ssh.c

来自「OpenSSH 是 SSH (Secure SHell) 协议的免费开源实现。它」· C语言 代码 · 共 1,431 行 · 第 1/3 页

C
1,431
字号
			options.bind_address = optarg;			break;		case 'F':			config = optarg;			break;		default:			usage();		}	}	ac -= optind;	av += optind;	if (ac > 0 && !host && **av != '-') {		if (strrchr(*av, '@')) {			p = xstrdup(*av);			cp = strrchr(p, '@');			if (cp == NULL || cp == p)				usage();			options.user = p;			*cp = '\0';			host = ++cp;		} else			host = *av;		if (ac > 1) {			optind = optreset = 1;			goto again;		}		ac--, av++;	}	/* Check that we got a host name. */	if (!host)		usage();	SSLeay_add_all_algorithms();	ERR_load_crypto_strings();	/* Initialize the command to execute on remote host. */	buffer_init(&command);	/*	 * Save the command to execute on the remote host in a buffer. There	 * is no limit on the length of the command, except by the maximum	 * packet size.  Also sets the tty flag if there is no command.	 */	if (!ac) {		/* No command specified - execute shell on a tty. */		tty_flag = 1;		if (subsystem_flag) {			fprintf(stderr,			    "You must specify a subsystem to invoke.\n");			usage();		}	} else {		/* A command has been specified.  Store it into the buffer. */		for (i = 0; i < ac; i++) {			if (i)				buffer_append(&command, " ", 1);			buffer_append(&command, av[i], strlen(av[i]));		}	}	/* Cannot fork to background if no command. */	if (fork_after_authentication_flag && buffer_len(&command) == 0 && !no_shell_flag)		fatal("Cannot fork into background without a command to execute.");	/* Allocate a tty by default if no command specified. */	if (buffer_len(&command) == 0)		tty_flag = 1;	/* Force no tty */	if (no_tty_flag)		tty_flag = 0;	/* Do not allocate a tty if stdin is not a tty. */	if (!isatty(fileno(stdin)) && !force_tty_flag) {		if (tty_flag)			logit("Pseudo-terminal will not be allocated because stdin is not a terminal.");		tty_flag = 0;	}	/*	 * Initialize "log" output.  Since we are the client all output	 * actually goes to stderr.	 */	log_init(av[0], options.log_level == -1 ? SYSLOG_LEVEL_INFO : options.log_level,	    SYSLOG_FACILITY_USER, 1);	/*	 * Read per-user configuration file.  Ignore the system wide config	 * file if the user specifies a config file on the command line.	 */	if (config != NULL) {		if (!read_config_file(config, host, &options, 0))			fatal("Can't open user config file %.100s: "			    "%.100s", config, strerror(errno));	} else  {		snprintf(buf, sizeof buf, "%.100s/%.100s", pw->pw_dir,		    _PATH_SSH_USER_CONFFILE);		(void)read_config_file(buf, host, &options, 1);		/* Read systemwide configuration file after use config. */		(void)read_config_file(_PATH_HOST_CONFIG_FILE, host,		    &options, 0);	}	/* Fill configuration defaults. */	fill_default_options(&options);	channel_set_af(options.address_family);	/* reinit */	log_init(av[0], options.log_level, SYSLOG_FACILITY_USER, 1);	seed_rng();	if (options.user == NULL)		options.user = xstrdup(pw->pw_name);	if (options.hostname != NULL)		host = options.hostname;	/* force lowercase for hostkey matching */	if (options.host_key_alias != NULL) {		for (p = options.host_key_alias; *p; p++)			if (isupper(*p))				*p = tolower(*p);	}	if (options.proxy_command != NULL &&	    strcmp(options.proxy_command, "none") == 0)		options.proxy_command = NULL;	if (options.control_path != NULL) {		options.control_path = tilde_expand_filename(		   options.control_path, original_real_uid);	}	if (options.control_path != NULL && options.control_master == 0)		control_client(options.control_path); /* This doesn't return */	/* Open a connection to the remote host. */	if (ssh_connect(host, &hostaddr, options.port,	    options.address_family, options.connection_attempts,#ifdef HAVE_CYGWIN	    options.use_privileged_port,#else	    original_effective_uid == 0 && options.use_privileged_port,#endif	    options.proxy_command) != 0)		exit(1);	/*	 * If we successfully made the connection, load the host private key	 * in case we will need it later for combined rsa-rhosts	 * authentication. This must be done before releasing extra	 * privileges, because the file is only readable by root.	 * If we cannot access the private keys, load the public keys	 * instead and try to execute the ssh-keysign helper instead.	 */	sensitive_data.nkeys = 0;	sensitive_data.keys = NULL;	sensitive_data.external_keysign = 0;	if (options.rhosts_rsa_authentication ||	    options.hostbased_authentication) {		sensitive_data.nkeys = 3;		sensitive_data.keys = xmalloc(sensitive_data.nkeys *		    sizeof(Key));		PRIV_START;		sensitive_data.keys[0] = key_load_private_type(KEY_RSA1,		    _PATH_HOST_KEY_FILE, "", NULL);		sensitive_data.keys[1] = key_load_private_type(KEY_DSA,		    _PATH_HOST_DSA_KEY_FILE, "", NULL);		sensitive_data.keys[2] = key_load_private_type(KEY_RSA,		    _PATH_HOST_RSA_KEY_FILE, "", NULL);		PRIV_END;		if (options.hostbased_authentication == 1 &&		    sensitive_data.keys[0] == NULL &&		    sensitive_data.keys[1] == NULL &&		    sensitive_data.keys[2] == NULL) {			sensitive_data.keys[1] = key_load_public(			    _PATH_HOST_DSA_KEY_FILE, NULL);			sensitive_data.keys[2] = key_load_public(			    _PATH_HOST_RSA_KEY_FILE, NULL);			sensitive_data.external_keysign = 1;		}	}	/*	 * Get rid of any extra privileges that we may have.  We will no	 * longer need them.  Also, extra privileges could make it very hard	 * to read identity files and other non-world-readable files from the	 * user's home directory if it happens to be on a NFS volume where	 * root is mapped to nobody.	 */	if (original_effective_uid == 0) {		PRIV_START;		permanently_set_uid(pw);	}	/*	 * Now that we are back to our own permissions, create ~/.ssh	 * directory if it doesn\'t already exist.	 */	snprintf(buf, sizeof buf, "%.100s%s%.100s", pw->pw_dir, strcmp(pw->pw_dir, "/") ? "/" : "", _PATH_SSH_USER_DIR);	if (stat(buf, &st) < 0)		if (mkdir(buf, 0700) < 0)			error("Could not create directory '%.200s'.", buf);	/* load options.identity_files */	load_public_identity_files();	/* Expand ~ in known host file names. */	/* XXX mem-leaks: */	options.system_hostfile =	    tilde_expand_filename(options.system_hostfile, original_real_uid);	options.user_hostfile =	    tilde_expand_filename(options.user_hostfile, original_real_uid);	options.system_hostfile2 =	    tilde_expand_filename(options.system_hostfile2, original_real_uid);	options.user_hostfile2 =	    tilde_expand_filename(options.user_hostfile2, original_real_uid);	signal(SIGPIPE, SIG_IGN); /* ignore SIGPIPE early */	/* Log into the remote system.  This never returns if the login fails. */	ssh_login(&sensitive_data, host, (struct sockaddr *)&hostaddr, pw);	/* We no longer need the private host keys.  Clear them now. */	if (sensitive_data.nkeys != 0) {		for (i = 0; i < sensitive_data.nkeys; i++) {			if (sensitive_data.keys[i] != NULL) {				/* Destroys contents safely */				debug3("clear hostkey %d", i);				key_free(sensitive_data.keys[i]);				sensitive_data.keys[i] = NULL;			}		}		xfree(sensitive_data.keys);	}	for (i = 0; i < options.num_identity_files; i++) {		if (options.identity_files[i]) {			xfree(options.identity_files[i]);			options.identity_files[i] = NULL;		}		if (options.identity_keys[i]) {			key_free(options.identity_keys[i]);			options.identity_keys[i] = NULL;		}	}	exit_status = compat20 ? ssh_session2() : ssh_session();	packet_close();	if (options.control_path != NULL && control_fd != -1)		unlink(options.control_path);	/*	 * Send SIGHUP to proxy command if used. We don't wait() in	 * case it hangs and instead rely on init to reap the child	 */	if (proxy_command_pid > 1)		kill(proxy_command_pid, SIGHUP);	return exit_status;}#define SSH_X11_PROTO "MIT-MAGIC-COOKIE-1"static voidx11_get_proto(char **_proto, char **_data){	char cmd[1024];	char line[512];	char xdisplay[512];	static char proto[512], data[512];	FILE *f;	int got_data = 0, generated = 0, do_unlink = 0, i;	char *display, *xauthdir, *xauthfile;	struct stat st;	xauthdir = xauthfile = NULL;	*_proto = proto;	*_data = data;	proto[0] = data[0] = '\0';	if (!options.xauth_location ||	    (stat(options.xauth_location, &st) == -1)) {		debug("No xauth program.");	} else {		if ((display = getenv("DISPLAY")) == NULL) {			debug("x11_get_proto: DISPLAY not set");			return;		}		/*		 * Handle FamilyLocal case where $DISPLAY does		 * not match an authorization entry.  For this we		 * just try "xauth list unix:displaynum.screennum".		 * XXX: "localhost" match to determine FamilyLocal		 *      is not perfect.		 */		if (strncmp(display, "localhost:", 10) == 0) {			snprintf(xdisplay, sizeof(xdisplay), "unix:%s",			    display + 10);			display = xdisplay;		}		if (options.forward_x11_trusted == 0) {			xauthdir = xmalloc(MAXPATHLEN);			xauthfile = xmalloc(MAXPATHLEN);			strlcpy(xauthdir, "/tmp/ssh-XXXXXXXXXX", MAXPATHLEN);			if (mkdtemp(xauthdir) != NULL) {				do_unlink = 1;				snprintf(xauthfile, MAXPATHLEN, "%s/xauthfile",				    xauthdir);				snprintf(cmd, sizeof(cmd),				    "%s -f %s generate %s " SSH_X11_PROTO				    " untrusted timeout 1200 2>" _PATH_DEVNULL,				    options.xauth_location, xauthfile, display);				debug2("x11_get_proto: %s", cmd);				if (system(cmd) == 0)					generated = 1;			}		}		snprintf(cmd, sizeof(cmd),		    "%s %s%s list %s . 2>" _PATH_DEVNULL,		    options.xauth_location,		    generated ? "-f " : "" ,		    generated ? xauthfile : "",		    display);		debug2("x11_get_proto: %s", cmd);		f = popen(cmd, "r");		if (f && fgets(line, sizeof(line), f) &&		    sscanf(line, "%*s %511s %511s", proto, data) == 2)			got_data = 1;		if (f)			pclose(f);	}	if (do_unlink) {		unlink(xauthfile);		rmdir(xauthdir);	}	if (xauthdir)		xfree(xauthdir);	if (xauthfile)		xfree(xauthfile);	/*	 * If we didn't get authentication data, just make up some	 * data.  The forwarding code will check the validity of the	 * response anyway, and substitute this data.  The X11	 * server, however, will ignore this fake data and use	 * whatever authentication mechanisms it was using otherwise	 * for the local connection.	 */	if (!got_data) {		u_int32_t rnd = 0;		logit("Warning: No xauth data; "		    "using fake authentication data for X11 forwarding.");		strlcpy(proto, SSH_X11_PROTO, sizeof proto);		for (i = 0; i < 16; i++) {			if (i % 4 == 0)				rnd = arc4random();			snprintf(data + 2 * i, sizeof data - 2 * i, "%02x",			    rnd & 0xff);			rnd >>= 8;		}	}}static voidssh_init_forwarding(void){	int success = 0;	int i;	/* Initiate local TCP/IP port forwardings. */	for (i = 0; i < options.num_local_forwards; i++) {		debug("Local connections to %.200s:%d forwarded to remote "		    "address %.200s:%d",		    (options.local_forwards[i].listen_host == NULL) ? 		    (options.gateway_ports ? "*" : "LOCALHOST") : 		    options.local_forwards[i].listen_host,		    options.local_forwards[i].listen_port,		    options.local_forwards[i].connect_host,		    options.local_forwards[i].connect_port);		success += channel_setup_local_fwd_listener(		    options.local_forwards[i].listen_host,		    options.local_forwards[i].listen_port,		    options.local_forwards[i].connect_host,		    options.local_forwards[i].connect_port,		    options.gateway_ports);	}	if (i > 0 && success == 0)		error("Could not request local forwarding.");	/* Initiate remote TCP/IP port forwardings. */	for (i = 0; i < options.num_remote_forwards; i++) {		debug("Remote connections from %.200s:%d forwarded to "		    "local address %.200s:%d",		    options.remote_forwards[i].listen_host,		    options.remote_forwards[i].listen_port,		    options.remote_forwards[i].connect_host,		    options.remote_forwards[i].connect_port);		channel_request_remote_forwarding(		    options.remote_forwards[i].listen_host,		    options.remote_forwards[i].listen_port,		    options.remote_forwards[i].connect_host,		    options.remote_forwards[i].connect_port);	}}static voidcheck_agent_present(void){	if (options.forward_agent) {		/* Clear agent forwarding if we don\'t have an agent. */		if (!ssh_agent_present())			options.forward_agent = 0;	}}static intssh_session(void){	int type;	int interactive = 0;	int have_tty = 0;	struct winsize ws;	char *cp;	/* Enable compression if requested. */	if (options.compression) {		debug("Requesting compression at level %d.", options.compression_level);		if (options.compression_level < 1 || options.compression_level > 9)			fatal("Compression level must be from 1 (fast) to 9 (slow, best).");		/* Send the request. */		packet_start(SSH_CMSG_REQUEST_COMPRESSION);		packet_put_int(options.compression_level);		packet_send();		packet_write_wait();		type = packet_read();		if (type == SSH_SMSG_SUCCESS)			packet_start_compression(options.compression_level);		else if (type == SSH_SMSG_FAILURE)			logit("Warning: Remote host refused compression.");		else			packet_disconnect("Protocol error waiting for compression response.");	}	/* Allocate a pseudo tty if appropriate. */	if (tty_flag) {		debug("Requesting pty.");		/* Start the packet. */		packet_start(SSH_CMSG_REQUEST_PTY);		/* Store TERM in the packet.  There is no limit on the		   length of the string. */		cp = getenv("TERM");		if (!cp)			cp = "";		packet_put_cstring(cp);		/* Store window size in the packet. */		if (ioctl(fileno(stdin), TIOCGWINSZ, &ws) < 0)			memset(&ws, 0, sizeof(ws));		packet_put_int(ws.ws_row);		packet_put_int(ws.ws_col);		packet_put_int(ws.ws_xpixel);		packet_put_int(ws.ws_ypixel);		/* Store tty modes in the packet. */		tty_make_modes(fileno(stdin), NULL);

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?