mirror of
https://git.openldap.org/openldap/openldap.git
synced 2025-01-06 10:46:21 +08:00
10566c8be3
* javascript * kernel * ldap * length * macros * maintained * manager * matching * maximum * mechanism * memory * method * mimic * minimum * modifiable * modifiers * modifying * multiple * necessary * normalized * objectclass * occurrence * occurring * offered * operation * original * overridden * parameter * permanent * preemptively * printable * protocol * provider * really * redistribution * referenced * refresh * regardless * registered * request * reserved * resource * response * sanity * separated * setconcurrency * should * specially * specifies * structure * structures * subordinates * substitution * succeed * successful * successfully * sudoers * sufficient * superiors * supported * synchronization * terminated * they're * through * traffic * transparent * unsigned * unsupported * version * absence * achieves * adamson * additional * address * against * appropriate * architecture * associated * async * attribute * authentication * authorized * auxiliary * available * begin * beginning * buffered * canonical * certificate * charray * check * class * compatibility * compilation * component * configurable * configuration * configure * conjunction * constraints * constructor * contained * containing * continued * control * convenience * correspond * credentials * cyrillic * database * definitions * deloldrdn * dereferencing * destroy * distinguish * documentation * emmanuel * enabled * entry * enumerated * everything * exhaustive * existence * existing * explicitly * extract * fallthru * fashion * february * finally * function * generically * groupname * happened * implementation * including * initialization * initializes * insensitive * instantiated * instantiation * integral * internal * iterate
103 lines
2.0 KiB
C
103 lines
2.0 KiB
C
/* $OpenLDAP$ */
|
|
/* This work is part of OpenLDAP Software <http://www.openldap.org/>.
|
|
*
|
|
* Copyright 1998-2017 The OpenLDAP Foundation.
|
|
* All rights reserved.
|
|
*
|
|
* Redistribution and use in source and binary forms, with or without
|
|
* modification, are permitted only as authorized by the OpenLDAP
|
|
* Public License.
|
|
*
|
|
* A copy of this license is available in the file LICENSE in the
|
|
* top-level directory of the distribution or, alternatively, at
|
|
* <http://www.OpenLDAP.org/license.html>.
|
|
*/
|
|
/* ACKNOWLEDGEMENTS:
|
|
* This program was originally developed by Kurt D. Zeilenga for inclusion in
|
|
* OpenLDAP Software.
|
|
*/
|
|
|
|
#include "portable.h"
|
|
|
|
#include <stdio.h>
|
|
#include <ac/stdlib.h>
|
|
#include <ac/string.h>
|
|
#include <ac/time.h>
|
|
|
|
#include "ldap-int.h"
|
|
|
|
/*
|
|
* LDAP Who Am I? (Extended) Operation <draft-zeilenga-ldap-authzid-xx.txt>
|
|
*/
|
|
|
|
int ldap_parse_whoami(
|
|
LDAP *ld,
|
|
LDAPMessage *res,
|
|
struct berval **authzid )
|
|
{
|
|
int rc;
|
|
char *retoid = NULL;
|
|
|
|
assert( ld != NULL );
|
|
assert( LDAP_VALID( ld ) );
|
|
assert( res != NULL );
|
|
assert( authzid != NULL );
|
|
|
|
*authzid = NULL;
|
|
|
|
rc = ldap_parse_extended_result( ld, res, &retoid, authzid, 0 );
|
|
|
|
if( rc != LDAP_SUCCESS ) {
|
|
ldap_perror( ld, "ldap_parse_whoami" );
|
|
return rc;
|
|
}
|
|
|
|
ber_memfree( retoid );
|
|
return rc;
|
|
}
|
|
|
|
int
|
|
ldap_whoami( LDAP *ld,
|
|
LDAPControl **sctrls,
|
|
LDAPControl **cctrls,
|
|
int *msgidp )
|
|
{
|
|
int rc;
|
|
|
|
assert( ld != NULL );
|
|
assert( LDAP_VALID( ld ) );
|
|
assert( msgidp != NULL );
|
|
|
|
rc = ldap_extended_operation( ld, LDAP_EXOP_WHO_AM_I,
|
|
NULL, sctrls, cctrls, msgidp );
|
|
|
|
return rc;
|
|
}
|
|
|
|
int
|
|
ldap_whoami_s(
|
|
LDAP *ld,
|
|
struct berval **authzid,
|
|
LDAPControl **sctrls,
|
|
LDAPControl **cctrls )
|
|
{
|
|
int rc;
|
|
int msgid;
|
|
LDAPMessage *res;
|
|
|
|
rc = ldap_whoami( ld, sctrls, cctrls, &msgid );
|
|
if ( rc != LDAP_SUCCESS ) return rc;
|
|
|
|
if ( ldap_result( ld, msgid, LDAP_MSG_ALL, (struct timeval *) NULL, &res ) == -1 || !res ) {
|
|
return ld->ld_errno;
|
|
}
|
|
|
|
rc = ldap_parse_whoami( ld, res, authzid );
|
|
if( rc != LDAP_SUCCESS ) {
|
|
ldap_msgfree( res );
|
|
return rc;
|
|
}
|
|
|
|
return( ldap_result2error( ld, res, 1 ) );
|
|
}
|