Annotation of src/usr.bin/skey/skey.c, Revision 1.31
1.31 ! tim 1: /* $OpenBSD: skey.c,v 1.30 2015/10/09 20:24:37 tim Exp $ */
1.1 deraadt 2: /*
1.15 millert 3: * OpenBSD S/Key (skey.c)
1.1 deraadt 4: *
5: * Authors:
6: * Neil M. Haller <nmh@thumper.bellcore.com>
7: * Philip R. Karn <karn@chicago.qualcomm.com>
8: * John S. Walden <jsw@thumper.bellcore.com>
9: * Scott Chasin <chasin@crimelab.com>
1.15 millert 10: * Todd C. Miller <Todd.Miller@courtesan.com>
1.1 deraadt 11: *
12: *
13: * Stand-alone program for computing responses to S/Key challenges.
14: * Takes the iteration count and seed as command line args, prompts
15: * for the user's key, and produces both word and hex format responses.
16: *
17: * Usage example:
18: * >skey 88 ka9q2
19: * Enter password:
20: * OMEN US HORN OMIT BACK AHOY
21: * >
22: *
23: */
24:
1.29 tim 25: #include <err.h>
26: #include <limits.h>
1.1 deraadt 27: #include <stdio.h>
28: #include <stdlib.h>
29: #include <string.h>
1.3 millert 30: #include <unistd.h>
1.29 tim 31: #include <readpassphrase.h>
1.3 millert 32: #include <skey.h>
1.1 deraadt 33:
1.30 tim 34: void usage();
35:
36: extern char *__progname;
1.1 deraadt 37:
38: int
1.19 deraadt 39: main(int argc, char *argv[])
1.1 deraadt 40: {
1.3 millert 41: int n, i, cnt = 1, pass = 0, hexmode = 0;
1.8 millert 42: char passwd[SKEY_MAX_PW_LEN+1], key[SKEY_BINKEY_SIZE];
1.30 tim 43: char buf[33], *seed, *slash, *algo;
1.28 deraadt 44: const char *errstr;
1.1 deraadt 45:
1.5 millert 46: /* If we were called as otp-METHOD, set algorithm based on that */
1.30 tim 47: if (strncmp(__progname, "otp-", 4) == 0) {
48: algo = __progname + 4;
49: if (skey_set_algorithm(algo) == NULL)
50: errx(1, "Unknown hash algorithm %s", algo);
1.1 deraadt 51: }
52:
1.5 millert 53: for (i = 1; i < argc && argv[i][0] == '-' && strcmp(argv[i], "--");) {
54: if (argv[i][2] == '\0') {
55: /* Single character switch */
56: switch (argv[i][1]) {
57: case 'n':
1.15 millert 58: if (++i == argc)
1.30 tim 59: usage();
1.28 deraadt 60: cnt = strtonum(argv[i], 1, SKEY_MAX_SEQ -1, &errstr);
61: if (errstr)
1.30 tim 62: usage();
1.5 millert 63: break;
64: case 'p':
1.15 millert 65: if (++i == argc)
1.30 tim 66: usage();
1.15 millert 67: if (strlcpy(passwd, argv[i], sizeof(passwd)) >=
1.13 deraadt 68: sizeof(passwd))
69: errx(1, "Password too long");
1.5 millert 70: pass = 1;
71: break;
72: case 'x':
73: hexmode = 1;
74: break;
75: default:
1.30 tim 76: usage();
1.5 millert 77: }
78: } else {
79: /* Multi character switches are hash types */
80: if (skey_set_algorithm(&argv[i][1]) == NULL) {
81: warnx("Unknown hash algorithm %s", &argv[i][1]);
1.30 tim 82: usage();
1.5 millert 83: }
1.4 millert 84: }
1.5 millert 85: i++;
1.4 millert 86: }
1.7 millert 87:
88: if (argc > i + 2)
1.30 tim 89: usage();
1.4 millert 90:
1.5 millert 91: /* Could be in the form <number>/<seed> */
92: if (argc <= i + 1) {
1.1 deraadt 93: /* look for / in it */
1.5 millert 94: if (argc <= i)
1.30 tim 95: usage();
1.5 millert 96: slash = strchr(argv[i], '/');
1.1 deraadt 97: if (slash == NULL)
1.30 tim 98: usage();
1.1 deraadt 99: *slash++ = '\0';
100: seed = slash;
101:
1.28 deraadt 102: n = strtonum(argv[i], 0, SKEY_MAX_SEQ, &errstr);
103: if (errstr) {
104: warnx("%s: %s", argv[i], errstr);
1.30 tim 105: usage();
1.1 deraadt 106: }
107: } else {
1.28 deraadt 108: n = strtonum(argv[i], 0, SKEY_MAX_SEQ, &errstr);
109: if (errstr) {
110: warnx("%s: %s", argv[i], errstr);
1.30 tim 111: usage();
1.1 deraadt 112: }
1.5 millert 113: seed = argv[++i];
1.1 deraadt 114: }
115:
1.20 otto 116: /* Get user's secret passphrase */
1.31 ! tim 117: if (!pass && (readpassphrase("Enter secret passphrase: ", passwd,
! 118: sizeof(passwd), 0) == NULL || passwd[0] == '\0'))
! 119: exit(1);
1.1 deraadt 120:
1.20 otto 121: /* Crunch seed and passphrase into starting key */
1.3 millert 122: if (keycrunch(key, seed, passwd) != 0)
123: errx(1, "key crunch failed");
124:
1.1 deraadt 125: if (cnt == 1) {
126: while (n-- != 0)
127: f(key);
1.12 millert 128: (void)puts(hexmode ? put8(buf, key) : btoe(buf, key));
1.1 deraadt 129: } else {
130: for (i = 0; i <= n - cnt; i++)
131: f(key);
132: for (; i <= n; i++) {
1.3 millert 133: if (hexmode)
1.25 millert 134: (void)printf("%d: %s\n", i, put8(buf, key));
135: else
1.26 millert 136: (void)printf("%d: %-29s\n", i, btoe(buf, key));
1.1 deraadt 137: f(key);
138: }
139: }
140: exit(0);
141: }
142:
143: void
1.30 tim 144: usage(void)
1.1 deraadt 145: {
1.19 deraadt 146: fprintf(stderr,
1.27 naddy 147: "usage: %s [-x] [-md5 | -rmd160 | -sha1] [-n count]\n\t"
1.30 tim 148: "[-p passphrase] <sequence#>[/] key\n", __progname);
1.1 deraadt 149: exit(1);
150: }