mirror of
https://github.com/apache/nuttx.git
synced 2026-08-13 00:15:09 +00:00
Track supplementary GIDs per task group, wire setgroups/getgroups syscalls when CONFIG_SCHED_NGROUPS > 0, and honor them in DAC checks via nxsched_has_gid(). When NGROUPS is 0, libc provides getgroups/ setgroups stubs. initgroups() fails instead of silently truncating when membership exceeds CONFIG_SCHED_NGROUPS. Signed-off-by: Abhishek Mishra <mishra.abhishek2808@gmail.com>
70 lines
2.5 KiB
C
70 lines
2.5 KiB
C
/****************************************************************************
|
|
* libs/libc/unistd/lib_getgroups.c
|
|
*
|
|
* SPDX-License-Identifier: Apache-2.0
|
|
*
|
|
* Licensed to the Apache Software Foundation (ASF) under one or more
|
|
* contributor license agreements. See the NOTICE file distributed with
|
|
* this work for additional information regarding copyright ownership. The
|
|
* ASF licenses this file to you under the Apache License, Version 2.0 (the
|
|
* "License"); you may not use this file except in compliance with the
|
|
* License. You may obtain a copy of the License at
|
|
*
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
*
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
* distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
|
|
* WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
|
|
* License for the specific language governing permissions and limitations
|
|
* under the License.
|
|
*
|
|
****************************************************************************/
|
|
|
|
/****************************************************************************
|
|
* Included Files
|
|
****************************************************************************/
|
|
|
|
#include <nuttx/config.h>
|
|
|
|
#include <unistd.h>
|
|
#include <errno.h>
|
|
|
|
/****************************************************************************
|
|
* Public Functions
|
|
****************************************************************************/
|
|
|
|
/****************************************************************************
|
|
* Name: getgroups
|
|
*
|
|
* Description:
|
|
* The getgroups() function returns the supplementary group IDs of the
|
|
* calling process in the array grouplist. Stub when
|
|
* CONFIG_SCHED_USER_IDENTITY is disabled or CONFIG_SCHED_NGROUPS is 0:
|
|
* there is no supplementary group list. The effective group ID is not
|
|
* synthesized; callers that need it should use getegid().
|
|
*
|
|
* Input Parameters:
|
|
* gidsetsize - The number of elements available in grouplist.
|
|
* grouplist - The buffer used to return the group IDs.
|
|
*
|
|
* Returned Value:
|
|
* On success, the number of group IDs is returned. If gidsetsize is zero,
|
|
* the total number of group IDs is returned without modifying grouplist.
|
|
* On failure, -1 is returned and errno is set appropriately.
|
|
*
|
|
****************************************************************************/
|
|
|
|
int getgroups(int gidsetsize, gid_t grouplist[])
|
|
{
|
|
UNUSED(grouplist);
|
|
|
|
if (gidsetsize < 0)
|
|
{
|
|
set_errno(EINVAL);
|
|
return ERROR;
|
|
}
|
|
|
|
/* Empty supplementary list (do not synthesize egid). */
|
|
|
|
return 0;
|
|
}
|