17c478bd9Sstevel@tonic-gate /*
27c478bd9Sstevel@tonic-gate * CDDL HEADER START
37c478bd9Sstevel@tonic-gate *
47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the
53010f05bSdp * Common Development and Distribution License (the "License").
63010f05bSdp * You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate *
87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate * and limitations under the License.
127c478bd9Sstevel@tonic-gate *
137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate *
197c478bd9Sstevel@tonic-gate * CDDL HEADER END
207c478bd9Sstevel@tonic-gate */
217c478bd9Sstevel@tonic-gate /*
22b0d0a1c8SViswanathan Kannappan * Copyright 2009 Sun Microsystems, Inc. All rights reserved.
237c478bd9Sstevel@tonic-gate * Use is subject to license terms.
247c478bd9Sstevel@tonic-gate */
257c478bd9Sstevel@tonic-gate /* Copyright (c) 1984, 1986, 1987, 1988, 1989 AT&T */
267c478bd9Sstevel@tonic-gate /* All Rights Reserved */
277c478bd9Sstevel@tonic-gate
287c478bd9Sstevel@tonic-gate
297c478bd9Sstevel@tonic-gate #include <sys/types.h>
307c478bd9Sstevel@tonic-gate #include <sys/stat.h>
317c478bd9Sstevel@tonic-gate #include <sys/types.h>
327c478bd9Sstevel@tonic-gate #include <sys/wait.h>
337c478bd9Sstevel@tonic-gate #include <errno.h>
347c478bd9Sstevel@tonic-gate #include <signal.h>
357c478bd9Sstevel@tonic-gate #include <stdio.h>
367c478bd9Sstevel@tonic-gate #include <stdlib.h>
377c478bd9Sstevel@tonic-gate #include <string.h>
387c478bd9Sstevel@tonic-gate #include <fcntl.h>
397c478bd9Sstevel@tonic-gate #include <ctype.h>
407c478bd9Sstevel@tonic-gate #include <pwd.h>
417c478bd9Sstevel@tonic-gate #include <unistd.h>
427c478bd9Sstevel@tonic-gate #include <locale.h>
437c478bd9Sstevel@tonic-gate #include <nl_types.h>
447c478bd9Sstevel@tonic-gate #include <langinfo.h>
457c478bd9Sstevel@tonic-gate #include <libintl.h>
467c478bd9Sstevel@tonic-gate #include <security/pam_appl.h>
475b08e637SChris Gerhard #include <limits.h>
485b08e637SChris Gerhard #include <libzoneinfo.h>
497c478bd9Sstevel@tonic-gate #include "cron.h"
503d63ea05Sas145665 #include "getresponse.h"
517c478bd9Sstevel@tonic-gate
52d61d085dScf46844 #if defined(XPG4)
53d61d085dScf46844 #define VIPATH "/usr/xpg4/bin/vi"
54d61d085dScf46844 #elif defined(XPG6)
55d61d085dScf46844 #define VIPATH "/usr/xpg6/bin/vi"
56d61d085dScf46844 #else
57d61d085dScf46844 #define _XPG_NOTDEFINED
58d61d085dScf46844 #define VIPATH "vi"
59d61d085dScf46844 #endif
60d61d085dScf46844
617c478bd9Sstevel@tonic-gate #define TMPFILE "_cron" /* prefix for tmp file */
627c478bd9Sstevel@tonic-gate #define CRMODE 0600 /* mode for creating crontabs */
637c478bd9Sstevel@tonic-gate
647c478bd9Sstevel@tonic-gate #define BADCREATE \
657c478bd9Sstevel@tonic-gate "can't create your crontab file in the crontab directory."
667c478bd9Sstevel@tonic-gate #define BADOPEN "can't open your crontab file."
677c478bd9Sstevel@tonic-gate #define BADSHELL \
687c478bd9Sstevel@tonic-gate "because your login shell isn't /usr/bin/sh, you can't use cron."
697c478bd9Sstevel@tonic-gate #define WARNSHELL "warning: commands will be executed using /usr/bin/sh\n"
707c478bd9Sstevel@tonic-gate #define BADUSAGE \
713010f05bSdp "usage:\n" \
723010f05bSdp "\tcrontab [file]\n" \
733010f05bSdp "\tcrontab -e [username]\n" \
743010f05bSdp "\tcrontab -l [username]\n" \
753010f05bSdp "\tcrontab -r [username]"
767c478bd9Sstevel@tonic-gate #define INVALIDUSER "you are not a valid user (no entry in /etc/passwd)."
777c478bd9Sstevel@tonic-gate #define NOTALLOWED "you are not authorized to use cron. Sorry."
787c478bd9Sstevel@tonic-gate #define NOTROOT \
797c478bd9Sstevel@tonic-gate "you must be super-user to access another user's crontab file"
807c478bd9Sstevel@tonic-gate #define AUDITREJECT "The audit context for your shell has not been set."
817c478bd9Sstevel@tonic-gate #define EOLN "unexpected end of line."
827c478bd9Sstevel@tonic-gate #define UNEXPECT "unexpected character found in line."
837c478bd9Sstevel@tonic-gate #define OUTOFBOUND "number out of bounds."
847c478bd9Sstevel@tonic-gate #define ERRSFND "errors detected in input, no crontab file generated."
857c478bd9Sstevel@tonic-gate #define ED_ERROR \
867c478bd9Sstevel@tonic-gate " The editor indicates that an error occurred while you were\n"\
877c478bd9Sstevel@tonic-gate " editing the crontab data - usually a minor typing error.\n\n"
887c478bd9Sstevel@tonic-gate #define BADREAD "error reading your crontab file"
897c478bd9Sstevel@tonic-gate #define ED_PROMPT \
903d63ea05Sas145665 " Edit again, to ensure crontab information is intact (%s/%s)?\n"\
913d63ea05Sas145665 " ('%s' will discard edits.)"
927c478bd9Sstevel@tonic-gate #define NAMETOOLONG "login name too long"
935b08e637SChris Gerhard #define BAD_TZ "Timezone unrecognized in: %s"
945b08e637SChris Gerhard #define BAD_SHELL "Invalid shell specified: %s"
955b08e637SChris Gerhard #define BAD_HOME "Unable to access directory: %s\t%s\n"
967c478bd9Sstevel@tonic-gate
977c478bd9Sstevel@tonic-gate extern int per_errno;
987c478bd9Sstevel@tonic-gate
997c478bd9Sstevel@tonic-gate extern int audit_crontab_modify(char *, char *, int);
1007c478bd9Sstevel@tonic-gate extern int audit_crontab_delete(char *, int);
1017c478bd9Sstevel@tonic-gate extern int audit_crontab_not_allowed(uid_t, char *);
1027c478bd9Sstevel@tonic-gate
1037c478bd9Sstevel@tonic-gate int err;
1047c478bd9Sstevel@tonic-gate int cursor;
1057c478bd9Sstevel@tonic-gate char *cf;
1067c478bd9Sstevel@tonic-gate char *tnam;
1077c478bd9Sstevel@tonic-gate char edtemp[5+13+1];
1087c478bd9Sstevel@tonic-gate char line[CTLINESIZE];
1097c478bd9Sstevel@tonic-gate static char login[UNAMESIZE];
1107c478bd9Sstevel@tonic-gate
1117c478bd9Sstevel@tonic-gate static int next_field(int, int);
1127c478bd9Sstevel@tonic-gate static void catch(int);
1137c478bd9Sstevel@tonic-gate static void crabort(char *);
1147c478bd9Sstevel@tonic-gate static void cerror(char *);
1157c478bd9Sstevel@tonic-gate static void copycron(FILE *);
1167c478bd9Sstevel@tonic-gate
117032624d5Sbasabi int
main(int argc,char ** argv)118032624d5Sbasabi main(int argc, char **argv)
1197c478bd9Sstevel@tonic-gate {
1207c478bd9Sstevel@tonic-gate int c, r;
1217c478bd9Sstevel@tonic-gate int rflag = 0;
1227c478bd9Sstevel@tonic-gate int lflag = 0;
1237c478bd9Sstevel@tonic-gate int eflag = 0;
1247c478bd9Sstevel@tonic-gate int errflg = 0;
1257c478bd9Sstevel@tonic-gate char *pp;
1267c478bd9Sstevel@tonic-gate FILE *fp, *tmpfp;
1277c478bd9Sstevel@tonic-gate struct stat stbuf;
1287c478bd9Sstevel@tonic-gate struct passwd *pwp;
1297c478bd9Sstevel@tonic-gate time_t omodtime;
1307c478bd9Sstevel@tonic-gate char *editor;
1317c478bd9Sstevel@tonic-gate uid_t ruid;
1327c478bd9Sstevel@tonic-gate pid_t pid;
1337c478bd9Sstevel@tonic-gate int stat_loc;
1347c478bd9Sstevel@tonic-gate int ret;
1357c478bd9Sstevel@tonic-gate char real_login[UNAMESIZE];
1367c478bd9Sstevel@tonic-gate int tmpfd = -1;
1377c478bd9Sstevel@tonic-gate pam_handle_t *pamh;
1387c478bd9Sstevel@tonic-gate int pam_error;
13978ae324cSSumanth Naropanth char *buf;
14078ae324cSSumanth Naropanth size_t buflen;
1417c478bd9Sstevel@tonic-gate
1427c478bd9Sstevel@tonic-gate (void) setlocale(LC_ALL, "");
1437c478bd9Sstevel@tonic-gate #if !defined(TEXT_DOMAIN) /* Should be defined by cc -D */
1447c478bd9Sstevel@tonic-gate #define TEXT_DOMAIN "SYS_TEST" /* Use this only if it weren't */
1457c478bd9Sstevel@tonic-gate #endif
1467c478bd9Sstevel@tonic-gate (void) textdomain(TEXT_DOMAIN);
1473d63ea05Sas145665
1483d63ea05Sas145665 if (init_yes() < 0) {
1493d63ea05Sas145665 (void) fprintf(stderr, gettext(ERR_MSG_INIT_YES),
1503d63ea05Sas145665 strerror(errno));
1513d63ea05Sas145665 exit(1);
1523d63ea05Sas145665 }
1537c478bd9Sstevel@tonic-gate
1547c478bd9Sstevel@tonic-gate while ((c = getopt(argc, argv, "elr")) != EOF)
1557c478bd9Sstevel@tonic-gate switch (c) {
1567c478bd9Sstevel@tonic-gate case 'e':
1577c478bd9Sstevel@tonic-gate eflag++;
1587c478bd9Sstevel@tonic-gate break;
1597c478bd9Sstevel@tonic-gate case 'l':
1607c478bd9Sstevel@tonic-gate lflag++;
1617c478bd9Sstevel@tonic-gate break;
1627c478bd9Sstevel@tonic-gate case 'r':
1637c478bd9Sstevel@tonic-gate rflag++;
1647c478bd9Sstevel@tonic-gate break;
1657c478bd9Sstevel@tonic-gate case '?':
1667c478bd9Sstevel@tonic-gate errflg++;
1677c478bd9Sstevel@tonic-gate break;
1687c478bd9Sstevel@tonic-gate }
1697c478bd9Sstevel@tonic-gate
1707c478bd9Sstevel@tonic-gate if (eflag + lflag + rflag > 1)
1717c478bd9Sstevel@tonic-gate errflg++;
1727c478bd9Sstevel@tonic-gate
1737c478bd9Sstevel@tonic-gate argc -= optind;
1747c478bd9Sstevel@tonic-gate argv += optind;
1757c478bd9Sstevel@tonic-gate if (errflg || argc > 1)
1767c478bd9Sstevel@tonic-gate crabort(BADUSAGE);
1777c478bd9Sstevel@tonic-gate
1787c478bd9Sstevel@tonic-gate ruid = getuid();
1797c478bd9Sstevel@tonic-gate if ((pwp = getpwuid(ruid)) == NULL)
1807c478bd9Sstevel@tonic-gate crabort(INVALIDUSER);
1817c478bd9Sstevel@tonic-gate
1827c478bd9Sstevel@tonic-gate if (strlcpy(real_login, pwp->pw_name, sizeof (real_login))
1837c478bd9Sstevel@tonic-gate >= sizeof (real_login))
1847c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG);
1857c478bd9Sstevel@tonic-gate
1867c478bd9Sstevel@tonic-gate if ((eflag || lflag || rflag) && argc == 1) {
1877c478bd9Sstevel@tonic-gate if ((pwp = getpwnam(*argv)) == NULL)
1887c478bd9Sstevel@tonic-gate crabort(INVALIDUSER);
1897c478bd9Sstevel@tonic-gate
190*d1419d5aSNobutomo Nakano if (!cron_admin(real_login)) {
1917c478bd9Sstevel@tonic-gate if (pwp->pw_uid != ruid)
1927c478bd9Sstevel@tonic-gate crabort(NOTROOT);
1937c478bd9Sstevel@tonic-gate else
1947c478bd9Sstevel@tonic-gate pp = getuser(ruid);
1957c478bd9Sstevel@tonic-gate } else
1967c478bd9Sstevel@tonic-gate pp = *argv++;
1977c478bd9Sstevel@tonic-gate } else {
1987c478bd9Sstevel@tonic-gate pp = getuser(ruid);
1997c478bd9Sstevel@tonic-gate }
2007c478bd9Sstevel@tonic-gate
2017c478bd9Sstevel@tonic-gate if (pp == NULL) {
2027c478bd9Sstevel@tonic-gate if (per_errno == 2)
2037c478bd9Sstevel@tonic-gate crabort(BADSHELL);
2047c478bd9Sstevel@tonic-gate else
2057c478bd9Sstevel@tonic-gate crabort(INVALIDUSER);
2067c478bd9Sstevel@tonic-gate }
2077c478bd9Sstevel@tonic-gate if (strlcpy(login, pp, sizeof (login)) >= sizeof (login))
2087c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG);
2097c478bd9Sstevel@tonic-gate if (!allowed(login, CRONALLOW, CRONDENY))
2107c478bd9Sstevel@tonic-gate crabort(NOTALLOWED);
2117c478bd9Sstevel@tonic-gate
2127c478bd9Sstevel@tonic-gate /* Do account validation check */
2137c478bd9Sstevel@tonic-gate pam_error = pam_start("cron", pp, NULL, &pamh);
2147c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) {
2157c478bd9Sstevel@tonic-gate crabort((char *)pam_strerror(pamh, pam_error));
2167c478bd9Sstevel@tonic-gate }
2177c478bd9Sstevel@tonic-gate pam_error = pam_acct_mgmt(pamh, PAM_SILENT);
2187c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) {
2197c478bd9Sstevel@tonic-gate (void) fprintf(stderr, gettext("Warning - Invalid account: "
2207c478bd9Sstevel@tonic-gate "'%s' not allowed to execute cronjobs\n"), pp);
2217c478bd9Sstevel@tonic-gate }
2227c478bd9Sstevel@tonic-gate (void) pam_end(pamh, PAM_SUCCESS);
2237c478bd9Sstevel@tonic-gate
2247c478bd9Sstevel@tonic-gate
2257c478bd9Sstevel@tonic-gate /* check for unaudited shell */
2267c478bd9Sstevel@tonic-gate if (audit_crontab_not_allowed(ruid, pp))
2277c478bd9Sstevel@tonic-gate crabort(AUDITREJECT);
2287c478bd9Sstevel@tonic-gate
2297c478bd9Sstevel@tonic-gate cf = xmalloc(strlen(CRONDIR)+strlen(login)+2);
2307c478bd9Sstevel@tonic-gate strcat(strcat(strcpy(cf, CRONDIR), "/"), login);
2317c478bd9Sstevel@tonic-gate
2327c478bd9Sstevel@tonic-gate if (rflag) {
2337c478bd9Sstevel@tonic-gate r = unlink(cf);
2347c478bd9Sstevel@tonic-gate cron_sendmsg(DELETE, login, login, CRON);
2357c478bd9Sstevel@tonic-gate audit_crontab_delete(cf, r);
2367c478bd9Sstevel@tonic-gate exit(0);
2377c478bd9Sstevel@tonic-gate }
2387c478bd9Sstevel@tonic-gate if (lflag) {
2397c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL)
2407c478bd9Sstevel@tonic-gate crabort(BADOPEN);
2417c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL)
2427c478bd9Sstevel@tonic-gate fputs(line, stdout);
2437c478bd9Sstevel@tonic-gate fclose(fp);
2447c478bd9Sstevel@tonic-gate exit(0);
2457c478bd9Sstevel@tonic-gate }
2467c478bd9Sstevel@tonic-gate if (eflag) {
2477c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL) {
2487c478bd9Sstevel@tonic-gate if (errno != ENOENT)
2497c478bd9Sstevel@tonic-gate crabort(BADOPEN);
2507c478bd9Sstevel@tonic-gate }
2517c478bd9Sstevel@tonic-gate (void) strcpy(edtemp, "/tmp/crontabXXXXXX");
2527c478bd9Sstevel@tonic-gate tmpfd = mkstemp(edtemp);
2537c478bd9Sstevel@tonic-gate if (fchown(tmpfd, ruid, -1) == -1) {
2547c478bd9Sstevel@tonic-gate (void) close(tmpfd);
2557c478bd9Sstevel@tonic-gate crabort("fchown of temporary file failed");
2567c478bd9Sstevel@tonic-gate }
2577c478bd9Sstevel@tonic-gate (void) close(tmpfd);
2587c478bd9Sstevel@tonic-gate /*
2597c478bd9Sstevel@tonic-gate * Fork off a child with user's permissions,
2607c478bd9Sstevel@tonic-gate * to edit the crontab file
2617c478bd9Sstevel@tonic-gate */
2627c478bd9Sstevel@tonic-gate if ((pid = fork()) == (pid_t)-1)
2637c478bd9Sstevel@tonic-gate crabort("fork failed");
2647c478bd9Sstevel@tonic-gate if (pid == 0) { /* child process */
2657c478bd9Sstevel@tonic-gate /* give up super-user privileges. */
2667c478bd9Sstevel@tonic-gate setuid(ruid);
2677c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "w")) == NULL)
2687c478bd9Sstevel@tonic-gate crabort("can't create temporary file");
2697c478bd9Sstevel@tonic-gate if (fp != NULL) {
2707c478bd9Sstevel@tonic-gate /*
2717c478bd9Sstevel@tonic-gate * Copy user's crontab file to temporary file.
2727c478bd9Sstevel@tonic-gate */
2737c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) {
2747c478bd9Sstevel@tonic-gate fputs(line, tmpfp);
2757c478bd9Sstevel@tonic-gate if (ferror(tmpfp)) {
2767c478bd9Sstevel@tonic-gate fclose(fp);
2777c478bd9Sstevel@tonic-gate fclose(tmpfp);
2787c478bd9Sstevel@tonic-gate crabort("write error on"
2797c478bd9Sstevel@tonic-gate "temporary file");
2807c478bd9Sstevel@tonic-gate }
2817c478bd9Sstevel@tonic-gate }
2827c478bd9Sstevel@tonic-gate if (ferror(fp)) {
2837c478bd9Sstevel@tonic-gate fclose(fp);
2847c478bd9Sstevel@tonic-gate fclose(tmpfp);
2857c478bd9Sstevel@tonic-gate crabort(BADREAD);
2867c478bd9Sstevel@tonic-gate }
2877c478bd9Sstevel@tonic-gate fclose(fp);
2887c478bd9Sstevel@tonic-gate }
2897c478bd9Sstevel@tonic-gate if (fclose(tmpfp) == EOF)
2907c478bd9Sstevel@tonic-gate crabort("write error on temporary file");
2917c478bd9Sstevel@tonic-gate if (stat(edtemp, &stbuf) < 0)
2927c478bd9Sstevel@tonic-gate crabort("can't stat temporary file");
2937c478bd9Sstevel@tonic-gate omodtime = stbuf.st_mtime;
294d61d085dScf46844 #ifdef _XPG_NOTDEFINED
2957c478bd9Sstevel@tonic-gate editor = getenv("VISUAL");
296d61d085dScf46844 if (editor == NULL) {
297d61d085dScf46844 #endif
2987c478bd9Sstevel@tonic-gate editor = getenv("EDITOR");
2997c478bd9Sstevel@tonic-gate if (editor == NULL)
300d61d085dScf46844 editor = VIPATH;
301d61d085dScf46844 #ifdef _XPG_NOTDEFINED
302d61d085dScf46844 }
303d61d085dScf46844 #endif
30478ae324cSSumanth Naropanth buflen = strlen(editor) + strlen(edtemp) + 2;
30578ae324cSSumanth Naropanth buf = xmalloc(buflen);
30678ae324cSSumanth Naropanth (void) snprintf(buf, buflen, "%s %s", editor, edtemp);
3071c0be37bSsn199410
3087c478bd9Sstevel@tonic-gate sleep(1);
3097c478bd9Sstevel@tonic-gate
3107c478bd9Sstevel@tonic-gate while (1) {
31178ae324cSSumanth Naropanth ret = system(buf);
3121c0be37bSsn199410
3137c478bd9Sstevel@tonic-gate /* sanity checks */
3147c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "r")) == NULL)
3157c478bd9Sstevel@tonic-gate crabort("can't open temporary file");
3167c478bd9Sstevel@tonic-gate if (fstat(fileno(tmpfp), &stbuf) < 0)
3177c478bd9Sstevel@tonic-gate crabort("can't stat temporary file");
3187c478bd9Sstevel@tonic-gate if (stbuf.st_size == 0)
3197c478bd9Sstevel@tonic-gate crabort("temporary file empty");
3207c478bd9Sstevel@tonic-gate if (omodtime == stbuf.st_mtime) {
3217c478bd9Sstevel@tonic-gate (void) unlink(edtemp);
3227c478bd9Sstevel@tonic-gate fprintf(stderr, gettext(
3233d63ea05Sas145665 "The crontab file was not"
3243d63ea05Sas145665 " changed.\n"));
3257c478bd9Sstevel@tonic-gate exit(1);
3267c478bd9Sstevel@tonic-gate }
32778ae324cSSumanth Naropanth if ((ret) && (errno != EINTR)) {
3287c478bd9Sstevel@tonic-gate /*
3297c478bd9Sstevel@tonic-gate * Some editors (like 'vi') can return
3307c478bd9Sstevel@tonic-gate * a non-zero exit status even though
3317c478bd9Sstevel@tonic-gate * everything is okay. Need to check.
3327c478bd9Sstevel@tonic-gate */
3337c478bd9Sstevel@tonic-gate fprintf(stderr, gettext(ED_ERROR));
3347c478bd9Sstevel@tonic-gate fflush(stderr);
3357c478bd9Sstevel@tonic-gate if (isatty(fileno(stdin))) {
3367c478bd9Sstevel@tonic-gate /* Interactive */
3371c0be37bSsn199410 fprintf(stdout,
3381c0be37bSsn199410 gettext(ED_PROMPT),
3393d63ea05Sas145665 yesstr, nostr, nostr);
3407c478bd9Sstevel@tonic-gate fflush(stdout);
3417c478bd9Sstevel@tonic-gate
3427c478bd9Sstevel@tonic-gate if (yes()) {
3437c478bd9Sstevel@tonic-gate /* Edit again */
3447c478bd9Sstevel@tonic-gate continue;
3457c478bd9Sstevel@tonic-gate } else {
3467c478bd9Sstevel@tonic-gate /* Dump changes */
3477c478bd9Sstevel@tonic-gate (void) unlink(edtemp);
3487c478bd9Sstevel@tonic-gate exit(1);
3497c478bd9Sstevel@tonic-gate }
3507c478bd9Sstevel@tonic-gate } else {
3511c0be37bSsn199410 /*
3521c0be37bSsn199410 * Non-interactive, dump changes
3531c0be37bSsn199410 */
3547c478bd9Sstevel@tonic-gate (void) unlink(edtemp);
3557c478bd9Sstevel@tonic-gate exit(1);
3567c478bd9Sstevel@tonic-gate }
3577c478bd9Sstevel@tonic-gate }
3587c478bd9Sstevel@tonic-gate exit(0);
3597c478bd9Sstevel@tonic-gate } /* while (1) */
3607c478bd9Sstevel@tonic-gate }
3617c478bd9Sstevel@tonic-gate
3627c478bd9Sstevel@tonic-gate /* fix for 1125555 - ignore common signals while waiting */
3637c478bd9Sstevel@tonic-gate (void) signal(SIGINT, SIG_IGN);
3647c478bd9Sstevel@tonic-gate (void) signal(SIGHUP, SIG_IGN);
3657c478bd9Sstevel@tonic-gate (void) signal(SIGQUIT, SIG_IGN);
3667c478bd9Sstevel@tonic-gate (void) signal(SIGTERM, SIG_IGN);
3677c478bd9Sstevel@tonic-gate wait(&stat_loc);
3687c478bd9Sstevel@tonic-gate if ((stat_loc & 0xFF00) != 0)
3697c478bd9Sstevel@tonic-gate exit(1);
3707c478bd9Sstevel@tonic-gate
3711c0be37bSsn199410 /*
3721c0be37bSsn199410 * unlink edtemp as 'ruid'. The file contents will be held
3731c0be37bSsn199410 * since we open the file descriptor 'tmpfp' before calling
3741c0be37bSsn199410 * unlink.
3751c0be37bSsn199410 */
3761c0be37bSsn199410 if (((ret = seteuid(ruid)) < 0) ||
3771c0be37bSsn199410 ((tmpfp = fopen(edtemp, "r")) == NULL) ||
3781c0be37bSsn199410 (unlink(edtemp) == -1)) {
3797c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s: %s\n",
3807c478bd9Sstevel@tonic-gate edtemp, errmsg(errno));
3811c0be37bSsn199410 if ((ret < 0) || (tmpfp == NULL))
3827c478bd9Sstevel@tonic-gate (void) unlink(edtemp);
3837c478bd9Sstevel@tonic-gate exit(1);
3847c478bd9Sstevel@tonic-gate } else
3857c478bd9Sstevel@tonic-gate seteuid(0);
3867c478bd9Sstevel@tonic-gate
3877c478bd9Sstevel@tonic-gate copycron(tmpfp);
3887c478bd9Sstevel@tonic-gate } else {
3897c478bd9Sstevel@tonic-gate if (argc == 0)
3907c478bd9Sstevel@tonic-gate copycron(stdin);
3917c478bd9Sstevel@tonic-gate else if (seteuid(getuid()) != 0 || (fp = fopen(argv[0], "r"))
3927c478bd9Sstevel@tonic-gate == NULL)
3937c478bd9Sstevel@tonic-gate crabort(BADOPEN);
3947c478bd9Sstevel@tonic-gate else {
3957c478bd9Sstevel@tonic-gate seteuid(0);
3967c478bd9Sstevel@tonic-gate copycron(fp);
3977c478bd9Sstevel@tonic-gate }
3987c478bd9Sstevel@tonic-gate }
3997c478bd9Sstevel@tonic-gate cron_sendmsg(ADD, login, login, CRON);
4007c478bd9Sstevel@tonic-gate /*
4017c478bd9Sstevel@tonic-gate * if (per_errno == 2)
4027c478bd9Sstevel@tonic-gate * fprintf(stderr, gettext(WARNSHELL));
4037c478bd9Sstevel@tonic-gate */
4047c478bd9Sstevel@tonic-gate return (0);
4057c478bd9Sstevel@tonic-gate }
4067c478bd9Sstevel@tonic-gate
4077c478bd9Sstevel@tonic-gate static void
copycron(fp)4087c478bd9Sstevel@tonic-gate copycron(fp)
4097c478bd9Sstevel@tonic-gate FILE *fp;
4107c478bd9Sstevel@tonic-gate {
4117c478bd9Sstevel@tonic-gate FILE *tfp;
4127c478bd9Sstevel@tonic-gate char pid[6], *tnam_end;
4137c478bd9Sstevel@tonic-gate int t;
4145b08e637SChris Gerhard char buf[LINE_MAX];
4157c478bd9Sstevel@tonic-gate
4167c478bd9Sstevel@tonic-gate sprintf(pid, "%-5d", getpid());
4177c478bd9Sstevel@tonic-gate tnam = xmalloc(strlen(CRONDIR)+strlen(TMPFILE)+7);
4187c478bd9Sstevel@tonic-gate strcat(strcat(strcat(strcpy(tnam, CRONDIR), "/"), TMPFILE), pid);
4197c478bd9Sstevel@tonic-gate /* cut trailing blanks */
4207c478bd9Sstevel@tonic-gate tnam_end = strchr(tnam, ' ');
4217c478bd9Sstevel@tonic-gate if (tnam_end != NULL)
4227c478bd9Sstevel@tonic-gate *tnam_end = 0;
4237c478bd9Sstevel@tonic-gate /* catch SIGINT, SIGHUP, SIGQUIT signals */
4247c478bd9Sstevel@tonic-gate if (signal(SIGINT, catch) == SIG_IGN)
4257c478bd9Sstevel@tonic-gate signal(SIGINT, SIG_IGN);
4267c478bd9Sstevel@tonic-gate if (signal(SIGHUP, catch) == SIG_IGN) signal(SIGHUP, SIG_IGN);
4277c478bd9Sstevel@tonic-gate if (signal(SIGQUIT, catch) == SIG_IGN) signal(SIGQUIT, SIG_IGN);
4287c478bd9Sstevel@tonic-gate if (signal(SIGTERM, catch) == SIG_IGN) signal(SIGTERM, SIG_IGN);
4297c478bd9Sstevel@tonic-gate if ((t = creat(tnam, CRMODE)) == -1) crabort(BADCREATE);
4307c478bd9Sstevel@tonic-gate if ((tfp = fdopen(t, "w")) == NULL) {
4317c478bd9Sstevel@tonic-gate unlink(tnam);
4327c478bd9Sstevel@tonic-gate crabort(BADCREATE);
4337c478bd9Sstevel@tonic-gate }
4347c478bd9Sstevel@tonic-gate err = 0; /* if errors found, err set to 1 */
4357c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) {
4367c478bd9Sstevel@tonic-gate cursor = 0;
4377c478bd9Sstevel@tonic-gate while (line[cursor] == ' ' || line[cursor] == '\t')
4387c478bd9Sstevel@tonic-gate cursor++;
4397c478bd9Sstevel@tonic-gate /* fix for 1039689 - treat blank line like a comment */
4407c478bd9Sstevel@tonic-gate if (line[cursor] == '#' || line[cursor] == '\n')
4417c478bd9Sstevel@tonic-gate goto cont;
4425b08e637SChris Gerhard
4435b08e637SChris Gerhard if (strncmp(&line[cursor], ENV_TZ, strlen(ENV_TZ)) == 0) {
4445b08e637SChris Gerhard char *x;
4455b08e637SChris Gerhard
4465b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_TZ)],
4475b08e637SChris Gerhard sizeof (buf));
4485b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL)
4495b08e637SChris Gerhard *x = NULL;
4505b08e637SChris Gerhard
4515b08e637SChris Gerhard if (isvalid_tz(buf, NULL, _VTZ_ALL)) {
4525b08e637SChris Gerhard goto cont;
4535b08e637SChris Gerhard } else {
4545b08e637SChris Gerhard err = 1;
4555b08e637SChris Gerhard fprintf(stderr, BAD_TZ, &line[cursor]);
4565b08e637SChris Gerhard continue;
4575b08e637SChris Gerhard }
4585b08e637SChris Gerhard } else if (strncmp(&line[cursor], ENV_SHELL,
4595b08e637SChris Gerhard strlen(ENV_SHELL)) == 0) {
4605b08e637SChris Gerhard char *x;
4615b08e637SChris Gerhard
4625b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_SHELL)],
4635b08e637SChris Gerhard sizeof (buf));
4645b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL)
4655b08e637SChris Gerhard *x = NULL;
4665b08e637SChris Gerhard
4675b08e637SChris Gerhard if (isvalid_shell(buf)) {
4685b08e637SChris Gerhard goto cont;
4695b08e637SChris Gerhard } else {
4705b08e637SChris Gerhard err = 1;
4715b08e637SChris Gerhard fprintf(stderr, BAD_SHELL, &line[cursor]);
4725b08e637SChris Gerhard continue;
4735b08e637SChris Gerhard }
4745b08e637SChris Gerhard } else if (strncmp(&line[cursor], ENV_HOME,
4755b08e637SChris Gerhard strlen(ENV_HOME)) == 0) {
4765b08e637SChris Gerhard char *x;
4775b08e637SChris Gerhard
4785b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_HOME)],
4795b08e637SChris Gerhard sizeof (buf));
4805b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL)
4815b08e637SChris Gerhard *x = NULL;
4825b08e637SChris Gerhard if (chdir(buf) == 0) {
4835b08e637SChris Gerhard goto cont;
4845b08e637SChris Gerhard } else {
4855b08e637SChris Gerhard err = 1;
4865b08e637SChris Gerhard fprintf(stderr, BAD_HOME, &line[cursor],
4875b08e637SChris Gerhard strerror(errno));
4885b08e637SChris Gerhard continue;
4895b08e637SChris Gerhard }
4905b08e637SChris Gerhard }
4915b08e637SChris Gerhard
4927c478bd9Sstevel@tonic-gate if (next_field(0, 59)) continue;
4937c478bd9Sstevel@tonic-gate if (next_field(0, 23)) continue;
4947c478bd9Sstevel@tonic-gate if (next_field(1, 31)) continue;
4957c478bd9Sstevel@tonic-gate if (next_field(1, 12)) continue;
4967c478bd9Sstevel@tonic-gate if (next_field(0, 06)) continue;
4977c478bd9Sstevel@tonic-gate if (line[++cursor] == '\0') {
4987c478bd9Sstevel@tonic-gate cerror(EOLN);
4997c478bd9Sstevel@tonic-gate continue;
5007c478bd9Sstevel@tonic-gate }
5017c478bd9Sstevel@tonic-gate cont:
5027c478bd9Sstevel@tonic-gate if (fputs(line, tfp) == EOF) {
5037c478bd9Sstevel@tonic-gate unlink(tnam);
5047c478bd9Sstevel@tonic-gate crabort(BADCREATE);
5057c478bd9Sstevel@tonic-gate }
5067c478bd9Sstevel@tonic-gate }
5077c478bd9Sstevel@tonic-gate fclose(fp);
5087c478bd9Sstevel@tonic-gate fclose(tfp);
5097c478bd9Sstevel@tonic-gate
5107c478bd9Sstevel@tonic-gate /* audit differences between old and new crontabs */
5117c478bd9Sstevel@tonic-gate audit_crontab_modify(cf, tnam, err);
5127c478bd9Sstevel@tonic-gate
5137c478bd9Sstevel@tonic-gate if (!err) {
5147c478bd9Sstevel@tonic-gate /* make file tfp the new crontab */
5157c478bd9Sstevel@tonic-gate unlink(cf);
5167c478bd9Sstevel@tonic-gate if (link(tnam, cf) == -1) {
5177c478bd9Sstevel@tonic-gate unlink(tnam);
5187c478bd9Sstevel@tonic-gate crabort(BADCREATE);
5197c478bd9Sstevel@tonic-gate }
520b0d0a1c8SViswanathan Kannappan } else {
521b0d0a1c8SViswanathan Kannappan crabort(ERRSFND);
522b0d0a1c8SViswanathan Kannappan }
5237c478bd9Sstevel@tonic-gate unlink(tnam);
5247c478bd9Sstevel@tonic-gate }
5257c478bd9Sstevel@tonic-gate
5267c478bd9Sstevel@tonic-gate static int
next_field(lower,upper)5277c478bd9Sstevel@tonic-gate next_field(lower, upper)
5287c478bd9Sstevel@tonic-gate int lower, upper;
5297c478bd9Sstevel@tonic-gate {
5307c478bd9Sstevel@tonic-gate int num, num2;
5317c478bd9Sstevel@tonic-gate
5327c478bd9Sstevel@tonic-gate while ((line[cursor] == ' ') || (line[cursor] == '\t')) cursor++;
5337c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') {
5347c478bd9Sstevel@tonic-gate cerror(EOLN);
5357c478bd9Sstevel@tonic-gate return (1);
5367c478bd9Sstevel@tonic-gate }
5377c478bd9Sstevel@tonic-gate if (line[cursor] == '*') {
5387c478bd9Sstevel@tonic-gate cursor++;
5397c478bd9Sstevel@tonic-gate if ((line[cursor] != ' ') && (line[cursor] != '\t')) {
5407c478bd9Sstevel@tonic-gate cerror(UNEXPECT);
5417c478bd9Sstevel@tonic-gate return (1);
5427c478bd9Sstevel@tonic-gate }
5437c478bd9Sstevel@tonic-gate return (0);
5447c478bd9Sstevel@tonic-gate }
5457c478bd9Sstevel@tonic-gate while (TRUE) {
5467c478bd9Sstevel@tonic-gate if (!isdigit(line[cursor])) {
5477c478bd9Sstevel@tonic-gate cerror(UNEXPECT);
5487c478bd9Sstevel@tonic-gate return (1);
5497c478bd9Sstevel@tonic-gate }
5507c478bd9Sstevel@tonic-gate num = 0;
5517c478bd9Sstevel@tonic-gate do {
5527c478bd9Sstevel@tonic-gate num = num*10 + (line[cursor]-'0');
5537c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor]));
5547c478bd9Sstevel@tonic-gate if ((num < lower) || (num > upper)) {
5557c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND);
5567c478bd9Sstevel@tonic-gate return (1);
5577c478bd9Sstevel@tonic-gate }
5587c478bd9Sstevel@tonic-gate if (line[cursor] == '-') {
5597c478bd9Sstevel@tonic-gate if (!isdigit(line[++cursor])) {
5607c478bd9Sstevel@tonic-gate cerror(UNEXPECT);
5617c478bd9Sstevel@tonic-gate return (1);
5627c478bd9Sstevel@tonic-gate }
5637c478bd9Sstevel@tonic-gate num2 = 0;
5647c478bd9Sstevel@tonic-gate do {
5657c478bd9Sstevel@tonic-gate num2 = num2*10 + (line[cursor]-'0');
5667c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor]));
5677c478bd9Sstevel@tonic-gate if ((num2 < lower) || (num2 > upper)) {
5687c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND);
5697c478bd9Sstevel@tonic-gate return (1);
5707c478bd9Sstevel@tonic-gate }
5717c478bd9Sstevel@tonic-gate }
5727c478bd9Sstevel@tonic-gate if ((line[cursor] == ' ') || (line[cursor] == '\t')) break;
5737c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') {
5747c478bd9Sstevel@tonic-gate cerror(EOLN);
5757c478bd9Sstevel@tonic-gate return (1);
5767c478bd9Sstevel@tonic-gate }
5777c478bd9Sstevel@tonic-gate if (line[cursor++] != ',') {
5787c478bd9Sstevel@tonic-gate cerror(UNEXPECT);
5797c478bd9Sstevel@tonic-gate return (1);
5807c478bd9Sstevel@tonic-gate }
5817c478bd9Sstevel@tonic-gate }
5827c478bd9Sstevel@tonic-gate return (0);
5837c478bd9Sstevel@tonic-gate }
5847c478bd9Sstevel@tonic-gate
5857c478bd9Sstevel@tonic-gate static void
cerror(msg)5867c478bd9Sstevel@tonic-gate cerror(msg)
5877c478bd9Sstevel@tonic-gate char *msg;
5887c478bd9Sstevel@tonic-gate {
5897c478bd9Sstevel@tonic-gate fprintf(stderr, gettext("%scrontab: error on previous line; %s\n"),
5907c478bd9Sstevel@tonic-gate line, msg);
5917c478bd9Sstevel@tonic-gate err = 1;
5927c478bd9Sstevel@tonic-gate }
5937c478bd9Sstevel@tonic-gate
5947c478bd9Sstevel@tonic-gate
5957c478bd9Sstevel@tonic-gate static void
catch(int x)5967c478bd9Sstevel@tonic-gate catch(int x)
5977c478bd9Sstevel@tonic-gate {
5987c478bd9Sstevel@tonic-gate unlink(tnam);
5997c478bd9Sstevel@tonic-gate exit(1);
6007c478bd9Sstevel@tonic-gate }
6017c478bd9Sstevel@tonic-gate
6027c478bd9Sstevel@tonic-gate static void
crabort(msg)6037c478bd9Sstevel@tonic-gate crabort(msg)
6047c478bd9Sstevel@tonic-gate char *msg;
6057c478bd9Sstevel@tonic-gate {
6067c478bd9Sstevel@tonic-gate int sverrno;
6077c478bd9Sstevel@tonic-gate
6087c478bd9Sstevel@tonic-gate if (strcmp(edtemp, "") != 0) {
6097c478bd9Sstevel@tonic-gate sverrno = errno;
6107c478bd9Sstevel@tonic-gate (void) unlink(edtemp);
6117c478bd9Sstevel@tonic-gate errno = sverrno;
6127c478bd9Sstevel@tonic-gate }
6137c478bd9Sstevel@tonic-gate if (tnam != NULL) {
6147c478bd9Sstevel@tonic-gate sverrno = errno;
6157c478bd9Sstevel@tonic-gate (void) unlink(tnam);
6167c478bd9Sstevel@tonic-gate errno = sverrno;
6177c478bd9Sstevel@tonic-gate }
6187c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s\n", gettext(msg));
6197c478bd9Sstevel@tonic-gate exit(1);
6207c478bd9Sstevel@tonic-gate }
621