2007-12-30 17:41:49 +01:00
|
|
|
/***************************************************************************
|
|
|
|
|
|
|
|
c_crypt.c
|
|
|
|
|
2018-02-12 02:53:46 +01:00
|
|
|
(c) 2000-2017 Benoît Minisini <g4mba5@gmail.com>
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
This program is free software; you can redistribute it and/or modify
|
|
|
|
it under the terms of the GNU General Public License as published by
|
2009-08-17 12:41:51 +02:00
|
|
|
the Free Software Foundation; either version 2, or (at your option)
|
2007-12-30 17:41:49 +01:00
|
|
|
any later version.
|
|
|
|
|
|
|
|
This program is distributed in the hope that it will be useful,
|
|
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
GNU General Public License for more details.
|
|
|
|
|
|
|
|
You should have received a copy of the GNU General Public License
|
|
|
|
along with this program; if not, write to the Free Software
|
2011-06-03 02:51:09 +02:00
|
|
|
Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston,
|
2011-12-31 03:39:20 +01:00
|
|
|
MA 02110-1301, USA.
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
***************************************************************************/
|
|
|
|
|
|
|
|
#define __C_CRYPT_C
|
|
|
|
|
2018-08-29 13:41:57 +02:00
|
|
|
#include "gb_common.h"
|
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
#include <stdlib.h>
|
2016-01-11 00:20:57 +01:00
|
|
|
#include <unistd.h>
|
2007-12-30 17:41:49 +01:00
|
|
|
#include <errno.h>
|
|
|
|
#include <time.h>
|
|
|
|
|
|
|
|
#include "c_crypt.h"
|
|
|
|
#include "main.h"
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
enum { USE_DES, USE_MD5, USE_SHA256, USE_SHA512 };
|
2007-12-30 17:41:49 +01:00
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
static char *do_crypt(const char *passwd, const char *prefix, int mode)
|
2007-12-30 17:41:49 +01:00
|
|
|
{
|
|
|
|
static char key_table[65] = "0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcedefghijklmnopqrstuvwxyz./";
|
|
|
|
static bool init = FALSE;
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
int i, n;
|
2013-12-27 01:24:22 +01:00
|
|
|
char key[18];
|
2007-12-30 17:41:49 +01:00
|
|
|
char *result;
|
2013-12-27 01:24:22 +01:00
|
|
|
char errormsg[64];
|
|
|
|
|
|
|
|
switch(mode)
|
|
|
|
{
|
|
|
|
case USE_MD5:
|
|
|
|
strcpy(key, "$1$");
|
|
|
|
n = 8;
|
|
|
|
break;
|
|
|
|
case USE_SHA256:
|
|
|
|
strcpy(key, "$5$");
|
|
|
|
n = 13;
|
|
|
|
break;
|
|
|
|
case USE_SHA512:
|
|
|
|
strcpy(key, "$6$");
|
|
|
|
n = 13;
|
|
|
|
break;
|
|
|
|
case USE_DES:
|
|
|
|
default:
|
|
|
|
n = 2;
|
|
|
|
}
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
if (prefix)
|
|
|
|
{
|
|
|
|
if (strlen(prefix) != n)
|
2013-12-27 01:24:22 +01:00
|
|
|
{
|
|
|
|
snprintf(errormsg, sizeof(errormsg), "must be %d characters long", n);
|
2007-12-30 17:41:49 +01:00
|
|
|
goto __BAD_PREFIX;
|
|
|
|
}
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
for (i = 0; i < n; i++)
|
|
|
|
{
|
|
|
|
if (strchr(key_table, prefix[i]) == NULL)
|
|
|
|
{
|
2013-12-27 01:24:22 +01:00
|
|
|
snprintf(errormsg, sizeof(errormsg), "character '%c' is not allowed" , prefix[i]);
|
2007-12-30 17:41:49 +01:00
|
|
|
goto __BAD_PREFIX;
|
|
|
|
}
|
|
|
|
}
|
2013-12-27 01:24:22 +01:00
|
|
|
|
|
|
|
if (mode == USE_DES)
|
2007-12-30 17:41:49 +01:00
|
|
|
strcpy(key, prefix);
|
2013-12-27 01:24:22 +01:00
|
|
|
else
|
|
|
|
strcat(key, prefix);
|
2007-12-30 17:41:49 +01:00
|
|
|
}
|
|
|
|
else
|
2013-12-27 01:24:22 +01:00
|
|
|
{
|
2007-12-30 17:41:49 +01:00
|
|
|
if (!init)
|
|
|
|
{
|
|
|
|
srandom((unsigned int)time(NULL));
|
|
|
|
init = TRUE;
|
|
|
|
}
|
2013-12-27 01:24:22 +01:00
|
|
|
|
|
|
|
if (mode == USE_DES)
|
|
|
|
{
|
|
|
|
for (i = 0; i < 2; i++)
|
|
|
|
key[i] = key_table[(int)((random() / (RAND_MAX + 1.0)) * sizeof(key_table))];
|
|
|
|
key[2] = 0;
|
|
|
|
}
|
|
|
|
else if (mode == USE_MD5)
|
2007-12-30 17:41:49 +01:00
|
|
|
{
|
|
|
|
for (i = 0; i < 8; i++)
|
|
|
|
key[i + 3] = key_table[(int)((random() / (RAND_MAX + 1.0)) * sizeof(key_table))];
|
|
|
|
key[11] = '$';
|
|
|
|
key[12] = 0;
|
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2013-12-27 01:24:22 +01:00
|
|
|
for (i = 0; i < 13; i++)
|
|
|
|
key[i + 3] = key_table[(int)((random() / (RAND_MAX + 1.0)) * sizeof(key_table))];
|
|
|
|
key[16] = '$';
|
|
|
|
key[17] = 0;
|
2007-12-30 17:41:49 +01:00
|
|
|
}
|
|
|
|
}
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
result = crypt(passwd, key);
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
if (!result && errno == ENOSYS)
|
|
|
|
GB.Error("Crypting is not supported on this system");
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
return result;
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
__BAD_PREFIX:
|
|
|
|
|
|
|
|
GB.Error("Bad prefix, &1",errormsg);
|
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
|
|
|
|
static bool check_crypt(const char *passwd, const char *crypted)
|
|
|
|
{
|
|
|
|
char *result = crypt(passwd, crypted);
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
if (!result && errno == ENOSYS)
|
|
|
|
GB.Error("Crypting is not supported on this system");
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
if (!result)
|
|
|
|
return TRUE;
|
|
|
|
else
|
2012-07-13 01:34:14 +02:00
|
|
|
return strcmp(result, crypted) != 0;
|
2007-12-30 17:41:49 +01:00
|
|
|
}
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
BEGIN_METHOD(CCRYPT_call_des, GB_STRING password; GB_STRING key)
|
|
|
|
|
|
|
|
char *result;
|
|
|
|
|
|
|
|
result = do_crypt(GB.ToZeroString(ARG(password)), MISSING(key) ? NULL : GB.ToZeroString(ARG(key)), USE_DES);
|
|
|
|
if (result)
|
|
|
|
GB.ReturnNewZeroString(result);
|
|
|
|
|
|
|
|
END_METHOD
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
BEGIN_METHOD(CCRYPT_call_md5, GB_STRING password; GB_STRING key)
|
|
|
|
|
|
|
|
char *result;
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
result = do_crypt(GB.ToZeroString(ARG(password)), MISSING(key) ? NULL : GB.ToZeroString(ARG(key)), USE_MD5);
|
2007-12-30 17:41:49 +01:00
|
|
|
if (result)
|
|
|
|
GB.ReturnNewZeroString(result);
|
|
|
|
|
|
|
|
END_METHOD
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
BEGIN_METHOD(CCRYPT_call_sha256, GB_STRING password; GB_STRING key)
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
char *result;
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
result = do_crypt(GB.ToZeroString(ARG(password)), MISSING(key) ? NULL : GB.ToZeroString(ARG(key)), USE_SHA256);
|
2007-12-30 17:41:49 +01:00
|
|
|
if (result)
|
|
|
|
GB.ReturnNewZeroString(result);
|
|
|
|
|
|
|
|
END_METHOD
|
|
|
|
|
2013-12-27 01:24:22 +01:00
|
|
|
BEGIN_METHOD(CCRYPT_call_sha512, GB_STRING password; GB_STRING key)
|
|
|
|
|
|
|
|
char *result;
|
|
|
|
|
|
|
|
result = do_crypt(GB.ToZeroString(ARG(password)), MISSING(key) ? NULL : GB.ToZeroString(ARG(key)), USE_SHA512);
|
|
|
|
if (result)
|
|
|
|
GB.ReturnNewZeroString(result);
|
|
|
|
|
|
|
|
END_METHOD
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
BEGIN_METHOD(CCRYPT_check, GB_STRING password; GB_STRING crypt)
|
|
|
|
|
|
|
|
GB.ReturnBoolean(check_crypt(GB.ToZeroString(ARG(password)), GB.ToZeroString(ARG(crypt))));
|
|
|
|
|
|
|
|
END_METHOD
|
|
|
|
|
|
|
|
GB_DESC CCryptDesc[] =
|
|
|
|
{
|
|
|
|
GB_DECLARE("Crypt", 0), GB_VIRTUAL_CLASS(),
|
2013-12-27 01:24:22 +01:00
|
|
|
|
2007-12-30 17:41:49 +01:00
|
|
|
GB_STATIC_METHOD("_call", "s", CCRYPT_call_md5, "(Password)s[(Prefix)s]"),
|
|
|
|
GB_STATIC_METHOD("Check", "b", CCRYPT_check, "(Password)s(Crypt)s"),
|
|
|
|
GB_STATIC_METHOD("DES", "s", CCRYPT_call_des, "(Password)s[(Prefix)s]"),
|
2013-12-27 01:24:22 +01:00
|
|
|
GB_STATIC_METHOD("MD5", "s", CCRYPT_call_md5, "(Password)s[(Prefix)s]"),
|
|
|
|
GB_STATIC_METHOD("SHA256", "s", CCRYPT_call_sha256, "(Password)s[(Prefix)s]"),
|
|
|
|
GB_STATIC_METHOD("SHA512", "s", CCRYPT_call_sha512, "(Password)s[(Prefix)s]"),
|
2007-12-30 17:41:49 +01:00
|
|
|
|
|
|
|
GB_END_DECLARE
|
|
|
|
};
|