1 /* $OpenBSD: auth-bsdauth.c,v 1.13 2014/06/24 01:13:21 djm Exp $ */
3 * Copyright (c) 2001 Markus Friedl. All rights reserved.
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
8 * 1. Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * 2. Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in the
12 * documentation and/or other materials provided with the distribution.
14 * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
15 * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
16 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
17 * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
18 * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
19 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
20 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
21 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
22 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
23 * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
28 #include <sys/types.h>
44 #include "monitor_wrap.h"
47 bsdauth_init_ctx(Authctxt
*authctxt
)
53 bsdauth_query(void *ctx
, char **name
, char **infotxt
,
54 u_int
*numprompts
, char ***prompts
, u_int
**echo_on
)
56 Authctxt
*authctxt
= ctx
;
57 char *challenge
= NULL
;
64 if (authctxt
->as
!= NULL
) {
65 debug2("bsdauth_query: try reuse session");
66 challenge
= auth_getitem(authctxt
->as
, AUTHV_CHALLENGE
);
67 if (challenge
== NULL
) {
68 auth_close(authctxt
->as
);
73 if (challenge
== NULL
) {
74 debug2("bsdauth_query: new bsd auth session");
75 debug3("bsdauth_query: style %s",
76 authctxt
->style
? authctxt
->style
: "<default>");
77 authctxt
->as
= auth_userchallenge(authctxt
->user
,
78 authctxt
->style
, "auth-ssh", &challenge
);
79 if (authctxt
->as
== NULL
)
81 debug2("bsdauth_query: <%s>", challenge
? challenge
: "empty");
84 if (challenge
== NULL
)
88 *infotxt
= xstrdup("");
90 *prompts
= xcalloc(*numprompts
, sizeof(char *));
91 *echo_on
= xcalloc(*numprompts
, sizeof(u_int
));
92 (*prompts
)[0] = xstrdup(challenge
);
98 bsdauth_respond(void *ctx
, u_int numresponses
, char **responses
)
100 Authctxt
*authctxt
= ctx
;
103 if (!authctxt
->valid
)
106 if (authctxt
->as
== 0)
107 error("bsdauth_respond: no bsd auth session");
109 if (numresponses
!= 1)
112 authok
= auth_userresponse(authctxt
->as
, responses
[0], 0);
114 debug3("bsdauth_respond: <%s> = <%d>", responses
[0], authok
);
116 return (authok
== 0) ? -1 : 0;
120 bsdauth_free_ctx(void *ctx
)
122 Authctxt
*authctxt
= ctx
;
124 if (authctxt
&& authctxt
->as
) {
125 auth_close(authctxt
->as
);
130 KbdintDevice bsdauth_device
= {
138 KbdintDevice mm_bsdauth_device
= {