4 Unix SMB/CIFS implementation.
5 Machine customisation and include handling
6 Copyright (C) Andrew Tridgell 1994-1998
7 Copyright (C) 2002 by Martin Pool <mbp@samba.org>
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 /* work around broken krb5.h on sles9 */
28 #include "../replace/replace.h"
30 /* make sure we have included the correct config.h */
31 #ifndef NO_CONFIG_H /* for some tests */
32 #ifndef CONFIG_H_IS_FROM_SAMBA
33 #error "make sure you have removed all config.h files from standalone builds!"
34 #error "the included config.h isn't from samba!"
36 #endif /* NO_CONFIG_H */
38 /* only do the C++ reserved word check when we compile
39 to include --with-developer since too many systems
40 still have comflicts with their header files (e.g. IRIX 6.4) */
42 #if !defined(__cplusplus) && defined(DEVELOPER)
43 #define class #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
44 #define private #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
45 #define public #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
46 #define protected #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
47 #define template #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
48 #define this #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
49 #define new #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
50 #define delete #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
51 #define friend #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
57 #define DEFAULT_PRINTING PRINT_AIX
58 #define PRINTCAP_NAME "/etc/qconfig"
62 #define DEFAULT_PRINTING PRINT_HPUX
66 #define DEFAULT_PRINTING PRINT_QNX
70 /* on SUNOS4 termios.h conflicts with sys/ioctl.h */
76 * <unistd.h> has to be included before any other to get
77 * large file support on Reliant UNIX. Yes, it's broken :-).
82 #endif /* RELIANTUNIX */
84 #include "system/capability.h"
85 #include "system/dir.h"
86 #include "system/filesys.h"
87 #include "system/glob.h"
88 #include "system/iconv.h"
89 #include "system/locale.h"
90 #include "system/network.h"
91 #include "system/passwd.h"
92 #include "system/readline.h"
93 #include "system/select.h"
94 #include "system/shmem.h"
95 #include "system/syslog.h"
96 #include "system/terminal.h"
97 #include "system/time.h"
98 #include "system/wait.h"
100 #if defined(HAVE_RPC_RPC_H)
102 * Check for AUTH_ERROR define conflict with rpc/rpc.h in prot.h.
104 #if defined(HAVE_SYS_SECURITY_H) && defined(HAVE_RPC_AUTH_ERROR_CONFLICT)
108 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
109 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
110 * them again without checking if they already exsist. This generates
111 * two "Redefinition of macro" warnings for every single .c file that is
114 #if defined(HPUX) && defined(TCP_NODELAY)
117 #if defined(HPUX) && defined(TCP_MAXSEG)
123 #if defined(HAVE_YP_GET_DEFAULT_DOMAIN) && defined(HAVE_SETNETGRENT) && defined(HAVE_ENDNETGRENT) && defined(HAVE_GETNETGRENT)
124 #define HAVE_NETGROUP 1
127 #if defined (HAVE_NETGROUP)
128 #if defined(HAVE_RPCSVC_YP_PROT_H)
130 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
131 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
132 * them again without checking if they already exsist. This generates
133 * two "Redefinition of macro" warnings for every single .c file that is
136 #if defined(HPUX) && defined(TCP_NODELAY)
139 #if defined(HPUX) && defined(TCP_MAXSEG)
142 #include <rpcsvc/yp_prot.h>
144 #if defined(HAVE_RPCSVC_YPCLNT_H)
145 #include <rpcsvc/ypclnt.h>
147 #endif /* HAVE_NETGROUP */
157 #if defined(HPUX) && !defined(_LBER_TYPES_H)
158 /* Define ber_tag_t and ber_int_t for using
159 * HP LDAP-UX Integration products' LDAP libraries.
162 typedef unsigned long ber_tag_t;
163 typedef int ber_int_t;
165 #endif /* defined(HPUX) && !defined(_LBER_TYPES_H) */
167 #define LBER_USE_DER 0x01
174 #define LDAP_CONST const
176 #ifndef LDAP_OPT_SUCCESS
177 #define LDAP_OPT_SUCCESS 0
179 /* Solaris 8 and maybe other LDAP implementations spell this "..._INPROGRESS": */
180 #if defined(LDAP_SASL_BIND_INPROGRESS) && !defined(LDAP_SASL_BIND_IN_PROGRESS)
181 #define LDAP_SASL_BIND_IN_PROGRESS LDAP_SASL_BIND_INPROGRESS
183 /* Solaris 8 defines SSL_LDAP_PORT, not LDAPS_PORT and it only does so if
184 LDAP_SSL is defined - but SSL is not working. We just want the
185 port number! Let's just define LDAPS_PORT correct. */
186 #if !defined(LDAPS_PORT)
187 #define LDAPS_PORT 636
193 #if HAVE_GSSAPI_GSSAPI_H
194 #include <gssapi/gssapi.h>
195 #elif HAVE_GSSAPI_GSSAPI_GENERIC_H
196 #include <gssapi/gssapi_generic.h>
205 #if HAVE_SYS_ATTRIBUTES_H
206 #include <sys/attributes.h>
210 #define ENOATTR ENODATA
213 /* mutually exclusive (SuSE 8.2) */
214 #if HAVE_ATTR_XATTR_H
215 #include <attr/xattr.h>
216 #elif HAVE_SYS_XATTR_H
217 #include <sys/xattr.h>
224 #ifdef HAVE_SYS_EXTATTR_H
225 #include <sys/extattr.h>
228 #ifdef HAVE_SYS_UIO_H
233 #include <langinfo.h>
237 #include <netgroup.h>
240 #if defined(HAVE_AIO_H) && defined(WITH_AIO)
244 #ifdef WITH_MADVISE_PROTECTED
245 #include <sys/mman.h>
248 /* Special macros that are no-ops except when run under Valgrind on
249 * x86. They've moved a little bit from valgrind 1.0.4 to 1.9.4 */
250 #if HAVE_VALGRIND_MEMCHECK_H
251 /* memcheck.h includes valgrind.h */
252 #include <valgrind/memcheck.h>
253 #elif HAVE_VALGRIND_H
254 #include <valgrind.h>
257 /* If we have --enable-developer and the valgrind header is present,
258 * then we're OK to use it. Set a macro so this logic can be done only
260 #if defined(DEVELOPER)
261 #if (HAVE_VALGRIND_H || HAVE_VALGRIND_VALGRIND_H)
267 /* we support ADS if we want it and have krb5 and ldap libs */
268 #if defined(WITH_ADS) && defined(HAVE_KRB5) && defined(HAVE_LDAP)
273 * Define additional missing types
276 typedef sig_atomic_t SIG_ATOMIC_T;
278 typedef sig_atomic_t volatile SIG_ATOMIC_T;
282 #define uchar unsigned char
286 Samba needs type definitions for int16, int32, uint16 and uint32.
288 Normally these are signed and unsigned 16 and 32 bit integers, but
289 they actually only need to be at least 16 and 32 bits
290 respectively. Thus if your word size is 8 bytes just defining them
291 as signed and unsigned int will work.
295 #define uint8 uint8_t
298 #if !defined(int16) && !defined(HAVE_INT16_FROM_RPC_RPC_H)
299 # define int16 int16_t
300 /* needed to work around compile issue on HP-UX 11.x */
305 * Note we duplicate the size tests in the unsigned
306 * case as int16 may be a typedef from rpc/rpc.h
310 #if !defined(uint16) && !defined(HAVE_UINT16_FROM_RPC_RPC_H)
311 # define uint16 uint16_t
314 #if !defined(int32) && !defined(HAVE_INT32_FROM_RPC_RPC_H)
315 # define int32 int32_t
316 /* needed to work around compile issue on HP-UX 11.x */
321 * Note we duplicate the size tests in the unsigned
322 * case as int32 may be a typedef from rpc/rpc.h
325 #if !defined(uint32) && !defined(HAVE_UINT32_FROM_RPC_RPC_H)
326 # define uint32 uint32_t
330 * check for 8 byte long long
334 # define uint64 uint64_t
338 # define int64 int64_t
343 * Types for devices, inodes and offsets.
347 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)
348 # define SMB_DEV_T dev64_t
350 # define SMB_DEV_T dev_t
354 #ifndef LARGE_SMB_DEV_T
355 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)) || (defined(SIZEOF_DEV_T) && (SIZEOF_DEV_T == 8))
356 # define LARGE_SMB_DEV_T 1
360 #ifdef LARGE_SMB_DEV_T
361 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
362 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(((uint64_t)(IVAL((p),(ofs))))| (((uint64_t)(IVAL((p),(ofs)+4))) << 32)))
364 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),v),SIVAL((p),(ofs)+4,0))
365 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(IVAL((p),(ofs))))
369 * Setup the correctly sized inode type.
373 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)
374 # define SMB_INO_T ino64_t
376 # define SMB_INO_T ino_t
380 #ifndef LARGE_SMB_INO_T
381 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)) || (defined(SIZEOF_INO_T) && (SIZEOF_INO_T == 8))
382 # define LARGE_SMB_INO_T 1
386 #ifdef LARGE_SMB_INO_T
387 #define SINO_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
388 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(((uint64_t)(IVAL(p,ofs)))| (((uint64_t)(IVAL(p,(ofs)+4))) << 32)))
390 #define SINO_T_VAL(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
391 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(IVAL((p),(ofs))))
395 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)
396 # define SMB_OFF_T off64_t
398 # define SMB_OFF_T off_t
402 #define SBIG_UINT(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
403 #define BIG_UINT(p, ofs) ((((uint64_t) IVAL(p,(ofs)+4))<<32)|IVAL(p,ofs))
404 #define IVAL2_TO_SMB_BIG_UINT(buf,off) ( (((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF)) | \
405 (( ((uint64_t)(IVAL((buf),(off+4)))) & ((uint64_t)0xFFFFFFFF) ) << 32 ) )
408 /* this should really be a 64 bit type if possible */
409 typedef uint64_t br_off;
411 #define SMB_OFF_T_BITS (sizeof(SMB_OFF_T)*8)
414 * Set the define that tells us if we can do 64 bit
418 #ifndef LARGE_SMB_OFF_T
419 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)) || (defined(SIZEOF_OFF_T) && (SIZEOF_OFF_T == 8))
420 # define LARGE_SMB_OFF_T 1
424 #ifdef LARGE_SMB_OFF_T
425 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
426 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,(v)&0xFFFFFFFF), SIVAL(p,ofs,(v)>>32))
427 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF) )))
429 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
430 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,v),SIVAL(p,ofs,0))
431 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint32)(IVAL((buf),(off)))) & 0xFFFFFFFF )))
435 * Type for stat structure.
438 #ifndef SMB_STRUCT_STAT
439 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STAT64) && defined(HAVE_OFF64_T)
440 # define SMB_STRUCT_STAT struct stat64
442 # define SMB_STRUCT_STAT struct stat
447 * Type for dirent structure.
450 #ifndef SMB_STRUCT_DIRENT
451 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIRENT64)
452 # define SMB_STRUCT_DIRENT struct dirent64
454 # define SMB_STRUCT_DIRENT struct dirent
459 * Type for DIR structure.
462 #ifndef SMB_STRUCT_DIR
463 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIR64)
464 # define SMB_STRUCT_DIR DIR64
466 # define SMB_STRUCT_DIR DIR
471 * Defines for 64 bit fcntl locks.
474 #ifndef SMB_STRUCT_FLOCK
475 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
476 # define SMB_STRUCT_FLOCK struct flock64
478 # define SMB_STRUCT_FLOCK struct flock
483 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
484 # define SMB_F_SETLKW F_SETLKW64
486 # define SMB_F_SETLKW F_SETLKW
491 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
492 # define SMB_F_SETLK F_SETLK64
494 # define SMB_F_SETLK F_SETLK
499 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
500 # define SMB_F_GETLK F_GETLK64
502 # define SMB_F_GETLK F_GETLK
507 * Type for aiocb structure.
510 #ifndef SMB_STRUCT_AIOCB
511 # if defined(WITH_AIO)
512 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_AIOCB64)
513 # define SMB_STRUCT_AIOCB struct aiocb64
515 # define SMB_STRUCT_AIOCB struct aiocb
518 # define SMB_STRUCT_AIOCB int /* AIO not being used but we still need the define.... */
522 #ifndef HAVE_STRUCT_TIMESPEC
524 time_t tv_sec; /* Seconds. */
525 long tv_nsec; /* Nanoseconds. */
529 #ifdef HAVE_BROKEN_GETGROUPS
536 #define NGROUPS_MAX 32 /* Guess... */
539 /* Our own fstrings */
548 | The infamous pstring |
555 _________)/\\_//(\/(/\)/\//\/\///|_)_______
559 #define FSTRING_LEN 256
560 typedef char fstring[FSTRING_LEN];
563 /* Samba 3 doesn't use iconv_convenience: */
564 extern void *cmdline_lp_ctx;
565 struct smb_iconv_convenience *lp_iconv_convenience(void *lp_ctx);
567 /* Lists, trees, caching, database... */
568 #include "../lib/util/util.h"
569 #include "../lib/util/xfile.h"
570 #include "../lib/util/memory.h"
571 #include "../lib/util/attr.h"
573 #include "../lib/util/dlinklist.h"
575 #include "util_tdb.h"
577 #include "../talloc/talloc.h"
580 #include "../lib/util/tevent_unix.h"
581 #include "../lib/util/tevent_ntstatus.h"
583 #include "../lib/util/data_blob.h"
584 #include "../lib/util/time.h"
585 #include "../lib/util/asn1.h"
589 #include "interfaces.h"
591 #include "../libcli/util/error.h"
593 #include "../lib/util/charset/charset.h"
594 #include "dynconfig.h"
595 #include "util_getent.h"
596 #include "debugparse.h"
597 #include "privileges.h"
598 #include "messages.h"
600 #include "smb_perfcount.h"
601 #include "smb_signing.h"
603 #include "nameserv.h"
605 #include "../lib/util/byteorder.h"
606 #include "privileges.h"
607 #include "rpc_misc.h"
611 #include "rpc_secdes.h"
612 #include "../libgpo/gpo.h"
613 #include "authdata.h"
616 #include "../lib/crypto/md5.h"
617 #include "../lib/crypto/md4.h"
618 #include "../lib/crypto/arcfour.h"
619 #include "../lib/crypto/crc32.h"
620 #include "../lib/crypto/hmacmd5.h"
623 #include "ntdomain.h"
624 #include "reg_objects.h"
626 #include "rpc_perfcount.h"
627 #include "rpc_perfcount_defs.h"
628 #include "librpc/gen_ndr/notify.h"
629 #include "librpc/gen_ndr/xattr.h"
630 #include "librpc/gen_ndr/messaging.h"
631 #include "librpc/gen_ndr/ndr_nbt.h"
632 #include "librpc/rpc/dcerpc.h"
633 #include "nt_printing.h"
641 #include "nsswitch/winbind_client.h"
643 #include "rpc_client.h"
646 #include "ctdbd_conn.h"
647 #include "../lib/util/talloc_stack.h"
648 #include "memcache.h"
649 #include "async_smb.h"
650 #include "../lib/async_req/async_sock.h"
651 #include "services.h"
652 #include "eventlog.h"
653 #include "../lib/util/smb_threads.h"
654 #include "../lib/util/smb_threads_internal.h"
656 #include "lib/smbconf/smbconf.h"
657 #include "lib/smbconf/smbconf_init.h"
658 #include "lib/smbconf/smbconf_reg.h"
659 #include "lib/smbconf/smbconf_txt.h"
661 /* Defines for wisXXX functions. */
662 #define UNI_UPPER 0x1
663 #define UNI_LOWER 0x2
664 #define UNI_DIGIT 0x4
665 #define UNI_XDIGIT 0x8
666 #define UNI_SPACE 0x10
668 #include "nsswitch/winbind_nss.h"
670 /* forward declaration from printing.h to get around
671 header file dependencies */
675 /* forward declarations from smbldap.c */
680 * Reasons for cache flush.
683 enum flush_reason_enum {
688 OPLOCK_RELEASE_FLUSH,
692 /* NUM_FLUSH_REASONS must remain the last value in the enumeration. */
695 #include "nss_info.h"
696 #include "modules/nfs4_acls.h"
697 #include "nsswitch/libwbclient/wbclient.h"
699 /***** prototypes *****/
703 #include "libcli/security/secace.h"
704 #include "libcli/security/secacl.h"
706 #if defined(HAVE_POSIX_ACLS)
707 #include "modules/vfs_posixacl.h"
710 #if defined(HAVE_TRU64_ACLS)
711 #include "modules/vfs_tru64acl.h"
714 #if defined(HAVE_SOLARIS_ACLS) || defined(HAVE_UNIXWARE_ACLS)
715 #include "modules/vfs_solarisacl.h"
718 #if defined(HAVE_HPUX_ACLS)
719 #include "modules/vfs_hpuxacl.h"
722 #if defined(HAVE_IRIX_ACLS)
723 #include "modules/vfs_irixacl.h"
727 #include "ads_protos.h"
730 /* We need this after proto.h to reference GetTimeOfDay(). */
731 #include "smbprofile.h"
733 /* String routines */
736 #include "safe_string.h"
738 /* prototypes from lib/util_transfer_file.c */
739 #include "transfer_file.h"
741 #ifndef DEFAULT_PRINTING
743 #define DEFAULT_PRINTING PRINT_CUPS
744 #define PRINTCAP_NAME "cups"
746 #define DEFAULT_PRINTING PRINT_SYSV
747 #define PRINTCAP_NAME "lpstat"
749 #define DEFAULT_PRINTING PRINT_BSD
750 #define PRINTCAP_NAME "/etc/printcap"
754 #ifndef PRINTCAP_NAME
755 #define PRINTCAP_NAME "/etc/printcap"
759 #define SIGCLD SIGCHLD
770 #if defined(HAVE_PUTPRPWNAM) && defined(AUTH_CLEARTEXT_SEG_CHARS)
771 #define OSF1_ENH_SEC 1
774 #ifndef ALLOW_CHANGE_PASSWORD
775 #if (defined(HAVE_TERMIOS_H) && defined(HAVE_DUP2) && defined(HAVE_SETSID))
776 #define ALLOW_CHANGE_PASSWORD 1
780 /* what is the longest significant password available on your system?
781 Knowing this speeds up password searches a lot */
782 #ifndef PASSWORD_LENGTH
783 #define PASSWORD_LENGTH 8
790 #if defined(HAVE_CRYPT16) && defined(HAVE_GETAUTHUID)
791 #define ULTRIX_AUTH 1
794 /* yuck, I'd like a better way of doing this */
795 #define DIRP_SIZE (256 + 32)
797 /* default socket options. Dave Miller thinks we should default to TCP_NODELAY
798 given the socket IO pattern that Samba uses */
800 #define DEFAULT_SOCKET_OPTIONS "TCP_NODELAY"
802 #define DEFAULT_SOCKET_OPTIONS ""
805 /* dmalloc -- free heap debugger (dmalloc.org). This should be near
806 * the *bottom* of include files so as not to conflict. */
807 #ifdef ENABLE_DMALLOC
808 # include <dmalloc.h>
812 #if HAVE_KERNEL_SHARE_MODES
814 #define LOCK_MAND 32 /* This is a mandatory flock */
815 #define LOCK_READ 64 /* ... Which allows concurrent read operations */
816 #define LOCK_WRITE 128 /* ... Which allows concurrent write operations */
817 #define LOCK_RW 192 /* ... Which allows concurrent read & write ops */
821 extern int DEBUGLEVEL;
823 #define MAX_SEC_CTX_DEPTH 8 /* Maximum number of security contexts */
826 #ifdef GLIBC_HACK_FCNTL64
827 /* this is a gross hack. 64 bit locking is completely screwed up on
828 i386 Linux in glibc 2.1.95 (which ships with RedHat 7.0). This hack
829 "fixes" the problem with the current 2.4.0test kernels
831 #define fcntl fcntl64
839 /* needed for some systems without iconv. Doesn't really matter
840 what error code we use */
845 /* add varargs prototypes with printf checking */
847 int fdprintf(int , const char *, ...) PRINTF_ATTRIBUTE(2,3);
849 int d_printf(const char *, ...) PRINTF_ATTRIBUTE(1,2);
851 int d_fprintf(FILE *f, const char *, ...) PRINTF_ATTRIBUTE(2,3);
854 void sys_adminlog(int priority, const char *format_str, ...) PRINTF_ATTRIBUTE(2,3);
857 int fstr_sprintf(fstring s, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
859 int d_vfprintf(FILE *f, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
861 int smb_xvasprintf(char **ptr, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
863 int asprintf_strupper_m(char **strp, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
864 char *talloc_asprintf_strupper_m(TALLOC_CTX *t, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
867 * Veritas File System. Often in addition to native.
870 #if defined(HAVE_SYS_FS_VX_QUOTA_H)
875 #define XATTR_CREATE 0x1 /* set value, fail if attr already exists */
878 #ifndef XATTR_REPLACE
879 #define XATTR_REPLACE 0x2 /* set value, fail if attr does not exist */
883 * This should be under the HAVE_KRB5 flag but since they're used
884 * in lp_kerberos_method(), they ned to be always available
886 #define KERBEROS_VERIFY_SECRETS 0
887 #define KERBEROS_VERIFY_SYSTEM_KEYTAB 1
888 #define KERBEROS_VERIFY_DEDICATED_KEYTAB 2
889 #define KERBEROS_VERIFY_SECRETS_AND_KEYTAB 3
892 * If you add any entries to the above, please modify the below expressions
893 * so they remain accurate.
895 #define USE_KERBEROS_KEYTAB (KERBEROS_VERIFY_SECRETS != lp_kerberos_method())
896 #define USE_SYSTEM_KEYTAB \
897 ((KERBEROS_VERIFY_SECRETS_AND_KEYTAB == lp_kerberos_method()) || \
898 (KERBEROS_VERIFY_SYSTEM_KEYTAB == lp_kerberos_method()))
900 #if defined(HAVE_KRB5)
901 krb5_error_code smb_krb5_parse_name(krb5_context context,
902 const char *name, /* in unix charset */
903 krb5_principal *principal);
905 krb5_error_code smb_krb5_unparse_name(TALLOC_CTX *mem_ctx,
906 krb5_context context,
907 krb5_const_principal principal,
910 #ifndef HAVE_KRB5_SET_REAL_TIME
911 krb5_error_code krb5_set_real_time(krb5_context context, int32_t seconds, int32_t microseconds);
914 krb5_error_code krb5_set_default_tgs_ktypes(krb5_context ctx, const krb5_enctype *enc);
916 #if defined(HAVE_KRB5_AUTH_CON_SETKEY) && !defined(HAVE_KRB5_AUTH_CON_SETUSERUSERKEY)
917 krb5_error_code krb5_auth_con_setuseruserkey(krb5_context context, krb5_auth_context auth_context, krb5_keyblock *keyblock);
920 #ifndef HAVE_KRB5_FREE_UNPARSED_NAME
921 void krb5_free_unparsed_name(krb5_context ctx, char *val);
924 /* Stub out initialize_krb5_error_table since it is not present in all
925 * Kerberos implementations. If it's not present, it's not necessary to
928 #ifndef HAVE_INITIALIZE_KRB5_ERROR_TABLE
929 #define initialize_krb5_error_table()
932 /* Samba wrapper function for krb5 functionality. */
933 bool setup_kaddr( krb5_address *pkaddr, struct sockaddr_storage *paddr);
934 int create_kerberos_key_from_string(krb5_context context, krb5_principal host_princ, krb5_data *password, krb5_keyblock *key, krb5_enctype enctype, bool no_salt);
935 bool get_auth_data_from_tkt(TALLOC_CTX *mem_ctx, DATA_BLOB *auth_data, krb5_ticket *tkt);
936 krb5_const_principal get_principal_from_tkt(krb5_ticket *tkt);
937 krb5_error_code smb_krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
938 #if defined(HAVE_KRB5_LOCATE_KDC)
939 krb5_error_code krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
941 krb5_error_code get_kerberos_allowed_etypes(krb5_context context, krb5_enctype **enctypes);
942 bool get_krb5_smb_session_key(krb5_context context, krb5_auth_context auth_context, DATA_BLOB *session_key, bool remote);
943 krb5_error_code smb_krb5_kt_free_entry(krb5_context context, krb5_keytab_entry *kt_entry);
944 krb5_principal kerberos_fetch_salt_princ_for_host_princ(krb5_context context, krb5_principal host_princ, int enctype);
945 void kerberos_set_creds_enctype(krb5_creds *pcreds, int enctype);
946 bool kerberos_compatible_enctypes(krb5_context context, krb5_enctype enctype1, krb5_enctype enctype2);
947 void kerberos_free_data_contents(krb5_context context, krb5_data *pdata);
948 NTSTATUS decode_pac_data(TALLOC_CTX *mem_ctx,
949 DATA_BLOB *pac_data_blob,
950 krb5_context context,
951 krb5_keyblock *service_keyblock,
952 krb5_const_principal client_principal,
954 struct PAC_DATA **pac_data_out);
955 void smb_krb5_checksum_from_pac_sig(krb5_checksum *cksum,
956 struct PAC_SIGNATURE_DATA *sig);
957 krb5_error_code smb_krb5_verify_checksum(krb5_context context,
958 const krb5_keyblock *keyblock,
960 krb5_checksum *cksum,
963 time_t get_authtime_from_tkt(krb5_ticket *tkt);
964 void smb_krb5_free_ap_req(krb5_context context,
965 krb5_ap_req *ap_req);
966 krb5_error_code smb_krb5_get_keyinfo_from_ap_req(krb5_context context,
967 const krb5_data *inbuf,
969 krb5_enctype *enctype);
970 krb5_error_code krb5_rd_req_return_keyblock_from_keytab(krb5_context context,
971 krb5_auth_context *auth_context,
972 const krb5_data *inbuf,
973 krb5_const_principal server,
975 krb5_flags *ap_req_options,
976 krb5_ticket **ticket,
977 krb5_keyblock **keyblock);
978 krb5_error_code smb_krb5_parse_name_norealm(krb5_context context,
980 krb5_principal *principal);
981 bool smb_krb5_principal_compare_any_realm(krb5_context context,
982 krb5_const_principal princ1,
983 krb5_const_principal princ2);
984 int cli_krb5_get_ticket(const char *principal, time_t time_offset,
985 DATA_BLOB *ticket, DATA_BLOB *session_key_krb5, uint32 extra_ap_opts, const char *ccname, time_t *tgs_expire);
986 krb5_error_code smb_krb5_renew_ticket(const char *ccache_string, const char *client_string, const char *service_string, time_t *expire_time);
987 krb5_error_code kpasswd_err_to_krb5_err(krb5_error_code res_code);
988 krb5_error_code smb_krb5_gen_netbios_krb5_address(smb_krb5_addresses **kerb_addr);
989 krb5_error_code smb_krb5_free_addresses(krb5_context context, smb_krb5_addresses *addr);
990 NTSTATUS krb5_to_nt_status(krb5_error_code kerberos_error);
991 krb5_error_code nt_status_to_krb5(NTSTATUS nt_status);
992 void smb_krb5_free_error(krb5_context context, krb5_error *krberror);
993 krb5_error_code handle_krberror_packet(krb5_context context,
996 void smb_krb5_get_init_creds_opt_free(krb5_context context,
997 krb5_get_init_creds_opt *opt);
998 krb5_error_code smb_krb5_get_init_creds_opt_alloc(krb5_context context,
999 krb5_get_init_creds_opt **opt);
1000 krb5_error_code smb_krb5_mk_error(krb5_context context,
1001 krb5_error_code error_code,
1002 const krb5_principal server,
1004 krb5_enctype smb_get_enctype_from_kt_entry(krb5_keytab_entry *kt_entry);
1005 krb5_error_code smb_krb5_enctype_to_string(krb5_context context,
1006 krb5_enctype enctype,
1008 krb5_error_code smb_krb5_open_keytab(krb5_context context,
1009 const char *keytab_name,
1011 krb5_keytab *keytab);
1012 krb5_error_code smb_krb5_keytab_name(TALLOC_CTX *mem_ctx,
1013 krb5_context context,
1015 const char **keytab_name);
1016 int smb_krb5_kt_add_entry_ext(krb5_context context,
1019 const char *princ_s,
1020 krb5_enctype *enctypes,
1023 bool keep_old_entries);
1025 #endif /* HAVE_KRB5 */
1030 /* function declarations not included in proto.h */
1031 LDAP *ldap_open_with_timeout(const char *server, int port, unsigned int to);
1033 #endif /* HAVE_LDAP */
1035 #if defined(HAVE_LINUX_READAHEAD) && ! defined(HAVE_READAHEAD_DECL)
1036 ssize_t readahead(int fd, off64_t offset, size_t count);
1042 #define TRUE __ERROR__XX__DONT_USE_TRUE
1047 #define FALSE __ERROR__XX__DONT_USE_FALSE
1049 /* If we have blacklisted mmap() try to avoid using it accidentally by
1050 undefining the HAVE_MMAP symbol. */
1052 #ifdef MMAP_BLACKLIST
1056 #ifndef CONST_DISCARD
1057 #define CONST_DISCARD(type, ptr) ((type) ((void *) (ptr)))
1060 void smb_panic( const char *why ) _NORETURN_;
1061 void dump_core(void) _NORETURN_;
1062 void exit_server(const char *const reason) _NORETURN_;
1063 void exit_server_cleanly(const char *const reason) _NORETURN_;
1064 void exit_server_fault(void) _NORETURN_;
1067 #include "libnscd.h"
1070 #if defined(HAVE_IPV6)
1071 void in6_addr_to_sockaddr_storage(struct sockaddr_storage *ss,
1072 struct in6_addr ip);
1075 #endif /* _INCLUDES_H */