/*
- * Copyright (c) 2010 Simon Schubert <2@0x2c.org>
+ * Copyright (c) 2010-2014, Simon Schubert <2@0x2c.org>.
* Copyright (c) 2008 The DragonFly Project. All rights reserved.
*
* This code is derived from software contributed to The DragonFly Project
- * by Simon 'corecode' Schubert <corecode@fs.ei.tum.de>.
+ * by Simon Schubert <2@0x2c.org>.
*
* Redistribution and use in source and binary forms, with or without
* modification, are permitted provided that the following conditions
#include <sys/param.h>
#include <sys/stat.h>
+#include <errno.h>
#include <fcntl.h>
#include <grp.h>
#include <paths.h>
#include <pwd.h>
#include <stdio.h>
+#include <syslog.h>
#include <unistd.h>
#include "dma.h"
+
+static void
+logfail(int exitcode, const char *fmt, ...)
+{
+ int oerrno = errno;
+ va_list ap;
+ char outs[1024];
+
+ outs[0] = 0;
+ if (fmt != NULL) {
+ va_start(ap, fmt);
+ vsnprintf(outs, sizeof(outs), fmt, ap);
+ va_end(ap);
+ }
+
+ errno = oerrno;
+ if (*outs != 0)
+ syslog(LOG_ERR, errno ? "%s: %m" : "%s", outs);
+ else
+ syslog(LOG_ERR, errno ? "%m" : "unknown error");
+
+ exit(exitcode);
+}
+
/*
* Create a mbox in /var/mail for a given user, or make sure
* the permissions are correct for dma.
struct group *gr;
uid_t user_uid;
gid_t mail_gid;
- int error;
- char fn[PATH_MAX+1];
- int f;
+ int f, maildirfd;
+
+ openlog("dma-mbox-create", 0, LOG_MAIL);
+
+ errno = 0;
+ gr = getgrnam(DMA_GROUP);
+ if (!gr)
+ logfail(EX_CONFIG, "cannot find dma group `%s'", DMA_GROUP);
+
+ mail_gid = gr->gr_gid;
+
+ if (setgid(mail_gid) != 0)
+ logfail(EX_NOPERM, "cannot set gid to %d (%s)", mail_gid, DMA_GROUP);
+ if (getegid() != mail_gid)
+ logfail(EX_NOPERM, "cannot set gid to %d (%s), still at %d", mail_gid, DMA_GROUP, getegid());
/*
* We take exactly one argument: the username.
*/
- if (argc != 2)
- return (1);
+ if (argc != 2) {
+ errno = 0;
+ logfail(EX_USAGE, "no arguments");
+ }
user = argv[1];
+ syslog(LOG_NOTICE, "creating mbox for `%s'", user);
+
/* the username may not contain a pathname separator */
- if (strchr(user, '/'))
- return (1);
+ if (strchr(user, '/')) {
+ errno = 0;
+ logfail(EX_DATAERR, "path separator in username `%s'", user);
+ exit(1);
+ }
/* verify the user exists */
+ errno = 0;
pw = getpwnam(user);
if (!pw)
- return (1);
-
- user_uid = pw->pw_uid;
-
- gr = getgrnam(DMA_GROUP);
- if (!gr)
- return (1);
+ logfail(EX_NOUSER, "cannot find user `%s'", user);
- mail_gid = gr->gr_gid;
-
- if (setgid(mail_gid) != 0)
- return (1);
- if (getegid() != mail_gid)
- return (1);
+ maildirfd = open(_PATH_MAILDIR, O_RDONLY);
+ if (maildirfd < 0)
+ logfail(EX_NOINPUT, "cannot open maildir %s", _PATH_MAILDIR);
- error = snprintf(fn, sizeof(fn), "%s/%s", _PATH_MAILDIR, user);
- if (error < 0 || (size_t)error >= sizeof(fn))
- return (1);
+ user_uid = pw->pw_uid;
- f = open(fn, O_RDONLY|O_CREAT, 0600);
+ f = openat(maildirfd, user, O_RDONLY|O_CREAT|O_NOFOLLOW, 0600);
if (f < 0)
- return (1);
+ logfail(EX_NOINPUT, "cannot open mbox `%s'", user);
if (fchown(f, user_uid, mail_gid))
- return (1);
+ logfail(EX_OSERR, "cannot change owner of mbox `%s'", user);
if (fchmod(f, 0620))
- return (1);
+ logfail(EX_OSERR, "cannot change permissions of mbox `%s'",
+ user);
/* file should be present with the right owner and permissions */
+ syslog(LOG_NOTICE, "successfully created mbox for `%s'", user);
+
return (0);
}