xref: /titanic_51/usr/src/cmd/gss/gssd/gssd_generic.c (revision 7c478bd95313f5f23a4c958a745db2134aa03244)
1*7c478bd9Sstevel@tonic-gate /*
2*7c478bd9Sstevel@tonic-gate  * CDDL HEADER START
3*7c478bd9Sstevel@tonic-gate  *
4*7c478bd9Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
5*7c478bd9Sstevel@tonic-gate  * Common Development and Distribution License, Version 1.0 only
6*7c478bd9Sstevel@tonic-gate  * (the "License").  You may not use this file except in compliance
7*7c478bd9Sstevel@tonic-gate  * with the License.
8*7c478bd9Sstevel@tonic-gate  *
9*7c478bd9Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
10*7c478bd9Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
11*7c478bd9Sstevel@tonic-gate  * See the License for the specific language governing permissions
12*7c478bd9Sstevel@tonic-gate  * and limitations under the License.
13*7c478bd9Sstevel@tonic-gate  *
14*7c478bd9Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
15*7c478bd9Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
16*7c478bd9Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
17*7c478bd9Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
18*7c478bd9Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
19*7c478bd9Sstevel@tonic-gate  *
20*7c478bd9Sstevel@tonic-gate  * CDDL HEADER END
21*7c478bd9Sstevel@tonic-gate  */
22*7c478bd9Sstevel@tonic-gate /*
23*7c478bd9Sstevel@tonic-gate  * Copyright (c) 1988-1997, by Sun Microsystems, Inc.
24*7c478bd9Sstevel@tonic-gate  * All rights reserved.
25*7c478bd9Sstevel@tonic-gate  */
26*7c478bd9Sstevel@tonic-gate 
27*7c478bd9Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
28*7c478bd9Sstevel@tonic-gate 
29*7c478bd9Sstevel@tonic-gate #include <stdio.h>
30*7c478bd9Sstevel@tonic-gate #include <stdlib.h>
31*7c478bd9Sstevel@tonic-gate #include <rpc/rpc.h>
32*7c478bd9Sstevel@tonic-gate #include <errno.h>
33*7c478bd9Sstevel@tonic-gate #include <syslog.h>
34*7c478bd9Sstevel@tonic-gate #include <rpc/nettype.h>
35*7c478bd9Sstevel@tonic-gate #include <netconfig.h>
36*7c478bd9Sstevel@tonic-gate #include <netdir.h>
37*7c478bd9Sstevel@tonic-gate #include <tiuser.h>
38*7c478bd9Sstevel@tonic-gate #include <fcntl.h>
39*7c478bd9Sstevel@tonic-gate #include <string.h>
40*7c478bd9Sstevel@tonic-gate #include <rpc/svc.h>
41*7c478bd9Sstevel@tonic-gate #include <locale.h>
42*7c478bd9Sstevel@tonic-gate 
43*7c478bd9Sstevel@tonic-gate extern int __rpc_negotiate_uid(int);
44*7c478bd9Sstevel@tonic-gate 
45*7c478bd9Sstevel@tonic-gate /*
46*7c478bd9Sstevel@tonic-gate  * The highest level interface for server creation.
47*7c478bd9Sstevel@tonic-gate  * Copied from svc_generic.c and cmd/keyserv/key_generic.c, but adapted
48*7c478bd9Sstevel@tonic-gate  * to work only for TPI_CLTS semantics, and to be called only once
49*7c478bd9Sstevel@tonic-gate  * from gssd.c. Returns 1 (interface created) on success and 0
50*7c478bd9Sstevel@tonic-gate  * (no interfaces created) on failure.
51*7c478bd9Sstevel@tonic-gate  */
52*7c478bd9Sstevel@tonic-gate int
53*7c478bd9Sstevel@tonic-gate svc_create_local_service(dispatch, prognum, versnum, nettype, servname)
54*7c478bd9Sstevel@tonic-gate void (*dispatch) ();		/* Dispatch function */
55*7c478bd9Sstevel@tonic-gate u_long prognum;			/* Program number */
56*7c478bd9Sstevel@tonic-gate u_long versnum;			/* Version number */
57*7c478bd9Sstevel@tonic-gate char *nettype;			/* Networktype token */
58*7c478bd9Sstevel@tonic-gate char *servname;			/* name of the service */
59*7c478bd9Sstevel@tonic-gate {
60*7c478bd9Sstevel@tonic-gate 	int num = 0;
61*7c478bd9Sstevel@tonic-gate 	SVCXPRT *xprt;
62*7c478bd9Sstevel@tonic-gate 	struct netconfig *nconf;
63*7c478bd9Sstevel@tonic-gate 	struct t_bind *bind_addr;
64*7c478bd9Sstevel@tonic-gate 	void *net;
65*7c478bd9Sstevel@tonic-gate 	int fd;
66*7c478bd9Sstevel@tonic-gate 	struct nd_hostserv ns;
67*7c478bd9Sstevel@tonic-gate 	struct nd_addrlist *nas;
68*7c478bd9Sstevel@tonic-gate 
69*7c478bd9Sstevel@tonic-gate 	if ((net = __rpc_setconf(nettype)) == 0) {
70*7c478bd9Sstevel@tonic-gate 		(void) syslog(LOG_ERR,
71*7c478bd9Sstevel@tonic-gate 		gettext("svc_create: could not read netconfig database"));
72*7c478bd9Sstevel@tonic-gate 		return (0);
73*7c478bd9Sstevel@tonic-gate 	}
74*7c478bd9Sstevel@tonic-gate 	while (nconf = __rpc_getconf(net)) {
75*7c478bd9Sstevel@tonic-gate 		if ((strcmp(nconf->nc_protofmly, NC_LOOPBACK)) ||
76*7c478bd9Sstevel@tonic-gate 				(nconf->nc_semantics != NC_TPI_COTS_ORD))
77*7c478bd9Sstevel@tonic-gate 			continue;
78*7c478bd9Sstevel@tonic-gate 
79*7c478bd9Sstevel@tonic-gate 		if ((fd = t_open(nconf->nc_device, O_RDWR, NULL)) < 0) {
80*7c478bd9Sstevel@tonic-gate 			(void) syslog(LOG_ERR,
81*7c478bd9Sstevel@tonic-gate 			gettext("svc_create: %s: cannot open connection: %s"),
82*7c478bd9Sstevel@tonic-gate 				nconf->nc_netid, t_errlist[t_errno]);
83*7c478bd9Sstevel@tonic-gate 			break;
84*7c478bd9Sstevel@tonic-gate 		}
85*7c478bd9Sstevel@tonic-gate 
86*7c478bd9Sstevel@tonic-gate 		/*
87*7c478bd9Sstevel@tonic-gate 		 * Negotiate for returning the uid of the caller.
88*7c478bd9Sstevel@tonic-gate 		 * This should be done before enabling the endpoint for
89*7c478bd9Sstevel@tonic-gate 		 * service via t_bind() (called in svc_tli_create())
90*7c478bd9Sstevel@tonic-gate 		 * so that requests to gssd contain the uid.
91*7c478bd9Sstevel@tonic-gate 		 */
92*7c478bd9Sstevel@tonic-gate 		if (__rpc_negotiate_uid(fd) != 0) {
93*7c478bd9Sstevel@tonic-gate 			syslog(LOG_ERR,
94*7c478bd9Sstevel@tonic-gate 			gettext("Could not negotiate for"
95*7c478bd9Sstevel@tonic-gate 				" uid with loopback transport %s"),
96*7c478bd9Sstevel@tonic-gate 				nconf->nc_netid);
97*7c478bd9Sstevel@tonic-gate 			t_close(fd);
98*7c478bd9Sstevel@tonic-gate 			break;
99*7c478bd9Sstevel@tonic-gate 		}
100*7c478bd9Sstevel@tonic-gate 
101*7c478bd9Sstevel@tonic-gate 		/* LINTED pointer alignment */
102*7c478bd9Sstevel@tonic-gate 		bind_addr = (struct t_bind *) t_alloc(fd, T_BIND, T_ADDR);
103*7c478bd9Sstevel@tonic-gate 		if ((bind_addr == NULL)) {
104*7c478bd9Sstevel@tonic-gate 			(void) t_close(fd);
105*7c478bd9Sstevel@tonic-gate 			(void) syslog(LOG_ERR,
106*7c478bd9Sstevel@tonic-gate 				gettext("svc_create: t_alloc failed\n"));
107*7c478bd9Sstevel@tonic-gate 			break;
108*7c478bd9Sstevel@tonic-gate 		}
109*7c478bd9Sstevel@tonic-gate 		ns.h_host = HOST_SELF;
110*7c478bd9Sstevel@tonic-gate 		ns.h_serv = servname;
111*7c478bd9Sstevel@tonic-gate 		if (!netdir_getbyname(nconf, &ns, &nas)) {
112*7c478bd9Sstevel@tonic-gate 			/* Copy the address */
113*7c478bd9Sstevel@tonic-gate 			bind_addr->addr.len = nas->n_addrs->len;
114*7c478bd9Sstevel@tonic-gate 			(void) memcpy(bind_addr->addr.buf, nas->n_addrs->buf,
115*7c478bd9Sstevel@tonic-gate 				(int) nas->n_addrs->len);
116*7c478bd9Sstevel@tonic-gate 			bind_addr->qlen = 8;
117*7c478bd9Sstevel@tonic-gate 			netdir_free((char *) nas, ND_ADDRLIST);
118*7c478bd9Sstevel@tonic-gate 		} else {
119*7c478bd9Sstevel@tonic-gate 			(void) syslog(LOG_ERR,
120*7c478bd9Sstevel@tonic-gate 			gettext("svc_create: no well known "
121*7c478bd9Sstevel@tonic-gate 				"address for %s on %s\n"),
122*7c478bd9Sstevel@tonic-gate 				servname, nconf->nc_netid);
123*7c478bd9Sstevel@tonic-gate 			(void) t_free((char *) bind_addr, T_BIND);
124*7c478bd9Sstevel@tonic-gate 			bind_addr = NULL;
125*7c478bd9Sstevel@tonic-gate 		}
126*7c478bd9Sstevel@tonic-gate 
127*7c478bd9Sstevel@tonic-gate 		xprt = svc_tli_create(fd, nconf, bind_addr, 0, 0);
128*7c478bd9Sstevel@tonic-gate 		if (bind_addr)
129*7c478bd9Sstevel@tonic-gate 			(void) t_free((char *) bind_addr, T_BIND);
130*7c478bd9Sstevel@tonic-gate 		if (xprt == NULL) {
131*7c478bd9Sstevel@tonic-gate 			(void) t_close(fd);
132*7c478bd9Sstevel@tonic-gate 			(void) syslog(LOG_ERR,
133*7c478bd9Sstevel@tonic-gate 			    gettext("svc_create: svc_tli_create failed\n"));
134*7c478bd9Sstevel@tonic-gate 			break;
135*7c478bd9Sstevel@tonic-gate 		} else {
136*7c478bd9Sstevel@tonic-gate 			(void) rpcb_unset(prognum, versnum, nconf);
137*7c478bd9Sstevel@tonic-gate 			if (svc_reg(xprt, prognum, versnum, dispatch, nconf)
138*7c478bd9Sstevel@tonic-gate 					== FALSE) {
139*7c478bd9Sstevel@tonic-gate 				(void) syslog(LOG_ERR,
140*7c478bd9Sstevel@tonic-gate 				gettext("svc_create: cannot"
141*7c478bd9Sstevel@tonic-gate 					" register %d vers %d on %s"),
142*7c478bd9Sstevel@tonic-gate 					prognum, versnum, nconf->nc_netid);
143*7c478bd9Sstevel@tonic-gate 				SVC_DESTROY(xprt);	/* also t_closes fd */
144*7c478bd9Sstevel@tonic-gate 				break;
145*7c478bd9Sstevel@tonic-gate 			}
146*7c478bd9Sstevel@tonic-gate 			num = 1;
147*7c478bd9Sstevel@tonic-gate 			break;
148*7c478bd9Sstevel@tonic-gate 		}
149*7c478bd9Sstevel@tonic-gate 	}
150*7c478bd9Sstevel@tonic-gate 	__rpc_endconf(net);
151*7c478bd9Sstevel@tonic-gate 	return (num);
152*7c478bd9Sstevel@tonic-gate }
153