r23792: convert Samba4 to GPLv3
[samba.git] / source4 / libcli / raw / clitransport.c
index b8eef65c7f205866512e08e62eb7a44ceac7350d..98f5042d9990790106407d3768400516bf676c2e 100644 (file)
@@ -1,12 +1,13 @@
 /* 
    Unix SMB/CIFS implementation.
    SMB client transport context management functions
-   Copyright (C) Andrew Tridgell 1994-2003
+
+   Copyright (C) Andrew Tridgell 1994-2005
    Copyright (C) James Myers 2003 <myersjj@samba.org>
    
    This program is free software; you can redistribute it and/or modify
    it under the terms of the GNU General Public License as published by
-   the Free Software Foundation; either version 2 of the License, or
+   the Free Software Foundation; either version 3 of the License, or
    (at your option) any later version.
    
    This program is distributed in the hope that it will be useful,
    GNU General Public License for more details.
    
    You should have received a copy of the GNU General Public License
-   along with this program; if not, write to the Free Software
-   Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
+   along with this program.  If not, see <http://www.gnu.org/licenses/>.
 */
 
 #include "includes.h"
+#include "libcli/raw/libcliraw.h"
+#include "lib/socket/socket.h"
+#include "lib/util/dlinklist.h"
+#include "lib/events/events.h"
+#include "lib/stream/packet.h"
+#include "librpc/gen_ndr/ndr_nbt.h"
+
 
 /*
-  create a transport structure based on an established socket
+  an event has happened on the socket
+*/
+static void smbcli_transport_event_handler(struct event_context *ev, 
+                                          struct fd_event *fde, 
+                                          uint16_t flags, void *private)
+{
+       struct smbcli_transport *transport = talloc_get_type(private,
+                                                            struct smbcli_transport);
+       if (flags & EVENT_FD_READ) {
+               packet_recv(transport->packet);
+               return;
+       }
+       if (flags & EVENT_FD_WRITE) {
+               packet_queue_run(transport->packet);
+       }
+}
+
+/*
+  destroy a transport
+ */
+static int transport_destructor(struct smbcli_transport *transport)
+{
+       smbcli_transport_dead(transport, NT_STATUS_LOCAL_DISCONNECT);
+       return 0;
+}
+
+
+/*
+  handle receive errors
 */
-struct cli_transport *cli_transport_init(struct cli_socket *sock)
+static void smbcli_transport_error(void *private, NTSTATUS status)
 {
-       TALLOC_CTX *mem_ctx;
-       struct cli_transport *transport;
+       struct smbcli_transport *transport = talloc_get_type(private, struct smbcli_transport);
+       smbcli_transport_dead(transport, status);
+}
 
-       mem_ctx = talloc_init("cli_transport");
-       if (!mem_ctx) return NULL;
+static NTSTATUS smbcli_transport_finish_recv(void *private, DATA_BLOB blob);
 
-       transport = talloc_zero(mem_ctx, sizeof(*transport));
+/*
+  create a transport structure based on an established socket
+*/
+struct smbcli_transport *smbcli_transport_init(struct smbcli_socket *sock,
+                                              TALLOC_CTX *parent_ctx, BOOL primary)
+{
+       struct smbcli_transport *transport;
+
+       transport = talloc_zero(parent_ctx, struct smbcli_transport);
        if (!transport) return NULL;
 
-       transport->mem_ctx = mem_ctx;
-       transport->socket = sock;
+       if (primary) {
+               transport->socket = talloc_steal(transport, sock);
+       } else {
+               transport->socket = talloc_reference(transport, sock);
+       }
        transport->negotiate.protocol = PROTOCOL_NT1;
-       transport->negotiate.max_xmit = ~0;
-       cli_null_set_signing(transport);
-       transport->socket->reference_count++;
+       transport->options.use_spnego = lp_use_spnego() && lp_nt_status_support();
+       transport->options.max_xmit = lp_max_xmit();
+       transport->options.max_mux = lp_maxmux();
+       transport->options.request_timeout = SMB_REQUEST_TIMEOUT;
+
+       transport->negotiate.max_xmit = transport->options.max_xmit;
+
+       /* setup the stream -> packet parser */
+       transport->packet = packet_init(transport);
+       if (transport->packet == NULL) {
+               talloc_free(transport);
+               return NULL;
+       }
+       packet_set_private(transport->packet, transport);
+       packet_set_socket(transport->packet, transport->socket->sock);
+       packet_set_callback(transport->packet, smbcli_transport_finish_recv);
+       packet_set_full_request(transport->packet, packet_full_request_nbt);
+       packet_set_error_handler(transport->packet, smbcli_transport_error);
+       packet_set_event_context(transport->packet, transport->socket->event.ctx);
+       packet_set_nofree(transport->packet);
+
+       smbcli_init_signing(transport);
 
        ZERO_STRUCT(transport->called);
 
+       /* take over event handling from the socket layer - it only
+          handles events up until we are connected */
+       talloc_free(transport->socket->event.fde);
+       transport->socket->event.fde = event_add_fd(transport->socket->event.ctx,
+                                                   transport->socket->sock,
+                                                   socket_get_fd(transport->socket->sock),
+                                                   EVENT_FD_READ,
+                                                   smbcli_transport_event_handler,
+                                                   transport);
+
+       packet_set_fde(transport->packet, transport->socket->event.fde);
+       packet_set_serialise(transport->packet);
+       talloc_set_destructor(transport, transport_destructor);
+
        return transport;
 }
 
 /*
-  decrease reference count on a transport, and destroy if it becomes
-  zero
+  mark the transport as dead
 */
-void cli_transport_close(struct cli_transport *transport)
+void smbcli_transport_dead(struct smbcli_transport *transport, NTSTATUS status)
 {
-       transport->reference_count--;
-       if (transport->reference_count <= 0) {
-               cli_sock_close(transport->socket);
-               talloc_destroy(transport->mem_ctx);
+       smbcli_sock_dead(transport->socket);
+
+       if (NT_STATUS_EQUAL(NT_STATUS_UNSUCCESSFUL, status)) {
+               status = NT_STATUS_UNEXPECTED_NETWORK_ERROR;
+       }
+
+       /* kill only the first pending receive - this is so that if
+        that async function frees the connection we don't die trying
+        to use old memory. The caller has to cope with only one
+        network error */
+       if (transport->pending_recv) {
+               struct smbcli_request *req = transport->pending_recv;
+               req->state = SMBCLI_REQUEST_ERROR;
+               req->status = status;
+               DLIST_REMOVE(transport->pending_recv, req);
+               if (req->async.fn) {
+                       req->async.fn(req);
+               }
        }
 }
 
+
 /*
-  mark the transport as dead
+  send a session request
 */
-void cli_transport_dead(struct cli_transport *transport)
+struct smbcli_request *smbcli_transport_connect_send(struct smbcli_transport *transport,
+                                                    struct nbt_name *calling, 
+                                                    struct nbt_name *called)
 {
-       cli_sock_dead(transport->socket);
-}
+       uint8_t *p;
+       struct smbcli_request *req;
+       DATA_BLOB calling_blob, called_blob;
+       TALLOC_CTX *tmp_ctx = talloc_new(transport);
+       NTSTATUS status;
+
+       status = nbt_name_dup(transport, called, &transport->called);
+       if (!NT_STATUS_IS_OK(status)) goto failed;
+       
+       status = nbt_name_to_blob(tmp_ctx, &calling_blob, calling);
+       if (!NT_STATUS_IS_OK(status)) goto failed;
 
+       status = nbt_name_to_blob(tmp_ctx, &called_blob, called);
+       if (!NT_STATUS_IS_OK(status)) goto failed;
 
+       /* allocate output buffer */
+       req = smbcli_request_setup_nonsmb(transport, 
+                                         NBT_HDR_SIZE + 
+                                         calling_blob.length + called_blob.length);
+       if (req == NULL) goto failed;
 
-/****************************************************************************
-send a session request (if appropriate)
-****************************************************************************/
-BOOL cli_transport_connect(struct cli_transport *transport,
-                          struct nmb_name *calling, 
-                          struct nmb_name *called)
-{
-       char *p;
-       int len = NBT_HDR_SIZE;
-       struct cli_request *req;
+       /* put in the destination name */
+       p = req->out.buffer + NBT_HDR_SIZE;
+       memcpy(p, called_blob.data, called_blob.length);
+       p += called_blob.length;
 
-       if (called) {
-               transport->called = *called;
-       }
+       memcpy(p, calling_blob.data, calling_blob.length);
+       p += calling_blob.length;
 
-       /* 445 doesn't have session request */
-       if (transport->socket->port == 445) {
-               return True;
+       _smb_setlen(req->out.buffer, PTR_DIFF(p, req->out.buffer) - NBT_HDR_SIZE);
+       SCVAL(req->out.buffer,0,0x81);
+
+       if (!smbcli_request_send(req)) {
+               smbcli_request_destroy(req);
+               goto failed;
        }
 
-       /* allocate output buffer */
-       req = cli_request_setup_nonsmb(transport, NBT_HDR_SIZE + 2*nbt_mangled_name_len());
+       talloc_free(tmp_ctx);
+       return req;
 
-       /* put in the destination name */
-       p = req->out.buffer + NBT_HDR_SIZE;
-       name_mangle(called->name, p, called->name_type);
-       len += name_len(p);
+failed:
+       talloc_free(tmp_ctx);
+       return NULL;
+}
 
-       /* and my name */
-       p = req->out.buffer+len;
-       name_mangle(calling->name, p, calling->name_type);
-       len += name_len(p);
+/*
+  map a session request error to a NTSTATUS
+ */
+static NTSTATUS map_session_refused_error(uint8_t error)
+{
+       switch (error) {
+       case 0x80:
+       case 0x81:
+               return NT_STATUS_REMOTE_NOT_LISTENING;
+       case 0x82:
+               return NT_STATUS_RESOURCE_NAME_NOT_FOUND;
+       case 0x83:
+               return NT_STATUS_REMOTE_RESOURCES;
+       }
+       return NT_STATUS_UNEXPECTED_IO_ERROR;
+}
 
-       _smb_setlen(req->out.buffer,len-4);
-       SCVAL(req->out.buffer,0,0x81);
 
-       if (!cli_request_send(req) ||
-           !cli_request_receive(req)) {
-               cli_request_destroy(req);
-               return False;
+/*
+  finish a smbcli_transport_connect()
+*/
+NTSTATUS smbcli_transport_connect_recv(struct smbcli_request *req)
+{
+       NTSTATUS status;
+
+       if (!smbcli_request_receive(req)) {
+               smbcli_request_destroy(req);
+               return NT_STATUS_UNEXPECTED_NETWORK_ERROR;
        }
-       
-       if (CVAL(req->in.buffer,0) != 0x82) {
-               transport->error.etype = ETYPE_NBT;
-               transport->error.e.nbt_error = CVAL(req->in.buffer,4);
-               cli_request_destroy(req);
-               return False;
+
+       switch (CVAL(req->in.buffer,0)) {
+       case 0x82:
+               status = NT_STATUS_OK;
+               break;
+       case 0x83:
+               status = map_session_refused_error(CVAL(req->in.buffer,4));
+               break;
+       case 0x84:
+               DEBUG(1,("Warning: session retarget not supported\n"));
+               status = NT_STATUS_NOT_SUPPORTED;
+               break;
+       default:
+               status = NT_STATUS_UNEXPECTED_IO_ERROR;
+               break;
        }
 
-       cli_request_destroy(req);
-       return True;
+       smbcli_request_destroy(req);
+       return status;
 }
 
 
+/*
+  send a session request (if needed)
+*/
+BOOL smbcli_transport_connect(struct smbcli_transport *transport,
+                             struct nbt_name *calling, 
+                             struct nbt_name *called)
+{
+       struct smbcli_request *req;
+       NTSTATUS status;
+
+       if (transport->socket->port == 445) {
+               return True;
+       }
+
+       req = smbcli_transport_connect_send(transport, 
+                                           calling, called);
+       status = smbcli_transport_connect_recv(req);
+       return NT_STATUS_IS_OK(status);
+}
+
 /****************************************************************************
 get next mid in sequence
 ****************************************************************************/
-uint16 cli_transport_next_mid(struct cli_transport *transport)
+uint16_t smbcli_transport_next_mid(struct smbcli_transport *transport)
 {
-       uint16 mid;
-       struct cli_request *req;
+       uint16_t mid;
+       struct smbcli_request *req;
 
        mid = transport->next_mid;
 
@@ -142,7 +294,7 @@ again:
        /* the zero mid is reserved for requests that don't have a mid */
        if (mid == 0) mid = 1;
 
-       for (req=transport->pending_requests; req; req=req->next) {
+       for (req=transport->pending_recv; req; req=req->next) {
                if (req->mid == mid) {
                        mid++;
                        goto again;
@@ -153,89 +305,358 @@ again:
        return mid;
 }
 
+static void idle_handler(struct event_context *ev, 
+                        struct timed_event *te, struct timeval t, void *private)
+{
+       struct smbcli_transport *transport = talloc_get_type(private,
+                                                            struct smbcli_transport);
+       struct timeval next = timeval_add(&t, 0, transport->idle.period);
+       transport->socket->event.te = event_add_timed(transport->socket->event.ctx, 
+                                                     transport,
+                                                     next,
+                                                     idle_handler, transport);
+       transport->idle.func(transport, transport->idle.private);
+}
+
 /*
   setup the idle handler for a transport
+  the period is in microseconds
 */
-void cli_transport_idle_handler(struct cli_transport *transport, 
-                               void (*idle_func)(struct cli_transport *, void *),
-                               uint_t period,
-                               void *private)
+void smbcli_transport_idle_handler(struct smbcli_transport *transport, 
+                                  void (*idle_func)(struct smbcli_transport *, void *),
+                                  uint64_t period,
+                                  void *private)
 {
        transport->idle.func = idle_func;
        transport->idle.private = private;
        transport->idle.period = period;
-}
 
+       if (transport->socket->event.te != NULL) {
+               talloc_free(transport->socket->event.te);
+       }
+
+       transport->socket->event.te = event_add_timed(transport->socket->event.ctx, 
+                                                     transport,
+                                                     timeval_current_ofs(0, period),
+                                                     idle_handler, transport);
+}
 
 /*
-  determine if a packet is pending for receive on a transport
-*/
-BOOL cli_transport_pending(struct cli_transport *transport)
+  we have a full request in our receive buffer - match it to a pending request
+  and process
+ */
+static NTSTATUS smbcli_transport_finish_recv(void *private, DATA_BLOB blob)
 {
-       return socket_pending(transport->socket->fd);
-}
+       struct smbcli_transport *transport = talloc_get_type(private, 
+                                                            struct smbcli_transport);
+       uint8_t *buffer, *hdr, *vwv;
+       int len;
+       uint16_t wct=0, mid = 0, op = 0;
+       struct smbcli_request *req = NULL;
+
+       buffer = blob.data;
+       len = blob.length;
+
+       hdr = buffer+NBT_HDR_SIZE;
+       vwv = hdr + HDR_VWV;
+
+       /* see if it could be an oplock break request */
+       if (smbcli_handle_oplock_break(transport, len, hdr, vwv)) {
+               talloc_free(buffer);
+               return NT_STATUS_OK;
+       }
+
+       /* at this point we need to check for a readbraw reply, as
+          these can be any length */
+       if (transport->readbraw_pending) {
+               transport->readbraw_pending = 0;
+
+               /* it must match the first entry in the pending queue
+                  as the client is not allowed to have outstanding
+                  readbraw requests */
+               req = transport->pending_recv;
+               if (!req) goto error;
+
+               req->in.buffer = buffer;
+               talloc_steal(req, buffer);
+               req->in.size = len;
+               req->in.allocated = req->in.size;
+               goto async;
+       }
 
+       if (len >= MIN_SMB_SIZE) {
+               /* extract the mid for matching to pending requests */
+               mid = SVAL(hdr, HDR_MID);
+               wct = CVAL(hdr, HDR_WCT);
+               op  = CVAL(hdr, HDR_COM);
+       }
 
+       /* match the incoming request against the list of pending requests */
+       for (req=transport->pending_recv; req; req=req->next) {
+               if (req->mid == mid) break;
+       }
 
-/*
-  wait for data on a transport, periodically calling a wait function
-  if one has been defined
-  return True if a packet is received
-*/
-BOOL cli_transport_select(struct cli_transport *transport)
-{
-       fd_set fds;
-       int selrtn;
-       int fd;
-       struct timeval timeout;
+       /* see if it's a ntcancel reply for the current MID */
+       req = smbcli_handle_ntcancel_reply(req, len, hdr);
 
-       fd = transport->socket->fd;
+       if (!req) {
+               DEBUG(1,("Discarding unmatched reply with mid %d op %d\n", mid, op));
+               goto error;
+       }
 
-       if (fd == -1) {
-               return False;
+       /* fill in the 'in' portion of the matching request */
+       req->in.buffer = buffer;
+       talloc_steal(req, buffer);
+       req->in.size = len;
+       req->in.allocated = req->in.size;
+
+       /* handle NBT session replies */
+       if (req->in.size >= 4 && req->in.buffer[0] != 0) {
+               req->status = NT_STATUS_OK;
+               goto async;
        }
 
-       do {
-               uint_t period = 1000;
+       /* handle non-SMB replies */
+       if (req->in.size < NBT_HDR_SIZE + MIN_SMB_SIZE) {
+               req->state = SMBCLI_REQUEST_ERROR;
+               goto error;
+       }
 
-               FD_ZERO(&fds);
-               FD_SET(fd,&fds);
-       
-               if (transport->idle.func) {
-                       period = transport->idle.period;
-               }
+       if (req->in.size < NBT_HDR_SIZE + MIN_SMB_SIZE + VWV(wct)) {
+               DEBUG(2,("bad reply size for mid %d\n", mid));
+               req->status = NT_STATUS_UNSUCCESSFUL;
+               req->state = SMBCLI_REQUEST_ERROR;
+               goto error;
+       }
 
-               timeout.tv_sec = period / 1000;
-               timeout.tv_usec = 1000*(period%1000);
-               
-               selrtn = sys_select_intr(fd+1,&fds,NULL,NULL,&timeout);
-               
-               if (selrtn == 1) {
-                       /* the fd is readable */
-                       return True;
+       req->in.hdr = hdr;
+       req->in.vwv = vwv;
+       req->in.wct = wct;
+       if (req->in.size >= NBT_HDR_SIZE + MIN_SMB_SIZE + VWV(wct)) {
+               req->in.data = req->in.vwv + VWV(wct) + 2;
+               req->in.data_size = SVAL(req->in.vwv, VWV(wct));
+               if (req->in.size < NBT_HDR_SIZE + MIN_SMB_SIZE + VWV(wct) + req->in.data_size) {
+                       DEBUG(3,("bad data size for mid %d\n", mid));
+                       /* blergh - w2k3 gives a bogus data size values in some
+                          openX replies */
+                       req->in.data_size = req->in.size - (NBT_HDR_SIZE + MIN_SMB_SIZE + VWV(wct));
                }
-               
-               if (selrtn == -1) {
-                       /* sys_select_intr() already handles EINTR, so this
-                          is an error. The socket is probably dead */
-                       return False;
+       }
+       req->in.ptr = req->in.data;
+       req->flags2 = SVAL(req->in.hdr, HDR_FLG2);
+
+       if (!(req->flags2 & FLAGS2_32_BIT_ERROR_CODES)) {
+               int class = CVAL(req->in.hdr,HDR_RCLS);
+               int code = SVAL(req->in.hdr,HDR_ERR);
+               if (class == 0 && code == 0) {
+                       transport->error.e.nt_status = NT_STATUS_OK;
+               } else {
+                       transport->error.e.nt_status = NT_STATUS_DOS(class, code);
                }
-               
-               /* only other possibility is that we timed out - call the idle function
-                  if there is one */
-               if (transport->idle.func) {
-                       transport->idle.func(transport, transport->idle.private);
+       } else {
+               transport->error.e.nt_status = NT_STATUS(IVAL(req->in.hdr, HDR_RCLS));
+       }
+
+       req->status = transport->error.e.nt_status;
+       if (NT_STATUS_IS_OK(req->status)) {
+               transport->error.etype = ETYPE_NONE;
+       } else {
+               transport->error.etype = ETYPE_SMB;
+       }
+
+       if (!smbcli_request_check_sign_mac(req)) {
+               transport->error.etype = ETYPE_SOCKET;
+               transport->error.e.socket_error = SOCKET_READ_BAD_SIG;
+               req->state = SMBCLI_REQUEST_ERROR;
+               req->status = NT_STATUS_ACCESS_DENIED;
+               goto error;
+       };
+
+async:
+       /* if this request has an async handler then call that to
+          notify that the reply has been received. This might destroy
+          the request so it must happen last */
+       DLIST_REMOVE(transport->pending_recv, req);
+       req->state = SMBCLI_REQUEST_DONE;
+       if (req->async.fn) {
+               req->async.fn(req);
+       }
+       return NT_STATUS_OK;
+
+error:
+       if (req) {
+               DLIST_REMOVE(transport->pending_recv, req);
+               req->state = SMBCLI_REQUEST_ERROR;
+               if (req->async.fn) {
+                       req->async.fn(req);
                }
-       } while (selrtn == 0);
+       } else {
+               talloc_free(buffer);
+       }
+       return NT_STATUS_OK;
+}
 
+/*
+  process some read/write requests that are pending
+  return False if the socket is dead
+*/
+BOOL smbcli_transport_process(struct smbcli_transport *transport)
+{
+       NTSTATUS status;
+       size_t npending;
+
+       packet_queue_run(transport->packet);
+       if (transport->socket->sock == NULL) {
+               return False;
+       }
+
+       status = socket_pending(transport->socket->sock, &npending);
+       if (NT_STATUS_IS_OK(status) && npending > 0) {
+               packet_recv(transport->packet);
+       }
+       if (transport->socket->sock == NULL) {
+               return False;
+       }
        return True;
 }
 
 /*
-  store the user session key for a transport
+  handle timeouts of individual smb requests
 */
-void cli_transport_set_session_key(struct cli_transport *transport,
-                                  const uint8 session_key[16])
+static void smbcli_timeout_handler(struct event_context *ev, struct timed_event *te, 
+                                  struct timeval t, void *private)
+{
+       struct smbcli_request *req = talloc_get_type(private, struct smbcli_request);
+
+       if (req->state == SMBCLI_REQUEST_RECV) {
+               DLIST_REMOVE(req->transport->pending_recv, req);
+       }
+       req->status = NT_STATUS_IO_TIMEOUT;
+       req->state = SMBCLI_REQUEST_ERROR;
+       if (req->async.fn) {
+               req->async.fn(req);
+       }
+}
+
+
+/*
+  destroy a request
+*/
+static int smbcli_request_destructor(struct smbcli_request *req)
+{
+       if (req->state == SMBCLI_REQUEST_RECV) {
+               DLIST_REMOVE(req->transport->pending_recv, req);
+       }
+       return 0;
+}
+
+
+/*
+  put a request into the send queue
+*/
+void smbcli_transport_send(struct smbcli_request *req)
+{
+       DATA_BLOB blob;
+       NTSTATUS status;
+
+       /* check if the transport is dead */
+       if (req->transport->socket->sock == NULL) {
+               req->state = SMBCLI_REQUEST_ERROR;
+               req->status = NT_STATUS_NET_WRITE_FAULT;
+               return;
+       }
+
+       blob = data_blob_const(req->out.buffer, req->out.size);
+       status = packet_send(req->transport->packet, blob);
+       if (!NT_STATUS_IS_OK(status)) {
+               req->state = SMBCLI_REQUEST_ERROR;
+               req->status = status;
+               return;
+       }
+
+       if (req->one_way_request) {
+               req->state = SMBCLI_REQUEST_DONE;
+               smbcli_request_destroy(req);
+               return;
+       }
+
+       req->state = SMBCLI_REQUEST_RECV;
+       DLIST_ADD(req->transport->pending_recv, req);
+
+       /* add a timeout */
+       if (req->transport->options.request_timeout) {
+               event_add_timed(req->transport->socket->event.ctx, req, 
+                               timeval_current_ofs(req->transport->options.request_timeout, 0), 
+                               smbcli_timeout_handler, req);
+       }
+
+       talloc_set_destructor(req, smbcli_request_destructor);
+}
+
+
+/****************************************************************************
+ Send an SMBecho (async send)
+*****************************************************************************/
+struct smbcli_request *smb_raw_echo_send(struct smbcli_transport *transport,
+                                        struct smb_echo *p)
+{
+       struct smbcli_request *req;
+
+       req = smbcli_request_setup_transport(transport, SMBecho, 1, p->in.size);
+       if (!req) return NULL;
+
+       SSVAL(req->out.vwv, VWV(0), p->in.repeat_count);
+
+       memcpy(req->out.data, p->in.data, p->in.size);
+
+       ZERO_STRUCT(p->out);
+
+       if (!smbcli_request_send(req)) {
+               smbcli_request_destroy(req);
+               return NULL;
+       }
+
+       return req;
+}
+
+/****************************************************************************
+ raw echo interface (async recv)
+****************************************************************************/
+NTSTATUS smb_raw_echo_recv(struct smbcli_request *req, TALLOC_CTX *mem_ctx,
+                          struct smb_echo *p)
+{
+       if (!smbcli_request_receive(req) ||
+           smbcli_request_is_error(req)) {
+               goto failed;
+       }
+
+       SMBCLI_CHECK_WCT(req, 1);
+       p->out.count++;
+       p->out.sequence_number = SVAL(req->in.vwv, VWV(0));
+       p->out.size = req->in.data_size;
+       talloc_free(p->out.data);
+       p->out.data = talloc_size(mem_ctx, p->out.size);
+       NT_STATUS_HAVE_NO_MEMORY(p->out.data);
+
+       if (!smbcli_raw_pull_data(req, req->in.data, p->out.size, p->out.data)) {
+               req->status = NT_STATUS_BUFFER_TOO_SMALL;
+       }
+
+       if (p->out.count == p->in.repeat_count) {
+               return smbcli_request_destroy(req);
+       }
+
+       return NT_STATUS_OK;
+
+failed:
+       return smbcli_request_destroy(req);
+}
+
+/****************************************************************************
+ Send a echo (sync interface)
+*****************************************************************************/
+NTSTATUS smb_raw_echo(struct smbcli_transport *transport, struct smb_echo *p)
 {
-       memcpy(transport->negotiate.user_session_key, session_key, 16);
+       struct smbcli_request *req = smb_raw_echo_send(transport, p);
+       return smbcli_request_simple_recv(req);
 }