Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 1 | /* |
| 2 | * ---------------------------------------------------------------------------- |
| 3 | * "THE BEER-WARE LICENSE" (Revision 42): |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 4 | * <phk@login.dknet.dk> wrote this file. As long as you retain this |
| 5 | * notice you can do whatever you want with this stuff. If we meet some |
| 6 | * day, and you think this stuff is worth it, you can buy me a beer in |
| 7 | * return. Poul-Henning Kamp |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 8 | * ---------------------------------------------------------------------------- |
| 9 | */ |
| 10 | |
Damien Miller | e9cf357 | 2001-02-09 12:55:35 +1100 | [diff] [blame] | 11 | #include "includes.h" |
| 12 | |
Damien Miller | beb4ba5 | 1999-12-28 15:09:35 +1100 | [diff] [blame] | 13 | #if defined(HAVE_MD5_PASSWORDS) && !defined(HAVE_MD5_CRYPT) |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 14 | #include <openssl/md5.h> |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 15 | |
Darren Tucker | 3cb84e5 | 2003-05-30 16:58:22 +1000 | [diff] [blame] | 16 | RCSID("$Id: md5crypt.c,v 1.7 2003/05/30 06:58:23 dtucker Exp $"); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 17 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 18 | /* 0 ... 63 => ascii - 64 */ |
| 19 | static unsigned char itoa64[] = |
| 20 | "./0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz"; |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 21 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 22 | static char *magic = "$1$"; |
| 23 | |
| 24 | static char * |
| 25 | to64(unsigned long v, int n) |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 26 | { |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 27 | static char buf[5]; |
| 28 | char *s = buf; |
| 29 | |
| 30 | if (n > 4) |
| 31 | return (NULL); |
| 32 | |
| 33 | memset(buf, '\0', sizeof(buf)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 34 | while (--n >= 0) { |
| 35 | *s++ = itoa64[v&0x3f]; |
| 36 | v >>= 6; |
| 37 | } |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 38 | |
| 39 | return (buf); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 40 | } |
| 41 | |
| 42 | int |
| 43 | is_md5_salt(const char *salt) |
| 44 | { |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 45 | return (strncmp(salt, magic, strlen(magic)) == 0); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 46 | } |
| 47 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 48 | char * |
| 49 | md5_crypt(const char *pw, const char *salt) |
| 50 | { |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 51 | static char passwd[120], salt_copy[9], *p; |
| 52 | static const char *sp, *ep; |
| 53 | unsigned char final[16]; |
| 54 | int sl, pl, i, j; |
| 55 | MD5_CTX ctx, ctx1; |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 56 | unsigned long l; |
| 57 | |
| 58 | /* Refine the Salt first */ |
| 59 | sp = salt; |
| 60 | |
| 61 | /* If it starts with the magic string, then skip that */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 62 | if(strncmp(sp, magic, strlen(magic)) == 0) |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 63 | sp += strlen(magic); |
| 64 | |
| 65 | /* It stops at the first '$', max 8 chars */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 66 | for (ep = sp; *ep != '$'; ep++) { |
| 67 | if (*ep == '\0' || ep >= (sp + 8)) |
| 68 | return (NULL); |
| 69 | } |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 70 | |
| 71 | /* get the length of the true salt */ |
| 72 | sl = ep - sp; |
| 73 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 74 | /* Stash the salt */ |
| 75 | memcpy(salt_copy, sp, sl); |
| 76 | salt_copy[sl] = '\0'; |
| 77 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 78 | MD5_Init(&ctx); |
| 79 | |
| 80 | /* The password first, since that is what is most unknown */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 81 | MD5_Update(&ctx, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 82 | |
| 83 | /* Then our magic string */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 84 | MD5_Update(&ctx, magic, strlen(magic)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 85 | |
| 86 | /* Then the raw salt */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 87 | MD5_Update(&ctx, sp, sl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 88 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 89 | /* Then just as many characters of the MD5(pw, salt, pw) */ |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 90 | MD5_Init(&ctx1); |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 91 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 92 | MD5_Update(&ctx1, sp, sl); |
| 93 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 94 | MD5_Final(final, &ctx1); |
| 95 | |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 96 | for(pl = strlen(pw); pl > 0; pl -= 16) |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 97 | MD5_Update(&ctx, final, pl > 16 ? 16 : pl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 98 | |
| 99 | /* Don't leave anything around in vm they could use. */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 100 | memset(final, '\0', sizeof final); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 101 | |
| 102 | /* Then something really weird... */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 103 | for (j = 0, i = strlen(pw); i != 0; i >>= 1) |
| 104 | if (i & 1) |
| 105 | MD5_Update(&ctx, final + j, 1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 106 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 107 | MD5_Update(&ctx, pw + j, 1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 108 | |
| 109 | /* Now make the output string */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 110 | snprintf(passwd, sizeof(passwd), "%s%s$", magic, salt_copy); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 111 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 112 | MD5_Final(final, &ctx); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 113 | |
| 114 | /* |
| 115 | * and now, just to make sure things don't run too fast |
| 116 | * On a 60 Mhz Pentium this takes 34 msec, so you would |
| 117 | * need 30 seconds to build a 1000 entry dictionary... |
| 118 | */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 119 | for(i = 0; i < 1000; i++) { |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 120 | MD5_Init(&ctx1); |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 121 | if (i & 1) |
| 122 | MD5_Update(&ctx1, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 123 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 124 | MD5_Update(&ctx1, final, 16); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 125 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 126 | if (i % 3) |
| 127 | MD5_Update(&ctx1, sp, sl); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 128 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 129 | if (i % 7) |
| 130 | MD5_Update(&ctx1, pw, strlen(pw)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 131 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 132 | if (i & 1) |
| 133 | MD5_Update(&ctx1, final, 16); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 134 | else |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 135 | MD5_Update(&ctx1, pw, strlen(pw)); |
| 136 | |
| 137 | MD5_Final(final, &ctx1); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 138 | } |
| 139 | |
| 140 | p = passwd + strlen(passwd); |
| 141 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 142 | l = (final[ 0]<<16) | (final[ 6]<<8) | final[12]; |
| 143 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 144 | l = (final[ 1]<<16) | (final[ 7]<<8) | final[13]; |
| 145 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 146 | l = (final[ 2]<<16) | (final[ 8]<<8) | final[14]; |
| 147 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 148 | l = (final[ 3]<<16) | (final[ 9]<<8) | final[15]; |
| 149 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 150 | l = (final[ 4]<<16) | (final[10]<<8) | final[ 5]; |
| 151 | strlcat(passwd, to64(l, 4), sizeof(passwd)); |
| 152 | l = final[11] ; |
| 153 | strlcat(passwd, to64(l, 2), sizeof(passwd)); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 154 | |
| 155 | /* Don't leave anything around in vm they could use. */ |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 156 | memset(final, 0, sizeof(final)); |
| 157 | memset(salt_copy, 0, sizeof(salt_copy)); |
| 158 | memset(&ctx, 0, sizeof(ctx)); |
| 159 | memset(&ctx1, 0, sizeof(ctx1)); |
Darren Tucker | 3cb84e5 | 2003-05-30 16:58:22 +1000 | [diff] [blame] | 160 | (void)to64(0, 4); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 161 | |
Damien Miller | e7fb103 | 2003-05-19 00:46:46 +1000 | [diff] [blame] | 162 | return (passwd); |
Damien Miller | dd1c7ba | 1999-11-19 15:53:20 +1100 | [diff] [blame] | 163 | } |
| 164 | |
Damien Miller | beb4ba5 | 1999-12-28 15:09:35 +1100 | [diff] [blame] | 165 | #endif /* defined(HAVE_MD5_PASSWORDS) && !defined(HAVE_MD5_CRYPT) */ |