Fix and test python scripts and kerberos
[ab/samba.git/.git] / source4 / auth / auth_simple.c
1 /* 
2    Unix SMB/CIFS implementation.
3
4    auth functions
5
6    Copyright (C) Simo Sorce 2005
7    Copyright (C) Andrew Tridgell 2005
8    Copyright (C) Andrew Bartlett 2005
9    
10    This program is free software; you can redistribute it and/or modify
11    it under the terms of the GNU General Public License as published by
12    the Free Software Foundation; either version 3 of the License, or
13    (at your option) any later version.
14    
15    This program is distributed in the hope that it will be useful,
16    but WITHOUT ANY WARRANTY; without even the implied warranty of
17    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
18    GNU General Public License for more details.
19    
20    You should have received a copy of the GNU General Public License
21    along with this program.  If not, see <http://www.gnu.org/licenses/>.
22 */
23
24 #include "includes.h"
25 #include "auth/auth.h"
26 #include "lib/events/events.h"
27 #include "param/param.h"
28
29 /*
30  It's allowed to pass NULL as session_info,
31  when the caller doesn't need a session_info
32 */
33 _PUBLIC_ NTSTATUS authenticate_username_pw(TALLOC_CTX *mem_ctx,
34                                            struct event_context *ev,
35                                            struct messaging_context *msg,
36                                            struct loadparm_context *lp_ctx,
37                                            const char *nt4_domain,
38                                            const char *nt4_username,
39                                            const char *password,
40                                            struct auth_session_info **session_info) 
41 {
42         struct auth_context *auth_context;
43         struct auth_usersupplied_info *user_info;
44         struct auth_serversupplied_info *server_info;
45         NTSTATUS nt_status;
46         TALLOC_CTX *tmp_ctx = talloc_new(mem_ctx);
47
48         if (!tmp_ctx) {
49                 return NT_STATUS_NO_MEMORY;
50         }
51
52         nt_status = auth_context_create(tmp_ctx, 
53                                         ev, msg,
54                                         lp_ctx,
55                                         &auth_context);
56         if (!NT_STATUS_IS_OK(nt_status)) {
57                 talloc_free(tmp_ctx);
58                 return nt_status;
59         }
60
61         user_info = talloc(tmp_ctx, struct auth_usersupplied_info);
62         if (!user_info) {
63                 talloc_free(tmp_ctx);
64                 return NT_STATUS_NO_MEMORY;
65         }
66
67         user_info->mapped_state = true;
68         user_info->client.account_name = nt4_username;
69         user_info->mapped.account_name = nt4_username;
70         user_info->client.domain_name = nt4_domain;
71         user_info->mapped.domain_name = nt4_domain;
72
73         user_info->workstation_name = NULL;
74
75         user_info->remote_host = NULL;
76
77         user_info->password_state = AUTH_PASSWORD_PLAIN;
78         user_info->password.plaintext = talloc_strdup(user_info, password);
79
80         user_info->flags = USER_INFO_CASE_INSENSITIVE_USERNAME |
81                 USER_INFO_DONT_CHECK_UNIX_ACCOUNT;
82
83         user_info->logon_parameters = 0;
84
85         nt_status = auth_check_password(auth_context, tmp_ctx, user_info, &server_info);
86         if (!NT_STATUS_IS_OK(nt_status)) {
87                 talloc_free(tmp_ctx);
88                 return nt_status;
89         }
90
91         if (session_info) {
92                 nt_status = auth_generate_session_info(tmp_ctx, lp_ctx, server_info, session_info);
93
94                 if (NT_STATUS_IS_OK(nt_status)) {
95                         talloc_steal(mem_ctx, *session_info);
96                 }
97         }
98
99         talloc_free(tmp_ctx);
100         return nt_status;
101 }
102