register.cpp 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860
  1. /** BEGIN COPYRIGHT BLOCK
  2. * This Program is free software; you can redistribute it and/or modify it under
  3. * the terms of the GNU General Public License as published by the Free Software
  4. * Foundation; version 2 of the License.
  5. *
  6. * This Program is distributed in the hope that it will be useful, but WITHOUT
  7. * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
  8. * FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.
  9. *
  10. * You should have received a copy of the GNU General Public License along with
  11. * this Program; if not, write to the Free Software Foundation, Inc., 59 Temple
  12. * Place, Suite 330, Boston, MA 02111-1307 USA.
  13. *
  14. * In addition, as a special exception, Red Hat, Inc. gives You the additional
  15. * right to link the code of this Program with code not covered under the GNU
  16. * General Public License ("Non-GPL Code") and to distribute linked combinations
  17. * including the two, subject to the limitations in this paragraph. Non-GPL Code
  18. * permitted under this exception must only link to the code of this Program
  19. * through those well defined interfaces identified in the file named EXCEPTION
  20. * found in the source code files (the "Approved Interfaces"). The files of
  21. * Non-GPL Code may instantiate templates or use macros or inline functions from
  22. * the Approved Interfaces without causing the resulting work to be covered by
  23. * the GNU General Public License. Only Red Hat, Inc. may make changes or
  24. * additions to the list of Approved Interfaces. You must obey the GNU General
  25. * Public License in all respects for all of the Program code and other code used
  26. * in conjunction with the Program except the Non-GPL Code covered by this
  27. * exception. If you modify this file, you may extend this exception to your
  28. * version of the file, but you are not obligated to do so. If you do not wish to
  29. * provide this exception without modification, you must delete this exception
  30. * statement from your version and license this file solely under the GPL without
  31. * exception.
  32. *
  33. *
  34. * Copyright (C) 2001 Sun Microsystems, Inc. Used by permission.
  35. * Copyright (C) 2005 Red Hat, Inc.
  36. * All rights reserved.
  37. * END COPYRIGHT BLOCK **/
  38. #ifdef HAVE_CONFIG_H
  39. # include <config.h>
  40. #endif
  41. /*
  42. * LAS registration interface
  43. */
  44. #include <netsite.h>
  45. #include <plhash.h>
  46. #include <base/systems.h>
  47. #include <base/util.h>
  48. #include <prlog.h>
  49. #include "permhash.h"
  50. #include <libaccess/nserror.h>
  51. #include <libaccess/acl.h>
  52. #include "aclpriv.h"
  53. #include <libaccess/aclproto.h>
  54. #include <libaccess/aclglobal.h>
  55. #include "aclcache.h"
  56. #include <libaccess/aclerror.h>
  57. /* This is to force aclspace.o into ns-httpd30.dll */
  58. static ACLGlobal_p *link_ACLGlobal = &ACLGlobal;
  59. /* This forces oneeval.o into ns-httpd30.dll */
  60. static ACLDispatchVector_t **link_nsacl_table = &__nsacl_table;
  61. ACLMethod_t ACLMethodDefault = ACL_METHOD_INVALID;
  62. ACLDbType_t ACLDbTypeDefault = ACL_DBTYPE_INVALID;
  63. static char *ACLDatabaseDefault = 0;
  64. ACLDbType_t ACL_DbTypeLdap = ACL_DBTYPE_INVALID;
  65. DbParseFn_t ACLDbParseFnTable[ACL_MAX_DBTYPE];
  66. void
  67. ACL_LasHashInit()
  68. {
  69. int i;
  70. ACLLasEvalHash = PR_NewHashTable(0,
  71. PR_HashString,
  72. PR_CompareStrings,
  73. PR_CompareValues,
  74. &ACLPermAllocOps,
  75. NULL);
  76. PR_ASSERT(ACLLasEvalHash);
  77. ACLLasFlushHash = PR_NewHashTable(0,
  78. PR_HashString,
  79. PR_CompareStrings,
  80. PR_CompareValues,
  81. &ACLPermAllocOps,
  82. NULL);
  83. PR_ASSERT(ACLLasFlushHash);
  84. ACLMethodHash = PR_NewHashTable(ACL_MAX_METHOD,
  85. PR_HashCaseString,
  86. PR_CompareCaseStrings,
  87. PR_CompareValues,
  88. &ACLPermAllocOps,
  89. NULL);
  90. PR_ASSERT(ACLMethodHash);
  91. ACLDbTypeHash = PR_NewHashTable(ACL_MAX_DBTYPE,
  92. PR_HashCaseString,
  93. PR_CompareCaseStrings,
  94. PR_CompareValues,
  95. &ACLPermAllocOps,
  96. NULL);
  97. PR_ASSERT(ACLDbTypeHash);
  98. for (i = 0; i < ACL_MAX_DBTYPE; i++)
  99. ACLDbParseFnTable[i] = 0;
  100. ACLAttrGetterHash = PR_NewHashTable(256,
  101. PR_HashCaseString,
  102. PR_CompareCaseStrings,
  103. PR_CompareValues,
  104. &ACLPermAllocOps,
  105. NULL);
  106. PR_ASSERT(ACLDbTypeHash);
  107. ACLDbNameHash = PR_NewHashTable(0,
  108. PR_HashCaseString,
  109. PR_CompareCaseStrings,
  110. PR_CompareValues,
  111. &ACLPermAllocOps,
  112. ACL_DATABASE_POOL);
  113. PR_ASSERT(ACLDbNameHash);
  114. ACLUserLdbHash = PR_NewHashTable(0,
  115. PR_HashCaseString,
  116. PR_CompareCaseStrings,
  117. PR_CompareValues,
  118. &ACLPermAllocOps,
  119. NULL);
  120. PR_ASSERT(ACLUserLdbHash);
  121. return;
  122. }
  123. void
  124. ACL_LasHashDestroy()
  125. {
  126. if (ACLLasEvalHash) {
  127. PR_HashTableDestroy(ACLLasEvalHash);
  128. ACLLasEvalHash=NULL;
  129. }
  130. if (ACLLasFlushHash) {
  131. PR_HashTableDestroy(ACLLasFlushHash);
  132. ACLLasFlushHash=NULL;
  133. }
  134. }
  135. /* ACL_LasRegister
  136. * INPUT
  137. * errp NSError structure
  138. * attr_name E.g. "ip" or "dns" etc.
  139. * eval_func E.g. LASIpEval
  140. * flush_func Optional - E.g. LASIpFlush or NULL
  141. * OUTPUT
  142. * 0 on success, non-zero on failure
  143. */
  144. NSAPI_PUBLIC int
  145. ACL_LasRegister(NSErr_t *errp, char *attr_name, LASEvalFunc_t eval_func,
  146. LASFlushFunc_t flush_func)
  147. {
  148. if ((!attr_name) || (!eval_func)) return -1;
  149. ACL_CritEnter();
  150. /* See if the function is already registered. If so, report and
  151. * error, but go ahead and replace it.
  152. */
  153. if (PR_HashTableLookup(ACLLasEvalHash, attr_name) != NULL) {
  154. nserrGenerate(errp, ACLERRDUPSYM, ACLERR3900, ACL_Program, 1,
  155. attr_name);
  156. }
  157. /* Put it in the hash tables */
  158. if (NULL == PR_HashTableAdd(ACLLasEvalHash, attr_name, (void *)eval_func)) {
  159. ACL_CritExit();
  160. return -1;
  161. }
  162. if (NULL ==
  163. PR_HashTableAdd(ACLLasFlushHash, attr_name, (void *)flush_func)) {
  164. ACL_CritExit();
  165. return -1;
  166. }
  167. ACL_CritExit();
  168. return 0;
  169. }
  170. /* ACL_LasFindEval
  171. * INPUT
  172. * errp NSError pointer
  173. * attr_name E.g. "ip" or "user" etc.
  174. * eval_funcp Where the function pointer is returned. NULL if the
  175. * function isn't registered.
  176. * Must be called in a critical section as ACLEvalHash is a global
  177. * variable.
  178. * OUTPUT
  179. * 0 on success, non-zero on failure
  180. */
  181. NSAPI_PUBLIC int
  182. ACL_LasFindEval(NSErr_t *errp, char *attr_name, LASEvalFunc_t *eval_funcp)
  183. {
  184. PR_ASSERT(attr_name);
  185. if (!attr_name) return -1;
  186. *eval_funcp = (LASEvalFunc_t)PR_HashTableLookup(ACLLasEvalHash, attr_name);
  187. return 0;
  188. }
  189. /* ACL_LasFindFlush
  190. * INPUT
  191. * errp NSError pointer
  192. * attr_name E.g. "ip" or "user" etc.
  193. * eval_funcp Where the function pointer is returned. NULL if the
  194. * function isn't registered.
  195. * OUTPUT
  196. * 0 on success, non-zero on failure
  197. */
  198. NSAPI_PUBLIC int
  199. ACL_LasFindFlush(NSErr_t *errp, char *attr_name, LASFlushFunc_t *flush_funcp)
  200. {
  201. PR_ASSERT(attr_name);
  202. if (!attr_name) return -1;
  203. *flush_funcp = (LASFlushFunc_t)PR_HashTableLookup(ACLLasFlushHash, attr_name);
  204. return 0;
  205. }
  206. /* ACL_MethodRegister
  207. * INPUT
  208. * name Method name string. Can be freed after return.
  209. * OUTPUT
  210. * &t Place to return the Method_t (>0)
  211. * retcode 0 on success, non-zero otherwise
  212. */
  213. int cur_method = 0; /* Use a static counter to generate the numbers */
  214. NSAPI_PUBLIC int
  215. ACL_MethodRegister(NSErr_t *errp, const char *name, ACLMethod_t *t)
  216. {
  217. ACLMethod_t rv;
  218. ACL_CritEnter();
  219. /* See if this is already registered */
  220. rv = (ACLMethod_t) PR_HashTableLookup(ACLMethodHash, name);
  221. if (rv != NULL) {
  222. *t = rv;
  223. ACL_CritExit();
  224. return 0;
  225. }
  226. /* To prevent the hash table from resizing, don't get to 32 entries */
  227. if (cur_method >= (ACL_MAX_METHOD-1)) {
  228. ACL_CritExit();
  229. return -1;
  230. }
  231. /* Put it in the hash table */
  232. if (NULL == PR_HashTableAdd(ACLMethodHash, name, (void *)++cur_method)) {
  233. ACL_CritExit();
  234. return -1;
  235. }
  236. *t = (ACLMethod_t) cur_method;
  237. ACL_CritExit();
  238. return 0;
  239. }
  240. NSAPI_PUBLIC int
  241. ACL_MethodFind(NSErr_t *errp, const char *name, ACLMethod_t *t)
  242. {
  243. ACLMethod_t rv;
  244. /* Don't have to get the Critical Section lock 'cause the only danger
  245. * would be if the hash table had to be resized. We created it with
  246. * room for 32 entries before that happens.
  247. */
  248. rv = (ACLMethod_t) PR_HashTableLookup(ACLMethodHash, name);
  249. if (rv != NULL) {
  250. *t = rv;
  251. return 0;
  252. }
  253. return -1;
  254. }
  255. typedef struct HashEnumArg_s {
  256. char **names;
  257. int count;
  258. } HashEnumArg_t;
  259. typedef HashEnumArg_t *HashEnumArg_p;
  260. static int acl_hash_enumerator (PLHashEntry *he, PRIntn i, void *arg)
  261. {
  262. HashEnumArg_t *info = (HashEnumArg_t *)arg;
  263. char **names = info->names;
  264. names[info->count++] = STRDUP((const char *)he->key);
  265. return names[info->count-1] ? 0 : -1;
  266. }
  267. int acl_registered_names(PLHashTable *ht, int count, char ***names)
  268. {
  269. HashEnumArg_t arg;
  270. int rv;
  271. if (count == 0) {
  272. *names = 0;
  273. return 0;
  274. }
  275. arg.names = (char **)MALLOC(count * sizeof(char *));
  276. arg.count = 0;
  277. if (!arg.names) return -1;
  278. rv = PR_HashTableEnumerateEntries(ht, acl_hash_enumerator, &arg);
  279. if (rv >= 0) {
  280. /* success */
  281. *names = arg.names;
  282. }
  283. else {
  284. *names = 0;
  285. }
  286. return rv;
  287. }
  288. NSAPI_PUBLIC int
  289. ACL_MethodNamesGet(NSErr_t *errp, char ***names, int *count)
  290. {
  291. *count = cur_method;
  292. return acl_registered_names (ACLMethodHash, *count, names);
  293. }
  294. NSAPI_PUBLIC int
  295. ACL_MethodNamesFree(NSErr_t *errp, char **names, int count)
  296. {
  297. int i;
  298. if (!names) return 0;
  299. for (i = count-1; i; i--) FREE(names[i]);
  300. FREE(names);
  301. return 0;
  302. }
  303. NSAPI_PUBLIC int
  304. ACL_DbTypeFind(NSErr_t *errp, const char *name, ACLDbType_t *t)
  305. {
  306. ACLDbType_t rv;
  307. /* Don't have to get the Critical Section lock 'cause the only danger
  308. * would be if the hash table had to be resized. We created it with
  309. * room for 32 entries before that happens.
  310. */
  311. rv = (ACLDbType_t) PR_HashTableLookup(ACLDbTypeHash, name);
  312. if (rv != NULL) {
  313. *t = rv;
  314. return 0;
  315. }
  316. return -1;
  317. }
  318. /* ACL_DbTypeRegister
  319. * INPUT
  320. * name DbType name string. Can be freed after return.
  321. * OUTPUT
  322. * &t Place to return the DbType (>0)
  323. * retcode 0 on success, non-zero otherwise
  324. */
  325. int cur_dbtype = 0; /* Use a static counter to generate the numbers */
  326. NSAPI_PUBLIC int
  327. ACL_DbTypeRegister(NSErr_t *errp, const char *name, DbParseFn_t func, ACLDbType_t *t)
  328. {
  329. ACLDbType_t rv;
  330. ACL_CritEnter();
  331. /* See if this is already registered */
  332. rv = (ACLDbType_t) PR_HashTableLookup(ACLDbTypeHash, name);
  333. if (rv != NULL) {
  334. *t = rv;
  335. ACLDbParseFnTable[(int)(PRSize)rv] = func;
  336. ACL_CritExit();
  337. return 0;
  338. }
  339. /* To prevent the hash table from resizing, don't get to 32 entries */
  340. if (cur_dbtype >= (ACL_MAX_DBTYPE-1)) {
  341. ACL_CritExit();
  342. return -1;
  343. }
  344. /* Put it in the hash table */
  345. if (NULL == PR_HashTableAdd(ACLDbTypeHash, name, (void *)++cur_dbtype)) {
  346. ACL_CritExit();
  347. return -1;
  348. }
  349. *t = (ACLDbType_t) cur_dbtype;
  350. ACLDbParseFnTable[cur_dbtype] = func;
  351. ACL_CritExit();
  352. return 0;
  353. }
  354. NSAPI_PUBLIC int
  355. ACL_DbTypeIsRegistered (NSErr_t *errp, const ACLDbType_t t)
  356. {
  357. return (0 < ((int)(PRSize)t) && ((int)(PRSize)t) <= cur_dbtype);
  358. }
  359. /* ACL_MethodIsEqual
  360. * RETURNS non-zero if equal.
  361. */
  362. NSAPI_PUBLIC int
  363. ACL_MethodIsEqual(NSErr_t *errp, const ACLMethod_t t1, const ACLMethod_t t2)
  364. {
  365. return (t1 == t2);
  366. }
  367. /* ACL_DbTypeIsEqual
  368. * RETURNS non-zero if equal.
  369. */
  370. NSAPI_PUBLIC int
  371. ACL_DbTypeIsEqual(NSErr_t *errp, const ACLDbType_t t1, const ACLDbType_t t2)
  372. {
  373. return (t1 == t2);
  374. }
  375. /* ACL_MethodNameIsEqual
  376. * Takes a method type and a method name and sees if they match.
  377. * Returns non-zero on match.
  378. */
  379. NSAPI_PUBLIC int
  380. ACL_MethodNameIsEqual(NSErr_t *errp, const ACLMethod_t t1, const char *name)
  381. {
  382. int rv;
  383. ACLMethod_t t2;
  384. rv = ACL_MethodFind(errp, name, &t2);
  385. if (rv)
  386. return (rv);
  387. else
  388. return (t1 == t2);
  389. }
  390. /* ACL_DbTypeNameIsEqual
  391. * Takes a dbtype type and a dbtype name and sees if they match.
  392. * Returns non-zero on match.
  393. */
  394. NSAPI_PUBLIC int
  395. ACL_DbTypeNameIsEqual(NSErr_t *errp, const ACLDbType_t t1, const char *name)
  396. {
  397. int rv;
  398. ACLDbType_t t2;
  399. rv = ACL_DbTypeFind(errp, name, &t2);
  400. if (rv)
  401. return (rv);
  402. else
  403. return (t1 == t2);
  404. }
  405. /* ACL_MethodGetDefault
  406. */
  407. NSAPI_PUBLIC ACLMethod_t
  408. ACL_MethodGetDefault(NSErr_t *errp)
  409. {
  410. return (ACLMethodDefault);
  411. }
  412. /* ACL_MethodSetDefault
  413. */
  414. NSAPI_PUBLIC int
  415. ACL_MethodSetDefault(NSErr_t *errp, const ACLMethod_t t)
  416. {
  417. ACLMethodDefault = t;
  418. return 0;
  419. }
  420. /* ACL_DbTypeGetDefault
  421. */
  422. NSAPI_PUBLIC ACLDbType_t
  423. ACL_DbTypeGetDefault(NSErr_t *errp)
  424. {
  425. return (ACLDbTypeDefault);
  426. }
  427. /* ACL_DbTypeSetDefault
  428. */
  429. NSAPI_PUBLIC int
  430. ACL_DbTypeSetDefault(NSErr_t *errp, ACLDbType_t t)
  431. {
  432. ACLDbTypeDefault = t;
  433. return 0;
  434. }
  435. /* ACL_DatabaseGetDefault
  436. */
  437. NSAPI_PUBLIC const char *
  438. ACL_DatabaseGetDefault(NSErr_t *errp)
  439. {
  440. return (ACLDatabaseDefault);
  441. }
  442. /* ACL_DatabaseSetDefault
  443. */
  444. NSAPI_PUBLIC int
  445. ACL_DatabaseSetDefault(NSErr_t *errp, const char *dbname)
  446. {
  447. ACLDbType_t dbtype;
  448. int rv;
  449. void *db;
  450. if (!dbname || !*dbname) return LAS_EVAL_FAIL;
  451. rv = ACL_DatabaseFind(errp, dbname, &dbtype, &db);
  452. if (rv != LAS_EVAL_TRUE) return -1;
  453. if (ACLDatabaseDefault) pool_free(ACL_DATABASE_POOL, ACLDatabaseDefault);
  454. ACL_DbTypeSetDefault(errp, dbtype);
  455. ACLDatabaseDefault = pool_strdup(ACL_DATABASE_POOL, dbname);
  456. return ACLDatabaseDefault ? 0 : -1;
  457. }
  458. /* ACL_AuthInfoGetMethod
  459. * INPUT
  460. * auth_info A PList of the authentication name/value pairs as
  461. * provided by EvalTestRights to the LAS.
  462. * OUTPUT
  463. * *t The Method number. This can be the default method
  464. number if the auth_info PList doesn't explicitly have a Method entry.
  465. * retcode 0 on success.
  466. */
  467. NSAPI_PUBLIC int
  468. ACL_AuthInfoGetMethod(NSErr_t *errp, PList_t auth_info, ACLMethod_t *t)
  469. {
  470. ACLMethod_t *methodp;
  471. if (!auth_info ||
  472. PListGetValue(auth_info, ACL_ATTR_METHOD_INDEX, (void **)&methodp, NULL) < 0)
  473. {
  474. /* No entry for "method" */
  475. *t = ACLMethodDefault;
  476. } else {
  477. *t = *methodp;
  478. }
  479. return 0;
  480. }
  481. /* ACL_AuthInfoSetMethod
  482. * INPUT
  483. * auth_info A PList of the authentication name/value pairs as
  484. * provided by EvalTestRights to the LAS.
  485. * t The Method number.
  486. * OUTPUT
  487. * retcode 0 on success.
  488. */
  489. NSAPI_PUBLIC int
  490. ACL_AuthInfoSetMethod(NSErr_t *errp, PList_t auth_info, ACLMethod_t t)
  491. {
  492. ACLMethod_t *methodp;
  493. int rv;
  494. if (auth_info) {
  495. rv = PListGetValue(auth_info, ACL_ATTR_METHOD_INDEX, (void **)&methodp,
  496. NULL);
  497. if (rv < 0) {
  498. /* No entry for "method" */
  499. methodp = (ACLMethod_t *)PERM_MALLOC(sizeof(ACLMethod_t));
  500. if (!methodp) return -1;
  501. *methodp = t;
  502. PListInitProp(auth_info, ACL_ATTR_METHOD_INDEX, ACL_ATTR_METHOD, methodp, 0);
  503. }
  504. else {
  505. /* replace the old entry */
  506. if (!methodp) return -1;
  507. *methodp = t;
  508. }
  509. }
  510. else {
  511. return -1;
  512. }
  513. return 0;
  514. }
  515. /* ACL_AuthInfoSetDbname
  516. * INPUT
  517. * auth_info A PList of the authentication name/value pairs as
  518. * provided by EvalTestRights to the LAS.
  519. * dbname Name of the new auth_info database.
  520. * OUTPUT
  521. * retcode 0 on success.
  522. */
  523. NSAPI_PUBLIC int
  524. ACL_AuthInfoSetDbname(NSErr_t *errp, PList_t auth_info, const char *dbname)
  525. {
  526. ACLDbType_t *dbtype = NULL;
  527. ACLDbType_t *t2;
  528. char *copy;
  529. char *n2;
  530. void *db;
  531. int old1;
  532. int old2;
  533. int rv;
  534. if (auth_info) {
  535. dbtype = (ACLDbType_t *)PERM_MALLOC(sizeof(ACLDbType_t));
  536. if (!dbtype) {
  537. /* out of memory */
  538. return -1;
  539. }
  540. rv = ACL_DatabaseFind(errp, dbname, dbtype, (void **)&db);
  541. if (rv != LAS_EVAL_TRUE) {
  542. PERM_FREE(dbtype);
  543. return -1;
  544. }
  545. /* Check the existing entry */
  546. old1 = PListGetValue(auth_info, ACL_ATTR_DBTYPE_INDEX, (void **)&t2,
  547. NULL);
  548. old2 = PListGetValue(auth_info, ACL_ATTR_DATABASE_INDEX, (void **)&n2,
  549. NULL);
  550. if (old1 >= 0 && old2 >= 0) {
  551. /* check if the old entry is same */
  552. if (ACL_DbTypeIsEqual(errp, *dbtype, *t2)) {
  553. /* Nothing to do */
  554. PERM_FREE(dbtype);
  555. return 0;
  556. }
  557. }
  558. /* free the old entries */
  559. if (old1 >= 0) {
  560. PListDeleteProp(auth_info, ACL_ATTR_DBTYPE_INDEX, ACL_ATTR_DBTYPE);
  561. PERM_FREE(t2);
  562. }
  563. if (old2 >= 0) {
  564. PListDeleteProp(auth_info, ACL_ATTR_DATABASE_INDEX, ACL_ATTR_DATABASE);
  565. PERM_FREE(n2);
  566. }
  567. /* Create new entries for "dbtype" & "dbname" */
  568. copy = (char *)PERM_STRDUP(dbname);
  569. if (!copy) {
  570. PERM_FREE(dbtype);
  571. return -1;
  572. }
  573. PListInitProp(auth_info, ACL_ATTR_DATABASE_INDEX,
  574. ACL_ATTR_DATABASE, copy, 0);
  575. PListInitProp(auth_info, ACL_ATTR_DBTYPE_INDEX, ACL_ATTR_DBTYPE,
  576. dbtype, 0);
  577. }
  578. else {
  579. return -1;
  580. }
  581. return 0;
  582. }
  583. /* ACL_AuthInfoGetDbType
  584. * INPUT
  585. * auth_info A PList of the authentication name/value pairs as
  586. * provided by EvalTestRights to the LAS.
  587. * OUTPUT
  588. * *t The DbType number. This can be the default dbtype
  589. * number if the auth_info PList doesn't explicitly
  590. * have a DbType entry.
  591. * retcode 0 on success.
  592. */
  593. NSAPI_PUBLIC int
  594. ACL_AuthInfoGetDbType(NSErr_t *errp, PList_t auth_info, ACLDbType_t *t)
  595. {
  596. ACLDbType_t *dbtypep;
  597. if (!auth_info ||
  598. PListGetValue(auth_info, ACL_ATTR_DBTYPE_INDEX, (void **)&dbtypep, NULL) < 0)
  599. {
  600. /* No entry for "dbtype" */
  601. *t = ACLDbTypeDefault;
  602. } else {
  603. *t = *dbtypep;
  604. }
  605. return 0;
  606. }
  607. /* ACL_AuthInfoGetDbname
  608. * INPUT
  609. * auth_info A PList of the authentication name/value pairs as
  610. * provided by EvalTestRights to the LAS.
  611. * OUTPUT
  612. * dbname The database name. This can be the default database
  613. * name if the auth_info PList doesn't explicitly
  614. * have a database entry.
  615. * retcode 0 on success.
  616. */
  617. NSAPI_PUBLIC int
  618. ACL_AuthInfoGetDbname(PList_t auth_info, char **dbname)
  619. {
  620. char *dbstr;
  621. if (!auth_info ||
  622. PListGetValue(auth_info, ACL_ATTR_DATABASE_INDEX, (void **)&dbstr, NULL) < 0)
  623. {
  624. /* No entry for "database" */
  625. dbstr = ACLDatabaseDefault;
  626. }
  627. /* else the value was already set by the PListGetValue call */
  628. *dbname = dbstr;
  629. return 0;
  630. }
  631. NSAPI_PUBLIC DbParseFn_t
  632. ACL_DbTypeParseFn(NSErr_t *errp, const ACLDbType_t dbtype)
  633. {
  634. if (ACL_DbTypeIsRegistered(errp, dbtype))
  635. return ACLDbParseFnTable[(int)(PRSize)dbtype];
  636. else
  637. return 0;
  638. }
  639. /* The hash table is keyed by attribute name, and contains pointers to the
  640. * PRCList headers. These in turn, circularly link a set of AttrGetter_s
  641. * structures.
  642. */
  643. NSAPI_PUBLIC int
  644. ACL_AttrGetterRegister(NSErr_t *errp, const char *attr, ACLAttrGetterFn_t fn,
  645. ACLMethod_t m, ACLDbType_t d, int position, void *arg)
  646. {
  647. ACLAttrGetter_t *getter;
  648. PLHashEntry **hep;
  649. if (position != ACL_AT_FRONT && position != ACL_AT_END) {
  650. return -1;
  651. }
  652. ACL_CritEnter();
  653. hep = PR_HashTableRawLookup(ACLAttrGetterHash, PR_HashCaseString(attr), attr);
  654. /* Now, allocate the current entry */
  655. getter = (ACLAttrGetter_t *)CALLOC(sizeof(ACLAttrGetter_t));
  656. if (getter == NULL) {
  657. ACL_CritExit();
  658. return -1;
  659. }
  660. getter->method = m;
  661. getter->dbtype = d;
  662. getter->fn = fn;
  663. getter->arg = arg;
  664. if (*hep == 0) { /* New entry */
  665. PR_INIT_CLIST(&getter->list);
  666. if (NULL == PR_HashTableAdd(ACLAttrGetterHash, attr, (void *)getter)) {
  667. ACL_CritExit();
  668. return -1;
  669. }
  670. }
  671. else {
  672. ACLAttrGetter_t *head = (ACLAttrGetter_t *)((*hep)->value);
  673. PR_INSERT_BEFORE(&getter->list, &head->list);
  674. if (position == ACL_AT_FRONT) {
  675. /* Set new head of list */
  676. (*hep)->value = (void *)getter;
  677. }
  678. }
  679. ACL_CritExit();
  680. return 0;
  681. }
  682. NSAPI_PUBLIC int
  683. ACL_AttrGetterFind(NSErr_t *errp, const char *attr,
  684. ACLAttrGetterList_t *getters)
  685. {
  686. *getters = PR_HashTableLookup(ACLAttrGetterHash, attr);
  687. if (*getters)
  688. return 0;
  689. else
  690. return -1;
  691. }
  692. NSAPI_PUBLIC
  693. ACLAttrGetter_t * ACL_AttrGetterFirst(ACLAttrGetterList_t *getters)
  694. {
  695. ACLAttrGetter_t * first = 0;
  696. if (getters && *getters) {
  697. first = (ACLAttrGetter_t *)(*getters);
  698. }
  699. return first;
  700. }
  701. NSAPI_PUBLIC ACLAttrGetter_t *
  702. ACL_AttrGetterNext(ACLAttrGetterList_t *getters, ACLAttrGetter_t *last)
  703. {
  704. ACLAttrGetter_t *head;
  705. ACLAttrGetter_t *next = 0;
  706. if (getters && *getters && last) {
  707. head = (ACLAttrGetter_t *)(*getters);
  708. if (head) {
  709. /* End of list? */
  710. if (last != (ACLAttrGetter_t *)PR_LIST_TAIL(&head->list)) {
  711. /* No, get next entry */
  712. next = (ACLAttrGetter_t *)PR_NEXT_LINK(&last->list);
  713. }
  714. }
  715. }
  716. return next;
  717. }