1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
|
/* Copyright (C) 2011 the GSS-PROXY contributors, see COPYING for license */
#include "gssapi_gpm.h"
OM_uint32 gpm_release_cred(OM_uint32 *minor_status,
gssx_cred **cred_handle)
{
union gp_rpc_arg uarg;
union gp_rpc_res ures;
gssx_arg_release_handle *arg = &uarg.release_handle;
gssx_res_release_handle *res = &ures.release_handle;
gssx_cred *r;
int ret;
if (cred_handle == NULL || *cred_handle == NULL) {
return 0;
}
r = (*cred_handle);
if (!r->needs_release) {
ret = GSS_S_COMPLETE;
goto done;
}
memset(&uarg, 0, sizeof(union gp_rpc_arg));
memset(&ures, 0, sizeof(union gp_rpc_res));
/* ignore call_ctx for now */
arg->cred_handle.handle_type = GSSX_C_HANDLE_CRED;
arg->cred_handle.gssx_handle_u.cred_info = *r;
/* execute proxy request */
ret = gpm_make_call(GSSX_RELEASE_HANDLE, &uarg, &ures);
if (ret) {
*minor_status = ret;
ret = GSS_S_FAILURE;
goto rel_done;
}
if (res->status.major_status) {
gpm_save_status(&res->status);
*minor_status = res->status.minor_status;
ret = res->status.major_status;
}
rel_done:
/* we passed in our copy by value, so clean out to avoid double frees */
memset(&arg->cred_handle.gssx_handle_u.cred_info, 0, sizeof(gssx_cred));
gpm_free_xdrs(GSSX_RELEASE_HANDLE, &uarg, &ures);
done:
xdr_free((xdrproc_t)xdr_gssx_cred, (char *)r);
return ret;
}
OM_uint32 gpm_delete_sec_context(OM_uint32 *minor_status,
gssx_ctx **context_handle,
gss_buffer_t output_token)
{
union gp_rpc_arg uarg;
union gp_rpc_res ures;
gssx_arg_release_handle *arg = &uarg.release_handle;
gssx_res_release_handle *res = &ures.release_handle;
gssx_ctx *r;
int ret;
if (context_handle == NULL || *context_handle == NULL) {
return 0;
}
r = (*context_handle);
if (!r->needs_release) {
ret = GSS_S_COMPLETE;
goto done;
}
memset(&uarg, 0, sizeof(union gp_rpc_arg));
memset(&ures, 0, sizeof(union gp_rpc_res));
/* ignore call_ctx for now */
arg->cred_handle.handle_type = GSSX_C_HANDLE_SEC_CTX;
arg->cred_handle.gssx_handle_u.sec_ctx_info = *r;
/* execute proxy request */
ret = gpm_make_call(GSSX_RELEASE_HANDLE, &uarg, &ures);
if (ret) {
*minor_status = ret;
ret = GSS_S_FAILURE;
goto rel_done;
}
if (res->status.major_status) {
gpm_save_status(&res->status);
*minor_status = res->status.minor_status;
ret = res->status.major_status;
}
rel_done:
/* we passed in our copy by value, so clean out to avoid double frees */
memset(&arg->cred_handle.gssx_handle_u.sec_ctx_info, 0, sizeof(gssx_cred));
gpm_free_xdrs(GSSX_RELEASE_HANDLE, &uarg, &ures);
done:
xdr_free((xdrproc_t)xdr_gssx_ctx, (char *)r);
return ret;
}
|