5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry/*
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry * Copyright (c) 1999, 2010, Oracle and/or its affiliates. All rights reserved.
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry */
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb/*
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * lib/gssapi/krb5/export_name.c
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * Copyright 1997 by the Massachusetts Institute of Technology.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * All Rights Reserved.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * Export of this software from the United States of America may
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * require a specific license from the United States Government.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * It is the responsibility of any person or organization contemplating
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * export to obtain such a license before exporting.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * WITHIN THAT CONSTRAINT, permission to use, copy, modify, and
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * distribute this software and its documentation for any purpose and
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * without fee is hereby granted, provided that the above copyright
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * notice appear in all copies and that both that copyright notice and
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * this permission notice appear in supporting documentation, and that
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * the name of M.I.T. not be used in advertising or publicity pertaining
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * to distribution of the software without specific, written prior
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * permission. Furthermore if you modify this software you must label
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * your software as modified software and not distribute it in such a
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * fashion that it might be confused with the original M.I.T. software.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * M.I.T. makes no representations about the suitability of
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * this software for any purpose. It is provided "as is" without express
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb * or implied warranty.
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb */
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb#include "gssapiP_krb5.h"
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtbOM_uint32 krb5_gss_export_name(OM_uint32 *minor_status,
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb const gss_name_t input_name,
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb gss_buffer_t exported_name)
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb{
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb krb5_context context;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb krb5_error_code code;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb size_t length;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb char *str, *cp;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (minor_status)
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *minor_status = 0;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb code = krb5_gss_init_context(&context);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (code) {
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (minor_status)
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *minor_status = code;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb return GSS_S_FAILURE;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb }
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb exported_name->length = 0;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb exported_name->value = NULL;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (! kg_validate_name(input_name)) {
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry /* Solaris Kerberos: spruce-up the err msg */
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry krb5_principal princ = (krb5_principal) input_name;
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry char *s_name = NULL;
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry int kret = krb5_unparse_name(context, princ, &s_name);
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry if (minor_status)
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry *minor_status = (OM_uint32) G_VALIDATE_FAILED;
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry if (minor_status && kret == 0) {
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry krb5_set_error_message(context, *minor_status,
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry "Input name principal '%s' is invalid (kg_validate_name()) for export_name",
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry s_name);
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry save_error_info(*minor_status, context);
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry krb5_free_unparsed_name(context, s_name);
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry }
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry krb5_free_context(context);
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry return(GSS_S_CALL_BAD_STRUCTURE|GSS_S_BAD_NAME);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb }
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if ((code = krb5_unparse_name(context, (krb5_principal) input_name,
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb &str))) {
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (minor_status)
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *minor_status = code;
5e01956f3000408c2a2c5a08c8d0acf2c2a9d8eeGlenn Barry save_error_info((OM_uint32)code, context);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb krb5_free_context(context);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb return(GSS_S_FAILURE);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb }
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb krb5_free_context(context);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb length = strlen(str);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb exported_name->length = 10 + length + gss_mech_krb5->length;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb exported_name->value = malloc(exported_name->length);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (!exported_name->value) {
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb free(str);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb if (minor_status)
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *minor_status = ENOMEM;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb return(GSS_S_FAILURE);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb }
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb cp = exported_name->value;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb /* Note: we assume the OID will be less than 128 bytes... */
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = 0x04; *cp++ = 0x01;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = (gss_mech_krb5->length+2) >> 8;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = (gss_mech_krb5->length+2) & 0xFF;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = 0x06;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = (gss_mech_krb5->length) & 0xFF;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb memcpy(cp, gss_mech_krb5->elements, gss_mech_krb5->length);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb cp += gss_mech_krb5->length;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = length >> 24;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = length >> 16;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = length >> 8;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb *cp++ = length & 0xFF;
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb memcpy(cp, str, length);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb free(str);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb return(GSS_S_COMPLETE);
ab9b2e153c3a9a2b1141fefa87925b1a9beb1236gtb}