2002-06-23 09:54:25 +05:30
|
|
|
/* vi: set sw=4 ts=4: */
|
|
|
|
/*
|
|
|
|
* vlock implementation for busybox
|
|
|
|
*
|
|
|
|
* Copyright (C) 2000 by spoon <spoon@ix.netcom.com>
|
|
|
|
* Written by spoon <spon@ix.netcom.com>
|
|
|
|
*
|
2010-08-16 23:44:46 +05:30
|
|
|
* Licensed under GPLv2 or later, see file LICENSE in this source tree.
|
2002-06-23 09:54:25 +05:30
|
|
|
*/
|
|
|
|
|
|
|
|
/* Shoutz to Michael K. Johnson <johnsonm@redhat.com>, author of the
|
|
|
|
* original vlock. I snagged a bunch of his code to write this
|
|
|
|
* minimalistic vlock.
|
|
|
|
*/
|
|
|
|
/* Fixed by Erik Andersen to do passwords the tinylogin way...
|
2015-10-19 04:50:36 +05:30
|
|
|
* It now works with md5, sha1, etc passwords.
|
|
|
|
*/
|
|
|
|
//config:config VLOCK
|
2017-07-19 01:31:24 +05:30
|
|
|
//config: bool "vlock (17 kb)"
|
2015-10-19 04:50:36 +05:30
|
|
|
//config: default y
|
|
|
|
//config: help
|
2017-07-21 13:20:55 +05:30
|
|
|
//config: Build the "vlock" applet which allows you to lock (virtual) terminals.
|
2015-10-19 04:50:36 +05:30
|
|
|
//config:
|
2017-07-27 14:23:09 +05:30
|
|
|
//config: Note that busybox binary must be setuid root for this applet to
|
2017-07-21 13:20:55 +05:30
|
|
|
//config: work properly.
|
2015-10-19 04:50:36 +05:30
|
|
|
|
|
|
|
//applet:/* Needs to be run by root or be suid root - needs to change uid and gid: */
|
|
|
|
//applet:IF_VLOCK(APPLET(vlock, BB_DIR_USR_BIN, BB_SUID_REQUIRE))
|
|
|
|
|
|
|
|
//kbuild:lib-$(CONFIG_VLOCK) += vlock.o
|
2002-06-23 09:54:25 +05:30
|
|
|
|
2011-04-02 02:26:30 +05:30
|
|
|
//usage:#define vlock_trivial_usage
|
|
|
|
//usage: "[-a]"
|
|
|
|
//usage:#define vlock_full_usage "\n\n"
|
|
|
|
//usage: "Lock a virtual terminal. A password is required to unlock.\n"
|
|
|
|
//usage: "\n -a Lock all VTs"
|
|
|
|
|
2008-03-13 04:43:50 +05:30
|
|
|
#include "libbb.h"
|
2002-06-23 09:54:25 +05:30
|
|
|
|
2010-07-29 07:59:52 +05:30
|
|
|
#ifdef __linux__
|
|
|
|
#include <sys/vt.h>
|
|
|
|
|
2008-07-05 14:48:54 +05:30
|
|
|
static void release_vt(int signo UNUSED_PARAM)
|
2002-06-23 09:54:25 +05:30
|
|
|
{
|
2008-03-13 04:43:50 +05:30
|
|
|
/* If -a, param is 0, which means:
|
|
|
|
* "no, kernel, we don't allow console switch away from us!" */
|
|
|
|
ioctl(STDIN_FILENO, VT_RELDISP, (unsigned long) !option_mask32);
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
|
|
|
|
2008-07-05 14:48:54 +05:30
|
|
|
static void acquire_vt(int signo UNUSED_PARAM)
|
2002-06-23 09:54:25 +05:30
|
|
|
{
|
2008-03-13 04:43:50 +05:30
|
|
|
/* ACK to kernel that switch to console is successful */
|
|
|
|
ioctl(STDIN_FILENO, VT_RELDISP, VT_ACKACQ);
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2010-07-29 07:59:52 +05:30
|
|
|
#endif
|
2002-06-23 09:54:25 +05:30
|
|
|
|
2007-10-11 15:35:36 +05:30
|
|
|
int vlock_main(int argc, char **argv) MAIN_EXTERNALLY_VISIBLE;
|
2008-07-05 14:48:54 +05:30
|
|
|
int vlock_main(int argc UNUSED_PARAM, char **argv)
|
2002-06-23 09:54:25 +05:30
|
|
|
{
|
2010-07-29 07:59:52 +05:30
|
|
|
#ifdef __linux__
|
2002-06-23 09:54:25 +05:30
|
|
|
struct vt_mode vtm;
|
2010-07-29 07:59:52 +05:30
|
|
|
struct vt_mode ovtm;
|
|
|
|
#endif
|
2002-06-23 09:54:25 +05:30
|
|
|
struct termios term;
|
2007-09-27 15:42:02 +05:30
|
|
|
struct termios oterm;
|
|
|
|
struct passwd *pw;
|
2008-03-13 04:43:50 +05:30
|
|
|
|
2008-12-03 04:26:59 +05:30
|
|
|
pw = xgetpwuid(getuid());
|
2017-08-09 01:25:02 +05:30
|
|
|
getopt32(argv, "^" "a" "\0" "=0"/* no args!*/);
|
2008-03-13 04:43:50 +05:30
|
|
|
|
|
|
|
/* Ignore some signals so that we don't get killed by them */
|
|
|
|
bb_signals(0
|
|
|
|
+ (1 << SIGTSTP)
|
|
|
|
+ (1 << SIGTTIN)
|
|
|
|
+ (1 << SIGTTOU)
|
|
|
|
+ (1 << SIGHUP )
|
|
|
|
+ (1 << SIGCHLD) /* paranoia :) */
|
|
|
|
+ (1 << SIGQUIT)
|
|
|
|
+ (1 << SIGINT )
|
|
|
|
, SIG_IGN);
|
|
|
|
|
2010-07-29 07:59:52 +05:30
|
|
|
#ifdef __linux__
|
2008-03-13 04:43:50 +05:30
|
|
|
/* We will use SIGUSRx for console switch control: */
|
|
|
|
/* 1: set handlers */
|
2008-03-13 04:49:35 +05:30
|
|
|
signal_SA_RESTART_empty_mask(SIGUSR1, release_vt);
|
|
|
|
signal_SA_RESTART_empty_mask(SIGUSR2, acquire_vt);
|
2008-03-13 04:43:50 +05:30
|
|
|
/* 2: unmask them */
|
2008-03-13 04:49:35 +05:30
|
|
|
sig_unblock(SIGUSR1);
|
|
|
|
sig_unblock(SIGUSR2);
|
2010-07-29 07:59:52 +05:30
|
|
|
#endif
|
2008-03-13 04:43:50 +05:30
|
|
|
|
|
|
|
/* Revert stdin/out to our controlling tty
|
|
|
|
* (or die if we have none) */
|
|
|
|
xmove_fd(xopen(CURRENT_TTY, O_RDWR), STDIN_FILENO);
|
|
|
|
xdup2(STDIN_FILENO, STDOUT_FILENO);
|
|
|
|
|
2010-07-29 07:59:52 +05:30
|
|
|
#ifdef __linux__
|
2008-03-13 04:43:50 +05:30
|
|
|
xioctl(STDIN_FILENO, VT_GETMODE, &vtm);
|
2002-06-23 09:54:25 +05:30
|
|
|
ovtm = vtm;
|
2008-03-13 04:43:50 +05:30
|
|
|
/* "console switches are controlled by us, not kernel!" */
|
2002-06-23 09:54:25 +05:30
|
|
|
vtm.mode = VT_PROCESS;
|
|
|
|
vtm.relsig = SIGUSR1;
|
|
|
|
vtm.acqsig = SIGUSR2;
|
2008-03-13 04:43:50 +05:30
|
|
|
ioctl(STDIN_FILENO, VT_SETMODE, &vtm);
|
2010-07-29 07:59:52 +05:30
|
|
|
#endif
|
2002-06-23 09:54:25 +05:30
|
|
|
|
2017-01-11 20:47:59 +05:30
|
|
|
//TODO: use set_termios_to_raw()
|
2002-06-23 09:54:25 +05:30
|
|
|
tcgetattr(STDIN_FILENO, &oterm);
|
|
|
|
term = oterm;
|
2017-01-11 20:47:59 +05:30
|
|
|
term.c_iflag |= IGNBRK; /* ignore serial break (why? VTs don't have breaks, right?) */
|
|
|
|
term.c_iflag &= ~BRKINT; /* redundant? "dont translate break to SIGINT" */
|
|
|
|
term.c_lflag &= ~(ISIG | ECHO | ECHOCTL); /* ignore ^C ^Z, echo off */
|
2008-11-05 18:50:58 +05:30
|
|
|
tcsetattr_stdin_TCSANOW(&term);
|
2002-06-23 09:54:25 +05:30
|
|
|
|
2011-03-02 08:37:14 +05:30
|
|
|
while (1) {
|
2007-09-27 15:42:02 +05:30
|
|
|
printf("Virtual console%s locked by %s.\n",
|
2011-03-02 08:37:14 +05:30
|
|
|
/* "s" if -a, else "": */ "s" + !option_mask32,
|
|
|
|
pw->pw_name
|
|
|
|
);
|
2013-11-19 17:39:06 +05:30
|
|
|
if (ask_and_check_password(pw) > 0) {
|
2005-12-19 08:20:10 +05:30
|
|
|
break;
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2011-03-09 01:37:05 +05:30
|
|
|
bb_do_delay(LOGIN_FAIL_DELAY);
|
|
|
|
puts("Incorrect password");
|
2011-03-02 08:37:14 +05:30
|
|
|
}
|
2007-09-27 15:42:02 +05:30
|
|
|
|
2010-07-29 07:59:52 +05:30
|
|
|
#ifdef __linux__
|
2008-03-13 04:43:50 +05:30
|
|
|
ioctl(STDIN_FILENO, VT_SETMODE, &ovtm);
|
2010-07-29 07:59:52 +05:30
|
|
|
#endif
|
2008-11-05 18:50:58 +05:30
|
|
|
tcsetattr_stdin_TCSANOW(&oterm);
|
2008-05-19 14:59:47 +05:30
|
|
|
fflush_stdout_and_exit(EXIT_SUCCESS);
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|