dsdb: Add python hooks to allocate a RID set and allocate a RID pool
[gd/samba-autobuild/.git] / librpc / idl / dcerpc.idl
index 5fb7377d76f06d205a4f634457678f075c87525f..1e06bc144d77cf7440c68c0ee71a6a4bb4165b50 100644 (file)
@@ -56,8 +56,11 @@ interface dcerpc
                uint32 alloc_hint;
                uint16 context_id;
                uint16 opnum;
-               [switch_is(ndr->flags & LIBNDR_FLAG_OBJECT_PRESENT)] dcerpc_object object;
-               [flag(NDR_ALIGN8)]    DATA_BLOB _pad;
+               /*
+                * NDR_DCERPC_REQUEST_OBJECT_PRESENT
+                * is defined differently for ndr_dcerpc.c and py_dcerpc.c
+                */
+               [switch_is(NDR_DCERPC_REQUEST_OBJECT_PRESENT)] dcerpc_object object;
                [flag(NDR_REMAINING)] DATA_BLOB stub_and_verifier;
        } dcerpc_request;
 
@@ -94,7 +97,7 @@ interface dcerpc
 
        typedef struct {
                dcerpc_bind_ack_result result;
-               uint16 reason;
+               [switch_is(result)] dcerpc_bind_ack_reason reason;
                ndr_syntax_id syntax;
        } dcerpc_ack_ctx;
 
@@ -102,7 +105,7 @@ interface dcerpc
                uint16 max_xmit_frag;
                uint16 max_recv_frag;
                uint32 assoc_group_id;
-               [value(strlen(secondary_address)+1)] uint16 secondary_address_size;
+               [value(strlen_m_term_null(secondary_address))] uint16 secondary_address_size;
                [charset(DOS)] uint8 secondary_address[secondary_address_size];
                [flag(NDR_ALIGN4)]    DATA_BLOB _pad1;
                uint8 num_results;
@@ -110,7 +113,7 @@ interface dcerpc
                [flag(NDR_REMAINING)] DATA_BLOB auth_info;
        } dcerpc_bind_ack;
 
-       typedef [enum16bit] enum {
+       typedef [public,enum16bit] enum {
                DCERPC_BIND_NAK_REASON_NOT_SPECIFIED                  = 0,
                DCERPC_BIND_NAK_REASON_TEMPORARY_CONGESTION           = 1,
                DCERPC_BIND_NAK_REASON_LOCAL_LIMIT_EXCEEDED           = 2,
@@ -124,20 +127,16 @@ interface dcerpc
        const int DCERPC_BIND_REASON_INVALID_AUTH_TYPE =
                DCERPC_BIND_NAK_REASON_INVALID_AUTH_TYPE;
 
-       typedef struct {
-               uint32 num_versions;
-               uint32 versions[num_versions];
-       } dcerpc_bind_nak_versions;
-
-       typedef [nodiscriminant] union {
-               [case(DCERPC_BIND_NAK_REASON_PROTOCOL_VERSION_NOT_SUPPORTED)]
-                       dcerpc_bind_nak_versions v;
-               [default] ;
-       } dcerpc_bind_nak_versions_ctr;
+       typedef [public] struct {
+               uint8 rpc_vers;         /* RPC version */
+               uint8 rpc_vers_minor;   /* Minor version */
+       } dcerpc_bind_nak_version;
 
-       typedef struct {
+       typedef [public,nopull] struct {
                dcerpc_bind_nak_reason reject_reason;
-               [switch_is(reject_reason)] dcerpc_bind_nak_versions_ctr versions;
+               uint8 num_versions;
+               dcerpc_bind_nak_version versions[num_versions];
+               [flag(NDR_REMAINING)] DATA_BLOB _pad;
        } dcerpc_bind_nak;
 
        const uint8 DCERPC_RESPONSE_LENGTH = 24;
@@ -146,7 +145,7 @@ interface dcerpc
                uint32 alloc_hint;
                uint16 context_id;
                uint8 cancel_count;
-               [flag(NDR_ALIGN8)]    DATA_BLOB _pad;
+               [value(0)] uint8 reserved;
                [flag(NDR_REMAINING)] DATA_BLOB stub_and_verifier;
        } dcerpc_response;
 
@@ -197,31 +196,42 @@ interface dcerpc
                DCERPC_NCA_S_FAULT_TX_OPEN_FAILED       = 0x1C000022,
                DCERPC_NCA_S_FAULT_CODESET_CONV_ERROR   = 0x1C000023,
                DCERPC_NCA_S_FAULT_OBJECT_NOT_FOUND     = 0x1C000024,
-               DCERPC_NCA_S_FAULT_NO_CLIENT_STUB       = 0x1C000025
+               DCERPC_NCA_S_FAULT_NO_CLIENT_STUB       = 0x1C000025,
+               DCERPC_FAULT_ACCESS_DENIED              = 0x00000005,
+               DCERPC_FAULT_SERVER_UNAVAILABLE         = 0x000006ba,
+               DCERPC_FAULT_NO_CALL_ACTIVE             = 0x000006bd,
+               DCERPC_FAULT_CANT_PERFORM               = 0x000006d8,
+               DCERPC_FAULT_OUT_OF_RESOURCES           = 0x000006d9,
+               DCERPC_FAULT_BAD_STUB_DATA              = 0x000006f7,
+               DCERPC_FAULT_SEC_PKG_ERROR              = 0x00000721
        } dcerpc_nca_status;
 
-       const int DCERPC_FAULT_OP_RNG_ERROR       = 0x1c010002;
-       const int DCERPC_FAULT_UNK_IF             = 0x1c010003;
-       const int DCERPC_FAULT_NDR                = 0x000006f7;
-       const int DCERPC_FAULT_INVALID_TAG        = 0x1c000006;
-       const int DCERPC_FAULT_CONTEXT_MISMATCH   = 0x1c00001a;
+       const int DCERPC_FAULT_OP_RNG_ERROR       = DCERPC_NCA_S_OP_RNG_ERROR;
+       const int DCERPC_FAULT_NDR                = DCERPC_FAULT_BAD_STUB_DATA;
+       const int DCERPC_FAULT_INVALID_TAG        = DCERPC_NCA_S_FAULT_INVALID_TAG;
+       const int DCERPC_FAULT_CONTEXT_MISMATCH   = DCERPC_NCA_S_FAULT_CONTEXT_MISMATCH;
        const int DCERPC_FAULT_OTHER              = 0x00000001;
-       const int DCERPC_FAULT_ACCESS_DENIED      = 0x00000005;
-       const int DCERPC_FAULT_CANT_PERFORM       = 0x000006d8;
-       const int DCERPC_FAULT_SEC_PKG_ERROR      = 0x00000721;
 
        /* we return this fault when we haven't yet run the test
           to see what fault w2k3 returns in this case */
        const int DCERPC_FAULT_TODO         = 0x00000042;
 
+       typedef [bitmap8bit] bitmap {
+               DCERPC_FAULT_FLAG_EXTENDED_ERROR_INFORMATION = 0x01
+       } dcerpc_fault_flags;
+
        typedef struct {
                uint32 alloc_hint;
                uint16 context_id;
                uint8 cancel_count;
+               dcerpc_fault_flags flags;
                dcerpc_nca_status status;
-               [flag(NDR_REMAINING)] DATA_BLOB _pad;
+               [value(0)] uint32 reserved;
+               [flag(NDR_REMAINING)] DATA_BLOB error_and_verifier;
        } dcerpc_fault;
 
+       const uint8 DCERPC_FAULT_LENGTH = 32;
+
        /* the auth types we know about */
        typedef [enum8bit] enum {
                DCERPC_AUTH_TYPE_NONE     = 0,
@@ -247,8 +257,6 @@ interface dcerpc
                DCERPC_AUTH_LEVEL_PRIVACY   = 6
        } dcerpc_AuthLevel;
 
-       const uint8 DCERPC_AUTH_LEVEL_DEFAULT   = DCERPC_AUTH_LEVEL_CONNECT;
-
        typedef [public] struct {
                dcerpc_AuthType auth_type;
                dcerpc_AuthLevel auth_level;
@@ -259,6 +267,7 @@ interface dcerpc
        } dcerpc_auth;
 
        const uint8 DCERPC_AUTH_TRAILER_LENGTH = 8;
+       const uint8 DCERPC_AUTH_PAD_ALIGNMENT = 16;
 
        typedef [public] struct {
                [value(0)]            uint32    _pad;
@@ -459,7 +468,7 @@ interface dcerpc
                dcerpc_rts_cmd          Commands[NumberOfCommands];
        } dcerpc_rts;
 
-       typedef [enum8bit] enum {
+       typedef [public,enum8bit] enum {
                DCERPC_PKT_REQUEST     =  0,    /* Ordinary request. */
                DCERPC_PKT_PING        =  1,    /* Connectionless is server alive ? */
                DCERPC_PKT_RESPONSE    =  2,    /* Ordinary reply. */
@@ -483,7 +492,7 @@ interface dcerpc
                DCERPC_PKT_RTS         = 20     /* RTS packets used in ncacn_http */
        } dcerpc_pkt_type;
 
-       typedef [nodiscriminant] union {
+       typedef [public,nodiscriminant] union {
                [case(DCERPC_PKT_REQUEST)]    dcerpc_request  request;
                [case(DCERPC_PKT_PING)]           dcerpc_ping ping;
                [case(DCERPC_PKT_RESPONSE)]   dcerpc_response response;
@@ -508,7 +517,7 @@ interface dcerpc
        } dcerpc_payload;
 
        /* pfc_flags values */
-       typedef [bitmap8bit] bitmap {
+       typedef [public,bitmap8bit] bitmap {
                DCERPC_PFC_FLAG_FIRST           = 0x01, /* First fragment */
                DCERPC_PFC_FLAG_LAST            = 0x02, /* Last fragment */
                DCERPC_PFC_FLAG_PENDING_CANCEL_OR_HDR_SIGNING = 0x04, /* depends on the pdu type */
@@ -521,20 +530,38 @@ interface dcerpc
        /* Cancel was pending at sender */
        const int DCERPC_PFC_FLAG_PENDING_CANCEL =
                DCERPC_PFC_FLAG_PENDING_CANCEL_OR_HDR_SIGNING;
-       const ist DCERPC_PFC_FLAG_SUPPORT_HEADER_SIGN =
+       const int DCERPC_PFC_FLAG_SUPPORT_HEADER_SIGN =
                DCERPC_PFC_FLAG_PENDING_CANCEL_OR_HDR_SIGNING;
 
        /* these offsets are needed by the signing code */
        const uint8 DCERPC_PFC_OFFSET      =  3;
        const uint8 DCERPC_DREP_OFFSET     =  4;
        const uint8 DCERPC_FRAG_LEN_OFFSET =  8;
+       const uint32 DCERPC_FRAG_MAX_SIZE  = 5840;
        const uint8 DCERPC_AUTH_LEN_OFFSET = 10;
        const uint8 DCERPC_NCACN_PAYLOAD_OFFSET = 16;
 
+       /*
+        * See [MS-RPCE] 3.3.3.5.4 Maximum Server Input Data Size
+        * 4 MByte is the default limit of reassembled request payload
+        */
+       const uint32 DCERPC_NCACN_REQUEST_DEFAULT_MAX_SIZE = 0x400000;
+
+       /*
+        * See [MS-RPCE] 3.3.2.5.2 Handling Responses
+        *
+        * Indicates that Windows accepts up to 0x7FFFFFFF ~2 GByte
+        *
+        * talloc has a limit of 256 MByte, so we need to use something smaller.
+        *
+        * For now we try our luck with 240 MByte.
+        */
+       const uint32 DCERPC_NCACN_RESPONSE_DEFAULT_MAX_SIZE = 0xf000000; /* 240 MByte */
+
        /* little-endian flag */
        const uint8 DCERPC_DREP_LE  = 0x10;
 
-       typedef [public] struct {
+       typedef [public,nopush,nopull,noprint] struct {
                uint8 rpc_vers;         /* RPC version */
                uint8 rpc_vers_minor;   /* Minor version */
                dcerpc_pkt_type ptype;  /* Packet type */