1 /*- 2 * Copyright (c) 2005 Doug Rabson 3 * All rights reserved. 4 * 5 * Redistribution and use in source and binary forms, with or without 6 * modification, are permitted provided that the following conditions 7 * are met: 8 * 1. Redistributions of source code must retain the above copyright 9 * notice, this list of conditions and the following disclaimer. 10 * 2. Redistributions in binary form must reproduce the above copyright 11 * notice, this list of conditions and the following disclaimer in the 12 * documentation and/or other materials provided with the distribution. 13 * 14 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND 15 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 16 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 17 * ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE 18 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 19 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 20 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 21 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 22 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 23 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 24 * SUCH DAMAGE. 25 * 26 * $FreeBSD$ 27 */ 28 29 #include <gssapi/gssapi.h> 30 #include <stdlib.h> 31 #include <errno.h> 32 33 #include "mech_switch.h" 34 #include "context.h" 35 36 OM_uint32 37 gss_import_sec_context(OM_uint32 *minor_status, 38 const gss_buffer_t interprocess_token, 39 gss_ctx_id_t *context_handle) 40 { 41 OM_uint32 major_status; 42 struct _gss_mech_switch *m; 43 struct _gss_context *ctx; 44 gss_OID_desc mech_oid; 45 gss_buffer_desc buf; 46 unsigned char *p; 47 size_t len; 48 49 *minor_status = 0; 50 *context_handle = 0; 51 52 /* 53 * We added an oid to the front of the token in 54 * gss_export_sec_context. 55 */ 56 p = interprocess_token->value; 57 len = interprocess_token->length; 58 if (len < 2) 59 return (GSS_S_DEFECTIVE_TOKEN); 60 mech_oid.length = (p[0] << 8) | p[1]; 61 if (len < mech_oid.length + 2) 62 return (GSS_S_DEFECTIVE_TOKEN); 63 mech_oid.elements = p + 2; 64 buf.length = len - 2 - mech_oid.length; 65 buf.value = p + 2 + mech_oid.length; 66 67 m = _gss_find_mech_switch(&mech_oid); 68 if (!m) 69 return (GSS_S_DEFECTIVE_TOKEN); 70 71 ctx = malloc(sizeof(struct _gss_context)); 72 if (!ctx) { 73 *minor_status = ENOMEM; 74 return (GSS_S_FAILURE); 75 } 76 ctx->gc_mech = m; 77 major_status = m->gm_import_sec_context(minor_status, 78 &buf, &ctx->gc_ctx); 79 if (major_status != GSS_S_COMPLETE) { 80 free(ctx); 81 } else { 82 *context_handle = (gss_ctx_id_t) ctx; 83 } 84 85 return (major_status); 86 } 87