1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
|
/*
* pam_debug module
*
* Written by Andrew Morgan <morgan@kernel.org> 2001/02/04
*
* This module is intended as a debugging aide for determining how
* the PAM stack is operating.
*/
#include "config.h"
#include <stdio.h>
#include <security/pam_modules.h>
#include <security/_pam_macros.h>
#include <security/pam_ext.h>
#define _PAM_ACTION_UNDEF (-10)
#include "../../libpam/pam_tokens.h"
#define DEFAULT_USER "nobody"
/* --- authentication management functions --- */
static int state(pam_handle_t *pamh, const char *text)
{
int retval;
retval = pam_info (pamh, "%s", text);
if (retval != PAM_SUCCESS) {
D(("pam_info failed"));
}
return retval;
}
static int parse_args(int retval, const char *event,
pam_handle_t *pamh, int argc, const char **argv)
{
int i;
for (i=0; i<argc; ++i) {
int length = strlen(event);
if (!strncmp(event, argv[i], length) && (argv[i][length] == '=')) {
int j;
const char *return_string = argv[i] + (length+1);
for (j=0; j<_PAM_RETURN_VALUES; ++j) {
if (!strcmp(return_string, _pam_token_returns[j])) {
retval = j;
state(pamh, argv[i]);
break;
}
}
break;
}
}
return retval;
}
int pam_sm_authenticate(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
return parse_args(PAM_SUCCESS, "auth", pamh, argc, argv);
}
int pam_sm_setcred(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
return parse_args(PAM_SUCCESS, "cred", pamh, argc, argv);
}
/* --- account management functions --- */
int pam_sm_acct_mgmt(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
return parse_args(PAM_SUCCESS, "acct", pamh, argc, argv);
}
/* --- password management --- */
int pam_sm_chauthtok(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
if (flags & PAM_PRELIM_CHECK) {
return parse_args(PAM_SUCCESS, "prechauthtok", pamh, argc, argv);
} else {
return parse_args(PAM_SUCCESS, "chauthtok", pamh, argc, argv);
}
}
/* --- session management --- */
int pam_sm_open_session(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
return parse_args(PAM_SUCCESS, "open_session", pamh, argc, argv);
}
int pam_sm_close_session(pam_handle_t *pamh, int flags UNUSED,
int argc, const char **argv)
{
return parse_args(PAM_SUCCESS, "close_session", pamh, argc, argv);
}
/* end of module definition */
|