Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 1 | /* |
| 2 | * ---------------------------------------------------------------------------- |
| 3 | * "THE BEER-WARE LICENSE" (Revision 42): |
Damien Miller | a8e06ce | 2003-11-21 23:48:55 +1100 | [diff] [blame] | 4 | * <phk@login.dknet.dk> wrote this file. As long as you retain this |
| 5 | * notice you can do whatever you want with this stuff. If we meet some |
| 6 | * day, and you think this stuff is worth it, you can buy me a beer in |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 7 | * return. Poul-Henning Kamp |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 8 | * ---------------------------------------------------------------------------- |
| 9 | */ |
| 10 | |
Damien Miller | e9cf357 | 2001-02-09 12:55:35 +1100 | [diff] [blame] | 11 | #include "includes.h" |
| 12 | |
Damien Miller | beb4ba5 | 1999-12-28 15:09:35 +1100 | [diff] [blame] | 13 | #if defined(HAVE_MD5_PASSWORDS) && !defined(HAVE_MD5_CRYPT) |
Damien Miller | ded319c | 2006-09-01 15:38:36 +1000 | [diff] [blame] | 14 | #include <sys/types.h> |
| 15 | |
| 16 | #include <string.h> |
| 17 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 18 | #include <openssl/md5.h> |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 19 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 20 | /* 0 ... 63 => ascii - 64 */ |
| 21 | static unsigned char itoa64[] = |
| 22 | "./0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz"; |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 23 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 24 | static char *magic = "$1$"; |
| 25 | |
| 26 | static char * |
| 27 | to64(unsigned long v, int n) |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 28 | { |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 29 | static char buf[5]; |
| 30 | char *s = buf; |
| 31 | |
| 32 | if (n > 4) |
| 33 | return (NULL); |
| 34 | |
| 35 | memset(buf, '\0', sizeof(buf)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 36 | while (--n >= 0) { |
| 37 | *s++ = itoa64[v&0x3f]; |
| 38 | v >>= 6; |
| 39 | } |
Damien Miller | 787b2ec | 2003-11-21 23:56:47 +1100 | [diff] [blame] | 40 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 41 | return (buf); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 42 | } |
| 43 | |
| 44 | int |
| 45 | is_md5_salt(const char *salt) |
| 46 | { |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 47 | return (strncmp(salt, magic, strlen(magic)) == 0); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 48 | } |
| 49 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 50 | char * |
| 51 | md5_crypt(const char *pw, const char *salt) |
| 52 | { |
Darren Tucker | fbddd91 | 2018-02-10 11:14:54 +1100 | [diff] [blame] | 53 | static char passwd[120], salt_copy[9]; |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 54 | static const char *sp, *ep; |
| 55 | unsigned char final[16]; |
| 56 | int sl, pl, i, j; |
| 57 | MD5_CTX ctx, ctx1; |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 58 | unsigned long l; |
| 59 | |
| 60 | /* Refine the Salt first */ |
| 61 | sp = salt; |
| 62 | |
| 63 | /* If it starts with the magic string, then skip that */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 64 | if(strncmp(sp, magic, strlen(magic)) == 0) |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 65 | sp += strlen(magic); |
| 66 | |
| 67 | /* It stops at the first '$', max 8 chars */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 68 | for (ep = sp; *ep != '$'; ep++) { |
| 69 | if (*ep == '\0' || ep >= (sp + 8)) |
| 70 | return (NULL); |
| 71 | } |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 72 | |
| 73 | /* get the length of the true salt */ |
| 74 | sl = ep - sp; |
| 75 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 76 | /* Stash the salt */ |
| 77 | memcpy(salt_copy, sp, sl); |
| 78 | salt_copy[sl] = '\0'; |
| 79 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 80 | MD5_Init(&ctx); |
| 81 | |
| 82 | /* The password first, since that is what is most unknown */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 83 | MD5_Update(&ctx, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 84 | |
| 85 | /* Then our magic string */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 86 | MD5_Update(&ctx, magic, strlen(magic)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 87 | |
| 88 | /* Then the raw salt */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 89 | MD5_Update(&ctx, sp, sl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 90 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 91 | /* Then just as many characters of the MD5(pw, salt, pw) */ |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 92 | MD5_Init(&ctx1); |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 93 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 94 | MD5_Update(&ctx1, sp, sl); |
| 95 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 96 | MD5_Final(final, &ctx1); |
| 97 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 98 | for(pl = strlen(pw); pl > 0; pl -= 16) |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 99 | MD5_Update(&ctx, final, pl > 16 ? 16 : pl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 100 | |
| 101 | /* Don't leave anything around in vm they could use. */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 102 | memset(final, '\0', sizeof final); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 103 | |
| 104 | /* Then something really weird... */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 105 | for (j = 0, i = strlen(pw); i != 0; i >>= 1) |
| 106 | if (i & 1) |
| 107 | MD5_Update(&ctx, final + j, 1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 108 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 109 | MD5_Update(&ctx, pw + j, 1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 110 | |
| 111 | /* Now make the output string */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 112 | snprintf(passwd, sizeof(passwd), "%s%s$", magic, salt_copy); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 113 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 114 | MD5_Final(final, &ctx); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 115 | |
| 116 | /* |
| 117 | * and now, just to make sure things don't run too fast |
| 118 | * On a 60 Mhz Pentium this takes 34 msec, so you would |
| 119 | * need 30 seconds to build a 1000 entry dictionary... |
| 120 | */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 121 | for(i = 0; i < 1000; i++) { |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 122 | MD5_Init(&ctx1); |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 123 | if (i & 1) |
| 124 | MD5_Update(&ctx1, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 125 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 126 | MD5_Update(&ctx1, final, 16); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 127 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 128 | if (i % 3) |
| 129 | MD5_Update(&ctx1, sp, sl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 130 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 131 | if (i % 7) |
| 132 | MD5_Update(&ctx1, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 133 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 134 | if (i & 1) |
| 135 | MD5_Update(&ctx1, final, 16); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 136 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 137 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 138 | |
| 139 | MD5_Final(final, &ctx1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 140 | } |
| 141 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 142 | l = (final[ 0]<<16) | (final[ 6]<<8) | final[12]; |
| 143 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 144 | l = (final[ 1]<<16) | (final[ 7]<<8) | final[13]; |
| 145 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 146 | l = (final[ 2]<<16) | (final[ 8]<<8) | final[14]; |
| 147 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 148 | l = (final[ 3]<<16) | (final[ 9]<<8) | final[15]; |
| 149 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 150 | l = (final[ 4]<<16) | (final[10]<<8) | final[ 5]; |
| 151 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 152 | l = final[11] ; |
| 153 | strlcat(passwd, to64(l, 2), sizeof(passwd)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 154 | |
| 155 | /* Don't leave anything around in vm they could use. */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 156 | memset(final, 0, sizeof(final)); |
| 157 | memset(salt_copy, 0, sizeof(salt_copy)); |
| 158 | memset(&ctx, 0, sizeof(ctx)); |
| 159 | memset(&ctx1, 0, sizeof(ctx1)); |
Darren Tucker | 3cb84e5 | 2003-05-30 16:58:22 +1000 | [diff] [blame] | 160 | (void)to64(0, 4); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 161 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 162 | return (passwd); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 163 | } |
| 164 | |
Damien Miller | beb4ba5 | 1999-12-28 15:09:35 +1100 | [diff] [blame] | 165 | #endif /* defined(HAVE_MD5_PASSWORDS) && !defined(HAVE_MD5_CRYPT) */ |