blob: dc1e03de8806139c444a540f40f606757d2b430e [file]
/*****************************************************************************\
* src/common/uid.h - uid/gid lookup utility functions
*****************************************************************************
* Copyright (C) 2002 The Regents of the University of California.
* Produced at Lawrence Livermore National Laboratory (cf, DISCLAIMER).
* Written by Mark Grondona <mgrondona@llnl.gov>.
* CODE-OCEC-09-009. All rights reserved.
*
* This file is part of Slurm, a resource management program.
* For details, see <https://slurm.schedmd.com/>.
* Please also read the included file: DISCLAIMER.
*
* Slurm is free software; you can redistribute it and/or modify it under
* the terms of the GNU General Public License as published by the Free
* Software Foundation; either version 2 of the License, or (at your option)
* any later version.
*
* In addition, as a special exception, the copyright holders give permission
* to link the code of portions of this program with the OpenSSL library under
* certain conditions as described in each individual source file, and
* distribute linked combinations including the two. You must obey the GNU
* General Public License in all respects for all of the code used other than
* OpenSSL. If you modify file(s) with this exception, you may extend this
* exception to your version of the file(s), but you are not obligated to do
* so. If you do not wish to do so, delete this exception statement from your
* version. If you delete this exception statement from all source files in
* the program, then also delete it here.
*
* Slurm is distributed in the hope that it will be useful, but WITHOUT ANY
* WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
* FOR A PARTICULAR PURPOSE. See the GNU General Public License for more
* details.
*
* You should have received a copy of the GNU General Public License along
* with Slurm; if not, write to the Free Software Foundation, Inc.,
* 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
\*****************************************************************************/
#ifndef __SLURM_UID_UTILITY_H__
#define __SLURM_UID_UTILITY_H__
#include <sys/types.h>
#include <unistd.h>
#include <pwd.h>
#include <stdbool.h>
/*
* In an ideal world, we could use sysconf(_SC_GETPW_R_SIZE_MAX) to get the
* maximum buffer size needed for getpwnam_r(), but if there is no maximum
* value configured, the value returned is 1024, which can too small.
* Diito for _SC_GETGR_R_SIZE_MAX.
*/
#define PW_BUF_SIZE 65536
/*
* Handle EINTR and ERANGE when possible for getpwuid_r().
* This accepts a pointer to the buffer currently being used as well as one that
* can be xmalloxed if we encounter ERANGE. The caller is expected to free
* buf_malloc() at the appropriate time.
*
* If this fails, *result will be NULL.
*/
extern void slurm_getpwuid_r(uid_t uid, struct passwd *pwd, char **curr_buf,
char **buf_malloc, size_t *bufsize,
struct passwd **result);
/*
* uid_from_string() - given a string with either a username or a uid in it
* populate the passed uid pointer with the correct uid and return an
* integer indicated the degree of success. This function is sanitizing
* inputs against current system state and provides UIDs that the Slurm
* daemons use in a security sensitive manner.
*
* IN name: string with either a provided username or provided string uid
* ownership of the username pointer
* IN/OUT uidp: pointer to the caller's uid_t memory, will be populated with
* the identified uid, though degree of success is communicated via
* the return code.
*
* Returns:
* SLURM_SUCCESS: uid was successfully looked up, uidp populated with
* the passwd database version of the uid
* SLURM_ERROR: the name string was not a username nor was it a valid
* number that *might* be a uid. uidp is NOT populated,
* caller should NOT proceed with the results
* ESLURM_USER_ID_UNKNOWN: the name string had an encoded number but was
* not in the user database accessible to the system.
* uidp is populated with the parsed uid number. caller
* should proceed with care.
* SLURM_AUTH_NOBODY: requested name matches SLURM_AUTH_NOBODY_NAME,
* the in/out variables are untouched.
*/
extern int uid_from_string(const char *name, uid_t *uidp);
/*
* Same interface in/out as uid_from_string() with the proviso that it uses
* a cache layer to speed interactions. The cache must be explicitly enabled
* with uid_from_string_cache_enable() and then explicitly disabled with
* uid_from_string_cache_disable() setting boundary points around cache
* survival. These are meant to represent discrete periods in time when a
* single run of many repeated lookups may occur (for example during daemon
* startup).
*/
extern int uid_from_string_cached(const char *name, uid_t *uidp);
/*
* Enable the uid_from_string cache explicitly.
*/
extern void uid_from_string_cache_enable(void);
/*
* Disable the uid_from_string cache explicitly.
*/
extern void uid_from_string_cache_disable(void);
/*
* Return the primary group id for a given user id, or
* (gid_t) -1 on failure.
*/
extern gid_t gid_from_uid (uid_t uid);
/*
* Same as uid_from_name(), but for group name/id.
*/
extern int gid_from_string(const char *name, gid_t *gidp);
/*
* Translate uid to user name.
* Will return NULL on error.
* NOTE: xfree the return value.
*/
extern char *uid_to_string_or_null(uid_t uid);
/*
* Translate uid to user name,
* If lookup fails, will return the uid printed as a string.
* NOTE: xfree the return value
*/
extern char *uid_to_string(uid_t uid);
/* Empty the uid cache and free any memory */
extern void uid_cache_clear(void);
/*
* Translate uid to user name, using a cache.
* Call uid_cache_clear() to free memory.
*/
extern char *uid_to_string_cached(uid_t uid);
/*
* Translate uid to home directory.
* NOTE: xfree the return value
*/
extern char *uid_to_dir(uid_t uid);
/*
* Translate uid to shell.
* NOTE: xfree the return value
*/
extern char *uid_to_shell(uid_t uid);
/*
* Same as uid_to_string, but for group name.
* If lookup fails, will return the gid printed as a string.
* NOTE: xfree the return value
*/
extern char *gid_to_string(gid_t gid);
/*
* Translate gid to user name.
* Will return NULL on error.
* NOTE: xfree the return value.
*/
extern char *gid_to_string_or_null(gid_t gid);
/*
* Drop all supplementary groups from the calling process.
*
* Best-effort: if the process lacks CAP_SETGID the groups are left intact and a
* warning is logged (the inherited groups must already be correct).
*
* IN uid - target user (used only for the warning message)
* IN gid - primary group to keep (supplementary copies of it are ignored)
* RET SLURM_SUCCESS, or an errno if querying the current groups failed
*/
extern int drop_supplementary_groups(uid_t uid, gid_t gid);
/*
* Set the supplementary group list of the calling process.
*
* Best-effort on capability: if the process lacks CAP_SETGID the existing
* groups are left intact and a warning is logged (the inherited groups must
* already be correct). Any other setgroups() failure is returned as an errno.
*
* IN uid - target user (used only for the warning message)
* IN gids - supplementary group list to install
* IN ngids - number of entries in gids
* RET SLURM_SUCCESS (incl. the EPERM best-effort case), or an errno on a
* non-EPERM setgroups() failure
*/
extern int set_supplementary_groups(uid_t uid, gid_t *gids, int ngids);
#endif /*__SLURM_UID_UTILITY_H__*/