Blame src/fcontexts_file.c

Packit 366192
/* Copyright (C) 2005 Red Hat, Inc. */
Packit 366192
Packit 366192
struct semanage_fcontext;
Packit 366192
struct semanage_fcontext_key;
Packit 366192
typedef struct semanage_fcontext record_t;
Packit 366192
typedef struct semanage_fcontext_key record_key_t;
Packit 366192
#define DBASE_RECORD_DEFINED
Packit 366192
Packit 366192
struct dbase_file;
Packit 366192
typedef struct dbase_file dbase_t;
Packit 366192
#define DBASE_DEFINED
Packit 366192
Packit 366192
#include <stdlib.h>
Packit 366192
#include <stdio.h>
Packit 366192
#include <strings.h>
Packit 366192
#include <semanage/handle.h>
Packit 366192
#include "fcontext_internal.h"
Packit 366192
#include "context_internal.h"
Packit 366192
#include "database_file.h"
Packit 366192
#include "parse_utils.h"
Packit 366192
#include "debug.h"
Packit 366192
Packit 366192
static const char *type_str(int type)
Packit 366192
{
Packit 366192
	switch (type) {
Packit 366192
	default:
Packit 366192
	case SEMANAGE_FCONTEXT_ALL:
Packit 366192
		return "  ";
Packit 366192
	case SEMANAGE_FCONTEXT_REG:
Packit 366192
		return "--";
Packit 366192
	case SEMANAGE_FCONTEXT_DIR:
Packit 366192
		return "-d";
Packit 366192
	case SEMANAGE_FCONTEXT_CHAR:
Packit 366192
		return "-c";
Packit 366192
	case SEMANAGE_FCONTEXT_BLOCK:
Packit 366192
		return "-b";
Packit 366192
	case SEMANAGE_FCONTEXT_SOCK:
Packit 366192
		return "-s";
Packit 366192
	case SEMANAGE_FCONTEXT_LINK:
Packit 366192
		return "-l";
Packit 366192
	case SEMANAGE_FCONTEXT_PIPE:
Packit 366192
		return "-p";
Packit 366192
	}
Packit 366192
}
Packit 366192
Packit 366192
static int fcontext_print(semanage_handle_t * handle,
Packit 366192
			  semanage_fcontext_t * fcontext, FILE * str)
Packit 366192
{
Packit 366192
Packit 366192
	char *con_str = NULL;
Packit 366192
Packit 366192
	const char *expr = semanage_fcontext_get_expr(fcontext);
Packit 366192
	int type = semanage_fcontext_get_type(fcontext);
Packit 366192
	const char *print_str = type_str(type);
Packit 366192
	const char *tstr = semanage_fcontext_get_type_str(type);
Packit 366192
	semanage_context_t *con = semanage_fcontext_get_con(fcontext);
Packit 366192
Packit 366192
	if (fprintf(str, "%s %s ", expr, print_str) < 0)
Packit 366192
		goto err;
Packit 366192
Packit 366192
	if (con != NULL) {
Packit 366192
		if (semanage_context_to_string(handle, con, &con_str) < 0)
Packit 366192
			goto err;
Packit 366192
		if (fprintf(str, "%s\n", con_str) < 0)
Packit 366192
			goto err;
Packit 366192
		free(con_str);
Packit 366192
		con_str = NULL;
Packit 366192
	} else {
Packit 366192
		if (fprintf(str, "<<none>>\n") < 0)
Packit 366192
			goto err;
Packit 366192
	}
Packit 366192
	return STATUS_SUCCESS;
Packit 366192
Packit 366192
      err:
Packit 366192
	ERR(handle, "could not print file context for "
Packit 366192
	    "%s (%s) to stream", expr, tstr);
Packit 366192
	free(con_str);
Packit 366192
	return STATUS_ERR;
Packit 366192
}
Packit 366192
Packit 366192
static int fcontext_parse(semanage_handle_t * handle,
Packit 366192
			  parse_info_t * info, semanage_fcontext_t * fcontext)
Packit 366192
{
Packit 366192
Packit 366192
	char *str = NULL;
Packit 366192
	semanage_context_t *con = NULL;
Packit 366192
Packit 366192
	if (parse_skip_space(handle, info) < 0)
Packit 366192
		goto err;
Packit 366192
	if (!info->ptr)
Packit 366192
		goto last;
Packit 366192
Packit 366192
	/* Regexp */
Packit 366192
	if (parse_fetch_string(handle, info, &str, ' ') < 0)
Packit 366192
		goto err;
Packit 366192
	if (semanage_fcontext_set_expr(handle, fcontext, str) < 0)
Packit 366192
		goto err;
Packit 366192
	free(str);
Packit 366192
	str = NULL;
Packit 366192
Packit 366192
	/* Type */
Packit 366192
	if (parse_assert_space(handle, info) < 0)
Packit 366192
		goto err;
Packit 366192
	if (parse_fetch_string(handle, info, &str, ' ') < 0)
Packit 366192
		goto err;
Packit 366192
	if (!strcasecmp(str, "-s"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_SOCK);
Packit 366192
	else if (!strcasecmp(str, "-p"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_PIPE);
Packit 366192
	else if (!strcasecmp(str, "-b"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_BLOCK);
Packit 366192
	else if (!strcasecmp(str, "-l"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_LINK);
Packit 366192
	else if (!strcasecmp(str, "-c"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_CHAR);
Packit 366192
	else if (!strcasecmp(str, "-d"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_DIR);
Packit 366192
	else if (!strcasecmp(str, "--"))
Packit 366192
		semanage_fcontext_set_type(fcontext, SEMANAGE_FCONTEXT_REG);
Packit 366192
	else
Packit 366192
		goto process_context;
Packit 366192
	free(str);
Packit 366192
	str = NULL;
Packit 366192
Packit 366192
	/* Context */
Packit 366192
	if (parse_assert_space(handle, info) < 0)
Packit 366192
		goto err;
Packit 366192
	if (parse_fetch_string(handle, info, &str, ' ') < 0)
Packit 366192
		goto err;
Packit 366192
Packit 366192
      process_context:
Packit 366192
	if (semanage_context_from_string(handle, str, &con) < 0) {
Packit 366192
		ERR(handle, "invalid security context \"%s\" (%s: %u)\n%s",
Packit 366192
		    str, info->filename, info->lineno, info->orig_line);
Packit 366192
		goto err;
Packit 366192
	}
Packit 366192
	free(str);
Packit 366192
	str = NULL;
Packit 366192
Packit 366192
	if (con && semanage_fcontext_set_con(handle, fcontext, con) < 0)
Packit 366192
		goto err;
Packit 366192
Packit 366192
	if (parse_assert_space(handle, info) < 0)
Packit 366192
		goto err;
Packit 366192
Packit 366192
	semanage_context_free(con);
Packit 366192
	return STATUS_SUCCESS;
Packit 366192
Packit 366192
      last:
Packit 366192
	parse_dispose_line(info);
Packit 366192
	return STATUS_NODATA;
Packit 366192
Packit 366192
      err:
Packit 366192
	ERR(handle, "could not parse file context record");
Packit 366192
	free(str);
Packit 366192
	semanage_context_free(con);
Packit 366192
	parse_dispose_line(info);
Packit 366192
	return STATUS_ERR;
Packit 366192
}
Packit 366192
Packit 366192
/* FCONTEXT RECORD: FILE extension: method table */
Packit 366192
record_file_table_t SEMANAGE_FCONTEXT_FILE_RTABLE = {
Packit 366192
	.parse = fcontext_parse,
Packit 366192
	.print = fcontext_print,
Packit 366192
};
Packit 366192
Packit 366192
int fcontext_file_dbase_init(semanage_handle_t * handle,
Packit 366192
			     const char *path_ro,
Packit 366192
			     const char *path_rw,
Packit 366192
			     dbase_config_t * dconfig)
Packit 366192
{
Packit 366192
Packit 366192
	if (dbase_file_init(handle,
Packit 366192
			    path_ro,
Packit 366192
			    path_rw,
Packit 366192
			    &SEMANAGE_FCONTEXT_RTABLE,
Packit 366192
			    &SEMANAGE_FCONTEXT_FILE_RTABLE,
Packit 366192
			    &dconfig->dbase) < 0)
Packit 366192
		return STATUS_ERR;
Packit 366192
Packit 366192
	dconfig->dtable = &SEMANAGE_FILE_DTABLE;
Packit 366192
	return STATUS_SUCCESS;
Packit 366192
}
Packit 366192
Packit 366192
void fcontext_file_dbase_release(dbase_config_t * dconfig)
Packit 366192
{
Packit 366192
Packit 366192
	dbase_file_release(dconfig->dbase);
Packit 366192
}