xref: /freebsd/contrib/sendmail/test/t_seteuid.c (revision c2aa98e247e56d5266d789dfc9b90b524b0019fe)
1c2aa98e2SPeter Wemm /*
2c2aa98e2SPeter Wemm **  This program checks to see if your version of seteuid works.
3c2aa98e2SPeter Wemm **  Compile it, make it setuid root, and run it as yourself (NOT as
4c2aa98e2SPeter Wemm **  root).  If it won't compile or outputs any MAYDAY messages, don't
5c2aa98e2SPeter Wemm **  define USESETEUID in conf.h.
6c2aa98e2SPeter Wemm **
7c2aa98e2SPeter Wemm **	NOTE:  It is not sufficient to have seteuid in your library.
8c2aa98e2SPeter Wemm **	You must also have saved uids that function properly.
9c2aa98e2SPeter Wemm **
10c2aa98e2SPeter Wemm **  Compilation is trivial -- just "cc t_seteuid.c".  Make it setuid,
11c2aa98e2SPeter Wemm **  root and then execute it as a non-root user.
12c2aa98e2SPeter Wemm */
13c2aa98e2SPeter Wemm 
14c2aa98e2SPeter Wemm #include <sys/types.h>
15c2aa98e2SPeter Wemm #include <unistd.h>
16c2aa98e2SPeter Wemm #include <stdio.h>
17c2aa98e2SPeter Wemm 
18c2aa98e2SPeter Wemm #ifdef __hpux
19c2aa98e2SPeter Wemm #define seteuid(e)	setresuid(-1, e, -1)
20c2aa98e2SPeter Wemm #endif
21c2aa98e2SPeter Wemm 
22c2aa98e2SPeter Wemm main()
23c2aa98e2SPeter Wemm {
24c2aa98e2SPeter Wemm 	int fail = 0;
25c2aa98e2SPeter Wemm 	uid_t realuid = getuid();
26c2aa98e2SPeter Wemm 
27c2aa98e2SPeter Wemm 	printuids("initial uids", realuid, 0);
28c2aa98e2SPeter Wemm 
29c2aa98e2SPeter Wemm 	if (geteuid() != 0)
30c2aa98e2SPeter Wemm 	{
31c2aa98e2SPeter Wemm 		printf("SETUP ERROR: re-run setuid root\n");
32c2aa98e2SPeter Wemm 		exit(1);
33c2aa98e2SPeter Wemm 	}
34c2aa98e2SPeter Wemm 
35c2aa98e2SPeter Wemm 	if (getuid() == 0)
36c2aa98e2SPeter Wemm 	{
37c2aa98e2SPeter Wemm 		printf("SETUP ERROR: must be run by a non-root user\n");
38c2aa98e2SPeter Wemm 		exit(1);
39c2aa98e2SPeter Wemm 	}
40c2aa98e2SPeter Wemm 
41c2aa98e2SPeter Wemm 	if (seteuid(1) < 0)
42c2aa98e2SPeter Wemm 		printf("seteuid(1) failure\n");
43c2aa98e2SPeter Wemm 	printuids("after seteuid(1)", realuid, 1);
44c2aa98e2SPeter Wemm 
45c2aa98e2SPeter Wemm 	if (geteuid() != 1)
46c2aa98e2SPeter Wemm 	{
47c2aa98e2SPeter Wemm 		fail++;
48c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong effective uid\n");
49c2aa98e2SPeter Wemm 	}
50c2aa98e2SPeter Wemm 
51c2aa98e2SPeter Wemm 	/* do activity here */
52c2aa98e2SPeter Wemm 
53c2aa98e2SPeter Wemm 	if (seteuid(0) < 0)
54c2aa98e2SPeter Wemm 	{
55c2aa98e2SPeter Wemm 		fail++;
56c2aa98e2SPeter Wemm 		printf("seteuid(0) failure\n");
57c2aa98e2SPeter Wemm 	}
58c2aa98e2SPeter Wemm 	printuids("after seteuid(0)", realuid, 0);
59c2aa98e2SPeter Wemm 
60c2aa98e2SPeter Wemm 	if (geteuid() != 0)
61c2aa98e2SPeter Wemm 	{
62c2aa98e2SPeter Wemm 		fail++;
63c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong effective uid\n");
64c2aa98e2SPeter Wemm 	}
65c2aa98e2SPeter Wemm 	if (getuid() != realuid)
66c2aa98e2SPeter Wemm 	{
67c2aa98e2SPeter Wemm 		fail++;
68c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong real uid\n");
69c2aa98e2SPeter Wemm 	}
70c2aa98e2SPeter Wemm 	printf("\n");
71c2aa98e2SPeter Wemm 
72c2aa98e2SPeter Wemm 	if (seteuid(2) < 0)
73c2aa98e2SPeter Wemm 	{
74c2aa98e2SPeter Wemm 		fail++;
75c2aa98e2SPeter Wemm 		printf("seteuid(2) failure\n");
76c2aa98e2SPeter Wemm 	}
77c2aa98e2SPeter Wemm 	printuids("after seteuid(2)", realuid, 2);
78c2aa98e2SPeter Wemm 
79c2aa98e2SPeter Wemm 	if (geteuid() != 2)
80c2aa98e2SPeter Wemm 	{
81c2aa98e2SPeter Wemm 		fail++;
82c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong effective uid\n");
83c2aa98e2SPeter Wemm 	}
84c2aa98e2SPeter Wemm 
85c2aa98e2SPeter Wemm 	/* do activity here */
86c2aa98e2SPeter Wemm 
87c2aa98e2SPeter Wemm 	if (seteuid(0) < 0)
88c2aa98e2SPeter Wemm 	{
89c2aa98e2SPeter Wemm 		fail++;
90c2aa98e2SPeter Wemm 		printf("seteuid(0) failure\n");
91c2aa98e2SPeter Wemm 	}
92c2aa98e2SPeter Wemm 	printuids("after seteuid(0)", realuid, 0);
93c2aa98e2SPeter Wemm 
94c2aa98e2SPeter Wemm 	if (geteuid() != 0)
95c2aa98e2SPeter Wemm 	{
96c2aa98e2SPeter Wemm 		fail++;
97c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong effective uid\n");
98c2aa98e2SPeter Wemm 	}
99c2aa98e2SPeter Wemm 	if (getuid() != realuid)
100c2aa98e2SPeter Wemm 	{
101c2aa98e2SPeter Wemm 		fail++;
102c2aa98e2SPeter Wemm 		printf("MAYDAY!  Wrong real uid\n");
103c2aa98e2SPeter Wemm 	}
104c2aa98e2SPeter Wemm 
105c2aa98e2SPeter Wemm 	if (fail)
106c2aa98e2SPeter Wemm 	{
107c2aa98e2SPeter Wemm 		printf("\nThis system cannot use seteuid\n");
108c2aa98e2SPeter Wemm 		exit(1);
109c2aa98e2SPeter Wemm 	}
110c2aa98e2SPeter Wemm 
111c2aa98e2SPeter Wemm 	printf("\nIt is safe to define USESETEUID on this system\n");
112c2aa98e2SPeter Wemm 	exit(0);
113c2aa98e2SPeter Wemm }
114c2aa98e2SPeter Wemm 
115c2aa98e2SPeter Wemm printuids(str, r, e)
116c2aa98e2SPeter Wemm 	char *str;
117c2aa98e2SPeter Wemm 	int r, e;
118c2aa98e2SPeter Wemm {
119c2aa98e2SPeter Wemm 	printf("%s (should be %d/%d): r/euid=%d/%d\n", str, r, e,
120c2aa98e2SPeter Wemm 		getuid(), geteuid());
121c2aa98e2SPeter Wemm }
122