blob: 71c4badbc8070f7e9e9ffa4e21ab17220f67a84a [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * This program is free software; you can redistribute it and/or modify
3 * it under the terms of the GNU General Public License as published by
4 * the Free Software Foundation; either version 2 of the License, or
5 * (at your option) any later version.
6 *
7 * Copyright (C) Jonathan Naylor G4KLX (g4klx@g4klx.demon.co.uk)
8 */
Randy Dunlap4fc268d2006-01-11 12:17:47 -08009
10#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070011#include <linux/errno.h>
12#include <linux/types.h>
13#include <linux/socket.h>
14#include <linux/in.h>
15#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070016#include <linux/timer.h>
17#include <linux/string.h>
18#include <linux/sockios.h>
19#include <linux/net.h>
20#include <linux/spinlock.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090021#include <linux/slab.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070022#include <net/ax25.h>
23#include <linux/inet.h>
24#include <linux/netdevice.h>
25#include <linux/if_arp.h>
26#include <linux/skbuff.h>
27#include <net/sock.h>
28#include <asm/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070029#include <linux/fcntl.h>
30#include <linux/mm.h>
31#include <linux/interrupt.h>
Ralf Baechle01d7dd02005-08-23 10:11:45 -070032#include <linux/list.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070033#include <linux/notifier.h>
34#include <linux/proc_fs.h>
35#include <linux/seq_file.h>
36#include <linux/stat.h>
37#include <linux/netfilter.h>
38#include <linux/sysctl.h>
Paul Gortmakerbc3b2d72011-07-15 11:47:34 -040039#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070040#include <net/ip.h>
41#include <net/arp.h>
42
43/*
44 * Callsign/UID mapper. This is in kernel space for security on multi-amateur machines.
45 */
46
Eric Dumazetf16f3022008-01-13 22:29:41 -080047static HLIST_HEAD(ax25_uid_list);
Linus Torvalds1da177e2005-04-16 15:20:36 -070048static DEFINE_RWLOCK(ax25_uid_lock);
49
Eric Dumazetf16f3022008-01-13 22:29:41 -080050int ax25_uid_policy;
Linus Torvalds1da177e2005-04-16 15:20:36 -070051
Ralf Baechle70868ea2006-05-03 23:25:17 -070052EXPORT_SYMBOL(ax25_uid_policy);
53
Eric W. Biedermand13fda82012-05-24 12:55:00 -060054ax25_uid_assoc *ax25_findbyuid(kuid_t uid)
Linus Torvalds1da177e2005-04-16 15:20:36 -070055{
Ralf Baechle01d7dd02005-08-23 10:11:45 -070056 ax25_uid_assoc *ax25_uid, *res = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -070057
58 read_lock(&ax25_uid_lock);
Sasha Levinb67bfe02013-02-27 17:06:00 -080059 ax25_uid_for_each(ax25_uid, &ax25_uid_list) {
Eric W. Biedermand13fda82012-05-24 12:55:00 -060060 if (uid_eq(ax25_uid->uid, uid)) {
Ralf Baechle01d7dd02005-08-23 10:11:45 -070061 ax25_uid_hold(ax25_uid);
62 res = ax25_uid;
Linus Torvalds1da177e2005-04-16 15:20:36 -070063 break;
64 }
65 }
66 read_unlock(&ax25_uid_lock);
67
Ralf Baechle01d7dd02005-08-23 10:11:45 -070068 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -070069}
70
Ralf Baechle70868ea2006-05-03 23:25:17 -070071EXPORT_SYMBOL(ax25_findbyuid);
72
Linus Torvalds1da177e2005-04-16 15:20:36 -070073int ax25_uid_ioctl(int cmd, struct sockaddr_ax25 *sax)
74{
Ralf Baechle01d7dd02005-08-23 10:11:45 -070075 ax25_uid_assoc *ax25_uid;
Ralf Baechle01d7dd02005-08-23 10:11:45 -070076 ax25_uid_assoc *user;
Linus Torvalds1da177e2005-04-16 15:20:36 -070077 unsigned long res;
78
79 switch (cmd) {
80 case SIOCAX25GETUID:
81 res = -ENOENT;
82 read_lock(&ax25_uid_lock);
Sasha Levinb67bfe02013-02-27 17:06:00 -080083 ax25_uid_for_each(ax25_uid, &ax25_uid_list) {
Linus Torvalds1da177e2005-04-16 15:20:36 -070084 if (ax25cmp(&sax->sax25_call, &ax25_uid->call) == 0) {
Eric W. Biedermand13fda82012-05-24 12:55:00 -060085 res = from_kuid_munged(current_user_ns(), ax25_uid->uid);
Linus Torvalds1da177e2005-04-16 15:20:36 -070086 break;
87 }
88 }
89 read_unlock(&ax25_uid_lock);
90
91 return res;
92
93 case SIOCAX25ADDUID:
Eric W. Biedermand13fda82012-05-24 12:55:00 -060094 {
95 kuid_t sax25_kuid;
Linus Torvalds1da177e2005-04-16 15:20:36 -070096 if (!capable(CAP_NET_ADMIN))
97 return -EPERM;
Eric W. Biedermand13fda82012-05-24 12:55:00 -060098 sax25_kuid = make_kuid(current_user_ns(), sax->sax25_uid);
99 if (!uid_valid(sax25_kuid))
100 return -EINVAL;
101 user = ax25_findbyuid(sax25_kuid);
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700102 if (user) {
103 ax25_uid_put(user);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700104 return -EEXIST;
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700105 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700106 if (sax->sax25_uid == 0)
107 return -EINVAL;
108 if ((ax25_uid = kmalloc(sizeof(*ax25_uid), GFP_KERNEL)) == NULL)
109 return -ENOMEM;
110
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700111 atomic_set(&ax25_uid->refcount, 1);
Eric W. Biedermand13fda82012-05-24 12:55:00 -0600112 ax25_uid->uid = sax25_kuid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113 ax25_uid->call = sax->sax25_call;
114
115 write_lock(&ax25_uid_lock);
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700116 hlist_add_head(&ax25_uid->uid_node, &ax25_uid_list);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700117 write_unlock(&ax25_uid_lock);
118
119 return 0;
Eric W. Biedermand13fda82012-05-24 12:55:00 -0600120 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700121 case SIOCAX25DELUID:
122 if (!capable(CAP_NET_ADMIN))
123 return -EPERM;
124
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700125 ax25_uid = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700126 write_lock(&ax25_uid_lock);
Sasha Levinb67bfe02013-02-27 17:06:00 -0800127 ax25_uid_for_each(ax25_uid, &ax25_uid_list) {
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700128 if (ax25cmp(&sax->sax25_call, &ax25_uid->call) == 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700130 }
131 if (ax25_uid == NULL) {
132 write_unlock(&ax25_uid_lock);
133 return -ENOENT;
134 }
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700135 hlist_del_init(&ax25_uid->uid_node);
136 ax25_uid_put(ax25_uid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137 write_unlock(&ax25_uid_lock);
138
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700139 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700140
141 default:
142 return -EINVAL;
143 }
144
145 return -EINVAL; /*NOTREACHED */
146}
147
148#ifdef CONFIG_PROC_FS
149
150static void *ax25_uid_seq_start(struct seq_file *seq, loff_t *pos)
Eric Dumazetf16f3022008-01-13 22:29:41 -0800151 __acquires(ax25_uid_lock)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700152{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700153 read_lock(&ax25_uid_lock);
Li Zefanb512f3d2010-02-08 23:19:59 +0000154 return seq_hlist_start_head(&ax25_uid_list, *pos);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700155}
156
157static void *ax25_uid_seq_next(struct seq_file *seq, void *v, loff_t *pos)
158{
Li Zefanb512f3d2010-02-08 23:19:59 +0000159 return seq_hlist_next(v, &ax25_uid_list, pos);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700160}
161
162static void ax25_uid_seq_stop(struct seq_file *seq, void *v)
Eric Dumazetf16f3022008-01-13 22:29:41 -0800163 __releases(ax25_uid_lock)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700164{
165 read_unlock(&ax25_uid_lock);
166}
167
168static int ax25_uid_seq_show(struct seq_file *seq, void *v)
169{
Ralf Baechlef75268c2005-09-06 15:49:39 -0700170 char buf[11];
171
Linus Torvalds1da177e2005-04-16 15:20:36 -0700172 if (v == SEQ_START_TOKEN)
173 seq_printf(seq, "Policy: %d\n", ax25_uid_policy);
174 else {
Li Zefanb512f3d2010-02-08 23:19:59 +0000175 struct ax25_uid_assoc *pt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700176
Li Zefanb512f3d2010-02-08 23:19:59 +0000177 pt = hlist_entry(v, struct ax25_uid_assoc, uid_node);
Eric W. Biedermand13fda82012-05-24 12:55:00 -0600178 seq_printf(seq, "%6d %s\n",
179 from_kuid_munged(seq_user_ns(seq), pt->uid),
180 ax2asc(buf, &pt->call));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700181 }
182 return 0;
183}
184
Philippe De Muyter56b3d972007-07-10 23:07:31 -0700185static const struct seq_operations ax25_uid_seqops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700186 .start = ax25_uid_seq_start,
187 .next = ax25_uid_seq_next,
188 .stop = ax25_uid_seq_stop,
189 .show = ax25_uid_seq_show,
190};
191
192static int ax25_uid_info_open(struct inode *inode, struct file *file)
193{
194 return seq_open(file, &ax25_uid_seqops);
195}
196
Arjan van de Ven9a321442007-02-12 00:55:35 -0800197const struct file_operations ax25_uid_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198 .owner = THIS_MODULE,
199 .open = ax25_uid_info_open,
200 .read = seq_read,
201 .llseek = seq_lseek,
202 .release = seq_release,
203};
204
205#endif
206
207/*
208 * Free all memory associated with UID/Callsign structures.
209 */
210void __exit ax25_uid_free(void)
211{
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700212 ax25_uid_assoc *ax25_uid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700213
214 write_lock(&ax25_uid_lock);
Pavel Emelyanovae1b6a32008-04-12 18:33:50 -0700215again:
Sasha Levinb67bfe02013-02-27 17:06:00 -0800216 ax25_uid_for_each(ax25_uid, &ax25_uid_list) {
Ralf Baechle01d7dd02005-08-23 10:11:45 -0700217 hlist_del_init(&ax25_uid->uid_node);
218 ax25_uid_put(ax25_uid);
Pavel Emelyanovae1b6a32008-04-12 18:33:50 -0700219 goto again;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700220 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700221 write_unlock(&ax25_uid_lock);
222}