xref: /linux-6.15/fs/ecryptfs/debug.c (revision b0cfbeff)
11a59d1b8SThomas Gleixner // SPDX-License-Identifier: GPL-2.0-or-later
2*b0cfbeffSLee Jones /*
3237fead6SMichael Halcrow  * eCryptfs: Linux filesystem encryption layer
4237fead6SMichael Halcrow  * Functions only useful for debugging.
5237fead6SMichael Halcrow  *
6237fead6SMichael Halcrow  * Copyright (C) 2006 International Business Machines Corp.
7237fead6SMichael Halcrow  *   Author(s): Michael A. Halcrow <[email protected]>
8237fead6SMichael Halcrow  */
9237fead6SMichael Halcrow 
10237fead6SMichael Halcrow #include "ecryptfs_kernel.h"
11237fead6SMichael Halcrow 
12*b0cfbeffSLee Jones /*
13237fead6SMichael Halcrow  * ecryptfs_dump_auth_tok - debug function to print auth toks
14237fead6SMichael Halcrow  *
15237fead6SMichael Halcrow  * This function will print the contents of an ecryptfs authentication
16237fead6SMichael Halcrow  * token.
17237fead6SMichael Halcrow  */
ecryptfs_dump_auth_tok(struct ecryptfs_auth_tok * auth_tok)18237fead6SMichael Halcrow void ecryptfs_dump_auth_tok(struct ecryptfs_auth_tok *auth_tok)
19237fead6SMichael Halcrow {
20237fead6SMichael Halcrow 	char salt[ECRYPTFS_SALT_SIZE * 2 + 1];
21237fead6SMichael Halcrow 	char sig[ECRYPTFS_SIG_SIZE_HEX + 1];
22237fead6SMichael Halcrow 
23237fead6SMichael Halcrow 	ecryptfs_printk(KERN_DEBUG, "Auth tok at mem loc [%p]:\n",
24237fead6SMichael Halcrow 			auth_tok);
25e2bd99ecSMichael Halcrow 	if (auth_tok->flags & ECRYPTFS_PRIVATE_KEY) {
26237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * private key type\n");
27237fead6SMichael Halcrow 	} else {
28237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * passphrase type\n");
29237fead6SMichael Halcrow 		ecryptfs_to_hex(salt, auth_tok->token.password.salt,
30237fead6SMichael Halcrow 				ECRYPTFS_SALT_SIZE);
31237fead6SMichael Halcrow 		salt[ECRYPTFS_SALT_SIZE * 2] = '\0';
32237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * salt = [%s]\n", salt);
33e2bd99ecSMichael Halcrow 		if (auth_tok->token.password.flags &
34e2bd99ecSMichael Halcrow 		    ECRYPTFS_PERSISTENT_PASSWORD) {
35237fead6SMichael Halcrow 			ecryptfs_printk(KERN_DEBUG, " * persistent\n");
36237fead6SMichael Halcrow 		}
37237fead6SMichael Halcrow 		memcpy(sig, auth_tok->token.password.signature,
38237fead6SMichael Halcrow 		       ECRYPTFS_SIG_SIZE_HEX);
39237fead6SMichael Halcrow 		sig[ECRYPTFS_SIG_SIZE_HEX] = '\0';
40237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * signature = [%s]\n", sig);
41237fead6SMichael Halcrow 	}
42237fead6SMichael Halcrow 	ecryptfs_printk(KERN_DEBUG, " * session_key.flags = [0x%x]\n",
43237fead6SMichael Halcrow 			auth_tok->session_key.flags);
44237fead6SMichael Halcrow 	if (auth_tok->session_key.flags
45237fead6SMichael Halcrow 	    & ECRYPTFS_USERSPACE_SHOULD_TRY_TO_DECRYPT)
46237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG,
47237fead6SMichael Halcrow 				" * Userspace decrypt request set\n");
48237fead6SMichael Halcrow 	if (auth_tok->session_key.flags
49237fead6SMichael Halcrow 	    & ECRYPTFS_USERSPACE_SHOULD_TRY_TO_ENCRYPT)
50237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG,
51237fead6SMichael Halcrow 				" * Userspace encrypt request set\n");
52237fead6SMichael Halcrow 	if (auth_tok->session_key.flags & ECRYPTFS_CONTAINS_DECRYPTED_KEY) {
53237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * Contains decrypted key\n");
54237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG,
55237fead6SMichael Halcrow 				" * session_key.decrypted_key_size = [0x%x]\n",
56237fead6SMichael Halcrow 				auth_tok->session_key.decrypted_key_size);
57237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * Decrypted session key "
58237fead6SMichael Halcrow 				"dump:\n");
59237fead6SMichael Halcrow 		if (ecryptfs_verbosity > 0)
60237fead6SMichael Halcrow 			ecryptfs_dump_hex(auth_tok->session_key.decrypted_key,
61237fead6SMichael Halcrow 					  ECRYPTFS_DEFAULT_KEY_BYTES);
62237fead6SMichael Halcrow 	}
63237fead6SMichael Halcrow 	if (auth_tok->session_key.flags & ECRYPTFS_CONTAINS_ENCRYPTED_KEY) {
64237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * Contains encrypted key\n");
65237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG,
66237fead6SMichael Halcrow 				" * session_key.encrypted_key_size = [0x%x]\n",
67237fead6SMichael Halcrow 				auth_tok->session_key.encrypted_key_size);
68237fead6SMichael Halcrow 		ecryptfs_printk(KERN_DEBUG, " * Encrypted session key "
69237fead6SMichael Halcrow 				"dump:\n");
70237fead6SMichael Halcrow 		if (ecryptfs_verbosity > 0)
71237fead6SMichael Halcrow 			ecryptfs_dump_hex(auth_tok->session_key.encrypted_key,
72237fead6SMichael Halcrow 					  auth_tok->session_key.
73237fead6SMichael Halcrow 					  encrypted_key_size);
74237fead6SMichael Halcrow 	}
75237fead6SMichael Halcrow }
76237fead6SMichael Halcrow 
77237fead6SMichael Halcrow /**
78237fead6SMichael Halcrow  * ecryptfs_dump_hex - debug hex printer
79237fead6SMichael Halcrow  * @data: string of bytes to be printed
80237fead6SMichael Halcrow  * @bytes: number of bytes to print
81237fead6SMichael Halcrow  *
82237fead6SMichael Halcrow  * Dump hexadecimal representation of char array
83237fead6SMichael Halcrow  */
ecryptfs_dump_hex(char * data,int bytes)84237fead6SMichael Halcrow void ecryptfs_dump_hex(char *data, int bytes)
85237fead6SMichael Halcrow {
86237fead6SMichael Halcrow 	if (ecryptfs_verbosity < 1)
87237fead6SMichael Halcrow 		return;
88237fead6SMichael Halcrow 
8996827c30SSascha Hauer 	print_hex_dump(KERN_DEBUG, "ecryptfs: ", DUMP_PREFIX_OFFSET, 16, 1,
9096827c30SSascha Hauer 		       data, bytes, false);
9196827c30SSascha Hauer }
92