1*549b59edSchristos /* $NetBSD: assertion.c,v 1.3 2021/08/14 16:14:55 christos Exp $ */
24e6df137Slukem
3d11b170bStron /* $OpenLDAP$ */
4bb30016cSlukem /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5bb30016cSlukem *
6*549b59edSchristos * Copyright 1998-2021 The OpenLDAP Foundation.
7bb30016cSlukem * All rights reserved.
8bb30016cSlukem *
9bb30016cSlukem * Redistribution and use in source and binary forms, with or without
10bb30016cSlukem * modification, are permitted only as authorized by the OpenLDAP
11bb30016cSlukem * Public License.
12bb30016cSlukem *
13bb30016cSlukem * A copy of this license is available in the file LICENSE in the
14bb30016cSlukem * top-level directory of the distribution or, alternatively, at
15bb30016cSlukem * <http://www.OpenLDAP.org/license.html>.
16bb30016cSlukem */
17bb30016cSlukem
18376af7d7Schristos #include <sys/cdefs.h>
19*549b59edSchristos __RCSID("$NetBSD: assertion.c,v 1.3 2021/08/14 16:14:55 christos Exp $");
20376af7d7Schristos
21bb30016cSlukem #include "portable.h"
22bb30016cSlukem
23bb30016cSlukem #include <stdio.h>
24bb30016cSlukem #include <ac/stdlib.h>
25bb30016cSlukem #include <ac/string.h>
26bb30016cSlukem #include <ac/time.h>
27bb30016cSlukem
28bb30016cSlukem #include "ldap-int.h"
29bb30016cSlukem
30bb30016cSlukem int
ldap_create_assertion_control_value(LDAP * ld,char * assertion,struct berval * value)31bb30016cSlukem ldap_create_assertion_control_value(
32bb30016cSlukem LDAP *ld,
33bb30016cSlukem char *assertion,
34bb30016cSlukem struct berval *value )
35bb30016cSlukem {
36bb30016cSlukem BerElement *ber = NULL;
37bb30016cSlukem int err;
38bb30016cSlukem
394e27b3e8Schristos ld->ld_errno = LDAP_SUCCESS;
404e27b3e8Schristos
41bb30016cSlukem if ( assertion == NULL || assertion[ 0 ] == '\0' ) {
42bb30016cSlukem ld->ld_errno = LDAP_PARAM_ERROR;
43bb30016cSlukem return ld->ld_errno;
44bb30016cSlukem }
45bb30016cSlukem
46bb30016cSlukem if ( value == NULL ) {
47bb30016cSlukem ld->ld_errno = LDAP_PARAM_ERROR;
48bb30016cSlukem return ld->ld_errno;
49bb30016cSlukem }
50bb30016cSlukem
51bb30016cSlukem BER_BVZERO( value );
52bb30016cSlukem
53bb30016cSlukem ber = ldap_alloc_ber_with_options( ld );
54bb30016cSlukem if ( ber == NULL ) {
55bb30016cSlukem ld->ld_errno = LDAP_NO_MEMORY;
56bb30016cSlukem return ld->ld_errno;
57bb30016cSlukem }
58bb30016cSlukem
59bb30016cSlukem err = ldap_pvt_put_filter( ber, assertion );
60bb30016cSlukem if ( err < 0 ) {
61bb30016cSlukem ld->ld_errno = LDAP_ENCODING_ERROR;
62bb30016cSlukem goto done;
63bb30016cSlukem }
64bb30016cSlukem
65bb30016cSlukem err = ber_flatten2( ber, value, 1 );
66bb30016cSlukem if ( err < 0 ) {
67bb30016cSlukem ld->ld_errno = LDAP_NO_MEMORY;
68bb30016cSlukem goto done;
69bb30016cSlukem }
70bb30016cSlukem
71bb30016cSlukem done:;
72bb30016cSlukem if ( ber != NULL ) {
73bb30016cSlukem ber_free( ber, 1 );
74bb30016cSlukem }
75bb30016cSlukem
76bb30016cSlukem return ld->ld_errno;
77bb30016cSlukem }
78bb30016cSlukem
79bb30016cSlukem int
ldap_create_assertion_control(LDAP * ld,char * assertion,int iscritical,LDAPControl ** ctrlp)80bb30016cSlukem ldap_create_assertion_control(
81bb30016cSlukem LDAP *ld,
82bb30016cSlukem char *assertion,
83bb30016cSlukem int iscritical,
84bb30016cSlukem LDAPControl **ctrlp )
85bb30016cSlukem {
86bb30016cSlukem struct berval value;
87bb30016cSlukem
88bb30016cSlukem if ( ctrlp == NULL ) {
89bb30016cSlukem ld->ld_errno = LDAP_PARAM_ERROR;
90bb30016cSlukem return ld->ld_errno;
91bb30016cSlukem }
92bb30016cSlukem
93bb30016cSlukem ld->ld_errno = ldap_create_assertion_control_value( ld,
94bb30016cSlukem assertion, &value );
95bb30016cSlukem if ( ld->ld_errno == LDAP_SUCCESS ) {
96bb30016cSlukem ld->ld_errno = ldap_control_create( LDAP_CONTROL_ASSERT,
97bb30016cSlukem iscritical, &value, 0, ctrlp );
98bb30016cSlukem if ( ld->ld_errno != LDAP_SUCCESS ) {
99bb30016cSlukem LDAP_FREE( value.bv_val );
100bb30016cSlukem }
101bb30016cSlukem }
102bb30016cSlukem
103bb30016cSlukem return ld->ld_errno;
104bb30016cSlukem }
105bb30016cSlukem
106