Blame nslcd/ether.c

Packit 6bd9ab
/*
Packit 6bd9ab
   ether.c - ethernet address entry lookup routines
Packit 6bd9ab
   Parts of this file were part of the nss_ldap library (as ldap-ethers.c)
Packit 6bd9ab
   which has been forked into the nss-pam-ldapd library.
Packit 6bd9ab
Packit 6bd9ab
   Copyright (C) 1997-2005 Luke Howard
Packit 6bd9ab
   Copyright (C) 2006 West Consulting
Packit 6bd9ab
   Copyright (C) 2006-2017 Arthur de Jong
Packit 6bd9ab
Packit 6bd9ab
   This library is free software; you can redistribute it and/or
Packit 6bd9ab
   modify it under the terms of the GNU Lesser General Public
Packit 6bd9ab
   License as published by the Free Software Foundation; either
Packit 6bd9ab
   version 2.1 of the License, or (at your option) any later version.
Packit 6bd9ab
Packit 6bd9ab
   This library is distributed in the hope that it will be useful,
Packit 6bd9ab
   but WITHOUT ANY WARRANTY; without even the implied warranty of
Packit 6bd9ab
   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
Packit 6bd9ab
   Lesser General Public License for more details.
Packit 6bd9ab
Packit 6bd9ab
   You should have received a copy of the GNU Lesser General Public
Packit 6bd9ab
   License along with this library; if not, write to the Free Software
Packit 6bd9ab
   Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
Packit 6bd9ab
   02110-1301 USA
Packit 6bd9ab
*/
Packit 6bd9ab
Packit 6bd9ab
#include "config.h"
Packit 6bd9ab
Packit 6bd9ab
#include <stdio.h>
Packit 6bd9ab
#include <stdlib.h>
Packit 6bd9ab
#include <string.h>
Packit 6bd9ab
#ifdef HAVE_STDINT_H
Packit 6bd9ab
#include <stdint.h>
Packit 6bd9ab
#endif /* HAVE_STDINT_H */
Packit 6bd9ab
Packit 6bd9ab
#include "common.h"
Packit 6bd9ab
#include "log.h"
Packit 6bd9ab
#include "myldap.h"
Packit 6bd9ab
#include "cfg.h"
Packit 6bd9ab
#include "attmap.h"
Packit 6bd9ab
#include "compat/ether.h"
Packit 6bd9ab
Packit 6bd9ab
/* ( nisSchema.2.11 NAME 'ieee802Device' SUP top AUXILIARY
Packit 6bd9ab
 *   DESC 'A device with a MAC address; device SHOULD be
Packit 6bd9ab
 *         used as a structural class'
Packit 6bd9ab
 *   MAY macAddress )
Packit 6bd9ab
 */
Packit 6bd9ab
Packit 6bd9ab
/* the search base for searches */
Packit 6bd9ab
const char *ether_bases[NSS_LDAP_CONFIG_MAX_BASES] = { NULL };
Packit 6bd9ab
Packit 6bd9ab
/* the search scope for searches */
Packit 6bd9ab
int ether_scope = LDAP_SCOPE_DEFAULT;
Packit 6bd9ab
Packit 6bd9ab
/* the basic search filter for searches */
Packit 6bd9ab
const char *ether_filter = "(objectClass=ieee802Device)";
Packit 6bd9ab
Packit 6bd9ab
/* the attributes to request with searches */
Packit 6bd9ab
const char *attmap_ether_cn         = "cn";
Packit 6bd9ab
const char *attmap_ether_macAddress = "macAddress";
Packit 6bd9ab
Packit 6bd9ab
/* the attribute list to request with searches */
Packit 6bd9ab
static const char *ether_attrs[3];
Packit 6bd9ab
Packit 6bd9ab
/* create a search filter for searching an ethernet address
Packit 6bd9ab
   by name, return -1 on errors */
Packit 6bd9ab
static int mkfilter_ether_byname(const char *name,
Packit 6bd9ab
                                 char *buffer, size_t buflen)
Packit 6bd9ab
{
Packit 6bd9ab
  char safename[BUFLEN_HOSTNAME];
Packit 6bd9ab
  /* escape attribute */
Packit 6bd9ab
  if (myldap_escape(name, safename, sizeof(safename)))
Packit 6bd9ab
  {
Packit 6bd9ab
    log_log(LOG_ERR, "mkfilter_ether_byname(): safename buffer too small");
Packit 6bd9ab
    return -1;
Packit 6bd9ab
  }
Packit 6bd9ab
  /* build filter */
Packit 6bd9ab
  return mysnprintf(buffer, buflen, "(&%s(%s=%s))",
Packit 6bd9ab
                    ether_filter, attmap_ether_cn, safename);
Packit 6bd9ab
}
Packit 6bd9ab
Packit 6bd9ab
static void my_ether_ntoa(const uint8_t *addr, char *buffer, int compact)
Packit 6bd9ab
{
Packit 6bd9ab
  int i;
Packit 6bd9ab
  for (i = 0; i < 6; i++)
Packit 6bd9ab
  {
Packit 6bd9ab
    if (i > 0)
Packit 6bd9ab
      *buffer++ = ':';
Packit 6bd9ab
    buffer += sprintf(buffer, compact ? "%x" : "%02x", addr[i]);
Packit 6bd9ab
  }
Packit 6bd9ab
  *buffer++ = '\0';
Packit 6bd9ab
}
Packit 6bd9ab
Packit 6bd9ab
static int mkfilter_ether_byether(const struct ether_addr *addr,
Packit 6bd9ab
                                  char *buffer, size_t buflen)
Packit 6bd9ab
{
Packit 6bd9ab
  char addrstr1[20], addrstr2[20];
Packit 6bd9ab
  my_ether_ntoa((const uint8_t *)addr, addrstr1, 1);
Packit 6bd9ab
  my_ether_ntoa((const uint8_t *)addr, addrstr2, 0);
Packit 6bd9ab
  /* there should be no characters that need escaping */
Packit 6bd9ab
  return mysnprintf(buffer, buflen, "(&%s(|(%s=%s)(%s=%s)))", ether_filter,
Packit 6bd9ab
                    attmap_ether_macAddress, addrstr1,
Packit 6bd9ab
                    attmap_ether_macAddress, addrstr2);
Packit 6bd9ab
}
Packit 6bd9ab
Packit 6bd9ab
void ether_init(void)
Packit 6bd9ab
{
Packit 6bd9ab
  int i;
Packit 6bd9ab
  /* set up search bases */
Packit 6bd9ab
  if (ether_bases[0] == NULL)
Packit 6bd9ab
    for (i = 0; i < NSS_LDAP_CONFIG_MAX_BASES; i++)
Packit 6bd9ab
      ether_bases[i] = nslcd_cfg->bases[i];
Packit 6bd9ab
  /* set up scope */
Packit 6bd9ab
  if (ether_scope == LDAP_SCOPE_DEFAULT)
Packit 6bd9ab
    ether_scope = nslcd_cfg->scope;
Packit 6bd9ab
  /* set up attribute list */
Packit 6bd9ab
  ether_attrs[0] = attmap_ether_cn;
Packit 6bd9ab
  ether_attrs[1] = attmap_ether_macAddress;
Packit 6bd9ab
  ether_attrs[2] = NULL;
Packit 6bd9ab
}
Packit 6bd9ab
Packit 6bd9ab
/* TODO: check for errors in aton() */
Packit 6bd9ab
#define WRITE_ETHER(fp, addr)                                               \
Packit 6bd9ab
  ether_aton_r(addr, &tmpaddr);                                             \
Packit 6bd9ab
  WRITE(fp, &tmpaddr, sizeof(uint8_t[6]));
Packit 6bd9ab
Packit 6bd9ab
static int write_ether(TFILE *fp, MYLDAP_ENTRY *entry,
Packit 6bd9ab
                       const char *reqname, const char *reqether)
Packit 6bd9ab
{
Packit 6bd9ab
  int32_t tmpint32;
Packit 6bd9ab
  struct ether_addr tmpaddr;
Packit 6bd9ab
  const char *tmparr[2];
Packit 6bd9ab
  const char **names, **ethers;
Packit 6bd9ab
  int i, j;
Packit 6bd9ab
  /* get the name of the ether entry */
Packit 6bd9ab
  names = myldap_get_values(entry, attmap_ether_cn);
Packit 6bd9ab
  if ((names == NULL) || (names[0] == NULL))
Packit 6bd9ab
  {
Packit 6bd9ab
    log_log(LOG_WARNING, "%s: %s: missing",
Packit 6bd9ab
            myldap_get_dn(entry), attmap_ether_cn);
Packit 6bd9ab
    return 0;
Packit 6bd9ab
  }
Packit 6bd9ab
  /* get the addresses */
Packit 6bd9ab
  if (reqether != NULL)
Packit 6bd9ab
  {
Packit 6bd9ab
    ethers = tmparr;
Packit 6bd9ab
    ethers[0] = reqether;
Packit 6bd9ab
    ethers[1] = NULL;
Packit 6bd9ab
  }
Packit 6bd9ab
  else
Packit 6bd9ab
  {
Packit 6bd9ab
    ethers = myldap_get_values(entry, attmap_ether_macAddress);
Packit 6bd9ab
    if ((ethers == NULL) || (ethers[0] == NULL))
Packit 6bd9ab
    {
Packit 6bd9ab
      log_log(LOG_WARNING, "%s: %s: missing",
Packit 6bd9ab
              myldap_get_dn(entry), attmap_ether_macAddress);
Packit 6bd9ab
      return 0;
Packit 6bd9ab
    }
Packit 6bd9ab
    /* TODO: move parsing of addresses up here */
Packit 6bd9ab
  }
Packit 6bd9ab
  /* write entries for all names and addresses */
Packit 6bd9ab
  for (i = 0; names[i] != NULL; i++)
Packit 6bd9ab
    if ((reqname == NULL) || (strcasecmp(reqname, names[i]) == 0))
Packit 6bd9ab
      for (j = 0; ethers[j] != NULL; j++)
Packit 6bd9ab
      {
Packit 6bd9ab
        WRITE_INT32(fp, NSLCD_RESULT_BEGIN);
Packit 6bd9ab
        WRITE_STRING(fp, names[i]);
Packit 6bd9ab
        WRITE_ETHER(fp, ethers[j]);
Packit 6bd9ab
      }
Packit 6bd9ab
  return 0;
Packit 6bd9ab
}
Packit 6bd9ab
Packit 6bd9ab
NSLCD_HANDLE(
Packit 6bd9ab
  ether, byname, NSLCD_ACTION_ETHER_BYNAME,
Packit 6bd9ab
  char name[BUFLEN_HOSTNAME];
Packit 6bd9ab
  char filter[BUFLEN_FILTER];
Packit 6bd9ab
  READ_STRING(fp, name);
Packit 6bd9ab
  log_setrequest("ether=\"%s\"", name);,
Packit 6bd9ab
  mkfilter_ether_byname(name, filter, sizeof(filter)),
Packit 6bd9ab
  write_ether(fp, entry, name, NULL)
Packit 6bd9ab
)
Packit 6bd9ab
Packit 6bd9ab
NSLCD_HANDLE(
Packit 6bd9ab
  ether, byether, NSLCD_ACTION_ETHER_BYETHER,
Packit 6bd9ab
  struct ether_addr addr;
Packit 6bd9ab
  char addrstr[20];
Packit 6bd9ab
  char filter[BUFLEN_FILTER];
Packit 6bd9ab
  READ(fp, &addr, sizeof(uint8_t[6]));
Packit 6bd9ab
  my_ether_ntoa((uint8_t *)&addr, addrstr, 1);
Packit 6bd9ab
  log_setrequest("ether=%s", addrstr);,
Packit 6bd9ab
  mkfilter_ether_byether(&addr, filter, sizeof(filter)),
Packit 6bd9ab
  write_ether(fp, entry, NULL, addrstr)
Packit 6bd9ab
)
Packit 6bd9ab
Packit 6bd9ab
NSLCD_HANDLE(
Packit 6bd9ab
  ether, all, NSLCD_ACTION_ETHER_ALL,
Packit 6bd9ab
  const char *filter;
Packit 6bd9ab
  log_setrequest("ether(all)");,
Packit 6bd9ab
  (filter = ether_filter, 0),
Packit 6bd9ab
  write_ether(fp, entry, NULL, NULL)
Packit 6bd9ab
)