r24525: Add output of synonym information to show_parameter_list().
[samba.git] / source3 / param / loadparm.c
1 /* 
2    Unix SMB/CIFS implementation.
3    Parameter loading functions
4    Copyright (C) Karl Auer 1993-1998
5
6    Largely re-written by Andrew Tridgell, September 1994
7
8    Copyright (C) Simo Sorce 2001
9    Copyright (C) Alexander Bokovoy 2002
10    Copyright (C) Stefan (metze) Metzmacher 2002
11    Copyright (C) Jim McDonough <jmcd@us.ibm.com> 2003
12    
13    This program is free software; you can redistribute it and/or modify
14    it under the terms of the GNU General Public License as published by
15    the Free Software Foundation; either version 3 of the License, or
16    (at your option) any later version.
17    
18    This program is distributed in the hope that it will be useful,
19    but WITHOUT ANY WARRANTY; without even the implied warranty of
20    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
21    GNU General Public License for more details.
22    
23    You should have received a copy of the GNU General Public License
24    along with this program.  If not, see <http://www.gnu.org/licenses/>.
25 */
26
27 /*
28  *  Load parameters.
29  *
30  *  This module provides suitable callback functions for the params
31  *  module. It builds the internal table of service details which is
32  *  then used by the rest of the server.
33  *
34  * To add a parameter:
35  *
36  * 1) add it to the global or service structure definition
37  * 2) add it to the parm_table
38  * 3) add it to the list of available functions (eg: using FN_GLOBAL_STRING())
39  * 4) If it's a global then initialise it in init_globals. If a local
40  *    (ie. service) parameter then initialise it in the sDefault structure
41  *  
42  *
43  * Notes:
44  *   The configuration file is processed sequentially for speed. It is NOT
45  *   accessed randomly as happens in 'real' Windows. For this reason, there
46  *   is a fair bit of sequence-dependent code here - ie., code which assumes
47  *   that certain things happen before others. In particular, the code which
48  *   happens at the boundary between sections is delicately poised, so be
49  *   careful!
50  *
51  */
52
53 #include "includes.h"
54
55 BOOL in_client = False;         /* Not in the client by default */
56 BOOL bLoaded = False;
57
58 extern pstring user_socket_options;
59 extern enum protocol_types Protocol;
60 extern userdom_struct current_user_info;
61
62 #ifndef GLOBAL_NAME
63 #define GLOBAL_NAME "global"
64 #endif
65
66 #ifndef PRINTERS_NAME
67 #define PRINTERS_NAME "printers"
68 #endif
69
70 #ifndef HOMES_NAME
71 #define HOMES_NAME "homes"
72 #endif
73
74 /* the special value for the include parameter
75  * to be interpreted not as a file name but to
76  * trigger loading of the global smb.conf options
77  * from registry. */
78 #ifndef INCLUDE_REGISTRY_NAME
79 #define INCLUDE_REGISTRY_NAME "registry"
80 #endif
81
82 static int regdb_last_seqnum = 0;
83 static BOOL include_registry_globals = False;
84
85 /* some helpful bits */
86 #define LP_SNUM_OK(i) (((i) >= 0) && ((i) < iNumServices) && (ServicePtrs != NULL) && ServicePtrs[(i)]->valid)
87 #define VALID(i) (ServicePtrs != NULL && ServicePtrs[i]->valid)
88
89 #define USERSHARE_VALID 1
90 #define USERSHARE_PENDING_DELETE 2
91
92 BOOL use_getwd_cache = True;
93
94 extern int extra_time_offset;
95
96 static BOOL defaults_saved = False;
97
98 typedef struct _param_opt_struct param_opt_struct;
99 struct _param_opt_struct {
100         param_opt_struct *prev, *next;
101         char *key;
102         char *value;
103         char **list;
104 };
105
106 /* 
107  * This structure describes global (ie., server-wide) parameters.
108  */
109 typedef struct {
110         char *smb_ports;
111         char *dos_charset;
112         char *unix_charset;
113         char *display_charset;
114         char *szPrintcapname;
115         char *szAddPortCommand;
116         char *szEnumPortsCommand;
117         char *szAddPrinterCommand;
118         char *szDeletePrinterCommand;
119         char *szOs2DriverMap;
120         char *szLockDir;
121         char *szPidDir;
122         char *szRootdir;
123         char *szDefaultService;
124         char *szGetQuota;
125         char *szSetQuota;
126         char *szMsgCommand;
127         char *szServerString;
128         char *szAutoServices;
129         char *szPasswdProgram;
130         char *szPasswdChat;
131         char *szLogFile;
132         char *szConfigFile;
133         char *szSMBPasswdFile;
134         char *szPrivateDir;
135         char *szPassdbBackend;
136         char **szPreloadModules;
137         char *szPasswordServer;
138         char *szSocketOptions;
139         char *szRealm;
140         char *szAfsUsernameMap;
141         int iAfsTokenLifetime;
142         char *szLogNtTokenCommand;
143         char *szUsernameMap;
144         char *szLogonScript;
145         char *szLogonPath;
146         char *szLogonDrive;
147         char *szLogonHome;
148         char **szWINSservers;
149         char **szInterfaces;
150         char *szRemoteAnnounce;
151         char *szRemoteBrowseSync;
152         char *szSocketAddress;
153         char *szNISHomeMapName;
154         char *szAnnounceVersion;        /* This is initialised in init_globals */
155         char *szWorkgroup;
156         char *szNetbiosName;
157         char **szNetbiosAliases;
158         char *szNetbiosScope;
159         char *szNameResolveOrder;
160         char *szPanicAction;
161         char *szAddUserScript;
162         char *szRenameUserScript;
163         char *szDelUserScript;
164         char *szAddGroupScript;
165         char *szDelGroupScript;
166         char *szAddUserToGroupScript;
167         char *szDelUserFromGroupScript;
168         char *szSetPrimaryGroupScript;
169         char *szAddMachineScript;
170         char *szShutdownScript;
171         char *szAbortShutdownScript;
172         char *szUsernameMapScript;
173         char *szCheckPasswordScript;
174         char *szWINSHook;
175         char *szUtmpDir;
176         char *szWtmpDir;
177         BOOL bUtmp;
178         char *szIdmapUID;
179         char *szIdmapGID;
180         BOOL bPassdbExpandExplicit;
181         int AlgorithmicRidBase;
182         char *szTemplateHomedir;
183         char *szTemplateShell;
184         char *szWinbindSeparator;
185         BOOL bWinbindEnumUsers;
186         BOOL bWinbindEnumGroups;
187         BOOL bWinbindUseDefaultDomain;
188         BOOL bWinbindTrustedDomainsOnly;
189         BOOL bWinbindNestedGroups;
190         int  winbind_expand_groups;     
191         BOOL bWinbindRefreshTickets;
192         BOOL bWinbindOfflineLogon;
193         BOOL bWinbindNormalizeNames;
194         BOOL bWinbindRpcOnly;
195         char **szIdmapDomains;
196         char **szIdmapBackend; /* deprecated */
197         char *szIdmapAllocBackend;
198         char *szAddShareCommand;
199         char *szChangeShareCommand;
200         char *szDeleteShareCommand;
201         char **szEventLogs;
202         char *szGuestaccount;
203         char *szManglingMethod;
204         char **szServicesList;
205         char *szUsersharePath;
206         char *szUsershareTemplateShare;
207         char **szUsersharePrefixAllowList;
208         char **szUsersharePrefixDenyList;
209         int mangle_prefix;
210         int max_log_size;
211         char *szLogLevel;
212         int max_xmit;
213         int max_mux;
214         int max_open_files;
215         int open_files_db_hash_size;
216         int pwordlevel;
217         int unamelevel;
218         int deadtime;
219         int maxprotocol;
220         int minprotocol;
221         int security;
222         char **AuthMethods;
223         BOOL paranoid_server_security;
224         int maxdisksize;
225         int lpqcachetime;
226         int iMaxSmbdProcesses;
227         BOOL bDisableSpoolss;
228         int syslog;
229         int os_level;
230         int enhanced_browsing;
231         int max_ttl;
232         int max_wins_ttl;
233         int min_wins_ttl;
234         int lm_announce;
235         int lm_interval;
236         int announce_as;        /* This is initialised in init_globals */
237         int machine_password_timeout;
238         int map_to_guest;
239         int oplock_break_wait_time;
240         int winbind_cache_time;
241         int winbind_max_idle_children;
242         char **szWinbindNssInfo;
243         int iLockSpinTime;
244         char *szLdapMachineSuffix;
245         char *szLdapUserSuffix;
246         char *szLdapIdmapSuffix;
247         char *szLdapGroupSuffix;
248         int ldap_ssl;
249         char *szLdapSuffix;
250         char *szLdapAdminDn;
251         int iAclCompat;
252         char *szCupsServer;
253         char *szIPrintServer;
254         char *ctdbdSocket;
255         char **szClusterAddresses;
256         BOOL clustering;
257         int ldap_passwd_sync; 
258         int ldap_replication_sleep;
259         int ldap_timeout; /* This is initialised in init_globals */
260         int ldap_page_size;
261         BOOL ldap_delete_dn;
262         BOOL bMsAddPrinterWizard;
263         BOOL bDNSproxy;
264         BOOL bWINSsupport;
265         BOOL bWINSproxy;
266         BOOL bLocalMaster;
267         BOOL bPreferredMaster;
268         BOOL bDomainMaster;
269         BOOL bDomainLogons;
270         BOOL bEncryptPasswords;
271         BOOL bUpdateEncrypt;
272         int  clientSchannel;
273         int  serverSchannel;
274         BOOL bNullPasswords;
275         BOOL bObeyPamRestrictions;
276         BOOL bLoadPrinters;
277         int PrintcapCacheTime;
278         BOOL bLargeReadwrite;
279         BOOL bReadRaw;
280         BOOL bWriteRaw;
281         BOOL bSyslogOnly;
282         BOOL bBrowseList;
283         BOOL bNISHomeMap;
284         BOOL bTimeServer;
285         BOOL bBindInterfacesOnly;
286         BOOL bPamPasswordChange;
287         BOOL bUnixPasswdSync;
288         BOOL bPasswdChatDebug;
289         int iPasswdChatTimeout;
290         BOOL bTimestampLogs;
291         BOOL bNTSmbSupport;
292         BOOL bNTPipeSupport;
293         BOOL bNTStatusSupport;
294         BOOL bStatCache;
295         int iMaxStatCacheSize;
296         BOOL bKernelOplocks;
297         BOOL bAllowTrustedDomains;
298         BOOL bLanmanAuth;
299         BOOL bNTLMAuth;
300         BOOL bUseSpnego;
301         BOOL bClientLanManAuth;
302         BOOL bClientNTLMv2Auth;
303         BOOL bClientPlaintextAuth;
304         BOOL bClientUseSpnego;
305         BOOL bDebugPrefixTimestamp;
306         BOOL bDebugHiresTimestamp;
307         BOOL bDebugPid;
308         BOOL bDebugUid;
309         BOOL bEnableCoreFiles;
310         BOOL bHostMSDfs;
311         BOOL bUseMmap;
312         BOOL bHostnameLookups;
313         BOOL bUnixExtensions;
314         BOOL bDisableNetbios;
315         BOOL bUseKerberosKeytab;
316         BOOL bDeferSharingViolations;
317         BOOL bEnablePrivileges;
318         BOOL bASUSupport;
319         BOOL bUsershareOwnerOnly;
320         BOOL bUsershareAllowGuests;
321         BOOL bRegistryShares;
322         int restrict_anonymous;
323         int name_cache_timeout;
324         int client_signing;
325         int server_signing;
326         int client_ldap_sasl_wrapping;
327         int iUsershareMaxShares;
328         int iIdmapCacheTime;
329         int iIdmapNegativeCacheTime;
330
331         BOOL bResetOnZeroVC;
332         int iKeepalive;
333         param_opt_struct *param_opt;
334 } global;
335
336 static global Globals;
337
338 /* 
339  * This structure describes a single service. 
340  */
341 typedef struct {
342         BOOL valid;
343         BOOL autoloaded;
344         int usershare;
345         time_t usershare_last_mod;
346         char *szService;
347         char *szPath;
348         char *szUsername;
349         char **szInvalidUsers;
350         char **szValidUsers;
351         char **szAdminUsers;
352         char *szCopy;
353         char *szInclude;
354         char *szPreExec;
355         char *szPostExec;
356         char *szRootPreExec;
357         char *szRootPostExec;
358         char *szCupsOptions;
359         char *szPrintcommand;
360         char *szLpqcommand;
361         char *szLprmcommand;
362         char *szLppausecommand;
363         char *szLpresumecommand;
364         char *szQueuepausecommand;
365         char *szQueueresumecommand;
366         char *szPrintername;
367         char *szPrintjobUsername;
368         char *szDontdescend;
369         char **szHostsallow;
370         char **szHostsdeny;
371         char *szMagicScript;
372         char *szMagicOutput;
373         char *szMangledMap;
374         char *szVetoFiles;
375         char *szHideFiles;
376         char *szVetoOplockFiles;
377         char *comment;
378         char *force_user;
379         char *force_group;
380         char **readlist;
381         char **writelist;
382         char **printer_admin;
383         char *volume;
384         char *fstype;
385         char **szVfsObjects;
386         char *szMSDfsProxy;
387         char *szDfree;
388         int iMinPrintSpace;
389         int iMaxPrintJobs;
390         int iMaxReportedPrintJobs;
391         int iWriteCacheSize;
392         int iCreate_mask;
393         int iCreate_force_mode;
394         int iSecurity_mask;
395         int iSecurity_force_mode;
396         int iDir_mask;
397         int iDir_force_mode;
398         int iDir_Security_mask;
399         int iDir_Security_force_mode;
400         int iMaxConnections;
401         int iDefaultCase;
402         int iPrinting;
403         int iOplockContentionLimit;
404         int iCSCPolicy;
405         int iBlock_size;
406         int iDfreeCacheTime;
407         BOOL bPreexecClose;
408         BOOL bRootpreexecClose;
409         int  iCaseSensitive;
410         BOOL bCasePreserve;
411         BOOL bShortCasePreserve;
412         BOOL bHideDotFiles;
413         BOOL bHideSpecialFiles;
414         BOOL bHideUnReadable;
415         BOOL bHideUnWriteableFiles;
416         BOOL bBrowseable;
417         BOOL bAvailable;
418         BOOL bRead_only;
419         BOOL bNo_set_dir;
420         BOOL bGuest_only;
421         BOOL bGuest_ok;
422         BOOL bPrint_ok;
423         BOOL bMap_system;
424         BOOL bMap_hidden;
425         BOOL bMap_archive;
426         BOOL bStoreDosAttributes;
427         BOOL bDmapiSupport;
428         BOOL bLocking;
429         int iStrictLocking;
430         BOOL bPosixLocking;
431         BOOL bShareModes;
432         BOOL bOpLocks;
433         BOOL bLevel2OpLocks;
434         BOOL bOnlyUser;
435         BOOL bMangledNames;
436         BOOL bWidelinks;
437         BOOL bSymlinks;
438         BOOL bSyncAlways;
439         BOOL bStrictAllocate;
440         BOOL bStrictSync;
441         char magic_char;
442         BOOL *copymap;
443         BOOL bDeleteReadonly;
444         BOOL bFakeOplocks;
445         BOOL bDeleteVetoFiles;
446         BOOL bDosFilemode;
447         BOOL bDosFiletimes;
448         BOOL bDosFiletimeResolution;
449         BOOL bFakeDirCreateTimes;
450         BOOL bBlockingLocks;
451         BOOL bInheritPerms;
452         BOOL bInheritACLS;
453         BOOL bInheritOwner;
454         BOOL bMSDfsRoot;
455         BOOL bUseClientDriver;
456         BOOL bDefaultDevmode;
457         BOOL bForcePrintername;
458         BOOL bNTAclSupport;
459         BOOL bForceUnknownAclUser;
460         BOOL bUseSendfile;
461         BOOL bProfileAcls;
462         BOOL bMap_acl_inherit;
463         BOOL bAfs_Share;
464         BOOL bEASupport;
465         BOOL bAclCheckPermissions;
466         BOOL bAclMapFullControl;
467         BOOL bAclGroupControl;
468         BOOL bChangeNotify;
469         BOOL bKernelChangeNotify;
470         int iallocation_roundup_size;
471         int iAioReadSize;
472         int iAioWriteSize;
473         int iMap_readonly;
474         param_opt_struct *param_opt;
475
476         char dummy[3];          /* for alignment */
477 } service;
478
479
480 /* This is a default service used to prime a services structure */
481 static service sDefault = {
482         True,                   /* valid */
483         False,                  /* not autoloaded */
484         0,                      /* not a usershare */
485         (time_t)0,              /* No last mod time */
486         NULL,                   /* szService */
487         NULL,                   /* szPath */
488         NULL,                   /* szUsername */
489         NULL,                   /* szInvalidUsers */
490         NULL,                   /* szValidUsers */
491         NULL,                   /* szAdminUsers */
492         NULL,                   /* szCopy */
493         NULL,                   /* szInclude */
494         NULL,                   /* szPreExec */
495         NULL,                   /* szPostExec */
496         NULL,                   /* szRootPreExec */
497         NULL,                   /* szRootPostExec */
498         NULL,                   /* szCupsOptions */
499         NULL,                   /* szPrintcommand */
500         NULL,                   /* szLpqcommand */
501         NULL,                   /* szLprmcommand */
502         NULL,                   /* szLppausecommand */
503         NULL,                   /* szLpresumecommand */
504         NULL,                   /* szQueuepausecommand */
505         NULL,                   /* szQueueresumecommand */
506         NULL,                   /* szPrintername */
507         NULL,                   /* szPrintjobUsername */
508         NULL,                   /* szDontdescend */
509         NULL,                   /* szHostsallow */
510         NULL,                   /* szHostsdeny */
511         NULL,                   /* szMagicScript */
512         NULL,                   /* szMagicOutput */
513         NULL,                   /* szMangledMap */
514         NULL,                   /* szVetoFiles */
515         NULL,                   /* szHideFiles */
516         NULL,                   /* szVetoOplockFiles */
517         NULL,                   /* comment */
518         NULL,                   /* force user */
519         NULL,                   /* force group */
520         NULL,                   /* readlist */
521         NULL,                   /* writelist */
522         NULL,                   /* printer admin */
523         NULL,                   /* volume */
524         NULL,                   /* fstype */
525         NULL,                   /* vfs objects */
526         NULL,                   /* szMSDfsProxy */
527         NULL,                   /* szDfree */
528         0,                      /* iMinPrintSpace */
529         1000,                   /* iMaxPrintJobs */
530         0,                      /* iMaxReportedPrintJobs */
531         0,                      /* iWriteCacheSize */
532         0744,                   /* iCreate_mask */
533         0000,                   /* iCreate_force_mode */
534         0777,                   /* iSecurity_mask */
535         0,                      /* iSecurity_force_mode */
536         0755,                   /* iDir_mask */
537         0000,                   /* iDir_force_mode */
538         0777,                   /* iDir_Security_mask */
539         0,                      /* iDir_Security_force_mode */
540         0,                      /* iMaxConnections */
541         CASE_LOWER,             /* iDefaultCase */
542         DEFAULT_PRINTING,       /* iPrinting */
543         2,                      /* iOplockContentionLimit */
544         0,                      /* iCSCPolicy */
545         1024,                   /* iBlock_size */
546         0,                      /* iDfreeCacheTime */
547         False,                  /* bPreexecClose */
548         False,                  /* bRootpreexecClose */
549         Auto,                   /* case sensitive */
550         True,                   /* case preserve */
551         True,                   /* short case preserve */
552         True,                   /* bHideDotFiles */
553         False,                  /* bHideSpecialFiles */
554         False,                  /* bHideUnReadable */
555         False,                  /* bHideUnWriteableFiles */
556         True,                   /* bBrowseable */
557         True,                   /* bAvailable */
558         True,                   /* bRead_only */
559         True,                   /* bNo_set_dir */
560         False,                  /* bGuest_only */
561         False,                  /* bGuest_ok */
562         False,                  /* bPrint_ok */
563         False,                  /* bMap_system */
564         False,                  /* bMap_hidden */
565         True,                   /* bMap_archive */
566         False,                  /* bStoreDosAttributes */
567         False,                  /* bDmapiSupport */
568         True,                   /* bLocking */
569         Auto,                   /* iStrictLocking */
570         True,                   /* bPosixLocking */
571         True,                   /* bShareModes */
572         True,                   /* bOpLocks */
573         True,                   /* bLevel2OpLocks */
574         False,                  /* bOnlyUser */
575         True,                   /* bMangledNames */
576         True,                   /* bWidelinks */
577         True,                   /* bSymlinks */
578         False,                  /* bSyncAlways */
579         False,                  /* bStrictAllocate */
580         False,                  /* bStrictSync */
581         '~',                    /* magic char */
582         NULL,                   /* copymap */
583         False,                  /* bDeleteReadonly */
584         False,                  /* bFakeOplocks */
585         False,                  /* bDeleteVetoFiles */
586         False,                  /* bDosFilemode */
587         True,                   /* bDosFiletimes */
588         False,                  /* bDosFiletimeResolution */
589         False,                  /* bFakeDirCreateTimes */
590         True,                   /* bBlockingLocks */
591         False,                  /* bInheritPerms */
592         False,                  /* bInheritACLS */
593         False,                  /* bInheritOwner */
594         False,                  /* bMSDfsRoot */
595         False,                  /* bUseClientDriver */
596         True,                   /* bDefaultDevmode */
597         False,                  /* bForcePrintername */
598         True,                   /* bNTAclSupport */
599         False,                  /* bForceUnknownAclUser */
600         False,                  /* bUseSendfile */
601         False,                  /* bProfileAcls */
602         False,                  /* bMap_acl_inherit */
603         False,                  /* bAfs_Share */
604         False,                  /* bEASupport */
605         True,                   /* bAclCheckPermissions */
606         True,                   /* bAclMapFullControl */
607         False,                  /* bAclGroupControl */
608         True,                   /* bChangeNotify */
609         True,                   /* bKernelChangeNotify */
610         SMB_ROUNDUP_ALLOCATION_SIZE,            /* iallocation_roundup_size */
611         0,                      /* iAioReadSize */
612         0,                      /* iAioWriteSize */
613         MAP_READONLY_YES,       /* iMap_readonly */
614         
615         NULL,                   /* Parametric options */
616
617         ""                      /* dummy */
618 };
619
620 /* local variables */
621 static service **ServicePtrs = NULL;
622 static int iNumServices = 0;
623 static int iServiceIndex = 0;
624 static TDB_CONTEXT *ServiceHash;
625 static int *invalid_services = NULL;
626 static int num_invalid_services = 0;
627 static BOOL bInGlobalSection = True;
628 static BOOL bGlobalOnly = False;
629 static int server_role;
630 static int default_server_announce;
631
632 #define NUMPARAMETERS (sizeof(parm_table) / sizeof(struct parm_struct))
633
634 /* prototypes for the special type handlers */
635 static BOOL handle_include( int snum, const char *pszParmValue, char **ptr);
636 static BOOL handle_copy( int snum, const char *pszParmValue, char **ptr);
637 static BOOL handle_netbios_name( int snum, const char *pszParmValue, char **ptr);
638 static BOOL handle_idmap_uid( int snum, const char *pszParmValue, char **ptr);
639 static BOOL handle_idmap_gid( int snum, const char *pszParmValue, char **ptr);
640 static BOOL handle_debug_list( int snum, const char *pszParmValue, char **ptr );
641 static BOOL handle_workgroup( int snum, const char *pszParmValue, char **ptr );
642 static BOOL handle_netbios_aliases( int snum, const char *pszParmValue, char **ptr );
643 static BOOL handle_netbios_scope( int snum, const char *pszParmValue, char **ptr );
644 static BOOL handle_charset( int snum, const char *pszParmValue, char **ptr );
645 static BOOL handle_printing( int snum, const char *pszParmValue, char **ptr);
646
647 static void set_server_role(void);
648 static void set_default_server_announce_type(void);
649 static void set_allowed_client_auth(void);
650
651 static const struct enum_list enum_protocol[] = {
652         {PROTOCOL_NT1, "NT1"},
653         {PROTOCOL_LANMAN2, "LANMAN2"},
654         {PROTOCOL_LANMAN1, "LANMAN1"},
655         {PROTOCOL_CORE, "CORE"},
656         {PROTOCOL_COREPLUS, "COREPLUS"},
657         {PROTOCOL_COREPLUS, "CORE+"},
658         {-1, NULL}
659 };
660
661 static const struct enum_list enum_security[] = {
662         {SEC_SHARE, "SHARE"},
663         {SEC_USER, "USER"},
664         {SEC_SERVER, "SERVER"},
665         {SEC_DOMAIN, "DOMAIN"},
666 #ifdef HAVE_ADS
667         {SEC_ADS, "ADS"},
668 #endif
669         {-1, NULL}
670 };
671
672 static const struct enum_list enum_printing[] = {
673         {PRINT_SYSV, "sysv"},
674         {PRINT_AIX, "aix"},
675         {PRINT_HPUX, "hpux"},
676         {PRINT_BSD, "bsd"},
677         {PRINT_QNX, "qnx"},
678         {PRINT_PLP, "plp"},
679         {PRINT_LPRNG, "lprng"},
680         {PRINT_CUPS, "cups"},
681         {PRINT_IPRINT, "iprint"},
682         {PRINT_LPRNT, "nt"},
683         {PRINT_LPROS2, "os2"},
684 #ifdef DEVELOPER
685         {PRINT_TEST, "test"},
686         {PRINT_VLP, "vlp"},
687 #endif /* DEVELOPER */
688         {-1, NULL}
689 };
690
691 static const struct enum_list enum_ldap_sasl_wrapping[] = {
692         {0, "plain"},
693         {ADS_AUTH_SASL_SIGN, "sign"},
694         {ADS_AUTH_SASL_SEAL, "seal"},
695         {-1, NULL}
696 };
697
698 static const struct enum_list enum_ldap_ssl[] = {
699         {LDAP_SSL_OFF, "no"},
700         {LDAP_SSL_OFF, "No"},
701         {LDAP_SSL_OFF, "off"},
702         {LDAP_SSL_OFF, "Off"},
703         {LDAP_SSL_START_TLS, "start tls"},
704         {LDAP_SSL_START_TLS, "Start_tls"},
705         {-1, NULL}
706 };
707
708 static const struct enum_list enum_ldap_passwd_sync[] = {
709         {LDAP_PASSWD_SYNC_OFF, "no"},
710         {LDAP_PASSWD_SYNC_OFF, "No"},
711         {LDAP_PASSWD_SYNC_OFF, "off"},
712         {LDAP_PASSWD_SYNC_OFF, "Off"},
713         {LDAP_PASSWD_SYNC_ON, "Yes"},
714         {LDAP_PASSWD_SYNC_ON, "yes"},
715         {LDAP_PASSWD_SYNC_ON, "on"},
716         {LDAP_PASSWD_SYNC_ON, "On"},
717         {LDAP_PASSWD_SYNC_ONLY, "Only"},
718         {LDAP_PASSWD_SYNC_ONLY, "only"},
719         {-1, NULL}
720 };
721
722 /* Types of machine we can announce as. */
723 #define ANNOUNCE_AS_NT_SERVER 1
724 #define ANNOUNCE_AS_WIN95 2
725 #define ANNOUNCE_AS_WFW 3
726 #define ANNOUNCE_AS_NT_WORKSTATION 4
727
728 static const struct enum_list enum_announce_as[] = {
729         {ANNOUNCE_AS_NT_SERVER, "NT"},
730         {ANNOUNCE_AS_NT_SERVER, "NT Server"},
731         {ANNOUNCE_AS_NT_WORKSTATION, "NT Workstation"},
732         {ANNOUNCE_AS_WIN95, "win95"},
733         {ANNOUNCE_AS_WFW, "WfW"},
734         {-1, NULL}
735 };
736
737 static const struct enum_list enum_map_readonly[] = {
738         {MAP_READONLY_NO, "no"},
739         {MAP_READONLY_NO, "false"},
740         {MAP_READONLY_NO, "0"},
741         {MAP_READONLY_YES, "yes"},
742         {MAP_READONLY_YES, "true"},
743         {MAP_READONLY_YES, "1"},
744         {MAP_READONLY_PERMISSIONS, "permissions"},
745         {MAP_READONLY_PERMISSIONS, "perms"},
746         {-1, NULL}
747 };
748
749 static const struct enum_list enum_case[] = {
750         {CASE_LOWER, "lower"},
751         {CASE_UPPER, "upper"},
752         {-1, NULL}
753 };
754
755 static const struct enum_list enum_bool_auto[] = {
756         {False, "No"},
757         {False, "False"},
758         {False, "0"},
759         {True, "Yes"},
760         {True, "True"},
761         {True, "1"},
762         {Auto, "Auto"},
763         {-1, NULL}
764 };
765
766 /* Client-side offline caching policy types */
767 #define CSC_POLICY_MANUAL 0
768 #define CSC_POLICY_DOCUMENTS 1
769 #define CSC_POLICY_PROGRAMS 2
770 #define CSC_POLICY_DISABLE 3
771
772 static const struct enum_list enum_csc_policy[] = {
773         {CSC_POLICY_MANUAL, "manual"},
774         {CSC_POLICY_DOCUMENTS, "documents"},
775         {CSC_POLICY_PROGRAMS, "programs"},
776         {CSC_POLICY_DISABLE, "disable"},
777         {-1, NULL}
778 };
779
780 /* SMB signing types. */
781 static const struct enum_list enum_smb_signing_vals[] = {
782         {False, "No"},
783         {False, "False"},
784         {False, "0"},
785         {False, "Off"},
786         {False, "disabled"},
787         {True, "Yes"},
788         {True, "True"},
789         {True, "1"},
790         {True, "On"},
791         {True, "enabled"},
792         {Auto, "auto"},
793         {Required, "required"},
794         {Required, "mandatory"},
795         {Required, "force"},
796         {Required, "forced"},
797         {Required, "enforced"},
798         {-1, NULL}
799 };
800
801 /* ACL compatibility options. */
802 static const struct enum_list enum_acl_compat_vals[] = {
803     { ACL_COMPAT_AUTO, "auto" },
804     { ACL_COMPAT_WINNT, "winnt" },
805     { ACL_COMPAT_WIN2K, "win2k" },
806     { -1, NULL}
807 };
808
809 /* 
810    Do you want session setups at user level security with a invalid
811    password to be rejected or allowed in as guest? WinNT rejects them
812    but it can be a pain as it means "net view" needs to use a password
813
814    You have 3 choices in the setting of map_to_guest:
815
816    "Never" means session setups with an invalid password
817    are rejected. This is the default.
818
819    "Bad User" means session setups with an invalid password
820    are rejected, unless the username does not exist, in which case it
821    is treated as a guest login
822
823    "Bad Password" means session setups with an invalid password
824    are treated as a guest login
825
826    Note that map_to_guest only has an effect in user or server
827    level security.
828 */
829
830 static const struct enum_list enum_map_to_guest[] = {
831         {NEVER_MAP_TO_GUEST, "Never"},
832         {MAP_TO_GUEST_ON_BAD_USER, "Bad User"},
833         {MAP_TO_GUEST_ON_BAD_PASSWORD, "Bad Password"},
834         {MAP_TO_GUEST_ON_BAD_UID, "Bad Uid"},
835         {-1, NULL}
836 };
837
838 /* Note: We do not initialise the defaults union - it is not allowed in ANSI C
839  *
840  * The FLAG_HIDE is explicit. Paramters set this way do NOT appear in any edit
841  * screen in SWAT. This is used to exclude parameters as well as to squash all
842  * parameters that have been duplicated by pseudonyms.
843  *
844  * NOTE: To display a parameter in BASIC view set FLAG_BASIC
845  *       Any parameter that does NOT have FLAG_ADVANCED will not disply at all
846  *       Set FLAG_SHARE and FLAG_PRINT to specifically display parameters in
847  *        respective views.
848  *
849  * NOTE2: Handling of duplicated (synonym) paramters:
850  *      Only the first occurance of a parameter should be enabled by FLAG_BASIC
851  *      and/or FLAG_ADVANCED. All duplicates following the first mention should be
852  *      set to FLAG_HIDE. ie: Make you must place the parameter that has the preferred
853  *      name first, and all synonyms must follow it with the FLAG_HIDE attribute.
854  */
855
856 static struct parm_struct parm_table[] = {
857         {N_("Base Options"), P_SEP, P_SEPARATOR}, 
858
859         {"dos charset", P_STRING, P_GLOBAL, &Globals.dos_charset, handle_charset, NULL, FLAG_ADVANCED}, 
860         {"unix charset", P_STRING, P_GLOBAL, &Globals.unix_charset, handle_charset, NULL, FLAG_ADVANCED}, 
861         {"display charset", P_STRING, P_GLOBAL, &Globals.display_charset, handle_charset, NULL, FLAG_ADVANCED}, 
862         {"comment", P_STRING, P_LOCAL, &sDefault.comment, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
863         {"path", P_STRING, P_LOCAL, &sDefault.szPath, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
864         {"directory", P_STRING, P_LOCAL, &sDefault.szPath, NULL, NULL, FLAG_HIDE}, 
865         {"workgroup", P_USTRING, P_GLOBAL, &Globals.szWorkgroup, handle_workgroup, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
866 #ifdef WITH_ADS
867         {"realm", P_USTRING, P_GLOBAL, &Globals.szRealm, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
868 #endif
869         {"netbios name", P_USTRING, P_GLOBAL, &Globals.szNetbiosName, handle_netbios_name, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
870         {"netbios aliases", P_LIST, P_GLOBAL, &Globals.szNetbiosAliases, handle_netbios_aliases,  NULL, FLAG_ADVANCED}, 
871         {"netbios scope", P_USTRING, P_GLOBAL, &Globals.szNetbiosScope, handle_netbios_scope,  NULL, FLAG_ADVANCED}, 
872         {"server string", P_STRING, P_GLOBAL, &Globals.szServerString, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED }, 
873         {"interfaces", P_LIST, P_GLOBAL, &Globals.szInterfaces, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
874         {"bind interfaces only", P_BOOL, P_GLOBAL, &Globals.bBindInterfacesOnly, NULL, NULL, FLAG_ADVANCED | FLAG_WIZARD}, 
875
876         {N_("Security Options"), P_SEP, P_SEPARATOR}, 
877
878         {"security", P_ENUM, P_GLOBAL, &Globals.security, NULL, enum_security, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
879         {"auth methods", P_LIST, P_GLOBAL, &Globals.AuthMethods, NULL, NULL, FLAG_ADVANCED}, 
880         {"encrypt passwords", P_BOOL, P_GLOBAL, &Globals.bEncryptPasswords, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
881         {"update encrypted", P_BOOL, P_GLOBAL, &Globals.bUpdateEncrypt, NULL, NULL, FLAG_ADVANCED}, 
882         {"client schannel", P_ENUM, P_GLOBAL, &Globals.clientSchannel, NULL, enum_bool_auto, FLAG_BASIC | FLAG_ADVANCED}, 
883         {"server schannel", P_ENUM, P_GLOBAL, &Globals.serverSchannel, NULL, enum_bool_auto, FLAG_BASIC | FLAG_ADVANCED}, 
884         {"allow trusted domains", P_BOOL, P_GLOBAL, &Globals.bAllowTrustedDomains, NULL, NULL, FLAG_ADVANCED}, 
885         {"map to guest", P_ENUM, P_GLOBAL, &Globals.map_to_guest, NULL, enum_map_to_guest, FLAG_ADVANCED}, 
886         {"null passwords", P_BOOL, P_GLOBAL, &Globals.bNullPasswords, NULL, NULL, FLAG_ADVANCED}, 
887         {"obey pam restrictions", P_BOOL, P_GLOBAL, &Globals.bObeyPamRestrictions, NULL, NULL, FLAG_ADVANCED}, 
888         {"password server", P_STRING, P_GLOBAL, &Globals.szPasswordServer, NULL, NULL, FLAG_ADVANCED | FLAG_WIZARD}, 
889         {"smb passwd file", P_STRING, P_GLOBAL, &Globals.szSMBPasswdFile, NULL, NULL, FLAG_ADVANCED}, 
890         {"private dir", P_STRING, P_GLOBAL, &Globals.szPrivateDir, NULL, NULL, FLAG_ADVANCED}, 
891         {"passdb backend", P_STRING, P_GLOBAL, &Globals.szPassdbBackend, NULL, NULL, FLAG_ADVANCED | FLAG_WIZARD}, 
892         {"algorithmic rid base", P_INTEGER, P_GLOBAL, &Globals.AlgorithmicRidBase, NULL, NULL, FLAG_ADVANCED}, 
893         {"root directory", P_STRING, P_GLOBAL, &Globals.szRootdir, NULL, NULL, FLAG_ADVANCED}, 
894         {"root dir", P_STRING, P_GLOBAL, &Globals.szRootdir, NULL, NULL, FLAG_HIDE}, 
895         {"root", P_STRING, P_GLOBAL, &Globals.szRootdir, NULL, NULL, FLAG_HIDE}, 
896         {"guest account", P_STRING, P_GLOBAL, &Globals.szGuestaccount, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED}, 
897         {"enable privileges", P_BOOL, P_GLOBAL, &Globals.bEnablePrivileges, NULL, NULL, FLAG_ADVANCED}, 
898
899         {"pam password change", P_BOOL, P_GLOBAL, &Globals.bPamPasswordChange, NULL, NULL, FLAG_ADVANCED}, 
900         {"passwd program", P_STRING, P_GLOBAL, &Globals.szPasswdProgram, NULL, NULL, FLAG_ADVANCED}, 
901         {"passwd chat", P_STRING, P_GLOBAL, &Globals.szPasswdChat, NULL, NULL, FLAG_ADVANCED}, 
902         {"passwd chat debug", P_BOOL, P_GLOBAL, &Globals.bPasswdChatDebug, NULL, NULL, FLAG_ADVANCED}, 
903         {"passwd chat timeout", P_INTEGER, P_GLOBAL, &Globals.iPasswdChatTimeout, NULL, NULL, FLAG_ADVANCED}, 
904         {"check password script", P_STRING, P_GLOBAL, &Globals.szCheckPasswordScript, NULL, NULL, FLAG_ADVANCED}, 
905         {"username map", P_STRING, P_GLOBAL, &Globals.szUsernameMap, NULL, NULL, FLAG_ADVANCED}, 
906         {"password level", P_INTEGER, P_GLOBAL, &Globals.pwordlevel, NULL, NULL, FLAG_ADVANCED}, 
907         {"username level", P_INTEGER, P_GLOBAL, &Globals.unamelevel, NULL, NULL, FLAG_ADVANCED}, 
908         {"unix password sync", P_BOOL, P_GLOBAL, &Globals.bUnixPasswdSync, NULL, NULL, FLAG_ADVANCED}, 
909         {"restrict anonymous", P_INTEGER, P_GLOBAL, &Globals.restrict_anonymous, NULL, NULL, FLAG_ADVANCED}, 
910         {"lanman auth", P_BOOL, P_GLOBAL, &Globals.bLanmanAuth, NULL, NULL, FLAG_ADVANCED}, 
911         {"ntlm auth", P_BOOL, P_GLOBAL, &Globals.bNTLMAuth, NULL, NULL, FLAG_ADVANCED}, 
912         {"client NTLMv2 auth", P_BOOL, P_GLOBAL, &Globals.bClientNTLMv2Auth, NULL, NULL, FLAG_ADVANCED}, 
913         {"client lanman auth", P_BOOL, P_GLOBAL, &Globals.bClientLanManAuth, NULL, NULL, FLAG_ADVANCED}, 
914         {"client plaintext auth", P_BOOL, P_GLOBAL, &Globals.bClientPlaintextAuth, NULL, NULL, FLAG_ADVANCED}, 
915
916         {"username", P_STRING, P_LOCAL, &sDefault.szUsername, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
917         {"user", P_STRING, P_LOCAL, &sDefault.szUsername, NULL, NULL, FLAG_HIDE}, 
918         {"users", P_STRING, P_LOCAL, &sDefault.szUsername, NULL, NULL, FLAG_HIDE}, 
919
920         {"invalid users", P_LIST, P_LOCAL, &sDefault.szInvalidUsers, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
921         {"valid users", P_LIST, P_LOCAL, &sDefault.szValidUsers, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
922         {"admin users", P_LIST, P_LOCAL, &sDefault.szAdminUsers, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
923         {"read list", P_LIST, P_LOCAL, &sDefault.readlist, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
924         {"write list", P_LIST, P_LOCAL, &sDefault.writelist, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
925         {"printer admin", P_LIST, P_LOCAL, &sDefault.printer_admin, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_PRINT | FLAG_DEPRECATED }, 
926         {"force user", P_STRING, P_LOCAL, &sDefault.force_user, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
927         {"force group", P_STRING, P_LOCAL, &sDefault.force_group, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
928         {"group", P_STRING, P_LOCAL, &sDefault.force_group, NULL, NULL, FLAG_ADVANCED}, 
929
930         {"read only", P_BOOL, P_LOCAL, &sDefault.bRead_only, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE}, 
931         {"write ok", P_BOOLREV, P_LOCAL, &sDefault.bRead_only, NULL, NULL, FLAG_HIDE}, 
932         {"writeable", P_BOOLREV, P_LOCAL, &sDefault.bRead_only, NULL, NULL, FLAG_HIDE}, 
933         {"writable", P_BOOLREV, P_LOCAL, &sDefault.bRead_only, NULL, NULL, FLAG_HIDE}, 
934
935         {"acl check permissions", P_BOOL, P_LOCAL, &sDefault.bAclCheckPermissions, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE},
936         {"acl group control", P_BOOL, P_LOCAL, &sDefault.bAclGroupControl, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE | FLAG_DEPRECATED },
937         {"acl map full control", P_BOOL, P_LOCAL, &sDefault.bAclMapFullControl, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE},
938         {"create mask", P_OCTAL, P_LOCAL, &sDefault.iCreate_mask, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
939         {"create mode", P_OCTAL, P_LOCAL, &sDefault.iCreate_mask, NULL, NULL, FLAG_HIDE}, 
940         {"force create mode", P_OCTAL, P_LOCAL, &sDefault.iCreate_force_mode, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
941         {"security mask", P_OCTAL, P_LOCAL, &sDefault.iSecurity_mask, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
942         {"force security mode", P_OCTAL, P_LOCAL, &sDefault.iSecurity_force_mode, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
943         {"directory mask", P_OCTAL, P_LOCAL, &sDefault.iDir_mask, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
944         {"directory mode", P_OCTAL, P_LOCAL, &sDefault.iDir_mask, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
945         {"force directory mode", P_OCTAL, P_LOCAL, &sDefault.iDir_force_mode, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
946         {"directory security mask", P_OCTAL, P_LOCAL, &sDefault.iDir_Security_mask, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
947         {"force directory security mode", P_OCTAL, P_LOCAL, &sDefault.iDir_Security_force_mode, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
948         {"force unknown acl user", P_BOOL, P_LOCAL, &sDefault.bForceUnknownAclUser, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE},
949         {"inherit permissions", P_BOOL, P_LOCAL, &sDefault.bInheritPerms, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
950         {"inherit acls", P_BOOL, P_LOCAL, &sDefault.bInheritACLS, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
951         {"inherit owner", P_BOOL, P_LOCAL, &sDefault.bInheritOwner, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
952         {"guest only", P_BOOL, P_LOCAL, &sDefault.bGuest_only, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
953         {"only guest", P_BOOL, P_LOCAL, &sDefault.bGuest_only, NULL, NULL, FLAG_HIDE}, 
954
955         {"guest ok", P_BOOL, P_LOCAL, &sDefault.bGuest_ok, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
956         {"public", P_BOOL, P_LOCAL, &sDefault.bGuest_ok, NULL, NULL, FLAG_HIDE}, 
957
958         {"only user", P_BOOL, P_LOCAL, &sDefault.bOnlyUser, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_DEPRECATED}, 
959         {"hosts allow", P_LIST, P_LOCAL, &sDefault.szHostsallow, NULL, NULL, FLAG_GLOBAL | FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
960         {"allow hosts", P_LIST, P_LOCAL, &sDefault.szHostsallow, NULL, NULL, FLAG_HIDE}, 
961         {"hosts deny", P_LIST, P_LOCAL, &sDefault.szHostsdeny, NULL, NULL, FLAG_GLOBAL | FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
962         {"deny hosts", P_LIST, P_LOCAL, &sDefault.szHostsdeny, NULL, NULL, FLAG_HIDE}, 
963         {"preload modules", P_LIST, P_GLOBAL, &Globals.szPreloadModules, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
964         {"use kerberos keytab", P_BOOL, P_GLOBAL, &Globals.bUseKerberosKeytab, NULL, NULL, FLAG_ADVANCED}, 
965
966         {N_("Logging Options"), P_SEP, P_SEPARATOR}, 
967
968         {"log level", P_STRING, P_GLOBAL, &Globals.szLogLevel, handle_debug_list, NULL, FLAG_ADVANCED}, 
969         {"debuglevel", P_STRING, P_GLOBAL, &Globals.szLogLevel, handle_debug_list, NULL, FLAG_HIDE}, 
970         {"syslog", P_INTEGER, P_GLOBAL, &Globals.syslog, NULL, NULL, FLAG_ADVANCED}, 
971         {"syslog only", P_BOOL, P_GLOBAL, &Globals.bSyslogOnly, NULL, NULL, FLAG_ADVANCED}, 
972         {"log file", P_STRING, P_GLOBAL, &Globals.szLogFile, NULL, NULL, FLAG_ADVANCED}, 
973
974         {"max log size", P_INTEGER, P_GLOBAL, &Globals.max_log_size, NULL, NULL, FLAG_ADVANCED}, 
975         {"debug timestamp", P_BOOL, P_GLOBAL, &Globals.bTimestampLogs, NULL, NULL, FLAG_ADVANCED}, 
976         {"timestamp logs", P_BOOL, P_GLOBAL, &Globals.bTimestampLogs, NULL, NULL, FLAG_ADVANCED}, 
977         {"debug prefix timestamp", P_BOOL, P_GLOBAL, &Globals.bDebugPrefixTimestamp, NULL, NULL, FLAG_ADVANCED}, 
978         {"debug hires timestamp", P_BOOL, P_GLOBAL, &Globals.bDebugHiresTimestamp, NULL, NULL, FLAG_ADVANCED}, 
979         {"debug pid", P_BOOL, P_GLOBAL, &Globals.bDebugPid, NULL, NULL, FLAG_ADVANCED}, 
980         {"debug uid", P_BOOL, P_GLOBAL, &Globals.bDebugUid, NULL, NULL, FLAG_ADVANCED}, 
981         {"enable core files", P_BOOL, P_GLOBAL, &Globals.bEnableCoreFiles, NULL, NULL, FLAG_ADVANCED},
982
983         {N_("Protocol Options"), P_SEP, P_SEPARATOR}, 
984
985         {"allocation roundup size", P_INTEGER, P_LOCAL, &sDefault.iallocation_roundup_size, NULL, NULL, FLAG_ADVANCED}, 
986         {"aio read size", P_INTEGER, P_LOCAL, &sDefault.iAioReadSize, NULL, NULL, FLAG_ADVANCED}, 
987         {"aio write size", P_INTEGER, P_LOCAL, &sDefault.iAioWriteSize, NULL, NULL, FLAG_ADVANCED}, 
988         {"smb ports", P_STRING, P_GLOBAL, &Globals.smb_ports, NULL, NULL, FLAG_ADVANCED}, 
989         {"large readwrite", P_BOOL, P_GLOBAL, &Globals.bLargeReadwrite, NULL, NULL, FLAG_ADVANCED}, 
990         {"max protocol", P_ENUM, P_GLOBAL, &Globals.maxprotocol, NULL, enum_protocol, FLAG_ADVANCED}, 
991         {"protocol", P_ENUM, P_GLOBAL, &Globals.maxprotocol, NULL, enum_protocol, FLAG_ADVANCED}, 
992         {"min protocol", P_ENUM, P_GLOBAL, &Globals.minprotocol, NULL, enum_protocol, FLAG_ADVANCED}, 
993         {"read raw", P_BOOL, P_GLOBAL, &Globals.bReadRaw, NULL, NULL, FLAG_ADVANCED}, 
994         {"write raw", P_BOOL, P_GLOBAL, &Globals.bWriteRaw, NULL, NULL, FLAG_ADVANCED}, 
995         {"disable netbios", P_BOOL, P_GLOBAL, &Globals.bDisableNetbios, NULL, NULL, FLAG_ADVANCED}, 
996         {"reset on zero vc", P_BOOL, P_GLOBAL, &Globals.bResetOnZeroVC, NULL, NULL, FLAG_ADVANCED}, 
997
998         {"acl compatibility", P_ENUM, P_GLOBAL, &Globals.iAclCompat, NULL,  enum_acl_compat_vals, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
999         {"defer sharing violations", P_BOOL, P_GLOBAL, &Globals.bDeferSharingViolations, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL},
1000         {"ea support", P_BOOL, P_LOCAL, &sDefault.bEASupport, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1001         {"nt acl support", P_BOOL, P_LOCAL, &sDefault.bNTAclSupport, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1002         {"nt pipe support", P_BOOL, P_GLOBAL, &Globals.bNTPipeSupport, NULL, NULL, FLAG_ADVANCED}, 
1003         {"nt status support", P_BOOL, P_GLOBAL, &Globals.bNTStatusSupport, NULL, NULL, FLAG_ADVANCED}, 
1004         {"profile acls", P_BOOL, P_LOCAL, &sDefault.bProfileAcls, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
1005
1006         {"announce version", P_STRING, P_GLOBAL, &Globals.szAnnounceVersion, NULL, NULL, FLAG_ADVANCED}, 
1007         {"announce as", P_ENUM, P_GLOBAL, &Globals.announce_as, NULL, enum_announce_as,  FLAG_ADVANCED}, 
1008         {"map acl inherit", P_BOOL, P_LOCAL, &sDefault.bMap_acl_inherit, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1009         {"afs share", P_BOOL, P_LOCAL, &sDefault.bAfs_Share, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL},
1010         {"max mux", P_INTEGER, P_GLOBAL, &Globals.max_mux, NULL, NULL, FLAG_ADVANCED}, 
1011         {"max xmit", P_INTEGER, P_GLOBAL, &Globals.max_xmit, NULL, NULL, FLAG_ADVANCED}, 
1012
1013         {"name resolve order", P_STRING, P_GLOBAL, &Globals.szNameResolveOrder, NULL, NULL, FLAG_ADVANCED | FLAG_WIZARD}, 
1014         {"max ttl", P_INTEGER, P_GLOBAL, &Globals.max_ttl, NULL, NULL, FLAG_ADVANCED}, 
1015         {"max wins ttl", P_INTEGER, P_GLOBAL, &Globals.max_wins_ttl, NULL, NULL, FLAG_ADVANCED}, 
1016         {"min wins ttl", P_INTEGER, P_GLOBAL, &Globals.min_wins_ttl, NULL, NULL, FLAG_ADVANCED}, 
1017         {"time server", P_BOOL, P_GLOBAL, &Globals.bTimeServer, NULL, NULL, FLAG_ADVANCED}, 
1018         {"unix extensions", P_BOOL, P_GLOBAL, &Globals.bUnixExtensions, NULL, NULL, FLAG_ADVANCED}, 
1019         {"use spnego", P_BOOL, P_GLOBAL, &Globals.bUseSpnego, NULL, NULL, FLAG_ADVANCED}, 
1020         {"client signing", P_ENUM, P_GLOBAL, &Globals.client_signing, NULL, enum_smb_signing_vals, FLAG_ADVANCED}, 
1021         {"server signing", P_ENUM, P_GLOBAL, &Globals.server_signing, NULL, enum_smb_signing_vals, FLAG_ADVANCED}, 
1022         {"client use spnego", P_BOOL, P_GLOBAL, &Globals.bClientUseSpnego, NULL, NULL, FLAG_ADVANCED}, 
1023         {"client ldap sasl wrapping", P_ENUM, P_GLOBAL, &Globals.client_ldap_sasl_wrapping, NULL, enum_ldap_sasl_wrapping, FLAG_ADVANCED},
1024         {"enable asu support", P_BOOL, P_GLOBAL, &Globals.bASUSupport, NULL, NULL, FLAG_ADVANCED}, 
1025         {"svcctl list", P_LIST, P_GLOBAL, &Globals.szServicesList, NULL, NULL, FLAG_ADVANCED},
1026
1027         {N_("Tuning Options"), P_SEP, P_SEPARATOR}, 
1028
1029         {"block size", P_INTEGER, P_LOCAL, &sDefault.iBlock_size, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1030         {"deadtime", P_INTEGER, P_GLOBAL, &Globals.deadtime, NULL, NULL, FLAG_ADVANCED}, 
1031         {"getwd cache", P_BOOL, P_GLOBAL, &use_getwd_cache, NULL, NULL, FLAG_ADVANCED}, 
1032         {"keepalive", P_INTEGER, P_GLOBAL, &Globals.iKeepalive, NULL, NULL, FLAG_ADVANCED}, 
1033         {"change notify", P_BOOL, P_LOCAL, &sDefault.bChangeNotify, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE },
1034         {"kernel change notify", P_BOOL, P_LOCAL, &sDefault.bKernelChangeNotify, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE },
1035
1036         {"lpq cache time", P_INTEGER, P_GLOBAL, &Globals.lpqcachetime, NULL, NULL, FLAG_ADVANCED}, 
1037         {"max smbd processes", P_INTEGER, P_GLOBAL, &Globals.iMaxSmbdProcesses, NULL, NULL, FLAG_ADVANCED}, 
1038         {"max connections", P_INTEGER, P_LOCAL, &sDefault.iMaxConnections, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1039         {"paranoid server security", P_BOOL, P_GLOBAL, &Globals.paranoid_server_security, NULL, NULL, FLAG_ADVANCED}, 
1040         {"max disk size", P_INTEGER, P_GLOBAL, &Globals.maxdisksize, NULL, NULL, FLAG_ADVANCED}, 
1041         {"max open files", P_INTEGER, P_GLOBAL, &Globals.max_open_files, NULL, NULL, FLAG_ADVANCED}, 
1042         {"min print space", P_INTEGER, P_LOCAL, &sDefault.iMinPrintSpace, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1043
1044         {"socket options", P_GSTRING, P_GLOBAL, user_socket_options, NULL, NULL, FLAG_ADVANCED}, 
1045         {"strict allocate", P_BOOL, P_LOCAL, &sDefault.bStrictAllocate, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1046         {"strict sync", P_BOOL, P_LOCAL, &sDefault.bStrictSync, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1047         {"sync always", P_BOOL, P_LOCAL, &sDefault.bSyncAlways, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1048         {"use mmap", P_BOOL, P_GLOBAL, &Globals.bUseMmap, NULL, NULL, FLAG_ADVANCED}, 
1049         {"use sendfile", P_BOOL, P_LOCAL, &sDefault.bUseSendfile, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1050         {"hostname lookups", P_BOOL, P_GLOBAL, &Globals.bHostnameLookups, NULL, NULL, FLAG_ADVANCED}, 
1051         {"write cache size", P_INTEGER, P_LOCAL, &sDefault.iWriteCacheSize, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_DEPRECATED}, 
1052
1053         {"name cache timeout", P_INTEGER, P_GLOBAL, &Globals.name_cache_timeout, NULL, NULL, FLAG_ADVANCED}, 
1054         {"ctdbd socket", P_STRING, P_GLOBAL, &Globals.ctdbdSocket, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1055         {"cluster addresses", P_LIST, P_GLOBAL, &Globals.szClusterAddresses, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1056         {"clustering", P_BOOL, P_GLOBAL, &Globals.clustering, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1057
1058         {N_("Printing Options"), P_SEP, P_SEPARATOR}, 
1059
1060         {"max reported print jobs", P_INTEGER, P_LOCAL, &sDefault.iMaxReportedPrintJobs, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1061         {"max print jobs", P_INTEGER, P_LOCAL, &sDefault.iMaxPrintJobs, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1062         {"load printers", P_BOOL, P_GLOBAL, &Globals.bLoadPrinters, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1063         {"printcap cache time", P_INTEGER, P_GLOBAL, &Globals.PrintcapCacheTime, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1064         {"printcap name", P_STRING, P_GLOBAL, &Globals.szPrintcapname, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1065         {"printcap", P_STRING, P_GLOBAL, &Globals.szPrintcapname, NULL, NULL, FLAG_HIDE}, 
1066         {"printable", P_BOOL, P_LOCAL, &sDefault.bPrint_ok, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1067         {"print ok", P_BOOL, P_LOCAL, &sDefault.bPrint_ok, NULL, NULL, FLAG_HIDE}, 
1068         {"printing", P_ENUM, P_LOCAL, &sDefault.iPrinting, handle_printing, enum_printing, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1069         {"cups options", P_STRING, P_LOCAL, &sDefault.szCupsOptions, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1070         {"cups server", P_STRING, P_GLOBAL, &Globals.szCupsServer, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1071         {"iprint server", P_STRING, P_GLOBAL, &Globals.szIPrintServer, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1072         {"print command", P_STRING, P_LOCAL, &sDefault.szPrintcommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1073         {"disable spoolss", P_BOOL, P_GLOBAL, &Globals.bDisableSpoolss, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1074         {"enable spoolss", P_BOOLREV, P_GLOBAL, &Globals.bDisableSpoolss, NULL, NULL, FLAG_HIDE}, 
1075         {"lpq command", P_STRING, P_LOCAL, &sDefault.szLpqcommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1076         {"lprm command", P_STRING, P_LOCAL, &sDefault.szLprmcommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1077         {"lppause command", P_STRING, P_LOCAL, &sDefault.szLppausecommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1078         {"lpresume command", P_STRING, P_LOCAL, &sDefault.szLpresumecommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1079         {"queuepause command", P_STRING, P_LOCAL, &sDefault.szQueuepausecommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1080         {"queueresume command", P_STRING, P_LOCAL, &sDefault.szQueueresumecommand, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT | FLAG_GLOBAL}, 
1081
1082         {"addport command", P_STRING, P_GLOBAL, &Globals.szAddPortCommand, NULL, NULL, FLAG_ADVANCED}, 
1083         {"enumports command", P_STRING, P_GLOBAL, &Globals.szEnumPortsCommand, NULL, NULL, FLAG_ADVANCED}, 
1084         {"addprinter command", P_STRING, P_GLOBAL, &Globals.szAddPrinterCommand, NULL, NULL, FLAG_ADVANCED}, 
1085         {"deleteprinter command", P_STRING, P_GLOBAL, &Globals.szDeletePrinterCommand, NULL, NULL, FLAG_ADVANCED}, 
1086         {"show add printer wizard", P_BOOL, P_GLOBAL, &Globals.bMsAddPrinterWizard, NULL, NULL, FLAG_ADVANCED}, 
1087         {"os2 driver map", P_STRING, P_GLOBAL, &Globals.szOs2DriverMap, NULL, NULL, FLAG_ADVANCED}, 
1088
1089         {"printer name", P_STRING, P_LOCAL, &sDefault.szPrintername, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1090         {"printer", P_STRING, P_LOCAL, &sDefault.szPrintername, NULL, NULL, FLAG_HIDE}, 
1091         {"use client driver", P_BOOL, P_LOCAL, &sDefault.bUseClientDriver, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1092         {"default devmode", P_BOOL, P_LOCAL, &sDefault.bDefaultDevmode, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1093         {"force printername", P_BOOL, P_LOCAL, &sDefault.bForcePrintername, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT}, 
1094         {"printjob username", P_STRING, P_LOCAL, &sDefault.szPrintjobUsername, NULL, NULL, FLAG_ADVANCED | FLAG_PRINT},
1095
1096         {N_("Filename Handling"), P_SEP, P_SEPARATOR}, 
1097         {"mangling method", P_STRING, P_GLOBAL, &Globals.szManglingMethod, NULL, NULL, FLAG_ADVANCED}, 
1098         {"mangle prefix", P_INTEGER, P_GLOBAL, &Globals.mangle_prefix, NULL, NULL, FLAG_ADVANCED}, 
1099
1100         {"default case", P_ENUM, P_LOCAL, &sDefault.iDefaultCase, NULL, enum_case, FLAG_ADVANCED | FLAG_SHARE}, 
1101         {"case sensitive", P_ENUM, P_LOCAL, &sDefault.iCaseSensitive, NULL, enum_bool_auto, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1102         {"casesignames", P_ENUM, P_LOCAL, &sDefault.iCaseSensitive, NULL, enum_bool_auto, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL | FLAG_HIDE}, 
1103         {"preserve case", P_BOOL, P_LOCAL, &sDefault.bCasePreserve, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1104         {"short preserve case", P_BOOL, P_LOCAL, &sDefault.bShortCasePreserve, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1105         {"mangling char", P_CHAR, P_LOCAL, &sDefault.magic_char, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1106         {"hide dot files", P_BOOL, P_LOCAL, &sDefault.bHideDotFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1107         {"hide special files", P_BOOL, P_LOCAL, &sDefault.bHideSpecialFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1108         {"hide unreadable", P_BOOL, P_LOCAL, &sDefault.bHideUnReadable, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1109         {"hide unwriteable files", P_BOOL, P_LOCAL, &sDefault.bHideUnWriteableFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1110         {"delete veto files", P_BOOL, P_LOCAL, &sDefault.bDeleteVetoFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1111         {"veto files", P_STRING, P_LOCAL, &sDefault.szVetoFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL }, 
1112         {"hide files", P_STRING, P_LOCAL, &sDefault.szHideFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL }, 
1113         {"veto oplock files", P_STRING, P_LOCAL, &sDefault.szVetoOplockFiles, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL }, 
1114         {"map archive", P_BOOL, P_LOCAL, &sDefault.bMap_archive, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1115         {"map hidden", P_BOOL, P_LOCAL, &sDefault.bMap_hidden, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1116         {"map system", P_BOOL, P_LOCAL, &sDefault.bMap_system, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1117         {"map readonly", P_ENUM, P_LOCAL, &sDefault.iMap_readonly, NULL, enum_map_readonly, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1118         {"mangled names", P_BOOL, P_LOCAL, &sDefault.bMangledNames, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1119         {"mangled map", P_STRING, P_LOCAL, &sDefault.szMangledMap, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL | FLAG_DEPRECATED }, 
1120         {"max stat cache size", P_INTEGER, P_GLOBAL, &Globals.iMaxStatCacheSize, NULL, NULL, FLAG_ADVANCED}, 
1121         {"stat cache", P_BOOL, P_GLOBAL, &Globals.bStatCache, NULL, NULL, FLAG_ADVANCED}, 
1122         {"store dos attributes", P_BOOL, P_LOCAL, &sDefault.bStoreDosAttributes, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1123         {"dmapi support", P_BOOL, P_LOCAL, &sDefault.bDmapiSupport, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL},
1124
1125
1126         {N_("Domain Options"), P_SEP, P_SEPARATOR}, 
1127
1128         {"machine password timeout", P_INTEGER, P_GLOBAL, &Globals.machine_password_timeout, NULL, NULL, FLAG_ADVANCED | FLAG_WIZARD}, 
1129
1130         {N_("Logon Options"), P_SEP, P_SEPARATOR}, 
1131
1132         {"add user script", P_STRING, P_GLOBAL, &Globals.szAddUserScript, NULL, NULL, FLAG_ADVANCED}, 
1133         {"rename user script", P_STRING, P_GLOBAL, &Globals.szRenameUserScript, NULL, NULL, FLAG_ADVANCED},
1134         {"delete user script", P_STRING, P_GLOBAL, &Globals.szDelUserScript, NULL, NULL, FLAG_ADVANCED}, 
1135         {"add group script", P_STRING, P_GLOBAL, &Globals.szAddGroupScript, NULL, NULL, FLAG_ADVANCED}, 
1136         {"delete group script", P_STRING, P_GLOBAL, &Globals.szDelGroupScript, NULL, NULL, FLAG_ADVANCED}, 
1137         {"add user to group script", P_STRING, P_GLOBAL, &Globals.szAddUserToGroupScript, NULL, NULL, FLAG_ADVANCED}, 
1138         {"delete user from group script", P_STRING, P_GLOBAL, &Globals.szDelUserFromGroupScript, NULL, NULL, FLAG_ADVANCED}, 
1139         {"set primary group script", P_STRING, P_GLOBAL, &Globals.szSetPrimaryGroupScript, NULL, NULL, FLAG_ADVANCED}, 
1140         {"add machine script", P_STRING, P_GLOBAL, &Globals.szAddMachineScript, NULL, NULL, FLAG_ADVANCED}, 
1141         {"shutdown script", P_STRING, P_GLOBAL, &Globals.szShutdownScript, NULL, NULL, FLAG_ADVANCED}, 
1142         {"abort shutdown script", P_STRING, P_GLOBAL, &Globals.szAbortShutdownScript, NULL, NULL, FLAG_ADVANCED}, 
1143         {"username map script", P_STRING, P_GLOBAL, &Globals.szUsernameMapScript, NULL, NULL, FLAG_ADVANCED}, 
1144
1145         {"logon script", P_STRING, P_GLOBAL, &Globals.szLogonScript, NULL, NULL, FLAG_ADVANCED}, 
1146         {"logon path", P_STRING, P_GLOBAL, &Globals.szLogonPath, NULL, NULL, FLAG_ADVANCED}, 
1147         {"logon drive", P_STRING, P_GLOBAL, &Globals.szLogonDrive, NULL, NULL, FLAG_ADVANCED}, 
1148         {"logon home", P_STRING, P_GLOBAL, &Globals.szLogonHome, NULL, NULL, FLAG_ADVANCED}, 
1149         {"domain logons", P_BOOL, P_GLOBAL, &Globals.bDomainLogons, NULL, NULL, FLAG_ADVANCED}, 
1150
1151         {N_("Browse Options"), P_SEP, P_SEPARATOR}, 
1152
1153         {"os level", P_INTEGER, P_GLOBAL, &Globals.os_level, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED}, 
1154         {"lm announce", P_ENUM, P_GLOBAL, &Globals.lm_announce, NULL, enum_bool_auto, FLAG_ADVANCED}, 
1155         {"lm interval", P_INTEGER, P_GLOBAL, &Globals.lm_interval, NULL, NULL, FLAG_ADVANCED}, 
1156         {"preferred master", P_ENUM, P_GLOBAL, &Globals.bPreferredMaster, NULL, enum_bool_auto, FLAG_BASIC | FLAG_ADVANCED}, 
1157         {"prefered master", P_ENUM, P_GLOBAL, &Globals.bPreferredMaster, NULL, enum_bool_auto, FLAG_HIDE}, 
1158         {"local master", P_BOOL, P_GLOBAL, &Globals.bLocalMaster, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED}, 
1159         {"domain master", P_ENUM, P_GLOBAL, &Globals.bDomainMaster, NULL, enum_bool_auto, FLAG_BASIC | FLAG_ADVANCED}, 
1160         {"browse list", P_BOOL, P_GLOBAL, &Globals.bBrowseList, NULL, NULL, FLAG_ADVANCED}, 
1161         {"browseable", P_BOOL, P_LOCAL, &sDefault.bBrowseable, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1162         {"browsable", P_BOOL, P_LOCAL, &sDefault.bBrowseable, NULL, NULL, FLAG_HIDE}, 
1163         {"enhanced browsing", P_BOOL, P_GLOBAL, &Globals.enhanced_browsing, NULL, NULL, FLAG_ADVANCED}, 
1164
1165         {N_("WINS Options"), P_SEP, P_SEPARATOR}, 
1166
1167         {"dns proxy", P_BOOL, P_GLOBAL, &Globals.bDNSproxy, NULL, NULL, FLAG_ADVANCED}, 
1168         {"wins proxy", P_BOOL, P_GLOBAL, &Globals.bWINSproxy, NULL, NULL, FLAG_ADVANCED}, 
1169
1170         {"wins server", P_LIST, P_GLOBAL, &Globals.szWINSservers, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
1171         {"wins support", P_BOOL, P_GLOBAL, &Globals.bWINSsupport, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_WIZARD}, 
1172         {"wins hook", P_STRING, P_GLOBAL, &Globals.szWINSHook, NULL, NULL, FLAG_ADVANCED}, 
1173
1174         {N_("Locking Options"), P_SEP, P_SEPARATOR}, 
1175
1176         {"blocking locks", P_BOOL, P_LOCAL, &sDefault.bBlockingLocks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1177         {"csc policy", P_ENUM, P_LOCAL, &sDefault.iCSCPolicy, NULL, enum_csc_policy, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1178         {"fake oplocks", P_BOOL, P_LOCAL, &sDefault.bFakeOplocks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1179         {"kernel oplocks", P_BOOL, P_GLOBAL, &Globals.bKernelOplocks, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1180         {"locking", P_BOOL, P_LOCAL, &sDefault.bLocking, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1181         {"lock spin time", P_INTEGER, P_GLOBAL, &Globals.iLockSpinTime, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1182
1183         {"oplocks", P_BOOL, P_LOCAL, &sDefault.bOpLocks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1184         {"level2 oplocks", P_BOOL, P_LOCAL, &sDefault.bLevel2OpLocks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1185         {"oplock break wait time", P_INTEGER, P_GLOBAL, &Globals.oplock_break_wait_time, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL}, 
1186         {"oplock contention limit", P_INTEGER, P_LOCAL, &sDefault.iOplockContentionLimit, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1187         {"posix locking", P_BOOL, P_LOCAL, &sDefault.bPosixLocking, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1188         {"strict locking", P_ENUM, P_LOCAL, &sDefault.iStrictLocking, NULL, enum_bool_auto, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1189         {"share modes", P_BOOL, P_LOCAL,  &sDefault.bShareModes, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1190
1191         {N_("Ldap Options"), P_SEP, P_SEPARATOR}, 
1192
1193         {"ldap admin dn", P_STRING, P_GLOBAL, &Globals.szLdapAdminDn, NULL, NULL, FLAG_ADVANCED}, 
1194         {"ldap delete dn", P_BOOL, P_GLOBAL, &Globals.ldap_delete_dn, NULL, NULL, FLAG_ADVANCED}, 
1195         {"ldap group suffix", P_STRING, P_GLOBAL, &Globals.szLdapGroupSuffix, NULL, NULL, FLAG_ADVANCED}, 
1196         {"ldap idmap suffix", P_STRING, P_GLOBAL, &Globals.szLdapIdmapSuffix, NULL, NULL, FLAG_ADVANCED}, 
1197         {"ldap machine suffix", P_STRING, P_GLOBAL, &Globals.szLdapMachineSuffix, NULL, NULL, FLAG_ADVANCED}, 
1198         {"ldap passwd sync", P_ENUM, P_GLOBAL, &Globals.ldap_passwd_sync, NULL, enum_ldap_passwd_sync, FLAG_ADVANCED}, 
1199         {"ldap password sync", P_ENUM, P_GLOBAL, &Globals.ldap_passwd_sync, NULL, enum_ldap_passwd_sync, FLAG_HIDE}, 
1200         {"ldap replication sleep", P_INTEGER, P_GLOBAL, &Globals.ldap_replication_sleep, NULL, NULL, FLAG_ADVANCED},
1201         {"ldap suffix", P_STRING, P_GLOBAL, &Globals.szLdapSuffix, NULL, NULL, FLAG_ADVANCED}, 
1202         {"ldap ssl", P_ENUM, P_GLOBAL, &Globals.ldap_ssl, NULL, enum_ldap_ssl, FLAG_ADVANCED}, 
1203         {"ldap timeout", P_INTEGER, P_GLOBAL, &Globals.ldap_timeout, NULL, NULL, FLAG_ADVANCED},
1204         {"ldap page size", P_INTEGER, P_GLOBAL, &Globals.ldap_page_size, NULL, NULL, FLAG_ADVANCED},
1205         {"ldap user suffix", P_STRING, P_GLOBAL, &Globals.szLdapUserSuffix, NULL, NULL, FLAG_ADVANCED}, 
1206
1207         {N_("Miscellaneous Options"), P_SEP, P_SEPARATOR}, 
1208         {"add share command", P_STRING, P_GLOBAL, &Globals.szAddShareCommand, NULL, NULL, FLAG_ADVANCED}, 
1209         {"change share command", P_STRING, P_GLOBAL, &Globals.szChangeShareCommand, NULL, NULL, FLAG_ADVANCED}, 
1210         {"delete share command", P_STRING, P_GLOBAL, &Globals.szDeleteShareCommand, NULL, NULL, FLAG_ADVANCED}, 
1211
1212         {N_("EventLog Options"), P_SEP, P_SEPARATOR}, 
1213         {"eventlog list",  P_LIST, P_GLOBAL, &Globals.szEventLogs, NULL, NULL, FLAG_ADVANCED | FLAG_GLOBAL | FLAG_SHARE}, 
1214         
1215         {"config file", P_STRING, P_GLOBAL, &Globals.szConfigFile, NULL, NULL, FLAG_HIDE}, 
1216         {"preload", P_STRING, P_GLOBAL, &Globals.szAutoServices, NULL, NULL, FLAG_ADVANCED}, 
1217         {"auto services", P_STRING, P_GLOBAL, &Globals.szAutoServices, NULL, NULL, FLAG_ADVANCED}, 
1218         {"lock directory", P_STRING, P_GLOBAL, &Globals.szLockDir, NULL, NULL, FLAG_ADVANCED}, 
1219         {"lock dir", P_STRING, P_GLOBAL, &Globals.szLockDir, NULL, NULL, FLAG_HIDE}, 
1220         {"pid directory", P_STRING, P_GLOBAL, &Globals.szPidDir, NULL, NULL, FLAG_ADVANCED}, 
1221 #ifdef WITH_UTMP
1222         {"utmp directory", P_STRING, P_GLOBAL, &Globals.szUtmpDir, NULL, NULL, FLAG_ADVANCED}, 
1223         {"wtmp directory", P_STRING, P_GLOBAL, &Globals.szWtmpDir, NULL, NULL, FLAG_ADVANCED}, 
1224         {"utmp", P_BOOL, P_GLOBAL, &Globals.bUtmp, NULL, NULL, FLAG_ADVANCED}, 
1225 #endif
1226
1227         {"default service", P_STRING, P_GLOBAL, &Globals.szDefaultService, NULL, NULL, FLAG_ADVANCED}, 
1228         {"default", P_STRING, P_GLOBAL, &Globals.szDefaultService, NULL, NULL, FLAG_ADVANCED}, 
1229         {"message command", P_STRING, P_GLOBAL, &Globals.szMsgCommand, NULL, NULL, FLAG_ADVANCED}, 
1230         {"dfree cache time", P_INTEGER, P_LOCAL, &sDefault.iDfreeCacheTime, NULL, NULL, FLAG_ADVANCED}, 
1231         {"dfree command", P_STRING, P_LOCAL, &sDefault.szDfree, NULL, NULL, FLAG_ADVANCED}, 
1232         {"get quota command", P_STRING, P_GLOBAL, &Globals.szGetQuota, NULL, NULL, FLAG_ADVANCED}, 
1233         {"set quota command", P_STRING, P_GLOBAL, &Globals.szSetQuota, NULL, NULL, FLAG_ADVANCED}, 
1234         {"remote announce", P_STRING, P_GLOBAL, &Globals.szRemoteAnnounce, NULL, NULL, FLAG_ADVANCED}, 
1235         {"remote browse sync", P_STRING, P_GLOBAL, &Globals.szRemoteBrowseSync, NULL, NULL, FLAG_ADVANCED}, 
1236         {"socket address", P_STRING, P_GLOBAL, &Globals.szSocketAddress, NULL, NULL, FLAG_ADVANCED}, 
1237         {"homedir map", P_STRING, P_GLOBAL, &Globals.szNISHomeMapName, NULL, NULL, FLAG_ADVANCED}, 
1238         {"afs username map", P_STRING, P_GLOBAL, &Globals.szAfsUsernameMap, NULL, NULL, FLAG_ADVANCED}, 
1239         {"afs token lifetime", P_INTEGER, P_GLOBAL, &Globals.iAfsTokenLifetime, NULL, NULL, FLAG_ADVANCED},
1240         {"log nt token command", P_STRING, P_GLOBAL, &Globals.szLogNtTokenCommand, NULL, NULL, FLAG_ADVANCED},
1241         {"time offset", P_INTEGER, P_GLOBAL, &extra_time_offset, NULL, NULL, FLAG_ADVANCED}, 
1242         {"NIS homedir", P_BOOL, P_GLOBAL, &Globals.bNISHomeMap, NULL, NULL, FLAG_ADVANCED}, 
1243         {"-valid", P_BOOL, P_LOCAL, &sDefault.valid, NULL, NULL, FLAG_HIDE}, 
1244
1245         {"copy", P_STRING, P_LOCAL, &sDefault.szCopy, handle_copy, NULL, FLAG_HIDE}, 
1246         {"include", P_STRING, P_LOCAL, &sDefault.szInclude, handle_include, NULL, FLAG_HIDE}, 
1247         {"preexec", P_STRING, P_LOCAL, &sDefault.szPreExec, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1248         {"exec", P_STRING, P_LOCAL, &sDefault.szPreExec, NULL, NULL, FLAG_ADVANCED}, 
1249
1250         {"preexec close", P_BOOL, P_LOCAL, &sDefault.bPreexecClose, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1251         {"postexec", P_STRING, P_LOCAL, &sDefault.szPostExec, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1252         {"root preexec", P_STRING, P_LOCAL, &sDefault.szRootPreExec, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1253         {"root preexec close", P_BOOL, P_LOCAL, &sDefault.bRootpreexecClose, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1254         {"root postexec", P_STRING, P_LOCAL, &sDefault.szRootPostExec, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1255         {"available", P_BOOL, P_LOCAL, &sDefault.bAvailable, NULL, NULL, FLAG_BASIC | FLAG_ADVANCED | FLAG_SHARE | FLAG_PRINT}, 
1256         {"registry shares", P_BOOL, P_GLOBAL, &Globals.bRegistryShares, NULL, NULL, FLAG_ADVANCED},
1257         {"usershare allow guests", P_BOOL, P_GLOBAL, &Globals.bUsershareAllowGuests, NULL, NULL, FLAG_ADVANCED},
1258         {"usershare max shares", P_INTEGER, P_GLOBAL, &Globals.iUsershareMaxShares, NULL, NULL, FLAG_ADVANCED},
1259         {"usershare owner only", P_BOOL, P_GLOBAL, &Globals.bUsershareOwnerOnly, NULL, NULL, FLAG_ADVANCED}, 
1260         {"usershare path", P_STRING, P_GLOBAL, &Globals.szUsersharePath, NULL, NULL, FLAG_ADVANCED},
1261         {"usershare prefix allow list", P_LIST, P_GLOBAL, &Globals.szUsersharePrefixAllowList, NULL, NULL, FLAG_ADVANCED}, 
1262         {"usershare prefix deny list", P_LIST, P_GLOBAL, &Globals.szUsersharePrefixDenyList, NULL, NULL, FLAG_ADVANCED}, 
1263         {"usershare template share", P_STRING, P_GLOBAL, &Globals.szUsershareTemplateShare, NULL, NULL, FLAG_ADVANCED},
1264         {"volume", P_STRING, P_LOCAL, &sDefault.volume, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE }, 
1265         {"fstype", P_STRING, P_LOCAL, &sDefault.fstype, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1266         {"set directory", P_BOOLREV, P_LOCAL, &sDefault.bNo_set_dir, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1267         {"wide links", P_BOOL, P_LOCAL, &sDefault.bWidelinks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1268         {"follow symlinks", P_BOOL, P_LOCAL, &sDefault.bSymlinks, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1269         {"dont descend", P_STRING, P_LOCAL, &sDefault.szDontdescend, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1270         {"magic script", P_STRING, P_LOCAL, &sDefault.szMagicScript, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1271         {"magic output", P_STRING, P_LOCAL, &sDefault.szMagicOutput, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1272         {"delete readonly", P_BOOL, P_LOCAL, &sDefault.bDeleteReadonly, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1273         {"dos filemode", P_BOOL, P_LOCAL, &sDefault.bDosFilemode, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1274         {"dos filetimes", P_BOOL, P_LOCAL, &sDefault.bDosFiletimes, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1275         {"dos filetime resolution", P_BOOL, P_LOCAL, &sDefault.bDosFiletimeResolution, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1276
1277         {"fake directory create times", P_BOOL, P_LOCAL, &sDefault.bFakeDirCreateTimes, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE | FLAG_GLOBAL}, 
1278         {"panic action", P_STRING, P_GLOBAL, &Globals.szPanicAction, NULL, NULL, FLAG_ADVANCED}, 
1279
1280         {N_("VFS module options"), P_SEP, P_SEPARATOR}, 
1281
1282         {"vfs objects", P_LIST, P_LOCAL, &sDefault.szVfsObjects, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1283         {"vfs object", P_LIST, P_LOCAL, &sDefault.szVfsObjects, NULL, NULL, FLAG_HIDE}, 
1284
1285
1286         {"msdfs root", P_BOOL, P_LOCAL, &sDefault.bMSDfsRoot, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1287         {"msdfs proxy", P_STRING, P_LOCAL, &sDefault.szMSDfsProxy, NULL, NULL, FLAG_ADVANCED | FLAG_SHARE}, 
1288         {"host msdfs", P_BOOL, P_GLOBAL, &Globals.bHostMSDfs, NULL, NULL, FLAG_ADVANCED}, 
1289
1290         {N_("Winbind options"), P_SEP, P_SEPARATOR}, 
1291
1292         {"passdb expand explicit", P_BOOL, P_GLOBAL, &Globals.bPassdbExpandExplicit, NULL, NULL, FLAG_ADVANCED},
1293         {"idmap domains", P_LIST, P_GLOBAL, &Globals.szIdmapDomains, NULL, NULL, FLAG_ADVANCED}, 
1294         {"idmap backend", P_LIST, P_GLOBAL, &Globals.szIdmapBackend, NULL, NULL, FLAG_ADVANCED }, 
1295         {"idmap alloc backend", P_STRING, P_GLOBAL, &Globals.szIdmapAllocBackend, NULL, NULL, FLAG_ADVANCED}, 
1296         {"idmap cache time", P_INTEGER, P_GLOBAL, &Globals.iIdmapCacheTime, NULL, NULL, FLAG_ADVANCED}, 
1297         {"idmap negative cache time", P_INTEGER, P_GLOBAL, &Globals.iIdmapNegativeCacheTime, NULL, NULL, FLAG_ADVANCED}, 
1298         {"idmap uid", P_STRING, P_GLOBAL, &Globals.szIdmapUID, handle_idmap_uid, NULL, FLAG_ADVANCED }, 
1299         {"winbind uid", P_STRING, P_GLOBAL, &Globals.szIdmapUID, handle_idmap_uid, NULL, FLAG_HIDE }, 
1300         {"idmap gid", P_STRING, P_GLOBAL, &Globals.szIdmapGID, handle_idmap_gid, NULL, FLAG_ADVANCED }, 
1301         {"winbind gid", P_STRING, P_GLOBAL, &Globals.szIdmapGID, handle_idmap_gid, NULL, FLAG_HIDE }, 
1302         {"template homedir", P_STRING, P_GLOBAL, &Globals.szTemplateHomedir, NULL, NULL, FLAG_ADVANCED}, 
1303         {"template shell", P_STRING, P_GLOBAL, &Globals.szTemplateShell, NULL, NULL, FLAG_ADVANCED}, 
1304         {"winbind separator", P_STRING, P_GLOBAL, &Globals.szWinbindSeparator, NULL, NULL, FLAG_ADVANCED}, 
1305         {"winbind cache time", P_INTEGER, P_GLOBAL, &Globals.winbind_cache_time, NULL, NULL, FLAG_ADVANCED}, 
1306         {"winbind enum users", P_BOOL, P_GLOBAL, &Globals.bWinbindEnumUsers, NULL, NULL, FLAG_ADVANCED}, 
1307         {"winbind enum groups", P_BOOL, P_GLOBAL, &Globals.bWinbindEnumGroups, NULL, NULL, FLAG_ADVANCED}, 
1308         {"winbind use default domain", P_BOOL, P_GLOBAL, &Globals.bWinbindUseDefaultDomain, NULL, NULL, FLAG_ADVANCED}, 
1309         {"winbind trusted domains only", P_BOOL, P_GLOBAL, &Globals.bWinbindTrustedDomainsOnly, NULL, NULL, FLAG_ADVANCED}, 
1310         {"winbind nested groups", P_BOOL, P_GLOBAL, &Globals.bWinbindNestedGroups, NULL, NULL, FLAG_ADVANCED}, 
1311         {"winbind expand groups", P_INTEGER, P_GLOBAL, &Globals.winbind_expand_groups, NULL, NULL, FLAG_ADVANCED}, 
1312         {"winbind nss info", P_LIST, P_GLOBAL, &Globals.szWinbindNssInfo, NULL, NULL, FLAG_ADVANCED}, 
1313         {"winbind refresh tickets", P_BOOL, P_GLOBAL, &Globals.bWinbindRefreshTickets, NULL, NULL, FLAG_ADVANCED}, 
1314         {"winbind offline logon", P_BOOL, P_GLOBAL, &Globals.bWinbindOfflineLogon, NULL, NULL, FLAG_ADVANCED},
1315         {"winbind normalize names", P_BOOL, P_GLOBAL, &Globals.bWinbindNormalizeNames, NULL, NULL, FLAG_ADVANCED},
1316         {"winbind rpc only", P_BOOL, P_GLOBAL, &Globals.bWinbindRpcOnly, NULL, NULL, FLAG_ADVANCED},
1317
1318         {NULL,  P_BOOL,  P_NONE,  NULL,  NULL,  NULL,  0}
1319 };
1320
1321 /***************************************************************************
1322  Initialise the sDefault parameter structure for the printer values.
1323 ***************************************************************************/
1324
1325 static void init_printer_values(service *pService)
1326 {
1327         /* choose defaults depending on the type of printing */
1328         switch (pService->iPrinting) {
1329                 case PRINT_BSD:
1330                 case PRINT_AIX:
1331                 case PRINT_LPRNT:
1332                 case PRINT_LPROS2:
1333                         string_set(&pService->szLpqcommand, "lpq -P'%p'");
1334                         string_set(&pService->szLprmcommand, "lprm -P'%p' %j");
1335                         string_set(&pService->szPrintcommand, "lpr -r -P'%p' %s");
1336                         break;
1337
1338                 case PRINT_LPRNG:
1339                 case PRINT_PLP:
1340                         string_set(&pService->szLpqcommand, "lpq -P'%p'");
1341                         string_set(&pService->szLprmcommand, "lprm -P'%p' %j");
1342                         string_set(&pService->szPrintcommand, "lpr -r -P'%p' %s");
1343                         string_set(&pService->szQueuepausecommand, "lpc stop '%p'");
1344                         string_set(&pService->szQueueresumecommand, "lpc start '%p'");
1345                         string_set(&pService->szLppausecommand, "lpc hold '%p' %j");
1346                         string_set(&pService->szLpresumecommand, "lpc release '%p' %j");
1347                         break;
1348
1349                 case PRINT_CUPS:
1350                 case PRINT_IPRINT:
1351 #ifdef HAVE_CUPS
1352                         /* set the lpq command to contain the destination printer
1353                            name only.  This is used by cups_queue_get() */
1354                         string_set(&pService->szLpqcommand, "%p");
1355                         string_set(&pService->szLprmcommand, "");
1356                         string_set(&pService->szPrintcommand, "");
1357                         string_set(&pService->szLppausecommand, "");
1358                         string_set(&pService->szLpresumecommand, "");
1359                         string_set(&pService->szQueuepausecommand, "");
1360                         string_set(&pService->szQueueresumecommand, "");
1361 #else
1362                         string_set(&pService->szLpqcommand, "lpq -P'%p'");
1363                         string_set(&pService->szLprmcommand, "lprm -P'%p' %j");
1364                         string_set(&pService->szPrintcommand, "lpr -P'%p' %s; rm %s");
1365                         string_set(&pService->szLppausecommand, "lp -i '%p-%j' -H hold");
1366                         string_set(&pService->szLpresumecommand, "lp -i '%p-%j' -H resume");
1367                         string_set(&pService->szQueuepausecommand, "disable '%p'");
1368                         string_set(&pService->szQueueresumecommand, "enable '%p'");
1369 #endif /* HAVE_CUPS */
1370                         break;
1371
1372                 case PRINT_SYSV:
1373                 case PRINT_HPUX:
1374                         string_set(&pService->szLpqcommand, "lpstat -o%p");
1375                         string_set(&pService->szLprmcommand, "cancel %p-%j");
1376                         string_set(&pService->szPrintcommand, "lp -c -d%p %s; rm %s");
1377                         string_set(&pService->szQueuepausecommand, "disable %p");
1378                         string_set(&pService->szQueueresumecommand, "enable %p");
1379 #ifndef HPUX
1380                         string_set(&pService->szLppausecommand, "lp -i %p-%j -H hold");
1381                         string_set(&pService->szLpresumecommand, "lp -i %p-%j -H resume");
1382 #endif /* HPUX */
1383                         break;
1384
1385                 case PRINT_QNX:
1386                         string_set(&pService->szLpqcommand, "lpq -P%p");
1387                         string_set(&pService->szLprmcommand, "lprm -P%p %j");
1388                         string_set(&pService->szPrintcommand, "lp -r -P%p %s");
1389                         break;
1390
1391 #ifdef DEVELOPER
1392         case PRINT_TEST:
1393         case PRINT_VLP:
1394                 string_set(&pService->szPrintcommand, "vlp print %p %s");
1395                 string_set(&pService->szLpqcommand, "vlp lpq %p");
1396                 string_set(&pService->szLprmcommand, "vlp lprm %p %j");
1397                 string_set(&pService->szLppausecommand, "vlp lppause %p %j");
1398                 string_set(&pService->szLpresumecommand, "vlp lpresum %p %j");
1399                 string_set(&pService->szQueuepausecommand, "vlp queuepause %p");
1400                 string_set(&pService->szQueueresumecommand, "vlp queueresume %p");
1401                 break;
1402 #endif /* DEVELOPER */
1403
1404         }
1405 }
1406
1407 /***************************************************************************
1408  Initialise the global parameter structure.
1409 ***************************************************************************/
1410
1411 static void init_globals(BOOL first_time_only)
1412 {
1413         static BOOL done_init = False;
1414         pstring s;
1415
1416         /* If requested to initialize only once and we've already done it... */
1417         if (first_time_only && done_init) {
1418                 /* ... then we have nothing more to do */
1419                 return;
1420         }
1421
1422         if (!done_init) {
1423                 int i;
1424
1425                 /* The logfile can be set before this is invoked. Free it if so. */
1426                 if (Globals.szLogFile != NULL) {
1427                         string_free(&Globals.szLogFile);
1428                         Globals.szLogFile = NULL;
1429                 }
1430
1431                 memset((void *)&Globals, '\0', sizeof(Globals));
1432
1433                 for (i = 0; parm_table[i].label; i++)
1434                         if ((parm_table[i].type == P_STRING ||
1435                              parm_table[i].type == P_USTRING) &&
1436                             parm_table[i].ptr)
1437                                 string_set((char **)parm_table[i].ptr, "");
1438
1439                 string_set(&sDefault.fstype, FSTYPE_STRING);
1440                 string_set(&sDefault.szPrintjobUsername, "%U");
1441
1442                 init_printer_values(&sDefault);
1443
1444                 done_init = True;
1445         }
1446
1447
1448         DEBUG(3, ("Initialising global parameters\n"));
1449
1450         string_set(&Globals.szSMBPasswdFile, dyn_SMB_PASSWD_FILE);
1451         string_set(&Globals.szPrivateDir, dyn_PRIVATE_DIR);
1452
1453         /* use the new 'hash2' method by default, with a prefix of 1 */
1454         string_set(&Globals.szManglingMethod, "hash2");
1455         Globals.mangle_prefix = 1;
1456
1457         string_set(&Globals.szGuestaccount, GUEST_ACCOUNT);
1458
1459         /* using UTF8 by default allows us to support all chars */
1460         string_set(&Globals.unix_charset, DEFAULT_UNIX_CHARSET);
1461
1462 #if defined(HAVE_NL_LANGINFO) && defined(CODESET)
1463         /* If the system supports nl_langinfo(), try to grab the value
1464            from the user's locale */
1465         string_set(&Globals.display_charset, "LOCALE");
1466 #else
1467         string_set(&Globals.display_charset, DEFAULT_DISPLAY_CHARSET);
1468 #endif
1469
1470         /* Use codepage 850 as a default for the dos character set */
1471         string_set(&Globals.dos_charset, DEFAULT_DOS_CHARSET);
1472
1473         /*
1474          * Allow the default PASSWD_CHAT to be overridden in local.h.
1475          */
1476         string_set(&Globals.szPasswdChat, DEFAULT_PASSWD_CHAT);
1477         
1478         set_global_myname(myhostname());
1479         string_set(&Globals.szNetbiosName,global_myname());
1480
1481         set_global_myworkgroup(WORKGROUP);
1482         string_set(&Globals.szWorkgroup, lp_workgroup());
1483         
1484         string_set(&Globals.szPasswdProgram, "");
1485         string_set(&Globals.szPidDir, dyn_PIDDIR);
1486         string_set(&Globals.szLockDir, dyn_LOCKDIR);
1487         string_set(&Globals.szSocketAddress, "0.0.0.0");
1488         pstrcpy(s, "Samba ");
1489         pstrcat(s, SAMBA_VERSION_STRING);
1490         string_set(&Globals.szServerString, s);
1491         slprintf(s, sizeof(s) - 1, "%d.%d", DEFAULT_MAJOR_VERSION,
1492                  DEFAULT_MINOR_VERSION);
1493         string_set(&Globals.szAnnounceVersion, s);
1494 #ifdef DEVELOPER
1495         string_set(&Globals.szPanicAction, "/bin/sleep 999999999");
1496 #endif
1497
1498         pstrcpy(user_socket_options, DEFAULT_SOCKET_OPTIONS);
1499
1500         string_set(&Globals.szLogonDrive, "");
1501         /* %N is the NIS auto.home server if -DAUTOHOME is used, else same as %L */
1502         string_set(&Globals.szLogonHome, "\\\\%N\\%U");
1503         string_set(&Globals.szLogonPath, "\\\\%N\\%U\\profile");
1504
1505         string_set(&Globals.szNameResolveOrder, "lmhosts wins host bcast");
1506         string_set(&Globals.szPasswordServer, "*");
1507
1508         Globals.AlgorithmicRidBase = BASE_RID;
1509
1510         Globals.bLoadPrinters = True;
1511         Globals.PrintcapCacheTime = 750;        /* 12.5 minutes */
1512
1513         /* Was 65535 (0xFFFF). 0x4101 matches W2K and causes major speed improvements... */
1514         /* Discovered by 2 days of pain by Don McCall @ HP :-). */
1515         Globals.max_xmit = 0x4104;
1516         Globals.max_mux = 50;   /* This is *needed* for profile support. */
1517         Globals.lpqcachetime = 30;      /* changed to handle large print servers better -- jerry */
1518         Globals.bDisableSpoolss = False;
1519         Globals.iMaxSmbdProcesses = 0;/* no limit specified */
1520         Globals.pwordlevel = 0;
1521         Globals.unamelevel = 0;
1522         Globals.deadtime = 0;
1523         Globals.bLargeReadwrite = True;
1524         Globals.max_log_size = 5000;
1525         Globals.max_open_files = MAX_OPEN_FILES;
1526         Globals.open_files_db_hash_size = SMB_OPEN_DATABASE_TDB_HASH_SIZE;
1527         Globals.maxprotocol = PROTOCOL_NT1;
1528         Globals.minprotocol = PROTOCOL_CORE;
1529         Globals.security = SEC_USER;
1530         Globals.paranoid_server_security = True;
1531         Globals.bEncryptPasswords = True;
1532         Globals.bUpdateEncrypt = False;
1533         Globals.clientSchannel = Auto;
1534         Globals.serverSchannel = Auto;
1535         Globals.bReadRaw = True;
1536         Globals.bWriteRaw = True;
1537         Globals.bNullPasswords = False;
1538         Globals.bObeyPamRestrictions = False;
1539         Globals.syslog = 1;
1540         Globals.bSyslogOnly = False;
1541         Globals.bTimestampLogs = True;
1542         string_set(&Globals.szLogLevel, "0");
1543         Globals.bDebugPrefixTimestamp = False;
1544         Globals.bDebugHiresTimestamp = False;
1545         Globals.bDebugPid = False;
1546         Globals.bDebugUid = False;
1547         Globals.bEnableCoreFiles = True;
1548         Globals.max_ttl = 60 * 60 * 24 * 3;     /* 3 days default. */
1549         Globals.max_wins_ttl = 60 * 60 * 24 * 6;        /* 6 days default. */
1550         Globals.min_wins_ttl = 60 * 60 * 6;     /* 6 hours default. */
1551         Globals.machine_password_timeout = 60 * 60 * 24 * 7;    /* 7 days default. */
1552         Globals.lm_announce = 2;        /* = Auto: send only if LM clients found */
1553         Globals.lm_interval = 60;
1554         Globals.announce_as = ANNOUNCE_AS_NT_SERVER;
1555 #if (defined(HAVE_NETGROUP) && defined(WITH_AUTOMOUNT))
1556         Globals.bNISHomeMap = False;
1557 #ifdef WITH_NISPLUS_HOME
1558         string_set(&Globals.szNISHomeMapName, "auto_home.org_dir");
1559 #else
1560         string_set(&Globals.szNISHomeMapName, "auto.home");
1561 #endif
1562 #endif
1563         Globals.bTimeServer = False;
1564         Globals.bBindInterfacesOnly = False;
1565         Globals.bUnixPasswdSync = False;
1566         Globals.bPamPasswordChange = False;
1567         Globals.bPasswdChatDebug = False;
1568         Globals.iPasswdChatTimeout = 2; /* 2 second default. */
1569         Globals.bNTPipeSupport = True;  /* Do NT pipes by default. */
1570         Globals.bNTStatusSupport = True; /* Use NT status by default. */
1571         Globals.bStatCache = True;      /* use stat cache by default */
1572         Globals.iMaxStatCacheSize = 1024; /* one Meg by default. */
1573         Globals.restrict_anonymous = 0;
1574         Globals.bClientLanManAuth = True;       /* Do use the LanMan hash if it is available */
1575         Globals.bClientPlaintextAuth = True;    /* Do use a plaintext password if is requested by the server */
1576         Globals.bLanmanAuth = True;     /* Do use the LanMan hash if it is available */
1577         Globals.bNTLMAuth = True;       /* Do use NTLMv1 if it is available (otherwise NTLMv2) */
1578         Globals.bClientNTLMv2Auth = False; /* Client should not use NTLMv2, as we can't tell that the server supports it. */
1579         /* Note, that we will use NTLM2 session security (which is different), if it is available */
1580
1581         Globals.map_to_guest = 0;       /* By Default, "Never" */
1582         Globals.oplock_break_wait_time = 0;     /* By Default, 0 msecs. */
1583         Globals.enhanced_browsing = True; 
1584         Globals.iLockSpinTime = WINDOWS_MINIMUM_LOCK_TIMEOUT_MS; /* msec. */
1585 #ifdef MMAP_BLACKLIST
1586         Globals.bUseMmap = False;
1587 #else
1588         Globals.bUseMmap = True;
1589 #endif
1590         Globals.bUnixExtensions = True;
1591         Globals.bResetOnZeroVC = False;
1592
1593         /* hostname lookups can be very expensive and are broken on
1594            a large number of sites (tridge) */
1595         Globals.bHostnameLookups = False;
1596
1597         string_set(&Globals.szPassdbBackend, "smbpasswd");
1598         string_set(&Globals.szLdapSuffix, "");
1599         string_set(&Globals.szLdapMachineSuffix, "");
1600         string_set(&Globals.szLdapUserSuffix, "");
1601         string_set(&Globals.szLdapGroupSuffix, "");
1602         string_set(&Globals.szLdapIdmapSuffix, "");
1603
1604         string_set(&Globals.szLdapAdminDn, "");
1605         Globals.ldap_ssl = LDAP_SSL_ON;
1606         Globals.ldap_passwd_sync = LDAP_PASSWD_SYNC_OFF;
1607         Globals.ldap_delete_dn = False;
1608         Globals.ldap_replication_sleep = 1000; /* wait 1 sec for replication */
1609         Globals.ldap_timeout = LDAP_CONNECT_DEFAULT_TIMEOUT;
1610         Globals.ldap_page_size = LDAP_PAGE_SIZE;
1611
1612         /* This is what we tell the afs client. in reality we set the token 
1613          * to never expire, though, when this runs out the afs client will 
1614          * forget the token. Set to 0 to get NEVERDATE.*/
1615         Globals.iAfsTokenLifetime = 604800;
1616
1617 /* these parameters are set to defaults that are more appropriate
1618    for the increasing samba install base:
1619
1620    as a member of the workgroup, that will possibly become a
1621    _local_ master browser (lm = True).  this is opposed to a forced
1622    local master browser startup (pm = True).
1623
1624    doesn't provide WINS server service by default (wsupp = False),
1625    and doesn't provide domain master browser services by default, either.
1626
1627 */
1628
1629         Globals.bMsAddPrinterWizard = True;
1630         Globals.bPreferredMaster = Auto;        /* depending on bDomainMaster */
1631         Globals.os_level = 20;
1632         Globals.bLocalMaster = True;
1633         Globals.bDomainMaster = Auto;   /* depending on bDomainLogons */
1634         Globals.bDomainLogons = False;
1635         Globals.bBrowseList = True;
1636         Globals.bWINSsupport = False;
1637         Globals.bWINSproxy = False;
1638
1639         Globals.bDNSproxy = True;
1640
1641         /* this just means to use them if they exist */
1642         Globals.bKernelOplocks = True;
1643
1644         Globals.bAllowTrustedDomains = True;
1645
1646         string_set(&Globals.szTemplateShell, "/bin/false");
1647         string_set(&Globals.szTemplateHomedir, "/home/%D/%U");
1648         string_set(&Globals.szWinbindSeparator, "\\");
1649
1650         string_set(&Globals.szCupsServer, "");
1651         string_set(&Globals.szIPrintServer, "");
1652
1653         string_set(&Globals.ctdbdSocket, "");
1654         Globals.szClusterAddresses = NULL;
1655         Globals.clustering = False;
1656
1657         Globals.winbind_cache_time = 300;       /* 5 minutes */
1658         Globals.bWinbindEnumUsers = False;
1659         Globals.bWinbindEnumGroups = False;
1660         Globals.bWinbindUseDefaultDomain = False;
1661         Globals.bWinbindTrustedDomainsOnly = False;
1662         Globals.bWinbindNestedGroups = True;
1663         Globals.winbind_expand_groups = 1;      
1664         Globals.szWinbindNssInfo = str_list_make("template", NULL);
1665         Globals.bWinbindRefreshTickets = False;
1666         Globals.bWinbindOfflineLogon = False;
1667
1668         Globals.iIdmapCacheTime = 900; /* 15 minutes by default */
1669         Globals.iIdmapNegativeCacheTime = 120; /* 2 minutes by default */
1670
1671         Globals.bPassdbExpandExplicit = False;
1672
1673         Globals.name_cache_timeout = 660; /* In seconds */
1674
1675         Globals.bUseSpnego = True;
1676         Globals.bClientUseSpnego = True;
1677
1678         Globals.client_signing = Auto;
1679         Globals.server_signing = False;
1680
1681         Globals.bDeferSharingViolations = True;
1682         string_set(&Globals.smb_ports, SMB_PORTS);
1683
1684         Globals.bEnablePrivileges = True;
1685         Globals.bHostMSDfs        = True;
1686         Globals.bASUSupport       = False;
1687         
1688         /* User defined shares. */
1689         pstrcpy(s, dyn_LOCKDIR);
1690         pstrcat(s, "/usershares");
1691         string_set(&Globals.szUsersharePath, s);
1692         string_set(&Globals.szUsershareTemplateShare, "");
1693         Globals.iUsershareMaxShares = 0;
1694         /* By default disallow sharing of directories not owned by the sharer. */
1695         Globals.bUsershareOwnerOnly = True;
1696         /* By default disallow guest access to usershares. */
1697         Globals.bUsershareAllowGuests = False;
1698
1699         Globals.iKeepalive = DEFAULT_KEEPALIVE;
1700
1701         /* By default no shares out of the registry */
1702         Globals.bRegistryShares = False;
1703 }
1704
1705 static TALLOC_CTX *lp_talloc;
1706
1707 /******************************************************************* a
1708  Free up temporary memory - called from the main loop.
1709 ********************************************************************/
1710
1711 void lp_TALLOC_FREE(void)
1712 {
1713         if (!lp_talloc)
1714                 return;
1715         TALLOC_FREE(lp_talloc);
1716         lp_talloc = NULL;
1717 }
1718
1719 TALLOC_CTX *tmp_talloc_ctx(void)
1720 {
1721         if (lp_talloc == NULL) {
1722                 lp_talloc = talloc_init("tmp_talloc_ctx");
1723         }
1724
1725         if (lp_talloc == NULL) {
1726                 smb_panic("Could not create temporary talloc context");
1727         }
1728
1729         return lp_talloc;
1730 }
1731
1732 /*******************************************************************
1733  Convenience routine to grab string parameters into temporary memory
1734  and run standard_sub_basic on them. The buffers can be written to by
1735  callers without affecting the source string.
1736 ********************************************************************/
1737
1738 static char *lp_string(const char *s)
1739 {
1740         char *ret, *tmpstr;
1741
1742         /* The follow debug is useful for tracking down memory problems
1743            especially if you have an inner loop that is calling a lp_*()
1744            function that returns a string.  Perhaps this debug should be
1745            present all the time? */
1746
1747 #if 0
1748         DEBUG(10, ("lp_string(%s)\n", s));
1749 #endif
1750
1751         if (!lp_talloc)
1752                 lp_talloc = talloc_init("lp_talloc");
1753
1754         tmpstr = alloc_sub_basic(get_current_username(),
1755                                  current_user_info.domain, s);
1756         if (trim_char(tmpstr, '\"', '\"')) {
1757                 if (strchr(tmpstr,'\"') != NULL) {
1758                         SAFE_FREE(tmpstr);
1759                         tmpstr = alloc_sub_basic(get_current_username(),
1760                                                  current_user_info.domain, s);
1761                 }
1762         }
1763         ret = talloc_strdup(lp_talloc, tmpstr);
1764         SAFE_FREE(tmpstr);
1765                         
1766         return (ret);
1767 }
1768
1769 /*
1770    In this section all the functions that are used to access the 
1771    parameters from the rest of the program are defined 
1772 */
1773
1774 #define FN_GLOBAL_STRING(fn_name,ptr) \
1775  char *fn_name(void) {return(lp_string(*(char **)(ptr) ? *(char **)(ptr) : ""));}
1776 #define FN_GLOBAL_CONST_STRING(fn_name,ptr) \
1777  const char *fn_name(void) {return(*(const char **)(ptr) ? *(const char **)(ptr) : "");}
1778 #define FN_GLOBAL_LIST(fn_name,ptr) \
1779  const char **fn_name(void) {return(*(const char ***)(ptr));}
1780 #define FN_GLOBAL_BOOL(fn_name,ptr) \
1781  BOOL fn_name(void) {return(*(BOOL *)(ptr));}
1782 #define FN_GLOBAL_CHAR(fn_name,ptr) \
1783  char fn_name(void) {return(*(char *)(ptr));}
1784 #define FN_GLOBAL_INTEGER(fn_name,ptr) \
1785  int fn_name(void) {return(*(int *)(ptr));}
1786
1787 #define FN_LOCAL_STRING(fn_name,val) \
1788  char *fn_name(int i) {return(lp_string((LP_SNUM_OK(i) && ServicePtrs[(i)]->val) ? ServicePtrs[(i)]->val : sDefault.val));}
1789 #define FN_LOCAL_CONST_STRING(fn_name,val) \
1790  const char *fn_name(int i) {return (const char *)((LP_SNUM_OK(i) && ServicePtrs[(i)]->val) ? ServicePtrs[(i)]->val : sDefault.val);}
1791 #define FN_LOCAL_LIST(fn_name,val) \
1792  const char **fn_name(int i) {return(const char **)(LP_SNUM_OK(i)? ServicePtrs[(i)]->val : sDefault.val);}
1793 #define FN_LOCAL_BOOL(fn_name,val) \
1794  BOOL fn_name(int i) {return(LP_SNUM_OK(i)? ServicePtrs[(i)]->val : sDefault.val);}
1795 #define FN_LOCAL_INTEGER(fn_name,val) \
1796  int fn_name(int i) {return(LP_SNUM_OK(i)? ServicePtrs[(i)]->val : sDefault.val);}
1797
1798 #define FN_LOCAL_PARM_BOOL(fn_name,val) \
1799  BOOL fn_name(const struct share_params *p) {return(LP_SNUM_OK(p->service)? ServicePtrs[(p->service)]->val : sDefault.val);}
1800 #define FN_LOCAL_PARM_INTEGER(fn_name,val) \
1801  int fn_name(const struct share_params *p) {return(LP_SNUM_OK(p->service)? ServicePtrs[(p->service)]->val : sDefault.val);}
1802 #define FN_LOCAL_PARM_STRING(fn_name,val) \
1803  char *fn_name(const struct share_params *p) {return(lp_string((LP_SNUM_OK(p->service) && ServicePtrs[(p->service)]->val) ? ServicePtrs[(p->service)]->val : sDefault.val));}
1804 #define FN_LOCAL_CHAR(fn_name,val) \
1805  char fn_name(const struct share_params *p) {return(LP_SNUM_OK(p->service)? ServicePtrs[(p->service)]->val : sDefault.val);}
1806
1807 FN_GLOBAL_STRING(lp_smb_ports, &Globals.smb_ports)
1808 FN_GLOBAL_STRING(lp_dos_charset, &Globals.dos_charset)
1809 FN_GLOBAL_STRING(lp_unix_charset, &Globals.unix_charset)
1810 FN_GLOBAL_STRING(lp_display_charset, &Globals.display_charset)
1811 FN_GLOBAL_STRING(lp_logfile, &Globals.szLogFile)
1812 FN_GLOBAL_STRING(lp_configfile, &Globals.szConfigFile)
1813 FN_GLOBAL_STRING(lp_smb_passwd_file, &Globals.szSMBPasswdFile)
1814 FN_GLOBAL_STRING(lp_private_dir, &Globals.szPrivateDir)
1815 FN_GLOBAL_STRING(lp_serverstring, &Globals.szServerString)
1816 FN_GLOBAL_INTEGER(lp_printcap_cache_time, &Globals.PrintcapCacheTime)
1817 FN_GLOBAL_STRING(lp_addport_cmd, &Globals.szAddPortCommand)
1818 FN_GLOBAL_STRING(lp_enumports_cmd, &Globals.szEnumPortsCommand)
1819 FN_GLOBAL_STRING(lp_addprinter_cmd, &Globals.szAddPrinterCommand)
1820 FN_GLOBAL_STRING(lp_deleteprinter_cmd, &Globals.szDeletePrinterCommand)
1821 FN_GLOBAL_STRING(lp_os2_driver_map, &Globals.szOs2DriverMap)
1822 FN_GLOBAL_STRING(lp_lockdir, &Globals.szLockDir)
1823 FN_GLOBAL_STRING(lp_piddir, &Globals.szPidDir)
1824 FN_GLOBAL_STRING(lp_mangling_method, &Globals.szManglingMethod)
1825 FN_GLOBAL_INTEGER(lp_mangle_prefix, &Globals.mangle_prefix)
1826 FN_GLOBAL_STRING(lp_utmpdir, &Globals.szUtmpDir)
1827 FN_GLOBAL_STRING(lp_wtmpdir, &Globals.szWtmpDir)
1828 FN_GLOBAL_BOOL(lp_utmp, &Globals.bUtmp)
1829 FN_GLOBAL_STRING(lp_rootdir, &Globals.szRootdir)
1830 FN_GLOBAL_STRING(lp_defaultservice, &Globals.szDefaultService)
1831 FN_GLOBAL_STRING(lp_msg_command, &Globals.szMsgCommand)
1832 FN_GLOBAL_STRING(lp_get_quota_command, &Globals.szGetQuota)
1833 FN_GLOBAL_STRING(lp_set_quota_command, &Globals.szSetQuota)
1834 FN_GLOBAL_STRING(lp_auto_services, &Globals.szAutoServices)
1835 FN_GLOBAL_STRING(lp_passwd_program, &Globals.szPasswdProgram)
1836 FN_GLOBAL_STRING(lp_passwd_chat, &Globals.szPasswdChat)
1837 FN_GLOBAL_STRING(lp_passwordserver, &Globals.szPasswordServer)
1838 FN_GLOBAL_STRING(lp_name_resolve_order, &Globals.szNameResolveOrder)
1839 FN_GLOBAL_STRING(lp_realm, &Globals.szRealm)
1840 FN_GLOBAL_CONST_STRING(lp_afs_username_map, &Globals.szAfsUsernameMap)
1841 FN_GLOBAL_INTEGER(lp_afs_token_lifetime, &Globals.iAfsTokenLifetime)
1842 FN_GLOBAL_STRING(lp_log_nt_token_command, &Globals.szLogNtTokenCommand)
1843 FN_GLOBAL_STRING(lp_username_map, &Globals.szUsernameMap)
1844 FN_GLOBAL_CONST_STRING(lp_logon_script, &Globals.szLogonScript)
1845 FN_GLOBAL_CONST_STRING(lp_logon_path, &Globals.szLogonPath)
1846 FN_GLOBAL_CONST_STRING(lp_logon_drive, &Globals.szLogonDrive)
1847 FN_GLOBAL_CONST_STRING(lp_logon_home, &Globals.szLogonHome)
1848 FN_GLOBAL_STRING(lp_remote_announce, &Globals.szRemoteAnnounce)
1849 FN_GLOBAL_STRING(lp_remote_browse_sync, &Globals.szRemoteBrowseSync)
1850 FN_GLOBAL_LIST(lp_wins_server_list, &Globals.szWINSservers)
1851 FN_GLOBAL_LIST(lp_interfaces, &Globals.szInterfaces)
1852 FN_GLOBAL_STRING(lp_socket_address, &Globals.szSocketAddress)
1853 FN_GLOBAL_STRING(lp_nis_home_map_name, &Globals.szNISHomeMapName)
1854 static FN_GLOBAL_STRING(lp_announce_version, &Globals.szAnnounceVersion)
1855 FN_GLOBAL_LIST(lp_netbios_aliases, &Globals.szNetbiosAliases)
1856 /* FN_GLOBAL_STRING(lp_passdb_backend, &Globals.szPassdbBackend)
1857  * lp_passdb_backend() should be replace by the this macro again after
1858  * some releases.
1859  * */
1860 const char *lp_passdb_backend(void)
1861 {
1862         char *delim, *quote;
1863
1864         delim = strchr( Globals.szPassdbBackend, ' ');
1865         /* no space at all */
1866         if (delim == NULL) {
1867                 goto out;
1868         }
1869
1870         quote = strchr(Globals.szPassdbBackend, '"');
1871         /* no quote char or non in the first part */
1872         if (quote == NULL || quote > delim) {
1873                 *delim = '\0';
1874                 goto warn;
1875         }
1876
1877         quote = strchr(quote+1, '"');
1878         if (quote == NULL) {
1879                 DEBUG(0, ("WARNING: Your 'passdb backend' configuration is invalid due to a missing second \" char.\n"));
1880                 goto out;
1881         } else if (*(quote+1) == '\0') {
1882                 /* space, fitting quote char, and one backend only */
1883                 goto out;
1884         } else {
1885                 /* terminate string after the fitting quote char */
1886                 *(quote+1) = '\0';
1887         }
1888
1889 warn:
1890         DEBUG(0, ("WARNING: Your 'passdb backend' configuration includes multiple backends.  This\n"
1891                 "is deprecated since Samba 3.0.23.  Please check WHATSNEW.txt or the section 'Passdb\n"
1892                 "Changes' from the ChangeNotes as part of the Samba HOWTO collection.  Only the first\n"
1893                 "backend (%s) is used.  The rest is ignored.\n", Globals.szPassdbBackend));
1894
1895 out:
1896         return Globals.szPassdbBackend;
1897 }
1898 FN_GLOBAL_LIST(lp_preload_modules, &Globals.szPreloadModules)
1899 FN_GLOBAL_STRING(lp_panic_action, &Globals.szPanicAction)
1900 FN_GLOBAL_STRING(lp_adduser_script, &Globals.szAddUserScript)
1901 FN_GLOBAL_STRING(lp_renameuser_script, &Globals.szRenameUserScript)
1902 FN_GLOBAL_STRING(lp_deluser_script, &Globals.szDelUserScript)
1903
1904 FN_GLOBAL_CONST_STRING(lp_guestaccount, &Globals.szGuestaccount)
1905 FN_GLOBAL_STRING(lp_addgroup_script, &Globals.szAddGroupScript)
1906 FN_GLOBAL_STRING(lp_delgroup_script, &Globals.szDelGroupScript)
1907 FN_GLOBAL_STRING(lp_addusertogroup_script, &Globals.szAddUserToGroupScript)
1908 FN_GLOBAL_STRING(lp_deluserfromgroup_script, &Globals.szDelUserFromGroupScript)
1909 FN_GLOBAL_STRING(lp_setprimarygroup_script, &Globals.szSetPrimaryGroupScript)
1910
1911 FN_GLOBAL_STRING(lp_addmachine_script, &Globals.szAddMachineScript)
1912
1913 FN_GLOBAL_STRING(lp_shutdown_script, &Globals.szShutdownScript)
1914 FN_GLOBAL_STRING(lp_abort_shutdown_script, &Globals.szAbortShutdownScript)
1915 FN_GLOBAL_STRING(lp_username_map_script, &Globals.szUsernameMapScript)
1916
1917 FN_GLOBAL_STRING(lp_check_password_script, &Globals.szCheckPasswordScript)
1918
1919 FN_GLOBAL_STRING(lp_wins_hook, &Globals.szWINSHook)
1920 FN_GLOBAL_CONST_STRING(lp_template_homedir, &Globals.szTemplateHomedir)
1921 FN_GLOBAL_CONST_STRING(lp_template_shell, &Globals.szTemplateShell)
1922 FN_GLOBAL_CONST_STRING(lp_winbind_separator, &Globals.szWinbindSeparator)
1923 FN_GLOBAL_INTEGER(lp_acl_compatibility, &Globals.iAclCompat)
1924 FN_GLOBAL_BOOL(lp_winbind_enum_users, &Globals.bWinbindEnumUsers)
1925 FN_GLOBAL_BOOL(lp_winbind_enum_groups, &Globals.bWinbindEnumGroups)
1926 FN_GLOBAL_BOOL(lp_winbind_use_default_domain, &Globals.bWinbindUseDefaultDomain)
1927 FN_GLOBAL_BOOL(lp_winbind_trusted_domains_only, &Globals.bWinbindTrustedDomainsOnly)
1928 FN_GLOBAL_BOOL(lp_winbind_nested_groups, &Globals.bWinbindNestedGroups)
1929 FN_GLOBAL_INTEGER(lp_winbind_expand_groups, &Globals.winbind_expand_groups)
1930 FN_GLOBAL_BOOL(lp_winbind_refresh_tickets, &Globals.bWinbindRefreshTickets)
1931 FN_GLOBAL_BOOL(lp_winbind_offline_logon, &Globals.bWinbindOfflineLogon)
1932 FN_GLOBAL_BOOL(lp_winbind_normalize_names, &Globals.bWinbindNormalizeNames)
1933 FN_GLOBAL_BOOL(lp_winbind_rpc_only, &Globals.bWinbindRpcOnly)
1934
1935 FN_GLOBAL_LIST(lp_idmap_domains, &Globals.szIdmapDomains)
1936 FN_GLOBAL_LIST(lp_idmap_backend, &Globals.szIdmapBackend) /* deprecated */
1937 FN_GLOBAL_STRING(lp_idmap_alloc_backend, &Globals.szIdmapAllocBackend)
1938 FN_GLOBAL_INTEGER(lp_idmap_cache_time, &Globals.iIdmapCacheTime)
1939 FN_GLOBAL_INTEGER(lp_idmap_negative_cache_time, &Globals.iIdmapNegativeCacheTime)
1940 FN_GLOBAL_INTEGER(lp_keepalive, &Globals.iKeepalive)
1941 FN_GLOBAL_BOOL(lp_passdb_expand_explicit, &Globals.bPassdbExpandExplicit)
1942
1943 FN_GLOBAL_STRING(lp_ldap_suffix, &Globals.szLdapSuffix)
1944 FN_GLOBAL_STRING(lp_ldap_admin_dn, &Globals.szLdapAdminDn)
1945 FN_GLOBAL_INTEGER(lp_ldap_ssl, &Globals.ldap_ssl)
1946 FN_GLOBAL_INTEGER(lp_ldap_passwd_sync, &Globals.ldap_passwd_sync)
1947 FN_GLOBAL_BOOL(lp_ldap_delete_dn, &Globals.ldap_delete_dn)
1948 FN_GLOBAL_INTEGER(lp_ldap_replication_sleep, &Globals.ldap_replication_sleep)
1949 FN_GLOBAL_INTEGER(lp_ldap_timeout, &Globals.ldap_timeout)
1950 FN_GLOBAL_INTEGER(lp_ldap_page_size, &Globals.ldap_page_size)
1951 FN_GLOBAL_STRING(lp_add_share_cmd, &Globals.szAddShareCommand)
1952 FN_GLOBAL_STRING(lp_change_share_cmd, &Globals.szChangeShareCommand)
1953 FN_GLOBAL_STRING(lp_delete_share_cmd, &Globals.szDeleteShareCommand)
1954 FN_GLOBAL_STRING(lp_usershare_path, &Globals.szUsersharePath)
1955 FN_GLOBAL_LIST(lp_usershare_prefix_allow_list, &Globals.szUsersharePrefixAllowList)
1956 FN_GLOBAL_LIST(lp_usershare_prefix_deny_list, &Globals.szUsersharePrefixDenyList)
1957
1958 FN_GLOBAL_LIST(lp_eventlog_list, &Globals.szEventLogs)
1959
1960 FN_GLOBAL_BOOL(lp_registry_shares, &Globals.bRegistryShares)
1961 FN_GLOBAL_BOOL(lp_usershare_allow_guests, &Globals.bUsershareAllowGuests)
1962 FN_GLOBAL_BOOL(lp_usershare_owner_only, &Globals.bUsershareOwnerOnly)
1963 FN_GLOBAL_BOOL(lp_disable_netbios, &Globals.bDisableNetbios)
1964 FN_GLOBAL_BOOL(lp_reset_on_zero_vc, &Globals.bResetOnZeroVC)
1965 FN_GLOBAL_BOOL(lp_ms_add_printer_wizard, &Globals.bMsAddPrinterWizard)
1966 FN_GLOBAL_BOOL(lp_dns_proxy, &Globals.bDNSproxy)
1967 FN_GLOBAL_BOOL(lp_wins_support, &Globals.bWINSsupport)
1968 FN_GLOBAL_BOOL(lp_we_are_a_wins_server, &Globals.bWINSsupport)
1969 FN_GLOBAL_BOOL(lp_wins_proxy, &Globals.bWINSproxy)
1970 FN_GLOBAL_BOOL(lp_local_master, &Globals.bLocalMaster)
1971 FN_GLOBAL_BOOL(lp_domain_logons, &Globals.bDomainLogons)
1972 FN_GLOBAL_BOOL(lp_load_printers, &Globals.bLoadPrinters)
1973 FN_GLOBAL_BOOL(lp_readraw, &Globals.bReadRaw)
1974 FN_GLOBAL_BOOL(lp_large_readwrite, &Globals.bLargeReadwrite)
1975 FN_GLOBAL_BOOL(lp_writeraw, &Globals.bWriteRaw)
1976 FN_GLOBAL_BOOL(lp_null_passwords, &Globals.bNullPasswords)
1977 FN_GLOBAL_BOOL(lp_obey_pam_restrictions, &Globals.bObeyPamRestrictions)
1978 FN_GLOBAL_BOOL(lp_encrypted_passwords, &Globals.bEncryptPasswords)
1979 FN_GLOBAL_BOOL(lp_update_encrypted, &Globals.bUpdateEncrypt)
1980 FN_GLOBAL_INTEGER(lp_client_schannel, &Globals.clientSchannel)
1981 FN_GLOBAL_INTEGER(lp_server_schannel, &Globals.serverSchannel)
1982 FN_GLOBAL_BOOL(lp_syslog_only, &Globals.bSyslogOnly)
1983 FN_GLOBAL_BOOL(lp_timestamp_logs, &Globals.bTimestampLogs)
1984 FN_GLOBAL_BOOL(lp_debug_prefix_timestamp, &Globals.bDebugPrefixTimestamp)
1985 FN_GLOBAL_BOOL(lp_debug_hires_timestamp, &Globals.bDebugHiresTimestamp)
1986 FN_GLOBAL_BOOL(lp_debug_pid, &Globals.bDebugPid)
1987 FN_GLOBAL_BOOL(lp_debug_uid, &Globals.bDebugUid)
1988 FN_GLOBAL_BOOL(lp_enable_core_files, &Globals.bEnableCoreFiles)
1989 FN_GLOBAL_BOOL(lp_browse_list, &Globals.bBrowseList)
1990 FN_GLOBAL_BOOL(lp_nis_home_map, &Globals.bNISHomeMap)
1991 static FN_GLOBAL_BOOL(lp_time_server, &Globals.bTimeServer)
1992 FN_GLOBAL_BOOL(lp_bind_interfaces_only, &Globals.bBindInterfacesOnly)
1993 FN_GLOBAL_BOOL(lp_pam_password_change, &Globals.bPamPasswordChange)
1994 FN_GLOBAL_BOOL(lp_unix_password_sync, &Globals.bUnixPasswdSync)
1995 FN_GLOBAL_BOOL(lp_passwd_chat_debug, &Globals.bPasswdChatDebug)
1996 FN_GLOBAL_INTEGER(lp_passwd_chat_timeout, &Globals.iPasswdChatTimeout)
1997 FN_GLOBAL_BOOL(lp_nt_pipe_support, &Globals.bNTPipeSupport)
1998 FN_GLOBAL_BOOL(lp_nt_status_support, &Globals.bNTStatusSupport)
1999 FN_GLOBAL_BOOL(lp_stat_cache, &Globals.bStatCache)
2000 FN_GLOBAL_INTEGER(lp_max_stat_cache_size, &Globals.iMaxStatCacheSize)
2001 FN_GLOBAL_BOOL(lp_allow_trusted_domains, &Globals.bAllowTrustedDomains)
2002 FN_GLOBAL_INTEGER(lp_restrict_anonymous, &Globals.restrict_anonymous)
2003 FN_GLOBAL_BOOL(lp_lanman_auth, &Globals.bLanmanAuth)
2004 FN_GLOBAL_BOOL(lp_ntlm_auth, &Globals.bNTLMAuth)
2005 FN_GLOBAL_BOOL(lp_client_plaintext_auth, &Globals.bClientPlaintextAuth)
2006 FN_GLOBAL_BOOL(lp_client_lanman_auth, &Globals.bClientLanManAuth)
2007 FN_GLOBAL_BOOL(lp_client_ntlmv2_auth, &Globals.bClientNTLMv2Auth)
2008 FN_GLOBAL_BOOL(lp_host_msdfs, &Globals.bHostMSDfs)
2009 FN_GLOBAL_BOOL(lp_kernel_oplocks, &Globals.bKernelOplocks)
2010 FN_GLOBAL_BOOL(lp_enhanced_browsing, &Globals.enhanced_browsing)
2011 FN_GLOBAL_BOOL(lp_use_mmap, &Globals.bUseMmap)
2012 FN_GLOBAL_BOOL(lp_unix_extensions, &Globals.bUnixExtensions)
2013 FN_GLOBAL_BOOL(lp_use_spnego, &Globals.bUseSpnego)
2014 FN_GLOBAL_BOOL(lp_client_use_spnego, &Globals.bClientUseSpnego)
2015 FN_GLOBAL_BOOL(lp_hostname_lookups, &Globals.bHostnameLookups)
2016 FN_LOCAL_PARM_BOOL(lp_change_notify, bChangeNotify)
2017 FN_LOCAL_PARM_BOOL(lp_kernel_change_notify, bKernelChangeNotify)
2018 FN_GLOBAL_BOOL(lp_use_kerberos_keytab, &Globals.bUseKerberosKeytab)
2019 FN_GLOBAL_BOOL(lp_defer_sharing_violations, &Globals.bDeferSharingViolations)
2020 FN_GLOBAL_BOOL(lp_enable_privileges, &Globals.bEnablePrivileges)
2021 FN_GLOBAL_BOOL(lp_enable_asu_support, &Globals.bASUSupport)
2022 FN_GLOBAL_INTEGER(lp_os_level, &Globals.os_level)
2023 FN_GLOBAL_INTEGER(lp_max_ttl, &Globals.max_ttl)
2024 FN_GLOBAL_INTEGER(lp_max_wins_ttl, &Globals.max_wins_ttl)
2025 FN_GLOBAL_INTEGER(lp_min_wins_ttl, &Globals.min_wins_ttl)
2026 FN_GLOBAL_INTEGER(lp_max_log_size, &Globals.max_log_size)
2027 FN_GLOBAL_INTEGER(lp_max_open_files, &Globals.max_open_files)
2028 FN_GLOBAL_INTEGER(lp_open_files_db_hash_size, &Globals.open_files_db_hash_size)
2029 FN_GLOBAL_INTEGER(lp_maxxmit, &Globals.max_xmit)
2030 FN_GLOBAL_INTEGER(lp_maxmux, &Globals.max_mux)
2031 FN_GLOBAL_INTEGER(lp_passwordlevel, &Globals.pwordlevel)
2032 FN_GLOBAL_INTEGER(lp_usernamelevel, &Globals.unamelevel)
2033 FN_GLOBAL_INTEGER(lp_deadtime, &Globals.deadtime)
2034 FN_GLOBAL_INTEGER(lp_maxprotocol, &Globals.maxprotocol)
2035 FN_GLOBAL_INTEGER(lp_minprotocol, &Globals.minprotocol)
2036 FN_GLOBAL_INTEGER(lp_security, &Globals.security)
2037 FN_GLOBAL_LIST(lp_auth_methods, &Globals.AuthMethods)
2038 FN_GLOBAL_BOOL(lp_paranoid_server_security, &Globals.paranoid_server_security)
2039 FN_GLOBAL_INTEGER(lp_maxdisksize, &Globals.maxdisksize)
2040 FN_GLOBAL_INTEGER(lp_lpqcachetime, &Globals.lpqcachetime)
2041 FN_GLOBAL_INTEGER(lp_max_smbd_processes, &Globals.iMaxSmbdProcesses)
2042 FN_GLOBAL_INTEGER(_lp_disable_spoolss, &Globals.bDisableSpoolss)
2043 FN_GLOBAL_INTEGER(lp_syslog, &Globals.syslog)
2044 static FN_GLOBAL_INTEGER(lp_announce_as, &Globals.announce_as)
2045 FN_GLOBAL_INTEGER(lp_lm_announce, &Globals.lm_announce)
2046 FN_GLOBAL_INTEGER(lp_lm_interval, &Globals.lm_interval)
2047 FN_GLOBAL_INTEGER(lp_machine_password_timeout, &Globals.machine_password_timeout)
2048 FN_GLOBAL_INTEGER(lp_map_to_guest, &Globals.map_to_guest)
2049 FN_GLOBAL_INTEGER(lp_oplock_break_wait_time, &Globals.oplock_break_wait_time)
2050 FN_GLOBAL_INTEGER(lp_lock_spin_time, &Globals.iLockSpinTime)
2051 FN_GLOBAL_INTEGER(lp_usershare_max_shares, &Globals.iUsershareMaxShares)
2052
2053 FN_LOCAL_STRING(lp_preexec, szPreExec)
2054 FN_LOCAL_STRING(lp_postexec, szPostExec)
2055 FN_LOCAL_STRING(lp_rootpreexec, szRootPreExec)
2056 FN_LOCAL_STRING(lp_rootpostexec, szRootPostExec)
2057 FN_LOCAL_STRING(lp_servicename, szService)
2058 FN_LOCAL_CONST_STRING(lp_const_servicename, szService)
2059 FN_LOCAL_STRING(lp_pathname, szPath)
2060 FN_LOCAL_STRING(lp_dontdescend, szDontdescend)
2061 FN_LOCAL_STRING(lp_username, szUsername)
2062 FN_LOCAL_LIST(lp_invalid_users, szInvalidUsers)
2063 FN_LOCAL_LIST(lp_valid_users, szValidUsers)
2064 FN_LOCAL_LIST(lp_admin_users, szAdminUsers)
2065 FN_GLOBAL_LIST(lp_svcctl_list, &Globals.szServicesList)
2066 FN_LOCAL_STRING(lp_cups_options, szCupsOptions)
2067 FN_GLOBAL_STRING(lp_cups_server, &Globals.szCupsServer)
2068 FN_GLOBAL_STRING(lp_iprint_server, &Globals.szIPrintServer)
2069 FN_GLOBAL_CONST_STRING(lp_ctdbd_socket, &Globals.ctdbdSocket)
2070 FN_GLOBAL_LIST(lp_cluster_addresses, &Globals.szClusterAddresses)
2071 FN_GLOBAL_BOOL(lp_clustering, &Globals.clustering);
2072 FN_LOCAL_STRING(lp_printcommand, szPrintcommand)
2073 FN_LOCAL_STRING(lp_lpqcommand, szLpqcommand)
2074 FN_LOCAL_STRING(lp_lprmcommand, szLprmcommand)
2075 FN_LOCAL_STRING(lp_lppausecommand, szLppausecommand)
2076 FN_LOCAL_STRING(lp_lpresumecommand, szLpresumecommand)
2077 FN_LOCAL_STRING(lp_queuepausecommand, szQueuepausecommand)
2078 FN_LOCAL_STRING(lp_queueresumecommand, szQueueresumecommand)
2079 static FN_LOCAL_STRING(_lp_printername, szPrintername)
2080 FN_LOCAL_CONST_STRING(lp_printjob_username, szPrintjobUsername)
2081 FN_LOCAL_LIST(lp_hostsallow, szHostsallow)
2082 FN_LOCAL_LIST(lp_hostsdeny, szHostsdeny)
2083 FN_LOCAL_STRING(lp_magicscript, szMagicScript)
2084 FN_LOCAL_STRING(lp_magicoutput, szMagicOutput)
2085 FN_LOCAL_STRING(lp_comment, comment)
2086 FN_LOCAL_STRING(lp_force_user, force_user)
2087 FN_LOCAL_STRING(lp_force_group, force_group)
2088 FN_LOCAL_LIST(lp_readlist, readlist)
2089 FN_LOCAL_LIST(lp_writelist, writelist)
2090 FN_LOCAL_LIST(lp_printer_admin, printer_admin)
2091 FN_LOCAL_STRING(lp_fstype, fstype)
2092 FN_LOCAL_LIST(lp_vfs_objects, szVfsObjects)
2093 FN_LOCAL_STRING(lp_msdfs_proxy, szMSDfsProxy)
2094 static FN_LOCAL_STRING(lp_volume, volume)
2095 FN_LOCAL_PARM_STRING(lp_mangled_map, szMangledMap)
2096 FN_LOCAL_STRING(lp_veto_files, szVetoFiles)
2097 FN_LOCAL_STRING(lp_hide_files, szHideFiles)
2098 FN_LOCAL_STRING(lp_veto_oplocks, szVetoOplockFiles)
2099 FN_LOCAL_BOOL(lp_msdfs_root, bMSDfsRoot)
2100 FN_LOCAL_STRING(lp_dfree_command, szDfree)
2101 FN_LOCAL_BOOL(lp_autoloaded, autoloaded)
2102 FN_LOCAL_BOOL(lp_preexec_close, bPreexecClose)
2103 FN_LOCAL_BOOL(lp_rootpreexec_close, bRootpreexecClose)
2104 FN_LOCAL_INTEGER(lp_casesensitive, iCaseSensitive)
2105 FN_LOCAL_BOOL(lp_preservecase, bCasePreserve)
2106 FN_LOCAL_BOOL(lp_shortpreservecase, bShortCasePreserve)
2107 FN_LOCAL_BOOL(lp_hide_dot_files, bHideDotFiles)
2108 FN_LOCAL_BOOL(lp_hide_special_files, bHideSpecialFiles)
2109 FN_LOCAL_BOOL(lp_hideunreadable, bHideUnReadable)
2110 FN_LOCAL_BOOL(lp_hideunwriteable_files, bHideUnWriteableFiles)
2111 FN_LOCAL_BOOL(lp_browseable, bBrowseable)
2112 FN_LOCAL_BOOL(lp_readonly, bRead_only)
2113 FN_LOCAL_BOOL(lp_no_set_dir, bNo_set_dir)
2114 FN_LOCAL_BOOL(lp_guest_ok, bGuest_ok)
2115 FN_LOCAL_BOOL(lp_guest_only, bGuest_only)
2116 FN_LOCAL_BOOL(lp_print_ok, bPrint_ok)
2117 FN_LOCAL_BOOL(lp_map_hidden, bMap_hidden)
2118 FN_LOCAL_BOOL(lp_map_archive, bMap_archive)
2119 FN_LOCAL_BOOL(lp_store_dos_attributes, bStoreDosAttributes)
2120 FN_LOCAL_BOOL(lp_dmapi_support, bDmapiSupport)
2121 FN_LOCAL_PARM_BOOL(lp_locking, bLocking)
2122 FN_LOCAL_PARM_INTEGER(lp_strict_locking, iStrictLocking)
2123 FN_LOCAL_PARM_BOOL(lp_posix_locking, bPosixLocking)
2124 FN_LOCAL_BOOL(lp_share_modes, bShareModes)
2125 FN_LOCAL_BOOL(lp_oplocks, bOpLocks)
2126 FN_LOCAL_BOOL(lp_level2_oplocks, bLevel2OpLocks)
2127 FN_LOCAL_BOOL(lp_onlyuser, bOnlyUser)
2128 FN_LOCAL_PARM_BOOL(lp_manglednames, bMangledNames)
2129 FN_LOCAL_BOOL(lp_widelinks, bWidelinks)
2130 FN_LOCAL_BOOL(lp_symlinks, bSymlinks)
2131 FN_LOCAL_BOOL(lp_syncalways, bSyncAlways)
2132 FN_LOCAL_BOOL(lp_strict_allocate, bStrictAllocate)
2133 FN_LOCAL_BOOL(lp_strict_sync, bStrictSync)
2134 FN_LOCAL_BOOL(lp_map_system, bMap_system)
2135 FN_LOCAL_BOOL(lp_delete_readonly, bDeleteReadonly)
2136 FN_LOCAL_BOOL(lp_fake_oplocks, bFakeOplocks)
2137 FN_LOCAL_BOOL(lp_recursive_veto_delete, bDeleteVetoFiles)
2138 FN_LOCAL_BOOL(lp_dos_filemode, bDosFilemode)
2139 FN_LOCAL_BOOL(lp_dos_filetimes, bDosFiletimes)
2140 FN_LOCAL_BOOL(lp_dos_filetime_resolution, bDosFiletimeResolution)
2141 FN_LOCAL_BOOL(lp_fake_dir_create_times, bFakeDirCreateTimes)
2142 FN_LOCAL_BOOL(lp_blocking_locks, bBlockingLocks)
2143 FN_LOCAL_BOOL(lp_inherit_perms, bInheritPerms)
2144 FN_LOCAL_BOOL(lp_inherit_acls, bInheritACLS)
2145 FN_LOCAL_BOOL(lp_inherit_owner, bInheritOwner)
2146 FN_LOCAL_BOOL(lp_use_client_driver, bUseClientDriver)
2147 FN_LOCAL_BOOL(lp_default_devmode, bDefaultDevmode)
2148 FN_LOCAL_BOOL(lp_force_printername, bForcePrintername)
2149 FN_LOCAL_BOOL(lp_nt_acl_support, bNTAclSupport)
2150 FN_LOCAL_BOOL(lp_force_unknown_acl_user, bForceUnknownAclUser)
2151 FN_LOCAL_BOOL(lp_ea_support, bEASupport)
2152 FN_LOCAL_BOOL(_lp_use_sendfile, bUseSendfile)
2153 FN_LOCAL_BOOL(lp_profile_acls, bProfileAcls)
2154 FN_LOCAL_BOOL(lp_map_acl_inherit, bMap_acl_inherit)
2155 FN_LOCAL_BOOL(lp_afs_share, bAfs_Share)
2156 FN_LOCAL_BOOL(lp_acl_check_permissions, bAclCheckPermissions)
2157 FN_LOCAL_BOOL(lp_acl_group_control, bAclGroupControl)
2158 FN_LOCAL_BOOL(lp_acl_map_full_control, bAclMapFullControl)
2159 FN_LOCAL_INTEGER(lp_create_mask, iCreate_mask)
2160 FN_LOCAL_INTEGER(lp_force_create_mode, iCreate_force_mode)
2161 FN_LOCAL_INTEGER(lp_security_mask, iSecurity_mask)
2162 FN_LOCAL_INTEGER(lp_force_security_mode, iSecurity_force_mode)
2163 FN_LOCAL_INTEGER(lp_dir_mask, iDir_mask)
2164 FN_LOCAL_INTEGER(lp_force_dir_mode, iDir_force_mode)
2165 FN_LOCAL_INTEGER(lp_dir_security_mask, iDir_Security_mask)
2166 FN_LOCAL_INTEGER(lp_force_dir_security_mode, iDir_Security_force_mode)
2167 FN_LOCAL_INTEGER(lp_max_connections, iMaxConnections)
2168 FN_LOCAL_INTEGER(lp_defaultcase, iDefaultCase)
2169 FN_LOCAL_INTEGER(lp_minprintspace, iMinPrintSpace)
2170 FN_LOCAL_INTEGER(lp_printing, iPrinting)
2171 FN_LOCAL_INTEGER(lp_max_reported_jobs, iMaxReportedPrintJobs)
2172 FN_LOCAL_INTEGER(lp_oplock_contention_limit, iOplockContentionLimit)
2173 FN_LOCAL_INTEGER(lp_csc_policy, iCSCPolicy)
2174 FN_LOCAL_INTEGER(lp_write_cache_size, iWriteCacheSize)
2175 FN_LOCAL_INTEGER(lp_block_size, iBlock_size)
2176 FN_LOCAL_INTEGER(lp_dfree_cache_time, iDfreeCacheTime)
2177 FN_LOCAL_INTEGER(lp_allocation_roundup_size, iallocation_roundup_size)
2178 FN_LOCAL_INTEGER(lp_aio_read_size, iAioReadSize)
2179 FN_LOCAL_INTEGER(lp_aio_write_size, iAioWriteSize)
2180 FN_LOCAL_INTEGER(lp_map_readonly, iMap_readonly)
2181 FN_LOCAL_CHAR(lp_magicchar, magic_char)
2182 FN_GLOBAL_INTEGER(lp_winbind_cache_time, &Globals.winbind_cache_time)
2183 FN_GLOBAL_LIST(lp_winbind_nss_info, &Globals.szWinbindNssInfo)
2184 FN_GLOBAL_INTEGER(lp_algorithmic_rid_base, &Globals.AlgorithmicRidBase)
2185 FN_GLOBAL_INTEGER(lp_name_cache_timeout, &Globals.name_cache_timeout)
2186 FN_GLOBAL_INTEGER(lp_client_signing, &Globals.client_signing)
2187 FN_GLOBAL_INTEGER(lp_server_signing, &Globals.server_signing)
2188 FN_GLOBAL_INTEGER(lp_client_ldap_sasl_wrapping, &Globals.client_ldap_sasl_wrapping)
2189
2190 /* local prototypes */
2191
2192 static int map_parameter(const char *pszParmName);
2193 static BOOL set_boolean(BOOL *pb, const char *pszParmValue);
2194 static const char *get_boolean(BOOL bool_value);
2195 static int getservicebyname(const char *pszServiceName,
2196                             service * pserviceDest);
2197 static void copy_service(service * pserviceDest,
2198                          service * pserviceSource, BOOL *pcopymapDest);
2199 static BOOL do_parameter(const char *pszParmName, const char *pszParmValue);
2200 static BOOL do_section(const char *pszSectionName);
2201 static void init_copymap(service * pservice);
2202 static BOOL hash_a_service(const char *name, int number);
2203 static void free_service_byindex(int iService);
2204 static char * canonicalize_servicename(const char *name);
2205 static void show_parameter(int parmIndex);
2206 static BOOL is_synonym_of(int parm1, int parm2, BOOL *inverse);
2207
2208 /* This is a helper function for parametrical options support. */
2209 /* It returns a pointer to parametrical option value if it exists or NULL otherwise */
2210 /* Actual parametrical functions are quite simple */
2211 static param_opt_struct *get_parametrics(int snum, const char *type, const char *option)
2212 {
2213         BOOL global_section = False;
2214         char* param_key;
2215         param_opt_struct *data;
2216         
2217         if (snum >= iNumServices) return NULL;
2218         
2219         if (snum < 0) { 
2220                 data = Globals.param_opt;
2221                 global_section = True;
2222         } else {
2223                 data = ServicePtrs[snum]->param_opt;
2224         }
2225     
2226         asprintf(&param_key, "%s:%s", type, option);
2227         if (!param_key) {
2228                 DEBUG(0,("asprintf failed!\n"));
2229                 return NULL;
2230         }
2231
2232         while (data) {
2233                 if (strcmp(data->key, param_key) == 0) {
2234                         string_free(&param_key);
2235                         return data;
2236                 }
2237                 data = data->next;
2238         }
2239
2240         if (!global_section) {
2241                 /* Try to fetch the same option but from globals */
2242                 /* but only if we are not already working with Globals */
2243                 data = Globals.param_opt;
2244                 while (data) {
2245                         if (strcmp(data->key, param_key) == 0) {
2246                                 string_free(&param_key);
2247                                 return data;
2248                         }
2249                         data = data->next;
2250                 }
2251         }
2252
2253         string_free(&param_key);
2254         
2255         return NULL;
2256 }
2257
2258
2259 #define MISSING_PARAMETER(name) \
2260     DEBUG(0, ("%s(): value is NULL or empty!\n", #name))
2261
2262 /*******************************************************************
2263 convenience routine to return int parameters.
2264 ********************************************************************/
2265 static int lp_int(const char *s)
2266 {
2267
2268         if (!s || !*s) {
2269                 MISSING_PARAMETER(lp_int);
2270                 return (-1);
2271         }
2272
2273         return (int)strtol(s, NULL, 0);
2274 }
2275
2276 /*******************************************************************
2277 convenience routine to return unsigned long parameters.
2278 ********************************************************************/
2279 static unsigned long lp_ulong(const char *s)
2280 {
2281
2282         if (!s || !*s) {
2283                 MISSING_PARAMETER(lp_ulong);
2284                 return (0);
2285         }
2286
2287         return strtoul(s, NULL, 0);
2288 }
2289
2290 /*******************************************************************
2291 convenience routine to return boolean parameters.
2292 ********************************************************************/
2293 static BOOL lp_bool(const char *s)
2294 {
2295         BOOL ret = False;
2296
2297         if (!s || !*s) {
2298                 MISSING_PARAMETER(lp_bool);
2299                 return False;
2300         }
2301         
2302         if (!set_boolean(&ret,s)) {
2303                 DEBUG(0,("lp_bool(%s): value is not boolean!\n",s));
2304                 return False;
2305         }
2306
2307         return ret;
2308 }
2309
2310 /*******************************************************************
2311 convenience routine to return enum parameters.
2312 ********************************************************************/
2313 static int lp_enum(const char *s,const struct enum_list *_enum)
2314 {
2315         int i;
2316
2317         if (!s || !*s || !_enum) {
2318                 MISSING_PARAMETER(lp_enum);
2319                 return (-1);
2320         }
2321         
2322         for (i=0; _enum[i].name; i++) {
2323                 if (strequal(_enum[i].name,s))
2324                         return _enum[i].value;
2325         }
2326
2327         DEBUG(0,("lp_enum(%s,enum): value is not in enum_list!\n",s));
2328         return (-1);
2329 }
2330
2331 #undef MISSING_PARAMETER
2332
2333 /* DO NOT USE lp_parm_string ANYMORE!!!!
2334  * use lp_parm_const_string or lp_parm_talloc_string
2335  *
2336  * lp_parm_string is only used to let old modules find this symbol
2337  */
2338 #undef lp_parm_string
2339  char *lp_parm_string(const char *servicename, const char *type, const char *option);
2340  char *lp_parm_string(const char *servicename, const char *type, const char *option)
2341 {
2342         return lp_parm_talloc_string(lp_servicenumber(servicename), type, option, NULL);
2343 }
2344
2345 /* Return parametric option from a given service. Type is a part of option before ':' */
2346 /* Parametric option has following syntax: 'Type: option = value' */
2347 /* the returned value is talloced in lp_talloc */
2348 char *lp_parm_talloc_string(int snum, const char *type, const char *option, const char *def)
2349 {
2350         param_opt_struct *data = get_parametrics(snum, type, option);
2351         
2352         if (data == NULL||data->value==NULL) {
2353                 if (def) {
2354                         return lp_string(def);
2355                 } else {
2356                         return NULL;
2357                 }
2358         }
2359
2360         return lp_string(data->value);
2361 }
2362
2363 /* Return parametric option from a given service. Type is a part of option before ':' */
2364 /* Parametric option has following syntax: 'Type: option = value' */
2365 const char *lp_parm_const_string(int snum, const char *type, const char *option, const char *def)
2366 {
2367         param_opt_struct *data = get_parametrics(snum, type, option);
2368         
2369         if (data == NULL||data->value==NULL)
2370                 return def;
2371                 
2372         return data->value;
2373 }
2374
2375 /* Return parametric option from a given service. Type is a part of option before ':' */
2376 /* Parametric option has following syntax: 'Type: option = value' */
2377
2378 const char **lp_parm_string_list(int snum, const char *type, const char *option, const char **def)
2379 {
2380         param_opt_struct *data = get_parametrics(snum, type, option);
2381
2382         if (data == NULL||data->value==NULL)
2383                 return (const char **)def;
2384                 
2385         if (data->list==NULL) {
2386                 data->list = str_list_make(data->value, NULL);
2387         }
2388
2389         return (const char **)data->list;
2390 }
2391
2392 /* Return parametric option from a given service. Type is a part of option before ':' */
2393 /* Parametric option has following syntax: 'Type: option = value' */
2394
2395 int lp_parm_int(int snum, const char *type, const char *option, int def)
2396 {
2397         param_opt_struct *data = get_parametrics(snum, type, option);
2398         
2399         if (data && data->value && *data->value)
2400                 return lp_int(data->value);
2401
2402         return def;
2403 }
2404
2405 /* Return parametric option from a given service. Type is a part of option before ':' */
2406 /* Parametric option has following syntax: 'Type: option = value' */
2407
2408 unsigned long lp_parm_ulong(int snum, const char *type, const char *option, unsigned long def)
2409 {
2410         param_opt_struct *data = get_parametrics(snum, type, option);
2411         
2412         if (data && data->value && *data->value)
2413                 return lp_ulong(data->value);
2414
2415         return def;
2416 }
2417
2418 /* Return parametric option from a given service. Type is a part of option before ':' */
2419 /* Parametric option has following syntax: 'Type: option = value' */
2420
2421 BOOL lp_parm_bool(int snum, const char *type, const char *option, BOOL def)
2422 {
2423         param_opt_struct *data = get_parametrics(snum, type, option);
2424         
2425         if (data && data->value && *data->value)
2426                 return lp_bool(data->value);
2427
2428         return def;
2429 }
2430
2431 /* Return parametric option from a given service. Type is a part of option before ':' */
2432 /* Parametric option has following syntax: 'Type: option = value' */
2433
2434 int lp_parm_enum(int snum, const char *type, const char *option,
2435                  const struct enum_list *_enum, int def)
2436 {
2437         param_opt_struct *data = get_parametrics(snum, type, option);
2438         
2439         if (data && data->value && *data->value && _enum)
2440                 return lp_enum(data->value, _enum);
2441
2442         return def;
2443 }
2444
2445
2446 /***************************************************************************
2447  Initialise a service to the defaults.
2448 ***************************************************************************/
2449
2450 static void init_service(service * pservice)
2451 {
2452         memset((char *)pservice, '\0', sizeof(service));
2453         copy_service(pservice, &sDefault, NULL);
2454 }
2455
2456 /***************************************************************************
2457  Free the dynamically allocated parts of a service struct.
2458 ***************************************************************************/
2459
2460 static void free_service(service *pservice)
2461 {
2462         int i;
2463         param_opt_struct *data, *pdata;
2464         if (!pservice)
2465                 return;
2466
2467         if (pservice->szService)
2468                 DEBUG(5, ("free_service: Freeing service %s\n",
2469                        pservice->szService));
2470
2471         string_free(&pservice->szService);
2472         SAFE_FREE(pservice->copymap);
2473
2474         for (i = 0; parm_table[i].label; i++) {
2475                 if ((parm_table[i].type == P_STRING ||
2476                      parm_table[i].type == P_USTRING) &&
2477                     parm_table[i].p_class == P_LOCAL)
2478                         string_free((char **)
2479                                     (((char *)pservice) +
2480                                      PTR_DIFF(parm_table[i].ptr, &sDefault)));
2481                 else if (parm_table[i].type == P_LIST &&
2482                          parm_table[i].p_class == P_LOCAL)
2483                              str_list_free((char ***)
2484                                             (((char *)pservice) +
2485                                              PTR_DIFF(parm_table[i].ptr, &sDefault)));
2486         }
2487
2488         data = pservice->param_opt;
2489         if (data)
2490                 DEBUG(5,("Freeing parametrics:\n"));
2491         while (data) {
2492                 DEBUG(5,("[%s = %s]\n", data->key, data->value));
2493                 string_free(&data->key);
2494                 string_free(&data->value);
2495                 str_list_free(&data->list);
2496                 pdata = data->next;
2497                 SAFE_FREE(data);
2498                 data = pdata;
2499         }
2500
2501         ZERO_STRUCTP(pservice);
2502 }
2503
2504
2505 /***************************************************************************
2506  remove a service indexed in the ServicePtrs array from the ServiceHash
2507  and free the dynamically allocated parts
2508 ***************************************************************************/
2509
2510 static void free_service_byindex(int idx)
2511 {
2512         if ( !LP_SNUM_OK(idx) ) 
2513                 return;
2514
2515         ServicePtrs[idx]->valid = False;
2516         invalid_services[num_invalid_services++] = idx;
2517
2518         /* we have to cleanup the hash record */
2519
2520         if (ServicePtrs[idx]->szService) {
2521                 char *canon_name = canonicalize_servicename( ServicePtrs[idx]->szService );
2522                 
2523                 tdb_delete_bystring(ServiceHash, canon_name );
2524         }
2525
2526         free_service(ServicePtrs[idx]);
2527 }
2528
2529 /***************************************************************************
2530  Add a new service to the services array initialising it with the given 
2531  service. 
2532 ***************************************************************************/
2533
2534 static int add_a_service(const service *pservice, const char *name)
2535 {
2536         int i;
2537         service tservice;
2538         int num_to_alloc = iNumServices + 1;
2539         param_opt_struct *data, *pdata;
2540
2541         tservice = *pservice;
2542
2543         /* it might already exist */
2544         if (name) {
2545                 i = getservicebyname(name, NULL);
2546                 if (i >= 0) {
2547                         /* Clean all parametric options for service */
2548                         /* They will be added during parsing again */
2549                         data = ServicePtrs[i]->param_opt;
2550                         while (data) {
2551                                 string_free(&data->key);
2552                                 string_free(&data->value);
2553                                 str_list_free(&data->list);
2554                                 pdata = data->next;
2555                                 SAFE_FREE(data);
2556                                 data = pdata;
2557                         }
2558                         ServicePtrs[i]->param_opt = NULL;
2559                         return (i);
2560                 }
2561         }
2562
2563         /* find an invalid one */
2564         i = iNumServices;
2565         if (num_invalid_services > 0) {
2566                 i = invalid_services[--num_invalid_services];
2567         }
2568
2569         /* if not, then create one */
2570         if (i == iNumServices) {
2571                 service **tsp;
2572                 int *tinvalid;
2573                 
2574                 tsp = SMB_REALLOC_ARRAY_KEEP_OLD_ON_ERROR(ServicePtrs, service *, num_to_alloc);
2575                 if (tsp == NULL) {
2576                         DEBUG(0,("add_a_service: failed to enlarge ServicePtrs!\n"));
2577                         return (-1);
2578                 }
2579                 ServicePtrs = tsp;
2580                 ServicePtrs[iNumServices] = SMB_MALLOC_P(service);
2581                 if (!ServicePtrs[iNumServices]) {
2582                         DEBUG(0,("add_a_service: out of memory!\n"));
2583                         return (-1);
2584                 }
2585                 iNumServices++;
2586
2587                 /* enlarge invalid_services here for now... */
2588                 tinvalid = SMB_REALLOC_ARRAY_KEEP_OLD_ON_ERROR(invalid_services, int,
2589                                              num_to_alloc);
2590                 if (tinvalid == NULL) {
2591                         DEBUG(0,("add_a_service: failed to enlarge "
2592                                  "invalid_services!\n"));
2593                         return (-1);
2594                 }
2595                 invalid_services = tinvalid;
2596         } else {
2597                 free_service_byindex(i);
2598         }
2599
2600         ServicePtrs[i]->valid = True;
2601
2602         init_service(ServicePtrs[i]);
2603         copy_service(ServicePtrs[i], &tservice, NULL);
2604         if (name)
2605                 string_set(&ServicePtrs[i]->szService, name);
2606                 
2607         DEBUG(8,("add_a_service: Creating snum = %d for %s\n", 
2608                 i, ServicePtrs[i]->szService));
2609
2610         if (!hash_a_service(ServicePtrs[i]->szService, i)) {
2611                 return (-1);
2612         }
2613                 
2614         return (i);
2615 }
2616
2617 /***************************************************************************
2618   Canonicalize by converting to lowercase.
2619 ***************************************************************************/
2620
2621 static char *canonicalize_servicename(const char *src)
2622 {
2623         static fstring canon; /* is fstring large enough? */
2624
2625         if ( !src ) {
2626                 DEBUG(0,("canonicalize_servicename: NULL source name!\n"));
2627                 return NULL;
2628         }
2629
2630         fstrcpy( canon, src );
2631         strlower_m( canon );
2632
2633         return canon;
2634 }
2635
2636 /***************************************************************************
2637   Add a name/index pair for the services array to the hash table.
2638 ***************************************************************************/
2639
2640 static BOOL hash_a_service(const char *name, int idx)
2641 {
2642         char *canon_name;
2643
2644         if ( !ServiceHash ) {
2645                 DEBUG(10,("hash_a_service: creating tdb servicehash\n"));
2646                 ServiceHash = tdb_open("servicehash", 1031, TDB_INTERNAL, 
2647                                         (O_RDWR|O_CREAT), 0600);
2648                 if ( !ServiceHash ) {
2649                         DEBUG(0,("hash_a_service: open tdb servicehash failed!\n"));
2650                         return False;
2651                 }
2652         }
2653
2654         DEBUG(10,("hash_a_service: hashing index %d for service name %s\n",
2655                 idx, name));
2656
2657         if ( !(canon_name = canonicalize_servicename( name )) )
2658                 return False;
2659
2660         tdb_store_int32(ServiceHash, canon_name, idx);
2661
2662         return True;
2663 }
2664
2665 /***************************************************************************
2666  Add a new home service, with the specified home directory, defaults coming 
2667  from service ifrom.
2668 ***************************************************************************/
2669
2670 BOOL lp_add_home(const char *pszHomename, int iDefaultService, 
2671                  const char *user, const char *pszHomedir)
2672 {
2673         int i;
2674         pstring newHomedir;
2675
2676         i = add_a_service(ServicePtrs[iDefaultService], pszHomename);
2677
2678         if (i < 0)
2679                 return (False);
2680
2681         if (!(*(ServicePtrs[iDefaultService]->szPath))
2682             || strequal(ServicePtrs[iDefaultService]->szPath, lp_pathname(GLOBAL_SECTION_SNUM))) {
2683                 pstrcpy(newHomedir, pszHomedir);
2684                 string_set(&ServicePtrs[i]->szPath, newHomedir);
2685         } 
2686
2687         if (!(*(ServicePtrs[i]->comment))) {
2688                 pstring comment;
2689                 slprintf(comment, sizeof(comment) - 1,
2690                          "Home directory of %s", user);
2691                 string_set(&ServicePtrs[i]->comment, comment);
2692         }
2693
2694         /* set the browseable flag from the global default */
2695
2696         ServicePtrs[i]->bBrowseable = sDefault.bBrowseable;
2697
2698         ServicePtrs[i]->autoloaded = True;
2699
2700         DEBUG(3, ("adding home's share [%s] for user '%s' at '%s'\n", pszHomename, 
2701                user, ServicePtrs[i]->szPath ));
2702         
2703         return (True);
2704 }
2705
2706 /***************************************************************************
2707  Add a new service, based on an old one.
2708 ***************************************************************************/
2709
2710 int lp_add_service(const char *pszService, int iDefaultService)
2711 {
2712         if (iDefaultService < 0) {
2713                 return add_a_service(&sDefault, pszService);
2714         }
2715
2716         return (add_a_service(ServicePtrs[iDefaultService], pszService));
2717 }
2718
2719 /***************************************************************************
2720  Add the IPC service.
2721 ***************************************************************************/
2722
2723 static BOOL lp_add_ipc(const char *ipc_name, BOOL guest_ok)
2724 {
2725         pstring comment;
2726         int i = add_a_service(&sDefault, ipc_name);
2727
2728         if (i < 0)
2729                 return (False);
2730
2731         slprintf(comment, sizeof(comment) - 1,
2732                  "IPC Service (%s)", Globals.szServerString);
2733
2734         string_set(&ServicePtrs[i]->szPath, tmpdir());
2735         string_set(&ServicePtrs[i]->szUsername, "");
2736         string_set(&ServicePtrs[i]->comment, comment);
2737         string_set(&ServicePtrs[i]->fstype, "IPC");
2738         ServicePtrs[i]->iMaxConnections = 0;
2739         ServicePtrs[i]->bAvailable = True;
2740         ServicePtrs[i]->bRead_only = True;
2741         ServicePtrs[i]->bGuest_only = False;
2742         ServicePtrs[i]->bGuest_ok = guest_ok;
2743         ServicePtrs[i]->bPrint_ok = False;
2744         ServicePtrs[i]->bBrowseable = sDefault.bBrowseable;
2745
2746         DEBUG(3, ("adding IPC service\n"));
2747
2748         return (True);
2749 }
2750
2751 /***************************************************************************
2752  Add a new printer service, with defaults coming from service iFrom.
2753 ***************************************************************************/
2754
2755 BOOL lp_add_printer(const char *pszPrintername, int iDefaultService)
2756 {
2757         const char *comment = "From Printcap";
2758         int i = add_a_service(ServicePtrs[iDefaultService], pszPrintername);
2759
2760         if (i < 0)
2761                 return (False);
2762
2763         /* note that we do NOT default the availability flag to True - */
2764         /* we take it from the default service passed. This allows all */
2765         /* dynamic printers to be disabled by disabling the [printers] */
2766         /* entry (if/when the 'available' keyword is implemented!).    */
2767
2768         /* the printer name is set to the service name. */
2769         string_set(&ServicePtrs[i]->szPrintername, pszPrintername);
2770         string_set(&ServicePtrs[i]->comment, comment);
2771
2772         /* set the browseable flag from the gloabl default */
2773         ServicePtrs[i]->bBrowseable = sDefault.bBrowseable;
2774
2775         /* Printers cannot be read_only. */
2776         ServicePtrs[i]->bRead_only = False;
2777         /* No share modes on printer services. */
2778         ServicePtrs[i]->bShareModes = False;
2779         /* No oplocks on printer services. */
2780         ServicePtrs[i]->bOpLocks = False;
2781         /* Printer services must be printable. */
2782         ServicePtrs[i]->bPrint_ok = True;
2783         
2784         DEBUG(3, ("adding printer service %s\n", pszPrintername));
2785
2786         return (True);
2787 }
2788
2789
2790 /***************************************************************************
2791  Check whether the given parameter name is valid.
2792  Parametric options (names containing a colon) are considered valid.
2793 ***************************************************************************/
2794
2795 BOOL lp_parameter_is_valid(const char *pszParmName)
2796 {
2797         return ((map_parameter(pszParmName) != -1) ||
2798                 (strchr(pszParmName, ':') != NULL));
2799 }
2800
2801 /***************************************************************************
2802  Check whether the given name is the name of a global parameter.
2803  Returns True for strings belonging to parameters of class
2804  P_GLOBAL, False for all other strings, also for parametric options
2805  and strings not belonging to any option.
2806 ***************************************************************************/
2807
2808 BOOL lp_parameter_is_global(const char *pszParmName)
2809 {
2810         int num = map_parameter(pszParmName);
2811
2812         if (num >= 0) {
2813                 return (parm_table[num].p_class == P_GLOBAL);
2814         }
2815
2816         return False;
2817 }
2818
2819 /**************************************************************************
2820  Determine the canonical name for a parameter.
2821  Indicate when it is an inverse (boolean) synonym instead of a
2822  "usual" synonym.
2823 **************************************************************************/
2824
2825 BOOL lp_canonicalize_parameter(const char *parm_name, const char **canon_parm,
2826                                BOOL *inverse)
2827 {
2828         int num, canon_num;
2829
2830         if (!lp_parameter_is_valid(parm_name)) {
2831                 *canon_parm = NULL;
2832                 return False;
2833         }
2834
2835         *inverse = False;
2836         num = map_parameter(parm_name);
2837         if ((num < 0) || !(parm_table[num].flags & FLAG_HIDE)) {
2838                 /* it is already canonical (parametric are canonical anyways) */
2839                 *canon_parm = parm_name;
2840                 return True;
2841         }
2842
2843         for (canon_num = 0; parm_table[canon_num].label; canon_num++) {
2844                 if (is_synonym_of(num, canon_num, inverse)) {
2845                         *canon_parm = parm_table[canon_num].label;
2846                         return True;
2847                 }
2848         }
2849
2850         /* 'include', 'copy', 'config file' and friends left */
2851         *canon_parm = parm_name;
2852         return True;
2853 }
2854
2855 /***************************************************************************
2856  Map a parameter's string representation to something we can use. 
2857  Returns False if the parameter string is not recognised, else TRUE.
2858 ***************************************************************************/
2859
2860 static int map_parameter(const char *pszParmName)
2861 {
2862         int iIndex;
2863
2864         if (*pszParmName == '-')
2865                 return (-1);
2866
2867         for (iIndex = 0; parm_table[iIndex].label; iIndex++)
2868                 if (strwicmp(parm_table[iIndex].label, pszParmName) == 0)
2869                         return (iIndex);
2870
2871         /* Warn only if it isn't parametric option */
2872         if (strchr(pszParmName, ':') == NULL)
2873                 DEBUG(0, ("Unknown parameter encountered: \"%s\"\n", pszParmName));
2874         /* We do return 'fail' for parametric options as well because they are
2875            stored in different storage
2876          */
2877         return (-1);
2878 }
2879
2880 /***************************************************************************
2881  return true if parameter number parm1 is a synonym of parameter
2882  number parm2 (parm2 being the principal name).
2883  set inverse to True if parm1 is P_BOOLREV and parm2 is P_BOOL,
2884  False otherwise.
2885 ***************************************************************************/
2886
2887 static BOOL is_synonym_of(int parm1, int parm2, BOOL *inverse)
2888 {
2889         if ((parm_table[parm1].ptr == parm_table[parm2].ptr) &&
2890             (parm_table[parm1].flags & FLAG_HIDE) &&
2891             !(parm_table[parm2].flags & FLAG_HIDE))
2892         {
2893                 if ((parm_table[parm1].type == P_BOOLREV) &&
2894                     (parm_table[parm2].type == P_BOOL))
2895                 {
2896                         *inverse = True;
2897                 } else {
2898                         *inverse = False;
2899                 }
2900                 return True;
2901         }
2902         return False;
2903 }
2904
2905 /***************************************************************************
2906  Show one parameter's name, type, [values,] and flags.
2907  (helper functions for show_parameter_list)
2908 ***************************************************************************/
2909
2910 static void show_parameter(int parmIndex)
2911 {
2912         int enumIndex, flagIndex;
2913         int parmIndex2;
2914         BOOL hadFlag;
2915         BOOL hadSyn;
2916         BOOL inverse;
2917         const char *type[] = { "P_BOOL", "P_BOOLREV", "P_CHAR", "P_INTEGER",
2918                 "P_OCTAL", "P_LIST", "P_STRING", "P_USTRING", "P_GSTRING",
2919                 "P_UGSTRING", "P_ENUM", "P_SEP"};
2920         unsigned flags[] = { FLAG_BASIC, FLAG_SHARE, FLAG_PRINT, FLAG_GLOBAL,
2921                 FLAG_WIZARD, FLAG_ADVANCED, FLAG_DEVELOPER, FLAG_DEPRECATED,
2922                 FLAG_HIDE, FLAG_DOS_STRING};
2923         const char *flag_names[] = { "FLAG_BASIC", "FLAG_SHARE", "FLAG_PRINT",
2924                 "FLAG_GLOBAL", "FLAG_WIZARD", "FLAG_ADVANCED", "FLAG_DEVELOPER",
2925                 "FLAG_DEPRECATED", "FLAG_HIDE", "FLAG_DOS_STRING", NULL};
2926
2927         printf("%s=%s", parm_table[parmIndex].label,
2928                type[parm_table[parmIndex].type]);
2929         if (parm_table[parmIndex].type == P_ENUM) {
2930                 printf(",");
2931                 for (enumIndex=0;
2932                      parm_table[parmIndex].enum_list[enumIndex].name;
2933                      enumIndex++)
2934                 {
2935                         printf("%s%s",
2936                                enumIndex ? "|" : "",
2937                                parm_table[parmIndex].enum_list[enumIndex].name);
2938                 }
2939         }
2940         printf(",");
2941         hadFlag = False;
2942         for (flagIndex=0; flag_names[flagIndex]; flagIndex++) {
2943                 if (parm_table[parmIndex].flags & flags[flagIndex]) {
2944                         printf("%s%s",
2945                                 hadFlag ? "|" : "",
2946                                 flag_names[flagIndex]);
2947                         hadFlag = True;
2948                 }
2949         }
2950
2951         /* output synonyms */
2952         hadSyn = False;
2953         for (parmIndex2=0; parm_table[parmIndex2].label; parmIndex2++) {
2954                 if (is_synonym_of(parmIndex, parmIndex2, &inverse)) {
2955                         printf(" (%ssynonym of %s)", inverse ? "inverse " : "",
2956                                parm_table[parmIndex2].label);
2957                 } else if (is_synonym_of(parmIndex2, parmIndex, &inverse)) {
2958                         if (!hadSyn) {
2959                                 printf(" (synonyms: ");
2960                                 hadSyn = True;
2961                         } else {
2962                                 printf(", ");
2963                         }
2964                         printf("%s%s", parm_table[parmIndex2].label,
2965                                inverse ? "[i]" : "");
2966                 }
2967         }
2968         if (hadSyn) {
2969                 printf(")");
2970         }
2971
2972         printf("\n");
2973 }
2974
2975 /***************************************************************************
2976  Show all parameter's name, type, [values,] and flags.
2977 ***************************************************************************/
2978
2979 void show_parameter_list(void)
2980 {
2981         int classIndex, parmIndex;
2982         const char *section_names[] = { "local", "global", NULL};
2983
2984         for (classIndex=0; section_names[classIndex]; classIndex++) {
2985                 printf("[%s]\n", section_names[classIndex]);
2986                 for (parmIndex = 0; parm_table[parmIndex].label; parmIndex++) {
2987                         if (parm_table[parmIndex].p_class == classIndex) {
2988                                 show_parameter(parmIndex);
2989                         }
2990                 }
2991         }
2992 }
2993
2994 /***************************************************************************
2995  Set a boolean variable from the text value stored in the passed string.
2996  Returns True in success, False if the passed string does not correctly 
2997  represent a boolean.
2998 ***************************************************************************/
2999
3000 static BOOL set_boolean(BOOL *pb, const char *pszParmValue)
3001 {
3002         BOOL bRetval;
3003
3004         bRetval = True;
3005         if (strwicmp(pszParmValue, "yes") == 0 ||
3006             strwicmp(pszParmValue, "true") == 0 ||
3007             strwicmp(pszParmValue, "1") == 0)
3008                 *pb = True;
3009         else if (strwicmp(pszParmValue, "no") == 0 ||
3010                     strwicmp(pszParmValue, "False") == 0 ||
3011                     strwicmp(pszParmValue, "0") == 0)
3012                 *pb = False;
3013         else {
3014                 DEBUG(0,
3015                       ("ERROR: Badly formed boolean in configuration file: \"%s\".\n",
3016                        pszParmValue));
3017                 bRetval = False;
3018         }
3019         return (bRetval);
3020 }
3021
3022 /***************************************************************************
3023  Get the standard string representation of a boolean value ("yes" or "no")
3024 ***************************************************************************/
3025
3026 static const char *get_boolean(BOOL bool_value)
3027 {
3028         static const char *yes_str = "yes";
3029         static const char *no_str = "no";
3030
3031         return (bool_value ? yes_str : no_str);
3032 }
3033
3034 /***************************************************************************
3035  Provide the string of the negated boolean value associated to the boolean
3036  given as a string. Returns False if the passed string does not correctly
3037  represent a boolean.
3038 ***************************************************************************/
3039
3040 BOOL lp_invert_boolean(const char *str, const char **inverse_str)
3041 {
3042         BOOL val;
3043
3044         if (!set_boolean(&val, str)) {
3045                 return False;
3046         }
3047
3048         *inverse_str = get_boolean(!val);
3049         return True;
3050 }
3051
3052 /***************************************************************************
3053  Provide the canonical string representation of a boolean value given
3054  as a string. Return True on success, False if the string given does
3055  not correctly represent a boolean.
3056 ***************************************************************************/
3057
3058 BOOL lp_canonicalize_boolean(const char *str, const char**canon_str)
3059 {
3060         BOOL val;
3061
3062         if (!set_boolean(&val, str)) {
3063                 return False;
3064         }
3065
3066         *canon_str = get_boolean(val);
3067         return True;
3068 }
3069
3070 /***************************************************************************
3071 Find a service by name. Otherwise works like get_service.
3072 ***************************************************************************/
3073
3074 static int getservicebyname(const char *pszServiceName, service * pserviceDest)
3075 {
3076         int iService = -1;
3077         char *canon_name;
3078
3079         if (ServiceHash != NULL) {
3080                 if ( !(canon_name = canonicalize_servicename( pszServiceName )) )
3081                         return -1;
3082
3083                 iService = tdb_fetch_int32(ServiceHash, canon_name );
3084
3085                 if (LP_SNUM_OK(iService)) {
3086                         if (pserviceDest != NULL) {
3087                                 copy_service(pserviceDest, ServicePtrs[iService], NULL);
3088                         }
3089                 } else {
3090                         iService = -1;
3091                 }
3092         }
3093
3094         return (iService);
3095 }
3096
3097 /***************************************************************************
3098  Copy a service structure to another.
3099  If pcopymapDest is NULL then copy all fields
3100 ***************************************************************************/
3101
3102 static void copy_service(service * pserviceDest, service * pserviceSource, BOOL *pcopymapDest)
3103 {
3104         int i;
3105         BOOL bcopyall = (pcopymapDest == NULL);
3106         param_opt_struct *data, *pdata, *paramo;
3107         BOOL not_added;
3108
3109         for (i = 0; parm_table[i].label; i++)
3110                 if (parm_table[i].ptr && parm_table[i].p_class == P_LOCAL &&
3111                     (bcopyall || pcopymapDest[i])) {
3112                         void *def_ptr = parm_table[i].ptr;
3113                         void *src_ptr =
3114                                 ((char *)pserviceSource) + PTR_DIFF(def_ptr,
3115                                                                     &sDefault);
3116                         void *dest_ptr =
3117                                 ((char *)pserviceDest) + PTR_DIFF(def_ptr,
3118                                                                   &sDefault);
3119
3120                         switch (parm_table[i].type) {
3121                                 case P_BOOL:
3122                                 case P_BOOLREV:
3123                                         *(BOOL *)dest_ptr = *(BOOL *)src_ptr;
3124                                         break;
3125
3126                                 case P_INTEGER:
3127                                 case P_ENUM:
3128                                 case P_OCTAL:
3129                                         *(int *)dest_ptr = *(int *)src_ptr;
3130                                         break;
3131
3132                                 case P_CHAR:
3133                                         *(char *)dest_ptr = *(char *)src_ptr;
3134                                         break;
3135
3136                                 case P_STRING:
3137                                         string_set((char **)dest_ptr,
3138                                                    *(char **)src_ptr);
3139                                         break;
3140
3141                                 case P_USTRING:
3142                                         string_set((char **)dest_ptr,
3143                                                    *(char **)src_ptr);
3144                                         strupper_m(*(char **)dest_ptr);
3145                                         break;
3146                                 case P_LIST:
3147                                         str_list_free((char ***)dest_ptr);
3148                                         str_list_copy((char ***)dest_ptr, *(const char ***)src_ptr);
3149                                         break;
3150                                 default:
3151                                         break;
3152                         }
3153                 }
3154
3155         if (bcopyall) {
3156                 init_copymap(pserviceDest);
3157                 if (pserviceSource->copymap)
3158                         memcpy((void *)pserviceDest->copymap,
3159                                (void *)pserviceSource->copymap,
3160                                sizeof(BOOL) * NUMPARAMETERS);
3161         }
3162         
3163         data = pserviceSource->param_opt;
3164         while (data) {
3165                 not_added = True;
3166                 pdata = pserviceDest->param_opt;
3167                 /* Traverse destination */
3168                 while (pdata) {
3169                         /* If we already have same option, override it */
3170                         if (strcmp(pdata->key, data->key) == 0) {
3171                                 string_free(&pdata->value);
3172                                 str_list_free(&data->list);
3173                                 pdata->value = SMB_STRDUP(data->value);
3174                                 not_added = False;
3175                                 break;
3176                         }
3177                         pdata = pdata->next;
3178                 }
3179                 if (not_added) {
3180                     paramo = SMB_XMALLOC_P(param_opt_struct);
3181                     paramo->key = SMB_STRDUP(data->key);
3182                     paramo->value = SMB_STRDUP(data->value);
3183                     paramo->list = NULL;
3184                     DLIST_ADD(pserviceDest->param_opt, paramo);
3185                 }
3186                 data = data->next;
3187         }
3188 }
3189
3190 /***************************************************************************
3191 Check a service for consistency. Return False if the service is in any way
3192 incomplete or faulty, else True.
3193 ***************************************************************************/
3194
3195 BOOL service_ok(int iService)
3196 {
3197         BOOL bRetval;
3198
3199         bRetval = True;
3200         if (ServicePtrs[iService]->szService[0] == '\0') {
3201                 DEBUG(0, ("The following message indicates an internal error:\n"));
3202                 DEBUG(0, ("No service name in service entry.\n"));
3203                 bRetval = False;
3204         }
3205
3206         /* The [printers] entry MUST be printable. I'm all for flexibility, but */
3207         /* I can't see why you'd want a non-printable printer service...        */
3208         if (strwicmp(ServicePtrs[iService]->szService, PRINTERS_NAME) == 0) {
3209                 if (!ServicePtrs[iService]->bPrint_ok) {
3210                         DEBUG(0, ("WARNING: [%s] service MUST be printable!\n",
3211                                ServicePtrs[iService]->szService));
3212                         ServicePtrs[iService]->bPrint_ok = True;
3213                 }
3214                 /* [printers] service must also be non-browsable. */
3215                 if (ServicePtrs[iService]->bBrowseable)
3216                         ServicePtrs[iService]->bBrowseable = False;
3217         }
3218
3219         if (ServicePtrs[iService]->szPath[0] == '\0' &&
3220             strwicmp(ServicePtrs[iService]->szService, HOMES_NAME) != 0 &&
3221             ServicePtrs[iService]->szMSDfsProxy[0] == '\0'
3222             ) {
3223                 DEBUG(0, ("WARNING: No path in service %s - making it unavailable!\n",
3224                         ServicePtrs[iService]->szService));
3225                 ServicePtrs[iService]->bAvailable = False;
3226         }
3227
3228         /* If a service is flagged unavailable, log the fact at level 1. */
3229         if (!ServicePtrs[iService]->bAvailable)
3230                 DEBUG(1, ("NOTE: Service %s is flagged unavailable.\n",
3231                           ServicePtrs[iService]->szService));
3232
3233         return (bRetval);
3234 }
3235
3236 /*
3237  * lp_regdb_open - regdb helper function 
3238  *
3239  * this should be considered an interim solution that becomes
3240  * superfluous once the registry code has been rewritten
3241  * do allow use of the tdb portion of the registry alone.
3242  *
3243  * in the meanwhile this provides a lean access
3244  * to the registry globals.
3245  */
3246
3247 static struct tdb_wrap *lp_regdb_open(void)
3248 {
3249         struct tdb_wrap *reg_tdb = NULL;
3250         const char *vstring = "INFO/version";
3251         uint32 vers_id;
3252
3253         become_root();
3254         reg_tdb = tdb_wrap_open(NULL, lock_path("registry.tdb"), 0, 
3255                                 REG_TDB_FLAGS, O_RDWR, 0600);
3256         if (!reg_tdb) {
3257                 DEBUG(1, ("lp_regdb_open: failed to open %s: %s\n",
3258                          lock_path("registry.tdb"), strerror(errno)));
3259                 goto done;
3260         }
3261         else {
3262                 DEBUG(10, ("lp_regdb_open: reg tdb opened.\n"));
3263         }
3264         unbecome_root();
3265
3266         vers_id = tdb_fetch_int32(reg_tdb->tdb, vstring);
3267         if (vers_id != REGVER_V1) {
3268                 DEBUG(10, ("lp_regdb_open: INFO: registry tdb %s has wrong "
3269                           "INFO/version (got %d, expected %d)\n",
3270                           lock_path("registry.tdb"), vers_id, REGVER_V1));
3271                 /* this is apparently not implemented in the tdb */
3272         }
3273
3274 done:
3275         return reg_tdb;
3276 }
3277
3278 /*
3279  * process_registry_globals
3280  *
3281  * this is the interim version of process_registry globals
3282  *
3283  * until we can do it as we would like using the api and only
3284  * using the tdb portion of the registry (see below),
3285  * this just provides the needed functionality of regdb_fetch_values
3286  * and regdb_unpack_values, circumventing any fancy stuff, to
3287  * give us access to the registry globals.
3288  */
3289 static BOOL process_registry_globals(BOOL (*pfunc)(const char *, const char *))
3290 {
3291         BOOL ret = False;
3292         struct tdb_wrap *reg_tdb = NULL;
3293         WERROR err;
3294         char *keystr;
3295         TDB_DATA data;
3296         /* vars for the tdb unpack loop */
3297         int len = 0;
3298         int i;
3299         int buflen;
3300         uint8 *buf;
3301         uint32 type;
3302         uint32 size;
3303         uint32 num_values = 0;
3304         uint8 *data_p;
3305         pstring valname;
3306         char * valstr;
3307         struct registry_value *value = NULL;
3308
3309         include_registry_globals = True;
3310
3311         ZERO_STRUCT(data);
3312
3313         reg_tdb = lp_regdb_open();
3314         if (!reg_tdb) {
3315                 DEBUG(1, ("Error opening the registry!\n"));
3316                 goto done;
3317         }
3318
3319         /* reg_tdb is from now on used as talloc ctx.
3320          * freeing it closes the tdb (if refcount is 0) */
3321
3322         keystr = talloc_asprintf(reg_tdb,"%s/%s/%s", REG_VALUE_PREFIX, 
3323                                  KEY_SMBCONF, GLOBAL_NAME);
3324         normalize_dbkey(keystr);
3325
3326         DEBUG(10, ("process_registry_globals: fetching key '%s'\n",
3327                    keystr));
3328
3329         data = tdb_fetch_bystring(reg_tdb->tdb, keystr);
3330         if (!data.dptr) {
3331                 ret = True;
3332                 goto done;
3333         }
3334
3335         buf = data.dptr;
3336         buflen = data.dsize;
3337
3338         /* unpack number of values */
3339         len = tdb_unpack(buf, buflen, "d", &num_values);
3340         DEBUG(10, ("process_registry_globals: got %d values from tdb\n",
3341                    num_values));
3342
3343         /* unpack the values */
3344         for (i=0; i < num_values; i++) {
3345                 type = REG_NONE;
3346                 size = 0;
3347                 data_p = NULL;
3348                 len += tdb_unpack(buf+len, buflen-len, "fdB",
3349                                   valname,
3350                                   &type,
3351                                   &size,
3352                                   &data_p);
3353                 if (registry_smbconf_valname_forbidden(valname)) {
3354                         DEBUG(10, ("process_registry_globals: Ignoring "
3355                                    "parameter '%s' in registry.\n", valname));
3356                         continue;
3357                 }
3358                 DEBUG(10, ("process_registry_globals: got value '%s'\n",
3359                            valname));
3360                 if (size && data_p) {
3361                         err = registry_pull_value(reg_tdb, 
3362                                                   &value,
3363                                                   type,
3364                                                   data_p,
3365                                                   size,
3366                                                   size);
3367                         SAFE_FREE(data_p);
3368                         if (!W_ERROR_IS_OK(err)) {
3369                                 goto done;
3370                         }
3371                         switch(type) {
3372                         case REG_DWORD:
3373                                 valstr = talloc_asprintf(reg_tdb, "%d", 
3374                                                          value->v.dword);
3375                                 pfunc(valname, valstr);
3376                                 break;
3377                         case REG_SZ:
3378                                 pfunc(valname, value->v.sz.str);
3379                                 break;
3380                         default:
3381                                 /* ignore other types */
3382                                 break;
3383                         }
3384                 }
3385         }
3386
3387         ret = pfunc("registry shares", "yes");
3388         regdb_last_seqnum = tdb_get_seqnum(reg_tdb->tdb);
3389
3390 done:
3391         TALLOC_FREE(reg_tdb);
3392         SAFE_FREE(data.dptr);
3393         return ret;
3394 }
3395
3396 #if 0
3397 /*
3398  * this is process_registry_globals as it _should_ be (roughly)
3399  * using the reg_api functions...
3400  * 
3401  */
3402 static BOOL process_registry_globals(BOOL (*pfunc)(const char *, const char *))
3403 {
3404         BOOL ret = False;
3405         TALLOC_CTX *ctx = NULL;
3406         char *regpath = NULL;
3407         WERROR werr = WERR_OK;
3408         struct registry_key *key = NULL;
3409         struct registry_value *value = NULL;
3410         char *valname = NULL;
3411         char *valstr = NULL;
3412         uint32 idx = 0;
3413         NT_USER_TOKEN *token;
3414
3415         ctx = talloc_init("process_registry_globals");
3416         if (!ctx) {
3417                 smb_panic("Failed to create talloc context!");
3418         }
3419
3420         include_registry_globals = True;
3421
3422         if (!registry_init_regdb()) {
3423                 DEBUG(1, ("Error initializing the registry.\n"));
3424                 goto done;
3425         }
3426
3427         if (!(token = registry_create_admin_token(ctx))) {
3428                 DEBUG(1, ("Error creating admin token\n"));
3429                 goto done;
3430         }
3431
3432         regpath = talloc_asprintf(ctx,"%s\\%s", KEY_SMBCONF, GLOBAL_NAME);
3433         werr = reg_open_path(ctx, regpath, REG_KEY_READ, token, &key);
3434         if (!W_ERROR_IS_OK(werr)) {
3435                 DEBUG(1, ("Registry smbconf global section does not exist.\n"));
3436                 DEBUGADD(1, ("Error opening registry path '%s\\%s: %s\n",
3437                              KEY_SMBCONF, GLOBAL_NAME, dos_errstr(werr)));
3438                 goto done;
3439         }
3440
3441         for (idx = 0;
3442              W_ERROR_IS_OK(werr = reg_enumvalue(ctx, key, idx, &valname,
3443                                                 &value));
3444              idx++)
3445         {
3446                 DEBUG(5, ("got global registry parameter '%s'\n", valname));
3447                 switch(value->type) {
3448                 case REG_DWORD:
3449                         valstr = talloc_asprintf(ctx, "%d", value->v.dword);
3450                         pfunc(valname, valstr);
3451                         TALLOC_FREE(valstr);
3452                         break;
3453                 case REG_SZ:
3454                         pfunc(valname, value->v.sz.str);
3455                         break;
3456                 default:
3457                         /* ignore other types */
3458                         break;
3459                 }
3460                 TALLOC_FREE(value);
3461                 TALLOC_FREE(valstr);
3462         }
3463
3464         ret = pfunc("registry shares", "yes");
3465
3466         regdb_last_seqnum = regdb_get_seqnum();
3467
3468 done:
3469         talloc_destroy(ctx);
3470         return ret;
3471 }
3472 #endif /* if 0 */
3473
3474 static struct file_lists {
3475         struct file_lists *next;
3476         char *name;
3477         char *subfname;
3478         time_t modtime;
3479 } *file_lists = NULL;
3480
3481 /*******************************************************************
3482  Keep a linked list of all config files so we know when one has changed 
3483  it's date and needs to be reloaded.
3484 ********************************************************************/
3485
3486 static void add_to_file_list(const char *fname, const char *subfname)
3487 {
3488         struct file_lists *f = file_lists;
3489
3490         while (f) {
3491                 if (f->name && !strcmp(f->name, fname))
3492                         break;
3493                 f = f->next;
3494         }
3495
3496         if (!f) {
3497                 f = SMB_MALLOC_P(struct file_lists);
3498                 if (!f)
3499                         return;
3500                 f->next = file_lists;
3501                 f->name = SMB_STRDUP(fname);
3502                 if (!f->name) {
3503                         SAFE_FREE(f);
3504                         return;
3505                 }
3506                 f->subfname = SMB_STRDUP(subfname);
3507                 if (!f->subfname) {
3508                         SAFE_FREE(f);
3509                         return;
3510                 }
3511                 file_lists = f;
3512                 f->modtime = file_modtime(subfname);
3513         } else {
3514                 time_t t = file_modtime(subfname);
3515                 if (t)
3516                         f->modtime = t;
3517         }
3518 }
3519
3520 /*******************************************************************
3521  Check if a config file has changed date.
3522 ********************************************************************/
3523
3524 BOOL lp_file_list_changed(void)
3525 {
3526         struct file_lists *f = file_lists;
3527         struct tdb_wrap *reg_tdb = NULL;
3528
3529         DEBUG(6, ("lp_file_list_changed()\n"));
3530
3531         if (include_registry_globals) {
3532                 reg_tdb = lp_regdb_open();
3533                 if (reg_tdb && (regdb_last_seqnum != tdb_get_seqnum(reg_tdb->tdb)))
3534                 {
3535                         DEBUGADD(6, ("regdb seqnum changed: old = %d, new = %d\n",
3536                                     regdb_last_seqnum, tdb_get_seqnum(reg_tdb->tdb)));
3537                         TALLOC_FREE(reg_tdb);
3538                         return True;
3539                 }
3540         }
3541
3542         while (f) {
3543                 pstring n2;
3544                 time_t mod_time;
3545
3546                 pstrcpy(n2, f->name);
3547                 standard_sub_basic( get_current_username(),
3548                                     current_user_info.domain,
3549                                     n2, sizeof(n2) );
3550
3551                 DEBUGADD(6, ("file %s -> %s  last mod_time: %s\n",
3552                              f->name, n2, ctime(&f->modtime)));
3553
3554                 mod_time = file_modtime(n2);
3555
3556                 if (mod_time && ((f->modtime != mod_time) || (f->subfname == NULL) || (strcmp(n2, f->subfname) != 0))) {
3557                         DEBUGADD(6,
3558                                  ("file %s modified: %s\n", n2,
3559                                   ctime(&mod_time)));
3560                         f->modtime = mod_time;
3561                         SAFE_FREE(f->subfname);
3562                         f->subfname = SMB_STRDUP(n2);
3563                         return (True);
3564                 }
3565                 f = f->next;
3566         }
3567         return (False);
3568 }
3569
3570 /***************************************************************************
3571  Run standard_sub_basic on netbios name... needed because global_myname
3572  is not accessed through any lp_ macro.
3573  Note: We must *NOT* use string_set() here as ptr points to global_myname.
3574 ***************************************************************************/
3575
3576 static BOOL handle_netbios_name(int snum, const char *pszParmValue, char **ptr)
3577 {
3578         BOOL ret;
3579         pstring netbios_name;
3580
3581         pstrcpy(netbios_name, pszParmValue);
3582
3583         standard_sub_basic(get_current_username(), current_user_info.domain,
3584                            netbios_name, sizeof(netbios_name));
3585
3586         ret = set_global_myname(netbios_name);
3587         string_set(&Globals.szNetbiosName,global_myname());
3588         
3589         DEBUG(4, ("handle_netbios_name: set global_myname to: %s\n",
3590                global_myname()));
3591
3592         return ret;
3593 }
3594
3595 static BOOL handle_charset(int snum, const char *pszParmValue, char **ptr)
3596 {
3597         if (strcmp(*ptr, pszParmValue) != 0) {
3598                 string_set(ptr, pszParmValue);
3599                 init_iconv();
3600         }
3601         return True;
3602 }
3603
3604
3605
3606 static BOOL handle_workgroup(int snum, const char *pszParmValue, char **ptr)
3607 {
3608         BOOL ret;
3609         
3610         ret = set_global_myworkgroup(pszParmValue);
3611         string_set(&Globals.szWorkgroup,lp_workgroup());
3612         
3613         return ret;
3614 }
3615
3616 static BOOL handle_netbios_scope(int snum, const char *pszParmValue, char **ptr)
3617 {
3618         BOOL ret;
3619         
3620         ret = set_global_scope(pszParmValue);
3621         string_set(&Globals.szNetbiosScope,global_scope());
3622
3623         return ret;
3624 }
3625
3626 static BOOL handle_netbios_aliases(int snum, const char *pszParmValue, char **ptr)
3627 {
3628         str_list_free(&Globals.szNetbiosAliases);
3629         Globals.szNetbiosAliases = str_list_make(pszParmValue, NULL);
3630         return set_netbios_aliases((const char **)Globals.szNetbiosAliases);
3631 }
3632
3633 /***************************************************************************
3634  Handle the include operation.
3635 ***************************************************************************/
3636
3637 static BOOL handle_include(int snum, const char *pszParmValue, char **ptr)
3638 {
3639         pstring fname;
3640         pstrcpy(fname, pszParmValue);
3641
3642         if (strequal(fname, INCLUDE_REGISTRY_NAME)) {
3643                 if (bInGlobalSection) {
3644                         return process_registry_globals(do_parameter);
3645                 }
3646                 else {
3647                         DEBUG(1, ("\"include = registry\" only effective "
3648                                   "in %s section\n", GLOBAL_NAME));
3649                         return False;
3650                 }
3651         }
3652
3653         standard_sub_basic(get_current_username(), current_user_info.domain,
3654                            fname,sizeof(fname));
3655
3656         add_to_file_list(pszParmValue, fname);
3657
3658         string_set(ptr, fname);
3659
3660         if (file_exist(fname, NULL))
3661                 return (pm_process(fname, do_section, do_parameter));
3662
3663         DEBUG(2, ("Can't find include file %s\n", fname));
3664
3665         return (False);
3666 }
3667
3668 /***************************************************************************
3669  Handle the interpretation of the copy parameter.
3670 ***************************************************************************/
3671
3672 static BOOL handle_copy(int snum, const char *pszParmValue, char **ptr)
3673 {
3674         BOOL bRetval;
3675         int iTemp;
3676         service serviceTemp;
3677
3678         string_set(ptr, pszParmValue);
3679
3680         init_service(&serviceTemp);
3681
3682         bRetval = False;
3683
3684         DEBUG(3, ("Copying service from service %s\n", pszParmValue));
3685
3686         if ((iTemp = getservicebyname(pszParmValue, &serviceTemp)) >= 0) {
3687                 if (iTemp == iServiceIndex) {
3688                         DEBUG(0, ("Can't copy service %s - unable to copy self!\n", pszParmValue));
3689                 } else {
3690                         copy_service(ServicePtrs[iServiceIndex],
3691                                      &serviceTemp,
3692                                      ServicePtrs[iServiceIndex]->copymap);
3693                         bRetval = True;
3694                 }
3695         } else {
3696                 DEBUG(0, ("Unable to copy service - source not found: %s\n", pszParmValue));
3697                 bRetval = False;
3698         }
3699
3700         free_service(&serviceTemp);
3701         return (bRetval);
3702 }
3703
3704 /***************************************************************************
3705  Handle idmap/non unix account uid and gid allocation parameters.  The format of these
3706  parameters is:
3707
3708  [global]
3709
3710         idmap uid = 1000-1999
3711         idmap gid = 700-899
3712
3713  We only do simple parsing checks here.  The strings are parsed into useful
3714  structures in the idmap daemon code.
3715
3716 ***************************************************************************/
3717
3718 /* Some lp_ routines to return idmap [ug]id information */
3719
3720 static uid_t idmap_uid_low, idmap_uid_high;
3721 static gid_t idmap_gid_low, idmap_gid_high;
3722
3723 BOOL lp_idmap_uid(uid_t *low, uid_t *high)
3724 {
3725         if (idmap_uid_low == 0 || idmap_uid_high == 0)
3726                 return False;
3727
3728         if (low)
3729                 *low = idmap_uid_low;
3730
3731         if (high)
3732                 *high = idmap_uid_high;
3733
3734         return True;
3735 }
3736
3737 BOOL lp_idmap_gid(gid_t *low, gid_t *high)
3738 {
3739         if (idmap_gid_low == 0 || idmap_gid_high == 0)
3740                 return False;
3741
3742         if (low)
3743                 *low = idmap_gid_low;
3744
3745         if (high)
3746                 *high = idmap_gid_high;
3747
3748         return True;
3749 }
3750
3751 /* Do some simple checks on "idmap [ug]id" parameter values */
3752
3753 static BOOL handle_idmap_uid(int snum, const char *pszParmValue, char **ptr)
3754 {
3755         uint32 low, high;
3756
3757         if (sscanf(pszParmValue, "%u - %u", &low, &high) != 2 || high < low)
3758                 return False;
3759
3760         /* Parse OK */
3761
3762         string_set(ptr, pszParmValue);
3763
3764         idmap_uid_low = low;
3765         idmap_uid_high = high;
3766
3767         return True;
3768 }
3769
3770 static BOOL handle_idmap_gid(int snum, const char *pszParmValue, char **ptr)
3771 {
3772         uint32 low, high;
3773
3774         if (sscanf(pszParmValue, "%u - %u", &low, &high) != 2 || high < low)
3775                 return False;
3776
3777         /* Parse OK */
3778
3779         string_set(ptr, pszParmValue);
3780
3781         idmap_gid_low = low;
3782         idmap_gid_high = high;
3783
3784         return True;
3785 }
3786
3787 /***************************************************************************
3788  Handle the DEBUG level list.
3789 ***************************************************************************/
3790
3791 static BOOL handle_debug_list( int snum, const char *pszParmValueIn, char **ptr )
3792 {
3793         pstring pszParmValue;
3794
3795         pstrcpy(pszParmValue, pszParmValueIn);
3796         string_set(ptr, pszParmValueIn);
3797         return debug_parse_levels( pszParmValue );
3798 }
3799
3800 /***************************************************************************
3801  Handle ldap suffixes - default to ldapsuffix if sub-suffixes are not defined.
3802 ***************************************************************************/
3803
3804 static const char *append_ldap_suffix( const char *str )
3805 {
3806         const char *suffix_string;
3807
3808
3809         if (!lp_talloc)
3810                 lp_talloc = talloc_init("lp_talloc");
3811
3812         suffix_string = talloc_asprintf( lp_talloc, "%s,%s", str, Globals.szLdapSuffix );
3813         if ( !suffix_string ) {
3814                 DEBUG(0,("append_ldap_suffix: talloc_asprintf() failed!\n"));
3815                 return "";
3816         }
3817
3818         return suffix_string;
3819 }
3820
3821 const char *lp_ldap_machine_suffix(void)
3822 {
3823         if (Globals.szLdapMachineSuffix[0])
3824                 return append_ldap_suffix(Globals.szLdapMachineSuffix);
3825
3826         return lp_string(Globals.szLdapSuffix);
3827 }
3828
3829 const char *lp_ldap_user_suffix(void)
3830 {
3831         if (Globals.szLdapUserSuffix[0])
3832                 return append_ldap_suffix(Globals.szLdapUserSuffix);
3833
3834         return lp_string(Globals.szLdapSuffix);
3835 }
3836
3837 const char *lp_ldap_group_suffix(void)
3838 {
3839         if (Globals.szLdapGroupSuffix[0])
3840                 return append_ldap_suffix(Globals.szLdapGroupSuffix);
3841
3842         return lp_string(Globals.szLdapSuffix);
3843 }
3844
3845 const char *lp_ldap_idmap_suffix(void)
3846 {
3847         if (Globals.szLdapIdmapSuffix[0])
3848                 return append_ldap_suffix(Globals.szLdapIdmapSuffix);
3849
3850         return lp_string(Globals.szLdapSuffix);
3851 }
3852
3853 /****************************************************************************
3854  set the value for a P_ENUM
3855  ***************************************************************************/
3856
3857 static void lp_set_enum_parm( struct parm_struct *parm, const char *pszParmValue,
3858                               int *ptr )
3859 {
3860         int i;
3861
3862         for (i = 0; parm->enum_list[i].name; i++) {
3863                 if ( strequal(pszParmValue, parm->enum_list[i].name)) {
3864                         *ptr = parm->enum_list[i].value;
3865                         break;
3866                 }
3867         }
3868 }
3869
3870 /***************************************************************************
3871 ***************************************************************************/
3872
3873 static BOOL handle_printing(int snum, const char *pszParmValue, char **ptr)
3874 {
3875         static int parm_num = -1;
3876         service *s;
3877
3878         if ( parm_num == -1 )
3879                 parm_num = map_parameter( "printing" );
3880
3881         lp_set_enum_parm( &parm_table[parm_num], pszParmValue, (int*)ptr );
3882
3883         if ( snum < 0 )
3884                 s = &sDefault;
3885         else
3886                 s = ServicePtrs[snum];
3887
3888         init_printer_values( s );
3889
3890         return True;
3891 }
3892
3893
3894 /***************************************************************************
3895  Initialise a copymap.
3896 ***************************************************************************/
3897
3898 static void init_copymap(service * pservice)
3899 {
3900         int i;
3901         SAFE_FREE(pservice->copymap);
3902         pservice->copymap = SMB_MALLOC_ARRAY(BOOL,NUMPARAMETERS);
3903         if (!pservice->copymap)
3904                 DEBUG(0,
3905                       ("Couldn't allocate copymap!! (size %d)\n",
3906                        (int)NUMPARAMETERS));
3907         else
3908                 for (i = 0; i < NUMPARAMETERS; i++)
3909                         pservice->copymap[i] = True;
3910 }
3911
3912 /***************************************************************************
3913  Return the local pointer to a parameter given the service number and the 
3914  pointer into the default structure.
3915 ***************************************************************************/
3916
3917 void *lp_local_ptr(int snum, void *ptr)
3918 {
3919         return (void *)(((char *)ServicePtrs[snum]) + PTR_DIFF(ptr, &sDefault));
3920 }
3921
3922 /***************************************************************************
3923  Process a parameter for a particular service number. If snum < 0
3924  then assume we are in the globals.
3925 ***************************************************************************/
3926
3927 BOOL lp_do_parameter(int snum, const char *pszParmName, const char *pszParmValue)
3928 {
3929         int parmnum, i, slen;
3930         void *parm_ptr = NULL;  /* where we are going to store the result */
3931         void *def_ptr = NULL;
3932         pstring param_key;
3933         char *sep;
3934         param_opt_struct *paramo, *data;
3935         BOOL not_added;
3936
3937         parmnum = map_parameter(pszParmName);
3938
3939         if (parmnum < 0) {
3940                 if ((sep=strchr(pszParmName, ':')) != NULL) {
3941                         *sep = '\0';
3942                         ZERO_STRUCT(param_key);
3943                         pstr_sprintf(param_key, "%s:", pszParmName);
3944                         slen = strlen(param_key);
3945                         pstrcat(param_key, sep+1);
3946                         trim_char(param_key+slen, ' ', ' ');
3947                         not_added = True;
3948                         data = (snum < 0) ? Globals.param_opt : 
3949                                 ServicePtrs[snum]->param_opt;
3950                         /* Traverse destination */
3951                         while (data) {
3952                                 /* If we already have same option, override it */
3953                                 if (strcmp(data->key, param_key) == 0) {
3954                                         string_free(&data->value);
3955                                         str_list_free(&data->list);
3956                                         data->value = SMB_STRDUP(pszParmValue);
3957                                         not_added = False;
3958                                         break;
3959                                 }
3960                                 data = data->next;
3961                         }
3962                         if (not_added) {
3963                                 paramo = SMB_XMALLOC_P(param_opt_struct);
3964                                 paramo->key = SMB_STRDUP(param_key);
3965                                 paramo->value = SMB_STRDUP(pszParmValue);
3966                                 paramo->list = NULL;
3967                                 if (snum < 0) {
3968                                         DLIST_ADD(Globals.param_opt, paramo);
3969                                 } else {
3970                                         DLIST_ADD(ServicePtrs[snum]->param_opt, paramo);
3971                                 }
3972                         }
3973
3974                         *sep = ':';
3975                         return (True);
3976                 }
3977                 DEBUG(0, ("Ignoring unknown parameter \"%s\"\n", pszParmName));
3978                 return (True);
3979         }
3980
3981         if (parm_table[parmnum].flags & FLAG_DEPRECATED) {
3982                 DEBUG(1, ("WARNING: The \"%s\" option is deprecated\n",
3983                           pszParmName));
3984         }
3985
3986         def_ptr = parm_table[parmnum].ptr;
3987
3988         /* we might point at a service, the default service or a global */
3989         if (snum < 0) {
3990                 parm_ptr = def_ptr;
3991         } else {
3992                 if (parm_table[parmnum].p_class == P_GLOBAL) {
3993                         DEBUG(0,
3994                               ("Global parameter %s found in service section!\n",
3995                                pszParmName));
3996                         return (True);
3997                 }
3998                 parm_ptr =
3999                         ((char *)ServicePtrs[snum]) + PTR_DIFF(def_ptr,
4000                                                             &sDefault);
4001
4002                 if (!ServicePtrs[snum]->copymap)
4003                         init_copymap(ServicePtrs[snum]);
4004
4005                 /* this handles the aliases - set the copymap for other entries with
4006                    the same data pointer */
4007                 for (i = 0; parm_table[i].label; i++)
4008                         if (parm_table[i].ptr == parm_table[parmnum].ptr)
4009                                 ServicePtrs[snum]->copymap[i] = False;
4010         }
4011
4012         /* if it is a special case then go ahead */
4013         if (parm_table[parmnum].special) {
4014                 parm_table[parmnum].special(snum, pszParmValue, (char **)parm_ptr);
4015                 return (True);
4016         }
4017
4018         /* now switch on the type of variable it is */
4019         switch (parm_table[parmnum].type)
4020         {
4021                 case P_BOOL:
4022                         *(BOOL *)parm_ptr = lp_bool(pszParmValue);
4023                         break;
4024
4025                 case P_BOOLREV:
4026                         *(BOOL *)parm_ptr = !lp_bool(pszParmValue);
4027                         break;
4028
4029                 case P_INTEGER:
4030                         *(int *)parm_ptr = lp_int(pszParmValue);
4031                         break;
4032
4033                 case P_CHAR:
4034                         *(char *)parm_ptr = *pszParmValue;
4035                         break;
4036
4037                 case P_OCTAL:
4038                         i = sscanf(pszParmValue, "%o", (int *)parm_ptr);
4039                         if ( i != 1 ) {
4040                             DEBUG ( 0, ("Invalid octal number %s\n", pszParmName ));
4041                         }
4042                         break;
4043
4044                 case P_LIST:
4045                         str_list_free((char ***)parm_ptr);
4046                         *(char ***)parm_ptr = str_list_make(pszParmValue, NULL);
4047                         break;
4048
4049                 case P_STRING:
4050                         string_set((char **)parm_ptr, pszParmValue);
4051                         break;
4052
4053                 case P_USTRING:
4054                         string_set((char **)parm_ptr, pszParmValue);
4055                         strupper_m(*(char **)parm_ptr);
4056                         break;
4057
4058                 case P_GSTRING:
4059                         pstrcpy((char *)parm_ptr, pszParmValue);
4060                         break;
4061
4062                 case P_UGSTRING:
4063                         pstrcpy((char *)parm_ptr, pszParmValue);
4064                         strupper_m((char *)parm_ptr);
4065                         break;
4066
4067                 case P_ENUM:
4068                         lp_set_enum_parm( &parm_table[parmnum], pszParmValue, (int*)parm_ptr );
4069                         break;
4070                 case P_SEP:
4071                         break;
4072         }
4073
4074         return (True);
4075 }
4076
4077 /***************************************************************************
4078  Process a parameter.
4079 ***************************************************************************/
4080
4081 static BOOL do_parameter(const char *pszParmName, const char *pszParmValue)
4082 {
4083         if (!bInGlobalSection && bGlobalOnly)
4084                 return (True);
4085
4086         DEBUGADD(4, ("doing parameter %s = %s\n", pszParmName, pszParmValue));
4087
4088         return (lp_do_parameter(bInGlobalSection ? -2 : iServiceIndex,
4089                                 pszParmName, pszParmValue));
4090 }
4091
4092 /***************************************************************************
4093  Print a parameter of the specified type.
4094 ***************************************************************************/
4095
4096 static void print_parameter(struct parm_struct *p, void *ptr, FILE * f)
4097 {
4098         int i;
4099         switch (p->type)
4100         {
4101                 case P_ENUM:
4102                         for (i = 0; p->enum_list[i].name; i++) {
4103                                 if (*(int *)ptr == p->enum_list[i].value) {
4104                                         fprintf(f, "%s",
4105                                                 p->enum_list[i].name);
4106                                         break;
4107                                 }
4108                         }
4109                         break;
4110
4111                 case P_BOOL:
4112                         fprintf(f, "%s", BOOLSTR(*(BOOL *)ptr));
4113                         break;
4114
4115                 case P_BOOLREV:
4116                         fprintf(f, "%s", BOOLSTR(!*(BOOL *)ptr));
4117                         break;
4118
4119                 case P_INTEGER:
4120                         fprintf(f, "%d", *(int *)ptr);
4121                         break;
4122
4123                 case P_CHAR:
4124                         fprintf(f, "%c", *(char *)ptr);
4125                         break;
4126
4127                 case P_OCTAL:
4128                         fprintf(f, "%s", octal_string(*(int *)ptr));
4129                         break;
4130
4131                 case P_LIST:
4132                         if ((char ***)ptr && *(char ***)ptr) {
4133                                 char **list = *(char ***)ptr;
4134                                 
4135                                 for (; *list; list++) {
4136                                         /* surround strings with whitespace in double quotes */
4137                                         if ( strchr_m( *list, ' ' ) )
4138                                                 fprintf(f, "\"%s\"%s", *list, ((*(list+1))?", ":""));
4139                                         else
4140                                                 fprintf(f, "%s%s", *list, ((*(list+1))?", ":""));
4141                                 }
4142                         }
4143                         break;
4144
4145                 case P_GSTRING:
4146                 case P_UGSTRING:
4147                         if ((char *)ptr) {
4148                                 fprintf(f, "%s", (char *)ptr);
4149                         }
4150                         break;
4151
4152                 case P_STRING:
4153                 case P_USTRING:
4154                         if (*(char **)ptr) {
4155                                 fprintf(f, "%s", *(char **)ptr);
4156                         }
4157                         break;
4158                 case P_SEP:
4159                         break;
4160         }
4161 }
4162
4163 /***************************************************************************
4164  Check if two parameters are equal.
4165 ***************************************************************************/
4166
4167 static BOOL equal_parameter(parm_type type, void *ptr1, void *ptr2)
4168 {
4169         switch (type) {
4170                 case P_BOOL:
4171                 case P_BOOLREV:
4172                         return (*((BOOL *)ptr1) == *((BOOL *)ptr2));
4173
4174                 case P_INTEGER:
4175                 case P_ENUM:
4176                 case P_OCTAL:
4177                         return (*((int *)ptr1) == *((int *)ptr2));
4178
4179                 case P_CHAR:
4180                         return (*((char *)ptr1) == *((char *)ptr2));
4181                 
4182                 case P_LIST:
4183                         return str_list_compare(*(char ***)ptr1, *(char ***)ptr2);
4184
4185                 case P_GSTRING:
4186                 case P_UGSTRING:
4187                 {
4188                         char *p1 = (char *)ptr1, *p2 = (char *)ptr2;
4189                         if (p1 && !*p1)
4190                                 p1 = NULL;
4191                         if (p2 && !*p2)
4192                                 p2 = NULL;
4193                         return (p1 == p2 || strequal(p1, p2));
4194                 }
4195                 case P_STRING:
4196                 case P_USTRING:
4197                 {
4198                         char *p1 = *(char **)ptr1, *p2 = *(char **)ptr2;
4199                         if (p1 && !*p1)
4200                                 p1 = NULL;
4201                         if (p2 && !*p2)
4202                                 p2 = NULL;
4203                         return (p1 == p2 || strequal(p1, p2));
4204                 }
4205                 case P_SEP:
4206                         break;
4207         }
4208         return (False);
4209 }
4210
4211 /***************************************************************************
4212  Initialize any local varients in the sDefault table.
4213 ***************************************************************************/
4214
4215 void init_locals(void)
4216 {
4217         /* None as yet. */
4218 }
4219
4220 /***************************************************************************
4221  Process a new section (service). At this stage all sections are services.
4222  Later we'll have special sections that permit server parameters to be set.
4223  Returns True on success, False on failure. 
4224 ***************************************************************************/
4225
4226 static BOOL do_section(const char *pszSectionName)
4227 {
4228         BOOL bRetval;
4229         BOOL isglobal = ((strwicmp(pszSectionName, GLOBAL_NAME) == 0) ||
4230                          (strwicmp(pszSectionName, GLOBAL_NAME2) == 0));
4231         bRetval = False;
4232
4233         /* if we were in a global section then do the local inits */
4234         if (bInGlobalSection && !isglobal)
4235                 init_locals();
4236
4237         /* if we've just struck a global section, note the fact. */
4238         bInGlobalSection = isglobal;
4239
4240         /* check for multiple global sections */
4241         if (bInGlobalSection) {
4242                 DEBUG(3, ("Processing section \"[%s]\"\n", pszSectionName));
4243                 return (True);
4244         }
4245
4246         if (!bInGlobalSection && bGlobalOnly)
4247                 return (True);
4248
4249         /* if we have a current service, tidy it up before moving on */
4250         bRetval = True;
4251
4252         if (iServiceIndex >= 0)
4253                 bRetval = service_ok(iServiceIndex);
4254
4255         /* if all is still well, move to the next record in the services array */
4256         if (bRetval) {
4257                 /* We put this here to avoid an odd message order if messages are */
4258                 /* issued by the post-processing of a previous section. */
4259                 DEBUG(2, ("Processing section \"[%s]\"\n", pszSectionName));
4260
4261                 if ((iServiceIndex = add_a_service(&sDefault, pszSectionName))
4262                     < 0) {
4263                         DEBUG(0, ("Failed to add a new service\n"));
4264                         return (False);
4265                 }
4266         }
4267
4268         return (bRetval);
4269 }
4270
4271
4272 /***************************************************************************
4273  Determine if a partcular base parameter is currentl set to the default value.
4274 ***************************************************************************/
4275
4276 static BOOL is_default(int i)
4277 {
4278         if (!defaults_saved)
4279                 return False;
4280         switch (parm_table[i].type) {
4281                 case P_LIST:
4282                         return str_list_compare (parm_table[i].def.lvalue, 
4283                                                 *(char ***)parm_table[i].ptr);
4284                 case P_STRING:
4285                 case P_USTRING:
4286                         return strequal(parm_table[i].def.svalue,
4287                                         *(char **)parm_table[i].ptr);
4288                 case P_GSTRING:
4289                 case P_UGSTRING:
4290                         return strequal(parm_table[i].def.svalue,
4291                                         (char *)parm_table[i].ptr);
4292                 case P_BOOL:
4293                 case P_BOOLREV:
4294                         return parm_table[i].def.bvalue ==
4295                                 *(BOOL *)parm_table[i].ptr;
4296                 case P_CHAR:
4297                         return parm_table[i].def.cvalue ==
4298                                 *(char *)parm_table[i].ptr;
4299                 case P_INTEGER:
4300                 case P_OCTAL:
4301                 case P_ENUM:
4302                         return parm_table[i].def.ivalue ==
4303                                 *(int *)parm_table[i].ptr;
4304                 case P_SEP:
4305                         break;
4306         }
4307         return False;
4308 }
4309
4310 /***************************************************************************
4311 Display the contents of the global structure.
4312 ***************************************************************************/
4313
4314 static void dump_globals(FILE *f)
4315 {
4316         int i;
4317         param_opt_struct *data;
4318         
4319         fprintf(f, "[global]\n");
4320
4321         for (i = 0; parm_table[i].label; i++)
4322                 if (parm_table[i].p_class == P_GLOBAL &&
4323                     parm_table[i].ptr &&
4324                     (i == 0 || (parm_table[i].ptr != parm_table[i - 1].ptr))) {
4325                         if (defaults_saved && is_default(i))
4326                                 continue;
4327                         fprintf(f, "\t%s = ", parm_table[i].label);
4328                         print_parameter(&parm_table[i], parm_table[i].ptr, f);
4329                         fprintf(f, "\n");
4330         }
4331         if (Globals.param_opt != NULL) {
4332                 data = Globals.param_opt;
4333                 while(data) {
4334                         fprintf(f, "\t%s = %s\n", data->key, data->value);
4335                         data = data->next;
4336                 }
4337         }
4338
4339 }
4340
4341 /***************************************************************************
4342  Return True if a local parameter is currently set to the global default.
4343 ***************************************************************************/
4344
4345 BOOL lp_is_default(int snum, struct parm_struct *parm)
4346 {
4347         int pdiff = PTR_DIFF(parm->ptr, &sDefault);
4348
4349         return equal_parameter(parm->type,
4350                                ((char *)ServicePtrs[snum]) + pdiff,
4351                                ((char *)&sDefault) + pdiff);
4352 }
4353
4354 /***************************************************************************
4355  Display the contents of a single services record.
4356 ***************************************************************************/
4357
4358 static void dump_a_service(service * pService, FILE * f)
4359 {
4360         int i;
4361         param_opt_struct *data;
4362         
4363         if (pService != &sDefault)
4364                 fprintf(f, "[%s]\n", pService->szService);
4365
4366         for (i = 0; parm_table[i].label; i++) {
4367
4368                 if (parm_table[i].p_class == P_LOCAL &&
4369                     parm_table[i].ptr &&
4370                     (*parm_table[i].label != '-') &&
4371                     (i == 0 || (parm_table[i].ptr != parm_table[i - 1].ptr))) 
4372                 {
4373                 
4374                         int pdiff = PTR_DIFF(parm_table[i].ptr, &sDefault);
4375
4376                         if (pService == &sDefault) {
4377                                 if (defaults_saved && is_default(i))
4378                                         continue;
4379                         } else {
4380                                 if (equal_parameter(parm_table[i].type,
4381                                                     ((char *)pService) +
4382                                                     pdiff,
4383                                                     ((char *)&sDefault) +
4384                                                     pdiff))
4385                                         continue;
4386                         }
4387
4388                         fprintf(f, "\t%s = ", parm_table[i].label);
4389                         print_parameter(&parm_table[i],
4390                                         ((char *)pService) + pdiff, f);
4391                         fprintf(f, "\n");
4392                 }
4393         }
4394
4395                 if (pService->param_opt != NULL) {
4396                         data = pService->param_opt;
4397                         while(data) {
4398                                 fprintf(f, "\t%s = %s\n", data->key, data->value);
4399                                 data = data->next;
4400                         }
4401                 }
4402 }
4403
4404 /***************************************************************************
4405  Display the contents of a parameter of a single services record.
4406 ***************************************************************************/
4407
4408 BOOL dump_a_parameter(int snum, char *parm_name, FILE * f, BOOL isGlobal)
4409 {
4410         int i;
4411         BOOL result = False;
4412         parm_class p_class;
4413         unsigned flag = 0;
4414         fstring local_parm_name;
4415         char *parm_opt;
4416         const char *parm_opt_value;
4417
4418         /* check for parametrical option */
4419         fstrcpy( local_parm_name, parm_name);
4420         parm_opt = strchr( local_parm_name, ':');
4421
4422         if (parm_opt) {
4423                 *parm_opt = '\0';
4424                 parm_opt++;
4425                 if (strlen(parm_opt)) {
4426                         parm_opt_value = lp_parm_const_string( snum,
4427                                 local_parm_name, parm_opt, NULL);
4428                         if (parm_opt_value) {
4429                                 printf( "%s\n", parm_opt_value);
4430                                 result = True;
4431                         }
4432                 }
4433                 return result;
4434         }
4435
4436         /* check for a key and print the value */
4437         if (isGlobal) {
4438                 p_class = P_GLOBAL;
4439                 flag = FLAG_GLOBAL;
4440         } else
4441                 p_class = P_LOCAL;
4442
4443         for (i = 0; parm_table[i].label; i++) {
4444                 if (strwicmp(parm_table[i].label, parm_name) == 0 &&
4445                     (parm_table[i].p_class == p_class || parm_table[i].flags & flag) &&
4446                     parm_table[i].ptr &&
4447                     (*parm_table[i].label != '-') &&
4448                     (i == 0 || (parm_table[i].ptr != parm_table[i - 1].ptr))) 
4449                 {
4450                         void *ptr;
4451
4452                         if (isGlobal) {
4453                                 ptr = parm_table[i].ptr;
4454                         } else {
4455                                 service * pService = ServicePtrs[snum];
4456                                 ptr = ((char *)pService) +
4457                                         PTR_DIFF(parm_table[i].ptr, &sDefault);
4458                         }
4459
4460                         print_parameter(&parm_table[i],
4461                                         ptr, f);
4462                         fprintf(f, "\n");
4463                         result = True;
4464                         break;
4465                 }
4466         }
4467
4468         return result;
4469 }
4470
4471 /***************************************************************************
4472  Return info about the requested parameter (given as a string).
4473  Return NULL when the string is not a valid parameter name.
4474 ***************************************************************************/
4475
4476 struct parm_struct *lp_get_parameter(const char *param_name)
4477 {
4478         int num = map_parameter(param_name);
4479
4480         if (num < 0) {
4481                 return NULL;
4482         }
4483
4484         return &parm_table[num];
4485 }
4486
4487 /***************************************************************************
4488  Return info about the next parameter in a service.
4489  snum==GLOBAL_SECTION_SNUM gives the globals.
4490  Return NULL when out of parameters.
4491 ***************************************************************************/
4492
4493 struct parm_struct *lp_next_parameter(int snum, int *i, int allparameters)
4494 {
4495         if (snum < 0) {
4496                 /* do the globals */
4497                 for (; parm_table[*i].label; (*i)++) {
4498                         if (parm_table[*i].p_class == P_SEPARATOR)
4499                                 return &parm_table[(*i)++];
4500
4501                         if (!parm_table[*i].ptr
4502                             || (*parm_table[*i].label == '-'))
4503                                 continue;
4504
4505                         if ((*i) > 0
4506                             && (parm_table[*i].ptr ==
4507                                 parm_table[(*i) - 1].ptr))
4508                                 continue;
4509                         
4510                         if (is_default(*i) && !allparameters)
4511                                 continue;
4512
4513                         return &parm_table[(*i)++];
4514                 }
4515         } else {
4516                 service *pService = ServicePtrs[snum];
4517
4518                 for (; parm_table[*i].label; (*i)++) {
4519                         if (parm_table[*i].p_class == P_SEPARATOR)
4520                                 return &parm_table[(*i)++];
4521
4522                         if (parm_table[*i].p_class == P_LOCAL &&
4523                             parm_table[*i].ptr &&
4524                             (*parm_table[*i].label != '-') &&
4525                             ((*i) == 0 ||
4526                              (parm_table[*i].ptr !=
4527                               parm_table[(*i) - 1].ptr)))
4528                         {
4529                                 int pdiff =
4530                                         PTR_DIFF(parm_table[*i].ptr,
4531                                                  &sDefault);
4532
4533                                 if (allparameters ||
4534                                     !equal_parameter(parm_table[*i].type,
4535                                                      ((char *)pService) +
4536                                                      pdiff,
4537                                                      ((char *)&sDefault) +
4538                                                      pdiff))
4539                                 {
4540                                         return &parm_table[(*i)++];
4541                                 }
4542                         }
4543                 }
4544         }
4545
4546         return NULL;
4547 }
4548
4549
4550 #if 0
4551 /***************************************************************************
4552  Display the contents of a single copy structure.
4553 ***************************************************************************/
4554 static void dump_copy_map(BOOL *pcopymap)
4555 {
4556         int i;
4557         if (!pcopymap)
4558                 return;
4559
4560         printf("\n\tNon-Copied parameters:\n");
4561
4562         for (i = 0; parm_table[i].label; i++)
4563                 if (parm_table[i].p_class == P_LOCAL &&
4564                     parm_table[i].ptr && !pcopymap[i] &&
4565                     (i == 0 || (parm_table[i].ptr != parm_table[i - 1].ptr)))
4566                 {
4567                         printf("\t\t%s\n", parm_table[i].label);
4568                 }
4569 }
4570 #endif
4571
4572 /***************************************************************************
4573  Return TRUE if the passed service number is within range.
4574 ***************************************************************************/
4575
4576 BOOL lp_snum_ok(int iService)
4577 {
4578         return (LP_SNUM_OK(iService) && ServicePtrs[iService]->bAvailable);
4579 }
4580
4581 /***************************************************************************
4582  Auto-load some home services.
4583 ***************************************************************************/
4584
4585 static void lp_add_auto_services(char *str)
4586 {
4587         char *s;
4588         char *p;
4589         int homes;
4590
4591         if (!str)
4592                 return;
4593
4594         s = SMB_STRDUP(str);
4595         if (!s)
4596                 return;
4597
4598         homes = lp_servicenumber(HOMES_NAME);
4599
4600         for (p = strtok(s, LIST_SEP); p; p = strtok(NULL, LIST_SEP)) {
4601                 char *home = get_user_home_dir(p);
4602
4603                 if (lp_servicenumber(p) >= 0)
4604                         continue;
4605
4606                 if (home && homes >= 0)
4607                         lp_add_home(p, homes, p, home);
4608         }
4609         SAFE_FREE(s);
4610 }
4611
4612 /***************************************************************************
4613  Auto-load one printer.
4614 ***************************************************************************/
4615
4616 void lp_add_one_printer(char *name, char *comment)
4617 {
4618         int printers = lp_servicenumber(PRINTERS_NAME);
4619         int i;
4620
4621         if (lp_servicenumber(name) < 0) {
4622                 lp_add_printer(name, printers);
4623                 if ((i = lp_servicenumber(name)) >= 0) {
4624                         string_set(&ServicePtrs[i]->comment, comment);
4625                         ServicePtrs[i]->autoloaded = True;
4626                 }
4627         }
4628 }
4629
4630 /***************************************************************************
4631  Have we loaded a services file yet?
4632 ***************************************************************************/
4633
4634 BOOL lp_loaded(void)
4635 {
4636         return (bLoaded);
4637 }
4638
4639 /***************************************************************************
4640  Unload unused services.
4641 ***************************************************************************/
4642
4643 void lp_killunused(BOOL (*snumused) (int))
4644 {
4645         int i;
4646         for (i = 0; i < iNumServices; i++) {
4647                 if (!VALID(i))
4648                         continue;
4649
4650                 /* don't kill autoloaded or usershare services */
4651                 if ( ServicePtrs[i]->autoloaded ||
4652                                 ServicePtrs[i]->usershare == USERSHARE_VALID) {
4653                         continue;
4654                 }
4655
4656                 if (!snumused || !snumused(i)) {
4657                         free_service_byindex(i);
4658                 }
4659         }
4660 }
4661
4662 /***************************************************************************
4663  Unload a service.
4664 ***************************************************************************/
4665
4666 void lp_killservice(int iServiceIn)
4667 {
4668         if (VALID(iServiceIn)) {
4669                 free_service_byindex(iServiceIn);
4670         }
4671 }
4672
4673 /***************************************************************************
4674  Save the curent values of all global and sDefault parameters into the 
4675  defaults union. This allows swat and testparm to show only the
4676  changed (ie. non-default) parameters.
4677 ***************************************************************************/
4678
4679 static void lp_save_defaults(void)
4680 {
4681         int i;
4682         for (i = 0; parm_table[i].label; i++) {
4683                 if (i > 0 && parm_table[i].ptr == parm_table[i - 1].ptr)
4684                         continue;
4685                 switch (parm_table[i].type) {
4686                         case P_LIST:
4687                                 str_list_copy(&(parm_table[i].def.lvalue),
4688                                             *(const char ***)parm_table[i].ptr);
4689                                 break;
4690                         case P_STRING:
4691                         case P_USTRING:
4692                                 if (parm_table[i].ptr) {
4693                                         parm_table[i].def.svalue = SMB_STRDUP(*(char **)parm_table[i].ptr);
4694                                 } else {
4695                                         parm_table[i].def.svalue = NULL;
4696                                 }
4697                                 break;
4698                         case P_GSTRING:
4699                         case P_UGSTRING:
4700                                 if (parm_table[i].ptr) {
4701                                         parm_table[i].def.svalue = SMB_STRDUP((char *)parm_table[i].ptr);
4702                                 } else {
4703                                         parm_table[i].def.svalue = NULL;
4704                                 }
4705                                 break;
4706                         case P_BOOL:
4707                         case P_BOOLREV:
4708                                 parm_table[i].def.bvalue =
4709                                         *(BOOL *)parm_table[i].ptr;
4710                                 break;
4711                         case P_CHAR:
4712                                 parm_table[i].def.cvalue =
4713                                         *(char *)parm_table[i].ptr;
4714                                 break;
4715                         case P_INTEGER:
4716                         case P_OCTAL:
4717                         case P_ENUM:
4718                                 parm_table[i].def.ivalue =
4719                                         *(int *)parm_table[i].ptr;
4720                                 break;
4721                         case P_SEP:
4722                                 break;
4723                 }
4724         }
4725         defaults_saved = True;
4726 }
4727
4728 /*******************************************************************
4729  Set the server type we will announce as via nmbd.
4730 ********************************************************************/
4731
4732 static const struct srv_role_tab {
4733         uint32 role;
4734         const char *role_str;
4735 } srv_role_tab [] = {
4736         { ROLE_STANDALONE, "ROLE_STANDALONE" },
4737         { ROLE_DOMAIN_MEMBER, "ROLE_DOMAIN_MEMBER" },
4738         { ROLE_DOMAIN_BDC, "ROLE_DOMAIN_BDC" },
4739         { ROLE_DOMAIN_PDC, "ROLE_DOMAIN_PDC" },
4740         { 0, NULL }
4741 };
4742
4743 const char* server_role_str(uint32 role)
4744 {
4745         int i = 0;
4746         for (i=0; srv_role_tab[i].role_str; i++) {
4747                 if (role == srv_role_tab[i].role) {
4748                         return srv_role_tab[i].role_str;
4749                 }
4750         }
4751         return NULL;
4752 }
4753
4754 static void set_server_role(void)
4755 {
4756         server_role = ROLE_STANDALONE;
4757
4758         switch (lp_security()) {
4759                 case SEC_SHARE:
4760                         if (lp_domain_logons())
4761                                 DEBUG(0, ("Server's Role (logon server) conflicts with share-level security\n"));
4762                         break;
4763                 case SEC_SERVER:
4764                         if (lp_domain_logons())
4765                                 DEBUG(0, ("Server's Role (logon server) conflicts with server-level security\n"));
4766                         /* this used to be considered ROLE_DOMAIN_MEMBER but that's just wrong */
4767                         server_role = ROLE_STANDALONE;
4768                         break;
4769                 case SEC_DOMAIN:
4770                         if (lp_domain_logons()) {
4771                                 DEBUG(1, ("Server's Role (logon server) NOT ADVISED with domain-level security\n"));
4772                                 server_role = ROLE_DOMAIN_BDC;
4773                                 break;
4774                         }
4775                         server_role = ROLE_DOMAIN_MEMBER;
4776                         break;
4777                 case SEC_ADS:
4778                         if (lp_domain_logons()) {
4779                                 server_role = ROLE_DOMAIN_PDC;
4780                                 break;
4781                         }
4782                         server_role = ROLE_DOMAIN_MEMBER;
4783                         break;
4784                 case SEC_USER:
4785                         if (lp_domain_logons()) {
4786
4787                                 if (Globals.bDomainMaster) /* auto or yes */ 
4788                                         server_role = ROLE_DOMAIN_PDC;
4789                                 else
4790                                         server_role = ROLE_DOMAIN_BDC;
4791                         }
4792                         break;
4793                 default:
4794                         DEBUG(0, ("Server's Role undefined due to unknown security mode\n"));
4795                         break;
4796         }
4797
4798         DEBUG(10, ("set_server_role: role = %s\n", server_role_str(server_role)));
4799 }
4800
4801 /***********************************************************
4802  If we should send plaintext/LANMAN passwords in the clinet
4803 ************************************************************/
4804
4805 static void set_allowed_client_auth(void)
4806 {
4807         if (Globals.bClientNTLMv2Auth) {
4808                 Globals.bClientLanManAuth = False;
4809         }
4810         if (!Globals.bClientLanManAuth) {
4811                 Globals.bClientPlaintextAuth = False;
4812         }
4813 }
4814
4815 /***************************************************************************
4816  JRA.
4817  The following code allows smbd to read a user defined share file.
4818  Yes, this is my intent. Yes, I'm comfortable with that...
4819
4820  THE FOLLOWING IS SECURITY CRITICAL CODE.
4821
4822  It washes your clothes, it cleans your house, it guards you while you sleep...
4823  Do not f%^k with it....
4824 ***************************************************************************/
4825
4826 #define MAX_USERSHARE_FILE_SIZE (10*1024)
4827
4828 /***************************************************************************
4829  Check allowed stat state of a usershare file.
4830  Ensure we print out who is dicking with us so the admin can
4831  get their sorry ass fired.
4832 ***************************************************************************/
4833
4834 static BOOL check_usershare_stat(const char *fname, SMB_STRUCT_STAT *psbuf)
4835 {
4836         if (!S_ISREG(psbuf->st_mode)) {
4837                 DEBUG(0,("check_usershare_stat: file %s owned by uid %u is "
4838                         "not a regular file\n",
4839                         fname, (unsigned int)psbuf->st_uid ));
4840                 return False;
4841         }
4842
4843         /* Ensure this doesn't have the other write bit set. */
4844         if (psbuf->st_mode & S_IWOTH) {
4845                 DEBUG(0,("check_usershare_stat: file %s owned by uid %u allows "
4846                         "public write. Refusing to allow as a usershare file.\n",
4847                         fname, (unsigned int)psbuf->st_uid ));
4848                 return False;
4849         }
4850
4851         /* Should be 10k or less. */
4852         if (psbuf->st_size > MAX_USERSHARE_FILE_SIZE) {
4853                 DEBUG(0,("check_usershare_stat: file %s owned by uid %u is "
4854                         "too large (%u) to be a user share file.\n",
4855                         fname, (unsigned int)psbuf->st_uid,
4856                         (unsigned int)psbuf->st_size ));
4857                 return False;
4858         }
4859
4860         return True;
4861 }
4862
4863 /***************************************************************************
4864  Parse the contents of a usershare file.
4865 ***************************************************************************/
4866
4867 enum usershare_err parse_usershare_file(TALLOC_CTX *ctx, 
4868                         SMB_STRUCT_STAT *psbuf,
4869                         const char *servicename,
4870                         int snum,
4871                         char **lines,
4872                         int numlines,
4873                         pstring sharepath,
4874                         pstring comment,
4875                         SEC_DESC **ppsd,
4876                         BOOL *pallow_guest)
4877 {
4878         const char **prefixallowlist = lp_usershare_prefix_allow_list();
4879         const char **prefixdenylist = lp_usershare_prefix_deny_list();
4880         int us_vers;
4881         SMB_STRUCT_DIR *dp;
4882         SMB_STRUCT_STAT sbuf;
4883
4884         *pallow_guest = False;
4885
4886         if (numlines < 4) {
4887                 return USERSHARE_MALFORMED_FILE;
4888         }
4889
4890         if (strcmp(lines[0], "#VERSION 1") == 0) {
4891                 us_vers = 1;
4892         } else if (strcmp(lines[0], "#VERSION 2") == 0) {
4893                 us_vers = 2;
4894                 if (numlines < 5) {
4895                         return USERSHARE_MALFORMED_FILE;
4896                 }
4897         } else {
4898                 return USERSHARE_BAD_VERSION;
4899         }
4900
4901         if (strncmp(lines[1], "path=", 5) != 0) {
4902                 return USERSHARE_MALFORMED_PATH;
4903         }
4904
4905         pstrcpy(sharepath, &lines[1][5]);
4906         trim_string(sharepath, " ", " ");
4907
4908         if (strncmp(lines[2], "comment=", 8) != 0) {
4909                 return USERSHARE_MALFORMED_COMMENT_DEF;
4910         }
4911
4912         pstrcpy(comment, &lines[2][8]);
4913         trim_string(comment, " ", " ");
4914         trim_char(comment, '"', '"');
4915
4916         if (strncmp(lines[3], "usershare_acl=", 14) != 0) {
4917                 return USERSHARE_MALFORMED_ACL_DEF;
4918         }
4919
4920         if (!parse_usershare_acl(ctx, &lines[3][14], ppsd)) {
4921                 return USERSHARE_ACL_ERR;
4922         }
4923
4924         if (us_vers == 2) {
4925                 if (strncmp(lines[4], "guest_ok=", 9) != 0) {
4926                         return USERSHARE_MALFORMED_ACL_DEF;
4927                 }
4928                 if (lines[4][9] == 'y') {
4929                         *pallow_guest = True;
4930                 }
4931         }
4932
4933         if (snum != -1 && (strcmp(sharepath, ServicePtrs[snum]->szPath) == 0)) {
4934                 /* Path didn't change, no checks needed. */
4935                 return USERSHARE_OK;
4936         }
4937
4938         /* The path *must* be absolute. */
4939         if (sharepath[0] != '/') {
4940                 DEBUG(2,("parse_usershare_file: share %s: path %s is not an absolute path.\n",
4941                         servicename, sharepath));
4942                 return USERSHARE_PATH_NOT_ABSOLUTE;
4943         }
4944
4945         /* If there is a usershare prefix deny list ensure one of these paths
4946            doesn't match the start of the user given path. */
4947         if (prefixdenylist) {
4948                 int i;
4949                 for ( i=0; prefixdenylist[i]; i++ ) {
4950                         DEBUG(10,("parse_usershare_file: share %s : checking prefixdenylist[%d]='%s' against %s\n",
4951                                 servicename, i, prefixdenylist[i], sharepath ));
4952                         if (memcmp( sharepath, prefixdenylist[i], strlen(prefixdenylist[i])) == 0) {
4953                                 DEBUG(2,("parse_usershare_file: share %s path %s starts with one of the "
4954                                         "usershare prefix deny list entries.\n",
4955                                         servicename, sharepath));
4956                                 return USERSHARE_PATH_IS_DENIED;
4957                         }
4958                 }
4959         }
4960
4961         /* If there is a usershare prefix allow list ensure one of these paths
4962            does match the start of the user given path. */
4963
4964         if (prefixallowlist) {
4965                 int i;
4966                 for ( i=0; prefixallowlist[i]; i++ ) {
4967                         DEBUG(10,("parse_usershare_file: share %s checking prefixallowlist[%d]='%s' against %s\n",
4968                                 servicename, i, prefixallowlist[i], sharepath ));
4969                         if (memcmp( sharepath, prefixallowlist[i], strlen(prefixallowlist[i])) == 0) {
4970                                 break;
4971                         }
4972                 }
4973                 if (prefixallowlist[i] == NULL) {
4974                         DEBUG(2,("parse_usershare_file: share %s path %s doesn't start with one of the "
4975                                 "usershare prefix allow list entries.\n",
4976                                 servicename, sharepath));
4977                         return USERSHARE_PATH_NOT_ALLOWED;
4978                 }
4979         }
4980
4981         /* Ensure this is pointing to a directory. */
4982         dp = sys_opendir(sharepath);
4983
4984         if (!dp) {
4985                 DEBUG(2,("parse_usershare_file: share %s path %s is not a directory.\n",
4986                         servicename, sharepath));
4987                 return USERSHARE_PATH_NOT_DIRECTORY;
4988         }
4989
4990         /* Ensure the owner of the usershare file has permission to share
4991            this directory. */
4992
4993         if (sys_stat(sharepath, &sbuf) == -1) {
4994                 DEBUG(2,("parse_usershare_file: share %s : stat failed on path %s. %s\n",
4995                         servicename, sharepath, strerror(errno) ));
4996                 sys_closedir(dp);
4997                 return USERSHARE_POSIX_ERR;
4998         }
4999
5000         sys_closedir(dp);
5001
5002         if (!S_ISDIR(sbuf.st_mode)) {
5003                 DEBUG(2,("parse_usershare_file: share %s path %s is not a directory.\n",
5004                         servicename, sharepath ));
5005                 return USERSHARE_PATH_NOT_DIRECTORY;
5006         }
5007
5008         /* Check if sharing is restricted to owner-only. */
5009         /* psbuf is the stat of the usershare definition file,
5010            sbuf is the stat of the target directory to be shared. */
5011
5012         if (lp_usershare_owner_only()) {
5013                 /* root can share anything. */
5014                 if ((psbuf->st_uid != 0) && (sbuf.st_uid != psbuf->st_uid)) {
5015                         return USERSHARE_PATH_NOT_ALLOWED;
5016                 }
5017         }
5018
5019         return USERSHARE_OK;
5020 }
5021
5022 /***************************************************************************
5023  Deal with a usershare file.
5024  Returns:
5025         >= 0 - snum
5026         -1 - Bad name, invalid contents.
5027            - service name already existed and not a usershare, problem
5028             with permissions to share directory etc.
5029 ***************************************************************************/
5030
5031 static int process_usershare_file(const char *dir_name, const char *file_name, int snum_template)
5032 {
5033         SMB_STRUCT_STAT sbuf;
5034         SMB_STRUCT_STAT lsbuf;
5035         pstring fname;
5036         pstring sharepath;
5037         pstring comment;
5038         fstring service_name;
5039         char **lines = NULL;
5040         int numlines = 0;
5041         int fd = -1;
5042         int iService = -1;
5043         TALLOC_CTX *ctx = NULL;
5044         SEC_DESC *psd = NULL;
5045         BOOL guest_ok = False;
5046
5047         /* Ensure share name doesn't contain invalid characters. */
5048         if (!validate_net_name(file_name, INVALID_SHARENAME_CHARS, strlen(file_name))) {
5049                 DEBUG(0,("process_usershare_file: share name %s contains "
5050                         "invalid characters (any of %s)\n",
5051                         file_name, INVALID_SHARENAME_CHARS ));
5052                 return -1;
5053         }
5054
5055         fstrcpy(service_name, file_name);
5056
5057         pstrcpy(fname, dir_name);
5058         pstrcat(fname, "/");
5059         pstrcat(fname, file_name);
5060
5061         /* Minimize the race condition by doing an lstat before we
5062            open and fstat. Ensure this isn't a symlink link. */
5063
5064         if (sys_lstat(fname, &lsbuf) != 0) {
5065                 DEBUG(0,("process_usershare_file: stat of %s failed. %s\n",
5066                         fname, strerror(errno) ));
5067                 return -1;
5068         }
5069
5070         /* This must be a regular file, not a symlink, directory or
5071            other strange filetype. */
5072         if (!check_usershare_stat(fname, &lsbuf)) {
5073                 return -1;
5074         }
5075
5076         /* See if there is already a servicenum for this name. */
5077         /* tdb_fetch_int32 returns -1 if not found. */
5078         iService = (int)tdb_fetch_int32(ServiceHash, canonicalize_servicename(service_name) );
5079
5080         if (iService != -1 && ServicePtrs[iService]->usershare_last_mod == lsbuf.st_mtime) {
5081                 /* Nothing changed - Mark valid and return. */
5082                 DEBUG(10,("process_usershare_file: service %s not changed.\n",
5083                         service_name ));
5084                 ServicePtrs[iService]->usershare = USERSHARE_VALID;
5085                 return iService;
5086         }
5087
5088         /* Try and open the file read only - no symlinks allowed. */
5089 #ifdef O_NOFOLLOW
5090         fd = sys_open(fname, O_RDONLY|O_NOFOLLOW, 0);
5091 #else
5092         fd = sys_open(fname, O_RDONLY, 0);
5093 #endif
5094
5095         if (fd == -1) {
5096                 DEBUG(0,("process_usershare_file: unable to open %s. %s\n",
5097                         fname, strerror(errno) ));
5098                 return -1;
5099         }
5100
5101         /* Now fstat to be *SURE* it's a regular file. */
5102         if (sys_fstat(fd, &sbuf) != 0) {
5103                 close(fd);
5104                 DEBUG(0,("process_usershare_file: fstat of %s failed. %s\n",
5105                         fname, strerror(errno) ));
5106                 return -1;
5107         }
5108
5109         /* Is it the same dev/inode as was lstated ? */
5110         if (lsbuf.st_dev != sbuf.st_dev || lsbuf.st_ino != sbuf.st_ino) {
5111                 close(fd);
5112                 DEBUG(0,("process_usershare_file: fstat of %s is a different file from lstat. "
5113                         "Symlink spoofing going on ?\n", fname ));
5114                 return -1;
5115         }
5116
5117         /* This must be a regular file, not a symlink, directory or
5118            other strange filetype. */
5119         if (!check_usershare_stat(fname, &sbuf)) {
5120                 return -1;
5121         }
5122
5123         lines = fd_lines_load(fd, &numlines, MAX_USERSHARE_FILE_SIZE);
5124
5125         close(fd);
5126         if (lines == NULL) {
5127                 DEBUG(0,("process_usershare_file: loading file %s owned by %u failed.\n",
5128                         fname, (unsigned int)sbuf.st_uid ));
5129                 return -1;
5130         }
5131
5132         /* Should we allow printers to be shared... ? */
5133         ctx = talloc_init("usershare_sd_xctx");
5134         if (!ctx) {
5135                 file_lines_free(lines);
5136                 return 1;
5137         }
5138
5139         if (parse_usershare_file(ctx, &sbuf, service_name,
5140                         iService, lines, numlines, sharepath,
5141                         comment, &psd, &guest_ok) != USERSHARE_OK) {
5142                 talloc_destroy(ctx);
5143                 file_lines_free(lines);
5144                 return -1;
5145         }
5146
5147         file_lines_free(lines);
5148
5149         /* Everything ok - add the service possibly using a template. */
5150         if (iService < 0) {
5151                 const service *sp = &sDefault;
5152                 if (snum_template != -1) {
5153                         sp = ServicePtrs[snum_template];
5154                 }
5155
5156                 if ((iService = add_a_service(sp, service_name)) < 0) {
5157                         DEBUG(0, ("process_usershare_file: Failed to add "
5158                                 "new service %s\n", service_name));
5159                         talloc_destroy(ctx);
5160                         return -1;
5161                 }
5162
5163                 /* Read only is controlled by usershare ACL below. */
5164                 ServicePtrs[iService]->bRead_only = False;
5165         }
5166
5167         /* Write the ACL of the new/modified share. */
5168         if (!set_share_security(service_name, psd)) {
5169                  DEBUG(0, ("process_usershare_file: Failed to set share "
5170                         "security for user share %s\n",
5171                         service_name ));
5172                 lp_remove_service(iService);
5173                 talloc_destroy(ctx);
5174                 return -1;
5175         }
5176
5177         talloc_destroy(ctx);
5178
5179         /* If from a template it may be marked invalid. */
5180         ServicePtrs[iService]->valid = True;
5181
5182         /* Set the service as a valid usershare. */
5183         ServicePtrs[iService]->usershare = USERSHARE_VALID;
5184
5185         /* Set guest access. */
5186         if (lp_usershare_allow_guests()) {
5187                 ServicePtrs[iService]->bGuest_ok = guest_ok;
5188         }
5189
5190         /* And note when it was loaded. */
5191         ServicePtrs[iService]->usershare_last_mod = sbuf.st_mtime;
5192         string_set(&ServicePtrs[iService]->szPath, sharepath);
5193         string_set(&ServicePtrs[iService]->comment, comment);
5194
5195         return iService;
5196 }
5197
5198 /***************************************************************************
5199  Checks if a usershare entry has been modified since last load.
5200 ***************************************************************************/
5201
5202 static BOOL usershare_exists(int iService, time_t *last_mod)
5203 {
5204         SMB_STRUCT_STAT lsbuf;
5205         const char *usersharepath = Globals.szUsersharePath;
5206         pstring fname;
5207
5208         pstrcpy(fname, usersharepath);
5209         pstrcat(fname, "/");
5210         pstrcat(fname, ServicePtrs[iService]->szService);
5211
5212         if (sys_lstat(fname, &lsbuf) != 0) {
5213                 return False;
5214         }
5215
5216         if (!S_ISREG(lsbuf.st_mode)) {
5217                 return False;
5218         }
5219
5220         *last_mod = lsbuf.st_mtime;
5221         return True;
5222 }
5223
5224 /***************************************************************************
5225  Load a usershare service by name. Returns a valid servicenumber or -1.
5226 ***************************************************************************/
5227
5228 int load_usershare_service(const char *servicename)
5229 {
5230         SMB_STRUCT_STAT sbuf;
5231         const char *usersharepath = Globals.szUsersharePath;
5232         int max_user_shares = Globals.iUsershareMaxShares;
5233         int snum_template = -1;
5234
5235         if (*usersharepath == 0 ||  max_user_shares == 0) {
5236                 return -1;
5237         }
5238
5239         if (sys_stat(usersharepath, &sbuf) != 0) {
5240                 DEBUG(0,("load_usershare_service: stat of %s failed. %s\n",
5241                         usersharepath, strerror(errno) ));
5242                 return -1;
5243         }
5244
5245         if (!S_ISDIR(sbuf.st_mode)) {
5246                 DEBUG(0,("load_usershare_service: %s is not a directory.\n",
5247                         usersharepath ));
5248                 return -1;
5249         }
5250
5251         /*
5252          * This directory must be owned by root, and have the 't' bit set.
5253          * It also must not be writable by "other".
5254          */
5255
5256 #ifdef S_ISVTX
5257         if (sbuf.st_uid != 0 || !(sbuf.st_mode & S_ISVTX) || (sbuf.st_mode & S_IWOTH)) {
5258 #else
5259         if (sbuf.st_uid != 0 || (sbuf.st_mode & S_IWOTH)) {
5260 #endif
5261                 DEBUG(0,("load_usershare_service: directory %s is not owned by root "
5262                         "or does not have the sticky bit 't' set or is writable by anyone.\n",
5263                         usersharepath ));
5264                 return -1;
5265         }
5266
5267         /* Ensure the template share exists if it's set. */
5268         if (Globals.szUsershareTemplateShare[0]) {
5269                 /* We can't use lp_servicenumber here as we are recommending that
5270                    template shares have -valid=False set. */
5271                 for (snum_template = iNumServices - 1; snum_template >= 0; snum_template--) {
5272                         if (ServicePtrs[snum_template]->szService &&
5273                                         strequal(ServicePtrs[snum_template]->szService,
5274                                                 Globals.szUsershareTemplateShare)) {
5275                                 break;
5276                         }
5277                 }
5278
5279                 if (snum_template == -1) {
5280                         DEBUG(0,("load_usershare_service: usershare template share %s "
5281                                 "does not exist.\n",
5282                                 Globals.szUsershareTemplateShare ));
5283                         return -1;
5284                 }
5285         }
5286
5287         return process_usershare_file(usersharepath, servicename, snum_template);
5288 }
5289
5290 /***************************************************************************
5291  Load all user defined shares from the user share directory.
5292  We only do this if we're enumerating the share list.
5293  This is the function that can delete usershares that have
5294  been removed.
5295 ***************************************************************************/
5296
5297 int load_usershare_shares(void)
5298 {
5299         SMB_STRUCT_DIR *dp;
5300         SMB_STRUCT_STAT sbuf;
5301         SMB_STRUCT_DIRENT *de;
5302         int num_usershares = 0;
5303         int max_user_shares = Globals.iUsershareMaxShares;
5304         unsigned int num_dir_entries, num_bad_dir_entries, num_tmp_dir_entries;
5305         unsigned int allowed_bad_entries = ((2*max_user_shares)/10);
5306         unsigned int allowed_tmp_entries = ((2*max_user_shares)/10);
5307         int iService;
5308         int snum_template = -1;
5309         const char *usersharepath = Globals.szUsersharePath;
5310         int ret = lp_numservices();
5311
5312         if (max_user_shares == 0 || *usersharepath == '\0') {
5313                 return lp_numservices();
5314         }
5315
5316         if (sys_stat(usersharepath, &sbuf) != 0) {
5317                 DEBUG(0,("load_usershare_shares: stat of %s failed. %s\n",
5318                         usersharepath, strerror(errno) ));
5319                 return ret;
5320         }
5321
5322         /*
5323          * This directory must be owned by root, and have the 't' bit set.
5324          * It also must not be writable by "other".
5325          */
5326
5327 #ifdef S_ISVTX
5328         if (sbuf.st_uid != 0 || !(sbuf.st_mode & S_ISVTX) || (sbuf.st_mode & S_IWOTH)) {
5329 #else
5330         if (sbuf.st_uid != 0 || (sbuf.st_mode & S_IWOTH)) {
5331 #endif
5332                 DEBUG(0,("load_usershare_shares: directory %s is not owned by root "
5333                         "or does not have the sticky bit 't' set or is writable by anyone.\n",
5334                         usersharepath ));
5335                 return ret;
5336         }
5337
5338         /* Ensure the template share exists if it's set. */
5339         if (Globals.szUsershareTemplateShare[0]) {
5340                 /* We can't use lp_servicenumber here as we are recommending that
5341                    template shares have -valid=False set. */
5342                 for (snum_template = iNumServices - 1; snum_template >= 0; snum_template--) {
5343                         if (ServicePtrs[snum_template]->szService &&
5344                                         strequal(ServicePtrs[snum_template]->szService,
5345                                                 Globals.szUsershareTemplateShare)) {
5346                                 break;
5347                         }
5348                 }
5349
5350                 if (snum_template == -1) {
5351                         DEBUG(0,("load_usershare_shares: usershare template share %s "
5352                                 "does not exist.\n",
5353                                 Globals.szUsershareTemplateShare ));
5354                         return ret;
5355                 }
5356         }
5357
5358         /* Mark all existing usershares as pending delete. */
5359         for (iService = iNumServices - 1; iService >= 0; iService--) {
5360                 if (VALID(iService) && ServicePtrs[iService]->usershare) {
5361                         ServicePtrs[iService]->usershare = USERSHARE_PENDING_DELETE;
5362                 }
5363         }
5364
5365         dp = sys_opendir(usersharepath);
5366         if (!dp) {
5367                 DEBUG(0,("load_usershare_shares:: failed to open directory %s. %s\n",
5368                         usersharepath, strerror(errno) ));
5369                 return ret;
5370         }
5371
5372         for (num_dir_entries = 0, num_bad_dir_entries = 0, num_tmp_dir_entries = 0;
5373                         (de = sys_readdir(dp));
5374                         num_dir_entries++ ) {
5375                 int r;
5376                 const char *n = de->d_name;
5377
5378                 /* Ignore . and .. */
5379                 if (*n == '.') {
5380                         if ((n[1] == '\0') || (n[1] == '.' && n[2] == '\0')) {
5381                                 continue;
5382                         }
5383                 }
5384
5385                 if (n[0] == ':') {
5386                         /* Temporary file used when creating a share. */
5387                         num_tmp_dir_entries++;
5388                 }
5389
5390                 /* Allow 20% tmp entries. */
5391                 if (num_tmp_dir_entries > allowed_tmp_entries) {
5392                         DEBUG(0,("load_usershare_shares: too many temp entries (%u) "
5393                                 "in directory %s\n",
5394                                 num_tmp_dir_entries, usersharepath));
5395                         break;
5396                 }
5397
5398                 r = process_usershare_file(usersharepath, n, snum_template);
5399                 if (r == 0) {
5400                         /* Update the services count. */
5401                         num_usershares++;
5402                         if (num_usershares >= max_user_shares) {
5403                                 DEBUG(0,("load_usershare_shares: max user shares reached "
5404                                         "on file %s in directory %s\n",
5405                                         n, usersharepath ));
5406                                 break;
5407                         }
5408                 } else if (r == -1) {
5409                         num_bad_dir_entries++;
5410                 }
5411
5412                 /* Allow 20% bad entries. */
5413                 if (num_bad_dir_entries > allowed_bad_entries) {
5414                         DEBUG(0,("load_usershare_shares: too many bad entries (%u) "
5415                                 "in directory %s\n",
5416                                 num_bad_dir_entries, usersharepath));
5417                         break;
5418                 }
5419
5420                 /* Allow 20% bad entries. */
5421                 if (num_dir_entries > max_user_shares + allowed_bad_entries) {
5422                         DEBUG(0,("load_usershare_shares: too many total entries (%u) "
5423                         "in directory %s\n",
5424                         num_dir_entries, usersharepath));
5425                         break;
5426                 }
5427         }
5428
5429         sys_closedir(dp);
5430
5431         /* Sweep through and delete any non-refreshed usershares that are
5432            not currently in use. */
5433         for (iService = iNumServices - 1; iService >= 0; iService--) {
5434                 if (VALID(iService) && (ServicePtrs[iService]->usershare == USERSHARE_PENDING_DELETE)) {
5435                         if (conn_snum_used(iService)) {
5436                                 continue;
5437                         }
5438                         /* Remove from the share ACL db. */
5439                         DEBUG(10,("load_usershare_shares: Removing deleted usershare %s\n",
5440                                 lp_servicename(iService) ));
5441                         delete_share_security(snum2params_static(iService));
5442                         free_service_byindex(iService);
5443                 }
5444         }
5445
5446         return lp_numservices();
5447 }
5448
5449 /********************************************************
5450  Destroy global resources allocated in this file
5451 ********************************************************/
5452
5453 void gfree_loadparm(void)
5454 {
5455         struct file_lists *f;
5456         struct file_lists *next;
5457         int i;
5458
5459         lp_TALLOC_FREE();
5460
5461         /* Free the file lists */
5462
5463         f = file_lists;
5464         while( f ) {
5465                 next = f->next;
5466                 SAFE_FREE( f->name );
5467                 SAFE_FREE( f->subfname );
5468                 SAFE_FREE( f );
5469                 f = next;
5470         }
5471
5472         /* Free resources allocated to services */
5473
5474         for ( i = 0; i < iNumServices; i++ ) {
5475                 if ( VALID(i) ) {
5476                         free_service_byindex(i);
5477                 }
5478         }
5479
5480         SAFE_FREE( ServicePtrs );
5481         iNumServices = 0;
5482
5483         /* Now release all resources allocated to global
5484            parameters and the default service */
5485
5486         for (i = 0; parm_table[i].label; i++) 
5487         {
5488                 if ( parm_table[i].type == P_STRING 
5489                         || parm_table[i].type == P_USTRING ) 
5490                 {
5491                         string_free( (char**)parm_table[i].ptr );
5492                 }
5493                 else if (parm_table[i].type == P_LIST) {
5494                         str_list_free( (char***)parm_table[i].ptr );
5495                 }
5496         }
5497 }
5498
5499 /***************************************************************************
5500  Load the services array from the services file. Return True on success, 
5501  False on failure.
5502 ***************************************************************************/
5503
5504 BOOL lp_load(const char *pszFname,
5505              BOOL global_only,
5506              BOOL save_defaults,
5507              BOOL add_ipc,
5508              BOOL initialize_globals)
5509 {
5510         pstring n2;
5511         BOOL bRetval;
5512         param_opt_struct *data, *pdata;
5513
5514         pstrcpy(n2, pszFname);
5515         
5516         standard_sub_basic( get_current_username(), current_user_info.domain,
5517                             n2,sizeof(n2) );
5518
5519         add_to_file_list(pszFname, n2);
5520
5521         bRetval = False;
5522
5523         DEBUG(3, ("lp_load: refreshing parameters\n"));
5524         
5525         bInGlobalSection = True;
5526         bGlobalOnly = global_only;
5527
5528         init_globals(! initialize_globals);
5529         debug_init();
5530
5531         if (save_defaults) {
5532                 init_locals();
5533                 lp_save_defaults();
5534         }
5535
5536         if (Globals.param_opt != NULL) {
5537                 data = Globals.param_opt;
5538                 while (data) {
5539                         string_free(&data->key);
5540                         string_free(&data->value);
5541                         str_list_free(&data->list);
5542                         pdata = data->next;
5543                         SAFE_FREE(data);
5544                         data = pdata;
5545                 }
5546                 Globals.param_opt = NULL;
5547         }
5548         
5549         /* We get sections first, so have to start 'behind' to make up */
5550         iServiceIndex = -1;
5551         bRetval = pm_process(n2, do_section, do_parameter);
5552
5553         /* finish up the last section */
5554         DEBUG(4, ("pm_process() returned %s\n", BOOLSTR(bRetval)));
5555         if (bRetval)
5556                 if (iServiceIndex >= 0)
5557                         bRetval = service_ok(iServiceIndex);
5558
5559         lp_add_auto_services(lp_auto_services());
5560
5561         if (add_ipc) {
5562                 /* When 'restrict anonymous = 2' guest connections to ipc$
5563                    are denied */
5564                 lp_add_ipc("IPC$", (lp_restrict_anonymous() < 2));
5565                 if ( lp_enable_asu_support() )
5566                         lp_add_ipc("ADMIN$", False);
5567         }
5568
5569         set_server_role();
5570         set_default_server_announce_type();
5571         set_allowed_client_auth();
5572
5573         bLoaded = True;
5574
5575         /* Now we check bWINSsupport and set szWINSserver to 127.0.0.1 */
5576         /* if bWINSsupport is true and we are in the client            */
5577         if (in_client && Globals.bWINSsupport) {
5578                 lp_do_parameter(GLOBAL_SECTION_SNUM, "wins server", "127.0.0.1");
5579         }
5580
5581         init_iconv();
5582
5583         return (bRetval);
5584 }
5585
5586 /***************************************************************************
5587  Reset the max number of services.
5588 ***************************************************************************/
5589
5590 void lp_resetnumservices(void)
5591 {
5592         iNumServices = 0;
5593 }
5594
5595 /***************************************************************************
5596  Return the max number of services.
5597 ***************************************************************************/
5598
5599 int lp_numservices(void)
5600 {
5601         return (iNumServices);
5602 }
5603
5604 /***************************************************************************
5605 Display the contents of the services array in human-readable form.
5606 ***************************************************************************/
5607
5608 void lp_dump(FILE *f, BOOL show_defaults, int maxtoprint)
5609 {
5610         int iService;
5611
5612         if (show_defaults)
5613                 defaults_saved = False;
5614
5615         dump_globals(f);
5616
5617         dump_a_service(&sDefault, f);
5618
5619         for (iService = 0; iService < maxtoprint; iService++) {
5620                 fprintf(f,"\n");
5621                 lp_dump_one(f, show_defaults, iService);
5622         }
5623 }
5624
5625 /***************************************************************************
5626 Display the contents of one service in human-readable form.
5627 ***************************************************************************/
5628
5629 void lp_dump_one(FILE * f, BOOL show_defaults, int snum)
5630 {
5631         if (VALID(snum)) {
5632                 if (ServicePtrs[snum]->szService[0] == '\0')
5633                         return;
5634                 dump_a_service(ServicePtrs[snum], f);
5635         }
5636 }
5637
5638 /***************************************************************************
5639 Return the number of the service with the given name, or -1 if it doesn't
5640 exist. Note that this is a DIFFERENT ANIMAL from the internal function
5641 getservicebyname()! This works ONLY if all services have been loaded, and
5642 does not copy the found service.
5643 ***************************************************************************/
5644
5645 int lp_servicenumber(const char *pszServiceName)
5646 {
5647         int iService;
5648         fstring serviceName;
5649         
5650         if (!pszServiceName) {
5651                 return GLOBAL_SECTION_SNUM;
5652         }
5653         
5654         for (iService = iNumServices - 1; iService >= 0; iService--) {
5655                 if (VALID(iService) && ServicePtrs[iService]->szService) {
5656                         /*
5657                          * The substitution here is used to support %U is
5658                          * service names
5659                          */
5660                         fstrcpy(serviceName, ServicePtrs[iService]->szService);
5661                         standard_sub_basic(get_current_username(),
5662                                            current_user_info.domain,
5663                                            serviceName,sizeof(serviceName));
5664                         if (strequal(serviceName, pszServiceName)) {
5665                                 break;
5666                         }
5667                 }
5668         }
5669
5670         if (iService >= 0 && ServicePtrs[iService]->usershare == USERSHARE_VALID) {
5671                 time_t last_mod;
5672
5673                 if (!usershare_exists(iService, &last_mod)) {
5674                         /* Remove the share security tdb entry for it. */
5675                         delete_share_security(snum2params_static(iService));
5676                         /* Remove it from the array. */
5677                         free_service_byindex(iService);
5678                         /* Doesn't exist anymore. */
5679                         return GLOBAL_SECTION_SNUM;
5680                 }
5681
5682                 /* Has it been modified ? If so delete and reload. */
5683                 if (ServicePtrs[iService]->usershare_last_mod < last_mod) {
5684                         /* Remove it from the array. */
5685                         free_service_byindex(iService);
5686                         /* and now reload it. */
5687                         iService = load_usershare_service(pszServiceName);
5688                 }
5689         }
5690
5691         if (iService < 0) {
5692                 DEBUG(7,("lp_servicenumber: couldn't find %s\n", pszServiceName));
5693                 return GLOBAL_SECTION_SNUM;
5694         }
5695
5696         return (iService);
5697 }
5698
5699 BOOL share_defined(const char *service_name)
5700 {
5701         return (lp_servicenumber(service_name) != -1);
5702 }
5703
5704 struct share_params *get_share_params(TALLOC_CTX *mem_ctx,
5705                                       const char *sharename)
5706 {
5707         struct share_params *result;
5708         char *sname;
5709         int snum;
5710
5711         if (!(sname = SMB_STRDUP(sharename))) {
5712                 return NULL;
5713         }
5714
5715         snum = find_service(sname);
5716         SAFE_FREE(sname);
5717
5718         if (snum < 0) {
5719                 return NULL;
5720         }
5721
5722         if (!(result = TALLOC_P(mem_ctx, struct share_params))) {
5723                 DEBUG(0, ("talloc failed\n"));
5724                 return NULL;
5725         }
5726
5727         result->service = snum;
5728         return result;
5729 }
5730
5731 struct share_iterator *share_list_all(TALLOC_CTX *mem_ctx)
5732 {
5733         struct share_iterator *result;
5734
5735         if (!(result = TALLOC_P(mem_ctx, struct share_iterator))) {
5736                 DEBUG(0, ("talloc failed\n"));
5737                 return NULL;
5738         }
5739
5740         result->next_id = 0;
5741         return result;
5742 }
5743
5744 struct share_params *next_share(struct share_iterator *list)
5745 {
5746         struct share_params *result;
5747
5748         while (!lp_snum_ok(list->next_id) &&
5749                (list->next_id < lp_numservices())) {
5750                 list->next_id += 1;
5751         }
5752
5753         if (list->next_id >= lp_numservices()) {
5754                 return NULL;
5755         }
5756
5757         if (!(result = TALLOC_P(list, struct share_params))) {
5758                 DEBUG(0, ("talloc failed\n"));
5759                 return NULL;
5760         }
5761
5762         result->service = list->next_id;
5763         list->next_id += 1;
5764         return result;
5765 }
5766
5767 struct share_params *next_printer(struct share_iterator *list)
5768 {
5769         struct share_params *result;
5770
5771         while ((result = next_share(list)) != NULL) {
5772                 if (lp_print_ok(result->service)) {
5773                         break;
5774                 }
5775         }
5776         return result;
5777 }
5778
5779 /*
5780  * This is a hack for a transition period until we transformed all code from
5781  * service numbers to struct share_params.
5782  */
5783
5784 struct share_params *snum2params_static(int snum)
5785 {
5786         static struct share_params result;
5787         result.service = snum;
5788         return &result;
5789 }
5790
5791 /*******************************************************************
5792  A useful volume label function. 
5793 ********************************************************************/
5794
5795 const char *volume_label(int snum)
5796 {
5797         char *ret;
5798         const char *label = lp_volume(snum);
5799         if (!*label) {
5800                 label = lp_servicename(snum);
5801         }
5802                 
5803         /* This returns a 33 byte guarenteed null terminated string. */
5804         ret = talloc_strndup(main_loop_talloc_get(), label, 32);
5805         if (!ret) {
5806                 return "";
5807         }               
5808         return ret;
5809 }
5810
5811 /*******************************************************************
5812  Set the server type we will announce as via nmbd.
5813 ********************************************************************/
5814
5815 static void set_default_server_announce_type(void)
5816 {
5817         default_server_announce = 0;
5818         default_server_announce |= SV_TYPE_WORKSTATION;
5819         default_server_announce |= SV_TYPE_SERVER;
5820         default_server_announce |= SV_TYPE_SERVER_UNIX;
5821
5822         /* note that the flag should be set only if we have a 
5823            printer service but nmbd doesn't actually load the 
5824            services so we can't tell   --jerry */
5825
5826         default_server_announce |= SV_TYPE_PRINTQ_SERVER;
5827
5828         switch (lp_announce_as()) {
5829                 case ANNOUNCE_AS_NT_SERVER:
5830                         default_server_announce |= SV_TYPE_SERVER_NT;
5831                         /* fall through... */
5832                 case ANNOUNCE_AS_NT_WORKSTATION:
5833                         default_server_announce |= SV_TYPE_NT;
5834                         break;
5835                 case ANNOUNCE_AS_WIN95:
5836                         default_server_announce |= SV_TYPE_WIN95_PLUS;
5837                         break;
5838                 case ANNOUNCE_AS_WFW:
5839                         default_server_announce |= SV_TYPE_WFW;
5840                         break;
5841                 default:
5842                         break;
5843         }
5844
5845         switch (lp_server_role()) {
5846                 case ROLE_DOMAIN_MEMBER:
5847                         default_server_announce |= SV_TYPE_DOMAIN_MEMBER;
5848                         break;
5849                 case ROLE_DOMAIN_PDC:
5850                         default_server_announce |= SV_TYPE_DOMAIN_CTRL;
5851                         break;
5852                 case ROLE_DOMAIN_BDC:
5853                         default_server_announce |= SV_TYPE_DOMAIN_BAKCTRL;
5854                         break;
5855                 case ROLE_STANDALONE:
5856                 default:
5857                         break;
5858         }
5859         if (lp_time_server())
5860                 default_server_announce |= SV_TYPE_TIME_SOURCE;
5861
5862         if (lp_host_msdfs())
5863                 default_server_announce |= SV_TYPE_DFS_SERVER;
5864 }
5865
5866 /***********************************************************
5867  returns role of Samba server
5868 ************************************************************/
5869
5870 int lp_server_role(void)
5871 {
5872         return server_role;
5873 }
5874
5875 /***********************************************************
5876  If we are PDC then prefer us as DMB
5877 ************************************************************/
5878
5879 BOOL lp_domain_master(void)
5880 {
5881         if (Globals.bDomainMaster == Auto)
5882                 return (lp_server_role() == ROLE_DOMAIN_PDC);
5883
5884         return Globals.bDomainMaster;
5885 }
5886
5887 /***********************************************************
5888  If we are DMB then prefer us as LMB
5889 ************************************************************/
5890
5891 BOOL lp_preferred_master(void)
5892 {
5893         if (Globals.bPreferredMaster == Auto)
5894                 return (lp_local_master() && lp_domain_master());
5895
5896         return Globals.bPreferredMaster;
5897 }
5898
5899 /*******************************************************************
5900  Remove a service.
5901 ********************************************************************/
5902
5903 void lp_remove_service(int snum)
5904 {
5905         ServicePtrs[snum]->valid = False;
5906         invalid_services[num_invalid_services++] = snum;
5907 }
5908
5909 /*******************************************************************
5910  Copy a service.
5911 ********************************************************************/
5912
5913 void lp_copy_service(int snum, const char *new_name)
5914 {
5915         do_section(new_name);
5916         if (snum >= 0) {
5917                 snum = lp_servicenumber(new_name);
5918                 if (snum >= 0)
5919                         lp_do_parameter(snum, "copy", lp_servicename(snum));
5920         }
5921 }
5922
5923
5924 /*******************************************************************
5925  Get the default server type we will announce as via nmbd.
5926 ********************************************************************/
5927
5928 int lp_default_server_announce(void)
5929 {
5930         return default_server_announce;
5931 }
5932
5933 /*******************************************************************
5934  Split the announce version into major and minor numbers.
5935 ********************************************************************/
5936
5937 int lp_major_announce_version(void)
5938 {
5939         static BOOL got_major = False;
5940         static int major_version = DEFAULT_MAJOR_VERSION;
5941         char *vers;
5942         char *p;
5943
5944         if (got_major)
5945                 return major_version;
5946
5947         got_major = True;
5948         if ((vers = lp_announce_version()) == NULL)
5949                 return major_version;
5950
5951         if ((p = strchr_m(vers, '.')) == 0)
5952                 return major_version;
5953
5954         *p = '\0';
5955         major_version = atoi(vers);
5956         return major_version;
5957 }
5958
5959 int lp_minor_announce_version(void)
5960 {
5961         static BOOL got_minor = False;
5962         static int minor_version = DEFAULT_MINOR_VERSION;
5963         char *vers;
5964         char *p;
5965
5966         if (got_minor)
5967                 return minor_version;
5968
5969         got_minor = True;
5970         if ((vers = lp_announce_version()) == NULL)
5971                 return minor_version;
5972
5973         if ((p = strchr_m(vers, '.')) == 0)
5974                 return minor_version;
5975
5976         p++;
5977         minor_version = atoi(p);
5978         return minor_version;
5979 }
5980
5981 /***********************************************************
5982  Set the global name resolution order (used in smbclient).
5983 ************************************************************/
5984
5985 void lp_set_name_resolve_order(const char *new_order)
5986 {
5987         string_set(&Globals.szNameResolveOrder, new_order);
5988 }
5989
5990 const char *lp_printername(int snum)
5991 {
5992         const char *ret = _lp_printername(snum);
5993         if (ret == NULL || (ret != NULL && *ret == '\0'))
5994                 ret = lp_const_servicename(snum);
5995
5996         return ret;
5997 }
5998
5999
6000 /***********************************************************
6001  Allow daemons such as winbindd to fix their logfile name.
6002 ************************************************************/
6003
6004 void lp_set_logfile(const char *name)
6005 {
6006         string_set(&Globals.szLogFile, name);
6007         pstrcpy(debugf, name);
6008 }
6009
6010 /*******************************************************************
6011  Return the max print jobs per queue.
6012 ********************************************************************/
6013
6014 int lp_maxprintjobs(int snum)
6015 {
6016         int maxjobs = LP_SNUM_OK(snum) ? ServicePtrs[snum]->iMaxPrintJobs : sDefault.iMaxPrintJobs;
6017         if (maxjobs <= 0 || maxjobs >= PRINT_MAX_JOBID)
6018                 maxjobs = PRINT_MAX_JOBID - 1;
6019
6020         return maxjobs;
6021 }
6022
6023 const char *lp_printcapname(void)
6024 {
6025         if ((Globals.szPrintcapname != NULL) &&
6026             (Globals.szPrintcapname[0] != '\0'))
6027                 return Globals.szPrintcapname;
6028
6029         if (sDefault.iPrinting == PRINT_CUPS) {
6030 #ifdef HAVE_CUPS
6031                 return "cups";
6032 #else
6033                 return "lpstat";
6034 #endif
6035         }
6036
6037         if (sDefault.iPrinting == PRINT_BSD)
6038                 return "/etc/printcap";
6039
6040         return PRINTCAP_NAME;
6041 }
6042
6043 /*******************************************************************
6044  Ensure we don't use sendfile if server smb signing is active.
6045 ********************************************************************/
6046
6047 static uint32 spoolss_state;
6048
6049 BOOL lp_disable_spoolss( void )
6050 {
6051         if ( spoolss_state == SVCCTL_STATE_UNKNOWN )
6052                 spoolss_state = _lp_disable_spoolss() ? SVCCTL_STOPPED : SVCCTL_RUNNING;
6053
6054         return spoolss_state == SVCCTL_STOPPED ? True : False;
6055 }
6056
6057 void lp_set_spoolss_state( uint32 state )
6058 {
6059         SMB_ASSERT( (state == SVCCTL_STOPPED) || (state == SVCCTL_RUNNING) );
6060
6061         spoolss_state = state;
6062 }
6063
6064 uint32 lp_get_spoolss_state( void )
6065 {
6066         return lp_disable_spoolss() ? SVCCTL_STOPPED : SVCCTL_RUNNING;
6067 }
6068
6069 /*******************************************************************
6070  Ensure we don't use sendfile if server smb signing is active.
6071 ********************************************************************/
6072
6073 BOOL lp_use_sendfile(int snum)
6074 {
6075         /* Using sendfile blows the brains out of any DOS or Win9x TCP stack... JRA. */
6076         if (Protocol < PROTOCOL_NT1) {
6077                 return False;
6078         }
6079         return (_lp_use_sendfile(snum) && (get_remote_arch() != RA_WIN95) && !srv_is_signing_active());
6080 }
6081
6082 /*******************************************************************
6083  Turn off sendfile if we find the underlying OS doesn't support it.
6084 ********************************************************************/
6085
6086 void set_use_sendfile(int snum, BOOL val)
6087 {
6088         if (LP_SNUM_OK(snum))
6089                 ServicePtrs[snum]->bUseSendfile = val;
6090         else
6091                 sDefault.bUseSendfile = val;
6092 }
6093
6094 /*******************************************************************
6095  Turn off storing DOS attributes if this share doesn't support it.
6096 ********************************************************************/
6097
6098 void set_store_dos_attributes(int snum, BOOL val)
6099 {
6100         if (!LP_SNUM_OK(snum))
6101                 return;
6102         ServicePtrs[(snum)]->bStoreDosAttributes = val;
6103 }
6104
6105 void lp_set_mangling_method(const char *new_method)
6106 {
6107         string_set(&Globals.szManglingMethod, new_method);
6108 }
6109
6110 /*******************************************************************
6111  Global state for POSIX pathname processing.
6112 ********************************************************************/
6113
6114 static BOOL posix_pathnames;
6115
6116 BOOL lp_posix_pathnames(void)
6117 {
6118         return posix_pathnames;
6119 }
6120
6121 /*******************************************************************
6122  Change everything needed to ensure POSIX pathname processing (currently
6123  not much).
6124 ********************************************************************/
6125
6126 void lp_set_posix_pathnames(void)
6127 {
6128         posix_pathnames = True;
6129 }
6130
6131 /*******************************************************************
6132  Global state for POSIX lock processing - CIFS unix extensions.
6133 ********************************************************************/
6134
6135 BOOL posix_default_lock_was_set;
6136 static enum brl_flavour posix_cifsx_locktype; /* By default 0 == WINDOWS_LOCK */
6137
6138 enum brl_flavour lp_posix_cifsu_locktype(files_struct *fsp)
6139 {
6140         if (posix_default_lock_was_set) {
6141                 return posix_cifsx_locktype;
6142         } else {
6143                 return fsp->posix_open ? POSIX_LOCK : WINDOWS_LOCK;
6144         }
6145 }
6146
6147 /*******************************************************************
6148 ********************************************************************/
6149
6150 void lp_set_posix_default_cifsx_readwrite_locktype(enum brl_flavour val)
6151 {
6152         posix_default_lock_was_set = True;
6153         posix_cifsx_locktype = val;
6154 }