X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~mdw/git/tripe/blobdiff_plain/0ed0735f38c78e11cdf1c2b095ba754a92d2d201..a93aacce200e0d68b614d8bfb05d9cbeba850b12:/common/util.c diff --git a/common/util.c b/common/util.c index 4b32985c..78358b31 100644 --- a/common/util.c +++ b/common/util.c @@ -1,13 +1,11 @@ /* -*-c-*- - * - * $Id: util.c,v 1.3 2004/04/08 01:36:17 mdw Exp $ * * Utilities for the client and the server * * (c) 2001 Straylight/Edgeware */ -/*----- Licensing notice --------------------------------------------------* +/*----- Licensing notice --------------------------------------------------* * * This file is part of Trivial IP Encryption (TrIPE). * @@ -15,12 +13,12 @@ * it under the terms of the GNU General Public License as published by * the Free Software Foundation; either version 2 of the License, or * (at your option) any later version. - * + * * TrIPE is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU General Public License for more details. - * + * * You should have received a copy of the GNU General Public License * along with TrIPE; if not, write to the Free Software Foundation, * Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA. @@ -35,14 +33,15 @@ #include #include -#include + +#include +#include #include +#include #include "util.h" -#include - /*----- Main code ---------------------------------------------------------*/ /* --- @u_quotify@ --- * @@ -73,51 +72,85 @@ void u_quotify(dstr *d, const char *p) } } -/* --- @u_detach@ --- * +/* --- @u_getuser@ --- * * - * Arguments: --- + * Arguments: @const char *name@ = user name or id requested + * @gid_t *gg@ = where to store corresponding gid * - * Returns: --- + * Returns: Corresponding uid. * - * Use: Detaches from the current terminal and ensures it can never - * acquire a new one. Calls @fork@. + * Use: Resolves a user name into a uid. Dies on failure; suitable + * for use in argument parsing. */ -void u_detach(void) +uid_t u_getuser(const char *name, gid_t *gg) { -#ifdef TIOCNOTTY - { - int fd; - if ((fd = open("/dev/tty", O_RDONLY)) >= 0) { - ioctl(fd, TIOCNOTTY); - close(fd); - } - } -#endif - setsid(); - if (fork() > 0) - _exit(0); + struct passwd *pw; + char *p; + unsigned long i = strtoul(name, &p, 0); + + if (!*p) + pw = getpwuid(i); + else + pw = getpwnam(name); + if (!pw) + die(EXIT_FAILURE, "user `%s' not found", name); + if (gg && *gg == -1) + *gg = pw->pw_gid; + return (pw->pw_uid); +} + +/* --- @u_getgroup@ --- * + * + * Arguments: @const char *name@ = user name or id requested + * + * Returns: Corresponding gid. + * + * Use: Resolves a group name into a gid. Dies on failure; suitable + * for use in argument parsing. + */ + +gid_t u_getgroup(const char *name) +{ + struct group *gr; + char *p; + unsigned long i = strtoul(name, &p, 0); + + if (!*p) + gr = getgrgid(i); + else + gr = getgrnam(name); + if (!gr) + die(EXIT_FAILURE, "group `%s' not found", name); + return (gr->gr_gid); } -/* --- @u_daemon@ --- * +/* --- @u_setugid@ --- * * - * Arguments: --- + * Arguments: @uid_t u@ = user to set + * @gid_t g@ = group to set * - * Returns: Zero if OK, nonzero on failure. + * Returns: --- * - * Use: Becomes a daemon. + * Use: Sets user and group to the given values; aborts on failure. */ -int u_daemon(void) +void u_setugid(uid_t u, gid_t g) { - pid_t kid; - - if ((kid = fork()) < 0) - return (-1); - if (kid) - _exit(0); - u_detach(); - return (0); + uid_t cu = geteuid(); + + if (cu == 0 && g != (gid_t)-1) { + if (setgid(g) || (getuid() == 0 && setgroups(1, &g))) { + die(EXIT_FAILURE, "couldn't setgid to %u: %s", + (unsigned)g, strerror(errno)); + } + } + if (u != (uid_t)-1) { + if (setuid(u)) { + die(EXIT_FAILURE, "couldn't setuid to %u: %s", + (unsigned)u, strerror(errno)); + } + } } /*----- That's all, folks -------------------------------------------------*/