]>
granicus.if.org Git - sudo/log
Todd C. Miller [Wed, 5 Jan 2005 22:29:06 +0000 (22:29 +0000)]
Fix dummied out toke.c and gram.c dependencies.
Todd C. Miller [Wed, 5 Jan 2005 22:18:42 +0000 (22:18 +0000)]
Rename PARSESRCS -> GENERATED since it is only used in the clean target
Add devdir variable and use it to specify the path to parser sources
Todd C. Miller [Wed, 5 Jan 2005 22:17:52 +0000 (22:17 +0000)]
regen
Todd C. Miller [Wed, 5 Jan 2005 22:17:33 +0000 (22:17 +0000)]
Add a devdir variables that defaults to $(srcdir) and is set to . if
--devel was specified. Allows for proper dependecies building the parser.
Todd C. Miller [Wed, 5 Jan 2005 19:50:49 +0000 (19:50 +0000)]
Add support for custom passwd/group files.
Todd C. Miller [Wed, 5 Jan 2005 19:47:20 +0000 (19:47 +0000)]
Build private copy of pwutil.o for testsudoers with MYPW defined so
it uses our own passwd/group routines.
Todd C. Miller [Wed, 5 Jan 2005 19:46:39 +0000 (19:46 +0000)]
Remove sudo_*{pw,gr}* stubs and add sudo_setspent/sudo_endspent stubs instead.
We can now just use the caching sudo_*{pw,gr}* functions in pwutil.c
Add comment about wanting to call sudo_endpwent/sudo_endgrent in cleanup()
Todd C. Miller [Wed, 5 Jan 2005 19:44:58 +0000 (19:44 +0000)]
Remove caching; we will just use what is in pwutil.c
Use global buffers for passwd/group structs
Rename functions from sudo_* to my_*
Todd C. Miller [Wed, 5 Jan 2005 19:43:36 +0000 (19:43 +0000)]
g/c pwcache_init/pwcache_destroy
Todd C. Miller [Wed, 5 Jan 2005 19:42:06 +0000 (19:42 +0000)]
Undo last commit and add sudo_setspent and sudo_endspent instead.
Todd C. Miller [Wed, 5 Jan 2005 19:41:31 +0000 (19:41 +0000)]
Move all but the shadow stuff from getspwuid.c to pwutil.c and pwcache_get
and pwcache_put as they are no longer needed. Also add preprocessor
magic to use private versions of the passwd and group routines if MYPW
is defined (for use by testsudoers).
Todd C. Miller [Wed, 5 Jan 2005 03:40:01 +0000 (03:40 +0000)]
zero out struct passwd/group before filling it in so if there are
fields we don't handle they end up as 0.
Todd C. Miller [Wed, 5 Jan 2005 01:10:16 +0000 (01:10 +0000)]
Adapt to pwutil.c
Todd C. Miller [Wed, 5 Jan 2005 01:09:03 +0000 (01:09 +0000)]
Add tsgetgrpw.c and pwutil.c
Rename the *OBJ variables for better readability.
Todd C. Miller [Wed, 5 Jan 2005 01:08:30 +0000 (01:08 +0000)]
Passwd and group lookup routines for testsudoers that support alternate
passwd and group files.
Todd C. Miller [Wed, 5 Jan 2005 01:07:33 +0000 (01:07 +0000)]
Split off pw/gr cache and dup code into its own file.
This allows visudo and testsudoers to use the pw/gr cache too.
Todd C. Miller [Sun, 2 Jan 2005 00:31:08 +0000 (00:31 +0000)]
Print Defaults info in "sudo -l" output and wrap lines based on the
terminal width.
Todd C. Miller [Sat, 1 Jan 2005 17:41:21 +0000 (17:41 +0000)]
Only check group vector in usergr_matches() if we are matching the
invoking or list user. Always check the group members, even if
there was a group vector.
Todd C. Miller [Fri, 17 Dec 2004 22:24:16 +0000 (22:24 +0000)]
No longer bundle fnmatch.3
Todd C. Miller [Fri, 17 Dec 2004 18:12:20 +0000 (18:12 +0000)]
checkpoint
Todd C. Miller [Thu, 16 Dec 2004 19:20:25 +0000 (19:20 +0000)]
sort usage
Todd C. Miller [Thu, 16 Dec 2004 19:20:12 +0000 (19:20 +0000)]
Sort command line options
Todd C. Miller [Thu, 16 Dec 2004 18:33:49 +0000 (18:33 +0000)]
Add closefrom sudoers option to start closing at a point other than 3.
Add closefrom_override sudoers option and -C sudo flag to allow the
user to specify a different closefrom starting point.
Todd C. Miller [Thu, 16 Dec 2004 18:25:54 +0000 (18:25 +0000)]
Add _PATH_DEVNULL for those without it.
Todd C. Miller [Thu, 16 Dec 2004 03:55:46 +0000 (03:55 +0000)]
no more UCB strcasecmp
Todd C. Miller [Thu, 16 Dec 2004 03:54:48 +0000 (03:54 +0000)]
replace BSD licensed one with version derived from pdksh
Todd C. Miller [Fri, 10 Dec 2004 02:07:27 +0000 (02:07 +0000)]
Fix last commit.
Todd C. Miller [Fri, 10 Dec 2004 00:26:22 +0000 (00:26 +0000)]
Make sure stdin, stdout and stderr are open and dup them to /dev/null
if not.
Todd C. Miller [Fri, 3 Dec 2004 18:57:48 +0000 (18:57 +0000)]
add sudo_ldap_close
Todd C. Miller [Fri, 3 Dec 2004 18:52:28 +0000 (18:52 +0000)]
Use TIME_WITH_SYS_TIME
Todd C. Miller [Fri, 3 Dec 2004 18:48:07 +0000 (18:48 +0000)]
Add TIME_WITH_SYS_TIME_H
Todd C. Miller [Thu, 2 Dec 2004 16:18:29 +0000 (16:18 +0000)]
Add missing braces to avoid DYLD_FORCE_FLAT_NAMESPACE being set
unconditionally on darwin. From Toby Peterson.
Todd C. Miller [Thu, 2 Dec 2004 15:40:00 +0000 (15:40 +0000)]
Check rbinsert() return value. In the case of faked up entries there
is usually a negative response cached that we need to overwrite.
In pwfree() don't try to zero out a NULL pw_passwd pointer.
Todd C. Miller [Thu, 2 Dec 2004 14:53:20 +0000 (14:53 +0000)]
Use the double fork trick to avoid the monitor process being waited
for by the main program run through sudo.
Todd C. Miller [Mon, 29 Nov 2004 17:52:02 +0000 (17:52 +0000)]
Call initgroups() in -U mode so group matches work normally.
Todd C. Miller [Mon, 29 Nov 2004 17:34:09 +0000 (17:34 +0000)]
Don't print a trailing comma for the last entry in enum def_tupple
Todd C. Miller [Sun, 28 Nov 2004 21:08:09 +0000 (21:08 +0000)]
Mention values when lecture, listpw and verifypw are used in boolean context.
Todd C. Miller [Sun, 28 Nov 2004 21:05:38 +0000 (21:05 +0000)]
verifypw when used in a boolean TRUE context should be "all", not "any".
Todd C. Miller [Fri, 26 Nov 2004 19:21:08 +0000 (19:21 +0000)]
Allow tuples that can be used as booleans to be used as boolean TRUE.
In this case the 2nd possible value of the tuple is used for TRUE.
Todd C. Miller [Thu, 25 Nov 2004 17:23:27 +0000 (17:23 +0000)]
Correct the test for 2-parameter timespecsub
Todd C. Miller [Thu, 25 Nov 2004 17:20:57 +0000 (17:20 +0000)]
Add strub struct definitions for passwd, timeval and timespec
Todd C. Miller [Thu, 25 Nov 2004 17:09:31 +0000 (17:09 +0000)]
Add check for 2-argument form of timespecsub (FreeBSD and BSD/OS) and
fix a typo in the gettimeofday check.
Todd C. Miller [Wed, 24 Nov 2004 21:44:54 +0000 (21:44 +0000)]
Deal with user_stat being NULL as it is for visudo and testsudoers.
Todd C. Miller [Wed, 24 Nov 2004 21:31:51 +0000 (21:31 +0000)]
Add -U option to use in conjunction with -l instead of -u.
Add support for "sudo -l command" to test a specific command.
Todd C. Miller [Wed, 24 Nov 2004 21:28:55 +0000 (21:28 +0000)]
Set safe_cmnd after sudoers_lookup() if it has not been set.
Previously it was set by sudo "ALL" in the parser but at that point
the fully-qualified pathname has not yet been found.
Todd C. Miller [Tue, 23 Nov 2004 23:18:15 +0000 (23:18 +0000)]
Correctly handle multiple privileges per userspec and runas inheritence.
Todd C. Miller [Sun, 21 Nov 2004 19:09:47 +0000 (19:09 +0000)]
Zero out sd_un for each entry in sudo_defs_table in init_defaults.
Todd C. Miller [Fri, 19 Nov 2004 23:04:14 +0000 (23:04 +0000)]
make per-command defaults work with sudoedit
Todd C. Miller [Fri, 19 Nov 2004 23:00:28 +0000 (23:00 +0000)]
Remove the FLAG_NOPASS, FLAG_NOEXEC and FLAG_MONITOR flags. Instead,
we just set the approriate defaults variable.
Todd C. Miller [Fri, 19 Nov 2004 22:09:10 +0000 (22:09 +0000)]
Document per-command Defaults.
Todd C. Miller [Fri, 19 Nov 2004 21:35:12 +0000 (21:35 +0000)]
Add support for command-specific Defaults entries. E.g.
Defaults!/usr/bin/vi noexec
Todd C. Miller [Fri, 19 Nov 2004 20:03:33 +0000 (20:03 +0000)]
Change an occurence of user_matches() -> runas_matches() missed previously
runas_matches(), host_matches() and cmnd_matches() only really need to pass in
a list of members. user_matches() still needs to pass in a passwd struct
because of "sudo -l"
Todd C. Miller [Fri, 19 Nov 2004 19:46:55 +0000 (19:46 +0000)]
Check def_authenticate, def_noexec and def_monitor when setting return flags.
XXX May be better to just set the defaults directly and get rid of those flags.
Todd C. Miller [Fri, 19 Nov 2004 18:39:14 +0000 (18:39 +0000)]
Use: #include <config.h>
Not: #include "config.h"
That way we get the correct config.h when build dir != src dir
Todd C. Miller [Fri, 19 Nov 2004 18:30:43 +0000 (18:30 +0000)]
Back out part of rev 1.263; fix -I order
Todd C. Miller [Fri, 19 Nov 2004 18:12:59 +0000 (18:12 +0000)]
More robust parsing if #include; could be much better still.
Todd C. Miller [Fri, 19 Nov 2004 17:55:14 +0000 (17:55 +0000)]
Make arg splitting in visudo and sudoedit consistent.
Todd C. Miller [Fri, 19 Nov 2004 17:35:21 +0000 (17:35 +0000)]
Split alias routines out into their own file.
Todd C. Miller [Fri, 19 Nov 2004 17:32:25 +0000 (17:32 +0000)]
__attribute__ is already defined in compat.h
Todd C. Miller [Fri, 19 Nov 2004 17:30:22 +0000 (17:30 +0000)]
quit() should not be __noreturn__ as it is non-void on some platforms.
Todd C. Miller [Fri, 19 Nov 2004 17:24:20 +0000 (17:24 +0000)]
Add local error/warning functions like err/warn but that call an additional
cleanup routine in the error case. This means we no longer need to compile
a special version of alloc.o for visudo.
Todd C. Miller [Fri, 19 Nov 2004 16:54:55 +0000 (16:54 +0000)]
Clarify comments about the data structures
Todd C. Miller [Thu, 18 Nov 2004 20:28:53 +0000 (20:28 +0000)]
Add support for VISUAL and EDITOR containing command line args.
If env_editor is not set any args in VISUAL and EDITOR are ignored.
Arguments are also now supported in def_editor.
Todd C. Miller [Wed, 17 Nov 2004 19:25:54 +0000 (19:25 +0000)]
alias_matches() is no more
Todd C. Miller [Wed, 17 Nov 2004 19:09:21 +0000 (19:09 +0000)]
sync
Todd C. Miller [Wed, 17 Nov 2004 18:19:45 +0000 (18:19 +0000)]
When regenerating the parser, don't replace gram.h unless it has changed.
Todd C. Miller [Wed, 17 Nov 2004 16:56:25 +0000 (16:56 +0000)]
remove Makefile.binary for distclean
Todd C. Miller [Wed, 17 Nov 2004 16:18:33 +0000 (16:18 +0000)]
Preserve KRB5CCNAME in zero_env() and add a paranoia check to make sure
we can't overflow new_env.
Todd C. Miller [Wed, 17 Nov 2004 15:33:45 +0000 (15:33 +0000)]
paranoia when stripping trailing slashes from tempdir.
Todd C. Miller [Wed, 17 Nov 2004 00:00:48 +0000 (00:00 +0000)]
Set user_ngroups to 0 if getgroups() returns an error.
Todd C. Miller [Tue, 16 Nov 2004 23:59:56 +0000 (23:59 +0000)]
Add configure check for getgroups()
Todd C. Miller [Tue, 16 Nov 2004 23:55:26 +0000 (23:55 +0000)]
Use supplementary group vector in struct sudo_user.
Todd C. Miller [Tue, 16 Nov 2004 23:40:58 +0000 (23:40 +0000)]
Only do string comparisons on the group members if there is no
supplemental group list.
Todd C. Miller [Tue, 16 Nov 2004 21:10:22 +0000 (21:10 +0000)]
sync
Todd C. Miller [Tue, 16 Nov 2004 20:54:37 +0000 (20:54 +0000)]
On Digital UNIX _PATH_VAR_TMP doesn't end with a trailing slash so
chop off any trailing slashes we see and add an explicit one.
Todd C. Miller [Tue, 16 Nov 2004 17:02:58 +0000 (17:02 +0000)]
remove bogus XXX comment
Todd C. Miller [Tue, 16 Nov 2004 16:10:09 +0000 (16:10 +0000)]
Get rid of alias_matches and correctly fall through to the non-alias
cases when there is no alias with the specified name.
Todd C. Miller [Tue, 16 Nov 2004 15:47:55 +0000 (15:47 +0000)]
Cache non-existent passwd/group entries too.
Todd C. Miller [Tue, 16 Nov 2004 15:45:49 +0000 (15:45 +0000)]
regen
Todd C. Miller [Tue, 16 Nov 2004 04:32:29 +0000 (04:32 +0000)]
fix typo
Todd C. Miller [Tue, 16 Nov 2004 04:24:11 +0000 (04:24 +0000)]
Implement group caching and use the passwd and group caches throughout.
Todd C. Miller [Mon, 15 Nov 2004 19:43:47 +0000 (19:43 +0000)]
Properly negate the return value of alias_matches() when appropriate.
Todd C. Miller [Mon, 15 Nov 2004 19:38:31 +0000 (19:38 +0000)]
Make hostname_matches() return TRUE for a match, else FALSE like the
caller expects.
Todd C. Miller [Mon, 15 Nov 2004 18:24:09 +0000 (18:24 +0000)]
Add missing dependencies on gram.h
Todd C. Miller [Mon, 15 Nov 2004 18:06:11 +0000 (18:06 +0000)]
Use runas_matches in alias_matches() now that we have it.
Todd C. Miller [Mon, 15 Nov 2004 18:00:29 +0000 (18:00 +0000)]
Expand aliases in "sudo -l" mode
Todd C. Miller [Mon, 15 Nov 2004 17:33:52 +0000 (17:33 +0000)]
Use ALIAS for the member type when storing an alias instead of
HOSTALIAS/RUNASALIAS/CMNDALIAS/USERALIAS since match.c relies on
the more generic type. Expand runas_matches instead of calling
user_matches() inside of it since user_matches() looks up USERALIASes,
not RUNASALIASes.
Todd C. Miller [Mon, 15 Nov 2004 17:05:54 +0000 (17:05 +0000)]
Paranoia; zero out pw_passwd before freeing passwd entry.
Todd C. Miller [Mon, 15 Nov 2004 15:53:53 +0000 (15:53 +0000)]
Add local error/warning functions like err/warn but that call an additional
cleanup routine in the error case. This means we no longer need to compile
a special version of alloc.o for visudo.
Todd C. Miller [Mon, 15 Nov 2004 14:59:03 +0000 (14:59 +0000)]
Use userpw_matches() to compare usernames, not strcmp(), since the latter
checks for "#uid".
Todd C. Miller [Mon, 15 Nov 2004 14:53:05 +0000 (14:53 +0000)]
Cache passwd db entries in 2 reb-black trees; one indexed by uid,
the other by user name. The data returned from the cache should
be considered read-only and is destroyed by sudo_endpwent().
Todd C. Miller [Mon, 15 Nov 2004 14:50:03 +0000 (14:50 +0000)]
add cast to uid_t
Todd C. Miller [Mon, 15 Nov 2004 14:49:48 +0000 (14:49 +0000)]
missing free in alias_destroy
Todd C. Miller [Mon, 15 Nov 2004 14:49:17 +0000 (14:49 +0000)]
Can't use rbapply() for rbdestroy since the destructor is passed a
data pointer, not a node pointer.
Todd C. Miller [Mon, 15 Nov 2004 04:06:16 +0000 (04:06 +0000)]
Create and use private versions of setpwent() and endpwent() that
set/end the shadow password file too.
Todd C. Miller [Mon, 15 Nov 2004 03:55:22 +0000 (03:55 +0000)]
Store aliases in a red-black tree.
Todd C. Miller [Mon, 15 Nov 2004 03:52:54 +0000 (03:52 +0000)]
red-black tree implementation
Todd C. Miller [Mon, 15 Nov 2004 03:37:53 +0000 (03:37 +0000)]
Edit all sudoers file if there were unused or undefined aliases and we
are in strict mode.
Todd C. Miller [Fri, 12 Nov 2004 16:19:19 +0000 (16:19 +0000)]
Bring back the "secure_path" Defaults option now that Defaults take
effect before the path is searched.
Todd C. Miller [Thu, 11 Nov 2004 17:22:30 +0000 (17:22 +0000)]
A user can always list their own entries, even with -u.
Better error message when failing to list another user's entries.