blob: ee147d8eb8bdf7422541916c40d7170d544d2d96 [file] [log] [blame]
Richard Marian Thomaiyar4654d992018-04-19 05:38:37 +05301/*
2// Copyright (c) 2018 Intel Corporation
3//
4// Licensed under the Apache License, Version 2.0 (the "License");
5// you may not use this file except in compliance with the License.
6// You may obtain a copy of the License at
7//
8// http://www.apache.org/licenses/LICENSE-2.0
9//
10// Unless required by applicable law or agreed to in writing, software
11// distributed under the License is distributed on an "AS IS" BASIS,
12// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13// See the License for the specific language governing permissions and
14// limitations under the License.
15*/
16
17#include "user_layer.hpp"
18
19#include "passwd_mgr.hpp"
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053020#include "user_mgmt.hpp"
21
Richard Marian Thomaiyar4654d992018-04-19 05:38:37 +053022namespace
23{
24ipmi::PasswdMgr passwdMgr;
25}
26
27namespace ipmi
28{
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053029
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000030Cc ipmiUserInit()
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053031{
32 getUserAccessObject();
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000033 return ccSuccess;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053034}
35
Vernon Mauery1e22a0f2021-07-30 13:36:54 -070036SecureString ipmiUserGetPassword(const std::string& userName)
Richard Marian Thomaiyar4654d992018-04-19 05:38:37 +053037{
38 return passwdMgr.getPasswdByUserName(userName);
39}
40
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000041Cc ipmiClearUserEntryPassword(const std::string& userName)
AppaRao Pulib29b5ab2018-05-17 10:28:48 +053042{
Richard Marian Thomaiyar42bed642018-09-21 12:28:57 +053043 if (passwdMgr.updateUserEntry(userName, "") != 0)
44 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000045 return ccUnspecifiedError;
Richard Marian Thomaiyar42bed642018-09-21 12:28:57 +053046 }
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000047 return ccSuccess;
Richard Marian Thomaiyar42bed642018-09-21 12:28:57 +053048}
49
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000050Cc ipmiRenameUserEntryPassword(const std::string& userName,
51 const std::string& newUserName)
Richard Marian Thomaiyar42bed642018-09-21 12:28:57 +053052{
53 if (passwdMgr.updateUserEntry(userName, newUserName) != 0)
54 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000055 return ccUnspecifiedError;
Richard Marian Thomaiyar42bed642018-09-21 12:28:57 +053056 }
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000057 return ccSuccess;
AppaRao Pulib29b5ab2018-05-17 10:28:48 +053058}
59
Richard Marian Thomaiyara45cb342018-12-03 15:08:59 +053060bool ipmiUserIsValidUserId(const uint8_t userId)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053061{
62 return UserAccess::isValidUserId(userId);
63}
64
Richard Marian Thomaiyara45cb342018-12-03 15:08:59 +053065bool ipmiUserIsValidPrivilege(const uint8_t priv)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053066{
67 return UserAccess::isValidPrivilege(priv);
68}
69
70uint8_t ipmiUserGetUserId(const std::string& userName)
71{
72 return getUserAccessObject().getUserId(userName);
73}
74
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000075Cc ipmiUserSetUserName(const uint8_t userId, const char* userName)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053076{
jayaprakash Mutyala76363302020-02-14 23:50:38 +000077 std::string newUser(userName, 0, ipmiMaxUserName);
78 return getUserAccessObject().setUserName(userId, newUser);
79}
80
81Cc ipmiUserSetUserName(const uint8_t userId, const std::string& userName)
82{
83 std::string newUser(userName, 0, ipmiMaxUserName);
84 return getUserAccessObject().setUserName(userId, newUser);
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053085}
86
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000087Cc ipmiUserGetUserName(const uint8_t userId, std::string& userName)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +053088{
89 return getUserAccessObject().getUserName(userId, userName);
90}
91
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000092Cc ipmiUserSetUserPassword(const uint8_t userId, const char* userPassword)
Suryakanth Sekar90b00c72019-01-16 10:37:57 +053093{
94 return getUserAccessObject().setUserPassword(userId, userPassword);
95}
96
NITIN SHARMAb541a5a2019-07-18 12:46:59 +000097Cc ipmiSetSpecialUserPassword(const std::string& userName,
Vernon Mauery1e22a0f2021-07-30 13:36:54 -070098 const SecureString& userPassword)
Richard Marian Thomaiyar788362c2019-04-14 15:12:47 +053099{
100 return getUserAccessObject().setSpecialUserPassword(userName, userPassword);
101}
102
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000103Cc ipmiUserGetAllCounts(uint8_t& maxChUsers, uint8_t& enabledUsers,
104 uint8_t& fixedUsers)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530105{
106 maxChUsers = ipmiMaxUsers;
107 UsersTbl* userData = getUserAccessObject().getUsersTblPtr();
108 enabledUsers = 0;
109 fixedUsers = 0;
110 // user index 0 is reserved, starts with 1
111 for (size_t count = 1; count <= ipmiMaxUsers; ++count)
112 {
113 if (userData->user[count].userEnabled)
114 {
115 enabledUsers++;
116 }
117 if (userData->user[count].fixedUserName)
118 {
119 fixedUsers++;
120 }
121 }
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000122 return ccSuccess;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530123}
124
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000125Cc ipmiUserUpdateEnabledState(const uint8_t userId, const bool& state)
Richard Marian Thomaiyar282e79b2018-11-13 19:00:58 +0530126{
127 return getUserAccessObject().setUserEnabledState(userId, state);
128}
129
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000130Cc ipmiUserCheckEnabled(const uint8_t userId, bool& state)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530131{
132 if (!UserAccess::isValidUserId(userId))
133 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000134 return ccParmOutOfRange;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530135 }
136 UserInfo* userInfo = getUserAccessObject().getUserInfo(userId);
137 state = userInfo->userEnabled;
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000138 return ccSuccess;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530139}
140
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000141Cc ipmiUserGetPrivilegeAccess(const uint8_t userId, const uint8_t chNum,
142 PrivAccess& privAccess)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530143{
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530144 if (!UserAccess::isValidChannel(chNum))
145 {
George Liua0e545d2025-01-24 09:50:22 +0800146 lg2::error("Get Privilege access - Invalid channel number: {CHANNEL}",
147 "CHANNEL", chNum);
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000148 return ccInvalidFieldRequest;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530149 }
150 if (!UserAccess::isValidUserId(userId))
151 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000152 return ccParmOutOfRange;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530153 }
154 UserInfo* userInfo = getUserAccessObject().getUserInfo(userId);
155 privAccess.privilege = userInfo->userPrivAccess[chNum].privilege;
156 privAccess.ipmiEnabled = userInfo->userPrivAccess[chNum].ipmiEnabled;
157 privAccess.linkAuthEnabled =
158 userInfo->userPrivAccess[chNum].linkAuthEnabled;
159 privAccess.accessCallback = userInfo->userPrivAccess[chNum].accessCallback;
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000160 return ccSuccess;
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530161}
162
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000163Cc ipmiUserSetPrivilegeAccess(const uint8_t userId, const uint8_t chNum,
164 const PrivAccess& privAccess,
165 const bool& otherPrivUpdates)
Richard Marian Thomaiyar5a6b6362018-03-12 23:42:34 +0530166{
167 UserPrivAccess userPrivAccess;
168 userPrivAccess.privilege = privAccess.privilege;
169 if (otherPrivUpdates)
170 {
171 userPrivAccess.ipmiEnabled = privAccess.ipmiEnabled;
172 userPrivAccess.linkAuthEnabled = privAccess.linkAuthEnabled;
173 userPrivAccess.accessCallback = privAccess.accessCallback;
174 }
175 return getUserAccessObject().setUserPrivilegeAccess(
176 userId, chNum, userPrivAccess, otherPrivUpdates);
177}
178
Ayushi Smriti02650d52019-05-15 11:59:09 +0000179bool ipmiUserPamAuthenticate(std::string_view userName,
180 std::string_view userPassword)
181{
182 return pamUserCheckAuthenticate(userName, userPassword);
183}
184
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000185Cc ipmiUserSetUserPayloadAccess(const uint8_t chNum, const uint8_t operation,
186 const uint8_t userId,
187 const PayloadAccess& payloadAccess)
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000188{
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000189 if (!UserAccess::isValidChannel(chNum))
190 {
George Liua0e545d2025-01-24 09:50:22 +0800191 lg2::error(
192 "Set user payload access - Invalid channel number: {CHANNEL}",
193 "CHANNEL", chNum);
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000194 return ccInvalidFieldRequest;
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000195 }
196 if (!UserAccess::isValidUserId(userId))
197 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000198 return ccParmOutOfRange;
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000199 }
200
201 return getUserAccessObject().setUserPayloadAccess(chNum, operation, userId,
202 payloadAccess);
203}
204
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000205Cc ipmiUserGetUserPayloadAccess(const uint8_t chNum, const uint8_t userId,
206 PayloadAccess& payloadAccess)
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000207{
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000208 if (!UserAccess::isValidChannel(chNum))
209 {
George Liua0e545d2025-01-24 09:50:22 +0800210 lg2::error(
211 "Get user payload access - Invalid channel number: {CHANNEL}",
212 "CHANNEL", chNum);
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000213 return ccInvalidFieldRequest;
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000214 }
215 if (!UserAccess::isValidUserId(userId))
216 {
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000217 return ccParmOutOfRange;
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000218 }
219
220 UserInfo* userInfo = getUserAccessObject().getUserInfo(userId);
221
222 payloadAccess.stdPayloadEnables1 =
223 userInfo->payloadAccess[chNum].stdPayloadEnables1;
224 payloadAccess.stdPayloadEnables2Reserved =
225 userInfo->payloadAccess[chNum].stdPayloadEnables2Reserved;
226 payloadAccess.oemPayloadEnables1 =
227 userInfo->payloadAccess[chNum].oemPayloadEnables1;
228 payloadAccess.oemPayloadEnables2Reserved =
229 userInfo->payloadAccess[chNum].oemPayloadEnables2Reserved;
230
NITIN SHARMAb541a5a2019-07-18 12:46:59 +0000231 return ccSuccess;
Saravanan Palanisamy77381f12019-05-15 22:33:17 +0000232}
233
Richard Marian Thomaiyar4654d992018-04-19 05:38:37 +0530234} // namespace ipmi