xref: /xnu-10063.101.15/tools/cred_dump_backtraces.c (revision 94d3b452840153a99b38a3a9659680b2a006908e)
1*94d3b452SApple OSS Distributions /* quick and dirty hack to grab credential backtrace info from kernel via sysctl.
2*94d3b452SApple OSS Distributions  * sysctl is only defined if xnu is built with DEBUG_CRED defined.
3*94d3b452SApple OSS Distributions  * The current version of this is used to target a specific credential and gather
4*94d3b452SApple OSS Distributions  * backtrace info on all references and unreferences.
5*94d3b452SApple OSS Distributions  */
6*94d3b452SApple OSS Distributions 
7*94d3b452SApple OSS Distributions #include <stdio.h>
8*94d3b452SApple OSS Distributions #include <stdlib.h>
9*94d3b452SApple OSS Distributions #include <fcntl.h>
10*94d3b452SApple OSS Distributions #include <limits.h>
11*94d3b452SApple OSS Distributions #include <string.h>
12*94d3b452SApple OSS Distributions #include <errno.h>
13*94d3b452SApple OSS Distributions #include <unistd.h>
14*94d3b452SApple OSS Distributions #include <sys/stat.h>
15*94d3b452SApple OSS Distributions #include <sys/types.h>
16*94d3b452SApple OSS Distributions #include <sys/sysctl.h>
17*94d3b452SApple OSS Distributions #include <bsm/audit.h>
18*94d3b452SApple OSS Distributions 
19*94d3b452SApple OSS Distributions /* bad!  this is replicated in kern_credential.c.  make sure they stay in sync!
20*94d3b452SApple OSS Distributions  * Or better yet have commone header file?
21*94d3b452SApple OSS Distributions  */
22*94d3b452SApple OSS Distributions #define MAX_STACK_DEPTH 8
23*94d3b452SApple OSS Distributions struct cred_backtrace {
24*94d3b452SApple OSS Distributions 	int                             depth;
25*94d3b452SApple OSS Distributions 	uint32_t                stack[MAX_STACK_DEPTH];
26*94d3b452SApple OSS Distributions };
27*94d3b452SApple OSS Distributions typedef struct cred_backtrace cred_backtrace;
28*94d3b452SApple OSS Distributions 
29*94d3b452SApple OSS Distributions struct cred_debug_buffer {
30*94d3b452SApple OSS Distributions 	int                             next_slot;
31*94d3b452SApple OSS Distributions 	cred_backtrace  stack_buffer[1];
32*94d3b452SApple OSS Distributions };
33*94d3b452SApple OSS Distributions typedef struct cred_debug_buffer cred_debug_buffer;
34*94d3b452SApple OSS Distributions 
35*94d3b452SApple OSS Distributions 
main(int argc,char * argv[])36*94d3b452SApple OSS Distributions main( int argc, char *argv[] )
37*94d3b452SApple OSS Distributions {
38*94d3b452SApple OSS Distributions 	int                             err, i, j;
39*94d3b452SApple OSS Distributions 	size_t                  len;
40*94d3b452SApple OSS Distributions 	char                        *my_bufferp = NULL;
41*94d3b452SApple OSS Distributions 	cred_debug_buffer       *bt_buffp;
42*94d3b452SApple OSS Distributions 	cred_backtrace          *btp;
43*94d3b452SApple OSS Distributions 
44*94d3b452SApple OSS Distributions 	/* get size of buffer we will need */
45*94d3b452SApple OSS Distributions 	len = 0;
46*94d3b452SApple OSS Distributions 	err = sysctlbyname( "kern.cred_bt", NULL, &len, NULL, 0 );
47*94d3b452SApple OSS Distributions 	if (err != 0) {
48*94d3b452SApple OSS Distributions 		printf( "sysctl failed  \n" );
49*94d3b452SApple OSS Distributions 		printf( "\terrno %d - \"%s\" \n", errno, strerror( errno ));
50*94d3b452SApple OSS Distributions 		return;
51*94d3b452SApple OSS Distributions 	}
52*94d3b452SApple OSS Distributions 
53*94d3b452SApple OSS Distributions 	/* get a buffer for our back traces */
54*94d3b452SApple OSS Distributions 	my_bufferp = malloc( len );
55*94d3b452SApple OSS Distributions 	if (my_bufferp == NULL) {
56*94d3b452SApple OSS Distributions 		printf( "malloc error %d - \"%s\" \n", errno, strerror( errno ));
57*94d3b452SApple OSS Distributions 		return;
58*94d3b452SApple OSS Distributions 	}
59*94d3b452SApple OSS Distributions 	err = sysctlbyname( "kern.cred_bt", my_bufferp, &len, NULL, 0 );
60*94d3b452SApple OSS Distributions 	if (err != 0) {
61*94d3b452SApple OSS Distributions 		printf( "sysctl 2 failed  \n" );
62*94d3b452SApple OSS Distributions 		printf( "\terrno %d - \"%s\" \n", errno, strerror( errno ));
63*94d3b452SApple OSS Distributions 		return;
64*94d3b452SApple OSS Distributions 	}
65*94d3b452SApple OSS Distributions 
66*94d3b452SApple OSS Distributions 	bt_buffp = (cred_debug_buffer *) my_bufferp;
67*94d3b452SApple OSS Distributions 	btp = &bt_buffp->stack_buffer[0];
68*94d3b452SApple OSS Distributions 
69*94d3b452SApple OSS Distributions 	printf("number of traces %d \n", bt_buffp->next_slot);
70*94d3b452SApple OSS Distributions 	for (i = 0; i < bt_buffp->next_slot; i++, btp++) {
71*94d3b452SApple OSS Distributions 		printf("[%d] ", i);
72*94d3b452SApple OSS Distributions 		for (j = 0; j < btp->depth; j++) {
73*94d3b452SApple OSS Distributions 			printf("%p ", btp->stack[j]);
74*94d3b452SApple OSS Distributions 		}
75*94d3b452SApple OSS Distributions 		printf("\n");
76*94d3b452SApple OSS Distributions 	}
77*94d3b452SApple OSS Distributions 
78*94d3b452SApple OSS Distributions 	return;
79*94d3b452SApple OSS Distributions }
80