2 Unix SMB/CIFS implementation.
3 Samba utility functions
5 Copyright (C) Stefan (metze) Metzmacher 2002-2004
6 Copyright (C) Andrew Tridgell 1992-2004
7 Copyright (C) Jeremy Allison 1999
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
28 #include "lib/util/data_blob.h"
29 #include "libcli/util/ntstatus.h"
30 #include "librpc/gen_ndr/security.h"
32 /* Some well-known SIDs */
33 extern const struct dom_sid global_sid_World_Domain
;
34 extern const struct dom_sid global_sid_World
;
35 extern const struct dom_sid global_sid_Local_Authority
;
36 extern const struct dom_sid global_sid_Creator_Owner_Domain
;
37 extern const struct dom_sid global_sid_NT_Authority
;
38 extern const struct dom_sid global_sid_Enterprise_DCs
;
39 extern const struct dom_sid global_sid_System
;
40 extern const struct dom_sid global_sid_NULL
;
41 extern const struct dom_sid global_sid_Self
;
42 extern const struct dom_sid global_sid_Authenticated_Users
;
43 extern const struct dom_sid global_sid_Network
;
44 extern const struct dom_sid global_sid_Asserted_Identity
;
45 extern const struct dom_sid global_sid_Asserted_Identity_Service
;
46 extern const struct dom_sid global_sid_Asserted_Identity_Authentication_Authority
;
47 extern const struct dom_sid global_sid_Fresh_Public_Key_Identity
;
48 extern const struct dom_sid global_sid_Creator_Owner
;
49 extern const struct dom_sid global_sid_Creator_Group
;
50 extern const struct dom_sid global_sid_Owner_Rights
;
51 extern const struct dom_sid global_sid_Anonymous
;
52 extern const struct dom_sid global_sid_Compounded_Authentication
;
53 extern const struct dom_sid global_sid_Claims_Valid
;
54 extern const struct dom_sid global_sid_Builtin
;
55 extern const struct dom_sid global_sid_Builtin_Administrators
;
56 extern const struct dom_sid global_sid_Builtin_Users
;
57 extern const struct dom_sid global_sid_Builtin_Guests
;
58 extern const struct dom_sid global_sid_Builtin_Power_Users
;
59 extern const struct dom_sid global_sid_Builtin_Account_Operators
;
60 extern const struct dom_sid global_sid_Builtin_Server_Operators
;
61 extern const struct dom_sid global_sid_Builtin_Print_Operators
;
62 extern const struct dom_sid global_sid_Builtin_Backup_Operators
;
63 extern const struct dom_sid global_sid_Builtin_Replicator
;
64 extern const struct dom_sid global_sid_Builtin_PreWin2kAccess
;
65 extern const struct dom_sid global_sid_Unix_Users
;
66 extern const struct dom_sid global_sid_Unix_Groups
;
67 extern const struct dom_sid global_sid_Unix_NFS
;
68 extern const struct dom_sid global_sid_Unix_NFS_Users
;
69 extern const struct dom_sid global_sid_Unix_NFS_Groups
;
70 extern const struct dom_sid global_sid_Unix_NFS_Mode
;
71 extern const struct dom_sid global_sid_Unix_NFS_Other
;
72 extern const struct dom_sid global_sid_Samba_SMB3
;
74 extern const struct dom_sid global_sid_Samba_NPA_Flags
;
75 #define SAMBA_NPA_FLAGS_NEED_IDLE 1
76 #define SAMBA_NPA_FLAGS_WINBIND_OFF 2
81 NTSTATUS
dom_sid_lookup_predefined_name(const char *name
,
82 const struct dom_sid
**sid
,
83 enum lsa_SidType
*type
,
84 const struct dom_sid
**authority_sid
,
85 const char **authority_name
);
86 NTSTATUS
dom_sid_lookup_predefined_sid(const struct dom_sid
*sid
,
88 enum lsa_SidType
*type
,
89 const struct dom_sid
**authority_sid
,
90 const char **authority_name
);
91 bool dom_sid_lookup_is_predefined_domain(const char *domain
);
93 int dom_sid_compare_auth(const struct dom_sid
*sid1
,
94 const struct dom_sid
*sid2
);
95 int dom_sid_compare(const struct dom_sid
*sid1
, const struct dom_sid
*sid2
);
96 int dom_sid_compare_domain(const struct dom_sid
*sid1
,
97 const struct dom_sid
*sid2
);
98 bool dom_sid_equal(const struct dom_sid
*sid1
, const struct dom_sid
*sid2
);
99 bool sid_append_rid(struct dom_sid
*sid
, uint32_t rid
);
100 bool string_to_sid(struct dom_sid
*sidout
, const char *sidstr
);
101 bool dom_sid_parse_endp(const char *sidstr
,struct dom_sid
*sidout
,
103 bool dom_sid_parse(const char *sidstr
, struct dom_sid
*ret
);
104 struct dom_sid
*dom_sid_parse_talloc(TALLOC_CTX
*mem_ctx
, const char *sidstr
);
105 struct dom_sid
*dom_sid_parse_length(TALLOC_CTX
*mem_ctx
, const DATA_BLOB
*sid
);
106 struct dom_sid
*dom_sid_dup(TALLOC_CTX
*mem_ctx
, const struct dom_sid
*dom_sid
);
107 struct dom_sid
*dom_sid_add_rid(TALLOC_CTX
*mem_ctx
,
108 const struct dom_sid
*domain_sid
,
110 NTSTATUS
dom_sid_split_rid(TALLOC_CTX
*mem_ctx
, const struct dom_sid
*sid
,
111 struct dom_sid
**domain
, uint32_t *rid
);
112 bool dom_sid_in_domain(const struct dom_sid
*domain_sid
,
113 const struct dom_sid
*sid
);
114 bool dom_sid_has_account_domain(const struct dom_sid
*sid
);
115 bool dom_sid_is_valid_account_domain(const struct dom_sid
*sid
);
117 #define DOM_SID_STR_BUFLEN (15*11+25)
118 char *dom_sid_string(TALLOC_CTX
*mem_ctx
, const struct dom_sid
*sid
);
120 struct dom_sid_buf
{ char buf
[DOM_SID_STR_BUFLEN
]; };
121 char *dom_sid_str_buf(const struct dom_sid
*sid
, struct dom_sid_buf
*dst
);
123 const char *sid_type_lookup(uint32_t sid_type
);
124 const struct security_token
*get_system_token(void);
125 bool sid_compose(struct dom_sid
*dst
, const struct dom_sid
*domain_sid
, uint32_t rid
);
126 bool sid_split_rid(struct dom_sid
*sid
, uint32_t *rid
);
127 bool sid_peek_rid(const struct dom_sid
*sid
, uint32_t *rid
);
128 bool sid_peek_check_rid(const struct dom_sid
*exp_dom_sid
, const struct dom_sid
*sid
, uint32_t *rid
);
129 void sid_copy(struct dom_sid
*dst
, const struct dom_sid
*src
);
130 ssize_t
sid_parse(const uint8_t *inbuf
, size_t len
, struct dom_sid
*sid
);
131 NTSTATUS
add_sid_to_array(TALLOC_CTX
*mem_ctx
, const struct dom_sid
*sid
,
132 struct dom_sid
**sids
, uint32_t *num
);
133 NTSTATUS
add_sid_to_array_unique(TALLOC_CTX
*mem_ctx
, const struct dom_sid
*sid
,
134 struct dom_sid
**sids
, uint32_t *num_sids
);
135 NTSTATUS
add_sid_to_array_attrs(TALLOC_CTX
*mem_ctx
,
136 const struct dom_sid
*sid
, uint32_t attrs
,
137 struct auth_SidAttr
**sids
, uint32_t *num
);
138 NTSTATUS
add_sid_to_array_attrs_unique(TALLOC_CTX
*mem_ctx
,
139 const struct dom_sid
*sid
, uint32_t attrs
,
140 struct auth_SidAttr
**sids
, uint32_t *num_sids
);
141 void del_sid_from_array(const struct dom_sid
*sid
, struct dom_sid
**sids
,
143 bool add_rid_to_array_unique(TALLOC_CTX
*mem_ctx
,
144 uint32_t rid
, uint32_t **pp_rids
, size_t *p_num
);
145 bool is_null_sid(const struct dom_sid
*sid
);
146 bool sids_contains_sid(const struct dom_sid
*sids
,
147 const uint32_t num_sids
,
148 const struct dom_sid
*sid
);
149 bool sid_attrs_contains_sid(const struct auth_SidAttr
*sids
,
150 const uint32_t num_sids
,
151 const struct dom_sid
*sid
);
152 bool sids_contains_sid_attrs(const struct auth_SidAttr
*sids
,
153 const uint32_t num_sids
,
154 const struct dom_sid
*sid
,
157 #endif /*_DOM_SID_H_*/