1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
#![deny(warnings)]
#[macro_use]
extern crate log;

use log::debug;
use structopt::StructOpt;

use futures::executor::block_on;

use kanidm_unix_common::client::call_daemon;
use kanidm_unix_common::unix_config::KanidmUnixdConfig;
use kanidm_unix_common::unix_proto::{ClientRequest, ClientResponse};

#[derive(Debug, StructOpt)]
struct ClientOpt {
    #[structopt(short = "d", long = "debug")]
    debug: bool,
    #[structopt(short = "D", long = "name")]
    account_id: String,
}

#[tokio::main]
async fn main() {
    let opt = ClientOpt::from_args();
    if opt.debug {
        ::std::env::set_var("RUST_LOG", "kanidm=debug,kanidm_client=debug");
    } else {
        ::std::env::set_var("RUST_LOG", "kanidm=info,kanidm_client=info");
    }
    env_logger::init();

    debug!("Starting cache invalidate tool ...");

    let cfg = KanidmUnixdConfig::new()
        .read_options_from_optional_config("/etc/kanidm/unixd")
        .expect("Failed to parse /etc/kanidm/unixd");

    let password = rpassword::prompt_password_stderr("Enter unix password: ").unwrap();

    let req = ClientRequest::PamAuthenticate(opt.account_id.clone(), password);
    let sereq = ClientRequest::PamAccountAllowed(opt.account_id);

    match block_on(call_daemon(cfg.sock_path.as_str(), req)) {
        Ok(r) => match r {
            ClientResponse::PamStatus(Some(true)) => {
                info!("auth success!");
            }
            ClientResponse::PamStatus(Some(false)) => {
                info!("auth failed!");
            }
            ClientResponse::PamStatus(None) => {
                info!("user unknown");
            }
            _ => {
                // unexpected response.
                error!("Error: unexpected response -> {:?}", r);
            }
        },
        Err(e) => {
            error!("Error -> {:?}", e);
        }
    }

    match block_on(call_daemon(cfg.sock_path.as_str(), sereq)) {
        Ok(r) => match r {
            ClientResponse::PamStatus(Some(true)) => {
                info!("auth success!");
            }
            ClientResponse::PamStatus(Some(false)) => {
                info!("auth failed!");
            }
            ClientResponse::PamStatus(None) => {
                info!("user unknown");
            }
            _ => {
                // unexpected response.
                error!("Error: unexpected response -> {:?}", r);
            }
        },
        Err(e) => {
            error!("Error -> {:?}", e);
        }
    }
}