1 /* $NetBSD: store.c,v 1.1.1.2 2014/04/24 12:45:51 pettai Exp $ */
4 * Copyright (c) 1997-2008 Kungliga Tekniska Högskolan
5 * (Royal Institute of Technology, Stockholm, Sweden).
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
12 * 1. Redistributions of source code must retain the above copyright
13 * notice, this list of conditions and the following disclaimer.
15 * 2. Redistributions in binary form must reproduce the above copyright
16 * notice, this list of conditions and the following disclaimer in the
17 * documentation and/or other materials provided with the distribution.
19 * 3. Neither the name of the Institute nor the names of its contributors
20 * may be used to endorse or promote products derived from this software
21 * without specific prior written permission.
23 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
36 #include "krb5_locl.h"
37 #include "store-int.h"
39 #define BYTEORDER_IS(SP, V) (((SP)->flags & KRB5_STORAGE_BYTEORDER_MASK) == (V))
40 #define BYTEORDER_IS_LE(SP) BYTEORDER_IS((SP), KRB5_STORAGE_BYTEORDER_LE)
41 #define BYTEORDER_IS_BE(SP) BYTEORDER_IS((SP), KRB5_STORAGE_BYTEORDER_BE)
42 #define BYTEORDER_IS_HOST(SP) (BYTEORDER_IS((SP), KRB5_STORAGE_BYTEORDER_HOST) || \
43 krb5_storage_is_flags((SP), KRB5_STORAGE_HOST_BYTEORDER))
46 * Add the flags on a storage buffer by or-ing in the flags to the buffer.
48 * @param sp the storage buffer to set the flags on
49 * @param flags the flags to set
51 * @ingroup krb5_storage
54 KRB5_LIB_FUNCTION
void KRB5_LIB_CALL
55 krb5_storage_set_flags(krb5_storage
*sp
, krb5_flags flags
)
61 * Clear the flags on a storage buffer
63 * @param sp the storage buffer to clear the flags on
64 * @param flags the flags to clear
66 * @ingroup krb5_storage
69 KRB5_LIB_FUNCTION
void KRB5_LIB_CALL
70 krb5_storage_clear_flags(krb5_storage
*sp
, krb5_flags flags
)
76 * Return true or false depending on if the storage flags is set or
77 * not. NB testing for the flag 0 always return true.
79 * @param sp the storage buffer to check flags on
80 * @param flags The flags to test for
82 * @return true if all the flags are set, false if not.
84 * @ingroup krb5_storage
87 KRB5_LIB_FUNCTION krb5_boolean KRB5_LIB_CALL
88 krb5_storage_is_flags(krb5_storage
*sp
, krb5_flags flags
)
90 return (sp
->flags
& flags
) == flags
;
94 * Set the new byte order of the storage buffer.
96 * @param sp the storage buffer to set the byte order for.
97 * @param byteorder the new byte order.
99 * The byte order are: KRB5_STORAGE_BYTEORDER_BE,
100 * KRB5_STORAGE_BYTEORDER_LE and KRB5_STORAGE_BYTEORDER_HOST.
102 * @ingroup krb5_storage
105 KRB5_LIB_FUNCTION
void KRB5_LIB_CALL
106 krb5_storage_set_byteorder(krb5_storage
*sp
, krb5_flags byteorder
)
108 sp
->flags
&= ~KRB5_STORAGE_BYTEORDER_MASK
;
109 sp
->flags
|= byteorder
;
113 * Return the current byteorder for the buffer. See krb5_storage_set_byteorder() for the list or byte order contants.
115 * @ingroup krb5_storage
118 KRB5_LIB_FUNCTION krb5_flags KRB5_LIB_CALL
119 krb5_storage_get_byteorder(krb5_storage
*sp
)
121 return sp
->flags
& KRB5_STORAGE_BYTEORDER_MASK
;
125 * Set the max alloc value
127 * @param sp the storage buffer set the max allow for
128 * @param size maximum size to allocate, use 0 to remove limit
130 * @ingroup krb5_storage
133 KRB5_LIB_FUNCTION
void KRB5_LIB_CALL
134 krb5_storage_set_max_alloc(krb5_storage
*sp
, size_t size
)
136 sp
->max_alloc
= size
;
139 /* don't allocate unresonable amount of memory */
140 static krb5_error_code
141 size_too_large(krb5_storage
*sp
, size_t size
)
143 if (sp
->max_alloc
&& sp
->max_alloc
< size
)
144 return HEIM_ERR_TOO_BIG
;
148 static krb5_error_code
149 size_too_large_num(krb5_storage
*sp
, size_t count
, size_t size
)
151 if (sp
->max_alloc
== 0 || size
== 0)
153 size
= sp
->max_alloc
/ size
;
155 return HEIM_ERR_TOO_BIG
;
160 * Seek to a new offset.
162 * @param sp the storage buffer to seek in.
163 * @param offset the offset to seek
164 * @param whence relateive searching, SEEK_CUR from the current
165 * position, SEEK_END from the end, SEEK_SET absolute from the start.
167 * @return The new current offset
169 * @ingroup krb5_storage
172 KRB5_LIB_FUNCTION off_t KRB5_LIB_CALL
173 krb5_storage_seek(krb5_storage
*sp
, off_t offset
, int whence
)
175 return (*sp
->seek
)(sp
, offset
, whence
);
179 * Truncate the storage buffer in sp to offset.
181 * @param sp the storage buffer to truncate.
182 * @param offset the offset to truncate too.
184 * @return An Kerberos 5 error code.
186 * @ingroup krb5_storage
189 KRB5_LIB_FUNCTION
int KRB5_LIB_CALL
190 krb5_storage_truncate(krb5_storage
*sp
, off_t offset
)
192 return (*sp
->trunc
)(sp
, offset
);
196 * Read to the storage buffer.
198 * @param sp the storage buffer to read from
199 * @param buf the buffer to store the data in
200 * @param len the length to read
202 * @return The length of data read (can be shorter then len), or negative on error.
204 * @ingroup krb5_storage
207 KRB5_LIB_FUNCTION krb5_ssize_t KRB5_LIB_CALL
208 krb5_storage_read(krb5_storage
*sp
, void *buf
, size_t len
)
210 return sp
->fetch(sp
, buf
, len
);
214 * Write to the storage buffer.
216 * @param sp the storage buffer to write to
217 * @param buf the buffer to write to the storage buffer
218 * @param len the length to write
220 * @return The length of data written (can be shorter then len), or negative on error.
222 * @ingroup krb5_storage
225 KRB5_LIB_FUNCTION krb5_ssize_t KRB5_LIB_CALL
226 krb5_storage_write(krb5_storage
*sp
, const void *buf
, size_t len
)
228 return sp
->store(sp
, buf
, len
);
232 * Set the return code that will be used when end of storage is reached.
234 * @param sp the storage
235 * @param code the error code to return on end of storage
237 * @ingroup krb5_storage
240 KRB5_LIB_FUNCTION
void KRB5_LIB_CALL
241 krb5_storage_set_eof_code(krb5_storage
*sp
, int code
)
247 * Get the return code that will be used when end of storage is reached.
249 * @param sp the storage
251 * @return storage error code
253 * @ingroup krb5_storage
256 KRB5_LIB_FUNCTION
int KRB5_LIB_CALL
257 krb5_storage_get_eof_code(krb5_storage
*sp
)
263 * Free a krb5 storage.
265 * @param sp the storage to free.
267 * @return An Kerberos 5 error code.
269 * @ingroup krb5_storage
272 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
273 krb5_storage_free(krb5_storage
*sp
)
283 * Copy the contnent of storage
285 * @param sp the storage to copy to a data
286 * @param data the copied data, free with krb5_data_free()
288 * @return 0 for success, or a Kerberos 5 error code on failure.
290 * @ingroup krb5_storage
293 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
294 krb5_storage_to_data(krb5_storage
*sp
, krb5_data
*data
)
299 pos
= sp
->seek(sp
, 0, SEEK_CUR
);
301 return HEIM_ERR_NOT_SEEKABLE
;
302 size
= sp
->seek(sp
, 0, SEEK_END
);
303 ret
= size_too_large(sp
, size
);
306 ret
= krb5_data_alloc(data
, size
);
308 sp
->seek(sp
, pos
, SEEK_SET
);
312 sp
->seek(sp
, 0, SEEK_SET
);
313 sp
->fetch(sp
, data
->data
, data
->length
);
314 sp
->seek(sp
, pos
, SEEK_SET
);
319 static krb5_error_code
320 krb5_store_int(krb5_storage
*sp
,
329 _krb5_put_int(v
, value
, len
);
330 ret
= sp
->store(sp
, v
, len
);
333 if ((size_t)ret
!= len
)
339 * Store a int32 to storage, byte order is controlled by the settings
340 * on the storage, see krb5_storage_set_byteorder().
342 * @param sp the storage to write too
343 * @param value the value to store
345 * @return 0 for success, or a Kerberos 5 error code on failure.
347 * @ingroup krb5_storage
350 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
351 krb5_store_int32(krb5_storage
*sp
,
354 if(BYTEORDER_IS_HOST(sp
))
355 value
= htonl(value
);
356 else if(BYTEORDER_IS_LE(sp
))
357 value
= bswap32(value
);
358 return krb5_store_int(sp
, value
, 4);
362 * Store a uint32 to storage, byte order is controlled by the settings
363 * on the storage, see krb5_storage_set_byteorder().
365 * @param sp the storage to write too
366 * @param value the value to store
368 * @return 0 for success, or a Kerberos 5 error code on failure.
370 * @ingroup krb5_storage
373 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
374 krb5_store_uint32(krb5_storage
*sp
,
377 return krb5_store_int32(sp
, (int32_t)value
);
380 static krb5_error_code
381 krb5_ret_int(krb5_storage
*sp
,
388 ret
= sp
->fetch(sp
, v
, len
);
391 if ((size_t)ret
!= len
)
393 _krb5_get_int(v
, &w
, len
);
399 * Read a int32 from storage, byte order is controlled by the settings
400 * on the storage, see krb5_storage_set_byteorder().
402 * @param sp the storage to write too
403 * @param value the value read from the buffer
405 * @return 0 for success, or a Kerberos 5 error code on failure.
407 * @ingroup krb5_storage
410 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
411 krb5_ret_int32(krb5_storage
*sp
,
414 krb5_error_code ret
= krb5_ret_int(sp
, value
, 4);
417 if(BYTEORDER_IS_HOST(sp
))
418 *value
= htonl(*value
);
419 else if(BYTEORDER_IS_LE(sp
))
420 *value
= bswap32(*value
);
425 * Read a uint32 from storage, byte order is controlled by the settings
426 * on the storage, see krb5_storage_set_byteorder().
428 * @param sp the storage to write too
429 * @param value the value read from the buffer
431 * @return 0 for success, or a Kerberos 5 error code on failure.
433 * @ingroup krb5_storage
436 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
437 krb5_ret_uint32(krb5_storage
*sp
,
443 ret
= krb5_ret_int32(sp
, &v
);
445 *value
= (uint32_t)v
;
451 * Store a int16 to storage, byte order is controlled by the settings
452 * on the storage, see krb5_storage_set_byteorder().
454 * @param sp the storage to write too
455 * @param value the value to store
457 * @return 0 for success, or a Kerberos 5 error code on failure.
459 * @ingroup krb5_storage
462 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
463 krb5_store_int16(krb5_storage
*sp
,
466 if(BYTEORDER_IS_HOST(sp
))
467 value
= htons(value
);
468 else if(BYTEORDER_IS_LE(sp
))
469 value
= bswap16(value
);
470 return krb5_store_int(sp
, value
, 2);
474 * Store a uint16 to storage, byte order is controlled by the settings
475 * on the storage, see krb5_storage_set_byteorder().
477 * @param sp the storage to write too
478 * @param value the value to store
480 * @return 0 for success, or a Kerberos 5 error code on failure.
482 * @ingroup krb5_storage
485 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
486 krb5_store_uint16(krb5_storage
*sp
,
489 return krb5_store_int16(sp
, (int16_t)value
);
493 * Read a int16 from storage, byte order is controlled by the settings
494 * on the storage, see krb5_storage_set_byteorder().
496 * @param sp the storage to write too
497 * @param value the value read from the buffer
499 * @return 0 for success, or a Kerberos 5 error code on failure.
501 * @ingroup krb5_storage
504 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
505 krb5_ret_int16(krb5_storage
*sp
,
510 ret
= krb5_ret_int(sp
, &v
, 2);
514 if(BYTEORDER_IS_HOST(sp
))
515 *value
= htons(*value
);
516 else if(BYTEORDER_IS_LE(sp
))
517 *value
= bswap16(*value
);
522 * Read a int16 from storage, byte order is controlled by the settings
523 * on the storage, see krb5_storage_set_byteorder().
525 * @param sp the storage to write too
526 * @param value the value read from the buffer
528 * @return 0 for success, or a Kerberos 5 error code on failure.
530 * @ingroup krb5_storage
533 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
534 krb5_ret_uint16(krb5_storage
*sp
,
540 ret
= krb5_ret_int16(sp
, &v
);
542 *value
= (uint16_t)v
;
548 * Store a int8 to storage.
550 * @param sp the storage to write too
551 * @param value the value to store
553 * @return 0 for success, or a Kerberos 5 error code on failure.
555 * @ingroup krb5_storage
558 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
559 krb5_store_int8(krb5_storage
*sp
,
564 ret
= sp
->store(sp
, &value
, sizeof(value
));
565 if (ret
!= sizeof(value
))
566 return (ret
<0)?errno
:sp
->eof_code
;
571 * Store a uint8 to storage.
573 * @param sp the storage to write too
574 * @param value the value to store
576 * @return 0 for success, or a Kerberos 5 error code on failure.
578 * @ingroup krb5_storage
581 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
582 krb5_store_uint8(krb5_storage
*sp
,
585 return krb5_store_int8(sp
, (int8_t)value
);
589 * Read a int8 from storage
591 * @param sp the storage to write too
592 * @param value the value read from the buffer
594 * @return 0 for success, or a Kerberos 5 error code on failure.
596 * @ingroup krb5_storage
599 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
600 krb5_ret_int8(krb5_storage
*sp
,
605 ret
= sp
->fetch(sp
, value
, sizeof(*value
));
606 if (ret
!= sizeof(*value
))
607 return (ret
<0)?errno
:sp
->eof_code
;
612 * Read a uint8 from storage
614 * @param sp the storage to write too
615 * @param value the value read from the buffer
617 * @return 0 for success, or a Kerberos 5 error code on failure.
619 * @ingroup krb5_storage
622 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
623 krb5_ret_uint8(krb5_storage
*sp
,
629 ret
= krb5_ret_int8(sp
, &v
);
637 * Store a data to the storage. The data is stored with an int32 as
638 * lenght plus the data (not padded).
640 * @param sp the storage buffer to write to
641 * @param data the buffer to store.
643 * @return 0 on success, a Kerberos 5 error code on failure.
645 * @ingroup krb5_storage
648 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
649 krb5_store_data(krb5_storage
*sp
,
653 ret
= krb5_store_int32(sp
, data
.length
);
656 ret
= sp
->store(sp
, data
.data
, data
.length
);
659 if((size_t)ret
!= data
.length
)
665 * Parse a data from the storage.
667 * @param sp the storage buffer to read from
668 * @param data the parsed data
670 * @return 0 on success, a Kerberos 5 error code on failure.
672 * @ingroup krb5_storage
675 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
676 krb5_ret_data(krb5_storage
*sp
,
682 ret
= krb5_ret_int32(sp
, &size
);
685 ret
= size_too_large(sp
, size
);
688 ret
= krb5_data_alloc (data
, size
);
692 ret
= sp
->fetch(sp
, data
->data
, size
);
694 return (ret
< 0)? errno
: sp
->eof_code
;
700 * Store a string to the buffer. The data is formated as an len:uint32
701 * plus the string itself (not padded).
703 * @param sp the storage buffer to write to
704 * @param s the string to store.
706 * @return 0 on success, a Kerberos 5 error code on failure.
708 * @ingroup krb5_storage
711 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
712 krb5_store_string(krb5_storage
*sp
, const char *s
)
715 data
.length
= strlen(s
);
716 data
.data
= rk_UNCONST(s
);
717 return krb5_store_data(sp
, data
);
721 * Parse a string from the storage.
723 * @param sp the storage buffer to read from
724 * @param string the parsed string
726 * @return 0 on success, a Kerberos 5 error code on failure.
728 * @ingroup krb5_storage
732 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
733 krb5_ret_string(krb5_storage
*sp
,
738 ret
= krb5_ret_data(sp
, &data
);
741 *string
= realloc(data
.data
, data
.length
+ 1);
746 (*string
)[data
.length
] = 0;
751 * Store a zero terminated string to the buffer. The data is stored
752 * one character at a time until a NUL is stored.
754 * @param sp the storage buffer to write to
755 * @param s the string to store.
757 * @return 0 on success, a Kerberos 5 error code on failure.
759 * @ingroup krb5_storage
762 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
763 krb5_store_stringz(krb5_storage
*sp
, const char *s
)
765 size_t len
= strlen(s
) + 1;
768 ret
= sp
->store(sp
, s
, len
);
771 if((size_t)ret
!= len
)
777 * Parse zero terminated string from the storage.
779 * @param sp the storage buffer to read from
780 * @param string the parsed string
782 * @return 0 on success, a Kerberos 5 error code on failure.
784 * @ingroup krb5_storage
787 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
788 krb5_ret_stringz(krb5_storage
*sp
,
796 while((ret
= sp
->fetch(sp
, &c
, 1)) == 1){
800 ret
= size_too_large(sp
, len
);
803 tmp
= realloc (s
, len
);
823 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
824 krb5_store_stringnl(krb5_storage
*sp
, const char *s
)
826 size_t len
= strlen(s
);
829 ret
= sp
->store(sp
, s
, len
);
832 if((size_t)ret
!= len
)
834 ret
= sp
->store(sp
, "\n", 1);
846 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
847 krb5_ret_stringnl(krb5_storage
*sp
,
856 while((ret
= sp
->fetch(sp
, &c
, 1)) == 1){
863 if (expect_nl
&& c
!= '\n') {
865 return KRB5_BADMSGTYPE
;
869 ret
= size_too_large(sp
, len
);
872 tmp
= realloc (s
, len
);
895 * Write a principal block to storage.
897 * @param sp the storage buffer to write to
898 * @param p the principal block to write.
900 * @return 0 on success, a Kerberos 5 error code on failure.
902 * @ingroup krb5_storage
905 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
906 krb5_store_principal(krb5_storage
*sp
,
907 krb5_const_principal p
)
912 if(!krb5_storage_is_flags(sp
, KRB5_STORAGE_PRINCIPAL_NO_NAME_TYPE
)) {
913 ret
= krb5_store_int32(sp
, p
->name
.name_type
);
916 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_PRINCIPAL_WRONG_NUM_COMPONENTS
))
917 ret
= krb5_store_int32(sp
, p
->name
.name_string
.len
+ 1);
919 ret
= krb5_store_int32(sp
, p
->name
.name_string
.len
);
922 ret
= krb5_store_string(sp
, p
->realm
);
924 for(i
= 0; i
< p
->name
.name_string
.len
; i
++){
925 ret
= krb5_store_string(sp
, p
->name
.name_string
.val
[i
]);
932 * Parse principal from the storage.
934 * @param sp the storage buffer to read from
935 * @param princ the parsed principal
937 * @return 0 on success, a Kerberos 5 error code on failure.
939 * @ingroup krb5_storage
942 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
943 krb5_ret_principal(krb5_storage
*sp
,
944 krb5_principal
*princ
)
952 p
= calloc(1, sizeof(*p
));
956 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_PRINCIPAL_NO_NAME_TYPE
))
957 type
= KRB5_NT_UNKNOWN
;
958 else if((ret
= krb5_ret_int32(sp
, &type
))){
962 if((ret
= krb5_ret_int32(sp
, &ncomp
))){
966 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_PRINCIPAL_WRONG_NUM_COMPONENTS
))
972 ret
= size_too_large_num(sp
, ncomp
, sizeof(p
->name
.name_string
.val
[0]));
977 p
->name
.name_type
= type
;
978 p
->name
.name_string
.len
= ncomp
;
979 ret
= krb5_ret_string(sp
, &p
->realm
);
984 p
->name
.name_string
.val
= calloc(ncomp
, sizeof(p
->name
.name_string
.val
[0]));
985 if(p
->name
.name_string
.val
== NULL
&& ncomp
!= 0){
990 for(i
= 0; i
< ncomp
; i
++){
991 ret
= krb5_ret_string(sp
, &p
->name
.name_string
.val
[i
]);
994 free(p
->name
.name_string
.val
[i
--]);
1005 * Store a keyblock to the storage.
1007 * @param sp the storage buffer to write to
1008 * @param p the keyblock to write
1010 * @return 0 on success, a Kerberos 5 error code on failure.
1012 * @ingroup krb5_storage
1015 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1016 krb5_store_keyblock(krb5_storage
*sp
, krb5_keyblock p
)
1019 ret
= krb5_store_int16(sp
, p
.keytype
);
1022 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_KEYBLOCK_KEYTYPE_TWICE
)){
1023 /* this should really be enctype, but it is the same as
1025 ret
= krb5_store_int16(sp
, p
.keytype
);
1029 ret
= krb5_store_data(sp
, p
.keyvalue
);
1034 * Read a keyblock from the storage.
1036 * @param sp the storage buffer to write to
1037 * @param p the keyblock read from storage, free using krb5_free_keyblock()
1039 * @return 0 on success, a Kerberos 5 error code on failure.
1041 * @ingroup krb5_storage
1044 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1045 krb5_ret_keyblock(krb5_storage
*sp
, krb5_keyblock
*p
)
1050 ret
= krb5_ret_int16(sp
, &tmp
);
1054 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_KEYBLOCK_KEYTYPE_TWICE
)){
1055 ret
= krb5_ret_int16(sp
, &tmp
);
1059 ret
= krb5_ret_data(sp
, &p
->keyvalue
);
1064 * Write a times block to storage.
1066 * @param sp the storage buffer to write to
1067 * @param times the times block to write.
1069 * @return 0 on success, a Kerberos 5 error code on failure.
1071 * @ingroup krb5_storage
1074 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1075 krb5_store_times(krb5_storage
*sp
, krb5_times times
)
1078 ret
= krb5_store_int32(sp
, times
.authtime
);
1080 ret
= krb5_store_int32(sp
, times
.starttime
);
1082 ret
= krb5_store_int32(sp
, times
.endtime
);
1084 ret
= krb5_store_int32(sp
, times
.renew_till
);
1089 * Read a times block from the storage.
1091 * @param sp the storage buffer to write to
1092 * @param times the times block read from storage
1094 * @return 0 on success, a Kerberos 5 error code on failure.
1096 * @ingroup krb5_storage
1099 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1100 krb5_ret_times(krb5_storage
*sp
, krb5_times
*times
)
1104 ret
= krb5_ret_int32(sp
, &tmp
);
1105 times
->authtime
= tmp
;
1107 ret
= krb5_ret_int32(sp
, &tmp
);
1108 times
->starttime
= tmp
;
1110 ret
= krb5_ret_int32(sp
, &tmp
);
1111 times
->endtime
= tmp
;
1113 ret
= krb5_ret_int32(sp
, &tmp
);
1114 times
->renew_till
= tmp
;
1119 * Write a address block to storage.
1121 * @param sp the storage buffer to write to
1122 * @param p the address block to write.
1124 * @return 0 on success, a Kerberos 5 error code on failure.
1126 * @ingroup krb5_storage
1129 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1130 krb5_store_address(krb5_storage
*sp
, krb5_address p
)
1133 ret
= krb5_store_int16(sp
, p
.addr_type
);
1135 ret
= krb5_store_data(sp
, p
.address
);
1140 * Read a address block from the storage.
1142 * @param sp the storage buffer to write to
1143 * @param adr the address block read from storage
1145 * @return 0 on success, a Kerberos 5 error code on failure.
1147 * @ingroup krb5_storage
1150 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1151 krb5_ret_address(krb5_storage
*sp
, krb5_address
*adr
)
1155 ret
= krb5_ret_int16(sp
, &t
);
1158 ret
= krb5_ret_data(sp
, &adr
->address
);
1163 * Write a addresses block to storage.
1165 * @param sp the storage buffer to write to
1166 * @param p the addresses block to write.
1168 * @return 0 on success, a Kerberos 5 error code on failure.
1170 * @ingroup krb5_storage
1173 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1174 krb5_store_addrs(krb5_storage
*sp
, krb5_addresses p
)
1178 ret
= krb5_store_int32(sp
, p
.len
);
1180 for(i
= 0; i
<p
.len
; i
++){
1181 ret
= krb5_store_address(sp
, p
.val
[i
]);
1188 * Read a addresses block from the storage.
1190 * @param sp the storage buffer to write to
1191 * @param adr the addresses block read from storage
1193 * @return 0 on success, a Kerberos 5 error code on failure.
1195 * @ingroup krb5_storage
1198 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1199 krb5_ret_addrs(krb5_storage
*sp
, krb5_addresses
*adr
)
1205 ret
= krb5_ret_int32(sp
, &tmp
);
1207 ret
= size_too_large_num(sp
, tmp
, sizeof(adr
->val
[0]));
1208 if (ret
) return ret
;
1210 ALLOC(adr
->val
, adr
->len
);
1211 if (adr
->val
== NULL
&& adr
->len
!= 0)
1213 for(i
= 0; i
< adr
->len
; i
++){
1214 ret
= krb5_ret_address(sp
, &adr
->val
[i
]);
1221 * Write a auth data block to storage.
1223 * @param sp the storage buffer to write to
1224 * @param auth the auth data block to write.
1226 * @return 0 on success, a Kerberos 5 error code on failure.
1228 * @ingroup krb5_storage
1231 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1232 krb5_store_authdata(krb5_storage
*sp
, krb5_authdata auth
)
1234 krb5_error_code ret
;
1236 ret
= krb5_store_int32(sp
, auth
.len
);
1238 for(i
= 0; i
< auth
.len
; i
++){
1239 ret
= krb5_store_int16(sp
, auth
.val
[i
].ad_type
);
1241 ret
= krb5_store_data(sp
, auth
.val
[i
].ad_data
);
1248 * Read a auth data from the storage.
1250 * @param sp the storage buffer to write to
1251 * @param auth the auth data block read from storage
1253 * @return 0 on success, a Kerberos 5 error code on failure.
1255 * @ingroup krb5_storage
1258 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1259 krb5_ret_authdata(krb5_storage
*sp
, krb5_authdata
*auth
)
1261 krb5_error_code ret
;
1265 ret
= krb5_ret_int32(sp
, &tmp
);
1267 ret
= size_too_large_num(sp
, tmp
, sizeof(auth
->val
[0]));
1268 if (ret
) return ret
;
1269 ALLOC_SEQ(auth
, tmp
);
1270 if (auth
->val
== NULL
&& tmp
!= 0)
1272 for(i
= 0; i
< tmp
; i
++){
1273 ret
= krb5_ret_int16(sp
, &tmp2
);
1275 auth
->val
[i
].ad_type
= tmp2
;
1276 ret
= krb5_ret_data(sp
, &auth
->val
[i
].ad_data
);
1283 bitswap32(int32_t b
)
1287 for (i
= 0; i
< 32; i
++) {
1288 r
= r
<< 1 | (b
& 1);
1295 * Write a credentials block to storage.
1297 * @param sp the storage buffer to write to
1298 * @param creds the creds block to write.
1300 * @return 0 on success, a Kerberos 5 error code on failure.
1302 * @ingroup krb5_storage
1305 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1306 krb5_store_creds(krb5_storage
*sp
, krb5_creds
*creds
)
1310 ret
= krb5_store_principal(sp
, creds
->client
);
1313 ret
= krb5_store_principal(sp
, creds
->server
);
1316 ret
= krb5_store_keyblock(sp
, creds
->session
);
1319 ret
= krb5_store_times(sp
, creds
->times
);
1322 ret
= krb5_store_int8(sp
, creds
->second_ticket
.length
!= 0); /* is_skey */
1326 if(krb5_storage_is_flags(sp
, KRB5_STORAGE_CREDS_FLAGS_WRONG_BITORDER
))
1327 ret
= krb5_store_int32(sp
, creds
->flags
.i
);
1329 ret
= krb5_store_int32(sp
, bitswap32(TicketFlags2int(creds
->flags
.b
)));
1333 ret
= krb5_store_addrs(sp
, creds
->addresses
);
1336 ret
= krb5_store_authdata(sp
, creds
->authdata
);
1339 ret
= krb5_store_data(sp
, creds
->ticket
);
1342 ret
= krb5_store_data(sp
, creds
->second_ticket
);
1347 * Read a credentials block from the storage.
1349 * @param sp the storage buffer to write to
1350 * @param creds the credentials block read from storage
1352 * @return 0 on success, a Kerberos 5 error code on failure.
1354 * @ingroup krb5_storage
1357 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1358 krb5_ret_creds(krb5_storage
*sp
, krb5_creds
*creds
)
1360 krb5_error_code ret
;
1364 memset(creds
, 0, sizeof(*creds
));
1365 ret
= krb5_ret_principal (sp
, &creds
->client
);
1366 if(ret
) goto cleanup
;
1367 ret
= krb5_ret_principal (sp
, &creds
->server
);
1368 if(ret
) goto cleanup
;
1369 ret
= krb5_ret_keyblock (sp
, &creds
->session
);
1370 if(ret
) goto cleanup
;
1371 ret
= krb5_ret_times (sp
, &creds
->times
);
1372 if(ret
) goto cleanup
;
1373 ret
= krb5_ret_int8 (sp
, &dummy8
);
1374 if(ret
) goto cleanup
;
1375 ret
= krb5_ret_int32 (sp
, &dummy32
);
1376 if(ret
) goto cleanup
;
1378 * Runtime detect the what is the higher bits of the bitfield. If
1379 * any of the higher bits are set in the input data, it's either a
1380 * new ticket flag (and this code need to be removed), or it's a
1381 * MIT cache (or new Heimdal cache), lets change it to our current
1385 uint32_t mask
= 0xffff0000;
1387 creds
->flags
.b
.anonymous
= 1;
1388 if (creds
->flags
.i
& mask
)
1391 dummy32
= bitswap32(dummy32
);
1393 creds
->flags
.i
= dummy32
;
1394 ret
= krb5_ret_addrs (sp
, &creds
->addresses
);
1395 if(ret
) goto cleanup
;
1396 ret
= krb5_ret_authdata (sp
, &creds
->authdata
);
1397 if(ret
) goto cleanup
;
1398 ret
= krb5_ret_data (sp
, &creds
->ticket
);
1399 if(ret
) goto cleanup
;
1400 ret
= krb5_ret_data (sp
, &creds
->second_ticket
);
1404 krb5_free_cred_contents(context
, creds
); /* XXX */
1410 #define SC_CLIENT_PRINCIPAL 0x0001
1411 #define SC_SERVER_PRINCIPAL 0x0002
1412 #define SC_SESSION_KEY 0x0004
1413 #define SC_TICKET 0x0008
1414 #define SC_SECOND_TICKET 0x0010
1415 #define SC_AUTHDATA 0x0020
1416 #define SC_ADDRESSES 0x0040
1419 * Write a tagged credentials block to storage.
1421 * @param sp the storage buffer to write to
1422 * @param creds the creds block to write.
1424 * @return 0 on success, a Kerberos 5 error code on failure.
1426 * @ingroup krb5_storage
1429 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1430 krb5_store_creds_tag(krb5_storage
*sp
, krb5_creds
*creds
)
1436 header
|= SC_CLIENT_PRINCIPAL
;
1438 header
|= SC_SERVER_PRINCIPAL
;
1439 if (creds
->session
.keytype
!= ETYPE_NULL
)
1440 header
|= SC_SESSION_KEY
;
1441 if (creds
->ticket
.data
)
1442 header
|= SC_TICKET
;
1443 if (creds
->second_ticket
.length
)
1444 header
|= SC_SECOND_TICKET
;
1445 if (creds
->authdata
.len
)
1446 header
|= SC_AUTHDATA
;
1447 if (creds
->addresses
.len
)
1448 header
|= SC_ADDRESSES
;
1450 ret
= krb5_store_int32(sp
, header
);
1454 if (creds
->client
) {
1455 ret
= krb5_store_principal(sp
, creds
->client
);
1460 if (creds
->server
) {
1461 ret
= krb5_store_principal(sp
, creds
->server
);
1466 if (creds
->session
.keytype
!= ETYPE_NULL
) {
1467 ret
= krb5_store_keyblock(sp
, creds
->session
);
1472 ret
= krb5_store_times(sp
, creds
->times
);
1475 ret
= krb5_store_int8(sp
, creds
->second_ticket
.length
!= 0); /* is_skey */
1479 ret
= krb5_store_int32(sp
, bitswap32(TicketFlags2int(creds
->flags
.b
)));
1483 if (creds
->addresses
.len
) {
1484 ret
= krb5_store_addrs(sp
, creds
->addresses
);
1489 if (creds
->authdata
.len
) {
1490 ret
= krb5_store_authdata(sp
, creds
->authdata
);
1495 if (creds
->ticket
.data
) {
1496 ret
= krb5_store_data(sp
, creds
->ticket
);
1501 if (creds
->second_ticket
.data
) {
1502 ret
= krb5_store_data(sp
, creds
->second_ticket
);
1511 * Read a tagged credentials block from the storage.
1513 * @param sp the storage buffer to write to
1514 * @param creds the credentials block read from storage
1516 * @return 0 on success, a Kerberos 5 error code on failure.
1518 * @ingroup krb5_storage
1521 KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL
1522 krb5_ret_creds_tag(krb5_storage
*sp
,
1525 krb5_error_code ret
;
1527 int32_t dummy32
, header
;
1529 memset(creds
, 0, sizeof(*creds
));
1531 ret
= krb5_ret_int32 (sp
, &header
);
1532 if (ret
) goto cleanup
;
1534 if (header
& SC_CLIENT_PRINCIPAL
) {
1535 ret
= krb5_ret_principal (sp
, &creds
->client
);
1536 if(ret
) goto cleanup
;
1538 if (header
& SC_SERVER_PRINCIPAL
) {
1539 ret
= krb5_ret_principal (sp
, &creds
->server
);
1540 if(ret
) goto cleanup
;
1542 if (header
& SC_SESSION_KEY
) {
1543 ret
= krb5_ret_keyblock (sp
, &creds
->session
);
1544 if(ret
) goto cleanup
;
1546 ret
= krb5_ret_times (sp
, &creds
->times
);
1547 if(ret
) goto cleanup
;
1548 ret
= krb5_ret_int8 (sp
, &dummy8
);
1549 if(ret
) goto cleanup
;
1550 ret
= krb5_ret_int32 (sp
, &dummy32
);
1551 if(ret
) goto cleanup
;
1553 * Runtime detect the what is the higher bits of the bitfield. If
1554 * any of the higher bits are set in the input data, it's either a
1555 * new ticket flag (and this code need to be removed), or it's a
1556 * MIT cache (or new Heimdal cache), lets change it to our current
1560 uint32_t mask
= 0xffff0000;
1562 creds
->flags
.b
.anonymous
= 1;
1563 if (creds
->flags
.i
& mask
)
1566 dummy32
= bitswap32(dummy32
);
1568 creds
->flags
.i
= dummy32
;
1569 if (header
& SC_ADDRESSES
) {
1570 ret
= krb5_ret_addrs (sp
, &creds
->addresses
);
1571 if(ret
) goto cleanup
;
1573 if (header
& SC_AUTHDATA
) {
1574 ret
= krb5_ret_authdata (sp
, &creds
->authdata
);
1575 if(ret
) goto cleanup
;
1577 if (header
& SC_TICKET
) {
1578 ret
= krb5_ret_data (sp
, &creds
->ticket
);
1579 if(ret
) goto cleanup
;
1581 if (header
& SC_SECOND_TICKET
) {
1582 ret
= krb5_ret_data (sp
, &creds
->second_ticket
);
1583 if(ret
) goto cleanup
;
1589 krb5_free_cred_contents(context
, creds
); /* XXX */