Path: blob/main/crypto/heimdal/lib/krb5/build_ap_req.c
34878 views
/*1* Copyright (c) 1997 - 2002 Kungliga Tekniska Högskolan2* (Royal Institute of Technology, Stockholm, Sweden).3* All rights reserved.4*5* Redistribution and use in source and binary forms, with or without6* modification, are permitted provided that the following conditions7* are met:8*9* 1. Redistributions of source code must retain the above copyright10* notice, this list of conditions and the following disclaimer.11*12* 2. Redistributions in binary form must reproduce the above copyright13* notice, this list of conditions and the following disclaimer in the14* documentation and/or other materials provided with the distribution.15*16* 3. Neither the name of the Institute nor the names of its contributors17* may be used to endorse or promote products derived from this software18* without specific prior written permission.19*20* THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND21* ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE22* IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE23* ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE24* FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL25* DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS26* OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)27* HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT28* LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY29* OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF30* SUCH DAMAGE.31*/3233#include "krb5_locl.h"3435KRB5_LIB_FUNCTION krb5_error_code KRB5_LIB_CALL36krb5_build_ap_req (krb5_context context,37krb5_enctype enctype,38krb5_creds *cred,39krb5_flags ap_options,40krb5_data authenticator,41krb5_data *retdata)42{43krb5_error_code ret = 0;44AP_REQ ap;45Ticket t;46size_t len;4748ap.pvno = 5;49ap.msg_type = krb_ap_req;50memset(&ap.ap_options, 0, sizeof(ap.ap_options));51ap.ap_options.use_session_key = (ap_options & AP_OPTS_USE_SESSION_KEY) > 0;52ap.ap_options.mutual_required = (ap_options & AP_OPTS_MUTUAL_REQUIRED) > 0;5354ap.ticket.tkt_vno = 5;55copy_Realm(&cred->server->realm, &ap.ticket.realm);56copy_PrincipalName(&cred->server->name, &ap.ticket.sname);5758decode_Ticket(cred->ticket.data, cred->ticket.length, &t, &len);59copy_EncryptedData(&t.enc_part, &ap.ticket.enc_part);60free_Ticket(&t);6162ap.authenticator.etype = enctype;63ap.authenticator.kvno = NULL;64ap.authenticator.cipher = authenticator;6566ASN1_MALLOC_ENCODE(AP_REQ, retdata->data, retdata->length,67&ap, &len, ret);68if(ret == 0 && retdata->length != len)69krb5_abortx(context, "internal error in ASN.1 encoder");70free_AP_REQ(&ap);71return ret;7273}747576