ecadlabs/signatory

View on GitHub
pkg/vault/yubi/yubi.go

Summary

Maintainability
B
6 hrs
Test Coverage
F
0%

Method HSM.Import has 7 return statements (exceeds 4 allowed).
Open

func (h *HSM) Import(ctx context.Context, pk crypt.PrivateKey, opt utils.Options) (vault.StoredKey, error) {
    typ, alg, caps, p, err := getPrivateKeyData(pk)
    if err != nil {
        return nil, fmt.Errorf("(YubiHSM/%s): %w", h.conf.id(), err)
    }
Severity: Major
Found in pkg/vault/yubi/yubi.go - About 45 mins to fix

    Method yubihsmStoredKeysIterator.Next has 7 return statements (exceeds 4 allowed).
    Open

    func (y *yubihsmStoredKeysIterator) Next() (key vault.StoredKey, err error) {
        if y.objects == nil {
            y.objects, err = y.hsm.listObjects(commands.NewObjectTypeOption(commands.ObjectTypeAsymmetricKey))
            if err != nil {
                return nil, fmt.Errorf("(YubiHSM/%s): %w", y.hsm.conf.id(), err)
    Severity: Major
    Found in pkg/vault/yubi/yubi.go - About 45 mins to fix

      Function parsePublicKey has 7 return statements (exceeds 4 allowed).
      Open

      func parsePublicKey(r *commands.GetPubKeyResponse) (crypt.PublicKey, bool, error) {
          switch r.Algorithm {
          case commands.AlgorithmP256, commands.AlgorithmSecp256k1:
              var curve elliptic.Curve
              switch r.Algorithm {
      Severity: Major
      Found in pkg/vault/yubi/yubi.go - About 45 mins to fix

        Method HSM.GetPublicKey has 7 return statements (exceeds 4 allowed).
        Open

        func (h *HSM) GetPublicKey(ctx context.Context, keyID string) (vault.StoredKey, error) {
            id, err := strconv.ParseUint(keyID, 16, 16)
            if err != nil {
                return nil, fmt.Errorf("(YubiHSM/%s): %w", h.conf.id(), err)
            }
        Severity: Major
        Found in pkg/vault/yubi/yubi.go - About 45 mins to fix

          Method HSM.signED25519 has 5 return statements (exceeds 4 allowed).
          Open

          func (h *HSM) signED25519(digest []byte, id uint16) (crypt.Ed25519Signature, error) {
              command, err := commands.CreateSignDataEddsaCommand(id, digest)
              if err != nil {
                  return nil, fmt.Errorf("(YubiHSM/%s): %w", h.conf.id(), err)
              }
          Severity: Major
          Found in pkg/vault/yubi/yubi.go - About 35 mins to fix

            Method HSM.signECDSA has 5 return statements (exceeds 4 allowed).
            Open

            func (h *HSM) signECDSA(digest []byte, id uint16, curve elliptic.Curve) (*crypt.ECDSASignature, error) {
                command, err := commands.CreateSignDataEcdsaCommand(id, digest)
                if err != nil {
                    return nil, fmt.Errorf("(YubiHSM/%s): %w", h.conf.id(), err)
                }
            Severity: Major
            Found in pkg/vault/yubi/yubi.go - About 35 mins to fix

              Method HSM.Ready has 5 return statements (exceeds 4 allowed).
              Open

              func (h *HSM) Ready(ctx context.Context) (bool, error) {
                  command, err := commands.CreateEchoCommand(echoMessage)
                  if err != nil {
                      return false, fmt.Errorf("(YubiHSM/%s): %w", h.conf.id(), err)
                  }
              Severity: Major
              Found in pkg/vault/yubi/yubi.go - About 35 mins to fix

                Similar blocks of code found in 5 locations. Consider refactoring.
                Open

                func init() {
                    vault.RegisterVault("yubihsm", func(ctx context.Context, node *yaml.Node) (vault.Vault, error) {
                        var conf Config
                        if node == nil || node.Kind == 0 {
                            return nil, errors.New("(YubiHSM): config is missing")
                Severity: Major
                Found in pkg/vault/yubi/yubi.go and 4 other locations - About 1 hr to fix
                pkg/vault/aws/awskms.go on lines 172..188
                pkg/vault/cloudkms/cloudkms.go on lines 399..415
                pkg/vault/hashicorp/vault.go on lines 60..76
                pkg/vault/azure/azure.go on lines 466..482

                Duplicated Code

                Duplicated code can lead to software that is hard to understand and difficult to change. The Don't Repeat Yourself (DRY) principle states:

                Every piece of knowledge must have a single, unambiguous, authoritative representation within a system.

                When you violate DRY, bugs and maintenance problems are sure to follow. Duplicated code has a tendency to both continue to replicate and also to diverge (leaving bugs as two similar implementations differ in subtle ways).

                Tuning

                This issue has a mass of 182.

                We set useful threshold defaults for the languages we support but you may want to adjust these settings based on your project guidelines.

                The threshold configuration represents the minimum mass a code block must have to be analyzed for duplication. The lower the threshold, the more fine-grained the comparison.

                If the engine is too easily reporting duplication, try raising the threshold. If you suspect that the engine isn't catching enough duplication, try lowering the threshold. The best setting tends to differ from language to language.

                See codeclimate-duplication's documentation for more information about tuning the mass threshold in your .codeclimate.yml.

                Refactorings

                Further Reading

                There are no issues that match your filters.

                Category
                Status