1 /* vim:tw=78:ts=8:sw=4:set ft=c: */
3 Copyright (C) 2006-2009 Ben Kibbey <bjk@luxsci.net>
5 This program is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published by
7 the Free Software Foundation; either version 2 of the License, or
8 (at your option) any later version.
10 This program is distributed in the hope that it will be useful,
11 but WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13 GNU General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with this program; if not, write to the Free Software
17 Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02110-1301 USA
26 #include <sys/socket.h>
35 #include <sys/types.h>
37 #include <sys/select.h>
39 #include <netinet/in.h>
40 #include <sys/socket.h>
52 #define DNS_USE_GETTIMEOFDAY_FOR_ID 1
54 #include <arpa/nameser.h>
66 #define N_(msgid) dgettext("libpwmd", msgid)
73 static int gelapsed
, gtimeout
;
74 static gpg_error_t
pinentry_command(pwm_t
*pwm
, char **result
, const char *cmd
);
77 static char *_getpwuid(struct passwd
*pwd
)
79 size_t size
= sysconf(_SC_GETPW_R_SIZE_MAX
);
80 struct passwd
*result
;
87 buf
= pwmd_malloc(size
);
92 n
= getpwuid_r(getuid(), pwd
, buf
, size
, &result
);
109 static const char *_pwmd_strerror(gpg_error_t e
)
111 gpg_err_code_t code
= gpg_err_code(e
);
113 if (code
>= GPG_ERR_USER_1
&& code
< gpg_err_code(EPWMD_MAX
)) {
118 return N_("Unknown error");
120 return N_("No cache slots available");
122 return N_("Recursion loop");
124 return N_("No file is open");
126 return N_("General LibXML error");
128 return N_("File modified");
135 const char *pwmd_strerror(gpg_error_t code
)
137 const char *p
= _pwmd_strerror(code
);
139 return p
? p
: gpg_strerror(code
);
142 int pwmd_strerror_r(gpg_error_t code
, char *buf
, size_t size
)
144 const char *p
= _pwmd_strerror(code
);
147 snprintf(buf
, size
, "%s", p
);
149 if (strlen(p
) > size
)
155 return gpg_strerror_r(code
, buf
, size
);
158 gpg_error_t
pwmd_init()
160 static int initialized
;
169 bindtextdomain("libpwmd", LOCALEDIR
);
172 assuan_set_malloc_hooks(pwmd_malloc
, pwmd_realloc
, pwmd_free
);
173 assuan_set_assuan_err_source(GPG_ERR_SOURCE_DEFAULT
);
178 static gpg_error_t
_socket_connect_finalize(pwm_t
*pwm
)
181 int n
= assuan_get_active_fds(pwm
->ctx
, 0, active
, N_ARRAY(active
));
184 return GPG_ERR_EBADFD
;
189 pwm
->pinentry_tries
= 3;
191 assuan_set_pointer(pwm
->ctx
, pwm
);
194 return pwmd_command(pwm
, NULL
, "OPTION CLIENT NAME=%s", pwm
->name
);
200 static int read_hook(assuan_context_t ctx
, assuan_fd_t fd
, void *data
,
201 size_t len
, ssize_t
*ret
)
203 pwm_t
*pwm
= assuan_get_pointer(ctx
);
206 if (!pwm
|| !pwm
->tcp_conn
)
208 *ret
= pth_read((int)fd
, data
, len
);
210 *ret
= read((int)fd
, data
, len
);
214 *ret
= libssh2_channel_read(pwm
->tcp_conn
->channel
, data
, len
);
215 n
= libssh2_session_last_errno(pwm
->tcp_conn
->session
);
216 } while (n
== LIBSSH2_ERROR_EAGAIN
);
219 return !n
&& *ret
!= -1 ? 1 : 0;
222 static int write_hook(assuan_context_t ctx
, assuan_fd_t fd
, const void *data
,
223 size_t len
, ssize_t
*ret
)
225 pwm_t
*pwm
= assuan_get_pointer(ctx
);
228 if (!pwm
|| !pwm
->tcp_conn
)
230 *ret
= pth_write((int)fd
, data
, len
);
232 *ret
= write((int)fd
, data
, len
);
236 *ret
= libssh2_channel_write(pwm
->tcp_conn
->channel
, data
, len
);
237 n
= libssh2_session_last_errno(pwm
->tcp_conn
->session
);
238 } while (n
== LIBSSH2_ERROR_EAGAIN
);
241 return !n
&& *ret
!= -1 ? 1 : 0;
244 static void _ssh_deinit(pwmd_tcp_conn_t
*conn
);
245 static void free_tcp_conn(pwmd_tcp_conn_t
*conn
)
250 if (conn
->username
) {
251 pwmd_free(conn
->username
);
252 conn
->username
= NULL
;
255 if (conn
->known_hosts
) {
256 pwmd_free(conn
->known_hosts
);
257 conn
->known_hosts
= NULL
;
260 if (conn
->identity
) {
261 pwmd_free(conn
->identity
);
262 conn
->identity
= NULL
;
265 if (conn
->identity_pub
) {
266 pwmd_free(conn
->identity_pub
);
267 conn
->identity_pub
= NULL
;
271 pwmd_free(conn
->host
);
276 pwmd_free(conn
->hostkey
);
277 conn
->hostkey
= NULL
;
281 ares_destroy(conn
->chan
);
286 ares_free_hostent(conn
->he
);
301 static void _ssh_deinit(pwmd_tcp_conn_t
*conn
)
307 libssh2_channel_free(conn
->channel
);
310 libssh2_session_disconnect(conn
->session
, "Bye!");
311 libssh2_session_free(conn
->session
);
314 conn
->session
= NULL
;
315 conn
->channel
= NULL
;
319 static void _ssh_assuan_deinit(assuan_context_t ctx
)
321 pwm_t
*pwm
= assuan_get_pointer(ctx
);
323 pwm
->tcp_conn
->fd
= -1;
324 _ssh_deinit(pwm
->tcp_conn
);
325 pwm
->tcp_conn
= NULL
;
329 * Sets common options from both pwmd_ssh_connect() and
330 * pwmd_ssh_connect_async().
332 static gpg_error_t
init_tcp_conn(pwmd_tcp_conn_t
**dst
, const char *host
,
333 int port
, const char *identity
, const char *user
, const char *hosts
,
336 pwmd_tcp_conn_t
*conn
;
341 return GPG_ERR_INV_ARG
;
344 if (!host
|| !identity
|| !hosts
)
345 return GPG_ERR_INV_ARG
;
348 conn
= pwmd_calloc(1, sizeof(pwmd_tcp_conn_t
));
351 return gpg_error_from_errno(ENOMEM
);
353 conn
->port
= port
== -1 ? 22 : port
;
354 conn
->host
= pwmd_strdup(host
);
357 rc
= gpg_error_from_errno(ENOMEM
);
363 char *pwbuf
= _getpwuid(&pw
);
366 rc
= gpg_error_from_errno(errno
);
370 conn
->username
= pwmd_strdup(user
? user
: pw
.pw_name
);
373 if (!conn
->username
) {
374 rc
= gpg_error_from_errno(ENOMEM
);
378 conn
->identity
= pwmd_strdup(identity
);
380 if (!conn
->identity
) {
381 rc
= gpg_error_from_errno(ENOMEM
);
385 conn
->identity_pub
= pwmd_malloc(strlen(conn
->identity
)+5);
387 if (!conn
->identity_pub
) {
388 rc
= gpg_error_from_errno(ENOMEM
);
392 sprintf(conn
->identity_pub
, "%s.pub", conn
->identity
);
393 conn
->known_hosts
= pwmd_strdup(hosts
);
395 if (!conn
->known_hosts
) {
396 rc
= gpg_error_from_errno(ENOMEM
);
409 static gpg_error_t
do_connect(pwm_t
*pwm
, int prot
, void *addr
)
411 struct sockaddr_in their_addr
;
413 pwm
->tcp_conn
->fd
= socket(prot
, SOCK_STREAM
, 0);
415 if (pwm
->tcp_conn
->fd
== -1)
416 return gpg_error_from_syserror();
418 if (pwm
->tcp_conn
->async
)
419 fcntl(pwm
->tcp_conn
->fd
, F_SETFL
, O_NONBLOCK
);
421 pwm
->cmd
= ASYNC_CMD_CONNECT
;
422 their_addr
.sin_family
= prot
;
423 their_addr
.sin_port
= htons(pwm
->tcp_conn
->port
);
424 their_addr
.sin_addr
= *((struct in_addr
*)addr
);
425 memset(their_addr
.sin_zero
, '\0', sizeof their_addr
.sin_zero
);
428 if (pth_connect(pwm
->tcp_conn
->fd
, (struct sockaddr
*)&their_addr
,
429 sizeof(their_addr
)) == -1)
431 if (connect(pwm
->tcp_conn
->fd
, (struct sockaddr
*)&their_addr
,
432 sizeof(their_addr
)) == -1)
434 return gpg_error_from_syserror();
439 static gpg_error_t
ares_error_to_pwmd(int status
)
441 if (status
!= ARES_SUCCESS
)
442 warnx("%s", ares_strerror(status
));
448 return GPG_ERR_UNKNOWN_HOST
;
450 return GPG_ERR_EHOSTDOWN
;
452 return GPG_ERR_TIMEOUT
;
454 return gpg_error_from_errno(ENOMEM
);
455 case ARES_ECONNREFUSED
:
456 return GPG_ERR_ECONNREFUSED
;
459 return GPG_ERR_EHOSTUNREACH
;
465 static void dns_resolve_cb(void *arg
, int status
, int timeouts
,
466 unsigned char *abuf
, int alen
)
472 if (status
== ARES_EDESTRUCTION
)
475 if (status
!= ARES_SUCCESS
) {
476 pwm
->tcp_conn
->rc
= ares_error_to_pwmd(status
);
480 /* Check for an IPv6 address first. */
481 if (pwm
->prot
== PWMD_IP_ANY
|| pwm
->prot
== PWMD_IPV6
)
482 rc
= ares_parse_aaaa_reply(abuf
, alen
, &he
, NULL
, NULL
);
484 rc
= ares_parse_a_reply(abuf
, alen
, &he
, NULL
, NULL
);
486 if (rc
!= ARES_SUCCESS
) {
487 if (pwm
->prot
!= PWMD_IP_ANY
|| rc
!= ARES_ENODATA
) {
488 pwm
->tcp_conn
->rc
= ares_error_to_pwmd(status
);
492 rc
= ares_parse_a_reply(abuf
, alen
, &he
, NULL
, NULL
);
494 if (rc
!= ARES_SUCCESS
) {
495 pwm
->tcp_conn
->rc
= ares_error_to_pwmd(status
);
500 pwm
->tcp_conn
->he
= he
;
501 pwm
->tcp_conn
->rc
= do_connect(pwm
, he
->h_addrtype
, he
->h_addr
);
504 static gpg_error_t
_do_pwmd_tcp_connect_async(pwm_t
*pwm
, const char *host
,
505 int port
, const char *identity
, const char *user
,
506 const char *known_hosts
, pwmd_async_cmd_t which
)
508 pwmd_tcp_conn_t
*conn
;
511 rc
= init_tcp_conn(&conn
, host
, port
, identity
, user
, known_hosts
,
512 which
== ASYNC_CMD_HOSTKEY
? 1 : 0);
518 pwm
->tcp_conn
= conn
;
519 pwm
->tcp_conn
->cmd
= which
;
521 if (pwm
->tcp_conn
->cmd
== ASYNC_CMD_HOSTKEY
)
522 pwm
->tcp_conn
->get_only
= 1;
524 pwm
->cmd
= ASYNC_CMD_DNS
;
525 pwm
->state
= ASYNC_PROCESS
;
526 ares_init(&pwm
->tcp_conn
->chan
);
527 ares_query(pwm
->tcp_conn
->chan
, pwm
->tcp_conn
->host
, ns_c_any
, ns_t_any
,
528 dns_resolve_cb
, pwm
);
532 gpg_error_t
pwmd_ssh_connect_async(pwm_t
*pwm
, const char *host
, int port
,
533 const char *identity
, const char *user
, const char *known_hosts
)
535 return _do_pwmd_tcp_connect_async(pwm
, host
, port
, identity
, user
,
536 known_hosts
, ASYNC_CMD_CONNECT
);
539 static void *_ssh_malloc(size_t size
, void **data
)
541 return pwmd_malloc(size
);
544 static void _ssh_free(void *ptr
, void **data
)
549 static void *_ssh_realloc(void *ptr
, size_t size
, void **data
)
551 return pwmd_realloc(ptr
, size
);
554 static char *to_hex(const char *str
, size_t slen
)
557 char *buf
= pwmd_malloc(slen
*2+1);
562 for (i
= 0, buf
[0] = 0; i
< slen
; i
++) {
565 sprintf(tmp
, "%02x", (unsigned char)str
[i
]);
572 static int verify_host_key(pwm_t
*pwm
)
574 FILE *fp
= fopen(pwm
->tcp_conn
->known_hosts
, "r");
580 buf
= pwmd_malloc(LINE_MAX
);
585 while ((p
= fgets(buf
, LINE_MAX
, fp
))) {
586 if (*p
== '#' || isspace(*p
))
589 if (p
[strlen(p
)-1] == '\n')
592 if (!strcmp(buf
, pwm
->tcp_conn
->hostkey
))
609 static gpg_error_t
authenticate_ssh(pwm_t
*pwm
)
611 const char *fp
= libssh2_hostkey_hash(pwm
->tcp_conn
->session
,
612 LIBSSH2_HOSTKEY_HASH_SHA1
);
615 pwm
->tcp_conn
->hostkey
= to_hex(fp
, 20);
617 if (!pwm
->tcp_conn
->hostkey
)
618 return gpg_error_from_errno(ENOMEM
);
620 if (pwm
->tcp_conn
->get_only
)
623 if (!fp
|| verify_host_key(pwm
))
624 return GPG_ERR_CHECKSUM
;
626 userauth
= libssh2_userauth_list(pwm
->tcp_conn
->session
,
627 pwm
->tcp_conn
->username
, strlen(pwm
->tcp_conn
->username
));
629 if (!userauth
|| !strstr(userauth
, "publickey"))
630 return GPG_ERR_BAD_PIN_METHOD
;
632 if (libssh2_userauth_publickey_fromfile(pwm
->tcp_conn
->session
,
633 pwm
->tcp_conn
->username
, pwm
->tcp_conn
->identity_pub
,
634 pwm
->tcp_conn
->identity
, NULL
))
635 return GPG_ERR_BAD_SECKEY
;
640 static gpg_error_t
setup_tcp_session(pwm_t
*pwm
)
642 assuan_context_t ctx
;
643 struct assuan_io_hooks io_hooks
= {read_hook
, write_hook
};
646 pwm
->tcp_conn
->session
= libssh2_session_init_ex(_ssh_malloc
, _ssh_free
,
649 if (!pwm
->tcp_conn
->session
) {
650 rc
= gpg_error_from_errno(ENOMEM
);
654 if (libssh2_session_startup(pwm
->tcp_conn
->session
, pwm
->tcp_conn
->fd
)) {
655 rc
= GPG_ERR_ASSUAN_SERVER_FAULT
;
659 rc
= authenticate_ssh(pwm
);
664 /* pwmd_get_hostkey(). */
665 if (pwm
->tcp_conn
->get_only
) {
666 pwm
->result
= pwmd_strdup(pwm
->tcp_conn
->hostkey
);
669 rc
= gpg_error_from_errno(ENOMEM
);
676 pwm
->tcp_conn
->channel
= libssh2_channel_open_session(pwm
->tcp_conn
->session
);
678 if (!pwm
->tcp_conn
->channel
) {
679 rc
= GPG_ERR_ASSUAN_SERVER_FAULT
;
683 if (libssh2_channel_shell(pwm
->tcp_conn
->channel
)) {
684 rc
= GPG_ERR_ASSUAN_SERVER_FAULT
;
688 assuan_set_io_hooks(&io_hooks
);
689 rc
= assuan_socket_connect_fd(&ctx
, pwm
->tcp_conn
->fd
, 0, pwm
);
694 assuan_set_finish_handler(ctx
, _ssh_assuan_deinit
);
696 return _socket_connect_finalize(pwm
);
699 free_tcp_conn(pwm
->tcp_conn
);
700 pwm
->tcp_conn
= NULL
;
704 static gpg_error_t
_do_pwmd_tcp_connect(pwm_t
*pwm
, const char *host
, int port
,
705 const char *identity
, const char *user
, const char *known_hosts
, int get
)
707 pwmd_tcp_conn_t
*conn
;
710 rc
= init_tcp_conn(&conn
, host
, port
, identity
, user
, known_hosts
, get
);
715 pwm
->tcp_conn
= conn
;
716 pwm
->tcp_conn
->get_only
= get
;
717 pwm
->cmd
= ASYNC_CMD_DNS
;
718 ares_init(&pwm
->tcp_conn
->chan
);
719 ares_query(pwm
->tcp_conn
->chan
, pwm
->tcp_conn
->host
, ns_c_any
, ns_t_any
,
720 dns_resolve_cb
, pwm
);
722 /* dns_resolve_cb() may have already been called. */
723 if (pwm
->tcp_conn
->rc
) {
724 rc
= pwm
->tcp_conn
->rc
;
729 * Fake a blocking DNS lookup. libcares does a better job than
739 n
= ares_fds(pwm
->tcp_conn
->chan
, &rfds
, &wfds
);
740 ares_timeout(pwm
->tcp_conn
->chan
, NULL
, &tv
);
742 n
= pth_select(n
, &rfds
, &wfds
, NULL
, &tv
);
744 n
= select(n
, &rfds
, &wfds
, NULL
, &tv
);
748 rc
= gpg_error_from_syserror();
752 rc
= GPG_ERR_TIMEOUT
;
756 ares_process(pwm
->tcp_conn
->chan
, &rfds
, &wfds
);
758 if (pwm
->tcp_conn
->rc
)
760 } while (pwm
->cmd
== ASYNC_CMD_DNS
);
762 if (pwm
->tcp_conn
->rc
) {
763 rc
= pwm
->tcp_conn
->rc
;
767 return setup_tcp_session(pwm
);
773 gpg_error_t
pwmd_ssh_connect(pwm_t
*pwm
, const char *host
, int port
,
774 const char *identity
, const char *user
, const char *known_hosts
)
776 return _do_pwmd_tcp_connect(pwm
, host
, port
, identity
, user
, known_hosts
, 0);
779 gpg_error_t
pwmd_get_hostkey(const char *host
, int port
, char **result
)
782 pwm_t
*pwm
= pwmd_new(NULL
);
786 return gpg_error_from_errno(ENOMEM
);
788 rc
= _do_pwmd_tcp_connect(pwm
, host
, port
, NULL
, NULL
, NULL
, 1);
795 hostkey
= pwmd_strdup(pwm
->tcp_conn
->hostkey
);
798 rc
= gpg_error_from_errno(ENOMEM
);
805 gpg_error_t
pwmd_get_hostkey_async(pwm_t
*pwm
, const char *host
, int port
)
807 return _do_pwmd_tcp_connect_async(pwm
, host
, port
, NULL
, NULL
, NULL
,
812 gpg_error_t
pwmd_connect(pwm_t
*pwm
, const char *path
)
814 char *socketpath
= NULL
;
815 assuan_context_t ctx
;
817 char *pwbuf
= _getpwuid(&pw
);
821 return gpg_error_from_errno(errno
);
824 socketpath
= (char *)pwmd_malloc(strlen(pw
.pw_dir
) + strlen("/.pwmd/socket") + 1);
825 sprintf(socketpath
, "%s/.pwmd/socket", pw
.pw_dir
);
828 socketpath
= pwmd_strdup(path
);
831 rc
= assuan_socket_connect_ext(&ctx
, socketpath
, -1, 0);
832 pwmd_free(socketpath
);
838 return _socket_connect_finalize(pwm
);
841 void pwmd_close(pwm_t
*pwm
)
847 assuan_disconnect(pwm
->ctx
);
850 pwmd_free(pwm
->password
);
853 pwmd_free(pwm
->title
);
856 pwmd_free(pwm
->desc
);
859 pwmd_free(pwm
->prompt
);
861 if (pwm
->pinentry_tty
)
862 pwmd_free(pwm
->pinentry_tty
);
864 if (pwm
->pinentry_display
)
865 pwmd_free(pwm
->pinentry_display
);
867 if (pwm
->pinentry_term
)
868 pwmd_free(pwm
->pinentry_term
);
871 pwmd_free(pwm
->lcctype
);
874 pwmd_free(pwm
->lcmessages
);
877 pwmd_free(pwm
->filename
);
880 pwmd_free(pwm
->name
);
884 free_tcp_conn(pwm
->tcp_conn
);
890 static int mem_realloc_cb(void *data
, const void *buffer
, size_t len
)
892 membuf_t
*mem
= (membuf_t
*)data
;
898 if ((p
= pwmd_realloc(mem
->buf
, mem
->len
+ len
)) == NULL
)
902 memcpy((char *)mem
->buf
+ mem
->len
, buffer
, len
);
907 static int _inquire_cb(void *data
, const char *keyword
)
909 pwm_t
*pwm
= (pwm_t
*)data
;
911 int flags
= fcntl(pwm
->fd
, F_GETFL
);
913 /* Shouldn't get this far without a callback. */
914 if (!pwm
->inquire_func
)
915 return GPG_ERR_INV_ARG
;
918 * Since the socket file descriptor is probably set to non-blocking, set to
919 * blocking to prevent GPG_ERR_EAGAIN errors. This should be fixes when
920 * asynchronous INQUIRE is supported by either libassuan or a later
923 fcntl(pwm
->fd
, F_SETFL
, 0);
930 rc
= pwm
->inquire_func(pwm
->inquire_data
, keyword
, rc
, &result
, &len
);
931 rc
= gpg_err_code(rc
);
933 if (rc
== GPG_ERR_EOF
|| !rc
) {
934 if (len
<= 0 || !result
|| !*result
) {
939 arc
= assuan_send_data(pwm
->ctx
, result
, len
);
941 if (rc
== GPG_ERR_EOF
) {
952 fcntl(pwm
->fd
, F_SETFL
, flags
);
956 static gpg_error_t
do_nb_command(pwm_t
*pwm
, const char *cmd
, ...)
962 if (pwm
->state
== ASYNC_DONE
)
963 pwm
->state
= ASYNC_INIT
;
965 if (pwm
->state
!= ASYNC_INIT
)
966 return GPG_ERR_INV_STATE
;
968 buf
= pwmd_malloc(ASSUAN_LINELENGTH
+1);
971 return gpg_error_from_errno(ENOMEM
);
974 vsnprintf(buf
, ASSUAN_LINELENGTH
, cmd
, ap
);
976 rc
= assuan_write_line(pwm
->ctx
, buf
);
980 pwm
->state
= ASYNC_PROCESS
;
985 gpg_error_t
pwmd_open_async(pwm_t
*pwm
, const char *filename
)
987 if (!pwm
|| !filename
)
988 return GPG_ERR_INV_ARG
;
990 if (pwm
->cmd
!= ASYNC_CMD_OPEN
) {
994 pwmd_free(pwm
->filename
);
996 pwm
->filename
= pwmd_strdup(filename
);
999 pwm
->cmd
= ASYNC_CMD_OPEN
;
1000 return do_nb_command(pwm
, "OPEN %s %s", filename
,
1001 pwm
->password
? pwm
->password
: "");
1004 gpg_error_t
pwmd_save_async(pwm_t
*pwm
)
1007 return GPG_ERR_INV_ARG
;
1009 pwm
->cmd
= ASYNC_CMD_SAVE
;
1010 return do_nb_command(pwm
, "SAVE %s", pwm
->password
? pwm
->password
: "");
1013 static gpg_error_t
parse_assuan_line(pwm_t
*pwm
)
1019 rc
= assuan_read_line(pwm
->ctx
, &line
, &len
);
1022 if (line
[0] == 'O' && line
[1] == 'K' &&
1023 (line
[2] == 0 || line
[2] == ' ')) {
1024 pwm
->state
= ASYNC_DONE
;
1026 else if (line
[0] == '#') {
1028 else if (line
[0] == 'S' && (line
[1] == 0 || line
[1] == ' ')) {
1029 if (pwm
->status_func
) {
1030 pwm
->status_func(pwm
->status_data
,
1031 line
[1] == 0 ? line
+1 : line
+2);
1034 else if (line
[0] == 'E' && line
[1] == 'R' && line
[2] == 'R' &&
1035 (line
[3] == 0 || line
[3] == ' ')) {
1038 pwm
->state
= ASYNC_DONE
;
1045 gpg_error_t
pwmd_pending_line(pwm_t
*pwm
)
1048 return GPG_ERR_INV_ARG
;
1051 return GPG_ERR_INV_STATE
;
1053 return assuan_pending_line(pwm
->ctx
) ? 0 : GPG_ERR_NO_DATA
;
1056 static pwmd_async_t
reset_async(pwm_t
*pwm
, int done
)
1058 pwm
->state
= ASYNC_INIT
;
1059 pwm
->cmd
= ASYNC_CMD_NONE
;
1061 #ifdef WITH_PINENTRY
1062 if (pwm
->nb_fd
!= -1) {
1068 if (done
&& pwm
->tcp_conn
&& pwm
->tcp_conn
->fd
!= -1) {
1069 close(pwm
->tcp_conn
->fd
);
1070 pwm
->tcp_conn
->fd
= -1;
1077 pwmd_async_t
pwmd_process(pwm_t
*pwm
, gpg_error_t
*rc
, char **result
)
1081 struct timeval tv
= {0, 0};
1086 *rc
= GPG_ERR_INV_ARG
;
1090 /* When not in a command, this will let libassuan process status messages
1091 * by calling PWMD_OPTION_STATUS_FUNC. The client can poll the file
1092 * descriptor returned by pwmd_get_fd() to determine when this should be
1093 * called or call pwmd_pending_line() to determine whether a buffered line
1094 * needs to be processed. */
1095 if (pwm
->cmd
== ASYNC_CMD_NONE
) {
1096 *rc
= assuan_command(pwm
, pwm
->ctx
, NULL
, "NOP");
1100 /* Fixes pwmd_open/save_async2() when there is a cached or new file. */
1101 if (pwm
->state
== ASYNC_DONE
) {
1102 reset_async(pwm
, 0);
1106 if (pwm
->state
!= ASYNC_PROCESS
) {
1107 *rc
= GPG_ERR_INV_STATE
;
1112 if (pwm
->cmd
== ASYNC_CMD_DNS
) {
1115 if (pwm
->tcp_conn
->rc
) {
1116 *rc
= pwm
->tcp_conn
->rc
;
1117 reset_async(pwm
, 1);
1123 n
= ares_fds(pwm
->tcp_conn
->chan
, &rfds
, &wfds
);
1125 /* Shouldn't happen. */
1130 n
= pth_select(n
, &rfds
, &wfds
, NULL
, &tv
);
1132 n
= select(n
, &rfds
, &wfds
, NULL
, &tv
);
1136 ares_process(pwm
->tcp_conn
->chan
, &rfds
, &wfds
);
1140 else if (pwm
->cmd
== ASYNC_CMD_CONNECT
) {
1141 if (pwm
->tcp_conn
->rc
== GPG_ERR_EINPROGRESS
) {
1143 socklen_t len
= sizeof(int);
1146 FD_SET(pwm
->tcp_conn
->fd
, &fds
);
1148 n
= pth_select(pwm
->tcp_conn
->fd
+1, NULL
, &fds
, NULL
, &tv
);
1150 n
= select(pwm
->tcp_conn
->fd
+1, NULL
, &fds
, NULL
, &tv
);
1153 if (!n
|| !FD_ISSET(pwm
->tcp_conn
->fd
, &fds
))
1156 *rc
= gpg_error_from_syserror();
1157 reset_async(pwm
, 1);
1161 ret
= getsockopt(pwm
->tcp_conn
->fd
, SOL_SOCKET
, SO_ERROR
, &n
, &len
);
1164 *rc
= ret
? gpg_error_from_syserror() : gpg_error_from_errno(n
);
1165 reset_async(pwm
, 1);
1169 else if (pwm
->tcp_conn
->rc
) {
1170 *rc
= pwm
->tcp_conn
->rc
;
1171 reset_async(pwm
, 1);
1175 fcntl(pwm
->tcp_conn
->fd
, F_SETFL
, 0);
1176 *rc
= setup_tcp_session(pwm
);
1179 switch (pwm
->tcp_conn
->cmd
) {
1180 case ASYNC_CMD_HOSTKEY
:
1182 *result
= pwm
->result
;
1189 return reset_async(pwm
, *rc
? 1 : 0);
1193 #ifdef WITH_PINENTRY
1194 if (pwm
->cmd
== ASYNC_CMD_OPEN2
|| pwm
->cmd
== ASYNC_CMD_SAVE2
) {
1197 if (pwm
->nb_fd
== -1) {
1198 *rc
= GPG_ERR_INV_STATE
;
1199 return reset_async(pwm
, 0);
1203 FD_SET(pwm
->nb_fd
, &fds
);
1205 n
= pth_select(pwm
->nb_fd
+1, &fds
, NULL
, NULL
, &tv
);
1207 n
= select(pwm
->nb_fd
+1, &fds
, NULL
, NULL
, &tv
);
1210 *rc
= gpg_error_from_syserror();
1211 return reset_async(pwm
, 0);
1215 pwmd_nb_status_t nb
;
1217 size_t len
= pth_read(pwm
->nb_fd
, &nb
, sizeof(nb
));
1219 size_t len
= read(pwm
->nb_fd
, &nb
, sizeof(nb
));
1221 waitpid(pwm
->nb_pid
, &status
, WNOHANG
);
1223 if (len
!= sizeof(nb
)) {
1224 *rc
= gpg_error_from_syserror();
1225 return reset_async(pwm
, pwm
->cmd
== ASYNC_CMD_OPEN2
? 1 : 0);
1230 if (*rc
== GPG_ERR_INV_PASSPHRASE
&& pwm
->cmd
== ASYNC_CMD_SAVE2
) {
1231 reset_async(pwm
, 0);
1232 *rc
= pwmd_save_async2(pwm
);
1233 return ASYNC_PROCESS
;
1236 return reset_async(pwm
, pwm
->cmd
== ASYNC_CMD_OPEN2
? 1 : 0);
1238 if (pwm
->cmd
== ASYNC_CMD_SAVE2
) {
1239 *rc
= do_save_command(pwm
, nb
.password
);
1240 memset(&nb
, 0, sizeof(pwmd_nb_status_t
));
1241 return reset_async(pwm
, 0);
1244 if (pwm
->cmd
== ASYNC_CMD_OPEN2
) {
1245 *rc
= do_open_command(pwm
, pwm
->filename
, nb
.password
);
1246 memset(&nb
, 0, sizeof(pwmd_nb_status_t
));
1248 if (*rc
== GPG_ERR_INV_PASSPHRASE
) {
1249 if (++pwm
->pin_try
< pwm
->pinentry_tries
) {
1250 int n
= pwm
->pin_try
;
1252 reset_async(pwm
, 0);
1254 pwm
->cmd
= ASYNC_CMD_OPEN2
;
1255 *rc
= pwmd_open_async2(pwm
, pwm
->filename
);
1258 return reset_async(pwm
, 1);
1264 return reset_async(pwm
, *rc
? 1 : 0);
1273 *rc
= GPG_ERR_INV_STATE
;
1274 return reset_async(pwm
, 0);
1277 /* This is for the non-blocking OPEN and SAVE commands. */
1279 FD_SET(pwm
->fd
, &fds
);
1281 n
= pth_select(pwm
->fd
+1, &fds
, NULL
, NULL
, &tv
);
1283 n
= select(pwm
->fd
+1, &fds
, NULL
, NULL
, &tv
);
1287 *rc
= gpg_error_from_syserror();
1288 return reset_async(pwm
, 0);
1292 if (FD_ISSET(pwm
->fd
, &fds
))
1293 *rc
= parse_assuan_line(pwm
);
1296 while (!*rc
&& assuan_pending_line(pwm
->ctx
))
1297 *rc
= parse_assuan_line(pwm
);
1299 /* For pinentry retries. */
1300 if (pwm
->cmd
== ASYNC_CMD_OPEN
&&
1301 gpg_err_code(*rc
) == GPG_ERR_INV_PASSPHRASE
&&
1302 ++pwm
->pin_try
< pwm
->pinentry_tries
) {
1303 pwm
->state
= ASYNC_INIT
;
1304 *rc
= pwmd_open_async(pwm
, pwm
->filename
);
1308 return reset_async(pwm
, pwm
->cmd
== ASYNC_CMD_OPEN
? 1 : 0);
1310 if (pwm
->state
== ASYNC_DONE
) {
1311 reset_async(pwm
, 0);
1318 static gpg_error_t
assuan_command(pwm_t
*pwm
, assuan_context_t ctx
,
1319 char **result
, const char *cmd
)
1327 rc
= assuan_transact(ctx
, cmd
, mem_realloc_cb
, &data
, _inquire_cb
, pwm
,
1328 pwm
->status_func
, pwm
->status_data
);
1332 pwmd_free(data
.buf
);
1338 mem_realloc_cb(&data
, "", 1);
1341 pwmd_free(data
.buf
);
1342 rc
= GPG_ERR_INV_ARG
;
1345 *result
= (char *)data
.buf
;
1349 return gpg_err_code(rc
);
1352 gpg_error_t
pwmd_inquire(pwm_t
*pwm
, const char *cmd
, pwmd_inquire_cb_t fn
,
1355 if (!pwm
|| !cmd
|| !fn
)
1356 return GPG_ERR_INV_ARG
;
1358 pwm
->inquire_func
= fn
;
1359 pwm
->inquire_data
= data
;
1360 return assuan_command(pwm
, pwm
->ctx
, NULL
, cmd
);
1363 static gpg_error_t
terminate_pinentry(pwm_t
*pwm
)
1365 #ifndef WITH_PINENTRY
1366 return GPG_ERR_NOT_IMPLEMENTED
;
1368 pid_t pid
= pwm
->pid
;
1372 if (!pwm
|| pid
== -1)
1373 return GPG_ERR_INV_ARG
;
1375 if (kill(pid
, 0) == 0) {
1376 if (kill(pid
, SIGTERM
) == -1) {
1377 if (kill(pid
, SIGKILL
) == -1)
1378 return gpg_error_from_errno(errno
);
1382 return gpg_error_from_errno(errno
);
1388 #ifdef WITH_PINENTRY
1389 static gpg_error_t
set_pinentry_strings(pwm_t
*pwm
, int which
)
1394 tmp
= pwmd_malloc(ASSUAN_LINELENGTH
+1);
1397 return gpg_error_from_errno(ENOMEM
);
1400 pwm
->title
= pwmd_strdup(N_("LibPWMD"));
1406 pwm
->prompt
= pwmd_strdup(N_("Passphrase:"));
1411 if (!pwm
->desc
&& !which
) {
1412 pwm
->desc
= pwmd_strdup(N_("Enter a passphrase."));
1419 snprintf(tmp
, ASSUAN_LINELENGTH
, "SETERROR %s",
1420 N_("Invalid passphrase, please try again."));
1421 else if (which
== 2)
1422 snprintf(tmp
, ASSUAN_LINELENGTH
, "SETERROR %s",
1423 N_("Please type the passphrase again for confirmation."));
1425 snprintf(tmp
, ASSUAN_LINELENGTH
, "SETERROR %s", pwm
->desc
);
1427 error
= pinentry_command(pwm
, NULL
, tmp
);
1434 snprintf(tmp
, ASSUAN_LINELENGTH
, "SETPROMPT %s", pwm
->prompt
);
1435 error
= pinentry_command(pwm
, NULL
, tmp
);
1442 snprintf(tmp
, ASSUAN_LINELENGTH
, "SETDESC %s", pwm
->title
);
1443 error
= pinentry_command(pwm
, NULL
, tmp
);
1449 return gpg_error_from_errno(ENOMEM
);
1452 static void update_pinentry_settings(pwm_t
*pwm
)
1458 char *pwbuf
= _getpwuid(&pw
);
1463 snprintf(buf
, sizeof(buf
), "%s/.pwmd/pinentry.conf", pw
.pw_dir
);
1466 if ((fp
= fopen(buf
, "r")) == NULL
)
1469 while ((p
= fgets(buf
, sizeof(buf
), fp
)) != NULL
) {
1470 char name
[32], val
[256];
1472 if (sscanf(p
, " %31[a-zA-Z] = %255s", name
, val
) != 2)
1475 if (strcasecmp(name
, "TTYNAME") == 0) {
1476 pwmd_free(pwm
->pinentry_tty
);
1477 pwm
->pinentry_tty
= pwmd_strdup(val
);
1479 else if (strcasecmp(name
, "TTYTYPE") == 0) {
1480 pwmd_free(pwm
->pinentry_term
);
1481 pwm
->pinentry_term
= pwmd_strdup(val
);
1483 else if (strcasecmp(name
, "DISPLAY") == 0) {
1484 pwmd_free(pwm
->pinentry_display
);
1485 pwm
->pinentry_display
= pwmd_strdup(val
);
1487 else if (strcasecmp(name
, "PATH") == 0) {
1488 pwmd_free(pwm
->pinentry_path
);
1489 pwm
->pinentry_path
= pwmd_strdup(val
);
1496 static gpg_error_t
launch_pinentry(pwm_t
*pwm
)
1499 assuan_context_t ctx
;
1500 int child_list
[] = {-1};
1501 char *display
= getenv("DISPLAY");
1502 const char *argv
[10];
1503 const char **p
= argv
;
1504 int have_display
= 0;
1506 char *ttybuf
= NULL
;
1508 update_pinentry_settings(pwm
);
1510 if (pwm
->pinentry_display
|| display
)
1513 if (!pwm
->pinentry_tty
) {
1514 ttybuf
= pwmd_malloc(255);
1517 return gpg_error_from_errno(ENOMEM
);
1519 rc
= ttyname_r(STDOUT_FILENO
, ttybuf
, 255);
1523 return gpg_error_from_errno(rc
);
1529 tty
= pwm
->pinentry_tty
;
1532 if (!have_display
&& !tty
)
1533 return GPG_ERR_ENOTTY
;
1536 *p
++ = have_display
? "--display" : "--ttyname";
1537 *p
++ = have_display
? pwm
->pinentry_display
? pwm
->pinentry_display
: display
: tty
;
1540 *p
++ = "--lc-ctype";
1541 *p
++ = pwm
->lcctype
;
1544 if (pwm
->lcmessages
) {
1545 *p
++ = "--lc-messages";
1546 *p
++ = pwm
->lcmessages
;
1551 if (!have_display
) {
1553 *p
++ = pwm
->pinentry_term
? pwm
->pinentry_term
: getenv("TERM");
1557 rc
= assuan_pipe_connect(&ctx
, pwm
->pinentry_path
? pwm
->pinentry_path
: PINENTRY_PATH
, argv
, child_list
);
1565 pwm
->pid
= assuan_get_pid(ctx
);
1567 return set_pinentry_strings(pwm
, 0);
1570 static gpg_error_t
pinentry_command(pwm_t
*pwm
, char **result
, const char *cmd
)
1575 n
= launch_pinentry(pwm
);
1581 return assuan_command(pwm
, pwm
->pctx
, result
, cmd
);
1584 static void pinentry_disconnect(pwm_t
*pwm
)
1587 assuan_disconnect(pwm
->pctx
);
1594 * Only called from a child process.
1596 static void catchsig(int sig
)
1600 if (gelapsed
++ >= gtimeout
)
1601 terminate_pinentry(gpwm
);
1612 * Borrowed from libassuan.
1614 static char *percent_escape(const char *atext
)
1616 const unsigned char *s
;
1617 int len
= strlen(atext
) * 3 + 1;
1618 char *buf
= (char *)pwmd_malloc(len
), *p
= buf
;
1623 for (s
=(const unsigned char *)atext
; *s
; s
++) {
1625 sprintf (p
, "%%%02X", *s
);
1636 static gpg_error_t
send_command(pwm_t
*pwm
, char **result
, const char *cmd
)
1639 return GPG_ERR_INV_ARG
;
1641 return assuan_command(pwm
, pwm
->ctx
, result
, cmd
);
1644 gpg_error_t
pwmd_command_ap(pwm_t
*pwm
, char **result
, const char *cmd
,
1652 return GPG_ERR_INV_ARG
;
1655 * C99 allows the dst pointer to be null which will calculate the length
1656 * of the would-be result and return it.
1658 len
= vsnprintf(NULL
, 0, cmd
, ap
)+1;
1659 buf
= (char *)pwmd_malloc(len
);
1662 return gpg_error_from_errno(ENOMEM
);
1664 len
= vsnprintf(buf
, len
, cmd
, ap
);
1666 if (buf
[strlen(buf
)-1] == '\n')
1667 buf
[strlen(buf
)-1] = 0;
1669 if (buf
[strlen(buf
)-1] == '\r')
1670 buf
[strlen(buf
)-1] = 0;
1672 error
= send_command(pwm
, result
, buf
);
1677 gpg_error_t
pwmd_command(pwm_t
*pwm
, char **result
, const char *cmd
, ...)
1683 return GPG_ERR_INV_ARG
;
1689 error
= pwmd_command_ap(pwm
, result
, cmd
, ap
);
1694 #ifdef WITH_PINENTRY
1695 static gpg_error_t
do_getpin(pwm_t
*pwm
, char **result
)
1698 signal(SIGALRM
, catchsig
);
1703 return pinentry_command(pwm
, result
, "GETPIN");
1706 static gpg_error_t
getpin(pwm_t
*pwm
, char **result
, int which
)
1710 error
= set_pinentry_strings(pwm
, which
);
1713 pinentry_disconnect(pwm
);
1717 error
= do_getpin(pwm
, result
);
1720 * Since there was input cancel any timeout setting.
1725 if (error
== GPG_ERR_CANCELED
)
1726 return GPG_ERR_CANCELED
;
1729 pinentry_disconnect(pwm
);
1738 static gpg_error_t
do_open_command(pwm_t
*pwm
, const char *filename
, char *password
)
1742 char *result
= NULL
;
1744 buf
= pwmd_malloc(ASSUAN_LINELENGTH
+1);
1747 return gpg_error_from_errno(ENOMEM
);
1749 snprintf(buf
, ASSUAN_LINELENGTH
, "OPEN %s %s", filename
,
1750 password
? password
: "");
1751 error
= send_command(pwm
, &result
, buf
);
1754 if (error
&& result
)
1760 static gpg_error_t
do_pwmd_open(pwm_t
*pwm
, const char *filename
, int nb
)
1762 char *result
= NULL
;
1763 char *password
= NULL
;
1764 char path
[PATH_MAX
];
1765 #ifdef WITH_PINENTRY
1770 if (!pwm
|| !filename
|| !*filename
)
1771 return GPG_ERR_INV_ARG
;
1773 #ifdef WITH_PINENTRY
1774 pin_try
= pwm
->pinentry_tries
- 1;
1778 * Avoid calling pinentry if the password is cached on the server or if
1779 * this is a new file.
1781 rc
= pwmd_command(pwm
, &result
, "GETCONFIG data_directory");
1786 snprintf(path
, sizeof(path
), "%s/%s", result
, filename
);
1789 if (access(path
, R_OK
) == -1) {
1790 if (errno
== ENOENT
)
1794 rc
= pwmd_command(pwm
, &result
, "ISCACHED %s", filename
);
1796 if (rc
== GPG_ERR_NOT_FOUND
) {
1797 if (pwm
->passfunc
) {
1798 rc
= pwm
->passfunc(pwm
->passdata
, &password
);
1806 #ifdef WITH_PINENTRY
1808 * Get the password from pinentry.
1810 if (pwm
->use_pinentry
) {
1812 * Nonblocking is wanted. fork() then return a file descriptor
1813 * that the client can use to read() from.
1818 pwmd_nb_status_t pw
;
1821 return gpg_error_from_syserror();
1824 pwm
->filename
= pwmd_strdup(filename
);
1827 return gpg_error_from_errno(ENOMEM
);
1840 if (pwm
->pinentry_timeout
> 0) {
1842 gtimeout
= pwm
->pinentry_timeout
;
1846 pw
.error
= getpin(pwm
, &password
, 0);
1848 if (gtimeout
&& gelapsed
>= gtimeout
)
1849 pw
.error
= GPG_ERR_TIMEOUT
;
1851 signal(SIGALRM
, SIG_DFL
);
1854 snprintf(pw
.password
, sizeof(pw
.password
), "%s",
1857 pinentry_disconnect(pwm
);
1859 pth_write(p
[1], &pw
, sizeof(pw
));
1861 write(p
[1], &pw
, sizeof(pw
));
1863 memset(&pw
, 0, sizeof(pw
));
1868 rc
= gpg_error_from_syserror();
1885 * Not using pinentry and the file was not found
1888 password
= pwm
->password
;
1889 #ifdef WITH_PINENTRY
1897 pwm
->state
= ASYNC_DONE
;
1898 rc
= do_open_command(pwm
, filename
, password
);
1901 * Keep the user defined password set with pwmd_setopt(). The password may
1902 * be needed later (pwmd_save()) depending on the pwmd file cache settings.
1904 if (!pwm
->passfunc
&& password
&& password
!= pwm
->password
)
1905 pwmd_free(password
);
1907 #ifdef WITH_PINENTRY
1908 if (rc
== GPG_ERR_INV_PASSPHRASE
) {
1909 if (pin_try
-- > 0 && !nb
) {
1910 rc
= pwmd_command(pwm
, &result
, "OPTION TITLE=%s",
1911 N_("Invalid passphrase, please try again."));
1920 pinentry_disconnect(pwm
);
1928 pwmd_free(pwm
->filename
);
1930 pwm
->filename
= pwmd_strdup(filename
);
1936 gpg_error_t
pwmd_open(pwm_t
*pwm
, const char *filename
)
1938 return do_pwmd_open(pwm
, filename
, 0);
1941 gpg_error_t
pwmd_open_async2(pwm_t
*pwm
, const char *filename
)
1943 #ifndef WITH_PINENTRY
1944 return GPG_ERR_NOT_IMPLEMENTED
;
1948 if (pwm
->cmd
!= ASYNC_CMD_OPEN2
)
1951 pwm
->cmd
= ASYNC_CMD_OPEN2
;
1952 pwm
->state
= ASYNC_PROCESS
;
1953 rc
= do_pwmd_open(pwm
, filename
, 1);
1956 reset_async(pwm
, 1);
1962 #ifdef WITH_PINENTRY
1963 static gpg_error_t
do_save_getpin(pwm_t
*pwm
, char **password
)
1967 char *result
= NULL
;
1970 error
= getpin(pwm
, &result
, confirm
? 2 : 0);
1974 pinentry_disconnect(pwm
);
1977 pwmd_free(*password
);
1987 if (strcmp(*password
, result
)) {
1988 pwmd_free(*password
);
1990 pinentry_disconnect(pwm
);
1991 error
= GPG_ERR_INV_PASSPHRASE
;
1996 pinentry_disconnect(pwm
);
2001 static gpg_error_t
do_save_command(pwm_t
*pwm
, char *password
)
2005 char *result
= NULL
;
2007 buf
= pwmd_malloc(ASSUAN_LINELENGTH
+1);
2010 return gpg_error_from_errno(ENOMEM
);
2012 snprintf(buf
, ASSUAN_LINELENGTH
, "SAVE %s", password
? password
: "");
2013 error
= send_command(pwm
, &result
, buf
);
2016 if (error
&& result
)
2022 static gpg_error_t
do_pwmd_save(pwm_t
*pwm
, int nb
)
2024 char *result
= NULL
;
2025 char *password
= NULL
;
2029 return GPG_ERR_INV_ARG
;
2031 if (pwm
->use_pinentry
|| pwm
->passfunc
) {
2032 rc
= pwmd_command(pwm
, &result
, "ISCACHED %s", pwm
->filename
);
2034 if (rc
== GPG_ERR_NOT_FOUND
) {
2035 if (pwm
->passfunc
) {
2036 rc
= pwm
->passfunc(pwm
->passdata
, &password
);
2041 #ifdef WITH_PINENTRY
2042 else if (pwm
->use_pinentry
) {
2046 pwmd_nb_status_t pw
;
2049 return gpg_error_from_syserror();
2062 pw
.error
= do_save_getpin(pwm
, &password
);
2063 pinentry_disconnect(pwm
);
2064 snprintf(pw
.password
, sizeof(pw
.password
), "%s",
2067 pth_write(p
[1], &pw
, sizeof(pw
));
2069 write(p
[1], &pw
, sizeof(pw
));
2071 memset(&pw
, 0, sizeof(pw
));
2076 rc
= gpg_error_from_syserror();
2090 rc
= do_save_getpin(pwm
, &password
);
2101 pwm
->state
= ASYNC_DONE
;
2105 password
= pwm
->password
;
2107 rc
= do_save_command(pwm
, password
);
2109 if (!pwm
->passfunc
&& password
&& password
!= pwm
->password
)
2110 pwmd_free(password
);
2115 gpg_error_t
pwmd_save_async2(pwm_t
*pwm
)
2117 #ifndef WITH_PINENTRY
2118 return GPG_ERR_NOT_IMPLEMENTED
;
2122 pwm
->cmd
= ASYNC_CMD_SAVE2
;
2123 pwm
->state
= ASYNC_PROCESS
;
2124 rc
= do_pwmd_save(pwm
, 1);
2127 reset_async(pwm
, 0);
2133 gpg_error_t
pwmd_save(pwm_t
*pwm
)
2135 return do_pwmd_save(pwm
, 0);
2138 gpg_error_t
pwmd_setopt(pwm_t
*pwm
, pwmd_option_t opt
, ...)
2141 int n
= va_arg(ap
, int);
2144 gpg_error_t error
= 0;
2147 return GPG_ERR_INV_ARG
;
2152 case PWMD_OPTION_STATUS_CB
:
2153 pwm
->status_func
= va_arg(ap
, pwmd_status_cb_t
);
2155 case PWMD_OPTION_STATUS_DATA
:
2156 pwm
->status_data
= va_arg(ap
, void *);
2158 case PWMD_OPTION_PASSPHRASE_CB
:
2159 pwm
->passfunc
= va_arg(ap
, pwmd_passphrase_cb_t
);
2161 case PWMD_OPTION_PASSPHRASE_DATA
:
2162 pwm
->passdata
= va_arg(ap
, void *);
2164 case PWMD_OPTION_PASSPHRASE
:
2165 arg1
= va_arg(ap
, char *);
2168 pwmd_free(pwm
->password
);
2170 pwm
->password
= pwmd_strdup(arg1
);
2172 case PWMD_OPTION_PINENTRY
:
2173 n
= va_arg(ap
, int);
2175 if (n
!= 0 && n
!= 1) {
2177 error
= GPG_ERR_INV_VALUE
;
2180 pwm
->use_pinentry
= n
;
2181 error
= pwmd_command(pwm
, &result
, "OPTION PINENTRY=%i",
2182 !pwm
->use_pinentry
);
2185 #ifdef WITH_PINENTRY
2186 case PWMD_OPTION_PINENTRY_TRIES
:
2187 n
= va_arg(ap
, int);
2191 error
= GPG_ERR_INV_VALUE
;
2194 pwm
->pinentry_tries
= n
;
2197 case PWMD_OPTION_PINENTRY_TIMEOUT
:
2198 n
= va_arg(ap
, int);
2202 error
= GPG_ERR_INV_VALUE
;
2205 pwm
->pinentry_timeout
= n
;
2207 if (!pwm
->use_pinentry
)
2208 error
= pwmd_command(pwm
, &result
, "OPTION TIMEOUT=%i",
2209 pwm
->pinentry_timeout
);
2211 case PWMD_OPTION_PINENTRY_PATH
:
2212 if (pwm
->pinentry_path
)
2213 pwmd_free(pwm
->pinentry_path
);
2215 pwm
->pinentry_path
= pwmd_strdup(va_arg(ap
, char *));
2217 if (!pwm
->use_pinentry
)
2218 error
= pwmd_command(pwm
, &result
, "OPTION PATH=%s",
2219 pwm
->pinentry_path
);
2221 case PWMD_OPTION_PINENTRY_TTY
:
2222 if (pwm
->pinentry_tty
)
2223 pwmd_free(pwm
->pinentry_tty
);
2225 pwm
->pinentry_tty
= pwmd_strdup(va_arg(ap
, char *));
2227 if (!pwm
->use_pinentry
)
2228 error
= pwmd_command(pwm
, &result
, "OPTION TTY=%s",
2231 case PWMD_OPTION_PINENTRY_DISPLAY
:
2232 if (pwm
->pinentry_display
)
2233 pwmd_free(pwm
->pinentry_display
);
2235 pwm
->pinentry_display
= pwmd_strdup(va_arg(ap
, char *));
2237 if (!pwm
->use_pinentry
)
2238 error
= pwmd_command(pwm
, &result
, "OPTION DISPLAY=%s",
2239 pwm
->pinentry_display
);
2241 case PWMD_OPTION_PINENTRY_TERM
:
2242 if (pwm
->pinentry_term
)
2243 pwmd_free(pwm
->pinentry_term
);
2245 pwm
->pinentry_term
= pwmd_strdup(va_arg(ap
, char *));
2247 if (!pwm
->use_pinentry
)
2248 error
= pwmd_command(pwm
, &result
, "OPTION TTYTYPE=%s",
2249 pwm
->pinentry_term
);
2251 case PWMD_OPTION_PINENTRY_TITLE
:
2253 pwmd_free(pwm
->title
);
2255 pwm
->title
= percent_escape(va_arg(ap
, char *));
2257 if (!pwm
->use_pinentry
)
2258 error
= pwmd_command(pwm
, &result
, "OPTION TITLE=%s",
2261 case PWMD_OPTION_PINENTRY_PROMPT
:
2263 pwmd_free(pwm
->prompt
);
2265 pwm
->prompt
= percent_escape(va_arg(ap
, char *));
2267 if (!pwm
->use_pinentry
)
2268 error
= pwmd_command(pwm
, &result
, "OPTION PROMPT=%s",
2271 case PWMD_OPTION_PINENTRY_DESC
:
2273 pwmd_free(pwm
->desc
);
2275 pwm
->desc
= percent_escape(va_arg(ap
, char *));
2277 if (!pwm
->use_pinentry
)
2278 error
= pwmd_command(pwm
, &result
, "OPTION DESC=%s",
2281 case PWMD_OPTION_PINENTRY_LC_CTYPE
:
2283 pwmd_free(pwm
->lcctype
);
2285 pwm
->lcctype
= pwmd_strdup(va_arg(ap
, char *));
2287 if (!pwm
->use_pinentry
)
2288 error
= pwmd_command(pwm
, &result
, "OPTION LC_CTYPE=%s",
2291 case PWMD_OPTION_PINENTRY_LC_MESSAGES
:
2292 if (pwm
->lcmessages
)
2293 pwmd_free(pwm
->lcmessages
);
2295 pwm
->lcmessages
= pwmd_strdup(va_arg(ap
, char *));
2297 if (!pwm
->use_pinentry
)
2298 error
= pwmd_command(pwm
, &result
, "OPTION LC_MESSAGES=%s",
2302 case PWMD_OPTION_IP_VERSION
:
2303 n
= va_arg(ap
, int);
2312 error
= GPG_ERR_INV_VALUE
;
2320 error
= GPG_ERR_NOT_IMPLEMENTED
;
2328 gpg_error_t
pwmd_get_fd(pwm_t
*pwm
, int *fd
)
2331 return GPG_ERR_INV_ARG
;
2334 return GPG_ERR_INV_STATE
;
2340 gpg_error_t
pwmd_get_fd2(pwm_t
*pwm
, int *fd
)
2342 #ifndef WITH_PINENTRY
2343 return GPG_ERR_NOT_IMPLEMENTED
;
2346 return GPG_ERR_INV_ARG
;
2348 if (pwm
->nb_fd
== -1)
2349 return GPG_ERR_INV_STATE
;
2356 pwm_t
*pwmd_new(const char *name
)
2358 pwm_t
*h
= pwmd_calloc(1, sizeof(pwm_t
));
2364 h
->name
= pwmd_strdup(name
);
2373 #ifdef WITH_PINENTRY
2377 h
->prot
= PWMD_IP_ANY
;
2382 void pwmd_free(void *ptr
)
2387 void *pwmd_malloc(size_t size
)
2389 return xmalloc(size
);
2392 void *pwmd_calloc(size_t nmemb
, size_t size
)
2394 return xcalloc(nmemb
, size
);
2397 void *pwmd_realloc(void *ptr
, size_t size
)
2399 return xrealloc(ptr
, size
);
2402 char *pwmd_strdup(const char *str
)
2404 return xstrdup(str
);