1*f7e6344dSDag-Erling Smørgrav /*-
2*f7e6344dSDag-Erling Smørgrav * Copyright (c) 2002-2003 Networks Associates Technology, Inc.
3*f7e6344dSDag-Erling Smørgrav * Copyright (c) 2004-2011 Dag-Erling Smørgrav
4*f7e6344dSDag-Erling Smørgrav * All rights reserved.
5*f7e6344dSDag-Erling Smørgrav *
6*f7e6344dSDag-Erling Smørgrav * This software was developed for the FreeBSD Project by ThinkSec AS and
7*f7e6344dSDag-Erling Smørgrav * Network Associates Laboratories, the Security Research Division of
8*f7e6344dSDag-Erling Smørgrav * Network Associates, Inc. under DARPA/SPAWAR contract N66001-01-C-8035
9*f7e6344dSDag-Erling Smørgrav * ("CBOSS"), as part of the DARPA CHATS research program.
10*f7e6344dSDag-Erling Smørgrav *
11*f7e6344dSDag-Erling Smørgrav * Redistribution and use in source and binary forms, with or without
12*f7e6344dSDag-Erling Smørgrav * modification, are permitted provided that the following conditions
13*f7e6344dSDag-Erling Smørgrav * are met:
14*f7e6344dSDag-Erling Smørgrav * 1. Redistributions of source code must retain the above copyright
15*f7e6344dSDag-Erling Smørgrav * notice, this list of conditions and the following disclaimer.
16*f7e6344dSDag-Erling Smørgrav * 2. Redistributions in binary form must reproduce the above copyright
17*f7e6344dSDag-Erling Smørgrav * notice, this list of conditions and the following disclaimer in the
18*f7e6344dSDag-Erling Smørgrav * documentation and/or other materials provided with the distribution.
19*f7e6344dSDag-Erling Smørgrav * 3. The name of the author may not be used to endorse or promote
20*f7e6344dSDag-Erling Smørgrav * products derived from this software without specific prior written
21*f7e6344dSDag-Erling Smørgrav * permission.
22*f7e6344dSDag-Erling Smørgrav *
23*f7e6344dSDag-Erling Smørgrav * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
24*f7e6344dSDag-Erling Smørgrav * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25*f7e6344dSDag-Erling Smørgrav * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26*f7e6344dSDag-Erling Smørgrav * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
27*f7e6344dSDag-Erling Smørgrav * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28*f7e6344dSDag-Erling Smørgrav * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29*f7e6344dSDag-Erling Smørgrav * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30*f7e6344dSDag-Erling Smørgrav * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31*f7e6344dSDag-Erling Smørgrav * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32*f7e6344dSDag-Erling Smørgrav * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33*f7e6344dSDag-Erling Smørgrav * SUCH DAMAGE.
34*f7e6344dSDag-Erling Smørgrav */
35*f7e6344dSDag-Erling Smørgrav
36*f7e6344dSDag-Erling Smørgrav #ifdef HAVE_CONFIG_H
37*f7e6344dSDag-Erling Smørgrav # include "config.h"
38*f7e6344dSDag-Erling Smørgrav #endif
39*f7e6344dSDag-Erling Smørgrav
40*f7e6344dSDag-Erling Smørgrav #include <stdarg.h>
41*f7e6344dSDag-Erling Smørgrav #include <stdio.h>
42*f7e6344dSDag-Erling Smørgrav #include <stdlib.h>
43*f7e6344dSDag-Erling Smørgrav
44*f7e6344dSDag-Erling Smørgrav #include <security/pam_appl.h>
45*f7e6344dSDag-Erling Smørgrav
46*f7e6344dSDag-Erling Smørgrav #include "openpam_impl.h"
47*f7e6344dSDag-Erling Smørgrav
48*f7e6344dSDag-Erling Smørgrav /*
49*f7e6344dSDag-Erling Smørgrav * OpenPAM extension
50*f7e6344dSDag-Erling Smørgrav *
51*f7e6344dSDag-Erling Smørgrav * Call the conversation function
52*f7e6344dSDag-Erling Smørgrav */
53*f7e6344dSDag-Erling Smørgrav
54*f7e6344dSDag-Erling Smørgrav int
pam_vprompt(const pam_handle_t * pamh,int style,char ** resp,const char * fmt,va_list ap)55*f7e6344dSDag-Erling Smørgrav pam_vprompt(const pam_handle_t *pamh,
56*f7e6344dSDag-Erling Smørgrav int style,
57*f7e6344dSDag-Erling Smørgrav char **resp,
58*f7e6344dSDag-Erling Smørgrav const char *fmt,
59*f7e6344dSDag-Erling Smørgrav va_list ap)
60*f7e6344dSDag-Erling Smørgrav {
61*f7e6344dSDag-Erling Smørgrav char msgbuf[PAM_MAX_MSG_SIZE];
62*f7e6344dSDag-Erling Smørgrav struct pam_message msg;
63*f7e6344dSDag-Erling Smørgrav const struct pam_message *msgp;
64*f7e6344dSDag-Erling Smørgrav struct pam_response *rsp;
65*f7e6344dSDag-Erling Smørgrav const struct pam_conv *conv;
66*f7e6344dSDag-Erling Smørgrav const void *convp;
67*f7e6344dSDag-Erling Smørgrav int r;
68*f7e6344dSDag-Erling Smørgrav
69*f7e6344dSDag-Erling Smørgrav ENTER();
70*f7e6344dSDag-Erling Smørgrav r = pam_get_item(pamh, PAM_CONV, &convp);
71*f7e6344dSDag-Erling Smørgrav if (r != PAM_SUCCESS)
72*f7e6344dSDag-Erling Smørgrav RETURNC(r);
73*f7e6344dSDag-Erling Smørgrav conv = convp;
74*f7e6344dSDag-Erling Smørgrav if (conv == NULL || conv->conv == NULL) {
75*f7e6344dSDag-Erling Smørgrav openpam_log(PAM_LOG_ERROR, "no conversation function");
76*f7e6344dSDag-Erling Smørgrav RETURNC(PAM_SYSTEM_ERR);
77*f7e6344dSDag-Erling Smørgrav }
78*f7e6344dSDag-Erling Smørgrav vsnprintf(msgbuf, PAM_MAX_MSG_SIZE, fmt, ap);
79*f7e6344dSDag-Erling Smørgrav msg.msg_style = style;
80*f7e6344dSDag-Erling Smørgrav msg.msg = msgbuf;
81*f7e6344dSDag-Erling Smørgrav msgp = &msg;
82*f7e6344dSDag-Erling Smørgrav rsp = NULL;
83*f7e6344dSDag-Erling Smørgrav r = (conv->conv)(1, &msgp, &rsp, conv->appdata_ptr);
84*f7e6344dSDag-Erling Smørgrav *resp = rsp == NULL ? NULL : rsp->resp;
85*f7e6344dSDag-Erling Smørgrav FREE(rsp);
86*f7e6344dSDag-Erling Smørgrav RETURNC(r);
87*f7e6344dSDag-Erling Smørgrav }
88*f7e6344dSDag-Erling Smørgrav
89*f7e6344dSDag-Erling Smørgrav /*
90*f7e6344dSDag-Erling Smørgrav * Error codes:
91*f7e6344dSDag-Erling Smørgrav *
92*f7e6344dSDag-Erling Smørgrav * !PAM_SYMBOL_ERR
93*f7e6344dSDag-Erling Smørgrav * PAM_SYSTEM_ERR
94*f7e6344dSDag-Erling Smørgrav * PAM_BUF_ERR
95*f7e6344dSDag-Erling Smørgrav * PAM_CONV_ERR
96*f7e6344dSDag-Erling Smørgrav */
97*f7e6344dSDag-Erling Smørgrav
98*f7e6344dSDag-Erling Smørgrav /**
99*f7e6344dSDag-Erling Smørgrav * The =pam_vprompt function constructs a string from the =fmt and =ap
100*f7e6344dSDag-Erling Smørgrav * arguments using =vsnprintf, and passes it to the given PAM context's
101*f7e6344dSDag-Erling Smørgrav * conversation function.
102*f7e6344dSDag-Erling Smørgrav *
103*f7e6344dSDag-Erling Smørgrav * The =style argument specifies the type of interaction requested, and
104*f7e6344dSDag-Erling Smørgrav * must be one of the following:
105*f7e6344dSDag-Erling Smørgrav *
106*f7e6344dSDag-Erling Smørgrav * =PAM_PROMPT_ECHO_OFF:
107*f7e6344dSDag-Erling Smørgrav * Display the message and obtain the user's response without
108*f7e6344dSDag-Erling Smørgrav * displaying it.
109*f7e6344dSDag-Erling Smørgrav * =PAM_PROMPT_ECHO_ON:
110*f7e6344dSDag-Erling Smørgrav * Display the message and obtain the user's response.
111*f7e6344dSDag-Erling Smørgrav * =PAM_ERROR_MSG:
112*f7e6344dSDag-Erling Smørgrav * Display the message as an error message, and do not wait
113*f7e6344dSDag-Erling Smørgrav * for a response.
114*f7e6344dSDag-Erling Smørgrav * =PAM_TEXT_INFO:
115*f7e6344dSDag-Erling Smørgrav * Display the message as an informational message, and do
116*f7e6344dSDag-Erling Smørgrav * not wait for a response.
117*f7e6344dSDag-Erling Smørgrav *
118*f7e6344dSDag-Erling Smørgrav * A pointer to the response, or =NULL if the conversation function did
119*f7e6344dSDag-Erling Smørgrav * not return one, is stored in the location pointed to by the =resp
120*f7e6344dSDag-Erling Smørgrav * argument.
121*f7e6344dSDag-Erling Smørgrav *
122*f7e6344dSDag-Erling Smørgrav * The message and response should not exceed =PAM_MAX_MSG_SIZE or
123*f7e6344dSDag-Erling Smørgrav * =PAM_MAX_RESP_SIZE, respectively.
124*f7e6344dSDag-Erling Smørgrav * If they do, they may be truncated.
125*f7e6344dSDag-Erling Smørgrav *
126*f7e6344dSDag-Erling Smørgrav * >pam_error
127*f7e6344dSDag-Erling Smørgrav * >pam_info
128*f7e6344dSDag-Erling Smørgrav * >pam_prompt
129*f7e6344dSDag-Erling Smørgrav * >pam_verror
130*f7e6344dSDag-Erling Smørgrav * >pam_vinfo
131*f7e6344dSDag-Erling Smørgrav */
132