Blame hurd/setauth.c

Packit Service 82fcde
/* Copyright (C) 1991-2018 Free Software Foundation, Inc.
Packit Service 82fcde
   This file is part of the GNU C Library.
Packit Service 82fcde
Packit Service 82fcde
   The GNU C Library is free software; you can redistribute it and/or
Packit Service 82fcde
   modify it under the terms of the GNU Lesser General Public
Packit Service 82fcde
   License as published by the Free Software Foundation; either
Packit Service 82fcde
   version 2.1 of the License, or (at your option) any later version.
Packit Service 82fcde
Packit Service 82fcde
   The GNU C Library is distributed in the hope that it will be useful,
Packit Service 82fcde
   but WITHOUT ANY WARRANTY; without even the implied warranty of
Packit Service 82fcde
   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit Service 82fcde
   Lesser General Public License for more details.
Packit Service 82fcde
Packit Service 82fcde
   You should have received a copy of the GNU Lesser General Public
Packit Service 82fcde
   License along with the GNU C Library; if not, see
Packit Service 82fcde
   <http://www.gnu.org/licenses/>.  */
Packit Service 82fcde
Packit Service 82fcde
#include <hurd.h>
Packit Service 82fcde
#include <hurd/port.h>
Packit Service 82fcde
#include <hurd/id.h>
Packit Service 82fcde
#include <hurdlock.h>
Packit Service 82fcde
#include "set-hooks.h"
Packit Service 82fcde
Packit Service 82fcde
/* Things in the library which want to be run when the auth port changes.  */
Packit Service 82fcde
DEFINE_HOOK (_hurd_reauth_hook, (auth_t new_auth));
Packit Service 82fcde
Packit Service 82fcde
static unsigned int reauth_lock = LLL_INITIALIZER;
Packit Service 82fcde
Packit Service 82fcde
/* Set the auth port to NEW, and reauthenticate
Packit Service 82fcde
   everything used by the library.  */
Packit Service 82fcde
error_t
Packit Service 82fcde
_hurd_setauth (auth_t new)
Packit Service 82fcde
{
Packit Service 82fcde
  error_t err;
Packit Service 82fcde
  unsigned int d;
Packit Service 82fcde
  mach_port_t newport, ref;
Packit Service 82fcde
Packit Service 82fcde
  /* Give the new send right a user reference.
Packit Service 82fcde
     This is a good way to check that it is valid.  */
Packit Service 82fcde
  if (err = __mach_port_mod_refs (__mach_task_self (), new,
Packit Service 82fcde
				  MACH_PORT_RIGHT_SEND, 1))
Packit Service 82fcde
    return err;
Packit Service 82fcde
Packit Service 82fcde
  HURD_CRITICAL_BEGIN;
Packit Service 82fcde
Packit Service 82fcde
  /* We lock against another thread doing setauth.  Anyone who sets
Packit Service 82fcde
     _hurd_ports[INIT_PORT_AUTH] some other way is asking to lose.  */
Packit Service 82fcde
  __mutex_lock (&reauth_lock);
Packit Service 82fcde
Packit Service 82fcde
  /* Install the new port in the cell.  */
Packit Service 82fcde
  __mutex_lock (&_hurd_id.lock);
Packit Service 82fcde
  _hurd_port_set (&_hurd_ports[INIT_PORT_AUTH], new);
Packit Service 82fcde
  _hurd_id.valid = 0;
Packit Service 82fcde
  if (_hurd_id.rid_auth)
Packit Service 82fcde
    {
Packit Service 82fcde
      __mach_port_deallocate (__mach_task_self (), _hurd_id.rid_auth);
Packit Service 82fcde
      _hurd_id.rid_auth = MACH_PORT_NULL;
Packit Service 82fcde
    }
Packit Service 82fcde
  __mutex_unlock (&_hurd_id.lock);
Packit Service 82fcde
Packit Service 82fcde
  if (_hurd_init_dtable != NULL)
Packit Service 82fcde
    /* We just have the simple table we got at startup.
Packit Service 82fcde
       Otherwise, a reauth_hook in dtable.c takes care of this.  */
Packit Service 82fcde
    for (d = 0; d < _hurd_init_dtablesize; ++d)
Packit Service 82fcde
      if (_hurd_init_dtable[d] != MACH_PORT_NULL)
Packit Service 82fcde
	{
Packit Service 82fcde
	  mach_port_t new;
Packit Service 82fcde
	  ref = __mach_reply_port ();
Packit Service 82fcde
	  if (! __io_reauthenticate (_hurd_init_dtable[d],
Packit Service 82fcde
				     ref, MACH_MSG_TYPE_MAKE_SEND) &&
Packit Service 82fcde
	      ! HURD_PORT_USE (&_hurd_ports[INIT_PORT_AUTH],
Packit Service 82fcde
			       __auth_user_authenticate
Packit Service 82fcde
			       (port,
Packit Service 82fcde
				ref, MACH_MSG_TYPE_MAKE_SEND,
Packit Service 82fcde
				&new)))
Packit Service 82fcde
	    {
Packit Service 82fcde
	      __mach_port_deallocate (__mach_task_self (),
Packit Service 82fcde
				      _hurd_init_dtable[d]);
Packit Service 82fcde
	      _hurd_init_dtable[d] = new;
Packit Service 82fcde
	    }
Packit Service 82fcde
	  __mach_port_destroy (__mach_task_self (), ref);
Packit Service 82fcde
	}
Packit Service 82fcde
Packit Service 82fcde
  ref = __mach_reply_port ();
Packit Service 82fcde
  if (__USEPORT (CRDIR,
Packit Service 82fcde
		 ! __io_reauthenticate (port,
Packit Service 82fcde
					ref, MACH_MSG_TYPE_MAKE_SEND) &&
Packit Service 82fcde
		 ! __auth_user_authenticate (new,
Packit Service 82fcde
					     ref, MACH_MSG_TYPE_MAKE_SEND,
Packit Service 82fcde
					     &newport)))
Packit Service 82fcde
    _hurd_port_set (&_hurd_ports[INIT_PORT_CRDIR], newport);
Packit Service 82fcde
  __mach_port_destroy (__mach_task_self (), ref);
Packit Service 82fcde
Packit Service 82fcde
  ref = __mach_reply_port ();
Packit Service 82fcde
  if (__USEPORT (CWDIR,
Packit Service 82fcde
		 ! __io_reauthenticate (port,
Packit Service 82fcde
					ref, MACH_MSG_TYPE_MAKE_SEND) &&
Packit Service 82fcde
		 ! __auth_user_authenticate (new,
Packit Service 82fcde
					     ref, MACH_MSG_TYPE_MAKE_SEND,
Packit Service 82fcde
					     &newport)))
Packit Service 82fcde
    _hurd_port_set (&_hurd_ports[INIT_PORT_CWDIR], newport);
Packit Service 82fcde
  __mach_port_destroy (__mach_task_self (), ref);
Packit Service 82fcde
Packit Service 82fcde
  /* Run things which want to do reauthorization stuff.  */
Packit Service 82fcde
  RUN_HOOK (_hurd_reauth_hook, (new));
Packit Service 82fcde
Packit Service 82fcde
  __mutex_unlock (&reauth_lock);
Packit Service 82fcde
Packit Service 82fcde
  HURD_CRITICAL_END;
Packit Service 82fcde
Packit Service 82fcde
  return 0;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
int
Packit Service 82fcde
__setauth (auth_t new)
Packit Service 82fcde
{
Packit Service 82fcde
  error_t err = _hurd_setauth (new);
Packit Service 82fcde
  return err ? __hurd_fail (err) : 0;
Packit Service 82fcde
}
Packit Service 82fcde
Packit Service 82fcde
weak_alias (__setauth, setauth)