1 0 stevel /* 2 0 stevel * CDDL HEADER START 3 0 stevel * 4 0 stevel * The contents of this file are subject to the terms of the 5 9698 Peter * Common Development and Distribution License (the "License"). 6 9698 Peter * You may not use this file except in compliance with the License. 7 0 stevel * 8 0 stevel * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 9 0 stevel * or http://www.opensolaris.org/os/licensing. 10 0 stevel * See the License for the specific language governing permissions 11 0 stevel * and limitations under the License. 12 0 stevel * 13 0 stevel * When distributing Covered Code, include this CDDL HEADER in each 14 0 stevel * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 15 0 stevel * If applicable, add the following below this CDDL HEADER, with the 16 0 stevel * fields enclosed by brackets "[]" replaced with your own identifying 17 0 stevel * information: Portions Copyright [yyyy] [name of copyright owner] 18 0 stevel * 19 0 stevel * CDDL HEADER END 20 0 stevel */ 21 0 stevel /* 22 9698 Peter * Copyright 2009 Sun Microsystems, Inc. All rights reserved. 23 0 stevel * Use is subject to license terms. 24 0 stevel */ 25 0 stevel 26 0 stevel /* 27 0 stevel * glue routine for gss_store_cred 28 0 stevel */ 29 0 stevel 30 0 stevel #include <mechglueP.h> 31 9698 Peter 32 9698 Peter static OM_uint32 val_store_cred_args( 33 9698 Peter OM_uint32 *minor_status, 34 9698 Peter const gss_cred_id_t input_cred_handle, 35 9698 Peter gss_OID_set *elements_stored) 36 9698 Peter { 37 9698 Peter 38 9698 Peter /* Initialize outputs. */ 39 9698 Peter 40 9698 Peter if (minor_status != NULL) 41 9698 Peter *minor_status = 0; 42 9698 Peter 43 9698 Peter if (elements_stored != NULL) 44 9698 Peter *elements_stored = GSS_C_NULL_OID_SET; 45 9698 Peter 46 9698 Peter /* Validate arguments. */ 47 9698 Peter 48 9698 Peter if (minor_status == NULL) 49 9698 Peter return (GSS_S_CALL_INACCESSIBLE_WRITE); 50 9698 Peter 51 9698 Peter if (input_cred_handle == GSS_C_NO_CREDENTIAL) 52 9698 Peter return (GSS_S_CALL_INACCESSIBLE_READ | GSS_S_NO_CRED); 53 9698 Peter 54 9698 Peter return (GSS_S_COMPLETE); 55 9698 Peter } 56 0 stevel 57 0 stevel OM_uint32 gss_store_cred(minor_status, 58 0 stevel input_cred_handle, 59 0 stevel cred_usage, 60 0 stevel desired_mech, 61 0 stevel overwrite_cred, 62 0 stevel default_cred, 63 0 stevel elements_stored, 64 0 stevel cred_usage_stored) 65 0 stevel 66 0 stevel OM_uint32 *minor_status; 67 0 stevel const gss_cred_id_t input_cred_handle; 68 0 stevel gss_cred_usage_t cred_usage; 69 0 stevel const gss_OID desired_mech; 70 0 stevel OM_uint32 overwrite_cred; 71 0 stevel OM_uint32 default_cred; 72 0 stevel gss_OID_set *elements_stored; 73 0 stevel gss_cred_usage_t *cred_usage_stored; 74 0 stevel 75 0 stevel { 76 0 stevel OM_uint32 major_status = GSS_S_FAILURE; 77 0 stevel gss_union_cred_t union_cred; 78 0 stevel gss_cred_id_t mech_cred; 79 0 stevel gss_mechanism mech; 80 0 stevel gss_OID dmech; 81 0 stevel int i; 82 0 stevel 83 9698 Peter major_status = val_store_cred_args(minor_status, 84 9698 Peter input_cred_handle, 85 9698 Peter elements_stored); 86 9698 Peter if (major_status != GSS_S_COMPLETE) 87 9698 Peter return (major_status); 88 0 stevel 89 9698 Peter /* Initial value needed below. */ 90 9698 Peter major_status = GSS_S_FAILURE; 91 0 stevel 92 0 stevel if (cred_usage_stored != NULL) 93 0 stevel *cred_usage_stored = GSS_C_BOTH; /* there's no GSS_C_NEITHER */ 94 0 stevel 95 0 stevel union_cred = (gss_union_cred_t)input_cred_handle; 96 0 stevel 97 0 stevel /* desired_mech != GSS_C_NULL_OID -> store one element */ 98 0 stevel if (desired_mech != GSS_C_NULL_OID) { 99 0 stevel mech = __gss_get_mechanism(desired_mech); 100 0 stevel if (mech == NULL) 101 0 stevel return (GSS_S_BAD_MECH); 102 0 stevel 103 0 stevel if (mech->gss_store_cred == NULL) 104 0 stevel return (major_status); 105 0 stevel 106 0 stevel mech_cred = __gss_get_mechanism_cred(union_cred, desired_mech); 107 0 stevel if (mech_cred == GSS_C_NO_CREDENTIAL) 108 0 stevel return (GSS_S_NO_CRED); 109 0 stevel 110 0 stevel return (mech->gss_store_cred(mech->context, 111 0 stevel minor_status, 112 0 stevel (gss_cred_id_t)mech_cred, 113 0 stevel cred_usage, 114 0 stevel desired_mech, 115 0 stevel overwrite_cred, 116 0 stevel default_cred, 117 0 stevel elements_stored, 118 0 stevel cred_usage_stored)); 119 0 stevel } 120 0 stevel 121 0 stevel /* desired_mech == GSS_C_NULL_OID -> store all elements */ 122 0 stevel 123 0 stevel *minor_status = 0; 124 0 stevel 125 0 stevel for (i = 0; i < union_cred->count; i++) { 126 0 stevel /* Get mech and cred element */ 127 0 stevel dmech = &union_cred->mechs_array[i]; 128 0 stevel mech = __gss_get_mechanism(dmech); 129 0 stevel if (mech == NULL) 130 0 stevel continue; 131 0 stevel 132 0 stevel if (mech->gss_store_cred == NULL) 133 0 stevel continue; 134 0 stevel 135 0 stevel mech_cred = __gss_get_mechanism_cred(union_cred, dmech); 136 0 stevel if (mech_cred == GSS_C_NO_CREDENTIAL) 137 0 stevel continue; /* can't happen, but safe to ignore */ 138 0 stevel 139 0 stevel major_status = mech->gss_store_cred(mech->context, 140 0 stevel minor_status, 141 0 stevel (gss_cred_id_t)mech_cred, 142 0 stevel cred_usage, 143 0 stevel dmech, 144 0 stevel overwrite_cred, 145 0 stevel default_cred, 146 0 stevel NULL, 147 0 stevel cred_usage_stored); 148 0 stevel if (major_status != GSS_S_COMPLETE) 149 0 stevel continue; 150 0 stevel 151 0 stevel /* Succeeded for at least one mech */ 152 0 stevel 153 0 stevel if (elements_stored == NULL) 154 0 stevel continue; 155 0 stevel 156 0 stevel if (*elements_stored == GSS_C_NULL_OID_SET) { 157 0 stevel major_status = gss_create_empty_oid_set(minor_status, 158 0 stevel elements_stored); 159 0 stevel 160 0 stevel if (GSS_ERROR(major_status)) 161 0 stevel return (major_status); 162 0 stevel } 163 0 stevel 164 0 stevel major_status = gss_add_oid_set_member(minor_status, dmech, 165 0 stevel elements_stored); 166 0 stevel 167 0 stevel /* The caller should clean up elements_stored */ 168 0 stevel if (GSS_ERROR(major_status)) 169 0 stevel return (major_status); 170 0 stevel } 171 0 stevel 172 0 stevel /* 173 0 stevel * Success with some mechs may mask failure with others, but 174 0 stevel * that's what elements_stored is for. 175 0 stevel */ 176 0 stevel return (major_status); 177 0 stevel } 178