221fafadfdbfe8612af383ffd1b9199c6fd4f41c
[bbaumbach/samba-autobuild/.git] / source4 / smb_server / smb2 / fileio.c
1 /* 
2    Unix SMB2 implementation.
3    
4    Copyright (C) Stefan Metzmacher      2005
5    
6    This program is free software; you can redistribute it and/or modify
7    it under the terms of the GNU General Public License as published by
8    the Free Software Foundation; either version 3 of the License, or
9    (at your option) any later version.
10    
11    This program is distributed in the hope that it will be useful,
12    but WITHOUT ANY WARRANTY; without even the implied warranty of
13    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14    GNU General Public License for more details.
15    
16    You should have received a copy of the GNU General Public License
17    along with this program.  If not, see <http://www.gnu.org/licenses/>.
18 */
19
20 #include "includes.h"
21 #include "libcli/smb2/smb2.h"
22 #include "libcli/smb2/smb2_calls.h"
23 #include "smb_server/smb_server.h"
24 #include "smb_server/service_smb_proto.h"
25 #include "smb_server/smb2/smb2_server.h"
26 #include "ntvfs/ntvfs.h"
27 #include "param/param.h"
28 #include "libcli/raw/libcliraw.h"
29 #include "libcli/raw/raw_proto.h"
30 #include "librpc/gen_ndr/ndr_security.h"
31
32 static void smb2srv_create_send(struct ntvfs_request *ntvfs)
33 {
34         struct smb2srv_request *req;
35         union smb_open *io;
36         DATA_BLOB blob;
37
38         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_open);
39
40         /* setup the blobs we should give in the reply */
41         if (io->smb2.out.maximal_access != 0) {
42                 uint32_t data[2];
43                 SIVAL(data, 0, 0);
44                 SIVAL(data, 4, io->smb2.out.maximal_access);
45                 SMB2SRV_CHECK(smb2_create_blob_add(req, &io->smb2.out.blobs,
46                                                    SMB2_CREATE_TAG_MXAC, 
47                                                    data_blob_const(data, 8)));
48         }
49         
50
51         SMB2SRV_CHECK(smb2_create_blob_push(req, &blob, io->smb2.out.blobs));
52         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x58, true, blob.length));
53
54         SCVAL(req->out.body,    0x02,   io->smb2.out.oplock_level);
55         SCVAL(req->out.body,    0x03,   io->smb2.out.reserved);
56         SIVAL(req->out.body,    0x04,   io->smb2.out.create_action);
57         SBVAL(req->out.body,    0x08,   io->smb2.out.create_time);
58         SBVAL(req->out.body,    0x10,   io->smb2.out.access_time);
59         SBVAL(req->out.body,    0x18,   io->smb2.out.write_time);
60         SBVAL(req->out.body,    0x20,   io->smb2.out.change_time);
61         SBVAL(req->out.body,    0x28,   io->smb2.out.alloc_size);
62         SBVAL(req->out.body,    0x30,   io->smb2.out.size);
63         SIVAL(req->out.body,    0x38,   io->smb2.out.file_attr);
64         SIVAL(req->out.body,    0x3C,   io->smb2.out.reserved2);
65         smb2srv_push_handle(req->out.body, 0x40, io->smb2.out.file.ntvfs);
66         SMB2SRV_CHECK(smb2_push_o32s32_blob(&req->out, 0x50, blob));
67
68         /* also setup the chained file handle */
69         req->chained_file_handle = req->_chained_file_handle;
70         smb2srv_push_handle(req->chained_file_handle, 0, io->smb2.out.file.ntvfs);
71
72         smb2srv_send_reply(req);
73 }
74
75 void smb2srv_create_recv(struct smb2srv_request *req)
76 {
77         union smb_open *io;
78         DATA_BLOB blob;
79         int i;
80
81         SMB2SRV_CHECK_BODY_SIZE(req, 0x38, true);
82         SMB2SRV_TALLOC_IO_PTR(io, union smb_open);
83         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_create_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
84
85         ZERO_STRUCT(io->smb2.in);
86         io->smb2.level                  = RAW_OPEN_SMB2;
87         io->smb2.in.security_flags      = CVAL(req->in.body, 0x02);
88         io->smb2.in.oplock_level        = CVAL(req->in.body, 0x03);
89         io->smb2.in.impersonation_level = IVAL(req->in.body, 0x04);
90         io->smb2.in.create_flags        = BVAL(req->in.body, 0x08);
91         io->smb2.in.reserved            = BVAL(req->in.body, 0x10);
92         io->smb2.in.desired_access      = IVAL(req->in.body, 0x18);
93         io->smb2.in.file_attributes     = IVAL(req->in.body, 0x1C);
94         io->smb2.in.share_access        = IVAL(req->in.body, 0x20);
95         io->smb2.in.create_disposition  = IVAL(req->in.body, 0x24);
96         io->smb2.in.create_options      = IVAL(req->in.body, 0x28);
97         SMB2SRV_CHECK(smb2_pull_o16s16_string(&req->in, io, req->in.body+0x2C, &io->smb2.in.fname));
98         SMB2SRV_CHECK(smb2_pull_o32s32_blob(&req->in, io, req->in.body+0x30, &blob));
99         SMB2SRV_CHECK(smb2_create_blob_parse(io, blob, &io->smb2.in.blobs));
100
101         /* interpret the parsed tags that a server needs to respond to */
102         for (i=0;i<io->smb2.in.blobs.num_blobs;i++) {
103                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_EXTA) == 0) {
104                         SMB2SRV_CHECK(ea_pull_list_chained(&io->smb2.in.blobs.blobs[i].data, io, 
105                                                            &io->smb2.in.eas.num_eas,
106                                                            &io->smb2.in.eas.eas));
107                 }
108                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_SECD) == 0) {
109                         enum ndr_err_code ndr_err;
110                         io->smb2.in.sec_desc = talloc(io, struct security_descriptor);
111                         if (io->smb2.in.sec_desc == NULL) {
112                                 smb2srv_send_error(req,  NT_STATUS_NO_MEMORY);
113                                 return;
114                         }
115                         ndr_err = ndr_pull_struct_blob(&io->smb2.in.blobs.blobs[i].data, io, NULL,
116                                                        io->smb2.in.sec_desc,
117                                                        (ndr_pull_flags_fn_t)ndr_pull_security_descriptor);
118                         if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err)) {
119                                 smb2srv_send_error(req,  ndr_map_error2ntstatus(ndr_err));
120                                 return;
121                         }
122                 }
123                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_DHNQ) == 0) {
124                         io->smb2.in.durable_open = true;
125                 }
126                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_DHNC) == 0) {
127                         if (io->smb2.in.blobs.blobs[i].data.length != 16) {
128                                 smb2srv_send_error(req,  NT_STATUS_INVALID_PARAMETER);
129                                 return;                         
130                         }
131                         io->smb2.in.durable_handle = talloc(io, struct smb2_handle);
132                         if (io->smb2.in.durable_handle == NULL) {
133                                 smb2srv_send_error(req,  NT_STATUS_NO_MEMORY);
134                                 return;
135                         }
136                         smb2_pull_handle(io->smb2.in.blobs.blobs[i].data.data, io->smb2.in.durable_handle);
137                 }
138                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_ALSI) == 0) {
139                         if (io->smb2.in.blobs.blobs[i].data.length != 8) {
140                                 smb2srv_send_error(req,  NT_STATUS_INVALID_PARAMETER);
141                                 return;                         
142                         }
143                         io->smb2.in.alloc_size = BVAL(io->smb2.in.blobs.blobs[i].data.data, 0);
144                 }
145                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_MXAC) == 0) {
146                         io->smb2.in.query_maximal_access = true;
147                 }
148                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_TWRP) == 0) {
149                         if (io->smb2.in.blobs.blobs[i].data.length != 8) {
150                                 smb2srv_send_error(req,  NT_STATUS_INVALID_PARAMETER);
151                                 return;                         
152                         }
153                         io->smb2.in.timewarp = BVAL(io->smb2.in.blobs.blobs[i].data.data, 0);                   
154                 }
155                 if (strcmp(io->smb2.in.blobs.blobs[i].tag, SMB2_CREATE_TAG_QFID) == 0) {
156                         io->smb2.in.query_on_disk_id = true;
157                 }
158         }
159                 
160         /* the VFS backend does not yet handle NULL filenames */
161         if (io->smb2.in.fname == NULL) {
162                 io->smb2.in.fname = "";
163         }
164
165         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_open(req->ntvfs, io));
166 }
167
168 static void smb2srv_close_send(struct ntvfs_request *ntvfs)
169 {
170         struct smb2srv_request *req;
171         union smb_close *io;
172
173         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_close);
174         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x3C, false, 0));
175
176         SSVAL(req->out.body,    0x02,   io->smb2.out.flags);
177         SIVAL(req->out.body,    0x04,   io->smb2.out._pad);
178         SBVAL(req->out.body,    0x08,   io->smb2.out.create_time);
179         SBVAL(req->out.body,    0x10,   io->smb2.out.access_time);
180         SBVAL(req->out.body,    0x18,   io->smb2.out.write_time);
181         SBVAL(req->out.body,    0x20,   io->smb2.out.change_time);
182         SBVAL(req->out.body,    0x28,   io->smb2.out.alloc_size);
183         SBVAL(req->out.body,    0x30,   io->smb2.out.size);
184         SIVAL(req->out.body,    0x38,   io->smb2.out.file_attr);
185
186         smb2srv_send_reply(req);
187 }
188
189 void smb2srv_close_recv(struct smb2srv_request *req)
190 {
191         union smb_close *io;
192
193         SMB2SRV_CHECK_BODY_SIZE(req, 0x18, false);
194         SMB2SRV_TALLOC_IO_PTR(io, union smb_close);
195         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_close_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
196
197         io->smb2.level                  = RAW_CLOSE_SMB2;
198         io->smb2.in.flags               = SVAL(req->in.body, 0x02);
199         io->smb2.in._pad                = IVAL(req->in.body, 0x04);
200         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x08);
201
202         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
203         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_close(req->ntvfs, io));
204 }
205
206 static void smb2srv_flush_send(struct ntvfs_request *ntvfs)
207 {
208         struct smb2srv_request *req;
209         union smb_flush *io;
210
211         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_flush);
212         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x04, false, 0));
213
214         SSVAL(req->out.body,    0x02,   io->smb2.out.reserved);
215
216         smb2srv_send_reply(req);
217 }
218
219 void smb2srv_flush_recv(struct smb2srv_request *req)
220 {
221         union smb_flush *io;
222
223         SMB2SRV_CHECK_BODY_SIZE(req, 0x18, false);
224         SMB2SRV_TALLOC_IO_PTR(io, union smb_flush);
225         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_flush_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
226
227         io->smb2.level                  = RAW_FLUSH_SMB2;
228         io->smb2.in.reserved1           = SVAL(req->in.body, 0x02);
229         io->smb2.in.reserved2           = IVAL(req->in.body, 0x04);
230         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x08);
231
232         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
233         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_flush(req->ntvfs, io));
234 }
235
236 static void smb2srv_read_send(struct ntvfs_request *ntvfs)
237 {
238         struct smb2srv_request *req;
239         union smb_read *io;
240
241         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_read);
242         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x10, true, io->smb2.out.data.length));
243
244         /* TODO: avoid the memcpy */
245         SMB2SRV_CHECK(smb2_push_o16s32_blob(&req->out, 0x02, io->smb2.out.data));
246         SIVAL(req->out.body,    0x08,   io->smb2.out.remaining);
247         SIVAL(req->out.body,    0x0C,   io->smb2.out.reserved);
248
249         smb2srv_send_reply(req);
250 }
251
252 void smb2srv_read_recv(struct smb2srv_request *req)
253 {
254         union smb_read *io;
255
256         SMB2SRV_CHECK_BODY_SIZE(req, 0x30, true);
257
258         /* MS-SMB2 2.2.19 read must have a single byte of zero */
259         if (req->in.body_size - req->in.body_fixed < 1) {
260                 smb2srv_send_error(req,  NT_STATUS_INVALID_PARAMETER);
261                 return;
262         }
263         SMB2SRV_TALLOC_IO_PTR(io, union smb_read);
264         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_read_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
265
266         io->smb2.level                  = RAW_READ_SMB2;
267         io->smb2.in._pad                = SVAL(req->in.body, 0x02);
268         io->smb2.in.length              = IVAL(req->in.body, 0x04);
269         io->smb2.in.offset              = BVAL(req->in.body, 0x08);
270         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x10);
271         io->smb2.in.min_count           = IVAL(req->in.body, 0x20);
272         io->smb2.in.channel             = IVAL(req->in.body, 0x24);
273         io->smb2.in.remaining           = IVAL(req->in.body, 0x28);
274         io->smb2.in.channel_offset      = SVAL(req->in.body, 0x2C);
275         io->smb2.in.channel_length      = SVAL(req->in.body, 0x2E);
276
277         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
278
279         /* preallocate the buffer for the backends */
280         io->smb2.out.data = data_blob_talloc(io, NULL, io->smb2.in.length);
281         if (io->smb2.out.data.length != io->smb2.in.length) {
282                 SMB2SRV_CHECK(NT_STATUS_NO_MEMORY);
283         }
284
285         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_read(req->ntvfs, io));
286 }
287
288 static void smb2srv_write_send(struct ntvfs_request *ntvfs)
289 {
290         struct smb2srv_request *req;
291         union smb_write *io;
292
293         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_write);
294         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x10, true, 0));
295
296         SSVAL(req->out.body,    0x02,   io->smb2.out._pad);
297         SIVAL(req->out.body,    0x04,   io->smb2.out.nwritten);
298         SBVAL(req->out.body,    0x08,   io->smb2.out.unknown1);
299
300         smb2srv_send_reply(req);
301 }
302
303 void smb2srv_write_recv(struct smb2srv_request *req)
304 {
305         union smb_write *io;
306
307         SMB2SRV_CHECK_BODY_SIZE(req, 0x30, true);
308         SMB2SRV_TALLOC_IO_PTR(io, union smb_write);
309         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_write_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
310
311         /* TODO: avoid the memcpy */
312         io->smb2.level                  = RAW_WRITE_SMB2;
313         SMB2SRV_CHECK(smb2_pull_o16s32_blob(&req->in, io, req->in.body+0x02, &io->smb2.in.data));
314         io->smb2.in.offset              = BVAL(req->in.body, 0x08);
315         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x10);
316         io->smb2.in.unknown1            = BVAL(req->in.body, 0x20);
317         io->smb2.in.unknown2            = BVAL(req->in.body, 0x28);
318
319         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
320         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_write(req->ntvfs, io));
321 }
322
323 static void smb2srv_lock_send(struct ntvfs_request *ntvfs)
324 {
325         struct smb2srv_request *req;
326         union smb_lock *io;
327
328         SMB2SRV_CHECK_ASYNC_STATUS_ERR(io, union smb_lock);
329         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x04, false, 0));
330
331         SSVAL(req->out.body,    0x02,   io->smb2.out.reserved);
332
333         smb2srv_send_reply(req);
334 }
335
336 void smb2srv_lock_recv(struct smb2srv_request *req)
337 {
338         union smb_lock *io;
339         int i;
340
341         SMB2SRV_CHECK_BODY_SIZE(req, 0x30, false);
342         SMB2SRV_TALLOC_IO_PTR(io, union smb_lock);
343         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_lock_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
344
345         io->smb2.level                  = RAW_LOCK_SMB2;
346         io->smb2.in.lock_count          = SVAL(req->in.body, 0x02);
347         io->smb2.in.reserved            = IVAL(req->in.body, 0x04);
348         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x08);
349         if (req->in.body_size < 24 + 24*(uint64_t)io->smb2.in.lock_count) {
350                 DEBUG(0,("%s: lock buffer too small\n", __location__));
351                 smb2srv_send_error(req,  NT_STATUS_FOOBAR);
352                 return;
353         }
354         io->smb2.in.locks = talloc_array(io, struct smb2_lock_element, 
355                                          io->smb2.in.lock_count);
356         if (io->smb2.in.locks == NULL) {
357                 smb2srv_send_error(req, NT_STATUS_NO_MEMORY);
358                 return;
359         }
360
361         for (i=0;i<io->smb2.in.lock_count;i++) {
362                 io->smb2.in.locks[i].offset     = BVAL(req->in.body, 24 + i*24);
363                 io->smb2.in.locks[i].length     = BVAL(req->in.body, 32 + i*24);
364                 io->smb2.in.locks[i].flags      = IVAL(req->in.body, 40 + i*24);
365                 io->smb2.in.locks[i].reserved   = IVAL(req->in.body, 44 + i*24);
366         }
367
368         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
369         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_lock(req->ntvfs, io));
370 }
371
372 static void smb2srv_ioctl_send(struct ntvfs_request *ntvfs)
373 {
374         struct smb2srv_request *req;
375         union smb_ioctl *io;
376
377         SMB2SRV_CHECK_ASYNC_STATUS_ERR(io, union smb_ioctl);
378         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x30, true, 0));
379
380         SSVAL(req->out.body,    0x02,   io->smb2.out._pad);
381         SIVAL(req->out.body,    0x04,   io->smb2.out.function);
382         if (io->smb2.level == RAW_IOCTL_SMB2_NO_HANDLE) {
383                 struct smb2_handle h;
384                 h.data[0] = UINT64_MAX;
385                 h.data[1] = UINT64_MAX;
386                 smb2_push_handle(req->out.body + 0x08, &h);
387         } else {
388                 smb2srv_push_handle(req->out.body, 0x08,io->smb2.in.file.ntvfs);
389         }
390         SMB2SRV_CHECK(smb2_push_o32s32_blob(&req->out, 0x18, io->smb2.out.in));
391         SMB2SRV_CHECK(smb2_push_o32s32_blob(&req->out, 0x20, io->smb2.out.out));
392         SIVAL(req->out.body,    0x28,   io->smb2.out.unknown2);
393         SIVAL(req->out.body,    0x2C,   io->smb2.out.unknown3);
394
395         smb2srv_send_reply(req);
396 }
397
398 void smb2srv_ioctl_recv(struct smb2srv_request *req)
399 {
400         union smb_ioctl *io;
401         struct smb2_handle h;
402
403         SMB2SRV_CHECK_BODY_SIZE(req, 0x38, true);
404         SMB2SRV_TALLOC_IO_PTR(io, union smb_ioctl);
405         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_ioctl_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
406
407         /* TODO: avoid the memcpy */
408         io->smb2.in._pad                = SVAL(req->in.body, 0x02);
409         io->smb2.in.function            = IVAL(req->in.body, 0x04);
410         /* file handle ... */
411         SMB2SRV_CHECK(smb2_pull_o32s32_blob(&req->in, io, req->in.body+0x18, &io->smb2.in.out));
412         io->smb2.in.unknown2            = IVAL(req->in.body, 0x20);
413         SMB2SRV_CHECK(smb2_pull_o32s32_blob(&req->in, io, req->in.body+0x24, &io->smb2.in.in));
414         io->smb2.in.max_response_size   = IVAL(req->in.body, 0x2C);
415         io->smb2.in.flags               = BVAL(req->in.body, 0x30);
416
417         smb2_pull_handle(req->in.body + 0x08, &h);
418         if (h.data[0] == UINT64_MAX && h.data[1] == UINT64_MAX) {
419                 io->smb2.level          = RAW_IOCTL_SMB2_NO_HANDLE;
420         } else {
421                 io->smb2.level          = RAW_IOCTL_SMB2;
422                 io->smb2.in.file.ntvfs  = smb2srv_pull_handle(req, req->in.body, 0x08);
423                 SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
424         }
425
426         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_ioctl(req->ntvfs, io));
427 }
428
429 static void smb2srv_notify_send(struct ntvfs_request *ntvfs)
430 {
431         struct smb2srv_request *req;
432         union smb_notify *io;
433         size_t size = 0;
434         int i;
435         uint8_t *p;
436         DATA_BLOB blob = data_blob(NULL, 0);
437
438         SMB2SRV_CHECK_ASYNC_STATUS(io, union smb_notify);
439         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x08, true, 0));
440
441 #define MAX_BYTES_PER_CHAR 3
442         
443         /* work out how big the reply buffer could be */
444         for (i=0;i<io->smb2.out.num_changes;i++) {
445                 size += 12 + 3 + (1+strlen(io->smb2.out.changes[i].name.s)) * MAX_BYTES_PER_CHAR;
446         }
447
448         blob = data_blob_talloc(req, NULL, size);
449         if (size > 0 && !blob.data) {
450                 SMB2SRV_CHECK(NT_STATUS_NO_MEMORY);
451         }
452
453         p = blob.data;
454
455         /* construct the changes buffer */
456         for (i=0;i<io->smb2.out.num_changes;i++) {
457                 uint32_t ofs;
458                 ssize_t len;
459
460                 SIVAL(p, 4, io->smb2.out.changes[i].action);
461                 len = push_string(p + 12, io->smb2.out.changes[i].name.s, 
462                                   blob.length - (p+12 - blob.data), STR_UNICODE);
463                 SIVAL(p, 8, len);
464
465                 ofs = len + 12;
466
467                 if (ofs & 3) {
468                         int pad = 4 - (ofs & 3);
469                         memset(p+ofs, 0, pad);
470                         ofs += pad;
471                 }
472
473                 if (i == io->smb2.out.num_changes-1) {
474                         SIVAL(p, 0, 0);
475                 } else {
476                         SIVAL(p, 0, ofs);
477                 }
478
479                 p += ofs;
480         }
481
482         blob.length = p - blob.data;
483
484         SMB2SRV_CHECK(smb2_push_o16s32_blob(&req->out, 0x02, blob));
485
486         smb2srv_send_reply(req);
487 }
488
489 void smb2srv_notify_recv(struct smb2srv_request *req)
490 {
491         union smb_notify *io;
492
493         SMB2SRV_CHECK_BODY_SIZE(req, 0x20, false);
494         SMB2SRV_TALLOC_IO_PTR(io, union smb_notify);
495         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_notify_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
496
497         io->smb2.level                  = RAW_NOTIFY_SMB2;
498         io->smb2.in.recursive           = SVAL(req->in.body, 0x02);
499         io->smb2.in.buffer_size         = IVAL(req->in.body, 0x04);
500         io->smb2.in.file.ntvfs          = smb2srv_pull_handle(req, req->in.body, 0x08);
501         io->smb2.in.completion_filter   = IVAL(req->in.body, 0x18);
502         io->smb2.in.unknown             = BVAL(req->in.body, 0x1C);
503
504         SMB2SRV_CHECK_FILE_HANDLE(io->smb2.in.file.ntvfs);
505         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_notify(req->ntvfs, io));
506 }
507
508 static void smb2srv_break_send(struct ntvfs_request *ntvfs)
509 {
510         struct smb2srv_request *req;
511         union smb_lock *io;
512
513         SMB2SRV_CHECK_ASYNC_STATUS_ERR(io, union smb_lock);
514         SMB2SRV_CHECK(smb2srv_setup_reply(req, 0x18, false, 0));
515
516         SCVAL(req->out.body,    0x02,   io->smb2_break.out.oplock_level);
517         SCVAL(req->out.body,    0x03,   io->smb2_break.out.reserved);
518         SIVAL(req->out.body,    0x04,   io->smb2_break.out.reserved2);
519         smb2srv_push_handle(req->out.body, 0x08,io->smb2_break.out.file.ntvfs);
520
521         smb2srv_send_reply(req);
522 }
523
524 void smb2srv_break_recv(struct smb2srv_request *req)
525 {
526         union smb_lock *io;
527
528         SMB2SRV_CHECK_BODY_SIZE(req, 0x18, false);
529         SMB2SRV_TALLOC_IO_PTR(io, union smb_lock);
530         SMB2SRV_SETUP_NTVFS_REQUEST(smb2srv_break_send, NTVFS_ASYNC_STATE_MAY_ASYNC);
531
532         io->smb2_break.level            = RAW_LOCK_SMB2_BREAK;
533         io->smb2_break.in.oplock_level  = CVAL(req->in.body, 0x02);
534         io->smb2_break.in.reserved      = CVAL(req->in.body, 0x03);
535         io->smb2_break.in.reserved2     = IVAL(req->in.body, 0x04);
536         io->smb2_break.in.file.ntvfs    = smb2srv_pull_handle(req, req->in.body, 0x08);
537
538         SMB2SRV_CHECK_FILE_HANDLE(io->smb2_break.in.file.ntvfs);
539         SMB2SRV_CALL_NTVFS_BACKEND(ntvfs_lock(req->ntvfs, io));
540 }