1 /*-
2  * Copyright (c) 2013 The FreeBSD Foundation
3  * All rights reserved.
4  *
5  * This software was developed by Pawel Jakub Dawidek under sponsorship from
6  * the FreeBSD Foundation.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  * 1. Redistributions of source code must retain the above copyright
12  *    notice, this list of conditions and the following disclaimer.
13  * 2. Redistributions in binary form must reproduce the above copyright
14  *    notice, this list of conditions and the following disclaimer in the
15  *    documentation and/or other materials provided with the distribution.
16  *
17  * THIS SOFTWARE IS PROVIDED BY THE AUTHORS AND CONTRIBUTORS ``AS IS'' AND
18  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
19  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
20  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHORS OR CONTRIBUTORS BE LIABLE
21  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
22  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
23  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
25  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
26  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
27  * SUCH DAMAGE.
28  *
29  * $FreeBSD$
30  */
31 
32 #ifndef	_CAP_PWD_H_
33 #define	_CAP_PWD_H_
34 
35 #ifdef HAVE_CASPER
36 #define WITH_CASPER
37 #endif
38 
39 #include <sys/cdefs.h>
40 
41 #ifdef WITH_CASPER
42 __BEGIN_DECLS
43 
44 struct passwd *cap_getpwent(cap_channel_t *chan);
45 struct passwd *cap_getpwnam(cap_channel_t *chan, const char *login);
46 struct passwd *cap_getpwuid(cap_channel_t *chan, uid_t uid);
47 
48 int cap_getpwent_r(cap_channel_t *chan, struct passwd *pwd, char *buffer,
49     size_t bufsize, struct passwd **result);
50 int cap_getpwnam_r(cap_channel_t *chan, const char *name, struct passwd *pwd,
51     char *buffer, size_t bufsize, struct passwd **result);
52 int cap_getpwuid_r(cap_channel_t *chan, uid_t uid, struct passwd *pwd,
53     char *buffer, size_t bufsize, struct passwd **result);
54 
55 int cap_setpassent(cap_channel_t *chan, int stayopen);
56 void cap_setpwent(cap_channel_t *chan);
57 void cap_endpwent(cap_channel_t *chan);
58 
59 int cap_pwd_limit_cmds(cap_channel_t *chan, const char * const *cmds,
60     size_t ncmds);
61 int cap_pwd_limit_fields(cap_channel_t *chan, const char * const *fields,
62     size_t nfields);
63 int cap_pwd_limit_users(cap_channel_t *chan, const char * const *names,
64     size_t nnames, uid_t *uids, size_t nuids);
65 
66 __END_DECLS
67 
68 #else
69 
70 static inline struct passwd *
71 cap_getpwent(cap_channel_t *chan __unused)
72 {
73 
74 	return (getpwent());
75 }
76 
77 static inline struct passwd *
78 cap_getpwnam(cap_channel_t *chan __unused, const char *login)
79 {
80 
81 	return (getpwnam(login));
82 }
83 
84 static inline struct passwd *
85 cap_getpwuid(cap_channel_t *chan __unused, uid_t uid)
86 {
87 
88 	return (getpwuid(uid));
89 }
90 
91 static inline int
92 cap_getpwent_r(cap_channel_t *chan __unused, struct passwd *pwd, char *buffer,
93     size_t bufsize, struct passwd **result)
94 {
95 
96 	return (getpwent_r(pwd, buffer, bufsize, result));
97 }
98 
99 static inline int
100 cap_getpwnam_r(cap_channel_t *chan __unused, const char *name,
101     struct passwd *pwd, char *buffer, size_t bufsize, struct passwd **result)
102 {
103 
104 	return (getpwnam_r(name, pwd, buffer, bufsize, result));
105 }
106 
107 static inline int
108 cap_getpwuid_r(cap_channel_t *chan __unused, uid_t uid, struct passwd *pwd,
109     char *buffer, size_t bufsize, struct passwd **result)
110 {
111 
112 	return (getpwuid_r(uid, pwd, buffer, bufsize, result));
113 }
114 
115 static inline int
116 cap_setpassent(cap_channel_t *chan __unused, int stayopen)
117 {
118 
119 	return (setpassent(stayopen));
120 }
121 
122 static inline void
123 cap_setpwent(cap_channel_t *chan __unused)
124 {
125 
126 	return (setpwent());
127 }
128 
129 static inline void
130 cap_endpwent(cap_channel_t *chan __unused)
131 {
132 
133 	return (endpwent());
134 }
135 
136 static inline int
137 cap_pwd_limit_cmds(cap_channel_t *chan __unused,
138     const char * const *cmds __unused, size_t ncmds __unused)
139 {
140 
141 	return (0);
142 }
143 
144 static inline int
145 cap_pwd_limit_fields(cap_channel_t *chan __unused,
146     const char * const *fields __unused, size_t nfields __unused)
147 {
148 
149 	return (0);
150 }
151 
152 static inline int
153 cap_pwd_limit_users(cap_channel_t *chan __unused,
154     const char * const *names __unused, size_t nnames __unused,
155     uid_t *uids __unused, size_t nuids __unused)
156 {
157 
158 	return (0);
159 }
160 #endif
161 
162 #endif	/* !_CAP_PWD_H_ */
163