1 /* 2 * Copyright (c) 2006 Kungliga Tekniska H�gskolan 3 * (Royal Institute of Technology, Stockholm, Sweden). 4 * All rights reserved. 5 * 6 * Portions Copyright (c) 2009 Apple Inc. All rights reserved. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 12 * 1. Redistributions of source code must retain the above copyright 13 * notice, this list of conditions and the following disclaimer. 14 * 15 * 2. Redistributions in binary form must reproduce the above copyright 16 * notice, this list of conditions and the following disclaimer in the 17 * documentation and/or other materials provided with the distribution. 18 * 19 * 3. Neither the name of the Institute nor the names of its contributors 20 * may be used to endorse or promote products derived from this software 21 * without specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33 * SUCH DAMAGE. 34 */ 35 36 #include "ntlm.h" 37 38 void GSSAPI_CALLCONV 39 _gss_ntlm_iter_creds_f(OM_uint32 flags, 40 void *userctx , 41 void (*cred_iter)(void *, gss_OID, gss_cred_id_t)) 42 { 43 #ifdef HAVE_KCM 44 krb5_error_code ret; 45 krb5_context context = NULL; 46 krb5_storage *request, *response; 47 krb5_data response_data; 48 49 ret = krb5_init_context(&context); 50 if (ret) 51 goto done; 52 53 ret = krb5_kcm_storage_request(context, KCM_OP_GET_NTLM_USER_LIST, &request); 54 if (ret) 55 goto done; 56 57 ret = krb5_kcm_call(context, request, &response, &response_data); 58 krb5_storage_free(request); 59 if (ret) 60 goto done; 61 62 while (1) { 63 uint32_t morep; 64 char *user = NULL, *domain = NULL; 65 ntlm_cred dn; 66 67 ret = krb5_ret_uint32(response, &morep); 68 if (ret) goto out; 69 70 if (!morep) goto out; 71 72 ret = krb5_ret_stringz(response, &user); 73 if (ret) goto out; 74 ret = krb5_ret_stringz(response, &domain); 75 if (ret) { 76 free(user); 77 goto out; 78 } 79 80 dn = calloc(1, sizeof(*dn)); 81 if (dn == NULL) { 82 free(user); 83 free(domain); 84 goto out; 85 } 86 dn->username = user; 87 dn->domain = domain; 88 89 cred_iter(userctx, GSS_NTLM_MECHANISM, (gss_cred_id_t)dn); 90 } 91 out: 92 krb5_storage_free(response); 93 krb5_data_free(&response_data); 94 done: 95 if (context) 96 krb5_free_context(context); 97 #endif /* HAVE_KCM */ 98 (*cred_iter)(userctx, NULL, NULL); 99 } 100