2 Unix SMB/CIFS implementation.
4 endpoint server for the winreg pipe
6 Copyright (C) 2004 Jelmer Vernooij, jelmer@samba.org
7 Copyright (C) 2008 Matthias Dieter Wallnöfer, mwallnoefer@yahoo.de
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
24 #include "rpc_server/dcerpc_server.h"
25 #include "lib/registry/registry.h"
26 #include "librpc/gen_ndr/ndr_winreg.h"
27 #include "rpc_server/common/common.h"
28 #include "librpc/gen_ndr/ndr_security.h"
29 #include "param/param.h"
30 #include "libcli/security/security.h"
32 enum handle_types
{ HTYPE_REGVAL
, HTYPE_REGKEY
};
34 static NTSTATUS
dcerpc_winreg_bind(struct dcesrv_call_state
*dce_call
,
35 const struct dcesrv_interface
*iface
)
37 struct registry_context
*ctx
;
40 err
= reg_open_samba(dce_call
->context
,
41 &ctx
, dce_call
->event_ctx
, dce_call
->conn
->dce_ctx
->lp_ctx
, dce_call
->conn
->auth_state
.session_info
,
44 if (!W_ERROR_IS_OK(err
)) {
45 DEBUG(0, ("Error opening registry: %s\n", win_errstr(err
)));
46 return NT_STATUS_UNSUCCESSFUL
;
49 dce_call
->context
->private = ctx
;
54 #define DCESRV_INTERFACE_WINREG_BIND dcerpc_winreg_bind
56 static WERROR
dcesrv_winreg_openhive(struct dcesrv_call_state
*dce_call
,
57 TALLOC_CTX
*mem_ctx
, uint32_t hkey
,
58 struct policy_handle
**outh
)
60 struct registry_context
*ctx
= dce_call
->context
->private;
61 struct dcesrv_handle
*h
;
64 h
= dcesrv_handle_new(dce_call
->context
, HTYPE_REGKEY
);
66 result
= reg_get_predefined_key(ctx
, hkey
,
67 (struct registry_key
**)&h
->data
);
68 if (!W_ERROR_IS_OK(result
)) {
71 *outh
= &h
->wire_handle
;
76 #define func_winreg_OpenHive(k,n) static WERROR dcesrv_winreg_Open ## k (struct dcesrv_call_state *dce_call, TALLOC_CTX *mem_ctx, struct winreg_Open ## k *r) \
78 return dcesrv_winreg_openhive (dce_call, mem_ctx, n, &r->out.handle);\
81 func_winreg_OpenHive(HKCR
,HKEY_CLASSES_ROOT
)
82 func_winreg_OpenHive(HKCU
,HKEY_CURRENT_USER
)
83 func_winreg_OpenHive(HKLM
,HKEY_LOCAL_MACHINE
)
84 func_winreg_OpenHive(HKPD
,HKEY_PERFORMANCE_DATA
)
85 func_winreg_OpenHive(HKU
,HKEY_USERS
)
86 func_winreg_OpenHive(HKCC
,HKEY_CURRENT_CONFIG
)
87 func_winreg_OpenHive(HKDD
,HKEY_DYN_DATA
)
88 func_winreg_OpenHive(HKPT
,HKEY_PERFORMANCE_TEXT
)
89 func_winreg_OpenHive(HKPN
,HKEY_PERFORMANCE_NLSTEXT
)
94 static WERROR
dcesrv_winreg_CloseKey(struct dcesrv_call_state
*dce_call
,
96 struct winreg_CloseKey
*r
)
98 struct dcesrv_handle
*h
;
100 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
104 ZERO_STRUCTP(r
->out
.handle
);
112 static WERROR
dcesrv_winreg_CreateKey(struct dcesrv_call_state
*dce_call
,
114 struct winreg_CreateKey
*r
)
116 struct dcesrv_handle
*h
, *newh
;
117 struct security_descriptor sd
;
120 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
122 newh
= dcesrv_handle_new(dce_call
->context
, HTYPE_REGKEY
);
124 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
126 case SECURITY_SYSTEM
:
127 case SECURITY_ADMINISTRATOR
:
128 /* the security descriptor is optional */
129 if (r
->in
.secdesc
!= NULL
) {
131 enum ndr_err_code ndr_err
;
132 sdblob
.data
= r
->in
.secdesc
->sd
.data
;
133 sdblob
.length
= r
->in
.secdesc
->sd
.len
;
134 if (sdblob
.data
== NULL
) {
135 return WERR_INVALID_PARAM
;
137 ndr_err
= ndr_pull_struct_blob_all(&sdblob
, mem_ctx
, NULL
, &sd
,
138 (ndr_pull_flags_fn_t
)ndr_pull_security_descriptor
);
139 if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err
)) {
140 return WERR_INVALID_PARAM
;
144 result
= reg_key_add_name(newh
, (struct registry_key
*)h
->data
,
145 r
->in
.name
.name
, NULL
, r
->in
.secdesc
?&sd
:NULL
,
146 (struct registry_key
**)&newh
->data
);
147 if (W_ERROR_IS_OK(result
)) {
148 r
->out
.new_handle
= &newh
->wire_handle
;
155 return WERR_ACCESS_DENIED
;
163 static WERROR
dcesrv_winreg_DeleteKey(struct dcesrv_call_state
*dce_call
,
165 struct winreg_DeleteKey
*r
)
167 struct dcesrv_handle
*h
;
169 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
171 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
173 case SECURITY_SYSTEM
:
174 case SECURITY_ADMINISTRATOR
:
175 return reg_key_del((struct registry_key
*)h
->data
, r
->in
.key
.name
);
177 return WERR_ACCESS_DENIED
;
185 static WERROR
dcesrv_winreg_DeleteValue(struct dcesrv_call_state
*dce_call
,
187 struct winreg_DeleteValue
*r
)
189 struct dcesrv_handle
*h
;
191 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
193 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
195 case SECURITY_SYSTEM
:
196 case SECURITY_ADMINISTRATOR
:
197 return reg_del_value((struct registry_key
*)h
->data
, r
->in
.value
.name
);
199 return WERR_ACCESS_DENIED
;
207 static WERROR
dcesrv_winreg_EnumKey(struct dcesrv_call_state
*dce_call
,
209 struct winreg_EnumKey
*r
)
211 struct dcesrv_handle
*h
;
212 const char *name
, *classname
;
216 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
218 result
= reg_key_get_subkey_by_index(mem_ctx
,
219 (struct registry_key
*)h
->data
, r
->in
.enum_index
,
220 &name
, &classname
, &last_mod
);
222 if (2*strlen_m_term(name
) > r
->in
.name
->size
) {
223 return WERR_MORE_DATA
;
227 r
->out
.name
->name
= name
;
228 r
->out
.name
->length
= 2*strlen_m_term(name
);
230 r
->out
.name
->name
= r
->in
.name
->name
;
231 r
->out
.name
->length
= r
->in
.name
->length
;
233 r
->out
.name
->size
= r
->in
.name
->size
;
235 r
->out
.keyclass
= r
->in
.keyclass
;
236 if (classname
!= NULL
) {
237 r
->out
.keyclass
->name
= classname
;
238 r
->out
.keyclass
->length
= 2*strlen_m_term(classname
);
240 r
->out
.keyclass
->name
= r
->in
.keyclass
->name
;
241 r
->out
.keyclass
->length
= r
->in
.keyclass
->length
;
243 r
->out
.keyclass
->size
= r
->in
.keyclass
->size
;
245 if (r
->in
.last_changed_time
!= NULL
)
246 r
->out
.last_changed_time
= &last_mod
;
255 static WERROR
dcesrv_winreg_EnumValue(struct dcesrv_call_state
*dce_call
,
257 struct winreg_EnumValue
*r
)
259 struct dcesrv_handle
*h
;
260 struct registry_key
*key
;
261 const char *data_name
;
266 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
270 result
= reg_key_get_value_by_index(mem_ctx
, (struct registry_key
*)h
->data
,
271 r
->in
.enum_index
, &data_name
, &data_type
, &data
);
273 if (!W_ERROR_IS_OK(result
)) {
274 /* if the lookup wasn't successful, send client query back */
275 data_name
= r
->in
.name
->name
;
276 data_type
= *r
->in
.type
;
277 data
.data
= r
->in
.value
;
278 data
.length
= *r
->in
.length
;
281 /* check if there is enough room for the name */
282 if (r
->in
.name
->size
< 2*strlen_m_term(data_name
)) {
283 return WERR_MORE_DATA
;
286 /* "data_name" is NULL when we query the default attribute */
287 if (data_name
!= NULL
) {
288 r
->out
.name
->name
= data_name
;
289 r
->out
.name
->length
= 2*strlen_m_term(data_name
);
291 r
->out
.name
->name
= r
->in
.name
->name
;
292 r
->out
.name
->length
= r
->in
.name
->length
;
294 r
->out
.name
->size
= r
->in
.name
->size
;
296 r
->out
.type
= talloc(mem_ctx
, uint32_t);
300 *r
->out
.type
= data_type
;
302 /* check the client has enough room for the value */
303 if (r
->in
.value
!= NULL
&&
304 r
->in
.size
!= NULL
&&
305 data
.length
> *r
->in
.size
) {
306 return WERR_MORE_DATA
;
309 if (r
->in
.value
!= NULL
) {
310 r
->out
.value
= data
.data
;
313 if (r
->in
.size
!= NULL
) {
314 r
->out
.size
= talloc(mem_ctx
, uint32_t);
315 *r
->out
.size
= data
.length
;
316 r
->out
.length
= r
->out
.size
;
326 static WERROR
dcesrv_winreg_FlushKey(struct dcesrv_call_state
*dce_call
,
328 struct winreg_FlushKey
*r
)
330 struct dcesrv_handle
*h
;
332 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
334 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
336 case SECURITY_SYSTEM
:
337 case SECURITY_ADMINISTRATOR
:
338 return reg_key_flush(h
->data
);
340 return WERR_ACCESS_DENIED
;
346 winreg_GetKeySecurity
348 static WERROR
dcesrv_winreg_GetKeySecurity(struct dcesrv_call_state
*dce_call
,
350 struct winreg_GetKeySecurity
*r
)
352 struct dcesrv_handle
*h
;
354 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
356 return WERR_NOT_SUPPORTED
;
363 static WERROR
dcesrv_winreg_LoadKey(struct dcesrv_call_state
*dce_call
,
365 struct winreg_LoadKey
*r
)
367 return WERR_NOT_SUPPORTED
;
372 winreg_NotifyChangeKeyValue
374 static WERROR
dcesrv_winreg_NotifyChangeKeyValue(struct dcesrv_call_state
*dce_call
,
376 struct winreg_NotifyChangeKeyValue
*r
)
378 return WERR_NOT_SUPPORTED
;
385 static WERROR
dcesrv_winreg_OpenKey(struct dcesrv_call_state
*dce_call
,
387 struct winreg_OpenKey
*r
)
389 struct dcesrv_handle
*h
, *newh
;
392 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.parent_handle
, HTYPE_REGKEY
);
394 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
396 case SECURITY_SYSTEM
:
397 case SECURITY_ADMINISTRATOR
:
399 if (r
->in
.keyname
.name
&& strcmp(r
->in
.keyname
.name
, "") == 0) {
400 newh
= talloc_reference(dce_call
->context
, h
);
403 newh
= dcesrv_handle_new(dce_call
->context
, HTYPE_REGKEY
);
404 result
= reg_open_key(newh
, (struct registry_key
*)h
->data
,
406 (struct registry_key
**)&newh
->data
);
409 if (W_ERROR_IS_OK(result
)) {
410 r
->out
.handle
= &newh
->wire_handle
;
416 return WERR_ACCESS_DENIED
;
425 static WERROR
dcesrv_winreg_QueryInfoKey(struct dcesrv_call_state
*dce_call
,
427 struct winreg_QueryInfoKey
*r
)
429 struct dcesrv_handle
*h
;
430 const char *classname
= NULL
;
433 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
435 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
437 case SECURITY_SYSTEM
:
438 case SECURITY_ADMINISTRATOR
:
440 result
= reg_key_get_info(mem_ctx
, (struct registry_key
*)h
->data
,
441 &classname
, r
->out
.num_subkeys
, r
->out
.num_values
,
442 r
->out
.last_changed_time
, r
->out
.max_subkeylen
,
443 r
->out
.max_valnamelen
, r
->out
.max_valbufsize
);
445 if (classname
!= NULL
) {
446 r
->out
.classname
->name
= classname
;
447 r
->out
.classname
->name_len
= 2*strlen_m_term(classname
);
449 r
->out
.classname
->name
= r
->in
.classname
->name
;
450 r
->out
.classname
->name_len
= r
->in
.classname
->name_len
;
452 r
->out
.classname
->name_size
= r
->in
.classname
->name_size
;
456 return WERR_ACCESS_DENIED
;
464 static WERROR
dcesrv_winreg_QueryValue(struct dcesrv_call_state
*dce_call
,
466 struct winreg_QueryValue
*r
)
468 struct dcesrv_handle
*h
;
470 DATA_BLOB value_data
;
473 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
475 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
477 case SECURITY_SYSTEM
:
478 case SECURITY_ADMINISTRATOR
:
480 result
= reg_key_get_value_by_name(mem_ctx
,
481 (struct registry_key
*)h
->data
, r
->in
.value_name
.name
,
482 &value_type
, &value_data
);
484 if (!W_ERROR_IS_OK(result
)) {
485 /* if the lookup wasn't successful, send client query back */
486 value_type
= *r
->in
.type
;
487 value_data
.data
= r
->in
.data
;
488 value_data
.length
= *r
->in
.length
;
491 r
->out
.type
= talloc(mem_ctx
, uint32_t);
495 *r
->out
.type
= value_type
;
496 r
->out
.length
= talloc(mem_ctx
, uint32_t);
497 if (!r
->out
.length
) {
500 *r
->out
.length
= value_data
.length
;
501 r
->out
.size
= talloc(mem_ctx
, uint32_t);
505 *r
->out
.size
= value_data
.length
;
507 r
->out
.data
= value_data
.data
;
511 return WERR_ACCESS_DENIED
;
519 static WERROR
dcesrv_winreg_ReplaceKey(struct dcesrv_call_state
*dce_call
,
521 struct winreg_ReplaceKey
*r
)
523 return WERR_NOT_SUPPORTED
;
530 static WERROR
dcesrv_winreg_RestoreKey(struct dcesrv_call_state
*dce_call
,
532 struct winreg_RestoreKey
*r
)
534 return WERR_NOT_SUPPORTED
;
541 static WERROR
dcesrv_winreg_SaveKey(struct dcesrv_call_state
*dce_call
,
543 struct winreg_SaveKey
*r
)
545 return WERR_NOT_SUPPORTED
;
550 winreg_SetKeySecurity
552 static WERROR
dcesrv_winreg_SetKeySecurity(struct dcesrv_call_state
*dce_call
,
554 struct winreg_SetKeySecurity
*r
)
556 return WERR_NOT_SUPPORTED
;
563 static WERROR
dcesrv_winreg_SetValue(struct dcesrv_call_state
*dce_call
,
565 struct winreg_SetValue
*r
)
567 struct dcesrv_handle
*h
;
571 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
573 switch (security_session_user_level(dce_call
->conn
->auth_state
.session_info
))
575 case SECURITY_SYSTEM
:
576 case SECURITY_ADMINISTRATOR
:
577 data
.data
= r
->in
.data
;
578 data
.length
= r
->in
.size
;
579 result
= reg_val_set((struct registry_key
*)h
->data
,
580 r
->in
.name
.name
, r
->in
.type
, data
);
583 return WERR_ACCESS_DENIED
;
591 static WERROR
dcesrv_winreg_UnLoadKey(struct dcesrv_call_state
*dce_call
,
593 struct winreg_UnLoadKey
*r
)
595 return WERR_NOT_SUPPORTED
;
600 winreg_InitiateSystemShutdown
602 static WERROR
dcesrv_winreg_InitiateSystemShutdown(struct dcesrv_call_state
*dce_call
,
604 struct winreg_InitiateSystemShutdown
*r
)
606 return WERR_NOT_SUPPORTED
;
611 winreg_AbortSystemShutdown
613 static WERROR
dcesrv_winreg_AbortSystemShutdown(struct dcesrv_call_state
*dce_call
,
615 struct winreg_AbortSystemShutdown
*r
)
617 return WERR_NOT_SUPPORTED
;
624 static WERROR
dcesrv_winreg_GetVersion(struct dcesrv_call_state
*dce_call
,
626 struct winreg_GetVersion
*r
)
628 struct dcesrv_handle
*h
;
630 DCESRV_PULL_HANDLE_FAULT(h
, r
->in
.handle
, HTYPE_REGKEY
);
632 r
->out
.version
= talloc(mem_ctx
, uint32_t);
633 W_ERROR_HAVE_NO_MEMORY(r
->out
.version
);
642 winreg_QueryMultipleValues
644 static WERROR
dcesrv_winreg_QueryMultipleValues(struct dcesrv_call_state
*dce_call
,
646 struct winreg_QueryMultipleValues
*r
)
648 return WERR_NOT_SUPPORTED
;
653 winreg_InitiateSystemShutdownEx
655 static WERROR
dcesrv_winreg_InitiateSystemShutdownEx(struct dcesrv_call_state
*dce_call
,
657 struct winreg_InitiateSystemShutdownEx
*r
)
659 return WERR_NOT_SUPPORTED
;
666 static WERROR
dcesrv_winreg_SaveKeyEx(struct dcesrv_call_state
*dce_call
,
668 struct winreg_SaveKeyEx
*r
)
670 return WERR_NOT_SUPPORTED
;
675 winreg_QueryMultipleValues2
677 static WERROR
dcesrv_winreg_QueryMultipleValues2(struct dcesrv_call_state
*dce_call
,
679 struct winreg_QueryMultipleValues2
*r
)
681 return WERR_NOT_SUPPORTED
;
685 /* include the generated boilerplate */
686 #include "librpc/gen_ndr/ndr_winreg_s.c"