2009-03-13 18:43:16 +01:00
|
|
|
/*
|
2021-01-01 19:54:25 +01:00
|
|
|
* Copyright 2003-2021 The Music Player Daemon Project
|
2009-03-13 18:43:16 +01:00
|
|
|
* http://www.musicpd.org
|
2004-02-24 18:06:14 +01:00
|
|
|
*
|
|
|
|
* This program is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
|
|
|
* the Free Software Foundation; either version 2 of the License, or
|
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
2009-03-13 18:43:16 +01:00
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License along
|
|
|
|
* with this program; if not, write to the Free Software Foundation, Inc.,
|
|
|
|
* 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
2004-02-24 18:06:14 +01:00
|
|
|
*/
|
|
|
|
|
2009-11-12 09:12:38 +01:00
|
|
|
#include "config.h"
|
2013-01-03 03:06:45 +01:00
|
|
|
#include "Permission.hxx"
|
2015-01-21 21:14:25 +01:00
|
|
|
#include "config/Param.hxx"
|
2018-07-17 23:00:42 +02:00
|
|
|
#include "config/Data.hxx"
|
2018-07-16 19:50:07 +02:00
|
|
|
#include "config/Option.hxx"
|
2021-10-14 14:25:20 +02:00
|
|
|
#include "net/AddressInfo.hxx"
|
|
|
|
#include "net/Resolver.hxx"
|
|
|
|
#include "net/ToString.hxx"
|
2019-04-03 21:47:03 +02:00
|
|
|
#include "util/IterableSplitString.hxx"
|
2017-08-11 09:33:59 +02:00
|
|
|
#include "util/RuntimeError.hxx"
|
2019-04-03 21:45:01 +02:00
|
|
|
#include "util/StringView.hxx"
|
2013-01-03 03:06:45 +01:00
|
|
|
|
2020-03-12 23:20:59 +01:00
|
|
|
#include <cassert>
|
2020-05-01 04:25:55 +02:00
|
|
|
#include <cstring>
|
2013-01-03 03:06:35 +01:00
|
|
|
#include <map>
|
|
|
|
#include <string>
|
2019-07-05 09:59:00 +02:00
|
|
|
#include <utility>
|
2013-01-03 03:06:35 +01:00
|
|
|
|
2013-10-19 16:39:45 +02:00
|
|
|
static constexpr char PERMISSION_PASSWORD_CHAR = '@';
|
2013-10-19 16:43:35 +02:00
|
|
|
static constexpr char PERMISSION_SEPARATOR = ',';
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2013-10-19 16:46:07 +02:00
|
|
|
static constexpr struct {
|
|
|
|
const char *name;
|
|
|
|
unsigned value;
|
|
|
|
} permission_names[] = {
|
|
|
|
{ "read", PERMISSION_READ },
|
|
|
|
{ "add", PERMISSION_ADD },
|
2021-10-14 14:16:34 +02:00
|
|
|
{ "player", PERMISSION_PLAYER },
|
2013-10-19 16:46:07 +02:00
|
|
|
{ "control", PERMISSION_CONTROL },
|
|
|
|
{ "admin", PERMISSION_ADMIN },
|
|
|
|
{ nullptr, 0 },
|
|
|
|
};
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2013-01-03 03:06:35 +01:00
|
|
|
static std::map<std::string, unsigned> permission_passwords;
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2008-10-17 23:53:28 +02:00
|
|
|
static unsigned permission_default;
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2018-07-15 21:54:43 +02:00
|
|
|
#ifdef HAVE_UN
|
|
|
|
static unsigned local_permissions;
|
|
|
|
#endif
|
|
|
|
|
2021-10-14 14:25:20 +02:00
|
|
|
#ifdef HAVE_TCP
|
|
|
|
static std::map<std::string, unsigned> host_passwords;
|
|
|
|
#endif
|
|
|
|
|
2013-10-19 16:46:07 +02:00
|
|
|
static unsigned
|
2019-04-03 21:45:01 +02:00
|
|
|
ParsePermission(StringView s)
|
2013-10-19 16:46:07 +02:00
|
|
|
{
|
|
|
|
for (auto i = permission_names; i->name != nullptr; ++i)
|
2019-04-03 21:45:01 +02:00
|
|
|
if (s.Equals(i->name))
|
2013-10-19 16:46:07 +02:00
|
|
|
return i->value;
|
|
|
|
|
2019-04-03 21:45:01 +02:00
|
|
|
throw FormatRuntimeError("unknown permission \"%.*s\"",
|
|
|
|
int(s.size), s.data);
|
2013-10-19 16:46:07 +02:00
|
|
|
}
|
|
|
|
|
2021-10-14 14:25:20 +02:00
|
|
|
static unsigned
|
|
|
|
parsePermissions(std::string_view string)
|
2006-07-20 18:02:40 +02:00
|
|
|
{
|
2013-10-19 16:43:35 +02:00
|
|
|
unsigned permission = 0;
|
2019-04-03 21:47:03 +02:00
|
|
|
|
|
|
|
for (const auto i : IterableSplitString(string, PERMISSION_SEPARATOR))
|
|
|
|
if (!i.empty())
|
|
|
|
permission |= ParsePermission(i);
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2021-10-14 14:16:34 +02:00
|
|
|
/* for backwards compatiblity with MPD 0.22 and older,
|
|
|
|
"control" implies "play" */
|
|
|
|
if (permission & PERMISSION_CONTROL)
|
|
|
|
permission |= PERMISSION_PLAYER;
|
|
|
|
|
2004-02-24 00:41:20 +01:00
|
|
|
return permission;
|
|
|
|
}
|
|
|
|
|
2018-07-17 23:00:42 +02:00
|
|
|
void
|
|
|
|
initPermissions(const ConfigData &config)
|
2006-07-20 18:02:40 +02:00
|
|
|
{
|
|
|
|
permission_default = PERMISSION_READ | PERMISSION_ADD |
|
2021-10-14 14:58:17 +02:00
|
|
|
PERMISSION_PLAYER |
|
2006-07-20 18:02:40 +02:00
|
|
|
PERMISSION_CONTROL | PERMISSION_ADMIN;
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2018-07-18 11:03:19 +02:00
|
|
|
for (const auto ¶m : config.GetParamList(ConfigOption::PASSWORD)) {
|
2006-07-20 18:02:40 +02:00
|
|
|
permission_default = 0;
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2019-05-29 21:45:58 +02:00
|
|
|
param.With([](const char *value){
|
2020-05-01 04:25:55 +02:00
|
|
|
const char *separator = std::strchr(value,
|
2019-05-29 21:45:58 +02:00
|
|
|
PERMISSION_PASSWORD_CHAR);
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2020-02-01 13:49:19 +01:00
|
|
|
if (separator == nullptr)
|
2019-05-29 21:45:58 +02:00
|
|
|
throw FormatRuntimeError("\"%c\" not found in password string",
|
|
|
|
PERMISSION_PASSWORD_CHAR);
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2019-05-29 21:45:58 +02:00
|
|
|
std::string password(value, separator);
|
2006-07-14 22:14:06 +02:00
|
|
|
|
2019-05-29 21:45:58 +02:00
|
|
|
unsigned permission = parsePermissions(separator + 1);
|
2021-09-08 05:58:23 +02:00
|
|
|
permission_passwords.emplace(std::move(password), permission);
|
2019-05-29 21:45:58 +02:00
|
|
|
});
|
2004-02-24 00:41:20 +01:00
|
|
|
}
|
|
|
|
|
2019-05-29 21:45:58 +02:00
|
|
|
config.With(ConfigOption::DEFAULT_PERMS, [](const char *value){
|
|
|
|
if (value != nullptr)
|
|
|
|
permission_default = parsePermissions(value);
|
|
|
|
});
|
2018-07-15 21:54:43 +02:00
|
|
|
|
|
|
|
#ifdef HAVE_UN
|
2019-05-29 21:45:58 +02:00
|
|
|
local_permissions = config.With(ConfigOption::LOCAL_PERMISSIONS, [](const char *value){
|
|
|
|
return value != nullptr
|
|
|
|
? parsePermissions(value)
|
|
|
|
: permission_default;
|
|
|
|
});
|
2018-07-15 21:54:43 +02:00
|
|
|
#endif
|
2021-10-14 14:25:20 +02:00
|
|
|
|
|
|
|
#ifdef HAVE_TCP
|
|
|
|
for (const auto ¶m : config.GetParamList(ConfigOption::HOST_PERMISSIONS)) {
|
|
|
|
permission_default = 0;
|
|
|
|
|
|
|
|
param.With([](StringView value){
|
|
|
|
auto [host_sv, permissions_s] = value.Split(' ');
|
|
|
|
unsigned permissions = parsePermissions(permissions_s);
|
|
|
|
|
|
|
|
const std::string host_s{host_sv};
|
|
|
|
|
|
|
|
for (const auto &i : Resolve(host_s.c_str(), 0,
|
|
|
|
AI_PASSIVE, SOCK_STREAM))
|
|
|
|
host_passwords.emplace(HostToString(i),
|
|
|
|
permissions);
|
|
|
|
});
|
|
|
|
}
|
|
|
|
#endif
|
|
|
|
}
|
|
|
|
|
|
|
|
#ifdef HAVE_TCP
|
|
|
|
|
|
|
|
int
|
|
|
|
GetPermissionsFromAddress(SocketAddress address) noexcept
|
|
|
|
{
|
|
|
|
if (auto i = host_passwords.find(HostToString(address));
|
|
|
|
i != host_passwords.end())
|
|
|
|
return i->second;
|
|
|
|
|
|
|
|
return -1;
|
2004-02-24 00:41:20 +01:00
|
|
|
}
|
|
|
|
|
2021-10-14 14:25:20 +02:00
|
|
|
#endif
|
|
|
|
|
2019-04-03 21:42:31 +02:00
|
|
|
int
|
|
|
|
getPermissionFromPassword(const char *password, unsigned *permission) noexcept
|
2006-07-20 18:02:40 +02:00
|
|
|
{
|
2013-01-03 03:06:35 +01:00
|
|
|
auto i = permission_passwords.find(password);
|
|
|
|
if (i == permission_passwords.end())
|
2008-11-01 14:33:25 +01:00
|
|
|
return -1;
|
2004-02-24 00:41:20 +01:00
|
|
|
|
2013-01-03 03:06:35 +01:00
|
|
|
*permission = i->second;
|
2008-11-01 14:33:25 +01:00
|
|
|
return 0;
|
2004-02-24 00:41:20 +01:00
|
|
|
}
|
|
|
|
|
2019-04-03 21:42:31 +02:00
|
|
|
unsigned
|
|
|
|
getDefaultPermissions() noexcept
|
2006-07-20 18:02:40 +02:00
|
|
|
{
|
2004-02-24 00:41:20 +01:00
|
|
|
return permission_default;
|
|
|
|
}
|
2018-07-15 21:54:43 +02:00
|
|
|
|
|
|
|
#ifdef HAVE_UN
|
|
|
|
|
|
|
|
unsigned
|
|
|
|
GetLocalPermissions() noexcept
|
|
|
|
{
|
|
|
|
return local_permissions;
|
|
|
|
}
|
|
|
|
|
|
|
|
#endif
|