1 1.1 elric /* $NetBSD: copy.c,v 1.2 2017/01/28 21:31:44 christos Exp $ */ 2 1.1 elric 3 1.1 elric /* 4 1.1 elric * Copyright (c) 1997-2004 Kungliga Tekniska Hgskolan 5 1.1 elric * (Royal Institute of Technology, Stockholm, Sweden). 6 1.1 elric * All rights reserved. 7 1.1 elric * 8 1.1 elric * Redistribution and use in source and binary forms, with or without 9 1.1 elric * modification, are permitted provided that the following conditions 10 1.1 elric * are met: 11 1.1 elric * 12 1.1 elric * 1. Redistributions of source code must retain the above copyright 13 1.1 elric * notice, this list of conditions and the following disclaimer. 14 1.1 elric * 15 1.1 elric * 2. Redistributions in binary form must reproduce the above copyright 16 1.1 elric * notice, this list of conditions and the following disclaimer in the 17 1.1 elric * documentation and/or other materials provided with the distribution. 18 1.1 elric * 19 1.1 elric * 3. Neither the name of the Institute nor the names of its contributors 20 1.1 elric * may be used to endorse or promote products derived from this software 21 1.1 elric * without specific prior written permission. 22 1.1 elric * 23 1.1 elric * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 24 1.1 elric * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 1.1 elric * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26 1.1 elric * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 27 1.1 elric * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28 1.1 elric * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29 1.1 elric * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30 1.1 elric * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31 1.1 elric * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32 1.1 elric * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33 1.1 elric * SUCH DAMAGE. 34 1.1 elric */ 35 1.1 elric 36 1.1 elric #include "ktutil_locl.h" 37 1.1 elric 38 1.1 elric __RCSID("$NetBSD: copy.c,v 1.2 2017/01/28 21:31:44 christos Exp $"); 39 1.1 elric 40 1.1 elric 41 1.1 elric static krb5_boolean 42 1.1 elric compare_keyblock(const krb5_keyblock *a, const krb5_keyblock *b) 43 1.1 elric { 44 1.1 elric if(a->keytype != b->keytype || 45 1.1 elric a->keyvalue.length != b->keyvalue.length || 46 1.1 elric memcmp(a->keyvalue.data, b->keyvalue.data, a->keyvalue.length) != 0) 47 1.1 elric return FALSE; 48 1.1 elric return TRUE; 49 1.1 elric } 50 1.1 elric 51 1.1 elric int 52 1.1 elric kt_copy (void *opt, int argc, char **argv) 53 1.1 elric { 54 1.1 elric krb5_error_code ret; 55 1.1 elric krb5_keytab src_keytab, dst_keytab; 56 1.1 elric krb5_kt_cursor cursor; 57 1.1 elric krb5_keytab_entry entry, dummy; 58 1.1 elric const char *from = argv[0]; 59 1.1 elric const char *to = argv[1]; 60 1.1 elric 61 1.1 elric ret = krb5_kt_resolve (context, from, &src_keytab); 62 1.1 elric if (ret) { 63 1.1 elric krb5_warn (context, ret, "resolving src keytab `%s'", from); 64 1.1 elric return 1; 65 1.1 elric } 66 1.1 elric 67 1.1 elric ret = krb5_kt_resolve (context, to, &dst_keytab); 68 1.1 elric if (ret) { 69 1.1 elric krb5_kt_close (context, src_keytab); 70 1.1 elric krb5_warn (context, ret, "resolving dst keytab `%s'", to); 71 1.1 elric return 1; 72 1.1 elric } 73 1.1 elric 74 1.1 elric ret = krb5_kt_start_seq_get (context, src_keytab, &cursor); 75 1.1 elric if (ret) { 76 1.1 elric krb5_warn (context, ret, "krb5_kt_start_seq_get %s", keytab_string); 77 1.1 elric goto out; 78 1.1 elric } 79 1.1 elric 80 1.1 elric if (verbose_flag) 81 1.1 elric fprintf(stderr, "copying %s to %s\n", from, to); 82 1.1 elric 83 1.1 elric while((ret = krb5_kt_next_entry(context, src_keytab, 84 1.1 elric &entry, &cursor)) == 0) { 85 1.1 elric char *name_str; 86 1.1 elric char *etype_str; 87 1.1 elric ret = krb5_unparse_name (context, entry.principal, &name_str); 88 1.1 elric if(ret) { 89 1.1 elric krb5_warn(context, ret, "krb5_unparse_name"); 90 1.1 elric name_str = NULL; /* XXX */ 91 1.1 elric } 92 1.1 elric ret = krb5_enctype_to_string(context, entry.keyblock.keytype, &etype_str); 93 1.1 elric if(ret) { 94 1.1 elric krb5_warn(context, ret, "krb5_enctype_to_string"); 95 1.1 elric etype_str = NULL; /* XXX */ 96 1.1 elric } 97 1.1 elric ret = krb5_kt_get_entry(context, dst_keytab, 98 1.1 elric entry.principal, 99 1.1 elric entry.vno, 100 1.1 elric entry.keyblock.keytype, 101 1.1 elric &dummy); 102 1.1 elric if(ret == 0) { 103 1.1 elric /* this entry is already in the new keytab, so no need to 104 1.1 elric copy it; if the keyblocks are not the same, something 105 1.1 elric is weird, so complain about that */ 106 1.1 elric if(!compare_keyblock(&entry.keyblock, &dummy.keyblock)) { 107 1.1 elric krb5_warnx(context, "entry with different keyvalue " 108 1.1 elric "already exists for %s, keytype %s, kvno %d", 109 1.1 elric name_str, etype_str, entry.vno); 110 1.1 elric } 111 1.1 elric krb5_kt_free_entry(context, &dummy); 112 1.1 elric krb5_kt_free_entry (context, &entry); 113 1.1 elric free(name_str); 114 1.1 elric free(etype_str); 115 1.1 elric continue; 116 1.1 elric } else if(ret != KRB5_KT_NOTFOUND) { 117 1.1 elric krb5_warn (context, ret, "%s: fetching %s/%s/%u", 118 1.1 elric to, name_str, etype_str, entry.vno); 119 1.1 elric krb5_kt_free_entry (context, &entry); 120 1.1 elric free(name_str); 121 1.1 elric free(etype_str); 122 1.1 elric break; 123 1.1 elric } 124 1.1 elric if (verbose_flag) 125 1.1 elric fprintf (stderr, "copying %s, keytype %s, kvno %d\n", name_str, 126 1.1 elric etype_str, entry.vno); 127 1.1 elric ret = krb5_kt_add_entry (context, dst_keytab, &entry); 128 1.1 elric krb5_kt_free_entry (context, &entry); 129 1.1 elric if (ret) { 130 1.1 elric krb5_warn (context, ret, "%s: adding %s/%s/%u", 131 1.1 elric to, name_str, etype_str, entry.vno); 132 1.1 elric free(name_str); 133 1.1 elric free(etype_str); 134 1.1 elric break; 135 1.1 elric } 136 1.1 elric free(name_str); 137 1.1 elric free(etype_str); 138 1.1 elric } 139 1.1 elric krb5_kt_end_seq_get (context, src_keytab, &cursor); 140 1.1 elric 141 1.1 elric out: 142 1.1 elric krb5_kt_close (context, src_keytab); 143 1.1 elric krb5_kt_close (context, dst_keytab); 144 1.1 elric return ret != 0; 145 1.1 elric } 146