Array.isArray(stack)) {
return void console.error('unsupported message type');
if (typeof(f) !== 'function') {
return void console.error('expected function');
2017-08-16 16:04:50 +08:00
var channels = messenger.channels = {};
2017-08-22 21:55:00 +08:00
var joining = {};
2017-08-16 16:04:50 +08:00
// declare common variables
var network = common.getNetwork();
var proxy = common.getProxy();
var realtime = common.getRealtime(); = network.historyKeeper;
var friends = getFriendList(proxy);
2017-08-22 21:55:00 +08:00
var getChannel = function (curvePublic) {
var friend = friends[curvePublic];
if (!friend) { return; }
var chanId =;
if (!chanId) { return; }
return channels[chanId];
2017-08-24 17:33:33 +08:00
var initRangeRequest = function (txid, curvePublic, sig, cb) {
messenger.range_requests[txid] = {
messages: [],
cb: cb,
curvePublic: curvePublic,
sig: sig,
var getRangeRequest = function (txid) {
return messenger.range_requests[txid];
var deleteRangeRequest = function (txid) {
delete messenger.range_requests[txid];
2017-08-24 17:33:33 +08:00
messenger.getMoreHistory = function (curvePublic, hash, count, cb) {
if (typeof(cb) !== 'function') { return; }
if (typeof(hash) !== 'string') {
// FIXME hash is not necessarily defined.
// What does this mean?
console.error("not sure what to do here");
2017-08-24 17:33:33 +08:00
var chan = getChannel(curvePublic);
if (typeof(chan) === 'undefined') {
console.error("chan is undefined. we're going to have a problem here");
2017-11-13 23:32:40 +08:00
var txid = Util.uid();
2017-08-24 17:33:33 +08:00
initRangeRequest(txid, curvePublic, hash, cb);
var msg = [ 'GET_HISTORY_RANGE',, {
from: hash,
count: count,
txid: txid,
network.sendto(network.historyKeeper, JSON.stringify(msg)).then(function () {
}, function (err) {
throw new Error(err);
2017-08-22 21:55:00 +08:00
var getCurveForChannel = function (id) {
var channel = channels[id];
if (!channel) { return; }
return channel.curve;
messenger.getChannelHead = function (curvePublic, cb) {
var friend = friends[curvePublic];
if (!friend) { return void cb('NO_SUCH_FRIEND'); }
cb(void 0, friend.lastKnownHash);
messenger.setChannelHead = function (curvePublic, hash, cb) {
var friend = friends[curvePublic];
if (!friend) { return void cb('NO_SUCH_FRIEND'); }
friend.lastKnownHash = hash;
2017-08-16 16:04:50 +08:00
// Id message allows us to map a netfluxId with a public curve key
var onIdMessage = function (msg, sender) {
var channel;
var isId = Object.keys(channels).some(function (chanId) {
if (channels[chanId].userList.indexOf(sender) !== -1) {
channel = channels[chanId];
return true;
if (!isId) { return; }
var decryptedMsg = channel.encryptor.decrypt(msg);
if (decryptedMsg === null) {
return void console.error("Failed to decrypt message");
2017-08-16 16:04:50 +08:00
if (!decryptedMsg) {
console.error('decrypted message was falsey but not null');
var parsed;
try {
parsed = JSON.parse(decryptedMsg);
} catch (e) {
if (parsed[0] !== Types.mapId && parsed[0] !== Types.mapIdAck) { return; }
// check that the responding peer's encrypted netflux id matches
// the sender field. This is to prevent replay attacks.
if (parsed[2] !== sender || !parsed[1]) { return; }
2017-08-24 23:19:57 +08:00
channel.mapId[sender] = parsed[1];
eachHandler('join', function (f) {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
if (parsed[0] !== Types.mapId) { return; } // Don't send your key if it's already an ACK
// Answer with your own key
var rMsg = [Types.mapIdAck, proxy.curvePublic, channel.wc.myID];
var rMsgStr = JSON.stringify(rMsg);
var cryptMsg = channel.encryptor.encrypt(rMsgStr);
network.sendto(sender, cryptMsg);
var orderMessages = function (curvePublic, new_messages /*, sig */) {
2017-08-24 17:33:33 +08:00
var channel = getChannel(curvePublic);
var messages = channel.messages;
// TODO improve performance, guarantee correct ordering
2017-08-24 17:33:33 +08:00
new_messages.reverse().forEach(function (msg) {
var removeFromFriendList = function (curvePublic, cb) {
if (!proxy.friends) { return; }
var friends = proxy.friends;
delete friends[curvePublic];
2017-11-13 23:32:40 +08:00
Realtime.whenRealtimeSyncs(realtime, cb);
2017-08-16 16:04:50 +08:00
var pushMsg = function (channel, cryptMsg) {
var msg = channel.encryptor.decrypt(cryptMsg);
var sig = cryptMsg.slice(0, 64);
if (msgAlreadyKnown(channel, sig)) { return; }
var parsedMsg = JSON.parse(msg);
var curvePublic;
2017-08-16 16:04:50 +08:00
if (parsedMsg[0] === Types.message) {
// TODO validate messages here
var res = {
type: parsedMsg[0],
sig: sig,
author: parsedMsg[1],
2017-08-16 16:04:50 +08:00
time: parsedMsg[2],
text: parsedMsg[3],
2017-08-22 21:55:00 +08:00
// this makes debugging a whole lot easier
curve: getCurveForChannel(,
2017-08-16 16:04:50 +08:00
2017-08-24 23:19:57 +08:00
eachHandler('message', function (f) {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
return true;
if (parsedMsg[0] === Types.update) {
if (parsedMsg[1] === proxy.curvePublic) { return; }
curvePublic = parsedMsg[1];
2017-08-16 16:04:50 +08:00
var newdata = parsedMsg[3];
var data = getFriend(proxy, parsedMsg[1]);
var types = [];
Object.keys(newdata).forEach(function (k) {
if (data[k] !== newdata[k]) {
data[k] = newdata[k];
2017-08-25 20:42:05 +08:00
eachHandler('update', function (f) {
f(clone(newdata), curvePublic);
2017-08-16 16:04:50 +08:00
if (parsedMsg[0] === Types.unfriend) {
curvePublic = parsedMsg[1];
delete friends[curvePublic];
2017-08-25 20:42:05 +08:00
removeFromFriendList(parsedMsg[1], function () {
eachHandler('unfriend', function (f) {
2017-08-16 16:04:50 +08:00
/* Broadcast a display name, profile, or avatar change to all contacts
2017-08-22 21:55:00 +08:00
// TODO send event...
messenger.updateMyData = function () {
2017-08-16 16:04:50 +08:00
var friends = getFriendList(proxy);
var mySyncData =;
var myData = createData(proxy);
if (!mySyncData || mySyncData.displayName !== myData.displayName
|| mySyncData.profile !== myData.profile
|| mySyncData.avatar !== myData.avatar) {
Object.keys(channels).forEach(function (chan) {
var channel = channels[chan];
if (!channel) {
return void console.error('NO_SUCH_CHANNEL');
2017-08-16 16:04:50 +08:00
var msg = [Types.update, myData.curvePublic, +new Date(), myData];
var msgStr = JSON.stringify(msg);
var cryptMsg = channel.encryptor.encrypt(msgStr);
channel.wc.bcast(cryptMsg).then(function () {
2017-08-24 17:33:33 +08:00
// TODO send event
2017-08-16 16:04:50 +08:00
}, function (err) {
eachHandler('update', function (f) {
f(myData, myData.curvePublic);
2017-08-16 16:04:50 +08:00 = myData;
2017-08-22 21:55:00 +08:00
var onChannelReady = function (chanId) {
var cb = joining[chanId];
if (typeof(cb) !== 'function') {
return void console.error('channel ready without callback');
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
delete joining[chanId];
return cb();
2017-08-16 16:04:50 +08:00
2017-11-13 23:32:40 +08:00
var onDirectMessage = function (msg, sender) {
2017-08-16 16:04:50 +08:00
if (sender !== { return void onIdMessage(msg, sender); }
var parsed = JSON.parse(msg);
2017-08-24 17:33:33 +08:00
if (/HISTORY_RANGE/.test(parsed[0])) {
var txid = parsed[1];
var req = getRangeRequest(txid);
var type = parsed[0];
if (!req) {
return void console.error("received response to unknown request");
if (type === 'HISTORY_RANGE') {
2017-08-24 17:33:33 +08:00
} else if (type === 'HISTORY_RANGE_END') {
// process all the messages (decrypt)
var curvePublic = req.curvePublic;
var channel = getChannel(curvePublic);
var decrypted = (msg) {
if (msg[2] !== 'MSG') { return; }
try {
return {
d: JSON.parse(channel.encryptor.decrypt(msg[4])),
sig: msg[4].slice(0, 64),
} catch (e) {
console.log('failed to decrypt');
return null;
}).filter(function (decrypted) {
return decrypted;
}).map(function (O) {
return {
type: O.d[0],
sig: O.sig,
author: O.d[1],
2017-08-24 17:33:33 +08:00
time: O.d[2],
text: O.d[3],
curve: curvePublic,
orderMessages(curvePublic, decrypted, req.sig);
req.cb(void 0, decrypted);
return deleteRangeRequest(txid);
2017-08-24 17:33:33 +08:00
} else {
2017-08-16 16:04:50 +08:00
if ((parsed.validateKey || parsed.owners) && {
if (parsed.state && parsed.state === 1 && {
if (channels[]) {
// is Ready
// channel[].ready();
channels[].ready = true;
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
var updateTypes = channels[].updateOnReady;
if (updateTypes) {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
var chan = parsed[3];
if (!chan || !channels[chan]) { return; }
pushMsg(channels[chan], parsed[4]);
var onMessage = function (msg, sender, chan) {
2017-08-16 16:04:50 +08:00
if (!channels[]) { return; }
var isMessage = pushMsg(channels[], msg);
if (isMessage) {
if (channels[].wc.myID !== sender) {
2017-08-22 21:55:00 +08:00
// Don't notify for your own messages
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
// TODO emit message event
2017-08-16 16:04:50 +08:00
// listen for messages...
network.on('message', function(msg, sender) {
2017-11-13 23:32:40 +08:00
onDirectMessage(msg, sender);
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
messenger.removeFriend = function (curvePublic, cb) {
2017-08-24 17:33:33 +08:00
if (typeof(cb) !== 'function') { throw new Error('NO_CALLBACK'); }
2017-08-16 16:04:50 +08:00
var data = getFriend(proxy, curvePublic);
if (!data) {
// friend is not valid
console.error('friend is not valid');
2017-08-16 16:04:50 +08:00
var channel = channels[];
if (!channel) {
return void cb("NO_SUCH_CHANNEL");
if (!network.webChannels.some(function (wc) {
return ===;
})) {
console.error('bad channel: ', curvePublic);
2017-08-16 16:04:50 +08:00
var msg = [Types.unfriend, proxy.curvePublic, +new Date()];
var msgStr = JSON.stringify(msg);
var cryptMsg = channel.encryptor.encrypt(msgStr);
2017-08-24 17:33:33 +08:00
// TODO emit remove_friend event?
try {
channel.wc.bcast(cryptMsg).then(function () {
delete friends[curvePublic];
delete channels[curvePublic];
2017-11-13 23:32:40 +08:00
Realtime.whenRealtimeSyncs(realtime, function () {
}, function (err) {
2017-08-16 16:04:50 +08:00
} catch (e) {
2017-08-16 16:04:50 +08:00
2017-08-24 17:33:33 +08:00
var getChannelMessagesSince = function (chan, data, keys) {
console.log('Fetching [%s] messages since [%s]', data.curvePublic, data.lastKnownHash || '');
var cfg = {
validateKey: keys.validateKey,
owners: [proxy.edPublic, data.edPublic],
lastKnownHash: data.lastKnownHash
var msg = ['GET_HISTORY',, cfg];
network.sendto(network.historyKeeper, JSON.stringify(msg))
.then($.noop, function (err) {
throw new Error(err);
2017-08-16 16:04:50 +08:00
var openFriendChannel = function (data, f) {
var keys = Curve.deriveKeys(data.curvePublic, proxy.curvePrivate);
var encryptor = Curve.createEncryptor(keys);
network.join( (chan) {
var channel = channels[] = {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
sending: false,
friendEd: f,
keys: keys,
2017-08-22 21:55:00 +08:00
curve: data.curvePublic,
2017-08-16 16:04:50 +08:00
encryptor: encryptor,
messages: [],
wc: chan,
userList: [],
mapId: {},
send: function (payload, cb) {
if (!network.webChannels.some(function (wc) {
if ( === { return true; }
})) {
return void cb('NO_SUCH_CHANNEL');
var msg = [Types.message, proxy.curvePublic, +new Date(), payload];
var msgStr = JSON.stringify(msg);
var cryptMsg = channel.encryptor.encrypt(msgStr);
channel.wc.bcast(cryptMsg).then(function () {
pushMsg(channel, cryptMsg);
}, function (err) {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
chan.on('message', function (msg, sender) {
onMessage(msg, sender, chan);
2017-08-16 16:04:50 +08:00
var onJoining = function (peer) {
if (peer === { return; }
if (channel.userList.indexOf(peer) !== -1) { return; }
2017-08-24 17:33:33 +08:00
2017-08-16 16:04:50 +08:00
var msg = [Types.mapId, proxy.curvePublic, chan.myID];
var msgStr = JSON.stringify(msg);
var cryptMsg = channel.encryptor.encrypt(msgStr);
network.sendto(peer, cryptMsg);
chan.members.forEach(function (peer) {
if (peer === { return; }
if (channel.userList.indexOf(peer) !== -1) { return; }
chan.on('join', onJoining);
chan.on('leave', function (peer) {
2017-08-22 21:55:00 +08:00
var curvePublic = channel.mapId[peer];
2017-08-16 16:04:50 +08:00
var i = channel.userList.indexOf(peer);
while (i !== -1) {
channel.userList.splice(i, 1);
i = channel.userList.indexOf(peer);
2017-08-22 21:55:00 +08:00
// update status
if (!curvePublic) { return; }
2017-08-24 23:19:57 +08:00
eachHandler('leave', function (f) {
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
2017-08-24 17:33:33 +08:00
// FIXME don't subscribe to the channel implicitly
getChannelMessagesSince(chan, data, keys);
2017-08-16 16:04:50 +08:00
}, function (err) {
2017-08-22 21:55:00 +08:00
messenger.getFriendList = function (cb) {
var friends = proxy.friends;
if (!friends) { return void cb(void 0, []); }
cb(void 0, Object.keys(proxy.friends).filter(function (k) {
return k !== 'me';
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
messenger.openFriendChannel = function (curvePublic, cb) {
if (typeof(curvePublic) !== 'string') { return void cb('INVALID_ID'); }
if (typeof(cb) !== 'function') { throw new Error('expected callback'); }
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
var friend = clone(friends[curvePublic]);
if (typeof(friend) !== 'object') {
return void cb('NO_FRIEND_DATA');
var channel =;
if (!channel) { return void cb('E_NO_CHANNEL'); }
joining[channel] = cb;
openFriendChannel(friend, curvePublic);
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
messenger.sendMessage = function (curvePublic, payload, cb) {
var channel = getChannel(curvePublic);
if (!channel) { return void cb('NO_CHANNEL'); }
if (!network.webChannels.some(function (wc) {
if ( === { return true; }
})) {
return void cb('NO_SUCH_CHANNEL');
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
var msg = [Types.message, proxy.curvePublic, +new Date(), payload];
var msgStr = JSON.stringify(msg);
var cryptMsg = channel.encryptor.encrypt(msgStr);
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
channel.wc.bcast(cryptMsg).then(function () {
pushMsg(channel, cryptMsg);
}, function (err) {
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
messenger.getStatus = function (curvePublic, cb) {
var channel = getChannel(curvePublic);
if (!channel) { return void cb('NO_SUCH_CHANNEL'); }
var online = channel.userList.some(function (nId) {
return channel.mapId[nId] === curvePublic;
cb(void 0, online);
2017-08-16 16:04:50 +08:00
2017-08-22 21:55:00 +08:00
messenger.getFriendInfo = function (curvePublic, cb) {
setTimeout(function () {
var friend = friends[curvePublic];
if (!friend) { return void cb('NO_SUCH_FRIEND'); }
// this clone will be redundant when ui uses postmessage
cb(void 0, clone(friend));
2017-08-24 17:33:33 +08:00
messenger.getMyInfo = function (cb) {
cb(void 0, {
curvePublic: proxy.curvePublic,
displayName: common.getDisplayName(),
2017-08-22 21:55:00 +08:00
2017-08-16 16:04:50 +08:00
2017-08-24 17:33:33 +08:00
// TODO listen for changes to your friend list
// emit 'update' events for clients
//var update = function (curvePublic
proxy.on('change', ['friends'], function (o, n, p) {
var curvePublic;
if (o === undefined) {
// new friend added
curvePublic = p.slice(-1)[0];
eachHandler('friend', function (f) {
f(curvePublic, clone(n));
2017-08-24 17:33:33 +08:00
console.error(o, n, p);
}).on('remove', ['friends'], function (o, p) {
eachHandler('unfriend', function (f) {
f(p[1]); // TODO
2017-08-24 17:33:33 +08:00
2017-08-22 21:55:00 +08:00
return messenger;
2017-08-16 16:04:50 +08:00
return Msg;