1/*
2 * Copyright (c) 2004, PADL Software Pty Ltd.
3 * All rights reserved.
4 *
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
7 * are met:
8 *
9 * 1. Redistributions of source code must retain the above copyright
10 *    notice, this list of conditions and the following disclaimer.
11 *
12 * 2. Redistributions in binary form must reproduce the above copyright
13 *    notice, this list of conditions and the following disclaimer in the
14 *    documentation and/or other materials provided with the distribution.
15 *
16 * 3. Neither the name of PADL Software nor the names of its contributors
17 *    may be used to endorse or promote products derived from this software
18 *    without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY PADL SOFTWARE AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED.  IN NO EVENT SHALL PADL SOFTWARE OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 * SUCH DAMAGE.
31 */
32/* $FreeBSD$ */
33/* RCSID("$Id: gss_set_cred_option.c 21126 2007-06-18 20:19:59Z lha $"); */
34
35#include <gssapi/gssapi.h>
36#include <stdlib.h>
37#include <errno.h>
38
39#include "mech_switch.h"
40#include "cred.h"
41
42OM_uint32
43gss_set_cred_option (OM_uint32 *minor_status,
44		     gss_cred_id_t *cred_handle,
45		     const gss_OID object,
46		     const gss_buffer_t value)
47{
48	struct _gss_cred *cred = (struct _gss_cred *) *cred_handle;
49	OM_uint32	major_status = GSS_S_COMPLETE;
50	struct _gss_mechanism_cred *mc;
51	int one_ok = 0;
52
53	*minor_status = 0;
54
55	_gss_load_mech();
56
57	if (cred == NULL) {
58		struct _gss_mech_switch *m;
59
60		cred = malloc(sizeof(*cred));
61		if (cred == NULL)
62		    return GSS_S_FAILURE;
63
64		SLIST_INIT(&cred->gc_mc);
65
66		SLIST_FOREACH(m, &_gss_mechs, gm_link) {
67
68			if (m->gm_set_cred_option == NULL)
69				continue;
70
71			mc = malloc(sizeof(*mc));
72			if (mc == NULL) {
73			    *cred_handle = (gss_cred_id_t)cred;
74			    gss_release_cred(minor_status, cred_handle);
75			    *minor_status = ENOMEM;
76			    return GSS_S_FAILURE;
77			}
78
79			mc->gmc_mech = m;
80			mc->gmc_mech_oid = &m->gm_mech_oid;
81			mc->gmc_cred = GSS_C_NO_CREDENTIAL;
82
83			major_status = m->gm_set_cred_option(
84			    minor_status, &mc->gmc_cred, object, value);
85
86			if (major_status) {
87				free(mc);
88				continue;
89			}
90			one_ok = 1;
91			SLIST_INSERT_HEAD(&cred->gc_mc, mc, gmc_link);
92		}
93		*cred_handle = (gss_cred_id_t)cred;
94		if (!one_ok) {
95			OM_uint32 junk;
96			gss_release_cred(&junk, cred_handle);
97		}
98	} else {
99		struct _gss_mech_switch *m;
100
101		SLIST_FOREACH(mc, &cred->gc_mc, gmc_link) {
102			m = mc->gmc_mech;
103
104			if (m == NULL)
105				return GSS_S_BAD_MECH;
106
107			if (m->gm_set_cred_option == NULL)
108				continue;
109
110			major_status = m->gm_set_cred_option(minor_status,
111			    &mc->gmc_cred, object, value);
112			if (major_status == GSS_S_COMPLETE)
113				one_ok = 1;
114			else
115				_gss_mg_error(m, major_status, *minor_status);
116
117		}
118	}
119	if (one_ok) {
120		*minor_status = 0;
121		return (GSS_S_COMPLETE);
122	}
123	return (major_status);
124}
125
126