1 4180d05b 2004-06-17 devnull #include <u.h>
2 4180d05b 2004-06-17 devnull #include <libc.h>
3 4180d05b 2004-06-17 devnull #include <authsrv.h>
5 4180d05b 2004-06-17 devnull static long finddosfile(int, char*);
7 4180d05b 2004-06-17 devnull static int
8 4180d05b 2004-06-17 devnull check(void *x, int len, uchar sum, char *msg)
10 4180d05b 2004-06-17 devnull if(nvcsum(x, len) == sum)
11 4180d05b 2004-06-17 devnull return 0;
12 4180d05b 2004-06-17 devnull memset(x, 0, len);
13 4180d05b 2004-06-17 devnull fprint(2, "%s\n", msg);
14 4180d05b 2004-06-17 devnull return 1;
18 4180d05b 2004-06-17 devnull * get key info out of nvram. since there isn't room in the PC's nvram use
19 4180d05b 2004-06-17 devnull * a disk partition there.
21 4180d05b 2004-06-17 devnull static struct {
22 4180d05b 2004-06-17 devnull char *cputype;
23 4180d05b 2004-06-17 devnull char *file;
26 4180d05b 2004-06-17 devnull } nvtab[] = {
27 4180d05b 2004-06-17 devnull "sparc", "#r/nvram", 1024+850, sizeof(Nvrsafe),
28 4180d05b 2004-06-17 devnull "pc", "#S/sdC0/nvram", 0, sizeof(Nvrsafe),
29 4180d05b 2004-06-17 devnull "pc", "#S/sdC0/9fat", -1, sizeof(Nvrsafe),
30 4180d05b 2004-06-17 devnull "pc", "#S/sdC1/nvram", 0, sizeof(Nvrsafe),
31 4180d05b 2004-06-17 devnull "pc", "#S/sdC1/9fat", -1, sizeof(Nvrsafe),
32 4180d05b 2004-06-17 devnull "pc", "#S/sd00/nvram", 0, sizeof(Nvrsafe),
33 4180d05b 2004-06-17 devnull "pc", "#S/sd00/9fat", -1, sizeof(Nvrsafe),
34 4180d05b 2004-06-17 devnull "pc", "#S/sd01/nvram", 0, sizeof(Nvrsafe),
35 4180d05b 2004-06-17 devnull "pc", "#S/sd01/9fat", -1, sizeof(Nvrsafe),
36 4180d05b 2004-06-17 devnull "pc", "#f/fd0disk", -1, 512, /* 512: #f requires whole sector reads */
37 4180d05b 2004-06-17 devnull "pc", "#f/fd1disk", -1, 512,
38 4180d05b 2004-06-17 devnull "mips", "#r/nvram", 1024+900, sizeof(Nvrsafe),
39 4180d05b 2004-06-17 devnull "power", "#F/flash/flash0", 0x440000, sizeof(Nvrsafe),
40 4180d05b 2004-06-17 devnull "power", "#r/nvram", 4352, sizeof(Nvrsafe), /* OK for MTX-604e */
41 4180d05b 2004-06-17 devnull "debug", "/tmp/nvram", 0, sizeof(Nvrsafe),
44 3170c7d4 2005-02-13 devnull static char*
45 6c0209f6 2005-02-11 devnull xreadcons(char *prompt, char *def, int secret, char *buf, int nbuf)
49 6c0209f6 2005-02-11 devnull p = readcons(prompt, def, secret);
50 6c0209f6 2005-02-11 devnull if(p == nil)
51 6c0209f6 2005-02-11 devnull return nil;
52 6c0209f6 2005-02-11 devnull strecpy(buf, buf+nbuf, p);
53 6c0209f6 2005-02-11 devnull memset(p, 0, strlen(p));
55 6c0209f6 2005-02-11 devnull return buf;
59 4180d05b 2004-06-17 devnull * get key info out of nvram. since there isn't room in the PC's nvram use
60 4180d05b 2004-06-17 devnull * a disk partition there.
63 4180d05b 2004-06-17 devnull readnvram(Nvrsafe *safep, int flag)
65 4180d05b 2004-06-17 devnull char buf[1024], in[128], *cputype, *nvrfile, *nvrlen, *nvroff, *v[2];
66 4180d05b 2004-06-17 devnull int fd, err, i, safeoff, safelen;
67 4180d05b 2004-06-17 devnull Nvrsafe *safe;
70 4180d05b 2004-06-17 devnull memset(safep, 0, sizeof(*safep));
72 4180d05b 2004-06-17 devnull nvrfile = getenv("nvram");
73 4180d05b 2004-06-17 devnull cputype = getenv("cputype");
74 4180d05b 2004-06-17 devnull if(cputype == nil)
75 4180d05b 2004-06-17 devnull cputype = "mips";
76 4180d05b 2004-06-17 devnull if(strcmp(cputype, "386")==0 || strcmp(cputype, "alpha")==0)
77 4180d05b 2004-06-17 devnull cputype = "pc";
80 4180d05b 2004-06-17 devnull safeoff = -1;
81 4180d05b 2004-06-17 devnull safelen = -1;
82 4180d05b 2004-06-17 devnull if(nvrfile != nil){
83 4180d05b 2004-06-17 devnull /* accept device and device!file */
84 4180d05b 2004-06-17 devnull i = gettokens(nvrfile, v, nelem(v), "!");
85 4180d05b 2004-06-17 devnull fd = open(v[0], ORDWR);
86 4180d05b 2004-06-17 devnull safelen = sizeof(Nvrsafe);
87 4180d05b 2004-06-17 devnull if(strstr(v[0], "/9fat") == nil)
88 4180d05b 2004-06-17 devnull safeoff = 0;
89 4180d05b 2004-06-17 devnull nvrlen = getenv("nvrlen");
90 4180d05b 2004-06-17 devnull if(nvrlen != nil)
91 4180d05b 2004-06-17 devnull safelen = atoi(nvrlen);
92 4180d05b 2004-06-17 devnull nvroff = getenv("nvroff");
93 4180d05b 2004-06-17 devnull if(nvroff != nil){
94 4180d05b 2004-06-17 devnull if(strcmp(nvroff, "dos") == 0)
95 4180d05b 2004-06-17 devnull safeoff = -1;
97 4180d05b 2004-06-17 devnull safeoff = atoi(nvroff);
99 4180d05b 2004-06-17 devnull if(safeoff < 0 && fd >= 0){
100 4180d05b 2004-06-17 devnull safelen = 512;
101 4180d05b 2004-06-17 devnull safeoff = finddosfile(fd, i == 2 ? v[1] : "plan9.nvr");
102 4180d05b 2004-06-17 devnull if(safeoff < 0){
103 4180d05b 2004-06-17 devnull close(fd);
104 4180d05b 2004-06-17 devnull fd = -1;
107 4180d05b 2004-06-17 devnull free(nvrfile);
108 4180d05b 2004-06-17 devnull if(nvrlen != nil)
109 4180d05b 2004-06-17 devnull free(nvrlen);
110 4180d05b 2004-06-17 devnull if(nvroff != nil)
111 4180d05b 2004-06-17 devnull free(nvroff);
113 4180d05b 2004-06-17 devnull for(i=0; i<nelem(nvtab); i++){
114 4180d05b 2004-06-17 devnull if(strcmp(cputype, nvtab[i].cputype) != 0)
115 4180d05b 2004-06-17 devnull continue;
116 4180d05b 2004-06-17 devnull if((fd = open(nvtab[i].file, ORDWR)) < 0)
117 4180d05b 2004-06-17 devnull continue;
118 4180d05b 2004-06-17 devnull safeoff = nvtab[i].off;
119 4180d05b 2004-06-17 devnull safelen = nvtab[i].len;
120 4180d05b 2004-06-17 devnull if(safeoff == -1){
121 4180d05b 2004-06-17 devnull safeoff = finddosfile(fd, "plan9.nvr");
122 4180d05b 2004-06-17 devnull if(safeoff < 0){
123 4180d05b 2004-06-17 devnull close(fd);
124 4180d05b 2004-06-17 devnull fd = -1;
125 4180d05b 2004-06-17 devnull continue;
132 4180d05b 2004-06-17 devnull if(fd < 0
133 4180d05b 2004-06-17 devnull || seek(fd, safeoff, 0) < 0
134 4180d05b 2004-06-17 devnull || read(fd, buf, safelen) != safelen){
135 4180d05b 2004-06-17 devnull err = 1;
136 4180d05b 2004-06-17 devnull if(flag&(NVwrite|NVwriteonerr))
137 4180d05b 2004-06-17 devnull fprint(2, "can't read nvram: %r\n");
138 4180d05b 2004-06-17 devnull memset(safep, 0, sizeof(*safep));
139 4180d05b 2004-06-17 devnull safe = safep;
141 0c9c620f 2010-03-10 rsc memmove(safep, buf, sizeof *safep);
142 4180d05b 2004-06-17 devnull safe = safep;
144 4180d05b 2004-06-17 devnull err |= check(safe->machkey, DESKEYLEN, safe->machsum, "bad nvram key");
145 cbeb0b26 2006-04-01 devnull /* err |= check(safe->config, CONFIGLEN, safe->configsum, "bad secstore key"); */
146 4180d05b 2004-06-17 devnull err |= check(safe->authid, ANAMELEN, safe->authidsum, "bad authentication id");
147 4180d05b 2004-06-17 devnull err |= check(safe->authdom, DOMLEN, safe->authdomsum, "bad authentication domain");
150 4180d05b 2004-06-17 devnull if((flag&NVwrite) || (err && (flag&NVwriteonerr))){
151 6c0209f6 2005-02-11 devnull xreadcons("authid", nil, 0, safe->authid, sizeof(safe->authid));
152 6c0209f6 2005-02-11 devnull xreadcons("authdom", nil, 0, safe->authdom, sizeof(safe->authdom));
153 6c0209f6 2005-02-11 devnull xreadcons("secstore key", nil, 1, safe->config, sizeof(safe->config));
154 4180d05b 2004-06-17 devnull for(;;){
155 6c0209f6 2005-02-11 devnull if(xreadcons("password", nil, 1, in, sizeof in) == nil)
156 4180d05b 2004-06-17 devnull goto Out;
157 4180d05b 2004-06-17 devnull if(passtokey(safe->machkey, in))
160 4180d05b 2004-06-17 devnull safe->machsum = nvcsum(safe->machkey, DESKEYLEN);
161 4180d05b 2004-06-17 devnull safe->configsum = nvcsum(safe->config, CONFIGLEN);
162 4180d05b 2004-06-17 devnull safe->authidsum = nvcsum(safe->authid, sizeof(safe->authid));
163 4180d05b 2004-06-17 devnull safe->authdomsum = nvcsum(safe->authdom, sizeof(safe->authdom));
164 0c9c620f 2010-03-10 rsc memmove(buf, safe, sizeof *safe);
165 4180d05b 2004-06-17 devnull if(seek(fd, safeoff, 0) < 0
166 4180d05b 2004-06-17 devnull || write(fd, buf, safelen) != safelen){
167 4180d05b 2004-06-17 devnull fprint(2, "can't write key to nvram: %r\n");
168 4180d05b 2004-06-17 devnull err = 1;
170 4180d05b 2004-06-17 devnull err = 0;
173 4180d05b 2004-06-17 devnull close(fd);
174 4180d05b 2004-06-17 devnull return err ? -1 : 0;
177 4180d05b 2004-06-17 devnull typedef struct Dosboot Dosboot;
178 4180d05b 2004-06-17 devnull struct Dosboot{
179 4180d05b 2004-06-17 devnull uchar magic[3]; /* really an xx86 JMP instruction */
180 4180d05b 2004-06-17 devnull uchar version[8];
181 4180d05b 2004-06-17 devnull uchar sectsize[2];
182 4180d05b 2004-06-17 devnull uchar clustsize;
183 4180d05b 2004-06-17 devnull uchar nresrv[2];
184 4180d05b 2004-06-17 devnull uchar nfats;
185 4180d05b 2004-06-17 devnull uchar rootsize[2];
186 4180d05b 2004-06-17 devnull uchar volsize[2];
187 4180d05b 2004-06-17 devnull uchar mediadesc;
188 4180d05b 2004-06-17 devnull uchar fatsize[2];
189 4180d05b 2004-06-17 devnull uchar trksize[2];
190 4180d05b 2004-06-17 devnull uchar nheads[2];
191 4180d05b 2004-06-17 devnull uchar nhidden[4];
192 4180d05b 2004-06-17 devnull uchar bigvolsize[4];
193 4180d05b 2004-06-17 devnull uchar driveno;
194 4180d05b 2004-06-17 devnull uchar reserved0;
195 4180d05b 2004-06-17 devnull uchar bootsig;
196 4180d05b 2004-06-17 devnull uchar volid[4];
197 4180d05b 2004-06-17 devnull uchar label[11];
198 4180d05b 2004-06-17 devnull uchar type[8];
200 4180d05b 2004-06-17 devnull #define GETSHORT(p) (((p)[1]<<8) | (p)[0])
201 4180d05b 2004-06-17 devnull #define GETLONG(p) ((GETSHORT((p)+2) << 16) | GETSHORT((p)))
203 4180d05b 2004-06-17 devnull typedef struct Dosdir Dosdir;
204 4180d05b 2004-06-17 devnull struct Dosdir
206 4180d05b 2004-06-17 devnull char name[8];
207 4180d05b 2004-06-17 devnull char ext[3];
208 4180d05b 2004-06-17 devnull uchar attr;
209 4180d05b 2004-06-17 devnull uchar reserved[10];
210 4180d05b 2004-06-17 devnull uchar time[2];
211 4180d05b 2004-06-17 devnull uchar date[2];
212 4180d05b 2004-06-17 devnull uchar start[2];
213 4180d05b 2004-06-17 devnull uchar length[4];
216 4180d05b 2004-06-17 devnull static char*
217 4180d05b 2004-06-17 devnull dosparse(char *from, char *to, int len)
221 4180d05b 2004-06-17 devnull memset(to, ' ', len);
222 4180d05b 2004-06-17 devnull if(from == 0)
223 4180d05b 2004-06-17 devnull return 0;
224 4180d05b 2004-06-17 devnull while(len-- > 0){
225 4180d05b 2004-06-17 devnull c = *from++;
226 4180d05b 2004-06-17 devnull if(c == '.')
227 4180d05b 2004-06-17 devnull return from;
228 4180d05b 2004-06-17 devnull if(c == 0)
230 4180d05b 2004-06-17 devnull if(c >= 'a' && c <= 'z')
231 4180d05b 2004-06-17 devnull *to++ = c + 'A' - 'a';
233 4180d05b 2004-06-17 devnull *to++ = c;
235 4180d05b 2004-06-17 devnull return 0;
239 4180d05b 2004-06-17 devnull * return offset of first file block
241 4180d05b 2004-06-17 devnull * This is a very simplistic dos file system. It only
242 4180d05b 2004-06-17 devnull * works on floppies, only looks in the root, and only
243 4180d05b 2004-06-17 devnull * returns a pointer to the first block of a file.
245 4180d05b 2004-06-17 devnull * This exists for cpu servers that have no hard disk
246 4180d05b 2004-06-17 devnull * or nvram to store the key on.
248 4180d05b 2004-06-17 devnull * Please don't make this any smarter: it stays resident
249 4180d05b 2004-06-17 devnull * and I'ld prefer not to waste the space on something that
250 4180d05b 2004-06-17 devnull * runs only at boottime -- presotto.
252 4180d05b 2004-06-17 devnull static long
253 4180d05b 2004-06-17 devnull finddosfile(int fd, char *file)
255 4180d05b 2004-06-17 devnull uchar secbuf[512];
256 4180d05b 2004-06-17 devnull char name[8];
257 4180d05b 2004-06-17 devnull char ext[3];
258 4180d05b 2004-06-17 devnull Dosboot *b;
259 4180d05b 2004-06-17 devnull Dosdir *root, *dp;
260 4180d05b 2004-06-17 devnull int nroot, sectsize, rootoff, rootsects, n;
262 4180d05b 2004-06-17 devnull /* dos'ize file name */
263 4180d05b 2004-06-17 devnull file = dosparse(file, name, 8);
264 4180d05b 2004-06-17 devnull dosparse(file, ext, 3);
266 4180d05b 2004-06-17 devnull /* read boot block, check for sanity */
267 4180d05b 2004-06-17 devnull b = (Dosboot*)secbuf;
268 4180d05b 2004-06-17 devnull if(read(fd, secbuf, sizeof(secbuf)) != sizeof(secbuf))
269 4180d05b 2004-06-17 devnull return -1;
270 4180d05b 2004-06-17 devnull if(b->magic[0] != 0xEB || b->magic[1] != 0x3C || b->magic[2] != 0x90)
271 4180d05b 2004-06-17 devnull return -1;
272 4180d05b 2004-06-17 devnull sectsize = GETSHORT(b->sectsize);
273 4180d05b 2004-06-17 devnull if(sectsize != 512)
274 4180d05b 2004-06-17 devnull return -1;
275 4180d05b 2004-06-17 devnull rootoff = (GETSHORT(b->nresrv) + b->nfats*GETSHORT(b->fatsize)) * sectsize;
276 4180d05b 2004-06-17 devnull if(seek(fd, rootoff, 0) < 0)
277 4180d05b 2004-06-17 devnull return -1;
278 4180d05b 2004-06-17 devnull nroot = GETSHORT(b->rootsize);
279 4180d05b 2004-06-17 devnull rootsects = (nroot*sizeof(Dosdir)+sectsize-1)/sectsize;
280 4180d05b 2004-06-17 devnull if(rootsects <= 0 || rootsects > 64)
281 4180d05b 2004-06-17 devnull return -1;
284 4180d05b 2004-06-17 devnull * read root. it is contiguous to make stuff like
285 4180d05b 2004-06-17 devnull * this easier
287 4180d05b 2004-06-17 devnull root = malloc(rootsects*sectsize);
288 4180d05b 2004-06-17 devnull if(read(fd, root, rootsects*sectsize) != rootsects*sectsize)
289 4180d05b 2004-06-17 devnull return -1;
291 4180d05b 2004-06-17 devnull for(dp = root; dp < &root[nroot]; dp++)
292 4180d05b 2004-06-17 devnull if(memcmp(name, dp->name, 8) == 0 && memcmp(ext, dp->ext, 3) == 0){
293 4180d05b 2004-06-17 devnull n = GETSHORT(dp->start);
296 4180d05b 2004-06-17 devnull free(root);
298 4180d05b 2004-06-17 devnull if(n < 0)
299 4180d05b 2004-06-17 devnull return -1;
302 4180d05b 2004-06-17 devnull * dp->start is in cluster units, not sectors. The first
303 4180d05b 2004-06-17 devnull * cluster is cluster 2 which starts immediately after the
304 4180d05b 2004-06-17 devnull * root directory
306 4180d05b 2004-06-17 devnull return rootoff + rootsects*sectsize + (n-2)*sectsize*b->clustsize;