Blame


1 4180d05b 2004-06-17 devnull #include <u.h>
2 4180d05b 2004-06-17 devnull #include <libc.h>
3 4180d05b 2004-06-17 devnull #include <authsrv.h>
4 4180d05b 2004-06-17 devnull
5 4180d05b 2004-06-17 devnull static long finddosfile(int, char*);
6 4180d05b 2004-06-17 devnull
7 4180d05b 2004-06-17 devnull static int
8 4180d05b 2004-06-17 devnull check(void *x, int len, uchar sum, char *msg)
9 4180d05b 2004-06-17 devnull {
10 4180d05b 2004-06-17 devnull if(nvcsum(x, len) == sum)
11 4180d05b 2004-06-17 devnull return 0;
12 4180d05b 2004-06-17 devnull memset(x, 0, len);
13 4180d05b 2004-06-17 devnull fprint(2, "%s\n", msg);
14 4180d05b 2004-06-17 devnull return 1;
15 4180d05b 2004-06-17 devnull }
16 4180d05b 2004-06-17 devnull
17 4180d05b 2004-06-17 devnull /*
18 4180d05b 2004-06-17 devnull * get key info out of nvram. since there isn't room in the PC's nvram use
19 4180d05b 2004-06-17 devnull * a disk partition there.
20 4180d05b 2004-06-17 devnull */
21 4180d05b 2004-06-17 devnull static struct {
22 4180d05b 2004-06-17 devnull char *cputype;
23 4180d05b 2004-06-17 devnull char *file;
24 4180d05b 2004-06-17 devnull int off;
25 4180d05b 2004-06-17 devnull int len;
26 4180d05b 2004-06-17 devnull } nvtab[] = {
27 4180d05b 2004-06-17 devnull "sparc", "#r/nvram", 1024+850, sizeof(Nvrsafe),
28 4180d05b 2004-06-17 devnull "pc", "#S/sdC0/nvram", 0, sizeof(Nvrsafe),
29 4180d05b 2004-06-17 devnull "pc", "#S/sdC0/9fat", -1, sizeof(Nvrsafe),
30 4180d05b 2004-06-17 devnull "pc", "#S/sdC1/nvram", 0, sizeof(Nvrsafe),
31 4180d05b 2004-06-17 devnull "pc", "#S/sdC1/9fat", -1, sizeof(Nvrsafe),
32 4180d05b 2004-06-17 devnull "pc", "#S/sd00/nvram", 0, sizeof(Nvrsafe),
33 4180d05b 2004-06-17 devnull "pc", "#S/sd00/9fat", -1, sizeof(Nvrsafe),
34 4180d05b 2004-06-17 devnull "pc", "#S/sd01/nvram", 0, sizeof(Nvrsafe),
35 4180d05b 2004-06-17 devnull "pc", "#S/sd01/9fat", -1, sizeof(Nvrsafe),
36 4180d05b 2004-06-17 devnull "pc", "#f/fd0disk", -1, 512, /* 512: #f requires whole sector reads */
37 4180d05b 2004-06-17 devnull "pc", "#f/fd1disk", -1, 512,
38 4180d05b 2004-06-17 devnull "mips", "#r/nvram", 1024+900, sizeof(Nvrsafe),
39 4180d05b 2004-06-17 devnull "power", "#F/flash/flash0", 0x440000, sizeof(Nvrsafe),
40 4180d05b 2004-06-17 devnull "power", "#r/nvram", 4352, sizeof(Nvrsafe), /* OK for MTX-604e */
41 4180d05b 2004-06-17 devnull "debug", "/tmp/nvram", 0, sizeof(Nvrsafe),
42 4180d05b 2004-06-17 devnull };
43 4180d05b 2004-06-17 devnull
44 3170c7d4 2005-02-13 devnull static char*
45 6c0209f6 2005-02-11 devnull xreadcons(char *prompt, char *def, int secret, char *buf, int nbuf)
46 4180d05b 2004-06-17 devnull {
47 6c0209f6 2005-02-11 devnull char *p;
48 fa325e9b 2020-01-10 cross
49 6c0209f6 2005-02-11 devnull p = readcons(prompt, def, secret);
50 6c0209f6 2005-02-11 devnull if(p == nil)
51 6c0209f6 2005-02-11 devnull return nil;
52 6c0209f6 2005-02-11 devnull strecpy(buf, buf+nbuf, p);
53 6c0209f6 2005-02-11 devnull memset(p, 0, strlen(p));
54 6c0209f6 2005-02-11 devnull free(p);
55 6c0209f6 2005-02-11 devnull return buf;
56 4180d05b 2004-06-17 devnull }
57 4180d05b 2004-06-17 devnull
58 4180d05b 2004-06-17 devnull /*
59 4180d05b 2004-06-17 devnull * get key info out of nvram. since there isn't room in the PC's nvram use
60 4180d05b 2004-06-17 devnull * a disk partition there.
61 4180d05b 2004-06-17 devnull */
62 4180d05b 2004-06-17 devnull int
63 4180d05b 2004-06-17 devnull readnvram(Nvrsafe *safep, int flag)
64 4180d05b 2004-06-17 devnull {
65 4180d05b 2004-06-17 devnull char buf[1024], in[128], *cputype, *nvrfile, *nvrlen, *nvroff, *v[2];
66 4180d05b 2004-06-17 devnull int fd, err, i, safeoff, safelen;
67 4180d05b 2004-06-17 devnull Nvrsafe *safe;
68 4180d05b 2004-06-17 devnull
69 4180d05b 2004-06-17 devnull err = 0;
70 4180d05b 2004-06-17 devnull memset(safep, 0, sizeof(*safep));
71 4180d05b 2004-06-17 devnull
72 4180d05b 2004-06-17 devnull nvrfile = getenv("nvram");
73 4180d05b 2004-06-17 devnull cputype = getenv("cputype");
74 4180d05b 2004-06-17 devnull if(cputype == nil)
75 4180d05b 2004-06-17 devnull cputype = "mips";
76 4180d05b 2004-06-17 devnull if(strcmp(cputype, "386")==0 || strcmp(cputype, "alpha")==0)
77 4180d05b 2004-06-17 devnull cputype = "pc";
78 4180d05b 2004-06-17 devnull
79 4180d05b 2004-06-17 devnull fd = -1;
80 4180d05b 2004-06-17 devnull safeoff = -1;
81 4180d05b 2004-06-17 devnull safelen = -1;
82 4180d05b 2004-06-17 devnull if(nvrfile != nil){
83 4180d05b 2004-06-17 devnull /* accept device and device!file */
84 4180d05b 2004-06-17 devnull i = gettokens(nvrfile, v, nelem(v), "!");
85 4180d05b 2004-06-17 devnull fd = open(v[0], ORDWR);
86 4180d05b 2004-06-17 devnull safelen = sizeof(Nvrsafe);
87 4180d05b 2004-06-17 devnull if(strstr(v[0], "/9fat") == nil)
88 4180d05b 2004-06-17 devnull safeoff = 0;
89 4180d05b 2004-06-17 devnull nvrlen = getenv("nvrlen");
90 4180d05b 2004-06-17 devnull if(nvrlen != nil)
91 4180d05b 2004-06-17 devnull safelen = atoi(nvrlen);
92 4180d05b 2004-06-17 devnull nvroff = getenv("nvroff");
93 4180d05b 2004-06-17 devnull if(nvroff != nil){
94 4180d05b 2004-06-17 devnull if(strcmp(nvroff, "dos") == 0)
95 4180d05b 2004-06-17 devnull safeoff = -1;
96 4180d05b 2004-06-17 devnull else
97 4180d05b 2004-06-17 devnull safeoff = atoi(nvroff);
98 4180d05b 2004-06-17 devnull }
99 4180d05b 2004-06-17 devnull if(safeoff < 0 && fd >= 0){
100 4180d05b 2004-06-17 devnull safelen = 512;
101 4180d05b 2004-06-17 devnull safeoff = finddosfile(fd, i == 2 ? v[1] : "plan9.nvr");
102 4180d05b 2004-06-17 devnull if(safeoff < 0){
103 4180d05b 2004-06-17 devnull close(fd);
104 4180d05b 2004-06-17 devnull fd = -1;
105 4180d05b 2004-06-17 devnull }
106 4180d05b 2004-06-17 devnull }
107 4180d05b 2004-06-17 devnull free(nvrfile);
108 4180d05b 2004-06-17 devnull if(nvrlen != nil)
109 4180d05b 2004-06-17 devnull free(nvrlen);
110 4180d05b 2004-06-17 devnull if(nvroff != nil)
111 4180d05b 2004-06-17 devnull free(nvroff);
112 4180d05b 2004-06-17 devnull }else{
113 4180d05b 2004-06-17 devnull for(i=0; i<nelem(nvtab); i++){
114 4180d05b 2004-06-17 devnull if(strcmp(cputype, nvtab[i].cputype) != 0)
115 4180d05b 2004-06-17 devnull continue;
116 4180d05b 2004-06-17 devnull if((fd = open(nvtab[i].file, ORDWR)) < 0)
117 4180d05b 2004-06-17 devnull continue;
118 4180d05b 2004-06-17 devnull safeoff = nvtab[i].off;
119 4180d05b 2004-06-17 devnull safelen = nvtab[i].len;
120 4180d05b 2004-06-17 devnull if(safeoff == -1){
121 4180d05b 2004-06-17 devnull safeoff = finddosfile(fd, "plan9.nvr");
122 4180d05b 2004-06-17 devnull if(safeoff < 0){
123 4180d05b 2004-06-17 devnull close(fd);
124 4180d05b 2004-06-17 devnull fd = -1;
125 4180d05b 2004-06-17 devnull continue;
126 4180d05b 2004-06-17 devnull }
127 4180d05b 2004-06-17 devnull }
128 4180d05b 2004-06-17 devnull break;
129 4180d05b 2004-06-17 devnull }
130 4180d05b 2004-06-17 devnull }
131 4180d05b 2004-06-17 devnull
132 4180d05b 2004-06-17 devnull if(fd < 0
133 4180d05b 2004-06-17 devnull || seek(fd, safeoff, 0) < 0
134 4180d05b 2004-06-17 devnull || read(fd, buf, safelen) != safelen){
135 4180d05b 2004-06-17 devnull err = 1;
136 4180d05b 2004-06-17 devnull if(flag&(NVwrite|NVwriteonerr))
137 4180d05b 2004-06-17 devnull fprint(2, "can't read nvram: %r\n");
138 4180d05b 2004-06-17 devnull memset(safep, 0, sizeof(*safep));
139 4180d05b 2004-06-17 devnull safe = safep;
140 4180d05b 2004-06-17 devnull }else{
141 0c9c620f 2010-03-10 rsc memmove(safep, buf, sizeof *safep);
142 4180d05b 2004-06-17 devnull safe = safep;
143 4180d05b 2004-06-17 devnull
144 4180d05b 2004-06-17 devnull err |= check(safe->machkey, DESKEYLEN, safe->machsum, "bad nvram key");
145 cbeb0b26 2006-04-01 devnull /* err |= check(safe->config, CONFIGLEN, safe->configsum, "bad secstore key"); */
146 4180d05b 2004-06-17 devnull err |= check(safe->authid, ANAMELEN, safe->authidsum, "bad authentication id");
147 4180d05b 2004-06-17 devnull err |= check(safe->authdom, DOMLEN, safe->authdomsum, "bad authentication domain");
148 4180d05b 2004-06-17 devnull }
149 4180d05b 2004-06-17 devnull
150 4180d05b 2004-06-17 devnull if((flag&NVwrite) || (err && (flag&NVwriteonerr))){
151 6c0209f6 2005-02-11 devnull xreadcons("authid", nil, 0, safe->authid, sizeof(safe->authid));
152 6c0209f6 2005-02-11 devnull xreadcons("authdom", nil, 0, safe->authdom, sizeof(safe->authdom));
153 6c0209f6 2005-02-11 devnull xreadcons("secstore key", nil, 1, safe->config, sizeof(safe->config));
154 4180d05b 2004-06-17 devnull for(;;){
155 6c0209f6 2005-02-11 devnull if(xreadcons("password", nil, 1, in, sizeof in) == nil)
156 4180d05b 2004-06-17 devnull goto Out;
157 4180d05b 2004-06-17 devnull if(passtokey(safe->machkey, in))
158 4180d05b 2004-06-17 devnull break;
159 4180d05b 2004-06-17 devnull }
160 4180d05b 2004-06-17 devnull safe->machsum = nvcsum(safe->machkey, DESKEYLEN);
161 4180d05b 2004-06-17 devnull safe->configsum = nvcsum(safe->config, CONFIGLEN);
162 4180d05b 2004-06-17 devnull safe->authidsum = nvcsum(safe->authid, sizeof(safe->authid));
163 4180d05b 2004-06-17 devnull safe->authdomsum = nvcsum(safe->authdom, sizeof(safe->authdom));
164 0c9c620f 2010-03-10 rsc memmove(buf, safe, sizeof *safe);
165 4180d05b 2004-06-17 devnull if(seek(fd, safeoff, 0) < 0
166 4180d05b 2004-06-17 devnull || write(fd, buf, safelen) != safelen){
167 4180d05b 2004-06-17 devnull fprint(2, "can't write key to nvram: %r\n");
168 4180d05b 2004-06-17 devnull err = 1;
169 4180d05b 2004-06-17 devnull }else
170 4180d05b 2004-06-17 devnull err = 0;
171 4180d05b 2004-06-17 devnull }
172 4180d05b 2004-06-17 devnull Out:
173 4180d05b 2004-06-17 devnull close(fd);
174 4180d05b 2004-06-17 devnull return err ? -1 : 0;
175 4180d05b 2004-06-17 devnull }
176 4180d05b 2004-06-17 devnull
177 4180d05b 2004-06-17 devnull typedef struct Dosboot Dosboot;
178 4180d05b 2004-06-17 devnull struct Dosboot{
179 4180d05b 2004-06-17 devnull uchar magic[3]; /* really an xx86 JMP instruction */
180 4180d05b 2004-06-17 devnull uchar version[8];
181 4180d05b 2004-06-17 devnull uchar sectsize[2];
182 4180d05b 2004-06-17 devnull uchar clustsize;
183 4180d05b 2004-06-17 devnull uchar nresrv[2];
184 4180d05b 2004-06-17 devnull uchar nfats;
185 4180d05b 2004-06-17 devnull uchar rootsize[2];
186 4180d05b 2004-06-17 devnull uchar volsize[2];
187 4180d05b 2004-06-17 devnull uchar mediadesc;
188 4180d05b 2004-06-17 devnull uchar fatsize[2];
189 4180d05b 2004-06-17 devnull uchar trksize[2];
190 4180d05b 2004-06-17 devnull uchar nheads[2];
191 4180d05b 2004-06-17 devnull uchar nhidden[4];
192 4180d05b 2004-06-17 devnull uchar bigvolsize[4];
193 4180d05b 2004-06-17 devnull uchar driveno;
194 4180d05b 2004-06-17 devnull uchar reserved0;
195 4180d05b 2004-06-17 devnull uchar bootsig;
196 4180d05b 2004-06-17 devnull uchar volid[4];
197 4180d05b 2004-06-17 devnull uchar label[11];
198 4180d05b 2004-06-17 devnull uchar type[8];
199 4180d05b 2004-06-17 devnull };
200 4180d05b 2004-06-17 devnull #define GETSHORT(p) (((p)[1]<<8) | (p)[0])
201 4180d05b 2004-06-17 devnull #define GETLONG(p) ((GETSHORT((p)+2) << 16) | GETSHORT((p)))
202 4180d05b 2004-06-17 devnull
203 4180d05b 2004-06-17 devnull typedef struct Dosdir Dosdir;
204 4180d05b 2004-06-17 devnull struct Dosdir
205 4180d05b 2004-06-17 devnull {
206 4180d05b 2004-06-17 devnull char name[8];
207 4180d05b 2004-06-17 devnull char ext[3];
208 4180d05b 2004-06-17 devnull uchar attr;
209 4180d05b 2004-06-17 devnull uchar reserved[10];
210 4180d05b 2004-06-17 devnull uchar time[2];
211 4180d05b 2004-06-17 devnull uchar date[2];
212 4180d05b 2004-06-17 devnull uchar start[2];
213 4180d05b 2004-06-17 devnull uchar length[4];
214 4180d05b 2004-06-17 devnull };
215 4180d05b 2004-06-17 devnull
216 4180d05b 2004-06-17 devnull static char*
217 4180d05b 2004-06-17 devnull dosparse(char *from, char *to, int len)
218 4180d05b 2004-06-17 devnull {
219 4180d05b 2004-06-17 devnull char c;
220 4180d05b 2004-06-17 devnull
221 4180d05b 2004-06-17 devnull memset(to, ' ', len);
222 4180d05b 2004-06-17 devnull if(from == 0)
223 4180d05b 2004-06-17 devnull return 0;
224 4180d05b 2004-06-17 devnull while(len-- > 0){
225 4180d05b 2004-06-17 devnull c = *from++;
226 4180d05b 2004-06-17 devnull if(c == '.')
227 4180d05b 2004-06-17 devnull return from;
228 4180d05b 2004-06-17 devnull if(c == 0)
229 4180d05b 2004-06-17 devnull break;
230 4180d05b 2004-06-17 devnull if(c >= 'a' && c <= 'z')
231 4180d05b 2004-06-17 devnull *to++ = c + 'A' - 'a';
232 4180d05b 2004-06-17 devnull else
233 4180d05b 2004-06-17 devnull *to++ = c;
234 4180d05b 2004-06-17 devnull }
235 4180d05b 2004-06-17 devnull return 0;
236 4180d05b 2004-06-17 devnull }
237 4180d05b 2004-06-17 devnull
238 4180d05b 2004-06-17 devnull /*
239 4180d05b 2004-06-17 devnull * return offset of first file block
240 4180d05b 2004-06-17 devnull *
241 4180d05b 2004-06-17 devnull * This is a very simplistic dos file system. It only
242 4180d05b 2004-06-17 devnull * works on floppies, only looks in the root, and only
243 4180d05b 2004-06-17 devnull * returns a pointer to the first block of a file.
244 4180d05b 2004-06-17 devnull *
245 4180d05b 2004-06-17 devnull * This exists for cpu servers that have no hard disk
246 4180d05b 2004-06-17 devnull * or nvram to store the key on.
247 4180d05b 2004-06-17 devnull *
248 4180d05b 2004-06-17 devnull * Please don't make this any smarter: it stays resident
249 4180d05b 2004-06-17 devnull * and I'ld prefer not to waste the space on something that
250 4180d05b 2004-06-17 devnull * runs only at boottime -- presotto.
251 4180d05b 2004-06-17 devnull */
252 4180d05b 2004-06-17 devnull static long
253 4180d05b 2004-06-17 devnull finddosfile(int fd, char *file)
254 4180d05b 2004-06-17 devnull {
255 4180d05b 2004-06-17 devnull uchar secbuf[512];
256 4180d05b 2004-06-17 devnull char name[8];
257 4180d05b 2004-06-17 devnull char ext[3];
258 4180d05b 2004-06-17 devnull Dosboot *b;
259 4180d05b 2004-06-17 devnull Dosdir *root, *dp;
260 4180d05b 2004-06-17 devnull int nroot, sectsize, rootoff, rootsects, n;
261 4180d05b 2004-06-17 devnull
262 4180d05b 2004-06-17 devnull /* dos'ize file name */
263 4180d05b 2004-06-17 devnull file = dosparse(file, name, 8);
264 4180d05b 2004-06-17 devnull dosparse(file, ext, 3);
265 4180d05b 2004-06-17 devnull
266 4180d05b 2004-06-17 devnull /* read boot block, check for sanity */
267 4180d05b 2004-06-17 devnull b = (Dosboot*)secbuf;
268 4180d05b 2004-06-17 devnull if(read(fd, secbuf, sizeof(secbuf)) != sizeof(secbuf))
269 4180d05b 2004-06-17 devnull return -1;
270 4180d05b 2004-06-17 devnull if(b->magic[0] != 0xEB || b->magic[1] != 0x3C || b->magic[2] != 0x90)
271 4180d05b 2004-06-17 devnull return -1;
272 4180d05b 2004-06-17 devnull sectsize = GETSHORT(b->sectsize);
273 4180d05b 2004-06-17 devnull if(sectsize != 512)
274 4180d05b 2004-06-17 devnull return -1;
275 4180d05b 2004-06-17 devnull rootoff = (GETSHORT(b->nresrv) + b->nfats*GETSHORT(b->fatsize)) * sectsize;
276 4180d05b 2004-06-17 devnull if(seek(fd, rootoff, 0) < 0)
277 4180d05b 2004-06-17 devnull return -1;
278 4180d05b 2004-06-17 devnull nroot = GETSHORT(b->rootsize);
279 4180d05b 2004-06-17 devnull rootsects = (nroot*sizeof(Dosdir)+sectsize-1)/sectsize;
280 4180d05b 2004-06-17 devnull if(rootsects <= 0 || rootsects > 64)
281 4180d05b 2004-06-17 devnull return -1;
282 4180d05b 2004-06-17 devnull
283 fa325e9b 2020-01-10 cross /*
284 4180d05b 2004-06-17 devnull * read root. it is contiguous to make stuff like
285 4180d05b 2004-06-17 devnull * this easier
286 4180d05b 2004-06-17 devnull */
287 4180d05b 2004-06-17 devnull root = malloc(rootsects*sectsize);
288 4180d05b 2004-06-17 devnull if(read(fd, root, rootsects*sectsize) != rootsects*sectsize)
289 4180d05b 2004-06-17 devnull return -1;
290 4180d05b 2004-06-17 devnull n = -1;
291 4180d05b 2004-06-17 devnull for(dp = root; dp < &root[nroot]; dp++)
292 4180d05b 2004-06-17 devnull if(memcmp(name, dp->name, 8) == 0 && memcmp(ext, dp->ext, 3) == 0){
293 4180d05b 2004-06-17 devnull n = GETSHORT(dp->start);
294 4180d05b 2004-06-17 devnull break;
295 4180d05b 2004-06-17 devnull }
296 4180d05b 2004-06-17 devnull free(root);
297 4180d05b 2004-06-17 devnull
298 4180d05b 2004-06-17 devnull if(n < 0)
299 4180d05b 2004-06-17 devnull return -1;
300 4180d05b 2004-06-17 devnull
301 4180d05b 2004-06-17 devnull /*
302 4180d05b 2004-06-17 devnull * dp->start is in cluster units, not sectors. The first
303 4180d05b 2004-06-17 devnull * cluster is cluster 2 which starts immediately after the
304 4180d05b 2004-06-17 devnull * root directory
305 4180d05b 2004-06-17 devnull */
306 4180d05b 2004-06-17 devnull return rootoff + rootsects*sectsize + (n-2)*sectsize*b->clustsize;
307 4180d05b 2004-06-17 devnull }