Home | History | Annotate | Line # | Download | only in dev
keylock.c revision 1.1
      1  1.1  mbalmer /* $NetBSD: keylock.c,v 1.1 2009/08/14 21:17:22 mbalmer Exp $ */
      2  1.1  mbalmer 
      3  1.1  mbalmer /*
      4  1.1  mbalmer  * Copyright (c) 2009 Marc Balmer <marc (at) msys.ch>
      5  1.1  mbalmer  * All rights reserved.
      6  1.1  mbalmer  *
      7  1.1  mbalmer  * Redistribution and use in source and binary forms, with or without
      8  1.1  mbalmer  * modification, are permitted provided that the following conditions
      9  1.1  mbalmer  * are met:
     10  1.1  mbalmer  * 1. Redistributions of source code must retain the above copyright
     11  1.1  mbalmer  *    notice, this list of conditions and the following disclaimer.
     12  1.1  mbalmer  * 2. Redistributions in binary form must reproduce the above copyright
     13  1.1  mbalmer  *    notice, this list of conditions and the following disclaimer in the
     14  1.1  mbalmer  *    documentation and/or other materials provided with the distribution.
     15  1.1  mbalmer  *
     16  1.1  mbalmer  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
     17  1.1  mbalmer  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
     18  1.1  mbalmer  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
     19  1.1  mbalmer  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
     20  1.1  mbalmer  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
     21  1.1  mbalmer  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
     22  1.1  mbalmer  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
     23  1.1  mbalmer  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
     24  1.1  mbalmer  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
     25  1.1  mbalmer  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
     26  1.1  mbalmer  */
     27  1.1  mbalmer 
     28  1.1  mbalmer #include "opt_secmodel_keylock.h"
     29  1.1  mbalmer 
     30  1.1  mbalmer /* Support for multi-position electro-mechanical keylocks */
     31  1.1  mbalmer 
     32  1.1  mbalmer #include <sys/param.h>
     33  1.1  mbalmer #include <sys/kernel.h>
     34  1.1  mbalmer #include <sys/keylock.h>
     35  1.1  mbalmer #include <sys/sysctl.h>
     36  1.1  mbalmer 
     37  1.1  mbalmer #ifdef secmodel_keylock
     38  1.1  mbalmer #include <sys/kauth.h>
     39  1.1  mbalmer #include <secmodel/keylock/keylock.h>
     40  1.1  mbalmer #endif
     41  1.1  mbalmer 
     42  1.1  mbalmer static int (*keylock_pos_cb)(void *) = NULL;
     43  1.1  mbalmer static void *keylock_pos_cb_arg = NULL;
     44  1.1  mbalmer static int keylock_npos = 0;
     45  1.1  mbalmer static int keylock_order = 0;
     46  1.1  mbalmer 
     47  1.1  mbalmer int keylock_pos_sysctl(SYSCTLFN_PROTO);
     48  1.1  mbalmer int keylock_state_sysctl(SYSCTLFN_PROTO);
     49  1.1  mbalmer int keylock_order_sysctl(SYSCTLFN_PROTO);
     50  1.1  mbalmer 
     51  1.1  mbalmer SYSCTL_SETUP(sysctl_keylock_setup, "sysctl keylock setup")
     52  1.1  mbalmer {
     53  1.1  mbalmer 	const struct sysctlnode *node = NULL;
     54  1.1  mbalmer 
     55  1.1  mbalmer 	sysctl_createv(clog, 0, NULL, NULL,
     56  1.1  mbalmer 	    CTLFLAG_PERMANENT,
     57  1.1  mbalmer 	    CTLTYPE_NODE, "hw", NULL,
     58  1.1  mbalmer 	    NULL, 0, NULL, 0,
     59  1.1  mbalmer 	    CTL_HW, CTL_EOL);
     60  1.1  mbalmer 	sysctl_createv(clog, 0, NULL, &node,
     61  1.1  mbalmer 	    CTLFLAG_PERMANENT,
     62  1.1  mbalmer 	    CTLTYPE_NODE, "keylock",
     63  1.1  mbalmer 	    SYSCTL_DESCR("Keylock state"),
     64  1.1  mbalmer 	    NULL, 0, NULL, 0,
     65  1.1  mbalmer 	    CTL_HW, CTL_CREATE, CTL_EOL);
     66  1.1  mbalmer 
     67  1.1  mbalmer 	if (node == NULL)
     68  1.1  mbalmer 		return;
     69  1.1  mbalmer 
     70  1.1  mbalmer 	sysctl_createv(clog, 0, &node, NULL,
     71  1.1  mbalmer 	    CTLFLAG_PERMANENT | CTLFLAG_READONLY,
     72  1.1  mbalmer 	    CTLTYPE_INT, "pos",
     73  1.1  mbalmer 	    SYSCTL_DESCR("Current keylock position"),
     74  1.1  mbalmer 	    keylock_pos_sysctl, 0, NULL, 0,
     75  1.1  mbalmer 	    CTL_CREATE, CTL_EOL);
     76  1.1  mbalmer 	sysctl_createv(clog, 0, &node, NULL,
     77  1.1  mbalmer 	    CTLFLAG_PERMANENT | CTLFLAG_READONLY,
     78  1.1  mbalmer 	    CTLTYPE_INT, "npos",
     79  1.1  mbalmer 	    SYSCTL_DESCR("Number of keylock positions"),
     80  1.1  mbalmer 	    NULL, 0, &keylock_npos, 0,
     81  1.1  mbalmer 	    CTL_CREATE, CTL_EOL);
     82  1.1  mbalmer 	sysctl_createv(clog, 0, &node, NULL,
     83  1.1  mbalmer 	    CTLFLAG_PERMANENT | CTLFLAG_READONLY,
     84  1.1  mbalmer 	    CTLTYPE_INT, "state",
     85  1.1  mbalmer 	    SYSCTL_DESCR("Keylock state"),
     86  1.1  mbalmer 	    keylock_state_sysctl, 0, NULL, 0,
     87  1.1  mbalmer 	    CTL_CREATE, CTL_EOL);
     88  1.1  mbalmer        sysctl_createv(clog, 0, &node, NULL,
     89  1.1  mbalmer 	    CTLFLAG_PERMANENT | CTLFLAG_READWRITE,
     90  1.1  mbalmer 	    CTLTYPE_INT, "order",
     91  1.1  mbalmer 	    SYSCTL_DESCR("Keylock closedness order"),
     92  1.1  mbalmer 	    keylock_order_sysctl, 0, NULL, 0,
     93  1.1  mbalmer 	    CTL_CREATE, CTL_EOL);
     94  1.1  mbalmer }
     95  1.1  mbalmer 
     96  1.1  mbalmer int
     97  1.1  mbalmer keylock_register(void *cb_arg, int npos, int (*cb)(void *))
     98  1.1  mbalmer {
     99  1.1  mbalmer 	if (keylock_pos_cb != NULL)
    100  1.1  mbalmer 		return -1;
    101  1.1  mbalmer 
    102  1.1  mbalmer 	keylock_pos_cb = cb;
    103  1.1  mbalmer 	keylock_pos_cb_arg = cb_arg;
    104  1.1  mbalmer 	keylock_npos = npos;
    105  1.1  mbalmer #ifdef secmodel_keylock
    106  1.1  mbalmer 	secmodel_keylock_start();
    107  1.1  mbalmer #endif
    108  1.1  mbalmer 	return 0;
    109  1.1  mbalmer }
    110  1.1  mbalmer 
    111  1.1  mbalmer void
    112  1.1  mbalmer keylock_unregister(void *cb_arg, int (*cb)(void *))
    113  1.1  mbalmer {
    114  1.1  mbalmer 	if (keylock_pos_cb != cb || keylock_pos_cb_arg != cb_arg)
    115  1.1  mbalmer 		return;
    116  1.1  mbalmer 
    117  1.1  mbalmer #ifdef secmodel_keylock
    118  1.1  mbalmer 	secmodel_keylock_stop();
    119  1.1  mbalmer #endif
    120  1.1  mbalmer 	keylock_pos_cb = NULL;
    121  1.1  mbalmer 	keylock_pos_cb_arg = NULL;
    122  1.1  mbalmer 	keylock_npos = 0;
    123  1.1  mbalmer }
    124  1.1  mbalmer 
    125  1.1  mbalmer int
    126  1.1  mbalmer keylock_position(void)
    127  1.1  mbalmer {
    128  1.1  mbalmer 	if (keylock_pos_cb == NULL)
    129  1.1  mbalmer 		return 0;
    130  1.1  mbalmer 
    131  1.1  mbalmer 	return (*keylock_pos_cb)(keylock_pos_cb_arg);
    132  1.1  mbalmer }
    133  1.1  mbalmer 
    134  1.1  mbalmer int
    135  1.1  mbalmer keylock_num_positions(void)
    136  1.1  mbalmer {
    137  1.1  mbalmer 	return keylock_npos;
    138  1.1  mbalmer }
    139  1.1  mbalmer 
    140  1.1  mbalmer int
    141  1.1  mbalmer keylock_state(void)
    142  1.1  mbalmer {
    143  1.1  mbalmer         int pos;
    144  1.1  mbalmer 
    145  1.1  mbalmer         if (keylock_npos == 0)
    146  1.1  mbalmer                 return KEYLOCK_ABSENT;
    147  1.1  mbalmer 
    148  1.1  mbalmer         pos = keylock_position();
    149  1.1  mbalmer         if (pos == 0)
    150  1.1  mbalmer                 return KEYLOCK_TAMPER;
    151  1.1  mbalmer 
    152  1.1  mbalmer         /*
    153  1.1  mbalmer 	 * XXX How should the intermediate positions be handled?
    154  1.1  mbalmer 	 * At the moment only the ultimate positions are properly handled,
    155  1.1  mbalmer 	 * we need to think about what we do with the intermediate positions.
    156  1.1  mbalmer 	 * For now we return KEYLOCK_SEMIOPEN for them.
    157  1.1  mbalmer 	 */
    158  1.1  mbalmer         if (pos == 1)
    159  1.1  mbalmer                 return keylock_order == 0 ? KEYLOCK_CLOSE : KEYLOCK_OPEN;
    160  1.1  mbalmer         else if (pos == keylock_npos)
    161  1.1  mbalmer                 return keylock_order == 0 ? KEYLOCK_OPEN : KEYLOCK_CLOSE;
    162  1.1  mbalmer         return KEYLOCK_SEMIOPEN;
    163  1.1  mbalmer }
    164  1.1  mbalmer 
    165  1.1  mbalmer int
    166  1.1  mbalmer keylock_pos_sysctl(SYSCTLFN_ARGS)
    167  1.1  mbalmer {
    168  1.1  mbalmer 	struct sysctlnode node;
    169  1.1  mbalmer 	int val;
    170  1.1  mbalmer 
    171  1.1  mbalmer 	node = *rnode;
    172  1.1  mbalmer 	node.sysctl_data = &val;
    173  1.1  mbalmer 
    174  1.1  mbalmer 	val = keylock_position();
    175  1.1  mbalmer 	return sysctl_lookup(SYSCTLFN_CALL(&node));
    176  1.1  mbalmer }
    177  1.1  mbalmer 
    178  1.1  mbalmer int
    179  1.1  mbalmer keylock_state_sysctl(SYSCTLFN_ARGS)
    180  1.1  mbalmer {
    181  1.1  mbalmer 	struct sysctlnode node;
    182  1.1  mbalmer 	int val;
    183  1.1  mbalmer 
    184  1.1  mbalmer 	node = *rnode;
    185  1.1  mbalmer 	node.sysctl_data = &val;
    186  1.1  mbalmer 
    187  1.1  mbalmer 	val = keylock_state();
    188  1.1  mbalmer 	return sysctl_lookup(SYSCTLFN_CALL(&node));
    189  1.1  mbalmer }
    190  1.1  mbalmer 
    191  1.1  mbalmer int
    192  1.1  mbalmer keylock_order_sysctl(SYSCTLFN_ARGS)
    193  1.1  mbalmer {
    194  1.1  mbalmer 	struct sysctlnode node;
    195  1.1  mbalmer 	int val, error;
    196  1.1  mbalmer 
    197  1.1  mbalmer 	node = *rnode;
    198  1.1  mbalmer 	node.sysctl_data = &val;
    199  1.1  mbalmer 
    200  1.1  mbalmer 	val = keylock_order;
    201  1.1  mbalmer 	error = sysctl_lookup(SYSCTLFN_CALL(&node));
    202  1.1  mbalmer 	if (error || newp == NULL)
    203  1.1  mbalmer 		return error;
    204  1.1  mbalmer 	if (keylock_state() != KEYLOCK_OPEN)
    205  1.1  mbalmer 		return -1;
    206  1.1  mbalmer 
    207  1.1  mbalmer 	keylock_order = val;
    208  1.1  mbalmer 	return 0;
    209  1.1  mbalmer }
    210  1.1  mbalmer 
    211