pwd_mkdb.c revision 1.7 1 1.1 cgd /*-
2 1.5 mycroft * Copyright (c) 1991, 1993, 1994
3 1.5 mycroft * The Regents of the University of California. All rights reserved.
4 1.6 phil * Portions Copyright(C) 1994, Jason Downs. All rights reserved.
5 1.1 cgd *
6 1.1 cgd * Redistribution and use in source and binary forms, with or without
7 1.1 cgd * modification, are permitted provided that the following conditions
8 1.1 cgd * are met:
9 1.1 cgd * 1. Redistributions of source code must retain the above copyright
10 1.1 cgd * notice, this list of conditions and the following disclaimer.
11 1.1 cgd * 2. Redistributions in binary form must reproduce the above copyright
12 1.1 cgd * notice, this list of conditions and the following disclaimer in the
13 1.1 cgd * documentation and/or other materials provided with the distribution.
14 1.1 cgd * 3. All advertising materials mentioning features or use of this software
15 1.1 cgd * must display the following acknowledgement:
16 1.1 cgd * This product includes software developed by the University of
17 1.1 cgd * California, Berkeley and its contributors.
18 1.1 cgd * 4. Neither the name of the University nor the names of its contributors
19 1.1 cgd * may be used to endorse or promote products derived from this software
20 1.1 cgd * without specific prior written permission.
21 1.1 cgd *
22 1.1 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
23 1.1 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
24 1.1 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
25 1.1 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
26 1.1 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
27 1.1 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
28 1.1 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
29 1.1 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
30 1.1 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
31 1.1 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
32 1.1 cgd * SUCH DAMAGE.
33 1.1 cgd */
34 1.1 cgd
35 1.1 cgd #ifndef lint
36 1.5 mycroft static char copyright[] =
37 1.5 mycroft "@(#) Copyright (c) 1991, 1993, 1994\n\
38 1.5 mycroft The Regents of the University of California. All rights reserved.\n";
39 1.1 cgd #endif /* not lint */
40 1.1 cgd
41 1.1 cgd #ifndef lint
42 1.5 mycroft /*static char sccsid[] = "from: @(#)pwd_mkdb.c 8.5 (Berkeley) 4/20/94";*/
43 1.7 jtc static char *rcsid = "$Id: pwd_mkdb.c,v 1.7 1996/05/15 23:19:16 jtc Exp $";
44 1.1 cgd #endif /* not lint */
45 1.1 cgd
46 1.1 cgd #include <sys/param.h>
47 1.1 cgd #include <sys/stat.h>
48 1.5 mycroft
49 1.1 cgd #include <db.h>
50 1.5 mycroft #include <err.h>
51 1.1 cgd #include <errno.h>
52 1.5 mycroft #include <fcntl.h>
53 1.1 cgd #include <limits.h>
54 1.5 mycroft #include <pwd.h>
55 1.5 mycroft #include <signal.h>
56 1.1 cgd #include <stdio.h>
57 1.5 mycroft #include <stdlib.h>
58 1.1 cgd #include <string.h>
59 1.5 mycroft #include <unistd.h>
60 1.7 jtc #include <util.h>
61 1.1 cgd
62 1.1 cgd #define INSECURE 1
63 1.1 cgd #define SECURE 2
64 1.1 cgd #define PERM_INSECURE (S_IRUSR|S_IWUSR|S_IRGRP|S_IROTH)
65 1.1 cgd #define PERM_SECURE (S_IRUSR|S_IWUSR)
66 1.1 cgd
67 1.6 phil /* pull this out of the C library. */
68 1.6 phil extern const char __yp_token[];
69 1.6 phil
70 1.5 mycroft HASHINFO openinfo = {
71 1.5 mycroft 4096, /* bsize */
72 1.5 mycroft 32, /* ffactor */
73 1.5 mycroft 256, /* nelem */
74 1.5 mycroft 2048 * 1024, /* cachesize */
75 1.5 mycroft NULL, /* hash() */
76 1.5 mycroft 0 /* lorder */
77 1.5 mycroft };
78 1.1 cgd
79 1.1 cgd static enum state { FILE_INSECURE, FILE_SECURE, FILE_ORIG } clean;
80 1.1 cgd static struct passwd pwd; /* password structure */
81 1.1 cgd static char *pname; /* password file name */
82 1.1 cgd
83 1.5 mycroft void cleanup __P((void));
84 1.5 mycroft void error __P((char *));
85 1.5 mycroft void mv __P((char *, char *));
86 1.6 phil int scan __P((FILE *, struct passwd *, int *));
87 1.5 mycroft void usage __P((void));
88 1.5 mycroft
89 1.5 mycroft int
90 1.1 cgd main(argc, argv)
91 1.1 cgd int argc;
92 1.5 mycroft char *argv[];
93 1.1 cgd {
94 1.5 mycroft DB *dp, *edp;
95 1.5 mycroft DBT data, key;
96 1.1 cgd FILE *fp, *oldfp;
97 1.1 cgd sigset_t set;
98 1.6 phil int ch, cnt, len, makeold, tfd, flags;
99 1.5 mycroft char *p, *t;
100 1.1 cgd char buf[MAX(MAXPATHLEN, LINE_MAX * 2)], tbuf[1024];
101 1.6 phil int hasyp = 0;
102 1.6 phil DBT ypdata, ypkey;
103 1.1 cgd
104 1.1 cgd makeold = 0;
105 1.1 cgd while ((ch = getopt(argc, argv, "pv")) != EOF)
106 1.1 cgd switch(ch) {
107 1.1 cgd case 'p': /* create V7 "file.orig" */
108 1.1 cgd makeold = 1;
109 1.1 cgd break;
110 1.1 cgd case 'v': /* backward compatible */
111 1.1 cgd break;
112 1.1 cgd case '?':
113 1.1 cgd default:
114 1.1 cgd usage();
115 1.1 cgd }
116 1.1 cgd argc -= optind;
117 1.1 cgd argv += optind;
118 1.1 cgd
119 1.1 cgd if (argc != 1)
120 1.1 cgd usage();
121 1.4 cgd
122 1.1 cgd /*
123 1.5 mycroft * This could be changed to allow the user to interrupt.
124 1.5 mycroft * Probably not worth the effort.
125 1.1 cgd */
126 1.1 cgd sigemptyset(&set);
127 1.1 cgd sigaddset(&set, SIGTSTP);
128 1.1 cgd sigaddset(&set, SIGHUP);
129 1.1 cgd sigaddset(&set, SIGINT);
130 1.1 cgd sigaddset(&set, SIGQUIT);
131 1.1 cgd sigaddset(&set, SIGTERM);
132 1.1 cgd (void)sigprocmask(SIG_BLOCK, &set, (sigset_t *)NULL);
133 1.1 cgd
134 1.5 mycroft /* We don't care what the user wants. */
135 1.5 mycroft (void)umask(0);
136 1.5 mycroft
137 1.1 cgd pname = *argv;
138 1.1 cgd /* Open the original password file */
139 1.1 cgd if (!(fp = fopen(pname, "r")))
140 1.1 cgd error(pname);
141 1.1 cgd
142 1.1 cgd /* Open the temporary insecure password database. */
143 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
144 1.5 mycroft dp = dbopen(buf,
145 1.5 mycroft O_RDWR|O_CREAT|O_EXCL, PERM_INSECURE, DB_HASH, &openinfo);
146 1.5 mycroft if (dp == NULL)
147 1.1 cgd error(buf);
148 1.1 cgd clean = FILE_INSECURE;
149 1.1 cgd
150 1.1 cgd /*
151 1.1 cgd * Open file for old password file. Minor trickiness -- don't want to
152 1.1 cgd * chance the file already existing, since someone (stupidly) might
153 1.1 cgd * still be using this for permission checking. So, open it first and
154 1.5 mycroft * fdopen the resulting fd. The resulting file should be readable by
155 1.5 mycroft * everyone.
156 1.1 cgd */
157 1.1 cgd if (makeold) {
158 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
159 1.1 cgd if ((tfd = open(buf,
160 1.1 cgd O_WRONLY|O_CREAT|O_EXCL, PERM_INSECURE)) < 0)
161 1.1 cgd error(buf);
162 1.5 mycroft if ((oldfp = fdopen(tfd, "w")) == NULL)
163 1.1 cgd error(buf);
164 1.1 cgd clean = FILE_ORIG;
165 1.1 cgd }
166 1.1 cgd
167 1.1 cgd /*
168 1.1 cgd * The databases actually contain three copies of the original data.
169 1.1 cgd * Each password file entry is converted into a rough approximation
170 1.1 cgd * of a ``struct passwd'', with the strings placed inline. This
171 1.1 cgd * object is then stored as the data for three separate keys. The
172 1.1 cgd * first key * is the pw_name field prepended by the _PW_KEYBYNAME
173 1.1 cgd * character. The second key is the pw_uid field prepended by the
174 1.1 cgd * _PW_KEYBYUID character. The third key is the line number in the
175 1.1 cgd * original file prepended by the _PW_KEYBYNUM character. (The special
176 1.1 cgd * characters are prepended to ensure that the keys do not collide.)
177 1.6 phil *
178 1.6 phil * If we see something go by that looks like YP, we save a special
179 1.6 phil * pointer record, which if YP is enabled in the C lib, will speed
180 1.6 phil * things up.
181 1.1 cgd */
182 1.1 cgd data.data = (u_char *)buf;
183 1.1 cgd key.data = (u_char *)tbuf;
184 1.6 phil for (cnt = 1; scan(fp, &pwd, &flags); ++cnt) {
185 1.1 cgd #define COMPACT(e) t = e; while (*p++ = *t++);
186 1.6 phil
187 1.6 phil /* look like YP? */
188 1.6 phil if((pwd.pw_name[0] == '+') || (pwd.pw_name[0] == '-'))
189 1.6 phil hasyp++;
190 1.6 phil
191 1.1 cgd /* Create insecure data. */
192 1.1 cgd p = buf;
193 1.1 cgd COMPACT(pwd.pw_name);
194 1.1 cgd COMPACT("*");
195 1.5 mycroft memmove(p, &pwd.pw_uid, sizeof(int));
196 1.1 cgd p += sizeof(int);
197 1.5 mycroft memmove(p, &pwd.pw_gid, sizeof(int));
198 1.1 cgd p += sizeof(int);
199 1.5 mycroft memmove(p, &pwd.pw_change, sizeof(time_t));
200 1.1 cgd p += sizeof(time_t);
201 1.1 cgd COMPACT(pwd.pw_class);
202 1.1 cgd COMPACT(pwd.pw_gecos);
203 1.1 cgd COMPACT(pwd.pw_dir);
204 1.1 cgd COMPACT(pwd.pw_shell);
205 1.5 mycroft memmove(p, &pwd.pw_expire, sizeof(time_t));
206 1.1 cgd p += sizeof(time_t);
207 1.6 phil memmove(p, &flags, sizeof(int));
208 1.6 phil p += sizeof(int);
209 1.1 cgd data.size = p - buf;
210 1.1 cgd
211 1.1 cgd /* Store insecure by name. */
212 1.1 cgd tbuf[0] = _PW_KEYBYNAME;
213 1.1 cgd len = strlen(pwd.pw_name);
214 1.5 mycroft memmove(tbuf + 1, pwd.pw_name, len);
215 1.1 cgd key.size = len + 1;
216 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
217 1.1 cgd error("put");
218 1.1 cgd
219 1.1 cgd /* Store insecure by number. */
220 1.1 cgd tbuf[0] = _PW_KEYBYNUM;
221 1.5 mycroft memmove(tbuf + 1, &cnt, sizeof(cnt));
222 1.1 cgd key.size = sizeof(cnt) + 1;
223 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
224 1.1 cgd error("put");
225 1.1 cgd
226 1.1 cgd /* Store insecure by uid. */
227 1.1 cgd tbuf[0] = _PW_KEYBYUID;
228 1.5 mycroft memmove(tbuf + 1, &pwd.pw_uid, sizeof(pwd.pw_uid));
229 1.1 cgd key.size = sizeof(pwd.pw_uid) + 1;
230 1.1 cgd if ((dp->put)(dp, &key, &data, R_NOOVERWRITE) == -1)
231 1.1 cgd error("put");
232 1.1 cgd
233 1.5 mycroft /* Create original format password file entry */
234 1.5 mycroft if (makeold)
235 1.5 mycroft (void)fprintf(oldfp, "%s:*:%d:%d:%s:%s:%s\n",
236 1.5 mycroft pwd.pw_name, pwd.pw_uid, pwd.pw_gid, pwd.pw_gecos,
237 1.5 mycroft pwd.pw_dir, pwd.pw_shell);
238 1.5 mycroft }
239 1.6 phil
240 1.6 phil /* Store YP token, if needed. */
241 1.6 phil if(hasyp) {
242 1.6 phil ypkey.data = (u_char *)__yp_token;
243 1.6 phil ypkey.size = strlen(__yp_token);
244 1.6 phil ypdata.data = (u_char *)NULL;
245 1.6 phil ypdata.size = 0;
246 1.6 phil
247 1.6 phil if ((dp->put)(dp, &ypkey, &ypdata, R_NOOVERWRITE) == -1)
248 1.6 phil error("put");
249 1.6 phil }
250 1.6 phil
251 1.5 mycroft (void)(dp->close)(dp);
252 1.5 mycroft if (makeold) {
253 1.5 mycroft (void)fflush(oldfp);
254 1.5 mycroft (void)fclose(oldfp);
255 1.5 mycroft }
256 1.5 mycroft
257 1.5 mycroft /* Open the temporary encrypted password database. */
258 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
259 1.5 mycroft edp = dbopen(buf,
260 1.5 mycroft O_RDWR|O_CREAT|O_EXCL, PERM_SECURE, DB_HASH, &openinfo);
261 1.5 mycroft if (!edp)
262 1.5 mycroft error(buf);
263 1.5 mycroft clean = FILE_SECURE;
264 1.5 mycroft
265 1.5 mycroft rewind(fp);
266 1.6 phil for (cnt = 1; scan(fp, &pwd, &flags); ++cnt) {
267 1.5 mycroft
268 1.1 cgd /* Create secure data. */
269 1.1 cgd p = buf;
270 1.1 cgd COMPACT(pwd.pw_name);
271 1.1 cgd COMPACT(pwd.pw_passwd);
272 1.5 mycroft memmove(p, &pwd.pw_uid, sizeof(int));
273 1.1 cgd p += sizeof(int);
274 1.5 mycroft memmove(p, &pwd.pw_gid, sizeof(int));
275 1.1 cgd p += sizeof(int);
276 1.5 mycroft memmove(p, &pwd.pw_change, sizeof(time_t));
277 1.1 cgd p += sizeof(time_t);
278 1.1 cgd COMPACT(pwd.pw_class);
279 1.1 cgd COMPACT(pwd.pw_gecos);
280 1.1 cgd COMPACT(pwd.pw_dir);
281 1.1 cgd COMPACT(pwd.pw_shell);
282 1.5 mycroft memmove(p, &pwd.pw_expire, sizeof(time_t));
283 1.1 cgd p += sizeof(time_t);
284 1.6 phil memmove(p, &flags, sizeof(int));
285 1.6 phil p += sizeof(int);
286 1.1 cgd data.size = p - buf;
287 1.1 cgd
288 1.1 cgd /* Store secure by name. */
289 1.1 cgd tbuf[0] = _PW_KEYBYNAME;
290 1.1 cgd len = strlen(pwd.pw_name);
291 1.5 mycroft memmove(tbuf + 1, pwd.pw_name, len);
292 1.1 cgd key.size = len + 1;
293 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
294 1.1 cgd error("put");
295 1.1 cgd
296 1.1 cgd /* Store secure by number. */
297 1.1 cgd tbuf[0] = _PW_KEYBYNUM;
298 1.5 mycroft memmove(tbuf + 1, &cnt, sizeof(cnt));
299 1.1 cgd key.size = sizeof(cnt) + 1;
300 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
301 1.1 cgd error("put");
302 1.1 cgd
303 1.1 cgd /* Store secure by uid. */
304 1.1 cgd tbuf[0] = _PW_KEYBYUID;
305 1.5 mycroft memmove(tbuf + 1, &pwd.pw_uid, sizeof(pwd.pw_uid));
306 1.1 cgd key.size = sizeof(pwd.pw_uid) + 1;
307 1.1 cgd if ((dp->put)(edp, &key, &data, R_NOOVERWRITE) == -1)
308 1.1 cgd error("put");
309 1.5 mycroft }
310 1.1 cgd
311 1.6 phil /* Store YP token, if needed. */
312 1.6 phil if(hasyp) {
313 1.6 phil ypkey.data = (u_char *)__yp_token;
314 1.6 phil ypkey.size = strlen(__yp_token);
315 1.6 phil ypdata.data = (u_char *)NULL;
316 1.6 phil ypdata.size = 0;
317 1.6 phil
318 1.6 phil if((dp->put)(edp, &ypkey, &ypdata, R_NOOVERWRITE) == -1)
319 1.6 phil error("put");
320 1.6 phil }
321 1.6 phil
322 1.1 cgd (void)(edp->close)(edp);
323 1.1 cgd
324 1.1 cgd /* Set master.passwd permissions, in case caller forgot. */
325 1.1 cgd (void)fchmod(fileno(fp), S_IRUSR|S_IWUSR);
326 1.1 cgd (void)fclose(fp);
327 1.1 cgd
328 1.1 cgd /* Install as the real password files. */
329 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
330 1.1 cgd mv(buf, _PATH_MP_DB);
331 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
332 1.1 cgd mv(buf, _PATH_SMP_DB);
333 1.1 cgd if (makeold) {
334 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
335 1.1 cgd mv(buf, _PATH_PASSWD);
336 1.1 cgd }
337 1.1 cgd /*
338 1.1 cgd * Move the master password LAST -- chpass(1), passwd(1) and vipw(8)
339 1.1 cgd * all use flock(2) on it to block other incarnations of themselves.
340 1.1 cgd * The rename means that everything is unlocked, as the original file
341 1.1 cgd * can no longer be accessed.
342 1.1 cgd */
343 1.1 cgd mv(pname, _PATH_MASTERPASSWD);
344 1.1 cgd exit(0);
345 1.1 cgd }
346 1.1 cgd
347 1.5 mycroft int
348 1.6 phil scan(fp, pw, flags)
349 1.1 cgd FILE *fp;
350 1.1 cgd struct passwd *pw;
351 1.6 phil int *flags;
352 1.1 cgd {
353 1.1 cgd static int lcnt;
354 1.1 cgd static char line[LINE_MAX];
355 1.1 cgd char *p;
356 1.1 cgd
357 1.1 cgd if (!fgets(line, sizeof(line), fp))
358 1.5 mycroft return (0);
359 1.1 cgd ++lcnt;
360 1.1 cgd /*
361 1.1 cgd * ``... if I swallow anything evil, put your fingers down my
362 1.1 cgd * throat...''
363 1.1 cgd * -- The Who
364 1.1 cgd */
365 1.5 mycroft if (!(p = strchr(line, '\n'))) {
366 1.5 mycroft warnx("line too long");
367 1.1 cgd goto fmt;
368 1.1 cgd
369 1.1 cgd }
370 1.1 cgd *p = '\0';
371 1.6 phil if (!pw_scan(line, pw, flags)) {
372 1.5 mycroft warnx("at line #%d", lcnt);
373 1.5 mycroft fmt: errno = EFTYPE; /* XXX */
374 1.1 cgd error(pname);
375 1.1 cgd }
376 1.5 mycroft
377 1.5 mycroft return (1);
378 1.1 cgd }
379 1.1 cgd
380 1.5 mycroft void
381 1.1 cgd mv(from, to)
382 1.1 cgd char *from, *to;
383 1.1 cgd {
384 1.1 cgd char buf[MAXPATHLEN];
385 1.1 cgd
386 1.1 cgd if (rename(from, to)) {
387 1.5 mycroft int sverrno = errno;
388 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s to %s", from, to);
389 1.1 cgd errno = sverrno;
390 1.1 cgd error(buf);
391 1.1 cgd }
392 1.1 cgd }
393 1.1 cgd
394 1.5 mycroft void
395 1.1 cgd error(name)
396 1.1 cgd char *name;
397 1.1 cgd {
398 1.5 mycroft
399 1.5 mycroft warn(name);
400 1.1 cgd cleanup();
401 1.1 cgd exit(1);
402 1.1 cgd }
403 1.1 cgd
404 1.5 mycroft void
405 1.1 cgd cleanup()
406 1.1 cgd {
407 1.1 cgd char buf[MAXPATHLEN];
408 1.1 cgd
409 1.1 cgd switch(clean) {
410 1.1 cgd case FILE_ORIG:
411 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.orig", pname);
412 1.1 cgd (void)unlink(buf);
413 1.1 cgd /* FALLTHROUGH */
414 1.1 cgd case FILE_SECURE:
415 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_SMP_DB);
416 1.1 cgd (void)unlink(buf);
417 1.1 cgd /* FALLTHROUGH */
418 1.1 cgd case FILE_INSECURE:
419 1.5 mycroft (void)snprintf(buf, sizeof(buf), "%s.tmp", _PATH_MP_DB);
420 1.1 cgd (void)unlink(buf);
421 1.1 cgd }
422 1.1 cgd }
423 1.1 cgd
424 1.5 mycroft void
425 1.1 cgd usage()
426 1.1 cgd {
427 1.5 mycroft
428 1.1 cgd (void)fprintf(stderr, "usage: pwd_mkdb [-p] file\n");
429 1.1 cgd exit(1);
430 1.1 cgd }
431