Roman Rakus 1f5ed6
--- bash-3.2/lib/readline/readline.c.audit	2008-01-18 13:06:25.000000000 +0100
Roman Rakus 1f5ed6
+++ bash-3.2/lib/readline/readline.c	2008-01-18 13:06:25.000000000 +0100
Roman Rakus 1f5ed6
@@ -55,6 +55,12 @@
Roman Rakus 1f5ed6
 extern int errno;
Roman Rakus 1f5ed6
 #endif /* !errno */
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
+#if defined (HAVE_DECL_AUDIT_USER_TTY)
Roman Rakus 1f5ed6
+#  include <sys/socket.h>
Roman Rakus 1f5ed6
+#  include <linux/audit.h>
Roman Rakus 1f5ed6
+#  include <linux/netlink.h>
Roman Rakus 1f5ed6
+#endif
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
 /* System-specific feature definitions and include files. */
Roman Rakus 1f5ed6
 #include "rldefs.h"
Roman Rakus 1f5ed6
 #include "rlmbutil.h"
Roman Rakus 1f5ed6
@@ -292,7 +298,47 @@
Roman Rakus 1f5ed6
   rl_visible_prompt_length = rl_expand_prompt (rl_prompt);
Roman Rakus 1f5ed6
   return 0;
Roman Rakus 1f5ed6
 }
Roman Rakus 1f5ed6
-  
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
+#if defined (HAVE_DECL_AUDIT_USER_TTY)
Roman Rakus 1f5ed6
+/* Report STRING to the audit system. */
Roman Rakus 1f5ed6
+static void
Roman Rakus 1f5ed6
+audit_tty (char *string)
Roman Rakus 1f5ed6
+{
Roman Rakus 1f5ed6
+  struct sockaddr_nl addr;
Roman Rakus 1f5ed6
+  struct msghdr msg;
Roman Rakus 1f5ed6
+  struct nlmsghdr nlm;
Roman Rakus 1f5ed6
+  struct iovec iov[2];
Roman Rakus 1f5ed6
+  size_t size;
Roman Rakus 1f5ed6
+  int fd;
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
+  size = strlen (string) + 1;
Roman Rakus 1f5ed6
+  fd = socket (AF_NETLINK, SOCK_RAW, NETLINK_AUDIT);
Roman Rakus 1f5ed6
+  if (fd < 0)
Roman Rakus 1f5ed6
+    return;
Roman Rakus 1f5ed6
+  nlm.nlmsg_len = NLMSG_LENGTH (size);
Roman Rakus 1f5ed6
+  nlm.nlmsg_type = AUDIT_USER_TTY;
Roman Rakus 1f5ed6
+  nlm.nlmsg_flags = NLM_F_REQUEST;
Roman Rakus 1f5ed6
+  nlm.nlmsg_seq = 0;
Roman Rakus 1f5ed6
+  nlm.nlmsg_pid = 0;
Roman Rakus 1f5ed6
+  iov[0].iov_base = &nlm;
Roman Rakus 1f5ed6
+  iov[0].iov_len = sizeof (nlm);
Roman Rakus 1f5ed6
+  iov[1].iov_base = string;
Roman Rakus 1f5ed6
+  iov[1].iov_len = size;
Roman Rakus 1f5ed6
+  addr.nl_family = AF_NETLINK;
Roman Rakus 1f5ed6
+  addr.nl_pid = 0;
Roman Rakus 1f5ed6
+  addr.nl_groups = 0;
Roman Rakus 1f5ed6
+  msg.msg_name = &addr;
Roman Rakus 1f5ed6
+  msg.msg_namelen = sizeof (addr);
Roman Rakus 1f5ed6
+  msg.msg_iov = iov;
Roman Rakus 1f5ed6
+  msg.msg_iovlen = 2;
Roman Rakus 1f5ed6
+  msg.msg_control = NULL;
Roman Rakus 1f5ed6
+  msg.msg_controllen = 0;
Roman Rakus 1f5ed6
+  msg.msg_flags = 0;
Roman Rakus 1f5ed6
+  (void)sendmsg (fd, &msg, 0);
Roman Rakus 1f5ed6
+  close (fd);
Roman Rakus 1f5ed6
+}
Roman Rakus 1f5ed6
+#endif
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
 /* Read a line of input.  Prompt with PROMPT.  An empty PROMPT means
Roman Rakus 1f5ed6
    none.  A return value of NULL means that EOF was encountered. */
Roman Rakus 1f5ed6
 char *
Roman Rakus 1f5ed6
@@ -326,6 +372,11 @@
Roman Rakus 1f5ed6
   rl_clear_signals ();
Roman Rakus 1f5ed6
 #endif
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
+#if defined (HAVE_DECL_AUDIT_USER_TTY)
Roman Rakus 1f5ed6
+  if (value != NULL)
Roman Rakus 1f5ed6
+    audit_tty (value);
Roman Rakus 1f5ed6
+#endif
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
   return (value);
Roman Rakus 1f5ed6
 }
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
--- bash-3.2/configure.in.audit	2008-01-18 13:06:25.000000000 +0100
Roman Rakus 1f5ed6
+++ bash-3.2/configure.in	2008-01-18 13:06:25.000000000 +0100
Roman Rakus 1f5ed6
@@ -871,6 +871,8 @@
Roman Rakus 1f5ed6
 BASH_SYS_PGRP_SYNC
Roman Rakus 1f5ed6
 BASH_SYS_SIGNAL_VINTAGE
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
+AC_CHECK_DECLS([AUDIT_USER_TTY],,, [[#include <linux/audit.h>]])
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
 dnl checking for the presence of certain library symbols
Roman Rakus 1f5ed6
 BASH_SYS_ERRLIST
Roman Rakus 1f5ed6
 BASH_SYS_SIGLIST
Roman Rakus 1f5ed6
--- bash-3.2/config.h.in.audit	2008-01-18 13:06:25.000000000 +0100
Roman Rakus 1f5ed6
+++ bash-3.2/config.h.in	2008-01-18 13:10:19.000000000 +0100
Roman Rakus 1f5ed6
@@ -1058,6 +1058,14 @@
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
 /* End additions for lib/intl */
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
+/* Additions for lib/readline */
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
+/* Define if you have <linux/audit.h> and it defines AUDIT_USER_TTY */
Roman Rakus 1f5ed6
+#undef HAVE_DECL_AUDIT_USER_TTY
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
+/* End additions for lib/readline */
Roman Rakus 1f5ed6
+
Roman Rakus 1f5ed6
 #include "config-bot.h"
Roman Rakus 1f5ed6
 
Roman Rakus 1f5ed6
 #endif /* _CONFIG_H_ */