emacs/lisp/net/sasl-ntlm.el

67 lines
2.3 KiB
EmacsLisp

;;; sasl-ntlm.el --- NTLM (NT Lan Manager) module for the SASL client framework -*- lexical-binding: t -*-
;; Copyright (C) 2000, 2007-2024 Free Software Foundation, Inc.
;; Author: Taro Kawagishi <tarok@transpulse.org>
;; Keywords: SASL, NTLM
;; Old-Version: 1.00
;; Created: February 2001
;; Package: sasl
;; This file is part of GNU Emacs.
;; GNU Emacs is free software: you can redistribute it and/or modify
;; it under the terms of the GNU General Public License as published by
;; the Free Software Foundation, either version 3 of the License, or
;; (at your option) any later version.
;; GNU Emacs is distributed in the hope that it will be useful,
;; but WITHOUT ANY WARRANTY; without even the implied warranty of
;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
;; GNU General Public License for more details.
;; You should have received a copy of the GNU General Public License
;; along with GNU Emacs. If not, see <https://www.gnu.org/licenses/>.
;;; Commentary:
;; This is a SASL interface layer for NTLM authentication message
;; generation by ntlm.el
;;; Code:
(require 'sasl)
(require 'ntlm)
(defconst sasl-ntlm-steps
'(ignore ;nothing to do before making
sasl-ntlm-request ;authentication request
sasl-ntlm-response) ;response to challenge
"List of functions to call in sequence for the NTLM authentication steps.
They are called by `sasl-next-step'.")
(defun sasl-ntlm-request (client _step)
"SASL step function to generate a NTLM authentication request to the server.
Called from `sasl-next-step'.
CLIENT is a vector [mechanism user service server sasl-client-properties]
STEP is a vector [<previous step function> <result of previous step function>]"
(let ((user (sasl-client-name client)))
(ntlm-build-auth-request user)))
(defun sasl-ntlm-response (client step)
"SASL step function to generate a NTLM response against the server
challenge stored in the 2nd element of STEP. Called from `sasl-next-step'."
(let* ((user (sasl-client-name client))
(passphrase
(sasl-read-passphrase (format "NTLM passphrase for %s: " user)))
(challenge (sasl-step-data step)))
(ntlm-build-auth-response challenge user
(ntlm-get-password-hashes passphrase))))
(put 'sasl-ntlm 'sasl-mechanism
(sasl-make-mechanism "NTLM" sasl-ntlm-steps))
(provide 'sasl-ntlm)
;;; sasl-ntlm.el ends here