xref: /freebsd/crypto/openssh/misc.h (revision 0ae642c7dd0c2cfd965a22bf73876cd26cceadd2)
1*0ae642c7SEd Maste /* $OpenBSD: misc.h,v 1.110 2024/09/25 01:24:04 djm Exp $ */
21e8db6e2SBrian Feldman 
31e8db6e2SBrian Feldman /*
41e8db6e2SBrian Feldman  * Author: Tatu Ylonen <ylo@cs.hut.fi>
51e8db6e2SBrian Feldman  * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland
61e8db6e2SBrian Feldman  *                    All rights reserved
71e8db6e2SBrian Feldman  *
81e8db6e2SBrian Feldman  * As far as I am concerned, the code I have written for this software
91e8db6e2SBrian Feldman  * can be used freely for any purpose.  Any derived versions of this
101e8db6e2SBrian Feldman  * software must be clearly marked as such, and if the derived work is
111e8db6e2SBrian Feldman  * incompatible with the protocol description in the RFC file, it must be
121e8db6e2SBrian Feldman  * called by a name other than "ssh" or "Secure Shell".
131e8db6e2SBrian Feldman  */
141e8db6e2SBrian Feldman 
15761efaa7SDag-Erling Smørgrav #ifndef _MISC_H
16761efaa7SDag-Erling Smørgrav #define _MISC_H
17761efaa7SDag-Erling Smørgrav 
18ca86bcf2SDag-Erling Smørgrav #include <sys/time.h>
194f52dfbbSDag-Erling Smørgrav #include <sys/types.h>
2019261079SEd Maste #include <sys/socket.h>
2119261079SEd Maste #include <stdio.h>
221b91d634SEd Maste #include <signal.h>
23ca86bcf2SDag-Erling Smørgrav 
240fdf8faeSEd Maste /* special-case port number meaning allow any port */
250fdf8faeSEd Maste #define FWD_PERMIT_ANY_PORT	0
260fdf8faeSEd Maste 
270fdf8faeSEd Maste /* special-case wildcard meaning allow any host */
280fdf8faeSEd Maste #define FWD_PERMIT_ANY_HOST	"*"
290fdf8faeSEd Maste 
30a0ee8cc6SDag-Erling Smørgrav /* Data structure for representing a forwarding request. */
31a0ee8cc6SDag-Erling Smørgrav struct Forward {
32a0ee8cc6SDag-Erling Smørgrav 	char	 *listen_host;		/* Host (address) to listen on. */
33a0ee8cc6SDag-Erling Smørgrav 	int	  listen_port;		/* Port to forward. */
34a0ee8cc6SDag-Erling Smørgrav 	char	 *listen_path;		/* Path to bind domain socket. */
35a0ee8cc6SDag-Erling Smørgrav 	char	 *connect_host;		/* Host to connect. */
36a0ee8cc6SDag-Erling Smørgrav 	int	  connect_port;		/* Port to connect on connect_host. */
37a0ee8cc6SDag-Erling Smørgrav 	char	 *connect_path;		/* Path to connect domain socket. */
38a0ee8cc6SDag-Erling Smørgrav 	int	  allocated_port;	/* Dynamically allocated listen port */
39a0ee8cc6SDag-Erling Smørgrav 	int	  handle;		/* Handle for dynamic listen ports */
40a0ee8cc6SDag-Erling Smørgrav };
41a0ee8cc6SDag-Erling Smørgrav 
42076ad2f8SDag-Erling Smørgrav int forward_equals(const struct Forward *, const struct Forward *);
430fdf8faeSEd Maste int permitopen_port(const char *p);
440fdf8faeSEd Maste 
45ca86bcf2SDag-Erling Smørgrav int daemonized(void);
46076ad2f8SDag-Erling Smørgrav 
47a0ee8cc6SDag-Erling Smørgrav /* Common server and client forwarding options. */
48a0ee8cc6SDag-Erling Smørgrav struct ForwardOptions {
49a0ee8cc6SDag-Erling Smørgrav 	int	 gateway_ports; /* Allow remote connects to forwarded ports. */
50a0ee8cc6SDag-Erling Smørgrav 	mode_t	 streamlocal_bind_mask; /* umask for streamlocal binds */
51a0ee8cc6SDag-Erling Smørgrav 	int	 streamlocal_bind_unlink; /* unlink socket before bind */
52a0ee8cc6SDag-Erling Smørgrav };
53a0ee8cc6SDag-Erling Smørgrav 
54d74d50a8SDag-Erling Smørgrav /* misc.c */
55d74d50a8SDag-Erling Smørgrav 
56ae1f160dSDag-Erling Smørgrav char	*chop(char *);
5719261079SEd Maste void	 rtrim(char *);
5819261079SEd Maste void	skip_space(char **);
59*0ae642c7SEd Maste const char *strprefix(const char *, const char *, int);
60ae1f160dSDag-Erling Smørgrav char	*strdelim(char **);
61190cef3dSDag-Erling Smørgrav char	*strdelimw(char **);
62d74d50a8SDag-Erling Smørgrav int	 set_nonblock(int);
63d74d50a8SDag-Erling Smørgrav int	 unset_nonblock(int);
64ae1f160dSDag-Erling Smørgrav void	 set_nodelay(int);
6547dd1d1bSDag-Erling Smørgrav int	 set_reuseaddr(int);
6647dd1d1bSDag-Erling Smørgrav char	*get_rdomain(int);
6747dd1d1bSDag-Erling Smørgrav int	 set_rdomain(int, const char *);
6819261079SEd Maste int	 get_sock_af(int);
6919261079SEd Maste void	 set_sock_tos(int, int);
701b91d634SEd Maste int	 waitrfd(int, int *, volatile sig_atomic_t *);
7119261079SEd Maste int	 timeout_connect(int, const struct sockaddr *, socklen_t, int *);
72ae1f160dSDag-Erling Smørgrav int	 a2port(const char *);
73021d409fSDag-Erling Smørgrav int	 a2tun(const char *, int *);
74761efaa7SDag-Erling Smørgrav char	*put_host_port(const char *, u_short);
7519261079SEd Maste char	*hpdelim2(char **, char *);
765e8dbd04SDag-Erling Smørgrav char	*hpdelim(char **);
77ae1f160dSDag-Erling Smørgrav char	*cleanhostname(char *);
78ae1f160dSDag-Erling Smørgrav char	*colon(char *);
7947dd1d1bSDag-Erling Smørgrav int	 parse_user_host_path(const char *, char **, char **, char **);
80076ad2f8SDag-Erling Smørgrav int	 parse_user_host_port(const char *, char **, char **, int *);
8147dd1d1bSDag-Erling Smørgrav int	 parse_uri(const char *, const char *, char **, char **, int *, char **);
8219261079SEd Maste int	 convtime(const char *);
8319261079SEd Maste const char *fmt_timeframe(time_t t);
8419261079SEd Maste int	 tilde_expand(const char *, uid_t, char **);
85043840dfSDag-Erling Smørgrav char	*tilde_expand_filename(const char *, uid_t);
8619261079SEd Maste 
8719261079SEd Maste char	*dollar_expand(int *, const char *string, ...);
88043840dfSDag-Erling Smørgrav char	*percent_expand(const char *, ...) __attribute__((__sentinel__));
8919261079SEd Maste char	*percent_dollar_expand(const char *, ...) __attribute__((__sentinel__));
90761efaa7SDag-Erling Smørgrav char	*tohex(const void *, size_t);
9119261079SEd Maste void	 xextendf(char **s, const char *sep, const char *fmt, ...)
9219261079SEd Maste     __attribute__((__format__ (printf, 3, 4))) __attribute__((__nonnull__ (3)));
93021d409fSDag-Erling Smørgrav void	 sanitise_stdfd(void);
94d4af9e69SDag-Erling Smørgrav void	 ms_subtract_diff(struct timeval *, int *);
951323ec57SEd Maste void	 ms_to_timespec(struct timespec *, int);
9647dd1d1bSDag-Erling Smørgrav void	 monotime_ts(struct timespec *);
9747dd1d1bSDag-Erling Smørgrav void	 monotime_tv(struct timeval *);
98e4a9863fSDag-Erling Smørgrav time_t	 monotime(void);
99076ad2f8SDag-Erling Smørgrav double	 monotime_double(void);
100f7167e0eSDag-Erling Smørgrav void	 lowercase(char *s);
101a0ee8cc6SDag-Erling Smørgrav int	 unix_listener(const char *, int, int);
10247dd1d1bSDag-Erling Smørgrav int	 valid_domain(char *, int, const char **);
1032f513db7SEd Maste int	 valid_env_name(const char *);
10447dd1d1bSDag-Erling Smørgrav const char *atoi_err(const char *, int *);
10547dd1d1bSDag-Erling Smørgrav int	 parse_absolute_time(const char *, uint64_t *);
10647dd1d1bSDag-Erling Smørgrav void	 format_absolute_time(uint64_t, char *, size_t);
107069ac184SEd Maste int	 parse_pattern_interval(const char *, char **, int *);
10819261079SEd Maste int	 path_absolute(const char *);
10919261079SEd Maste int	 stdfd_devnull(int, int, int);
110535af610SEd Maste int	 lib_contains_symbol(const char *, const char *);
111f7167e0eSDag-Erling Smørgrav 
112b15c8340SDag-Erling Smørgrav void	 sock_set_v6only(int);
1131e8db6e2SBrian Feldman 
114ae1f160dSDag-Erling Smørgrav struct passwd *pwcopy(struct passwd *);
115d4af9e69SDag-Erling Smørgrav const char *ssh_gai_strerror(int);
1161e8db6e2SBrian Feldman 
11719261079SEd Maste typedef void privdrop_fn(struct passwd *);
11819261079SEd Maste typedef void privrestore_fn(void);
11919261079SEd Maste #define	SSH_SUBPROCESS_STDOUT_DISCARD	(1)     /* Discard stdout */
12019261079SEd Maste #define	SSH_SUBPROCESS_STDOUT_CAPTURE	(1<<1)  /* Redirect stdout */
12119261079SEd Maste #define	SSH_SUBPROCESS_STDERR_DISCARD	(1<<2)  /* Discard stderr */
12219261079SEd Maste #define	SSH_SUBPROCESS_UNSAFE_PATH	(1<<3)	/* Don't check for safe cmd */
12319261079SEd Maste #define	SSH_SUBPROCESS_PRESERVE_ENV	(1<<4)	/* Keep parent environment */
12419261079SEd Maste pid_t subprocess(const char *, const char *, int, char **, FILE **, u_int,
12519261079SEd Maste     struct passwd *, privdrop_fn *, privrestore_fn *);
12619261079SEd Maste 
127ae1f160dSDag-Erling Smørgrav typedef struct arglist arglist;
128ae1f160dSDag-Erling Smørgrav struct arglist {
129ae1f160dSDag-Erling Smørgrav 	char    **list;
130d74d50a8SDag-Erling Smørgrav 	u_int   num;
131d74d50a8SDag-Erling Smørgrav 	u_int   nalloc;
132ae1f160dSDag-Erling Smørgrav };
133021d409fSDag-Erling Smørgrav void	 addargs(arglist *, char *, ...)
134021d409fSDag-Erling Smørgrav 	    __attribute__((format(printf, 2, 3)));
135021d409fSDag-Erling Smørgrav void	 replacearg(arglist *, u_int, char *, ...)
136021d409fSDag-Erling Smørgrav 	    __attribute__((format(printf, 3, 4)));
137021d409fSDag-Erling Smørgrav void	 freeargs(arglist *);
138d74d50a8SDag-Erling Smørgrav 
13947dd1d1bSDag-Erling Smørgrav int	 tun_open(int, int, char **);
140021d409fSDag-Erling Smørgrav 
141021d409fSDag-Erling Smørgrav /* Common definitions for ssh tunnel device forwarding */
142021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_NO		0x00
143021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_POINTOPOINT	0x01
144021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_ETHERNET	0x02
145021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_DEFAULT	SSH_TUNMODE_POINTOPOINT
146021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_YES		(SSH_TUNMODE_POINTOPOINT|SSH_TUNMODE_ETHERNET)
147021d409fSDag-Erling Smørgrav 
148021d409fSDag-Erling Smørgrav #define SSH_TUNID_ANY		0x7fffffff
149021d409fSDag-Erling Smørgrav #define SSH_TUNID_ERR		(SSH_TUNID_ANY - 1)
150021d409fSDag-Erling Smørgrav #define SSH_TUNID_MAX		(SSH_TUNID_ANY - 2)
151761efaa7SDag-Erling Smørgrav 
152a0ee8cc6SDag-Erling Smørgrav /* Fake port to indicate that host field is really a path. */
153a0ee8cc6SDag-Erling Smørgrav #define PORT_STREAMLOCAL	-2
154a0ee8cc6SDag-Erling Smørgrav 
155761efaa7SDag-Erling Smørgrav /* Functions to extract or store big-endian words of various sizes */
156761efaa7SDag-Erling Smørgrav u_int64_t	get_u64(const void *)
157761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 8)));
158761efaa7SDag-Erling Smørgrav u_int32_t	get_u32(const void *)
159761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 4)));
160761efaa7SDag-Erling Smørgrav u_int16_t	get_u16(const void *)
161761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 2)));
162761efaa7SDag-Erling Smørgrav void		put_u64(void *, u_int64_t)
163761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 8)));
164761efaa7SDag-Erling Smørgrav void		put_u32(void *, u_int32_t)
165761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 4)));
166761efaa7SDag-Erling Smørgrav void		put_u16(void *, u_int16_t)
167761efaa7SDag-Erling Smørgrav     __attribute__((__bounded__( __minbytes__, 1, 2)));
168761efaa7SDag-Erling Smørgrav 
169a0ee8cc6SDag-Erling Smørgrav /* Little-endian store/load, used by umac.c */
170a0ee8cc6SDag-Erling Smørgrav u_int32_t	get_u32_le(const void *)
171a0ee8cc6SDag-Erling Smørgrav     __attribute__((__bounded__(__minbytes__, 1, 4)));
172a0ee8cc6SDag-Erling Smørgrav void		put_u32_le(void *, u_int32_t)
173a0ee8cc6SDag-Erling Smørgrav     __attribute__((__bounded__(__minbytes__, 1, 4)));
174a0ee8cc6SDag-Erling Smørgrav 
1754a421b63SDag-Erling Smørgrav struct bwlimit {
1764a421b63SDag-Erling Smørgrav 	size_t buflen;
17719261079SEd Maste 	u_int64_t rate;		/* desired rate in kbit/s */
17819261079SEd Maste 	u_int64_t thresh;	/* threshold after which we'll check timers */
17919261079SEd Maste 	u_int64_t lamt;		/* amount written in last timer interval */
1804a421b63SDag-Erling Smørgrav 	struct timeval bwstart, bwend;
1814a421b63SDag-Erling Smørgrav };
1824a421b63SDag-Erling Smørgrav 
1834a421b63SDag-Erling Smørgrav void bandwidth_limit_init(struct bwlimit *, u_int64_t, size_t);
1844a421b63SDag-Erling Smørgrav void bandwidth_limit(struct bwlimit *, size_t);
1854a421b63SDag-Erling Smørgrav 
1864a421b63SDag-Erling Smørgrav int parse_ipqos(const char *);
187e146993eSDag-Erling Smørgrav const char *iptos2str(int);
1884a421b63SDag-Erling Smørgrav void mktemp_proto(char *, size_t);
189761efaa7SDag-Erling Smørgrav 
1904f52dfbbSDag-Erling Smørgrav void	 child_set_env(char ***envp, u_int *envsizep, const char *name,
1914f52dfbbSDag-Erling Smørgrav 	    const char *value);
19219261079SEd Maste const char *lookup_env_in_list(const char *env,
19319261079SEd Maste 	    char * const *envs, size_t nenvs);
19438a52bd3SEd Maste const char *lookup_setenv_in_list(const char *env,
19538a52bd3SEd Maste 	    char * const *envs, size_t nenvs);
1964f52dfbbSDag-Erling Smørgrav 
19719261079SEd Maste int	 argv_split(const char *, int *, char ***, int);
1984f52dfbbSDag-Erling Smørgrav char	*argv_assemble(int, char **argv);
19919261079SEd Maste char	*argv_next(int *, char ***);
20019261079SEd Maste void	 argv_consume(int *);
20119261079SEd Maste void	 argv_free(char **, int);
20219261079SEd Maste 
2034f52dfbbSDag-Erling Smørgrav int	 exited_cleanly(pid_t, const char *, const char *, int);
2044f52dfbbSDag-Erling Smørgrav 
2054f52dfbbSDag-Erling Smørgrav struct stat;
2064f52dfbbSDag-Erling Smørgrav int	 safe_path(const char *, struct stat *, const char *, uid_t,
2074f52dfbbSDag-Erling Smørgrav 	    char *, size_t);
2084f52dfbbSDag-Erling Smørgrav int	 safe_path_fd(int, const char *, struct passwd *,
2094f52dfbbSDag-Erling Smørgrav 	    char *err, size_t errlen);
2104f52dfbbSDag-Erling Smørgrav 
21119261079SEd Maste /* authorized_key-style options parsing helpers */
21219261079SEd Maste int	opt_flag(const char *opt, int allow_negate, const char **optsp);
21319261079SEd Maste char	*opt_dequote(const char **sp, const char **errstrp);
21419261079SEd Maste int	opt_match(const char **opts, const char *term);
21519261079SEd Maste 
21619261079SEd Maste /* readconf/servconf option lists */
21719261079SEd Maste void	opt_array_append(const char *file, const int line,
21819261079SEd Maste 	    const char *directive, char ***array, u_int *lp, const char *s);
21919261079SEd Maste void	opt_array_append2(const char *file, const int line,
22019261079SEd Maste 	    const char *directive, char ***array, int **iarray, u_int *lp,
22119261079SEd Maste 	    const char *s, int i);
222a91a2465SEd Maste void	opt_array_free2(char **array, int **iarray, u_int l);
22319261079SEd Maste 
224f374ba41SEd Maste struct timespec;
225f374ba41SEd Maste void ptimeout_init(struct timespec *pt);
226f374ba41SEd Maste void ptimeout_deadline_sec(struct timespec *pt, long sec);
227f374ba41SEd Maste void ptimeout_deadline_ms(struct timespec *pt, long ms);
228edf85781SEd Maste void ptimeout_deadline_monotime_tsp(struct timespec *pt, struct timespec *when);
229f374ba41SEd Maste void ptimeout_deadline_monotime(struct timespec *pt, time_t when);
230f374ba41SEd Maste int ptimeout_get_ms(struct timespec *pt);
231f374ba41SEd Maste struct timespec *ptimeout_get_tsp(struct timespec *pt);
232f374ba41SEd Maste int ptimeout_isset(struct timespec *pt);
233f374ba41SEd Maste 
234761efaa7SDag-Erling Smørgrav /* readpass.c */
235761efaa7SDag-Erling Smørgrav 
236761efaa7SDag-Erling Smørgrav #define RP_ECHO			0x0001
237761efaa7SDag-Erling Smørgrav #define RP_ALLOW_STDIN		0x0002
238761efaa7SDag-Erling Smørgrav #define RP_ALLOW_EOF		0x0004
239761efaa7SDag-Erling Smørgrav #define RP_USE_ASKPASS		0x0008
240761efaa7SDag-Erling Smørgrav 
24119261079SEd Maste struct notifier_ctx;
24219261079SEd Maste 
243761efaa7SDag-Erling Smørgrav char	*read_passphrase(const char *, int);
244761efaa7SDag-Erling Smørgrav int	 ask_permission(const char *, ...) __attribute__((format(printf, 1, 2)));
24519261079SEd Maste struct notifier_ctx *notify_start(int, const char *, ...)
24619261079SEd Maste 	__attribute__((format(printf, 2, 3)));
24719261079SEd Maste void	notify_complete(struct notifier_ctx *, const char *, ...)
24819261079SEd Maste 	__attribute__((format(printf, 2, 3)));
249761efaa7SDag-Erling Smørgrav 
250ca86bcf2SDag-Erling Smørgrav #define MINIMUM(a, b)	(((a) < (b)) ? (a) : (b))
251ca86bcf2SDag-Erling Smørgrav #define MAXIMUM(a, b)	(((a) > (b)) ? (a) : (b))
252ca86bcf2SDag-Erling Smørgrav #define ROUNDUP(x, y)   ((((x)+((y)-1))/(y))*(y))
253ca86bcf2SDag-Erling Smørgrav 
25419261079SEd Maste typedef void (*sshsig_t)(int);
25519261079SEd Maste sshsig_t ssh_signal(int, sshsig_t);
2560fdf8faeSEd Maste int signal_is_crash(int);
25719261079SEd Maste 
2584d3fc8b0SEd Maste /* On OpenBSD time_t is int64_t which is long long. */
2594d3fc8b0SEd Maste /* #define SSH_TIME_T_MAX LLONG_MAX */
2604d3fc8b0SEd Maste 
261761efaa7SDag-Erling Smørgrav #endif /* _MISC_H */
262