3 * $Id: identify.c,v 1.10 2003/11/29 22:15:19 mdw Exp $
5 * Identifies and logs the client of a connection
7 * (c) 1999 Straylight/Edgeware
10 /*----- Licensing notice --------------------------------------------------*
12 * This file is part of the `fw' port forwarder.
14 * `fw' is free software; you can redistribute it and/or modify
15 * it under the terms of the GNU General Public License as published by
16 * the Free Software Foundation; either version 2 of the License, or
17 * (at your option) any later version.
19 * `fw' is distributed in the hope that it will be useful,
20 * but WITHOUT ANY WARRANTY; without even the implied warranty of
21 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
22 * GNU General Public License for more details.
24 * You should have received a copy of the GNU General Public License
25 * along with `fw'; if not, write to the Free Software Foundation,
26 * Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
29 /*----- Revision history --------------------------------------------------*
31 * $Log: identify.c,v $
32 * Revision 1.10 2003/11/29 22:15:19 mdw
35 * Revision 1.9 2003/11/29 22:13:43 mdw
36 * Fix bug in identification timout handling.
38 * Revision 1.8 2003/11/29 20:36:07 mdw
39 * Privileged outgoing connections.
41 * Revision 1.7 2002/02/22 23:43:32 mdw
42 * Call @xfree@ rather than @free@.
44 * Revision 1.6 2001/06/22 19:36:49 mdw
45 * Enlarge the identity buffer.
47 * Revision 1.5 1999/10/10 16:45:34 mdw
48 * Modified to use new mLib resolver and ident client.
50 * Revision 1.4 1999/07/27 18:30:53 mdw
51 * Various minor portability fixes.
53 * Revision 1.3 1999/07/26 23:26:21 mdw
54 * Minor modifications for new design.
56 * Revision 1.2 1999/07/03 13:56:59 mdw
57 * Log connections to syslog or stderr as appropriate.
59 * Revision 1.1.1.1 1999/07/01 08:56:23 mdw
64 /*----- Header files ------------------------------------------------------*/
74 #include <sys/types.h>
79 #include <sys/socket.h>
80 #include <netinet/in.h>
81 #include <arpa/inet.h>
84 #include <mLib/alloc.h>
85 #include <mLib/bres.h>
86 #include <mLib/conn.h>
87 #include <mLib/dstr.h>
88 #include <mLib/ident.h>
89 #include <mLib/report.h>
91 #include <mLib/selbuf.h>
97 /*----- Magic numbers -----------------------------------------------------*/
99 #define TIMEOUT 15 /* Seconds to wait for answers */
101 /*----- Data structures ---------------------------------------------------*/
103 /* --- Structure to track the progress of an identification --- */
106 id_req q
; /* Copy of client's request block */
107 time_t when
; /* When the connection occurred */
108 conn c
; /* Connection selector */
109 unsigned state
; /* Current state of the world */
110 sel_timer t
; /* Timeout selector */
111 bres_client r
; /* Backgd resolver client block */
112 ident_request i
; /* Ident client block */
113 char host
[128]; /* Resolved hostname */
114 char user
[64]; /* Authenticated client user */
117 #define S_HOST 1u /* Read the hostname from resolver */
118 #define S_USER 2u /* Read the username from RFC931 */
119 #define S_TIMER 4u /* Timeout has completed */
121 /*----- Main code ---------------------------------------------------------*/
123 /* --- @id_done@ --- *
125 * Arguments: @id *i@ = pointer to identification block
129 * Use: Finishes with an identification block.
132 static void id_done(id
*i
)
134 /* --- Close down the various dependent bits --- */
136 if (!(i
->state
& S_HOST
))
138 if (!(i
->state
& S_USER
))
140 if (!(i
->state
& S_TIMER
))
143 /* --- Report the final result --- */
145 fw_log(i
->when
, "[%s] %s from %s@%s [%s:%u]",
148 inet_ntoa(i
->q
.rsin
.sin_addr
), (unsigned)ntohs(i
->q
.rsin
.sin_port
));
150 /* --- Dispose of the block --- */
156 /* --- @id_res@ --- *
158 * Arguments: @struct hostent *h@ = name of the resolved host
159 * @void *vp@ = pointer to identification block
163 * Use: Responds to a completed reverse name resolution.
166 static void id_res(struct hostent
*h
, void *vp
)
170 str_sanitize(i
->host
, h
->h_name
, sizeof(i
->host
));
172 if (i
->state
& S_USER
)
176 /* --- @id_ident@ --- *
178 * Arguments: @ident_reply *i@ = pointer to string read from server
179 * @void *vp@ = pointer to identification block
183 * Use: Responds to a line read from the remote RFC931 server.
186 static void id_ident(ident_reply
*ir
, void *vp
)
190 /* --- Read the information from the client --- */
192 if (ir
&& ir
->type
== IDENT_USERID
)
193 str_sanitize(i
->user
, ir
->u
.userid
.user
, sizeof(i
->user
));
195 /* --- Maybe finish off this identification --- */
198 if (i
->state
& S_HOST
)
202 /* --- @id_timer@ --- *
204 * Arguments: @struct timeval *tv@ = pointer to the current time
205 * @void *vp@ = pointer to identification block
209 * Use: Times an identification job out.
212 static void id_timer(struct timeval
*tv
, void *vp
)
219 /* --- @identify@ --- *
221 * Arguments: @const id_req *q@ = pointer to request block
225 * Use: Starts a background ident lookup and reverse-resolve job
226 * which will, eventually, report a message to the system log.
229 void identify(const id_req
*q
)
233 /* --- Initialize the block with stuff --- */
235 i
= xmalloc(sizeof(*i
));
239 str_sanitize(i
->host
, inet_ntoa(q
->rsin
.sin_addr
), sizeof(i
->host
));
240 strcpy(i
->user
, "<ANONYMOUS>");
244 /* --- Set up the connection to the identity server --- */
246 ident(&i
->i
, sel
, &q
->lsin
, &q
->rsin
, id_ident
, i
);
248 /* --- Set up the name resolver --- */
250 bres_byaddr(&i
->r
, q
->rsin
.sin_addr
, id_res
, i
);
252 /* --- Set up the time limiter --- */
256 gettimeofday(&tv
, 0);
257 tv
.tv_sec
+= TIMEOUT
;
258 sel_addtimer(sel
, &i
->t
, &tv
, id_timer
, i
);
262 /*----- That's all, folks -------------------------------------------------*/