diff options
author | cinap_lenrek <cinap_lenrek@felloff.net> | 2019-09-21 23:36:44 +0200 |
---|---|---|
committer | cinap_lenrek <cinap_lenrek@felloff.net> | 2019-09-21 23:36:44 +0200 |
commit | 71a1d11a81faba020649408e8c9eaeb10095a341 (patch) | |
tree | a6bd0c245ad0beba3235ec268cf342da3182fb7e /sys/src/cmd/tlssrv.c | |
parent | 5993760e143bfab2a29fa3d5a4655ed5842fd21f (diff) |
cmd/ip/*: chown the network connection after authentication
for servers that handle incoming network connections and authentication,
change the owner of the network connection file to the authenticated user
after successfull authentication.
note that we set the permissions as well to 0660 because old devip used
to unconditionally set the bits.
Diffstat (limited to 'sys/src/cmd/tlssrv.c')
-rw-r--r-- | sys/src/cmd/tlssrv.c | 15 |
1 files changed, 12 insertions, 3 deletions
diff --git a/sys/src/cmd/tlssrv.c b/sys/src/cmd/tlssrv.c index 274b5c6c5..cd94e03c0 100644 --- a/sys/src/cmd/tlssrv.c +++ b/sys/src/cmd/tlssrv.c @@ -84,9 +84,18 @@ main(int argc, char *argv[]) if(ai == nil) sysfatal("auth_proxy: %r"); - if(auth == 1) - if(auth_chuid(ai, nil) < 0) - sysfatal("auth_chuid: %r"); + if(auth == 1){ + Dir nd; + + if(auth_chuid(ai, nil) < 0) + sysfatal("auth_chuid: %r"); + + /* chown network connection */ + nulldir(&nd); + nd.mode = 0660; + nd.uid = ai->cuid; + dirfwstat(0, &nd); + } conn->pskID = "p9secret"; conn->psk = ai->secret; |