17c478bd9Sstevel@tonic-gate /* 27c478bd9Sstevel@tonic-gate * CDDL HEADER START 37c478bd9Sstevel@tonic-gate * 47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 53010f05bSdp * Common Development and Distribution License (the "License"). 63010f05bSdp * You may not use this file except in compliance with the License. 77c478bd9Sstevel@tonic-gate * 87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 117c478bd9Sstevel@tonic-gate * and limitations under the License. 127c478bd9Sstevel@tonic-gate * 137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 187c478bd9Sstevel@tonic-gate * 197c478bd9Sstevel@tonic-gate * CDDL HEADER END 207c478bd9Sstevel@tonic-gate */ 217c478bd9Sstevel@tonic-gate /* 22b0d0a1c8SViswanathan Kannappan * Copyright 2009 Sun Microsystems, Inc. All rights reserved. 237c478bd9Sstevel@tonic-gate * Use is subject to license terms. 247c478bd9Sstevel@tonic-gate */ 257c478bd9Sstevel@tonic-gate /* Copyright (c) 1984, 1986, 1987, 1988, 1989 AT&T */ 267c478bd9Sstevel@tonic-gate /* All Rights Reserved */ 277c478bd9Sstevel@tonic-gate 287c478bd9Sstevel@tonic-gate 297c478bd9Sstevel@tonic-gate #include <sys/types.h> 307c478bd9Sstevel@tonic-gate #include <sys/stat.h> 317c478bd9Sstevel@tonic-gate #include <sys/types.h> 327c478bd9Sstevel@tonic-gate #include <sys/wait.h> 337c478bd9Sstevel@tonic-gate #include <errno.h> 347c478bd9Sstevel@tonic-gate #include <signal.h> 357c478bd9Sstevel@tonic-gate #include <stdio.h> 367c478bd9Sstevel@tonic-gate #include <stdlib.h> 377c478bd9Sstevel@tonic-gate #include <string.h> 387c478bd9Sstevel@tonic-gate #include <fcntl.h> 397c478bd9Sstevel@tonic-gate #include <ctype.h> 407c478bd9Sstevel@tonic-gate #include <pwd.h> 417c478bd9Sstevel@tonic-gate #include <unistd.h> 427c478bd9Sstevel@tonic-gate #include <locale.h> 437c478bd9Sstevel@tonic-gate #include <nl_types.h> 447c478bd9Sstevel@tonic-gate #include <langinfo.h> 457c478bd9Sstevel@tonic-gate #include <libintl.h> 467c478bd9Sstevel@tonic-gate #include <security/pam_appl.h> 475b08e637SChris Gerhard #include <limits.h> 485b08e637SChris Gerhard #include <libzoneinfo.h> 497c478bd9Sstevel@tonic-gate #include "cron.h" 503d63ea05Sas145665 #include "getresponse.h" 517c478bd9Sstevel@tonic-gate 52d61d085dScf46844 #if defined(XPG4) 53d61d085dScf46844 #define VIPATH "/usr/xpg4/bin/vi" 54d61d085dScf46844 #elif defined(XPG6) 55d61d085dScf46844 #define VIPATH "/usr/xpg6/bin/vi" 56d61d085dScf46844 #else 57d61d085dScf46844 #define _XPG_NOTDEFINED 58d61d085dScf46844 #define VIPATH "vi" 59d61d085dScf46844 #endif 60d61d085dScf46844 617c478bd9Sstevel@tonic-gate #define TMPFILE "_cron" /* prefix for tmp file */ 627c478bd9Sstevel@tonic-gate #define CRMODE 0600 /* mode for creating crontabs */ 637c478bd9Sstevel@tonic-gate 647c478bd9Sstevel@tonic-gate #define BADCREATE \ 657c478bd9Sstevel@tonic-gate "can't create your crontab file in the crontab directory." 667c478bd9Sstevel@tonic-gate #define BADOPEN "can't open your crontab file." 677c478bd9Sstevel@tonic-gate #define BADSHELL \ 687c478bd9Sstevel@tonic-gate "because your login shell isn't /usr/bin/sh, you can't use cron." 697c478bd9Sstevel@tonic-gate #define WARNSHELL "warning: commands will be executed using /usr/bin/sh\n" 707c478bd9Sstevel@tonic-gate #define BADUSAGE \ 713010f05bSdp "usage:\n" \ 723010f05bSdp "\tcrontab [file]\n" \ 733010f05bSdp "\tcrontab -e [username]\n" \ 743010f05bSdp "\tcrontab -l [username]\n" \ 753010f05bSdp "\tcrontab -r [username]" 767c478bd9Sstevel@tonic-gate #define INVALIDUSER "you are not a valid user (no entry in /etc/passwd)." 777c478bd9Sstevel@tonic-gate #define NOTALLOWED "you are not authorized to use cron. Sorry." 787c478bd9Sstevel@tonic-gate #define NOTROOT \ 797c478bd9Sstevel@tonic-gate "you must be super-user to access another user's crontab file" 807c478bd9Sstevel@tonic-gate #define AUDITREJECT "The audit context for your shell has not been set." 817c478bd9Sstevel@tonic-gate #define EOLN "unexpected end of line." 827c478bd9Sstevel@tonic-gate #define UNEXPECT "unexpected character found in line." 837c478bd9Sstevel@tonic-gate #define OUTOFBOUND "number out of bounds." 847c478bd9Sstevel@tonic-gate #define ERRSFND "errors detected in input, no crontab file generated." 857c478bd9Sstevel@tonic-gate #define ED_ERROR \ 867c478bd9Sstevel@tonic-gate " The editor indicates that an error occurred while you were\n"\ 877c478bd9Sstevel@tonic-gate " editing the crontab data - usually a minor typing error.\n\n" 887c478bd9Sstevel@tonic-gate #define BADREAD "error reading your crontab file" 897c478bd9Sstevel@tonic-gate #define ED_PROMPT \ 903d63ea05Sas145665 " Edit again, to ensure crontab information is intact (%s/%s)?\n"\ 913d63ea05Sas145665 " ('%s' will discard edits.)" 927c478bd9Sstevel@tonic-gate #define NAMETOOLONG "login name too long" 935b08e637SChris Gerhard #define BAD_TZ "Timezone unrecognized in: %s" 945b08e637SChris Gerhard #define BAD_SHELL "Invalid shell specified: %s" 955b08e637SChris Gerhard #define BAD_HOME "Unable to access directory: %s\t%s\n" 967c478bd9Sstevel@tonic-gate 977c478bd9Sstevel@tonic-gate extern int per_errno; 987c478bd9Sstevel@tonic-gate 997c478bd9Sstevel@tonic-gate extern int audit_crontab_modify(char *, char *, int); 1007c478bd9Sstevel@tonic-gate extern int audit_crontab_delete(char *, int); 1017c478bd9Sstevel@tonic-gate extern int audit_crontab_not_allowed(uid_t, char *); 1027c478bd9Sstevel@tonic-gate 1037c478bd9Sstevel@tonic-gate int err; 1047c478bd9Sstevel@tonic-gate int cursor; 1057c478bd9Sstevel@tonic-gate char *cf; 1067c478bd9Sstevel@tonic-gate char *tnam; 1077c478bd9Sstevel@tonic-gate char edtemp[5+13+1]; 1087c478bd9Sstevel@tonic-gate char line[CTLINESIZE]; 1097c478bd9Sstevel@tonic-gate static char login[UNAMESIZE]; 1107c478bd9Sstevel@tonic-gate 1117c478bd9Sstevel@tonic-gate static int next_field(int, int); 1127c478bd9Sstevel@tonic-gate static void catch(int); 1137c478bd9Sstevel@tonic-gate static void crabort(char *); 1147c478bd9Sstevel@tonic-gate static void cerror(char *); 1157c478bd9Sstevel@tonic-gate static void copycron(FILE *); 1167c478bd9Sstevel@tonic-gate 117032624d5Sbasabi int 118032624d5Sbasabi main(int argc, char **argv) 1197c478bd9Sstevel@tonic-gate { 1207c478bd9Sstevel@tonic-gate int c, r; 1217c478bd9Sstevel@tonic-gate int rflag = 0; 1227c478bd9Sstevel@tonic-gate int lflag = 0; 1237c478bd9Sstevel@tonic-gate int eflag = 0; 1247c478bd9Sstevel@tonic-gate int errflg = 0; 1257c478bd9Sstevel@tonic-gate char *pp; 1267c478bd9Sstevel@tonic-gate FILE *fp, *tmpfp; 1277c478bd9Sstevel@tonic-gate struct stat stbuf; 1287c478bd9Sstevel@tonic-gate struct passwd *pwp; 1297c478bd9Sstevel@tonic-gate time_t omodtime; 1307c478bd9Sstevel@tonic-gate char *editor; 1317c478bd9Sstevel@tonic-gate uid_t ruid; 1327c478bd9Sstevel@tonic-gate pid_t pid; 1337c478bd9Sstevel@tonic-gate int stat_loc; 1347c478bd9Sstevel@tonic-gate int ret; 1357c478bd9Sstevel@tonic-gate char real_login[UNAMESIZE]; 1367c478bd9Sstevel@tonic-gate int tmpfd = -1; 1377c478bd9Sstevel@tonic-gate pam_handle_t *pamh; 1387c478bd9Sstevel@tonic-gate int pam_error; 13978ae324cSSumanth Naropanth char *buf; 14078ae324cSSumanth Naropanth size_t buflen; 1417c478bd9Sstevel@tonic-gate 1427c478bd9Sstevel@tonic-gate (void) setlocale(LC_ALL, ""); 1437c478bd9Sstevel@tonic-gate #if !defined(TEXT_DOMAIN) /* Should be defined by cc -D */ 1447c478bd9Sstevel@tonic-gate #define TEXT_DOMAIN "SYS_TEST" /* Use this only if it weren't */ 1457c478bd9Sstevel@tonic-gate #endif 1467c478bd9Sstevel@tonic-gate (void) textdomain(TEXT_DOMAIN); 1473d63ea05Sas145665 1483d63ea05Sas145665 if (init_yes() < 0) { 1493d63ea05Sas145665 (void) fprintf(stderr, gettext(ERR_MSG_INIT_YES), 1503d63ea05Sas145665 strerror(errno)); 1513d63ea05Sas145665 exit(1); 1523d63ea05Sas145665 } 1537c478bd9Sstevel@tonic-gate 1547c478bd9Sstevel@tonic-gate while ((c = getopt(argc, argv, "elr")) != EOF) 1557c478bd9Sstevel@tonic-gate switch (c) { 1567c478bd9Sstevel@tonic-gate case 'e': 1577c478bd9Sstevel@tonic-gate eflag++; 1587c478bd9Sstevel@tonic-gate break; 1597c478bd9Sstevel@tonic-gate case 'l': 1607c478bd9Sstevel@tonic-gate lflag++; 1617c478bd9Sstevel@tonic-gate break; 1627c478bd9Sstevel@tonic-gate case 'r': 1637c478bd9Sstevel@tonic-gate rflag++; 1647c478bd9Sstevel@tonic-gate break; 1657c478bd9Sstevel@tonic-gate case '?': 1667c478bd9Sstevel@tonic-gate errflg++; 1677c478bd9Sstevel@tonic-gate break; 1687c478bd9Sstevel@tonic-gate } 1697c478bd9Sstevel@tonic-gate 1707c478bd9Sstevel@tonic-gate if (eflag + lflag + rflag > 1) 1717c478bd9Sstevel@tonic-gate errflg++; 1727c478bd9Sstevel@tonic-gate 1737c478bd9Sstevel@tonic-gate argc -= optind; 1747c478bd9Sstevel@tonic-gate argv += optind; 1757c478bd9Sstevel@tonic-gate if (errflg || argc > 1) 1767c478bd9Sstevel@tonic-gate crabort(BADUSAGE); 1777c478bd9Sstevel@tonic-gate 1787c478bd9Sstevel@tonic-gate ruid = getuid(); 1797c478bd9Sstevel@tonic-gate if ((pwp = getpwuid(ruid)) == NULL) 1807c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 1817c478bd9Sstevel@tonic-gate 1827c478bd9Sstevel@tonic-gate if (strlcpy(real_login, pwp->pw_name, sizeof (real_login)) 1837c478bd9Sstevel@tonic-gate >= sizeof (real_login)) 1847c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG); 1857c478bd9Sstevel@tonic-gate 1867c478bd9Sstevel@tonic-gate if ((eflag || lflag || rflag) && argc == 1) { 1877c478bd9Sstevel@tonic-gate if ((pwp = getpwnam(*argv)) == NULL) 1887c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 1897c478bd9Sstevel@tonic-gate 190*d1419d5aSNobutomo Nakano if (!cron_admin(real_login)) { 1917c478bd9Sstevel@tonic-gate if (pwp->pw_uid != ruid) 1927c478bd9Sstevel@tonic-gate crabort(NOTROOT); 1937c478bd9Sstevel@tonic-gate else 1947c478bd9Sstevel@tonic-gate pp = getuser(ruid); 1957c478bd9Sstevel@tonic-gate } else 1967c478bd9Sstevel@tonic-gate pp = *argv++; 1977c478bd9Sstevel@tonic-gate } else { 1987c478bd9Sstevel@tonic-gate pp = getuser(ruid); 1997c478bd9Sstevel@tonic-gate } 2007c478bd9Sstevel@tonic-gate 2017c478bd9Sstevel@tonic-gate if (pp == NULL) { 2027c478bd9Sstevel@tonic-gate if (per_errno == 2) 2037c478bd9Sstevel@tonic-gate crabort(BADSHELL); 2047c478bd9Sstevel@tonic-gate else 2057c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 2067c478bd9Sstevel@tonic-gate } 2077c478bd9Sstevel@tonic-gate if (strlcpy(login, pp, sizeof (login)) >= sizeof (login)) 2087c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG); 2097c478bd9Sstevel@tonic-gate if (!allowed(login, CRONALLOW, CRONDENY)) 2107c478bd9Sstevel@tonic-gate crabort(NOTALLOWED); 2117c478bd9Sstevel@tonic-gate 2127c478bd9Sstevel@tonic-gate /* Do account validation check */ 2137c478bd9Sstevel@tonic-gate pam_error = pam_start("cron", pp, NULL, &pamh); 2147c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) { 2157c478bd9Sstevel@tonic-gate crabort((char *)pam_strerror(pamh, pam_error)); 2167c478bd9Sstevel@tonic-gate } 2177c478bd9Sstevel@tonic-gate pam_error = pam_acct_mgmt(pamh, PAM_SILENT); 2187c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) { 2197c478bd9Sstevel@tonic-gate (void) fprintf(stderr, gettext("Warning - Invalid account: " 2207c478bd9Sstevel@tonic-gate "'%s' not allowed to execute cronjobs\n"), pp); 2217c478bd9Sstevel@tonic-gate } 2227c478bd9Sstevel@tonic-gate (void) pam_end(pamh, PAM_SUCCESS); 2237c478bd9Sstevel@tonic-gate 2247c478bd9Sstevel@tonic-gate 2257c478bd9Sstevel@tonic-gate /* check for unaudited shell */ 2267c478bd9Sstevel@tonic-gate if (audit_crontab_not_allowed(ruid, pp)) 2277c478bd9Sstevel@tonic-gate crabort(AUDITREJECT); 2287c478bd9Sstevel@tonic-gate 2297c478bd9Sstevel@tonic-gate cf = xmalloc(strlen(CRONDIR)+strlen(login)+2); 2307c478bd9Sstevel@tonic-gate strcat(strcat(strcpy(cf, CRONDIR), "/"), login); 2317c478bd9Sstevel@tonic-gate 2327c478bd9Sstevel@tonic-gate if (rflag) { 2337c478bd9Sstevel@tonic-gate r = unlink(cf); 2347c478bd9Sstevel@tonic-gate cron_sendmsg(DELETE, login, login, CRON); 2357c478bd9Sstevel@tonic-gate audit_crontab_delete(cf, r); 2367c478bd9Sstevel@tonic-gate exit(0); 2377c478bd9Sstevel@tonic-gate } 2387c478bd9Sstevel@tonic-gate if (lflag) { 2397c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL) 2407c478bd9Sstevel@tonic-gate crabort(BADOPEN); 2417c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) 2427c478bd9Sstevel@tonic-gate fputs(line, stdout); 2437c478bd9Sstevel@tonic-gate fclose(fp); 2447c478bd9Sstevel@tonic-gate exit(0); 2457c478bd9Sstevel@tonic-gate } 2467c478bd9Sstevel@tonic-gate if (eflag) { 2477c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL) { 2487c478bd9Sstevel@tonic-gate if (errno != ENOENT) 2497c478bd9Sstevel@tonic-gate crabort(BADOPEN); 2507c478bd9Sstevel@tonic-gate } 2517c478bd9Sstevel@tonic-gate (void) strcpy(edtemp, "/tmp/crontabXXXXXX"); 2527c478bd9Sstevel@tonic-gate tmpfd = mkstemp(edtemp); 2537c478bd9Sstevel@tonic-gate if (fchown(tmpfd, ruid, -1) == -1) { 2547c478bd9Sstevel@tonic-gate (void) close(tmpfd); 2557c478bd9Sstevel@tonic-gate crabort("fchown of temporary file failed"); 2567c478bd9Sstevel@tonic-gate } 2577c478bd9Sstevel@tonic-gate (void) close(tmpfd); 2587c478bd9Sstevel@tonic-gate /* 2597c478bd9Sstevel@tonic-gate * Fork off a child with user's permissions, 2607c478bd9Sstevel@tonic-gate * to edit the crontab file 2617c478bd9Sstevel@tonic-gate */ 2627c478bd9Sstevel@tonic-gate if ((pid = fork()) == (pid_t)-1) 2637c478bd9Sstevel@tonic-gate crabort("fork failed"); 2647c478bd9Sstevel@tonic-gate if (pid == 0) { /* child process */ 2657c478bd9Sstevel@tonic-gate /* give up super-user privileges. */ 2667c478bd9Sstevel@tonic-gate setuid(ruid); 2677c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "w")) == NULL) 2687c478bd9Sstevel@tonic-gate crabort("can't create temporary file"); 2697c478bd9Sstevel@tonic-gate if (fp != NULL) { 2707c478bd9Sstevel@tonic-gate /* 2717c478bd9Sstevel@tonic-gate * Copy user's crontab file to temporary file. 2727c478bd9Sstevel@tonic-gate */ 2737c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) { 2747c478bd9Sstevel@tonic-gate fputs(line, tmpfp); 2757c478bd9Sstevel@tonic-gate if (ferror(tmpfp)) { 2767c478bd9Sstevel@tonic-gate fclose(fp); 2777c478bd9Sstevel@tonic-gate fclose(tmpfp); 2787c478bd9Sstevel@tonic-gate crabort("write error on" 2797c478bd9Sstevel@tonic-gate "temporary file"); 2807c478bd9Sstevel@tonic-gate } 2817c478bd9Sstevel@tonic-gate } 2827c478bd9Sstevel@tonic-gate if (ferror(fp)) { 2837c478bd9Sstevel@tonic-gate fclose(fp); 2847c478bd9Sstevel@tonic-gate fclose(tmpfp); 2857c478bd9Sstevel@tonic-gate crabort(BADREAD); 2867c478bd9Sstevel@tonic-gate } 2877c478bd9Sstevel@tonic-gate fclose(fp); 2887c478bd9Sstevel@tonic-gate } 2897c478bd9Sstevel@tonic-gate if (fclose(tmpfp) == EOF) 2907c478bd9Sstevel@tonic-gate crabort("write error on temporary file"); 2917c478bd9Sstevel@tonic-gate if (stat(edtemp, &stbuf) < 0) 2927c478bd9Sstevel@tonic-gate crabort("can't stat temporary file"); 2937c478bd9Sstevel@tonic-gate omodtime = stbuf.st_mtime; 294d61d085dScf46844 #ifdef _XPG_NOTDEFINED 2957c478bd9Sstevel@tonic-gate editor = getenv("VISUAL"); 296d61d085dScf46844 if (editor == NULL) { 297d61d085dScf46844 #endif 2987c478bd9Sstevel@tonic-gate editor = getenv("EDITOR"); 2997c478bd9Sstevel@tonic-gate if (editor == NULL) 300d61d085dScf46844 editor = VIPATH; 301d61d085dScf46844 #ifdef _XPG_NOTDEFINED 302d61d085dScf46844 } 303d61d085dScf46844 #endif 30478ae324cSSumanth Naropanth buflen = strlen(editor) + strlen(edtemp) + 2; 30578ae324cSSumanth Naropanth buf = xmalloc(buflen); 30678ae324cSSumanth Naropanth (void) snprintf(buf, buflen, "%s %s", editor, edtemp); 3071c0be37bSsn199410 3087c478bd9Sstevel@tonic-gate sleep(1); 3097c478bd9Sstevel@tonic-gate 3107c478bd9Sstevel@tonic-gate while (1) { 31178ae324cSSumanth Naropanth ret = system(buf); 3121c0be37bSsn199410 3137c478bd9Sstevel@tonic-gate /* sanity checks */ 3147c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "r")) == NULL) 3157c478bd9Sstevel@tonic-gate crabort("can't open temporary file"); 3167c478bd9Sstevel@tonic-gate if (fstat(fileno(tmpfp), &stbuf) < 0) 3177c478bd9Sstevel@tonic-gate crabort("can't stat temporary file"); 3187c478bd9Sstevel@tonic-gate if (stbuf.st_size == 0) 3197c478bd9Sstevel@tonic-gate crabort("temporary file empty"); 3207c478bd9Sstevel@tonic-gate if (omodtime == stbuf.st_mtime) { 3217c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3227c478bd9Sstevel@tonic-gate fprintf(stderr, gettext( 3233d63ea05Sas145665 "The crontab file was not" 3243d63ea05Sas145665 " changed.\n")); 3257c478bd9Sstevel@tonic-gate exit(1); 3267c478bd9Sstevel@tonic-gate } 32778ae324cSSumanth Naropanth if ((ret) && (errno != EINTR)) { 3287c478bd9Sstevel@tonic-gate /* 3297c478bd9Sstevel@tonic-gate * Some editors (like 'vi') can return 3307c478bd9Sstevel@tonic-gate * a non-zero exit status even though 3317c478bd9Sstevel@tonic-gate * everything is okay. Need to check. 3327c478bd9Sstevel@tonic-gate */ 3337c478bd9Sstevel@tonic-gate fprintf(stderr, gettext(ED_ERROR)); 3347c478bd9Sstevel@tonic-gate fflush(stderr); 3357c478bd9Sstevel@tonic-gate if (isatty(fileno(stdin))) { 3367c478bd9Sstevel@tonic-gate /* Interactive */ 3371c0be37bSsn199410 fprintf(stdout, 3381c0be37bSsn199410 gettext(ED_PROMPT), 3393d63ea05Sas145665 yesstr, nostr, nostr); 3407c478bd9Sstevel@tonic-gate fflush(stdout); 3417c478bd9Sstevel@tonic-gate 3427c478bd9Sstevel@tonic-gate if (yes()) { 3437c478bd9Sstevel@tonic-gate /* Edit again */ 3447c478bd9Sstevel@tonic-gate continue; 3457c478bd9Sstevel@tonic-gate } else { 3467c478bd9Sstevel@tonic-gate /* Dump changes */ 3477c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3487c478bd9Sstevel@tonic-gate exit(1); 3497c478bd9Sstevel@tonic-gate } 3507c478bd9Sstevel@tonic-gate } else { 3511c0be37bSsn199410 /* 3521c0be37bSsn199410 * Non-interactive, dump changes 3531c0be37bSsn199410 */ 3547c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3557c478bd9Sstevel@tonic-gate exit(1); 3567c478bd9Sstevel@tonic-gate } 3577c478bd9Sstevel@tonic-gate } 3587c478bd9Sstevel@tonic-gate exit(0); 3597c478bd9Sstevel@tonic-gate } /* while (1) */ 3607c478bd9Sstevel@tonic-gate } 3617c478bd9Sstevel@tonic-gate 3627c478bd9Sstevel@tonic-gate /* fix for 1125555 - ignore common signals while waiting */ 3637c478bd9Sstevel@tonic-gate (void) signal(SIGINT, SIG_IGN); 3647c478bd9Sstevel@tonic-gate (void) signal(SIGHUP, SIG_IGN); 3657c478bd9Sstevel@tonic-gate (void) signal(SIGQUIT, SIG_IGN); 3667c478bd9Sstevel@tonic-gate (void) signal(SIGTERM, SIG_IGN); 3677c478bd9Sstevel@tonic-gate wait(&stat_loc); 3687c478bd9Sstevel@tonic-gate if ((stat_loc & 0xFF00) != 0) 3697c478bd9Sstevel@tonic-gate exit(1); 3707c478bd9Sstevel@tonic-gate 3711c0be37bSsn199410 /* 3721c0be37bSsn199410 * unlink edtemp as 'ruid'. The file contents will be held 3731c0be37bSsn199410 * since we open the file descriptor 'tmpfp' before calling 3741c0be37bSsn199410 * unlink. 3751c0be37bSsn199410 */ 3761c0be37bSsn199410 if (((ret = seteuid(ruid)) < 0) || 3771c0be37bSsn199410 ((tmpfp = fopen(edtemp, "r")) == NULL) || 3781c0be37bSsn199410 (unlink(edtemp) == -1)) { 3797c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s: %s\n", 3807c478bd9Sstevel@tonic-gate edtemp, errmsg(errno)); 3811c0be37bSsn199410 if ((ret < 0) || (tmpfp == NULL)) 3827c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3837c478bd9Sstevel@tonic-gate exit(1); 3847c478bd9Sstevel@tonic-gate } else 3857c478bd9Sstevel@tonic-gate seteuid(0); 3867c478bd9Sstevel@tonic-gate 3877c478bd9Sstevel@tonic-gate copycron(tmpfp); 3887c478bd9Sstevel@tonic-gate } else { 3897c478bd9Sstevel@tonic-gate if (argc == 0) 3907c478bd9Sstevel@tonic-gate copycron(stdin); 3917c478bd9Sstevel@tonic-gate else if (seteuid(getuid()) != 0 || (fp = fopen(argv[0], "r")) 3927c478bd9Sstevel@tonic-gate == NULL) 3937c478bd9Sstevel@tonic-gate crabort(BADOPEN); 3947c478bd9Sstevel@tonic-gate else { 3957c478bd9Sstevel@tonic-gate seteuid(0); 3967c478bd9Sstevel@tonic-gate copycron(fp); 3977c478bd9Sstevel@tonic-gate } 3987c478bd9Sstevel@tonic-gate } 3997c478bd9Sstevel@tonic-gate cron_sendmsg(ADD, login, login, CRON); 4007c478bd9Sstevel@tonic-gate /* 4017c478bd9Sstevel@tonic-gate * if (per_errno == 2) 4027c478bd9Sstevel@tonic-gate * fprintf(stderr, gettext(WARNSHELL)); 4037c478bd9Sstevel@tonic-gate */ 4047c478bd9Sstevel@tonic-gate return (0); 4057c478bd9Sstevel@tonic-gate } 4067c478bd9Sstevel@tonic-gate 4077c478bd9Sstevel@tonic-gate static void 4087c478bd9Sstevel@tonic-gate copycron(fp) 4097c478bd9Sstevel@tonic-gate FILE *fp; 4107c478bd9Sstevel@tonic-gate { 4117c478bd9Sstevel@tonic-gate FILE *tfp; 4127c478bd9Sstevel@tonic-gate char pid[6], *tnam_end; 4137c478bd9Sstevel@tonic-gate int t; 4145b08e637SChris Gerhard char buf[LINE_MAX]; 4157c478bd9Sstevel@tonic-gate 4167c478bd9Sstevel@tonic-gate sprintf(pid, "%-5d", getpid()); 4177c478bd9Sstevel@tonic-gate tnam = xmalloc(strlen(CRONDIR)+strlen(TMPFILE)+7); 4187c478bd9Sstevel@tonic-gate strcat(strcat(strcat(strcpy(tnam, CRONDIR), "/"), TMPFILE), pid); 4197c478bd9Sstevel@tonic-gate /* cut trailing blanks */ 4207c478bd9Sstevel@tonic-gate tnam_end = strchr(tnam, ' '); 4217c478bd9Sstevel@tonic-gate if (tnam_end != NULL) 4227c478bd9Sstevel@tonic-gate *tnam_end = 0; 4237c478bd9Sstevel@tonic-gate /* catch SIGINT, SIGHUP, SIGQUIT signals */ 4247c478bd9Sstevel@tonic-gate if (signal(SIGINT, catch) == SIG_IGN) 4257c478bd9Sstevel@tonic-gate signal(SIGINT, SIG_IGN); 4267c478bd9Sstevel@tonic-gate if (signal(SIGHUP, catch) == SIG_IGN) signal(SIGHUP, SIG_IGN); 4277c478bd9Sstevel@tonic-gate if (signal(SIGQUIT, catch) == SIG_IGN) signal(SIGQUIT, SIG_IGN); 4287c478bd9Sstevel@tonic-gate if (signal(SIGTERM, catch) == SIG_IGN) signal(SIGTERM, SIG_IGN); 4297c478bd9Sstevel@tonic-gate if ((t = creat(tnam, CRMODE)) == -1) crabort(BADCREATE); 4307c478bd9Sstevel@tonic-gate if ((tfp = fdopen(t, "w")) == NULL) { 4317c478bd9Sstevel@tonic-gate unlink(tnam); 4327c478bd9Sstevel@tonic-gate crabort(BADCREATE); 4337c478bd9Sstevel@tonic-gate } 4347c478bd9Sstevel@tonic-gate err = 0; /* if errors found, err set to 1 */ 4357c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) { 4367c478bd9Sstevel@tonic-gate cursor = 0; 4377c478bd9Sstevel@tonic-gate while (line[cursor] == ' ' || line[cursor] == '\t') 4387c478bd9Sstevel@tonic-gate cursor++; 4397c478bd9Sstevel@tonic-gate /* fix for 1039689 - treat blank line like a comment */ 4407c478bd9Sstevel@tonic-gate if (line[cursor] == '#' || line[cursor] == '\n') 4417c478bd9Sstevel@tonic-gate goto cont; 4425b08e637SChris Gerhard 4435b08e637SChris Gerhard if (strncmp(&line[cursor], ENV_TZ, strlen(ENV_TZ)) == 0) { 4445b08e637SChris Gerhard char *x; 4455b08e637SChris Gerhard 4465b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_TZ)], 4475b08e637SChris Gerhard sizeof (buf)); 4485b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL) 4495b08e637SChris Gerhard *x = NULL; 4505b08e637SChris Gerhard 4515b08e637SChris Gerhard if (isvalid_tz(buf, NULL, _VTZ_ALL)) { 4525b08e637SChris Gerhard goto cont; 4535b08e637SChris Gerhard } else { 4545b08e637SChris Gerhard err = 1; 4555b08e637SChris Gerhard fprintf(stderr, BAD_TZ, &line[cursor]); 4565b08e637SChris Gerhard continue; 4575b08e637SChris Gerhard } 4585b08e637SChris Gerhard } else if (strncmp(&line[cursor], ENV_SHELL, 4595b08e637SChris Gerhard strlen(ENV_SHELL)) == 0) { 4605b08e637SChris Gerhard char *x; 4615b08e637SChris Gerhard 4625b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_SHELL)], 4635b08e637SChris Gerhard sizeof (buf)); 4645b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL) 4655b08e637SChris Gerhard *x = NULL; 4665b08e637SChris Gerhard 4675b08e637SChris Gerhard if (isvalid_shell(buf)) { 4685b08e637SChris Gerhard goto cont; 4695b08e637SChris Gerhard } else { 4705b08e637SChris Gerhard err = 1; 4715b08e637SChris Gerhard fprintf(stderr, BAD_SHELL, &line[cursor]); 4725b08e637SChris Gerhard continue; 4735b08e637SChris Gerhard } 4745b08e637SChris Gerhard } else if (strncmp(&line[cursor], ENV_HOME, 4755b08e637SChris Gerhard strlen(ENV_HOME)) == 0) { 4765b08e637SChris Gerhard char *x; 4775b08e637SChris Gerhard 4785b08e637SChris Gerhard strncpy(buf, &line[cursor + strlen(ENV_HOME)], 4795b08e637SChris Gerhard sizeof (buf)); 4805b08e637SChris Gerhard if ((x = strchr(buf, '\n')) != NULL) 4815b08e637SChris Gerhard *x = NULL; 4825b08e637SChris Gerhard if (chdir(buf) == 0) { 4835b08e637SChris Gerhard goto cont; 4845b08e637SChris Gerhard } else { 4855b08e637SChris Gerhard err = 1; 4865b08e637SChris Gerhard fprintf(stderr, BAD_HOME, &line[cursor], 4875b08e637SChris Gerhard strerror(errno)); 4885b08e637SChris Gerhard continue; 4895b08e637SChris Gerhard } 4905b08e637SChris Gerhard } 4915b08e637SChris Gerhard 4927c478bd9Sstevel@tonic-gate if (next_field(0, 59)) continue; 4937c478bd9Sstevel@tonic-gate if (next_field(0, 23)) continue; 4947c478bd9Sstevel@tonic-gate if (next_field(1, 31)) continue; 4957c478bd9Sstevel@tonic-gate if (next_field(1, 12)) continue; 4967c478bd9Sstevel@tonic-gate if (next_field(0, 06)) continue; 4977c478bd9Sstevel@tonic-gate if (line[++cursor] == '\0') { 4987c478bd9Sstevel@tonic-gate cerror(EOLN); 4997c478bd9Sstevel@tonic-gate continue; 5007c478bd9Sstevel@tonic-gate } 5017c478bd9Sstevel@tonic-gate cont: 5027c478bd9Sstevel@tonic-gate if (fputs(line, tfp) == EOF) { 5037c478bd9Sstevel@tonic-gate unlink(tnam); 5047c478bd9Sstevel@tonic-gate crabort(BADCREATE); 5057c478bd9Sstevel@tonic-gate } 5067c478bd9Sstevel@tonic-gate } 5077c478bd9Sstevel@tonic-gate fclose(fp); 5087c478bd9Sstevel@tonic-gate fclose(tfp); 5097c478bd9Sstevel@tonic-gate 5107c478bd9Sstevel@tonic-gate /* audit differences between old and new crontabs */ 5117c478bd9Sstevel@tonic-gate audit_crontab_modify(cf, tnam, err); 5127c478bd9Sstevel@tonic-gate 5137c478bd9Sstevel@tonic-gate if (!err) { 5147c478bd9Sstevel@tonic-gate /* make file tfp the new crontab */ 5157c478bd9Sstevel@tonic-gate unlink(cf); 5167c478bd9Sstevel@tonic-gate if (link(tnam, cf) == -1) { 5177c478bd9Sstevel@tonic-gate unlink(tnam); 5187c478bd9Sstevel@tonic-gate crabort(BADCREATE); 5197c478bd9Sstevel@tonic-gate } 520b0d0a1c8SViswanathan Kannappan } else { 521b0d0a1c8SViswanathan Kannappan crabort(ERRSFND); 522b0d0a1c8SViswanathan Kannappan } 5237c478bd9Sstevel@tonic-gate unlink(tnam); 5247c478bd9Sstevel@tonic-gate } 5257c478bd9Sstevel@tonic-gate 5267c478bd9Sstevel@tonic-gate static int 5277c478bd9Sstevel@tonic-gate next_field(lower, upper) 5287c478bd9Sstevel@tonic-gate int lower, upper; 5297c478bd9Sstevel@tonic-gate { 5307c478bd9Sstevel@tonic-gate int num, num2; 5317c478bd9Sstevel@tonic-gate 5327c478bd9Sstevel@tonic-gate while ((line[cursor] == ' ') || (line[cursor] == '\t')) cursor++; 5337c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') { 5347c478bd9Sstevel@tonic-gate cerror(EOLN); 5357c478bd9Sstevel@tonic-gate return (1); 5367c478bd9Sstevel@tonic-gate } 5377c478bd9Sstevel@tonic-gate if (line[cursor] == '*') { 5387c478bd9Sstevel@tonic-gate cursor++; 5397c478bd9Sstevel@tonic-gate if ((line[cursor] != ' ') && (line[cursor] != '\t')) { 5407c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5417c478bd9Sstevel@tonic-gate return (1); 5427c478bd9Sstevel@tonic-gate } 5437c478bd9Sstevel@tonic-gate return (0); 5447c478bd9Sstevel@tonic-gate } 5457c478bd9Sstevel@tonic-gate while (TRUE) { 5467c478bd9Sstevel@tonic-gate if (!isdigit(line[cursor])) { 5477c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5487c478bd9Sstevel@tonic-gate return (1); 5497c478bd9Sstevel@tonic-gate } 5507c478bd9Sstevel@tonic-gate num = 0; 5517c478bd9Sstevel@tonic-gate do { 5527c478bd9Sstevel@tonic-gate num = num*10 + (line[cursor]-'0'); 5537c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor])); 5547c478bd9Sstevel@tonic-gate if ((num < lower) || (num > upper)) { 5557c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND); 5567c478bd9Sstevel@tonic-gate return (1); 5577c478bd9Sstevel@tonic-gate } 5587c478bd9Sstevel@tonic-gate if (line[cursor] == '-') { 5597c478bd9Sstevel@tonic-gate if (!isdigit(line[++cursor])) { 5607c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5617c478bd9Sstevel@tonic-gate return (1); 5627c478bd9Sstevel@tonic-gate } 5637c478bd9Sstevel@tonic-gate num2 = 0; 5647c478bd9Sstevel@tonic-gate do { 5657c478bd9Sstevel@tonic-gate num2 = num2*10 + (line[cursor]-'0'); 5667c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor])); 5677c478bd9Sstevel@tonic-gate if ((num2 < lower) || (num2 > upper)) { 5687c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND); 5697c478bd9Sstevel@tonic-gate return (1); 5707c478bd9Sstevel@tonic-gate } 5717c478bd9Sstevel@tonic-gate } 5727c478bd9Sstevel@tonic-gate if ((line[cursor] == ' ') || (line[cursor] == '\t')) break; 5737c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') { 5747c478bd9Sstevel@tonic-gate cerror(EOLN); 5757c478bd9Sstevel@tonic-gate return (1); 5767c478bd9Sstevel@tonic-gate } 5777c478bd9Sstevel@tonic-gate if (line[cursor++] != ',') { 5787c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5797c478bd9Sstevel@tonic-gate return (1); 5807c478bd9Sstevel@tonic-gate } 5817c478bd9Sstevel@tonic-gate } 5827c478bd9Sstevel@tonic-gate return (0); 5837c478bd9Sstevel@tonic-gate } 5847c478bd9Sstevel@tonic-gate 5857c478bd9Sstevel@tonic-gate static void 5867c478bd9Sstevel@tonic-gate cerror(msg) 5877c478bd9Sstevel@tonic-gate char *msg; 5887c478bd9Sstevel@tonic-gate { 5897c478bd9Sstevel@tonic-gate fprintf(stderr, gettext("%scrontab: error on previous line; %s\n"), 5907c478bd9Sstevel@tonic-gate line, msg); 5917c478bd9Sstevel@tonic-gate err = 1; 5927c478bd9Sstevel@tonic-gate } 5937c478bd9Sstevel@tonic-gate 5947c478bd9Sstevel@tonic-gate 5957c478bd9Sstevel@tonic-gate static void 5967c478bd9Sstevel@tonic-gate catch(int x) 5977c478bd9Sstevel@tonic-gate { 5987c478bd9Sstevel@tonic-gate unlink(tnam); 5997c478bd9Sstevel@tonic-gate exit(1); 6007c478bd9Sstevel@tonic-gate } 6017c478bd9Sstevel@tonic-gate 6027c478bd9Sstevel@tonic-gate static void 6037c478bd9Sstevel@tonic-gate crabort(msg) 6047c478bd9Sstevel@tonic-gate char *msg; 6057c478bd9Sstevel@tonic-gate { 6067c478bd9Sstevel@tonic-gate int sverrno; 6077c478bd9Sstevel@tonic-gate 6087c478bd9Sstevel@tonic-gate if (strcmp(edtemp, "") != 0) { 6097c478bd9Sstevel@tonic-gate sverrno = errno; 6107c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 6117c478bd9Sstevel@tonic-gate errno = sverrno; 6127c478bd9Sstevel@tonic-gate } 6137c478bd9Sstevel@tonic-gate if (tnam != NULL) { 6147c478bd9Sstevel@tonic-gate sverrno = errno; 6157c478bd9Sstevel@tonic-gate (void) unlink(tnam); 6167c478bd9Sstevel@tonic-gate errno = sverrno; 6177c478bd9Sstevel@tonic-gate } 6187c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s\n", gettext(msg)); 6197c478bd9Sstevel@tonic-gate exit(1); 6207c478bd9Sstevel@tonic-gate } 621