1/* 2 * Copyright (c) 2006 Kungliga Tekniska H�gskolan 3 * (Royal Institute of Technology, Stockholm, Sweden). 4 * All rights reserved. 5 * 6 * Portions Copyright (c) 2009 Apple Inc. All rights reserved. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 12 * 1. Redistributions of source code must retain the above copyright 13 * notice, this list of conditions and the following disclaimer. 14 * 15 * 2. Redistributions in binary form must reproduce the above copyright 16 * notice, this list of conditions and the following disclaimer in the 17 * documentation and/or other materials provided with the distribution. 18 * 19 * 3. Neither the name of the Institute nor the names of its contributors 20 * may be used to endorse or promote products derived from this software 21 * without specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33 * SUCH DAMAGE. 34 */ 35 36#include "ntlm.h" 37#include <gssapi_spi.h> 38 39void 40_gss_ntlm_iter_creds_f(OM_uint32 flags, 41 void *userctx , 42 void (*cred_iter)(void *, gss_OID, gss_cred_id_t)) 43{ 44 krb5_error_code ret; 45 krb5_context context = NULL; 46 krb5_storage *request, *response; 47 krb5_data response_data; 48 49 ret = krb5_init_context(&context); 50 if (ret) 51 goto done; 52 53 ret = krb5_kcm_storage_request(context, KCM_OP_GET_NTLM_USER_LIST, &request); 54 if (ret) 55 goto done; 56 57 ret = krb5_kcm_call(context, request, &response, &response_data); 58 krb5_storage_free(request); 59 if (ret) 60 goto done; 61 62 while (1) { 63 uint32_t morep; 64 char *user = NULL, *domain = NULL; 65 kcmuuid_t uuid; 66 ntlm_cred dn; 67 size_t sret; 68 69 ret = krb5_ret_uint32(response, &morep); 70 if (ret) goto out; 71 72 if (!morep) goto out; 73 74 ret = krb5_ret_stringz(response, &user); 75 if (ret) goto out; 76 ret = krb5_ret_stringz(response, &domain); 77 if (ret) { 78 free(user); 79 goto out; 80 } 81 sret = krb5_storage_read(response, uuid, sizeof(uuid)); 82 if (sret != sizeof(uuid)) { 83 free(user); 84 free(domain); 85 goto out; 86 } 87 88 dn = calloc(1, sizeof(*dn)); 89 if (dn == NULL) { 90 free(user); 91 free(domain); 92 goto out; 93 } 94 dn->user = user; 95 dn->domain = domain; 96 dn->flags = NTLM_UUID; 97 memcpy(dn->uuid, uuid, sizeof(dn->uuid)); 98 99 cred_iter(userctx, GSS_NTLM_MECHANISM, (gss_cred_id_t)dn); 100 } 101 out: 102 krb5_storage_free(response); 103 krb5_data_free(&response_data); 104 done: 105 if (context) 106 krb5_free_context(context); 107 (*cred_iter)(userctx, NULL, NULL); 108} 109