blob: 52daf84352867f185f980b050bea883ed8babb69 [file] [log] [blame]
Steve DiBenedetto24b9a642014-04-07 15:45:39 -06001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesaventoacd00872018-02-15 18:24:06 -05002/*
Davide Pesavento19779d82019-02-14 13:40:04 -05003 * Copyright (c) 2014-2019, Regents of the University of California,
Alexander Afanasyev7c10b3b2015-01-20 12:24:27 -08004 * Arizona Board of Regents,
5 * Colorado State University,
6 * University Pierre & Marie Curie, Sorbonne University,
7 * Washington University in St. Louis,
8 * Beijing Institute of Technology,
9 * The University of Memphis.
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060010 *
11 * This file is part of NFD (Named Data Networking Forwarding Daemon).
12 * See AUTHORS.md for complete list of NFD authors and contributors.
13 *
14 * NFD is free software: you can redistribute it and/or modify it under the terms
15 * of the GNU General Public License as published by the Free Software Foundation,
16 * either version 3 of the License, or (at your option) any later version.
17 *
18 * NFD is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY;
19 * without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR
20 * PURPOSE. See the GNU General Public License for more details.
21 *
22 * You should have received a copy of the GNU General Public License along with
23 * NFD, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
Alexander Afanasyev7c10b3b2015-01-20 12:24:27 -080024 */
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060025
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040026#ifndef NFD_DAEMON_COMMON_PRIVILEGE_HELPER_HPP
27#define NFD_DAEMON_COMMON_PRIVILEGE_HELPER_HPP
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060028
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040029#include "core/common.hpp"
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060030
31#include <unistd.h>
32
33namespace nfd {
34
35class PrivilegeHelper
36{
37public:
Spyridon Mastorakis149e02c2015-07-27 13:22:22 -070038 /** \brief represents a serious seteuid/gid failure
Alexander Afanasyevb755e9d2015-10-20 17:35:51 -050039 *
40 * This should only be caught by main as part of a graceful program termination.
Davide Pesavento19779d82019-02-14 13:40:04 -050041 * \note This is not an std::exception and NDN_THROW should not be used.
Spyridon Mastorakis149e02c2015-07-27 13:22:22 -070042 */
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060043 class Error
44 {
45 public:
46 explicit
47 Error(const std::string& what)
48 : m_whatMessage(what)
49 {
50 }
51
52 const char*
53 what() const
54 {
Davide Pesaventoacd00872018-02-15 18:24:06 -050055 return m_whatMessage.data();
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060056 }
57
58 private:
59 const std::string m_whatMessage;
60 };
61
62 static void
63 initialize(const std::string& userName, const std::string& groupName);
64
65 static void
66 drop();
67
Davide Pesaventoacd00872018-02-15 18:24:06 -050068 template<class F>
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060069 static void
Davide Pesaventoacd00872018-02-15 18:24:06 -050070 runElevated(F&& f)
71 {
72 raise();
73 try {
74 f();
75 }
76 catch (...) {
77 drop();
78 throw;
79 }
80 drop();
81 }
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060082
Alexander Afanasyev49343f62015-01-26 21:58:07 -080083PUBLIC_WITH_TESTS_ELSE_PRIVATE:
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060084 static void
85 raise();
86
Alexander Afanasyev4d384fc2015-02-13 19:01:38 -080087PUBLIC_WITH_TESTS_ELSE_PRIVATE:
Alexander Afanasyev49343f62015-01-26 21:58:07 -080088#ifdef HAVE_PRIVILEGE_DROP_AND_ELEVATE
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060089 static uid_t s_normalUid;
90 static gid_t s_normalGid;
91
92 static uid_t s_privilegedUid;
93 static gid_t s_privilegedGid;
Alexander Afanasyev49343f62015-01-26 21:58:07 -080094#endif // HAVE_PRIVILEGE_DROP_AND_ELEVATE
Steve DiBenedetto24b9a642014-04-07 15:45:39 -060095};
96
97} // namespace nfd
98
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040099#endif // NFD_DAEMON_COMMON_PRIVILEGE_HELPER_HPP