r4232: added server support for multi-part SMBtrans requests, while
[samba.git] / source4 / smb_server / trans2.c
1 /* 
2    Unix SMB/CIFS implementation.
3    transaction2 handling
4    Copyright (C) Andrew Tridgell 2003
5
6    This program is free software; you can redistribute it and/or modify
7    it under the terms of the GNU General Public License as published by
8    the Free Software Foundation; either version 2 of the License, or
9    (at your option) any later version.
10    
11    This program is distributed in the hope that it will be useful,
12    but WITHOUT ANY WARRANTY; without even the implied warranty of
13    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14    GNU General Public License for more details.
15    
16    You should have received a copy of the GNU General Public License
17    along with this program; if not, write to the Free Software
18    Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
19 */
20 /*
21    This file handles the parsing of transact2 requests
22 */
23
24 #include "includes.h"
25 #include "dlinklist.h"
26 #include "smb_server/smb_server.h"
27
28
29
30 #define CHECK_MIN_BLOB_SIZE(blob, size) do { \
31         if ((blob)->length < (size)) { \
32                 return NT_STATUS_INFO_LENGTH_MISMATCH; \
33         }} while (0)
34
35 /* grow the data allocation size of a trans2 reply - this guarantees
36    that requests to grow the data size later will not change the
37    pointer */
38 static void trans2_grow_data_allocation(struct smbsrv_request *req, 
39                                         struct smb_trans2 *trans,
40                                         uint16_t new_size)
41 {
42         if (new_size <= trans->out.data.length) {
43                 return;
44         }
45         trans->out.data.data = talloc_realloc(req, trans->out.data.data, new_size);
46 }
47
48
49 /* grow the data size of a trans2 reply */
50 static void trans2_grow_data(struct smbsrv_request *req, 
51                              struct smb_trans2 *trans,
52                              uint16_t new_size)
53 {
54         trans2_grow_data_allocation(req, trans, new_size);
55         trans->out.data.length = new_size;
56 }
57
58 /* grow the data, zero filling any new bytes */
59 static void trans2_grow_data_fill(struct smbsrv_request *req, 
60                                   struct smb_trans2 *trans,
61                                   uint16_t new_size)
62 {
63         uint16_t old_size = trans->out.data.length;
64         trans2_grow_data(req, trans, new_size);
65         if (new_size > old_size) {
66                 memset(trans->out.data.data + old_size, 0, new_size - old_size);
67         }
68 }
69
70
71 /* setup a trans2 reply, given the data and params sizes */
72 static void trans2_setup_reply(struct smbsrv_request *req, 
73                                struct smb_trans2 *trans,
74                                uint16_t param_size, uint16_t data_size,
75                                uint16_t setup_count)
76 {
77         trans->out.setup_count = setup_count;
78         if (setup_count != 0) {
79                 trans->out.setup = talloc_zero_array_p(req, uint16_t, setup_count);
80         }
81         trans->out.params = data_blob_talloc(req, NULL, param_size);
82         trans->out.data = data_blob_talloc(req, NULL, data_size);
83 }
84
85
86 /*
87   pull a string from a blob in a trans2 request
88 */
89 static size_t trans2_pull_blob_string(struct smbsrv_request *req, 
90                                       const DATA_BLOB *blob,
91                                       uint16_t offset,
92                                       const char **str,
93                                       int flags)
94 {
95         /* we use STR_NO_RANGE_CHECK because the params are allocated
96            separately in a DATA_BLOB, so we need to do our own range
97            checking */
98         if (offset >= blob->length) {
99                 *str = NULL;
100                 return 0;
101         }
102         
103         return req_pull_string(req, str, 
104                                blob->data + offset, 
105                                blob->length - offset,
106                                STR_NO_RANGE_CHECK | flags);
107 }
108
109 /*
110   push a string into the data section of a trans2 request
111   return the number of bytes consumed in the output
112 */
113 static size_t trans2_push_data_string(struct smbsrv_request *req, 
114                                       struct smb_trans2 *trans,
115                                       uint16_t len_offset,
116                                       uint16_t offset,
117                                       const WIRE_STRING *str,
118                                       int dest_len,
119                                       int flags)
120 {
121         int alignment = 0, ret = 0, pkt_len;
122
123         /* we use STR_NO_RANGE_CHECK because the params are allocated
124            separately in a DATA_BLOB, so we need to do our own range
125            checking */
126         if (!str->s || offset >= trans->out.data.length) {
127                 if (flags & STR_LEN8BIT) {
128                         SCVAL(trans->out.data.data, len_offset, 0);
129                 } else {
130                         SIVAL(trans->out.data.data, len_offset, 0);
131                 }
132                 return 0;
133         }
134
135         flags |= STR_NO_RANGE_CHECK;
136
137         if (dest_len == -1 || (dest_len > trans->out.data.length - offset)) {
138                 dest_len = trans->out.data.length - offset;
139         }
140
141         if (!(flags & (STR_ASCII|STR_UNICODE))) {
142                 flags |= (req->flags2 & FLAGS2_UNICODE_STRINGS) ? STR_UNICODE : STR_ASCII;
143         }
144
145         if ((offset&1) && (flags & STR_UNICODE) && !(flags & STR_NOALIGN)) {
146                 alignment = 1;
147                 if (dest_len > 0) {
148                         SCVAL(trans->out.data.data + offset, 0, 0);
149                         ret = push_string(trans->out.data.data + offset + 1, str->s, dest_len-1, flags);
150                 }
151         } else {
152                 ret = push_string(trans->out.data.data + offset, str->s, dest_len, flags);
153         }
154
155         /* sometimes the string needs to be terminated, but the length
156            on the wire must not include the termination! */
157         pkt_len = ret;
158
159         if ((flags & STR_LEN_NOTERM) && (flags & STR_TERMINATE)) {
160                 if ((flags & STR_UNICODE) && ret >= 2) {
161                         pkt_len = ret-2;
162                 }
163                 if ((flags & STR_ASCII) && ret >= 1) {
164                         pkt_len = ret-1;
165                 }
166         }       
167
168         if (flags & STR_LEN8BIT) {
169                 SCVAL(trans->out.data.data, len_offset, pkt_len);
170         } else {
171                 SIVAL(trans->out.data.data, len_offset, pkt_len);
172         }
173
174         return ret + alignment;
175 }
176
177 /*
178   append a string to the data section of a trans2 reply
179   len_offset points to the place in the packet where the length field
180   should go
181 */
182 static void trans2_append_data_string(struct smbsrv_request *req, 
183                                         struct smb_trans2 *trans,
184                                         const WIRE_STRING *str,
185                                         uint_t len_offset,
186                                         int flags)
187 {
188         size_t ret;
189         uint16_t offset;
190         const int max_bytes_per_char = 3;
191
192         offset = trans->out.data.length;
193         trans2_grow_data(req, trans, offset + (2+strlen_m(str->s))*max_bytes_per_char);
194         ret = trans2_push_data_string(req, trans, len_offset, offset, str, -1, flags);
195         trans2_grow_data(req, trans, offset + ret);
196 }
197
198 /*
199   align the end of the data section of a trans reply on an even boundary
200 */
201 static void trans2_align_data(struct smbsrv_request *req, struct smb_trans2 *trans)
202 {
203         if ((trans->out.data.length & 1) == 0) {
204                 return;
205         }
206         trans2_grow_data(req, trans, trans->out.data.length+1);
207         SCVAL(trans->out.data.data, trans->out.data.length-1, 0);
208 }
209
210
211 /*
212   trans2 qfsinfo implementation
213 */
214 static NTSTATUS trans2_qfsinfo(struct smbsrv_request *req, struct smb_trans2 *trans)
215 {
216         union smb_fsinfo fsinfo;
217         NTSTATUS status;
218         uint16_t level;
219         uint_t i;
220         DATA_BLOB guid_blob;
221
222         /* make sure we got enough parameters */
223         if (trans->in.params.length != 2) {
224                 return NT_STATUS_FOOBAR;
225         }
226
227         level = SVAL(trans->in.params.data, 0);
228
229         switch (level) {
230         case SMB_QFS_ALLOCATION:
231                 fsinfo.allocation.level = RAW_QFS_ALLOCATION;
232
233                 status = ntvfs_fsinfo(req, &fsinfo);
234                 if (!NT_STATUS_IS_OK(status)) {
235                         return status;
236                 }
237
238                 trans2_setup_reply(req, trans, 0, 18, 0);
239
240                 SIVAL(trans->out.data.data,  0, fsinfo.allocation.out.fs_id);
241                 SIVAL(trans->out.data.data,  4, fsinfo.allocation.out.sectors_per_unit);
242                 SIVAL(trans->out.data.data,  8, fsinfo.allocation.out.total_alloc_units);
243                 SIVAL(trans->out.data.data, 12, fsinfo.allocation.out.avail_alloc_units);
244                 SSVAL(trans->out.data.data, 16, fsinfo.allocation.out.bytes_per_sector);
245
246                 return NT_STATUS_OK;
247
248         case SMB_QFS_VOLUME:
249                 fsinfo.volume.level = RAW_QFS_VOLUME;
250
251                 status = ntvfs_fsinfo(req, &fsinfo);
252                 if (!NT_STATUS_IS_OK(status)) {
253                         return status;
254                 }
255
256                 trans2_setup_reply(req, trans, 0, 5, 0);
257
258                 SIVAL(trans->out.data.data,       0, fsinfo.volume.out.serial_number);
259                 /* w2k3 implements this incorrectly for unicode - it
260                  * leaves the last byte off the string */
261                 trans2_append_data_string(req, trans, 
262                                           &fsinfo.volume.out.volume_name, 
263                                           4, STR_LEN8BIT|STR_NOALIGN);
264
265                 return NT_STATUS_OK;
266
267         case SMB_QFS_VOLUME_INFO:
268         case SMB_QFS_VOLUME_INFORMATION:
269                 fsinfo.volume_info.level = RAW_QFS_VOLUME_INFO;
270
271                 status = ntvfs_fsinfo(req, &fsinfo);
272                 if (!NT_STATUS_IS_OK(status)) {
273                         return status;
274                 }
275
276                 trans2_setup_reply(req, trans, 0, 18, 0);
277
278                 push_nttime(trans->out.data.data, 0, fsinfo.volume_info.out.create_time);
279                 SIVAL(trans->out.data.data,       8, fsinfo.volume_info.out.serial_number);
280                 SSVAL(trans->out.data.data,      16, 0); /* padding */
281                 trans2_append_data_string(req, trans, 
282                                           &fsinfo.volume_info.out.volume_name, 
283                                           12, STR_UNICODE);
284
285                 return NT_STATUS_OK;
286
287         case SMB_QFS_SIZE_INFO:
288         case SMB_QFS_SIZE_INFORMATION:
289                 fsinfo.size_info.level = RAW_QFS_SIZE_INFO;
290
291                 status = ntvfs_fsinfo(req, &fsinfo);
292                 if (!NT_STATUS_IS_OK(status)) {
293                         return status;
294                 }
295
296                 trans2_setup_reply(req, trans, 0, 24, 0);
297
298                 SBVAL(trans->out.data.data,  0, fsinfo.size_info.out.total_alloc_units);
299                 SBVAL(trans->out.data.data,  8, fsinfo.size_info.out.avail_alloc_units);
300                 SIVAL(trans->out.data.data, 16, fsinfo.size_info.out.sectors_per_unit);
301                 SIVAL(trans->out.data.data, 20, fsinfo.size_info.out.bytes_per_sector);
302
303                 return NT_STATUS_OK;
304
305         case SMB_QFS_DEVICE_INFO:
306         case SMB_QFS_DEVICE_INFORMATION:
307                 fsinfo.device_info.level = RAW_QFS_DEVICE_INFO;
308
309                 status = ntvfs_fsinfo(req, &fsinfo);
310                 if (!NT_STATUS_IS_OK(status)) {
311                         return status;
312                 }
313                 trans2_setup_reply(req, trans, 0, 8, 0);
314                 SIVAL(trans->out.data.data,      0, fsinfo.device_info.out.device_type);
315                 SIVAL(trans->out.data.data,      4, fsinfo.device_info.out.characteristics);
316                 return NT_STATUS_OK;
317
318
319         case SMB_QFS_ATTRIBUTE_INFO:
320         case SMB_QFS_ATTRIBUTE_INFORMATION:
321                 fsinfo.attribute_info.level = RAW_QFS_ATTRIBUTE_INFO;
322
323                 status = ntvfs_fsinfo(req, &fsinfo);
324                 if (!NT_STATUS_IS_OK(status)) {
325                         return status;
326                 }
327
328                 trans2_setup_reply(req, trans, 0, 12, 0);
329
330                 SIVAL(trans->out.data.data, 0, fsinfo.attribute_info.out.fs_attr);
331                 SIVAL(trans->out.data.data, 4, fsinfo.attribute_info.out.max_file_component_length);
332                 /* this must not be null terminated or win98 gets
333                    confused!  also note that w2k3 returns this as
334                    unicode even when ascii is negotiated */
335                 trans2_append_data_string(req, trans, 
336                                           &fsinfo.attribute_info.out.fs_type,
337                                           8, STR_UNICODE);
338                 return NT_STATUS_OK;
339
340
341         case SMB_QFS_QUOTA_INFORMATION:
342                 fsinfo.quota_information.level = RAW_QFS_QUOTA_INFORMATION;
343
344                 status = ntvfs_fsinfo(req, &fsinfo);
345                 if (!NT_STATUS_IS_OK(status)) {
346                         return status;
347                 }
348
349                 trans2_setup_reply(req, trans, 0, 48, 0);
350
351                 SBVAL(trans->out.data.data,   0, fsinfo.quota_information.out.unknown[0]);
352                 SBVAL(trans->out.data.data,   8, fsinfo.quota_information.out.unknown[1]);
353                 SBVAL(trans->out.data.data,  16, fsinfo.quota_information.out.unknown[2]);
354                 SBVAL(trans->out.data.data,  24, fsinfo.quota_information.out.quota_soft);
355                 SBVAL(trans->out.data.data,  32, fsinfo.quota_information.out.quota_hard);
356                 SBVAL(trans->out.data.data,  40, fsinfo.quota_information.out.quota_flags);
357
358                 return NT_STATUS_OK;
359
360
361         case SMB_QFS_FULL_SIZE_INFORMATION:
362                 fsinfo.full_size_information.level = RAW_QFS_FULL_SIZE_INFORMATION;
363
364                 status = ntvfs_fsinfo(req, &fsinfo);
365                 if (!NT_STATUS_IS_OK(status)) {
366                         return status;
367                 }
368
369                 trans2_setup_reply(req, trans, 0, 32, 0);
370
371                 SBVAL(trans->out.data.data,  0, fsinfo.full_size_information.out.total_alloc_units);
372                 SBVAL(trans->out.data.data,  8, fsinfo.full_size_information.out.call_avail_alloc_units);
373                 SBVAL(trans->out.data.data, 16, fsinfo.full_size_information.out.actual_avail_alloc_units);
374                 SIVAL(trans->out.data.data, 24, fsinfo.full_size_information.out.sectors_per_unit);
375                 SIVAL(trans->out.data.data, 28, fsinfo.full_size_information.out.bytes_per_sector);
376
377                 return NT_STATUS_OK;
378
379         case SMB_QFS_OBJECTID_INFORMATION:
380                 fsinfo.objectid_information.level = RAW_QFS_OBJECTID_INFORMATION;
381
382                 status = ntvfs_fsinfo(req, &fsinfo);
383                 if (!NT_STATUS_IS_OK(status)) {
384                         return status;
385                 }
386
387                 trans2_setup_reply(req, trans, 0, 64, 0);
388
389                 status = ndr_push_struct_blob(&guid_blob, req, 
390                                               &fsinfo.objectid_information.out.guid,
391                                               (ndr_push_flags_fn_t)ndr_push_GUID);
392                 if (!NT_STATUS_IS_OK(status)) {
393                         return status;
394                 }
395
396                 memcpy(trans->out.data.data, guid_blob.data, guid_blob.length);
397
398                 for (i=0;i<6;i++) {
399                         SBVAL(trans->out.data.data, 16 + 8*i, fsinfo.objectid_information.out.unknown[i]);
400                 }
401                 return NT_STATUS_OK;
402         }
403
404         return NT_STATUS_INVALID_LEVEL;
405 }
406
407
408 /*
409   trans2 open implementation
410 */
411 static NTSTATUS trans2_open(struct smbsrv_request *req, struct smb_trans2 *trans)
412 {
413         union smb_open *io;
414         NTSTATUS status;
415
416         /* make sure we got enough parameters */
417         if (trans->in.params.length < 29) {
418                 return NT_STATUS_FOOBAR;
419         }
420
421         io = talloc_p(req, union smb_open);
422         if (io == NULL) {
423                 return NT_STATUS_NO_MEMORY;
424         }
425
426         io->t2open.level         = RAW_OPEN_T2OPEN;
427         io->t2open.in.flags      = SVAL(trans->in.params.data, VWV(0));
428         io->t2open.in.open_mode  = SVAL(trans->in.params.data, VWV(1));
429         io->t2open.in.file_attrs = SVAL(trans->in.params.data, VWV(3));
430         io->t2open.in.write_time = srv_pull_dos_date(req->smb_conn, 
431                                                     trans->in.params.data + VWV(4));;
432         io->t2open.in.open_func  = SVAL(trans->in.params.data, VWV(6));
433         io->t2open.in.size       = IVAL(trans->in.params.data, VWV(7));
434         io->t2open.in.timeout    = IVAL(trans->in.params.data, VWV(9));
435         io->t2open.in.num_eas    = 0;
436         io->t2open.in.eas        = NULL;
437
438         trans2_pull_blob_string(req, &trans->in.params, 28, &io->t2open.in.fname, 0);
439
440         status = ea_pull_list(&trans->in.data, io, &io->t2open.in.num_eas, &io->t2open.in.eas);
441         if (!NT_STATUS_IS_OK(status)) {
442                 return status;
443         }
444
445         status = ntvfs_openfile(req, io);
446         if (!NT_STATUS_IS_OK(status)) {
447                 return status;
448         }
449
450         trans2_setup_reply(req, trans, 30, 0, 0);
451
452         SSVAL(trans->out.params.data, VWV(0), io->t2open.out.fnum);
453         SSVAL(trans->out.params.data, VWV(1), io->t2open.out.attrib);
454         srv_push_dos_date3(req->smb_conn, trans->out.params.data, 
455                            VWV(2), io->t2open.out.write_time);
456         SIVAL(trans->out.params.data, VWV(4), io->t2open.out.size);
457         SSVAL(trans->out.params.data, VWV(6), io->t2open.out.access);
458         SSVAL(trans->out.params.data, VWV(7), io->t2open.out.ftype);
459         SSVAL(trans->out.params.data, VWV(8), io->t2open.out.devstate);
460         SSVAL(trans->out.params.data, VWV(9), io->t2open.out.action);
461         SIVAL(trans->out.params.data, VWV(10), 0); /* reserved */
462         SSVAL(trans->out.params.data, VWV(12), 0); /* EaErrorOffset */
463         SIVAL(trans->out.params.data, VWV(13), 0); /* EaLength */
464
465         return status;
466 }
467
468
469 /*
470   trans2 mkdir implementation
471 */
472 static NTSTATUS trans2_mkdir(struct smbsrv_request *req, struct smb_trans2 *trans)
473 {
474         union smb_mkdir *io;
475         NTSTATUS status;
476
477         /* make sure we got enough parameters */
478         if (trans->in.params.length < 5) {
479                 return NT_STATUS_FOOBAR;
480         }
481
482         io = talloc_p(req, union smb_mkdir);
483         if (io == NULL) {
484                 return NT_STATUS_NO_MEMORY;
485         }
486
487         io->t2mkdir.level = RAW_MKDIR_T2MKDIR;
488         trans2_pull_blob_string(req, &trans->in.params, 4, &io->t2mkdir.in.path, 0);
489
490         status = ea_pull_list(&trans->in.data, io, 
491                               &io->t2mkdir.in.num_eas, 
492                               &io->t2mkdir.in.eas);
493         if (!NT_STATUS_IS_OK(status)) {
494                 return status;
495         }
496
497         status = ntvfs_mkdir(req, io);
498         if (!NT_STATUS_IS_OK(status)) {
499                 return status;
500         }
501
502         trans2_setup_reply(req, trans, 2, 0, 0);
503
504         SSVAL(trans->out.params.data, VWV(0), 0);
505
506         return status;
507 }
508
509 /*
510   fill in the reply from a qpathinfo or qfileinfo call
511 */
512 static NTSTATUS trans2_fileinfo_fill(struct smbsrv_request *req, struct smb_trans2 *trans,
513                                      union smb_fileinfo *st)
514 {
515         uint_t i;
516         uint32_t list_size;
517         
518         switch (st->generic.level) {
519         case RAW_FILEINFO_GENERIC:
520         case RAW_FILEINFO_GETATTR:
521         case RAW_FILEINFO_GETATTRE:
522         case RAW_FILEINFO_SEC_DESC:
523                 /* handled elsewhere */
524                 return NT_STATUS_INVALID_LEVEL;
525
526         case RAW_FILEINFO_BASIC_INFO:
527         case RAW_FILEINFO_BASIC_INFORMATION:
528                 trans2_setup_reply(req, trans, 2, 40, 0);
529
530                 SSVAL(trans->out.params.data, 0, 0);
531                 push_nttime(trans->out.data.data,  0, st->basic_info.out.create_time);
532                 push_nttime(trans->out.data.data,  8, st->basic_info.out.access_time);
533                 push_nttime(trans->out.data.data, 16, st->basic_info.out.write_time);
534                 push_nttime(trans->out.data.data, 24, st->basic_info.out.change_time);
535                 SIVAL(trans->out.data.data,       32, st->basic_info.out.attrib);
536                 SIVAL(trans->out.data.data,       36, 0); /* padding */
537                 return NT_STATUS_OK;
538
539         case RAW_FILEINFO_STANDARD:
540                 trans2_setup_reply(req, trans, 2, 22, 0);
541
542                 SSVAL(trans->out.params.data, 0, 0);
543                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 0, st->standard.out.create_time);
544                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 4, st->standard.out.access_time);
545                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 8, st->standard.out.write_time);
546                 SIVAL(trans->out.data.data,        12, st->standard.out.size);
547                 SIVAL(trans->out.data.data,        16, st->standard.out.alloc_size);
548                 SSVAL(trans->out.data.data,        20, st->standard.out.attrib);
549                 return NT_STATUS_OK;
550
551         case RAW_FILEINFO_EA_SIZE:
552                 trans2_setup_reply(req, trans, 2, 26, 0);
553
554                 SSVAL(trans->out.params.data, 0, 0);
555                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 0, st->ea_size.out.create_time);
556                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 4, st->ea_size.out.access_time);
557                 srv_push_dos_date2(req->smb_conn, trans->out.data.data, 8, st->ea_size.out.write_time);
558                 SIVAL(trans->out.data.data,        12, st->ea_size.out.size);
559                 SIVAL(trans->out.data.data,        16, st->ea_size.out.alloc_size);
560                 SSVAL(trans->out.data.data,        20, st->ea_size.out.attrib);
561                 SIVAL(trans->out.data.data,        22, st->ea_size.out.ea_size);
562                 return NT_STATUS_OK;
563
564         case RAW_FILEINFO_NETWORK_OPEN_INFORMATION:
565                 trans2_setup_reply(req, trans, 2, 56, 0);
566
567                 SSVAL(trans->out.params.data, 0, 0);
568                 push_nttime(trans->out.data.data,  0, st->network_open_information.out.create_time);
569                 push_nttime(trans->out.data.data,  8, st->network_open_information.out.access_time);
570                 push_nttime(trans->out.data.data, 16, st->network_open_information.out.write_time);
571                 push_nttime(trans->out.data.data, 24, st->network_open_information.out.change_time);
572                 SBVAL(trans->out.data.data,       32, st->network_open_information.out.alloc_size);
573                 SBVAL(trans->out.data.data,       40, st->network_open_information.out.size);
574                 SIVAL(trans->out.data.data,       48, st->network_open_information.out.attrib);
575                 SIVAL(trans->out.data.data,       52, 0); /* padding */
576                 return NT_STATUS_OK;
577
578         case RAW_FILEINFO_STANDARD_INFO:
579         case RAW_FILEINFO_STANDARD_INFORMATION:
580                 trans2_setup_reply(req, trans, 2, 24, 0);
581                 SSVAL(trans->out.params.data, 0, 0);
582                 SBVAL(trans->out.data.data,  0, st->standard_info.out.alloc_size);
583                 SBVAL(trans->out.data.data,  8, st->standard_info.out.size);
584                 SIVAL(trans->out.data.data, 16, st->standard_info.out.nlink);
585                 SCVAL(trans->out.data.data, 20, st->standard_info.out.delete_pending);
586                 SCVAL(trans->out.data.data, 21, st->standard_info.out.directory);
587                 SSVAL(trans->out.data.data, 22, 0); /* padding */
588                 return NT_STATUS_OK;
589
590         case RAW_FILEINFO_ATTRIBUTE_TAG_INFORMATION:
591                 trans2_setup_reply(req, trans, 2, 8, 0);
592                 SSVAL(trans->out.params.data, 0, 0);
593                 SIVAL(trans->out.data.data,  0, st->attribute_tag_information.out.attrib);
594                 SIVAL(trans->out.data.data,  4, st->attribute_tag_information.out.reparse_tag);
595                 return NT_STATUS_OK;
596
597         case RAW_FILEINFO_EA_INFO:
598         case RAW_FILEINFO_EA_INFORMATION:
599                 trans2_setup_reply(req, trans, 2, 4, 0);
600                 SSVAL(trans->out.params.data, 0, 0);
601                 SIVAL(trans->out.data.data,  0, st->ea_info.out.ea_size);
602                 return NT_STATUS_OK;
603
604         case RAW_FILEINFO_MODE_INFORMATION:
605                 trans2_setup_reply(req, trans, 2, 4, 0);
606                 SSVAL(trans->out.params.data, 0, 0);
607                 SIVAL(trans->out.data.data,  0, st->mode_information.out.mode);
608                 return NT_STATUS_OK;
609
610         case RAW_FILEINFO_ALIGNMENT_INFORMATION:
611                 trans2_setup_reply(req, trans, 2, 4, 0);
612                 SSVAL(trans->out.params.data, 0, 0);
613                 SIVAL(trans->out.data.data,  0, 
614                       st->alignment_information.out.alignment_requirement);
615                 return NT_STATUS_OK;
616
617         case RAW_FILEINFO_ALL_EAS:
618                 list_size = ea_list_size(st->all_eas.out.num_eas,
619                                                   st->all_eas.out.eas);
620                 trans2_setup_reply(req, trans, 2, list_size, 0);
621                 SSVAL(trans->out.params.data, 0, 0);
622                 ea_put_list(trans->out.data.data, 
623                             st->all_eas.out.num_eas, st->all_eas.out.eas);
624                 return NT_STATUS_OK;
625
626         case RAW_FILEINFO_ACCESS_INFORMATION:
627                 trans2_setup_reply(req, trans, 2, 4, 0);
628                 SSVAL(trans->out.params.data, 0, 0);
629                 SIVAL(trans->out.data.data,  0, st->access_information.out.access_flags);
630                 return NT_STATUS_OK;
631
632         case RAW_FILEINFO_POSITION_INFORMATION:
633                 trans2_setup_reply(req, trans, 2, 8, 0);
634                 SSVAL(trans->out.params.data, 0, 0);
635                 SBVAL(trans->out.data.data,  0, st->position_information.out.position);
636                 return NT_STATUS_OK;
637
638         case RAW_FILEINFO_COMPRESSION_INFO:
639         case RAW_FILEINFO_COMPRESSION_INFORMATION:
640                 trans2_setup_reply(req, trans, 2, 16, 0);
641                 SSVAL(trans->out.params.data, 0, 0);
642                 SBVAL(trans->out.data.data,  0, st->compression_info.out.compressed_size);
643                 SSVAL(trans->out.data.data,  8, st->compression_info.out.format);
644                 SCVAL(trans->out.data.data, 10, st->compression_info.out.unit_shift);
645                 SCVAL(trans->out.data.data, 11, st->compression_info.out.chunk_shift);
646                 SCVAL(trans->out.data.data, 12, st->compression_info.out.cluster_shift);
647                 SSVAL(trans->out.data.data, 13, 0); /* 3 bytes padding */
648                 SCVAL(trans->out.data.data, 15, 0);
649                 return NT_STATUS_OK;
650
651         case RAW_FILEINFO_IS_NAME_VALID:
652                 trans2_setup_reply(req, trans, 2, 0, 0);
653                 SSVAL(trans->out.params.data, 0, 0);
654                 return NT_STATUS_OK;
655
656         case RAW_FILEINFO_INTERNAL_INFORMATION:
657                 trans2_setup_reply(req, trans, 2, 8, 0);
658                 SSVAL(trans->out.params.data, 0, 0);
659                 SBVAL(trans->out.data.data,  0, st->internal_information.out.file_id);
660                 return NT_STATUS_OK;
661
662         case RAW_FILEINFO_ALL_INFO:
663         case RAW_FILEINFO_ALL_INFORMATION:
664                 trans2_setup_reply(req, trans, 2, 72, 0);
665
666                 SSVAL(trans->out.params.data, 0, 0);
667                 push_nttime(trans->out.data.data,  0, st->all_info.out.create_time);
668                 push_nttime(trans->out.data.data,  8, st->all_info.out.access_time);
669                 push_nttime(trans->out.data.data, 16, st->all_info.out.write_time);
670                 push_nttime(trans->out.data.data, 24, st->all_info.out.change_time);
671                 SIVAL(trans->out.data.data,       32, st->all_info.out.attrib);
672                 SIVAL(trans->out.data.data,       36, 0);
673                 SBVAL(trans->out.data.data,       40, st->all_info.out.alloc_size);
674                 SBVAL(trans->out.data.data,       48, st->all_info.out.size);
675                 SIVAL(trans->out.data.data,       56, st->all_info.out.nlink);
676                 SCVAL(trans->out.data.data,       60, st->all_info.out.delete_pending);
677                 SCVAL(trans->out.data.data,       61, st->all_info.out.directory);
678                 SSVAL(trans->out.data.data,       62, 0); /* padding */
679                 SIVAL(trans->out.data.data,       64, st->all_info.out.ea_size);
680                 trans2_append_data_string(req, trans, &st->all_info.out.fname, 
681                                           68, STR_UNICODE);
682                 return NT_STATUS_OK;
683
684         case RAW_FILEINFO_NAME_INFO:
685         case RAW_FILEINFO_NAME_INFORMATION:
686                 trans2_setup_reply(req, trans, 2, 4, 0);
687                 SSVAL(trans->out.params.data, 0, 0);
688                 trans2_append_data_string(req, trans, &st->name_info.out.fname, 0, STR_UNICODE);
689                 return NT_STATUS_OK;
690
691         case RAW_FILEINFO_ALT_NAME_INFO:
692         case RAW_FILEINFO_ALT_NAME_INFORMATION:
693                 trans2_setup_reply(req, trans, 2, 4, 0);
694                 SSVAL(trans->out.params.data, 0, 0);
695                 trans2_append_data_string(req, trans, &st->alt_name_info.out.fname, 0, STR_UNICODE);
696                 return NT_STATUS_OK;
697
698         case RAW_FILEINFO_STREAM_INFO:
699         case RAW_FILEINFO_STREAM_INFORMATION:
700                 trans2_setup_reply(req, trans, 2, 0, 0);
701
702                 SSVAL(trans->out.params.data, 0, 0);
703
704                 for (i=0;i<st->stream_info.out.num_streams;i++) {
705                         uint16_t data_size = trans->out.data.length;
706                         uint8_t *data;
707
708                         trans2_grow_data(req, trans, data_size + 24);
709                         data = trans->out.data.data + data_size;
710                         SBVAL(data,  8, st->stream_info.out.streams[i].size);
711                         SBVAL(data, 16, st->stream_info.out.streams[i].alloc_size);
712                         trans2_append_data_string(req, trans, 
713                                                   &st->stream_info.out.streams[i].stream_name, 
714                                                   data_size + 4, STR_UNICODE);
715                         if (i == st->stream_info.out.num_streams - 1) {
716                                 SIVAL(trans->out.data.data, data_size, 0);
717                         } else {
718                                 trans2_grow_data_fill(req, trans, (trans->out.data.length+7)&~7);
719                                 SIVAL(trans->out.data.data, data_size, 
720                                       trans->out.data.length - data_size);
721                         }
722                 }
723                 return NT_STATUS_OK;
724         }
725
726         return NT_STATUS_INVALID_LEVEL;
727 }
728
729 /*
730   trans2 qpathinfo implementation
731 */
732 static NTSTATUS trans2_qpathinfo(struct smbsrv_request *req, struct smb_trans2 *trans)
733 {
734         union smb_fileinfo st;
735         NTSTATUS status;
736         uint16_t level;
737
738         /* make sure we got enough parameters */
739         if (trans->in.params.length < 2) {
740                 return NT_STATUS_FOOBAR;
741         }
742
743         level = SVAL(trans->in.params.data, 0);
744
745         trans2_pull_blob_string(req, &trans->in.params, 6, &st.generic.in.fname, 0);
746         if (st.generic.in.fname == NULL) {
747                 return NT_STATUS_FOOBAR;
748         }
749
750         /* work out the backend level - we make it 1-1 in the header */
751         st.generic.level = (enum smb_fileinfo_level)level;
752         if (st.generic.level >= RAW_FILEINFO_GENERIC) {
753                 return NT_STATUS_INVALID_LEVEL;
754         }
755
756         /* call the backend */
757         status = ntvfs_qpathinfo(req, &st);
758         if (!NT_STATUS_IS_OK(status)) {
759                 return status;
760         }
761
762         /* fill in the reply parameters */
763         status = trans2_fileinfo_fill(req, trans, &st);
764
765         return status;
766 }
767
768
769 /*
770   trans2 qpathinfo implementation
771 */
772 static NTSTATUS trans2_qfileinfo(struct smbsrv_request *req, struct smb_trans2 *trans)
773 {
774         union smb_fileinfo st;
775         NTSTATUS status;
776         uint16_t level;
777
778         /* make sure we got enough parameters */
779         if (trans->in.params.length < 4) {
780                 return NT_STATUS_FOOBAR;
781         }
782
783         st.generic.in.fnum  = SVAL(trans->in.params.data, 0);
784         level = SVAL(trans->in.params.data, 2);
785
786         /* work out the backend level - we make it 1-1 in the header */
787         st.generic.level = (enum smb_fileinfo_level)level;
788         if (st.generic.level >= RAW_FILEINFO_GENERIC) {
789                 return NT_STATUS_INVALID_LEVEL;
790         }
791
792         /* call the backend */
793         status = ntvfs_qfileinfo(req, &st);
794         if (!NT_STATUS_IS_OK(status)) {
795                 return status;
796         }
797
798         /* fill in the reply parameters */
799         status = trans2_fileinfo_fill(req, trans, &st);
800
801         return status;
802 }
803
804
805 /*
806   parse a trans2 setfileinfo/setpathinfo data blob
807 */
808 static NTSTATUS trans2_parse_sfileinfo(struct smbsrv_request *req,
809                                        union smb_setfileinfo *st,
810                                        const DATA_BLOB *blob)
811 {
812         uint32_t len;
813
814         switch (st->generic.level) {
815         case RAW_SFILEINFO_GENERIC:
816         case RAW_SFILEINFO_SETATTR:
817         case RAW_SFILEINFO_SETATTRE:
818         case RAW_SFILEINFO_SEC_DESC:
819                 /* handled elsewhere */
820                 return NT_STATUS_INVALID_LEVEL;
821
822         case RAW_SFILEINFO_STANDARD:
823                 CHECK_MIN_BLOB_SIZE(blob, 12);
824                 st->standard.in.create_time = srv_pull_dos_date2(req->smb_conn, blob->data + 0);
825                 st->standard.in.access_time = srv_pull_dos_date2(req->smb_conn, blob->data + 4);
826                 st->standard.in.write_time  = srv_pull_dos_date2(req->smb_conn, blob->data + 8);
827                 return NT_STATUS_OK;
828
829         case RAW_SFILEINFO_EA_SET:
830                 CHECK_MIN_BLOB_SIZE(blob, 4);
831                 len = IVAL(blob->data, 0);
832                 if (len > blob->length || len < 4) {
833                         return NT_STATUS_INFO_LENGTH_MISMATCH;
834                 }
835                 {
836                         DATA_BLOB blob2;
837                         blob2.data = blob->data+4;
838                         blob2.length = len-4;
839                         len = ea_pull_struct(&blob2, req, &st->ea_set.in.ea);
840                 }
841                 if (len == 0) {
842                         return NT_STATUS_INVALID_PARAMETER;
843                 }
844                 return NT_STATUS_OK;
845
846         case SMB_SFILEINFO_BASIC_INFO:
847         case SMB_SFILEINFO_BASIC_INFORMATION:
848                 CHECK_MIN_BLOB_SIZE(blob, 36);
849                 st->basic_info.in.create_time = pull_nttime(blob->data,  0);
850                 st->basic_info.in.access_time = pull_nttime(blob->data,  8);
851                 st->basic_info.in.write_time =  pull_nttime(blob->data, 16);
852                 st->basic_info.in.change_time = pull_nttime(blob->data, 24);
853                 st->basic_info.in.attrib =      IVAL(blob->data,        32);
854                 return NT_STATUS_OK;
855
856         case SMB_SFILEINFO_DISPOSITION_INFO:
857         case SMB_SFILEINFO_DISPOSITION_INFORMATION:
858                 CHECK_MIN_BLOB_SIZE(blob, 1);
859                 st->disposition_info.in.delete_on_close = CVAL(blob->data, 0);
860                 return NT_STATUS_OK;
861
862         case SMB_SFILEINFO_ALLOCATION_INFO:
863         case SMB_SFILEINFO_ALLOCATION_INFORMATION:
864                 CHECK_MIN_BLOB_SIZE(blob, 8);
865                 st->allocation_info.in.alloc_size = BVAL(blob->data, 0);
866                 return NT_STATUS_OK;                            
867
868         case RAW_SFILEINFO_END_OF_FILE_INFO:
869         case RAW_SFILEINFO_END_OF_FILE_INFORMATION:
870                 CHECK_MIN_BLOB_SIZE(blob, 8);
871                 st->end_of_file_info.in.size = BVAL(blob->data, 0);
872                 return NT_STATUS_OK;
873
874         case RAW_SFILEINFO_RENAME_INFORMATION: {
875                 DATA_BLOB blob2;
876
877                 CHECK_MIN_BLOB_SIZE(blob, 12);
878                 st->rename_information.in.overwrite = CVAL(blob->data, 0);
879                 st->rename_information.in.root_fid  = IVAL(blob->data, 4);
880                 len                                 = IVAL(blob->data, 8);
881                 blob2.data = blob->data+12;
882                 blob2.length = MIN(blob->length, len);
883                 trans2_pull_blob_string(req, &blob2, 0, 
884                                         &st->rename_information.in.new_name, STR_UNICODE);
885                 return NT_STATUS_OK;
886         }
887
888         case RAW_SFILEINFO_POSITION_INFORMATION:
889                 CHECK_MIN_BLOB_SIZE(blob, 8);
890                 st->position_information.in.position = BVAL(blob->data, 0);
891                 return NT_STATUS_OK;
892
893         case RAW_SFILEINFO_MODE_INFORMATION:
894                 CHECK_MIN_BLOB_SIZE(blob, 4);
895                 st->mode_information.in.mode = IVAL(blob->data, 0);
896                 return NT_STATUS_OK;
897         }
898
899         return NT_STATUS_INVALID_LEVEL;
900 }
901
902 /*
903   trans2 setfileinfo implementation
904 */
905 static NTSTATUS trans2_setfileinfo(struct smbsrv_request *req, struct smb_trans2 *trans)
906 {
907         union smb_setfileinfo st;
908         NTSTATUS status;
909         uint16_t level, fnum;
910         DATA_BLOB *blob;
911
912         /* make sure we got enough parameters */
913         if (trans->in.params.length < 4) {
914                 return NT_STATUS_FOOBAR;
915         }
916
917         fnum  = SVAL(trans->in.params.data, 0);
918         level = SVAL(trans->in.params.data, 2);
919
920         blob = &trans->in.data;
921
922         st.generic.file.fnum = fnum;
923         st.generic.level = (enum smb_setfileinfo_level)level;
924
925         status = trans2_parse_sfileinfo(req, &st, blob);
926         if (!NT_STATUS_IS_OK(status)) {
927                 return status;
928         }
929
930         status = ntvfs_setfileinfo(req, &st);
931         if (!NT_STATUS_IS_OK(status)) {
932                 return status;
933         }
934
935         trans2_setup_reply(req, trans, 2, 0, 0);
936         SSVAL(trans->out.params.data, 0, 0);
937         return NT_STATUS_OK;
938 }
939
940 /*
941   trans2 setpathinfo implementation
942 */
943 static NTSTATUS trans2_setpathinfo(struct smbsrv_request *req, struct smb_trans2 *trans)
944 {
945         union smb_setfileinfo st;
946         NTSTATUS status;
947         uint16_t level;
948         DATA_BLOB *blob;
949
950         /* make sure we got enough parameters */
951         if (trans->in.params.length < 4) {
952                 return NT_STATUS_FOOBAR;
953         }
954
955         level = SVAL(trans->in.params.data, 0);
956         blob = &trans->in.data;
957         st.generic.level = (enum smb_setfileinfo_level)level;
958
959         trans2_pull_blob_string(req, &trans->in.params, 6, &st.generic.file.fname, 0);
960         if (st.generic.file.fname == NULL) {
961                 return NT_STATUS_FOOBAR;
962         }
963
964         status = trans2_parse_sfileinfo(req, &st, blob);
965         if (!NT_STATUS_IS_OK(status)) {
966                 return status;
967         }
968
969         status = ntvfs_setpathinfo(req, &st);
970         if (!NT_STATUS_IS_OK(status)) {
971                 return status;
972         }
973
974         trans2_setup_reply(req, trans, 2, 0, 0);
975         SSVAL(trans->out.params.data, 0, 0);
976         return NT_STATUS_OK;
977 }
978
979
980 /* a structure to encapsulate the state information about an in-progress ffirst/fnext operation */
981 struct find_state {
982         struct smbsrv_request *req;
983         struct smb_trans2 *trans;
984         enum smb_search_level level;
985         uint16_t last_entry_offset;
986         uint16_t flags;
987 };
988
989 /*
990   fill a single entry in a trans2 find reply 
991 */
992 static void find_fill_info(struct smbsrv_request *req,
993                            struct smb_trans2 *trans, 
994                            struct find_state *state,
995                            union smb_search_data *file)
996 {
997         uint8_t *data;
998         uint_t ofs = trans->out.data.length;
999
1000         switch (state->level) {
1001         case RAW_SEARCH_SEARCH:
1002         case RAW_SEARCH_FFIRST:
1003         case RAW_SEARCH_FUNIQUE:
1004         case RAW_SEARCH_GENERIC:
1005                 /* handled elsewhere */
1006                 break;
1007
1008         case RAW_SEARCH_STANDARD:
1009                 if (state->flags & FLAG_TRANS2_FIND_REQUIRE_RESUME) {
1010                         trans2_grow_data(req, trans, ofs + 27);
1011                         SIVAL(trans->out.data.data, ofs, file->standard.resume_key);
1012                         ofs += 4;
1013                 } else {
1014                         trans2_grow_data(req, trans, ofs + 23);
1015                 }
1016                 data = trans->out.data.data + ofs;
1017                 srv_push_dos_date2(req->smb_conn, data, 0, file->standard.create_time);
1018                 srv_push_dos_date2(req->smb_conn, data, 4, file->standard.access_time);
1019                 srv_push_dos_date2(req->smb_conn, data, 8, file->standard.write_time);
1020                 SIVAL(data, 12, file->standard.size);
1021                 SIVAL(data, 16, file->standard.alloc_size);
1022                 SSVAL(data, 20, file->standard.attrib);
1023                 trans2_append_data_string(req, trans, &file->standard.name, 
1024                                           ofs + 22, STR_LEN8BIT | STR_TERMINATE | STR_LEN_NOTERM);
1025                 break;
1026
1027         case RAW_SEARCH_EA_SIZE:
1028                 if (state->flags & FLAG_TRANS2_FIND_REQUIRE_RESUME) {
1029                         trans2_grow_data(req, trans, ofs + 31);
1030                         SIVAL(trans->out.data.data, ofs, file->ea_size.resume_key);
1031                         ofs += 4;
1032                 } else {
1033                         trans2_grow_data(req, trans, ofs + 27);
1034                 }
1035                 data = trans->out.data.data + ofs;
1036                 srv_push_dos_date2(req->smb_conn, data, 0, file->ea_size.create_time);
1037                 srv_push_dos_date2(req->smb_conn, data, 4, file->ea_size.access_time);
1038                 srv_push_dos_date2(req->smb_conn, data, 8, file->ea_size.write_time);
1039                 SIVAL(data, 12, file->ea_size.size);
1040                 SIVAL(data, 16, file->ea_size.alloc_size);
1041                 SSVAL(data, 20, file->ea_size.attrib);
1042                 SIVAL(data, 22, file->ea_size.ea_size);
1043                 trans2_append_data_string(req, trans, &file->ea_size.name, 
1044                                           ofs + 26, STR_LEN8BIT | STR_NOALIGN);
1045                 trans2_grow_data(req, trans, trans->out.data.length + 1);
1046                 trans->out.data.data[trans->out.data.length-1] = 0;
1047                 break;
1048
1049         case RAW_SEARCH_DIRECTORY_INFO:
1050                 trans2_grow_data(req, trans, ofs + 64);
1051                 data = trans->out.data.data + ofs;
1052                 SIVAL(data,          4, file->directory_info.file_index);
1053                 push_nttime(data,    8, file->directory_info.create_time);
1054                 push_nttime(data,   16, file->directory_info.access_time);
1055                 push_nttime(data,   24, file->directory_info.write_time);
1056                 push_nttime(data,   32, file->directory_info.change_time);
1057                 SBVAL(data,         40, file->directory_info.size);
1058                 SBVAL(data,         48, file->directory_info.alloc_size);
1059                 SIVAL(data,         56, file->directory_info.attrib);
1060                 trans2_append_data_string(req, trans, &file->directory_info.name, 
1061                                           ofs + 60, STR_TERMINATE_ASCII);
1062                 data = trans->out.data.data + ofs;
1063                 SIVAL(data,          0, trans->out.data.length - ofs);
1064                 break;
1065
1066         case RAW_SEARCH_FULL_DIRECTORY_INFO:
1067                 trans2_grow_data(req, trans, ofs + 68);
1068                 data = trans->out.data.data + ofs;
1069                 SIVAL(data,          4, file->full_directory_info.file_index);
1070                 push_nttime(data,    8, file->full_directory_info.create_time);
1071                 push_nttime(data,   16, file->full_directory_info.access_time);
1072                 push_nttime(data,   24, file->full_directory_info.write_time);
1073                 push_nttime(data,   32, file->full_directory_info.change_time);
1074                 SBVAL(data,         40, file->full_directory_info.size);
1075                 SBVAL(data,         48, file->full_directory_info.alloc_size);
1076                 SIVAL(data,         56, file->full_directory_info.attrib);
1077                 SIVAL(data,         64, file->full_directory_info.ea_size);
1078                 trans2_append_data_string(req, trans, &file->full_directory_info.name, 
1079                                           ofs + 60, STR_TERMINATE_ASCII);
1080                 data = trans->out.data.data + ofs;
1081                 SIVAL(data,          0, trans->out.data.length - ofs);
1082                 break;
1083
1084         case RAW_SEARCH_NAME_INFO:
1085                 trans2_grow_data(req, trans, ofs + 12);
1086                 data = trans->out.data.data + ofs;
1087                 SIVAL(data,          4, file->name_info.file_index);
1088                 trans2_append_data_string(req, trans, &file->name_info.name, 
1089                                           ofs + 8, STR_TERMINATE_ASCII);
1090                 data = trans->out.data.data + ofs;
1091                 SIVAL(data,          0, trans->out.data.length - ofs);
1092                 break;
1093
1094         case RAW_SEARCH_BOTH_DIRECTORY_INFO:
1095                 trans2_grow_data(req, trans, ofs + 94);
1096                 data = trans->out.data.data + ofs;
1097                 SIVAL(data,          4, file->both_directory_info.file_index);
1098                 push_nttime(data,    8, file->both_directory_info.create_time);
1099                 push_nttime(data,   16, file->both_directory_info.access_time);
1100                 push_nttime(data,   24, file->both_directory_info.write_time);
1101                 push_nttime(data,   32, file->both_directory_info.change_time);
1102                 SBVAL(data,         40, file->both_directory_info.size);
1103                 SBVAL(data,         48, file->both_directory_info.alloc_size);
1104                 SIVAL(data,         56, file->both_directory_info.attrib);
1105                 SIVAL(data,         64, file->both_directory_info.ea_size);
1106                 SCVAL(data,         69, 0); /* reserved */
1107                 memset(data+70,0,24);
1108                 trans2_push_data_string(req, trans, 
1109                                         68 + ofs, 70 + ofs, 
1110                                         &file->both_directory_info.short_name, 
1111                                         24, STR_UNICODE | STR_LEN8BIT);
1112                 trans2_append_data_string(req, trans, &file->both_directory_info.name, 
1113                                           ofs + 60, STR_TERMINATE_ASCII);
1114                 trans2_align_data(req, trans);
1115                 data = trans->out.data.data + ofs;
1116                 SIVAL(data,          0, trans->out.data.length - ofs);
1117                 break;
1118
1119         case RAW_SEARCH_ID_FULL_DIRECTORY_INFO:
1120                 trans2_grow_data(req, trans, ofs + 80);
1121                 data = trans->out.data.data + ofs;
1122                 SIVAL(data,          4, file->id_full_directory_info.file_index);
1123                 push_nttime(data,    8, file->id_full_directory_info.create_time);
1124                 push_nttime(data,   16, file->id_full_directory_info.access_time);
1125                 push_nttime(data,   24, file->id_full_directory_info.write_time);
1126                 push_nttime(data,   32, file->id_full_directory_info.change_time);
1127                 SBVAL(data,         40, file->id_full_directory_info.size);
1128                 SBVAL(data,         48, file->id_full_directory_info.alloc_size);
1129                 SIVAL(data,         56, file->id_full_directory_info.attrib);
1130                 SIVAL(data,         64, file->id_full_directory_info.ea_size);
1131                 SIVAL(data,         68, 0); /* padding */
1132                 SBVAL(data,         72, file->id_full_directory_info.file_id);
1133                 trans2_append_data_string(req, trans, &file->id_full_directory_info.name, 
1134                                           ofs + 60, STR_TERMINATE_ASCII);
1135                 data = trans->out.data.data + ofs;
1136                 SIVAL(data,          0, trans->out.data.length - ofs);
1137                 break;
1138
1139         case RAW_SEARCH_ID_BOTH_DIRECTORY_INFO:
1140                 trans2_grow_data(req, trans, ofs + 104);
1141                 data = trans->out.data.data + ofs;
1142                 SIVAL(data,          4, file->id_both_directory_info.file_index);
1143                 push_nttime(data,    8, file->id_both_directory_info.create_time);
1144                 push_nttime(data,   16, file->id_both_directory_info.access_time);
1145                 push_nttime(data,   24, file->id_both_directory_info.write_time);
1146                 push_nttime(data,   32, file->id_both_directory_info.change_time);
1147                 SBVAL(data,         40, file->id_both_directory_info.size);
1148                 SBVAL(data,         48, file->id_both_directory_info.alloc_size);
1149                 SIVAL(data,         56, file->id_both_directory_info.attrib);
1150                 SIVAL(data,         64, file->id_both_directory_info.ea_size);
1151                 SCVAL(data,         69, 0); /* reserved */
1152                 memset(data+70,0,26);
1153                 trans2_push_data_string(req, trans, 
1154                                         68 + ofs, 70 + ofs, 
1155                                         &file->id_both_directory_info.short_name, 
1156                                         24, STR_UNICODE | STR_LEN8BIT);
1157                 SBVAL(data,         96, file->id_both_directory_info.file_id);
1158                 trans2_append_data_string(req, trans, &file->id_both_directory_info.name, 
1159                                           ofs + 60, STR_TERMINATE_ASCII);
1160                 data = trans->out.data.data + ofs;
1161                 SIVAL(data,          0, trans->out.data.length - ofs);
1162                 break;
1163         }
1164 }
1165
1166 /* callback function for trans2 findfirst/findnext */
1167 static BOOL find_callback(void *private, union smb_search_data *file)
1168 {
1169         struct find_state *state = (struct find_state *)private;
1170         struct smb_trans2 *trans = state->trans;
1171         uint_t old_length;
1172
1173         old_length = trans->out.data.length;
1174
1175         find_fill_info(state->req, trans, state, file);
1176
1177         /* see if we have gone beyond the user specified maximum */
1178         if (trans->out.data.length > trans->in.max_data) {
1179                 /* restore the old length and tell the backend to stop */
1180                 trans2_grow_data(state->req, trans, old_length);
1181                 return False;
1182         }
1183
1184         state->last_entry_offset = old_length;  
1185         return True;
1186 }
1187
1188
1189 /*
1190   trans2 findfirst implementation
1191 */
1192 static NTSTATUS trans2_findfirst(struct smbsrv_request *req, struct smb_trans2 *trans)
1193 {
1194         union smb_search_first search;
1195         NTSTATUS status;
1196         uint16_t level;
1197         uint8_t *param;
1198         struct find_state state;
1199
1200         /* make sure we got all the parameters */
1201         if (trans->in.params.length < 14) {
1202                 return NT_STATUS_FOOBAR;
1203         }
1204
1205         search.t2ffirst.in.search_attrib = SVAL(trans->in.params.data, 0);
1206         search.t2ffirst.in.max_count     = SVAL(trans->in.params.data, 2);
1207         search.t2ffirst.in.flags         = SVAL(trans->in.params.data, 4);
1208         level                            = SVAL(trans->in.params.data, 6);
1209         search.t2ffirst.in.storage_type  = IVAL(trans->in.params.data, 8);
1210
1211         trans2_pull_blob_string(req, &trans->in.params, 12, &search.t2ffirst.in.pattern, 0);
1212         if (search.t2ffirst.in.pattern == NULL) {
1213                 return NT_STATUS_FOOBAR;
1214         }
1215
1216         search.t2ffirst.level = (enum smb_search_level)level;
1217         if (search.t2ffirst.level >= RAW_SEARCH_GENERIC) {
1218                 return NT_STATUS_INVALID_LEVEL;
1219         }
1220
1221         /* setup the private state structure that the backend will give us in the callback */
1222         state.req = req;
1223         state.trans = trans;
1224         state.level = search.t2ffirst.level;
1225         state.last_entry_offset = 0;
1226         state.flags = search.t2ffirst.in.flags;
1227
1228         /* setup for just a header in the reply */
1229         trans2_setup_reply(req, trans, 10, 0, 0);
1230
1231         /* call the backend */
1232         status = ntvfs_search_first(req, &search, &state, find_callback);
1233         if (!NT_STATUS_IS_OK(status)) {
1234                 trans2_setup_reply(req, trans, 0, 0, 0);
1235                 return status;
1236         }
1237
1238         /* fill in the findfirst reply header */
1239         param = trans->out.params.data;
1240         SSVAL(param, VWV(0), search.t2ffirst.out.handle);
1241         SSVAL(param, VWV(1), search.t2ffirst.out.count);
1242         SSVAL(param, VWV(2), search.t2ffirst.out.end_of_search);
1243         SSVAL(param, VWV(3), 0);
1244         SSVAL(param, VWV(4), state.last_entry_offset);
1245
1246         return NT_STATUS_OK;
1247 }
1248
1249
1250 /*
1251   trans2 findnext implementation
1252 */
1253 static NTSTATUS trans2_findnext(struct smbsrv_request *req, struct smb_trans2 *trans)
1254 {
1255         union smb_search_next search;
1256         NTSTATUS status;
1257         uint16_t level;
1258         uint8_t *param;
1259         struct find_state state;
1260
1261         /* make sure we got all the parameters */
1262         if (trans->in.params.length < 12) {
1263                 return NT_STATUS_FOOBAR;
1264         }
1265
1266         search.t2fnext.in.handle        = SVAL(trans->in.params.data, 0);
1267         search.t2fnext.in.max_count     = SVAL(trans->in.params.data, 2);
1268         level                           = SVAL(trans->in.params.data, 4);
1269         search.t2fnext.in.resume_key    = IVAL(trans->in.params.data, 6);
1270         search.t2fnext.in.flags         = SVAL(trans->in.params.data, 10);
1271
1272         trans2_pull_blob_string(req, &trans->in.params, 12, &search.t2fnext.in.last_name, 0);
1273         if (search.t2fnext.in.last_name == NULL) {
1274                 return NT_STATUS_FOOBAR;
1275         }
1276
1277         search.t2fnext.level = (enum smb_search_level)level;
1278         if (search.t2fnext.level >= RAW_SEARCH_GENERIC) {
1279                 return NT_STATUS_INVALID_LEVEL;
1280         }
1281
1282         /* setup the private state structure that the backend will give us in the callback */
1283         state.req = req;
1284         state.trans = trans;
1285         state.level = search.t2fnext.level;
1286         state.last_entry_offset = 0;
1287         state.flags = search.t2fnext.in.flags;
1288
1289         /* setup for just a header in the reply */
1290         trans2_setup_reply(req, trans, 8, 0, 0);
1291
1292         /* call the backend */
1293         status = ntvfs_search_next(req, &search, &state, find_callback);
1294         if (!NT_STATUS_IS_OK(status)) {
1295                 return status;
1296         }
1297
1298         /* fill in the findfirst reply header */
1299         param = trans->out.params.data;
1300         SSVAL(param, VWV(0), search.t2fnext.out.count);
1301         SSVAL(param, VWV(1), search.t2fnext.out.end_of_search);
1302         SSVAL(param, VWV(2), 0);
1303         SSVAL(param, VWV(3), state.last_entry_offset);
1304         
1305         return NT_STATUS_OK;
1306 }
1307
1308
1309 /*
1310   backend for trans2 requests
1311 */
1312 static NTSTATUS trans2_backend(struct smbsrv_request *req, struct smb_trans2 *trans)
1313 {
1314         NTSTATUS status;
1315
1316         /* direct trans2 pass thru */
1317         status = ntvfs_trans2(req, trans);
1318         if (!NT_STATUS_EQUAL(NT_STATUS_NOT_IMPLEMENTED, status)) {
1319                 return status;
1320         }
1321
1322         /* must have at least one setup word */
1323         if (trans->in.setup_count < 1) {
1324                 return NT_STATUS_FOOBAR;
1325         }
1326
1327         /* the trans2 command is in setup[0] */
1328         switch (trans->in.setup[0]) {
1329         case TRANSACT2_FINDFIRST:
1330                 return trans2_findfirst(req, trans);
1331         case TRANSACT2_FINDNEXT:
1332                 return trans2_findnext(req, trans);
1333         case TRANSACT2_QPATHINFO:
1334                 return trans2_qpathinfo(req, trans);
1335         case TRANSACT2_QFILEINFO:
1336                 return trans2_qfileinfo(req, trans);
1337         case TRANSACT2_SETFILEINFO:
1338                 return trans2_setfileinfo(req, trans);
1339         case TRANSACT2_SETPATHINFO:
1340                 return trans2_setpathinfo(req, trans);
1341         case TRANSACT2_QFSINFO:
1342                 return trans2_qfsinfo(req, trans);
1343         case TRANSACT2_OPEN:
1344                 return trans2_open(req, trans);
1345         case TRANSACT2_MKDIR:
1346                 return trans2_mkdir(req, trans);
1347         }
1348
1349         /* an unknown trans2 command */
1350         return NT_STATUS_FOOBAR;
1351 }
1352
1353
1354 /*
1355   send a continue request
1356 */
1357 static void reply_trans_continue(struct smbsrv_request *req, uint8_t command, 
1358                                  struct smb_trans2 *trans)
1359 {
1360         struct smbsrv_trans_partial *tp;
1361         int count;
1362
1363         /* make sure they don't flood us */
1364         for (count=0,tp=req->smb_conn->trans_partial;tp;tp=tp->next) count++;
1365         if (count > 100) {
1366                 req_reply_error(req, NT_STATUS_INSUFFICIENT_RESOURCES);
1367                 return;
1368         }
1369
1370         tp = talloc_p(req, struct smbsrv_trans_partial);
1371
1372         tp->req = talloc_reference(tp, req);
1373         tp->trans = trans;
1374         tp->command = command;
1375
1376         DLIST_ADD(req->smb_conn->trans_partial, tp);
1377
1378         /* send a 'please continue' reply */
1379         req_setup_reply(req, 0, 0);
1380         req_send_reply(req);
1381 }
1382
1383
1384 /*
1385   answer a reconstructed trans request
1386 */
1387 static void reply_trans_complete(struct smbsrv_request *req, uint8_t command, 
1388                                  struct smb_trans2 *trans)
1389 {
1390         uint16_t params_left, data_left;
1391         uint8_t *params, *data;
1392         NTSTATUS status;
1393         int i;
1394
1395         /* its a full request, give it to the backend */
1396         if (command == SMBtrans) {
1397                 status = ntvfs_trans(req, trans);
1398         } else {
1399                 status = trans2_backend(req, trans);
1400         }
1401
1402         if (NT_STATUS_IS_ERR(status)) {
1403                 req_reply_error(req, status);
1404                 return;
1405         }
1406
1407         params_left = trans->out.params.length;
1408         data_left   = trans->out.data.length;
1409         params      = trans->out.params.data;
1410         data        = trans->out.data.data;
1411
1412         req_setup_reply(req, 10 + trans->out.setup_count, 0);
1413
1414         if (!NT_STATUS_IS_OK(status)) {
1415                 req_setup_error(req, status);
1416         }
1417
1418         /* we need to divide up the reply into chunks that fit into
1419            the negotiated buffer size */
1420         do {
1421                 uint16_t this_data, this_param, max_bytes;
1422                 uint_t align1 = 1, align2 = (params_left ? 2 : 0);
1423                 struct smbsrv_request *this_req;
1424
1425                 max_bytes = req_max_data(req) - (align1 + align2);
1426
1427                 this_param = params_left;
1428                 if (this_param > max_bytes) {
1429                         this_param = max_bytes;
1430                 }
1431                 max_bytes -= this_param;
1432
1433                 this_data = data_left;
1434                 if (this_data > max_bytes) {
1435                         this_data = max_bytes;
1436                 }
1437
1438                 /* don't destroy unless this is the last chunk */
1439                 if (params_left - this_param != 0 || 
1440                     data_left - this_data != 0) {
1441                         this_req = req_setup_secondary(req);
1442                 } else {
1443                         this_req = req;
1444                 }
1445
1446                 req_grow_data(this_req, this_param + this_data + (align1 + align2));
1447
1448                 SSVAL(this_req->out.vwv, VWV(0), trans->out.params.length);
1449                 SSVAL(this_req->out.vwv, VWV(1), trans->out.data.length);
1450                 SSVAL(this_req->out.vwv, VWV(2), 0);
1451
1452                 SSVAL(this_req->out.vwv, VWV(3), this_param);
1453                 SSVAL(this_req->out.vwv, VWV(4), align1 + PTR_DIFF(this_req->out.data, this_req->out.hdr));
1454                 SSVAL(this_req->out.vwv, VWV(5), PTR_DIFF(params, trans->out.params.data));
1455
1456                 SSVAL(this_req->out.vwv, VWV(6), this_data);
1457                 SSVAL(this_req->out.vwv, VWV(7), align1 + align2 + 
1458                       PTR_DIFF(this_req->out.data + this_param, this_req->out.hdr));
1459                 SSVAL(this_req->out.vwv, VWV(8), PTR_DIFF(data, trans->out.data.data));
1460
1461                 SSVAL(this_req->out.vwv, VWV(9), trans->out.setup_count);
1462                 for (i=0;i<trans->out.setup_count;i++) {
1463                         SSVAL(this_req->out.vwv, VWV(10+i), trans->out.setup[i]);
1464                 }
1465
1466                 memset(this_req->out.data, 0, align1);
1467                 if (this_param != 0) {
1468                         memcpy(this_req->out.data + align1, params, this_param);
1469                 }
1470                 memset(this_req->out.data+this_param+align1, 0, align2);
1471                 if (this_data != 0) {
1472                         memcpy(this_req->out.data+this_param+align1+align2, data, this_data);
1473                 }
1474
1475                 params_left -= this_param;
1476                 data_left -= this_data;
1477                 params += this_param;
1478                 data += this_data;
1479
1480                 req_send_reply(this_req);
1481         } while (params_left != 0 || data_left != 0);
1482 }
1483
1484
1485 /*
1486   Reply to an SMBtrans or SMBtrans2 request
1487 */
1488 void reply_trans_generic(struct smbsrv_request *req, uint8_t command)
1489 {
1490         struct smb_trans2 *trans;
1491         int i;
1492         uint16_t param_ofs, data_ofs;
1493         uint16_t param_count, data_count;
1494         uint16_t param_total, data_total;
1495
1496         trans = talloc_p(req, struct smb_trans2);
1497         if (trans == NULL) {
1498                 req_reply_error(req, NT_STATUS_NO_MEMORY);
1499                 return;
1500         }
1501
1502         /* parse request */
1503         if (req->in.wct < 14) {
1504                 req_reply_error(req, NT_STATUS_INVALID_PARAMETER);
1505                 return;
1506         }
1507
1508         param_total           = SVAL(req->in.vwv, VWV(0));
1509         data_total            = SVAL(req->in.vwv, VWV(1));
1510         trans->in.max_param   = SVAL(req->in.vwv, VWV(2));
1511         trans->in.max_data    = SVAL(req->in.vwv, VWV(3));
1512         trans->in.max_setup   = CVAL(req->in.vwv, VWV(4));
1513         trans->in.flags       = SVAL(req->in.vwv, VWV(5));
1514         trans->in.timeout     = IVAL(req->in.vwv, VWV(6));
1515         param_count           = SVAL(req->in.vwv, VWV(9));
1516         param_ofs             = SVAL(req->in.vwv, VWV(10));
1517         data_count            = SVAL(req->in.vwv, VWV(11));
1518         data_ofs              = SVAL(req->in.vwv, VWV(12));
1519         trans->in.setup_count = CVAL(req->in.vwv, VWV(13));
1520
1521         if (req->in.wct != 14 + trans->in.setup_count) {
1522                 req_reply_dos_error(req, ERRSRV, ERRerror);
1523                 return;
1524         }
1525
1526         /* parse out the setup words */
1527         trans->in.setup = talloc_array_p(req, uint16_t, trans->in.setup_count);
1528         if (trans->in.setup_count && !trans->in.setup) {
1529                 req_reply_error(req, NT_STATUS_NO_MEMORY);
1530                 return;
1531         }
1532         for (i=0;i<trans->in.setup_count;i++) {
1533                 trans->in.setup[i] = SVAL(req->in.vwv, VWV(14+i));
1534         }
1535
1536         if (command == SMBtrans) {
1537                 req_pull_string(req, &trans->in.trans_name, req->in.data, -1, STR_TERMINATE);
1538         }
1539
1540         if (!req_pull_blob(req, req->in.hdr + param_ofs, param_count, &trans->in.params) ||
1541             !req_pull_blob(req, req->in.hdr + data_ofs, data_count, &trans->in.data)) {
1542                 req_reply_error(req, NT_STATUS_FOOBAR);
1543                 return;
1544         }
1545
1546         /* is it a partial request? if so, then send a 'send more' message */
1547         if (param_total > param_count || data_total > data_count) {
1548                 reply_trans_continue(req, command, trans);
1549                 return;
1550         }
1551
1552         reply_trans_complete(req, command, trans);
1553 }
1554
1555
1556 /*
1557   Reply to an SMBtranss2 request
1558 */
1559 static void reply_transs_generic(struct smbsrv_request *req, uint8_t command)
1560 {
1561         struct smbsrv_trans_partial *tp;
1562         struct smb_trans2 *trans = NULL;
1563         uint16_t param_ofs, data_ofs;
1564         uint16_t param_count, data_count;
1565         uint16_t param_disp, data_disp;
1566         uint16_t param_total, data_total;
1567         DATA_BLOB params, data;
1568
1569         for (tp=req->smb_conn->trans_partial;tp;tp=tp->next) {
1570                 if (tp->command == command &&
1571                     SVAL(tp->req->in.hdr, HDR_MID) == SVAL(req->in.hdr, HDR_MID)) {
1572                         break;
1573                 }
1574         }
1575
1576         if (tp == NULL) {
1577                 req_reply_error(req, NT_STATUS_INVALID_PARAMETER);
1578                 return;
1579         }
1580
1581         trans = tp->trans;
1582
1583         /* parse request */
1584         if (req->in.wct < 8) {
1585                 req_reply_error(req, NT_STATUS_INVALID_PARAMETER);
1586                 return;
1587         }
1588
1589         param_total           = SVAL(req->in.vwv, VWV(0));
1590         data_total            = SVAL(req->in.vwv, VWV(1));
1591         param_count           = SVAL(req->in.vwv, VWV(2));
1592         param_ofs             = SVAL(req->in.vwv, VWV(3));
1593         param_disp            = SVAL(req->in.vwv, VWV(4));
1594         data_count            = SVAL(req->in.vwv, VWV(5));
1595         data_ofs              = SVAL(req->in.vwv, VWV(6));
1596         data_disp             = SVAL(req->in.vwv, VWV(7));
1597
1598         if (!req_pull_blob(req, req->in.hdr + param_ofs, param_count, &params) ||
1599             !req_pull_blob(req, req->in.hdr + data_ofs, data_count, &data)) {
1600                 req_reply_error(req, NT_STATUS_INVALID_PARAMETER);
1601                 return;
1602         }
1603
1604         /* only allow contiguous requests */
1605         if ((param_count != 0 &&
1606              param_disp != trans->in.params.length) ||
1607             (data_count != 0 && 
1608              data_disp != trans->in.data.length)) {
1609                 req_reply_error(req, NT_STATUS_INVALID_PARAMETER);
1610                 return;         
1611         }
1612
1613         /* add to the existing request */
1614         if (param_count != 0) {
1615                 trans->in.params.data = talloc_realloc_p(trans, 
1616                                                          trans->in.params.data, 
1617                                                          uint8_t, 
1618                                                          param_disp + param_count);
1619                 if (trans->in.params.data == NULL) {
1620                         goto failed;
1621                 }
1622                 trans->in.params.length = param_disp + param_count;
1623         }
1624
1625         if (data_count != 0) {
1626                 trans->in.data.data = talloc_realloc_p(trans, 
1627                                                        trans->in.data.data, 
1628                                                        uint8_t, 
1629                                                        data_disp + data_count);
1630                 if (trans->in.data.data == NULL) {
1631                         goto failed;
1632                 }
1633                 trans->in.data.length = data_disp + data_count;
1634         }
1635
1636         memcpy(trans->in.params.data + param_disp, params.data, params.length);
1637         memcpy(trans->in.data.data + data_disp, data.data, data.length);
1638
1639         /* the sequence number of the reply is taken from the last secondary
1640            response */
1641         tp->req->seq_num = req->seq_num;
1642
1643         /* we don't reply to Transs2 requests */
1644         talloc_free(req);
1645
1646         if (trans->in.params.length == param_total &&
1647             trans->in.data.length == data_total) {
1648                 /* its now complete */
1649                 reply_trans_complete(tp->req, command, trans);
1650                 DLIST_REMOVE(tp->req->smb_conn->trans_partial, tp);
1651                 talloc_free(tp);
1652         }
1653         return;
1654
1655 failed: 
1656         req_reply_error(tp->req, NT_STATUS_NO_MEMORY);
1657         DLIST_REMOVE(req->smb_conn->trans_partial, tp);
1658         talloc_free(req);
1659         talloc_free(tp);
1660 }
1661
1662
1663 /*
1664   Reply to an SMBtrans2
1665 */
1666 void reply_trans2(struct smbsrv_request *req)
1667 {
1668         reply_trans_generic(req, SMBtrans2);
1669 }
1670
1671 /*
1672   Reply to an SMBtrans
1673 */
1674 void reply_trans(struct smbsrv_request *req)
1675 {
1676         reply_trans_generic(req, SMBtrans);
1677 }
1678
1679 /*
1680   Reply to an SMBtranss request
1681 */
1682 void reply_transs(struct smbsrv_request *req)
1683 {
1684         reply_transs_generic(req, SMBtrans);
1685 }
1686
1687 /*
1688   Reply to an SMBtranss2 request
1689 */
1690 void reply_transs2(struct smbsrv_request *req)
1691 {
1692         reply_transs_generic(req, SMBtrans2);
1693 }
1694