1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
|
/*
Derived from source code of TrueCrypt 7.1a, which is
Copyright (c) 2008-2012 TrueCrypt Developers Association and which is governed
by the TrueCrypt License 3.0.
Modifications and additions to the original source code (contained in this file)
and all other portions of this file are Copyright (c) 2013-2017 IDRIX
and are governed by the Apache License 2.0 the full text of which is
contained in the file License.txt included in VeraCrypt binary and source
code distribution packages.
*/
#ifndef TC_HEADER_Volume_Volume
#define TC_HEADER_Volume_Volume
#include "Platform/Platform.h"
#include "Platform/StringConverter.h"
#include "EncryptionAlgorithm.h"
#include "EncryptionMode.h"
#include "Keyfile.h"
#include "VolumePassword.h"
#include "VolumeException.h"
#include "VolumeLayout.h"
namespace VeraCrypt
{
class VolumePath
{
public:
VolumePath () { }
VolumePath (const wstring &path) { Data = path; }
VolumePath (const FilesystemPath &path) { Data = path; }
bool operator== (const VolumePath &other) const { return Data == other.Data; }
bool operator!= (const VolumePath &other) const { return Data != other.Data; }
operator FilesystemPath () const { return FilesystemPath (Data); }
operator string () const { return StringConverter::ToSingle (Data); }
operator wstring () const { return Data; }
bool IsDevice () const { return FilesystemPath (Data).IsBlockDevice() || FilesystemPath (Data).IsCharacterDevice(); }
bool IsEmpty () const { return Data.empty(); }
wstring GetExtension () const
{
if (Data.empty() || (Data.size() == 1))
return L"";
else
{
size_t pos = Data.find_last_of (L'.');
if (pos == string::npos)
return L"";
return Data.substr (pos + 1);
}
}
protected:
wstring Data;
};
typedef list <VolumePath> VolumePathList;
struct VolumeHostType
{
enum Enum
{
Unknown,
File,
Device
};
};
struct VolumeProtection
{
enum Enum
{
None,
ReadOnly,
HiddenVolumeReadOnly
};
};
class Volume
{
public:
Volume ();
virtual ~Volume ();
void Close ();
shared_ptr <EncryptionAlgorithm> GetEncryptionAlgorithm () const;
shared_ptr <EncryptionMode> GetEncryptionMode () const;
shared_ptr <File> GetFile () const { return VolumeFile; }
shared_ptr <VolumeHeader> GetHeader () const { return Header; }
uint64 GetHeaderCreationTime () const { return Header->GetHeaderCreationTime(); }
uint64 GetHostSize () const { return VolumeHostSize; }
shared_ptr <VolumeLayout> GetLayout () const { return Layout; }
VolumePath GetPath () const { return VolumeFile->GetPath(); }
VolumeProtection::Enum GetProtectionType () const { return Protection; }
shared_ptr <Pkcs5Kdf> GetPkcs5Kdf () const { return Header->GetPkcs5Kdf(); }
uint32 GetSaltSize () const { return Header->GetSaltSize(); }
size_t GetSectorSize () const { return SectorSize; }
uint64 GetSize () const { return VolumeDataSize; }
uint64 GetEncryptedSize () const { return EncryptedDataSize; }
uint64 GetTopWriteOffset () const { return TopWriteOffset; }
uint64 GetTotalDataRead () const { return TotalDataRead; }
uint64 GetTotalDataWritten () const { return TotalDataWritten; }
VolumeType::Enum GetType () const { return Type; }
int GetPim() const { return Pim;}
uint64 GetVolumeCreationTime () const { return Header->GetVolumeCreationTime(); }
bool IsHiddenVolumeProtectionTriggered () const { return HiddenVolumeProtectionTriggered; }
bool IsInSystemEncryptionScope () const { return SystemEncryption; }
void Open (const VolumePath &volumePath, bool preserveTimestamps, shared_ptr <VolumePassword> password, int pim, shared_ptr <Pkcs5Kdf> kdf, shared_ptr <KeyfileList> keyfiles, bool emvSupportEnabled, VolumeProtection::Enum protection = VolumeProtection::None, shared_ptr <VolumePassword> protectionPassword = shared_ptr <VolumePassword> (), int protectionPim = 0, shared_ptr <Pkcs5Kdf> protectionKdf = shared_ptr <Pkcs5Kdf> (),shared_ptr <KeyfileList> protectionKeyfiles = shared_ptr <KeyfileList> (), bool sharedAccessAllowed = false, VolumeType::Enum volumeType = VolumeType::Unknown, bool useBackupHeaders = false, bool partitionInSystemEncryptionScope = false);
void Open (shared_ptr <File> volumeFile, shared_ptr <VolumePassword> password, int pim, shared_ptr <Pkcs5Kdf> kdf, shared_ptr <KeyfileList> keyfiles, bool emvSupportEnabled, VolumeProtection::Enum protection = VolumeProtection::None, shared_ptr <VolumePassword> protectionPassword = shared_ptr <VolumePassword> (), int protectionPim = 0, shared_ptr <Pkcs5Kdf> protectionKdf = shared_ptr <Pkcs5Kdf> (), shared_ptr <KeyfileList> protectionKeyfiles = shared_ptr <KeyfileList> (), VolumeType::Enum volumeType = VolumeType::Unknown, bool useBackupHeaders = false, bool partitionInSystemEncryptionScope = false);
void ReadSectors (const BufferPtr &buffer, uint64 byteOffset);
void ReEncryptHeader (bool backupHeader, const ConstBufferPtr &newSalt, const ConstBufferPtr &newHeaderKey, shared_ptr <Pkcs5Kdf> newPkcs5Kdf);
void WriteSectors (const ConstBufferPtr &buffer, uint64 byteOffset);
bool IsEncryptionNotCompleted () const { return EncryptionNotCompleted; }
bool IsMasterKeyVulnerable() const { return Header && Header->IsMasterKeyVulnerable(); }
protected:
void CheckProtectedRange (uint64 writeHostOffset, uint64 writeLength);
void ValidateState () const;
shared_ptr <EncryptionAlgorithm> EA;
shared_ptr <VolumeHeader> Header;
bool HiddenVolumeProtectionTriggered;
shared_ptr <VolumeLayout> Layout;
uint64 ProtectedRangeStart;
uint64 ProtectedRangeEnd;
VolumeProtection::Enum Protection;
size_t SectorSize;
bool SystemEncryption;
VolumeType::Enum Type;
shared_ptr <File> VolumeFile;
uint64 VolumeHostSize;
uint64 VolumeDataOffset;
uint64 VolumeDataSize;
uint64 EncryptedDataSize;
uint64 TopWriteOffset;
uint64 TotalDataRead;
uint64 TotalDataWritten;
int Pim;
bool EncryptionNotCompleted;
private:
Volume (const Volume &);
Volume &operator= (const Volume &);
};
}
#endif // TC_HEADER_Volume_Volume
|