2 * Copyright (c) 2004, 2005, 2006, 2007 Secure Endpoints Inc.
3 * Copyright (c) 2003 SkyRope, LLC
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions are met:
9 * - Redistributions of source code must retain the above copyright notice,
10 * this list of conditions and the following disclaimer.
11 * - Redistributions in binary form must reproduce the above copyright notice,
12 * this list of conditions and the following disclaimer in the documentation
13 * and/or other materials provided with the distribution.
14 * - Neither the name of Skyrope, LLC nor the names of its contributors may be
15 * used to endorse or promote products derived from this software without
16 * specific prior written permission from Skyrope, LLC.
18 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
19 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
20 * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A
21 * PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER
22 * OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
23 * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
24 * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
25 * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
26 * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
27 * NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
28 * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
30 * Portions of this code are derived from portions of the MIT
31 * Leash Ticket Manager and LoadFuncs utilities. For these portions the
32 * following copyright applies.
34 * Copyright (c) 2003,2004 by the Massachusetts Institute of Technology.
35 * All rights reserved.
37 * Export of this software from the United States of America may
38 * require a specific license from the United States Government.
39 * It is the responsibility of any person or organization contemplating
40 * export to obtain such a license before exporting.
42 * WITHIN THAT CONSTRAINT, permission to use, copy, modify, and
43 * distribute this software and its documentation for any purpose and
44 * without fee is hereby granted, provided that the above copyright
45 * notice appear in all copies and that both that copyright notice and
46 * this permission notice appear in supporting documentation, and that
47 * the name of M.I.T. not be used in advertising or publicity pertaining
48 * to distribution of the software without specific, written prior
49 * permission. Furthermore if you modify this software you must label
50 * your software as modified software and not distribute it in such a
51 * fashion that it might be confused with the original M.I.T. software.
52 * M.I.T. makes no representations about the suitability of
53 * this software for any purpose. It is provided "as is" without express
54 * or implied warranty.
63 #define SECURITY_WIN32
65 #if _WIN32_WINNT < 0x0501
67 #define _WIN32_WINNT 0x0501
70 #endif /* USE_MS2MIT */
77 #include <loadfuncs-lsa.h>
78 #endif /* USE_MS2MIT */
85 /* Defined in the KRBV4W32 version of krb.h but not the Kerberos V version */
86 /* Required for some of the loadfuncs headers */
87 typedef struct ktext far *KTEXT;
88 typedef struct ktext far *KTEXT_FP;
89 #include <KerberosIV/krb.h>
91 /* AFS has its own version of com_err.h */
92 typedef afs_int32 errcode_t;
94 #include <loadfuncs-com_err.h>
95 #include <loadfuncs-krb5.h>
96 #include <loadfuncs-profile.h>
97 #include <loadfuncs-krb.h>
98 #include <loadfuncs-krb524.h>
99 #include <loadfuncs-leash.h>
101 // service definitions
102 #define SERVICE_DLL "advapi32.dll"
103 typedef SC_HANDLE (WINAPI *FP_OpenSCManagerA)(char *, char *, DWORD);
104 typedef SC_HANDLE (WINAPI *FP_OpenServiceA)(SC_HANDLE, char *, DWORD);
105 typedef BOOL (WINAPI *FP_QueryServiceStatus)(SC_HANDLE, LPSERVICE_STATUS);
106 typedef BOOL (WINAPI *FP_CloseServiceHandle)(SC_HANDLE);
108 #define KRB5_DEFAULT_LIFE 60*60*10 /* 10 hours */
109 #define LSA_CCNAME "MSLSA:"
112 #define KTC_ERROR 11862784L
113 #define KTC_TOOBIG 11862785L
114 #define KTC_INVAL 11862786L
115 #define KTC_NOENT 11862787L
116 #define KTC_PIOCTLFAIL 11862788L
117 #define KTC_NOPIOCTL 11862789L
118 #define KTC_NOCELL 11862790L
119 #define KTC_NOCM 11862791L
122 /* User Query data structures and functions */
125 char * buf; /* Destination buffer address */
126 int len; /* Destination buffer length */
127 char * label; /* Label for this field */
128 char * def; /* Default response for this field */
129 int echo; /* 0 = no, 1 = yes, 2 = asterisks */
133 #define ID_MID_TEXT 300
135 struct principal_ccache_data {
136 struct principal_ccache_data * next;
145 struct cell_principal_map {
146 struct cell_principal_map * next;
152 /* In order to avoid including the private CCAPI headers */
153 typedef int cc_int32;
155 #define CC_API_VER_1 1
156 #define CC_API_VER_2 2
158 #define CCACHE_API cc_int32
161 ** The Official Error Codes
165 #define CC_NOTFOUND 2
172 #define CC_BAD_API_VERSION 9
173 #define CC_NO_EXIST 10
174 #define CC_NOT_SUPP 11
175 #define CC_BAD_PARM 12
176 #define CC_ERR_CACHE_ATTACH 13
177 #define CC_ERR_CACHE_RELEASE 14
178 #define CC_ERR_CACHE_FULL 15
179 #define CC_ERR_CRED_VERSION 16
182 CC_CRED_VUNKNOWN = 0, // For validation
185 CC_CRED_VMAX = 3 // For validation
188 typedef struct opaque_dll_control_block_type* apiCB;
189 typedef struct _infoNC {
200 apiCB** cc_ctx, // < DLL's primary control structure.
201 // returned here, passed everywhere else
202 cc_int32 api_version, // > ver supported by caller (use CC_API_VER_1)
203 cc_int32* api_supported, // < if ~NULL, max ver supported by DLL
204 const char** vendor // < if ~NULL, vendor name in read only C string
213 apiCB** cc_ctx // <> DLL's primary control structure. NULL after
222 apiCB* cc_ctx, // > DLL's primary control structure
223 struct _infoNC*** ppNCi // < (NULL before call) null terminated,
224 // list of a structs (free via cc_free_infoNC())
234 struct _infoNC*** ppNCi // < free list of structs returned by
235 // cc_get_cache_names(). set to NULL on return
240 #define CCAPI_DLL "krbcc64.dll"
242 #define CCAPI_DLL "krbcc32.dll"
245 /* Function Prototypes */
246 DWORD GetServiceStatus(LPSTR, LPSTR, DWORD *);
247 void KFW_AFS_error(LONG, LPCSTR);
249 void UnloadFuncs(FUNC_INFO [], HINSTANCE);
250 int LoadFuncs(const char*, FUNC_INFO [], HINSTANCE*, int*, int, int, int);
251 int KFW_get_ccache(krb5_context, krb5_principal, krb5_ccache *);
252 int KFW_error(krb5_error_code, LPCSTR, int, krb5_context *, krb5_ccache *);
253 int KFW_kinit(krb5_context, krb5_ccache, HWND, char *, char *, krb5_deltat,
254 DWORD, DWORD, krb5_deltat, DWORD, DWORD);
255 int KFW_renew(krb5_context, krb5_ccache);
256 int KFW_destroy(krb5_context, krb5_ccache);
257 BOOL KFW_ms2mit(krb5_context, krb5_ccache, BOOL);
258 int KFW_AFS_unlog(void);
259 int KFW_AFS_klog(krb5_context, krb5_ccache, char*, char*, char*, int, char*);
260 void KFW_import_ccache_data(void);
261 BOOL MSLSA_IsKerberosLogon();
262 char *afs_realm_of_cell(krb5_context, struct afsconf_cell *);
263 #endif /* AFSKFW_INT_H */