Several people have spotted an uninitialised structure member leading to a
[u/mdw/putty] / unix / uxstore.c
CommitLineData
1709795f 1/*
2 * uxstore.c: Unix-specific implementation of the interface defined
3 * in storage.h.
4 */
5
6#include <stdio.h>
7#include <stdlib.h>
3f935d5b 8#include <string.h>
8dacc30e 9#include <assert.h>
3f935d5b 10#include <errno.h>
0ac15bdc 11#include <ctype.h>
4afa6d82 12#include <limits.h>
c5e438ec 13#include <unistd.h>
14#include <fcntl.h>
8dacc30e 15#include <dirent.h>
c5e438ec 16#include <sys/stat.h>
17#include <sys/types.h>
c18ed097 18#include <pwd.h>
1709795f 19#include "putty.h"
20#include "storage.h"
0ac15bdc 21#include "tree234.h"
1709795f 22
4afa6d82 23#ifdef PATH_MAX
24#define FNLEN PATH_MAX
25#else
26#define FNLEN 1024 /* XXX */
27#endif
28
8dacc30e 29enum {
be57bcef 30 INDEX_DIR, INDEX_HOSTKEYS, INDEX_HOSTKEYS_TMP, INDEX_RANDSEED,
8dacc30e 31 INDEX_SESSIONDIR, INDEX_SESSION,
32};
33
34static const char hex[16] = "0123456789ABCDEF";
35
36static char *mungestr(const char *in)
37{
38 char *out, *ret;
39
797f6ff3 40 if (!in || !*in)
8dacc30e 41 in = "Default Settings";
42
43 ret = out = snewn(3*strlen(in)+1, char);
44
45 while (*in) {
46 /*
47 * There are remarkably few punctuation characters that
48 * aren't shell-special in some way or likely to be used as
49 * separators in some file format or another! Hence we use
50 * opt-in for safe characters rather than opt-out for
51 * specific unsafe ones...
52 */
53 if (*in!='+' && *in!='-' && *in!='.' && *in!='@' && *in!='_' &&
54 !(*in >= '0' && *in <= '9') &&
55 !(*in >= 'A' && *in <= 'Z') &&
56 !(*in >= 'a' && *in <= 'z')) {
57 *out++ = '%';
58 *out++ = hex[((unsigned char) *in) >> 4];
59 *out++ = hex[((unsigned char) *in) & 15];
60 } else
61 *out++ = *in;
62 in++;
63 }
64 *out = '\0';
65 return ret;
66}
67
68static char *unmungestr(const char *in)
69{
70 char *out, *ret;
71 out = ret = snewn(strlen(in)+1, char);
72 while (*in) {
73 if (*in == '%' && in[1] && in[2]) {
74 int i, j;
75
76 i = in[1] - '0';
77 i -= (i > 9 ? 7 : 0);
78 j = in[2] - '0';
79 j -= (j > 9 ? 7 : 0);
80
81 *out++ = (i << 4) + j;
82 in += 3;
83 } else {
84 *out++ = *in++;
85 }
86 }
87 *out = '\0';
88 return ret;
89}
90
c18ed097 91static char *make_filename(int index, const char *subname)
8dacc30e 92{
c18ed097 93 char *env, *tmp, *ret;
94
95 /*
96 * Allow override of the PuTTY configuration location, and of
97 * specific subparts of it, by means of environment variables.
98 */
99 if (index == INDEX_DIR) {
100 struct passwd *pwd;
101
102 env = getenv("PUTTYDIR");
103 if (env)
104 return dupstr(env);
105 env = getenv("HOME");
106 if (env)
107 return dupprintf("%s/.putty", env);
108 pwd = getpwuid(getuid());
109 if (pwd && pwd->pw_dir)
110 return dupprintf("%s/.putty", pwd->pw_dir);
111 return dupstr("/.putty");
112 }
113 if (index == INDEX_SESSIONDIR) {
114 env = getenv("PUTTYSESSIONS");
115 if (env)
116 return dupstr(env);
117 tmp = make_filename(INDEX_DIR, NULL);
118 ret = dupprintf("%s/sessions", tmp);
119 sfree(tmp);
120 return ret;
121 }
8dacc30e 122 if (index == INDEX_SESSION) {
123 char *munged = mungestr(subname);
c18ed097 124 tmp = make_filename(INDEX_SESSIONDIR, NULL);
125 ret = dupprintf("%s/%s", tmp, munged);
126 sfree(tmp);
127 sfree(munged);
128 return ret;
129 }
130 if (index == INDEX_HOSTKEYS) {
131 env = getenv("PUTTYSSHHOSTKEYS");
132 if (env)
133 return dupstr(env);
134 tmp = make_filename(INDEX_DIR, NULL);
135 ret = dupprintf("%s/sshhostkeys", tmp);
136 sfree(tmp);
137 return ret;
138 }
139 if (index == INDEX_HOSTKEYS_TMP) {
140 tmp = make_filename(INDEX_HOSTKEYS, NULL);
141 ret = dupprintf("%s.tmp", tmp);
142 sfree(tmp);
143 return ret;
144 }
145 if (index == INDEX_RANDSEED) {
146 env = getenv("PUTTYRANDOMSEED");
147 if (env)
148 return dupstr(env);
149 tmp = make_filename(INDEX_DIR, NULL);
150 ret = dupprintf("%s/randomseed", tmp);
151 sfree(tmp);
152 return ret;
8dacc30e 153 }
c18ed097 154 tmp = make_filename(INDEX_DIR, NULL);
155 ret = dupprintf("%s/ERROR", tmp);
156 sfree(tmp);
157 return ret;
8dacc30e 158}
159
3f935d5b 160void *open_settings_w(const char *sessionname, char **errmsg)
1709795f 161{
c18ed097 162 char *filename;
8dacc30e 163 FILE *fp;
164
3f935d5b 165 *errmsg = NULL;
166
8dacc30e 167 /*
3f935d5b 168 * Start by making sure the .putty directory and its sessions
169 * subdir actually exist. Ignore error returns from mkdir since
170 * they're perfectly likely to be `already exists', and any
171 * other error will trip us up later on so there's no real need
172 * to catch it now.
8dacc30e 173 */
c18ed097 174 filename = make_filename(INDEX_SESSIONDIR, NULL);
0e27cb60 175 if (mkdir(filename, 0700) != 0) {
c18ed097 176 char *filename2 = make_filename(INDEX_DIR, NULL);
177 mkdir(filename2, 0700);
178 sfree(filename2);
179 mkdir(filename, 0700);
180 }
181 sfree(filename);
8dacc30e 182
c18ed097 183 filename = make_filename(INDEX_SESSION, sessionname);
8dacc30e 184 fp = fopen(filename, "w");
3f935d5b 185 if (!fp) {
186 *errmsg = dupprintf("Unable to create %s: %s",
187 filename, strerror(errno));
c18ed097 188 sfree(filename);
3f935d5b 189 return NULL; /* can't open */
190 }
c18ed097 191 sfree(filename);
8dacc30e 192 return fp;
1709795f 193}
194
c85623f9 195void write_setting_s(void *handle, const char *key, const char *value)
1709795f 196{
8dacc30e 197 FILE *fp = (FILE *)handle;
198 fprintf(fp, "%s=%s\n", key, value);
1709795f 199}
200
c85623f9 201void write_setting_i(void *handle, const char *key, int value)
1709795f 202{
8dacc30e 203 FILE *fp = (FILE *)handle;
204 fprintf(fp, "%s=%d\n", key, value);
1709795f 205}
206
207void close_settings_w(void *handle)
208{
8dacc30e 209 FILE *fp = (FILE *)handle;
210 fclose(fp);
1709795f 211}
212
faec60ed 213/*
214 * Reading settings, for the moment, is done by retrieving X
215 * resources from the X display. When we introduce disk files, I
216 * think what will happen is that the X resources will override
217 * PuTTY's inbuilt defaults, but that the disk files will then
218 * override those. This isn't optimal, but it's the best I can
219 * immediately work out.
e50f98bc 220 * FIXME: the above comment is a bit out of date. Did it happen?
faec60ed 221 */
222
8dacc30e 223struct keyval {
c85623f9 224 const char *key;
225 const char *value;
0ac15bdc 226};
227
228static tree234 *xrmtree = NULL;
229
8dacc30e 230int keycmp(void *av, void *bv)
0ac15bdc 231{
8dacc30e 232 struct keyval *a = (struct keyval *)av;
233 struct keyval *b = (struct keyval *)bv;
0ac15bdc 234 return strcmp(a->key, b->key);
235}
236
237void provide_xrm_string(char *string)
238{
c85623f9 239 char *p, *q, *key;
8dacc30e 240 struct keyval *xrms, *ret;
0ac15bdc 241
242 p = q = strchr(string, ':');
243 if (!q) {
244 fprintf(stderr, "pterm: expected a colon in resource string"
245 " \"%s\"\n", string);
246 return;
247 }
248 q++;
249 while (p > string && p[-1] != '.' && p[-1] != '*')
250 p--;
8dacc30e 251 xrms = snew(struct keyval);
3d88e64d 252 key = snewn(q-p, char);
c85623f9 253 memcpy(key, p, q-p);
254 key[q-p-1] = '\0';
255 xrms->key = key;
e93ed432 256 while (*q && isspace((unsigned char)*q))
0ac15bdc 257 q++;
258 xrms->value = dupstr(q);
259
260 if (!xrmtree)
8dacc30e 261 xrmtree = newtree234(keycmp);
0ac15bdc 262
263 ret = add234(xrmtree, xrms);
264 if (ret) {
265 /* Override an existing string. */
266 del234(xrmtree, ret);
267 add234(xrmtree, xrms);
268 }
269}
270
c85623f9 271const char *get_setting(const char *key)
0ac15bdc 272{
8dacc30e 273 struct keyval tmp, *ret;
0ac15bdc 274 tmp.key = key;
275 if (xrmtree) {
276 ret = find234(xrmtree, &tmp, NULL);
277 if (ret)
278 return ret->value;
279 }
c5e438ec 280 return x_get_default(key);
0ac15bdc 281}
282
c85623f9 283void *open_settings_r(const char *sessionname)
1709795f 284{
c18ed097 285 char *filename;
8dacc30e 286 FILE *fp;
287 char *line;
288 tree234 *ret;
289
c18ed097 290 filename = make_filename(INDEX_SESSION, sessionname);
8dacc30e 291 fp = fopen(filename, "r");
c18ed097 292 sfree(filename);
8dacc30e 293 if (!fp)
294 return NULL; /* can't open */
295
296 ret = newtree234(keycmp);
297
298 while ( (line = fgetline(fp)) ) {
299 char *value = strchr(line, '=');
300 struct keyval *kv;
301
302 if (!value)
303 continue;
304 *value++ = '\0';
305 value[strcspn(value, "\r\n")] = '\0'; /* trim trailing NL */
306
307 kv = snew(struct keyval);
308 kv->key = dupstr(line);
309 kv->value = dupstr(value);
310 add234(ret, kv);
311
312 sfree(line);
313 }
314
315 fclose(fp);
316
317 return ret;
1709795f 318}
319
c85623f9 320char *read_setting_s(void *handle, const char *key, char *buffer, int buflen)
1709795f 321{
8dacc30e 322 tree234 *tree = (tree234 *)handle;
323 const char *val;
324 struct keyval tmp, *kv;
325
326 tmp.key = key;
327 if (tree != NULL &&
328 (kv = find234(tree, &tmp, NULL)) != NULL) {
329 val = kv->value;
330 assert(val != NULL);
331 } else
332 val = get_setting(key);
333
faec60ed 334 if (!val)
335 return NULL;
336 else {
337 strncpy(buffer, val, buflen);
338 buffer[buflen-1] = '\0';
339 return buffer;
340 }
1709795f 341}
342
c85623f9 343int read_setting_i(void *handle, const char *key, int defvalue)
1709795f 344{
8dacc30e 345 tree234 *tree = (tree234 *)handle;
346 const char *val;
347 struct keyval tmp, *kv;
348
349 tmp.key = key;
350 if (tree != NULL &&
351 (kv = find234(tree, &tmp, NULL)) != NULL) {
352 val = kv->value;
353 assert(val != NULL);
354 } else
355 val = get_setting(key);
356
faec60ed 357 if (!val)
358 return defvalue;
359 else
360 return atoi(val);
1709795f 361}
362
9a30e26b 363int read_setting_fontspec(void *handle, const char *name, FontSpec *result)
364{
f160b7b8 365 /*
366 * In GTK1-only PuTTY, we used to store font names simply as a
367 * valid X font description string (logical or alias), under a
368 * bare key such as "Font".
369 *
370 * In GTK2 PuTTY, we have a prefix system where "client:"
371 * indicates a Pango font and "server:" an X one; existing
372 * configuration needs to be reinterpreted as having the
373 * "server:" prefix, so we change the storage key from the
374 * provided name string (e.g. "Font") to a suffixed one
375 * ("FontName").
376 */
377 char *suffname = dupcat(name, "Name", NULL);
378 if (read_setting_s(handle, suffname, result->name, sizeof(result->name))) {
379 sfree(suffname);
380 return TRUE; /* got new-style name */
381 }
382 sfree(suffname);
383
384 /* Fall back to old-style name. */
385 memcpy(result->name, "server:", 7);
386 if (!read_setting_s(handle, name,
387 result->name + 7, sizeof(result->name) - 7) ||
388 !result->name[7]) {
389 result->name[0] = '\0';
390 return FALSE;
391 } else {
392 return TRUE;
393 }
9a30e26b 394}
395int read_setting_filename(void *handle, const char *name, Filename *result)
396{
397 return !!read_setting_s(handle, name, result->path, sizeof(result->path));
398}
399
400void write_setting_fontspec(void *handle, const char *name, FontSpec result)
401{
f160b7b8 402 /*
403 * read_setting_fontspec had to handle two cases, but when
404 * writing our settings back out we simply always generate the
405 * new-style name.
406 */
407 char *suffname = dupcat(name, "Name", NULL);
408 write_setting_s(handle, suffname, result.name);
409 sfree(suffname);
9a30e26b 410}
411void write_setting_filename(void *handle, const char *name, Filename result)
412{
413 write_setting_s(handle, name, result.path);
414}
415
1709795f 416void close_settings_r(void *handle)
417{
8dacc30e 418 tree234 *tree = (tree234 *)handle;
419 struct keyval *kv;
420
421 if (!tree)
422 return;
423
424 while ( (kv = index234(tree, 0)) != NULL) {
425 del234(tree, kv);
426 sfree((char *)kv->key);
427 sfree((char *)kv->value);
428 sfree(kv);
429 }
430
431 freetree234(tree);
1709795f 432}
433
c85623f9 434void del_settings(const char *sessionname)
1709795f 435{
c18ed097 436 char *filename;
437 filename = make_filename(INDEX_SESSION, sessionname);
8dacc30e 438 unlink(filename);
c18ed097 439 sfree(filename);
1709795f 440}
441
442void *enum_settings_start(void)
443{
8dacc30e 444 DIR *dp;
c18ed097 445 char *filename;
1709795f 446
c18ed097 447 filename = make_filename(INDEX_SESSIONDIR, NULL);
8dacc30e 448 dp = opendir(filename);
c18ed097 449 sfree(filename);
1709795f 450
8dacc30e 451 return dp;
1709795f 452}
453
8dacc30e 454char *enum_settings_next(void *handle, char *buffer, int buflen)
c5e438ec 455{
8dacc30e 456 DIR *dp = (DIR *)handle;
457 struct dirent *de;
458 struct stat st;
c18ed097 459 char *fullpath;
460 int maxlen, thislen, len;
8dacc30e 461 char *unmunged;
462
c18ed097 463 fullpath = make_filename(INDEX_SESSIONDIR, NULL);
464 maxlen = len = strlen(fullpath);
8dacc30e 465
466 while ( (de = readdir(dp)) != NULL ) {
c18ed097 467 thislen = len + 1 + strlen(de->d_name);
468 if (maxlen < thislen) {
469 maxlen = thislen;
470 fullpath = sresize(fullpath, maxlen+1, char);
471 }
472 fullpath[len] = '/';
473 strncpy(fullpath+len+1, de->d_name, thislen - (len+1));
474 fullpath[thislen] = '\0';
8dacc30e 475
476 if (stat(fullpath, &st) < 0 || !S_ISREG(st.st_mode))
477 continue; /* try another one */
478
479 unmunged = unmungestr(de->d_name);
480 strncpy(buffer, unmunged, buflen);
481 buffer[buflen-1] = '\0';
482 sfree(unmunged);
c18ed097 483 sfree(fullpath);
8dacc30e 484 return buffer;
485 }
486
c18ed097 487 sfree(fullpath);
8dacc30e 488 return NULL;
c5e438ec 489}
490
8dacc30e 491void enum_settings_finish(void *handle)
c5e438ec 492{
8dacc30e 493 DIR *dp = (DIR *)handle;
494 closedir(dp);
c5e438ec 495}
496
497/*
498 * Lines in the host keys file are of the form
499 *
500 * type@port:hostname keydata
501 *
502 * e.g.
503 *
504 * rsa@22:foovax.example.org 0x23,0x293487364395345345....2343
505 */
c85623f9 506int verify_host_key(const char *hostname, int port,
507 const char *keytype, const char *key)
1709795f 508{
c5e438ec 509 FILE *fp;
c18ed097 510 char *filename;
c5e438ec 511 char *line;
512 int ret;
513
c18ed097 514 filename = make_filename(INDEX_HOSTKEYS, NULL);
c5e438ec 515 fp = fopen(filename, "r");
c18ed097 516 sfree(filename);
c5e438ec 517 if (!fp)
518 return 1; /* key does not exist */
519
520 ret = 1;
521 while ( (line = fgetline(fp)) ) {
522 int i;
523 char *p = line;
524 char porttext[20];
525
526 line[strcspn(line, "\n")] = '\0'; /* strip trailing newline */
527
528 i = strlen(keytype);
529 if (strncmp(p, keytype, i))
530 goto done;
531 p += i;
532
533 if (*p != '@')
534 goto done;
535 p++;
536
537 sprintf(porttext, "%d", port);
538 i = strlen(porttext);
539 if (strncmp(p, porttext, i))
540 goto done;
541 p += i;
542
543 if (*p != ':')
544 goto done;
545 p++;
546
547 i = strlen(hostname);
548 if (strncmp(p, hostname, i))
549 goto done;
550 p += i;
551
552 if (*p != ' ')
553 goto done;
554 p++;
555
556 /*
557 * Found the key. Now just work out whether it's the right
558 * one or not.
559 */
560 if (!strcmp(p, key))
561 ret = 0; /* key matched OK */
562 else
563 ret = 2; /* key mismatch */
564
565 done:
566 sfree(line);
567 if (ret != 1)
568 break;
569 }
570
1957695c 571 fclose(fp);
c5e438ec 572 return ret;
1709795f 573}
574
c85623f9 575void store_host_key(const char *hostname, int port,
576 const char *keytype, const char *key)
1709795f 577{
be57bcef 578 FILE *rfp, *wfp;
579 char *newtext, *line;
580 int headerlen;
c18ed097 581 char *filename, *tmpfilename;
c5e438ec 582
be57bcef 583 newtext = dupprintf("%s@%d:%s %s\n", keytype, port, hostname, key);
584 headerlen = 1 + strcspn(newtext, " "); /* count the space too */
c5e438ec 585
be57bcef 586 /*
587 * Open both the old file and a new file.
588 */
c18ed097 589 tmpfilename = make_filename(INDEX_HOSTKEYS_TMP, NULL);
be57bcef 590 wfp = fopen(tmpfilename, "w");
591 if (!wfp) {
c18ed097 592 char *dir;
11cd814b 593
c18ed097 594 dir = make_filename(INDEX_DIR, NULL);
11cd814b 595 mkdir(dir, 0700);
c18ed097 596 sfree(dir);
597
11cd814b 598 wfp = fopen(tmpfilename, "w");
c5e438ec 599 }
c18ed097 600 if (!wfp) {
601 sfree(tmpfilename);
11cd814b 602 return;
c18ed097 603 }
604 filename = make_filename(INDEX_HOSTKEYS, NULL);
11cd814b 605 rfp = fopen(filename, "r");
be57bcef 606
607 /*
608 * Copy all lines from the old file to the new one that _don't_
609 * involve the same host key identifier as the one we're adding.
610 */
11cd814b 611 if (rfp) {
612 while ( (line = fgetline(rfp)) ) {
613 if (strncmp(line, newtext, headerlen))
614 fputs(line, wfp);
615 }
616 fclose(rfp);
c5e438ec 617 }
be57bcef 618
619 /*
620 * Now add the new line at the end.
621 */
622 fputs(newtext, wfp);
623
be57bcef 624 fclose(wfp);
625
626 rename(tmpfilename, filename);
627
c18ed097 628 sfree(tmpfilename);
629 sfree(filename);
be57bcef 630 sfree(newtext);
1709795f 631}
632
633void read_random_seed(noise_consumer_t consumer)
634{
d9c40fd6 635 int fd;
c18ed097 636 char *fname;
d9c40fd6 637
c18ed097 638 fname = make_filename(INDEX_RANDSEED, NULL);
d9c40fd6 639 fd = open(fname, O_RDONLY);
c18ed097 640 sfree(fname);
d9c40fd6 641 if (fd) {
642 char buf[512];
643 int ret;
644 while ( (ret = read(fd, buf, sizeof(buf))) > 0)
645 consumer(buf, ret);
646 close(fd);
647 }
1709795f 648}
649
650void write_random_seed(void *data, int len)
651{
d9c40fd6 652 int fd;
c18ed097 653 char *fname;
d9c40fd6 654
c18ed097 655 fname = make_filename(INDEX_RANDSEED, NULL);
e3ac3c05 656 /*
657 * Don't truncate the random seed file if it already exists; if
658 * something goes wrong half way through writing it, it would
659 * be better to leave the old data there than to leave it empty.
660 */
661 fd = open(fname, O_CREAT | O_WRONLY, 0600);
d9c40fd6 662 if (fd < 0) {
c18ed097 663 char *dir;
d9c40fd6 664
c18ed097 665 dir = make_filename(INDEX_DIR, NULL);
d9c40fd6 666 mkdir(dir, 0700);
c18ed097 667 sfree(dir);
668
e3ac3c05 669 fd = open(fname, O_CREAT | O_WRONLY, 0600);
d9c40fd6 670 }
671
672 while (len > 0) {
673 int ret = write(fd, data, len);
674 if (ret <= 0) break;
675 len -= ret;
676 data = (char *)data + len;
677 }
678
679 close(fd);
c18ed097 680 sfree(fname);
1709795f 681}
682
683void cleanup_all(void)
684{
685}