17c478bd9Sstevel@tonic-gate /* 27c478bd9Sstevel@tonic-gate * CDDL HEADER START 37c478bd9Sstevel@tonic-gate * 47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 53010f05bSdp * Common Development and Distribution License (the "License"). 63010f05bSdp * You may not use this file except in compliance with the License. 77c478bd9Sstevel@tonic-gate * 87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 117c478bd9Sstevel@tonic-gate * and limitations under the License. 127c478bd9Sstevel@tonic-gate * 137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 187c478bd9Sstevel@tonic-gate * 197c478bd9Sstevel@tonic-gate * CDDL HEADER END 207c478bd9Sstevel@tonic-gate */ 217c478bd9Sstevel@tonic-gate /* 22*1c0be37bSsn199410 * Copyright 2008 Sun Microsystems, Inc. All rights reserved. 237c478bd9Sstevel@tonic-gate * Use is subject to license terms. 247c478bd9Sstevel@tonic-gate */ 257c478bd9Sstevel@tonic-gate /* Copyright (c) 1984, 1986, 1987, 1988, 1989 AT&T */ 267c478bd9Sstevel@tonic-gate /* All Rights Reserved */ 277c478bd9Sstevel@tonic-gate 287c478bd9Sstevel@tonic-gate 297c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 307c478bd9Sstevel@tonic-gate 317c478bd9Sstevel@tonic-gate #include <sys/types.h> 327c478bd9Sstevel@tonic-gate #include <sys/stat.h> 337c478bd9Sstevel@tonic-gate #include <sys/types.h> 347c478bd9Sstevel@tonic-gate #include <sys/wait.h> 357c478bd9Sstevel@tonic-gate #include <errno.h> 367c478bd9Sstevel@tonic-gate #include <signal.h> 377c478bd9Sstevel@tonic-gate #include <stdio.h> 387c478bd9Sstevel@tonic-gate #include <stdlib.h> 397c478bd9Sstevel@tonic-gate #include <string.h> 407c478bd9Sstevel@tonic-gate #include <fcntl.h> 417c478bd9Sstevel@tonic-gate #include <ctype.h> 427c478bd9Sstevel@tonic-gate #include <pwd.h> 437c478bd9Sstevel@tonic-gate #include <unistd.h> 447c478bd9Sstevel@tonic-gate #include <locale.h> 457c478bd9Sstevel@tonic-gate #include <nl_types.h> 467c478bd9Sstevel@tonic-gate #include <langinfo.h> 477c478bd9Sstevel@tonic-gate #include <libintl.h> 48*1c0be37bSsn199410 #include <spawn.h> 497c478bd9Sstevel@tonic-gate #include <security/pam_appl.h> 507c478bd9Sstevel@tonic-gate #include "cron.h" 513d63ea05Sas145665 #include "getresponse.h" 527c478bd9Sstevel@tonic-gate 53d61d085dScf46844 #if defined(XPG4) 54d61d085dScf46844 #define VIPATH "/usr/xpg4/bin/vi" 55d61d085dScf46844 #elif defined(XPG6) 56d61d085dScf46844 #define VIPATH "/usr/xpg6/bin/vi" 57d61d085dScf46844 #else 58d61d085dScf46844 #define _XPG_NOTDEFINED 59d61d085dScf46844 #define VIPATH "vi" 60d61d085dScf46844 #endif 61d61d085dScf46844 627c478bd9Sstevel@tonic-gate #define TMPFILE "_cron" /* prefix for tmp file */ 637c478bd9Sstevel@tonic-gate #define CRMODE 0600 /* mode for creating crontabs */ 647c478bd9Sstevel@tonic-gate 657c478bd9Sstevel@tonic-gate #define BADCREATE \ 667c478bd9Sstevel@tonic-gate "can't create your crontab file in the crontab directory." 677c478bd9Sstevel@tonic-gate #define BADOPEN "can't open your crontab file." 687c478bd9Sstevel@tonic-gate #define BADSHELL \ 697c478bd9Sstevel@tonic-gate "because your login shell isn't /usr/bin/sh, you can't use cron." 707c478bd9Sstevel@tonic-gate #define WARNSHELL "warning: commands will be executed using /usr/bin/sh\n" 717c478bd9Sstevel@tonic-gate #define BADUSAGE \ 723010f05bSdp "usage:\n" \ 733010f05bSdp "\tcrontab [file]\n" \ 743010f05bSdp "\tcrontab -e [username]\n" \ 753010f05bSdp "\tcrontab -l [username]\n" \ 763010f05bSdp "\tcrontab -r [username]" 777c478bd9Sstevel@tonic-gate #define INVALIDUSER "you are not a valid user (no entry in /etc/passwd)." 787c478bd9Sstevel@tonic-gate #define NOTALLOWED "you are not authorized to use cron. Sorry." 797c478bd9Sstevel@tonic-gate #define NOTROOT \ 807c478bd9Sstevel@tonic-gate "you must be super-user to access another user's crontab file" 817c478bd9Sstevel@tonic-gate #define AUDITREJECT "The audit context for your shell has not been set." 827c478bd9Sstevel@tonic-gate #define EOLN "unexpected end of line." 837c478bd9Sstevel@tonic-gate #define UNEXPECT "unexpected character found in line." 847c478bd9Sstevel@tonic-gate #define OUTOFBOUND "number out of bounds." 857c478bd9Sstevel@tonic-gate #define ERRSFND "errors detected in input, no crontab file generated." 867c478bd9Sstevel@tonic-gate #define ED_ERROR \ 877c478bd9Sstevel@tonic-gate " The editor indicates that an error occurred while you were\n"\ 887c478bd9Sstevel@tonic-gate " editing the crontab data - usually a minor typing error.\n\n" 897c478bd9Sstevel@tonic-gate #define BADREAD "error reading your crontab file" 907c478bd9Sstevel@tonic-gate #define ED_PROMPT \ 913d63ea05Sas145665 " Edit again, to ensure crontab information is intact (%s/%s)?\n"\ 923d63ea05Sas145665 " ('%s' will discard edits.)" 937c478bd9Sstevel@tonic-gate #define NAMETOOLONG "login name too long" 947c478bd9Sstevel@tonic-gate 957c478bd9Sstevel@tonic-gate extern int per_errno; 96*1c0be37bSsn199410 extern char **environ; 977c478bd9Sstevel@tonic-gate 987c478bd9Sstevel@tonic-gate extern int audit_crontab_modify(char *, char *, int); 997c478bd9Sstevel@tonic-gate extern int audit_crontab_delete(char *, int); 1007c478bd9Sstevel@tonic-gate extern int audit_crontab_not_allowed(uid_t, char *); 1017c478bd9Sstevel@tonic-gate 1027c478bd9Sstevel@tonic-gate int err; 1037c478bd9Sstevel@tonic-gate int cursor; 1047c478bd9Sstevel@tonic-gate char *cf; 1057c478bd9Sstevel@tonic-gate char *tnam; 1067c478bd9Sstevel@tonic-gate char edtemp[5+13+1]; 1077c478bd9Sstevel@tonic-gate char line[CTLINESIZE]; 1087c478bd9Sstevel@tonic-gate static char login[UNAMESIZE]; 1097c478bd9Sstevel@tonic-gate 1107c478bd9Sstevel@tonic-gate static int next_field(int, int); 1117c478bd9Sstevel@tonic-gate static void catch(int); 1127c478bd9Sstevel@tonic-gate static void crabort(char *); 1137c478bd9Sstevel@tonic-gate static void cerror(char *); 1147c478bd9Sstevel@tonic-gate static void copycron(FILE *); 1157c478bd9Sstevel@tonic-gate 116032624d5Sbasabi int 117032624d5Sbasabi main(int argc, char **argv) 1187c478bd9Sstevel@tonic-gate { 1197c478bd9Sstevel@tonic-gate int c, r; 1207c478bd9Sstevel@tonic-gate int rflag = 0; 1217c478bd9Sstevel@tonic-gate int lflag = 0; 1227c478bd9Sstevel@tonic-gate int eflag = 0; 1237c478bd9Sstevel@tonic-gate int errflg = 0; 1247c478bd9Sstevel@tonic-gate char *pp; 1257c478bd9Sstevel@tonic-gate FILE *fp, *tmpfp; 1267c478bd9Sstevel@tonic-gate struct stat stbuf; 1277c478bd9Sstevel@tonic-gate struct passwd *pwp; 1287c478bd9Sstevel@tonic-gate time_t omodtime; 1297c478bd9Sstevel@tonic-gate char *editor; 1307c478bd9Sstevel@tonic-gate uid_t ruid; 1317c478bd9Sstevel@tonic-gate pid_t pid; 1327c478bd9Sstevel@tonic-gate int stat_loc; 1337c478bd9Sstevel@tonic-gate int ret; 1347c478bd9Sstevel@tonic-gate char real_login[UNAMESIZE]; 1357c478bd9Sstevel@tonic-gate int tmpfd = -1; 1367c478bd9Sstevel@tonic-gate pam_handle_t *pamh; 1377c478bd9Sstevel@tonic-gate int pam_error; 138*1c0be37bSsn199410 pid_t cpid; 139*1c0be37bSsn199410 int cstatus; 140*1c0be37bSsn199410 char *argvec[3]; 1417c478bd9Sstevel@tonic-gate 1427c478bd9Sstevel@tonic-gate (void) setlocale(LC_ALL, ""); 1437c478bd9Sstevel@tonic-gate #if !defined(TEXT_DOMAIN) /* Should be defined by cc -D */ 1447c478bd9Sstevel@tonic-gate #define TEXT_DOMAIN "SYS_TEST" /* Use this only if it weren't */ 1457c478bd9Sstevel@tonic-gate #endif 1467c478bd9Sstevel@tonic-gate (void) textdomain(TEXT_DOMAIN); 1473d63ea05Sas145665 1483d63ea05Sas145665 if (init_yes() < 0) { 1493d63ea05Sas145665 (void) fprintf(stderr, gettext(ERR_MSG_INIT_YES), 1503d63ea05Sas145665 strerror(errno)); 1513d63ea05Sas145665 exit(1); 1523d63ea05Sas145665 } 1537c478bd9Sstevel@tonic-gate 1547c478bd9Sstevel@tonic-gate while ((c = getopt(argc, argv, "elr")) != EOF) 1557c478bd9Sstevel@tonic-gate switch (c) { 1567c478bd9Sstevel@tonic-gate case 'e': 1577c478bd9Sstevel@tonic-gate eflag++; 1587c478bd9Sstevel@tonic-gate break; 1597c478bd9Sstevel@tonic-gate case 'l': 1607c478bd9Sstevel@tonic-gate lflag++; 1617c478bd9Sstevel@tonic-gate break; 1627c478bd9Sstevel@tonic-gate case 'r': 1637c478bd9Sstevel@tonic-gate rflag++; 1647c478bd9Sstevel@tonic-gate break; 1657c478bd9Sstevel@tonic-gate case '?': 1667c478bd9Sstevel@tonic-gate errflg++; 1677c478bd9Sstevel@tonic-gate break; 1687c478bd9Sstevel@tonic-gate } 1697c478bd9Sstevel@tonic-gate 1707c478bd9Sstevel@tonic-gate if (eflag + lflag + rflag > 1) 1717c478bd9Sstevel@tonic-gate errflg++; 1727c478bd9Sstevel@tonic-gate 1737c478bd9Sstevel@tonic-gate argc -= optind; 1747c478bd9Sstevel@tonic-gate argv += optind; 1757c478bd9Sstevel@tonic-gate if (errflg || argc > 1) 1767c478bd9Sstevel@tonic-gate crabort(BADUSAGE); 1777c478bd9Sstevel@tonic-gate 1787c478bd9Sstevel@tonic-gate ruid = getuid(); 1797c478bd9Sstevel@tonic-gate if ((pwp = getpwuid(ruid)) == NULL) 1807c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 1817c478bd9Sstevel@tonic-gate 1827c478bd9Sstevel@tonic-gate if (strlcpy(real_login, pwp->pw_name, sizeof (real_login)) 1837c478bd9Sstevel@tonic-gate >= sizeof (real_login)) 1847c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG); 1857c478bd9Sstevel@tonic-gate 1867c478bd9Sstevel@tonic-gate if ((eflag || lflag || rflag) && argc == 1) { 1877c478bd9Sstevel@tonic-gate if ((pwp = getpwnam(*argv)) == NULL) 1887c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 1897c478bd9Sstevel@tonic-gate 1907c478bd9Sstevel@tonic-gate if (!chkauthattr(CRONADMIN_AUTH, real_login)) { 1917c478bd9Sstevel@tonic-gate if (pwp->pw_uid != ruid) 1927c478bd9Sstevel@tonic-gate crabort(NOTROOT); 1937c478bd9Sstevel@tonic-gate else 1947c478bd9Sstevel@tonic-gate pp = getuser(ruid); 1957c478bd9Sstevel@tonic-gate } else 1967c478bd9Sstevel@tonic-gate pp = *argv++; 1977c478bd9Sstevel@tonic-gate } else { 1987c478bd9Sstevel@tonic-gate pp = getuser(ruid); 1997c478bd9Sstevel@tonic-gate } 2007c478bd9Sstevel@tonic-gate 2017c478bd9Sstevel@tonic-gate if (pp == NULL) { 2027c478bd9Sstevel@tonic-gate if (per_errno == 2) 2037c478bd9Sstevel@tonic-gate crabort(BADSHELL); 2047c478bd9Sstevel@tonic-gate else 2057c478bd9Sstevel@tonic-gate crabort(INVALIDUSER); 2067c478bd9Sstevel@tonic-gate } 2077c478bd9Sstevel@tonic-gate if (strlcpy(login, pp, sizeof (login)) >= sizeof (login)) 2087c478bd9Sstevel@tonic-gate crabort(NAMETOOLONG); 2097c478bd9Sstevel@tonic-gate if (!allowed(login, CRONALLOW, CRONDENY)) 2107c478bd9Sstevel@tonic-gate crabort(NOTALLOWED); 2117c478bd9Sstevel@tonic-gate 2127c478bd9Sstevel@tonic-gate /* Do account validation check */ 2137c478bd9Sstevel@tonic-gate pam_error = pam_start("cron", pp, NULL, &pamh); 2147c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) { 2157c478bd9Sstevel@tonic-gate crabort((char *)pam_strerror(pamh, pam_error)); 2167c478bd9Sstevel@tonic-gate } 2177c478bd9Sstevel@tonic-gate pam_error = pam_acct_mgmt(pamh, PAM_SILENT); 2187c478bd9Sstevel@tonic-gate if (pam_error != PAM_SUCCESS) { 2197c478bd9Sstevel@tonic-gate (void) fprintf(stderr, gettext("Warning - Invalid account: " 2207c478bd9Sstevel@tonic-gate "'%s' not allowed to execute cronjobs\n"), pp); 2217c478bd9Sstevel@tonic-gate } 2227c478bd9Sstevel@tonic-gate (void) pam_end(pamh, PAM_SUCCESS); 2237c478bd9Sstevel@tonic-gate 2247c478bd9Sstevel@tonic-gate 2257c478bd9Sstevel@tonic-gate /* check for unaudited shell */ 2267c478bd9Sstevel@tonic-gate if (audit_crontab_not_allowed(ruid, pp)) 2277c478bd9Sstevel@tonic-gate crabort(AUDITREJECT); 2287c478bd9Sstevel@tonic-gate 2297c478bd9Sstevel@tonic-gate cf = xmalloc(strlen(CRONDIR)+strlen(login)+2); 2307c478bd9Sstevel@tonic-gate strcat(strcat(strcpy(cf, CRONDIR), "/"), login); 2317c478bd9Sstevel@tonic-gate 2327c478bd9Sstevel@tonic-gate if (rflag) { 2337c478bd9Sstevel@tonic-gate r = unlink(cf); 2347c478bd9Sstevel@tonic-gate cron_sendmsg(DELETE, login, login, CRON); 2357c478bd9Sstevel@tonic-gate audit_crontab_delete(cf, r); 2367c478bd9Sstevel@tonic-gate exit(0); 2377c478bd9Sstevel@tonic-gate } 2387c478bd9Sstevel@tonic-gate if (lflag) { 2397c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL) 2407c478bd9Sstevel@tonic-gate crabort(BADOPEN); 2417c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) 2427c478bd9Sstevel@tonic-gate fputs(line, stdout); 2437c478bd9Sstevel@tonic-gate fclose(fp); 2447c478bd9Sstevel@tonic-gate exit(0); 2457c478bd9Sstevel@tonic-gate } 2467c478bd9Sstevel@tonic-gate if (eflag) { 2477c478bd9Sstevel@tonic-gate if ((fp = fopen(cf, "r")) == NULL) { 2487c478bd9Sstevel@tonic-gate if (errno != ENOENT) 2497c478bd9Sstevel@tonic-gate crabort(BADOPEN); 2507c478bd9Sstevel@tonic-gate } 2517c478bd9Sstevel@tonic-gate (void) strcpy(edtemp, "/tmp/crontabXXXXXX"); 2527c478bd9Sstevel@tonic-gate tmpfd = mkstemp(edtemp); 2537c478bd9Sstevel@tonic-gate if (fchown(tmpfd, ruid, -1) == -1) { 2547c478bd9Sstevel@tonic-gate (void) close(tmpfd); 2557c478bd9Sstevel@tonic-gate crabort("fchown of temporary file failed"); 2567c478bd9Sstevel@tonic-gate } 2577c478bd9Sstevel@tonic-gate (void) close(tmpfd); 2587c478bd9Sstevel@tonic-gate /* 2597c478bd9Sstevel@tonic-gate * Fork off a child with user's permissions, 2607c478bd9Sstevel@tonic-gate * to edit the crontab file 2617c478bd9Sstevel@tonic-gate */ 2627c478bd9Sstevel@tonic-gate if ((pid = fork()) == (pid_t)-1) 2637c478bd9Sstevel@tonic-gate crabort("fork failed"); 2647c478bd9Sstevel@tonic-gate if (pid == 0) { /* child process */ 2657c478bd9Sstevel@tonic-gate /* give up super-user privileges. */ 2667c478bd9Sstevel@tonic-gate setuid(ruid); 2677c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "w")) == NULL) 2687c478bd9Sstevel@tonic-gate crabort("can't create temporary file"); 2697c478bd9Sstevel@tonic-gate if (fp != NULL) { 2707c478bd9Sstevel@tonic-gate /* 2717c478bd9Sstevel@tonic-gate * Copy user's crontab file to temporary file. 2727c478bd9Sstevel@tonic-gate */ 2737c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) { 2747c478bd9Sstevel@tonic-gate fputs(line, tmpfp); 2757c478bd9Sstevel@tonic-gate if (ferror(tmpfp)) { 2767c478bd9Sstevel@tonic-gate fclose(fp); 2777c478bd9Sstevel@tonic-gate fclose(tmpfp); 2787c478bd9Sstevel@tonic-gate crabort("write error on" 2797c478bd9Sstevel@tonic-gate "temporary file"); 2807c478bd9Sstevel@tonic-gate } 2817c478bd9Sstevel@tonic-gate } 2827c478bd9Sstevel@tonic-gate if (ferror(fp)) { 2837c478bd9Sstevel@tonic-gate fclose(fp); 2847c478bd9Sstevel@tonic-gate fclose(tmpfp); 2857c478bd9Sstevel@tonic-gate crabort(BADREAD); 2867c478bd9Sstevel@tonic-gate } 2877c478bd9Sstevel@tonic-gate fclose(fp); 2887c478bd9Sstevel@tonic-gate } 2897c478bd9Sstevel@tonic-gate if (fclose(tmpfp) == EOF) 2907c478bd9Sstevel@tonic-gate crabort("write error on temporary file"); 2917c478bd9Sstevel@tonic-gate if (stat(edtemp, &stbuf) < 0) 2927c478bd9Sstevel@tonic-gate crabort("can't stat temporary file"); 2937c478bd9Sstevel@tonic-gate omodtime = stbuf.st_mtime; 294d61d085dScf46844 #ifdef _XPG_NOTDEFINED 2957c478bd9Sstevel@tonic-gate editor = getenv("VISUAL"); 296d61d085dScf46844 if (editor == NULL) { 297d61d085dScf46844 #endif 2987c478bd9Sstevel@tonic-gate editor = getenv("EDITOR"); 2997c478bd9Sstevel@tonic-gate if (editor == NULL) 300d61d085dScf46844 editor = VIPATH; 301d61d085dScf46844 #ifdef _XPG_NOTDEFINED 302d61d085dScf46844 } 303d61d085dScf46844 #endif 304*1c0be37bSsn199410 argvec[0] = strdup(editor); 305*1c0be37bSsn199410 argvec[1] = strdup(edtemp); 306*1c0be37bSsn199410 argvec[2] = NULL; 307*1c0be37bSsn199410 308*1c0be37bSsn199410 if (argvec[0] == NULL || argvec[1] == NULL) 309*1c0be37bSsn199410 crabort("Insufficient memory"); 310*1c0be37bSsn199410 3117c478bd9Sstevel@tonic-gate sleep(1); 3127c478bd9Sstevel@tonic-gate 3137c478bd9Sstevel@tonic-gate while (1) { 314*1c0be37bSsn199410 /* 315*1c0be37bSsn199410 * posix_spawnp() allows the file pointed to 316*1c0be37bSsn199410 * by the 'EDITOR' variable to be searched in 317*1c0be37bSsn199410 * the PATH environment variable 318*1c0be37bSsn199410 */ 319*1c0be37bSsn199410 320*1c0be37bSsn199410 ret = posix_spawnp(&cpid, editor, NULL, NULL, 321*1c0be37bSsn199410 (char *const *)argvec, 322*1c0be37bSsn199410 (char *const *)environ); 323*1c0be37bSsn199410 if (ret) { 324*1c0be37bSsn199410 (void) fprintf(stderr, 325*1c0be37bSsn199410 gettext("crontab: %s: %s\n"), 326*1c0be37bSsn199410 editor, strerror(errno)); 327*1c0be37bSsn199410 cstatus = -1; 328*1c0be37bSsn199410 } else { 329*1c0be37bSsn199410 pid_t wpid = 0; 330*1c0be37bSsn199410 while ((wpid = waitpid(cpid, &cstatus, 331*1c0be37bSsn199410 0)) == -1 && errno == EINTR) 332*1c0be37bSsn199410 ; 333*1c0be37bSsn199410 if (wpid == -1) 334*1c0be37bSsn199410 cstatus = -1; 335*1c0be37bSsn199410 } 336*1c0be37bSsn199410 3377c478bd9Sstevel@tonic-gate /* sanity checks */ 3387c478bd9Sstevel@tonic-gate if ((tmpfp = fopen(edtemp, "r")) == NULL) 3397c478bd9Sstevel@tonic-gate crabort("can't open temporary file"); 3407c478bd9Sstevel@tonic-gate if (fstat(fileno(tmpfp), &stbuf) < 0) 3417c478bd9Sstevel@tonic-gate crabort("can't stat temporary file"); 3427c478bd9Sstevel@tonic-gate if (stbuf.st_size == 0) 3437c478bd9Sstevel@tonic-gate crabort("temporary file empty"); 3447c478bd9Sstevel@tonic-gate if (omodtime == stbuf.st_mtime) { 3457c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3467c478bd9Sstevel@tonic-gate fprintf(stderr, gettext( 3473d63ea05Sas145665 "The crontab file was not" 3483d63ea05Sas145665 " changed.\n")); 3497c478bd9Sstevel@tonic-gate exit(1); 3507c478bd9Sstevel@tonic-gate } 351*1c0be37bSsn199410 if ((cstatus) && (errno != EINTR)) { 3527c478bd9Sstevel@tonic-gate /* 3537c478bd9Sstevel@tonic-gate * Some editors (like 'vi') can return 3547c478bd9Sstevel@tonic-gate * a non-zero exit status even though 3557c478bd9Sstevel@tonic-gate * everything is okay. Need to check. 3567c478bd9Sstevel@tonic-gate */ 3577c478bd9Sstevel@tonic-gate fprintf(stderr, gettext(ED_ERROR)); 3587c478bd9Sstevel@tonic-gate fflush(stderr); 3597c478bd9Sstevel@tonic-gate if (isatty(fileno(stdin))) { 3607c478bd9Sstevel@tonic-gate /* Interactive */ 361*1c0be37bSsn199410 fprintf(stdout, 362*1c0be37bSsn199410 gettext(ED_PROMPT), 3633d63ea05Sas145665 yesstr, nostr, nostr); 3647c478bd9Sstevel@tonic-gate fflush(stdout); 3657c478bd9Sstevel@tonic-gate 3667c478bd9Sstevel@tonic-gate if (yes()) { 3677c478bd9Sstevel@tonic-gate /* Edit again */ 3687c478bd9Sstevel@tonic-gate continue; 3697c478bd9Sstevel@tonic-gate } else { 3707c478bd9Sstevel@tonic-gate /* Dump changes */ 3717c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3727c478bd9Sstevel@tonic-gate exit(1); 3737c478bd9Sstevel@tonic-gate } 3747c478bd9Sstevel@tonic-gate } else { 375*1c0be37bSsn199410 /* 376*1c0be37bSsn199410 * Non-interactive, dump changes 377*1c0be37bSsn199410 */ 3787c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 3797c478bd9Sstevel@tonic-gate exit(1); 3807c478bd9Sstevel@tonic-gate } 3817c478bd9Sstevel@tonic-gate } 3827c478bd9Sstevel@tonic-gate exit(0); 3837c478bd9Sstevel@tonic-gate } /* while (1) */ 3847c478bd9Sstevel@tonic-gate } 3857c478bd9Sstevel@tonic-gate 3867c478bd9Sstevel@tonic-gate /* fix for 1125555 - ignore common signals while waiting */ 3877c478bd9Sstevel@tonic-gate (void) signal(SIGINT, SIG_IGN); 3887c478bd9Sstevel@tonic-gate (void) signal(SIGHUP, SIG_IGN); 3897c478bd9Sstevel@tonic-gate (void) signal(SIGQUIT, SIG_IGN); 3907c478bd9Sstevel@tonic-gate (void) signal(SIGTERM, SIG_IGN); 3917c478bd9Sstevel@tonic-gate wait(&stat_loc); 3927c478bd9Sstevel@tonic-gate if ((stat_loc & 0xFF00) != 0) 3937c478bd9Sstevel@tonic-gate exit(1); 3947c478bd9Sstevel@tonic-gate 395*1c0be37bSsn199410 /* 396*1c0be37bSsn199410 * unlink edtemp as 'ruid'. The file contents will be held 397*1c0be37bSsn199410 * since we open the file descriptor 'tmpfp' before calling 398*1c0be37bSsn199410 * unlink. 399*1c0be37bSsn199410 */ 400*1c0be37bSsn199410 if (((ret = seteuid(ruid)) < 0) || 401*1c0be37bSsn199410 ((tmpfp = fopen(edtemp, "r")) == NULL) || 402*1c0be37bSsn199410 (unlink(edtemp) == -1)) { 4037c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s: %s\n", 4047c478bd9Sstevel@tonic-gate edtemp, errmsg(errno)); 405*1c0be37bSsn199410 if ((ret < 0) || (tmpfp == NULL)) 4067c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 4077c478bd9Sstevel@tonic-gate exit(1); 4087c478bd9Sstevel@tonic-gate } else 4097c478bd9Sstevel@tonic-gate seteuid(0); 4107c478bd9Sstevel@tonic-gate 4117c478bd9Sstevel@tonic-gate copycron(tmpfp); 4127c478bd9Sstevel@tonic-gate } else { 4137c478bd9Sstevel@tonic-gate if (argc == 0) 4147c478bd9Sstevel@tonic-gate copycron(stdin); 4157c478bd9Sstevel@tonic-gate else if (seteuid(getuid()) != 0 || (fp = fopen(argv[0], "r")) 4167c478bd9Sstevel@tonic-gate == NULL) 4177c478bd9Sstevel@tonic-gate crabort(BADOPEN); 4187c478bd9Sstevel@tonic-gate else { 4197c478bd9Sstevel@tonic-gate seteuid(0); 4207c478bd9Sstevel@tonic-gate copycron(fp); 4217c478bd9Sstevel@tonic-gate } 4227c478bd9Sstevel@tonic-gate } 4237c478bd9Sstevel@tonic-gate cron_sendmsg(ADD, login, login, CRON); 4247c478bd9Sstevel@tonic-gate /* 4257c478bd9Sstevel@tonic-gate * if (per_errno == 2) 4267c478bd9Sstevel@tonic-gate * fprintf(stderr, gettext(WARNSHELL)); 4277c478bd9Sstevel@tonic-gate */ 4287c478bd9Sstevel@tonic-gate return (0); 4297c478bd9Sstevel@tonic-gate } 4307c478bd9Sstevel@tonic-gate 4317c478bd9Sstevel@tonic-gate static void 4327c478bd9Sstevel@tonic-gate copycron(fp) 4337c478bd9Sstevel@tonic-gate FILE *fp; 4347c478bd9Sstevel@tonic-gate { 4357c478bd9Sstevel@tonic-gate FILE *tfp; 4367c478bd9Sstevel@tonic-gate char pid[6], *tnam_end; 4377c478bd9Sstevel@tonic-gate int t; 4387c478bd9Sstevel@tonic-gate 4397c478bd9Sstevel@tonic-gate sprintf(pid, "%-5d", getpid()); 4407c478bd9Sstevel@tonic-gate tnam = xmalloc(strlen(CRONDIR)+strlen(TMPFILE)+7); 4417c478bd9Sstevel@tonic-gate strcat(strcat(strcat(strcpy(tnam, CRONDIR), "/"), TMPFILE), pid); 4427c478bd9Sstevel@tonic-gate /* cut trailing blanks */ 4437c478bd9Sstevel@tonic-gate tnam_end = strchr(tnam, ' '); 4447c478bd9Sstevel@tonic-gate if (tnam_end != NULL) 4457c478bd9Sstevel@tonic-gate *tnam_end = 0; 4467c478bd9Sstevel@tonic-gate /* catch SIGINT, SIGHUP, SIGQUIT signals */ 4477c478bd9Sstevel@tonic-gate if (signal(SIGINT, catch) == SIG_IGN) 4487c478bd9Sstevel@tonic-gate signal(SIGINT, SIG_IGN); 4497c478bd9Sstevel@tonic-gate if (signal(SIGHUP, catch) == SIG_IGN) signal(SIGHUP, SIG_IGN); 4507c478bd9Sstevel@tonic-gate if (signal(SIGQUIT, catch) == SIG_IGN) signal(SIGQUIT, SIG_IGN); 4517c478bd9Sstevel@tonic-gate if (signal(SIGTERM, catch) == SIG_IGN) signal(SIGTERM, SIG_IGN); 4527c478bd9Sstevel@tonic-gate if ((t = creat(tnam, CRMODE)) == -1) crabort(BADCREATE); 4537c478bd9Sstevel@tonic-gate if ((tfp = fdopen(t, "w")) == NULL) { 4547c478bd9Sstevel@tonic-gate unlink(tnam); 4557c478bd9Sstevel@tonic-gate crabort(BADCREATE); 4567c478bd9Sstevel@tonic-gate } 4577c478bd9Sstevel@tonic-gate err = 0; /* if errors found, err set to 1 */ 4587c478bd9Sstevel@tonic-gate while (fgets(line, CTLINESIZE, fp) != NULL) { 4597c478bd9Sstevel@tonic-gate cursor = 0; 4607c478bd9Sstevel@tonic-gate while (line[cursor] == ' ' || line[cursor] == '\t') 4617c478bd9Sstevel@tonic-gate cursor++; 4627c478bd9Sstevel@tonic-gate /* fix for 1039689 - treat blank line like a comment */ 4637c478bd9Sstevel@tonic-gate if (line[cursor] == '#' || line[cursor] == '\n') 4647c478bd9Sstevel@tonic-gate goto cont; 4657c478bd9Sstevel@tonic-gate if (next_field(0, 59)) continue; 4667c478bd9Sstevel@tonic-gate if (next_field(0, 23)) continue; 4677c478bd9Sstevel@tonic-gate if (next_field(1, 31)) continue; 4687c478bd9Sstevel@tonic-gate if (next_field(1, 12)) continue; 4697c478bd9Sstevel@tonic-gate if (next_field(0, 06)) continue; 4707c478bd9Sstevel@tonic-gate if (line[++cursor] == '\0') { 4717c478bd9Sstevel@tonic-gate cerror(EOLN); 4727c478bd9Sstevel@tonic-gate continue; 4737c478bd9Sstevel@tonic-gate } 4747c478bd9Sstevel@tonic-gate cont: 4757c478bd9Sstevel@tonic-gate if (fputs(line, tfp) == EOF) { 4767c478bd9Sstevel@tonic-gate unlink(tnam); 4777c478bd9Sstevel@tonic-gate crabort(BADCREATE); 4787c478bd9Sstevel@tonic-gate } 4797c478bd9Sstevel@tonic-gate } 4807c478bd9Sstevel@tonic-gate fclose(fp); 4817c478bd9Sstevel@tonic-gate fclose(tfp); 4827c478bd9Sstevel@tonic-gate 4837c478bd9Sstevel@tonic-gate /* audit differences between old and new crontabs */ 4847c478bd9Sstevel@tonic-gate audit_crontab_modify(cf, tnam, err); 4857c478bd9Sstevel@tonic-gate 4867c478bd9Sstevel@tonic-gate if (!err) { 4877c478bd9Sstevel@tonic-gate /* make file tfp the new crontab */ 4887c478bd9Sstevel@tonic-gate unlink(cf); 4897c478bd9Sstevel@tonic-gate if (link(tnam, cf) == -1) { 4907c478bd9Sstevel@tonic-gate unlink(tnam); 4917c478bd9Sstevel@tonic-gate crabort(BADCREATE); 4927c478bd9Sstevel@tonic-gate } 4937c478bd9Sstevel@tonic-gate } else 4947c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s\n", gettext(ERRSFND)); 4957c478bd9Sstevel@tonic-gate unlink(tnam); 4967c478bd9Sstevel@tonic-gate } 4977c478bd9Sstevel@tonic-gate 4987c478bd9Sstevel@tonic-gate static int 4997c478bd9Sstevel@tonic-gate next_field(lower, upper) 5007c478bd9Sstevel@tonic-gate int lower, upper; 5017c478bd9Sstevel@tonic-gate { 5027c478bd9Sstevel@tonic-gate int num, num2; 5037c478bd9Sstevel@tonic-gate 5047c478bd9Sstevel@tonic-gate while ((line[cursor] == ' ') || (line[cursor] == '\t')) cursor++; 5057c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') { 5067c478bd9Sstevel@tonic-gate cerror(EOLN); 5077c478bd9Sstevel@tonic-gate return (1); 5087c478bd9Sstevel@tonic-gate } 5097c478bd9Sstevel@tonic-gate if (line[cursor] == '*') { 5107c478bd9Sstevel@tonic-gate cursor++; 5117c478bd9Sstevel@tonic-gate if ((line[cursor] != ' ') && (line[cursor] != '\t')) { 5127c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5137c478bd9Sstevel@tonic-gate return (1); 5147c478bd9Sstevel@tonic-gate } 5157c478bd9Sstevel@tonic-gate return (0); 5167c478bd9Sstevel@tonic-gate } 5177c478bd9Sstevel@tonic-gate while (TRUE) { 5187c478bd9Sstevel@tonic-gate if (!isdigit(line[cursor])) { 5197c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5207c478bd9Sstevel@tonic-gate return (1); 5217c478bd9Sstevel@tonic-gate } 5227c478bd9Sstevel@tonic-gate num = 0; 5237c478bd9Sstevel@tonic-gate do { 5247c478bd9Sstevel@tonic-gate num = num*10 + (line[cursor]-'0'); 5257c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor])); 5267c478bd9Sstevel@tonic-gate if ((num < lower) || (num > upper)) { 5277c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND); 5287c478bd9Sstevel@tonic-gate return (1); 5297c478bd9Sstevel@tonic-gate } 5307c478bd9Sstevel@tonic-gate if (line[cursor] == '-') { 5317c478bd9Sstevel@tonic-gate if (!isdigit(line[++cursor])) { 5327c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5337c478bd9Sstevel@tonic-gate return (1); 5347c478bd9Sstevel@tonic-gate } 5357c478bd9Sstevel@tonic-gate num2 = 0; 5367c478bd9Sstevel@tonic-gate do { 5377c478bd9Sstevel@tonic-gate num2 = num2*10 + (line[cursor]-'0'); 5387c478bd9Sstevel@tonic-gate } while (isdigit(line[++cursor])); 5397c478bd9Sstevel@tonic-gate if ((num2 < lower) || (num2 > upper)) { 5407c478bd9Sstevel@tonic-gate cerror(OUTOFBOUND); 5417c478bd9Sstevel@tonic-gate return (1); 5427c478bd9Sstevel@tonic-gate } 5437c478bd9Sstevel@tonic-gate } 5447c478bd9Sstevel@tonic-gate if ((line[cursor] == ' ') || (line[cursor] == '\t')) break; 5457c478bd9Sstevel@tonic-gate if (line[cursor] == '\0') { 5467c478bd9Sstevel@tonic-gate cerror(EOLN); 5477c478bd9Sstevel@tonic-gate return (1); 5487c478bd9Sstevel@tonic-gate } 5497c478bd9Sstevel@tonic-gate if (line[cursor++] != ',') { 5507c478bd9Sstevel@tonic-gate cerror(UNEXPECT); 5517c478bd9Sstevel@tonic-gate return (1); 5527c478bd9Sstevel@tonic-gate } 5537c478bd9Sstevel@tonic-gate } 5547c478bd9Sstevel@tonic-gate return (0); 5557c478bd9Sstevel@tonic-gate } 5567c478bd9Sstevel@tonic-gate 5577c478bd9Sstevel@tonic-gate static void 5587c478bd9Sstevel@tonic-gate cerror(msg) 5597c478bd9Sstevel@tonic-gate char *msg; 5607c478bd9Sstevel@tonic-gate { 5617c478bd9Sstevel@tonic-gate fprintf(stderr, gettext("%scrontab: error on previous line; %s\n"), 5627c478bd9Sstevel@tonic-gate line, msg); 5637c478bd9Sstevel@tonic-gate err = 1; 5647c478bd9Sstevel@tonic-gate } 5657c478bd9Sstevel@tonic-gate 5667c478bd9Sstevel@tonic-gate 5677c478bd9Sstevel@tonic-gate static void 5687c478bd9Sstevel@tonic-gate catch(int x) 5697c478bd9Sstevel@tonic-gate { 5707c478bd9Sstevel@tonic-gate unlink(tnam); 5717c478bd9Sstevel@tonic-gate exit(1); 5727c478bd9Sstevel@tonic-gate } 5737c478bd9Sstevel@tonic-gate 5747c478bd9Sstevel@tonic-gate static void 5757c478bd9Sstevel@tonic-gate crabort(msg) 5767c478bd9Sstevel@tonic-gate char *msg; 5777c478bd9Sstevel@tonic-gate { 5787c478bd9Sstevel@tonic-gate int sverrno; 5797c478bd9Sstevel@tonic-gate 5807c478bd9Sstevel@tonic-gate if (strcmp(edtemp, "") != 0) { 5817c478bd9Sstevel@tonic-gate sverrno = errno; 5827c478bd9Sstevel@tonic-gate (void) unlink(edtemp); 5837c478bd9Sstevel@tonic-gate errno = sverrno; 5847c478bd9Sstevel@tonic-gate } 5857c478bd9Sstevel@tonic-gate if (tnam != NULL) { 5867c478bd9Sstevel@tonic-gate sverrno = errno; 5877c478bd9Sstevel@tonic-gate (void) unlink(tnam); 5887c478bd9Sstevel@tonic-gate errno = sverrno; 5897c478bd9Sstevel@tonic-gate } 5907c478bd9Sstevel@tonic-gate fprintf(stderr, "crontab: %s\n", gettext(msg)); 5917c478bd9Sstevel@tonic-gate exit(1); 5927c478bd9Sstevel@tonic-gate } 593