Compare commits

..

No commits in common. "753e7b81b6cca16c374f1ca1499ff87208b11825" and "6de5a5215d99659ab8bf4bf623f4ff9eb7fb3f65" have entirely different histories.

3 changed files with 23 additions and 41 deletions

View file

@ -14,7 +14,7 @@
<PackageVersion Include="Downloader" Version="4.0.3" /> <PackageVersion Include="Downloader" Version="4.0.3" />
<PackageVersion Include="H.NotifyIcon.Wpf" Version="2.3.2" /> <PackageVersion Include="H.NotifyIcon.Wpf" Version="2.3.2" />
<PackageVersion Include="MaterialDesignThemes" Version="5.3.0" /> <PackageVersion Include="MaterialDesignThemes" Version="5.3.0" />
<PackageVersion Include="MessageBox.Avalonia" Version="3.3.0" /> <PackageVersion Include="MessageBox.Avalonia" Version="3.2.0" />
<PackageVersion Include="QRCoder" Version="1.7.0" /> <PackageVersion Include="QRCoder" Version="1.7.0" />
<PackageVersion Include="ReactiveUI" Version="22.2.1" /> <PackageVersion Include="ReactiveUI" Version="22.2.1" />
<PackageVersion Include="ReactiveUI.Fody" Version="19.5.41" /> <PackageVersion Include="ReactiveUI.Fody" Version="19.5.41" />

View file

@ -202,17 +202,14 @@ public class CertPemManager
/// <summary> /// <summary>
/// Get certificate in PEM format from a server with CA pinning validation /// Get certificate in PEM format from a server with CA pinning validation
/// </summary> /// </summary>
public async Task<(string?, string?)> GetCertPemAsync(string target, string serverName, int timeout = 10) public async Task<string?> GetCertPemAsync(string target, string serverName)
{ {
try try
{ {
var (domain, _, port, _) = Utils.ParseUrl(target); var (domain, _, port, _) = Utils.ParseUrl(target);
using var cts = new CancellationTokenSource();
cts.CancelAfter(TimeSpan.FromSeconds(timeout));
using var client = new TcpClient(); using var client = new TcpClient();
await client.ConnectAsync(domain, port > 0 ? port : 443, cts.Token); await client.ConnectAsync(domain, port > 0 ? port : 443);
using var ssl = new SslStream(client.GetStream(), false, ValidateServerCertificate); using var ssl = new SslStream(client.GetStream(), false, ValidateServerCertificate);
@ -221,39 +218,31 @@ public class CertPemManager
var remote = ssl.RemoteCertificate; var remote = ssl.RemoteCertificate;
if (remote == null) if (remote == null)
{ {
return (null, null); return null;
} }
var leaf = new X509Certificate2(remote); var leaf = new X509Certificate2(remote);
return (ExportCertToPem(leaf), null); return ExportCertToPem(leaf);
}
catch (OperationCanceledException)
{
Logging.SaveLog(_tag, new TimeoutException($"Connection timeout after {timeout} seconds"));
return (null, $"Connection timeout after {timeout} seconds");
} }
catch (Exception ex) catch (Exception ex)
{ {
Logging.SaveLog(_tag, ex); Logging.SaveLog(_tag, ex);
return (null, ex.Message); return null;
} }
} }
/// <summary> /// <summary>
/// Get certificate chain in PEM format from a server with CA pinning validation /// Get certificate chain in PEM format from a server with CA pinning validation
/// </summary> /// </summary>
public async Task<(List<string>, string?)> GetCertChainPemAsync(string target, string serverName, int timeout = 10) public async Task<List<string>> GetCertChainPemAsync(string target, string serverName)
{ {
var pemList = new List<string>();
try try
{ {
var pemList = new List<string>();
var (domain, _, port, _) = Utils.ParseUrl(target); var (domain, _, port, _) = Utils.ParseUrl(target);
using var cts = new CancellationTokenSource();
cts.CancelAfter(TimeSpan.FromSeconds(timeout));
using var client = new TcpClient(); using var client = new TcpClient();
await client.ConnectAsync(domain, port > 0 ? port : 443, cts.Token); await client.ConnectAsync(domain, port > 0 ? port : 443);
using var ssl = new SslStream(client.GetStream(), false, ValidateServerCertificate); using var ssl = new SslStream(client.GetStream(), false, ValidateServerCertificate);
@ -261,7 +250,7 @@ public class CertPemManager
if (ssl.RemoteCertificate is not X509Certificate2 certChain) if (ssl.RemoteCertificate is not X509Certificate2 certChain)
{ {
return (pemList, null); return pemList;
} }
var chain = new X509Chain(); var chain = new X509Chain();
@ -273,17 +262,12 @@ public class CertPemManager
pemList.Add(pem); pemList.Add(pem);
} }
return (pemList, null); return pemList;
}
catch (OperationCanceledException)
{
Logging.SaveLog(_tag, new TimeoutException($"Connection timeout after {timeout} seconds"));
return (pemList, $"Connection timeout after {timeout} seconds");
} }
catch (Exception ex) catch (Exception ex)
{ {
Logging.SaveLog(_tag, ex); Logging.SaveLog(_tag, ex);
return (pemList, ex.Message); return new List<string>();
} }
} }

View file

@ -146,8 +146,7 @@ public class AddServerViewModel : MyReactiveObject
{ {
domain += $":{SelectedSource.Port}"; domain += $":{SelectedSource.Port}";
} }
(Cert, _certError) = await CertPemManager.Instance.GetCertPemAsync(domain, serverName); Cert = await CertPemManager.Instance.GetCertPemAsync(domain, serverName);
UpdateCertTip();
} }
private async Task FetchCertChain() private async Task FetchCertChain()
@ -177,8 +176,7 @@ public class AddServerViewModel : MyReactiveObject
{ {
domain += $":{SelectedSource.Port}"; domain += $":{SelectedSource.Port}";
} }
(var certs, _certError) = await CertPemManager.Instance.GetCertChainPemAsync(domain, serverName); var certs = await CertPemManager.Instance.GetCertChainPemAsync(domain, serverName);
UpdateCertTip();
Cert = string.Join("\n", certs); Cert = string.Join("\n", certs);
} }
} }