The 'changelog' target now only generates changes from v5.0.x to
[libpwmd.git] / src / libpwmd.c
blob24ccd86bc2fb9b62010758bf0e2e7dbd6a09cf77
1 /* vim:tw=78:ts=8:sw=4:set ft=c: */
2 /*
3 Copyright (C) 2006-2009 Ben Kibbey <bjk@luxsci.net>
5 This program is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published by
7 the Free Software Foundation; either version 2 of the License, or
8 (at your option) any later version.
10 This program is distributed in the hope that it will be useful,
11 but WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13 GNU General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with this program; if not, write to the Free Software
17 Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02110-1301 USA
19 #include <stdio.h>
20 #include <stdlib.h>
21 #include <unistd.h>
22 #include <err.h>
23 #include <errno.h>
24 #include <ctype.h>
25 #include <string.h>
26 #include <sys/socket.h>
27 #include <sys/un.h>
28 #include <signal.h>
29 #include <stdarg.h>
30 #include <string.h>
31 #include <sys/wait.h>
32 #include <fcntl.h>
33 #include <pwd.h>
34 #include <time.h>
35 #include <sys/types.h>
36 #include <limits.h>
37 #include <sys/select.h>
38 #include <netdb.h>
39 #include <netinet/in.h>
40 #include <sys/socket.h>
41 #include <libpwmd.h>
43 #ifdef HAVE_CONFIG_H
44 #include <config.h>
45 #endif
47 #ifdef WITH_LIBPTH
48 #include <pth.h>
49 #endif
51 #ifdef WITH_TCP
52 #define DNS_USE_GETTIMEOFDAY_FOR_ID 1
53 #include <ares.h>
54 #include <arpa/nameser.h>
55 #endif
57 #ifdef HAVE_ASSUAN_H
58 #include <assuan.h>
59 #endif
61 #ifdef HAVE_SETLOCALE
62 #include <locale.h>
63 #endif
65 #include "gettext.h"
66 #define N_(msgid) dgettext("libpwmd", msgid)
68 #include "mem.h"
69 #include "types.h"
71 static char *_getpwuid(struct passwd *pwd)
73 size_t size = sysconf(_SC_GETPW_R_SIZE_MAX);
74 struct passwd *result;
75 char *buf;
76 int n;
78 if (size == -1)
79 size = 16384;
81 buf = pwmd_malloc(size);
83 if (!buf)
84 return NULL;
86 n = getpwuid_r(getuid(), pwd, buf, size, &result);
88 if (n) {
89 pwmd_free(buf);
90 errno = n;
91 return NULL;
94 if (!result) {
95 pwmd_free(buf);
96 return NULL;
99 errno = n;
100 return buf;
103 static const char *_pwmd_strerror(gpg_error_t e)
105 gpg_err_code_t code = gpg_err_code(e);
107 if (code >= GPG_ERR_USER_1 && code < gpg_err_code(EPWMD_MAX)) {
108 switch (code) {
109 default:
110 return NULL;
111 case GPG_ERR_USER_1:
112 return N_("Unknown error");
113 case GPG_ERR_USER_2:
114 return N_("No cache slots available");
115 case GPG_ERR_USER_3:
116 return N_("Recursion loop");
117 case GPG_ERR_USER_4:
118 return N_("No file is open");
119 case GPG_ERR_USER_5:
120 return N_("General LibXML error");
121 case GPG_ERR_USER_6:
122 return N_("File modified");
126 return NULL;
129 const char *pwmd_strerror(gpg_error_t code)
131 const char *p = _pwmd_strerror(code);
133 return p ? p : gpg_strerror(code);
136 int pwmd_strerror_r(gpg_error_t code, char *buf, size_t size)
138 const char *p = _pwmd_strerror(code);
140 if (p) {
141 snprintf(buf, size, "%s", p);
143 if (strlen(p) > size)
144 return ERANGE;
146 return 0;
149 return gpg_strerror_r(code, buf, size);
152 gpg_error_t pwmd_init()
154 static int initialized;
156 if (initialized)
157 return 0;
159 #ifndef MEM_DEBUG
160 xmem_init();
161 #endif
162 #ifdef ENABLE_NLS
163 bindtextdomain("libpwmd", LOCALEDIR);
164 #endif
165 gpg_err_init();
166 assuan_set_malloc_hooks(pwmd_malloc, pwmd_realloc, pwmd_free);
167 assuan_set_assuan_err_source(GPG_ERR_SOURCE_DEFAULT);
168 initialized = 1;
169 return 0;
172 static gpg_error_t _socket_connect_finalize(pwm_t *pwm)
174 int active[2];
175 int n = assuan_get_active_fds(pwm->ctx, 0, active, N_ARRAY(active));
176 gpg_error_t rc;
177 char *result;
179 if (n <= 0)
180 return GPG_ERR_EBADFD;
182 pwm->fd = active[0];
183 #ifdef WITH_PINENTRY
184 pwm->pid = -1;
185 #endif
186 assuan_set_pointer(pwm->ctx, pwm);
188 if (pwm->name) {
189 rc = pwmd_command(pwm, NULL, "OPTION CLIENT NAME=%s", pwm->name);
191 if (rc)
192 return rc;
195 rc = pwmd_command(pwm, &result, "VERSION");
197 if (rc && rc != GPG_ERR_ASS_UNKNOWN_CMD)
198 return rc;
200 if (rc)
201 pwm->version = PWMD_V1;
202 else
203 pwm->version = PWMD_V2;
205 pwmd_free(result);
206 return 0;
209 #ifdef WITH_TCP
210 static int read_hook(assuan_context_t ctx, assuan_fd_t fd, void *data,
211 size_t len, ssize_t *ret)
213 pwm_t *pwm = assuan_get_pointer(ctx);
214 int n = 0;
216 if (!pwm || !pwm->tcp_conn)
217 #ifdef WITH_LIBPTH
218 *ret = pth_read((int)fd, data, len);
219 #else
220 *ret = read((int)fd, data, len);
221 #endif
222 else {
223 do {
224 *ret = libssh2_channel_read(pwm->tcp_conn->channel, data, len);
225 n = libssh2_session_last_errno(pwm->tcp_conn->session);
226 } while (n == LIBSSH2_ERROR_EAGAIN);
229 return !n && *ret != -1 ? 1 : 0;
232 static int write_hook(assuan_context_t ctx, assuan_fd_t fd, const void *data,
233 size_t len, ssize_t *ret)
235 pwm_t *pwm = assuan_get_pointer(ctx);
236 int n = 0;
238 if (!pwm || !pwm->tcp_conn)
239 #ifdef WITH_LIBPTH
240 *ret = pth_write((int)fd, data, len);
241 #else
242 *ret = write((int)fd, data, len);
243 #endif
244 else {
245 do {
246 *ret = libssh2_channel_write(pwm->tcp_conn->channel, data, len);
247 n = libssh2_session_last_errno(pwm->tcp_conn->session);
248 } while (n == LIBSSH2_ERROR_EAGAIN);
251 return !n && *ret != -1 ? 1 : 0;
254 static void _ssh_deinit(pwmd_tcp_conn_t *conn);
255 static void free_tcp_conn(pwmd_tcp_conn_t *conn)
257 if (!conn)
258 return;
260 if (conn->username) {
261 pwmd_free(conn->username);
262 conn->username = NULL;
265 if (conn->known_hosts) {
266 pwmd_free(conn->known_hosts);
267 conn->known_hosts = NULL;
270 if (conn->identity) {
271 pwmd_free(conn->identity);
272 conn->identity = NULL;
275 if (conn->identity_pub) {
276 pwmd_free(conn->identity_pub);
277 conn->identity_pub = NULL;
280 if (conn->host) {
281 pwmd_free(conn->host);
282 conn->host = NULL;
285 if (conn->hostkey) {
286 pwmd_free(conn->hostkey);
287 conn->hostkey = NULL;
290 if (conn->chan) {
291 ares_destroy(conn->chan);
292 conn->chan = NULL;
295 if (conn->he) {
296 ares_free_hostent(conn->he);
297 conn->he = NULL;
300 if (conn->fd >= 0) {
301 close(conn->fd);
302 conn->fd = -1;
305 if (conn->session)
306 _ssh_deinit(conn);
307 else
308 pwmd_free(conn);
311 static void _ssh_deinit(pwmd_tcp_conn_t *conn)
313 if (!conn)
314 return;
316 if (conn->channel)
317 libssh2_channel_free(conn->channel);
319 if (conn->session) {
320 libssh2_session_disconnect(conn->session, "Bye!");
321 libssh2_session_free(conn->session);
324 conn->session = NULL;
325 conn->channel = NULL;
326 free_tcp_conn(conn);
329 static void _ssh_assuan_deinit(assuan_context_t ctx)
331 pwm_t *pwm = assuan_get_pointer(ctx);
333 pwm->tcp_conn->fd = -1;
334 _ssh_deinit(pwm->tcp_conn);
335 pwm->tcp_conn = NULL;
339 * Sets common options from both pwmd_ssh_connect() and
340 * pwmd_ssh_connect_async().
342 static gpg_error_t init_tcp_conn(pwmd_tcp_conn_t **dst, const char *host,
343 int port, const char *identity, const char *user, const char *hosts,
344 int get)
346 pwmd_tcp_conn_t *conn;
347 gpg_error_t rc = 0;
349 if (get) {
350 if (!host)
351 return GPG_ERR_INV_ARG;
353 else {
354 if (!host || !identity || !hosts)
355 return GPG_ERR_INV_ARG;
358 conn = pwmd_calloc(1, sizeof(pwmd_tcp_conn_t));
360 if (!conn)
361 return gpg_error_from_errno(ENOMEM);
363 conn->port = port == -1 ? 22 : port;
364 conn->host = pwmd_strdup(host);
366 if (!conn->host) {
367 rc = gpg_error_from_errno(ENOMEM);
368 goto fail;
371 if (!get) {
372 struct passwd pw;
373 char *pwbuf = _getpwuid(&pw);
375 if (!pwbuf) {
376 rc = gpg_error_from_errno(errno);
377 goto fail;
380 conn->username = pwmd_strdup(user ? user : pw.pw_name);
381 pwmd_free(pwbuf);
383 if (!conn->username) {
384 rc = gpg_error_from_errno(ENOMEM);
385 goto fail;
388 conn->identity = pwmd_strdup(identity);
390 if (!conn->identity) {
391 rc = gpg_error_from_errno(ENOMEM);
392 goto fail;
395 conn->identity_pub = pwmd_malloc(strlen(conn->identity)+5);
397 if (!conn->identity_pub) {
398 rc = gpg_error_from_errno(ENOMEM);
399 goto fail;
402 sprintf(conn->identity_pub, "%s.pub", conn->identity);
403 conn->known_hosts = pwmd_strdup(hosts);
405 if (!conn->known_hosts) {
406 rc = gpg_error_from_errno(ENOMEM);
407 goto fail;
411 *dst = conn;
412 return 0;
414 fail:
415 free_tcp_conn(conn);
416 return rc;
419 static gpg_error_t do_connect(pwm_t *pwm, int prot, void *addr)
421 struct sockaddr_in their_addr;
423 pwm->tcp_conn->fd = socket(prot, SOCK_STREAM, 0);
425 if (pwm->tcp_conn->fd == -1)
426 return gpg_error_from_syserror();
428 if (pwm->tcp_conn->async)
429 fcntl(pwm->tcp_conn->fd, F_SETFL, O_NONBLOCK);
431 pwm->cmd = ASYNC_CMD_CONNECT;
432 their_addr.sin_family = prot;
433 their_addr.sin_port = htons(pwm->tcp_conn->port);
434 their_addr.sin_addr = *((struct in_addr *)addr);
435 memset(their_addr.sin_zero, '\0', sizeof their_addr.sin_zero);
437 #ifdef WITH_LIBPTH
438 if (pth_connect(pwm->tcp_conn->fd, (struct sockaddr *)&their_addr,
439 sizeof(their_addr)) == -1)
440 #else
441 if (connect(pwm->tcp_conn->fd, (struct sockaddr *)&their_addr,
442 sizeof(their_addr)) == -1)
443 #endif
444 return gpg_error_from_syserror();
446 return 0;
449 static gpg_error_t ares_error_to_pwmd(int status)
451 if (status != ARES_SUCCESS)
452 warnx("%s", ares_strerror(status));
454 switch (status) {
455 case ARES_ENODATA:
456 case ARES_EFORMERR:
457 case ARES_ENOTFOUND:
458 return GPG_ERR_UNKNOWN_HOST;
459 case ARES_ESERVFAIL:
460 return GPG_ERR_EHOSTDOWN;
461 case ARES_ETIMEOUT:
462 return GPG_ERR_TIMEOUT;
463 case ARES_ENOMEM:
464 return gpg_error_from_errno(ENOMEM);
465 case ARES_ECONNREFUSED:
466 return GPG_ERR_ECONNREFUSED;
467 default:
468 /* FIXME ??? */
469 return GPG_ERR_EHOSTUNREACH;
472 return ARES_SUCCESS;
475 static void dns_resolve_cb(void *arg, int status, int timeouts,
476 unsigned char *abuf, int alen)
478 pwm_t *pwm = arg;
479 int rc;
480 struct hostent *he;
482 if (status == ARES_EDESTRUCTION)
483 return;
485 if (status != ARES_SUCCESS) {
486 pwm->tcp_conn->rc = ares_error_to_pwmd(status);
487 return;
490 /* Check for an IPv6 address first. */
491 if (pwm->prot == PWMD_IP_ANY || pwm->prot == PWMD_IPV6)
492 rc = ares_parse_aaaa_reply(abuf, alen, &he, NULL, NULL);
493 else
494 rc = ares_parse_a_reply(abuf, alen, &he, NULL, NULL);
496 if (rc != ARES_SUCCESS) {
497 if (pwm->prot != PWMD_IP_ANY || rc != ARES_ENODATA) {
498 pwm->tcp_conn->rc = ares_error_to_pwmd(status);
499 return;
502 rc = ares_parse_a_reply(abuf, alen, &he, NULL, NULL);
504 if (rc != ARES_SUCCESS) {
505 pwm->tcp_conn->rc = ares_error_to_pwmd(status);
506 return;
510 pwm->tcp_conn->he = he;
511 pwm->tcp_conn->rc = do_connect(pwm, he->h_addrtype, he->h_addr);
514 static gpg_error_t _do_pwmd_tcp_connect_async(pwm_t *pwm, const char *host,
515 int port, const char *identity, const char *user,
516 const char *known_hosts, pwmd_async_cmd_t which)
518 pwmd_tcp_conn_t *conn;
519 gpg_error_t rc;
521 if (!pwm)
522 return GPG_ERR_INV_ARG;
524 rc = init_tcp_conn(&conn, host, port, identity, user, known_hosts,
525 which == ASYNC_CMD_HOSTKEY ? 1 : 0);
527 if (rc)
528 return rc;
530 conn->async = 1;
531 pwm->tcp_conn = conn;
532 pwm->tcp_conn->cmd = which;
534 if (pwm->tcp_conn->cmd == ASYNC_CMD_HOSTKEY)
535 pwm->tcp_conn->get_only = 1;
537 pwm->cmd = ASYNC_CMD_DNS;
538 pwm->state = ASYNC_PROCESS;
539 ares_init(&pwm->tcp_conn->chan);
540 ares_query(pwm->tcp_conn->chan, pwm->tcp_conn->host, ns_c_any, ns_t_any,
541 dns_resolve_cb, pwm);
542 return 0;
545 gpg_error_t pwmd_ssh_connect_async(pwm_t *pwm, const char *host, int port,
546 const char *identity, const char *user, const char *known_hosts)
548 return _do_pwmd_tcp_connect_async(pwm, host, port, identity, user,
549 known_hosts, ASYNC_CMD_CONNECT);
552 static void *_ssh_malloc(size_t size, void **data)
554 return pwmd_malloc(size);
557 static void _ssh_free(void *ptr, void **data)
559 pwmd_free(ptr);
562 static void *_ssh_realloc(void *ptr, size_t size, void **data)
564 return pwmd_realloc(ptr, size);
567 static char *to_hex(const char *str, size_t slen)
569 int i;
570 char *buf = pwmd_malloc(slen*2+1);
572 if (!buf)
573 return NULL;
575 for (i = 0, buf[0] = 0; i < slen; i++) {
576 char tmp[3];
578 sprintf(tmp, "%02x", (unsigned char)str[i]);
579 strcat(buf, tmp);
582 return buf;
585 static int verify_host_key(pwm_t *pwm)
587 FILE *fp = fopen(pwm->tcp_conn->known_hosts, "r");
588 char *buf, *p;
590 if (!fp)
591 return 1;
593 buf = pwmd_malloc(LINE_MAX);
595 if (!buf)
596 goto fail;
598 while ((p = fgets(buf, LINE_MAX, fp))) {
599 if (*p == '#' || isspace(*p))
600 continue;
602 if (p[strlen(p)-1] == '\n')
603 p[strlen(p)-1] = 0;
605 if (!strcmp(buf, pwm->tcp_conn->hostkey))
606 goto done;
609 fail:
610 if (buf)
611 pwmd_free(buf);
613 fclose(fp);
614 return 1;
616 done:
617 pwmd_free(buf);
618 fclose(fp);
619 return 0;
622 static gpg_error_t authenticate_ssh(pwm_t *pwm)
624 const char *fp = libssh2_hostkey_hash(pwm->tcp_conn->session,
625 LIBSSH2_HOSTKEY_HASH_SHA1);
626 char *userauth;
628 pwm->tcp_conn->hostkey = to_hex(fp, 20);
630 if (!pwm->tcp_conn->hostkey)
631 return gpg_error_from_errno(ENOMEM);
633 if (pwm->tcp_conn->get_only)
634 return 0;
636 if (!fp || verify_host_key(pwm))
637 return GPG_ERR_CHECKSUM;
639 userauth = libssh2_userauth_list(pwm->tcp_conn->session,
640 pwm->tcp_conn->username, strlen(pwm->tcp_conn->username));
642 if (!userauth || !strstr(userauth, "publickey"))
643 return GPG_ERR_BAD_PIN_METHOD;
645 if (libssh2_userauth_publickey_fromfile(pwm->tcp_conn->session,
646 pwm->tcp_conn->username, pwm->tcp_conn->identity_pub,
647 pwm->tcp_conn->identity, NULL))
648 return GPG_ERR_BAD_SECKEY;
650 return 0;
653 static gpg_error_t setup_tcp_session(pwm_t *pwm)
655 assuan_context_t ctx;
656 struct assuan_io_hooks io_hooks = {read_hook, write_hook};
657 gpg_error_t rc;
659 pwm->tcp_conn->session = libssh2_session_init_ex(_ssh_malloc, _ssh_free,
660 _ssh_realloc, NULL);
662 if (!pwm->tcp_conn->session) {
663 rc = gpg_error_from_errno(ENOMEM);
664 goto fail;
667 if (libssh2_session_startup(pwm->tcp_conn->session, pwm->tcp_conn->fd)) {
668 rc = GPG_ERR_ASSUAN_SERVER_FAULT;
669 goto fail;
672 rc = authenticate_ssh(pwm);
674 if (rc)
675 goto fail;
677 /* pwmd_get_hostkey(). */
678 if (pwm->tcp_conn->get_only) {
679 pwm->result = pwmd_strdup(pwm->tcp_conn->hostkey);
681 if (!pwm->result) {
682 rc = gpg_error_from_errno(ENOMEM);
683 goto fail;
686 return 0;
689 pwm->tcp_conn->channel = libssh2_channel_open_session(pwm->tcp_conn->session);
691 if (!pwm->tcp_conn->channel) {
692 rc = GPG_ERR_ASSUAN_SERVER_FAULT;
693 goto fail;
696 if (libssh2_channel_shell(pwm->tcp_conn->channel)) {
697 rc = GPG_ERR_ASSUAN_SERVER_FAULT;
698 goto fail;
701 assuan_set_io_hooks(&io_hooks);
702 rc = assuan_socket_connect_fd(&ctx, pwm->tcp_conn->fd, 0, pwm);
704 if (rc)
705 goto fail;
707 assuan_set_finish_handler(ctx, _ssh_assuan_deinit);
708 pwm->ctx = ctx;
709 return _socket_connect_finalize(pwm);
711 fail:
712 free_tcp_conn(pwm->tcp_conn);
713 pwm->tcp_conn = NULL;
714 return rc;
717 static gpg_error_t _do_pwmd_tcp_connect(pwm_t *pwm, const char *host, int port,
718 const char *identity, const char *user, const char *known_hosts, int get)
720 pwmd_tcp_conn_t *conn;
721 gpg_error_t rc;
723 if (!pwm)
724 return GPG_ERR_INV_ARG;
726 rc = init_tcp_conn(&conn, host, port, identity, user, known_hosts, get);
728 if (rc)
729 return rc;
731 pwm->tcp_conn = conn;
732 pwm->tcp_conn->get_only = get;
733 pwm->cmd = ASYNC_CMD_DNS;
734 ares_init(&pwm->tcp_conn->chan);
735 ares_query(pwm->tcp_conn->chan, pwm->tcp_conn->host, ns_c_any, ns_t_any,
736 dns_resolve_cb, pwm);
738 /* dns_resolve_cb() may have already been called. */
739 if (pwm->tcp_conn->rc) {
740 rc = pwm->tcp_conn->rc;
741 goto fail;
745 * Fake a blocking DNS lookup. libcares does a better job than
746 * getaddrinfo().
748 do {
749 fd_set rfds, wfds;
750 int n;
751 struct timeval tv;
753 FD_ZERO(&rfds);
754 FD_ZERO(&wfds);
755 n = ares_fds(pwm->tcp_conn->chan, &rfds, &wfds);
756 ares_timeout(pwm->tcp_conn->chan, NULL, &tv);
757 #ifdef WITH_LIBPTH
758 n = pth_select(n, &rfds, &wfds, NULL, &tv);
759 #else
760 n = select(n, &rfds, &wfds, NULL, &tv);
761 #endif
763 if (n == -1) {
764 rc = gpg_error_from_syserror();
765 goto fail;
767 else if (n == 0) {
768 rc = GPG_ERR_TIMEOUT;
769 goto fail;
772 ares_process(pwm->tcp_conn->chan, &rfds, &wfds);
774 if (pwm->tcp_conn->rc)
775 break;
776 } while (pwm->cmd == ASYNC_CMD_DNS);
778 if (pwm->tcp_conn->rc) {
779 rc = pwm->tcp_conn->rc;
780 goto fail;
783 return setup_tcp_session(pwm);
785 fail:
786 return rc;
789 gpg_error_t pwmd_ssh_connect(pwm_t *pwm, const char *host, int port,
790 const char *identity, const char *user, const char *known_hosts)
792 return _do_pwmd_tcp_connect(pwm, host, port, identity, user, known_hosts, 0);
795 gpg_error_t pwmd_get_hostkey(pwm_t *pwm, const char *host, int port,
796 char **result)
798 char *hostkey;
799 gpg_error_t rc;
801 rc = _do_pwmd_tcp_connect(pwm, host, port, NULL, NULL, NULL, 1);
803 if (rc)
804 return rc;
806 hostkey = pwmd_strdup(pwm->tcp_conn->hostkey);
808 if (!hostkey)
809 rc = gpg_error_from_errno(ENOMEM);
811 *result = hostkey;
812 return rc;
815 gpg_error_t pwmd_get_hostkey_async(pwm_t *pwm, const char *host, int port)
817 return _do_pwmd_tcp_connect_async(pwm, host, port, NULL, NULL, NULL,
818 ASYNC_CMD_HOSTKEY);
820 #endif
822 gpg_error_t pwmd_connect(pwm_t *pwm, const char *path)
824 char *socketpath = NULL;
825 assuan_context_t ctx;
826 struct passwd pw;
827 char *pwbuf;
828 gpg_error_t rc;
830 if (!pwm)
831 return GPG_ERR_INV_ARG;
833 pwbuf = _getpwuid(&pw);
835 if (!pwbuf)
836 return gpg_error_from_errno(errno);
838 if (!path) {
839 socketpath = (char *)pwmd_malloc(strlen(pw.pw_dir) + strlen("/.pwmd/socket") + 1);
840 sprintf(socketpath, "%s/.pwmd/socket", pw.pw_dir);
842 else
843 socketpath = pwmd_strdup(path);
845 pwmd_free(pwbuf);
846 rc = assuan_socket_connect_ext(&ctx, socketpath, -1, 0);
847 pwmd_free(socketpath);
849 if (rc)
850 return rc;
852 pwm->ctx = ctx;
853 return _socket_connect_finalize(pwm);
856 void pwmd_close(pwm_t *pwm)
858 if (!pwm)
859 return;
861 if (pwm->ctx)
862 assuan_disconnect(pwm->ctx);
864 if (pwm->password)
865 pwmd_free(pwm->password);
867 if (pwm->title)
868 pwmd_free(pwm->title);
870 if (pwm->desc)
871 pwmd_free(pwm->desc);
873 if (pwm->prompt)
874 pwmd_free(pwm->prompt);
876 if (pwm->pinentry_tty)
877 pwmd_free(pwm->pinentry_tty);
879 if (pwm->pinentry_display)
880 pwmd_free(pwm->pinentry_display);
882 if (pwm->pinentry_term)
883 pwmd_free(pwm->pinentry_term);
885 if (pwm->lcctype)
886 pwmd_free(pwm->lcctype);
888 if (pwm->lcmessages)
889 pwmd_free(pwm->lcmessages);
891 if (pwm->filename)
892 pwmd_free(pwm->filename);
894 if (pwm->name)
895 pwmd_free(pwm->name);
897 #ifdef WITH_TCP
898 if (pwm->tcp_conn)
899 free_tcp_conn(pwm->tcp_conn);
900 #endif
902 pwmd_free(pwm);
905 static int mem_realloc_cb(void *data, const void *buffer, size_t len)
907 membuf_t *mem = (membuf_t *)data;
908 void *p;
910 if (!buffer)
911 return 0;
913 if ((p = pwmd_realloc(mem->buf, mem->len + len)) == NULL)
914 return 1;
916 mem->buf = p;
917 memcpy((char *)mem->buf + mem->len, buffer, len);
918 mem->len += len;
919 return 0;
922 static int _inquire_cb(void *data, const char *keyword)
924 pwm_t *pwm = (pwm_t *)data;
925 gpg_error_t rc = 0;
926 int flags = fcntl(pwm->fd, F_GETFL);
928 /* Shouldn't get this far without a callback. */
929 if (!pwm->inquire_func)
930 return GPG_ERR_INV_ARG;
933 * Since the socket file descriptor is probably set to non-blocking, set to
934 * blocking to prevent GPG_ERR_EAGAIN errors. This should be fixed when
935 * asynchronous INQUIRE is supported by either libassuan or a later
936 * libpwmd.
938 fcntl(pwm->fd, F_SETFL, 0);
940 for (;;) {
941 char *result = NULL;
942 size_t len;
943 gpg_error_t arc;
945 rc = pwm->inquire_func(pwm->inquire_data, keyword, rc, &result, &len);
946 rc = gpg_err_code(rc);
948 if (rc == GPG_ERR_EOF || !rc) {
949 if (len <= 0 || !result) {
950 rc = 0;
951 break;
954 arc = assuan_send_data(pwm->ctx, result, len);
956 if (rc == GPG_ERR_EOF) {
957 rc = arc;
958 break;
961 rc = arc;
963 else if (rc)
964 break;
967 fcntl(pwm->fd, F_SETFL, flags);
968 return rc;
971 static gpg_error_t do_nb_command(pwm_t *pwm, const char *cmd, ...)
973 char *buf;
974 gpg_error_t rc;
975 va_list ap;
977 if (pwm->state == ASYNC_DONE)
978 pwm->state = ASYNC_INIT;
980 if (pwm->state != ASYNC_INIT)
981 return GPG_ERR_INV_STATE;
983 buf = pwmd_malloc(ASSUAN_LINELENGTH+1);
985 if (!buf)
986 return gpg_error_from_errno(ENOMEM);
988 va_start(ap, cmd);
989 vsnprintf(buf, ASSUAN_LINELENGTH, cmd, ap);
990 va_end(ap);
991 rc = assuan_write_line(pwm->ctx, buf);
992 pwmd_free(buf);
994 if (!rc)
995 pwm->state = ASYNC_PROCESS;
997 return rc;
1000 gpg_error_t pwmd_open_async(pwm_t *pwm, const char *filename)
1002 if (!pwm || !filename)
1003 return GPG_ERR_INV_ARG;
1005 if (!pwm->ctx)
1006 return GPG_ERR_INV_STATE;
1008 if (pwm->cmd != ASYNC_CMD_OPEN) {
1009 gpg_error_t rc;
1011 pwm->pin_try = 0;
1013 if (pwm->filename)
1014 pwmd_free(pwm->filename);
1016 pwm->filename = pwmd_strdup(filename);
1018 rc = send_pinentry_options(pwm);
1020 if (rc)
1021 return rc;
1024 pwm->cmd = ASYNC_CMD_OPEN;
1025 return do_nb_command(pwm, "OPEN %s %s", filename,
1026 pwm->password ? pwm->password : "");
1029 gpg_error_t pwmd_save_async(pwm_t *pwm)
1031 gpg_error_t rc;
1033 if (!pwm)
1034 return GPG_ERR_INV_ARG;
1036 if (!pwm->ctx)
1037 return GPG_ERR_INV_STATE;
1039 rc = send_pinentry_options(pwm);
1041 if (rc)
1042 return rc;
1044 pwm->cmd = ASYNC_CMD_SAVE;
1045 return do_nb_command(pwm, "SAVE %s", pwm->password ? pwm->password : "");
1048 static gpg_error_t parse_assuan_line(pwm_t *pwm)
1050 gpg_error_t rc;
1051 char *line;
1052 size_t len;
1054 rc = assuan_read_line(pwm->ctx, &line, &len);
1056 if (!rc) {
1057 if (line[0] == 'O' && line[1] == 'K' &&
1058 (line[2] == 0 || line[2] == ' ')) {
1059 pwm->state = ASYNC_DONE;
1061 else if (line[0] == '#') {
1063 else if (line[0] == 'S' && (line[1] == 0 || line[1] == ' ')) {
1064 if (pwm->status_func) {
1065 pwm->status_func(pwm->status_data,
1066 line[1] == 0 ? line+1 : line+2);
1069 else if (line[0] == 'E' && line[1] == 'R' && line[2] == 'R' &&
1070 (line[3] == 0 || line[3] == ' ')) {
1071 line += 4;
1072 rc = atoi(line);
1073 pwm->state = ASYNC_DONE;
1077 return rc;
1080 gpg_error_t pwmd_pending_line(pwm_t *pwm)
1082 if (!pwm)
1083 return GPG_ERR_INV_ARG;
1085 if (!pwm->ctx)
1086 return GPG_ERR_INV_STATE;
1088 return assuan_pending_line(pwm->ctx) ? 0 : GPG_ERR_NO_DATA;
1091 static pwmd_async_t reset_async(pwm_t *pwm, int done)
1093 pwm->state = ASYNC_INIT;
1094 pwm->cmd = ASYNC_CMD_NONE;
1096 #ifdef WITH_PINENTRY
1097 if (pwm->nb_fd != -1) {
1098 close(pwm->nb_fd);
1099 pwm->nb_fd = -1;
1101 #endif
1102 #ifdef WITH_TCP
1103 if (done && pwm->tcp_conn && pwm->tcp_conn->fd != -1) {
1104 close(pwm->tcp_conn->fd);
1105 pwm->tcp_conn->fd = -1;
1107 #endif
1109 return ASYNC_DONE;
1112 pwmd_async_t pwmd_process(pwm_t *pwm, gpg_error_t *rc, char **result)
1114 fd_set fds;
1115 int n;
1116 struct timeval tv = {0, 0};
1118 if (result)
1119 *result = NULL;
1121 if (!rc)
1122 return GPG_ERR_INV_ARG;
1124 *rc = 0;
1126 if (!pwm) {
1127 *rc = GPG_ERR_INV_ARG;
1128 return ASYNC_DONE;
1130 else if (!pwm->ctx) {
1131 switch (pwm->cmd) {
1132 default:
1133 *rc = GPG_ERR_INV_STATE;
1134 return ASYNC_DONE;
1135 #ifdef WITH_TCP
1136 case ASYNC_CMD_DNS:
1137 case ASYNC_CMD_CONNECT:
1138 case ASYNC_CMD_HOSTKEY:
1139 break;
1140 #endif
1144 /* When not in a command, this will let libassuan process status messages
1145 * by calling PWMD_OPTION_STATUS_FUNC. The client can poll the file
1146 * descriptor returned by pwmd_get_fd() to determine when this should be
1147 * called or call pwmd_pending_line() to determine whether a buffered line
1148 * needs to be processed. */
1149 if (pwm->cmd == ASYNC_CMD_NONE) {
1150 *rc = assuan_command(pwm, pwm->ctx, NULL, "NOP");
1151 return ASYNC_DONE;
1154 /* Fixes pwmd_open/save_async2() when there is a cached or new file. */
1155 if (pwm->state == ASYNC_DONE) {
1156 reset_async(pwm, 0);
1157 return ASYNC_DONE;
1160 if (pwm->state != ASYNC_PROCESS) {
1161 *rc = GPG_ERR_INV_STATE;
1162 return ASYNC_DONE;
1165 #ifdef WITH_TCP
1166 if (pwm->cmd == ASYNC_CMD_DNS) {
1167 fd_set rfds, wfds;
1169 if (pwm->tcp_conn->rc) {
1170 *rc = pwm->tcp_conn->rc;
1171 reset_async(pwm, 1);
1172 return ASYNC_DONE;
1175 FD_ZERO(&rfds);
1176 FD_ZERO(&wfds);
1177 n = ares_fds(pwm->tcp_conn->chan, &rfds, &wfds);
1179 /* Shouldn't happen. */
1180 if (!n)
1181 return pwm->state;
1183 #ifdef WITH_LIBPTH
1184 n = pth_select(n, &rfds, &wfds, NULL, &tv);
1185 #else
1186 n = select(n, &rfds, &wfds, NULL, &tv);
1187 #endif
1189 if (n > 0)
1190 ares_process(pwm->tcp_conn->chan, &rfds, &wfds);
1192 return pwm->state;
1194 else if (pwm->cmd == ASYNC_CMD_CONNECT) {
1195 if (pwm->tcp_conn->rc == GPG_ERR_EINPROGRESS) {
1196 int ret;
1197 socklen_t len = sizeof(int);
1199 FD_ZERO(&fds);
1200 FD_SET(pwm->tcp_conn->fd, &fds);
1201 #ifdef WITH_LIBPTH
1202 n = pth_select(pwm->tcp_conn->fd+1, NULL, &fds, NULL, &tv);
1203 #else
1204 n = select(pwm->tcp_conn->fd+1, NULL, &fds, NULL, &tv);
1205 #endif
1207 if (!n || !FD_ISSET(pwm->tcp_conn->fd, &fds))
1208 return pwm->state;
1209 else if (n == -1) {
1210 *rc = gpg_error_from_syserror();
1211 reset_async(pwm, 1);
1212 return ASYNC_DONE;
1215 ret = getsockopt(pwm->tcp_conn->fd, SOL_SOCKET, SO_ERROR, &n, &len);
1217 if (ret || n) {
1218 *rc = ret ? gpg_error_from_syserror() : gpg_error_from_errno(n);
1219 reset_async(pwm, 1);
1220 return ASYNC_DONE;
1223 else if (pwm->tcp_conn->rc) {
1224 *rc = pwm->tcp_conn->rc;
1225 reset_async(pwm, 1);
1226 return ASYNC_DONE;
1229 fcntl(pwm->tcp_conn->fd, F_SETFL, 0);
1230 *rc = setup_tcp_session(pwm);
1232 if (!*rc) {
1233 switch (pwm->tcp_conn->cmd) {
1234 case ASYNC_CMD_HOSTKEY:
1235 if (!*rc)
1236 *result = pwm->result;
1237 break;
1238 default:
1239 break;
1243 return reset_async(pwm, *rc ? 1 : 0);
1245 #endif
1247 #ifdef WITH_PINENTRY
1248 if (pwm->cmd == ASYNC_CMD_OPEN2 || pwm->cmd == ASYNC_CMD_SAVE2) {
1249 int status;
1251 if (pwm->nb_fd == -1) {
1252 *rc = GPG_ERR_INV_STATE;
1253 return reset_async(pwm, 0);
1256 FD_ZERO(&fds);
1257 FD_SET(pwm->nb_fd, &fds);
1258 FD_SET(pwm->fd, &fds);
1259 #ifdef WITH_LIBPTH
1260 n = pth_select(pwm->nb_fd+1, &fds, NULL, NULL, &tv);
1261 #else
1262 n = select(pwm->nb_fd+1, &fds, NULL, NULL, &tv);
1263 #endif
1264 if (n == -1) {
1265 *rc = gpg_error_from_syserror();
1266 return reset_async(pwm, 0);
1269 if (n > 0 && FD_ISSET(pwm->nb_fd, &fds)) {
1270 pwmd_nb_status_t nb;
1271 #ifdef WITH_LIBPTH
1272 size_t len = pth_read(pwm->nb_fd, &nb, sizeof(nb));
1273 #else
1274 size_t len = read(pwm->nb_fd, &nb, sizeof(nb));
1275 #endif
1276 waitpid(pwm->nb_pid, &status, WNOHANG);
1278 if (len != sizeof(nb)) {
1279 *rc = gpg_error_from_syserror();
1280 return reset_async(pwm, pwm->cmd == ASYNC_CMD_OPEN2 ? 1 : 0);
1283 *rc = nb.error;
1285 if (*rc == GPG_ERR_INV_PASSPHRASE && pwm->cmd == ASYNC_CMD_SAVE2) {
1286 reset_async(pwm, 0);
1287 *rc = pwmd_save_async2(pwm);
1288 return ASYNC_PROCESS;
1290 else if (*rc)
1291 return reset_async(pwm, pwm->cmd == ASYNC_CMD_OPEN2 ? 1 : 0);
1293 if (pwm->cmd == ASYNC_CMD_SAVE2) {
1294 *rc = do_save_command(pwm, nb.password);
1295 memset(&nb, 0, sizeof(pwmd_nb_status_t));
1296 return reset_async(pwm, 0);
1299 if (pwm->cmd == ASYNC_CMD_OPEN2) {
1300 *rc = do_open_command(pwm, pwm->filename, nb.password);
1301 memset(&nb, 0, sizeof(pwmd_nb_status_t));
1303 if (*rc == GPG_ERR_INV_PASSPHRASE) {
1304 if (++pwm->pin_try < pwm->pinentry_tries) {
1305 int n = pwm->pin_try;
1307 reset_async(pwm, 0);
1308 pwm->pin_try = n;
1309 pwm->cmd = ASYNC_CMD_OPEN2;
1310 *rc = pwmd_open_async2(pwm, pwm->filename);
1312 if (*rc)
1313 return reset_async(pwm, 1);
1315 return pwm->state;
1319 return reset_async(pwm, *rc ? 1 : 0);
1323 /* Fall through so status messages can be processed during the
1324 * pinentry. */
1326 #endif
1328 if (pwm->fd < 0) {
1329 *rc = GPG_ERR_INV_STATE;
1330 return reset_async(pwm, 0);
1333 /* This is for the non-blocking OPEN and SAVE commands. */
1334 FD_ZERO(&fds);
1335 FD_SET(pwm->fd, &fds);
1336 #ifdef WITH_LIBPTH
1337 n = pth_select(pwm->fd+1, &fds, NULL, NULL, &tv);
1338 #else
1339 n = select(pwm->fd+1, &fds, NULL, NULL, &tv);
1340 #endif
1342 if (n == -1) {
1343 *rc = gpg_error_from_syserror();
1344 return reset_async(pwm, 0);
1347 if (n > 0) {
1348 if (FD_ISSET(pwm->fd, &fds))
1349 *rc = parse_assuan_line(pwm);
1352 while (!*rc && assuan_pending_line(pwm->ctx))
1353 *rc = parse_assuan_line(pwm);
1355 /* For pinentry retries. */
1356 if (pwm->cmd == ASYNC_CMD_OPEN &&
1357 gpg_err_code(*rc) == GPG_ERR_INV_PASSPHRASE &&
1358 ++pwm->pin_try < pwm->pinentry_tries) {
1359 pwm->state = ASYNC_INIT;
1360 *rc = pwmd_open_async(pwm, pwm->filename);
1363 if (*rc)
1364 return reset_async(pwm, pwm->cmd == ASYNC_CMD_OPEN ? 1 : 0);
1366 if (pwm->state == ASYNC_DONE) {
1367 reset_async(pwm, 0);
1368 return ASYNC_DONE;
1371 return pwm->state;
1374 static gpg_error_t assuan_command(pwm_t *pwm, assuan_context_t ctx,
1375 char **result, const char *cmd)
1377 membuf_t data;
1378 gpg_error_t rc;
1380 data.len = 0;
1381 data.buf = NULL;
1383 rc = assuan_transact(ctx, cmd, mem_realloc_cb, &data, _inquire_cb, pwm,
1384 pwm->status_func, pwm->status_data);
1386 if (rc) {
1387 if (data.buf) {
1388 pwmd_free(data.buf);
1389 data.buf = NULL;
1392 else {
1393 if (data.buf) {
1394 mem_realloc_cb(&data, "", 1);
1396 if (!result) {
1397 pwmd_free(data.buf);
1398 rc = GPG_ERR_INV_ARG;
1400 else
1401 *result = (char *)data.buf;
1405 return gpg_err_code(rc);
1408 gpg_error_t pwmd_inquire(pwm_t *pwm, const char *cmd, pwmd_inquire_cb_t fn,
1409 void *data)
1411 if (!pwm || !cmd || !fn)
1412 return GPG_ERR_INV_ARG;
1414 if (!pwm->ctx)
1415 return GPG_ERR_INV_STATE;
1417 pwm->inquire_func = fn;
1418 pwm->inquire_data = data;
1419 return assuan_command(pwm, pwm->ctx, NULL, cmd);
1422 #ifdef WITH_PINENTRY
1423 static gpg_error_t terminate_pinentry(pwm_t *pwm)
1425 pid_t pid = pwm->pid;
1427 pwm->pid = -1;
1429 if (!pwm || pid == -1)
1430 return GPG_ERR_INV_ARG;
1432 if (kill(pid, 0) == 0) {
1433 if (kill(pid, SIGTERM) == -1) {
1434 if (kill(pid, SIGKILL) == -1)
1435 return gpg_error_from_errno(errno);
1438 else
1439 return gpg_error_from_errno(errno);
1441 return 0;
1444 static gpg_error_t set_pinentry_strings(pwm_t *pwm, int which)
1446 char *tmp, *desc;
1447 gpg_error_t error;
1449 tmp = pwmd_malloc(ASSUAN_LINELENGTH+1);
1451 if (!tmp)
1452 return gpg_error_from_errno(ENOMEM);
1454 if (!pwm->title)
1455 pwm->title = pwmd_strdup(N_("Password Manager Daemon"));
1457 if (!pwm->title)
1458 goto fail_no_mem;
1460 if (!pwm->prompt)
1461 pwm->prompt = pwmd_strdup(N_("Passphrase:"));
1463 if (!pwm->prompt)
1464 goto fail_no_mem;
1466 if (!pwm->desc && (which == PINENTRY_OPEN || which == PINENTRY_SAVE)) {
1467 if (which == PINENTRY_OPEN)
1468 desc = pwmd_strdup_printf(N_("A passphrase is required to open the file \"%s\". Please%%0Aenter the passphrase below."), pwm->filename);
1469 else
1470 desc = pwmd_strdup_printf(N_("A passphrase is required to save to the file \"%s\". Please%%0Aenter the passphrase below."), pwm->filename);
1472 if (!desc)
1473 goto fail_no_mem;
1476 if (pwm->desc)
1477 desc = pwm->desc;
1479 switch (which) {
1480 case PINENTRY_OPEN:
1481 case PINENTRY_SAVE:
1482 snprintf(tmp, ASSUAN_LINELENGTH, "SETERROR %s", desc);
1484 if (pwm->desc != desc)
1485 pwmd_free(desc);
1486 break;
1487 case PINENTRY_OPEN_FAILED:
1488 snprintf(tmp, ASSUAN_LINELENGTH, "SETERROR %s",
1489 N_("Invalid passphrase, please try again."));
1490 break;
1491 case PINENTRY_SAVE_CONFIRM:
1492 snprintf(tmp, ASSUAN_LINELENGTH, "SETERROR %s",
1493 N_("Please type the passphrase again for confirmation."));
1494 break;
1497 error = pinentry_command(pwm, NULL, tmp);
1499 if (error) {
1500 pwmd_free(tmp);
1501 return error;
1504 snprintf(tmp, ASSUAN_LINELENGTH, "SETPROMPT %s", pwm->prompt);
1505 error = pinentry_command(pwm, NULL, tmp);
1507 if (error) {
1508 pwmd_free(tmp);
1509 return error;
1512 snprintf(tmp, ASSUAN_LINELENGTH, "SETDESC %s", pwm->title);
1513 error = pinentry_command(pwm, NULL, tmp);
1514 pwmd_free(tmp);
1515 return error;
1517 fail_no_mem:
1518 pwmd_free(tmp);
1519 return gpg_error_from_errno(ENOMEM);
1522 static void update_pinentry_settings(pwm_t *pwm)
1524 FILE *fp;
1525 char buf[LINE_MAX];
1526 char *p;
1527 struct passwd pw;
1528 char *pwbuf = _getpwuid(&pw);
1530 if (!pwbuf)
1531 return;
1533 snprintf(buf, sizeof(buf), "%s/.pwmd/pinentry.conf", pw.pw_dir);
1534 pwmd_free(pwbuf);
1536 if ((fp = fopen(buf, "r")) == NULL)
1537 return;
1539 while ((p = fgets(buf, sizeof(buf), fp)) != NULL) {
1540 char name[32], val[256];
1542 if (sscanf(p, " %31[a-zA-Z] = %255s", name, val) != 2)
1543 continue;
1545 if (strcasecmp(name, "TTYNAME") == 0) {
1546 pwmd_free(pwm->pinentry_tty);
1547 pwm->pinentry_tty = pwmd_strdup(val);
1549 else if (strcasecmp(name, "TTYTYPE") == 0) {
1550 pwmd_free(pwm->pinentry_term);
1551 pwm->pinentry_term = pwmd_strdup(val);
1553 else if (strcasecmp(name, "DISPLAY") == 0) {
1554 pwmd_free(pwm->pinentry_display);
1555 pwm->pinentry_display = pwmd_strdup(val);
1557 else if (strcasecmp(name, "PATH") == 0) {
1558 pwmd_free(pwm->pinentry_path);
1559 pwm->pinentry_path = pwmd_strdup(val);
1563 fclose(fp);
1566 static gpg_error_t launch_pinentry(pwm_t *pwm)
1568 int rc;
1569 assuan_context_t ctx;
1570 int child_list[] = {-1};
1571 char *display = getenv("DISPLAY");
1572 const char *argv[10];
1573 const char **p = argv;
1574 int have_display = 0;
1575 char *tty = NULL;
1576 char *ttybuf = NULL;
1578 update_pinentry_settings(pwm);
1580 if (pwm->pinentry_display || display)
1581 have_display = 1;
1582 else {
1583 if (!pwm->pinentry_tty) {
1584 ttybuf = pwmd_malloc(255);
1586 if (!ttybuf)
1587 return gpg_error_from_errno(ENOMEM);
1589 rc = ttyname_r(STDOUT_FILENO, ttybuf, 255);
1591 if (rc) {
1592 pwmd_free(ttybuf);
1593 return gpg_error_from_errno(rc);
1596 tty = ttybuf;
1598 else
1599 tty = pwm->pinentry_tty;
1602 if (!have_display && !tty)
1603 return GPG_ERR_ENOTTY;
1605 *p++ = "pinentry";
1606 *p++ = have_display ? "--display" : "--ttyname";
1607 *p++ = have_display ? pwm->pinentry_display ? pwm->pinentry_display : display : tty;
1609 if (pwm->lcctype) {
1610 *p++ = "--lc-ctype";
1611 *p++ = pwm->lcctype;
1614 if (pwm->lcmessages) {
1615 *p++ = "--lc-messages";
1616 *p++ = pwm->lcmessages;
1619 *p = NULL;
1621 if (!have_display) {
1622 *p++ = "--ttytype";
1623 *p++ = pwm->pinentry_term ? pwm->pinentry_term : getenv("TERM");
1624 *p = NULL;
1627 rc = assuan_pipe_connect(&ctx, pwm->pinentry_path ? pwm->pinentry_path : PINENTRY_PATH, argv, child_list);
1629 if (ttybuf)
1630 pwmd_free(ttybuf);
1632 if (rc)
1633 return rc;
1635 pwm->pid = assuan_get_pid(ctx);
1636 pwm->pctx = ctx;
1637 return set_pinentry_strings(pwm, 0);
1640 static gpg_error_t pinentry_command(pwm_t *pwm, char **result, const char *cmd)
1642 gpg_error_t n;
1644 if (!pwm->pctx) {
1645 n = launch_pinentry(pwm);
1647 if (n)
1648 return n;
1651 return assuan_command(pwm, pwm->pctx, result, cmd);
1654 static void pinentry_disconnect(pwm_t *pwm)
1656 if (pwm->pctx)
1657 assuan_disconnect(pwm->pctx);
1659 pwm->pctx = NULL;
1660 pwm->pid = -1;
1664 * Only called from a child process.
1666 static void catchsig(int sig)
1668 switch (sig) {
1669 case SIGALRM:
1670 if (gelapsed++ >= gtimeout) {
1671 terminate_pinentry(gpwm);
1672 gerror = GPG_ERR_TIMEOUT;
1674 else
1675 alarm(1);
1676 break;
1677 default:
1678 break;
1681 #endif
1684 * Borrowed from libassuan.
1686 static char *percent_escape(const char *atext)
1688 const unsigned char *s;
1689 int len = strlen(atext) * 3 + 1;
1690 char *buf = (char *)pwmd_malloc(len), *p = buf;
1692 if (!buf)
1693 return NULL;
1695 for (s=(const unsigned char *)atext; *s; s++) {
1696 if (*s < ' ') {
1697 sprintf (p, "%%%02X", *s);
1698 p += 3;
1700 else
1701 *p++ = *s;
1704 *p = 0;
1705 return buf;
1708 static gpg_error_t send_command(pwm_t *pwm, char **result, const char *cmd)
1710 if (!cmd)
1711 return GPG_ERR_INV_ARG;
1713 return assuan_command(pwm, pwm->ctx, result, cmd);
1716 gpg_error_t pwmd_command_ap(pwm_t *pwm, char **result, const char *cmd,
1717 va_list ap)
1719 char *buf;
1720 size_t len;
1721 gpg_error_t error;
1723 if (!pwm || !cmd)
1724 return GPG_ERR_INV_ARG;
1726 if (!pwm->ctx)
1727 return GPG_ERR_INV_STATE;
1730 * C99 allows the dst pointer to be null which will calculate the length
1731 * of the would-be result and return it.
1733 len = vsnprintf(NULL, 0, cmd, ap)+1;
1734 buf = (char *)pwmd_malloc(len);
1736 if (!buf)
1737 return gpg_error_from_errno(ENOMEM);
1739 len = vsnprintf(buf, len, cmd, ap);
1741 if (buf[strlen(buf)-1] == '\n')
1742 buf[strlen(buf)-1] = 0;
1744 if (buf[strlen(buf)-1] == '\r')
1745 buf[strlen(buf)-1] = 0;
1747 error = send_command(pwm, result, buf);
1748 pwmd_free(buf);
1749 return error;
1752 gpg_error_t pwmd_command(pwm_t *pwm, char **result, const char *cmd, ...)
1754 va_list ap;
1755 gpg_error_t error;
1757 if (!pwm || !cmd)
1758 return GPG_ERR_INV_ARG;
1760 if (!pwm->ctx)
1761 return GPG_ERR_INV_STATE;
1763 if (result)
1764 *result = NULL;
1766 va_start(ap, cmd);
1767 error = pwmd_command_ap(pwm, result, cmd, ap);
1768 va_end(ap);
1769 return error;
1772 #ifdef WITH_PINENTRY
1773 static gpg_error_t do_getpin(pwm_t *pwm, char **result)
1775 if (gtimeout) {
1776 signal(SIGALRM, catchsig);
1777 alarm(1);
1780 *result = NULL;
1781 return pinentry_command(pwm, result, "GETPIN");
1784 static gpg_error_t getpin(pwm_t *pwm, char **result, int which)
1786 gpg_error_t rc;
1788 gerror = 0;
1789 rc = set_pinentry_strings(pwm, which);
1791 if (rc) {
1792 pinentry_disconnect(pwm);
1793 return rc;
1796 rc = do_getpin(pwm, result);
1799 * Since there was input cancel any timeout setting.
1801 alarm(0);
1802 signal(SIGALRM, SIG_DFL);
1804 if (rc) {
1805 if (pwm->pctx)
1806 pinentry_disconnect(pwm);
1808 /* This lets pwmd_open2() with PWMD_OPTION_PINENTRY_TIMEOUT work. */
1809 if (rc== GPG_ERR_EOF && gerror == GPG_ERR_TIMEOUT)
1810 return gerror;
1812 return rc;
1815 return 0;
1817 #endif
1819 static gpg_error_t do_open_command(pwm_t *pwm, const char *filename, char *password)
1821 char *buf;
1822 gpg_error_t error;
1823 char *result = NULL;
1825 buf = pwmd_malloc(ASSUAN_LINELENGTH+1);
1827 if (!buf)
1828 return gpg_error_from_errno(ENOMEM);
1830 snprintf(buf, ASSUAN_LINELENGTH, "OPEN %s %s", filename,
1831 password ? password : "");
1832 error = send_command(pwm, &result, buf);
1833 pwmd_free(buf);
1835 if (error && result)
1836 pwmd_free(result);
1838 return error;
1841 static gpg_error_t send_pinentry_options(pwm_t *pwm)
1843 gpg_error_t rc;
1845 if (pwm->pinentry_path) {
1846 rc = pwmd_command(pwm, NULL, "OPTION PATH=%s", pwm->pinentry_path);
1848 if (rc)
1849 return rc;
1852 if (pwm->pinentry_tty) {
1853 rc = pwmd_command(pwm, NULL, "OPTION TTYNAME=%s", pwm->pinentry_tty);
1855 if (rc)
1856 return rc;
1859 if (pwm->pinentry_term) {
1860 rc = pwmd_command(pwm, NULL, "OPTION TTYTYPE=%s", pwm->pinentry_term);
1862 if (rc)
1863 return rc;
1866 if (pwm->pinentry_display) {
1867 rc = pwmd_command(pwm, NULL, "OPTION TITLE=%s", pwm->pinentry_display);
1869 if (rc)
1870 return rc;
1873 if (pwm->title) {
1874 rc = pwmd_command(pwm, NULL, "OPTION TITLE=%s", pwm->title);
1876 if (rc)
1877 return rc;
1880 if (pwm->desc) {
1881 rc = pwmd_command(pwm, NULL, "OPTION DESC=%s", pwm->desc);
1883 if (rc)
1884 return rc;
1887 if (pwm->prompt) {
1888 rc = pwmd_command(pwm, NULL, "OPTION PROMPT=%s", pwm->prompt);
1890 if (rc)
1891 return rc;
1894 if (pwm->lcctype) {
1895 rc = pwmd_command(pwm, NULL, "OPTION LC_CTYPE=%s", pwm->lcctype);
1897 if (rc)
1898 return rc;
1901 if (pwm->lcmessages) {
1902 rc = pwmd_command(pwm, NULL, "OPTION LC_MESSAGES=%s", pwm->lcmessages);
1904 if (rc)
1905 return rc;
1908 if (pwm->pinentry_timeout >= 0) {
1909 rc = pwmd_command(pwm, NULL, "OPTION TIMEOUT=%i", pwm->pinentry_timeout);
1911 if (rc)
1912 return rc;
1915 return 0;
1918 static gpg_error_t do_pwmd_open(pwm_t *pwm, const char *filename, int nb,
1919 int local_pinentry)
1921 char *result = NULL;
1922 char *password = NULL;
1923 char *path;
1924 int pin_try;
1925 gpg_error_t rc;
1926 size_t len;
1928 if (!pwm || !filename || !*filename)
1929 return GPG_ERR_INV_ARG;
1931 if (!pwm->ctx)
1932 return GPG_ERR_INV_STATE;
1934 pin_try = pwm->pinentry_tries - 1;
1937 * Avoid calling pinentry if the password is cached on the server or if
1938 * this is a new file. pwmd version 2 adds a VERSION command which is
1939 * determined in _socket_connect_finalize(). If the server is version 2,
1940 * ISCACHED can determine if a file exists.
1942 #ifdef WITH_TCP
1943 if (!pwm->tcp_conn && pwm->version == PWMD_V1) {
1944 #else
1945 if (pwm->version == PWMD_V1) {
1946 #endif
1947 rc = pwmd_command(pwm, &result, "GETCONFIG data_directory");
1949 if (rc)
1950 return rc;
1952 len = strlen(result)+strlen(filename)+2;
1953 path = pwmd_malloc(len);
1955 if (!path) {
1956 pwmd_free(result);
1957 return gpg_error_from_errno(ENOMEM);
1960 snprintf(path, len, "%s/%s", result, filename);
1961 pwmd_free(result);
1963 if (access(path, R_OK) == -1) {
1964 if (errno == ENOENT) {
1965 pwmd_free(path);
1966 goto gotpassword;
1970 pwmd_free(path);
1973 rc = pwmd_command(pwm, &result, "ISCACHED %s", filename);
1975 if (gpg_err_code(rc) == GPG_ERR_ENOENT)
1976 goto gotpassword;
1978 if (rc && rc != GPG_ERR_NOT_FOUND)
1979 return rc;
1981 if (!nb && rc == GPG_ERR_NOT_FOUND) {
1982 if (pwm->password) {
1983 password = pwm->password;
1984 goto gotpassword;
1987 if (pwm->passfunc) {
1988 rc = pwm->passfunc(pwm->passdata, &password);
1990 if (rc)
1991 return rc;
1993 goto gotpassword;
1997 #ifdef WITH_PINENTRY
1998 if (rc == GPG_ERR_NOT_FOUND && local_pinentry) {
1999 rc = pwmd_command(pwm, NULL, "OPTION PINENTRY=0");
2001 if (rc)
2002 return rc;
2004 if (!pwm->filename)
2005 pwm->filename = pwmd_strdup(filename);
2007 if (!pwm->filename)
2008 return gpg_error_from_errno(ENOMEM);
2010 /* Get the passphrase using the LOCAL pinentry. */
2011 if (nb) {
2012 int p[2];
2013 pid_t pid;
2014 pwmd_nb_status_t pw;
2016 if (pipe(p) == -1)
2017 return gpg_error_from_syserror();
2019 #ifdef WITH_LIBPTH
2020 pid = pth_fork();
2021 #else
2022 pid = fork();
2023 #endif
2025 switch (pid) {
2026 case 0:
2027 close(p[0]);
2028 pw.fd = p[0];
2030 if (pwm->pinentry_timeout != 0) {
2031 gpwm = pwm;
2032 gtimeout = abs(pwm->pinentry_timeout);
2033 gelapsed = 0;
2036 pw.error = getpin(pwm, &password, PINENTRY_OPEN);
2038 if (gtimeout && gelapsed >= gtimeout)
2039 pw.error = GPG_ERR_TIMEOUT;
2041 if (!pw.error)
2042 snprintf(pw.password, sizeof(pw.password), "%s",
2043 password);
2045 pinentry_disconnect(pwm);
2046 #ifdef WITH_LIBPTH
2047 pth_write(p[1], &pw, sizeof(pw));
2048 #else
2049 write(p[1], &pw, sizeof(pw));
2050 #endif
2051 memset(&pw, 0, sizeof(pw));
2052 close(p[1]);
2053 _exit(0);
2054 break;
2055 case -1:
2056 rc = gpg_error_from_syserror();
2057 close(p[0]);
2058 close(p[1]);
2059 return rc;
2060 default:
2061 break;
2064 close(p[1]);
2065 pwm->nb_fd = p[0];
2066 pwm->nb_pid = pid;
2067 return 0;
2070 if (pwm->pinentry_timeout != 0) {
2071 gpwm = pwm;
2072 gtimeout = abs(pwm->pinentry_timeout);
2073 gelapsed = 0;
2076 rc = getpin(pwm, &password, PINENTRY_OPEN);
2078 /* Don't timeout when an invalid passphrase was entered. */
2079 gtimeout = 0;
2081 if (rc)
2082 return rc;
2084 #endif
2086 gotpassword:
2087 pwm->state = ASYNC_DONE;
2089 if (!local_pinentry) {
2090 rc = send_pinentry_options(pwm);
2092 if (rc)
2093 return rc;
2096 rc = do_open_command(pwm, filename, password);
2099 * Keep the user defined password set with pwmd_setopt(). The password may
2100 * be needed later (pwmd_save()) depending on the pwmd file cache settings.
2102 if (!pwm->passfunc && password && password != pwm->password)
2103 pwmd_free(password);
2105 if (rc == GPG_ERR_INV_PASSPHRASE) {
2106 if (pin_try-- > 0 && !nb) {
2108 #ifdef WITH_PINENTRY
2109 if (local_pinentry)
2110 rc = getpin(pwm, &password, PINENTRY_OPEN_FAILED);
2111 else
2112 #endif
2113 rc = pwmd_command(pwm, &result, "OPTION TITLE=%s",
2114 N_("Invalid passphrase, please try again."));
2116 if (rc)
2117 return rc;
2119 goto gotpassword;
2122 #ifdef WITH_PINENTRY
2123 if (nb)
2124 pinentry_disconnect(pwm);
2125 #endif
2127 return rc;
2130 if (!rc) {
2131 if (pwm->filename)
2132 pwmd_free(pwm->filename);
2134 pwm->filename = pwmd_strdup(filename);
2137 return rc;
2140 gpg_error_t pwmd_open2(pwm_t *pwm, const char *filename)
2142 #ifndef WITH_PINENTRY
2143 return GPG_ERR_NOT_IMPLEMENTED;
2144 #else
2145 return do_pwmd_open(pwm, filename, 0, 1);
2146 #endif
2149 gpg_error_t pwmd_open(pwm_t *pwm, const char *filename)
2151 return do_pwmd_open(pwm, filename, 0, 0);
2154 gpg_error_t pwmd_open_async2(pwm_t *pwm, const char *filename)
2156 #ifndef WITH_PINENTRY
2157 return GPG_ERR_NOT_IMPLEMENTED;
2158 #else
2159 gpg_error_t rc;
2161 if (!pwm || !filename)
2162 return GPG_ERR_INV_ARG;
2164 if (!pwm->ctx)
2165 return GPG_ERR_INV_STATE;
2167 if (pwm->cmd != ASYNC_CMD_OPEN2)
2168 pwm->pin_try = 0;
2170 pwm->cmd = ASYNC_CMD_OPEN2;
2171 pwm->state = ASYNC_PROCESS;
2172 rc = do_pwmd_open(pwm, filename, 1, 1);
2174 if (rc)
2175 reset_async(pwm, 1);
2177 return rc;
2178 #endif
2181 #ifdef WITH_PINENTRY
2182 static gpg_error_t do_save_getpin(pwm_t *pwm, char **password)
2184 int confirm = 0;
2185 gpg_error_t error;
2186 char *result = NULL;
2188 again:
2189 error = getpin(pwm, &result, confirm ? PINENTRY_SAVE_CONFIRM : PINENTRY_SAVE);
2191 if (error) {
2192 if (pwm->pctx)
2193 pinentry_disconnect(pwm);
2195 if (*password)
2196 pwmd_free(*password);
2198 return error;
2201 if (!confirm++) {
2202 *password = result;
2203 goto again;
2206 if (strcmp(*password, result)) {
2207 pwmd_free(*password);
2208 pwmd_free(result);
2209 confirm = 0;
2210 *password = NULL;
2211 goto again;
2214 pwmd_free(result);
2215 pinentry_disconnect(pwm);
2216 return 0;
2218 #endif
2220 static gpg_error_t do_save_command(pwm_t *pwm, char *password)
2222 char *buf;
2223 gpg_error_t error;
2224 char *result = NULL;
2226 buf = pwmd_malloc(ASSUAN_LINELENGTH+1);
2228 if (!buf)
2229 return gpg_error_from_errno(ENOMEM);
2231 snprintf(buf, ASSUAN_LINELENGTH, "SAVE %s", password ? password : "");
2232 error = send_command(pwm, &result, buf);
2233 pwmd_free(buf);
2235 if (error && result)
2236 pwmd_free(result);
2238 return error;
2241 static gpg_error_t do_pwmd_save(pwm_t *pwm, int nb, int local_pinentry)
2243 char *result = NULL;
2244 char *password = NULL;
2245 gpg_error_t rc;
2247 if (!pwm)
2248 return GPG_ERR_INV_ARG;
2250 if (!pwm->ctx)
2251 return GPG_ERR_INV_STATE;
2253 rc = pwmd_command(pwm, &result, "ISCACHED %s", pwm->filename);
2255 if (rc && rc != GPG_ERR_NOT_FOUND)
2256 return rc;
2258 if (!nb && rc == GPG_ERR_NOT_FOUND) {
2259 if (pwm->password) {
2260 password = pwm->password;
2261 goto gotpassword;
2264 if (pwm->passfunc) {
2265 rc = pwm->passfunc(pwm->passdata, &password);
2267 if (rc)
2268 return rc;
2270 goto gotpassword;
2274 if (rc == GPG_ERR_NOT_FOUND && local_pinentry) {
2275 #ifdef WITH_PINENTRY
2276 /* Get the password using the LOCAL pinentry. */
2277 if (nb) {
2278 int p[2];
2279 pid_t pid;
2280 pwmd_nb_status_t pw;
2282 if (pipe(p) == -1)
2283 return gpg_error_from_syserror();
2285 #ifdef WITH_LIBPTH
2286 pid = pth_fork();
2287 #else
2288 pid = fork();
2289 #endif
2291 switch (pid) {
2292 case 0:
2293 close(p[0]);
2294 pw.fd = p[0];
2295 password = NULL;
2296 pw.error = do_save_getpin(pwm, &password);
2297 pinentry_disconnect(pwm);
2298 snprintf(pw.password, sizeof(pw.password), "%s",
2299 password);
2300 #ifdef WITH_LIBPTH
2301 pth_write(p[1], &pw, sizeof(pw));
2302 #else
2303 write(p[1], &pw, sizeof(pw));
2304 #endif
2305 memset(&pw, 0, sizeof(pw));
2306 close(p[1]);
2307 _exit(0);
2308 break;
2309 case -1:
2310 rc = gpg_error_from_syserror();
2311 close(p[0]);
2312 close(p[1]);
2313 return rc;
2314 default:
2315 break;
2318 close(p[1]);
2319 pwm->nb_fd = p[0];
2320 pwm->nb_pid = pid;
2321 return 0;
2324 rc = do_save_getpin(pwm, &password);
2326 if (rc)
2327 return rc;
2328 #endif
2330 else
2331 pwm->state = ASYNC_DONE;
2333 gotpassword:
2334 if (!local_pinentry) {
2335 rc = send_pinentry_options(pwm);
2337 if (rc)
2338 return rc;
2341 rc = do_save_command(pwm, password);
2343 if (!pwm->passfunc && password && password != pwm->password)
2344 pwmd_free(password);
2346 return rc;
2349 gpg_error_t pwmd_save_async2(pwm_t *pwm)
2351 #ifndef WITH_PINENTRY
2352 return GPG_ERR_NOT_IMPLEMENTED;
2353 #else
2354 gpg_error_t rc;
2356 if (!pwm)
2357 return GPG_ERR_INV_ARG;
2359 if (!pwm->ctx)
2360 return GPG_ERR_INV_STATE;
2362 pwm->cmd = ASYNC_CMD_SAVE2;
2363 pwm->state = ASYNC_PROCESS;
2364 rc = do_pwmd_save(pwm, 1, 1);
2366 if (rc)
2367 reset_async(pwm, 0);
2369 return rc;
2370 #endif
2373 gpg_error_t pwmd_save2(pwm_t *pwm)
2375 #ifndef WITH_PINENTRY
2376 return GPG_ERR_NOT_IMPLEMENTED;
2377 #else
2378 return do_pwmd_save(pwm, 0, 1);
2379 #endif
2382 gpg_error_t pwmd_save(pwm_t *pwm)
2384 return do_pwmd_save(pwm, 0, 0);
2387 gpg_error_t pwmd_setopt(pwm_t *pwm, pwmd_option_t opt, ...)
2389 va_list ap;
2390 int n = va_arg(ap, int);
2391 char *arg1;
2392 gpg_error_t error = 0;
2394 if (!pwm)
2395 return GPG_ERR_INV_ARG;
2397 va_start(ap, opt);
2399 switch (opt) {
2400 case PWMD_OPTION_STATUS_CB:
2401 pwm->status_func = va_arg(ap, pwmd_status_cb_t);
2402 break;
2403 case PWMD_OPTION_STATUS_DATA:
2404 pwm->status_data = va_arg(ap, void *);
2405 break;
2406 case PWMD_OPTION_PASSPHRASE_CB:
2407 pwm->passfunc = va_arg(ap, pwmd_passphrase_cb_t);
2408 break;
2409 case PWMD_OPTION_PASSPHRASE_DATA:
2410 pwm->passdata = va_arg(ap, void *);
2411 break;
2412 case PWMD_OPTION_PASSPHRASE:
2413 arg1 = va_arg(ap, char *);
2415 if (pwm->password)
2416 pwmd_free(pwm->password);
2418 pwm->password = pwmd_strdup(arg1);
2419 break;
2420 case PWMD_OPTION_PINENTRY_TRIES:
2421 n = va_arg(ap, int);
2423 if (n <= 0) {
2424 va_end(ap);
2425 error = GPG_ERR_INV_VALUE;
2427 else
2428 pwm->pinentry_tries = n;
2429 break;
2430 case PWMD_OPTION_PINENTRY_TIMEOUT:
2431 n = va_arg(ap, int);
2433 if (n < 0) {
2434 va_end(ap);
2435 error = GPG_ERR_INV_VALUE;
2437 else
2438 pwm->pinentry_timeout = n;
2439 break;
2440 case PWMD_OPTION_PINENTRY_PATH:
2441 if (pwm->pinentry_path)
2442 pwmd_free(pwm->pinentry_path);
2444 pwm->pinentry_path = pwmd_strdup(va_arg(ap, char *));
2445 break;
2446 case PWMD_OPTION_PINENTRY_TTY:
2447 if (pwm->pinentry_tty)
2448 pwmd_free(pwm->pinentry_tty);
2450 pwm->pinentry_tty = pwmd_strdup(va_arg(ap, char *));
2451 break;
2452 case PWMD_OPTION_PINENTRY_DISPLAY:
2453 if (pwm->pinentry_display)
2454 pwmd_free(pwm->pinentry_display);
2456 pwm->pinentry_display = pwmd_strdup(va_arg(ap, char *));
2457 break;
2458 case PWMD_OPTION_PINENTRY_TERM:
2459 if (pwm->pinentry_term)
2460 pwmd_free(pwm->pinentry_term);
2462 pwm->pinentry_term = pwmd_strdup(va_arg(ap, char *));
2463 break;
2464 case PWMD_OPTION_PINENTRY_TITLE:
2465 if (pwm->title)
2466 pwmd_free(pwm->title);
2468 pwm->title = percent_escape(va_arg(ap, char *));
2469 break;
2470 case PWMD_OPTION_PINENTRY_PROMPT:
2471 if (pwm->prompt)
2472 pwmd_free(pwm->prompt);
2474 pwm->prompt = percent_escape(va_arg(ap, char *));
2475 break;
2476 case PWMD_OPTION_PINENTRY_DESC:
2477 if (pwm->desc)
2478 pwmd_free(pwm->desc);
2480 pwm->desc = percent_escape(va_arg(ap, char *));
2481 break;
2482 case PWMD_OPTION_PINENTRY_LC_CTYPE:
2483 if (pwm->lcctype)
2484 pwmd_free(pwm->lcctype);
2486 pwm->lcctype = pwmd_strdup(va_arg(ap, char *));
2487 break;
2488 case PWMD_OPTION_PINENTRY_LC_MESSAGES:
2489 if (pwm->lcmessages)
2490 pwmd_free(pwm->lcmessages);
2492 pwm->lcmessages = pwmd_strdup(va_arg(ap, char *));
2493 break;
2494 #ifdef WITH_TCP
2495 case PWMD_OPTION_IP_VERSION:
2496 n = va_arg(ap, int);
2498 switch (n) {
2499 case PWMD_IP_ANY:
2500 case PWMD_IPV4:
2501 case PWMD_IPV6:
2502 pwm->prot = n;
2503 break;
2504 default:
2505 error = GPG_ERR_INV_VALUE;
2506 break;
2509 va_end(ap);
2510 break;
2511 #endif
2512 default:
2513 error = GPG_ERR_NOT_IMPLEMENTED;
2514 break;
2517 va_end(ap);
2518 return error;
2521 gpg_error_t pwmd_get_fds(pwm_t *pwm, pwmd_fd_t *fds, int *n_fds)
2523 int in_total;
2524 int fd = 0;
2525 #ifdef WITH_TCP
2526 int afds[ARES_GETSOCK_MAXNUM];
2527 int got_sock = 0;
2528 int n, i;
2529 #endif
2531 if (!pwm || !fds || !n_fds || *n_fds <= 0)
2532 return GPG_ERR_INV_ARG;
2534 in_total = *n_fds;
2535 #ifdef WITH_TCP
2536 memset(afds, 0, sizeof(int)*ARES_GETSOCK_MAXNUM);
2537 #endif
2538 memset(fds, 0, sizeof(pwmd_fd_t)*in_total);
2539 *n_fds = 0;
2541 switch (pwm->cmd) {
2542 default:
2543 case ASYNC_CMD_NONE:
2544 case ASYNC_CMD_OPEN:
2545 case ASYNC_CMD_SAVE:
2546 #ifdef WITH_PINENTRY
2547 async1:
2548 #endif
2549 if (pwm->fd == -1)
2550 return GPG_ERR_INV_STATE;
2552 (*n_fds)++;
2553 fds[fd].fd = pwm->fd;
2554 fds[fd++].flags = PWMD_FD_READABLE;
2555 return 0;
2556 #ifdef WITH_PINENTRY
2557 case ASYNC_CMD_OPEN2:
2558 case ASYNC_CMD_SAVE2:
2559 if (pwm->nb_fd == -1)
2560 return GPG_ERR_INV_STATE;
2562 (*n_fds)++;
2563 fds[fd].fd = pwm->nb_fd;
2564 fds[fd++].flags = PWMD_FD_READABLE;
2565 goto async1;
2566 #endif
2567 #ifdef WITH_TCP
2568 case ASYNC_CMD_DNS:
2569 if (!pwm->tcp_conn || !pwm->tcp_conn->chan)
2570 return GPG_ERR_INV_STATE;
2572 n = ares_getsock(pwm->tcp_conn->chan, afds, ARES_GETSOCK_MAXNUM);
2574 for (i = 0; i < ARES_GETSOCK_MAXNUM; i++) {
2575 got_sock = 0;
2577 if (fd > in_total) {
2578 *n_fds = fd;
2579 return GPG_ERR_ERANGE;
2582 if (ARES_GETSOCK_READABLE(n, i)) {
2583 got_sock++;
2584 fds[fd].flags |= PWMD_FD_READABLE;
2587 if (ARES_GETSOCK_WRITABLE(n, i)) {
2588 got_sock++;
2589 fds[fd].flags |= PWMD_FD_WRITABLE;
2592 if (got_sock)
2593 fds[fd++].fd = afds[i];
2596 *n_fds = fd;
2597 return 0;
2598 case ASYNC_CMD_CONNECT:
2599 case ASYNC_CMD_HOSTKEY:
2600 if (!pwm->tcp_conn || pwm->tcp_conn->fd == -1)
2601 return GPG_ERR_INV_STATE;
2603 (*n_fds)++;
2604 fds[fd].fd = pwm->tcp_conn->fd;
2605 fds[fd++].flags = PWMD_FD_READABLE;
2606 return 0;
2607 #endif
2610 return GPG_ERR_INV_STATE;
2613 pwm_t *pwmd_new(const char *name)
2615 pwm_t *h = pwmd_calloc(1, sizeof(pwm_t));
2617 if (!h)
2618 return NULL;
2620 if (name) {
2621 h->name = pwmd_strdup(name);
2623 if (!h->name) {
2624 pwmd_free(h);
2625 return NULL;
2629 h->fd = -1;
2630 #ifdef WITH_PINENTRY
2631 h->nb_fd = -1;
2632 #endif
2633 h->pinentry_timeout = -30;
2634 h->pinentry_tries = 3;
2635 #ifdef WITH_TCP
2636 h->prot = PWMD_IP_ANY;
2637 #endif
2638 return h;
2641 void pwmd_free(void *ptr)
2643 xfree(ptr);
2646 void *pwmd_malloc(size_t size)
2648 return xmalloc(size);
2651 void *pwmd_calloc(size_t nmemb, size_t size)
2653 return xcalloc(nmemb, size);
2656 void *pwmd_realloc(void *ptr, size_t size)
2658 return xrealloc(ptr, size);
2661 char *pwmd_strdup(const char *str)
2663 return xstrdup(str);
2666 char *pwmd_strdup_printf(const char *fmt, ...)
2668 va_list ap;
2669 int len;
2670 char *buf;
2672 if (!fmt)
2673 return NULL;
2675 va_start(ap, fmt);
2676 len = vsnprintf(NULL, 0, fmt, ap);
2677 buf = pwmd_malloc(++len);
2679 if (!buf) {
2680 va_end(ap);
2681 return NULL;
2684 vsnprintf(buf, len, fmt, ap);
2685 va_end(ap);
2686 return buf;