17c478bd9Sstevel@tonic-gate /*
27c478bd9Sstevel@tonic-gate * CDDL HEADER START
37c478bd9Sstevel@tonic-gate *
47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the
5*cb5caa98Sdjl * Common Development and Distribution License (the "License").
6*cb5caa98Sdjl * You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate *
87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate * and limitations under the License.
127c478bd9Sstevel@tonic-gate *
137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate *
197c478bd9Sstevel@tonic-gate * CDDL HEADER END
207c478bd9Sstevel@tonic-gate */
2161961e0fSrobinson
227c478bd9Sstevel@tonic-gate /*
23e8031f0aSraf * Copyright 2006 Sun Microsystems, Inc. All rights reserved.
247c478bd9Sstevel@tonic-gate * Use is subject to license terms.
257c478bd9Sstevel@tonic-gate */
267c478bd9Sstevel@tonic-gate
277c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI"
287c478bd9Sstevel@tonic-gate
29e8031f0aSraf #include "mt.h"
307c478bd9Sstevel@tonic-gate #include <stdlib.h>
317c478bd9Sstevel@tonic-gate #include <sys/types.h>
327c478bd9Sstevel@tonic-gate #include <nss_dbdefs.h>
337c478bd9Sstevel@tonic-gate #include <string.h>
347c478bd9Sstevel@tonic-gate #include <bsm/libbsm.h>
357c478bd9Sstevel@tonic-gate #include <secdb.h>
367c478bd9Sstevel@tonic-gate
377c478bd9Sstevel@tonic-gate
387c478bd9Sstevel@tonic-gate /* externs from parse.c */
397c478bd9Sstevel@tonic-gate extern char *_strtok_escape(char *, char *, char **);
407c478bd9Sstevel@tonic-gate
417c478bd9Sstevel@tonic-gate static int auuser_stayopen;
427c478bd9Sstevel@tonic-gate
437c478bd9Sstevel@tonic-gate /*
447c478bd9Sstevel@tonic-gate * Unsynchronized, but it affects only
457c478bd9Sstevel@tonic-gate * efficiency, not correctness
467c478bd9Sstevel@tonic-gate */
477c478bd9Sstevel@tonic-gate
487c478bd9Sstevel@tonic-gate static DEFINE_NSS_DB_ROOT(db_root);
497c478bd9Sstevel@tonic-gate static DEFINE_NSS_GETENT(context);
507c478bd9Sstevel@tonic-gate
517c478bd9Sstevel@tonic-gate
527c478bd9Sstevel@tonic-gate void
_nss_initf_auuser(nss_db_params_t * p)537c478bd9Sstevel@tonic-gate _nss_initf_auuser(nss_db_params_t *p)
547c478bd9Sstevel@tonic-gate {
557c478bd9Sstevel@tonic-gate p->name = NSS_DBNAM_AUDITUSER;
567c478bd9Sstevel@tonic-gate p->config_name = NSS_DBNAM_PASSWD; /* use config for "passwd" */
577c478bd9Sstevel@tonic-gate p->default_config = NSS_DEFCONF_AUDITUSER;
587c478bd9Sstevel@tonic-gate }
597c478bd9Sstevel@tonic-gate
607c478bd9Sstevel@tonic-gate
617c478bd9Sstevel@tonic-gate /*
627c478bd9Sstevel@tonic-gate * Return values: 0 = success, 1 = parse error, 2 = erange ...
637c478bd9Sstevel@tonic-gate * The structure pointer passed in is a structure in the caller's space
647c478bd9Sstevel@tonic-gate * wherein the field pointers would be set to areas in the buffer if
657c478bd9Sstevel@tonic-gate * need be. instring and buffer should be separate areas.
667c478bd9Sstevel@tonic-gate */
677c478bd9Sstevel@tonic-gate int
str2auuser(const char * instr,int lenstr,void * ent,char * buffer,int buflen)687c478bd9Sstevel@tonic-gate str2auuser(const char *instr, int lenstr, void *ent, char *buffer, int buflen)
697c478bd9Sstevel@tonic-gate {
7061961e0fSrobinson char *last = NULL;
717c478bd9Sstevel@tonic-gate char *sep = KV_TOKEN_DELIMIT;
727c478bd9Sstevel@tonic-gate au_user_str_t *au_user = (au_user_str_t *)ent;
737c478bd9Sstevel@tonic-gate
7461961e0fSrobinson if (lenstr >= buflen)
757c478bd9Sstevel@tonic-gate return (NSS_STR_PARSE_ERANGE);
76*cb5caa98Sdjl
77*cb5caa98Sdjl if (instr != buffer)
7861961e0fSrobinson (void) strncpy(buffer, instr, buflen);
79*cb5caa98Sdjl
807c478bd9Sstevel@tonic-gate /*
817c478bd9Sstevel@tonic-gate * Remove newline that nis (yp_match) puts at the
827c478bd9Sstevel@tonic-gate * end of the entry it retrieves from the map.
837c478bd9Sstevel@tonic-gate */
847c478bd9Sstevel@tonic-gate if (buffer[lenstr] == '\n') {
857c478bd9Sstevel@tonic-gate buffer[lenstr] = '\0';
867c478bd9Sstevel@tonic-gate }
877c478bd9Sstevel@tonic-gate
88*cb5caa98Sdjl /* quick exit do not entry fill if not needed */
89*cb5caa98Sdjl if (ent == (void *)NULL)
90*cb5caa98Sdjl return (NSS_STR_PARSE_SUCCESS);
91*cb5caa98Sdjl
927c478bd9Sstevel@tonic-gate au_user->au_name = _strtok_escape(buffer, sep, &last);
937c478bd9Sstevel@tonic-gate au_user->au_always = _strtok_escape(NULL, sep, &last);
947c478bd9Sstevel@tonic-gate au_user->au_never = _strtok_escape(NULL, sep, &last);
957c478bd9Sstevel@tonic-gate
967c478bd9Sstevel@tonic-gate return (0);
977c478bd9Sstevel@tonic-gate }
987c478bd9Sstevel@tonic-gate
997c478bd9Sstevel@tonic-gate
1007c478bd9Sstevel@tonic-gate void
_setauuser(void)1017c478bd9Sstevel@tonic-gate _setauuser(void)
1027c478bd9Sstevel@tonic-gate {
1037c478bd9Sstevel@tonic-gate auuser_stayopen = 0;
1047c478bd9Sstevel@tonic-gate nss_setent(&db_root, _nss_initf_auuser, &context);
1057c478bd9Sstevel@tonic-gate }
1067c478bd9Sstevel@tonic-gate
1077c478bd9Sstevel@tonic-gate
1087c478bd9Sstevel@tonic-gate int
_endauuser(void)1097c478bd9Sstevel@tonic-gate _endauuser(void)
1107c478bd9Sstevel@tonic-gate {
1117c478bd9Sstevel@tonic-gate auuser_stayopen = 0;
1127c478bd9Sstevel@tonic-gate nss_endent(&db_root, _nss_initf_auuser, &context);
1137c478bd9Sstevel@tonic-gate nss_delete(&db_root);
1147c478bd9Sstevel@tonic-gate return (0);
1157c478bd9Sstevel@tonic-gate }
1167c478bd9Sstevel@tonic-gate
1177c478bd9Sstevel@tonic-gate
1187c478bd9Sstevel@tonic-gate au_user_str_t *
_getauuserent(au_user_str_t * result,char * buffer,int buflen,int * h_errnop)1197c478bd9Sstevel@tonic-gate _getauuserent(au_user_str_t *result, char *buffer, int buflen, int *h_errnop)
1207c478bd9Sstevel@tonic-gate {
1217c478bd9Sstevel@tonic-gate nss_XbyY_args_t arg;
1227c478bd9Sstevel@tonic-gate nss_status_t res;
1237c478bd9Sstevel@tonic-gate
1247c478bd9Sstevel@tonic-gate NSS_XbyY_INIT(&arg, result, buffer, buflen, str2auuser);
1257c478bd9Sstevel@tonic-gate res = nss_getent(&db_root, _nss_initf_auuser, &context, &arg);
1267c478bd9Sstevel@tonic-gate arg.status = res;
1277c478bd9Sstevel@tonic-gate *h_errnop = arg.h_errno;
1287c478bd9Sstevel@tonic-gate return ((au_user_str_t *)NSS_XbyY_FINI(&arg));
1297c478bd9Sstevel@tonic-gate }
1307c478bd9Sstevel@tonic-gate
1317c478bd9Sstevel@tonic-gate
1327c478bd9Sstevel@tonic-gate au_user_str_t *
_getauusernam(const char * name,au_user_str_t * result,char * buffer,int buflen,int * errnop)1337c478bd9Sstevel@tonic-gate _getauusernam(const char *name, au_user_str_t *result, char *buffer,
1347c478bd9Sstevel@tonic-gate int buflen, int *errnop)
1357c478bd9Sstevel@tonic-gate {
1367c478bd9Sstevel@tonic-gate nss_XbyY_args_t arg;
1377c478bd9Sstevel@tonic-gate nss_status_t res;
1387c478bd9Sstevel@tonic-gate
1397c478bd9Sstevel@tonic-gate if (result == NULL) {
1407c478bd9Sstevel@tonic-gate *errnop = AUDITUSER_PARSE_ERANGE;
1417c478bd9Sstevel@tonic-gate return (NULL);
1427c478bd9Sstevel@tonic-gate }
1437c478bd9Sstevel@tonic-gate NSS_XbyY_INIT(&arg, result, buffer, buflen, str2auuser);
1447c478bd9Sstevel@tonic-gate arg.key.name = name;
1457c478bd9Sstevel@tonic-gate arg.stayopen = auuser_stayopen;
1467c478bd9Sstevel@tonic-gate arg.h_errno = AUDITUSER_NOT_FOUND;
1477c478bd9Sstevel@tonic-gate res = nss_search(&db_root, _nss_initf_auuser,
1487c478bd9Sstevel@tonic-gate NSS_DBOP_AUDITUSER_BYNAME, &arg);
1497c478bd9Sstevel@tonic-gate arg.status = res;
1507c478bd9Sstevel@tonic-gate *errnop = arg.h_errno;
1517c478bd9Sstevel@tonic-gate return ((au_user_str_t *)NSS_XbyY_FINI(&arg));
1527c478bd9Sstevel@tonic-gate }
153