2 Unix SMB/CIFS mplementation.
3 DSDB replication service
5 Copyright (C) Stefan Metzmacher 2007
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License as published by
9 the Free Software Foundation; either version 3 of the License, or
10 (at your option) any later version.
12 This program is distributed in the hope that it will be useful,
13 but WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 GNU General Public License for more details.
17 You should have received a copy of the GNU General Public License
18 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 #include "dsdb/samdb/samdb.h"
24 #include "auth/auth.h"
25 #include "smbd/service.h"
26 #include "lib/events/events.h"
27 #include "lib/messaging/irpc.h"
28 #include "dsdb/repl/drepl_service.h"
29 #include "lib/ldb/include/ldb_errors.h"
30 #include "../lib/util/dlinklist.h"
31 #include "librpc/gen_ndr/ndr_misc.h"
32 #include "librpc/gen_ndr/ndr_drsuapi.h"
33 #include "librpc/gen_ndr/ndr_drsblobs.h"
34 #include "param/param.h"
36 WERROR dreplsrv_load_partitions(struct dreplsrv_service *s)
39 struct ldb_dn *basedn;
41 struct ldb_message_element *el;
42 static const char *attrs[] = { "namingContexts", NULL };
46 basedn = ldb_dn_new(s, s->samdb, NULL);
47 W_ERROR_HAVE_NO_MEMORY(basedn);
49 ret = ldb_search(s->samdb, s, &r, basedn, LDB_SCOPE_BASE, attrs,
52 if (ret != LDB_SUCCESS) {
54 } else if (r->count != 1) {
59 el = ldb_msg_find_element(r->msgs[0], "namingContexts");
64 for (i=0; el && i < el->num_values; i++) {
65 const char *v = (const char *)el->values[i].data;
67 struct dreplsrv_partition *p;
69 pdn = ldb_dn_new(s, s->samdb, v);
70 if (!ldb_dn_validate(pdn)) {
74 p = talloc_zero(s, struct dreplsrv_partition);
75 W_ERROR_HAVE_NO_MEMORY(p);
77 p->dn = talloc_steal(p, pdn);
79 DLIST_ADD(s->partitions, p);
81 DEBUG(2, ("dreplsrv_partition[%s] loaded\n", v));
86 status = dreplsrv_refresh_partitions(s);
87 W_ERROR_NOT_OK_RETURN(status);
92 static WERROR dreplsrv_out_connection_attach(struct dreplsrv_service *s,
93 const struct repsFromTo1 *rft,
94 struct dreplsrv_out_connection **_conn)
96 struct dreplsrv_out_connection *cur, *conn = NULL;
99 if (!rft->other_info) {
103 if (!rft->other_info->dns_name) {
107 hostname = rft->other_info->dns_name;
109 for (cur = s->connections; cur; cur = cur->next) {
110 if (strcmp(cur->binding->host, hostname) == 0) {
120 conn = talloc_zero(s, struct dreplsrv_out_connection);
121 W_ERROR_HAVE_NO_MEMORY(conn);
125 binding_str = talloc_asprintf(conn, "ncacn_ip_tcp:%s[krb5,seal]",
127 W_ERROR_HAVE_NO_MEMORY(binding_str);
128 nt_status = dcerpc_parse_binding(conn, binding_str, &conn->binding);
129 talloc_free(binding_str);
130 if (!NT_STATUS_IS_OK(nt_status)) {
131 return ntstatus_to_werror(nt_status);
134 DLIST_ADD_END(s->connections, conn, struct dreplsrv_out_connection *);
136 DEBUG(2,("dreplsrv_out_connection_attach(%s): create\n", conn->binding->host));
138 DEBUG(2,("dreplsrv_out_connection_attach(%s): attach\n", conn->binding->host));
145 static WERROR dreplsrv_partition_add_source_dsa(struct dreplsrv_service *s,
146 struct dreplsrv_partition *p,
147 const struct ldb_val *val)
150 enum ndr_err_code ndr_err;
151 struct dreplsrv_partition_source_dsa *source;
153 source = talloc_zero(p, struct dreplsrv_partition_source_dsa);
154 W_ERROR_HAVE_NO_MEMORY(source);
156 ndr_err = ndr_pull_struct_blob(val, source,
157 lp_iconv_convenience(s->task->lp_ctx), &source->_repsFromBlob,
158 (ndr_pull_flags_fn_t)ndr_pull_repsFromToBlob);
159 if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err)) {
160 NTSTATUS nt_status = ndr_map_error2ntstatus(ndr_err);
161 return ntstatus_to_werror(nt_status);
163 /* NDR_PRINT_DEBUG(repsFromToBlob, &source->_repsFromBlob); */
164 if (source->_repsFromBlob.version != 1) {
165 return WERR_DS_DRA_INTERNAL_ERROR;
168 source->partition = p;
169 source->repsFrom1 = &source->_repsFromBlob.ctr.ctr1;
171 status = dreplsrv_out_connection_attach(s, source->repsFrom1, &source->conn);
172 W_ERROR_NOT_OK_RETURN(status);
174 DLIST_ADD_END(p->sources, source, struct dreplsrv_partition_source_dsa *);
178 static WERROR dreplsrv_refresh_partition(struct dreplsrv_service *s,
179 struct dreplsrv_partition *p,
183 const struct ldb_val *ouv_value;
184 struct replUpToDateVectorBlob ouv;
185 struct dom_sid *nc_sid;
186 struct ldb_message_element *orf_el = NULL;
187 struct ldb_result *r;
190 static const char *attrs[] = {
193 "replUpToDateVector",
198 DEBUG(2, ("dreplsrv_refresh_partition(%s)\n",
199 ldb_dn_get_linearized(p->dn)));
201 ret = ldb_search(s->samdb, mem_ctx, &r, p->dn, LDB_SCOPE_BASE, attrs,
203 if (ret != LDB_SUCCESS) {
205 } else if (r->count != 1) {
211 p->nc.dn = ldb_dn_alloc_linearized(p, p->dn);
212 W_ERROR_HAVE_NO_MEMORY(p->nc.dn);
213 p->nc.guid = samdb_result_guid(r->msgs[0], "objectGUID");
214 nc_sid = samdb_result_dom_sid(p, r->msgs[0], "objectSid");
219 ouv_value = ldb_msg_find_ldb_val(r->msgs[0], "replUpToDateVector");
221 enum ndr_err_code ndr_err;
222 ndr_err = ndr_pull_struct_blob(ouv_value, mem_ctx,
223 lp_iconv_convenience(s->task->lp_ctx), &ouv,
224 (ndr_pull_flags_fn_t)ndr_pull_replUpToDateVectorBlob);
225 if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err)) {
226 NTSTATUS nt_status = ndr_map_error2ntstatus(ndr_err);
227 return ntstatus_to_werror(nt_status);
229 /* NDR_PRINT_DEBUG(replUpToDateVectorBlob, &ouv); */
230 if (ouv.version != 2) {
231 return WERR_DS_DRA_INTERNAL_ERROR;
234 p->uptodatevector.count = ouv.ctr.ctr2.count;
235 p->uptodatevector.reserved = ouv.ctr.ctr2.reserved;
236 p->uptodatevector.cursors = talloc_steal(p, ouv.ctr.ctr2.cursors);
240 * TODO: add our own uptodatevector cursor
244 orf_el = ldb_msg_find_element(r->msgs[0], "repsFrom");
246 for (i=0; i < orf_el->num_values; i++) {
247 status = dreplsrv_partition_add_source_dsa(s, p, &orf_el->values[i]);
248 W_ERROR_NOT_OK_RETURN(status);
257 WERROR dreplsrv_refresh_partitions(struct dreplsrv_service *s)
260 struct dreplsrv_partition *p;
262 for (p = s->partitions; p; p = p->next) {
263 status = dreplsrv_refresh_partition(s, p, p);
264 W_ERROR_NOT_OK_RETURN(status);