]> git.ipfire.org Git - thirdparty/git.git/blame - imap-send.c
t: local VAR="VAL" (quote positional parameters)
[thirdparty/git.git] / imap-send.c
CommitLineData
f2561fda
MM
1/*
2 * git-imap-send - drops patches into an imap Drafts folder
3 * derived from isync/mbsync - mailbox synchronizer
4 *
5 * Copyright (C) 2000-2002 Michael R. Elkins <me@mutt.org>
6 * Copyright (C) 2002-2004 Oswald Buddenhagen <ossi@users.sf.net>
7 * Copyright (C) 2004 Theodore Y. Ts'o <tytso@mit.edu>
8 * Copyright (C) 2006 Mike McCormack
9 *
10 * This program is free software; you can redistribute it and/or modify
11 * it under the terms of the GNU General Public License as published by
12 * the Free Software Foundation; either version 2 of the License, or
13 * (at your option) any later version.
14 *
15 * This program is distributed in the hope that it will be useful,
16 * but WITHOUT ANY WARRANTY; without even the implied warranty of
17 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 * GNU General Public License for more details.
19 *
20 * You should have received a copy of the GNU General Public License
d05b08cd 21 * along with this program; if not, see <https://www.gnu.org/licenses/>.
f2561fda
MM
22 */
23
15db4e7f 24#include "git-compat-util.h"
b2141fc1 25#include "config.h"
791643a8 26#include "credential.h"
f394e093 27#include "gettext.h"
c94d2dd0 28#include "run-command.h"
f1a35295 29#include "parse-options.h"
e38da487 30#include "setup.h"
30bced3a 31#include "strbuf.h"
5b52d9f1 32#if defined(NO_OPENSSL) && !defined(HAVE_OPENSSL_CSPRNG)
684ec6c6
RS
33typedef void *SSL;
34#endif
1e16b255
BR
35#ifdef USE_CURL_FOR_IMAP_SEND
36#include "http.h"
37#endif
f2561fda 38
dbba42bb
NMC
39#if defined(USE_CURL_FOR_IMAP_SEND)
40/* Always default to curl if it's available. */
dcd01ea1
KM
41#define USE_CURL_DEFAULT 1
42#else
dbba42bb 43/* We don't have curl, so continue to use the historical implementation */
dcd01ea1
KM
44#define USE_CURL_DEFAULT 0
45#endif
46
f1a35295 47static int verbosity;
dcd01ea1 48static int use_curl = USE_CURL_DEFAULT;
f1a35295 49
1e16b255 50static const char * const imap_send_usage[] = { "git imap-send [-v] [-q] [--[no-]curl] < <mbox>", NULL };
f1a35295
BR
51
52static struct option imap_send_options[] = {
53 OPT__VERBOSITY(&verbosity),
1e16b255 54 OPT_BOOL(0, "curl", &use_curl, "use libcurl to communicate with the IMAP server"),
f1a35295
BR
55 OPT_END()
56};
f2561fda 57
d23b1ecf 58#undef DRV_OK
f2561fda
MM
59#define DRV_OK 0
60#define DRV_MSG_BAD -1
61#define DRV_BOX_BAD -2
62#define DRV_STORE_BAD -3
63
28bea9e5 64__attribute__((format (printf, 1, 2)))
95c53908 65static void imap_info(const char *, ...);
28bea9e5 66__attribute__((format (printf, 1, 2)))
95c53908 67static void imap_warn(const char *, ...);
f2561fda 68
95c53908 69static char *next_arg(char **);
f2561fda 70
28bea9e5 71__attribute__((format (printf, 3, 4)))
95c53908 72static int nfsnprintf(char *buf, int blen, const char *fmt, ...);
f2561fda 73
19247e55
PH
74static int nfvasprintf(char **strp, const char *fmt, va_list ap)
75{
76 int len;
77 char tmp[8192];
78
79 len = vsnprintf(tmp, sizeof(tmp), fmt, ap);
80 if (len < 0)
d7530708 81 die("Fatal: Out of memory");
19247e55 82 if (len >= sizeof(tmp))
d7530708 83 die("imap command overflow!");
19247e55
PH
84 *strp = xmemdupz(tmp, len);
85 return len;
86}
f2561fda 87
9f1ad541 88struct imap_server_conf {
50212361
NMC
89 const char *name;
90 const char *tunnel;
91 const char *host;
f2561fda 92 int port;
50212361
NMC
93 const char *folder;
94 const char *user;
95 const char *pass;
684ec6c6
RS
96 int use_ssl;
97 int ssl_verify;
c64d84f1 98 int use_html;
50212361 99 const char *auth_method;
ae9c606e
HM
100};
101
102static struct imap_server_conf server = {
518f7059 103 .ssl_verify = 1,
9f1ad541 104};
f2561fda 105
9f1ad541 106struct imap_socket {
7a7796e9 107 int fd[2];
684ec6c6 108 SSL *ssl;
9f1ad541 109};
f2561fda 110
9f1ad541
JH
111struct imap_buffer {
112 struct imap_socket sock;
f2561fda
MM
113 int bytes;
114 int offset;
115 char buf[1024];
9f1ad541 116};
f2561fda
MM
117
118struct imap_cmd;
119
9f1ad541 120struct imap {
f2561fda 121 int uidnext; /* from SELECT responses */
f2561fda
MM
122 unsigned caps, rcaps; /* CAPABILITY results */
123 /* command queue */
124 int nexttag, num_in_progress, literal_pending;
125 struct imap_cmd *in_progress, **in_progress_append;
9f1ad541
JH
126 struct imap_buffer buf; /* this is BIG, so put it last */
127};
f2561fda 128
9f1ad541 129struct imap_store {
636fd66b
MH
130 /* currently open mailbox */
131 const char *name; /* foreign! maybe preset? */
132 int uidvalidity;
9f1ad541 133 struct imap *imap;
f2561fda 134 const char *prefix;
9f1ad541 135};
f2561fda
MM
136
137struct imap_cmd_cb {
ec9e358a 138 int (*cont)(struct imap_store *ctx, const char *prompt);
f2561fda
MM
139 void *ctx;
140 char *data;
141 int dlen;
f2561fda
MM
142};
143
144struct imap_cmd {
145 struct imap_cmd *next;
146 struct imap_cmd_cb cb;
147 char *cmd;
148 int tag;
149};
150
151#define CAP(cap) (imap->caps & (1 << (cap)))
152
153enum CAPABILITY {
154 NOLOGIN = 0,
155 UIDPLUS,
156 LITERALPLUS,
157 NAMESPACE,
684ec6c6 158 STARTTLS,
4b05548f 159 AUTH_CRAM_MD5
f2561fda
MM
160};
161
162static const char *cap_list[] = {
163 "LOGINDISABLED",
164 "UIDPLUS",
165 "LITERAL+",
166 "NAMESPACE",
684ec6c6 167 "STARTTLS",
ae9c606e 168 "AUTH=CRAM-MD5",
f2561fda
MM
169};
170
171#define RESP_OK 0
172#define RESP_NO 1
173#define RESP_BAD 2
174
9f1ad541 175static int get_cmd_result(struct imap_store *ctx, struct imap_cmd *tcmd);
f2561fda
MM
176
177
684ec6c6
RS
178#ifndef NO_OPENSSL
179static void ssl_socket_perror(const char *func)
180{
2af202be 181 fprintf(stderr, "%s: %s\n", func, ERR_error_string(ERR_get_error(), NULL));
684ec6c6
RS
182}
183#endif
184
9f1ad541 185static void socket_perror(const char *func, struct imap_socket *sock, int ret)
f2561fda 186{
684ec6c6
RS
187#ifndef NO_OPENSSL
188 if (sock->ssl) {
189 int sslerr = SSL_get_error(sock->ssl, ret);
190 switch (sslerr) {
191 case SSL_ERROR_NONE:
192 break;
193 case SSL_ERROR_SYSCALL:
194 perror("SSL_connect");
195 break;
196 default:
197 ssl_socket_perror("SSL_connect");
198 break;
199 }
200 } else
201#endif
202 {
203 if (ret < 0)
204 perror(func);
205 else
206 fprintf(stderr, "%s: unexpected EOF\n", func);
207 }
2c3c3d88
JK
208 /* mark as used to appease -Wunused-parameter with NO_OPENSSL */
209 (void)sock;
684ec6c6
RS
210}
211
1e1fe529 212#ifdef NO_OPENSSL
2c3c3d88
JK
213static int ssl_socket_connect(struct imap_socket *sock UNUSED,
214 int use_tls_only UNUSED,
215 int verify UNUSED)
684ec6c6 216{
684ec6c6
RS
217 fprintf(stderr, "SSL requested but SSL support not compiled in\n");
218 return -1;
1e1fe529
JH
219}
220
1e380ddc 221#else
1e1fe529 222
b62fb077
OB
223static int host_matches(const char *host, const char *pattern)
224{
225 if (pattern[0] == '*' && pattern[1] == '.') {
226 pattern += 2;
227 if (!(host = strchr(host, '.')))
228 return 0;
229 host++;
230 }
231
232 return *host && *pattern && !strcasecmp(host, pattern);
233}
234
235static int verify_hostname(X509 *cert, const char *hostname)
236{
237 int len;
238 X509_NAME *subj;
239 char cname[1000];
e174744a
OB
240 int i, found;
241 STACK_OF(GENERAL_NAME) *subj_alt_names;
242
243 /* try the DNS subjectAltNames */
244 found = 0;
245 if ((subj_alt_names = X509_get_ext_d2i(cert, NID_subject_alt_name, NULL, NULL))) {
246 int num_subj_alt_names = sk_GENERAL_NAME_num(subj_alt_names);
247 for (i = 0; !found && i < num_subj_alt_names; i++) {
248 GENERAL_NAME *subj_alt_name = sk_GENERAL_NAME_value(subj_alt_names, i);
249 if (subj_alt_name->type == GEN_DNS &&
250 strlen((const char *)subj_alt_name->d.ia5->data) == (size_t)subj_alt_name->d.ia5->length &&
251 host_matches(hostname, (const char *)(subj_alt_name->d.ia5->data)))
252 found = 1;
253 }
254 sk_GENERAL_NAME_pop_free(subj_alt_names, GENERAL_NAME_free);
255 }
256 if (found)
257 return 0;
b62fb077
OB
258
259 /* try the common name */
260 if (!(subj = X509_get_subject_name(cert)))
261 return error("cannot get certificate subject");
262 if ((len = X509_NAME_get_text_by_NID(subj, NID_commonName, cname, sizeof(cname))) < 0)
263 return error("cannot get certificate common name");
264 if (strlen(cname) == (size_t)len && host_matches(hostname, cname))
265 return 0;
266 return error("certificate owner '%s' does not match hostname '%s'",
267 cname, hostname);
268}
269
1e1fe529
JH
270static int ssl_socket_connect(struct imap_socket *sock, int use_tls_only, int verify)
271{
1e380ddc
VL
272#if (OPENSSL_VERSION_NUMBER >= 0x10000000L)
273 const SSL_METHOD *meth;
684ec6c6
RS
274#else
275 SSL_METHOD *meth;
1e380ddc 276#endif
684ec6c6
RS
277 SSL_CTX *ctx;
278 int ret;
b62fb077 279 X509 *cert;
684ec6c6
RS
280
281 SSL_library_init();
282 SSL_load_error_strings();
283
b51c0d4b 284 meth = SSLv23_method();
684ec6c6
RS
285 if (!meth) {
286 ssl_socket_perror("SSLv23_method");
287 return -1;
288 }
289
290 ctx = SSL_CTX_new(meth);
6738a33b
KY
291 if (!ctx) {
292 ssl_socket_perror("SSL_CTX_new");
293 return -1;
294 }
684ec6c6 295
b51c0d4b
KY
296 if (use_tls_only)
297 SSL_CTX_set_options(ctx, SSL_OP_NO_SSLv2 | SSL_OP_NO_SSLv3);
684ec6c6
RS
298
299 if (verify)
300 SSL_CTX_set_verify(ctx, SSL_VERIFY_PEER, NULL);
301
302 if (!SSL_CTX_set_default_verify_paths(ctx)) {
303 ssl_socket_perror("SSL_CTX_set_default_verify_paths");
304 return -1;
305 }
306 sock->ssl = SSL_new(ctx);
307 if (!sock->ssl) {
308 ssl_socket_perror("SSL_new");
309 return -1;
310 }
7a7796e9
EFL
311 if (!SSL_set_rfd(sock->ssl, sock->fd[0])) {
312 ssl_socket_perror("SSL_set_rfd");
313 return -1;
314 }
315 if (!SSL_set_wfd(sock->ssl, sock->fd[1])) {
316 ssl_socket_perror("SSL_set_wfd");
684ec6c6
RS
317 return -1;
318 }
319
698a1ec4
JH
320#ifdef SSL_CTRL_SET_TLSEXT_HOSTNAME
321 /*
322 * SNI (RFC4366)
323 * OpenSSL does not document this function, but the implementation
324 * returns 1 on success, 0 on failure after calling SSLerr().
325 */
326 ret = SSL_set_tlsext_host_name(sock->ssl, server.host);
327 if (ret != 1)
328 warning("SSL_set_tlsext_host_name(%s) failed.", server.host);
329#endif
330
684ec6c6
RS
331 ret = SSL_connect(sock->ssl);
332 if (ret <= 0) {
333 socket_perror("SSL_connect", sock, ret);
334 return -1;
335 }
336
b62fb077
OB
337 if (verify) {
338 /* make sure the hostname matches that of the certificate */
339 cert = SSL_get_peer_certificate(sock->ssl);
340 if (!cert)
341 return error("unable to get peer certificate.");
342 if (verify_hostname(cert, server.host) < 0)
343 return -1;
344 }
345
684ec6c6 346 return 0;
f2561fda 347}
1e1fe529 348#endif
f2561fda 349
9f1ad541 350static int socket_read(struct imap_socket *sock, char *buf, int len)
f2561fda 351{
684ec6c6
RS
352 ssize_t n;
353#ifndef NO_OPENSSL
354 if (sock->ssl)
355 n = SSL_read(sock->ssl, buf, len);
356 else
357#endif
7a7796e9 358 n = xread(sock->fd[0], buf, len);
f2561fda 359 if (n <= 0) {
95c53908 360 socket_perror("read", sock, n);
7a7796e9
EFL
361 close(sock->fd[0]);
362 close(sock->fd[1]);
363 sock->fd[0] = sock->fd[1] = -1;
f2561fda
MM
364 }
365 return n;
366}
367
9f1ad541 368static int socket_write(struct imap_socket *sock, const char *buf, int len)
f2561fda 369{
684ec6c6
RS
370 int n;
371#ifndef NO_OPENSSL
372 if (sock->ssl)
373 n = SSL_write(sock->ssl, buf, len);
374 else
375#endif
7a7796e9 376 n = write_in_full(sock->fd[1], buf, len);
f2561fda 377 if (n != len) {
95c53908 378 socket_perror("write", sock, n);
7a7796e9
EFL
379 close(sock->fd[0]);
380 close(sock->fd[1]);
381 sock->fd[0] = sock->fd[1] = -1;
f2561fda
MM
382 }
383 return n;
384}
385
9f1ad541 386static void socket_shutdown(struct imap_socket *sock)
684ec6c6
RS
387{
388#ifndef NO_OPENSSL
389 if (sock->ssl) {
390 SSL_shutdown(sock->ssl);
391 SSL_free(sock->ssl);
392 }
393#endif
7a7796e9
EFL
394 close(sock->fd[0]);
395 close(sock->fd[1]);
684ec6c6
RS
396}
397
f2561fda 398/* simple line buffering */
9f1ad541 399static int buffer_gets(struct imap_buffer *b, char **s)
f2561fda
MM
400{
401 int n;
402 int start = b->offset;
403
404 *s = b->buf + start;
405
406 for (;;) {
407 /* make sure we have enough data to read the \r\n sequence */
408 if (b->offset + 1 >= b->bytes) {
409 if (start) {
410 /* shift down used bytes */
411 *s = b->buf;
412
95c53908 413 assert(start <= b->bytes);
f2561fda
MM
414 n = b->bytes - start;
415
416 if (n)
173a9cbe 417 memmove(b->buf, b->buf + start, n);
f2561fda
MM
418 b->offset -= start;
419 b->bytes = n;
420 start = 0;
421 }
422
95c53908
RS
423 n = socket_read(&b->sock, b->buf + b->bytes,
424 sizeof(b->buf) - b->bytes);
f2561fda
MM
425
426 if (n <= 0)
427 return -1;
428
429 b->bytes += n;
430 }
431
432 if (b->buf[b->offset] == '\r') {
95c53908 433 assert(b->offset + 1 < b->bytes);
f2561fda
MM
434 if (b->buf[b->offset + 1] == '\n') {
435 b->buf[b->offset] = 0; /* terminate the string */
436 b->offset += 2; /* next line */
f1a35295 437 if (0 < verbosity)
95c53908 438 puts(*s);
f2561fda
MM
439 return 0;
440 }
441 }
442
443 b->offset++;
444 }
445 /* not reached */
446}
447
48ca53ca 448__attribute__((format (printf, 1, 2)))
95c53908 449static void imap_info(const char *msg, ...)
f2561fda
MM
450{
451 va_list va;
452
f1a35295 453 if (0 <= verbosity) {
95c53908
RS
454 va_start(va, msg);
455 vprintf(msg, va);
456 va_end(va);
457 fflush(stdout);
f2561fda
MM
458 }
459}
460
48ca53ca 461__attribute__((format (printf, 1, 2)))
95c53908 462static void imap_warn(const char *msg, ...)
f2561fda
MM
463{
464 va_list va;
465
f1a35295 466 if (-2 < verbosity) {
95c53908
RS
467 va_start(va, msg);
468 vfprintf(stderr, msg, va);
469 va_end(va);
f2561fda
MM
470 }
471}
472
95c53908 473static char *next_arg(char **s)
f2561fda
MM
474{
475 char *ret;
476
477 if (!s || !*s)
5142db69 478 return NULL;
95c53908 479 while (isspace((unsigned char) **s))
f2561fda
MM
480 (*s)++;
481 if (!**s) {
5142db69
RS
482 *s = NULL;
483 return NULL;
f2561fda
MM
484 }
485 if (**s == '"') {
486 ++*s;
487 ret = *s;
95c53908 488 *s = strchr(*s, '"');
f2561fda
MM
489 } else {
490 ret = *s;
95c53908 491 while (**s && !isspace((unsigned char) **s))
f2561fda
MM
492 (*s)++;
493 }
494 if (*s) {
495 if (**s)
496 *(*s)++ = 0;
497 if (!**s)
5142db69 498 *s = NULL;
f2561fda
MM
499 }
500 return ret;
501}
502
48ca53ca 503__attribute__((format (printf, 3, 4)))
95c53908 504static int nfsnprintf(char *buf, int blen, const char *fmt, ...)
f2561fda
MM
505{
506 int ret;
507 va_list va;
508
95c53908
RS
509 va_start(va, fmt);
510 if (blen <= 0 || (unsigned)(ret = vsnprintf(buf, blen, fmt, va)) >= (unsigned)blen)
033abf97 511 BUG("buffer too small. Please report a bug.");
95c53908 512 va_end(va);
f2561fda
MM
513 return ret;
514}
515
e0d8e308
TF
516static struct imap_cmd *issue_imap_cmd(struct imap_store *ctx,
517 struct imap_cmd_cb *cb,
518 const char *fmt, va_list ap)
f2561fda 519{
9f1ad541 520 struct imap *imap = ctx->imap;
f2561fda
MM
521 struct imap_cmd *cmd;
522 int n, bufl;
523 char buf[1024];
524
95c53908
RS
525 cmd = xmalloc(sizeof(struct imap_cmd));
526 nfvasprintf(&cmd->cmd, fmt, ap);
f2561fda
MM
527 cmd->tag = ++imap->nexttag;
528
529 if (cb)
530 cmd->cb = *cb;
531 else
95c53908 532 memset(&cmd->cb, 0, sizeof(cmd->cb));
f2561fda
MM
533
534 while (imap->literal_pending)
95c53908 535 get_cmd_result(ctx, NULL);
f2561fda 536
1702b138
ÆAB
537 if (!cmd->cb.data)
538 bufl = nfsnprintf(buf, sizeof(buf), "%d %s\r\n", cmd->tag, cmd->cmd);
539 else
540 bufl = nfsnprintf(buf, sizeof(buf), "%d %s{%d%s}\r\n",
541 cmd->tag, cmd->cmd, cmd->cb.dlen,
542 CAP(LITERALPLUS) ? "+" : "");
f2561fda 543
f1a35295 544 if (0 < verbosity) {
f2561fda 545 if (imap->num_in_progress)
95c53908 546 printf("(%d in progress) ", imap->num_in_progress);
ba9b9e12 547 if (!starts_with(cmd->cmd, "LOGIN"))
95c53908 548 printf(">>> %s", buf);
f2561fda 549 else
95c53908 550 printf(">>> %d LOGIN <user> <pass>\n", cmd->tag);
f2561fda 551 }
95c53908
RS
552 if (socket_write(&imap->buf.sock, buf, bufl) != bufl) {
553 free(cmd->cmd);
554 free(cmd);
8e0f7003 555 if (cb)
95c53908 556 free(cb->data);
f2561fda
MM
557 return NULL;
558 }
559 if (cmd->cb.data) {
560 if (CAP(LITERALPLUS)) {
95c53908
RS
561 n = socket_write(&imap->buf.sock, cmd->cb.data, cmd->cb.dlen);
562 free(cmd->cb.data);
f2561fda 563 if (n != cmd->cb.dlen ||
8e76bf3f 564 socket_write(&imap->buf.sock, "\r\n", 2) != 2) {
95c53908
RS
565 free(cmd->cmd);
566 free(cmd);
f2561fda
MM
567 return NULL;
568 }
5142db69 569 cmd->cb.data = NULL;
f2561fda
MM
570 } else
571 imap->literal_pending = 1;
572 } else if (cmd->cb.cont)
573 imap->literal_pending = 1;
5142db69 574 cmd->next = NULL;
f2561fda
MM
575 *imap->in_progress_append = cmd;
576 imap->in_progress_append = &cmd->next;
577 imap->num_in_progress++;
578 return cmd;
579}
580
28bea9e5 581__attribute__((format (printf, 3, 4)))
9f1ad541 582static int imap_exec(struct imap_store *ctx, struct imap_cmd_cb *cb,
95c53908 583 const char *fmt, ...)
f2561fda
MM
584{
585 va_list ap;
586 struct imap_cmd *cmdp;
587
95c53908 588 va_start(ap, fmt);
e0d8e308 589 cmdp = issue_imap_cmd(ctx, cb, fmt, ap);
95c53908 590 va_end(ap);
f2561fda
MM
591 if (!cmdp)
592 return RESP_BAD;
593
95c53908 594 return get_cmd_result(ctx, cmdp);
f2561fda
MM
595}
596
28bea9e5 597__attribute__((format (printf, 3, 4)))
9f1ad541 598static int imap_exec_m(struct imap_store *ctx, struct imap_cmd_cb *cb,
95c53908 599 const char *fmt, ...)
f2561fda
MM
600{
601 va_list ap;
602 struct imap_cmd *cmdp;
603
95c53908 604 va_start(ap, fmt);
e0d8e308 605 cmdp = issue_imap_cmd(ctx, cb, fmt, ap);
95c53908 606 va_end(ap);
f2561fda
MM
607 if (!cmdp)
608 return DRV_STORE_BAD;
609
95c53908 610 switch (get_cmd_result(ctx, cmdp)) {
f2561fda
MM
611 case RESP_BAD: return DRV_STORE_BAD;
612 case RESP_NO: return DRV_MSG_BAD;
613 default: return DRV_OK;
614 }
615}
616
3648b4d9 617static int skip_imap_list_l(char **sp, int level)
f2561fda 618{
3648b4d9 619 char *s = *sp;
f2561fda
MM
620
621 for (;;) {
95c53908 622 while (isspace((unsigned char)*s))
f2561fda
MM
623 s++;
624 if (level && *s == ')') {
625 s++;
626 break;
627 }
f2561fda
MM
628 if (*s == '(') {
629 /* sublist */
630 s++;
3648b4d9 631 if (skip_imap_list_l(&s, level + 1))
f2561fda
MM
632 goto bail;
633 } else if (*s == '"') {
634 /* quoted string */
635 s++;
f2561fda
MM
636 for (; *s != '"'; s++)
637 if (!*s)
638 goto bail;
f2561fda 639 s++;
f2561fda
MM
640 } else {
641 /* atom */
95c53908 642 for (; *s && !isspace((unsigned char)*s); s++)
f2561fda
MM
643 if (level && *s == ')')
644 break;
f2561fda
MM
645 }
646
647 if (!level)
648 break;
649 if (!*s)
650 goto bail;
651 }
652 *sp = s;
f2561fda
MM
653 return 0;
654
9f1ad541 655bail:
f2561fda
MM
656 return -1;
657}
658
3648b4d9 659static void skip_list(char **sp)
f2561fda 660{
3648b4d9 661 skip_imap_list_l(sp, 0);
f2561fda
MM
662}
663
9f1ad541 664static void parse_capability(struct imap *imap, char *cmd)
f2561fda
MM
665{
666 char *arg;
667 unsigned i;
668
669 imap->caps = 0x80000000;
95c53908 670 while ((arg = next_arg(&cmd)))
f2561fda 671 for (i = 0; i < ARRAY_SIZE(cap_list); i++)
95c53908 672 if (!strcmp(cap_list[i], arg))
f2561fda
MM
673 imap->caps |= 1 << i;
674 imap->rcaps = imap->caps;
675}
676
9f1ad541 677static int parse_response_code(struct imap_store *ctx, struct imap_cmd_cb *cb,
95c53908 678 char *s)
f2561fda 679{
9f1ad541 680 struct imap *imap = ctx->imap;
f2561fda
MM
681 char *arg, *p;
682
618ec81a 683 if (!s || *s != '[')
f2561fda
MM
684 return RESP_OK; /* no response code */
685 s++;
95c53908
RS
686 if (!(p = strchr(s, ']'))) {
687 fprintf(stderr, "IMAP error: malformed response code\n");
f2561fda
MM
688 return RESP_BAD;
689 }
690 *p++ = 0;
95c53908 691 arg = next_arg(&s);
f54c5bd4
RS
692 if (!arg) {
693 fprintf(stderr, "IMAP error: empty response code\n");
694 return RESP_BAD;
695 }
95c53908 696 if (!strcmp("UIDVALIDITY", arg)) {
636fd66b 697 if (!(arg = next_arg(&s)) || !(ctx->uidvalidity = atoi(arg))) {
95c53908 698 fprintf(stderr, "IMAP error: malformed UIDVALIDITY status\n");
f2561fda
MM
699 return RESP_BAD;
700 }
95c53908
RS
701 } else if (!strcmp("UIDNEXT", arg)) {
702 if (!(arg = next_arg(&s)) || !(imap->uidnext = atoi(arg))) {
703 fprintf(stderr, "IMAP error: malformed NEXTUID status\n");
f2561fda
MM
704 return RESP_BAD;
705 }
95c53908
RS
706 } else if (!strcmp("CAPABILITY", arg)) {
707 parse_capability(imap, s);
708 } else if (!strcmp("ALERT", arg)) {
f2561fda
MM
709 /* RFC2060 says that these messages MUST be displayed
710 * to the user
711 */
95c53908
RS
712 for (; isspace((unsigned char)*p); p++);
713 fprintf(stderr, "*** IMAP ALERT *** %s\n", p);
714 } else if (cb && cb->ctx && !strcmp("APPENDUID", arg)) {
636fd66b 715 if (!(arg = next_arg(&s)) || !(ctx->uidvalidity = atoi(arg)) ||
9f1ad541 716 !(arg = next_arg(&s)) || !(*(int *)cb->ctx = atoi(arg))) {
95c53908 717 fprintf(stderr, "IMAP error: malformed APPENDUID status\n");
f2561fda
MM
718 return RESP_BAD;
719 }
720 }
721 return RESP_OK;
722}
723
9f1ad541 724static int get_cmd_result(struct imap_store *ctx, struct imap_cmd *tcmd)
f2561fda 725{
9f1ad541 726 struct imap *imap = ctx->imap;
e0d8e308 727 struct imap_cmd *cmdp, **pcmdp;
f54c5bd4
RS
728 char *cmd;
729 const char *arg, *arg1;
f2561fda
MM
730 int n, resp, resp2, tag;
731
732 for (;;) {
95c53908 733 if (buffer_gets(&imap->buf, &cmd))
f2561fda
MM
734 return RESP_BAD;
735
95c53908 736 arg = next_arg(&cmd);
f54c5bd4
RS
737 if (!arg) {
738 fprintf(stderr, "IMAP error: empty response\n");
739 return RESP_BAD;
740 }
f2561fda 741 if (*arg == '*') {
95c53908 742 arg = next_arg(&cmd);
f2561fda 743 if (!arg) {
95c53908 744 fprintf(stderr, "IMAP error: unable to parse untagged response\n");
f2561fda
MM
745 return RESP_BAD;
746 }
747
95c53908 748 if (!strcmp("NAMESPACE", arg)) {
3648b4d9
MH
749 /* rfc2342 NAMESPACE response. */
750 skip_list(&cmd); /* Personal mailboxes */
751 skip_list(&cmd); /* Others' mailboxes */
752 skip_list(&cmd); /* Shared mailboxes */
95c53908
RS
753 } else if (!strcmp("OK", arg) || !strcmp("BAD", arg) ||
754 !strcmp("NO", arg) || !strcmp("BYE", arg)) {
755 if ((resp = parse_response_code(ctx, NULL, cmd)) != RESP_OK)
f2561fda 756 return resp;
1efee7ff 757 } else if (!strcmp("CAPABILITY", arg)) {
95c53908 758 parse_capability(imap, cmd);
1efee7ff
MH
759 } else if ((arg1 = next_arg(&cmd))) {
760 ; /*
761 * Unhandled response-data with at least two words.
762 * Ignore it.
763 *
764 * NEEDSWORK: Previously this case handled '<num> EXISTS'
765 * and '<num> RECENT' but as a probably-unintended side
766 * effect it ignores other unrecognized two-word
767 * responses. imap-send doesn't ever try to read
768 * messages or mailboxes these days, so consider
769 * eliminating this case.
770 */
f2561fda 771 } else {
95c53908 772 fprintf(stderr, "IMAP error: unable to parse untagged response\n");
f2561fda
MM
773 return RESP_BAD;
774 }
775 } else if (!imap->in_progress) {
95c53908 776 fprintf(stderr, "IMAP error: unexpected reply: %s %s\n", arg, cmd ? cmd : "");
f2561fda
MM
777 return RESP_BAD;
778 } else if (*arg == '+') {
779 /* This can happen only with the last command underway, as
780 it enforces a round-trip. */
781 cmdp = (struct imap_cmd *)((char *)imap->in_progress_append -
782 offsetof(struct imap_cmd, next));
783 if (cmdp->cb.data) {
95c53908 784 n = socket_write(&imap->buf.sock, cmdp->cb.data, cmdp->cb.dlen);
6a83d902 785 FREE_AND_NULL(cmdp->cb.data);
f2561fda
MM
786 if (n != (int)cmdp->cb.dlen)
787 return RESP_BAD;
788 } else if (cmdp->cb.cont) {
ec9e358a 789 if (cmdp->cb.cont(ctx, cmd))
f2561fda
MM
790 return RESP_BAD;
791 } else {
95c53908 792 fprintf(stderr, "IMAP error: unexpected command continuation request\n");
f2561fda
MM
793 return RESP_BAD;
794 }
95c53908 795 if (socket_write(&imap->buf.sock, "\r\n", 2) != 2)
f2561fda
MM
796 return RESP_BAD;
797 if (!cmdp->cb.cont)
798 imap->literal_pending = 0;
799 if (!tcmd)
800 return DRV_OK;
801 } else {
95c53908 802 tag = atoi(arg);
f2561fda
MM
803 for (pcmdp = &imap->in_progress; (cmdp = *pcmdp); pcmdp = &cmdp->next)
804 if (cmdp->tag == tag)
805 goto gottag;
95c53908 806 fprintf(stderr, "IMAP error: unexpected tag %s\n", arg);
f2561fda 807 return RESP_BAD;
9f1ad541 808 gottag:
f2561fda
MM
809 if (!(*pcmdp = cmdp->next))
810 imap->in_progress_append = pcmdp;
811 imap->num_in_progress--;
812 if (cmdp->cb.cont || cmdp->cb.data)
813 imap->literal_pending = 0;
95c53908 814 arg = next_arg(&cmd);
f54c5bd4
RS
815 if (!arg)
816 arg = "";
95c53908 817 if (!strcmp("OK", arg))
f2561fda
MM
818 resp = DRV_OK;
819 else {
e0d8e308 820 if (!strcmp("NO", arg))
f2561fda 821 resp = RESP_NO;
e0d8e308 822 else /*if (!strcmp("BAD", arg))*/
f2561fda 823 resp = RESP_BAD;
95c53908 824 fprintf(stderr, "IMAP command '%s' returned response (%s) - %s\n",
ba9b9e12 825 !starts_with(cmdp->cmd, "LOGIN") ?
f2561fda
MM
826 cmdp->cmd : "LOGIN <user> <pass>",
827 arg, cmd ? cmd : "");
828 }
95c53908 829 if ((resp2 = parse_response_code(ctx, &cmdp->cb, cmd)) > resp)
f2561fda 830 resp = resp2;
95c53908
RS
831 free(cmdp->cb.data);
832 free(cmdp->cmd);
833 free(cmdp);
f2561fda
MM
834 if (!tcmd || tcmd == cmdp)
835 return resp;
836 }
837 }
838 /* not reached */
839}
840
9f1ad541 841static void imap_close_server(struct imap_store *ictx)
f2561fda 842{
9f1ad541 843 struct imap *imap = ictx->imap;
f2561fda 844
7a7796e9 845 if (imap->buf.sock.fd[0] != -1) {
95c53908
RS
846 imap_exec(ictx, NULL, "LOGOUT");
847 socket_shutdown(&imap->buf.sock);
f2561fda 848 }
95c53908 849 free(imap);
f2561fda
MM
850}
851
fe47e1df 852static void imap_close_store(struct imap_store *ctx)
f2561fda 853{
fe47e1df 854 imap_close_server(ctx);
95c53908 855 free(ctx);
f2561fda
MM
856}
857
ae9c606e
HM
858#ifndef NO_OPENSSL
859
860/*
861 * hexchar() and cram() functions are based on the code from the isync
65175d9e 862 * project (https://isync.sourceforge.io/).
ae9c606e
HM
863 */
864static char hexchar(unsigned int b)
f2561fda 865{
ae9c606e 866 return b < 10 ? '0' + b : 'a' + (b - 10);
f2561fda
MM
867}
868
42c78a21 869#define ENCODED_SIZE(n) (4 * DIV_ROUND_UP((n), 3))
ae9c606e 870static char *cram(const char *challenge_64, const char *user, const char *pass)
f2561fda 871{
ae9c606e 872 int i, resp_len, encoded_len, decoded_len;
ae9c606e
HM
873 unsigned char hash[16];
874 char hex[33];
875 char *response, *response_64, *challenge;
876
877 /*
878 * length of challenge_64 (i.e. base-64 encoded string) is a good
879 * enough upper bound for challenge (decoded result).
880 */
881 encoded_len = strlen(challenge_64);
882 challenge = xmalloc(encoded_len);
883 decoded_len = EVP_DecodeBlock((unsigned char *)challenge,
884 (unsigned char *)challenge_64, encoded_len);
885 if (decoded_len < 0)
886 die("invalid challenge %s", challenge_64);
1ed2c7b1
KY
887 if (!HMAC(EVP_md5(), pass, strlen(pass), (unsigned char *)challenge, decoded_len, hash, NULL))
888 die("HMAC error");
ae9c606e
HM
889
890 hex[32] = 0;
891 for (i = 0; i < 16; i++) {
892 hex[2 * i] = hexchar((hash[i] >> 4) & 0xf);
893 hex[2 * i + 1] = hexchar(hash[i] & 0xf);
894 }
895
896 /* response: "<user> <digest in hex>" */
75faa45a 897 response = xstrfmt("%s %s", user, hex);
eb94ee7f 898 resp_len = strlen(response);
ae9c606e 899
3733e694 900 response_64 = xmallocz(ENCODED_SIZE(resp_len));
ae9c606e
HM
901 encoded_len = EVP_EncodeBlock((unsigned char *)response_64,
902 (unsigned char *)response, resp_len);
903 if (encoded_len < 0)
904 die("EVP_EncodeBlock error");
ae9c606e
HM
905 return (char *)response_64;
906}
907
908#else
909
2c3c3d88
JK
910static char *cram(const char *challenge_64 UNUSED,
911 const char *user UNUSED,
912 const char *pass UNUSED)
ae9c606e
HM
913{
914 die("If you want to use CRAM-MD5 authenticate method, "
915 "you have to build git-imap-send with OpenSSL library.");
916}
917
918#endif
919
ec9e358a 920static int auth_cram_md5(struct imap_store *ctx, const char *prompt)
ae9c606e
HM
921{
922 int ret;
923 char *response;
924
925 response = cram(prompt, server.user, server.pass);
926
927 ret = socket_write(&ctx->imap->buf.sock, response, strlen(response));
928 if (ret != strlen(response))
82247e9b 929 return error("IMAP error: sending response failed");
ae9c606e
HM
930
931 free(response);
932
933 return 0;
934}
935
690307f3
NMC
936static void server_fill_credential(struct imap_server_conf *srvc, struct credential *cred)
937{
938 if (srvc->user && srvc->pass)
939 return;
940
941 cred->protocol = xstrdup(srvc->use_ssl ? "imaps" : "imap");
942 cred->host = xstrdup(srvc->host);
943
944 cred->username = xstrdup_or_null(srvc->user);
945 cred->password = xstrdup_or_null(srvc->pass);
946
947 credential_fill(cred);
948
949 if (!srvc->user)
950 srvc->user = xstrdup(cred->username);
951 if (!srvc->pass)
952 srvc->pass = xstrdup(cred->password);
953}
954
50212361 955static struct imap_store *imap_open_store(struct imap_server_conf *srvc, const char *folder)
f2561fda 956{
791643a8 957 struct credential cred = CREDENTIAL_INIT;
9f1ad541
JH
958 struct imap_store *ctx;
959 struct imap *imap;
f2561fda 960 char *arg, *rsp;
c94d2dd0 961 int s = -1, preauth;
f2561fda 962
ca56dadb 963 CALLOC_ARRAY(ctx, 1);
f2561fda 964
ca56dadb 965 ctx->imap = CALLOC_ARRAY(imap, 1);
7a7796e9 966 imap->buf.sock.fd[0] = imap->buf.sock.fd[1] = -1;
f2561fda
MM
967 imap->in_progress_append = &imap->in_progress;
968
969 /* open connection to IMAP server */
970
971 if (srvc->tunnel) {
d3180279 972 struct child_process tunnel = CHILD_PROCESS_INIT;
f2561fda 973
c94d2dd0 974 imap_info("Starting tunnel '%s'... ", srvc->tunnel);
f2561fda 975
ef8d7ac4 976 strvec_push(&tunnel.args, srvc->tunnel);
ac0ba18d 977 tunnel.use_shell = 1;
c94d2dd0
EFL
978 tunnel.in = -1;
979 tunnel.out = -1;
980 if (start_command(&tunnel))
f9dc5d65 981 die("cannot start proxy %s", srvc->tunnel);
f2561fda 982
c94d2dd0
EFL
983 imap->buf.sock.fd[0] = tunnel.out;
984 imap->buf.sock.fd[1] = tunnel.in;
f2561fda 985
95c53908 986 imap_info("ok\n");
f2561fda 987 } else {
94ad2437
BK
988#ifndef NO_IPV6
989 struct addrinfo hints, *ai0, *ai;
990 int gai;
991 char portstr[6];
992
1a168e5c 993 xsnprintf(portstr, sizeof(portstr), "%d", srvc->port);
94ad2437
BK
994
995 memset(&hints, 0, sizeof(hints));
996 hints.ai_socktype = SOCK_STREAM;
997 hints.ai_protocol = IPPROTO_TCP;
f2561fda 998
94ad2437
BK
999 imap_info("Resolving %s... ", srvc->host);
1000 gai = getaddrinfo(srvc->host, portstr, &hints, &ai);
1001 if (gai) {
1002 fprintf(stderr, "getaddrinfo: %s\n", gai_strerror(gai));
1003 goto bail;
f2561fda 1004 }
94ad2437 1005 imap_info("ok\n");
f2561fda 1006
94ad2437
BK
1007 for (ai0 = ai; ai; ai = ai->ai_next) {
1008 char addr[NI_MAXHOST];
f2561fda 1009
94ad2437
BK
1010 s = socket(ai->ai_family, ai->ai_socktype,
1011 ai->ai_protocol);
1012 if (s < 0)
1013 continue;
f2561fda 1014
94ad2437
BK
1015 getnameinfo(ai->ai_addr, ai->ai_addrlen, addr,
1016 sizeof(addr), NULL, 0, NI_NUMERICHOST);
1017 imap_info("Connecting to [%s]:%s... ", addr, portstr);
1018
1019 if (connect(s, ai->ai_addr, ai->ai_addrlen) < 0) {
1020 close(s);
1021 s = -1;
1022 perror("connect");
1023 continue;
1024 }
1025
1026 break;
1027 }
1028 freeaddrinfo(ai0);
1029#else /* NO_IPV6 */
1030 struct hostent *he;
1031 struct sockaddr_in addr;
1032
95c53908
RS
1033 memset(&addr, 0, sizeof(addr));
1034 addr.sin_port = htons(srvc->port);
f2561fda
MM
1035 addr.sin_family = AF_INET;
1036
95c53908
RS
1037 imap_info("Resolving %s... ", srvc->host);
1038 he = gethostbyname(srvc->host);
f2561fda 1039 if (!he) {
95c53908 1040 perror("gethostbyname");
f2561fda
MM
1041 goto bail;
1042 }
95c53908 1043 imap_info("ok\n");
f2561fda
MM
1044
1045 addr.sin_addr.s_addr = *((int *) he->h_addr_list[0]);
1046
95c53908 1047 s = socket(PF_INET, SOCK_STREAM, 0);
f2561fda 1048
95c53908
RS
1049 imap_info("Connecting to %s:%hu... ", inet_ntoa(addr.sin_addr), ntohs(addr.sin_port));
1050 if (connect(s, (struct sockaddr *)&addr, sizeof(addr))) {
1051 close(s);
94ad2437 1052 s = -1;
95c53908 1053 perror("connect");
94ad2437
BK
1054 }
1055#endif
1056 if (s < 0) {
1057 fputs("Error: unable to connect to server.\n", stderr);
f2561fda
MM
1058 goto bail;
1059 }
f2561fda 1060
7a7796e9
EFL
1061 imap->buf.sock.fd[0] = s;
1062 imap->buf.sock.fd[1] = dup(s);
f2561fda 1063
684ec6c6
RS
1064 if (srvc->use_ssl &&
1065 ssl_socket_connect(&imap->buf.sock, 0, srvc->ssl_verify)) {
1066 close(s);
1067 goto bail;
1068 }
95c53908 1069 imap_info("ok\n");
f2561fda
MM
1070 }
1071
1072 /* read the greeting string */
95c53908
RS
1073 if (buffer_gets(&imap->buf, &rsp)) {
1074 fprintf(stderr, "IMAP error: no greeting response\n");
f2561fda
MM
1075 goto bail;
1076 }
95c53908
RS
1077 arg = next_arg(&rsp);
1078 if (!arg || *arg != '*' || (arg = next_arg(&rsp)) == NULL) {
1079 fprintf(stderr, "IMAP error: invalid greeting response\n");
f2561fda
MM
1080 goto bail;
1081 }
1082 preauth = 0;
95c53908 1083 if (!strcmp("PREAUTH", arg))
f2561fda 1084 preauth = 1;
95c53908
RS
1085 else if (strcmp("OK", arg) != 0) {
1086 fprintf(stderr, "IMAP error: unknown greeting response\n");
f2561fda
MM
1087 goto bail;
1088 }
95c53908
RS
1089 parse_response_code(ctx, NULL, rsp);
1090 if (!imap->caps && imap_exec(ctx, NULL, "CAPABILITY") != RESP_OK)
f2561fda
MM
1091 goto bail;
1092
1093 if (!preauth) {
684ec6c6
RS
1094#ifndef NO_OPENSSL
1095 if (!srvc->use_ssl && CAP(STARTTLS)) {
d27da38a 1096 if (imap_exec(ctx, NULL, "STARTTLS") != RESP_OK)
684ec6c6
RS
1097 goto bail;
1098 if (ssl_socket_connect(&imap->buf.sock, 1,
1099 srvc->ssl_verify))
1100 goto bail;
1101 /* capabilities may have changed, so get the new capabilities */
d27da38a 1102 if (imap_exec(ctx, NULL, "CAPABILITY") != RESP_OK)
684ec6c6
RS
1103 goto bail;
1104 }
1105#endif
95c53908 1106 imap_info("Logging in...\n");
690307f3 1107 server_fill_credential(srvc, &cred);
791643a8 1108
ae9c606e
HM
1109 if (srvc->auth_method) {
1110 struct imap_cmd_cb cb;
1111
1112 if (!strcmp(srvc->auth_method, "CRAM-MD5")) {
1113 if (!CAP(AUTH_CRAM_MD5)) {
6d1fbf88 1114 fprintf(stderr, "You specified "
ae9c606e
HM
1115 "CRAM-MD5 as authentication method, "
1116 "but %s doesn't support it.\n", srvc->host);
1117 goto bail;
1118 }
1119 /* CRAM-MD5 */
1120
1121 memset(&cb, 0, sizeof(cb));
1122 cb.cont = auth_cram_md5;
1123 if (imap_exec(ctx, &cb, "AUTHENTICATE CRAM-MD5") != RESP_OK) {
1124 fprintf(stderr, "IMAP error: AUTHENTICATE CRAM-MD5 failed\n");
1125 goto bail;
1126 }
1127 } else {
1128 fprintf(stderr, "Unknown authentication method:%s\n", srvc->host);
1129 goto bail;
1130 }
1131 } else {
6c50a575
KY
1132 if (CAP(NOLOGIN)) {
1133 fprintf(stderr, "Skipping account %s@%s, server forbids LOGIN\n",
1134 srvc->user, srvc->host);
1135 goto bail;
1136 }
10439d89
CW
1137 if (!imap->buf.sock.ssl)
1138 imap_warn("*** IMAP Warning *** Password is being "
1139 "sent in the clear\n");
ae9c606e
HM
1140 if (imap_exec(ctx, NULL, "LOGIN \"%s\" \"%s\"", srvc->user, srvc->pass) != RESP_OK) {
1141 fprintf(stderr, "IMAP error: LOGIN failed\n");
1142 goto bail;
1143 }
f2561fda
MM
1144 }
1145 } /* !preauth */
1146
791643a8
DA
1147 if (cred.username)
1148 credential_approve(&cred);
1149 credential_clear(&cred);
1150
e0d8e308
TF
1151 /* check the target mailbox exists */
1152 ctx->name = folder;
1153 switch (imap_exec(ctx, NULL, "EXAMINE \"%s\"", ctx->name)) {
1154 case RESP_OK:
1155 /* ok */
1156 break;
1157 case RESP_BAD:
1158 fprintf(stderr, "IMAP error: could not check mailbox\n");
1159 goto out;
1160 case RESP_NO:
1161 if (imap_exec(ctx, NULL, "CREATE \"%s\"", ctx->name) == RESP_OK) {
1162 imap_info("Created missing mailbox\n");
1163 } else {
1164 fprintf(stderr, "IMAP error: could not create missing mailbox\n");
1165 goto out;
1166 }
1167 break;
1168 }
1169
f2561fda 1170 ctx->prefix = "";
fe47e1df 1171 return ctx;
f2561fda 1172
9f1ad541 1173bail:
791643a8
DA
1174 if (cred.username)
1175 credential_reject(&cred);
1176 credential_clear(&cred);
1177
e0d8e308 1178 out:
fe47e1df 1179 imap_close_store(ctx);
5142db69 1180 return NULL;
f2561fda
MM
1181}
1182
3691031c
MH
1183/*
1184 * Insert CR characters as necessary in *msg to ensure that every LF
1185 * character in *msg is preceded by a CR.
1186 */
f035ab62 1187static void lf_to_crlf(struct strbuf *msg)
f2561fda 1188{
59256315 1189 char *new_msg;
3691031c
MH
1190 size_t i, j;
1191 char lastc;
1192
59256315 1193 /* First pass: tally, in j, the size of the new_msg string: */
3691031c
MH
1194 for (i = j = 0, lastc = '\0'; i < msg->len; i++) {
1195 if (msg->buf[i] == '\n' && lastc != '\r')
1196 j++; /* a CR will need to be added here */
1197 lastc = msg->buf[i];
1198 j++;
f2561fda 1199 }
67d17630 1200
59256315 1201 new_msg = xmallocz(j);
3691031c
MH
1202
1203 /*
59256315 1204 * Second pass: write the new_msg string. Note that this loop is
3691031c
MH
1205 * otherwise identical to the first pass.
1206 */
1207 for (i = j = 0, lastc = '\0'; i < msg->len; i++) {
1208 if (msg->buf[i] == '\n' && lastc != '\r')
59256315
BW
1209 new_msg[j++] = '\r';
1210 lastc = new_msg[j++] = msg->buf[i];
f2561fda 1211 }
59256315 1212 strbuf_attach(msg, new_msg, j, j + 1);
67d17630 1213}
f2561fda 1214
f035ab62
MH
1215/*
1216 * Store msg to IMAP. Also detach and free the data from msg->data,
1217 * leaving msg->data empty.
1218 */
fe47e1df 1219static int imap_store_msg(struct imap_store *ctx, struct strbuf *msg)
f2561fda 1220{
9f1ad541 1221 struct imap *imap = ctx->imap;
f2561fda 1222 struct imap_cmd_cb cb;
f2561fda 1223 const char *prefix, *box;
719125c5 1224 int ret;
f2561fda 1225
cbc60761 1226 lf_to_crlf(msg);
95c53908 1227 memset(&cb, 0, sizeof(cb));
f2561fda 1228
cbc60761
MH
1229 cb.dlen = msg->len;
1230 cb.data = strbuf_detach(msg, NULL);
f2561fda 1231
636fd66b 1232 box = ctx->name;
3a7cba95 1233 prefix = !strcmp(box, "INBOX") ? "" : ctx->prefix;
719125c5 1234 ret = imap_exec_m(ctx, &cb, "APPEND \"%s%s\" ", prefix, box);
f2561fda
MM
1235 imap->caps = imap->rcaps;
1236 if (ret != DRV_OK)
1237 return ret;
f2561fda
MM
1238
1239 return DRV_OK;
1240}
1241
f035ab62 1242static void wrap_in_html(struct strbuf *msg)
c64d84f1
JW
1243{
1244 struct strbuf buf = STRBUF_INIT;
c64d84f1
JW
1245 static char *content_type = "Content-Type: text/html;\n";
1246 static char *pre_open = "<pre>\n";
1247 static char *pre_close = "</pre>\n";
118a68f9
MH
1248 const char *body = strstr(msg->buf, "\n\n");
1249
1250 if (!body)
1251 return; /* Headers but no body; no wrapping needed */
1252
1253 body += 2;
1254
1255 strbuf_add(&buf, msg->buf, body - msg->buf - 1);
1256 strbuf_addstr(&buf, content_type);
1257 strbuf_addch(&buf, '\n');
1258 strbuf_addstr(&buf, pre_open);
1259 strbuf_addstr_xml_quoted(&buf, body);
c64d84f1 1260 strbuf_addstr(&buf, pre_close);
118a68f9 1261
f035ab62
MH
1262 strbuf_release(msg);
1263 *msg = buf;
c64d84f1
JW
1264}
1265
3a34e626 1266static int count_messages(struct strbuf *all_msgs)
f2561fda
MM
1267{
1268 int count = 0;
3a34e626 1269 char *p = all_msgs->buf;
f2561fda
MM
1270
1271 while (1) {
59556548 1272 if (starts_with(p, "From ")) {
4916c8f9
RR
1273 p = strstr(p+5, "\nFrom: ");
1274 if (!p) break;
1275 p = strstr(p+7, "\nDate: ");
1276 if (!p) break;
1277 p = strstr(p+7, "\nSubject: ");
1278 if (!p) break;
1279 p += 10;
f2561fda 1280 count++;
f2561fda 1281 }
95c53908 1282 p = strstr(p+5, "\nFrom ");
f2561fda
MM
1283 if (!p)
1284 break;
1285 p++;
1286 }
1287 return count;
1288}
1289
f035ab62
MH
1290/*
1291 * Copy the next message from all_msgs, starting at offset *ofs, to
1292 * msg. Update *ofs to the start of the following message. Return
1293 * true iff a message was successfully copied.
1294 */
1295static int split_msg(struct strbuf *all_msgs, struct strbuf *msg, int *ofs)
f2561fda
MM
1296{
1297 char *p, *data;
f035ab62 1298 size_t len;
f2561fda 1299
f2561fda
MM
1300 if (*ofs >= all_msgs->len)
1301 return 0;
1302
3a34e626 1303 data = &all_msgs->buf[*ofs];
f035ab62 1304 len = all_msgs->len - *ofs;
f2561fda 1305
59556548 1306 if (len < 5 || !starts_with(data, "From "))
f2561fda
MM
1307 return 0;
1308
95c53908 1309 p = strchr(data, '\n');
e0b08307 1310 if (p) {
f035ab62
MH
1311 p++;
1312 len -= p - data;
1313 *ofs += p - data;
e0b08307
MA
1314 data = p;
1315 }
1316
95c53908 1317 p = strstr(data, "\nFrom ");
f2561fda 1318 if (p)
f035ab62 1319 len = &p[1] - data;
f2561fda 1320
f035ab62
MH
1321 strbuf_add(msg, data, len);
1322 *ofs += len;
a6080a0a 1323 return 1;
f2561fda
MM
1324}
1325
a4e7e317
GC
1326static int git_imap_config(const char *var, const char *val,
1327 const struct config_context *ctx, void *cb)
f2561fda 1328{
ef7e1d0c 1329
50212361
NMC
1330 if (!strcmp("imap.sslverify", var))
1331 server.ssl_verify = git_config_bool(var, val);
1332 else if (!strcmp("imap.preformattedhtml", var))
1333 server.use_html = git_config_bool(var, val);
1334 else if (!strcmp("imap.folder", var))
1335 return git_config_string(&server.folder, var, val);
1336 else if (!strcmp("imap.user", var))
1337 return git_config_string(&server.user, var, val);
1338 else if (!strcmp("imap.pass", var))
1339 return git_config_string(&server.pass, var, val);
1340 else if (!strcmp("imap.tunnel", var))
1341 return git_config_string(&server.tunnel, var, val);
1342 else if (!strcmp("imap.authmethod", var))
1343 return git_config_string(&server.auth_method, var, val);
1344 else if (!strcmp("imap.port", var))
8868b1eb 1345 server.port = git_config_int(var, val, ctx->kvi);
50212361 1346 else if (!strcmp("imap.host", var)) {
ef7e1d0c 1347 if (!val) {
92cecce0 1348 return config_error_nonbool(var);
ef7e1d0c
TA
1349 } else {
1350 if (starts_with(val, "imap:"))
1351 val += 5;
1352 else if (starts_with(val, "imaps:")) {
1353 val += 6;
1354 server.use_ssl = 1;
1355 }
1356 if (starts_with(val, "//"))
1357 val += 2;
1358 server.host = xstrdup(val);
f2561fda 1359 }
50212361 1360 } else
a4e7e317 1361 return git_default_config(var, val, ctx, cb);
ae9c606e 1362
50212361 1363 return 0;
f2561fda
MM
1364}
1365
1e16b255
BR
1366static int append_msgs_to_imap(struct imap_server_conf *server,
1367 struct strbuf* all_msgs, int total)
f2561fda 1368{
cbc60761 1369 struct strbuf msg = STRBUF_INIT;
fe47e1df 1370 struct imap_store *ctx = NULL;
f2561fda
MM
1371 int ofs = 0;
1372 int r;
1e16b255
BR
1373 int n = 0;
1374
1375 ctx = imap_open_store(server, server->folder);
1376 if (!ctx) {
1377 fprintf(stderr, "failed to open store\n");
1378 return 1;
1379 }
1380 ctx->name = server->folder;
1381
1382 fprintf(stderr, "sending %d message%s\n", total, (total != 1) ? "s" : "");
1383 while (1) {
1384 unsigned percent = n * 100 / total;
1385
1386 fprintf(stderr, "%4u%% (%d/%d) done\r", percent, n, total);
1387
1388 if (!split_msg(all_msgs, &msg, &ofs))
1389 break;
1390 if (server->use_html)
1391 wrap_in_html(&msg);
1392 r = imap_store_msg(ctx, &msg);
1393 if (r != DRV_OK)
1394 break;
1395 n++;
1396 }
1397 fprintf(stderr, "\n");
1398
1399 imap_close_store(ctx);
1400
1401 return 0;
1402}
1403
1404#ifdef USE_CURL_FOR_IMAP_SEND
19079b3e 1405static CURL *setup_curl(struct imap_server_conf *srvc, struct credential *cred)
1e16b255
BR
1406{
1407 CURL *curl;
1408 struct strbuf path = STRBUF_INIT;
77eac3f8 1409 char *uri_encoded_folder;
1e16b255
BR
1410
1411 if (curl_global_init(CURL_GLOBAL_ALL) != CURLE_OK)
1412 die("curl_global_init failed");
1413
1414 curl = curl_easy_init();
1415
1416 if (!curl)
1417 die("curl_easy_init failed");
1418
84d689a8
JK
1419 server_fill_credential(srvc, cred);
1420 curl_easy_setopt(curl, CURLOPT_USERNAME, srvc->user);
1421 curl_easy_setopt(curl, CURLOPT_PASSWORD, srvc->pass);
1e16b255 1422
84d689a8
JK
1423 strbuf_addstr(&path, srvc->use_ssl ? "imaps://" : "imap://");
1424 strbuf_addstr(&path, srvc->host);
1e16b255
BR
1425 if (!path.len || path.buf[path.len - 1] != '/')
1426 strbuf_addch(&path, '/');
77eac3f8 1427
84d689a8 1428 uri_encoded_folder = curl_easy_escape(curl, srvc->folder, 0);
77eac3f8
NMC
1429 if (!uri_encoded_folder)
1430 die("failed to encode server folder");
1431 strbuf_addstr(&path, uri_encoded_folder);
1432 curl_free(uri_encoded_folder);
1e16b255
BR
1433
1434 curl_easy_setopt(curl, CURLOPT_URL, path.buf);
1435 strbuf_release(&path);
84d689a8 1436 curl_easy_setopt(curl, CURLOPT_PORT, srvc->port);
1e16b255 1437
84d689a8 1438 if (srvc->auth_method) {
e4ff3b67 1439#ifndef GIT_CURL_HAVE_CURLOPT_LOGIN_OPTIONS
71d92575
JS
1440 warning("No LOGIN_OPTIONS support in this cURL version");
1441#else
1e16b255
BR
1442 struct strbuf auth = STRBUF_INIT;
1443 strbuf_addstr(&auth, "AUTH=");
84d689a8 1444 strbuf_addstr(&auth, srvc->auth_method);
1e16b255
BR
1445 curl_easy_setopt(curl, CURLOPT_LOGIN_OPTIONS, auth.buf);
1446 strbuf_release(&auth);
71d92575 1447#endif
1e16b255
BR
1448 }
1449
84d689a8 1450 if (!srvc->use_ssl)
230c09c0 1451 curl_easy_setopt(curl, CURLOPT_USE_SSL, (long)CURLUSESSL_TRY);
1e16b255 1452
84d689a8
JK
1453 curl_easy_setopt(curl, CURLOPT_SSL_VERIFYPEER, srvc->ssl_verify);
1454 curl_easy_setopt(curl, CURLOPT_SSL_VERIFYHOST, srvc->ssl_verify);
1e16b255
BR
1455
1456 curl_easy_setopt(curl, CURLOPT_READFUNCTION, fread_buffer);
1457
1458 curl_easy_setopt(curl, CURLOPT_UPLOAD, 1L);
1459
d47e55da 1460 if (0 < verbosity || getenv("GIT_CURL_VERBOSE"))
7167a62b 1461 http_trace_curl_no_data();
73e57aaf 1462 setup_curl_trace(curl);
1e16b255
BR
1463
1464 return curl;
1465}
1466
1467static int curl_append_msgs_to_imap(struct imap_server_conf *server,
3b335762
NTND
1468 struct strbuf* all_msgs, int total)
1469{
1e16b255
BR
1470 int ofs = 0;
1471 int n = 0;
1472 struct buffer msgbuf = { STRBUF_INIT, 0 };
1473 CURL *curl;
1474 CURLcode res = CURLE_OK;
19079b3e 1475 struct credential cred = CREDENTIAL_INIT;
1e16b255 1476
19079b3e 1477 curl = setup_curl(server, &cred);
1e16b255
BR
1478 curl_easy_setopt(curl, CURLOPT_READDATA, &msgbuf);
1479
1480 fprintf(stderr, "sending %d message%s\n", total, (total != 1) ? "s" : "");
1481 while (1) {
1482 unsigned percent = n * 100 / total;
1483 int prev_len;
1484
1485 fprintf(stderr, "%4u%% (%d/%d) done\r", percent, n, total);
1486
1487 prev_len = msgbuf.buf.len;
1488 if (!split_msg(all_msgs, &msgbuf.buf, &ofs))
1489 break;
1490 if (server->use_html)
1491 wrap_in_html(&msgbuf.buf);
1492 lf_to_crlf(&msgbuf.buf);
1493
1494 curl_easy_setopt(curl, CURLOPT_INFILESIZE_LARGE,
1495 (curl_off_t)(msgbuf.buf.len-prev_len));
1496
1497 res = curl_easy_perform(curl);
1498
1499 if(res != CURLE_OK) {
1500 fprintf(stderr, "curl_easy_perform() failed: %s\n",
1501 curl_easy_strerror(res));
1502 break;
1503 }
1504
1505 n++;
1506 }
1507 fprintf(stderr, "\n");
1508
1509 curl_easy_cleanup(curl);
1510 curl_global_cleanup();
1511
19079b3e
NMC
1512 if (cred.username) {
1513 if (res == CURLE_OK)
1514 credential_approve(&cred);
19079b3e 1515 else if (res == CURLE_LOGIN_DENIED)
19079b3e
NMC
1516 credential_reject(&cred);
1517 }
1518
1519 credential_clear(&cred);
1520
200bc38b 1521 return res != CURLE_OK;
1e16b255
BR
1522}
1523#endif
1524
3f2e2297 1525int cmd_main(int argc, const char **argv)
1e16b255
BR
1526{
1527 struct strbuf all_msgs = STRBUF_INIT;
1528 int total;
a0406b94 1529 int nongit_ok;
f2561fda 1530
a0406b94 1531 setup_git_directory_gently(&nongit_ok);
50212361 1532 git_config(git_imap_config, NULL);
f2561fda 1533
f1a35295
BR
1534 argc = parse_options(argc, (const char **)argv, "", imap_send_options, imap_send_usage, 0);
1535
1536 if (argc)
1537 usage_with_options(imap_send_usage, imap_send_options);
1538
1e16b255
BR
1539#ifndef USE_CURL_FOR_IMAP_SEND
1540 if (use_curl) {
dcd01ea1 1541 warning("--curl not supported in this build");
1e16b255
BR
1542 use_curl = 0;
1543 }
dcd01ea1
KM
1544#elif defined(NO_OPENSSL)
1545 if (!use_curl) {
1546 warning("--no-curl not supported in this build");
1547 use_curl = 1;
1548 }
1e16b255
BR
1549#endif
1550
684ec6c6
RS
1551 if (!server.port)
1552 server.port = server.use_ssl ? 993 : 143;
f2561fda 1553
39180571 1554 if (!server.folder) {
95c53908 1555 fprintf(stderr, "no imap store specified\n");
f2561fda
MM
1556 return 1;
1557 }
5b67b8e2 1558 if (!server.host) {
34b5cd1f 1559 if (!server.tunnel) {
95c53908 1560 fprintf(stderr, "no imap host specified\n");
34b5cd1f
JK
1561 return 1;
1562 }
1563 server.host = "tunnel";
5b67b8e2 1564 }
f2561fda
MM
1565
1566 /* read the messages */
351bca2d
ÆAB
1567 if (strbuf_read(&all_msgs, 0, 0) < 0) {
1568 error_errno(_("could not read from stdin"));
6360bee4
MH
1569 return 1;
1570 }
1571
1572 if (all_msgs.len == 0) {
9f1ad541 1573 fprintf(stderr, "nothing to send\n");
f2561fda
MM
1574 return 1;
1575 }
1576
95c53908 1577 total = count_messages(&all_msgs);
1cd88cc9 1578 if (!total) {
9f1ad541 1579 fprintf(stderr, "no messages to send\n");
f2561fda
MM
1580 return 1;
1581 }
1582
1583 /* write it to the imap server */
f035ab62 1584
1e16b255
BR
1585 if (server.tunnel)
1586 return append_msgs_to_imap(&server, &all_msgs, total);
f2561fda 1587
1e16b255
BR
1588#ifdef USE_CURL_FOR_IMAP_SEND
1589 if (use_curl)
1590 return curl_append_msgs_to_imap(&server, &all_msgs, total);
1591#endif
f2561fda 1592
1e16b255 1593 return append_msgs_to_imap(&server, &all_msgs, total);
f2561fda 1594}