2013-11-17 14:04:01 +00:00
|
|
|
/*
|
|
|
|
* Windows support module which deals with being a named-pipe client.
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include <stdio.h>
|
|
|
|
#include <assert.h>
|
|
|
|
|
|
|
|
#include "tree234.h"
|
|
|
|
#include "putty.h"
|
|
|
|
#include "network.h"
|
2021-10-30 10:02:28 +00:00
|
|
|
#include "proxy/proxy.h"
|
2013-11-17 14:04:01 +00:00
|
|
|
#include "ssh.h"
|
|
|
|
|
2021-04-23 05:19:05 +00:00
|
|
|
#include "security-api.h"
|
2013-11-17 14:04:01 +00:00
|
|
|
|
2020-01-01 18:58:11 +00:00
|
|
|
HANDLE connect_to_named_pipe(const char *pipename, char **err)
|
2013-11-17 14:04:01 +00:00
|
|
|
{
|
|
|
|
HANDLE pipehandle;
|
|
|
|
PSID usersid, pipeowner;
|
|
|
|
PSECURITY_DESCRIPTOR psd;
|
|
|
|
|
|
|
|
assert(strncmp(pipename, "\\\\.\\pipe\\", 9) == 0);
|
|
|
|
assert(strchr(pipename + 9, '\\') == NULL);
|
|
|
|
|
2013-11-17 14:05:41 +00:00
|
|
|
while (1) {
|
|
|
|
pipehandle = CreateFile(pipename, GENERIC_READ | GENERIC_WRITE,
|
|
|
|
0, NULL, OPEN_EXISTING,
|
|
|
|
FILE_FLAG_OVERLAPPED, NULL);
|
2013-11-17 14:04:01 +00:00
|
|
|
|
2013-11-17 14:05:41 +00:00
|
|
|
if (pipehandle != INVALID_HANDLE_VALUE)
|
|
|
|
break;
|
|
|
|
|
|
|
|
if (GetLastError() != ERROR_PIPE_BUSY) {
|
2020-01-01 18:58:11 +00:00
|
|
|
*err = dupprintf(
|
|
|
|
"Unable to open named pipe '%s': %s",
|
2018-10-07 13:47:16 +00:00
|
|
|
pipename, win_strerror(GetLastError()));
|
2020-01-01 18:58:11 +00:00
|
|
|
return INVALID_HANDLE_VALUE;
|
2013-11-17 14:05:41 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
/*
|
2022-01-22 15:38:53 +00:00
|
|
|
* If we got ERROR_PIPE_BUSY, wait for the server to create a
|
|
|
|
* new pipe instance. (Since the server is expected to be
|
|
|
|
* named-pipe-server.c, which will do that immediately after a
|
|
|
|
* previous connection is accepted, that shouldn't take
|
|
|
|
* excessively long.)
|
2013-11-17 14:05:41 +00:00
|
|
|
*/
|
|
|
|
if (!WaitNamedPipe(pipename, NMPWAIT_USE_DEFAULT_WAIT)) {
|
2020-01-01 18:58:11 +00:00
|
|
|
*err = dupprintf(
|
|
|
|
"Error waiting for named pipe '%s': %s",
|
2018-10-07 13:47:16 +00:00
|
|
|
pipename, win_strerror(GetLastError()));
|
2020-01-01 18:58:11 +00:00
|
|
|
return INVALID_HANDLE_VALUE;
|
2013-11-17 14:05:41 +00:00
|
|
|
}
|
2013-11-17 14:04:01 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
if ((usersid = get_user_sid()) == NULL) {
|
|
|
|
CloseHandle(pipehandle);
|
2020-01-01 18:58:11 +00:00
|
|
|
*err = dupprintf(
|
|
|
|
"Unable to get user SID: %s", win_strerror(GetLastError()));
|
|
|
|
return INVALID_HANDLE_VALUE;
|
2013-11-17 14:04:01 +00:00
|
|
|
}
|
|
|
|
|
2013-11-17 14:05:41 +00:00
|
|
|
if (p_GetSecurityInfo(pipehandle, SE_KERNEL_OBJECT,
|
|
|
|
OWNER_SECURITY_INFORMATION,
|
|
|
|
&pipeowner, NULL, NULL, NULL,
|
|
|
|
&psd) != ERROR_SUCCESS) {
|
2013-11-17 14:04:01 +00:00
|
|
|
CloseHandle(pipehandle);
|
2020-01-01 18:58:11 +00:00
|
|
|
*err = dupprintf(
|
|
|
|
"Unable to get named pipe security information: %s",
|
2018-10-07 13:47:16 +00:00
|
|
|
win_strerror(GetLastError()));
|
2020-01-01 18:58:11 +00:00
|
|
|
return INVALID_HANDLE_VALUE;
|
2013-11-17 14:04:01 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
if (!EqualSid(pipeowner, usersid)) {
|
|
|
|
CloseHandle(pipehandle);
|
|
|
|
LocalFree(psd);
|
2020-01-01 18:58:11 +00:00
|
|
|
*err = dupprintf(
|
|
|
|
"Owner of named pipe '%s' is not us", pipename);
|
|
|
|
return INVALID_HANDLE_VALUE;
|
2013-11-17 14:04:01 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
LocalFree(psd);
|
|
|
|
|
2020-01-01 18:58:11 +00:00
|
|
|
return pipehandle;
|
|
|
|
}
|
|
|
|
|
|
|
|
Socket *new_named_pipe_client(const char *pipename, Plug *plug)
|
|
|
|
{
|
|
|
|
char *err = NULL;
|
|
|
|
HANDLE pipehandle = connect_to_named_pipe(pipename, &err);
|
|
|
|
if (pipehandle == INVALID_HANDLE_VALUE)
|
|
|
|
return new_error_socket_consume_string(plug, err);
|
|
|
|
else
|
2021-09-13 13:34:46 +00:00
|
|
|
return make_handle_socket(pipehandle, pipehandle, NULL, NULL, 0,
|
|
|
|
plug, true);
|
2013-11-17 14:04:01 +00:00
|
|
|
}
|