1 /*-
2  * SPDX-License-Identifier: BSD-2-Clause-FreeBSD
3  *
4  * Copyright (c) 2005 Doug Rabson
5  * All rights reserved.
6  *
7  * Redistribution and use in source and binary forms, with or without
8  * modification, are permitted provided that the following conditions
9  * are met:
10  * 1. Redistributions of source code must retain the above copyright
11  *    notice, this list of conditions and the following disclaimer.
12  * 2. Redistributions in binary form must reproduce the above copyright
13  *    notice, this list of conditions and the following disclaimer in the
14  *    documentation and/or other materials provided with the distribution.
15  *
16  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
17  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
20  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
26  * SUCH DAMAGE.
27  *
28  *	$FreeBSD$
29  */
30 
31 #include <gssapi/gssapi.h>
32 #include <stdlib.h>
33 #include <errno.h>
34 
35 #include "mech_switch.h"
36 #include "context.h"
37 
38 OM_uint32
39 gss_import_sec_context(OM_uint32 *minor_status,
40     const gss_buffer_t interprocess_token,
41     gss_ctx_id_t *context_handle)
42 {
43 	OM_uint32 major_status;
44 	struct _gss_mech_switch *m;
45 	struct _gss_context *ctx;
46 	gss_OID_desc mech_oid;
47 	gss_buffer_desc buf;
48 	unsigned char *p;
49 	size_t len;
50 
51 	*minor_status = 0;
52 	*context_handle = GSS_C_NO_CONTEXT;
53 
54 	/*
55 	 * We added an oid to the front of the token in
56 	 * gss_export_sec_context.
57 	 */
58 	p = interprocess_token->value;
59 	len = interprocess_token->length;
60 	if (len < 2)
61 		return (GSS_S_DEFECTIVE_TOKEN);
62 	mech_oid.length = (p[0] << 8) | p[1];
63 	if (len < mech_oid.length + 2)
64 		return (GSS_S_DEFECTIVE_TOKEN);
65 	mech_oid.elements = p + 2;
66 	buf.length = len - 2 - mech_oid.length;
67 	buf.value = p + 2 + mech_oid.length;
68 
69 	m = _gss_find_mech_switch(&mech_oid);
70 	if (!m)
71 		return (GSS_S_DEFECTIVE_TOKEN);
72 
73 	ctx = malloc(sizeof(struct _gss_context));
74 	if (!ctx) {
75 		*minor_status = ENOMEM;
76 		return (GSS_S_FAILURE);
77 	}
78 	ctx->gc_mech = m;
79 	major_status = m->gm_import_sec_context(minor_status,
80 	    &buf, &ctx->gc_ctx);
81 	if (major_status != GSS_S_COMPLETE) {
82 		_gss_mg_error(m, major_status, *minor_status);
83 		free(ctx);
84 	} else {
85 		*context_handle = (gss_ctx_id_t) ctx;
86 	}
87 
88 	return (major_status);
89 }
90