2002-06-23 09:54:25 +05:30
|
|
|
/* vi: set sw=4 ts=4: */
|
2006-07-12 13:26:04 +05:30
|
|
|
/*
|
2006-09-08 22:52:05 +05:30
|
|
|
* Mini sulogin implementation for busybox
|
|
|
|
*
|
2006-07-12 13:26:04 +05:30
|
|
|
* Licensed under GPLv2 or later, see file LICENSE in this tarball for details.
|
|
|
|
*/
|
|
|
|
|
2002-06-23 09:54:25 +05:30
|
|
|
#include <syslog.h>
|
|
|
|
|
|
|
|
#include "busybox.h"
|
|
|
|
|
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
#define SULOGIN_PROMPT "Give root password for system maintenance\n" \
|
2002-06-23 09:54:25 +05:30
|
|
|
"(or type Control-D for normal startup):"
|
|
|
|
|
2005-10-15 15:53:55 +05:30
|
|
|
static const char * const forbid[] = {
|
2002-06-23 09:54:25 +05:30
|
|
|
"ENV",
|
|
|
|
"BASH_ENV",
|
|
|
|
"HOME",
|
|
|
|
"IFS",
|
|
|
|
"PATH",
|
|
|
|
"SHELL",
|
|
|
|
"LD_LIBRARY_PATH",
|
|
|
|
"LD_PRELOAD",
|
|
|
|
"LD_TRACE_LOADED_OBJECTS",
|
|
|
|
"LD_BIND_NOW",
|
|
|
|
"LD_AOUT_LIBRARY_PATH",
|
|
|
|
"LD_AOUT_PRELOAD",
|
|
|
|
"LD_NOWARN",
|
|
|
|
"LD_KEEPDIR",
|
|
|
|
(char *) 0
|
|
|
|
};
|
|
|
|
|
|
|
|
|
|
|
|
|
2006-01-31 23:27:48 +05:30
|
|
|
static void catchalarm(int ATTRIBUTE_UNUSED junk)
|
2002-06-23 09:54:25 +05:30
|
|
|
{
|
|
|
|
exit(EXIT_FAILURE);
|
|
|
|
}
|
|
|
|
|
|
|
|
|
2006-03-07 02:17:33 +05:30
|
|
|
int sulogin_main(int argc, char **argv)
|
2002-06-23 09:54:25 +05:30
|
|
|
{
|
|
|
|
char *cp;
|
|
|
|
int timeout = 0;
|
2006-09-08 22:52:05 +05:30
|
|
|
char *timeout_arg;
|
|
|
|
const char * const *p;
|
|
|
|
struct passwd *pwd;
|
|
|
|
struct spwd *spwd;
|
2006-01-25 05:38:53 +05:30
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
if (ENABLE_FEATURE_SYSLOG) {
|
|
|
|
logmode = LOGMODE_BOTH;
|
|
|
|
openlog(bb_applet_name, LOG_CONS | LOG_NOWAIT, LOG_AUTH);
|
|
|
|
}
|
2006-01-25 05:38:53 +05:30
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
if (bb_getopt_ulflags (argc, argv, "t:", &timeout_arg)) {
|
|
|
|
if (safe_strtoi(timeout_arg, &timeout)) {
|
|
|
|
timeout = 0;
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
|
|
|
|
if (argv[optind]) {
|
|
|
|
close(0);
|
|
|
|
close(1);
|
|
|
|
close(2);
|
|
|
|
dup(xopen(argv[optind], O_RDWR));
|
|
|
|
dup(0);
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
|
|
|
|
if (!isatty(0) || !isatty(1) || !isatty(2)) {
|
|
|
|
bb_error_msg_and_die("Not a tty");
|
2006-09-07 21:50:03 +05:30
|
|
|
}
|
2002-06-23 09:54:25 +05:30
|
|
|
|
|
|
|
/* Clear out anything dangerous from the environment */
|
|
|
|
for (p = forbid; *p; p++)
|
|
|
|
unsetenv(*p);
|
|
|
|
|
|
|
|
signal(SIGALRM, catchalarm);
|
2006-09-08 22:52:05 +05:30
|
|
|
|
|
|
|
if (!(pwd = getpwuid(0))) {
|
|
|
|
goto AUTH_ERROR;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (ENABLE_FEATURE_SHADOWPASSWDS) {
|
|
|
|
if (!(spwd = getspnam(pwd->pw_name))) {
|
|
|
|
goto AUTH_ERROR;
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
pwd->pw_passwd = spwd->sp_pwdp;
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
|
2002-06-23 09:54:25 +05:30
|
|
|
while (1) {
|
2006-09-08 22:52:05 +05:30
|
|
|
/* cp points to a static buffer that is zeroed every time */
|
2004-05-01 06:57:30 +05:30
|
|
|
cp = bb_askpass(timeout, SULOGIN_PROMPT);
|
2002-06-23 09:54:25 +05:30
|
|
|
if (!cp || !*cp) {
|
2006-09-08 22:52:05 +05:30
|
|
|
bb_info_msg("Normal startup");
|
2002-06-23 09:54:25 +05:30
|
|
|
exit(EXIT_SUCCESS);
|
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
if (strcmp(pw_encrypt(cp, pwd->pw_passwd), pwd->pw_passwd) == 0) {
|
2002-06-23 09:54:25 +05:30
|
|
|
break;
|
|
|
|
}
|
2006-01-07 02:29:09 +05:30
|
|
|
bb_do_delay(FAIL_DELAY);
|
2006-09-08 22:52:05 +05:30
|
|
|
bb_error_msg("Login incorrect");
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|
2006-09-08 22:52:05 +05:30
|
|
|
memset(cp, 0, strlen(cp));
|
2002-06-23 09:54:25 +05:30
|
|
|
signal(SIGALRM, SIG_DFL);
|
2005-05-03 11:55:50 +05:30
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
bb_info_msg("System Maintenance Mode");
|
2005-05-03 11:55:50 +05:30
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
USE_SELINUX(renew_current_security_context());
|
2005-05-03 11:55:50 +05:30
|
|
|
|
2006-09-08 22:52:05 +05:30
|
|
|
run_shell(pwd->pw_shell, 1, 0, 0);
|
|
|
|
/* never returns */
|
|
|
|
AUTH_ERROR:
|
|
|
|
bb_error_msg_and_die("No password entry for `root'");
|
2002-06-23 09:54:25 +05:30
|
|
|
}
|