register.cpp 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873
  1. /** BEGIN COPYRIGHT BLOCK
  2. * Copyright (C) 2001 Sun Microsystems, Inc. Used by permission.
  3. * Copyright (C) 2005 Red Hat, Inc.
  4. * All rights reserved.
  5. *
  6. * License: GPL (version 3 or any later version).
  7. * See LICENSE for details.
  8. * END COPYRIGHT BLOCK **/
  9. #ifdef HAVE_CONFIG_H
  10. # include <config.h>
  11. #endif
  12. /*
  13. * LAS registration interface
  14. */
  15. #include <netsite.h>
  16. #include <plhash.h>
  17. #include <base/systems.h>
  18. #include <base/util.h>
  19. #include <prlog.h>
  20. #include "permhash.h"
  21. #include <libaccess/nserror.h>
  22. #include <libaccess/acl.h>
  23. #include "aclpriv.h"
  24. #include <libaccess/aclproto.h>
  25. #include <libaccess/aclglobal.h>
  26. #include "aclcache.h"
  27. #include <libaccess/aclerror.h>
  28. /* This is to force aclspace.o into ns-httpd30.dll */
  29. static ACLGlobal_p *link_ACLGlobal = &ACLGlobal;
  30. /* This forces oneeval.o into ns-httpd30.dll */
  31. static ACLDispatchVector_t **link_nsacl_table = &__nsacl_table;
  32. ACLMethod_t ACLMethodDefault = ACL_METHOD_INVALID;
  33. ACLDbType_t ACLDbTypeDefault = ACL_DBTYPE_INVALID;
  34. static char *ACLDatabaseDefault = 0;
  35. ACLDbType_t ACL_DbTypeLdap = ACL_DBTYPE_INVALID;
  36. DbParseFn_t ACLDbParseFnTable[ACL_MAX_DBTYPE];
  37. void
  38. ACL_LasHashInit()
  39. {
  40. int i;
  41. (void)(link_ACLGlobal); /* get rid of defined but not used compiler warning */
  42. (void)(link_nsacl_table); /* get rid of defined but not used compiler warning */
  43. ACLLasEvalHash = PR_NewHashTable(0,
  44. PR_HashString,
  45. PR_CompareStrings,
  46. PR_CompareValues,
  47. &ACLPermAllocOps,
  48. NULL);
  49. PR_ASSERT(ACLLasEvalHash);
  50. ACLLasFlushHash = PR_NewHashTable(0,
  51. PR_HashString,
  52. PR_CompareStrings,
  53. PR_CompareValues,
  54. &ACLPermAllocOps,
  55. NULL);
  56. PR_ASSERT(ACLLasFlushHash);
  57. ACLMethodHash = PR_NewHashTable(ACL_MAX_METHOD,
  58. PR_HashCaseString,
  59. PR_CompareCaseStrings,
  60. PR_CompareValues,
  61. &ACLPermAllocOps,
  62. NULL);
  63. PR_ASSERT(ACLMethodHash);
  64. ACLDbTypeHash = PR_NewHashTable(ACL_MAX_DBTYPE,
  65. PR_HashCaseString,
  66. PR_CompareCaseStrings,
  67. PR_CompareValues,
  68. &ACLPermAllocOps,
  69. NULL);
  70. PR_ASSERT(ACLDbTypeHash);
  71. for (i = 0; i < ACL_MAX_DBTYPE; i++)
  72. ACLDbParseFnTable[i] = 0;
  73. ACLAttrGetterHash = PR_NewHashTable(256,
  74. PR_HashCaseString,
  75. PR_CompareCaseStrings,
  76. PL_CompareValues,
  77. NULL,
  78. NULL);
  79. PR_ASSERT(ACLDbTypeHash);
  80. ACLDbNameHash = PR_NewHashTable(0,
  81. PR_HashCaseString,
  82. PR_CompareCaseStrings,
  83. PR_CompareValues,
  84. &ACLPermAllocOps,
  85. ACL_DATABASE_POOL);
  86. PR_ASSERT(ACLDbNameHash);
  87. ACLUserLdbHash = PR_NewHashTable(0,
  88. PR_HashCaseString,
  89. PR_CompareCaseStrings,
  90. PR_CompareValues,
  91. &ACLPermAllocOps,
  92. NULL);
  93. PR_ASSERT(ACLUserLdbHash);
  94. return;
  95. }
  96. void
  97. ACL_LasHashDestroy()
  98. {
  99. if (ACLLasEvalHash) {
  100. PR_HashTableDestroy(ACLLasEvalHash);
  101. ACLLasEvalHash=NULL;
  102. }
  103. if (ACLLasFlushHash) {
  104. PR_HashTableDestroy(ACLLasFlushHash);
  105. ACLLasFlushHash=NULL;
  106. }
  107. if(ACLUserLdbHash){
  108. PR_HashTableDestroy(ACLUserLdbHash);
  109. ACLUserLdbHash=NULL;
  110. }
  111. if(ACLDbTypeHash){
  112. PR_HashTableDestroy(ACLDbTypeHash);
  113. ACLDbTypeHash=NULL;
  114. }
  115. }
  116. static PRIntn
  117. ACL_GetterHashFree(PLHashEntry *he, PRIntn index, void *arg)
  118. {
  119. ACLAttrGetter_t *getter = (ACLAttrGetter_t *)he->value;
  120. if(getter){
  121. FREE(getter);
  122. getter = NULL;
  123. }
  124. return HT_ENUMERATE_REMOVE;
  125. }
  126. void
  127. ACL_AttrGetterHashDestroy()
  128. {
  129. if (ACLAttrGetterHash) {
  130. PL_HashTableEnumerateEntries(ACLAttrGetterHash, ACL_GetterHashFree, NULL);
  131. PR_HashTableDestroy(ACLAttrGetterHash);
  132. ACLAttrGetterHash=NULL;
  133. }
  134. }
  135. void
  136. ACL_MethodHashDestroy()
  137. {
  138. if (ACLMethodHash) {
  139. PR_HashTableDestroy(ACLMethodHash);
  140. ACLMethodHash=NULL;
  141. }
  142. }
  143. /* ACL_LasRegister
  144. * INPUT
  145. * errp NSError structure
  146. * attr_name E.g. "ip" or "dns" etc.
  147. * eval_func E.g. LASIpEval
  148. * flush_func Optional - E.g. LASIpFlush or NULL
  149. * OUTPUT
  150. * 0 on success, non-zero on failure
  151. */
  152. NSAPI_PUBLIC int
  153. ACL_LasRegister(NSErr_t *errp, const char *attr_name, LASEvalFunc_t eval_func,
  154. LASFlushFunc_t flush_func)
  155. {
  156. if ((!attr_name) || (!eval_func)) return -1;
  157. ACL_CritEnter();
  158. /* See if the function is already registered. If so, report and
  159. * error, but go ahead and replace it.
  160. */
  161. if (PR_HashTableLookup(ACLLasEvalHash, attr_name) != NULL) {
  162. nserrGenerate(errp, ACLERRDUPSYM, ACLERR3900, ACL_Program, 1,
  163. attr_name);
  164. }
  165. /* Put it in the hash tables */
  166. if (NULL == PR_HashTableAdd(ACLLasEvalHash, attr_name, (void *)eval_func)) {
  167. ACL_CritExit();
  168. return -1;
  169. }
  170. if (NULL ==
  171. PR_HashTableAdd(ACLLasFlushHash, attr_name, (void *)flush_func)) {
  172. ACL_CritExit();
  173. return -1;
  174. }
  175. ACL_CritExit();
  176. return 0;
  177. }
  178. /* ACL_LasFindEval
  179. * INPUT
  180. * errp NSError pointer
  181. * attr_name E.g. "ip" or "user" etc.
  182. * eval_funcp Where the function pointer is returned. NULL if the
  183. * function isn't registered.
  184. * Must be called in a critical section as ACLEvalHash is a global
  185. * variable.
  186. * OUTPUT
  187. * 0 on success, non-zero on failure
  188. */
  189. NSAPI_PUBLIC int
  190. ACL_LasFindEval(NSErr_t *errp, char *attr_name, LASEvalFunc_t *eval_funcp)
  191. {
  192. PR_ASSERT(attr_name);
  193. if (!attr_name) return -1;
  194. *eval_funcp = (LASEvalFunc_t)PR_HashTableLookup(ACLLasEvalHash, attr_name);
  195. return 0;
  196. }
  197. /* ACL_LasFindFlush
  198. * INPUT
  199. * errp NSError pointer
  200. * attr_name E.g. "ip" or "user" etc.
  201. * eval_funcp Where the function pointer is returned. NULL if the
  202. * function isn't registered.
  203. * OUTPUT
  204. * 0 on success, non-zero on failure
  205. */
  206. NSAPI_PUBLIC int
  207. ACL_LasFindFlush(NSErr_t *errp, char *attr_name, LASFlushFunc_t *flush_funcp)
  208. {
  209. PR_ASSERT(attr_name);
  210. if (!attr_name) return -1;
  211. *flush_funcp = (LASFlushFunc_t)PR_HashTableLookup(ACLLasFlushHash, attr_name);
  212. return 0;
  213. }
  214. /* ACL_MethodRegister
  215. * INPUT
  216. * name Method name string. Can be freed after return.
  217. * OUTPUT
  218. * &t Place to return the Method_t (>0)
  219. * retcode 0 on success, non-zero otherwise
  220. */
  221. int cur_method = 0; /* Use a static counter to generate the numbers */
  222. NSAPI_PUBLIC int
  223. ACL_MethodRegister(NSErr_t *errp, const char *name, ACLMethod_t *t)
  224. {
  225. ACLMethod_t rv;
  226. ACL_CritEnter();
  227. /* See if this is already registered */
  228. rv = (ACLMethod_t) PR_HashTableLookup(ACLMethodHash, name);
  229. if (rv != NULL) {
  230. *t = rv;
  231. ACL_CritExit();
  232. return 0;
  233. }
  234. /* To prevent the hash table from resizing, don't get to 32 entries */
  235. if (cur_method >= (ACL_MAX_METHOD-1)) {
  236. ACL_CritExit();
  237. return -1;
  238. }
  239. /* Put it in the hash table */
  240. if (NULL == PR_HashTableAdd(ACLMethodHash, name, (void *)(intptr_t)++cur_method)) {
  241. ACL_CritExit();
  242. return -1;
  243. }
  244. *t = (ACLMethod_t) (intptr_t)cur_method;
  245. ACL_CritExit();
  246. return 0;
  247. }
  248. NSAPI_PUBLIC int
  249. ACL_MethodFind(NSErr_t *errp, const char *name, ACLMethod_t *t)
  250. {
  251. ACLMethod_t rv;
  252. /* Don't have to get the Critical Section lock 'cause the only danger
  253. * would be if the hash table had to be resized. We created it with
  254. * room for 32 entries before that happens.
  255. */
  256. rv = (ACLMethod_t) PR_HashTableLookup(ACLMethodHash, name);
  257. if (rv != NULL) {
  258. *t = rv;
  259. return 0;
  260. }
  261. return -1;
  262. }
  263. typedef struct HashEnumArg_s {
  264. char **names;
  265. int count;
  266. } HashEnumArg_t;
  267. typedef HashEnumArg_t *HashEnumArg_p;
  268. static int acl_hash_enumerator (PLHashEntry *he, PRIntn i, void *arg)
  269. {
  270. HashEnumArg_t *info = (HashEnumArg_t *)arg;
  271. char **names = info->names;
  272. names[info->count++] = STRDUP((const char *)he->key);
  273. return names[info->count-1] ? 0 : -1;
  274. }
  275. int acl_registered_names(PLHashTable *ht, int count, char ***names)
  276. {
  277. HashEnumArg_t arg;
  278. int rv;
  279. if (count == 0) {
  280. *names = 0;
  281. return 0;
  282. }
  283. arg.names = (char **)MALLOC(count * sizeof(char *));
  284. arg.count = 0;
  285. if (!arg.names) return -1;
  286. rv = PR_HashTableEnumerateEntries(ht, acl_hash_enumerator, &arg);
  287. if (rv >= 0) {
  288. /* success */
  289. *names = arg.names;
  290. }
  291. else {
  292. *names = 0;
  293. }
  294. return rv;
  295. }
  296. NSAPI_PUBLIC int
  297. ACL_MethodNamesGet(NSErr_t *errp, char ***names, int *count)
  298. {
  299. *count = cur_method;
  300. return acl_registered_names (ACLMethodHash, *count, names);
  301. }
  302. NSAPI_PUBLIC int
  303. ACL_MethodNamesFree(NSErr_t *errp, char **names, int count)
  304. {
  305. int i;
  306. if (!names) return 0;
  307. for (i = count-1; i; i--) FREE(names[i]);
  308. FREE(names);
  309. return 0;
  310. }
  311. NSAPI_PUBLIC int
  312. ACL_DbTypeFind(NSErr_t *errp, const char *name, ACLDbType_t *t)
  313. {
  314. ACLDbType_t rv;
  315. /* Don't have to get the Critical Section lock 'cause the only danger
  316. * would be if the hash table had to be resized. We created it with
  317. * room for 32 entries before that happens.
  318. */
  319. rv = (ACLDbType_t) PR_HashTableLookup(ACLDbTypeHash, name);
  320. if (rv != NULL) {
  321. *t = rv;
  322. return 0;
  323. }
  324. return -1;
  325. }
  326. /* ACL_DbTypeRegister
  327. * INPUT
  328. * name DbType name string. Can be freed after return.
  329. * OUTPUT
  330. * &t Place to return the DbType (>0)
  331. * retcode 0 on success, non-zero otherwise
  332. */
  333. int cur_dbtype = 0; /* Use a static counter to generate the numbers */
  334. NSAPI_PUBLIC int
  335. ACL_DbTypeRegister(NSErr_t *errp, const char *name, DbParseFn_t func, ACLDbType_t *t)
  336. {
  337. ACLDbType_t rv;
  338. ACL_CritEnter();
  339. /* See if this is already registered */
  340. rv = (ACLDbType_t) PR_HashTableLookup(ACLDbTypeHash, name);
  341. if (rv != NULL) {
  342. *t = rv;
  343. ACLDbParseFnTable[(int)(PRSize)rv] = func;
  344. ACL_CritExit();
  345. return 0;
  346. }
  347. /* To prevent the hash table from resizing, don't get to 32 entries */
  348. if (cur_dbtype >= (ACL_MAX_DBTYPE-1)) {
  349. ACL_CritExit();
  350. return -1;
  351. }
  352. /* Put it in the hash table */
  353. if (NULL == PR_HashTableAdd(ACLDbTypeHash, name, (void *)(intptr_t)++cur_dbtype)) {
  354. ACL_CritExit();
  355. return -1;
  356. }
  357. *t = (ACLDbType_t) (intptr_t)cur_dbtype;
  358. ACLDbParseFnTable[cur_dbtype] = func;
  359. ACL_CritExit();
  360. return 0;
  361. }
  362. NSAPI_PUBLIC int
  363. ACL_DbTypeIsRegistered (NSErr_t *errp, const ACLDbType_t t)
  364. {
  365. return (0 < ((int)(PRSize)t) && ((int)(PRSize)t) <= cur_dbtype);
  366. }
  367. /* ACL_MethodIsEqual
  368. * RETURNS non-zero if equal.
  369. */
  370. NSAPI_PUBLIC int
  371. ACL_MethodIsEqual(NSErr_t *errp, const ACLMethod_t t1, const ACLMethod_t t2)
  372. {
  373. return (t1 == t2);
  374. }
  375. /* ACL_DbTypeIsEqual
  376. * RETURNS non-zero if equal.
  377. */
  378. NSAPI_PUBLIC int
  379. ACL_DbTypeIsEqual(NSErr_t *errp, const ACLDbType_t t1, const ACLDbType_t t2)
  380. {
  381. return (t1 == t2);
  382. }
  383. /* ACL_MethodNameIsEqual
  384. * Takes a method type and a method name and sees if they match.
  385. * Returns non-zero on match.
  386. */
  387. NSAPI_PUBLIC int
  388. ACL_MethodNameIsEqual(NSErr_t *errp, const ACLMethod_t t1, const char *name)
  389. {
  390. int rv;
  391. ACLMethod_t t2;
  392. rv = ACL_MethodFind(errp, name, &t2);
  393. if (rv)
  394. return (rv);
  395. else
  396. return (t1 == t2);
  397. }
  398. /* ACL_DbTypeNameIsEqual
  399. * Takes a dbtype type and a dbtype name and sees if they match.
  400. * Returns non-zero on match.
  401. */
  402. NSAPI_PUBLIC int
  403. ACL_DbTypeNameIsEqual(NSErr_t *errp, const ACLDbType_t t1, const char *name)
  404. {
  405. int rv;
  406. ACLDbType_t t2;
  407. rv = ACL_DbTypeFind(errp, name, &t2);
  408. if (rv)
  409. return (rv);
  410. else
  411. return (t1 == t2);
  412. }
  413. /* ACL_MethodGetDefault
  414. */
  415. NSAPI_PUBLIC ACLMethod_t
  416. ACL_MethodGetDefault(NSErr_t *errp)
  417. {
  418. return (ACLMethodDefault);
  419. }
  420. /* ACL_MethodSetDefault
  421. */
  422. NSAPI_PUBLIC int
  423. ACL_MethodSetDefault(NSErr_t *errp, const ACLMethod_t t)
  424. {
  425. ACLMethodDefault = t;
  426. return 0;
  427. }
  428. /* ACL_DbTypeGetDefault
  429. */
  430. NSAPI_PUBLIC ACLDbType_t
  431. ACL_DbTypeGetDefault(NSErr_t *errp)
  432. {
  433. return (ACLDbTypeDefault);
  434. }
  435. /* ACL_DbTypeSetDefault
  436. */
  437. NSAPI_PUBLIC int
  438. ACL_DbTypeSetDefault(NSErr_t *errp, ACLDbType_t t)
  439. {
  440. ACLDbTypeDefault = t;
  441. return 0;
  442. }
  443. /* ACL_DatabaseGetDefault
  444. */
  445. NSAPI_PUBLIC const char *
  446. ACL_DatabaseGetDefault(NSErr_t *errp)
  447. {
  448. return (ACLDatabaseDefault);
  449. }
  450. /* ACL_DatabaseSetDefault
  451. */
  452. NSAPI_PUBLIC int
  453. ACL_DatabaseSetDefault(NSErr_t *errp, const char *dbname)
  454. {
  455. ACLDbType_t dbtype;
  456. int rv;
  457. void *db;
  458. if (!dbname || !*dbname) return LAS_EVAL_FAIL;
  459. rv = ACL_DatabaseFind(errp, dbname, &dbtype, &db);
  460. if (rv != LAS_EVAL_TRUE) return -1;
  461. if (ACLDatabaseDefault) pool_free(ACL_DATABASE_POOL, ACLDatabaseDefault);
  462. ACL_DbTypeSetDefault(errp, dbtype);
  463. ACLDatabaseDefault = pool_strdup(ACL_DATABASE_POOL, dbname);
  464. return ACLDatabaseDefault ? 0 : -1;
  465. }
  466. /* ACL_AuthInfoGetMethod
  467. * INPUT
  468. * auth_info A PList of the authentication name/value pairs as
  469. * provided by EvalTestRights to the LAS.
  470. * OUTPUT
  471. * *t The Method number. This can be the default method
  472. number if the auth_info PList doesn't explicitly have a Method entry.
  473. * retcode 0 on success.
  474. */
  475. NSAPI_PUBLIC int
  476. ACL_AuthInfoGetMethod(NSErr_t *errp, PList_t auth_info, ACLMethod_t *t)
  477. {
  478. ACLMethod_t *methodp;
  479. if (!auth_info ||
  480. PListGetValue(auth_info, ACL_ATTR_METHOD_INDEX, (void **)&methodp, NULL) < 0)
  481. {
  482. /* No entry for "method" */
  483. *t = ACLMethodDefault;
  484. } else {
  485. *t = *methodp;
  486. }
  487. return 0;
  488. }
  489. /* ACL_AuthInfoSetMethod
  490. * INPUT
  491. * auth_info A PList of the authentication name/value pairs as
  492. * provided by EvalTestRights to the LAS.
  493. * t The Method number.
  494. * OUTPUT
  495. * retcode 0 on success.
  496. */
  497. NSAPI_PUBLIC int
  498. ACL_AuthInfoSetMethod(NSErr_t *errp, PList_t auth_info, ACLMethod_t t)
  499. {
  500. ACLMethod_t *methodp;
  501. int rv;
  502. if (auth_info) {
  503. rv = PListGetValue(auth_info, ACL_ATTR_METHOD_INDEX, (void **)&methodp,
  504. NULL);
  505. if (rv < 0) {
  506. /* No entry for "method" */
  507. methodp = (ACLMethod_t *)PERM_MALLOC(sizeof(ACLMethod_t));
  508. if (!methodp) return -1;
  509. *methodp = t;
  510. PListInitProp(auth_info, ACL_ATTR_METHOD_INDEX, ACL_ATTR_METHOD, methodp, 0);
  511. }
  512. else {
  513. /* replace the old entry */
  514. if (!methodp) return -1;
  515. *methodp = t;
  516. }
  517. }
  518. else {
  519. return -1;
  520. }
  521. return 0;
  522. }
  523. /* ACL_AuthInfoSetDbname
  524. * INPUT
  525. * auth_info A PList of the authentication name/value pairs as
  526. * provided by EvalTestRights to the LAS.
  527. * dbname Name of the new auth_info database.
  528. * OUTPUT
  529. * retcode 0 on success.
  530. */
  531. NSAPI_PUBLIC int
  532. ACL_AuthInfoSetDbname(NSErr_t *errp, PList_t auth_info, const char *dbname)
  533. {
  534. ACLDbType_t *dbtype = NULL;
  535. ACLDbType_t *t2;
  536. char *copy;
  537. char *n2;
  538. void *db;
  539. int old1;
  540. int old2;
  541. int rv;
  542. if (auth_info) {
  543. dbtype = (ACLDbType_t *)PERM_MALLOC(sizeof(ACLDbType_t));
  544. if (!dbtype) {
  545. /* out of memory */
  546. return -1;
  547. }
  548. rv = ACL_DatabaseFind(errp, dbname, dbtype, (void **)&db);
  549. if (rv != LAS_EVAL_TRUE) {
  550. PERM_FREE(dbtype);
  551. return -1;
  552. }
  553. /* Check the existing entry */
  554. old1 = PListGetValue(auth_info, ACL_ATTR_DBTYPE_INDEX, (void **)&t2,
  555. NULL);
  556. old2 = PListGetValue(auth_info, ACL_ATTR_DATABASE_INDEX, (void **)&n2,
  557. NULL);
  558. if (old1 >= 0 && old2 >= 0) {
  559. /* check if the old entry is same */
  560. if (ACL_DbTypeIsEqual(errp, *dbtype, *t2)) {
  561. /* Nothing to do */
  562. PERM_FREE(dbtype);
  563. return 0;
  564. }
  565. }
  566. /* free the old entries */
  567. if (old1 >= 0) {
  568. PListDeleteProp(auth_info, ACL_ATTR_DBTYPE_INDEX, ACL_ATTR_DBTYPE);
  569. PERM_FREE(t2);
  570. }
  571. if (old2 >= 0) {
  572. PListDeleteProp(auth_info, ACL_ATTR_DATABASE_INDEX, ACL_ATTR_DATABASE);
  573. PERM_FREE(n2);
  574. }
  575. /* Create new entries for "dbtype" & "dbname" */
  576. copy = (char *)PERM_STRDUP(dbname);
  577. if (!copy) {
  578. PERM_FREE(dbtype);
  579. return -1;
  580. }
  581. PListInitProp(auth_info, ACL_ATTR_DATABASE_INDEX,
  582. ACL_ATTR_DATABASE, copy, 0);
  583. PListInitProp(auth_info, ACL_ATTR_DBTYPE_INDEX, ACL_ATTR_DBTYPE,
  584. dbtype, 0);
  585. }
  586. else {
  587. return -1;
  588. }
  589. return 0;
  590. }
  591. /* ACL_AuthInfoGetDbType
  592. * INPUT
  593. * auth_info A PList of the authentication name/value pairs as
  594. * provided by EvalTestRights to the LAS.
  595. * OUTPUT
  596. * *t The DbType number. This can be the default dbtype
  597. * number if the auth_info PList doesn't explicitly
  598. * have a DbType entry.
  599. * retcode 0 on success.
  600. */
  601. NSAPI_PUBLIC int
  602. ACL_AuthInfoGetDbType(NSErr_t *errp, PList_t auth_info, ACLDbType_t *t)
  603. {
  604. ACLDbType_t *dbtypep;
  605. if (!auth_info ||
  606. PListGetValue(auth_info, ACL_ATTR_DBTYPE_INDEX, (void **)&dbtypep, NULL) < 0)
  607. {
  608. /* No entry for "dbtype" */
  609. *t = ACLDbTypeDefault;
  610. } else {
  611. *t = *dbtypep;
  612. }
  613. return 0;
  614. }
  615. /* ACL_AuthInfoGetDbname
  616. * INPUT
  617. * auth_info A PList of the authentication name/value pairs as
  618. * provided by EvalTestRights to the LAS.
  619. * OUTPUT
  620. * dbname The database name. This can be the default database
  621. * name if the auth_info PList doesn't explicitly
  622. * have a database entry.
  623. * retcode 0 on success.
  624. */
  625. NSAPI_PUBLIC int
  626. ACL_AuthInfoGetDbname(PList_t auth_info, char **dbname)
  627. {
  628. char *dbstr;
  629. if (!auth_info ||
  630. PListGetValue(auth_info, ACL_ATTR_DATABASE_INDEX, (void **)&dbstr, NULL) < 0)
  631. {
  632. /* No entry for "database" */
  633. dbstr = ACLDatabaseDefault;
  634. }
  635. /* else the value was already set by the PListGetValue call */
  636. *dbname = dbstr;
  637. return 0;
  638. }
  639. NSAPI_PUBLIC DbParseFn_t
  640. ACL_DbTypeParseFn(NSErr_t *errp, const ACLDbType_t dbtype)
  641. {
  642. if (ACL_DbTypeIsRegistered(errp, dbtype))
  643. return ACLDbParseFnTable[(int)(PRSize)dbtype];
  644. else
  645. return 0;
  646. }
  647. /* The hash table is keyed by attribute name, and contains pointers to the
  648. * PRCList headers. These in turn, circularly link a set of AttrGetter_s
  649. * structures.
  650. */
  651. NSAPI_PUBLIC int
  652. ACL_AttrGetterRegister(NSErr_t *errp, const char *attr, ACLAttrGetterFn_t fn,
  653. ACLMethod_t m, ACLDbType_t d, int position, void *arg)
  654. {
  655. ACLAttrGetter_t *getter;
  656. PLHashEntry **hep;
  657. if (position != ACL_AT_FRONT && position != ACL_AT_END) {
  658. return -1;
  659. }
  660. ACL_CritEnter();
  661. hep = PR_HashTableRawLookup(ACLAttrGetterHash, PR_HashCaseString(attr), attr);
  662. /* Now, allocate the current entry */
  663. getter = (ACLAttrGetter_t *)CALLOC(sizeof(ACLAttrGetter_t));
  664. if (getter == NULL) {
  665. ACL_CritExit();
  666. return -1;
  667. }
  668. getter->method = m;
  669. getter->dbtype = d;
  670. getter->fn = fn;
  671. getter->arg = arg;
  672. if (*hep == 0) { /* New entry */
  673. PR_INIT_CLIST(&getter->list);
  674. if (NULL == PR_HashTableAdd(ACLAttrGetterHash, attr, (void *)getter)) {
  675. FREE(getter);
  676. ACL_CritExit();
  677. return -1;
  678. }
  679. }
  680. else {
  681. ACLAttrGetter_t *head = (ACLAttrGetter_t *)((*hep)->value);
  682. PR_INSERT_BEFORE(&getter->list, &head->list);
  683. if (position == ACL_AT_FRONT) {
  684. /* Set new head of list */
  685. (*hep)->value = (void *)getter;
  686. }
  687. }
  688. ACL_CritExit();
  689. /* covscan false positive getter is stored in hash table */
  690. /* coverity[leaked_storage] */
  691. return 0;
  692. }
  693. NSAPI_PUBLIC int
  694. ACL_AttrGetterFind(NSErr_t *errp, const char *attr,
  695. ACLAttrGetterList_t *getters)
  696. {
  697. *getters = PR_HashTableLookup(ACLAttrGetterHash, attr);
  698. if (*getters)
  699. return 0;
  700. else
  701. return -1;
  702. }
  703. NSAPI_PUBLIC
  704. ACLAttrGetter_t * ACL_AttrGetterFirst(ACLAttrGetterList_t *getters)
  705. {
  706. ACLAttrGetter_t * first = 0;
  707. if (getters && *getters) {
  708. first = (ACLAttrGetter_t *)(*getters);
  709. }
  710. return first;
  711. }
  712. NSAPI_PUBLIC ACLAttrGetter_t *
  713. ACL_AttrGetterNext(ACLAttrGetterList_t *getters, ACLAttrGetter_t *last)
  714. {
  715. ACLAttrGetter_t *head;
  716. ACLAttrGetter_t *next = 0;
  717. if (getters && *getters && last) {
  718. head = (ACLAttrGetter_t *)(*getters);
  719. if (head) {
  720. /* End of list? */
  721. if (last != (ACLAttrGetter_t *)PR_LIST_TAIL(&head->list)) {
  722. /* No, get next entry */
  723. next = (ACLAttrGetter_t *)PR_NEXT_LINK(&last->list);
  724. }
  725. }
  726. }
  727. return next;
  728. }