1/* 2 * Copyright (c) 2006 Kungliga Tekniska H�gskolan 3 * (Royal Institute of Technology, Stockholm, Sweden). 4 * All rights reserved. 5 * 6 * Portions Copyright (c) 2009 Apple Inc. All rights reserved. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 12 * 1. Redistributions of source code must retain the above copyright 13 * notice, this list of conditions and the following disclaimer. 14 * 15 * 2. Redistributions in binary form must reproduce the above copyright 16 * notice, this list of conditions and the following disclaimer in the 17 * documentation and/or other materials provided with the distribution. 18 * 19 * 3. Neither the name of the Institute nor the names of its contributors 20 * may be used to endorse or promote products derived from this software 21 * without specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND 24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE 27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33 * SUCH DAMAGE. 34 */ 35 36#include "ntlm.h" 37#include <gssapi_krb5.h> 38 39OM_uint32 40_gss_ntlm_inquire_sec_context_by_oid(OM_uint32 *minor_status, 41 const gss_ctx_id_t context_handle, 42 const gss_OID desired_object, 43 gss_buffer_set_t *data_set) 44{ 45 ntlm_ctx ctx = (ntlm_ctx)context_handle; 46 47 if (ctx == NULL) { 48 *minor_status = 0; 49 return gss_mg_set_error_string(GSS_NTLM_MECHANISM, GSS_S_NO_CONTEXT, 50 0, "no context"); 51 } 52 53 *minor_status = 0; 54 *data_set = GSS_C_NO_BUFFER_SET; 55 56 if (gss_oid_equal(desired_object, GSS_NTLM_GET_SESSION_KEY_X) || 57 gss_oid_equal(desired_object, GSS_C_INQ_SSPI_SESSION_KEY)) { 58 gss_buffer_desc value; 59 60 if (ctx->sessionkey.length == 0) { 61 *minor_status = ENOENT; 62 return GSS_S_FAILURE; 63 } 64 65 value.length = ctx->sessionkey.length; 66 value.value = ctx->sessionkey.data; 67 68 return gss_add_buffer_set_member(minor_status, 69 &value, 70 data_set); 71 } else if (gss_oid_equal(desired_object, GSS_C_INQ_WIN2K_PAC_X)) { 72 if (ctx->pac.length == 0) { 73 *minor_status = ENOENT; 74 return GSS_S_FAILURE; 75 } 76 77 return gss_add_buffer_set_member(minor_status, 78 &ctx->pac, 79 data_set); 80 } else if (gss_oid_equal(desired_object, GSS_C_NTLM_GUEST)) { 81 gss_buffer_desc value; 82 uint32_t num; 83 84 if (ctx->kcmflags & KCM_NTLM_FLAG_AV_GUEST) 85 num = 1; 86 else 87 num = 0; 88 89 value.length = sizeof(num); 90 value.value = # 91 92 return gss_add_buffer_set_member(minor_status, 93 &value, 94 data_set); 95 } else if (gss_oid_equal(desired_object, GSS_C_PEER_HAS_UPDATED_SPNEGO)) { 96 if (ctx->flags & NTLM_NEG_NTLM2_SESSION) 97 return GSS_S_COMPLETE; 98 return GSS_S_FAILURE; 99 } else if (gss_oid_equal(desired_object, GSS_C_NTLM_RESET_KEYS)) { 100 _gss_ntlm_set_keys(ctx); 101 return GSS_S_COMPLETE; 102 } else { 103 *minor_status = 0; 104 return GSS_S_FAILURE; 105 } 106} 107