summaryrefslogtreecommitdiffstats
path: root/src/lib/krb425/rd_priv.c
blob: 85cbcaed744bca4f9f9d92538371b6f2237edc31 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
/*
 * $Source$
 * $Author$
 *
 * Copyright 1990,1991 by the Massachusetts Institute of Technology.
 * All Rights Reserved.
 *
 * For copying and distribution information, please see the file
 * <krb5/copyright.h>.
 *
 * krb_rd_priv for krb425
 */

#if !defined(lint) && !defined(SABER)
static char rcsid_rd_priv_c[] =
"$Id$";
#endif	/* !lint & !SABER */

#include "krb425.h"
#include <arpa/inet.h>

long
krb_rd_priv(in, in_length, sched, key, sender, receiver, msg)
u_char *in;
u_long in_length;
Key_schedule sched;	/* ignored */
des_cblock key;
struct sockaddr_in *sender;
struct sockaddr_in *receiver;
MSG_DAT *msg;
{
	krb5_data inbuf;
	krb5_data out;
	krb5_keyblock keyb;
	krb5_address saddr, *saddr2;
	krb5_address raddr;
	krb5_error_code r;
	char sa[4], ra[4];
	krb5_rcache rcache;

	keyb.keytype = KEYTYPE_DES;
	keyb.length = sizeof(des_cblock);
	keyb.contents = (krb5_octet *)key;

	saddr.addrtype = ADDRTYPE_INET;
	saddr.length = 4;
	saddr.contents = (krb5_octet *)sa;

	raddr.addrtype = ADDRTYPE_INET;
	raddr.length = 4;
	raddr.contents = (krb5_octet *)ra;

	memcpy(sa, (char *)&sender->sin_addr, 4);
	memcpy(ra, (char *)&receiver->sin_addr, 4);

	inbuf.data = (char *)in;
	inbuf.length = in_length;

	if (r = krb5_gen_portaddr(&saddr, (krb5_pointer)&sender->sin_port,
				  &saddr2)) {
#ifdef	EBUG
	    ERROR(r);
#endif
	    return(-1);
	}
	if (rcache = (krb5_rcache) malloc(sizeof(*rcache))) {
	    if (!(r = krb5_rc_resolve_type(&rcache, "dfl"))) {
		char *cachename;
		extern krb5_deltat krb5_clockskew;
		char *insender = inet_ntoa(sender->sin_addr);

		if (cachename = calloc(1, strlen(insender)+1+4+5)) {
		    /* 1 for NUL, 4 for rc_., 5 for digits of port
		       (unsigned 16bit, no greater than 65535) */
		    sprintf(cachename, "rc_%s.%u", insender,
			    ntohs(receiver->sin_port));

		    if (!(r = krb5_rc_resolve(rcache, cachename))) {
			if (!((r = krb5_rc_recover(rcache)) &&
			      (r = krb5_rc_initialize(rcache,
						      krb5_clockskew)))) {
			    r = krb5_rd_priv(&inbuf, &keyb, saddr2, &raddr,
					     0, 0, 0, rcache, &out);
			    krb5_rc_close(rcache);
			}
		    }
		    free(cachename);
		} else
		    r = ENOMEM;
	    }
	    xfree(rcache);
	} else {
	    krb5_free_addr(saddr2);
#ifdef	EBUG
	    ERROR(ENOMEM);
#endif
	    return(-1);
	}
	krb5_free_addr(saddr2);

	if (r) {
#ifdef	EBUG
		ERROR(r);
#endif
		return(-1);
	}

	msg->app_data = (u_char *)out.data;
	msg->app_length = out.length;
	msg->hash = 0L;
	msg->swap = 0;
	msg->time_sec = 0;
	msg->time_5ms = 0;
	return(KSUCCESS);
}