2 * Copyright (c) 1997 - 2004 Kungliga Tekniska Högskolan
3 * (Royal Institute of Technology, Stockholm, Sweden).
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
17 * 3. Neither the name of the Institute nor the names of its contributors
18 * may be used to endorse or promote products derived from this software
19 * without specific prior written permission.
21 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
22 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
24 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
25 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
26 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
27 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
29 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
36 RCSID("$Id: hdb.c,v 1.61 2006/04/24 20:57:58 lha Exp $");
44 krb5_error_code (*create)(krb5_context, HDB **, const char *filename);
47 static struct hdb_method methods[] = {
48 #if HAVE_DB1 || HAVE_DB3
49 {"db:", hdb_db_create},
52 {"ndbm:", hdb_ndbm_create},
54 #if defined(OPENLDAP) && !defined(OPENLDAP_MODULE)
55 {"ldap:", hdb_ldap_create},
56 {"ldapi:", hdb_ldapi_create},
59 {"ldb:", hdb_ldb_create},
64 #if HAVE_DB1 || HAVE_DB3
65 static struct hdb_method dbmetod = {"", hdb_db_create };
66 #elif defined(HAVE_NDBM)
67 static struct hdb_method dbmetod = {"", hdb_ndbm_create };
72 hdb_next_enctype2key(krb5_context context,
79 for (k = *key ? (*key) + 1 : e->keys.val;
80 k < e->keys.val + e->keys.len;
82 if(k->key.keytype == enctype){
86 return KRB5_PROG_ETYPE_NOSUPP; /* XXX */
90 hdb_enctype2key(krb5_context context,
96 return hdb_next_enctype2key(context, e, enctype, key);
100 hdb_free_key(Key *key)
102 memset(key->key.keyvalue.data,
104 key->key.keyvalue.length);
111 hdb_lock(int fd, int operation)
115 for(i = 0; i < 3; i++){
116 code = flock(fd, (operation == HDB_RLOCK ? LOCK_SH : LOCK_EX) | LOCK_NB);
117 if(code == 0 || errno != EWOULDBLOCK)
123 if(errno == EWOULDBLOCK)
124 return HDB_ERR_DB_INUSE;
125 return HDB_ERR_CANT_LOCK_DB;
132 code = flock(fd, LOCK_UN);
134 return 4711 /* XXX */;
139 hdb_free_entry(krb5_context context, hdb_entry_ex *ent)
144 (*ent->free_entry)(context, ent);
146 for(i = 0; i < ent->entry.keys.len; ++i) {
147 Key *k = &ent->entry.keys.val[i];
149 memset (k->key.keyvalue.data, 0, k->key.keyvalue.length);
151 free_hdb_entry(&ent->entry);
155 hdb_foreach(krb5_context context,
158 hdb_foreach_func_t func,
163 ret = db->hdb_firstkey(context, db, flags, &entry);
165 ret = (*func)(context, db, &entry, data);
166 hdb_free_entry(context, &entry);
168 ret = db->hdb_nextkey(context, db, flags, &entry);
170 if(ret == HDB_ERR_NOENTRY)
176 hdb_check_db_format(krb5_context context, HDB *db)
180 krb5_error_code ret, ret2;
184 ret = db->hdb_lock(context, db, HDB_RLOCK);
188 tag.data = HDB_DB_FORMAT_ENTRY;
189 tag.length = strlen(tag.data);
190 ret = (*db->hdb__get)(context, db, tag, &version);
191 ret2 = db->hdb_unlock(context, db);
196 foo = sscanf(version.data, "%u", &ver);
197 krb5_data_free (&version);
199 return HDB_ERR_BADVERSION;
200 if(ver != HDB_DB_FORMAT)
201 return HDB_ERR_BADVERSION;
206 hdb_init_db(krb5_context context, HDB *db)
208 krb5_error_code ret, ret2;
213 ret = hdb_check_db_format(context, db);
214 if(ret != HDB_ERR_NOENTRY)
217 ret = db->hdb_lock(context, db, HDB_WLOCK);
221 tag.data = HDB_DB_FORMAT_ENTRY;
222 tag.length = strlen(tag.data);
223 snprintf(ver, sizeof(ver), "%u", HDB_DB_FORMAT);
225 version.length = strlen(version.data) + 1; /* zero terminated */
226 ret = (*db->hdb__put)(context, db, 0, tag, version);
227 ret2 = db->hdb_unlock(context, db);
236 * Load a dynamic backend from /usr/heimdal/lib/hdb_NAME.so,
237 * looking for the hdb_NAME_create symbol.
240 static const struct hdb_method *
241 find_dynamic_method (krb5_context context,
242 const char *filename,
245 static struct hdb_method method;
246 struct hdb_so_method *mso;
247 char *prefix, *path, *symbol;
252 p = strchr(filename, ':');
254 /* if no prefix, don't know what module to load, just ignore it */
259 *rest = filename + len + 1;
261 prefix = strndup(filename, len);
263 krb5_errx(context, 1, "out of memory");
265 if (asprintf(&path, LIBDIR "/hdb_%s.so", prefix) == -1)
266 krb5_errx(context, 1, "out of memory");
272 #define RTLD_GLOBAL 0
275 dl = dlopen(path, RTLD_NOW | RTLD_GLOBAL);
277 krb5_warnx(context, "error trying to load dynamic module %s: %s\n",
284 if (asprintf(&symbol, "hdb_%s_interface", prefix) == -1)
285 krb5_errx(context, 1, "out of memory");
287 mso = dlsym(dl, symbol);
289 krb5_warnx(context, "error finding symbol %s in %s: %s\n",
290 symbol, path, dlerror());
300 if (mso->version != HDB_INTERFACE_VERSION) {
302 "error wrong version in shared module %s "
303 "version: %d should have been %d\n",
304 prefix, mso->version, HDB_INTERFACE_VERSION);
310 if (mso->create == NULL) {
311 krb5_errx(context, 1,
312 "no entry point function in shared mod %s ",
319 method.create = mso->create;
320 method.prefix = prefix;
324 #endif /* HAVE_DLOPEN */
327 * find the relevant method for `filename', returning a pointer to the
329 * return NULL if there's no such method.
332 static const struct hdb_method *
333 find_method (const char *filename, const char **rest)
335 const struct hdb_method *h;
337 for (h = methods; h->prefix != NULL; ++h) {
338 if (strncmp (filename, h->prefix, strlen(h->prefix)) == 0) {
339 *rest = filename + strlen(h->prefix);
343 #if defined(HAVE_DB1) || defined(HAVE_DB3) || defined(HAVE_NDBM)
344 if (strncmp(filename, "/", 1) == 0
345 || strncmp(filename, "./", 2) == 0
346 || strncmp(filename, "../", 3) == 0)
357 hdb_list_builtin(krb5_context context, char **list)
359 const struct hdb_method *h;
363 for (h = methods; h->prefix != NULL; ++h) {
364 if (h->prefix[0] == '\0')
366 len += strlen(h->prefix) + 2;
372 krb5_set_error_string(context, "malloc: out of memory");
377 for (h = methods; h->prefix != NULL; ++h) {
379 strlcat(buf, ", ", len);
380 strlcat(buf, h->prefix, len);
387 hdb_create(krb5_context context, HDB **db, const char *filename)
389 const struct hdb_method *h;
390 const char *residual;
393 filename = HDB_DEFAULT_DB;
394 krb5_add_et_list(context, initialize_hdb_error_table_r);
395 h = find_method (filename, &residual);
398 h = find_dynamic_method (context, filename, &residual);
401 krb5_errx(context, 1, "No database support! (hdb_create(%s))", filename);
402 return (*h->create)(context, db, residual);