/* LIST EVERTHING */ void tool_list(int argc, char *argv[]) { int32_t id; PDB_profile sample; PDB_HANDLE h; int rc; if (check_args_num(argc, 1)) { printf("Usage: list\n"); return; } h = PDB_db_open(O_RDONLY); while ((rc = PDB_db_nextkey(h, &id))) { if (rc == -1) continue; PDB_readProfile(h, id, &sample); PDB_printProfile(stdout, &sample); PDB_freeProfile(&sample); } PDB_db_close(h); }
void PDB_bugfixes(void) { PDB_HANDLE h; /* fixups for old bugs */ int32_t id; pdb_array_off off; int rc, n; PDB_profile p, r; h = PDB_db_open(O_RDWR); while ( (rc = PDB_db_nextkey(h, &id)) ) { if ( rc == -1 ) continue; PDB_readProfile(h, id, &p); CODA_ASSERT(p.id != 0); if (PDB_ISGROUP(p.id)) { /* BUG: forgot to update owner_id when changing a user's uid */ PDB_lookupByName(p.owner_name, &id); if (p.owner_id != id) { fprintf(stderr, "Group %d owner name %s didn't match owner id %d, FIXED\n", p.id, p.owner_name, p.owner_id); p.owner_id = id; PDB_writeProfile(h, &p); } /* BUG: we added userid's to a group's member_of list */ again: id = pdb_array_head(&p.member_of, &off); while(id != 0) { if (PDB_ISUSER(id)) { pdb_array_del(&p.member_of, id); PDB_updateCps(h, &p); fprintf(stderr, "Group %d was listed as a member of userid %d, FIXED\n", p.id, id); goto again; } id = pdb_array_next(&p.member_of, &off); } /* BUG: we forgot to change userid's in a group's groups_or_members * list (fix part 1, removes non-existing or non-member * userids) */ again2: id = pdb_array_head(&p.groups_or_members, &off); while(id != 0) { if (PDB_ISUSER(id)) { PDB_readProfile(h, id, &r); CODA_ASSERT(r.id != 0); n = pdb_array_search(&r.member_of, p.id); if (n == -1) { pdb_array_del(&p.groups_or_members, id); PDB_updateCps(h, &p); PDB_freeProfile(&r); fprintf(stderr, "Group %d had nonexisting member %d, FIXED\n", p.id, id); goto again2; } PDB_freeProfile(&r); } id = pdb_array_next(&p.groups_or_members, &off); } } else /* PDB_ISUSER(p.id) */ { /* BUG: we forgot to change userid's in a group's groups_or_members * list (fix part 2, adds missing members to groups)*/ id = pdb_array_head(&p.member_of, &off); while (id != 0) { if (PDB_ISGROUP(id)) { PDB_readProfile(h, id, &r); CODA_ASSERT(r.id != 0); n = pdb_array_search(&r.groups_or_members, p.id); if (n == -1) { pdb_array_add(&r.groups_or_members, p.id); PDB_updateCps(h, &r); fprintf(stderr, "Group %d was missing member %d, FIXED\n", id, p.id); } PDB_freeProfile(&r); } id = pdb_array_next(&p.member_of, &off); } } PDB_freeProfile(&p); } PDB_db_close(h); /* iterate through the whole database again and this time make sure that * all the CPS arrays are consistent. */ h = PDB_db_open(O_RDWR); while ( (rc = PDB_db_nextkey(h, &id)) ) { if ( rc == -1 ) continue; PDB_readProfile(h, id, &p); if (p.id == 0) continue; PDB_updateCps(h, &p); PDB_freeProfile(&p); } PDB_db_close(h); }
/* dump/restore database contents */ void tool_export(int argc, char *argv[]) { int32_t id, i; PDB_profile rec; PDB_HANDLE h; FILE *userfile, *groupfile; char *s; int rc; if (check_args_num(argc, 3)) { printf("Usage: export <userfile> <groupfile>\n"); return; } userfile = fopen(argv[1], "w"); groupfile = fopen(argv[2], "w"); h = PDB_db_open(O_RDONLY); while ((rc = PDB_db_nextkey(h, &id))) { if (rc == -1) continue; PDB_readProfile(h, id, &rec); { if (rec.id == 0) continue; if (PDB_ISUSER(rec.id)) { /* users are dumped in an /etc/passwd like format * "<username>:x:<userid>:500::/:" */ fprintf(userfile, "%s:*:%d:500::/:\n", rec.name, rec.id); } else { /* groups and group members are dumped in an /etc/group like * format "<groupname>:x:<groupid>:<owner>[,<members>]*" */ /* escape the :'s in the group names */ s = rec.name; while ((s = strchr(s, ':')) != NULL) *s = '%'; PDB_lookupById(rec.owner_id, &s); fprintf(groupfile, "%s:*:%d:%s", rec.name, rec.id, s); free(s); for (i = 0; i < rec.groups_or_members.size; i++) { if (rec.groups_or_members.data[i] == rec.owner_id) continue; PDB_lookupById(rec.groups_or_members.data[i], &s); if (s == NULL) continue; fprintf(groupfile, ",%s", s); free(s); } fprintf(groupfile, "\n"); } } PDB_freeProfile(&rec); } PDB_db_close(h); fclose(userfile); fclose(groupfile); }
/* dump/restore database contents */ void tool_ldif_export(int argc, char *argv[]) { int32_t id, i; PDB_profile rec; PDB_HANDLE h; FILE *ldiffile; char *s, *basedn; int rc, pass = 0; if (check_args_num(argc, 3)) { printf("Usage: ldif_export <ldif-file> <basedn>\n"); return; } ldiffile = fopen(argv[1], "w"); basedn = argv[2]; again: h = PDB_db_open(O_RDONLY); while ((rc = PDB_db_nextkey(h, &id))) { if (rc == -1) continue; PDB_readProfile(h, id, &rec); { if (rec.id == 0) continue; if (PDB_ISUSER(rec.id)) { /* skip users during the second pass */ if (pass == 1) continue; /* users are dumped as: * * dn: cn=<name>,$basedn * objectClass: top * objectClass: person * objectClass: organizationalPerson * objectClass: inetOrgPerson * objectClass: codaAccount * cn: <name> * uid: <username> * uidNumber: <userid> * * And we 'invent' 2 fields that are required by posixAccount, * gidNumber: 65535 * homeDirectory: /coda/<realm>/usr/<username> */ fprintf(ldiffile, "dn: cn=%s,%s\n" "objectClass: top\n" "objectClass: person\n" "objectClass: organizationalPerson\n" "objectClass: inetOrgPerson\n" "objectClass: posixAccount\n" "cn: %s\nuid: %s\nuidNumber: %d\n" "gidNumber: 65535\n" "homeDirectory: /coda/myrealm/usr/%s\n" "#mail: %s@mydomain\n\n", rec.name, basedn, rec.name, rec.name, rec.id, rec.name, rec.name); } else { /* skip groups during the first pass */ if (pass == 0) continue; /* groups and group members are dumped as follows: * * dn: cn=<groupname>,$basedn * objectClass: top * objectClass: groupOfNames * objectClass: posixGroup * cn: <groupname> * gidNumber: -<groupid> * owner: <ownerdn> * member: <member1dn> * member: <member2dn> * ... */ PDB_lookupById(rec.owner_id, &s); CODA_ASSERT(s != NULL); fprintf(ldiffile, "dn: cn=%s,%s\n" "objectClass: top\n" "objectClass: groupOfNames\n" "objectClass: posixGroup\n" "#description:\n" "cn: %s\ngidNumber: %d\nowner: %s,%s\n", rec.name, basedn, rec.name, -rec.id, s, basedn); free(s); for (i = 0; i < rec.groups_or_members.size; i++) { PDB_lookupById(rec.groups_or_members.data[i], &s); if (s == NULL) continue; fprintf(ldiffile, "member: cn=%s,%s\n", s, basedn); free(s); } fprintf(ldiffile, "\n"); } } PDB_freeProfile(&rec); } PDB_db_close(h); /* we make second pass to dump the groups after the users */ if (pass == 0) { pass = 1; goto again; } fclose(ldiffile); }