From be8b315d1522fa1c109a49435c1638bafd838b91 Mon Sep 17 00:00:00 2001 From: rsc Date: Thu, 17 Jun 2004 03:27:35 +0000 Subject: basically none of these build --- src/libauth/httpauth.c | 51 ++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 51 insertions(+) create mode 100644 src/libauth/httpauth.c (limited to 'src/libauth/httpauth.c') diff --git a/src/libauth/httpauth.c b/src/libauth/httpauth.c new file mode 100644 index 00000000..9d1b0d26 --- /dev/null +++ b/src/libauth/httpauth.c @@ -0,0 +1,51 @@ +#include +#include +#include +#include + +/* deprecated. + This is the mechanism that put entries in /sys/lib/httpd.rewrite + and passwords on the authserver in /sys/lib/httppasswords, which + was awkward to administer. Instead, use local .httplogin files, + which are implemented in sys/src/cmd/ip/httpd/authorize.c */ + +int +httpauth(char *name, char *password) +{ + int afd; + Ticketreq tr; + Ticket t; + char key[DESKEYLEN]; + char buf[512]; + + afd = authdial(nil, nil); + if(afd < 0) + return -1; + + /* send ticket request to AS */ + memset(&tr, 0, sizeof(tr)); + strcpy(tr.uid, name); + tr.type = AuthHttp; + convTR2M(&tr, buf); + if(write(afd, buf, TICKREQLEN) != TICKREQLEN){ + close(afd); + return -1; + } + if(_asrdresp(afd, buf, TICKETLEN) < 0){ + close(afd); + return -1; + } + close(afd); + + /* + * use password and try to decrypt the + * ticket. If it doesn't work we've got a bad password, + * give up. + */ + passtokey(key, password); + convM2T(buf, &t, key); + if(t.num != AuthHr || strcmp(t.cuid, tr.uid)) + return -1; + + return 0; +} -- cgit v1.2.3