xref: /netbsd-src/external/bsd/tmux/dist/cmd-server-access.c (revision 6db267571823ee3b0a1d61478df085a087f2e990)
1*6db26757Swiz /* $OpenBSD$ */
2*6db26757Swiz 
3*6db26757Swiz /*
4*6db26757Swiz  * Copyright (c) 2021 Dallas Lyons <dallasdlyons@gmail.com>
5*6db26757Swiz  *
6*6db26757Swiz  * Permission to use, copy, modify, and distribute this software for any
7*6db26757Swiz  * purpose with or without fee is hereby granted, provided that the above
8*6db26757Swiz  * copyright notice and this permission notice appear in all copies.
9*6db26757Swiz  *
10*6db26757Swiz  * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11*6db26757Swiz  * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12*6db26757Swiz  * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13*6db26757Swiz  * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14*6db26757Swiz  * WHATSOEVER RESULTING FROM LOSS OF MIND, USE, DATA OR PROFITS, WHETHER
15*6db26757Swiz  * IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING
16*6db26757Swiz  * OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17*6db26757Swiz  */
18*6db26757Swiz 
19*6db26757Swiz #include <sys/stat.h>
20*6db26757Swiz #include <sys/types.h>
21*6db26757Swiz 
22*6db26757Swiz #include <pwd.h>
23*6db26757Swiz #include <stdio.h>
24*6db26757Swiz #include <string.h>
25*6db26757Swiz #include <stdlib.h>
26*6db26757Swiz #include <unistd.h>
27*6db26757Swiz 
28*6db26757Swiz #include "tmux.h"
29*6db26757Swiz 
30*6db26757Swiz /*
31*6db26757Swiz  * Controls access to session.
32*6db26757Swiz  */
33*6db26757Swiz 
34*6db26757Swiz static enum cmd_retval cmd_server_access_exec(struct cmd *, struct cmdq_item *);
35*6db26757Swiz 
36*6db26757Swiz const struct cmd_entry cmd_server_access_entry = {
37*6db26757Swiz 	.name = "server-access",
38*6db26757Swiz 	.alias = NULL,
39*6db26757Swiz 
40*6db26757Swiz 	.args = { "adlrw", 0, 1, NULL },
41*6db26757Swiz 	.usage = "[-adlrw] " CMD_TARGET_PANE_USAGE " [user]",
42*6db26757Swiz 
43*6db26757Swiz 	.flags = CMD_CLIENT_CANFAIL,
44*6db26757Swiz 	.exec = cmd_server_access_exec
45*6db26757Swiz };
46*6db26757Swiz 
47*6db26757Swiz static enum cmd_retval
cmd_server_access_deny(struct cmdq_item * item,struct passwd * pw)48*6db26757Swiz cmd_server_access_deny(struct cmdq_item *item, struct passwd *pw)
49*6db26757Swiz {
50*6db26757Swiz 	struct client		*loop;
51*6db26757Swiz 	struct server_acl_user	*user;
52*6db26757Swiz 	uid_t			 uid;
53*6db26757Swiz 
54*6db26757Swiz 	if ((user = server_acl_user_find(pw->pw_uid)) == NULL) {
55*6db26757Swiz 		cmdq_error(item, "user %s not found", pw->pw_name);
56*6db26757Swiz 		return (CMD_RETURN_ERROR);
57*6db26757Swiz 	}
58*6db26757Swiz 	TAILQ_FOREACH(loop, &clients, entry) {
59*6db26757Swiz 		uid = proc_get_peer_uid(loop->peer);
60*6db26757Swiz 		if (uid == server_acl_get_uid(user)) {
61*6db26757Swiz 			loop->exit_message = xstrdup("access not allowed");
62*6db26757Swiz 			loop->flags |= CLIENT_EXIT;
63*6db26757Swiz 		}
64*6db26757Swiz 	}
65*6db26757Swiz 	server_acl_user_deny(pw->pw_uid);
66*6db26757Swiz 
67*6db26757Swiz 	return (CMD_RETURN_NORMAL);
68*6db26757Swiz }
69*6db26757Swiz 
70*6db26757Swiz static enum cmd_retval
cmd_server_access_exec(struct cmd * self,struct cmdq_item * item)71*6db26757Swiz cmd_server_access_exec(struct cmd *self, struct cmdq_item *item)
72*6db26757Swiz {
73*6db26757Swiz 
74*6db26757Swiz 	struct args	*args = cmd_get_args(self);
75*6db26757Swiz 	struct client	*c = cmdq_get_target_client(item);
76*6db26757Swiz 	char		*name;
77*6db26757Swiz 	struct passwd	*pw = NULL;
78*6db26757Swiz 
79*6db26757Swiz 	if (args_has(args, 'l')) {
80*6db26757Swiz 		server_acl_display(item);
81*6db26757Swiz 		return (CMD_RETURN_NORMAL);
82*6db26757Swiz 	}
83*6db26757Swiz 	if (args_count(args) == 0) {
84*6db26757Swiz 		cmdq_error(item, "missing user argument");
85*6db26757Swiz 		return (CMD_RETURN_ERROR);
86*6db26757Swiz 	}
87*6db26757Swiz 
88*6db26757Swiz 	name = format_single(item, args_string(args, 0), c, NULL, NULL, NULL);
89*6db26757Swiz 	if (*name != '\0')
90*6db26757Swiz 		pw = getpwnam(name);
91*6db26757Swiz 	if (pw == NULL) {
92*6db26757Swiz 		cmdq_error(item, "unknown user: %s", name);
93*6db26757Swiz 		return (CMD_RETURN_ERROR);
94*6db26757Swiz 	}
95*6db26757Swiz 	free(name);
96*6db26757Swiz 
97*6db26757Swiz 	if (pw->pw_uid == 0 || pw->pw_uid == getuid()) {
98*6db26757Swiz 		cmdq_error(item, "%s owns the server, can't change access",
99*6db26757Swiz 		    pw->pw_name);
100*6db26757Swiz 		return (CMD_RETURN_ERROR);
101*6db26757Swiz 	}
102*6db26757Swiz 
103*6db26757Swiz 	if (args_has(args, 'a') && args_has(args, 'd')) {
104*6db26757Swiz 		cmdq_error(item, "-a and -d cannot be used together");
105*6db26757Swiz 		return (CMD_RETURN_ERROR);
106*6db26757Swiz 	}
107*6db26757Swiz 	if (args_has(args, 'w') && args_has(args, 'r')) {
108*6db26757Swiz 		cmdq_error(item, "-r and -w cannot be used together");
109*6db26757Swiz 		return (CMD_RETURN_ERROR);
110*6db26757Swiz 	}
111*6db26757Swiz 
112*6db26757Swiz 	if (args_has(args, 'd'))
113*6db26757Swiz 		return (cmd_server_access_deny(item, pw));
114*6db26757Swiz 	if (args_has(args, 'a')) {
115*6db26757Swiz 		if (server_acl_user_find(pw->pw_uid) != NULL) {
116*6db26757Swiz 			cmdq_error(item, "user %s is already added",
117*6db26757Swiz 			    pw->pw_name);
118*6db26757Swiz 			return (CMD_RETURN_ERROR);
119*6db26757Swiz 		}
120*6db26757Swiz 		server_acl_user_allow(pw->pw_uid);
121*6db26757Swiz 		/* Do not return - allow -r or -w with -a. */
122*6db26757Swiz 	} else if (args_has(args, 'r') || args_has(args, 'w')) {
123*6db26757Swiz 		/* -r or -w implies -a if user does not exist. */
124*6db26757Swiz 		if (server_acl_user_find(pw->pw_uid) == NULL)
125*6db26757Swiz 			server_acl_user_allow(pw->pw_uid);
126*6db26757Swiz 	}
127*6db26757Swiz 
128*6db26757Swiz 	if (args_has(args, 'w')) {
129*6db26757Swiz 		if (server_acl_user_find(pw->pw_uid) == NULL) {
130*6db26757Swiz 			cmdq_error(item, "user %s not found", pw->pw_name);
131*6db26757Swiz 			return (CMD_RETURN_ERROR);
132*6db26757Swiz 		}
133*6db26757Swiz 		server_acl_user_allow_write(pw->pw_uid);
134*6db26757Swiz 		return (CMD_RETURN_NORMAL);
135*6db26757Swiz 	}
136*6db26757Swiz 
137*6db26757Swiz 	if (args_has(args, 'r')) {
138*6db26757Swiz 		if (server_acl_user_find(pw->pw_uid) == NULL) {
139*6db26757Swiz 			cmdq_error(item, "user %s not found", pw->pw_name);
140*6db26757Swiz 			return (CMD_RETURN_ERROR);
141*6db26757Swiz 		}
142*6db26757Swiz 		server_acl_user_deny_write(pw->pw_uid);
143*6db26757Swiz 		return (CMD_RETURN_NORMAL);
144*6db26757Swiz 	}
145*6db26757Swiz 
146*6db26757Swiz 	return (CMD_RETURN_NORMAL);
147*6db26757Swiz }
148