/* * Copyright (c) 1998-2005, 2010 Todd C. Miller * * Permission to use, copy, modify, and distribute this software for any * purpose with or without fee is hereby granted, provided that the above * copyright notice and this permission notice appear in all copies. * * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. * * Sponsored in part by the Defense Advanced Research Projects * Agency (DARPA) and Air Force Research Laboratory, Air Force * Materiel Command, USAF, under agreement number F39502-99-1-0512. */ #include #include #include #include #ifdef STDC_HEADERS # include # include #else # ifdef HAVE_STDLIB_H # include # endif #endif /* STDC_HEADERS */ #ifdef HAVE_STRING_H # include #endif /* HAVE_STRING_H */ #ifdef HAVE_STRINGS_H # include #endif /* HAVE_STRINGS_H */ #ifdef HAVE_UNISTD_H # include #endif /* HAVE_UNISTD_H */ #include #ifdef __hpux # undef MAXINT # include #else # include #endif /* __hpux */ #include #include "sudo.h" #include "sudo_auth.h" int secureware_init(pw, auth) struct passwd *pw; sudo_auth *auth; { #ifdef __alpha extern int crypt_type; if (crypt_type == INT_MAX) return AUTH_FAILURE; /* no shadow */ #endif sudo_setspent(); auth->data = sudo_getepw(pw); sudo_endspent(); return AUTH_SUCCESS; } int secureware_verify(pw, pass, auth) struct passwd *pw; char *pass; sudo_auth *auth; { char *pw_epasswd = auth->data; #ifdef __alpha extern int crypt_type; # ifdef HAVE_DISPCRYPT if (strcmp(pw_epasswd, dispcrypt(pass, pw_epasswd, crypt_type)) == 0) return AUTH_SUCCESS; # else if (crypt_type == AUTH_CRYPT_BIGCRYPT) { if (strcmp(pw_epasswd, bigcrypt(pass, pw_epasswd)) == 0) return AUTH_SUCCESS; } else if (crypt_type == AUTH_CRYPT_CRYPT16) { if (strcmp(pw_epasswd, crypt(pass, pw_epasswd)) == 0) return AUTH_SUCCESS; } # endif /* HAVE_DISPCRYPT */ #elif defined(HAVE_BIGCRYPT) if (strcmp(pw_epasswd, bigcrypt(pass, pw_epasswd)) == 0) return AUTH_SUCCESS; #endif /* __alpha */ return AUTH_FAILURE; } int secureware_cleanup(pw, auth) struct passwd *pw; sudo_auth *auth; { char *pw_epasswd = auth->data; if (pw_epasswd != NULL) { zero_bytes(pw_epasswd, strlen(pw_epasswd)); efree(pw_epasswd); } return AUTH_SUCCESS; }