2 Unix SMB/CIFS implementation.
4 Main SMB server routines
6 Copyright (C) Andrew Tridgell 1992-2005
7 Copyright (C) Martin Pool 2002
8 Copyright (C) Jelmer Vernooij 2002
9 Copyright (C) James J Myers 2003 <myersjj@samba.org>
11 This program is free software; you can redistribute it and/or modify
12 it under the terms of the GNU General Public License as published by
13 the Free Software Foundation; either version 3 of the License, or
14 (at your option) any later version.
16 This program is distributed in the hope that it will be useful,
17 but WITHOUT ANY WARRANTY; without even the implied warranty of
18 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
19 GNU General Public License for more details.
21 You should have received a copy of the GNU General Public License
22 along with this program. If not, see <http://www.gnu.org/licenses/>.
26 #include "lib/events/events.h"
28 #include "lib/cmdline/popt_common.h"
29 #include "system/dir.h"
30 #include "system/filesys.h"
31 #include "ntvfs/ntvfs.h"
32 #include "ntptr/ntptr.h"
33 #include "auth/gensec/gensec.h"
34 #include "libcli/auth/schannel.h"
35 #include "smbd/process_model.h"
36 #include "param/secrets.h"
37 #include "smbd/pidfile.h"
38 #include "param/param.h"
39 #include "dsdb/samdb/samdb.h"
40 #include "auth/session.h"
41 #include "lib/messaging/irpc.h"
42 #include "librpc/gen_ndr/ndr_irpc.h"
43 #include "cluster/cluster.h"
44 #include "dynconfig/dynconfig.h"
47 recursively delete a directory tree
49 static void recursive_delete(const char *path)
59 for (de=readdir(dir);de;de=readdir(dir)) {
63 if (ISDOT(de->d_name) || ISDOTDOT(de->d_name)) {
67 fname = talloc_asprintf(path, "%s/%s", path, de->d_name);
68 if (stat(fname, &st) != 0) {
71 if (S_ISDIR(st.st_mode)) {
72 recursive_delete(fname);
76 if (unlink(fname) != 0) {
77 DEBUG(0,("Unabled to delete '%s' - %s\n",
78 fname, strerror(errno)));
79 smb_panic("unable to cleanup tmp files");
87 cleanup temporary files. This is the new alternative to
88 TDB_CLEAR_IF_FIRST. Unfortunately TDB_CLEAR_IF_FIRST is not
89 efficient on unix systems due to the lack of scaling of the byte
90 range locking system. So instead of putting the burden on tdb to
91 cleanup tmp files, this function deletes them.
93 static void cleanup_tmp_files(struct loadparm_context *lp_ctx)
96 TALLOC_CTX *mem_ctx = talloc_new(NULL);
98 path = smbd_tmp_path(mem_ctx, lp_ctx, NULL);
100 recursive_delete(path);
101 talloc_free(mem_ctx);
104 static void sig_hup(int sig)
106 debug_schedule_reopen_logs();
109 static void sig_term(int sig)
112 static int done_sigterm;
113 if (done_sigterm == 0 && getpgrp() == getpid()) {
114 DEBUG(0,("SIGTERM: killing children\n"));
116 kill(-getpgrp(), SIGTERM);
119 DEBUG(0,("Exiting pid %d on SIGTERM\n", (int)getpid()));
126 static void setup_signals(void)
128 /* we are never interested in SIGPIPE */
129 BlockSignals(true,SIGPIPE);
132 /* we are never interested in SIGFPE */
133 BlockSignals(true,SIGFPE);
136 /* We are no longer interested in USR1 */
137 BlockSignals(true, SIGUSR1);
140 /* We are no longer interested in USR2 */
141 BlockSignals(true,SIGUSR2);
144 /* POSIX demands that signals are inherited. If the invoking process has
145 * these signals masked, we will have problems, as we won't receive them. */
146 BlockSignals(false, SIGHUP);
147 BlockSignals(false, SIGTERM);
149 CatchSignal(SIGHUP, sig_hup);
150 CatchSignal(SIGTERM, sig_term);
156 static void server_stdin_handler(struct tevent_context *event_ctx, struct tevent_fd *fde,
157 uint16_t flags, void *private_data)
159 const char *binary_name = (const char *)private_data;
161 if (read(0, &c, 1) == 0) {
162 DEBUG(0,("%s: EOF on stdin - terminating\n", binary_name));
164 if (getpgrp() == getpid()) {
165 DEBUG(0,("Sending SIGTERM from pid %d\n", (int)getpid()));
166 kill(-getpgrp(), SIGTERM);
174 die if the user selected maximum runtime is exceeded
176 _NORETURN_ static void max_runtime_handler(struct tevent_context *ev,
177 struct tevent_timer *te,
178 struct timeval t, void *private_data)
180 const char *binary_name = (const char *)private_data;
181 DEBUG(0,("%s: maximum runtime exceeded - terminating, current ts: %llu\n",
182 binary_name, (unsigned long long) time(NULL)));
187 pre-open the key databases. This saves a lot of time in child
190 static void prime_ldb_databases(struct tevent_context *event_ctx)
192 TALLOC_CTX *db_context;
193 db_context = talloc_new(event_ctx);
195 samdb_connect(db_context, event_ctx, cmdline_lp_ctx, system_session(cmdline_lp_ctx), 0);
196 privilege_connect(db_context, cmdline_lp_ctx);
198 /* we deliberately leave these open, which allows them to be
199 * re-used in ldb_wrap_connect() */
204 called when a fatal condition occurs in a child task
206 static NTSTATUS samba_terminate(struct irpc_message *msg,
207 struct samba_terminate *r)
209 DEBUG(0,("samba_terminate: %s\n", r->in.reason));
214 setup messaging for the top level samba (parent) task
216 static NTSTATUS setup_parent_messaging(struct tevent_context *event_ctx,
217 struct loadparm_context *lp_ctx)
219 struct imessaging_context *msg;
222 msg = imessaging_init(talloc_autofree_context(),
223 lpcfg_imessaging_path(event_ctx, lp_ctx),
224 cluster_id(0, SAMBA_PARENT_TASKID), event_ctx);
225 NT_STATUS_HAVE_NO_MEMORY(msg);
227 irpc_add_name(msg, "samba");
229 status = IRPC_REGISTER(msg, irpc, SAMBA_TERMINATE,
230 samba_terminate, NULL);
239 static void show_build(void)
241 #define CONFIG_OPTION(n) { #n, dyn_ ## n }
245 } config_options[] = {
246 CONFIG_OPTION(BINDIR),
247 CONFIG_OPTION(SBINDIR),
248 CONFIG_OPTION(CONFIGFILE),
249 CONFIG_OPTION(NCALRPCDIR),
250 CONFIG_OPTION(LOGFILEBASE),
251 CONFIG_OPTION(LMHOSTSFILE),
252 CONFIG_OPTION(DATADIR),
253 CONFIG_OPTION(MODULESDIR),
254 CONFIG_OPTION(LOCKDIR),
255 CONFIG_OPTION(PIDDIR),
256 CONFIG_OPTION(PRIVATE_DIR),
257 CONFIG_OPTION(SWATDIR),
258 CONFIG_OPTION(CODEPAGEDIR),
259 CONFIG_OPTION(SETUPDIR),
260 CONFIG_OPTION(WINBINDD_SOCKET_DIR),
261 CONFIG_OPTION(WINBINDD_PRIVILEGED_SOCKET_DIR),
262 CONFIG_OPTION(NTP_SIGND_SOCKET_DIR),
267 printf("Samba version: %s\n", SAMBA_VERSION_STRING);
268 printf("Build environment:\n");
270 printf(" Build host: %s\n", BUILD_SYSTEM);
274 for (i=0; config_options[i].name; i++) {
275 printf(" %s: %s\n", config_options[i].name, config_options[i].value);
284 static int binary_smbd_main(const char *binary_name, int argc, const char *argv[])
286 bool opt_daemon = false;
287 bool opt_interactive = false;
290 #define _MODULE_PROTO(init) extern NTSTATUS init(void);
291 STATIC_service_MODULES_PROTO;
292 init_module_fn static_init[] = { STATIC_service_MODULES };
293 init_module_fn *shared_init;
294 struct tevent_context *event_ctx;
295 uint16_t stdin_event_flags;
297 const char *model = "standard";
305 struct poptOption long_options[] = {
307 {"daemon", 'D', POPT_ARG_NONE, NULL, OPT_DAEMON,
308 "Become a daemon (default)", NULL },
309 {"interactive", 'i', POPT_ARG_NONE, NULL, OPT_INTERACTIVE,
310 "Run interactive (not a daemon)", NULL},
311 {"model", 'M', POPT_ARG_STRING, NULL, OPT_PROCESS_MODEL,
312 "Select process model", "MODEL"},
313 {"maximum-runtime",0, POPT_ARG_INT, &max_runtime, 0,
314 "set maximum runtime of the server process, till autotermination", "seconds"},
315 {"show-build", 'b', POPT_ARG_NONE, NULL, OPT_SHOW_BUILD, "show build info", NULL },
321 pc = poptGetContext(binary_name, argc, argv, long_options, 0);
322 while((opt = poptGetNextOpt(pc)) != -1) {
327 case OPT_INTERACTIVE:
328 opt_interactive = true;
330 case OPT_PROCESS_MODEL:
331 model = poptGetOptArg(pc);
337 fprintf(stderr, "\nInvalid option %s: %s\n\n",
338 poptBadOption(pc, 0), poptStrerror(opt));
339 poptPrintUsage(pc, stderr, 0);
344 if (opt_daemon && opt_interactive) {
345 fprintf(stderr,"\nERROR: "
346 "Option -i|--interactive is not allowed together with -D|--daemon\n\n");
347 poptPrintUsage(pc, stderr, 0);
349 } else if (!opt_interactive) {
350 /* default is --daemon */
356 setup_logging(binary_name, opt_interactive?DEBUG_STDOUT:DEBUG_FILE);
359 /* we want total control over the permissions on created files,
360 so set our umask to 0 */
363 DEBUG(0,("%s version %s started.\n", binary_name, SAMBA_VERSION_STRING));
364 DEBUGADD(0,("Copyright Andrew Tridgell and the Samba Team 1992-2011\n"));
366 if (sizeof(uint16_t) < 2 || sizeof(uint32_t) < 4 || sizeof(uint64_t) < 8) {
367 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
368 DEBUGADD(0,("sizeof(uint16_t) = %u, sizeof(uint32_t) %u, sizeof(uint64_t) = %u\n",
369 (unsigned int)sizeof(uint16_t), (unsigned int)sizeof(uint32_t), (unsigned int)sizeof(uint64_t)));
374 DEBUG(3,("Becoming a daemon.\n"));
375 become_daemon(true, false, false);
378 cleanup_tmp_files(cmdline_lp_ctx);
380 if (!directory_exist(lpcfg_lockdir(cmdline_lp_ctx))) {
381 mkdir(lpcfg_lockdir(cmdline_lp_ctx), 0755);
384 pidfile_create(lpcfg_piddir(cmdline_lp_ctx), binary_name);
386 /* Set up a database to hold a random seed, in case we don't
387 * have /dev/urandom */
388 if (!randseed_init(talloc_autofree_context(), cmdline_lp_ctx)) {
392 if (lpcfg_server_role(cmdline_lp_ctx) == ROLE_DOMAIN_CONTROLLER) {
393 if (!open_schannel_session_store(talloc_autofree_context(), lpcfg_private_dir(cmdline_lp_ctx))) {
394 DEBUG(0,("ERROR: Samba cannot open schannel store for secured NETLOGON operations.\n"));
399 gensec_init(); /* FIXME: */
401 ntptr_init(); /* FIXME: maybe run this in the initialization function
402 of the spoolss RPC server instead? */
404 ntvfs_init(cmdline_lp_ctx); /* FIXME: maybe run this in the initialization functions
405 of the SMB[,2] server instead? */
407 process_model_init(cmdline_lp_ctx);
409 shared_init = load_samba_modules(NULL, "service");
411 run_init_functions(static_init);
412 run_init_functions(shared_init);
414 talloc_free(shared_init);
416 /* the event context is the top level structure in smbd. Everything else
417 should hang off that */
418 event_ctx = s4_event_context_init(talloc_autofree_context());
420 if (event_ctx == NULL) {
421 DEBUG(0,("Initializing event context failed\n"));
425 if (opt_interactive) {
426 /* terminate when stdin goes away */
427 stdin_event_flags = TEVENT_FD_READ;
429 /* stay alive forever */
430 stdin_event_flags = 0;
433 /* catch EOF on stdin */
435 signal(SIGTTIN, SIG_IGN);
437 tevent_add_fd(event_ctx, event_ctx, 0, stdin_event_flags,
438 server_stdin_handler,
439 discard_const(binary_name));
442 DEBUG(0,("Called with maxruntime %d - current ts %llu\n",
443 max_runtime, (unsigned long long) time(NULL)));
444 tevent_add_timer(event_ctx, event_ctx,
445 timeval_current_ofs(max_runtime, 0),
447 discard_const(binary_name));
450 prime_ldb_databases(event_ctx);
452 status = setup_parent_messaging(event_ctx, cmdline_lp_ctx);
453 if (!NT_STATUS_IS_OK(status)) {
454 DEBUG(0,("Failed to setup parent messaging - %s\n", nt_errstr(status)));
458 DEBUG(0,("%s: using '%s' process model\n", binary_name, model));
460 status = server_service_startup(event_ctx, cmdline_lp_ctx, model,
461 lpcfg_server_services(cmdline_lp_ctx));
462 if (!NT_STATUS_IS_OK(status)) {
463 DEBUG(0,("Starting Services failed - %s\n", nt_errstr(status)));
467 /* wait for events - this is where smbd sits for most of its
469 tevent_loop_wait(event_ctx);
471 /* as everything hangs off this event context, freeing it
472 should initiate a clean shutdown of all services */
473 talloc_free(event_ctx);
478 int main(int argc, const char *argv[])
480 return binary_smbd_main("samba", argc, argv);