HEX
Server: Apache
System: Linux dinesh8189 5.15.98-grsec-sharedvalley-2.lc.el8.x86_64 #1 SMP Thu Mar 9 09:07:30 -03 2023 x86_64
User: cgmgerenciamento1 (814285)
PHP: 8.1.26
Disabled: apache_child_terminate,dl,escapeshellarg,escapeshellcmd,exec,link,mail,openlog,passthru,pcntl_alarm,pcntl_exec,pcntl_fork,pcntl_get_last_error,pcntl_getpriority,pcntl_setpriority,pcntl_signal,pcntl_signal_dispatch,pcntl_sigprocmask,pcntl_sigtimedwait,pcntl_sigwaitinfo,pcntl_strerror,pcntl_wait,pcntl_waitpid,pcntl_wexitstatus,pcntl_wifexited,pcntl_wifsignaled,pcntl_wifstopped,pcntl_wstopsig,pcntl_wtermsig,php_check_syntax,php_strip_whitespace,popen,proc_close,proc_open,shell_exec,symlink,system
Upload Files
File: //lib/python3.6/site-packages/cloudinit/sources/helpers/vmware/imc/config_passwd.py
#    Copyright (C) 2016 Canonical Ltd.
#    Copyright (C) 2016 VMware INC.
#
#    Author: Maitreyee Saikia <msaikia@vmware.com>
#
#    This file is part of cloud-init. See LICENSE file for license information.


import logging
import os

from cloudinit import atomic_helper, subp

LOG = logging.getLogger(__name__)


class PasswordConfigurator:
    """
    Class for changing configurations related to passwords in a VM. Includes
    setting and expiring passwords.
    """

    def configure(self, passwd, resetPasswd, distro):
        """
        Main method to perform all functionalities based on configuration file
        inputs.
        @param passwd: encoded admin password.
        @param resetPasswd: boolean to determine if password needs to be reset.
        @return cfg: dict to be used by cloud-init set_passwd code.
        """
        LOG.info("Starting password configuration")
        if passwd:
            passwd = atomic_helper.b64d(passwd)
        allRootUsers = []
        for line in open("/etc/passwd", "r"):
            if line.split(":")[2] == "0":
                allRootUsers.append(line.split(":")[0])
        # read shadow file and check for each user, if its uid0 or root.
        uidUsersList = []
        for line in open("/etc/shadow", "r"):
            user = line.split(":")[0]
            if user in allRootUsers:
                uidUsersList.append(user)
        if passwd:
            LOG.info("Setting admin password")
            distro.set_passwd("root", passwd)
        if resetPasswd:
            self.reset_password(uidUsersList)
        LOG.info("Configure Password completed!")

    def reset_password(self, uidUserList):
        """
        Method to reset password. Use passwd --expire command. Use chage if
        not succeeded using passwd command. Log failure message otherwise.
        @param: list of users for which to expire password.
        """
        LOG.info("Expiring password.")
        for user in uidUserList:
            try:
                subp.subp(["passwd", "--expire", user])
            except subp.ProcessExecutionError as e:
                if os.path.exists("/usr/bin/chage"):
                    subp.subp(["chage", "-d", "0", user])
                else:
                    LOG.warning(
                        "Failed to expire password for %s with error: %s",
                        user,
                        e,
                    )