3 * David L. Nugent. All rights reserved.
5 * Redistribution and use in source and binary forms, with or without
6 * modification, are permitted provided that the following conditions
8 * 1. Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 * 2. Redistributions in binary form must reproduce the above copyright
11 * notice, this list of conditions and the following disclaimer in the
12 * documentation and/or other materials provided with the distribution.
14 * THIS SOFTWARE IS PROVIDED BY DAVID L. NUGENT AND CONTRIBUTORS ``AS IS'' AND
15 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
16 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
17 * ARE DISCLAIMED. IN NO EVENT SHALL DAVID L. NUGENT OR CONTRIBUTORS BE LIABLE
18 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
19 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
20 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
21 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
22 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
23 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 static const char rcsid[] =
32 #include <sys/types.h>
70 static char bourne_shell[] = "sh";
72 static char *system_shells[_UC_MAXSHELLS] =
79 static char const *booltrue[] =
81 "yes", "true", "1", "on", NULL
83 static char const *boolfalse[] =
85 "no", "false", "0", "off", NULL
88 static struct userconf config =
90 0, /* Default password for new users? (nologin) */
93 NULL, /* NIS version of the passwd file */
94 "/usr/share/skel", /* Where to obtain skeleton files */
95 NULL, /* Mail to send to new accounts */
96 "/var/log/userlog", /* Where to log changes */
97 "/home", /* Where to create home directory */
98 _DEF_DIRMODE, /* Home directory perms, modified by umask */
99 "/bin", /* Where shells are located */
100 system_shells, /* List of shells (first is default) */
101 bourne_shell, /* Default shell */
102 NULL, /* Default group name */
103 NULL, /* Default (additional) groups */
104 NULL, /* Default login class */
105 1000, 32000, /* Allowed range of uids */
106 1000, 32000, /* Allowed range of gids */
107 0, /* Days until account expires */
108 0 /* Days until password expires */
111 static char const *comments[_UC_FIELDS] =
113 "#\n# pw.conf - user/group configuration defaults\n#\n",
114 "\n# Password for new users? no=nologin yes=loginid none=blank random=random\n",
115 "\n# Reuse gaps in uid sequence? (yes or no)\n",
116 "\n# Reuse gaps in gid sequence? (yes or no)\n",
117 "\n# Path to the NIS passwd file (blank or 'no' for none)\n",
118 "\n# Obtain default dotfiles from this directory\n",
119 "\n# Mail this file to new user (/etc/newuser.msg or no)\n",
120 "\n# Log add/change/remove information in this file\n",
121 "\n# Root directory in which $HOME directory is created\n",
122 "\n# Mode for the new $HOME directory, will be modified by umask\n",
123 "\n# Colon separated list of directories containing valid shells\n",
124 "\n# Comma separated list of available shells (without paths)\n",
125 "\n# Default shell (without path)\n",
126 "\n# Default group (leave blank for new group per user)\n",
127 "\n# Extra groups for new users\n",
128 "\n# Default login class for new users\n",
129 "\n# Range of valid default user ids\n",
131 "\n# Range of valid default group ids\n",
133 "\n# Days after which account expires (0=disabled)\n",
134 "\n# Days after which password expires (0=disabled)\n"
137 static char const *kwds[] =
165 unquote(char const * str)
167 if (str && (*str == '"' || *str == '\'')) {
168 char *p = strchr(str + 1, *str);
172 return (char *) (*++str ? str : NULL);
178 boolean_val(char const * str, int dflt)
180 if ((str = unquote(str)) != NULL) {
183 for (i = 0; booltrue[i]; i++)
184 if (strcmp(str, booltrue[i]) == 0)
186 for (i = 0; boolfalse[i]; i++)
187 if (strcmp(str, boolfalse[i]) == 0)
194 passwd_val(char const * str, int dflt)
196 if ((str = unquote(str)) != NULL) {
199 for (i = 0; booltrue[i]; i++)
200 if (strcmp(str, booltrue[i]) == 0)
202 for (i = 0; boolfalse[i]; i++)
203 if (strcmp(str, boolfalse[i]) == 0)
207 * Special cases for defaultpassword
209 if (strcmp(str, "random") == 0)
211 if (strcmp(str, "none") == 0)
214 errx(1, "Invalid value for default password");
227 return val ? booltrue[0] : boolfalse[0];
231 newstr(char const * p)
235 if ((p = unquote(p)) == NULL)
238 if ((q = strdup(p)) == NULL)
245 read_userconfig(char const * file)
257 file = _PATH_PW_CONF;
259 if ((fp = fopen(file, "r")) == NULL)
262 while ((linelen = getline(&buf, &linecap, fp)) > 0) {
263 if (*buf && (p = strtok(buf, " \t\r\n=")) != NULL && *p != '#') {
264 static char const toks[] = " \t\r\n,=";
265 char *q = strtok(NULL, toks);
269 while (i < _UC_FIELDS && strcmp(p, kwds[i]) != 0)
273 printf("Got unknown kwd `%s' val=`%s'\n", p, q ? q : "");
275 printf("Got kwd[%s]=%s\n", p, q);
279 config.default_password = passwd_val(q, 1);
282 config.reuse_uids = boolean_val(q, 0);
285 config.reuse_gids = boolean_val(q, 0);
288 config.nispasswd = (q == NULL || !boolean_val(q, 1))
292 config.dotdir = (q == NULL || !boolean_val(q, 1))
296 config.newmail = (q == NULL || !boolean_val(q, 1))
300 config.logfile = (q == NULL || !boolean_val(q, 1))
304 config.home = (q == NULL || !boolean_val(q, 1))
305 ? "/home" : newstr(q);
308 modeset = setmode(q);
309 config.homemode = (q == NULL || !boolean_val(q, 1))
310 ? _DEF_DIRMODE : getmode(modeset, _DEF_DIRMODE);
314 config.shelldir = (q == NULL || !boolean_val(q, 1))
315 ? "/bin" : newstr(q);
318 for (i = 0; i < _UC_MAXSHELLS && q != NULL; i++, q = strtok(NULL, toks))
319 system_shells[i] = newstr(q);
321 while (i < _UC_MAXSHELLS)
322 system_shells[i++] = NULL;
324 case _UC_DEFAULTSHELL:
325 config.shell_default = (q == NULL || !boolean_val(q, 1))
326 ? (char *) bourne_shell : newstr(q);
328 case _UC_DEFAULTGROUP:
330 config.default_group = (q == NULL || !boolean_val(q, 1) || GETGRNAM(q) == NULL)
333 case _UC_EXTRAGROUPS:
334 while ((q = strtok(NULL, toks)) != NULL) {
335 if (config.groups == NULL)
336 config.groups = sl_init();
337 sl_add(config.groups, newstr(q));
340 case _UC_DEFAULTCLASS:
341 config.default_class = (q == NULL || !boolean_val(q, 1))
345 if ((q = unquote(q)) != NULL) {
346 config.min_uid = strtounum(q, 0,
349 warnx("Invalid min_uid: '%s';"
354 if ((q = unquote(q)) != NULL) {
355 config.max_uid = strtounum(q, 0,
358 warnx("Invalid max_uid: '%s';"
363 if ((q = unquote(q)) != NULL) {
364 config.min_gid = strtounum(q, 0,
367 warnx("Invalid min_gid: '%s';"
372 if ((q = unquote(q)) != NULL) {
373 config.max_gid = strtounum(q, 0,
376 warnx("Invalid max_gid: '%s';"
381 if ((q = unquote(q)) != NULL) {
382 config.expire_days = strtonum(q, 0,
385 warnx("Invalid expire days:"
386 " '%s'; ignoring", q);
390 if ((q = unquote(q)) != NULL) {
391 config.password_days = strtonum(q, 0,
394 warnx("Invalid password days:"
395 " '%s'; ignoring", q);
412 write_userconfig(struct userconf *cnf, const char *file)
420 file = _PATH_PW_CONF;
422 if ((fd = open(file, O_CREAT|O_RDWR|O_TRUNC|O_EXLOCK, 0644)) == -1)
425 if ((fp = fdopen(fd, "w")) == NULL) {
430 buf = sbuf_new_auto();
431 for (i = _UC_NONE; i < _UC_FIELDS; i++) {
437 sbuf_cat(buf, boolean_str(cnf->default_password));
440 sbuf_cat(buf, boolean_str(cnf->reuse_uids));
443 sbuf_cat(buf, boolean_str(cnf->reuse_gids));
446 sbuf_cat(buf, cnf->nispasswd ? cnf->nispasswd : "");
450 sbuf_cat(buf, cnf->dotdir ? cnf->dotdir :
454 sbuf_cat(buf, cnf->newmail ? cnf->newmail :
458 sbuf_cat(buf, cnf->logfile ? cnf->logfile :
462 sbuf_cat(buf, cnf->home);
465 sbuf_printf(buf, "%04o", cnf->homemode);
469 sbuf_cat(buf, cnf->shelldir);
472 for (j = 0; j < _UC_MAXSHELLS &&
473 system_shells[j] != NULL; j++)
474 sbuf_printf(buf, "%s\"%s\"", j ?
475 "," : "", system_shells[j]);
478 case _UC_DEFAULTSHELL:
479 sbuf_cat(buf, cnf->shell_default ?
480 cnf->shell_default : bourne_shell);
482 case _UC_DEFAULTGROUP:
483 sbuf_cat(buf, cnf->default_group ?
484 cnf->default_group : "");
486 case _UC_EXTRAGROUPS:
487 for (j = 0; cnf->groups != NULL &&
488 j < (int)cnf->groups->sl_cur; j++)
489 sbuf_printf(buf, "%s\"%s\"", j ?
490 "," : "", cnf->groups->sl_str[j]);
493 case _UC_DEFAULTCLASS:
494 sbuf_cat(buf, cnf->default_class ?
495 cnf->default_class : "");
498 sbuf_printf(buf, "%ju", (uintmax_t)cnf->min_uid);
502 sbuf_printf(buf, "%ju", (uintmax_t)cnf->max_uid);
506 sbuf_printf(buf, "%ju", (uintmax_t)cnf->min_gid);
510 sbuf_printf(buf, "%ju", (uintmax_t)cnf->max_gid);
514 sbuf_printf(buf, "%jd", (intmax_t)cnf->expire_days);
518 sbuf_printf(buf, "%jd", (intmax_t)cnf->password_days);
527 fputs(comments[i], fp);
531 fprintf(fp, "%s = \"%s\"\n", kwds[i],
534 fprintf(fp, "%s = %s\n", kwds[i], sbuf_data(buf));
536 printf("WROTE: %s = %s\n", kwds[i], sbuf_data(buf));
541 return (fclose(fp) != EOF);