1 .\" Copyright (c) 1988, 1991, 1993
2 .\" The Regents of the University of California. All rights reserved.
4 .\" Redistribution and use in source and binary forms, with or without
5 .\" modification, are permitted provided that the following conditions
7 .\" 1. Redistributions of source code must retain the above copyright
8 .\" notice, this list of conditions and the following disclaimer.
9 .\" 2. Redistributions in binary form must reproduce the above copyright
10 .\" notice, this list of conditions and the following disclaimer in the
11 .\" documentation and/or other materials provided with the distribution.
12 .\" 4. Neither the name of the University nor the names of its contributors
13 .\" may be used to endorse or promote products derived from this software
14 .\" without specific prior written permission.
16 .\" THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
17 .\" ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
18 .\" IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
19 .\" ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
20 .\" FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
21 .\" DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
22 .\" OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
23 .\" HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
24 .\" LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
25 .\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 .\" From: @(#)getpwent.3 8.2 (Berkeley) 12/11/93
29 .\" $FreeBSD: src/lib/libc/gen/getpwent.3,v 1.30 2007/01/09 00:27:54 imp Exp $
46 .Nd password database operations
56 .\".Fn getpwent_r "struct passwd *pwd" "char *buffer" "size_t bufsize" "struct passwd **result"
58 .Fn getpwnam "const char *login"
60 .Fn getpwnam_r "const char *name" "struct passwd *pwd" "char *buffer" "size_t bufsize" "struct passwd **result"
62 .Fn getpwuid "uid_t uid"
64 .Fn getpwuid_r "uid_t uid" "struct passwd *pwd" "char *buffer" "size_t bufsize" "struct passwd **result"
66 .Fn getpwuuid "uuid_t uuid"
68 .Fn getpwuuid_r "uuid_t uuid" "struct passwd *pwd" "char *buffer" "size_t bufsize" "struct passwd **result"
70 .Fn setpassent "int stayopen"
77 .\"operate on the password database file
78 obtain information from
79 .Xr opendirectoryd 8 ,
81 .Pa /etc/master.passwd
85 Each entry in the database is defined by the structure
90 .Bd -literal -offset indent
92 char *pw_name; /* user name */
93 char *pw_passwd; /* encrypted password */
94 uid_t pw_uid; /* user uid */
95 gid_t pw_gid; /* user gid */
96 time_t pw_change; /* password change time */
97 char *pw_class; /* user access class */
98 char *pw_gecos; /* Honeywell login info */
99 char *pw_dir; /* home directory */
100 char *pw_shell; /* default shell */
101 time_t pw_expire; /* account expiration */
102 int pw_fields; /* internal: fields filled in */
111 search the password database for the given login name, user uid, or user uuid
112 respectively, always returning the first one encountered.
114 Note that the password file
115 .Pa /etc/master.passwd
116 does not contain user UUIDs.
117 The UUID for a user may be found using
118 .Fn mbr_uid_to_uuid .
120 On Mac OS X, these routines are thread-safe and return a pointer to a
121 thread-specific data structure. The contents of this data
122 structure are automatically released by subsequent calls to
123 any of these routines on the same thread, or when the thread exits.
124 These routines are therefore unsuitable for use in libraries or frameworks,
125 from where they may overwrite the per-thread data that the calling
126 application expects to find as a result of its own calls to these
127 routines. Library and framework code should use the alternative reentrant
128 variants detailed below.
133 sequentially reads the password database and is intended for programs
134 that wish to process the complete list of users.
141 are alternative versions of
147 They store the results of their search in the caller-provided
149 structure, which additionally contains pointers to strings that are
150 stored in the caller-provided
154 (The maximum required
156 can be obtained by passing the _SC_GETPW_R_SIZE_MAX constant to the
158 call. See example code below.) When these functions are successful, the
160 argument will be filled in, and a pointer to that argument will be
161 stored in the caller-provided
163 If an entry is not found or an error occurs,
171 accomplishes two purposes.
174 to ``rewind'' to the beginning of the database.
177 is non-zero, file descriptors are left open, significantly speeding
178 up subsequent accesses for all of the routines.
179 (This latter functionality is unnecessary for
181 as it does not close its file descriptors by default.)
183 It is dangerous for long-running programs to keep the file descriptors
184 open as the database will become out of date if it is updated while the
192 with an argument of zero.
197 closes any open files.
199 .\"These routines have been written to ``shadow'' the password file, e.g.\&
200 .\"allow only certain programs to have access to the encrypted password.
201 .\"If the process which calls them has an effective uid of 0, the encrypted
202 .\"password will be returned, otherwise, the password field of the returned
203 .\"structure will point to the string
204 These routines have been written to
206 the password of user records created on Mac OS X 10.3 or later,
207 by returning a structure whose password field points to the string
209 Legacy crypt passwords are still returned for user records created on
210 earlier versions of Mac OS X whose
212 .Dt AuthenticationAuthority
213 attribute contains the value
218 allows user records from some sources which may not include all the component
219 fields present in a passwd structure.
220 Only the name, uid, and gid of a user record are required.
221 Default values will be supplied as follows:
222 .Bd -literal -offset indent
227 pw_dir = "/var/empty"
228 pw_shell = "/usr/bin/false"
238 return a valid pointer to a passwd structure on success
241 if the entry is not found or if an error occurs.
242 If an error does occur,
245 Note that programs must explicitly set
247 to zero before calling any of these functions if they need to
248 distinguish between a non-existent entry and an error.
254 return 0 if no error occurred, or an error number to indicate failure.
255 It is not an error if a matching entry is not found.
260 and the return value is 0, no matching entry exists.)
264 function returns 0 on failure and 1 on success.
270 have no return value.
272 To print the current user's home directory without depending on per-thread storage:
273 .Bd -literal -offset indent
274 #include <sys/types.h>
282 if ((bufsize = sysconf(_SC_GETPW_R_SIZE_MAX)) == -1)
285 char buffer[bufsize];
286 struct passwd pwd, *result = NULL;
287 if (getpwuid_r(getuid(), &pwd, buffer, bufsize, &result) != 0 || !result)
290 printf("%s\\n", pwd.pw_dir);
293 .Bl -tag -width /etc/master.passwd -compact
294 .\".It Pa /etc/pwd.db
295 .\"The insecure password database file
296 .\".It Pa /etc/spwd.db
297 The secure password database file
298 .It Pa /etc/master.passwd
299 The current password file
301 A Version 7 format password file
304 .\"The historic function
306 .\"which allowed the specification of alternate password databases,
307 .\"has been deprecated and is no longer available.
309 These routines may fail for any of the errors specified in
315 in addition to the following:
318 The buffer specified by the
322 arguments was insufficiently sized to store the result.
323 The caller should retry with a larger buffer.
328 .\".Xr nsswitch.conf 5 ,
332 .Xr mbr_uid_to_uuid 3,
333 .Xr opendirectoryd 8 ,
355 functions appeared in
367 functions appeared in
373 appeared in Mac OS X 10.8.
381 .\"leave their results in an internal static object and return
382 leave their results in an internal thread-specific memory and return
383 a pointer to that object.
386 will modify the same object.
395 .\"are fairly useless in a networked environment and should be
396 .\"avoided, if possible.
402 .\"make no attempt to suppress duplicate information if multiple
403 .\"sources are specified in
404 .\".Xr nsswitch.conf 5 .