xref: /titanic_52/usr/src/lib/libnsl/nss/getauuser.c (revision 7c478bd95313f5f23a4c958a745db2134aa03244)
1*7c478bd9Sstevel@tonic-gate /*
2*7c478bd9Sstevel@tonic-gate  * CDDL HEADER START
3*7c478bd9Sstevel@tonic-gate  *
4*7c478bd9Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
5*7c478bd9Sstevel@tonic-gate  * Common Development and Distribution License, Version 1.0 only
6*7c478bd9Sstevel@tonic-gate  * (the "License").  You may not use this file except in compliance
7*7c478bd9Sstevel@tonic-gate  * with the License.
8*7c478bd9Sstevel@tonic-gate  *
9*7c478bd9Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
10*7c478bd9Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
11*7c478bd9Sstevel@tonic-gate  * See the License for the specific language governing permissions
12*7c478bd9Sstevel@tonic-gate  * and limitations under the License.
13*7c478bd9Sstevel@tonic-gate  *
14*7c478bd9Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
15*7c478bd9Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
16*7c478bd9Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
17*7c478bd9Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
18*7c478bd9Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
19*7c478bd9Sstevel@tonic-gate  *
20*7c478bd9Sstevel@tonic-gate  * CDDL HEADER END
21*7c478bd9Sstevel@tonic-gate  */
22*7c478bd9Sstevel@tonic-gate /*
23*7c478bd9Sstevel@tonic-gate  * Copyright 2004 Sun Microsystems, Inc.  All rights reserved.
24*7c478bd9Sstevel@tonic-gate  * Use is subject to license terms.
25*7c478bd9Sstevel@tonic-gate  */
26*7c478bd9Sstevel@tonic-gate 
27*7c478bd9Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
28*7c478bd9Sstevel@tonic-gate 
29*7c478bd9Sstevel@tonic-gate #include <stdlib.h>
30*7c478bd9Sstevel@tonic-gate #include <sys/types.h>
31*7c478bd9Sstevel@tonic-gate #include <nss_dbdefs.h>
32*7c478bd9Sstevel@tonic-gate #include <rpc/trace.h>
33*7c478bd9Sstevel@tonic-gate #include <string.h>
34*7c478bd9Sstevel@tonic-gate #include <bsm/libbsm.h>
35*7c478bd9Sstevel@tonic-gate #include <secdb.h>
36*7c478bd9Sstevel@tonic-gate 
37*7c478bd9Sstevel@tonic-gate 
38*7c478bd9Sstevel@tonic-gate /* externs from parse.c */
39*7c478bd9Sstevel@tonic-gate extern char *_strtok_escape(char *, char *, char **);
40*7c478bd9Sstevel@tonic-gate 
41*7c478bd9Sstevel@tonic-gate static int auuser_stayopen;
42*7c478bd9Sstevel@tonic-gate 
43*7c478bd9Sstevel@tonic-gate /*
44*7c478bd9Sstevel@tonic-gate  * Unsynchronized, but it affects only
45*7c478bd9Sstevel@tonic-gate  * efficiency, not correctness
46*7c478bd9Sstevel@tonic-gate  */
47*7c478bd9Sstevel@tonic-gate 
48*7c478bd9Sstevel@tonic-gate static DEFINE_NSS_DB_ROOT(db_root);
49*7c478bd9Sstevel@tonic-gate static DEFINE_NSS_GETENT(context);
50*7c478bd9Sstevel@tonic-gate 
51*7c478bd9Sstevel@tonic-gate 
52*7c478bd9Sstevel@tonic-gate void
53*7c478bd9Sstevel@tonic-gate _nss_initf_auuser(nss_db_params_t *p)
54*7c478bd9Sstevel@tonic-gate {
55*7c478bd9Sstevel@tonic-gate 	trace1(TR__nss_initf_auuser, 0);
56*7c478bd9Sstevel@tonic-gate 	p->name	= NSS_DBNAM_AUDITUSER;
57*7c478bd9Sstevel@tonic-gate 	p->config_name    = NSS_DBNAM_PASSWD;  /* use config for "passwd" */
58*7c478bd9Sstevel@tonic-gate 	p->default_config = NSS_DEFCONF_AUDITUSER;
59*7c478bd9Sstevel@tonic-gate 	trace1(TR__nss_initf_auuser, 1);
60*7c478bd9Sstevel@tonic-gate }
61*7c478bd9Sstevel@tonic-gate 
62*7c478bd9Sstevel@tonic-gate 
63*7c478bd9Sstevel@tonic-gate /*
64*7c478bd9Sstevel@tonic-gate  * Return values: 0 = success, 1 = parse error, 2 = erange ...
65*7c478bd9Sstevel@tonic-gate  * The structure pointer passed in is a structure in the caller's space
66*7c478bd9Sstevel@tonic-gate  * wherein the field pointers would be set to areas in the buffer if
67*7c478bd9Sstevel@tonic-gate  * need be. instring and buffer should be separate areas.
68*7c478bd9Sstevel@tonic-gate  */
69*7c478bd9Sstevel@tonic-gate int
70*7c478bd9Sstevel@tonic-gate str2auuser(const char *instr, int lenstr, void *ent, char *buffer, int buflen)
71*7c478bd9Sstevel@tonic-gate {
72*7c478bd9Sstevel@tonic-gate 	char		*last = (char *)NULL;
73*7c478bd9Sstevel@tonic-gate 	char		*sep = KV_TOKEN_DELIMIT;
74*7c478bd9Sstevel@tonic-gate 	au_user_str_t	*au_user = (au_user_str_t *)ent;
75*7c478bd9Sstevel@tonic-gate 
76*7c478bd9Sstevel@tonic-gate 	trace3(TR_str2auuser, 0, lenstr, buflen);
77*7c478bd9Sstevel@tonic-gate 	if ((instr >= buffer && (buffer + buflen) > instr) ||
78*7c478bd9Sstevel@tonic-gate 	    (buffer >= instr && (instr + lenstr) > buffer)) {
79*7c478bd9Sstevel@tonic-gate 		trace3(TR_str2auuser, 1, lenstr, buflen);
80*7c478bd9Sstevel@tonic-gate 		return (NSS_STR_PARSE_PARSE);
81*7c478bd9Sstevel@tonic-gate 	}
82*7c478bd9Sstevel@tonic-gate 	if (lenstr >= buflen) {
83*7c478bd9Sstevel@tonic-gate 		trace3(TR_str2auuser, 1, lenstr, buflen);
84*7c478bd9Sstevel@tonic-gate 		return (NSS_STR_PARSE_ERANGE);
85*7c478bd9Sstevel@tonic-gate 	}
86*7c478bd9Sstevel@tonic-gate 	strncpy(buffer, instr, buflen);
87*7c478bd9Sstevel@tonic-gate 	/*
88*7c478bd9Sstevel@tonic-gate 	 * Remove newline that nis (yp_match) puts at the
89*7c478bd9Sstevel@tonic-gate 	 * end of the entry it retrieves from the map.
90*7c478bd9Sstevel@tonic-gate 	 */
91*7c478bd9Sstevel@tonic-gate 	if (buffer[lenstr] == '\n') {
92*7c478bd9Sstevel@tonic-gate 		buffer[lenstr] = '\0';
93*7c478bd9Sstevel@tonic-gate 	}
94*7c478bd9Sstevel@tonic-gate 
95*7c478bd9Sstevel@tonic-gate 	au_user->au_name = _strtok_escape(buffer, sep, &last);
96*7c478bd9Sstevel@tonic-gate 	au_user->au_always = _strtok_escape(NULL, sep, &last);
97*7c478bd9Sstevel@tonic-gate 	au_user->au_never = _strtok_escape(NULL, sep, &last);
98*7c478bd9Sstevel@tonic-gate 
99*7c478bd9Sstevel@tonic-gate 	return (0);
100*7c478bd9Sstevel@tonic-gate }
101*7c478bd9Sstevel@tonic-gate 
102*7c478bd9Sstevel@tonic-gate 
103*7c478bd9Sstevel@tonic-gate void
104*7c478bd9Sstevel@tonic-gate _setauuser(void)
105*7c478bd9Sstevel@tonic-gate {
106*7c478bd9Sstevel@tonic-gate 	trace1(TR_setauuser, 0);
107*7c478bd9Sstevel@tonic-gate 	auuser_stayopen = 0;
108*7c478bd9Sstevel@tonic-gate 	nss_setent(&db_root, _nss_initf_auuser, &context);
109*7c478bd9Sstevel@tonic-gate 	trace1(TR_setauuser, 0);
110*7c478bd9Sstevel@tonic-gate }
111*7c478bd9Sstevel@tonic-gate 
112*7c478bd9Sstevel@tonic-gate 
113*7c478bd9Sstevel@tonic-gate int
114*7c478bd9Sstevel@tonic-gate _endauuser(void)
115*7c478bd9Sstevel@tonic-gate {
116*7c478bd9Sstevel@tonic-gate 	trace1(TR_endauuser, 0);
117*7c478bd9Sstevel@tonic-gate 	auuser_stayopen = 0;
118*7c478bd9Sstevel@tonic-gate 	nss_endent(&db_root, _nss_initf_auuser, &context);
119*7c478bd9Sstevel@tonic-gate 	nss_delete(&db_root);
120*7c478bd9Sstevel@tonic-gate 	trace1(TR_endauuser, 0);
121*7c478bd9Sstevel@tonic-gate 	return (0);
122*7c478bd9Sstevel@tonic-gate }
123*7c478bd9Sstevel@tonic-gate 
124*7c478bd9Sstevel@tonic-gate 
125*7c478bd9Sstevel@tonic-gate au_user_str_t *
126*7c478bd9Sstevel@tonic-gate _getauuserent(au_user_str_t *result, char *buffer, int buflen, int *h_errnop)
127*7c478bd9Sstevel@tonic-gate {
128*7c478bd9Sstevel@tonic-gate 	nss_XbyY_args_t arg;
129*7c478bd9Sstevel@tonic-gate 	nss_status_t    res;
130*7c478bd9Sstevel@tonic-gate 
131*7c478bd9Sstevel@tonic-gate 	trace2(TR_getauuser, 0, buflen);
132*7c478bd9Sstevel@tonic-gate 	NSS_XbyY_INIT(&arg, result, buffer, buflen, str2auuser);
133*7c478bd9Sstevel@tonic-gate 	res = nss_getent(&db_root, _nss_initf_auuser, &context, &arg);
134*7c478bd9Sstevel@tonic-gate 	arg.status = res;
135*7c478bd9Sstevel@tonic-gate 	*h_errnop = arg.h_errno;
136*7c478bd9Sstevel@tonic-gate 	trace2(TR_getauuser, 1, buflen);
137*7c478bd9Sstevel@tonic-gate 	return ((au_user_str_t *)NSS_XbyY_FINI(&arg));
138*7c478bd9Sstevel@tonic-gate }
139*7c478bd9Sstevel@tonic-gate 
140*7c478bd9Sstevel@tonic-gate 
141*7c478bd9Sstevel@tonic-gate au_user_str_t *
142*7c478bd9Sstevel@tonic-gate _getauusernam(const char *name, au_user_str_t *result, char *buffer,
143*7c478bd9Sstevel@tonic-gate     int buflen, int *errnop)
144*7c478bd9Sstevel@tonic-gate {
145*7c478bd9Sstevel@tonic-gate 	nss_XbyY_args_t arg;
146*7c478bd9Sstevel@tonic-gate 	nss_status_t    res;
147*7c478bd9Sstevel@tonic-gate 
148*7c478bd9Sstevel@tonic-gate 	trace2(TR_getauusernam, 0, buflen);
149*7c478bd9Sstevel@tonic-gate 	if (result == NULL) {
150*7c478bd9Sstevel@tonic-gate 		*errnop = AUDITUSER_PARSE_ERANGE;
151*7c478bd9Sstevel@tonic-gate 		return (NULL);
152*7c478bd9Sstevel@tonic-gate 	}
153*7c478bd9Sstevel@tonic-gate 	NSS_XbyY_INIT(&arg, result, buffer, buflen, str2auuser);
154*7c478bd9Sstevel@tonic-gate 	arg.key.name = name;
155*7c478bd9Sstevel@tonic-gate 	arg.stayopen = auuser_stayopen;
156*7c478bd9Sstevel@tonic-gate 	arg.h_errno = AUDITUSER_NOT_FOUND;
157*7c478bd9Sstevel@tonic-gate 	res = nss_search(&db_root, _nss_initf_auuser,
158*7c478bd9Sstevel@tonic-gate 	    NSS_DBOP_AUDITUSER_BYNAME, &arg);
159*7c478bd9Sstevel@tonic-gate 	arg.status = res;
160*7c478bd9Sstevel@tonic-gate 	*errnop = arg.h_errno;
161*7c478bd9Sstevel@tonic-gate 	trace2(TR_getauusernam, 1, buflen);
162*7c478bd9Sstevel@tonic-gate 	return ((au_user_str_t *)NSS_XbyY_FINI(&arg));
163*7c478bd9Sstevel@tonic-gate }
164