1*0fdf8faeSEd Maste /* $OpenBSD: misc.h,v 1.109 2024/06/06 17:15:25 djm Exp $ */ 21e8db6e2SBrian Feldman 31e8db6e2SBrian Feldman /* 41e8db6e2SBrian Feldman * Author: Tatu Ylonen <ylo@cs.hut.fi> 51e8db6e2SBrian Feldman * Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland 61e8db6e2SBrian Feldman * All rights reserved 71e8db6e2SBrian Feldman * 81e8db6e2SBrian Feldman * As far as I am concerned, the code I have written for this software 91e8db6e2SBrian Feldman * can be used freely for any purpose. Any derived versions of this 101e8db6e2SBrian Feldman * software must be clearly marked as such, and if the derived work is 111e8db6e2SBrian Feldman * incompatible with the protocol description in the RFC file, it must be 121e8db6e2SBrian Feldman * called by a name other than "ssh" or "Secure Shell". 131e8db6e2SBrian Feldman */ 141e8db6e2SBrian Feldman 15761efaa7SDag-Erling Smørgrav #ifndef _MISC_H 16761efaa7SDag-Erling Smørgrav #define _MISC_H 17761efaa7SDag-Erling Smørgrav 18ca86bcf2SDag-Erling Smørgrav #include <sys/time.h> 194f52dfbbSDag-Erling Smørgrav #include <sys/types.h> 2019261079SEd Maste #include <sys/socket.h> 2119261079SEd Maste #include <stdio.h> 221b91d634SEd Maste #include <signal.h> 23ca86bcf2SDag-Erling Smørgrav 24*0fdf8faeSEd Maste /* special-case port number meaning allow any port */ 25*0fdf8faeSEd Maste #define FWD_PERMIT_ANY_PORT 0 26*0fdf8faeSEd Maste 27*0fdf8faeSEd Maste /* special-case wildcard meaning allow any host */ 28*0fdf8faeSEd Maste #define FWD_PERMIT_ANY_HOST "*" 29*0fdf8faeSEd Maste 30a0ee8cc6SDag-Erling Smørgrav /* Data structure for representing a forwarding request. */ 31a0ee8cc6SDag-Erling Smørgrav struct Forward { 32a0ee8cc6SDag-Erling Smørgrav char *listen_host; /* Host (address) to listen on. */ 33a0ee8cc6SDag-Erling Smørgrav int listen_port; /* Port to forward. */ 34a0ee8cc6SDag-Erling Smørgrav char *listen_path; /* Path to bind domain socket. */ 35a0ee8cc6SDag-Erling Smørgrav char *connect_host; /* Host to connect. */ 36a0ee8cc6SDag-Erling Smørgrav int connect_port; /* Port to connect on connect_host. */ 37a0ee8cc6SDag-Erling Smørgrav char *connect_path; /* Path to connect domain socket. */ 38a0ee8cc6SDag-Erling Smørgrav int allocated_port; /* Dynamically allocated listen port */ 39a0ee8cc6SDag-Erling Smørgrav int handle; /* Handle for dynamic listen ports */ 40a0ee8cc6SDag-Erling Smørgrav }; 41a0ee8cc6SDag-Erling Smørgrav 42076ad2f8SDag-Erling Smørgrav int forward_equals(const struct Forward *, const struct Forward *); 43*0fdf8faeSEd Maste int permitopen_port(const char *p); 44*0fdf8faeSEd Maste 45ca86bcf2SDag-Erling Smørgrav int daemonized(void); 46076ad2f8SDag-Erling Smørgrav 47a0ee8cc6SDag-Erling Smørgrav /* Common server and client forwarding options. */ 48a0ee8cc6SDag-Erling Smørgrav struct ForwardOptions { 49a0ee8cc6SDag-Erling Smørgrav int gateway_ports; /* Allow remote connects to forwarded ports. */ 50a0ee8cc6SDag-Erling Smørgrav mode_t streamlocal_bind_mask; /* umask for streamlocal binds */ 51a0ee8cc6SDag-Erling Smørgrav int streamlocal_bind_unlink; /* unlink socket before bind */ 52a0ee8cc6SDag-Erling Smørgrav }; 53a0ee8cc6SDag-Erling Smørgrav 54d74d50a8SDag-Erling Smørgrav /* misc.c */ 55d74d50a8SDag-Erling Smørgrav 56ae1f160dSDag-Erling Smørgrav char *chop(char *); 5719261079SEd Maste void rtrim(char *); 5819261079SEd Maste void skip_space(char **); 59ae1f160dSDag-Erling Smørgrav char *strdelim(char **); 60190cef3dSDag-Erling Smørgrav char *strdelimw(char **); 61d74d50a8SDag-Erling Smørgrav int set_nonblock(int); 62d74d50a8SDag-Erling Smørgrav int unset_nonblock(int); 63ae1f160dSDag-Erling Smørgrav void set_nodelay(int); 6447dd1d1bSDag-Erling Smørgrav int set_reuseaddr(int); 6547dd1d1bSDag-Erling Smørgrav char *get_rdomain(int); 6647dd1d1bSDag-Erling Smørgrav int set_rdomain(int, const char *); 6719261079SEd Maste int get_sock_af(int); 6819261079SEd Maste void set_sock_tos(int, int); 691b91d634SEd Maste int waitrfd(int, int *, volatile sig_atomic_t *); 7019261079SEd Maste int timeout_connect(int, const struct sockaddr *, socklen_t, int *); 71ae1f160dSDag-Erling Smørgrav int a2port(const char *); 72021d409fSDag-Erling Smørgrav int a2tun(const char *, int *); 73761efaa7SDag-Erling Smørgrav char *put_host_port(const char *, u_short); 7419261079SEd Maste char *hpdelim2(char **, char *); 755e8dbd04SDag-Erling Smørgrav char *hpdelim(char **); 76ae1f160dSDag-Erling Smørgrav char *cleanhostname(char *); 77ae1f160dSDag-Erling Smørgrav char *colon(char *); 7847dd1d1bSDag-Erling Smørgrav int parse_user_host_path(const char *, char **, char **, char **); 79076ad2f8SDag-Erling Smørgrav int parse_user_host_port(const char *, char **, char **, int *); 8047dd1d1bSDag-Erling Smørgrav int parse_uri(const char *, const char *, char **, char **, int *, char **); 8119261079SEd Maste int convtime(const char *); 8219261079SEd Maste const char *fmt_timeframe(time_t t); 8319261079SEd Maste int tilde_expand(const char *, uid_t, char **); 84043840dfSDag-Erling Smørgrav char *tilde_expand_filename(const char *, uid_t); 8519261079SEd Maste 8619261079SEd Maste char *dollar_expand(int *, const char *string, ...); 87043840dfSDag-Erling Smørgrav char *percent_expand(const char *, ...) __attribute__((__sentinel__)); 8819261079SEd Maste char *percent_dollar_expand(const char *, ...) __attribute__((__sentinel__)); 89761efaa7SDag-Erling Smørgrav char *tohex(const void *, size_t); 9019261079SEd Maste void xextendf(char **s, const char *sep, const char *fmt, ...) 9119261079SEd Maste __attribute__((__format__ (printf, 3, 4))) __attribute__((__nonnull__ (3))); 92021d409fSDag-Erling Smørgrav void sanitise_stdfd(void); 93d4af9e69SDag-Erling Smørgrav void ms_subtract_diff(struct timeval *, int *); 941323ec57SEd Maste void ms_to_timespec(struct timespec *, int); 9547dd1d1bSDag-Erling Smørgrav void monotime_ts(struct timespec *); 9647dd1d1bSDag-Erling Smørgrav void monotime_tv(struct timeval *); 97e4a9863fSDag-Erling Smørgrav time_t monotime(void); 98076ad2f8SDag-Erling Smørgrav double monotime_double(void); 99f7167e0eSDag-Erling Smørgrav void lowercase(char *s); 100a0ee8cc6SDag-Erling Smørgrav int unix_listener(const char *, int, int); 10147dd1d1bSDag-Erling Smørgrav int valid_domain(char *, int, const char **); 1022f513db7SEd Maste int valid_env_name(const char *); 10347dd1d1bSDag-Erling Smørgrav const char *atoi_err(const char *, int *); 10447dd1d1bSDag-Erling Smørgrav int parse_absolute_time(const char *, uint64_t *); 10547dd1d1bSDag-Erling Smørgrav void format_absolute_time(uint64_t, char *, size_t); 106069ac184SEd Maste int parse_pattern_interval(const char *, char **, int *); 10719261079SEd Maste int path_absolute(const char *); 10819261079SEd Maste int stdfd_devnull(int, int, int); 109535af610SEd Maste int lib_contains_symbol(const char *, const char *); 110f7167e0eSDag-Erling Smørgrav 111b15c8340SDag-Erling Smørgrav void sock_set_v6only(int); 1121e8db6e2SBrian Feldman 113ae1f160dSDag-Erling Smørgrav struct passwd *pwcopy(struct passwd *); 114d4af9e69SDag-Erling Smørgrav const char *ssh_gai_strerror(int); 1151e8db6e2SBrian Feldman 11619261079SEd Maste typedef void privdrop_fn(struct passwd *); 11719261079SEd Maste typedef void privrestore_fn(void); 11819261079SEd Maste #define SSH_SUBPROCESS_STDOUT_DISCARD (1) /* Discard stdout */ 11919261079SEd Maste #define SSH_SUBPROCESS_STDOUT_CAPTURE (1<<1) /* Redirect stdout */ 12019261079SEd Maste #define SSH_SUBPROCESS_STDERR_DISCARD (1<<2) /* Discard stderr */ 12119261079SEd Maste #define SSH_SUBPROCESS_UNSAFE_PATH (1<<3) /* Don't check for safe cmd */ 12219261079SEd Maste #define SSH_SUBPROCESS_PRESERVE_ENV (1<<4) /* Keep parent environment */ 12319261079SEd Maste pid_t subprocess(const char *, const char *, int, char **, FILE **, u_int, 12419261079SEd Maste struct passwd *, privdrop_fn *, privrestore_fn *); 12519261079SEd Maste 126ae1f160dSDag-Erling Smørgrav typedef struct arglist arglist; 127ae1f160dSDag-Erling Smørgrav struct arglist { 128ae1f160dSDag-Erling Smørgrav char **list; 129d74d50a8SDag-Erling Smørgrav u_int num; 130d74d50a8SDag-Erling Smørgrav u_int nalloc; 131ae1f160dSDag-Erling Smørgrav }; 132021d409fSDag-Erling Smørgrav void addargs(arglist *, char *, ...) 133021d409fSDag-Erling Smørgrav __attribute__((format(printf, 2, 3))); 134021d409fSDag-Erling Smørgrav void replacearg(arglist *, u_int, char *, ...) 135021d409fSDag-Erling Smørgrav __attribute__((format(printf, 3, 4))); 136021d409fSDag-Erling Smørgrav void freeargs(arglist *); 137d74d50a8SDag-Erling Smørgrav 13847dd1d1bSDag-Erling Smørgrav int tun_open(int, int, char **); 139021d409fSDag-Erling Smørgrav 140021d409fSDag-Erling Smørgrav /* Common definitions for ssh tunnel device forwarding */ 141021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_NO 0x00 142021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_POINTOPOINT 0x01 143021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_ETHERNET 0x02 144021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_DEFAULT SSH_TUNMODE_POINTOPOINT 145021d409fSDag-Erling Smørgrav #define SSH_TUNMODE_YES (SSH_TUNMODE_POINTOPOINT|SSH_TUNMODE_ETHERNET) 146021d409fSDag-Erling Smørgrav 147021d409fSDag-Erling Smørgrav #define SSH_TUNID_ANY 0x7fffffff 148021d409fSDag-Erling Smørgrav #define SSH_TUNID_ERR (SSH_TUNID_ANY - 1) 149021d409fSDag-Erling Smørgrav #define SSH_TUNID_MAX (SSH_TUNID_ANY - 2) 150761efaa7SDag-Erling Smørgrav 151a0ee8cc6SDag-Erling Smørgrav /* Fake port to indicate that host field is really a path. */ 152a0ee8cc6SDag-Erling Smørgrav #define PORT_STREAMLOCAL -2 153a0ee8cc6SDag-Erling Smørgrav 154761efaa7SDag-Erling Smørgrav /* Functions to extract or store big-endian words of various sizes */ 155761efaa7SDag-Erling Smørgrav u_int64_t get_u64(const void *) 156761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 8))); 157761efaa7SDag-Erling Smørgrav u_int32_t get_u32(const void *) 158761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 4))); 159761efaa7SDag-Erling Smørgrav u_int16_t get_u16(const void *) 160761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 2))); 161761efaa7SDag-Erling Smørgrav void put_u64(void *, u_int64_t) 162761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 8))); 163761efaa7SDag-Erling Smørgrav void put_u32(void *, u_int32_t) 164761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 4))); 165761efaa7SDag-Erling Smørgrav void put_u16(void *, u_int16_t) 166761efaa7SDag-Erling Smørgrav __attribute__((__bounded__( __minbytes__, 1, 2))); 167761efaa7SDag-Erling Smørgrav 168a0ee8cc6SDag-Erling Smørgrav /* Little-endian store/load, used by umac.c */ 169a0ee8cc6SDag-Erling Smørgrav u_int32_t get_u32_le(const void *) 170a0ee8cc6SDag-Erling Smørgrav __attribute__((__bounded__(__minbytes__, 1, 4))); 171a0ee8cc6SDag-Erling Smørgrav void put_u32_le(void *, u_int32_t) 172a0ee8cc6SDag-Erling Smørgrav __attribute__((__bounded__(__minbytes__, 1, 4))); 173a0ee8cc6SDag-Erling Smørgrav 1744a421b63SDag-Erling Smørgrav struct bwlimit { 1754a421b63SDag-Erling Smørgrav size_t buflen; 17619261079SEd Maste u_int64_t rate; /* desired rate in kbit/s */ 17719261079SEd Maste u_int64_t thresh; /* threshold after which we'll check timers */ 17819261079SEd Maste u_int64_t lamt; /* amount written in last timer interval */ 1794a421b63SDag-Erling Smørgrav struct timeval bwstart, bwend; 1804a421b63SDag-Erling Smørgrav }; 1814a421b63SDag-Erling Smørgrav 1824a421b63SDag-Erling Smørgrav void bandwidth_limit_init(struct bwlimit *, u_int64_t, size_t); 1834a421b63SDag-Erling Smørgrav void bandwidth_limit(struct bwlimit *, size_t); 1844a421b63SDag-Erling Smørgrav 1854a421b63SDag-Erling Smørgrav int parse_ipqos(const char *); 186e146993eSDag-Erling Smørgrav const char *iptos2str(int); 1874a421b63SDag-Erling Smørgrav void mktemp_proto(char *, size_t); 188761efaa7SDag-Erling Smørgrav 1894f52dfbbSDag-Erling Smørgrav void child_set_env(char ***envp, u_int *envsizep, const char *name, 1904f52dfbbSDag-Erling Smørgrav const char *value); 19119261079SEd Maste const char *lookup_env_in_list(const char *env, 19219261079SEd Maste char * const *envs, size_t nenvs); 19338a52bd3SEd Maste const char *lookup_setenv_in_list(const char *env, 19438a52bd3SEd Maste char * const *envs, size_t nenvs); 1954f52dfbbSDag-Erling Smørgrav 19619261079SEd Maste int argv_split(const char *, int *, char ***, int); 1974f52dfbbSDag-Erling Smørgrav char *argv_assemble(int, char **argv); 19819261079SEd Maste char *argv_next(int *, char ***); 19919261079SEd Maste void argv_consume(int *); 20019261079SEd Maste void argv_free(char **, int); 20119261079SEd Maste 2024f52dfbbSDag-Erling Smørgrav int exited_cleanly(pid_t, const char *, const char *, int); 2034f52dfbbSDag-Erling Smørgrav 2044f52dfbbSDag-Erling Smørgrav struct stat; 2054f52dfbbSDag-Erling Smørgrav int safe_path(const char *, struct stat *, const char *, uid_t, 2064f52dfbbSDag-Erling Smørgrav char *, size_t); 2074f52dfbbSDag-Erling Smørgrav int safe_path_fd(int, const char *, struct passwd *, 2084f52dfbbSDag-Erling Smørgrav char *err, size_t errlen); 2094f52dfbbSDag-Erling Smørgrav 21019261079SEd Maste /* authorized_key-style options parsing helpers */ 21119261079SEd Maste int opt_flag(const char *opt, int allow_negate, const char **optsp); 21219261079SEd Maste char *opt_dequote(const char **sp, const char **errstrp); 21319261079SEd Maste int opt_match(const char **opts, const char *term); 21419261079SEd Maste 21519261079SEd Maste /* readconf/servconf option lists */ 21619261079SEd Maste void opt_array_append(const char *file, const int line, 21719261079SEd Maste const char *directive, char ***array, u_int *lp, const char *s); 21819261079SEd Maste void opt_array_append2(const char *file, const int line, 21919261079SEd Maste const char *directive, char ***array, int **iarray, u_int *lp, 22019261079SEd Maste const char *s, int i); 221a91a2465SEd Maste void opt_array_free2(char **array, int **iarray, u_int l); 22219261079SEd Maste 223f374ba41SEd Maste struct timespec; 224f374ba41SEd Maste void ptimeout_init(struct timespec *pt); 225f374ba41SEd Maste void ptimeout_deadline_sec(struct timespec *pt, long sec); 226f374ba41SEd Maste void ptimeout_deadline_ms(struct timespec *pt, long ms); 227edf85781SEd Maste void ptimeout_deadline_monotime_tsp(struct timespec *pt, struct timespec *when); 228f374ba41SEd Maste void ptimeout_deadline_monotime(struct timespec *pt, time_t when); 229f374ba41SEd Maste int ptimeout_get_ms(struct timespec *pt); 230f374ba41SEd Maste struct timespec *ptimeout_get_tsp(struct timespec *pt); 231f374ba41SEd Maste int ptimeout_isset(struct timespec *pt); 232f374ba41SEd Maste 233761efaa7SDag-Erling Smørgrav /* readpass.c */ 234761efaa7SDag-Erling Smørgrav 235761efaa7SDag-Erling Smørgrav #define RP_ECHO 0x0001 236761efaa7SDag-Erling Smørgrav #define RP_ALLOW_STDIN 0x0002 237761efaa7SDag-Erling Smørgrav #define RP_ALLOW_EOF 0x0004 238761efaa7SDag-Erling Smørgrav #define RP_USE_ASKPASS 0x0008 239761efaa7SDag-Erling Smørgrav 24019261079SEd Maste struct notifier_ctx; 24119261079SEd Maste 242761efaa7SDag-Erling Smørgrav char *read_passphrase(const char *, int); 243761efaa7SDag-Erling Smørgrav int ask_permission(const char *, ...) __attribute__((format(printf, 1, 2))); 24419261079SEd Maste struct notifier_ctx *notify_start(int, const char *, ...) 24519261079SEd Maste __attribute__((format(printf, 2, 3))); 24619261079SEd Maste void notify_complete(struct notifier_ctx *, const char *, ...) 24719261079SEd Maste __attribute__((format(printf, 2, 3))); 248761efaa7SDag-Erling Smørgrav 249ca86bcf2SDag-Erling Smørgrav #define MINIMUM(a, b) (((a) < (b)) ? (a) : (b)) 250ca86bcf2SDag-Erling Smørgrav #define MAXIMUM(a, b) (((a) > (b)) ? (a) : (b)) 251ca86bcf2SDag-Erling Smørgrav #define ROUNDUP(x, y) ((((x)+((y)-1))/(y))*(y)) 252ca86bcf2SDag-Erling Smørgrav 25319261079SEd Maste typedef void (*sshsig_t)(int); 25419261079SEd Maste sshsig_t ssh_signal(int, sshsig_t); 255*0fdf8faeSEd Maste int signal_is_crash(int); 25619261079SEd Maste 2574d3fc8b0SEd Maste /* On OpenBSD time_t is int64_t which is long long. */ 2584d3fc8b0SEd Maste /* #define SSH_TIME_T_MAX LLONG_MAX */ 2594d3fc8b0SEd Maste 260761efaa7SDag-Erling Smørgrav #endif /* _MISC_H */ 261