summaryrefslogtreecommitdiffstats
path: root/apps/files_encryption
diff options
context:
space:
mode:
authorMorris Jobke <hey@morrisjobke.de>2014-10-29 15:59:42 +0100
committerMorris Jobke <hey@morrisjobke.de>2014-10-29 15:59:42 +0100
commit7d10ec41e6817472eb831c3891f7d0a0d514037c (patch)
treeac28d8e838d76882eb54b20bd4816f8087b9470a /apps/files_encryption
parent32071e8c062af055aed293fb70ac6df2a4d14515 (diff)
parente8f9b929bd04c4228299118a5cca72148d64fed2 (diff)
downloadnextcloud-server-7d10ec41e6817472eb831c3891f7d0a0d514037c.tar.gz
nextcloud-server-7d10ec41e6817472eb831c3891f7d0a0d514037c.zip
Merge pull request #11835 from owncloud/enc-fixmovingsharekeystofolder
Fix moving share keys as non-owner to subdir
Diffstat (limited to 'apps/files_encryption')
-rw-r--r--apps/files_encryption/hooks/hooks.php58
-rwxr-xr-xapps/files_encryption/tests/share.php17
2 files changed, 41 insertions, 34 deletions
diff --git a/apps/files_encryption/hooks/hooks.php b/apps/files_encryption/hooks/hooks.php
index e004d4a1d63..3a0a37c0a59 100644
--- a/apps/files_encryption/hooks/hooks.php
+++ b/apps/files_encryption/hooks/hooks.php
@@ -409,34 +409,18 @@ class Hooks {
* @param array $params with the old path and the new path
*/
public static function preRename($params) {
- $user = \OCP\User::getUser();
- $view = new \OC\Files\View('/');
- $util = new Util($view, $user);
- list($ownerOld, $pathOld) = $util->getUidAndFilename($params['oldpath']);
-
- // we only need to rename the keys if the rename happens on the same mountpoint
- // otherwise we perform a stream copy, so we get a new set of keys
- $mp1 = $view->getMountPoint('/' . $user . '/files/' . $params['oldpath']);
- $mp2 = $view->getMountPoint('/' . $user . '/files/' . $params['newpath']);
-
- $type = $view->is_dir('/' . $user . '/files/' . $params['oldpath']) ? 'folder' : 'file';
-
- if ($mp1 === $mp2) {
- self::$renamedFiles[$params['oldpath']] = array(
- 'uid' => $ownerOld,
- 'path' => $pathOld,
- 'type' => $type,
- 'operation' => 'rename',
- );
-
- }
+ self::preRenameOrCopy($params, 'rename');
}
/**
- * mark file as renamed so that we know the original source after the file was renamed
+ * mark file as copied so that we know the original source after the file was copied
* @param array $params with the old path and the new path
*/
public static function preCopy($params) {
+ self::preRenameOrCopy($params, 'copy');
+ }
+
+ private static function preRenameOrCopy($params, $operation) {
$user = \OCP\User::getUser();
$view = new \OC\Files\View('/');
$util = new Util($view, $user);
@@ -450,11 +434,27 @@ class Hooks {
$type = $view->is_dir('/' . $user . '/files/' . $params['oldpath']) ? 'folder' : 'file';
if ($mp1 === $mp2) {
+ if ($util->isSystemWideMountPoint($pathOld)) {
+ $oldShareKeyPath = 'files_encryption/share-keys/' . $pathOld;
+ } else {
+ $oldShareKeyPath = $ownerOld . '/' . 'files_encryption/share-keys/' . $pathOld;
+ }
+ // gather share keys here because in postRename() the file will be moved already
+ $oldShareKeys = Helper::findShareKeys($pathOld, $oldShareKeyPath, $view);
+ if (count($oldShareKeys) === 0) {
+ \OC_Log::write(
+ 'Encryption library', 'No share keys found for "' . $pathOld . '"',
+ \OC_Log::WARN
+ );
+ }
self::$renamedFiles[$params['oldpath']] = array(
'uid' => $ownerOld,
'path' => $pathOld,
'type' => $type,
- 'operation' => 'copy');
+ 'operation' => $operation,
+ 'sharekeys' => $oldShareKeys
+ );
+
}
}
@@ -476,6 +476,7 @@ class Hooks {
$view = new \OC\Files\View('/');
$userId = \OCP\User::getUser();
$util = new Util($view, $userId);
+ $oldShareKeys = null;
if (isset(self::$renamedFiles[$params['oldpath']]['uid']) &&
isset(self::$renamedFiles[$params['oldpath']]['path'])) {
@@ -483,6 +484,7 @@ class Hooks {
$pathOld = self::$renamedFiles[$params['oldpath']]['path'];
$type = self::$renamedFiles[$params['oldpath']]['type'];
$operation = self::$renamedFiles[$params['oldpath']]['operation'];
+ $oldShareKeys = self::$renamedFiles[$params['oldpath']]['sharekeys'];
unset(self::$renamedFiles[$params['oldpath']]);
} else {
\OCP\Util::writeLog('Encryption library', "can't get path and owner from the file before it was renamed", \OCP\Util::DEBUG);
@@ -522,15 +524,7 @@ class Hooks {
$oldKeyfilePath .= '.key';
$newKeyfilePath .= '.key';
- // handle share-keys
- $matches = Helper::findShareKeys($pathOld, $oldShareKeyPath, $view);
- if (count($matches) === 0) {
- \OC_Log::write(
- 'Encryption library', 'No share keys found for "' . $pathOld . '"',
- \OC_Log::WARN
- );
- }
- foreach ($matches as $src) {
+ foreach ($oldShareKeys as $src) {
$dst = \OC\Files\Filesystem::normalizePath(str_replace($pathOld, $pathNew, $src));
$view->$operation($src, $dst);
}
diff --git a/apps/files_encryption/tests/share.php b/apps/files_encryption/tests/share.php
index f4ce94b7ee9..4a0f10b13fb 100755
--- a/apps/files_encryption/tests/share.php
+++ b/apps/files_encryption/tests/share.php
@@ -1074,8 +1074,19 @@ class Test_Encryption_Share extends \PHPUnit_Framework_TestCase {
\OC\Files\Filesystem::unlink('/newfolder');
}
- function testMoveFileToFolder() {
+ function usersProvider() {
+ return array(
+ // test as owner
+ array(\Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER1),
+ // test as share receiver
+ array(\Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER2),
+ );
+ }
+ /**
+ * @dataProvider usersProvider
+ */
+ function testMoveFileToFolder($userId) {
$view = new \OC\Files\View('/' . \Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER1);
$filename = '/tmp-' . uniqid();
@@ -1108,8 +1119,10 @@ class Test_Encryption_Share extends \PHPUnit_Framework_TestCase {
$this->assertTrue($view->file_exists('files_encryption/share-keys' . $folder . '/' . $filename . '.' . \Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER1 . '.shareKey'));
$this->assertTrue($view->file_exists('files_encryption/share-keys' . $folder . '/' . $filename . '.' . \Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER2 . '.shareKey'));
- // move the file into the subfolder
+ // move the file into the subfolder as the test user
+ \Test_Encryption_Util::loginHelper($userId);
\OC\Files\Filesystem::rename($folder . $filename, $subFolder . $filename);
+ \Test_Encryption_Util::loginHelper(\Test_Encryption_Share::TEST_ENCRYPTION_SHARE_USER1);
// Get file decrypted contents
$newDecrypt = \OC\Files\Filesystem::file_get_contents($subFolder . $filename);