1/*
2 * Copyright (c) 1997 - 2000, 2003 Kungliga Tekniska H�gskolan
3 * (Royal Institute of Technology, Stockholm, Sweden).
4 * All rights reserved.
5 *
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
8 * are met:
9 *
10 * 1. Redistributions of source code must retain the above copyright
11 *    notice, this list of conditions and the following disclaimer.
12 *
13 * 2. Redistributions in binary form must reproduce the above copyright
14 *    notice, this list of conditions and the following disclaimer in the
15 *    documentation and/or other materials provided with the distribution.
16 *
17 * 3. Neither the name of the Institute nor the names of its contributors
18 *    may be used to endorse or promote products derived from this software
19 *    without specific prior written permission.
20 *
21 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
22 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
24 * ARE DISCLAIMED.  IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
25 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
26 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
27 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
29 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
31 * SUCH DAMAGE.
32 */
33
34#include "kuser_locl.h"
35RCSID("$Id: kdestroy.c 20458 2007-04-19 20:41:27Z lha $");
36
37static const char *cache;
38static const char *credential;
39static int help_flag;
40static int version_flag;
41static int unlog_flag = 1;
42static int dest_tkt_flag = 1;
43
44struct getargs args[] = {
45    { "credential",	0,   arg_string, &credential,
46      "remove one credential", "principal" },
47    { "cache",		'c', arg_string, &cache, "cache to destroy", "cache" },
48    { "unlog",		0,   arg_negative_flag, &unlog_flag,
49      "do not destroy tokens", NULL },
50    { "delete-v4",	0,   arg_negative_flag, &dest_tkt_flag,
51      "do not destroy v4 tickets", NULL },
52    { "version", 	0,   arg_flag, &version_flag, NULL, NULL },
53    { "help",		'h', arg_flag, &help_flag, NULL, NULL}
54};
55
56int num_args = sizeof(args) / sizeof(args[0]);
57
58static void
59usage (int status)
60{
61    arg_printusage (args, num_args, NULL, "");
62    exit (status);
63}
64
65int
66main (int argc, char **argv)
67{
68    krb5_error_code ret;
69    krb5_context context;
70    krb5_ccache  ccache;
71    int optidx = 0;
72    int exit_val = 0;
73
74    setprogname (argv[0]);
75
76    if(getarg(args, num_args, argc, argv, &optidx))
77	usage(1);
78
79    if (help_flag)
80	usage (0);
81
82    if(version_flag){
83	print_version(NULL);
84	exit(0);
85    }
86
87    argc -= optidx;
88    argv += optidx;
89
90    if (argc != 0)
91	usage (1);
92
93    ret = krb5_init_context (&context);
94    if (ret)
95	errx (1, "krb5_init_context failed: %d", ret);
96
97    if(cache == NULL) {
98	cache = krb5_cc_default_name(context);
99	if (cache == NULL) {
100	    warnx ("krb5_cc_default_name: %s", krb5_get_err_text(context, ret));
101	    exit(1);
102	}
103    }
104
105    ret =  krb5_cc_resolve(context,
106			   cache,
107			   &ccache);
108
109    if (ret == 0) {
110	if (credential) {
111	    krb5_creds mcred;
112
113	    krb5_cc_clear_mcred(&mcred);
114
115	    ret = krb5_parse_name(context, credential, &mcred.server);
116	    if (ret)
117		krb5_err(context, 1, ret,
118			 "Can't parse principal %s", credential);
119
120	    ret = krb5_cc_remove_cred(context, ccache, 0, &mcred);
121	    if (ret)
122		krb5_err(context, 1, ret,
123			 "Failed to remove principal %s", credential);
124
125	    krb5_cc_close(context, ccache);
126	    krb5_free_principal(context, mcred.server);
127	    krb5_free_context(context);
128	    return 0;
129	}
130
131	ret = krb5_cc_destroy (context, ccache);
132	if (ret) {
133	    warnx ("krb5_cc_destroy: %s", krb5_get_err_text(context, ret));
134	    exit_val = 1;
135	}
136    } else {
137	warnx ("krb5_cc_resolve(%s): %s", cache,
138	       krb5_get_err_text(context, ret));
139	exit_val = 1;
140    }
141
142    krb5_free_context (context);
143
144    if (unlog_flag && k_hasafs ()) {
145	if (k_unlog ())
146	    exit_val = 1;
147    }
148
149    return exit_val;
150}
151