2 * Copyright (c) 1997 - 2003 Kungliga Tekniska Högskolan
3 * (Royal Institute of Technology, Stockholm, Sweden).
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
17 * 3. Neither the name of the Institute nor the names of its contributors
18 * may be used to endorse or promote products derived from this software
19 * without specific prior written permission.
21 * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
22 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
23 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
24 * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
25 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
26 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
27 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
28 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
29 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 #include "krb5_locl.h"
36 krb5_error_code KRB5_LIB_FUNCTION
37 krb5_mk_error(krb5_context context
,
38 krb5_error_code error_code
,
40 const krb5_data
*e_data
,
41 const krb5_principal client
,
42 const krb5_principal server
,
47 const char *e_text2
= NULL
;
52 krb5_error_code ret
= 0;
54 krb5_us_timeofday (context
, &sec
, &usec
);
56 memset(&msg
, 0, sizeof(msg
));
58 msg
.msg_type
= krb_error
;
61 msg
.ctime
= client_time
;
62 msg
.cusec
= client_usec
;
63 /* Make sure we only send `protocol' error codes */
64 if(error_code
< KRB5KDC_ERR_NONE
|| error_code
>= KRB5_ERR_RCSID
) {
66 e_text
= e_text2
= krb5_get_error_message(context
, error_code
);
67 error_code
= KRB5KRB_ERR_GENERIC
;
69 msg
.error_code
= error_code
- KRB5KDC_ERR_NONE
;
71 msg
.e_text
= rk_UNCONST(&e_text
);
73 msg
.e_data
= rk_UNCONST(e_data
);
75 msg
.realm
= server
->realm
;
76 msg
.sname
= server
->name
;
78 msg
.realm
= "<unspecified realm>";
81 msg
.crealm
= &client
->realm
;
82 msg
.cname
= &client
->name
;
85 ASN1_MALLOC_ENCODE(KRB_ERROR
, reply
->data
, reply
->length
, &msg
, &len
, ret
);
87 krb5_free_error_message(context
, e_text2
);
90 if(reply
->length
!= len
)
91 krb5_abortx(context
, "internal error in ASN.1 encoder");