1 /* $NetBSD: authunix_prot.c,v 1.12 2000/01/22 22:19:17 mycroft Exp $ */
2
3 /*-
4 * SPDX-License-Identifier: BSD-3-Clause
5 *
6 * Copyright (c) 2009, Sun Microsystems, Inc.
7 * All rights reserved.
8 *
9 * Redistribution and use in source and binary forms, with or without
10 * modification, are permitted provided that the following conditions are met:
11 * - Redistributions of source code must retain the above copyright notice,
12 * this list of conditions and the following disclaimer.
13 * - Redistributions in binary form must reproduce the above copyright notice,
14 * this list of conditions and the following disclaimer in the documentation
15 * and/or other materials provided with the distribution.
16 * - Neither the name of Sun Microsystems, Inc. nor the names of its
17 * contributors may be used to endorse or promote products derived
18 * from this software without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
21 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE
24 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
25 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
26 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
27 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
28 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
30 * POSSIBILITY OF SUCH DAMAGE.
31 */
32
33 #if defined(LIBC_SCCS) && !defined(lint)
34 static char *sccsid2 = "@(#)authunix_prot.c 1.15 87/08/11 Copyr 1984 Sun Micro";
35 static char *sccsid = "@(#)authunix_prot.c 2.1 88/07/29 4.0 RPCSRC";
36 #endif
37 #include <sys/cdefs.h>
38 /*
39 * authunix_prot.c
40 * XDR for UNIX style authentication parameters for RPC
41 *
42 * Copyright (C) 1984, Sun Microsystems, Inc.
43 */
44
45 #include <sys/param.h>
46 #include <sys/jail.h>
47 #include <sys/kernel.h>
48 #include <sys/systm.h>
49 #include <sys/ucred.h>
50
51 #include <rpc/types.h>
52 #include <rpc/xdr.h>
53 #include <rpc/auth.h>
54
55 #include <rpc/rpc_com.h>
56
57 /* gids compose part of a credential; there may not be more than 16 of them */
58 #define NGRPS 16
59
60 /*
61 * XDR for unix authentication parameters.
62 */
63 bool_t
xdr_authunix_parms(XDR * xdrs,uint32_t * time,struct xucred * cred)64 xdr_authunix_parms(XDR *xdrs, uint32_t *time, struct xucred *cred)
65 {
66 uint32_t namelen;
67 uint32_t ngroups, i;
68 uint32_t junk;
69 char hostbuf[MAXHOSTNAMELEN];
70
71 if (xdrs->x_op == XDR_ENCODE) {
72 /*
73 * Restrict name length to 255 according to RFC 1057.
74 */
75 getcredhostname(NULL, hostbuf, sizeof(hostbuf));
76 namelen = strlen(hostbuf);
77 if (namelen > 255)
78 namelen = 255;
79 } else {
80 namelen = 0;
81 }
82 junk = 0;
83
84 if (!xdr_uint32_t(xdrs, time)
85 || !xdr_uint32_t(xdrs, &namelen))
86 return (FALSE);
87
88 /*
89 * Ignore the hostname on decode.
90 */
91 if (xdrs->x_op == XDR_ENCODE) {
92 if (!xdr_opaque(xdrs, hostbuf, namelen))
93 return (FALSE);
94 } else {
95 xdr_setpos(xdrs, xdr_getpos(xdrs) + RNDUP(namelen));
96 }
97
98 if (!xdr_uint32_t(xdrs, &cred->cr_uid))
99 return (FALSE);
100 if (!xdr_uint32_t(xdrs, &cred->cr_groups[0]))
101 return (FALSE);
102
103 if (xdrs->x_op == XDR_ENCODE) {
104 ngroups = cred->cr_ngroups - 1;
105 if (ngroups > NGRPS)
106 ngroups = NGRPS;
107 }
108
109 if (!xdr_uint32_t(xdrs, &ngroups))
110 return (FALSE);
111 for (i = 0; i < ngroups; i++) {
112 if (i + 1 < ngroups_max + 1) {
113 if (!xdr_uint32_t(xdrs, &cred->cr_groups[i + 1]))
114 return (FALSE);
115 } else {
116 if (!xdr_uint32_t(xdrs, &junk))
117 return (FALSE);
118 }
119 }
120
121 if (xdrs->x_op == XDR_DECODE) {
122 if (ngroups + 1 > ngroups_max + 1)
123 cred->cr_ngroups = ngroups_max + 1;
124 else
125 cred->cr_ngroups = ngroups + 1;
126 }
127
128 return (TRUE);
129 }
130