diff options
Diffstat (limited to 'nis')
35 files changed, 2545 insertions, 1770 deletions
diff --git a/nis/Banner b/nis/Banner index b5aedc2b97..77ab77e8d2 100644 --- a/nis/Banner +++ b/nis/Banner @@ -1 +1 @@ -NIS(YP)/NIS+ NSS modules 0.11 by Thorsten Kukuk +NIS(YP)/NIS+ NSS modules 0.12 by Thorsten Kukuk diff --git a/nis/Makefile b/nis/Makefile index 23a71446bb..c10c175e7d 100644 --- a/nis/Makefile +++ b/nis/Makefile @@ -17,12 +17,13 @@ # Boston, MA 02111-1307, USA. # -# Makefile for NIS part. +# Makefile for NIS/NIS+ part. # subdir := nis headers := $(wildcard rpcsvc/*.[hx]) -distribute := nss-nis.h nss-nisplus.h nis_intern.h Banner +distribute := nss-nis.h nss-nisplus.h nis_intern.h Banner \ + nisplus-parser.h # These are the databases available for the nis (and perhaps later nisplus) # service. This must be a superset of the services in nss. @@ -44,15 +45,15 @@ vpath %.c $(subdir-dirs) libnsl-routines = yp_xdr ypclnt ypupdate_xdr \ nis_subr nis_local_names nis_free nis_file \ nis_print nis_error nis_call nis_lookup nis_clone\ - nis_table nis_xdr nis_intern nis_server nis_ping\ + nis_cache nis_table nis_xdr nis_server nis_ping\ nis_checkpoint nis_mkdir nis_rmdir nis_getservlist\ - nis_verifygroup nis_ismember nis_addmember \ + nis_verifygroup nis_ismember nis_addmember nis_util\ nis_removemember nis_creategroup nis_destroygroup\ nis_print_group_entry nis_domain_of nis_domain_of_r\ - nis_modify nis_remove nis_add nis_defaults + nis_modify nis_remove nis_add nis_defaults lckcache libnsl-map = libnsl.map -libnss_compat-routines := $(addprefix compat-,grp pwd spwd) +libnss_compat-routines := $(addprefix compat-,grp pwd spwd) nisplus-parser libnss_compat-inhibit-o = $(filter-out .so,$(object-suffixes)) libnss_compat-map := libnss_compat.map @@ -60,16 +61,14 @@ libnss_nis-routines := $(addprefix nis-,$(databases)) libnss_nis-inhibit-o = $(filter-out .so,$(object-suffixes)) libnss_nis-map := libnss_nis.map -libnss_nisplus-routines := $(addprefix nisplus-,$(databases)) +libnss_nisplus-routines := $(addprefix nisplus-,$(databases)) nisplus-parser libnss_nisplus-inhibit-o = $(filter-out .so,$(object-suffixes)) libnss_nisplus-map := libnss_nisplus.map include ../Rules -$(objpfx)libnss_compat.so: $(objpfx)libnsl.so$(libnsl.so-version) \ - $(common-objpfx)nss/libnss_files.so \ - $(common-objpfx)nis/libnss_nisplus.so +$(objpfx)libnss_compat.so: $(objpfx)libnsl.so$(libnsl.so-version) $(objpfx)libnss_nis.so: $(objpfx)libnsl.so$(libnsl.so-version) \ $(common-objpfx)nss/libnss_files.so $(objpfx)libnss_nisplus.so: $(objpfx)libnsl.so$(libnsl.so-version) @@ -2,8 +2,6 @@ * nis_addmember: Where checks for duplicate group members ? nisgrpadm or nis_addmember ? - * nss_nisplus: When using parser form nss_files, rewrite parser - * nis_table.c: nis_list(): Missing flags: FOLLOW_PATH, ALL_RESULTS callback: Don't simulate it, use server callback thread diff --git a/nis/lckcache.c b/nis/lckcache.c new file mode 100644 index 0000000000..ead577372e --- /dev/null +++ b/nis/lckcache.c @@ -0,0 +1,181 @@ +/* Handle locking of NIS+ cache file. + Copyright (C) 1996 Free Software Foundation, Inc. + This file is part of the GNU C Library. + + The GNU C Library is free software; you can redistribute it and/or + modify it under the terms of the GNU Library General Public License as + published by the Free Software Foundation; either version 2 of the + License, or (at your option) any later version. + + The GNU C Library is distributed in the hope that it will be useful, + but WITHOUT ANY WARRANTY; without even the implied warranty of + MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU + Library General Public License for more details. + + You should have received a copy of the GNU Library General Public + License along with the GNU C Library; see the file COPYING.LIB. If not, + write to the Free Software Foundation, Inc., 59 Temple Place - Suite 330, + Boston, MA 02111-1307, USA. */ + +#include <fcntl.h> +#include <bits/libc-lock.h> +#include <shadow.h> +#include <signal.h> +#include <string.h> +#include <unistd.h> +#include <sys/file.h> +#include <rpcsvc/nis.h> +#include <rpcsvc/nislib.h> +#include <rpcsvc/nis_cache.h> + +/* How long to wait for getting the lock before returning with an + error. */ +#define TIMEOUT 15 /* sec */ + + +/* File descriptor for lock file. */ +static int lock_fd = -1; + +/* Prevent problems in multithreaded program by using mutex. */ +__libc_lock_define_initialized (static, lock) + + +/* Prototypes for local functions. */ +static void noop_handler __P ((int __sig)); + + +/* We cannot simply return in error cases. We have to close the file + and perhaps restore the signal handler. */ +#define RETURN_CLOSE_FD(code) \ + do { \ + if ((code) < 0 && lock_fd >= 0) \ + { \ + close (lock_fd); \ + lock_fd = -1; \ + } \ + __libc_lock_unlock (lock); \ + return (code); \ + } while (0) + +#define RETURN_RESTORE_HANDLER(code) \ + do { \ + /* Restore old action handler for alarm. We don't need to know \ + about the current one. */ \ + sigaction (SIGALRM, &saved_act, NULL); \ + RETURN_CLOSE_FD (code); \ + } while (0) + +#define RETURN_CLEAR_ALARM(code) \ + do { \ + /* Clear alarm. */ \ + alarm (0); \ + /* Restore old set of handled signals. We don't need to know \ + about the current one.*/ \ + sigprocmask (SIG_SETMASK, &saved_set, NULL); \ + RETURN_RESTORE_HANDLER (code); \ + } while (0) + + +int +__nis_lock_cache (void) +{ + int flags; + sigset_t saved_set; /* Saved set of caught signals. */ + struct sigaction saved_act; /* Saved signal action. */ + sigset_t new_set; /* New set of caught signals. */ + struct sigaction new_act; /* New signal action. */ + struct flock fl; /* Information struct for locking. */ + int result; + + if (lock_fd != -1) + /* Still locked by own process. */ + return -1; + + /* Prevent problems caused by multiple threads. */ + __libc_lock_lock (lock); + + lock_fd = open (CACHELOCK, O_RDONLY|O_CREAT, 0666); + if (lock_fd == -1) + /* Cannot create lock file. */ + RETURN_CLOSE_FD (-1); + + /* Make sure file gets correctly closed when process finished. */ + flags = fcntl (lock_fd, F_GETFD, 0); + if (flags == -1) + /* Cannot get file flags. */ + RETURN_CLOSE_FD (-1); + flags |= FD_CLOEXEC; /* Close on exit. */ + if (fcntl (lock_fd, F_SETFD, flags) < 0) + /* Cannot set new flags. */ + RETURN_CLOSE_FD (-1); + + /* Now we have to get exclusive write access. Since multiple + process could try this we won't stop when it first fails. + Instead we set a timeout for the system call. Once the timer + expires it is likely that there are some problems which cannot be + resolved by waiting. + + It is important that we don't change the signal state. We must + restore the old signal behaviour. */ + memset (&new_act, '\0', sizeof (struct sigaction)); + new_act.sa_handler = noop_handler; + sigfillset (&new_act.sa_mask); + new_act.sa_flags = 0ul; + + /* Install new action handler for alarm and save old. */ + if (sigaction (SIGALRM, &new_act, &saved_act) < 0) + /* Cannot install signal handler. */ + RETURN_CLOSE_FD (-1); + + /* Now make sure the alarm signal is not blocked. */ + sigemptyset (&new_set); + sigaddset (&new_set, SIGALRM); + if (sigprocmask (SIG_UNBLOCK, &new_set, &saved_set) < 0) + RETURN_RESTORE_HANDLER (-1); + + /* Start timer. If we cannot get the lock in the specified time we + get a signal. */ + alarm (TIMEOUT); + + /* Try to get the lock. */ + memset (&fl, '\0', sizeof (struct flock)); + fl.l_type = F_RDLCK; + fl.l_whence = SEEK_SET; + result = fcntl (lock_fd, F_SETLK, &fl); + + RETURN_CLEAR_ALARM (result); +} + + +int +__nis_unlock_cache () +{ + int result; + + if (lock_fd == -1) + /* There is no lock set. */ + result = -1; + else + { + /* Prevent problems caused by multiple threads. */ + __libc_lock_lock (lock); + + result = close (lock_fd); + + /* Mark descriptor as unused. */ + lock_fd = -1; + + /* Clear mutex. */ + __libc_lock_unlock (lock); + } + + return result; +} + + +static void +noop_handler (sig) + int sig; +{ + /* We simply return which makes the `fcntl' call return with an error. */ +} diff --git a/nis/libnsl.map b/nis/libnsl.map index 36bb857093..cf22d27d2f 100644 --- a/nis/libnsl.map +++ b/nis/libnsl.map @@ -1,7 +1,10 @@ GLIBC_2.0 { global: __nis_default_access; __nis_default_group; __nis_default_owner; - __nis_default_ttl; __yp_check; nis_add; + __nis_default_ttl; __nis_finddirectory; __nis_lock_cache; + __nis_unlock_cache; __nis_hash; + + nis_add; nis_add_entry; nis_addmember; nis_checkpoint; nis_clone_directory; nis_clone_entry; nis_clone_group; nis_clone_link; nis_clone_nis_attr; nis_clone_objdata; @@ -51,6 +54,7 @@ GLIBC_2.0 { xdr_ypresp_xfr; xdr_ypstat; xdr_ypupdate_args; xdr_ypxfrstat; xdr_zotypes; + __yp_check; yp_all; yp_bind; yp_first; yp_get_default_domain; yp_maplist; yp_master; yp_match; yp_next; yp_order; diff --git a/nis/nis_cache.c b/nis/nis_cache.c new file mode 100644 index 0000000000..8e1d583003 --- /dev/null +++ b/nis/nis_cache.c @@ -0,0 +1,44 @@ +/* Copyright (C) 1997 Free Software Foundation, Inc. + This file is part of the GNU C Library. + Contributed by Thorsten Kukuk <kukuk@vt.uni-paderborn.de>, 1997. + + The GNU C Library is free software; you can redistribute it and/or + modify it under the terms of the GNU Library General Public License as + published by the Free Software Foundation; either version 2 of the + License, or (at your option) any later version. + + The GNU C Library is distributed in the hope that it will be useful, + but WITHOUT ANY WARRANTY; without even the implied warranty of + MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU + Library General Public License for more details. + + You should have received a copy of the GNU Library General Public + License along with the GNU C Library; see the file COPYING.LIB. If not, + write to the Free Software Foundation, Inc., 59 Temple Place - Suite 330, + Boston, MA 02111-1307, USA. */ + +#include <fcntl.h> +#include <unistd.h> +#include <syslog.h> +#include <sys/stat.h> +#include <sys/mman.h> +#include <rpcsvc/nis.h> +#include <rpcsvc/nislib.h> +#include <rpcsvc/nis_cache.h> +#include <bits/libc-lock.h> + +#include "nis_intern.h" + +/* XXX Only dummy functions in the moment. The real implementation + will follow, if we have a working nis_cachemgr */ +directory_obj * +__cache_search (const_nis_name name) +{ + return NULL; +} + +nis_error +__cache_add (fd_result *fd) +{ + return NIS_FAIL; +} diff --git a/nis/nis_call.c b/nis/nis_call.c index 08a20acd73..f25b8017a5 100644 --- a/nis/nis_call.c +++ b/nis/nis_call.c @@ -17,6 +17,7 @@ write to the Free Software Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA. */ +#include <fcntl.h> #include <string.h> #include <rpc/rpc.h> #include <rpc/auth.h> @@ -26,8 +27,30 @@ #include <arpa/inet.h> #include "nis_intern.h" -static struct timeval TIMEOUT = {25, 0}; -static int const MAXTRIES = 3; +static struct timeval TIMEOUT = {10, 0}; + +struct dir_binding +{ + CLIENT *clnt; /* RPC CLIENT handle */ + nis_server *server_val; /* List of servers */ + u_int server_len; /* # of servers */ + u_int server_used; /* Which server we are bind in the moment ? */ + u_int trys; /* How many server have we tried ? */ + bool_t master_only; /* Is only binded to the master */ + bool_t use_auth; /* Do we use AUTH ? */ + bool_t use_udp; /* Do we use UDP ? */ + time_t create; /* Binding creation time */ + struct sockaddr_in addr; /* Server's IP address */ + int socket; /* Server's local socket */ + unsigned short port; /* Local port */ +}; +typedef struct dir_binding dir_binding; + +static inline u_int +__nis_ping (const nis_server *serv, u_int serv_len) +{ + return 0; +} static unsigned long inetstr2int (const char *str) @@ -53,110 +76,217 @@ inetstr2int (const char *str) return inet_addr (buffer); } -static CLIENT * -__nis_dobind (const nis_server *server, u_long flags) +static void +__bind_destroy (dir_binding *bind) { - struct sockaddr_in clnt_saddr; - int clnt_sock; - size_t i; - CLIENT *client = NULL; - - memset (&clnt_saddr, '\0', sizeof clnt_saddr); - clnt_saddr.sin_family = AF_INET; - for (i = 0; i < server->ep.ep_len; i++) + if (bind->clnt != NULL) { - if (strcmp (server->ep.ep_val[i].family, "loopback") == 0) + if (bind->use_auth) + auth_destroy (bind->clnt->cl_auth); + clnt_destroy (bind->clnt); + } + free (bind->server_val); + free (bind); +} + +static nis_error +__bind_next (dir_binding *bind) +{ + if (bind->trys >= bind->server_len) + return NIS_FAIL; + + bind->server_used++; + if (bind->server_used >= bind->server_len) + bind->server_used = 0; + + if (bind->clnt != NULL) + { + if (bind->use_auth) + auth_destroy (bind->clnt->cl_auth); + clnt_destroy (bind->clnt); + bind->clnt = NULL; + } + + return NIS_SUCCESS; +} + +static nis_error +__bind_connect (dir_binding *dbp) +{ + struct sockaddr_in check; + nis_server *serv; + int checklen; + u_int i; + + if (dbp == NULL) + return NIS_FAIL; + + serv = &dbp->server_val[dbp->server_used]; + + memset (&dbp->addr, '\0', sizeof (dbp->addr)); + dbp->addr.sin_family = AF_INET; + for (i = 0; i < serv->ep.ep_len; ++i) + { + if (strcmp (serv->ep.ep_val[i].family, "inet") == 0) { - if (server->ep.ep_val[i].uaddr[i] == '-') - clnt_saddr.sin_addr.s_addr = htonl (INADDR_LOOPBACK); + if (dbp->use_udp) + { + if (strcmp (serv->ep.ep_val[i].proto, "udp") == 0) + dbp->addr.sin_addr.s_addr = + inetstr2int (serv->ep.ep_val[i].uaddr); + else + continue; + } else - if (strcmp (server->ep.ep_val[i].proto, "udp") == 0) - { - if ((flags & USE_DGRAM) == USE_DGRAM) - clnt_saddr.sin_addr.s_addr = htonl (INADDR_LOOPBACK); - else - continue; - } - else - if (strcmp (server->ep.ep_val[i].proto, "tcp") == 0) - { - if ((flags & USE_DGRAM) == USE_DGRAM) - continue; - else - clnt_saddr.sin_addr.s_addr = htonl (INADDR_LOOPBACK); - } + if (strcmp (serv->ep.ep_val[i].proto, "tcp") == 0) + dbp->addr.sin_addr.s_addr = + inetstr2int (serv->ep.ep_val[i].uaddr); } else - if (strcmp (server->ep.ep_val[i].family, "inet") == 0) - { - if (server->ep.ep_val[i].uaddr[i] == '-') - clnt_saddr.sin_addr.s_addr = - inetstr2int (server->ep.ep_val[i].uaddr); - else - if (strcmp (server->ep.ep_val[i].proto, "udp") == 0) - { - if ((flags & USE_DGRAM) == USE_DGRAM) - clnt_saddr.sin_addr.s_addr = - inetstr2int (server->ep.ep_val[i].uaddr); - else - continue; - } |
