1*7c478bd9Sstevel@tonic-gate /* 2*7c478bd9Sstevel@tonic-gate * CDDL HEADER START 3*7c478bd9Sstevel@tonic-gate * 4*7c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 5*7c478bd9Sstevel@tonic-gate * Common Development and Distribution License, Version 1.0 only 6*7c478bd9Sstevel@tonic-gate * (the "License"). You may not use this file except in compliance 7*7c478bd9Sstevel@tonic-gate * with the License. 8*7c478bd9Sstevel@tonic-gate * 9*7c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 10*7c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 11*7c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 12*7c478bd9Sstevel@tonic-gate * and limitations under the License. 13*7c478bd9Sstevel@tonic-gate * 14*7c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 15*7c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 16*7c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 17*7c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 18*7c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 19*7c478bd9Sstevel@tonic-gate * 20*7c478bd9Sstevel@tonic-gate * CDDL HEADER END 21*7c478bd9Sstevel@tonic-gate */ 22*7c478bd9Sstevel@tonic-gate /* 23*7c478bd9Sstevel@tonic-gate * Copyright 1997-2002 Sun Microsystems, Inc. All rights reserved. 24*7c478bd9Sstevel@tonic-gate * Use is subject to license terms. 25*7c478bd9Sstevel@tonic-gate */ 26*7c478bd9Sstevel@tonic-gate 27*7c478bd9Sstevel@tonic-gate /* 28*7c478bd9Sstevel@tonic-gate * gsscred utility 29*7c478bd9Sstevel@tonic-gate * 30*7c478bd9Sstevel@tonic-gate * Manages mapping between a security principal 31*7c478bd9Sstevel@tonic-gate * name and unix uid. 32*7c478bd9Sstevel@tonic-gate */ 33*7c478bd9Sstevel@tonic-gate 34*7c478bd9Sstevel@tonic-gate #ifndef _GSSCRED_H 35*7c478bd9Sstevel@tonic-gate #define _GSSCRED_H 36*7c478bd9Sstevel@tonic-gate 37*7c478bd9Sstevel@tonic-gate #include <libintl.h> 38*7c478bd9Sstevel@tonic-gate #include <locale.h> 39*7c478bd9Sstevel@tonic-gate #include <gssapi/gssapi.h> 40*7c478bd9Sstevel@tonic-gate #include <pwd.h> 41*7c478bd9Sstevel@tonic-gate 42*7c478bd9Sstevel@tonic-gate #ifdef __cplusplus 43*7c478bd9Sstevel@tonic-gate extern "C" { 44*7c478bd9Sstevel@tonic-gate #endif 45*7c478bd9Sstevel@tonic-gate 46*7c478bd9Sstevel@tonic-gate #if !defined(TEXT_DOMAIN) 47*7c478bd9Sstevel@tonic-gate #define TEXT_DOMAIN "SUNW_OST_OSCMD" 48*7c478bd9Sstevel@tonic-gate #endif 49*7c478bd9Sstevel@tonic-gate 50*7c478bd9Sstevel@tonic-gate #define GSSCRED_FLAT_FILE -1 51*7c478bd9Sstevel@tonic-gate 52*7c478bd9Sstevel@tonic-gate /* Structure to hold GSS credentials for each entry */ 53*7c478bd9Sstevel@tonic-gate typedef struct GssCredEntry_t { 54*7c478bd9Sstevel@tonic-gate char *principal_name; 55*7c478bd9Sstevel@tonic-gate int unix_uid; 56*7c478bd9Sstevel@tonic-gate char *comment; 57*7c478bd9Sstevel@tonic-gate struct GssCredEntry_t *next; 58*7c478bd9Sstevel@tonic-gate } GssCredEntry; 59*7c478bd9Sstevel@tonic-gate 60*7c478bd9Sstevel@tonic-gate /* 61*7c478bd9Sstevel@tonic-gate * Misc functions in gsscred. 62*7c478bd9Sstevel@tonic-gate */ 63*7c478bd9Sstevel@tonic-gate int gsscred_AsHex(const gss_buffer_t inBuf, gss_buffer_t outBuf); 64*7c478bd9Sstevel@tonic-gate int gsscred_MakeName(const gss_OID mechOid, const char *name, 65*7c478bd9Sstevel@tonic-gate const char *nameOid, gss_buffer_t OutName); 66*7c478bd9Sstevel@tonic-gate int gsscred_read_config_file(void); 67*7c478bd9Sstevel@tonic-gate int gsscred_MakeNameHeader(const gss_OID mechOid, gss_buffer_t outNameHdr); 68*7c478bd9Sstevel@tonic-gate 69*7c478bd9Sstevel@tonic-gate 70*7c478bd9Sstevel@tonic-gate /* 71*7c478bd9Sstevel@tonic-gate * Flat file based gsscred functions. 72*7c478bd9Sstevel@tonic-gate */ 73*7c478bd9Sstevel@tonic-gate int file_addGssCredEntry(const gss_buffer_t hexName, const char *uid, 74*7c478bd9Sstevel@tonic-gate const char *comment, char **errDetails); 75*7c478bd9Sstevel@tonic-gate int file_getGssCredEntry(const gss_buffer_t name, const char *uid, 76*7c478bd9Sstevel@tonic-gate char **errDetails); 77*7c478bd9Sstevel@tonic-gate int file_deleteGssCredEntry(const gss_buffer_t name, const char *uid, 78*7c478bd9Sstevel@tonic-gate char **errDetails); 79*7c478bd9Sstevel@tonic-gate int file_getGssCredUid(const gss_buffer_t name, uid_t *uidOut); 80*7c478bd9Sstevel@tonic-gate 81*7c478bd9Sstevel@tonic-gate 82*7c478bd9Sstevel@tonic-gate /* 83*7c478bd9Sstevel@tonic-gate * GSS entry point for retrieving user uid information based on 84*7c478bd9Sstevel@tonic-gate * exported name buffer. 85*7c478bd9Sstevel@tonic-gate */ 86*7c478bd9Sstevel@tonic-gate int gss_getGssCredEntry(const gss_buffer_t expName, uid_t *uid); 87*7c478bd9Sstevel@tonic-gate 88*7c478bd9Sstevel@tonic-gate #ifdef __cplusplus 89*7c478bd9Sstevel@tonic-gate } 90*7c478bd9Sstevel@tonic-gate #endif 91*7c478bd9Sstevel@tonic-gate 92*7c478bd9Sstevel@tonic-gate #endif /* _GSSCRED_H */ 93