2 * Copyright (c) 2011, JANET(UK)
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of JANET(UK) nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
21 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 * Function for converting mechanism error codes to strings.
37 #include "gssapiP_eap.h"
39 static GSSEAP_THREAD_ONCE gssEapStatusInfoKeyOnce = GSSEAP_ONCE_INITIALIZER;
40 static GSSEAP_THREAD_KEY gssEapStatusInfoKey;
42 struct gss_eap_status_info {
45 struct gss_eap_status_info *next;
49 destroyStatusInfo(void *arg)
51 struct gss_eap_status_info *p = arg, *next;
53 for (p = arg; p != NULL; p = next) {
55 GSSEAP_FREE(p->message);
61 createStatusInfoKey(void)
63 GSSEAP_KEY_CREATE(&gssEapStatusInfoKey, destroyStatusInfo);
67 * Associate a message with a mechanism (minor) status code. This function
68 * takes ownership of the message regardless of success. The message must
69 * be explicitly cleared, if required, so it is suggested that a specific
70 * minor code is either always or never associated with a message, to avoid
71 * dangling (and potentially confusing) error messages.
74 saveStatusInfoNoCopy(OM_uint32 minor, char *message)
76 struct gss_eap_status_info **next = NULL, *p;
78 GSSEAP_ONCE(&gssEapStatusInfoKeyOnce, createStatusInfoKey);
80 p = GSSEAP_GETSPECIFIC(gssEapStatusInfoKey);
81 for (; p != NULL; p = p->next) {
82 if (p->code == minor) {
83 /* Set message in-place */
84 if (p->message != NULL)
85 GSSEAP_FREE(p->message);
92 p = GSSEAP_CALLOC(1, sizeof(*p));
100 p->message = message;
105 GSSEAP_SETSPECIFIC(gssEapStatusInfoKey, p);
109 getStatusInfo(OM_uint32 minor)
111 struct gss_eap_status_info *p;
113 GSSEAP_ONCE(&gssEapStatusInfoKeyOnce, createStatusInfoKey);
115 for (p = GSSEAP_GETSPECIFIC(gssEapStatusInfoKey);
118 if (p->code == minor)
126 gssEapSaveStatusInfo(OM_uint32 minor, const char *format, ...)
132 va_start(ap, format);
133 n = vasprintf(&s, format, ap);
137 saveStatusInfoNoCopy(minor, s);
141 gss_display_status(OM_uint32 *minor,
142 OM_uint32 status_value,
145 OM_uint32 *message_context,
146 gss_buffer_t status_string)
149 krb5_context krbContext = NULL;
152 status_string->length = 0;
153 status_string->value = NULL;
155 if (!gssEapIsMechanismOid(mech_type)) {
156 *minor = GSSEAP_WRONG_MECH;
157 return GSS_S_BAD_MECH;
160 if (status_type != GSS_C_MECH_CODE) {
161 /* we rely on the mechglue for GSS_C_GSS_CODE */
163 return GSS_S_BAD_STATUS;
166 errMsg = getStatusInfo(status_value);
167 if (errMsg == NULL) {
168 GSSEAP_KRB_INIT(&krbContext);
170 /* Try the com_err message */
171 errMsg = krb5_get_error_message(krbContext, status_value);
174 if (errMsg != NULL) {
175 major = makeStringBuffer(minor, errMsg, status_string);
177 major = GSS_S_COMPLETE;
181 if (krbContext != NULL)
182 krb5_free_error_message(krbContext, errMsg);