2 * Copyright 2000, International Business Machines Corporation and others.
5 * This software has been released under the terms of the IBM Public
6 * License. For details, see the LICENSE file in the top-level source
7 * directory or online at http://www.openafs.org/dl/license10.html
10 #include <afsconfig.h>
11 #include <afs/param.h>
20 #include <sys/types.h>
25 #include <WINNT/afsevent.h>
26 #include <WINNT/afsreg.h>
28 #include <netinet/in.h>
30 #include <afs/cellconfig.h>
36 #include "ptprototypes.h"
37 #include <afs/afsutil.h>
38 #include <afs/com_err.h>
47 extern struct ubik_client *pruclient;
50 struct sourcestack *s_next;
57 char cell[MAXCELLCHARS];
60 static int CleanUp(struct cmd_syndesc *as, void *arock);
63 pts_Interactive(struct cmd_syndesc *as, void *arock)
71 pts_Quit(struct cmd_syndesc *as, void *arock)
78 pts_Source(struct cmd_syndesc *as, void *arock)
81 struct sourcestack *sp;
84 if (!as->parms[0].items) {
85 /* can this happen? */
88 fd = fopen(as->parms[0].items->data, "r");
90 perror(as->parms[0].items->data);
93 sp = (struct sourcestack *)malloc(sizeof *sp);
95 return errno ? errno : ENOMEM;
106 pts_Sleep(struct cmd_syndesc *as, void *arock)
109 if (!as->parms[0].items) {
110 /* can this happen? */
113 delay = atoi(as->parms[0].items->data);
114 #ifdef AFS_PTHREAD_ENV
125 struct sourcestack *sp;
139 /* OK, this REALLY sucks bigtime, but I can't tell who is calling
140 * afsconf_CheckAuth easily, and only *SERVERS* should be calling osi_audit
141 * anyway. It's gonna give somebody fits to debug, I know, I know.
148 win32_enableCrypt(void)
155 /* Look up configuration parameters in Registry */
156 code = RegOpenKeyEx(HKEY_LOCAL_MACHINE, AFSREG_CLT_SVC_PARAM_SUBKEY,
157 0, (IsWow64()?KEY_WOW64_64KEY:0)|KEY_QUERY_VALUE, &parmKey);
158 if (code != ERROR_SUCCESS) {
159 dummyLen = sizeof(cryptall);
160 RegQueryValueEx(parmKey, "SecurityLevel", NULL, NULL,
161 (BYTE *) &cryptall, &dummyLen);
163 RegCloseKey (parmKey);
167 #endif /* AFS_NT40_ENV */
170 GetGlobals(struct cmd_syndesc *as, void *arock)
172 struct authstate *state = (struct authstate *) arock;
181 if (!strcmp(as->name, "help"))
189 if (state->confdir == NULL) {
193 if (as->parms[16].items) {
195 cell = as->parms[16].items->data;
197 if (as->parms[17].items) { /* -noauth */
201 if (as->parms[20].items) { /* -localauth */
205 if (as->parms[21].items) { /* -auth */
209 if (as->parms[22].items /* -encrypt */
211 || win32_enableCrypt()
212 #endif /* AFS_NT40_ENV */
217 if (as->parms[18].items || as->parms[20].items) { /* -test, -localauth */
219 confdir = AFSDIR_SERVER_ETC_DIRPATH;
222 confdir = AFSDIR_SERVER_ETC_DIRPATH;
224 confdir = AFSDIR_CLIENT_ETC_DIRPATH;
228 code = pr_Initialize(sec, confdir, cell);
233 afs_com_err(whoami, code, "while initializing");
237 state->confdir = confdir;
238 if (cell && cell != state->cell)
239 strncpy(state->cell, cell, MAXCELLCHARS-1);
242 if (as->parms[19].items)
249 CleanUp(struct cmd_syndesc *as, void *arock)
251 if (as && !strcmp(as->name, "help"))
254 /* Need to shutdown the ubik_client & other connections */
262 CreateGroup(struct cmd_syndesc *as, void *arock)
267 struct cmd_item *namei;
268 struct cmd_item *idi;
270 namei = as->parms[0].items;
271 idi = as->parms[2].items;
272 if (as->parms[1].items)
273 owner = as->parms[1].items->data;
279 code = util_GetInt32(idi->data, &id);
281 afs_com_err(whoami, code, "because group id was: '%s'",
287 afs_com_err(whoami, code, "because group id %d was not negative",
293 printf("0 isn't a valid user id; aborting\n");
301 code = pr_CreateGroup(namei->data, owner, &id);
304 afs_com_err(whoami, code,
305 "; unable to create group %s with id %d%s%s%s%s",
306 namei->data, id, owner ? " owned by '" : "",
307 owner ? owner : "", owner ? "'" : "",
308 (force ? " (ignored)" : ""));
310 afs_com_err(whoami, code, "; unable to create group %s %s",
311 namei->data, (force ? "(ignored)" : ""));
315 printf("group %s has id %d\n", namei->data, id);
322 CreateUser(struct cmd_syndesc *as, void *arock)
326 struct cmd_item *namei;
327 struct cmd_item *idi;
329 namei = as->parms[0].items;
330 idi = as->parms[1].items;
334 code = util_GetInt32(idi->data, &id);
336 afs_com_err(whoami, code, "because id was: '%s'", idi->data);
340 printf("0 isn't a valid user id; aborting\n");
345 afs_com_err(whoami, code, "because user id %d was not positive",
353 code = pr_CreateUser(namei->data, &id);
356 afs_com_err(whoami, code,
357 "; unable to create user %s with id %d %s",
358 namei->data, id, (force ? "(ignored)" : ""));
360 afs_com_err(whoami, code, "; unable to create user %s %s",
361 namei->data, (force ? "(ignored)" : ""));
365 printf("User %s has id %d\n", namei->data, id);
374 GetNameOrId(struct cmd_syndesc *as, struct idlist *lids, struct namelist *lnames)
381 if (!(as->parms[0].items || as->parms[1].items)) {
382 afs_com_err(whoami, 0, "must specify either a name or an id.");
385 if (as->parms[0].items && as->parms[1].items) {
386 afs_com_err(whoami, 0, "can't specify both a name and id.");
391 lids->idlist_len = 0;
392 lids->idlist_val = 0;
394 if (as->parms[0].items) { /* name */
395 struct namelist names; /* local copy, if not ret. names */
398 names.namelist_val = 0; /* so it gets freed later if needed */
404 n = 0; /* count names */
405 for (i = as->parms[0].items; i; i = i->next)
407 nl->namelist_val = (prname *) malloc(n * PR_MAXNAMELEN);
408 nl->namelist_len = n;
410 for (i = as->parms[0].items; i; i = i->next)
411 strncpy(nl->namelist_val[n++], i->data, PR_MAXNAMELEN);
413 code = pr_NameToId(nl, lids);
415 afs_com_err(whoami, code, "so couldn't look up names");
417 for (n = 0; n < lids->idlist_len; n++) {
418 if ((lids->idlist_val[n] == ANONYMOUSID)) {
419 afs_com_err(whoami, PRNOENT, "so couldn't look up id for %s",
420 nl->namelist_val[n]);
424 /* treat things as working if any of the lookups worked */
429 if (names.namelist_val)
430 free(names.namelist_val);
431 } else if (as->parms[1].items) { /* id */
433 for (i = as->parms[1].items; i; i = i->next)
435 lids->idlist_val = (afs_int32 *) malloc(n * sizeof(afs_int32));
436 lids->idlist_len = n;
438 for (i = as->parms[1].items; i; i = i->next) {
439 code = util_GetInt32(i->data, &lids->idlist_val[n]);
441 afs_com_err(whoami, code =
442 PRNOENT, "because a bogus id '%s' was specified",
446 if (!code && lnames) {
447 lnames->namelist_val = 0;
448 lnames->namelist_len = 0;
449 code = pr_IdToName(lids, lnames);
451 afs_com_err(whoami, code, "translating ids");
455 if (lids->idlist_val)
456 free(lids->idlist_val);
465 GetNameOrId(struct cmd_syndesc *as, struct idlist *lids,
466 struct namelist *lnames)
469 int n = 0, nd = 0, nm = 0, id, x;
471 struct namelist names, tnames; /* local copy, if not ret. names */
472 struct idlist ids, tids; /* local copy, if not ret. ids */
475 for (i = as->parms[0].items; i; i = i->next)
477 lids->idlist_val = (afs_int32 *) malloc(n * sizeof(afs_int32));
478 lids->idlist_len = n;
479 ids.idlist_val = (afs_int32 *) malloc(n * sizeof(afs_int32));
481 names.namelist_val = (prname *) malloc(n * PR_MAXNAMELEN);
482 names.namelist_len = n;
484 lnames->namelist_val = (prname *) malloc(n * PR_MAXNAMELEN);
485 lnames->namelist_len = 0;
487 for (i = as->parms[0].items; i; i = i->next) {
488 tnames.namelist_val = (prname *) malloc(PR_MAXNAMELEN);
489 strncpy(tnames.namelist_val[0], i->data, PR_MAXNAMELEN);
490 tnames.namelist_len = 1;
493 code = pr_NameToId(&tnames, &tids);
494 if ((!code && (tids.idlist_val[0] != 32766))
495 || (code = util_GetInt32(i->data, &id))) {
496 /* Assume it's a name instead */
497 strncpy(names.namelist_val[nm++], i->data, PR_MAXNAMELEN);
499 ids.idlist_val[nd++] = id;
501 free(tnames.namelist_val);
503 names.namelist_len = nm;
505 tids.idlist_len = nd = nm = 0;
507 code = pr_NameToId(&names, &tids);
509 afs_com_err(whoami, code, "so couldn't look up names");
511 for (n = 0; n < tids.idlist_len; n++) {
512 if ((tids.idlist_val[n] == ANONYMOUSID)) {
513 afs_com_err(whoami, PRNOENT, "so couldn't look up id for %s",
514 names.namelist_val[n]);
517 lids->idlist_val[nd] = tids.idlist_val[n];
519 strcpy(lnames->namelist_val[nd], names.namelist_val[n]);
523 for (x = 0; x < ids.idlist_len; x++) {
524 lids->idlist_val[nd + x] = ids.idlist_val[x];
526 lids->idlist_len = nd + x;
527 if (!code && lnames) {
528 tnames.namelist_val = 0;
529 tnames.namelist_len = 0;
530 code = pr_IdToName(&ids, &tnames);
532 afs_com_err(whoami, code, "translating ids");
536 for (x = 0; x < ids.idlist_len; x++)
537 strcpy(lnames->namelist_val[nd + x], tnames.namelist_val[x]);
538 lnames->namelist_len = nd + x;
541 /* treat things as working if any of the lookups worked */
545 if (lids->idlist_val)
546 free(lids->idlist_val);
554 AddToGroup(struct cmd_syndesc *as, void *arock)
557 struct cmd_item *u, *g;
559 for (u = as->parms[0].items; u; u = u->next) {
560 for (g = as->parms[1].items; g; g = g->next) {
561 code = pr_AddToGroup(u->data, g->data);
563 afs_com_err(whoami, code,
564 "; unable to add user %s to group %s %s", u->data,
565 g->data, (force ? "(ignored)" : ""));
575 RemoveFromGroup(struct cmd_syndesc *as, void *arock)
578 struct cmd_item *u, *g;
580 for (u = as->parms[0].items; u; u = u->next) {
581 for (g = as->parms[1].items; g; g = g->next) {
582 code = pr_RemoveUserFromGroup(u->data, g->data);
584 afs_com_err(whoami, code,
585 "; unable to remove user %s from group %s %s",
586 u->data, g->data, (force ? "(ignored)" : ""));
596 ListMembership(struct cmd_syndesc *as, void *arock)
605 if (GetNameOrId(as, &ids, &names))
608 for (i = 0; i < ids.idlist_len; i++) {
609 afs_int32 id = ids.idlist_val[i];
610 char *name = names.namelist_val[i];
612 if (id == ANONYMOUSID)
613 continue; /* bad entry */
615 list.namelist_val = 0;
616 list.namelist_len = 0;
617 if (as->parms[2].items) { /* -expandgroups */
618 code = pr_IDListExpandedMembers(id, &list);
622 code = pr_IDListMembers(id, &list);
625 afs_com_err(whoami, code, "; unable to get membership of %s (id: %d)",
630 printf("Members of %s (id: %d) are:\n", name, id);
632 printf("Groups %s (id: %d) is a member of:\n", name, id);
634 for (j = 0; j < list.namelist_len; j++)
635 printf(" %s\n", list.namelist_val[j]);
636 if (list.namelist_val)
637 free(list.namelist_val);
638 if (as->parms[1].items && id < 0) { /* -supergroups */
639 list.namelist_val = 0;
640 list.namelist_len = 0;
641 code = pr_ListSuperGroups(ids.idlist_val[i], &list);
642 if (code == RXGEN_OPCODE) {
643 continue; /* server does not support supergroups */
644 } else if (code != 0) {
645 afs_com_err(whoami, code,
646 "; unable to get supergroups of %s (id: %d)",
650 printf("Groups %s (id: %d) is a member of:\n", name, id);
651 for (j = 0; j < list.namelist_len; j++)
652 printf(" %s\n", list.namelist_val[j]);
653 if (list.namelist_val)
654 free(list.namelist_val);
658 free(ids.idlist_val);
659 if (names.namelist_val)
660 free(names.namelist_val);
665 Delete(struct cmd_syndesc *as, void *arock)
672 if (GetNameOrId(as, &ids, &names))
675 for (i = 0; i < ids.idlist_len; i++) {
676 afs_int32 id = ids.idlist_val[i];
677 char *name = names.namelist_val[i];
679 if (id == ANONYMOUSID)
682 code = pr_DeleteByID(id);
684 afs_com_err(whoami, code, "deleting %s (id: %d) %s", name, id,
685 (force ? "(ignored)" : ""));
691 free(ids.idlist_val);
692 if (names.namelist_val)
693 free(names.namelist_val);
697 /* access bit translation info */
699 char *flags_upcase = "SOMA "; /* legal all access values */
700 char *flags_dncase = "s mar"; /* legal member acces values */
701 int flags_shift[5] = { 2, 1, 2, 2, 1 }; /* bits for each */
704 CheckEntry(struct cmd_syndesc *as, void *arock)
708 int i, flag = 0, admin = 0;
709 namelist lnames, names;
712 struct prcheckentry aentry;
714 if (GetNameOrId(as, &ids, &names))
718 lids.idlist_val = (afs_int32 *) malloc(sizeof(afs_int32) * 2);
719 lnames.namelist_len = 0;
720 lnames.namelist_val = 0;
722 for (i = 0; i < ids.idlist_len; i++) {
723 afs_int32 id = ids.idlist_val[i];
725 if (id == ANONYMOUSID)
729 code = pr_ListEntry(id, &aentry);
732 afs_com_err(whoami, code, "; unable to find entry for (id: %d)", id);
736 lids.idlist_val[0] = aentry.owner;
737 lids.idlist_val[1] = aentry.creator;
738 code = pr_IdToName(&lids, &lnames);
741 afs_com_err(whoami, code,
742 "translating owner (%d) and creator (%d) ids",
743 aentry.owner, aentry.creator);
746 printf("Name: %s, id: %d, owner: %s, creator: %s,\n", aentry.name,
747 aentry.id, lnames.namelist_val[0], lnames.namelist_val[1]);
748 printf(" membership: %d", aentry.count);
751 afs_int32 flags = aentry.flags;
754 access[5] = 0; /* null-terminate the string */
755 for (j = 4; j >= 0; j--) {
774 printf(", flags: %s", access);
776 if (aentry.id == SYSADMINID)
778 else if (!pr_IsAMemberOf(aentry.name, "system:administrators", &flag)) {
783 printf(", group quota: unlimited");
785 printf(", group quota: %d", aentry.ngroups);
787 printf(", foreign user quota=%d", aentry.nusers);
792 if (lnames.namelist_val)
793 free(lnames.namelist_val);
795 free(lids.idlist_val);
797 free(ids.idlist_val);
803 ListEntries(struct cmd_syndesc *as, void *arock)
806 afs_int32 flag, startindex, nentries, nextstartindex;
807 struct prlistentries *entriesp = 0, *e;
811 if (as->parms[1].items)
813 if (as->parms[0].items)
816 printf("Name ID Owner Creator\n");
817 for (startindex = 0; startindex != -1; startindex = nextstartindex) {
819 pr_ListEntries(flag, startindex, &nentries, &entriesp,
822 afs_com_err(whoami, code, "; unable to list entries");
828 /* Now display each of the entries we read */
829 for (i = 0, e = entriesp; i < nentries; i++, e++) {
830 printf("%-25s %6d %6d %7d \n", e->name, e->id, e->owner,
840 ChownGroup(struct cmd_syndesc *as, void *arock)
846 name = as->parms[0].items->data;
847 owner = as->parms[1].items->data;
848 code = pr_ChangeEntry(name, "", 0, owner);
850 afs_com_err(whoami, code, "; unable to change owner of %s to %s", name,
856 ChangeName(struct cmd_syndesc *as, void *arock)
862 oldname = as->parms[0].items->data;
863 newname = as->parms[1].items->data;
864 code = pr_ChangeEntry(oldname, newname, 0, "");
866 afs_com_err(whoami, code, "; unable to change name of %s to %s", oldname,
872 ListMax(struct cmd_syndesc *as, void *arock)
875 afs_int32 maxUser, maxGroup;
877 code = pr_ListMaxUserId(&maxUser);
879 afs_com_err(whoami, code, "getting maximum user id");
881 code = pr_ListMaxGroupId(&maxGroup);
883 afs_com_err(whoami, code, "getting maximum group id");
885 printf("Max user id is %d and max group id is %d.\n", maxUser,
893 SetMaxCommand(struct cmd_syndesc *as, void *arock)
899 if (as->parms[1].items) {
901 code = util_GetInt32(as->parms[1].items->data, &maxid);
903 afs_com_err(whoami, code, "because id was: '%s'",
904 as->parms[1].items->data);
906 code = pr_SetMaxUserId(maxid);
908 afs_com_err(whoami, code, "so couldn't set Max User Id to %d",
912 if (as->parms[0].items) {
914 code = util_GetInt32(as->parms[0].items->data, &maxid);
916 afs_com_err(whoami, code, "because id was: '%s'",
917 as->parms[0].items->data);
919 code = pr_SetMaxGroupId(maxid);
921 afs_com_err(whoami, code, "so couldn't set Max Group Id to %d",
925 if (!as->parms[0].items && !as->parms[1].items) {
927 printf("Must specify at least one of group or user.\n");
933 SetFields(struct cmd_syndesc *as, void *arock)
939 afs_int32 mask, flags=0, ngroups, nusers;
941 if (GetNameOrId(as, &ids, &names))
948 if (as->parms[1].items) { /* privacy bits */
949 char *access = as->parms[1].items->data;
952 if (strpbrk(access, "76543210") != 0) { /* all octal digits */
953 sscanf(access, "%lo", (long unsigned int *) &flags);
954 } else { /* interpret flag bit names */
955 if (strlen(access) != 5) {
957 printf("Access bits must be of the form 'somar', not %s\n",
961 if (strpbrk(access, "somar-") == 0)
964 for (i = 0; i < 5; i++) {
965 if (access[i] == flags_upcase[i])
967 else if (access[i] == flags_dncase[i])
969 else if (access[i] == '-')
973 ("Access bits out of order or illegal:\n must be a combination of letters from '%s' or '%s' or hyphen, not %s\n",
974 flags_upcase, flags_dncase, access);
977 flags <<= flags_shift[i];
978 if (flags_shift[i] == 1) {
985 mask |= PR_SF_ALLBITS;
987 if (as->parms[2].items) { /* limitgroups */
988 code = util_GetInt32(as->parms[2].items->data, &ngroups);
990 afs_com_err(whoami, code, "because ngroups was: '%s'",
991 as->parms[2].items->data);
994 mask |= PR_SF_NGROUPS;
997 if (as->parms[3].items) { /* limitgroups */
998 code = util_GetInt32(as->parms[3].items->data, &nusers);
1000 afs_com_err(whoami, code, "because nusers was: '%s'",
1001 as->parms[3].items->data);
1004 mask |= PR_SF_NUSERS;
1008 for (i = 0; i < ids.idlist_len; i++) {
1009 afs_int32 id = ids.idlist_val[i];
1010 char *name = names.namelist_val[i];
1011 if (id == ANONYMOUSID)
1013 code = pr_SetFieldsEntry(id, mask, flags, ngroups, nusers);
1015 afs_com_err(whoami, code, "; unable to set fields for %s (id: %d)",
1021 free(ids.idlist_val);
1022 if (names.namelist_val)
1023 free(names.namelist_val);
1028 ListOwned(struct cmd_syndesc *as, void *arock)
1037 if (GetNameOrId(as, &ids, &names))
1040 for (i = 0; i < ids.idlist_len; i++) {
1041 afs_int32 oid = ids.idlist_val[i];
1042 char *name = names.namelist_val[i];
1044 if (oid == ANONYMOUSID)
1048 printf("Groups owned by %s (id: %d) are:\n", name, oid);
1050 printf("Orphaned groups are:\n");
1053 list.namelist_val = 0;
1054 list.namelist_len = 0;
1055 code = pr_ListOwned(oid, &list, &more);
1057 afs_com_err(whoami, code,
1058 "; unable to get owner list for %s (id: %d)", name,
1063 for (j = 0; j < list.namelist_len; j++)
1064 printf(" %s\n", list.namelist_val[j]);
1065 if (list.namelist_val)
1066 free(list.namelist_val);
1071 free(ids.idlist_val);
1072 if (names.namelist_val)
1073 free(names.namelist_val);
1078 add_std_args(struct cmd_syndesc *ts)
1080 char test_help[AFSDIR_PATH_MAX];
1082 sprintf(test_help, "use config file in %s", AFSDIR_SERVER_ETC_DIRPATH);
1085 cmd_AddParm(ts, "-cell", CMD_SINGLE, CMD_OPTIONAL, "cell name");
1086 cmd_AddParm(ts, "-noauth", CMD_FLAG, CMD_OPTIONAL, "run unauthenticated");
1087 cmd_AddParm(ts, "-test", CMD_FLAG, CMD_OPTIONAL | CMD_HIDE, test_help);
1088 cmd_AddParm(ts, "-force", CMD_FLAG, CMD_OPTIONAL,
1089 "Continue oper despite reasonable errors");
1090 cmd_AddParm(ts, "-localauth", CMD_FLAG, CMD_OPTIONAL,
1091 "use local authentication");
1092 cmd_AddParm(ts, "-auth", CMD_FLAG, CMD_OPTIONAL,
1093 "use user's authentication (default)");
1094 cmd_AddParm(ts, "-encrypt", CMD_FLAG, CMD_OPTIONAL,
1095 "encrypt commands");
1099 static void add_NameOrId_args (ts)
1100 struct cmd_syndesc *ts;
1102 cmd_AddParm(ts,"-name",CMD_LIST,CMD_OPTIONAL,"user or group name");
1103 cmd_AddParm(ts,"-id",CMD_LIST,CMD_OPTIONAL,"user or group id");
1107 #include "AFS_component_version_number.c"
1110 main(int argc, char **argv)
1113 struct cmd_syndesc *ts;
1118 char *parsev[CMD_MAXPARMS];
1120 struct authstate state;
1127 WSAStartup(0x0101, &WSAjunk);
1130 #ifdef AFS_AIX32_ENV
1132 * The following signal action for AIX is necessary so that in case of a
1133 * crash (i.e. core is generated) we can include the user's data section
1134 * in the core dump. Unfortunately, by default, only a partial core is
1135 * generated which, in many cases, isn't too useful.
1137 struct sigaction nsa;
1139 sigemptyset(&nsa.sa_mask);
1140 nsa.sa_handler = SIG_DFL;
1141 nsa.sa_flags = SA_FULLDUMP;
1142 sigaction(SIGSEGV, &nsa, NULL);
1145 memset(&state, 0, sizeof(state));
1146 state.sec = 1; /* default is auth */
1148 ts = cmd_CreateSyntax("creategroup", CreateGroup, NULL,
1149 "create a new group");
1150 cmd_AddParm(ts, "-name", CMD_LIST, 0, "group name");
1151 cmd_AddParm(ts, "-owner", CMD_SINGLE, CMD_OPTIONAL, "owner of the group");
1152 cmd_AddParm(ts, "-id", CMD_LIST, CMD_OPTIONAL,
1153 "id (negated) for the group");
1155 cmd_CreateAlias(ts, "cg");
1157 ts = cmd_CreateSyntax("createuser", CreateUser, NULL, "create a new user");
1158 cmd_AddParm(ts, "-name", CMD_LIST, 0, "user name");
1159 cmd_AddParm(ts, "-id", CMD_LIST, CMD_OPTIONAL, "user id");
1161 cmd_CreateAlias(ts, "cu");
1163 ts = cmd_CreateSyntax("adduser", AddToGroup, NULL, "add a user to a group");
1164 cmd_AddParm(ts, "-user", CMD_LIST, 0, "user name");
1165 cmd_AddParm(ts, "-group", CMD_LIST, 0, "group name");
1168 ts = cmd_CreateSyntax("removeuser", RemoveFromGroup, NULL,
1169 "remove a user from a group");
1170 cmd_AddParm(ts, "-user", CMD_LIST, 0, "user name");
1171 cmd_AddParm(ts, "-group", CMD_LIST, 0, "group name");
1174 ts = cmd_CreateSyntax("membership", ListMembership, NULL,
1175 "list membership of a user or group");
1176 cmd_AddParm(ts, "-nameorid", CMD_LIST, 0, "user or group name or id");
1177 cmd_AddParm(ts, "-supergroups", CMD_FLAG, CMD_OPTIONAL, "show supergroups");
1178 cmd_AddParm(ts, "-expandgroups", CMD_FLAG, CMD_OPTIONAL, "expand super and sub group membership");
1180 cmd_CreateAlias(ts, "groups");
1182 ts = cmd_CreateSyntax("delete", Delete, NULL,
1183 "delete a user or group from database");
1184 cmd_AddParm(ts, "-nameorid", CMD_LIST, 0, "user or group name or id");
1187 ts = cmd_CreateSyntax("examine", CheckEntry, NULL, "examine an entry");
1188 cmd_AddParm(ts, "-nameorid", CMD_LIST, 0, "user or group name or id");
1190 cmd_CreateAlias(ts, "check");
1192 ts = cmd_CreateSyntax("chown", ChownGroup, NULL,
1193 "change ownership of a group");
1194 cmd_AddParm(ts, "-name", CMD_SINGLE, 0, "group name");
1195 cmd_AddParm(ts, "-owner", CMD_SINGLE, 0, "new owner");
1198 ts = cmd_CreateSyntax("rename", ChangeName, NULL, "rename user or group");
1199 cmd_AddParm(ts, "-oldname", CMD_SINGLE, 0, "old name");
1200 cmd_AddParm(ts, "-newname", CMD_SINGLE, 0, "new name");
1202 cmd_CreateAlias(ts, "chname");
1204 ts = cmd_CreateSyntax("listmax", ListMax, NULL, "list max id");
1207 ts = cmd_CreateSyntax("setmax", SetMaxCommand, NULL, "set max id");
1208 cmd_AddParm(ts, "-group", CMD_SINGLE, CMD_OPTIONAL, "group max");
1209 cmd_AddParm(ts, "-user", CMD_SINGLE, CMD_OPTIONAL, "user max");
1212 ts = cmd_CreateSyntax("setfields", SetFields, NULL,
1213 "set fields for an entry");
1214 cmd_AddParm(ts, "-nameorid", CMD_LIST, 0, "user or group name or id");
1215 cmd_AddParm(ts, "-access", CMD_SINGLE, CMD_OPTIONAL, "set privacy flags");
1216 cmd_AddParm(ts, "-groupquota", CMD_SINGLE, CMD_OPTIONAL,
1217 "set limit on group creation");
1219 cmd_AddParm(ts, "-userquota", CMD_SINGLE, CMD_OPTIONAL,
1220 "set limit on foreign user creation");
1224 ts = cmd_CreateSyntax("listowned", ListOwned, NULL,
1225 "list groups owned by an entry or zero id gets orphaned groups");
1226 cmd_AddParm(ts, "-nameorid", CMD_LIST, 0, "user or group name or id");
1229 ts = cmd_CreateSyntax("listentries", ListEntries, NULL,
1230 "list users/groups in the protection database");
1231 cmd_AddParm(ts, "-users", CMD_FLAG, CMD_OPTIONAL, "list user entries");
1232 cmd_AddParm(ts, "-groups", CMD_FLAG, CMD_OPTIONAL, "list group entries");
1235 ts = cmd_CreateSyntax("interactive", pts_Interactive, NULL,
1236 "enter interactive mode");
1238 cmd_CreateAlias(ts, "in");
1240 ts = cmd_CreateSyntax("quit", pts_Quit, NULL, "exit program");
1243 ts = cmd_CreateSyntax("source", pts_Source, NULL, "read commands from file");
1244 cmd_AddParm(ts, "-file", CMD_SINGLE, 0, "filename");
1247 ts = cmd_CreateSyntax("sleep", pts_Sleep, NULL, "pause for a bit");
1248 cmd_AddParm(ts, "-delay", CMD_SINGLE, 0, "seconds");
1251 cmd_SetBeforeProc(GetGlobals, &state);
1255 if ((code = cmd_Dispatch(argc, argv))) {
1256 CleanUp(NULL, NULL);
1259 while (source && !finished) {
1260 if (isatty(fileno(source)))
1261 fprintf(stderr, "pts> ");
1262 if (!fgets(line, sizeof line, source)) {
1268 for (cp = line; *cp; ++cp)
1278 cmd_ParseLine(line, parsev, &parsec,
1279 sizeof(parsev) / sizeof(*parsev));
1281 afs_com_err(whoami, code, "parsing line: <%s>", line);
1285 parsev[0] = argv[0];
1286 code = cmd_Dispatch(parsec, parsev);
1288 cmd_FreeArgv(parsev);
1290 CleanUp(NULL, NULL);