s3-libsmb: move protos to libsmb/proto.h
[metze/samba/wip.git] / source3 / libsmb / clientgen.c
1 /* 
2    Unix SMB/CIFS implementation.
3    SMB client generic functions
4    Copyright (C) Andrew Tridgell 1994-1998
5    Copyright (C) Jeremy Allison 2007.
6    
7    This program is free software; you can redistribute it and/or modify
8    it under the terms of the GNU General Public License as published by
9    the Free Software Foundation; either version 3 of the License, or
10    (at your option) any later version.
11    
12    This program is distributed in the hope that it will be useful,
13    but WITHOUT ANY WARRANTY; without even the implied warranty of
14    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
15    GNU General Public License for more details.
16    
17    You should have received a copy of the GNU General Public License
18    along with this program.  If not, see <http://www.gnu.org/licenses/>.
19 */
20
21 #include "includes.h"
22 #include "libsmb/libsmb.h"
23 #include "../lib/util/tevent_ntstatus.h"
24 #include "smb_signing.h"
25 #include "async_smb.h"
26
27 /*******************************************************************
28  Setup the word count and byte count for a client smb message.
29 ********************************************************************/
30
31 int cli_set_message(char *buf,int num_words,int num_bytes,bool zero)
32 {
33         if (zero && (num_words || num_bytes)) {
34                 memset(buf + smb_size,'\0',num_words*2 + num_bytes);
35         }
36         SCVAL(buf,smb_wct,num_words);
37         SSVAL(buf,smb_vwv + num_words*SIZEOFWORD,num_bytes);
38         smb_setlen(buf,smb_size + num_words*2 + num_bytes - 4);
39         return (smb_size + num_words*2 + num_bytes);
40 }
41
42 /****************************************************************************
43  Change the timeout (in milliseconds).
44 ****************************************************************************/
45
46 unsigned int cli_set_timeout(struct cli_state *cli, unsigned int timeout)
47 {
48         unsigned int old_timeout = cli->timeout;
49         cli->timeout = timeout;
50         return old_timeout;
51 }
52
53 /****************************************************************************
54  Change the port number used to call on.
55 ****************************************************************************/
56
57 void cli_set_port(struct cli_state *cli, int port)
58 {
59         cli->port = port;
60 }
61
62 /****************************************************************************
63  convenience routine to find if we negotiated ucs2
64 ****************************************************************************/
65
66 bool cli_ucs2(struct cli_state *cli)
67 {
68         return ((cli->capabilities & CAP_UNICODE) != 0);
69 }
70
71
72 /****************************************************************************
73  Read an smb from a fd ignoring all keepalive packets.
74  The timeout is in milliseconds
75
76  This is exactly the same as receive_smb except that it never returns
77  a session keepalive packet (just as receive_smb used to do).
78  receive_smb was changed to return keepalives as the oplock processing means this call
79  should never go into a blocking read.
80 ****************************************************************************/
81
82 static ssize_t client_receive_smb(struct cli_state *cli, size_t maxlen)
83 {
84         size_t len;
85
86         for(;;) {
87                 NTSTATUS status;
88
89                 set_smb_read_error(&cli->smb_rw_error, SMB_READ_OK);
90
91                 status = receive_smb_raw(cli->fd, cli->inbuf, cli->bufsize,
92                                         cli->timeout, maxlen, &len);
93                 if (!NT_STATUS_IS_OK(status)) {
94                         DEBUG(10,("client_receive_smb failed\n"));
95                         show_msg(cli->inbuf);
96
97                         if (NT_STATUS_EQUAL(status, NT_STATUS_END_OF_FILE)) {
98                                 set_smb_read_error(&cli->smb_rw_error,
99                                                    SMB_READ_EOF);
100                                 return -1;
101                         }
102
103                         if (NT_STATUS_EQUAL(status, NT_STATUS_IO_TIMEOUT)) {
104                                 set_smb_read_error(&cli->smb_rw_error,
105                                                    SMB_READ_TIMEOUT);
106                                 return -1;
107                         }
108
109                         set_smb_read_error(&cli->smb_rw_error, SMB_READ_ERROR);
110                         return -1;
111                 }
112
113                 /*
114                  * I don't believe len can be < 0 with NT_STATUS_OK
115                  * returned above, but this check doesn't hurt. JRA.
116                  */
117
118                 if ((ssize_t)len < 0) {
119                         return len;
120                 }
121
122                 /* Ignore session keepalive packets. */
123                 if(CVAL(cli->inbuf,0) != SMBkeepalive) {
124                         break;
125                 }
126         }
127
128         if (cli_encryption_on(cli)) {
129                 NTSTATUS status = cli_decrypt_message(cli);
130                 if (!NT_STATUS_IS_OK(status)) {
131                         DEBUG(0, ("SMB decryption failed on incoming packet! Error %s\n",
132                                 nt_errstr(status)));
133                         cli->smb_rw_error = SMB_READ_BAD_DECRYPT;
134                         return -1;
135                 }
136         }
137
138         show_msg(cli->inbuf);
139         return len;
140 }
141
142 static bool cli_state_set_seqnum(struct cli_state *cli, uint16_t mid, uint32_t seqnum)
143 {
144         struct cli_state_seqnum *c;
145
146         for (c = cli->seqnum; c; c = c->next) {
147                 if (c->mid == mid) {
148                         c->seqnum = seqnum;
149                         return true;
150                 }
151         }
152
153         c = talloc_zero(cli, struct cli_state_seqnum);
154         if (!c) {
155                 return false;
156         }
157
158         c->mid = mid;
159         c->seqnum = seqnum;
160         c->persistent = false;
161         DLIST_ADD_END(cli->seqnum, c, struct cli_state_seqnum *);
162
163         return true;
164 }
165
166 bool cli_state_seqnum_persistent(struct cli_state *cli,
167                                  uint16_t mid)
168 {
169         struct cli_state_seqnum *c;
170
171         for (c = cli->seqnum; c; c = c->next) {
172                 if (c->mid == mid) {
173                         c->persistent = true;
174                         return true;
175                 }
176         }
177
178         return false;
179 }
180
181 bool cli_state_seqnum_remove(struct cli_state *cli,
182                              uint16_t mid)
183 {
184         struct cli_state_seqnum *c;
185
186         for (c = cli->seqnum; c; c = c->next) {
187                 if (c->mid == mid) {
188                         DLIST_REMOVE(cli->seqnum, c);
189                         TALLOC_FREE(c);
190                         return true;
191                 }
192         }
193
194         return false;
195 }
196
197 static uint32_t cli_state_get_seqnum(struct cli_state *cli, uint16_t mid)
198 {
199         struct cli_state_seqnum *c;
200
201         for (c = cli->seqnum; c; c = c->next) {
202                 if (c->mid == mid) {
203                         uint32_t seqnum = c->seqnum;
204                         if (!c->persistent) {
205                                 DLIST_REMOVE(cli->seqnum, c);
206                                 TALLOC_FREE(c);
207                         }
208                         return seqnum;
209                 }
210         }
211
212         return 0;
213 }
214
215 /****************************************************************************
216  Recv an smb.
217 ****************************************************************************/
218
219 bool cli_receive_smb(struct cli_state *cli)
220 {
221         ssize_t len;
222         uint16_t mid;
223         uint32_t seqnum;
224
225         /* fd == -1 causes segfaults -- Tom (tom@ninja.nl) */
226         if (cli->fd == -1)
227                 return false; 
228
229  again:
230         len = client_receive_smb(cli, 0);
231         
232         if (len > 0) {
233                 /* it might be an oplock break request */
234                 if (!(CVAL(cli->inbuf, smb_flg) & FLAG_REPLY) &&
235                     CVAL(cli->inbuf,smb_com) == SMBlockingX &&
236                     SVAL(cli->inbuf,smb_vwv6) == 0 &&
237                     SVAL(cli->inbuf,smb_vwv7) == 0) {
238                         if (cli->oplock_handler) {
239                                 int fnum = SVAL(cli->inbuf,smb_vwv2);
240                                 unsigned char level = CVAL(cli->inbuf,smb_vwv3+1);
241                                 if (!NT_STATUS_IS_OK(cli->oplock_handler(cli, fnum, level))) {
242                                         return false;
243                                 }
244                         }
245                         /* try to prevent loops */
246                         SCVAL(cli->inbuf,smb_com,0xFF);
247                         goto again;
248                 }
249         }
250
251         /* If the server is not responding, note that now */
252         if (len < 0) {
253                 /*
254                  * only log if the connection should still be open and not when
255                  * the connection was closed due to a dropped ip message
256                  */
257                 if (cli->fd != -1) {
258                         char addr[INET6_ADDRSTRLEN];
259                         print_sockaddr(addr, sizeof(addr), &cli->dest_ss);
260                         DEBUG(0, ("Receiving SMB: Server %s stopped responding\n",
261                                 addr));
262                         close(cli->fd);
263                         cli->fd = -1;
264                 }
265                 return false;
266         }
267
268         mid = SVAL(cli->inbuf,smb_mid);
269         seqnum = cli_state_get_seqnum(cli, mid);
270
271         if (!cli_check_sign_mac(cli, cli->inbuf, seqnum+1)) {
272                 /*
273                  * If we get a signature failure in sessionsetup, then
274                  * the server sometimes just reflects the sent signature
275                  * back to us. Detect this and allow the upper layer to
276                  * retrieve the correct Windows error message.
277                  */
278                 if (CVAL(cli->outbuf,smb_com) == SMBsesssetupX &&
279                         (smb_len(cli->inbuf) > (smb_ss_field + 8 - 4)) &&
280                         (SVAL(cli->inbuf,smb_flg2) & FLAGS2_SMB_SECURITY_SIGNATURES) &&
281                         memcmp(&cli->outbuf[smb_ss_field],&cli->inbuf[smb_ss_field],8) == 0 &&
282                         cli_is_error(cli)) {
283
284                         /*
285                          * Reflected signature on login error. 
286                          * Set bad sig but don't close fd.
287                          */
288                         cli->smb_rw_error = SMB_READ_BAD_SIG;
289                         return true;
290                 }
291
292                 DEBUG(0, ("SMB Signature verification failed on incoming packet!\n"));
293                 cli->smb_rw_error = SMB_READ_BAD_SIG;
294                 close(cli->fd);
295                 cli->fd = -1;
296                 return false;
297         };
298         return true;
299 }
300
301 static ssize_t write_socket(int fd, const char *buf, size_t len)
302 {
303         ssize_t ret=0;
304
305         DEBUG(6,("write_socket(%d,%d)\n",fd,(int)len));
306         ret = write_data(fd,buf,len);
307
308         DEBUG(6,("write_socket(%d,%d) wrote %d\n",fd,(int)len,(int)ret));
309         if(ret <= 0)
310                 DEBUG(0,("write_socket: Error writing %d bytes to socket %d: ERRNO = %s\n",
311                         (int)len, fd, strerror(errno) ));
312
313         return(ret);
314 }
315
316 /****************************************************************************
317  Send an smb to a fd.
318 ****************************************************************************/
319
320 bool cli_send_smb(struct cli_state *cli)
321 {
322         size_t len;
323         size_t nwritten=0;
324         ssize_t ret;
325         char *buf_out = cli->outbuf;
326         bool enc_on = cli_encryption_on(cli);
327         uint32_t seqnum;
328
329         /* fd == -1 causes segfaults -- Tom (tom@ninja.nl) */
330         if (cli->fd == -1)
331                 return false;
332
333         cli_calculate_sign_mac(cli, cli->outbuf, &seqnum);
334
335         if (!cli_state_set_seqnum(cli, cli->mid, seqnum)) {
336                 DEBUG(0,("Failed to store mid[%u]/seqnum[%u]\n",
337                         (unsigned int)cli->mid,
338                         (unsigned int)seqnum));
339                 return false;
340         }
341
342         if (enc_on) {
343                 NTSTATUS status = cli_encrypt_message(cli, cli->outbuf,
344                                                       &buf_out);
345                 if (!NT_STATUS_IS_OK(status)) {
346                         close(cli->fd);
347                         cli->fd = -1;
348                         cli->smb_rw_error = SMB_WRITE_ERROR;
349                         DEBUG(0,("Error in encrypting client message. Error %s\n",
350                                 nt_errstr(status) ));
351                         return false;
352                 }
353         }
354
355         len = smb_len(buf_out) + 4;
356
357         while (nwritten < len) {
358                 ret = write_socket(cli->fd,buf_out+nwritten,len - nwritten);
359                 if (ret <= 0) {
360                         if (enc_on) {
361                                 cli_free_enc_buffer(cli, buf_out);
362                         }
363                         close(cli->fd);
364                         cli->fd = -1;
365                         cli->smb_rw_error = SMB_WRITE_ERROR;
366                         DEBUG(0,("Error writing %d bytes to client. %d (%s)\n",
367                                 (int)len,(int)ret, strerror(errno) ));
368                         return false;
369                 }
370                 nwritten += ret;
371         }
372
373         if (enc_on) {
374                 cli_free_enc_buffer(cli, buf_out);
375         }
376
377         /* Increment the mid so we can tell between responses. */
378         cli->mid++;
379         if (!cli->mid)
380                 cli->mid++;
381         return true;
382 }
383
384 /****************************************************************************
385  Setup basics in a outgoing packet.
386 ****************************************************************************/
387
388 void cli_setup_packet_buf(struct cli_state *cli, char *buf)
389 {
390         uint16 flags2;
391         cli->rap_error = 0;
392         SIVAL(buf,smb_rcls,0);
393         SSVAL(buf,smb_pid,cli->pid);
394         memset(buf+smb_pidhigh, 0, 12);
395         SSVAL(buf,smb_uid,cli->vuid);
396         SSVAL(buf,smb_mid,cli->mid);
397
398         if (cli->protocol <= PROTOCOL_CORE) {
399                 return;
400         }
401
402         if (cli->case_sensitive) {
403                 SCVAL(buf,smb_flg,0x0);
404         } else {
405                 /* Default setting, case insensitive. */
406                 SCVAL(buf,smb_flg,0x8);
407         }
408         flags2 = FLAGS2_LONG_PATH_COMPONENTS;
409         if (cli->capabilities & CAP_UNICODE)
410                 flags2 |= FLAGS2_UNICODE_STRINGS;
411         if ((cli->capabilities & CAP_DFS) && cli->dfsroot)
412                 flags2 |= FLAGS2_DFS_PATHNAMES;
413         if (cli->capabilities & CAP_STATUS32)
414                 flags2 |= FLAGS2_32_BIT_ERROR_CODES;
415         if (cli->use_spnego)
416                 flags2 |= FLAGS2_EXTENDED_SECURITY;
417         SSVAL(buf,smb_flg2, flags2);
418 }
419
420 void cli_setup_packet(struct cli_state *cli)
421 {
422         cli_setup_packet_buf(cli, cli->outbuf);
423 }
424
425 /****************************************************************************
426  Setup the bcc length of the packet from a pointer to the end of the data.
427 ****************************************************************************/
428
429 void cli_setup_bcc(struct cli_state *cli, void *p)
430 {
431         set_message_bcc(cli->outbuf, PTR_DIFF(p, smb_buf(cli->outbuf)));
432 }
433
434 /****************************************************************************
435  Initialize Domain, user or password.
436 ****************************************************************************/
437
438 NTSTATUS cli_set_domain(struct cli_state *cli, const char *domain)
439 {
440         TALLOC_FREE(cli->domain);
441         cli->domain = talloc_strdup(cli, domain ? domain : "");
442         if (cli->domain == NULL) {
443                 return NT_STATUS_NO_MEMORY;
444         }
445         return NT_STATUS_OK;
446 }
447
448 NTSTATUS cli_set_username(struct cli_state *cli, const char *username)
449 {
450         TALLOC_FREE(cli->user_name);
451         cli->user_name = talloc_strdup(cli, username ? username : "");
452         if (cli->user_name == NULL) {
453                 return NT_STATUS_NO_MEMORY;
454         }
455         return NT_STATUS_OK;
456 }
457
458 NTSTATUS cli_set_password(struct cli_state *cli, const char *password)
459 {
460         TALLOC_FREE(cli->password);
461
462         /* Password can be NULL. */
463         if (password) {
464                 cli->password = talloc_strdup(cli, password);
465                 if (cli->password == NULL) {
466                         return NT_STATUS_NO_MEMORY;
467                 }
468         } else {
469                 /* Use zero NTLMSSP hashes and session key. */
470                 cli->password = NULL;
471         }
472
473         return NT_STATUS_OK;
474 }
475
476 /****************************************************************************
477  Initialise credentials of a client structure.
478 ****************************************************************************/
479
480 NTSTATUS cli_init_creds(struct cli_state *cli, const char *username, const char *domain, const char *password)
481 {
482         NTSTATUS status = cli_set_username(cli, username);
483         if (!NT_STATUS_IS_OK(status)) {
484                 return status;
485         }
486         status = cli_set_domain(cli, domain);
487         if (!NT_STATUS_IS_OK(status)) {
488                 return status;
489         }
490         DEBUG(10,("cli_init_creds: user %s domain %s\n", cli->user_name, cli->domain));
491
492         return cli_set_password(cli, password);
493 }
494
495 /****************************************************************************
496  Initialise a client structure. Always returns a talloc'ed struct.
497  Set the signing state (used from the command line).
498 ****************************************************************************/
499
500 struct cli_state *cli_initialise_ex(int signing_state)
501 {
502         struct cli_state *cli = NULL;
503         bool allow_smb_signing = false;
504         bool mandatory_signing = false;
505
506         /* Check the effective uid - make sure we are not setuid */
507         if (is_setuid_root()) {
508                 DEBUG(0,("libsmb based programs must *NOT* be setuid root.\n"));
509                 return NULL;
510         }
511
512         cli = TALLOC_ZERO_P(NULL, struct cli_state);
513         if (!cli) {
514                 return NULL;
515         }
516
517         cli->dfs_mountpoint = talloc_strdup(cli, "");
518         if (!cli->dfs_mountpoint) {
519                 goto error;
520         }
521         cli->port = 0;
522         cli->fd = -1;
523         cli->cnum = -1;
524         cli->pid = (uint16)sys_getpid();
525         cli->mid = 1;
526         cli->vuid = UID_FIELD_INVALID;
527         cli->protocol = PROTOCOL_NT1;
528         cli->timeout = 20000; /* Timeout is in milliseconds. */
529         cli->bufsize = CLI_BUFFER_SIZE+4;
530         cli->max_xmit = cli->bufsize;
531         cli->outbuf = (char *)SMB_MALLOC(cli->bufsize+SAFETY_MARGIN);
532         cli->seqnum = 0;
533         cli->inbuf = (char *)SMB_MALLOC(cli->bufsize+SAFETY_MARGIN);
534         cli->oplock_handler = cli_oplock_ack;
535         cli->case_sensitive = false;
536         cli->smb_rw_error = SMB_READ_OK;
537
538         cli->use_spnego = lp_client_use_spnego();
539
540         cli->capabilities = CAP_UNICODE | CAP_STATUS32 | CAP_DFS;
541
542         /* Set the CLI_FORCE_DOSERR environment variable to test
543            client routines using DOS errors instead of STATUS32
544            ones.  This intended only as a temporary hack. */    
545         if (getenv("CLI_FORCE_DOSERR"))
546                 cli->force_dos_errors = true;
547
548         if (lp_client_signing()) {
549                 allow_smb_signing = true;
550         }
551
552         if (lp_client_signing() == Required) {
553                 mandatory_signing = true;
554         }
555
556         if (signing_state != Undefined) {
557                 allow_smb_signing = true;
558         }
559
560         if (signing_state == false) {
561                 allow_smb_signing = false;
562                 mandatory_signing = false;
563         }
564
565         if (signing_state == Required) {
566                 mandatory_signing = true;
567         }
568
569         if (!cli->outbuf || !cli->inbuf)
570                 goto error;
571
572         memset(cli->outbuf, 0, cli->bufsize);
573         memset(cli->inbuf, 0, cli->bufsize);
574
575         /* initialise signing */
576         cli->signing_state = smb_signing_init(cli,
577                                               allow_smb_signing,
578                                               mandatory_signing);
579         if (!cli->signing_state) {
580                 goto error;
581         }
582
583         cli->outgoing = tevent_queue_create(cli, "cli_outgoing");
584         if (cli->outgoing == NULL) {
585                 goto error;
586         }
587         cli->pending = NULL;
588
589         cli->initialised = 1;
590
591         return cli;
592
593         /* Clean up after malloc() error */
594
595  error:
596
597         SAFE_FREE(cli->inbuf);
598         SAFE_FREE(cli->outbuf);
599         TALLOC_FREE(cli);
600         return NULL;
601 }
602
603 struct cli_state *cli_initialise(void)
604 {
605         return cli_initialise_ex(Undefined);
606 }
607
608 /****************************************************************************
609  Close all pipes open on this session.
610 ****************************************************************************/
611
612 void cli_nt_pipes_close(struct cli_state *cli)
613 {
614         while (cli->pipe_list != NULL) {
615                 /*
616                  * No TALLOC_FREE here!
617                  */
618                 talloc_free(cli->pipe_list);
619         }
620 }
621
622 /****************************************************************************
623  Shutdown a client structure.
624 ****************************************************************************/
625
626 static void _cli_shutdown(struct cli_state *cli)
627 {
628         cli_nt_pipes_close(cli);
629
630         /*
631          * tell our peer to free his resources.  Wihtout this, when an
632          * application attempts to do a graceful shutdown and calls
633          * smbc_free_context() to clean up all connections, some connections
634          * can remain active on the peer end, until some (long) timeout period
635          * later.  This tree disconnect forces the peer to clean up, since the
636          * connection will be going away.
637          *
638          * Also, do not do tree disconnect when cli->smb_rw_error is SMB_DO_NOT_DO_TDIS
639          * the only user for this so far is smbmount which passes opened connection
640          * down to kernel's smbfs module.
641          */
642         if ( (cli->cnum != (uint16)-1) && (cli->smb_rw_error != SMB_DO_NOT_DO_TDIS ) ) {
643                 cli_tdis(cli);
644         }
645         
646         SAFE_FREE(cli->outbuf);
647         SAFE_FREE(cli->inbuf);
648
649         data_blob_free(&cli->secblob);
650         data_blob_free(&cli->user_session_key);
651
652         if (cli->fd != -1) {
653                 close(cli->fd);
654         }
655         cli->fd = -1;
656         cli->smb_rw_error = SMB_READ_OK;
657
658         /*
659          * Need to free pending first, they remove themselves
660          */
661         while (cli->pending) {
662                 talloc_free(cli->pending[0]);
663         }
664         TALLOC_FREE(cli);
665 }
666
667 void cli_shutdown(struct cli_state *cli)
668 {
669         struct cli_state *cli_head;
670         if (cli == NULL) {
671                 return;
672         }
673         DLIST_HEAD(cli, cli_head);
674         if (cli_head == cli) {
675                 /*
676                  * head of a DFS list, shutdown all subsidiary DFS
677                  * connections.
678                  */
679                 struct cli_state *p, *next;
680
681                 for (p = cli_head->next; p; p = next) {
682                         next = p->next;
683                         DLIST_REMOVE(cli_head, p);
684                         _cli_shutdown(p);
685                 }
686         } else {
687                 DLIST_REMOVE(cli_head, cli);
688         }
689
690         _cli_shutdown(cli);
691 }
692
693 /****************************************************************************
694  Set socket options on a open connection.
695 ****************************************************************************/
696
697 void cli_sockopt(struct cli_state *cli, const char *options)
698 {
699         set_socket_options(cli->fd, options);
700 }
701
702 /****************************************************************************
703  Set the PID to use for smb messages. Return the old pid.
704 ****************************************************************************/
705
706 uint16 cli_setpid(struct cli_state *cli, uint16 pid)
707 {
708         uint16 ret = cli->pid;
709         cli->pid = pid;
710         return ret;
711 }
712
713 /****************************************************************************
714  Set the case sensitivity flag on the packets. Returns old state.
715 ****************************************************************************/
716
717 bool cli_set_case_sensitive(struct cli_state *cli, bool case_sensitive)
718 {
719         bool ret = cli->case_sensitive;
720         cli->case_sensitive = case_sensitive;
721         return ret;
722 }
723
724 struct cli_echo_state {
725         uint16_t vwv[1];
726         DATA_BLOB data;
727         int num_echos;
728 };
729
730 static void cli_echo_done(struct tevent_req *subreq);
731
732 struct tevent_req *cli_echo_send(TALLOC_CTX *mem_ctx, struct event_context *ev,
733                                  struct cli_state *cli, uint16_t num_echos,
734                                  DATA_BLOB data)
735 {
736         struct tevent_req *req, *subreq;
737         struct cli_echo_state *state;
738
739         req = tevent_req_create(mem_ctx, &state, struct cli_echo_state);
740         if (req == NULL) {
741                 return NULL;
742         }
743         SSVAL(state->vwv, 0, num_echos);
744         state->data = data;
745         state->num_echos = num_echos;
746
747         subreq = cli_smb_send(state, ev, cli, SMBecho, 0, 1, state->vwv,
748                               data.length, data.data);
749         if (subreq == NULL) {
750                 goto fail;
751         }
752         tevent_req_set_callback(subreq, cli_echo_done, req);
753         return req;
754  fail:
755         TALLOC_FREE(req);
756         return NULL;
757 }
758
759 static void cli_echo_done(struct tevent_req *subreq)
760 {
761         struct tevent_req *req = tevent_req_callback_data(
762                 subreq, struct tevent_req);
763         struct cli_echo_state *state = tevent_req_data(
764                 req, struct cli_echo_state);
765         NTSTATUS status;
766         uint32_t num_bytes;
767         uint8_t *bytes;
768         uint8_t *inbuf;
769
770         status = cli_smb_recv(subreq, state, &inbuf, 0, NULL, NULL,
771                               &num_bytes, &bytes);
772         if (!NT_STATUS_IS_OK(status)) {
773                 tevent_req_nterror(req, status);
774                 return;
775         }
776         if ((num_bytes != state->data.length)
777             || (memcmp(bytes, state->data.data, num_bytes) != 0)) {
778                 tevent_req_nterror(req, NT_STATUS_INVALID_NETWORK_RESPONSE);
779                 return;
780         }
781
782         state->num_echos -=1;
783         if (state->num_echos == 0) {
784                 tevent_req_done(req);
785                 return;
786         }
787
788         if (!cli_smb_req_set_pending(subreq)) {
789                 tevent_req_nterror(req, NT_STATUS_NO_MEMORY);
790                 return;
791         }
792 }
793
794 /**
795  * Get the result out from an echo request
796  * @param[in] req       The async_req from cli_echo_send
797  * @retval Did the server reply correctly?
798  */
799
800 NTSTATUS cli_echo_recv(struct tevent_req *req)
801 {
802         return tevent_req_simple_recv_ntstatus(req);
803 }
804
805 /**
806  * @brief Send/Receive SMBEcho requests
807  * @param[in] mem_ctx   The memory context to put the async_req on
808  * @param[in] ev        The event context that will call us back
809  * @param[in] cli       The connection to send the echo to
810  * @param[in] num_echos How many times do we want to get the reply?
811  * @param[in] data      The data we want to get back
812  * @retval Did the server reply correctly?
813  */
814
815 NTSTATUS cli_echo(struct cli_state *cli, uint16_t num_echos, DATA_BLOB data)
816 {
817         TALLOC_CTX *frame = talloc_stackframe();
818         struct event_context *ev;
819         struct tevent_req *req;
820         NTSTATUS status = NT_STATUS_OK;
821
822         if (cli_has_async_calls(cli)) {
823                 /*
824                  * Can't use sync call while an async call is in flight
825                  */
826                 status = NT_STATUS_INVALID_PARAMETER;
827                 goto fail;
828         }
829
830         ev = event_context_init(frame);
831         if (ev == NULL) {
832                 status = NT_STATUS_NO_MEMORY;
833                 goto fail;
834         }
835
836         req = cli_echo_send(frame, ev, cli, num_echos, data);
837         if (req == NULL) {
838                 status = NT_STATUS_NO_MEMORY;
839                 goto fail;
840         }
841
842         if (!tevent_req_poll(req, ev)) {
843                 status = map_nt_error_from_unix(errno);
844                 goto fail;
845         }
846
847         status = cli_echo_recv(req);
848  fail:
849         TALLOC_FREE(frame);
850         if (!NT_STATUS_IS_OK(status)) {
851                 cli_set_error(cli, status);
852         }
853         return status;
854 }
855
856 /**
857  * Is the SMB command able to hold an AND_X successor
858  * @param[in] cmd       The SMB command in question
859  * @retval Can we add a chained request after "cmd"?
860  */
861 bool is_andx_req(uint8_t cmd)
862 {
863         switch (cmd) {
864         case SMBtconX:
865         case SMBlockingX:
866         case SMBopenX:
867         case SMBreadX:
868         case SMBwriteX:
869         case SMBsesssetupX:
870         case SMBulogoffX:
871         case SMBntcreateX:
872                 return true;
873                 break;
874         default:
875                 break;
876         }
877
878         return false;
879 }
880
881 NTSTATUS cli_smb(TALLOC_CTX *mem_ctx, struct cli_state *cli,
882                  uint8_t smb_command, uint8_t additional_flags,
883                  uint8_t wct, uint16_t *vwv,
884                  uint32_t num_bytes, const uint8_t *bytes,
885                  struct tevent_req **result_parent,
886                  uint8_t min_wct, uint8_t *pwct, uint16_t **pvwv,
887                  uint32_t *pnum_bytes, uint8_t **pbytes)
888 {
889         struct tevent_context *ev;
890         struct tevent_req *req = NULL;
891         NTSTATUS status = NT_STATUS_NO_MEMORY;
892
893         if (cli_has_async_calls(cli)) {
894                 return NT_STATUS_INVALID_PARAMETER;
895         }
896         ev = tevent_context_init(mem_ctx);
897         if (ev == NULL) {
898                 goto fail;
899         }
900         req = cli_smb_send(mem_ctx, ev, cli, smb_command, additional_flags,
901                            wct, vwv, num_bytes, bytes);
902         if (req == NULL) {
903                 goto fail;
904         }
905         if (!tevent_req_poll_ntstatus(req, ev, &status)) {
906                 goto fail;
907         }
908         status = cli_smb_recv(req, NULL, NULL, min_wct, pwct, pvwv,
909                               pnum_bytes, pbytes);
910 fail:
911         TALLOC_FREE(ev);
912         if (NT_STATUS_IS_OK(status) && (result_parent != NULL)) {
913                 *result_parent = req;
914         }
915         return status;
916 }