1c19800e8SDoug Rabson /* 2*ae771770SStanislav Sedov * Copyright (c) 1997-2005 Kungliga Tekniska Högskolan 3c19800e8SDoug Rabson * (Royal Institute of Technology, Stockholm, Sweden). 4c19800e8SDoug Rabson * All rights reserved. 5c19800e8SDoug Rabson * 6*ae771770SStanislav Sedov * Portions Copyright (c) 2009 Apple Inc. All rights reserved. 7*ae771770SStanislav Sedov * 8c19800e8SDoug Rabson * Redistribution and use in source and binary forms, with or without 9c19800e8SDoug Rabson * modification, are permitted provided that the following conditions 10c19800e8SDoug Rabson * are met: 11c19800e8SDoug Rabson * 12c19800e8SDoug Rabson * 1. Redistributions of source code must retain the above copyright 13c19800e8SDoug Rabson * notice, this list of conditions and the following disclaimer. 14c19800e8SDoug Rabson * 15c19800e8SDoug Rabson * 2. Redistributions in binary form must reproduce the above copyright 16c19800e8SDoug Rabson * notice, this list of conditions and the following disclaimer in the 17c19800e8SDoug Rabson * documentation and/or other materials provided with the distribution. 18c19800e8SDoug Rabson * 19c19800e8SDoug Rabson * 3. Neither the name of the Institute nor the names of its contributors 20c19800e8SDoug Rabson * may be used to endorse or promote products derived from this software 21c19800e8SDoug Rabson * without specific prior written permission. 22c19800e8SDoug Rabson * 23c19800e8SDoug Rabson * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 24c19800e8SDoug Rabson * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25c19800e8SDoug Rabson * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26c19800e8SDoug Rabson * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 27c19800e8SDoug Rabson * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28c19800e8SDoug Rabson * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29c19800e8SDoug Rabson * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30c19800e8SDoug Rabson * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31c19800e8SDoug Rabson * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32c19800e8SDoug Rabson * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33c19800e8SDoug Rabson * SUCH DAMAGE. 34c19800e8SDoug Rabson */ 35c19800e8SDoug Rabson 36c19800e8SDoug Rabson #include "kcm_locl.h" 37c19800e8SDoug Rabson 38*ae771770SStanislav Sedov void 39*ae771770SStanislav Sedov kcm_service(void *ctx, const heim_idata *req, 40*ae771770SStanislav Sedov const heim_icred cred, 41*ae771770SStanislav Sedov heim_ipc_complete complete, 42*ae771770SStanislav Sedov heim_sipc_call cctx) 43*ae771770SStanislav Sedov { 44c19800e8SDoug Rabson kcm_client peercred; 45*ae771770SStanislav Sedov krb5_error_code ret; 46*ae771770SStanislav Sedov krb5_data request, rep; 47*ae771770SStanislav Sedov unsigned char *buf; 48*ae771770SStanislav Sedov size_t len; 49c19800e8SDoug Rabson 50*ae771770SStanislav Sedov krb5_data_zero(&rep); 51c19800e8SDoug Rabson 52*ae771770SStanislav Sedov peercred.uid = heim_ipc_cred_get_uid(cred); 53*ae771770SStanislav Sedov peercred.gid = heim_ipc_cred_get_gid(cred); 54*ae771770SStanislav Sedov peercred.pid = heim_ipc_cred_get_pid(cred); 55*ae771770SStanislav Sedov peercred.session = heim_ipc_cred_get_session(cred); 56c19800e8SDoug Rabson 57*ae771770SStanislav Sedov if (req->length < 4) { 58c19800e8SDoug Rabson kcm_log(1, "malformed request from process %d (too short)", 59*ae771770SStanislav Sedov peercred.pid); 60*ae771770SStanislav Sedov (*complete)(cctx, EINVAL, NULL); 61*ae771770SStanislav Sedov return; 62c19800e8SDoug Rabson } 63c19800e8SDoug Rabson 64*ae771770SStanislav Sedov buf = req->data; 65*ae771770SStanislav Sedov len = req->length; 66*ae771770SStanislav Sedov 67c19800e8SDoug Rabson if (buf[0] != KCM_PROTOCOL_VERSION_MAJOR || 68c19800e8SDoug Rabson buf[1] != KCM_PROTOCOL_VERSION_MINOR) { 69c19800e8SDoug Rabson kcm_log(1, "incorrect protocol version %d.%d from process %d", 70*ae771770SStanislav Sedov buf[0], buf[1], peercred.pid); 71*ae771770SStanislav Sedov (*complete)(cctx, EINVAL, NULL); 72*ae771770SStanislav Sedov return; 73c19800e8SDoug Rabson } 74c19800e8SDoug Rabson 75*ae771770SStanislav Sedov request.data = buf + 2; 76*ae771770SStanislav Sedov request.length = len - 2; 77c19800e8SDoug Rabson 78c19800e8SDoug Rabson /* buf is now pointing at opcode */ 79c19800e8SDoug Rabson 80*ae771770SStanislav Sedov ret = kcm_dispatch(kcm_context, &peercred, &request, &rep); 81c19800e8SDoug Rabson 82*ae771770SStanislav Sedov (*complete)(cctx, ret, &rep); 83*ae771770SStanislav Sedov krb5_data_free(&rep); 84c19800e8SDoug Rabson } 85