* Copyright (c) 1983 Regents of the University of California.
* Redistribution and use in source and binary forms, with or without
* modification, are permitted provided that the following conditions
* 1. Redistributions of source code must retain the above copyright
* notice, this list of conditions and the following disclaimer.
* 2. Redistributions in binary form must reproduce the above copyright
* notice, this list of conditions and the following disclaimer in the
* documentation and/or other materials provided with the distribution.
* 3. All advertising materials mentioning features or use of this software
* must display the following acknowledgement:
* This product includes software developed by the University of
* California, Berkeley and its contributors.
* 4. Neither the name of the University nor the names of its contributors
* may be used to endorse or promote products derived from this software
* without specific prior written permission.
* THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
* ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
* IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
* ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
* FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
* DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
* OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
* HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
* LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
* OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
static char Xsccsid
[] = "derived from @(#)rcmd.c 5.17 (Berkeley) 6/27/88";
static char sccsid
[] = "@(#)kcmd.c 5.6 (Berkeley) 6/1/90";
* $Source: /mit/kerberos/src/appl/bsd/RCS/kcmd.c,v $
* $Header: kcmd.c,v 4.16 89/05/17 10:54:31 jtkohl Exp $
* static char *rcsid_kcmd_c =
* "$Header: kcmd.c,v 4.16 89/05/17 10:54:31 jtkohl Exp $";
#include <kerberosIV/des.h>
#include <kerberosIV/krb.h>
#include <kerberosIV/kparse.h>
#define MAXHOSTNAMELEN 64
char *index(), *malloc(), *krb_realmofhost();
#define START_PORT 5120 /* arbitrary */
kcmd(sock
, ahost
, rport
, locuser
, remuser
, cmd
, fd2p
, ticket
, service
, realm
,
cred
, schedule
, msg_data
, laddr
, faddr
, authopts
)
char *locuser
, *remuser
, *cmd
;
struct sockaddr_in
*laddr
, *faddr
;
struct sockaddr_in sin
, from
;
int lport
= IPPORT_RESERVED
- 1;
hp
= gethostbyname(*ahost
);
/* fprintf(stderr, "%s: unknown host\n", *ahost); */
host_save
= malloc(strlen(hp
->h_name
) + 1);
strcpy(host_save
, hp
->h_name
);
/* If realm is null, look up from table */
if ((realm
== NULL
) || (realm
[0] == '\0')) {
realm
= krb_realmofhost(host_save
);
oldmask
= sigblock(sigmask(SIGURG
));
"kcmd(socket): All ports in use\n");
sin
.sin_family
= hp
->h_addrtype
;
#if defined(ultrix) || defined(sun)
bcopy(hp
->h_addr
, (caddr_t
)&sin
.sin_addr
, hp
->h_length
);
bcopy(hp
->h_addr_list
[0], (caddr_t
)&sin
.sin_addr
, hp
->h_length
);
#endif /* defined(ultrix) || defined(sun) */
if (connect(s
, (struct sockaddr
*)&sin
, sizeof (sin
)) >= 0)
if (errno
== EADDRINUSE
) {
* don't wait very long for Kerberos rcmd.
if (errno
== ECONNREFUSED
&& timo
<= 4) {
/* sleep(timo); don't wait at all here */
#if !(defined(ultrix) || defined(sun))
if (hp
->h_addr_list
[1] != NULL
) {
"kcmd: connect to address %s: ",
inet_ntoa(sin
.sin_addr
));
bcopy(hp
->h_addr_list
[0], (caddr_t
)&sin
.sin_addr
,
fprintf(stderr
, "Trying %s...\n",
inet_ntoa(sin
.sin_addr
));
#endif /* !(defined(ultrix) || defined(sun)) */
if (errno
!= ECONNREFUSED
)
int s2
= getport(&lport
), s3
;
(void) sprintf(num
, "%d", lport
);
if (write(s
, num
, strlen(num
)+1) != strlen(num
)+1) {
perror("kcmd(write): setting up stderr");
s3
= accept(s2
, (struct sockaddr
*)&from
, &len
);
from
.sin_port
= ntohs((u_short
)from
.sin_port
);
if (from
.sin_family
!= AF_INET
||
from
.sin_port
>= IPPORT_RESERVED
) {
"kcmd(socket): protocol failure in circuit setup.\n");
* Kerberos-authenticated service. Don't have to send locuser,
* since its already in the ticket, and we'll extract it on
/* (void) write(s, locuser, strlen(locuser)+1); */
/* set up the needed stuff for mutual auth, but only if necessary */
if (authopts
& KOPT_DO_MUTUAL
) {
sin_len
= sizeof (struct sockaddr_in
);
if (getsockname(s
, (struct sockaddr
*)laddr
, &sin_len
) < 0) {
perror("kcmd(getsockname)");
if ((status
= krb_sendauth(authopts
, s
, ticket
, service
, *ahost
,
realm
, (unsigned long) getpid(), msg_data
,
"KCMDV0.1")) != KSUCCESS
)
(void) write(s
, remuser
, strlen(remuser
)+1);
(void) write(s
, cmd
, strlen(cmd
)+1);
if ((rc
=read(s
, &c
, 1)) != 1) {
fprintf(stderr
,"kcmd: bad connection with remote host\n");
while (read(s
, &c
, 1) == 1) {
sin
.sin_family
= AF_INET
;
sin
.sin_addr
.s_addr
= INADDR_ANY
;
s
= socket(AF_INET
, SOCK_STREAM
, 0);
sin
.sin_port
= htons((u_short
)*alport
);
if (bind(s
, (struct sockaddr
*)&sin
, sizeof (sin
)) >= 0)
if (errno
!= EADDRINUSE
) {
if (*alport
== IPPORT_RESERVED
/2) {
if (*alport
== IPPORT_RESERVED
) {
errno
= EAGAIN
; /* close */