mirror of
https://github.com/roytam1/palemoon27.git
synced 2026-05-26 14:30:27 +00:00
81d61fa324
- Bug 1265036 - Use NS_ABORT_OOM() if try_realloc() fails. r=billm (c30f4f83d5) - Bug 1263292 - Handle calling realloc(0) (r=jld) (f292859ee9) - Bug 1256366 - Remove linear and exponential stats collection from histogram.cc. r=gfritzsche (f9a1c869a1) - Bug 1263953 - Reduce the growth rate of Pickle. r=wmccloskey (6eb5228490) - Bug 1233275 - Copy environment for IPC using NSPR. r=jld (2004db748e) - Bug 1261094 - Improve how MessageChannel::mInterruptStack is used in IPC code, r=jld (56e2c114a4) - Bug 1246931: Include dbus.h in DBus IPC headers, r=shuang (43e797c2d8) - Bug 1264887: Make DBus helpers available on desktop builds, r=shuang (58bff1f640) - Bug 1268130, part 1 - Reimplement ByteLengthIsValid using CheckedInt. r=froydnj (6018e22ae0) - Bug 1268130, part 2 - Make ByteLengthIsValid failures fatal in release builds. r=froydnj (f9d934a498) - Bug 1269365, part 1 - Swap fallible and infallible TArray ParamTraits. r=froydnj (ad423bc04d) - Bug 1269365, part 2 - Make ParamTraits<nsTArray<E>>::Read use infallible allocation. r=froydnj (9b902a5bc4) - Bug 1269365, part 3 - Use infallible array allocation in implementSpecialArrayPickling. r=froydnj (592fe648d3) - Bug 1264820 - Measure IPC reply size in telemetry (r=mccr8) (62c54d3141) - Bug 1268938 - Use the name of the original message in Send for reply telemetry. r=billm (a2de5c6a91) - Bug 1266954: Remove temporary |ScopedClose| from PDU receive code, r=jacheng (cb06315c33) - Bug 1142109 - Fix IPDL tests (r=dvander) (df3f0cda32) - Bug 1177013 - Fix IPDL tests for not allowing CPOWs during sync (r=dvander) (5da0a8a4c9) - Bug 1261307: Convert RIL sockets to |UniquePtr|, r=nfroyd (08609783b3) - Bug 1253622 - Move the mozilla-trace.h generation into moz.build; r=ted (f01dc418bc) - Bug 1267318 ignore cert expiration for mozilla-signed packages, r=dkeeler (7a1ddd6090) - Bug 1029173 - Clean up nsDataSignatureVerifier. r=keeler (f9602341ea) - bug 1267463 - add a more nuanced subject common name fallback option for prerelease channels r=Cykesiopka,jcj (9b55320c9b) - Bug 1253108 - Enable ESLint "strict" rule for PSM. r=keeler (54802bdc38) - Bug 1255425 - part 1 - clearly delineate steps when outputting HSTS preload list; r=keeler (79f73189c8) - Bug 1251801 - Fully implement nsNSSShutDownObject and obviate manual NSS resource management. r=keeler (af32315d3f) - Bug 1251801 - Improve handling of PK11_* function error codes. r=keeler (9f2c8ac64b) - Fix unified-build bustage from bug 1264706. r=bustage (11bc0417c7) - Bug 1265164 - Always use nsCOMPtrs with getNSSDialogs(). r=keeler (ce5a703972)
518 lines
13 KiB
C++
518 lines
13 KiB
C++
/* -*- Mode: C++; tab-width: 2; indent-tabs-mode: nil; c-basic-offset: 2 -*-
|
|
*
|
|
* This Source Code Form is subject to the terms of the Mozilla Public
|
|
* License, v. 2.0. If a copy of the MPL was not distributed with this
|
|
* file, You can obtain one at http://mozilla.org/MPL/2.0/. */
|
|
#include "nsPK11TokenDB.h"
|
|
|
|
#include "mozilla/unused.h"
|
|
#include "nsIMutableArray.h"
|
|
#include "nsISupports.h"
|
|
#include "nsNSSComponent.h"
|
|
#include "nsReadableUtils.h"
|
|
#include "nsServiceManagerUtils.h"
|
|
#include "prerror.h"
|
|
#include "ScopedNSSTypes.h"
|
|
#include "secerr.h"
|
|
|
|
extern mozilla::LazyLogModule gPIPNSSLog;
|
|
|
|
NS_IMPL_ISUPPORTS(nsPK11Token, nsIPK11Token)
|
|
|
|
nsPK11Token::nsPK11Token(PK11SlotInfo *slot)
|
|
: mUIContext(new PipUIContext())
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return;
|
|
|
|
mSlot.reset(PK11_ReferenceSlot(slot));
|
|
mSeries = PK11_GetSlotSeries(slot);
|
|
|
|
Unused << refreshTokenInfo(locker);
|
|
}
|
|
|
|
nsresult
|
|
nsPK11Token::refreshTokenInfo(const nsNSSShutDownPreventionLock& /*proofOfLock*/)
|
|
{
|
|
mTokenName = NS_ConvertUTF8toUTF16(PK11_GetTokenName(mSlot.get()));
|
|
|
|
CK_TOKEN_INFO tokInfo;
|
|
nsresult rv = MapSECStatus(PK11_GetTokenInfo(mSlot.get(), &tokInfo));
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
|
|
// Set the Label field
|
|
const char* ccLabel = reinterpret_cast<const char*>(tokInfo.label);
|
|
const nsACString& cLabel = Substring(
|
|
ccLabel,
|
|
ccLabel + PL_strnlen(ccLabel, sizeof(tokInfo.label)));
|
|
mTokenLabel = NS_ConvertUTF8toUTF16(cLabel);
|
|
mTokenLabel.Trim(" ", false, true);
|
|
|
|
// Set the Manufacturer field
|
|
const char* ccManID = reinterpret_cast<const char*>(tokInfo.manufacturerID);
|
|
const nsACString& cManID = Substring(
|
|
ccManID,
|
|
ccManID + PL_strnlen(ccManID, sizeof(tokInfo.manufacturerID)));
|
|
mTokenManID = NS_ConvertUTF8toUTF16(cManID);
|
|
mTokenManID.Trim(" ", false, true);
|
|
|
|
// Set the Hardware Version field
|
|
mTokenHWVersion.AppendInt(tokInfo.hardwareVersion.major);
|
|
mTokenHWVersion.Append('.');
|
|
mTokenHWVersion.AppendInt(tokInfo.hardwareVersion.minor);
|
|
|
|
// Set the Firmware Version field
|
|
mTokenFWVersion.AppendInt(tokInfo.firmwareVersion.major);
|
|
mTokenFWVersion.Append('.');
|
|
mTokenFWVersion.AppendInt(tokInfo.firmwareVersion.minor);
|
|
|
|
// Set the Serial Number field
|
|
const char* ccSerial = reinterpret_cast<const char*>(tokInfo.serialNumber);
|
|
const nsACString& cSerial = Substring(
|
|
ccSerial,
|
|
ccSerial + PL_strnlen(ccSerial, sizeof(tokInfo.serialNumber)));
|
|
mTokenSerialNum = NS_ConvertUTF8toUTF16(cSerial);
|
|
mTokenSerialNum.Trim(" ", false, true);
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
nsPK11Token::~nsPK11Token()
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return;
|
|
}
|
|
destructorSafeDestroyNSSReference();
|
|
shutdown(calledFromObject);
|
|
}
|
|
|
|
void nsPK11Token::virtualDestroyNSSReference()
|
|
{
|
|
destructorSafeDestroyNSSReference();
|
|
}
|
|
|
|
void nsPK11Token::destructorSafeDestroyNSSReference()
|
|
{
|
|
mSlot = nullptr;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenName(char16_t * *aTokenName)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokenName = ToNewUnicode(mTokenName);
|
|
if (!*aTokenName) return NS_ERROR_OUT_OF_MEMORY;
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenLabel(char16_t **aTokLabel)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokLabel = ToNewUnicode(mTokenLabel);
|
|
if (!*aTokLabel) return NS_ERROR_OUT_OF_MEMORY;
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenManID(char16_t **aTokManID)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokManID = ToNewUnicode(mTokenManID);
|
|
if (!*aTokManID) return NS_ERROR_OUT_OF_MEMORY;
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenHWVersion(char16_t **aTokHWVersion)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokHWVersion = ToNewUnicode(mTokenHWVersion);
|
|
if (!*aTokHWVersion) return NS_ERROR_OUT_OF_MEMORY;
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenFWVersion(char16_t **aTokFWVersion)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokFWVersion = ToNewUnicode(mTokenFWVersion);
|
|
if (!*aTokFWVersion) return NS_ERROR_OUT_OF_MEMORY;
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetTokenSerialNumber(char16_t **aTokSerialNum)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
// handle removals/insertions
|
|
if (PK11_GetSlotSeries(mSlot.get()) != mSeries) {
|
|
nsresult rv = refreshTokenInfo(locker);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
*aTokSerialNum = ToNewUnicode(mTokenSerialNum);
|
|
if (!*aTokSerialNum) return NS_ERROR_OUT_OF_MEMORY;
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::IsLoggedIn(bool *_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*_retval = PK11_IsLoggedIn(mSlot.get(), 0);
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP
|
|
nsPK11Token::Login(bool force)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
nsresult rv;
|
|
bool test;
|
|
rv = this->NeedsLogin(&test);
|
|
if (NS_FAILED(rv)) return rv;
|
|
if (test && force) {
|
|
rv = this->LogoutSimple();
|
|
if (NS_FAILED(rv)) return rv;
|
|
}
|
|
rv = setPassword(mSlot.get(), mUIContext, locker);
|
|
if (NS_FAILED(rv)) return rv;
|
|
|
|
return MapSECStatus(PK11_Authenticate(mSlot.get(), true, mUIContext));
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::LogoutSimple()
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
// PK11_Logout() can fail if the user wasn't logged in beforehand. We want
|
|
// this method to succeed even in this case, so we ignore the return value.
|
|
Unused << PK11_Logout(mSlot.get());
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::LogoutAndDropAuthenticatedResources()
|
|
{
|
|
static NS_DEFINE_CID(kNSSComponentCID, NS_NSSCOMPONENT_CID);
|
|
|
|
nsresult rv = LogoutSimple();
|
|
|
|
if (NS_FAILED(rv))
|
|
return rv;
|
|
|
|
nsCOMPtr<nsINSSComponent> nssComponent(do_GetService(kNSSComponentCID, &rv));
|
|
if (NS_FAILED(rv))
|
|
return rv;
|
|
|
|
return nssComponent->LogoutAuthenticatedPK11();
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::Reset()
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
return MapSECStatus(PK11_ResetToken(mSlot.get(), nullptr));
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetMinimumPasswordLength(int32_t *aMinimumPasswordLength)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*aMinimumPasswordLength = PK11_GetMinimumPwdLength(mSlot.get());
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::GetNeedsUserInit(bool *aNeedsUserInit)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*aNeedsUserInit = PK11_NeedUserInit(mSlot.get());
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::CheckPassword(const char16_t *password, bool *_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
NS_ConvertUTF16toUTF8 utf8Password(password);
|
|
SECStatus srv =
|
|
PK11_CheckUserPassword(mSlot.get(), const_cast<char*>(utf8Password.get()));
|
|
if (srv != SECSuccess) {
|
|
*_retval = false;
|
|
PRErrorCode error = PR_GetError();
|
|
if (error != SEC_ERROR_BAD_PASSWORD) {
|
|
/* something really bad happened - throw an exception */
|
|
return mozilla::psm::GetXPCOMFromNSSError(error);
|
|
}
|
|
} else {
|
|
*_retval = true;
|
|
}
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::InitPassword(const char16_t *initialPassword)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
NS_ConvertUTF16toUTF8 utf8Password(initialPassword);
|
|
return MapSECStatus(
|
|
PK11_InitPin(mSlot.get(), "", const_cast<char*>(utf8Password.get())));
|
|
}
|
|
|
|
NS_IMETHODIMP
|
|
nsPK11Token::GetAskPasswordTimes(int32_t* askTimes)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
int askTimeout;
|
|
PK11_GetSlotPWValues(mSlot.get(), askTimes, &askTimeout);
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP
|
|
nsPK11Token::GetAskPasswordTimeout(int32_t* askTimeout)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
int askTimes;
|
|
PK11_GetSlotPWValues(mSlot.get(), &askTimes, askTimeout);
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP
|
|
nsPK11Token::SetAskPasswordDefaults(const int32_t askTimes,
|
|
const int32_t askTimeout)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
PK11_SetSlotPWValues(mSlot.get(), askTimes, askTimeout);
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::ChangePassword(const char16_t *oldPassword, const char16_t *newPassword)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
NS_ConvertUTF16toUTF8 utf8OldPassword(oldPassword);
|
|
NS_ConvertUTF16toUTF8 utf8NewPassword(newPassword);
|
|
|
|
// nsCString.get() will return an empty string instead of nullptr even if it
|
|
// was initialized with nullptr. PK11_ChangePW() has different semantics for
|
|
// the empty string and for nullptr, so we can't just use get().
|
|
// See Bug 447589.
|
|
return MapSECStatus(PK11_ChangePW(
|
|
mSlot.get(),
|
|
(oldPassword ? const_cast<char*>(utf8OldPassword.get()) : nullptr),
|
|
(newPassword ? const_cast<char*>(utf8NewPassword.get()) : nullptr)));
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::IsHardwareToken(bool *_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*_retval = PK11_IsHW(mSlot.get());
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::NeedsLogin(bool *_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*_retval = PK11_NeedLogin(mSlot.get());
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11Token::IsFriendly(bool *_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown())
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
|
|
*_retval = PK11_IsFriendly(mSlot.get());
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
/*=========================================================*/
|
|
|
|
NS_IMPL_ISUPPORTS(nsPK11TokenDB, nsIPK11TokenDB)
|
|
|
|
nsPK11TokenDB::nsPK11TokenDB()
|
|
{
|
|
}
|
|
|
|
nsPK11TokenDB::~nsPK11TokenDB()
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return;
|
|
}
|
|
|
|
shutdown(calledFromObject);
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11TokenDB::GetInternalKeyToken(nsIPK11Token **_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
UniquePK11SlotInfo slot(PK11_GetInternalKeySlot());
|
|
if (!slot) {
|
|
return NS_ERROR_FAILURE;
|
|
}
|
|
|
|
nsCOMPtr<nsIPK11Token> token = new nsPK11Token(slot.get());
|
|
token.forget(_retval);
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP nsPK11TokenDB::
|
|
FindTokenByName(const char16_t* tokenName, nsIPK11Token **_retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
NS_ConvertUTF16toUTF8 utf8TokenName(tokenName);
|
|
UniquePK11SlotInfo slot(
|
|
PK11_FindSlotByName(const_cast<char*>(utf8TokenName.get())));
|
|
if (!slot) {
|
|
return NS_ERROR_FAILURE;
|
|
}
|
|
|
|
nsCOMPtr<nsIPK11Token> token = new nsPK11Token(slot.get());
|
|
token.forget(_retval);
|
|
|
|
return NS_OK;
|
|
}
|
|
|
|
NS_IMETHODIMP
|
|
nsPK11TokenDB::ListTokens(nsISimpleEnumerator** _retval)
|
|
{
|
|
nsNSSShutDownPreventionLock locker;
|
|
if (isAlreadyShutDown()) {
|
|
return NS_ERROR_NOT_AVAILABLE;
|
|
}
|
|
|
|
nsCOMPtr<nsIMutableArray> array = do_CreateInstance(NS_ARRAY_CONTRACTID);
|
|
if (!array) {
|
|
return NS_ERROR_FAILURE;
|
|
}
|
|
|
|
*_retval = nullptr;
|
|
|
|
UniquePK11SlotList list(
|
|
PK11_GetAllTokens(CKM_INVALID_MECHANISM, false, false, 0));
|
|
if (!list) {
|
|
return NS_ERROR_FAILURE;
|
|
}
|
|
|
|
for (PK11SlotListElement* le = PK11_GetFirstSafe(list.get()); le;
|
|
le = PK11_GetNextSafe(list.get(), le, false)) {
|
|
nsCOMPtr<nsIPK11Token> token = new nsPK11Token(le->slot);
|
|
nsresult rv = array->AppendElement(token, false);
|
|
if (NS_FAILED(rv)) {
|
|
return rv;
|
|
}
|
|
}
|
|
|
|
return array->Enumerate(_retval);
|
|
}
|