2012-05-23 08:40:56 -04:00
|
|
|
/* -*- Mode: C; tab-width: 8; indent-tabs-mode: nil; c-basic-offset: 8 -*-
|
|
|
|
*
|
|
|
|
* Copyright 2012 Red Hat, Inc,
|
|
|
|
*
|
|
|
|
* This program is free software; you can redistribute it and/or modify
|
|
|
|
* it under the terms of the GNU General Public License as published by
|
2012-09-06 07:43:05 -04:00
|
|
|
* the Free Software Foundation; either version 2 of the License, or
|
2012-05-23 08:40:56 -04:00
|
|
|
* (at your option) any later version.
|
|
|
|
*
|
|
|
|
* This program is distributed in the hope that it will be useful,
|
|
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
* GNU General Public License for more details.
|
|
|
|
*
|
|
|
|
* You should have received a copy of the GNU General Public License
|
|
|
|
* along with this program; if not, write to the Free Software
|
|
|
|
* Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
|
|
|
|
*
|
|
|
|
* Written by: Matthias Clasen <mclasen@redhat.com>
|
|
|
|
*/
|
|
|
|
|
|
|
|
#include "config.h"
|
|
|
|
|
|
|
|
#include "pw-utils.h"
|
|
|
|
|
|
|
|
#include <glib.h>
|
|
|
|
#include <glib/gi18n.h>
|
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
#include <pwquality.h>
|
2012-05-23 08:40:56 -04:00
|
|
|
|
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
static pwquality_settings_t *
|
|
|
|
get_pwq (void)
|
|
|
|
{
|
|
|
|
static pwquality_settings_t *settings;
|
|
|
|
|
|
|
|
if (settings == NULL) {
|
|
|
|
gchar *err = NULL;
|
|
|
|
settings = pwquality_default_settings ();
|
|
|
|
if (pwquality_read_config (settings, NULL, (gpointer)&err) < 0) {
|
|
|
|
g_error ("failed to read pwquality configuration: %s\n", err);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return settings;
|
|
|
|
}
|
2012-05-23 08:40:56 -04:00
|
|
|
|
|
|
|
gint
|
|
|
|
pw_min_length (void)
|
|
|
|
{
|
2012-05-23 10:43:17 -04:00
|
|
|
gint value = 0;
|
|
|
|
|
|
|
|
if (pwquality_get_int_value (get_pwq (), PWQ_SETTING_MIN_LENGTH, &value) < 0) {
|
|
|
|
g_error ("Failed to read pwquality setting\n" );
|
|
|
|
}
|
|
|
|
|
|
|
|
return value;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
gchar *
|
|
|
|
pw_generate (void)
|
|
|
|
{
|
2012-05-23 10:43:17 -04:00
|
|
|
gchar *res;
|
|
|
|
gint rv;
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
rv = pwquality_generate (get_pwq (), 0, &res);
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
if (rv < 0) {
|
|
|
|
g_error ("Password generation failed: %s\n",
|
|
|
|
pwquality_strerror (NULL, 0, rv, NULL));
|
|
|
|
return NULL;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
return res;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
gdouble
|
|
|
|
pw_strength (const gchar *password,
|
2012-05-19 17:45:04 -04:00
|
|
|
const gchar *old_password,
|
|
|
|
const gchar *username,
|
|
|
|
const gchar **hint,
|
2012-06-11 09:57:31 -04:00
|
|
|
const gchar **long_hint,
|
|
|
|
gint *strength_level)
|
2012-05-23 08:40:56 -04:00
|
|
|
{
|
2012-06-11 09:57:31 -04:00
|
|
|
gint rv, level = 0;
|
|
|
|
gdouble strength = 0.0;
|
2012-05-23 10:43:17 -04:00
|
|
|
void *auxerror;
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
rv = pwquality_check (get_pwq (),
|
2012-05-19 17:45:04 -04:00
|
|
|
password, old_password, username,
|
2012-05-23 10:43:17 -04:00
|
|
|
&auxerror);
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
if (rv == PWQ_ERROR_MIN_LENGTH) {
|
2012-05-23 08:40:56 -04:00
|
|
|
*hint = C_("Password strength", "Too short");
|
2012-05-19 17:45:04 -04:00
|
|
|
*long_hint = pwquality_strerror (NULL, 0, rv, auxerror);
|
2012-06-11 09:57:31 -04:00
|
|
|
goto out;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|
2012-05-23 10:43:17 -04:00
|
|
|
else if (rv < 0) {
|
|
|
|
*hint = C_("Password strength", "Not good enough");
|
2012-05-19 17:45:04 -04:00
|
|
|
*long_hint = pwquality_strerror (NULL, 0, rv, auxerror);
|
2012-06-11 09:57:31 -04:00
|
|
|
goto out;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|
|
|
|
|
2012-05-23 10:43:17 -04:00
|
|
|
strength = CLAMP (0.01 * rv, 0.0, 1.0);
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-06-11 09:57:31 -04:00
|
|
|
if (strength < 0.50) {
|
|
|
|
level = 1;
|
2012-05-23 08:40:56 -04:00
|
|
|
*hint = C_("Password strength", "Weak");
|
2012-06-11 09:57:31 -04:00
|
|
|
} else if (strength < 0.75) {
|
|
|
|
level = 2;
|
2012-05-23 08:40:56 -04:00
|
|
|
*hint = C_("Password strength", "Fair");
|
2012-06-11 09:57:31 -04:00
|
|
|
} else if (strength < 0.90) {
|
|
|
|
level = 3;
|
2012-05-23 08:40:56 -04:00
|
|
|
*hint = C_("Password strength", "Good");
|
2012-06-11 09:57:31 -04:00
|
|
|
} else {
|
|
|
|
level = 4;
|
2012-05-23 08:40:56 -04:00
|
|
|
*hint = C_("Password strength", "Strong");
|
2012-06-11 09:57:31 -04:00
|
|
|
}
|
2012-05-23 08:40:56 -04:00
|
|
|
|
2012-05-19 17:45:04 -04:00
|
|
|
*long_hint = NULL;
|
|
|
|
|
2012-06-11 09:57:31 -04:00
|
|
|
out:
|
|
|
|
if (strength_level)
|
|
|
|
*strength_level = level;
|
|
|
|
|
|
|
|
return strength;
|
2012-05-23 08:40:56 -04:00
|
|
|
}
|