From: José Bollo Date: Wed, 9 Dec 2015 13:52:38 +0000 (+0100) Subject: add wrapper to security-manager X-Git-Tag: 2.0.2~158 X-Git-Url: https://gerrit.automotivelinux.org/gerrit/gitweb?a=commitdiff_plain;h=ec5ef9fdf2e608149c6ad308c5184820c51c39a6;p=src%2Fapp-framework-main.git add wrapper to security-manager Change-Id: Ieb3352e705472358b8dae2472cf4ad38d7ae0c0b --- diff --git a/src/secmgr-wrap.c b/src/secmgr-wrap.c new file mode 100644 index 0000000..1fcec58 --- /dev/null +++ b/src/secmgr-wrap.c @@ -0,0 +1,101 @@ + +#include +#if 0 +#include +#else +enum lib_retcode { + SECURITY_MANAGER_SUCCESS, + SECURITY_MANAGER_ERROR_INPUT_PARAM, + SECURITY_MANAGER_ERROR_MEMORY, + SECURITY_MANAGER_ERROR_REQ_NOT_COMPLETE, + SECURITY_MANAGER_ERROR_AUTHENTICATION_FAILED, + SECURITY_MANAGER_ERROR_ACCESS_DENIED +}; +enum app_install_path_type { + SECURITY_MANAGER_PATH_PUBLIC_RO, + SECURITY_MANAGER_PATH_RO, + SECURITY_MANAGER_PATH_RW +}; +typedef void app_inst_req; +static int diese = 0; +#define security_manager_app_inst_req_free(r) \ + (printf("security_manager_app_inst_req_free(%p)\n",r),(void)0) + +#define security_manager_app_inst_req_new(pr) \ + (*(pr)=(void*)(++diese), printf("security_manager_app_inst_req_new(%p)\n",*pr), SECURITY_MANAGER_SUCCESS) + +#define security_manager_app_inst_req_set_pkg_id(r,i) \ + (printf("security_manager_app_inst_req_set_pkg_id(%p,\"%s\")\n",r,i), SECURITY_MANAGER_SUCCESS) + +#define security_manager_app_inst_req_set_app_id(r,i) \ + (printf("security_manager_app_inst_req_set_app_id(%p,\"%s\")\n",r,i), SECURITY_MANAGER_SUCCESS) + +#define security_manager_app_inst_req_add_privilege(r,p) \ + (printf("security_manager_app_inst_req_add_privilege(%p,\"%s\")\n",r,p), SECURITY_MANAGER_SUCCESS) + +#define security_manager_app_inst_req_add_path(r,p,t) \ + (printf("security_manager_app_inst_req_add_path(%p,\"%s\",%d)\n",r,p,t), SECURITY_MANAGER_SUCCESS) +#endif + +static app_inst_req *request = NULL; + +static int retcode(enum lib_retcode rc) +{ + switch (rc) { + case SECURITY_MANAGER_SUCCESS: return 0; + case SECURITY_MANAGER_ERROR_INPUT_PARAM: errno = EINVAL; break; + case SECURITY_MANAGER_ERROR_MEMORY: errno = ENOMEM; break; + case SECURITY_MANAGER_ERROR_REQ_NOT_COMPLETE: errno = EBADMSG; break; + case SECURITY_MANAGER_ERROR_AUTHENTICATION_FAILED: errno = EPERM; break; + case SECURITY_MANAGER_ERROR_ACCESS_DENIED: errno = EACCES; break; + default: errno = 0; break; + } + return -1; +} + +void secmgr_cancel() +{ + security_manager_app_inst_req_free(request); + request = NULL; +} + +int secmgr_init(const char *pkgid, const char *appid) +{ + int rc = security_manager_app_inst_req_new(&request); + if (rc == SECURITY_MANAGER_SUCCESS) { + rc = security_manager_app_inst_req_set_pkg_id(request, pkgid); + if (rc == SECURITY_MANAGER_SUCCESS) + rc = security_manager_app_inst_req_set_app_id(request, appid); + } + if (rc != SECURITY_MANAGER_SUCCESS) + secmgr_cancel(); + return retcode(rc); +} + +int secmgr_permit(const char *permission) +{ + int rc = security_manager_app_inst_req_add_privilege(request, permission); + return retcode(rc); +} + +static int addpath(const char *pathname, enum app_install_path_type type) +{ + int rc = security_manager_app_inst_req_add_path(request, pathname, type); + return retcode(rc); +} + +int secmgr_path_public_read_only(const char *pathname) +{ + return addpath(pathname, SECURITY_MANAGER_PATH_PUBLIC_RO); +} + +int secmgr_path_read_only(const char *pathname) +{ + return addpath(pathname, SECURITY_MANAGER_PATH_RO); +} + +int secmgr_path_read_write(const char *pathname) +{ + return addpath(pathname, SECURITY_MANAGER_PATH_RW); +} +