Fix incorrect free and leak.
[libdcp.git] / src / cpl.cc
index fd7056809009efb30ab5c9265f09ed336f49b046..30995a6130eee5819aa23ef91e4b142fb6f32e5d 100644 (file)
@@ -18,6 +18,7 @@
 */
 
 #include <fstream>
+#include <libxml/parser.h>
 #include "cpl.h"
 #include "parse/cpl.h"
 #include "util.h"
@@ -27,6 +28,9 @@
 #include "parse/asset_map.h"
 #include "reel.h"
 #include "metadata.h"
+#include "encryption.h"
+#include "exceptions.h"
+#include "compose.hpp"
 
 using std::string;
 using std::stringstream;
@@ -44,7 +48,7 @@ CPL::CPL (string directory, string name, ContentKind content_kind, int length, i
        , _length (length)
        , _fps (frames_per_second)
 {
-       _uuid = make_uuid ();
+       _id = make_uuid ();
 }
 
 /** Construct a CPL object from a XML file.
@@ -72,6 +76,9 @@ CPL::CPL (string directory, string file, shared_ptr<const libdcp::parse::AssetMa
        _name = cpl->annotation_text;
        _content_kind = cpl->content_kind;
 
+       /* Trim urn:uuid: off the front */
+       _id = cpl->id.substr (9);
+
        for (list<shared_ptr<libdcp::parse::Reel> >::iterator i = cpl->reels.begin(); i != cpl->reels.end(); ++i) {
 
                shared_ptr<parse::Picture> p;
@@ -106,6 +113,10 @@ CPL::CPL (string directory, string file, shared_ptr<const libdcp::parse::AssetMa
 
                                picture->set_entry_point (p->entry_point);
                                picture->set_duration (p->duration);
+                               if (p->key_id.length() > 9) {
+                                       /* Trim urn:uuid: */
+                                       picture->set_key_id (p->key_id.substr (9));
+                               }
                        } catch (MXFFileError) {
                                if (require_mxfs) {
                                        throw;
@@ -124,6 +135,10 @@ CPL::CPL (string directory, string file, shared_ptr<const libdcp::parse::AssetMa
 
                                picture->set_entry_point (p->entry_point);
                                picture->set_duration (p->duration);
+                               if (p->key_id.length() > 9) {
+                                       /* Trim urn:uuid: */
+                                       picture->set_key_id (p->key_id.substr (9));
+                               }
                                
                        } catch (MXFFileError) {
                                if (require_mxfs) {
@@ -142,8 +157,14 @@ CPL::CPL (string directory, string file, shared_ptr<const libdcp::parse::AssetMa
                                                     )
                                        );
 
-                               sound->set_entry_point ((*i)->asset_list->main_sound->entry_point);
-                               sound->set_duration ((*i)->asset_list->main_sound->duration);
+                               shared_ptr<parse::MainSound> s = (*i)->asset_list->main_sound;
+
+                               sound->set_entry_point (s->entry_point);
+                               sound->set_duration (s->duration);
+                               if (s->key_id.length() > 9) {
+                                       /* Trim urn:uuid: */
+                                       sound->set_key_id (s->key_id.substr (9));
+                               }
                        } catch (MXFFileError) {
                                if (require_mxfs) {
                                        throw;
@@ -168,23 +189,28 @@ CPL::CPL (string directory, string file, shared_ptr<const libdcp::parse::AssetMa
 }
 
 void
-CPL::add_reel (shared_ptr<const Reel> reel)
+CPL::add_reel (shared_ptr<Reel> reel)
 {
        _reels.push_back (reel);
 }
 
 void
-CPL::write_xml (XMLMetadata const & metadata) const
+CPL::write_xml (XMLMetadata const & metadata, shared_ptr<Encryption> crypt) const
 {
        boost::filesystem::path p;
        p /= _directory;
        stringstream s;
-       s << _uuid << "_cpl.xml";
+       s << _id << "_cpl.xml";
        p /= s.str();
 
        xmlpp::Document doc;
        xmlpp::Element* root = doc.create_root_node ("CompositionPlaylist", "http://www.smpte-ra.org/schemas/429-7/2006/CPL");
-       root->add_child("Id")->add_child_text ("urn:uuid:" + _uuid);
+
+       if (crypt) {
+               root->set_namespace_declaration ("http://www.w3.org/2000/09/xmldsig#", "dsig");
+       }
+       
+       root->add_child("Id")->add_child_text ("urn:uuid:" + _id);
        root->add_child("AnnotationText")->add_child_text (_name);
        root->add_child("IssueDate")->add_child_text (metadata.issue_date);
        root->add_child("Creator")->add_child_text (metadata.creator);
@@ -192,17 +218,21 @@ CPL::write_xml (XMLMetadata const & metadata) const
        root->add_child("ContentKind")->add_child_text (content_kind_to_string (_content_kind));
        {
                xmlpp::Node* cv = root->add_child ("ContentVersion");
-               cv->add_child ("Id")->add_child_text ("urn:uri:" + _uuid + "_" + metadata.issue_date);
-               cv->add_child ("LabelText")->add_child_text (_uuid + "_" + metadata.issue_date);
+               cv->add_child ("Id")->add_child_text ("urn:uri:" + _id + "_" + metadata.issue_date);
+               cv->add_child ("LabelText")->add_child_text (_id + "_" + metadata.issue_date);
        }
        root->add_child("RatingList");
 
        xmlpp::Node* reel_list = root->add_child ("ReelList");
        
-       for (list<shared_ptr<const Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
+       for (list<shared_ptr<Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
                (*i)->write_to_cpl (reel_list);
        }
 
+       if (crypt) {
+               sign (root, crypt->certificates, crypt->signer_key);
+       }
+
        doc.write_to_file_formatted (p.string (), "UTF-8");
 
        _digest = make_digest (p.string ());
@@ -213,7 +243,7 @@ void
 CPL::write_to_pkl (xmlpp::Node* node) const
 {
        xmlpp::Node* asset = node->add_child ("Asset");
-       asset->add_child("Id")->add_child_text ("urn:uuid:" + _uuid);
+       asset->add_child("Id")->add_child_text ("urn:uuid:" + _id);
        asset->add_child("Hash")->add_child_text (_digest);
        asset->add_child("Size")->add_child_text (lexical_cast<string> (_length));
        asset->add_child("Type")->add_child_text ("text/xml");
@@ -223,7 +253,7 @@ list<shared_ptr<const Asset> >
 CPL::assets () const
 {
        list<shared_ptr<const Asset> > a;
-       for (list<shared_ptr<const Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
+       for (list<shared_ptr<Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
                if ((*i)->main_picture ()) {
                        a.push_back ((*i)->main_picture ());
                }
@@ -242,10 +272,10 @@ void
 CPL::write_to_assetmap (xmlpp::Node* node) const
 {
        xmlpp::Node* asset = node->add_child ("Asset");
-       asset->add_child("Id")->add_child_text ("urn:uuid:" + _uuid);
+       asset->add_child("Id")->add_child_text ("urn:uuid:" + _id);
        xmlpp::Node* chunk_list = asset->add_child ("ChunkList");
        xmlpp::Node* chunk = chunk_list->add_child ("Chunk");
-       chunk->add_child("Path")->add_child_text (_uuid + "_cpl.xml");
+       chunk->add_child("Path")->add_child_text (_id + "_cpl.xml");
        chunk->add_child("VolumeIndex")->add_child_text ("1");
        chunk->add_child("Offset")->add_child_text("0");
        chunk->add_child("Length")->add_child_text(lexical_cast<string> (_length));
@@ -269,22 +299,24 @@ CPL::equals (CPL const & other, EqualityOptions opt, boost::function<void (NoteT
        }
 
        if (_fps != other._fps) {
-               note (ERROR, "frames per second differ");
+               note (ERROR, String::compose ("frames per second differ (%1 vs %2)", _fps, other._fps));
                return false;
        }
 
        if (_length != other._length) {
-               note (ERROR, "lengths differ");
+               stringstream s;
+               s << "lengths differ (" << _length << " cf " << other._length << ")";
+               note (ERROR, String::compose ("lengths differ (%1 vs %2)", _length, other._length));
                return false;
        }
 
        if (_reels.size() != other._reels.size()) {
-               note (ERROR, "reel counts differ");
+               note (ERROR, String::compose ("reel counts differ (%1 vs %2)", _reels.size(), other._reels.size()));
                return false;
        }
        
-       list<shared_ptr<const Reel> >::const_iterator a = _reels.begin ();
-       list<shared_ptr<const Reel> >::const_iterator b = other._reels.begin ();
+       list<shared_ptr<Reel> >::const_iterator a = _reels.begin ();
+       list<shared_ptr<Reel> >::const_iterator b = other._reels.begin ();
        
        while (a != _reels.end ()) {
                if (!(*a)->equals (*b, opt, note)) {
@@ -296,3 +328,170 @@ CPL::equals (CPL const & other, EqualityOptions opt, boost::function<void (NoteT
 
        return true;
 }
+
+shared_ptr<xmlpp::Document>
+CPL::make_kdm (
+       CertificateChain const & certificates,
+       string const & signer_key,
+       shared_ptr<const Certificate> recipient_cert,
+       boost::posix_time::ptime from,
+       boost::posix_time::ptime until,
+       MXFMetadata const & mxf_metadata,
+       XMLMetadata const & xml_metadata
+       ) const
+{
+       assert (recipient_cert);
+       
+       shared_ptr<xmlpp::Document> doc (new xmlpp::Document);
+       xmlpp::Element* root = doc->create_root_node ("DCinemaSecurityMessage");
+       root->set_namespace_declaration ("http://www.smpte-ra.org/schemas/430-3/2006/ETM", "");
+       root->set_namespace_declaration ("http://www.w3.org/2000/09/xmldsig#", "ds");
+       root->set_namespace_declaration ("http://www.w3.org/2001/04/xmlenc#", "enc");
+
+       {
+               xmlpp::Element* authenticated_public = root->add_child("AuthenticatedPublic");
+               authenticated_public->set_attribute("Id", "ID_AuthenticatedPublic");
+               xmlAddID (0, doc->cobj(), (const xmlChar *) "ID_AuthenticatedPublic", authenticated_public->get_attribute("Id")->cobj());
+               
+               authenticated_public->add_child("MessageId")->add_child_text ("urn:uuid:" + make_uuid());
+               authenticated_public->add_child("MessageType")->add_child_text ("http://www.smpte-ra.org/430-1/2006/KDM#kdm-key-type");
+               authenticated_public->add_child("AnnotationText")->add_child_text (mxf_metadata.product_name);
+               authenticated_public->add_child("IssueDate")->add_child_text (xml_metadata.issue_date);
+
+               {
+                       xmlpp::Element* signer = authenticated_public->add_child("Signer");
+                       signer->add_child("X509IssuerName", "ds")->add_child_text (recipient_cert->issuer());
+                       signer->add_child("X509SerialNumber", "ds")->add_child_text (recipient_cert->serial());
+               }
+
+               {
+                       xmlpp::Element* required_extensions = authenticated_public->add_child("RequiredExtensions");
+
+                       {
+                               xmlpp::Element* kdm_required_extensions = required_extensions->add_child("KDMRequiredExtensions");
+                               kdm_required_extensions->set_namespace_declaration ("http://www.smpte-ra.org/schemas/430-1/2006/KDM");
+                               {
+                                       xmlpp::Element* recipient = kdm_required_extensions->add_child("Recipient");
+                                       {
+                                               xmlpp::Element* serial_element = recipient->add_child("X509IssuerSerial");
+                                               serial_element->add_child("X509IssuerName", "ds")->add_child_text (recipient_cert->issuer());
+                                               serial_element->add_child("X509SerialNumber", "ds")->add_child_text (recipient_cert->serial());
+                                       }
+
+                                       recipient->add_child("X509SubjectName")->add_child_text (recipient_cert->subject());
+                               }
+
+                               kdm_required_extensions->add_child("CompositionPlaylistId")->add_child_text("urn:uuid:" + _id);
+                               kdm_required_extensions->add_child("ContentTitleText")->add_child_text(_name);
+                               kdm_required_extensions->add_child("ContentAuthenticator")->add_child_text(certificates.leaf()->thumbprint());
+                               kdm_required_extensions->add_child("ContentKeysNotValidBefore")->add_child_text("XXX");
+                               kdm_required_extensions->add_child("ContentKeysNotValidAfter")->add_child_text("XXX");
+
+                               {
+                                       xmlpp::Element* authorized_device_info = kdm_required_extensions->add_child("AuthorizedDeviceInfo");
+                                       authorized_device_info->add_child("DeviceListIdentifier")->add_child_text("urn:uuid:" + make_uuid());
+                                       authorized_device_info->add_child("DeviceListDescription")->add_child_text(recipient_cert->subject());
+                                       {
+                                               xmlpp::Element* device_list = authorized_device_info->add_child("DeviceList");
+                                               device_list->add_child("CertificateThumbprint")->add_child_text(recipient_cert->thumbprint());
+                                       }
+                               }
+
+                               {
+                                       xmlpp::Element* key_id_list = kdm_required_extensions->add_child("KeyIdList");
+                                       list<shared_ptr<const Asset> > a = assets();
+                                       for (list<shared_ptr<const Asset> >::iterator i = a.begin(); i != a.end(); ++i) {
+                                               /* XXX: non-MXF assets? */
+                                               shared_ptr<const MXFAsset> mxf = boost::dynamic_pointer_cast<const MXFAsset> (*i);
+                                               if (mxf) {
+                                                       mxf->add_typed_key_id (key_id_list);
+                                               }
+                                       }
+                               }
+
+                               {
+                                       xmlpp::Element* forensic_mark_flag_list = kdm_required_extensions->add_child("ForensicMarkFlagList");
+                                       forensic_mark_flag_list->add_child("ForensicMarkFlag")->add_child_text ( 
+                                               "http://www.smpte-ra.org/430-1/2006/KDM#mrkflg-picture-disable"
+                                               );
+                                       forensic_mark_flag_list->add_child("ForensicMarkFlag")->add_child_text ( 
+                                               "http://www.smpte-ra.org/430-1/2006/KDM#mrkflg-audio-disable"
+                                               );
+                               }
+                       }
+               }
+                                        
+               authenticated_public->add_child("NonCriticalExtensions");
+       }
+
+       {
+               xmlpp::Element* authenticated_private = root->add_child("AuthenticatedPrivate");
+               authenticated_private->set_attribute ("Id", "ID_AuthenticatedPrivate");
+               xmlAddID (0, doc->cobj(), (const xmlChar *) "ID_AuthenticatedPrivate", authenticated_private->get_attribute("Id")->cobj());
+               {
+                       xmlpp::Element* encrypted_key = authenticated_private->add_child ("EncryptedKey", "enc");
+                       {
+                               xmlpp::Element* encryption_method = encrypted_key->add_child ("EncryptionMethod", "enc");
+                               encryption_method->set_attribute ("Algorithm", "http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p");
+                               encryption_method->add_child("DigestMethod", "ds")->set_attribute("Algorithm", "http://www.w3.org/2000/09/xmldsig#sha1");
+                       }
+
+                       xmlpp::Element* cipher_data = authenticated_private->add_child ("CipherData", "enc");
+                       cipher_data->add_child("CipherValue", "enc")->add_child_text("XXX");
+               }
+       }
+       
+       /* XXX: x2 one for each mxf? */
+
+       {
+               xmlpp::Element* signature = root->add_child("Signature", "ds");
+               
+               {
+                       xmlpp::Element* signed_info = signature->add_child("SignedInfo", "ds");
+                       signed_info->add_child("CanonicalizationMethod", "ds")->set_attribute(
+                               "Algorithm", "http://www.w3.org/TR/2001/REC-xml-c14n-20010315#WithComments"
+                               );
+                       signed_info->add_child("SignatureMethod", "ds")->set_attribute(
+                               "Algorithm", "http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"
+                               );
+                       {
+                               xmlpp::Element* reference = signed_info->add_child("Reference", "ds");
+                               reference->set_attribute("URI", "#ID_AuthenticatedPublic");
+                               reference->add_child("DigestMethod", "ds")->set_attribute("Algorithm", "http://www.w3.org/2001/04/xmlenc#sha256");
+                               reference->add_child("DigestValue", "ds");
+                       }
+                       
+                       {                               
+                               xmlpp::Element* reference = signed_info->add_child("Reference", "ds");
+                               reference->set_attribute("URI", "#ID_AuthenticatedPrivate");
+                               reference->add_child("DigestMethod", "ds")->set_attribute("Algorithm", "http://www.w3.org/2001/04/xmlenc#sha256");
+                               reference->add_child("DigestValue", "ds");
+                       }
+               }
+               
+               add_signature_value (signature, certificates, signer_key, "ds");
+       }
+
+       return doc;
+}
+
+/** @return true if we have any encrypted content */
+bool
+CPL::encrypted () const
+{
+       for (list<shared_ptr<Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
+               if ((*i)->encrypted ()) {
+                       return true;
+               }
+       }
+
+       return false;
+}
+
+void
+CPL::add_kdm (KDM const & kdm)
+{
+       for (list<shared_ptr<Reel> >::const_iterator i = _reels.begin(); i != _reels.end(); ++i) {
+               (*i)->add_kdm (kdm);
+       }
+}