can't be found in user registry. Allow user to override
        that with command line arg.
        (longopts): Fix typo in `local-groups' option.
        (main): Initialize `passed_home_path' before first usage.
		
	
		
			
				
	
	
		
			537 lines
		
	
	
		
			13 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
			
		
		
	
	
			537 lines
		
	
	
		
			13 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
| /* mkpasswd.c:
 | |
| 
 | |
|    Copyright 1997, 1998, 1999, 2000 Cygnus Solutions.
 | |
| 
 | |
|    This file is part of Cygwin.
 | |
| 
 | |
|    This software is a copyrighted work licensed under the terms of the
 | |
|    Cygwin license.  Please consult the file "CYGWIN_LICENSE" for
 | |
|    details. */
 | |
| 
 | |
| #include <ctype.h>
 | |
| #include <stdlib.h>
 | |
| #include <wchar.h>
 | |
| #include <stdio.h>
 | |
| #include <windows.h>
 | |
| #include <sys/cygwin.h>
 | |
| #include <getopt.h>
 | |
| #include <lmaccess.h>
 | |
| #include <lmapibuf.h>
 | |
| 
 | |
| SID_IDENTIFIER_AUTHORITY sid_world_auth = {SECURITY_WORLD_SID_AUTHORITY};
 | |
| SID_IDENTIFIER_AUTHORITY sid_nt_auth = {SECURITY_NT_AUTHORITY};
 | |
| 
 | |
| NET_API_STATUS WINAPI (*netapibufferfree)(PVOID);
 | |
| NET_API_STATUS WINAPI (*netuserenum)(LPWSTR,DWORD,DWORD,PBYTE*,DWORD,PDWORD,PDWORD,PDWORD);
 | |
| NET_API_STATUS WINAPI (*netlocalgroupenum)(LPWSTR,DWORD,PBYTE*,DWORD,PDWORD,PDWORD,PDWORD);
 | |
| NET_API_STATUS WINAPI (*netgetdcname)(LPWSTR,LPWSTR,PBYTE*);
 | |
| 
 | |
| #ifndef min
 | |
| #define min(a,b) (((a)<(b))?(a):(b))
 | |
| #endif
 | |
| 
 | |
| BOOL
 | |
| load_netapi ()
 | |
| {
 | |
|   HANDLE h = LoadLibrary ("netapi32.dll");
 | |
| 
 | |
|   if (!h)
 | |
|     return FALSE;
 | |
| 
 | |
|   if (!(netapibufferfree = GetProcAddress (h, "NetApiBufferFree")))
 | |
|     return FALSE;
 | |
|   if (!(netuserenum = GetProcAddress (h, "NetUserEnum")))
 | |
|     return FALSE;
 | |
|   if (!(netlocalgroupenum = GetProcAddress (h, "NetLocalGroupEnum")))
 | |
|     return FALSE;
 | |
|   if (!(netgetdcname = GetProcAddress (h, "NetGetDCName")))
 | |
|     return FALSE;
 | |
| 
 | |
|   return TRUE;
 | |
| }
 | |
| 
 | |
| char *
 | |
| put_sid (PSID sid)
 | |
| {
 | |
|   static char s[512];
 | |
|   char t[32];
 | |
|   DWORD i;
 | |
| 
 | |
|   strcpy (s, "S-1-");
 | |
|   sprintf(t, "%u", GetSidIdentifierAuthority (sid)->Value[5]);
 | |
|   strcat (s, t);
 | |
|   for (i = 0; i < *GetSidSubAuthorityCount (sid); ++i)
 | |
|     {
 | |
|       sprintf(t, "-%lu", *GetSidSubAuthority (sid, i));
 | |
|       strcat (s, t);
 | |
|     }
 | |
|   return s;
 | |
| }
 | |
| 
 | |
| void
 | |
| psx_dir (char *in, char *out)
 | |
| {
 | |
|   if (isalpha (in[0]) && in[1] == ':')
 | |
|     {
 | |
|       sprintf (out, "/cygdrive/%c", in[0]);
 | |
|       in += 2;
 | |
|       out += strlen (out);
 | |
|     }
 | |
| 
 | |
|   while (*in)
 | |
|     {
 | |
|       if (*in == '\\')
 | |
| 	*out = '/';
 | |
|       else
 | |
| 	*out = *in;
 | |
|       in++;
 | |
|       out++;
 | |
|     }
 | |
| 
 | |
|   *out = '\0';
 | |
| }
 | |
| 
 | |
| void
 | |
| uni2ansi (LPWSTR wcs, char *mbs)
 | |
| {
 | |
|   if (wcs)
 | |
|     wcstombs (mbs, wcs, (wcslen (wcs) + 1) * sizeof (WCHAR));
 | |
| 
 | |
|   else
 | |
|     *mbs = '\0';
 | |
| }
 | |
| 
 | |
| int
 | |
| enum_users (LPWSTR servername, int print_sids, int print_cygpath,
 | |
| 	    const char * passed_home_path)
 | |
| {
 | |
|   USER_INFO_3 *buffer;
 | |
|   DWORD entriesread = 0;
 | |
|   DWORD totalentries = 0;
 | |
|   DWORD resume_handle = 0;
 | |
|   DWORD rc;
 | |
|   char ansi_srvname[256];
 | |
| 
 | |
|   if (servername)
 | |
|     uni2ansi (servername, ansi_srvname);
 | |
| 
 | |
|   do
 | |
|     {
 | |
|       DWORD i;
 | |
| 
 | |
|       rc = netuserenum (servername, 3, FILTER_NORMAL_ACCOUNT,
 | |
| 			(LPBYTE *) & buffer, 1024,
 | |
| 			&entriesread, &totalentries, &resume_handle);
 | |
|       switch (rc)
 | |
| 	{
 | |
| 	case ERROR_ACCESS_DENIED:
 | |
| 	  fprintf (stderr, "Access denied\n");
 | |
| 	  exit (1);
 | |
| 
 | |
| 	case ERROR_MORE_DATA:
 | |
| 	case ERROR_SUCCESS:
 | |
| 	  break;
 | |
| 
 | |
| 	default:
 | |
| 	  fprintf (stderr, "NetUserEnum() failed with %ld\n", rc);
 | |
| 	  exit (1);
 | |
| 	}
 | |
| 
 | |
|       for (i = 0; i < entriesread; i++)
 | |
| 	{
 | |
| 	  char username[100];
 | |
| 	  char fullname[100];
 | |
| 	  char homedir_psx[MAX_PATH];
 | |
| 	  char homedir_w32[MAX_PATH];
 | |
| 	  char domain_name[100];
 | |
| 	  DWORD domname_len = 100;
 | |
| 	  char psid_buffer[1024];
 | |
| 	  PSID psid = (PSID) psid_buffer;
 | |
| 	  DWORD sid_length = 1024;
 | |
| 	  SID_NAME_USE acc_type;
 | |
| 
 | |
| 	  int uid = buffer[i].usri3_user_id;
 | |
| 	  int gid = buffer[i].usri3_primary_group_id;
 | |
| 	  uni2ansi (buffer[i].usri3_name, username);
 | |
| 	  uni2ansi (buffer[i].usri3_full_name, fullname);
 | |
| 	  homedir_w32[0] = homedir_psx[0] = '\0';
 | |
| 	  uni2ansi (buffer[i].usri3_home_dir, homedir_w32);
 | |
| 	  if (print_cygpath)
 | |
| 	    cygwin_conv_to_posix_path (homedir_w32, homedir_psx);
 | |
| 	  else
 | |
| 	    psx_dir (homedir_w32, homedir_psx);
 | |
| 
 | |
| 	  if (homedir_psx[0] == '\0')
 | |
| 	    {
 | |
| 	      strcat (homedir_psx, passed_home_path);
 | |
| 	      strcat (homedir_psx, username);
 | |
| 	    }
 | |
| 
 | |
| 	  if (print_sids)
 | |
| 	    {
 | |
| 	      if (!LookupAccountName (servername ? ansi_srvname : NULL,
 | |
| 				      username,
 | |
| 				      psid, &sid_length,
 | |
| 				      domain_name, &domname_len,
 | |
| 				      &acc_type))
 | |
| 		{
 | |
| 		  fprintf (stderr,
 | |
| 			   "LookupAccountName(%s,%s) failed with error %ld\n",
 | |
| 			   servername ? ansi_srvname : "NULL",
 | |
| 			   username,
 | |
| 			   GetLastError ());
 | |
| 		  continue;
 | |
| 		}
 | |
| 	      else if (acc_type == SidTypeDomain)
 | |
| 		{
 | |
| 		  char domname[356];
 | |
| 
 | |
| 		  strcpy (domname, domain_name);
 | |
| 		  strcat (domname, "\\");
 | |
| 		  strcat (domname, username);
 | |
| 		  sid_length = 1024;
 | |
| 		  domname_len = 100;
 | |
| 		  if (!LookupAccountName (servername ? ansi_srvname : NULL,
 | |
| 					  domname,
 | |
| 					  psid, &sid_length,
 | |
| 					  domain_name, &domname_len,
 | |
| 					  &acc_type))
 | |
| 		    {
 | |
| 		      fprintf (stderr,
 | |
| 			       "LookupAccountName(%s,%s) failed with error %ld\n",
 | |
| 			       servername ? ansi_srvname : "NULL",
 | |
| 			       domname,
 | |
| 			       GetLastError ());
 | |
| 		      continue;
 | |
| 		    }
 | |
| 		}
 | |
| 	    }
 | |
| 	  printf ("%s::%d:%d:%s%s%s:%s:/bin/sh\n", username, uid, gid,
 | |
| 		  fullname,
 | |
| 		  print_sids ? "," : "",
 | |
| 		  print_sids ? put_sid (psid) : "",
 | |
| 		  homedir_psx);
 | |
| 	}
 | |
| 
 | |
|       netapibufferfree (buffer);
 | |
| 
 | |
|     }
 | |
|   while (rc == ERROR_MORE_DATA);
 | |
| 
 | |
|   if (servername)
 | |
|     netapibufferfree (servername);
 | |
| 
 | |
|   return 0;
 | |
| }
 | |
| 
 | |
| int
 | |
| enum_local_groups (int print_sids)
 | |
| {
 | |
|   LOCALGROUP_INFO_0 *buffer;
 | |
|   DWORD entriesread = 0;
 | |
|   DWORD totalentries = 0;
 | |
|   DWORD resume_handle = 0;
 | |
|   DWORD rc ;
 | |
| 
 | |
|   do
 | |
|     {
 | |
|       DWORD i;
 | |
| 
 | |
|       rc = netlocalgroupenum (NULL, 0, (LPBYTE *) & buffer, 1024,
 | |
| 			      &entriesread, &totalentries, &resume_handle);
 | |
|       switch (rc)
 | |
| 	{
 | |
| 	case ERROR_ACCESS_DENIED:
 | |
| 	  fprintf (stderr, "Access denied\n");
 | |
| 	  exit (1);
 | |
| 
 | |
| 	case ERROR_MORE_DATA:
 | |
| 	case ERROR_SUCCESS:
 | |
| 	  break;
 | |
| 
 | |
| 	default:
 | |
| 	  fprintf (stderr, "NetLocalGroupEnum() failed with %ld\n", rc);
 | |
| 	  exit (1);
 | |
| 	}
 | |
| 
 | |
|       for (i = 0; i < entriesread; i++)
 | |
| 	{
 | |
| 	  char localgroup_name[100];
 | |
| 	  char domain_name[100];
 | |
| 	  DWORD domname_len = 100;
 | |
| 	  char psid_buffer[1024];
 | |
| 	  PSID psid = (PSID) psid_buffer;
 | |
| 	  DWORD sid_length = 1024;
 | |
| 	  DWORD gid;
 | |
| 	  SID_NAME_USE acc_type;
 | |
| 	  uni2ansi (buffer[i].lgrpi0_name, localgroup_name);
 | |
| 
 | |
| 	  if (!LookupAccountName (NULL, localgroup_name, psid,
 | |
| 				  &sid_length, domain_name, &domname_len,
 | |
| 				  &acc_type))
 | |
| 	    {
 | |
| 	      fprintf (stderr, "LookupAccountName(%s) failed with %ld\n",
 | |
| 		       localgroup_name, GetLastError ());
 | |
| 	      continue;
 | |
| 	    }
 | |
| 	  else if (acc_type == SidTypeDomain)
 | |
| 	    {
 | |
| 	      char domname[356];
 | |
| 
 | |
| 	      strcpy (domname, domain_name);
 | |
| 	      strcat (domname, "\\");
 | |
| 	      strcat (domname, localgroup_name);
 | |
| 	      sid_length = 1024;
 | |
| 	      domname_len = 100;
 | |
| 	      if (!LookupAccountName (NULL, domname,
 | |
| 				      psid, &sid_length,
 | |
| 				      domain_name, &domname_len,
 | |
| 				      &acc_type))
 | |
| 		{
 | |
| 		  fprintf (stderr,
 | |
| 			   "LookupAccountName(%s) failed with error %ld\n",
 | |
| 			   localgroup_name, GetLastError ());
 | |
| 		  continue;
 | |
| 		}
 | |
| 	    }
 | |
| 
 | |
| 	  gid = *GetSidSubAuthority (psid, *GetSidSubAuthorityCount(psid) - 1);
 | |
| 
 | |
| 	  printf ("%s:*:%ld:%ld:%s%s::\n", localgroup_name, gid, gid,
 | |
| 		  print_sids ? "," : "",
 | |
| 		  print_sids ? put_sid (psid) : "");
 | |
| 	}
 | |
| 
 | |
|       netapibufferfree (buffer);
 | |
| 
 | |
|     }
 | |
|   while (rc == ERROR_MORE_DATA);
 | |
| 
 | |
|   return 0;
 | |
| }
 | |
| 
 | |
| int
 | |
| usage ()
 | |
| {
 | |
|   fprintf (stderr, "Usage: mkpasswd [OPTION]... [domain]\n\n");
 | |
|   fprintf (stderr, "This program prints a /etc/passwd file to stdout\n\n");
 | |
|   fprintf (stderr, "Options:\n");
 | |
|   fprintf (stderr, "   -l,--local              print local user accounts\n");
 | |
|   fprintf (stderr, "   -d,--domain             print domain accounts (from current domain\n");
 | |
|   fprintf (stderr, "                           if no domain specified)\n");
 | |
|   fprintf (stderr, "   -g,--local-groups       print local group information too\n");
 | |
|   fprintf (stderr, "                           if no domain specified\n");
 | |
|   fprintf (stderr, "   -m,--no-mount           don't use mount points for home dir\n");
 | |
|   fprintf (stderr, "   -s,--no-sids            don't print SIDs in GCOS field\n");
 | |
|   fprintf (stderr, "                           (this affects ntsec)\n");
 | |
|   fprintf (stderr, "   -p,--path-to-home path  if user account has no home dir, use\n");
 | |
|   fprintf (stderr, "                           path instead of /home/\n");
 | |
|   fprintf (stderr, "   -?,--help               displays this message\n\n");
 | |
|   fprintf (stderr, "One of `-l', `-d' or `-g' must be given on NT/W2K.\n");
 | |
|   return 1;
 | |
| }
 | |
| 
 | |
| struct option longopts[] = {
 | |
|   {"local", no_argument, NULL, 'l'},
 | |
|   {"domain", no_argument, NULL, 'd'},
 | |
|   {"local-groups", no_argument, NULL, 'g'},
 | |
|   {"no-mount", no_argument, NULL, 'm'},
 | |
|   {"no-sids", no_argument, NULL, 's'},
 | |
|   {"path-to-home",required_argument, NULL, 'p'},
 | |
|   {"help", no_argument, NULL, 'h'},
 | |
|   {0, no_argument, NULL, 0}
 | |
| };
 | |
| 
 | |
| char opts[] = "ldgsmhp:";
 | |
| 
 | |
| int
 | |
| main (int argc, char **argv)
 | |
| {
 | |
|   LPWSTR servername = NULL;
 | |
|   DWORD rc = ERROR_SUCCESS;
 | |
|   WCHAR domain_name[200];
 | |
|   int print_local = 0;
 | |
|   int print_domain = 0;
 | |
|   int print_local_groups = 0;
 | |
|   int domain_name_specified = 0;
 | |
|   int print_sids = 1;
 | |
|   int print_cygpath = 1;
 | |
|   int i;
 | |
| 
 | |
|   char name[256], dom[256], passed_home_path[MAX_PATH];
 | |
|   DWORD len, len2;
 | |
|   PSID sid;
 | |
|   SID_NAME_USE use;
 | |
| 
 | |
|   passed_home_path[0] = '\0';
 | |
| 
 | |
|   if (GetVersion () < 0x80000000)
 | |
|     if (argc == 1)
 | |
|       return usage ();
 | |
|     else
 | |
|       {
 | |
| 	while ((i = getopt_long (argc, argv, opts, longopts, NULL)) != EOF)
 | |
| 	  switch (i)
 | |
| 	    {
 | |
| 	    case 'l':
 | |
| 	      print_local = 1;
 | |
| 	      break;
 | |
| 	    case 'd':
 | |
| 	      print_domain = 1;
 | |
| 	      break;
 | |
| 	    case 'g':
 | |
| 	      print_local_groups = 1;
 | |
| 	      break;
 | |
| 	    case 's':
 | |
| 	      print_sids = 0;
 | |
| 	      break;
 | |
| 	    case 'm':
 | |
| 	      print_cygpath = 0;
 | |
| 	      break;
 | |
|             case 'p':
 | |
|               if (optarg[0] != '/')
 | |
| 	        {
 | |
|                   fprintf (stderr, "%s: `%s' is not a fully qualified path.\n",
 | |
|                            argv[0], optarg);
 | |
|                   return 1;
 | |
|                 }
 | |
|               strcpy (passed_home_path, optarg);
 | |
|               if (optarg[strlen (optarg)-1] != '/')
 | |
|                 strcat (passed_home_path, "/");
 | |
|               break;
 | |
| 	    case 'h':
 | |
| 	      return usage ();
 | |
| 	    default:
 | |
| 	      fprintf (stderr, "Try `%s --help' for more information.\n", argv[0]);
 | |
| 	      return 1;
 | |
| 	    }
 | |
| 	if (!print_local && !print_domain && !print_local_groups)
 | |
| 	  {
 | |
| 	    fprintf (stderr, "%s: Specify one of `-l', `-d' or `-g'\n", argv[0]);
 | |
| 	    return 1;
 | |
| 	  }
 | |
| 	if (optind < argc)
 | |
| 	  {
 | |
| 	    if (!print_domain)
 | |
| 	      {
 | |
| 		fprintf (stderr, "%s: A domain name is only accepted "
 | |
| 				 "when `-d' is given.\n", argv[0]);
 | |
| 		return 1;
 | |
| 	      }
 | |
| 	    mbstowcs (domain_name, argv[optind], (strlen (argv[optind]) + 1));
 | |
| 	    domain_name_specified = 1;
 | |
| 	  }
 | |
|       }
 | |
| 
 | |
|   if (passed_home_path[0] == '\0')
 | |
|       strcpy (passed_home_path, "/home/");
 | |
| 
 | |
|   /* This takes Windows 9x/ME into account. */
 | |
|   if (GetVersion () >= 0x80000000)
 | |
|     {
 | |
|       /* Same behaviour as in cygwin/uinfo.cc (internal_getlogin). */
 | |
|       if (!GetUserName (name, (len = 256, &len)))
 | |
| 	strcpy (name, "unknown");
 | |
| 
 | |
|       printf ("%s::%ld:%ld::%s%s:/bin/sh\n", name,
 | |
| 					     DOMAIN_USER_RID_ADMIN,
 | |
| 					     DOMAIN_ALIAS_RID_ADMINS,
 | |
| 					     passed_home_path,
 | |
| 					     name);
 | |
| 
 | |
|       return 0;
 | |
|     }
 | |
| 
 | |
|   if (!load_netapi ())
 | |
|     {
 | |
|       fprintf (stderr, "Failed loading symbols from netapi32.dll "
 | |
| 		       "with error %lu\n", GetLastError ());
 | |
|       return 1;
 | |
|     }
 | |
| 
 | |
|   /*
 | |
|    * Get `Everyone' group
 | |
|   */
 | |
|   if (AllocateAndInitializeSid (&sid_world_auth, 1, SECURITY_WORLD_RID,
 | |
| 				0, 0, 0, 0, 0, 0, 0, &sid))
 | |
|     {
 | |
|       if (LookupAccountSid (NULL, sid,
 | |
| 			    name, (len = 256, &len),
 | |
| 			    dom, (len2 = 256, &len),
 | |
| 			    &use))
 | |
| 	printf ("%s:*:%d:%d:%s%s::\n", name,
 | |
| 					 SECURITY_WORLD_RID,
 | |
| 					 SECURITY_WORLD_RID,
 | |
| 					 print_sids ? "," : "",
 | |
| 					 print_sids ? put_sid (sid) : "");
 | |
|       FreeSid (sid);
 | |
|     }
 | |
| 
 | |
|   /*
 | |
|    * Get `system' group
 | |
|   */
 | |
|   if (AllocateAndInitializeSid (&sid_nt_auth, 1, SECURITY_LOCAL_SYSTEM_RID,
 | |
| 				0, 0, 0, 0, 0, 0, 0, &sid))
 | |
|     {
 | |
|       if (LookupAccountSid (NULL, sid,
 | |
| 			    name, (len = 256, &len),
 | |
| 			    dom, (len2 = 256, &len),
 | |
| 			    &use))
 | |
| 	printf ("%s:*:%d:%d:%s%s::\n", name,
 | |
| 					 SECURITY_LOCAL_SYSTEM_RID,
 | |
| 					 SECURITY_LOCAL_SYSTEM_RID,
 | |
| 					 print_sids ? "," : "",
 | |
| 					 print_sids ? put_sid (sid) : "");
 | |
|       FreeSid (sid);
 | |
|     }
 | |
| 
 | |
|   /*
 | |
|    * Get `administrators' group
 | |
|   */
 | |
|   if (!print_local_groups
 | |
|       && AllocateAndInitializeSid (&sid_nt_auth, 2,
 | |
| 				   SECURITY_BUILTIN_DOMAIN_RID,
 | |
| 				   DOMAIN_ALIAS_RID_ADMINS,
 | |
| 				   0, 0, 0, 0, 0, 0, &sid))
 | |
|     {
 | |
|       if (LookupAccountSid (NULL, sid,
 | |
| 			    name, (len = 256, &len),
 | |
| 			    dom, (len2 = 256, &len),
 | |
| 			    &use))
 | |
| 	printf ("%s:*:%ld:%ld:%s%s::\n", name,
 | |
| 					 DOMAIN_ALIAS_RID_ADMINS,
 | |
| 					 DOMAIN_ALIAS_RID_ADMINS,
 | |
| 					 print_sids ? "," : "",
 | |
| 					 print_sids ? put_sid (sid) : "");
 | |
|       FreeSid (sid);
 | |
|     }
 | |
| 
 | |
|   if (print_local_groups)
 | |
|     enum_local_groups (print_sids);
 | |
| 
 | |
|   if (print_domain)
 | |
|     {
 | |
|       if (domain_name_specified)
 | |
| 	rc = netgetdcname (NULL, domain_name, (LPBYTE *) & servername);
 | |
| 
 | |
|       else
 | |
| 	rc = netgetdcname (NULL, NULL, (LPBYTE *) & servername);
 | |
| 
 | |
|       if (rc != ERROR_SUCCESS)
 | |
| 	{
 | |
| 	  fprintf (stderr, "Cannot get DC, code = %ld\n", rc);
 | |
| 	  exit (1);
 | |
| 	}
 | |
| 
 | |
|       enum_users (servername, print_sids, print_cygpath, passed_home_path);
 | |
|     }
 | |
| 
 | |
|   if (print_local)
 | |
|     enum_users (NULL, print_sids, print_cygpath, passed_home_path);
 | |
| 
 | |
|   if (servername)
 | |
|     netapibufferfree (servername);
 | |
| 
 | |
|   return 0;
 | |
| }
 |