ctdb-scripts: Improve update and listing code
[samba4-gss.git] / libcli / security / dom_sid.h
blob84e20f4aaa507bf1b9cabc1f618e695d86c6e34e
1 /*
2 Unix SMB/CIFS implementation.
3 Samba utility functions
5 Copyright (C) Stefan (metze) Metzmacher 2002-2004
6 Copyright (C) Andrew Tridgell 1992-2004
7 Copyright (C) Jeremy Allison 1999
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 #ifndef _DOM_SID_H_
24 #define _DOM_SID_H_
26 #include "replace.h"
27 #include <talloc.h>
28 #include "lib/util/data_blob.h"
29 #include "libcli/util/ntstatus.h"
30 #include "librpc/gen_ndr/security.h"
32 /* Some well-known SIDs */
33 extern const struct dom_sid global_sid_World_Domain;
34 extern const struct dom_sid global_sid_World;
35 extern const struct dom_sid global_sid_Local_Authority;
36 extern const struct dom_sid global_sid_Creator_Owner_Domain;
37 extern const struct dom_sid global_sid_NT_Authority;
38 extern const struct dom_sid global_sid_Enterprise_DCs;
39 extern const struct dom_sid global_sid_System;
40 extern const struct dom_sid global_sid_NULL;
41 extern const struct dom_sid global_sid_Self;
42 extern const struct dom_sid global_sid_Authenticated_Users;
43 extern const struct dom_sid global_sid_Network;
44 extern const struct dom_sid global_sid_Asserted_Identity;
45 extern const struct dom_sid global_sid_Asserted_Identity_Service;
46 extern const struct dom_sid global_sid_Asserted_Identity_Authentication_Authority;
47 extern const struct dom_sid global_sid_Fresh_Public_Key_Identity;
48 extern const struct dom_sid global_sid_Creator_Owner;
49 extern const struct dom_sid global_sid_Creator_Group;
50 extern const struct dom_sid global_sid_Owner_Rights;
51 extern const struct dom_sid global_sid_Anonymous;
52 extern const struct dom_sid global_sid_Compounded_Authentication;
53 extern const struct dom_sid global_sid_Claims_Valid;
54 extern const struct dom_sid global_sid_Builtin;
55 extern const struct dom_sid global_sid_Builtin_Administrators;
56 extern const struct dom_sid global_sid_Builtin_Users;
57 extern const struct dom_sid global_sid_Builtin_Guests;
58 extern const struct dom_sid global_sid_Builtin_Power_Users;
59 extern const struct dom_sid global_sid_Builtin_Account_Operators;
60 extern const struct dom_sid global_sid_Builtin_Server_Operators;
61 extern const struct dom_sid global_sid_Builtin_Print_Operators;
62 extern const struct dom_sid global_sid_Builtin_Backup_Operators;
63 extern const struct dom_sid global_sid_Builtin_Replicator;
64 extern const struct dom_sid global_sid_Builtin_PreWin2kAccess;
65 extern const struct dom_sid global_sid_Unix_Users;
66 extern const struct dom_sid global_sid_Unix_Groups;
67 extern const struct dom_sid global_sid_Unix_NFS;
68 extern const struct dom_sid global_sid_Unix_NFS_Users;
69 extern const struct dom_sid global_sid_Unix_NFS_Groups;
70 extern const struct dom_sid global_sid_Unix_NFS_Mode;
71 extern const struct dom_sid global_sid_Unix_NFS_Other;
72 extern const struct dom_sid global_sid_Samba_SMB3;
74 extern const struct dom_sid global_sid_Samba_NPA_Flags;
75 #define SAMBA_NPA_FLAGS_NEED_IDLE 1
76 #define SAMBA_NPA_FLAGS_WINBIND_OFF 2
78 struct auth_SidAttr;
79 enum lsa_SidType;
81 NTSTATUS dom_sid_lookup_predefined_name(const char *name,
82 const struct dom_sid **sid,
83 enum lsa_SidType *type,
84 const struct dom_sid **authority_sid,
85 const char **authority_name);
86 NTSTATUS dom_sid_lookup_predefined_sid(const struct dom_sid *sid,
87 const char **name,
88 enum lsa_SidType *type,
89 const struct dom_sid **authority_sid,
90 const char **authority_name);
91 bool dom_sid_lookup_is_predefined_domain(const char *domain);
93 int dom_sid_compare_auth(const struct dom_sid *sid1,
94 const struct dom_sid *sid2);
95 int dom_sid_compare(const struct dom_sid *sid1, const struct dom_sid *sid2);
96 int dom_sid_compare_domain(const struct dom_sid *sid1,
97 const struct dom_sid *sid2);
98 bool dom_sid_equal(const struct dom_sid *sid1, const struct dom_sid *sid2);
99 bool sid_append_rid(struct dom_sid *sid, uint32_t rid);
100 bool string_to_sid(struct dom_sid *sidout, const char *sidstr);
101 bool dom_sid_parse_endp(const char *sidstr,struct dom_sid *sidout,
102 const char **endp);
103 bool dom_sid_parse(const char *sidstr, struct dom_sid *ret);
104 struct dom_sid *dom_sid_parse_talloc(TALLOC_CTX *mem_ctx, const char *sidstr);
105 struct dom_sid *dom_sid_parse_length(TALLOC_CTX *mem_ctx, const DATA_BLOB *sid);
106 struct dom_sid *dom_sid_dup(TALLOC_CTX *mem_ctx, const struct dom_sid *dom_sid);
107 struct dom_sid *dom_sid_add_rid(TALLOC_CTX *mem_ctx,
108 const struct dom_sid *domain_sid,
109 uint32_t rid);
110 NTSTATUS dom_sid_split_rid(TALLOC_CTX *mem_ctx, const struct dom_sid *sid,
111 struct dom_sid **domain, uint32_t *rid);
112 bool dom_sid_in_domain(const struct dom_sid *domain_sid,
113 const struct dom_sid *sid);
114 bool dom_sid_has_account_domain(const struct dom_sid *sid);
115 bool dom_sid_is_valid_account_domain(const struct dom_sid *sid);
117 #define DOM_SID_STR_BUFLEN (15*11+25)
118 char *dom_sid_string(TALLOC_CTX *mem_ctx, const struct dom_sid *sid);
120 struct dom_sid_buf { char buf[DOM_SID_STR_BUFLEN]; };
121 char *dom_sid_str_buf(const struct dom_sid *sid, struct dom_sid_buf *dst);
123 const char *sid_type_lookup(uint32_t sid_type);
124 const struct security_token *get_system_token(void);
125 bool sid_compose(struct dom_sid *dst, const struct dom_sid *domain_sid, uint32_t rid);
126 bool sid_split_rid(struct dom_sid *sid, uint32_t *rid);
127 bool sid_peek_rid(const struct dom_sid *sid, uint32_t *rid);
128 bool sid_peek_check_rid(const struct dom_sid *exp_dom_sid, const struct dom_sid *sid, uint32_t *rid);
129 void sid_copy(struct dom_sid *dst, const struct dom_sid *src);
130 ssize_t sid_parse(const uint8_t *inbuf, size_t len, struct dom_sid *sid);
131 NTSTATUS add_sid_to_array(TALLOC_CTX *mem_ctx, const struct dom_sid *sid,
132 struct dom_sid **sids, uint32_t *num);
133 NTSTATUS add_sid_to_array_unique(TALLOC_CTX *mem_ctx, const struct dom_sid *sid,
134 struct dom_sid **sids, uint32_t *num_sids);
135 NTSTATUS add_sid_to_array_attrs(TALLOC_CTX *mem_ctx,
136 const struct dom_sid *sid, uint32_t attrs,
137 struct auth_SidAttr **sids, uint32_t *num);
138 NTSTATUS add_sid_to_array_attrs_unique(TALLOC_CTX *mem_ctx,
139 const struct dom_sid *sid, uint32_t attrs,
140 struct auth_SidAttr **sids, uint32_t *num_sids);
141 void del_sid_from_array(const struct dom_sid *sid, struct dom_sid **sids,
142 uint32_t *num);
143 bool add_rid_to_array_unique(TALLOC_CTX *mem_ctx,
144 uint32_t rid, uint32_t **pp_rids, size_t *p_num);
145 bool is_null_sid(const struct dom_sid *sid);
146 bool sids_contains_sid(const struct dom_sid *sids,
147 const uint32_t num_sids,
148 const struct dom_sid *sid);
149 bool sid_attrs_contains_sid(const struct auth_SidAttr *sids,
150 const uint32_t num_sids,
151 const struct dom_sid *sid);
152 bool sids_contains_sid_attrs(const struct auth_SidAttr *sids,
153 const uint32_t num_sids,
154 const struct dom_sid *sid,
155 uint32_t attrs);
157 #endif /*_DOM_SID_H_*/