17c478bd9Sstevel@tonic-gate /* 27c478bd9Sstevel@tonic-gate * CDDL HEADER START 37c478bd9Sstevel@tonic-gate * 47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 57c478bd9Sstevel@tonic-gate * Common Development and Distribution License, Version 1.0 only 67c478bd9Sstevel@tonic-gate * (the "License"). You may not use this file except in compliance 77c478bd9Sstevel@tonic-gate * with the License. 87c478bd9Sstevel@tonic-gate * 97c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 107c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 117c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 127c478bd9Sstevel@tonic-gate * and limitations under the License. 137c478bd9Sstevel@tonic-gate * 147c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 157c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 167c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 177c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 187c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 197c478bd9Sstevel@tonic-gate * 207c478bd9Sstevel@tonic-gate * CDDL HEADER END 217c478bd9Sstevel@tonic-gate */ 227c478bd9Sstevel@tonic-gate /* 23*03c65128Swy83408 * Copyright 2006 Sun Microsystems, Inc. All rights reserved. 247c478bd9Sstevel@tonic-gate * Use is subject to license terms. 257c478bd9Sstevel@tonic-gate */ 267c478bd9Sstevel@tonic-gate 277c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 287c478bd9Sstevel@tonic-gate 297c478bd9Sstevel@tonic-gate #include <nsswitch.h> 307c478bd9Sstevel@tonic-gate 317c478bd9Sstevel@tonic-gate #include "passwdutil.h" 327c478bd9Sstevel@tonic-gate 337c478bd9Sstevel@tonic-gate /* 347c478bd9Sstevel@tonic-gate * __check_history - check if a user's new password is in the user's 357c478bd9Sstevel@tonic-gate * old password history. 367c478bd9Sstevel@tonic-gate * 377c478bd9Sstevel@tonic-gate * Entry 387c478bd9Sstevel@tonic-gate * user = username. 397c478bd9Sstevel@tonic-gate * passwd = new clear text password. 407c478bd9Sstevel@tonic-gate * rep = repositories to check. 417c478bd9Sstevel@tonic-gate * 427c478bd9Sstevel@tonic-gate * Exit 437c478bd9Sstevel@tonic-gate * PWU_SUCCESS, passwd found in user's old password history. 447c478bd9Sstevel@tonic-gate * The caller should only be interested and fail if 457c478bd9Sstevel@tonic-gate * PWU_SUCCESS is returned. 467c478bd9Sstevel@tonic-gate * PWU_NOT_FOUND, passwd not in user's old password history. 477c478bd9Sstevel@tonic-gate * PWU_errors, PWU_ errors from other routines. 487c478bd9Sstevel@tonic-gate * 497c478bd9Sstevel@tonic-gate */ 507c478bd9Sstevel@tonic-gate int 517c478bd9Sstevel@tonic-gate __check_history(char *user, char *passwd, pwu_repository_t *rep) 527c478bd9Sstevel@tonic-gate { 537c478bd9Sstevel@tonic-gate int repositories; 547c478bd9Sstevel@tonic-gate int i; 557c478bd9Sstevel@tonic-gate int res; 567c478bd9Sstevel@tonic-gate 577c478bd9Sstevel@tonic-gate repositories = get_ns(rep, PWU_READ); 587c478bd9Sstevel@tonic-gate 597c478bd9Sstevel@tonic-gate if (repositories == 0) 607c478bd9Sstevel@tonic-gate return (PWU_SYSTEM_ERROR); 617c478bd9Sstevel@tonic-gate 627c478bd9Sstevel@tonic-gate if (repositories == REP_ERANGE) 637c478bd9Sstevel@tonic-gate return (PWU_REPOSITORY_ERROR); 647c478bd9Sstevel@tonic-gate 657c478bd9Sstevel@tonic-gate i = REP_FILES; 667c478bd9Sstevel@tonic-gate res = PWU_NOT_FOUND; 677c478bd9Sstevel@tonic-gate 687c478bd9Sstevel@tonic-gate /* Loop over repositories until the user is found */ 697c478bd9Sstevel@tonic-gate while ((i <= REP_LAST) && (res == PWU_NOT_FOUND)) { 707c478bd9Sstevel@tonic-gate if (repositories & i) 71*03c65128Swy83408 if (rops[i]->checkhistory != NULL) 72*03c65128Swy83408 res = rops[i]->checkhistory(user, passwd, rep); 737c478bd9Sstevel@tonic-gate i <<= 1; 747c478bd9Sstevel@tonic-gate } 757c478bd9Sstevel@tonic-gate return (res); 767c478bd9Sstevel@tonic-gate } 77