 72a89c21e0
			
		
	
	72a89c21e0
	
	
	
		
			
			git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@5858 ec53bebd-3082-4978-b11e-865c3cabbd6b
		
			
				
	
	
		
			299 lines
		
	
	
		
			7.7 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
			
		
		
	
	
			299 lines
		
	
	
		
			7.7 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
| /*
 | |
|  * Copyright (c) 1997, 1998, 1999 Kungliga Tekniska Högskolan
 | |
|  * (Royal Institute of Technology, Stockholm, Sweden). 
 | |
|  * All rights reserved. 
 | |
|  *
 | |
|  * Redistribution and use in source and binary forms, with or without 
 | |
|  * modification, are permitted provided that the following conditions 
 | |
|  * are met: 
 | |
|  *
 | |
|  * 1. Redistributions of source code must retain the above copyright 
 | |
|  *    notice, this list of conditions and the following disclaimer. 
 | |
|  *
 | |
|  * 2. Redistributions in binary form must reproduce the above copyright 
 | |
|  *    notice, this list of conditions and the following disclaimer in the 
 | |
|  *    documentation and/or other materials provided with the distribution. 
 | |
|  *
 | |
|  * 3. All advertising materials mentioning features or use of this software 
 | |
|  *    must display the following acknowledgement: 
 | |
|  *      This product includes software developed by Kungliga Tekniska 
 | |
|  *      Högskolan and its contributors. 
 | |
|  *
 | |
|  * 4. Neither the name of the Institute nor the names of its contributors 
 | |
|  *    may be used to endorse or promote products derived from this software 
 | |
|  *    without specific prior written permission. 
 | |
|  *
 | |
|  * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 
 | |
|  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 
 | |
|  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 
 | |
|  * ARE DISCLAIMED.  IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 
 | |
|  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 
 | |
|  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 
 | |
|  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 
 | |
|  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 
 | |
|  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 
 | |
|  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 
 | |
|  * SUCH DAMAGE. 
 | |
|  */
 | |
| 
 | |
| #include "krb5_locl.h"
 | |
| 
 | |
| RCSID("$Id$");
 | |
| 
 | |
| int issuid(void); /* XXX */
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_init_context(krb5_context *context)
 | |
| {
 | |
|     krb5_context p;
 | |
|     int val;
 | |
|     const char *config_file = NULL;
 | |
|     const char * tmp;
 | |
|     krb5_config_section *tmp_cf;
 | |
|     krb5_error_code ret;
 | |
| 
 | |
|     ALLOC(p, 1);
 | |
|     if(!p)
 | |
| 	return ENOMEM;
 | |
|     memset(p, 0, sizeof(krb5_context_data));
 | |
| 
 | |
|     /* init error tables */
 | |
|     krb5_init_ets(p);
 | |
| 
 | |
|     if(!issuid())
 | |
| 	config_file = getenv("KRB5_CONFIG");
 | |
|     if (config_file == NULL)
 | |
| 	config_file = krb5_config_file;
 | |
| 
 | |
|     ret = krb5_config_parse_file (config_file, &tmp_cf);
 | |
| 
 | |
|     if (ret == 0)
 | |
| 	p->cf = tmp_cf;
 | |
| #if 0
 | |
|     else
 | |
| 	krb5_warnx (p, "Unable to parse config file %s.  Ignoring.",
 | |
| 		    config_file); /* XXX */
 | |
| #endif
 | |
| 
 | |
|     p->max_skew = 5 * 60;
 | |
|     val = krb5_config_get_time (p, NULL, "libdefaults", "clockskew", NULL);
 | |
|     if (val >= 0)
 | |
| 	p->max_skew = val;
 | |
| 
 | |
|     p->kdc_timeout = 3;
 | |
|     val = krb5_config_get_time (p, NULL, "libdefaults", "kdc_timeout", NULL);
 | |
|     if(val >= 0) 
 | |
| 	p->kdc_timeout = val;
 | |
| 
 | |
|     p->max_retries = 3;
 | |
|     val = krb5_config_get_int (p, NULL, "libdefaults", "max_retries", NULL);
 | |
|     if (val >= 0)
 | |
| 	p->max_retries = val;
 | |
| 
 | |
|     p->http_proxy = krb5_config_get_string(p, NULL, "libdefaults", 
 | |
| 					   "http_proxy", NULL);
 | |
| 
 | |
|     {
 | |
| 	char **etypes;
 | |
| 	etypes = krb5_config_get_strings(p, NULL, "libdefaults", 
 | |
| 					 "default_etypes", NULL);
 | |
| 	if(etypes){
 | |
| 	    int i, j, k;
 | |
| 	    for(i = 0; etypes[i]; i++);
 | |
| 	    p->etypes = malloc((i+1) * sizeof(*p->etypes));
 | |
| 	    for(j = 0, k = 0; j < i; j++) {
 | |
| 		if(krb5_string_to_enctype(p, etypes[j], &p->etypes[k]) == 0)
 | |
| 		    k++;
 | |
| 	    }
 | |
| 	    p->etypes[k] = ETYPE_NULL;
 | |
| 	    krb5_config_free_strings(etypes);
 | |
| 	}
 | |
|     }
 | |
|     /* default keytab name */
 | |
|     p->default_keytab = krb5_config_get_string(p, NULL, 
 | |
| 					       "libdefaults", 
 | |
| 					       "default_keytab_name", 
 | |
| 					       NULL);
 | |
|     if(p->default_keytab == NULL)
 | |
| 	p->default_keytab = KEYTAB_DEFAULT;
 | |
| 
 | |
|     p->time_fmt = krb5_config_get_string(p, NULL, "libdefaults", 
 | |
| 					 "time_format", NULL);
 | |
|     if(p->time_fmt == NULL)
 | |
| 	p->time_fmt = "%d-%b-%Y %H:%M:%S";
 | |
|     p->log_utc = krb5_config_get_bool(p, NULL, "libdefaults", "log_utc", NULL);
 | |
| 
 | |
|     /* init dns-proxy slime */
 | |
|     tmp = krb5_config_get_string(p, NULL, "libdefaults", 
 | |
| 				 "dns_proxy", NULL);
 | |
|     if(tmp) 
 | |
| 	roken_gethostby_setup(p->http_proxy, tmp);
 | |
|     krb5_set_default_realm(p, NULL);
 | |
| 
 | |
|     {
 | |
| 	krb5_addresses addresses;
 | |
| 	char **adr, **a;
 | |
| 	adr = krb5_config_get_strings(p, NULL, 
 | |
| 				      "libdefaults", 
 | |
| 				      "extra_addresses", 
 | |
| 				      NULL);
 | |
| 	memset(&addresses, 0, sizeof(addresses));
 | |
| 	for(a = adr; a && *a; a++) {
 | |
| 	    krb5_parse_address(p, *a, &addresses);
 | |
| 	    krb5_add_extra_addresses(p, &addresses);
 | |
| 	    krb5_free_addresses(p, &addresses);
 | |
| 	}
 | |
| 	krb5_config_free_strings(adr);
 | |
|     }
 | |
| 
 | |
|     *context = p;
 | |
|     return 0;
 | |
| }
 | |
| 
 | |
| void
 | |
| krb5_free_context(krb5_context context)
 | |
| {
 | |
|   int i;
 | |
| 
 | |
|   free(context->etypes);
 | |
|   free(context->default_realm);
 | |
|   krb5_config_file_free (context->cf);
 | |
|   free_error_table (context->et_list);
 | |
|   for(i = 0; i < context->num_ops; ++i)
 | |
|     free(context->cc_ops[i].prefix);
 | |
|   free(context->cc_ops);
 | |
|   free(context);
 | |
| }
 | |
| 
 | |
| static krb5_error_code
 | |
| default_etypes(krb5_enctype **etype)
 | |
| {
 | |
|     krb5_enctype p[] = {
 | |
| 	ETYPE_DES3_CBC_SHA1,
 | |
| 	ETYPE_DES3_CBC_MD5,
 | |
| 	ETYPE_DES_CBC_MD5,
 | |
| 	ETYPE_DES_CBC_MD4,
 | |
| 	ETYPE_DES_CBC_CRC,
 | |
| 	ETYPE_NULL
 | |
|     };
 | |
|     *etype = malloc(sizeof(p));
 | |
|     if(*etype == NULL)
 | |
| 	return ENOMEM;
 | |
|     memcpy(*etype, p, sizeof(p));
 | |
|     return 0;
 | |
| }
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_set_default_in_tkt_etypes(krb5_context context, 
 | |
| 			       const krb5_enctype *etypes)
 | |
| {
 | |
|     int i;
 | |
|     krb5_enctype *p = NULL;
 | |
| 
 | |
|     if(etypes) {
 | |
| 	i = 0;
 | |
| 	while(etypes[i])
 | |
| 	    if(!krb5_enctype_valid(context, etypes[i++]))
 | |
| 		return KRB5_PROG_ETYPE_NOSUPP;
 | |
| 	++i;
 | |
| 	ALLOC(p, i);
 | |
| 	if(!p)
 | |
| 	    return ENOMEM;
 | |
| 	memmove(p, etypes, i * sizeof(krb5_enctype));
 | |
|     }
 | |
|     if(context->etypes)
 | |
| 	free(context->etypes);
 | |
|     context->etypes = p;
 | |
|     return 0;
 | |
| }
 | |
| 
 | |
| 
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_get_default_in_tkt_etypes(krb5_context context,
 | |
| 			       krb5_enctype **etypes)
 | |
| {
 | |
|   krb5_enctype *p;
 | |
|   int i;
 | |
| 
 | |
|   if(context->etypes) {
 | |
|     for(i = 0; context->etypes[i]; i++);
 | |
|     ++i;
 | |
|     ALLOC(p, i);
 | |
|     if(!p)
 | |
|       return ENOMEM;
 | |
|     memmove(p, context->etypes, i * sizeof(krb5_enctype));
 | |
|   } else
 | |
|     if(default_etypes(&p))
 | |
|       return ENOMEM;
 | |
|   *etypes = p;
 | |
|   return 0;
 | |
| }
 | |
| 
 | |
| const char *
 | |
| krb5_get_err_text(krb5_context context, krb5_error_code code)
 | |
| {
 | |
|     const char *p = com_right(context->et_list, code);
 | |
|     if(p == NULL)
 | |
| 	p = strerror(code);
 | |
|     return p;
 | |
| }
 | |
| 
 | |
| void
 | |
| krb5_init_ets(krb5_context context)
 | |
| {
 | |
|     if(context->et_list == NULL){
 | |
| 	initialize_krb5_error_table_r(&context->et_list);
 | |
| 	initialize_asn1_error_table_r(&context->et_list);
 | |
| 	initialize_heim_error_table_r(&context->et_list);
 | |
|     }
 | |
| }
 | |
| 
 | |
| void
 | |
| krb5_set_use_admin_kdc (krb5_context context, krb5_boolean flag)
 | |
| {
 | |
|     context->use_admin_kdc = flag;
 | |
| }
 | |
| 
 | |
| krb5_boolean
 | |
| krb5_get_use_admin_kdc (krb5_context context)
 | |
| {
 | |
|     return context->use_admin_kdc;
 | |
| }
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_add_extra_addresses(krb5_context context, krb5_addresses *addresses)
 | |
| {
 | |
| 
 | |
|     if(context->extra_addresses)
 | |
| 	return krb5_append_addresses(context, 
 | |
| 				     context->extra_addresses, addresses);
 | |
|     else
 | |
| 	return krb5_set_extra_addresses(context, addresses);
 | |
| }
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_set_extra_addresses(krb5_context context, krb5_addresses *addresses)
 | |
| {
 | |
|     if(context->extra_addresses) {
 | |
| 	krb5_free_addresses(context, context->extra_addresses);
 | |
| 	free(context->extra_addresses);
 | |
|     }
 | |
|     if(context->extra_addresses == NULL) {
 | |
| 	context->extra_addresses = malloc(sizeof(*context->extra_addresses));
 | |
| 	if(context->extra_addresses == NULL)
 | |
| 	    return ENOMEM;
 | |
|     }
 | |
|     return copy_HostAddresses(addresses, context->extra_addresses);
 | |
| }
 | |
| 
 | |
| krb5_error_code
 | |
| krb5_get_extra_addresses(krb5_context context, krb5_addresses *addresses)
 | |
| {
 | |
|     if(context->extra_addresses == NULL) {
 | |
| 	memset(addresses, 0, sizeof(*addresses));
 | |
| 	return 0;
 | |
|     }
 | |
|     return copy_HostAddresses(context->extra_addresses, addresses);
 | |
| }
 |