pwd_mkdb.c revision 1.6 1 1.1 cgd /*-
2 1.5 mycroft * Copyright (c) 1991, 1993, 1994
3 1.5 mycroft * The Regents of the University of California. All rights reserved.
4 1.6 phil * Portions Copyright(C) 1994, Jason Downs. All rights reserved.
5 1.1 cgd *
6 1.1 cgd * Redistribution and use in source and binary forms, with or without
7 1.1 cgd * modification, are permitted provided that the following conditions
8 1.1 cgd * are met:
9 1.1 cgd * 1. Redistributions of source code must retain the above copyright
10 1.1 cgd * notice, this list of conditions and the following disclaimer.
11 1.1 cgd * 2. Redistributions in binary form must reproduce the above copyright
12 1.1 cgd * notice, this list of conditions and the following disclaimer in the
13 1.1 cgd * documentation and/or other materials provided with the distribution.
14 1.1 cgd * 3. All advertising materials mentioning features or use of this software
15 1.1 cgd * must display the following acknowledgement:
16 1.1 cgd * This product includes software developed by the University of
17 1.1 cgd * California, Berkeley and its contributors.
18 1.1 cgd * 4. Neither the name of the University nor the names of its contributors
19 1.1 cgd * may be used to endorse or promote products derived from this software
20 1.1 cgd * without specific prior written permission.
21 1.1 cgd *
22 1.1 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
23 1.1 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
24 1.1 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
25 1.1 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
26 1.1 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
27 1.1 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
28 1.1 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
29 1.1 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
30 1.1 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
31 1.1 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
32 1.1 cgd * SUCH DAMAGE.
33 1.1 cgd */
34 1.1 cgd
35 1.1 cgd #ifndef lint
36 1.5 mycroft static char copyright[] =
37 1.5 mycroft "@(#) Copyright (c) 1991, 1993, 1994\n\
38 1.5 mycroft The Regents of the University of California. All rights reserved.\n";
39 1.1 cgd #endif /* not lint */
40 1.1 cgd
41 1.1 cgd #ifndef lint
42 1.5 mycroft /*static char sccsid[] = "from: @(#)pwd_mkdb.c 8.5 (Berkeley) 4/20/94";*/
43 1.6 phil static char *rcsid = "$Id: pwd_mkdb.c,v 1.6 1995/07/28 07:13:52 phil Exp $";
44 1.1 cgd #endif /* not lint */
45 1.1 cgd
46 1.1 cgd #include <sys/param.h>
47 1.1 cgd #include <sys/stat.h>
48 1.5 mycroft
49 1.1 cgd #include <db.h>
50 1.5 mycroft #include <err.h>
51 1.1 cgd #include <errno.h>
52 1.5 mycroft #include <fcntl.h>
53 1.1 cgd #include <limits.h>
54 1.5 mycroft #include <pwd.h>
55 1.5 mycroft #include <signal.h>
56 1.1 cgd #include <stdio.h>
57 1.5 mycroft #include <stdlib.h>
58 1.1 cgd #include <string.h>
59 1.5 mycroft #include <unistd.h>
60 1.5 mycroft
61 1.5 mycroft #include "pw_scan.h"
62 1.1 cgd
63 1.1 cgd #define INSECURE 1
64 1.1 cgd #define SECURE 2
65 1.1 cgd #define PERM_INSECURE (S_IRUSR|S_IWUSR|S_IRGRP|S_IROTH)
66 1.1 cgd #define PERM_SECURE (S_IRUSR|S_IWUSR)
67 1.1 cgd
68 1.6 phil /* pull this out of the C library. */
69 1.6 phil extern const char __yp_token[];
70 1.6 phil
71 1.5 mycroft HASHINFO openinfo = {
72 1.5 mycroft 4096, /* bsize */
73 1.5 mycroft 32, /* ffactor */
74 1.5 mycroft 256, /* nelem */
75 1.5 mycroft 2048 * 1024, /* cachesize */
76 1.5 mycroft NULL, /* hash() */
77 1.5 mycroft 0 /* lorder */
78 1.5 mycroft };
79 1.1 cgd
80 1.1 cgd static enum state { FILE_INSECURE, FILE_SECURE, FILE_ORIG } clean;
81 1.1 cgd static struct passwd pwd; /* password structure */
82 1.1 cgd static char *pname; /* password file name */
83 1.1 cgd
84 1.5 mycroft void cleanup __P((void));
85 1.5 mycroft void error __P((char *));
86 1.5 mycroft void mv __P((char *, char *));
87 1.6 phil int scan __P((FILE *, struct passwd *, int *));
88 1.5 mycroft void usage __P((void));
89 1.5 mycroft
90 1.5 mycroft int
91 1.1 cgd main(argc, argv)
92 1.1 cgd int argc;
93 1.5 mycroft char *argv[];
94 1.1 cgd {
95 1.5 mycroft DB *dp, *edp;
96 1.5 mycroft DBT data, key;
97 1.1 cgd FILE *fp, *oldfp;
98 1.1 cgd sigset_t set;
99 1.6 phil int ch, cnt, len, makeold, tfd, flags;
100 1.5 mycroft char *p, *t;
101 1.1 cgd char buf[MAX(MAXPATHLEN, LINE_MAX * 2)], tbuf[1024];
102 1.6 phil int hasyp = 0;
103 1.6 phil DBT ypdata, ypkey;
104 1.1 cgd
105 1.1 cgd makeold = 0;
106 1.1 cgd while ((ch = getopt(argc, argv, "pv")) != EOF)
107 1.1 cgd switch(ch) {
108 1.1 cgd case 'p': /* create V7 "file.orig" */
109 1.1 cgd makeold = 1;
110 1.1 cgd break;
111 1.1 cgd case 'v': /* backward compatible */
112 1.1 cgd break;
113 1.1 cgd case '?':
114 1.1 cgd default:
115 1.1 cgd usage();
116 1.1 cgd }
117 1.1 cgd argc -= optind;
118 1.1 cgd argv += optind;
119 1.1 cgd
120 1.1 cgd if (argc != 1)
121 1.1 cgd usage();
122 1.4 cgd
123 1.1 cgd /*
124 1.5 mycroft * This could be changed to allow the user to interrupt.
125 1.5 mycroft * Probably not worth the effort.
126 1.1 cgd */
127 1.1 cgd sigemptyset(&set);
128 1.1 cgd sigaddset(&set, SIGTSTP);
129 1.1 cgd sigaddset(&set, SIGHUP);
130 1.1 cgd sigaddset(&set, SIGINT);
131 1.1 cgd sigaddset(&set, SIGQUIT);
132 1.1 cgd sigaddset(&set, SIGTERM);
133 1.1 cgd (void)sigprocmask(SIG_BLOCK, &set, (sigset_t *)NULL);
134 1.1 cgd
135 1.5 mycroft /* We don't care what the user wants. */
136 1.5 mycroft (void)umask(0);
137 1.5 mycroft
138 1.1 cgd pname = *argv;
139 1.1 cgd /* Open the original password file */
140 1.1 cgd if (!(fp = fopen(pname, "r")))
141 1.1 cgd error(pname);
142 1.1 cgd
143 1.1 cgd /* Open the temporary insecure password database. */
144 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
145 1.5 mycroft dp = dbopen(buf,
146 1.5 mycroft O_RDWR|O_CREAT|O_EXCL, PERM_INSECURE, DB_HASH, &openinfo);
147 1.5 mycroft if (dp == NULL)
148 1.1 cgd error(buf);
149 1.1 cgd clean = FILE_INSECURE;
150 1.1 cgd
151 1.1 cgd /*
152 1.1 cgd * Open file for old password file. Minor trickiness -- don't want to
153 1.1 cgd * chance the file already existing, since someone (stupidly) might
154 1.1 cgd * still be using this for permission checking. So, open it first and
155 1.5 mycroft * fdopen the resulting fd. The resulting file should be readable by
156 1.5 mycroft * everyone.
157 1.1 cgd */
158 1.1 cgd if (makeold) {
159 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
160 1.1 cgd if ((tfd = open(buf,
161 1.1 cgd O_WRONLY|O_CREAT|O_EXCL, PERM_INSECURE)) < 0)
162 1.1 cgd error(buf);
163 1.5 mycroft if ((oldfp = fdopen(tfd, "w")) == NULL)
164 1.1 cgd error(buf);
165 1.1 cgd clean = FILE_ORIG;
166 1.1 cgd }
167 1.1 cgd
168 1.1 cgd /*
169 1.1 cgd * The databases actually contain three copies of the original data.
170 1.1 cgd * Each password file entry is converted into a rough approximation
171 1.1 cgd * of a ``struct passwd'', with the strings placed inline. This
172 1.1 cgd * object is then stored as the data for three separate keys. The
173 1.1 cgd * first key * is the pw_name field prepended by the _PW_KEYBYNAME
174 1.1 cgd * character. The second key is the pw_uid field prepended by the
175 1.1 cgd * _PW_KEYBYUID character. The third key is the line number in the
176 1.1 cgd * original file prepended by the _PW_KEYBYNUM character. (The special
177 1.1 cgd * characters are prepended to ensure that the keys do not collide.)
178 1.6 phil *
179 1.6 phil * If we see something go by that looks like YP, we save a special
180 1.6 phil * pointer record, which if YP is enabled in the C lib, will speed
181 1.6 phil * things up.
182 1.1 cgd */
183 1.1 cgd data.data = (u_char *)buf;
184 1.1 cgd key.data = (u_char *)tbuf;
185 1.6 phil for (cnt = 1; scan(fp, &pwd, &flags); ++cnt) {
186 1.1 cgd #define COMPACT(e) t = e; while (*p++ = *t++);
187 1.6 phil
188 1.6 phil /* look like YP? */
189 1.6 phil if((pwd.pw_name[0] == '+') || (pwd.pw_name[0] == '-'))
190 1.6 phil hasyp++;
191 1.6 phil
192 1.1 cgd /* Create insecure data. */
193 1.1 cgd p = buf;
194 1.1 cgd COMPACT(pwd.pw_name);
195 1.1 cgd COMPACT("*");
196 1.5 mycroft memmove(p, &pwd.pw_uid, sizeof(int));
197 1.1 cgd p += sizeof(int);
198 1.5 mycroft memmove(p, &pwd.pw_gid, sizeof(int));
199 1.1 cgd p += sizeof(int);
200 1.5 mycroft memmove(p, &pwd.pw_change, sizeof(time_t));
201 1.1 cgd p += sizeof(time_t);
202 1.1 cgd COMPACT(pwd.pw_class);
203 1.1 cgd COMPACT(pwd.pw_gecos);
204 1.1 cgd COMPACT(pwd.pw_dir);
205 1.1 cgd COMPACT(pwd.pw_shell);
206 1.5 mycroft memmove(p, &pwd.pw_expire, sizeof(time_t));
207 1.1 cgd p += sizeof(time_t);
208 1.6 phil memmove(p, &flags, sizeof(int));
209 1.6 phil p += sizeof(int);
210 1.1 cgd data.size = p - buf;
211 1.1 cgd
212 1.1 cgd /* Store insecure by name. */
213 1.1 cgd tbuf[0] = _PW_KEYBYNAME;
214 1.1 cgd len = strlen(pwd.pw_name);
215 1.5 mycroft memmove(tbuf + 1, pwd.pw_name, len);
216 1.1 cgd key.size = len + 1;
217 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
218 1.1 cgd error("put");
219 1.1 cgd
220 1.1 cgd /* Store insecure by number. */
221 1.1 cgd tbuf[0] = _PW_KEYBYNUM;
222 1.5 mycroft memmove(tbuf + 1, &cnt, sizeof(cnt));
223 1.1 cgd key.size = sizeof(cnt) + 1;
224 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
225 1.1 cgd error("put");
226 1.1 cgd
227 1.1 cgd /* Store insecure by uid. */
228 1.1 cgd tbuf[0] = _PW_KEYBYUID;
229 1.5 mycroft memmove(tbuf + 1, &pwd.pw_uid, sizeof(pwd.pw_uid));
230 1.1 cgd key.size = sizeof(pwd.pw_uid) + 1;
231 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
232 1.1 cgd error("put");
233 1.1 cgd
234 1.5 mycroft /* Create original format password file entry */
235 1.5 mycroft if (makeold)
236 1.5 mycroft (void)fprintf(oldfp, "%s:*:%d:%d:%s:%s:%s\n",
237 1.5 mycroft pwd.pw_name, pwd.pw_uid, pwd.pw_gid, pwd.pw_gecos,
238 1.5 mycroft pwd.pw_dir, pwd.pw_shell);
239 1.5 mycroft }
240 1.6 phil
241 1.6 phil /* Store YP token, if needed. */
242 1.6 phil if(hasyp) {
243 1.6 phil ypkey.data = (u_char *)__yp_token;
244 1.6 phil ypkey.size = strlen(__yp_token);
245 1.6 phil ypdata.data = (u_char *)NULL;
246 1.6 phil ypdata.size = 0;
247 1.6 phil
248 1.6 phil if ((dp->put)(dp, &ypkey, &ypdata, R_NOOVERWRITE) == -1)
249 1.6 phil error("put");
250 1.6 phil }
251 1.6 phil
252 1.5 mycroft (void)(dp->close)(dp);
253 1.5 mycroft if (makeold) {
254 1.5 mycroft (void)fflush(oldfp);
255 1.5 mycroft (void)fclose(oldfp);
256 1.5 mycroft }
257 1.5 mycroft
258 1.5 mycroft /* Open the temporary encrypted password database. */
259 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
260 1.5 mycroft edp = dbopen(buf,
261 1.5 mycroft O_RDWR|O_CREAT|O_EXCL, PERM_SECURE, DB_HASH, &openinfo);
262 1.5 mycroft if (!edp)
263 1.5 mycroft error(buf);
264 1.5 mycroft clean = FILE_SECURE;
265 1.5 mycroft
266 1.5 mycroft rewind(fp);
267 1.6 phil for (cnt = 1; scan(fp, &pwd, &flags); ++cnt) {
268 1.5 mycroft
269 1.1 cgd /* Create secure data. */
270 1.1 cgd p = buf;
271 1.1 cgd COMPACT(pwd.pw_name);
272 1.1 cgd COMPACT(pwd.pw_passwd);
273 1.5 mycroft memmove(p, &pwd.pw_uid, sizeof(int));
274 1.1 cgd p += sizeof(int);
275 1.5 mycroft memmove(p, &pwd.pw_gid, sizeof(int));
276 1.1 cgd p += sizeof(int);
277 1.5 mycroft memmove(p, &pwd.pw_change, sizeof(time_t));
278 1.1 cgd p += sizeof(time_t);
279 1.1 cgd COMPACT(pwd.pw_class);
280 1.1 cgd COMPACT(pwd.pw_gecos);
281 1.1 cgd COMPACT(pwd.pw_dir);
282 1.1 cgd COMPACT(pwd.pw_shell);
283 1.5 mycroft memmove(p, &pwd.pw_expire, sizeof(time_t));
284 1.1 cgd p += sizeof(time_t);
285 1.6 phil memmove(p, &flags, sizeof(int));
286 1.6 phil p += sizeof(int);
287 1.1 cgd data.size = p - buf;
288 1.1 cgd
289 1.1 cgd /* Store secure by name. */
290 1.1 cgd tbuf[0] = _PW_KEYBYNAME;
291 1.1 cgd len = strlen(pwd.pw_name);
292 1.5 mycroft memmove(tbuf + 1, pwd.pw_name, len);
293 1.1 cgd key.size = len + 1;
294 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
295 1.1 cgd error("put");
296 1.1 cgd
297 1.1 cgd /* Store secure by number. */
298 1.1 cgd tbuf[0] = _PW_KEYBYNUM;
299 1.5 mycroft memmove(tbuf + 1, &cnt, sizeof(cnt));
300 1.1 cgd key.size = sizeof(cnt) + 1;
301 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
302 1.1 cgd error("put");
303 1.1 cgd
304 1.1 cgd /* Store secure by uid. */
305 1.1 cgd tbuf[0] = _PW_KEYBYUID;
306 1.5 mycroft memmove(tbuf + 1, &pwd.pw_uid, sizeof(pwd.pw_uid));
307 1.1 cgd key.size = sizeof(pwd.pw_uid) + 1;
308 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
309 1.1 cgd error("put");
310 1.5 mycroft }
311 1.1 cgd
312 1.6 phil /* Store YP token, if needed. */
313 1.6 phil if(hasyp) {
314 1.6 phil ypkey.data = (u_char *)__yp_token;
315 1.6 phil ypkey.size = strlen(__yp_token);
316 1.6 phil ypdata.data = (u_char *)NULL;
317 1.6 phil ypdata.size = 0;
318 1.6 phil
319 1.6 phil if((dp->put)(edp, &ypkey, &ypdata, R_NOOVERWRITE) == -1)
320 1.6 phil error("put");
321 1.6 phil }
322 1.6 phil
323 1.1 cgd (void)(edp->close)(edp);
324 1.1 cgd
325 1.1 cgd /* Set master.passwd permissions, in case caller forgot. */
326 1.1 cgd (void)fchmod(fileno(fp), S_IRUSR|S_IWUSR);
327 1.1 cgd (void)fclose(fp);
328 1.1 cgd
329 1.1 cgd /* Install as the real password files. */
330 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
331 1.1 cgd mv(buf, _PATH_MP_DB);
332 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
333 1.1 cgd mv(buf, _PATH_SMP_DB);
334 1.1 cgd if (makeold) {
335 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
336 1.1 cgd mv(buf, _PATH_PASSWD);
337 1.1 cgd }
338 1.1 cgd /*
339 1.1 cgd * Move the master password LAST -- chpass(1), passwd(1) and vipw(8)
340 1.1 cgd * all use flock(2) on it to block other incarnations of themselves.
341 1.1 cgd * The rename means that everything is unlocked, as the original file
342 1.1 cgd * can no longer be accessed.
343 1.1 cgd */
344 1.1 cgd mv(pname, _PATH_MASTERPASSWD);
345 1.1 cgd exit(0);
346 1.1 cgd }
347 1.1 cgd
348 1.5 mycroft int
349 1.6 phil scan(fp, pw, flags)
350 1.1 cgd FILE *fp;
351 1.1 cgd struct passwd *pw;
352 1.6 phil int *flags;
353 1.1 cgd {
354 1.1 cgd static int lcnt;
355 1.1 cgd static char line[LINE_MAX];
356 1.1 cgd char *p;
357 1.1 cgd
358 1.1 cgd if (!fgets(line, sizeof(line), fp))
359 1.5 mycroft return (0);
360 1.1 cgd ++lcnt;
361 1.1 cgd /*
362 1.1 cgd * ``... if I swallow anything evil, put your fingers down my
363 1.1 cgd * throat...''
364 1.1 cgd * -- The Who
365 1.1 cgd */
366 1.5 mycroft if (!(p = strchr(line, '\n'))) {
367 1.5 mycroft warnx("line too long");
368 1.1 cgd goto fmt;
369 1.1 cgd
370 1.1 cgd }
371 1.1 cgd *p = '\0';
372 1.6 phil if (!pw_scan(line, pw, flags)) {
373 1.5 mycroft warnx("at line #%d", lcnt);
374 1.5 mycroft fmt: errno = EFTYPE; /* XXX */
375 1.1 cgd error(pname);
376 1.1 cgd }
377 1.5 mycroft
378 1.5 mycroft return (1);
379 1.1 cgd }
380 1.1 cgd
381 1.5 mycroft void
382 1.1 cgd mv(from, to)
383 1.1 cgd char *from, *to;
384 1.1 cgd {
385 1.1 cgd char buf[MAXPATHLEN];
386 1.1 cgd
387 1.1 cgd if (rename(from, to)) {
388 1.5 mycroft int sverrno = errno;
389 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s to %s", from, to);
390 1.1 cgd errno = sverrno;
391 1.1 cgd error(buf);
392 1.1 cgd }
393 1.1 cgd }
394 1.1 cgd
395 1.5 mycroft void
396 1.1 cgd error(name)
397 1.1 cgd char *name;
398 1.1 cgd {
399 1.5 mycroft
400 1.5 mycroft warn(name);
401 1.1 cgd cleanup();
402 1.1 cgd exit(1);
403 1.1 cgd }
404 1.1 cgd
405 1.5 mycroft void
406 1.1 cgd cleanup()
407 1.1 cgd {
408 1.1 cgd char buf[MAXPATHLEN];
409 1.1 cgd
410 1.1 cgd switch(clean) {
411 1.1 cgd case FILE_ORIG:
412 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
413 1.1 cgd (void)unlink(buf);
414 1.1 cgd /* FALLTHROUGH */
415 1.1 cgd case FILE_SECURE:
416 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
417 1.1 cgd (void)unlink(buf);
418 1.1 cgd /* FALLTHROUGH */
419 1.1 cgd case FILE_INSECURE:
420 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
421 1.1 cgd (void)unlink(buf);
422 1.1 cgd }
423 1.1 cgd }
424 1.1 cgd
425 1.5 mycroft void
426 1.1 cgd usage()
427 1.1 cgd {
428 1.5 mycroft
429 1.1 cgd (void)fprintf(stderr, "usage: pwd_mkdb [-p] file\n");
430 1.1 cgd exit(1);
431 1.1 cgd }
432