summaryrefslogtreecommitdiff
path: root/systemd/disable_nss_module.go
blob: c19ba0ca7219e4f5c1b6d685d8cbe2fff7777628 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
// Copyright (C) 2015 Luke Shumaker <lukeshu@sbcglobal.net>
//
// This library is free software; you can redistribute it and/or
// modify it under the terms of the GNU Lesser General Public
// License as published by the Free Software Foundation; either
// version 2.1 of the License, or (at your option) any later version.
//
// This library is distributed in the hope that it will be useful,
// but WITHOUT ANY WARRANTY; without even the implied warranty of
// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
// Lesser General Public License for more details.
//
// You should have received a copy of the GNU Lesser General Public
// License along with this library; if not, write to the Free Software
// Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
// 02110-1301 USA

package nslcd_systemd

import (
	"dl"
	"sd_daemon/logger"
	"unsafe"
)

//static char *strary(char **ary, unsigned int n) { return ary[n]; }
import "C"

const (
	nss_module_soname            = "libnss_ldap.so.2"
	nss_module_sym_version       = "_nss_ldap_version"
	nss_module_sym_enablelookups = "_nss_ldap_enablelookups"
)

func disable_nss_module() {
	handle, err := dl.Open(nss_module_soname, dl.RTLD_LAZY|dl.RTLD_NODELETE)
	if err == nil {
		defer handle.Close()
	} else {
		logger.Warning("NSS module %s not loaded: %v", nss_module_soname, err)
		return
	}

	c_version_info, err := handle.Sym(nss_module_sym_version)
	if err == nil {
		g_version_info := (**C.char)(unsafe.Pointer(c_version_info))
		logger.Debug("NSS module %s version %s %s", nss_module_soname,
			C.GoString(C.strary(g_version_info, 0)),
			C.GoString(C.strary(g_version_info, 1)))
	} else {
		logger.Warning("NSS module %s version missing: %v", nss_module_soname, err)
	}
	c_enable_flag, err := handle.Sym(nss_module_sym_enablelookups)
	if err != nil {
		logger.Warning("Unable to disable NSS ldap module for nslcd process: %v", err)
		return
	}
	g_enable_flag := (*C.int)(unsafe.Pointer(c_enable_flag))
	*g_enable_flag = 0
}