2 Unix SMB/CIFS implementation.
3 SMB transaction2 handling
4 Copyright (C) Jeremy Allison 1994-2007
5 Copyright (C) Stefan (metze) Metzmacher 2003
6 Copyright (C) Volker Lendecke 2005-2007
7 Copyright (C) Steve French 2005
8 Copyright (C) James Peach 2006-2007
10 Extensively modified by Andrew Tridgell, 1995
12 This program is free software; you can redistribute it and/or modify
13 it under the terms of the GNU General Public License as published by
14 the Free Software Foundation; either version 3 of the License, or
15 (at your option) any later version.
17 This program is distributed in the hope that it will be useful,
18 but WITHOUT ANY WARRANTY; without even the implied warranty of
19 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20 GNU General Public License for more details.
22 You should have received a copy of the GNU General Public License
23 along with this program. If not, see <http://www.gnu.org/licenses/>.
28 #include "smbd/globals.h"
29 #include "../libcli/auth/libcli_auth.h"
31 extern enum protocol_types Protocol;
33 #define DIR_ENTRY_SAFETY_MARGIN 4096
35 static char *store_file_unix_basic(connection_struct *conn,
38 const SMB_STRUCT_STAT *psbuf);
40 static char *store_file_unix_basic_info2(connection_struct *conn,
43 const SMB_STRUCT_STAT *psbuf);
45 /********************************************************************
46 Roundup a value to the nearest allocation roundup size boundary.
47 Only do this for Windows clients.
48 ********************************************************************/
50 uint64_t smb_roundup(connection_struct *conn, uint64_t val)
52 uint64_t rval = lp_allocation_roundup_size(SNUM(conn));
54 /* Only roundup for Windows clients. */
55 enum remote_arch_types ra_type = get_remote_arch();
56 if (rval && (ra_type != RA_SAMBA) && (ra_type != RA_CIFSFS)) {
57 val = SMB_ROUNDUP(val,rval);
62 /****************************************************************************
63 Utility functions for dealing with extended attributes.
64 ****************************************************************************/
66 /****************************************************************************
67 Refuse to allow clients to overwrite our private xattrs.
68 ****************************************************************************/
70 static bool samba_private_attr_name(const char *unix_ea_name)
72 static const char * const prohibited_ea_names[] = {
73 SAMBA_POSIX_INHERITANCE_EA_NAME,
74 SAMBA_XATTR_DOS_ATTRIB,
80 for (i = 0; prohibited_ea_names[i]; i++) {
81 if (strequal( prohibited_ea_names[i], unix_ea_name))
84 if (StrnCaseCmp(unix_ea_name, SAMBA_XATTR_DOSSTREAM_PREFIX,
85 strlen(SAMBA_XATTR_DOSSTREAM_PREFIX)) == 0) {
91 /****************************************************************************
92 Get one EA value. Fill in a struct ea_struct.
93 ****************************************************************************/
95 NTSTATUS get_ea_value(TALLOC_CTX *mem_ctx, connection_struct *conn,
96 files_struct *fsp, const char *fname,
97 const char *ea_name, struct ea_struct *pea)
99 /* Get the value of this xattr. Max size is 64k. */
100 size_t attr_size = 256;
106 val = TALLOC_REALLOC_ARRAY(mem_ctx, val, char, attr_size);
108 return NT_STATUS_NO_MEMORY;
111 if (fsp && fsp->fh->fd != -1) {
112 sizeret = SMB_VFS_FGETXATTR(fsp, ea_name, val, attr_size);
114 sizeret = SMB_VFS_GETXATTR(conn, fname, ea_name, val, attr_size);
117 if (sizeret == -1 && errno == ERANGE && attr_size != 65536) {
123 return map_nt_error_from_unix(errno);
126 DEBUG(10,("get_ea_value: EA %s is of length %u\n", ea_name, (unsigned int)sizeret));
127 dump_data(10, (uint8 *)val, sizeret);
130 if (strnequal(ea_name, "user.", 5)) {
131 pea->name = talloc_strdup(mem_ctx, &ea_name[5]);
133 pea->name = talloc_strdup(mem_ctx, ea_name);
135 if (pea->name == NULL) {
137 return NT_STATUS_NO_MEMORY;
139 pea->value.data = (unsigned char *)val;
140 pea->value.length = (size_t)sizeret;
144 NTSTATUS get_ea_names_from_file(TALLOC_CTX *mem_ctx, connection_struct *conn,
145 files_struct *fsp, const char *fname,
146 char ***pnames, size_t *pnum_names)
148 /* Get a list of all xattrs. Max namesize is 64k. */
149 size_t ea_namelist_size = 1024;
150 char *ea_namelist = NULL;
155 ssize_t sizeret = -1;
157 if (!lp_ea_support(SNUM(conn))) {
164 * TALLOC the result early to get the talloc hierarchy right.
167 names = TALLOC_ARRAY(mem_ctx, char *, 1);
169 DEBUG(0, ("talloc failed\n"));
170 return NT_STATUS_NO_MEMORY;
173 while (ea_namelist_size <= 65536) {
175 ea_namelist = TALLOC_REALLOC_ARRAY(
176 names, ea_namelist, char, ea_namelist_size);
177 if (ea_namelist == NULL) {
178 DEBUG(0, ("talloc failed\n"));
180 return NT_STATUS_NO_MEMORY;
183 if (fsp && fsp->fh->fd != -1) {
184 sizeret = SMB_VFS_FLISTXATTR(fsp, ea_namelist,
187 sizeret = SMB_VFS_LISTXATTR(conn, fname, ea_namelist,
191 if ((sizeret == -1) && (errno == ERANGE)) {
192 ea_namelist_size *= 2;
201 return map_nt_error_from_unix(errno);
204 DEBUG(10, ("get_ea_list_from_file: ea_namelist size = %u\n",
205 (unsigned int)sizeret));
215 * Ensure the result is 0-terminated
218 if (ea_namelist[sizeret-1] != '\0') {
220 return NT_STATUS_INTERNAL_ERROR;
228 for (p = ea_namelist; p - ea_namelist < sizeret; p += strlen(p)+1) {
232 tmp = TALLOC_REALLOC_ARRAY(mem_ctx, names, char *, num_names);
234 DEBUG(0, ("talloc failed\n"));
236 return NT_STATUS_NO_MEMORY;
242 for (p = ea_namelist; p - ea_namelist < sizeret; p += strlen(p)+1) {
243 names[num_names++] = p;
247 *pnum_names = num_names;
251 /****************************************************************************
252 Return a linked list of the total EA's. Plus the total size
253 ****************************************************************************/
255 static struct ea_list *get_ea_list_from_file(TALLOC_CTX *mem_ctx, connection_struct *conn, files_struct *fsp,
256 const char *fname, size_t *pea_total_len)
258 /* Get a list of all xattrs. Max namesize is 64k. */
261 struct ea_list *ea_list_head = NULL;
266 if (!lp_ea_support(SNUM(conn))) {
270 status = get_ea_names_from_file(talloc_tos(), conn, fsp, fname,
273 if (!NT_STATUS_IS_OK(status) || (num_names == 0)) {
277 for (i=0; i<num_names; i++) {
278 struct ea_list *listp;
281 if (strnequal(names[i], "system.", 7)
282 || samba_private_attr_name(names[i]))
285 listp = TALLOC_P(mem_ctx, struct ea_list);
290 if (!NT_STATUS_IS_OK(get_ea_value(mem_ctx, conn, fsp,
296 push_ascii_fstring(dos_ea_name, listp->ea.name);
299 4 + strlen(dos_ea_name) + 1 + listp->ea.value.length;
301 DEBUG(10,("get_ea_list_from_file: total_len = %u, %s, val len "
302 "= %u\n", (unsigned int)*pea_total_len, dos_ea_name,
303 (unsigned int)listp->ea.value.length));
305 DLIST_ADD_END(ea_list_head, listp, struct ea_list *);
309 /* Add on 4 for total length. */
310 if (*pea_total_len) {
314 DEBUG(10, ("get_ea_list_from_file: total_len = %u\n",
315 (unsigned int)*pea_total_len));
320 /****************************************************************************
321 Fill a qfilepathinfo buffer with EA's. Returns the length of the buffer
323 ****************************************************************************/
325 static unsigned int fill_ea_buffer(TALLOC_CTX *mem_ctx, char *pdata, unsigned int total_data_size,
326 connection_struct *conn, struct ea_list *ea_list)
328 unsigned int ret_data_size = 4;
331 SMB_ASSERT(total_data_size >= 4);
333 if (!lp_ea_support(SNUM(conn))) {
338 for (p = pdata + 4; ea_list; ea_list = ea_list->next) {
341 push_ascii_fstring(dos_ea_name, ea_list->ea.name);
342 dos_namelen = strlen(dos_ea_name);
343 if (dos_namelen > 255 || dos_namelen == 0) {
346 if (ea_list->ea.value.length > 65535) {
349 if (4 + dos_namelen + 1 + ea_list->ea.value.length > total_data_size) {
353 /* We know we have room. */
354 SCVAL(p,0,ea_list->ea.flags);
355 SCVAL(p,1,dos_namelen);
356 SSVAL(p,2,ea_list->ea.value.length);
357 fstrcpy(p+4, dos_ea_name);
358 memcpy( p + 4 + dos_namelen + 1, ea_list->ea.value.data, ea_list->ea.value.length);
360 total_data_size -= 4 + dos_namelen + 1 + ea_list->ea.value.length;
361 p += 4 + dos_namelen + 1 + ea_list->ea.value.length;
364 ret_data_size = PTR_DIFF(p, pdata);
365 DEBUG(10,("fill_ea_buffer: data_size = %u\n", ret_data_size ));
366 SIVAL(pdata,0,ret_data_size);
367 return ret_data_size;
370 static unsigned int estimate_ea_size(connection_struct *conn, files_struct *fsp, const char *fname)
372 size_t total_ea_len = 0;
373 TALLOC_CTX *mem_ctx = NULL;
375 if (!lp_ea_support(SNUM(conn))) {
378 mem_ctx = talloc_tos();
379 (void)get_ea_list_from_file(mem_ctx, conn, fsp, fname, &total_ea_len);
383 /****************************************************************************
384 Ensure the EA name is case insensitive by matching any existing EA name.
385 ****************************************************************************/
387 static void canonicalize_ea_name(connection_struct *conn, files_struct *fsp, const char *fname, fstring unix_ea_name)
390 TALLOC_CTX *mem_ctx = talloc_tos();
391 struct ea_list *ea_list = get_ea_list_from_file(mem_ctx, conn, fsp, fname, &total_ea_len);
393 for (; ea_list; ea_list = ea_list->next) {
394 if (strequal(&unix_ea_name[5], ea_list->ea.name)) {
395 DEBUG(10,("canonicalize_ea_name: %s -> %s\n",
396 &unix_ea_name[5], ea_list->ea.name));
397 safe_strcpy(&unix_ea_name[5], ea_list->ea.name, sizeof(fstring)-6);
403 /****************************************************************************
404 Set or delete an extended attribute.
405 ****************************************************************************/
407 NTSTATUS set_ea(connection_struct *conn, files_struct *fsp, const char *fname, struct ea_list *ea_list)
409 if (!lp_ea_support(SNUM(conn))) {
410 return NT_STATUS_EAS_NOT_SUPPORTED;
413 for (;ea_list; ea_list = ea_list->next) {
415 fstring unix_ea_name;
417 fstrcpy(unix_ea_name, "user."); /* All EA's must start with user. */
418 fstrcat(unix_ea_name, ea_list->ea.name);
420 canonicalize_ea_name(conn, fsp, fname, unix_ea_name);
422 DEBUG(10,("set_ea: ea_name %s ealen = %u\n", unix_ea_name, (unsigned int)ea_list->ea.value.length));
424 if (samba_private_attr_name(unix_ea_name)) {
425 DEBUG(10,("set_ea: ea name %s is a private Samba name.\n", unix_ea_name));
426 return NT_STATUS_ACCESS_DENIED;
429 if (ea_list->ea.value.length == 0) {
430 /* Remove the attribute. */
431 if (fsp && (fsp->fh->fd != -1)) {
432 DEBUG(10,("set_ea: deleting ea name %s on file %s by file descriptor.\n",
433 unix_ea_name, fsp->fsp_name));
434 ret = SMB_VFS_FREMOVEXATTR(fsp, unix_ea_name);
436 DEBUG(10,("set_ea: deleting ea name %s on file %s.\n",
437 unix_ea_name, fname));
438 ret = SMB_VFS_REMOVEXATTR(conn, fname, unix_ea_name);
441 /* Removing a non existent attribute always succeeds. */
442 if (ret == -1 && errno == ENOATTR) {
443 DEBUG(10,("set_ea: deleting ea name %s didn't exist - succeeding by default.\n",
449 if (fsp && (fsp->fh->fd != -1)) {
450 DEBUG(10,("set_ea: setting ea name %s on file %s by file descriptor.\n",
451 unix_ea_name, fsp->fsp_name));
452 ret = SMB_VFS_FSETXATTR(fsp, unix_ea_name,
453 ea_list->ea.value.data, ea_list->ea.value.length, 0);
455 DEBUG(10,("set_ea: setting ea name %s on file %s.\n",
456 unix_ea_name, fname));
457 ret = SMB_VFS_SETXATTR(conn, fname, unix_ea_name,
458 ea_list->ea.value.data, ea_list->ea.value.length, 0);
464 if (errno == ENOTSUP) {
465 return NT_STATUS_EAS_NOT_SUPPORTED;
468 return map_nt_error_from_unix(errno);
474 /****************************************************************************
475 Read a list of EA names from an incoming data buffer. Create an ea_list with them.
476 ****************************************************************************/
478 static struct ea_list *read_ea_name_list(TALLOC_CTX *ctx, const char *pdata, size_t data_size)
480 struct ea_list *ea_list_head = NULL;
481 size_t converted_size, offset = 0;
483 while (offset + 2 < data_size) {
484 struct ea_list *eal = TALLOC_ZERO_P(ctx, struct ea_list);
485 unsigned int namelen = CVAL(pdata,offset);
487 offset++; /* Go past the namelen byte. */
489 /* integer wrap paranioa. */
490 if ((offset + namelen < offset) || (offset + namelen < namelen) ||
491 (offset > data_size) || (namelen > data_size) ||
492 (offset + namelen >= data_size)) {
495 /* Ensure the name is null terminated. */
496 if (pdata[offset + namelen] != '\0') {
499 if (!pull_ascii_talloc(ctx, &eal->ea.name, &pdata[offset],
501 DEBUG(0,("read_ea_name_list: pull_ascii_talloc "
502 "failed: %s", strerror(errno)));
508 offset += (namelen + 1); /* Go past the name + terminating zero. */
509 DLIST_ADD_END(ea_list_head, eal, struct ea_list *);
510 DEBUG(10,("read_ea_name_list: read ea name %s\n", eal->ea.name));
516 /****************************************************************************
517 Read one EA list entry from the buffer.
518 ****************************************************************************/
520 struct ea_list *read_ea_list_entry(TALLOC_CTX *ctx, const char *pdata, size_t data_size, size_t *pbytes_used)
522 struct ea_list *eal = TALLOC_ZERO_P(ctx, struct ea_list);
524 unsigned int namelen;
525 size_t converted_size;
535 eal->ea.flags = CVAL(pdata,0);
536 namelen = CVAL(pdata,1);
537 val_len = SVAL(pdata,2);
539 if (4 + namelen + 1 + val_len > data_size) {
543 /* Ensure the name is null terminated. */
544 if (pdata[namelen + 4] != '\0') {
547 if (!pull_ascii_talloc(ctx, &eal->ea.name, pdata + 4, &converted_size)) {
548 DEBUG(0,("read_ea_list_entry: pull_ascii_talloc failed: %s",
555 eal->ea.value = data_blob_talloc(eal, NULL, (size_t)val_len + 1);
556 if (!eal->ea.value.data) {
560 memcpy(eal->ea.value.data, pdata + 4 + namelen + 1, val_len);
562 /* Ensure we're null terminated just in case we print the value. */
563 eal->ea.value.data[val_len] = '\0';
564 /* But don't count the null. */
565 eal->ea.value.length--;
568 *pbytes_used = 4 + namelen + 1 + val_len;
571 DEBUG(10,("read_ea_list_entry: read ea name %s\n", eal->ea.name));
572 dump_data(10, eal->ea.value.data, eal->ea.value.length);
577 /****************************************************************************
578 Read a list of EA names and data from an incoming data buffer. Create an ea_list with them.
579 ****************************************************************************/
581 static struct ea_list *read_ea_list(TALLOC_CTX *ctx, const char *pdata, size_t data_size)
583 struct ea_list *ea_list_head = NULL;
585 size_t bytes_used = 0;
587 while (offset < data_size) {
588 struct ea_list *eal = read_ea_list_entry(ctx, pdata + offset, data_size - offset, &bytes_used);
594 DLIST_ADD_END(ea_list_head, eal, struct ea_list *);
595 offset += bytes_used;
601 /****************************************************************************
602 Count the total EA size needed.
603 ****************************************************************************/
605 static size_t ea_list_size(struct ea_list *ealist)
608 struct ea_list *listp;
611 for (listp = ealist; listp; listp = listp->next) {
612 push_ascii_fstring(dos_ea_name, listp->ea.name);
613 ret += 4 + strlen(dos_ea_name) + 1 + listp->ea.value.length;
615 /* Add on 4 for total length. */
623 /****************************************************************************
624 Return a union of EA's from a file list and a list of names.
625 The TALLOC context for the two lists *MUST* be identical as we steal
626 memory from one list to add to another. JRA.
627 ****************************************************************************/
629 static struct ea_list *ea_list_union(struct ea_list *name_list, struct ea_list *file_list, size_t *total_ea_len)
631 struct ea_list *nlistp, *flistp;
633 for (nlistp = name_list; nlistp; nlistp = nlistp->next) {
634 for (flistp = file_list; flistp; flistp = flistp->next) {
635 if (strequal(nlistp->ea.name, flistp->ea.name)) {
641 /* Copy the data from this entry. */
642 nlistp->ea.flags = flistp->ea.flags;
643 nlistp->ea.value = flistp->ea.value;
646 nlistp->ea.flags = 0;
647 ZERO_STRUCT(nlistp->ea.value);
651 *total_ea_len = ea_list_size(name_list);
655 /****************************************************************************
656 Send the required number of replies back.
657 We assume all fields other than the data fields are
658 set correctly for the type of call.
659 HACK ! Always assumes smb_setup field is zero.
660 ****************************************************************************/
662 void send_trans2_replies(connection_struct *conn,
663 struct smb_request *req,
670 /* As we are using a protocol > LANMAN1 then the max_send
671 variable must have been set in the sessetupX call.
672 This takes precedence over the max_xmit field in the
673 global struct. These different max_xmit variables should
674 be merged as this is now too confusing */
676 int data_to_send = datasize;
677 int params_to_send = paramsize;
679 const char *pp = params;
680 const char *pd = pdata;
681 int params_sent_thistime, data_sent_thistime, total_sent_thistime;
682 int alignment_offset = 1; /* JRA. This used to be 3. Set to 1 to make netmon parse ok. */
683 int data_alignment_offset = 0;
684 bool overflow = False;
686 /* Modify the data_to_send and datasize and set the error if
687 we're trying to send more than max_data_bytes. We still send
688 the part of the packet(s) that fit. Strange, but needed
691 if (max_data_bytes > 0 && datasize > max_data_bytes) {
692 DEBUG(5,("send_trans2_replies: max_data_bytes %d exceeded by data %d\n",
693 max_data_bytes, datasize ));
694 datasize = data_to_send = max_data_bytes;
698 /* If there genuinely are no parameters or data to send just send the empty packet */
700 if(params_to_send == 0 && data_to_send == 0) {
701 reply_outbuf(req, 10, 0);
702 show_msg((char *)req->outbuf);
706 /* When sending params and data ensure that both are nicely aligned */
707 /* Only do this alignment when there is also data to send - else
708 can cause NT redirector problems. */
710 if (((params_to_send % 4) != 0) && (data_to_send != 0))
711 data_alignment_offset = 4 - (params_to_send % 4);
713 /* Space is bufsize minus Netbios over TCP header minus SMB header */
714 /* The alignment_offset is to align the param bytes on an even byte
715 boundary. NT 4.0 Beta needs this to work correctly. */
717 useable_space = max_send - (smb_size
720 + data_alignment_offset);
722 if (useable_space < 0) {
723 DEBUG(0, ("send_trans2_replies failed sanity useable_space "
724 "= %d!!!", useable_space));
725 exit_server_cleanly("send_trans2_replies: Not enough space");
728 while (params_to_send || data_to_send) {
729 /* Calculate whether we will totally or partially fill this packet */
731 total_sent_thistime = params_to_send + data_to_send;
733 /* We can never send more than useable_space */
735 * Note that 'useable_space' does not include the alignment offsets,
736 * but we must include the alignment offsets in the calculation of
737 * the length of the data we send over the wire, as the alignment offsets
738 * are sent here. Fix from Marc_Jacobsen@hp.com.
741 total_sent_thistime = MIN(total_sent_thistime, useable_space);
743 reply_outbuf(req, 10, total_sent_thistime + alignment_offset
744 + data_alignment_offset);
747 * We might have SMBtrans2s in req which was transferred to
748 * the outbuf, fix that.
750 SCVAL(req->outbuf, smb_com, SMBtrans2);
752 /* Set total params and data to be sent */
753 SSVAL(req->outbuf,smb_tprcnt,paramsize);
754 SSVAL(req->outbuf,smb_tdrcnt,datasize);
756 /* Calculate how many parameters and data we can fit into
757 * this packet. Parameters get precedence
760 params_sent_thistime = MIN(params_to_send,useable_space);
761 data_sent_thistime = useable_space - params_sent_thistime;
762 data_sent_thistime = MIN(data_sent_thistime,data_to_send);
764 SSVAL(req->outbuf,smb_prcnt, params_sent_thistime);
766 /* smb_proff is the offset from the start of the SMB header to the
767 parameter bytes, however the first 4 bytes of outbuf are
768 the Netbios over TCP header. Thus use smb_base() to subtract
769 them from the calculation */
771 SSVAL(req->outbuf,smb_proff,
772 ((smb_buf(req->outbuf)+alignment_offset)
773 - smb_base(req->outbuf)));
775 if(params_sent_thistime == 0)
776 SSVAL(req->outbuf,smb_prdisp,0);
778 /* Absolute displacement of param bytes sent in this packet */
779 SSVAL(req->outbuf,smb_prdisp,pp - params);
781 SSVAL(req->outbuf,smb_drcnt, data_sent_thistime);
782 if(data_sent_thistime == 0) {
783 SSVAL(req->outbuf,smb_droff,0);
784 SSVAL(req->outbuf,smb_drdisp, 0);
786 /* The offset of the data bytes is the offset of the
787 parameter bytes plus the number of parameters being sent this time */
788 SSVAL(req->outbuf, smb_droff,
789 ((smb_buf(req->outbuf)+alignment_offset)
790 - smb_base(req->outbuf))
791 + params_sent_thistime + data_alignment_offset);
792 SSVAL(req->outbuf,smb_drdisp, pd - pdata);
795 /* Initialize the padding for alignment */
797 if (alignment_offset != 0) {
798 memset(smb_buf(req->outbuf), 0, alignment_offset);
801 /* Copy the param bytes into the packet */
803 if(params_sent_thistime) {
804 memcpy((smb_buf(req->outbuf)+alignment_offset), pp,
805 params_sent_thistime);
808 /* Copy in the data bytes */
809 if(data_sent_thistime) {
810 if (data_alignment_offset != 0) {
811 memset((smb_buf(req->outbuf)+alignment_offset+
812 params_sent_thistime), 0,
813 data_alignment_offset);
815 memcpy(smb_buf(req->outbuf)+alignment_offset
816 +params_sent_thistime+data_alignment_offset,
817 pd,data_sent_thistime);
820 DEBUG(9,("t2_rep: params_sent_thistime = %d, data_sent_thistime = %d, useable_space = %d\n",
821 params_sent_thistime, data_sent_thistime, useable_space));
822 DEBUG(9,("t2_rep: params_to_send = %d, data_to_send = %d, paramsize = %d, datasize = %d\n",
823 params_to_send, data_to_send, paramsize, datasize));
826 error_packet_set((char *)req->outbuf,
827 ERRDOS,ERRbufferoverflow,
828 STATUS_BUFFER_OVERFLOW,
832 /* Send the packet */
833 show_msg((char *)req->outbuf);
834 if (!srv_send_smb(smbd_server_fd(),
837 IS_CONN_ENCRYPTED(conn),
839 exit_server_cleanly("send_trans2_replies: srv_send_smb failed.");
841 TALLOC_FREE(req->outbuf);
843 pp += params_sent_thistime;
844 pd += data_sent_thistime;
846 params_to_send -= params_sent_thistime;
847 data_to_send -= data_sent_thistime;
850 if(params_to_send < 0 || data_to_send < 0) {
851 DEBUG(0,("send_trans2_replies failed sanity check pts = %d, dts = %d\n!!!",
852 params_to_send, data_to_send));
860 /****************************************************************************
861 Reply to a TRANSACT2_OPEN.
862 ****************************************************************************/
864 static void call_trans2open(connection_struct *conn,
865 struct smb_request *req,
866 char **pparams, int total_params,
867 char **ppdata, int total_data,
868 unsigned int max_data_bytes)
870 char *params = *pparams;
871 char *pdata = *ppdata;
876 bool return_additional_info;
887 SMB_STRUCT_STAT sbuf;
890 struct ea_list *ea_list = NULL;
895 uint32 create_disposition;
896 uint32 create_options = 0;
897 TALLOC_CTX *ctx = talloc_tos();
899 SET_STAT_INVALID(sbuf);
902 * Ensure we have enough parameters to perform the operation.
905 if (total_params < 29) {
906 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
910 flags = SVAL(params, 0);
911 deny_mode = SVAL(params, 2);
912 open_attr = SVAL(params,6);
913 oplock_request = (flags & REQUEST_OPLOCK) ? EXCLUSIVE_OPLOCK : 0;
914 if (oplock_request) {
915 oplock_request |= (flags & REQUEST_BATCH_OPLOCK) ? BATCH_OPLOCK : 0;
919 return_additional_info = BITSETW(params,0);
920 open_sattr = SVAL(params, 4);
921 open_time = make_unix_date3(params+8);
923 open_ofun = SVAL(params,12);
924 open_size = IVAL(params,14);
928 reply_doserror(req, ERRSRV, ERRaccess);
932 srvstr_get_path(ctx, params, req->flags2, &fname, pname,
933 total_params - 28, STR_TERMINATE,
935 if (!NT_STATUS_IS_OK(status)) {
936 reply_nterror(req, status);
940 DEBUG(3,("call_trans2open %s deny_mode=0x%x attr=%d ofun=0x%x size=%d\n",
941 fname, (unsigned int)deny_mode, (unsigned int)open_attr,
942 (unsigned int)open_ofun, open_size));
944 if (open_ofun == 0) {
945 reply_nterror(req, NT_STATUS_OBJECT_NAME_COLLISION);
949 if (!map_open_params_to_ntcreate(fname, deny_mode, open_ofun,
954 reply_doserror(req, ERRDOS, ERRbadaccess);
958 /* Any data in this call is an EA list. */
959 if (total_data && (total_data != 4) && !lp_ea_support(SNUM(conn))) {
960 reply_nterror(req, NT_STATUS_EAS_NOT_SUPPORTED);
964 if (total_data != 4) {
965 if (total_data < 10) {
966 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
970 if (IVAL(pdata,0) > total_data) {
971 DEBUG(10,("call_trans2open: bad total data size (%u) > %u\n",
972 IVAL(pdata,0), (unsigned int)total_data));
973 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
977 ea_list = read_ea_list(talloc_tos(), pdata + 4,
980 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
983 } else if (IVAL(pdata,0) != 4) {
984 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
988 status = SMB_VFS_CREATE_FILE(
991 0, /* root_dir_fid */
993 CFF_DOS_PATH, /* create_file_flags */
994 access_mask, /* access_mask */
995 share_mode, /* share_access */
996 create_disposition, /* create_disposition*/
997 create_options, /* create_options */
998 open_attr, /* file_attributes */
999 oplock_request, /* oplock_request */
1000 open_size, /* allocation_size */
1002 ea_list, /* ea_list */
1004 &smb_action, /* pinfo */
1007 if (!NT_STATUS_IS_OK(status)) {
1008 if (open_was_deferred(req->mid)) {
1009 /* We have re-scheduled this call. */
1012 reply_openerror(req, status);
1016 size = get_file_size_stat(&sbuf);
1017 fattr = dos_mode(conn,fsp->fsp_name,&sbuf);
1018 mtime = sbuf.st_mtime;
1019 inode = sbuf.st_ino;
1021 close_file(req, fsp, ERROR_CLOSE);
1022 reply_doserror(req, ERRDOS,ERRnoaccess);
1026 /* Realloc the size of parameters and data we will return */
1027 *pparams = (char *)SMB_REALLOC(*pparams, 30);
1028 if(*pparams == NULL ) {
1029 reply_nterror(req, NT_STATUS_NO_MEMORY);
1034 SSVAL(params,0,fsp->fnum);
1035 SSVAL(params,2,fattr);
1036 srv_put_dos_date2(params,4, mtime);
1037 SIVAL(params,8, (uint32)size);
1038 SSVAL(params,12,deny_mode);
1039 SSVAL(params,14,0); /* open_type - file or directory. */
1040 SSVAL(params,16,0); /* open_state - only valid for IPC device. */
1042 if (oplock_request && lp_fake_oplocks(SNUM(conn))) {
1043 smb_action |= EXTENDED_OPLOCK_GRANTED;
1046 SSVAL(params,18,smb_action);
1049 * WARNING - this may need to be changed if SMB_INO_T <> 4 bytes.
1051 SIVAL(params,20,inode);
1052 SSVAL(params,24,0); /* Padding. */
1054 uint32 ea_size = estimate_ea_size(conn, fsp, fsp->fsp_name);
1055 SIVAL(params, 26, ea_size);
1057 SIVAL(params, 26, 0);
1060 /* Send the required number of replies */
1061 send_trans2_replies(conn, req, params, 30, *ppdata, 0, max_data_bytes);
1064 /*********************************************************
1065 Routine to check if a given string matches exactly.
1066 as a special case a mask of "." does NOT match. That
1067 is required for correct wildcard semantics
1068 Case can be significant or not.
1069 **********************************************************/
1071 static bool exact_match(connection_struct *conn,
1075 if (mask[0] == '.' && mask[1] == 0)
1077 if (dptr_has_wild(conn->dirptr)) {
1080 if (conn->case_sensitive)
1081 return strcmp(str,mask)==0;
1083 return StrCaseCmp(str,mask) == 0;
1086 /****************************************************************************
1087 Return the filetype for UNIX extensions.
1088 ****************************************************************************/
1090 static uint32 unix_filetype(mode_t mode)
1093 return UNIX_TYPE_FILE;
1094 else if(S_ISDIR(mode))
1095 return UNIX_TYPE_DIR;
1097 else if(S_ISLNK(mode))
1098 return UNIX_TYPE_SYMLINK;
1101 else if(S_ISCHR(mode))
1102 return UNIX_TYPE_CHARDEV;
1105 else if(S_ISBLK(mode))
1106 return UNIX_TYPE_BLKDEV;
1109 else if(S_ISFIFO(mode))
1110 return UNIX_TYPE_FIFO;
1113 else if(S_ISSOCK(mode))
1114 return UNIX_TYPE_SOCKET;
1117 DEBUG(0,("unix_filetype: unknown filetype %u\n", (unsigned)mode));
1118 return UNIX_TYPE_UNKNOWN;
1121 /****************************************************************************
1122 Map wire perms onto standard UNIX permissions. Obey share restrictions.
1123 ****************************************************************************/
1125 enum perm_type { PERM_NEW_FILE, PERM_NEW_DIR, PERM_EXISTING_FILE, PERM_EXISTING_DIR};
1127 static NTSTATUS unix_perms_from_wire( connection_struct *conn,
1128 SMB_STRUCT_STAT *psbuf,
1130 enum perm_type ptype,
1135 if (perms == SMB_MODE_NO_CHANGE) {
1136 if (!VALID_STAT(*psbuf)) {
1137 return NT_STATUS_INVALID_PARAMETER;
1139 *ret_perms = psbuf->st_mode;
1140 return NT_STATUS_OK;
1144 ret |= ((perms & UNIX_X_OTH ) ? S_IXOTH : 0);
1145 ret |= ((perms & UNIX_W_OTH ) ? S_IWOTH : 0);
1146 ret |= ((perms & UNIX_R_OTH ) ? S_IROTH : 0);
1147 ret |= ((perms & UNIX_X_GRP ) ? S_IXGRP : 0);
1148 ret |= ((perms & UNIX_W_GRP ) ? S_IWGRP : 0);
1149 ret |= ((perms & UNIX_R_GRP ) ? S_IRGRP : 0);
1150 ret |= ((perms & UNIX_X_USR ) ? S_IXUSR : 0);
1151 ret |= ((perms & UNIX_W_USR ) ? S_IWUSR : 0);
1152 ret |= ((perms & UNIX_R_USR ) ? S_IRUSR : 0);
1154 ret |= ((perms & UNIX_STICKY ) ? S_ISVTX : 0);
1157 ret |= ((perms & UNIX_SET_GID ) ? S_ISGID : 0);
1160 ret |= ((perms & UNIX_SET_UID ) ? S_ISUID : 0);
1165 /* Apply mode mask */
1166 ret &= lp_create_mask(SNUM(conn));
1167 /* Add in force bits */
1168 ret |= lp_force_create_mode(SNUM(conn));
1171 ret &= lp_dir_mask(SNUM(conn));
1172 /* Add in force bits */
1173 ret |= lp_force_dir_mode(SNUM(conn));
1175 case PERM_EXISTING_FILE:
1176 /* Apply mode mask */
1177 ret &= lp_security_mask(SNUM(conn));
1178 /* Add in force bits */
1179 ret |= lp_force_security_mode(SNUM(conn));
1181 case PERM_EXISTING_DIR:
1182 /* Apply mode mask */
1183 ret &= lp_dir_security_mask(SNUM(conn));
1184 /* Add in force bits */
1185 ret |= lp_force_dir_security_mode(SNUM(conn));
1190 return NT_STATUS_OK;
1193 /****************************************************************************
1194 Needed to show the msdfs symlinks as directories. Modifies psbuf
1195 to be a directory if it's a msdfs link.
1196 ****************************************************************************/
1198 static bool check_msdfs_link(connection_struct *conn,
1199 const char *pathname,
1200 SMB_STRUCT_STAT *psbuf)
1202 int saved_errno = errno;
1203 if(lp_host_msdfs() &&
1204 lp_msdfs_root(SNUM(conn)) &&
1205 is_msdfs_link(conn, pathname, psbuf)) {
1207 DEBUG(5,("check_msdfs_link: Masquerading msdfs link %s "
1210 psbuf->st_mode = (psbuf->st_mode & 0xFFF) | S_IFDIR;
1211 errno = saved_errno;
1214 errno = saved_errno;
1219 /****************************************************************************
1220 Get a level dependent lanman2 dir entry.
1221 ****************************************************************************/
1223 static bool get_lanman2_dir_entry(TALLOC_CTX *ctx,
1224 connection_struct *conn,
1226 const char *path_mask,
1229 int requires_resume_key,
1235 int space_remaining,
1237 bool *got_exact_match,
1238 int *last_entry_off,
1239 struct ea_list *name_list)
1243 SMB_STRUCT_STAT sbuf;
1244 const char *mask = NULL;
1245 char *pathreal = NULL;
1247 char *p, *q, *pdata = *ppdata;
1251 SMB_OFF_T file_size = 0;
1252 uint64_t allocation_size = 0;
1254 struct timespec mdate_ts, adate_ts, create_date_ts;
1255 time_t mdate = (time_t)0, adate = (time_t)0, create_date = (time_t)0;
1257 char *last_entry_ptr;
1259 uint32 nt_extmode; /* Used for NT connections instead of mode */
1260 bool needslash = ( conn->dirpath[strlen(conn->dirpath) -1] != '/');
1261 bool check_mangled_names = lp_manglednames(conn->params);
1262 char mangled_name[13]; /* mangled 8.3 name. */
1264 *out_of_space = False;
1265 *got_exact_match = False;
1267 ZERO_STRUCT(mdate_ts);
1268 ZERO_STRUCT(adate_ts);
1269 ZERO_STRUCT(create_date_ts);
1271 if (!conn->dirptr) {
1275 p = strrchr_m(path_mask,'/');
1278 mask = talloc_strdup(ctx,"*.*");
1288 bool ms_dfs_link = False;
1290 /* Needed if we run out of space */
1291 long curr_dirpos = prev_dirpos = dptr_TellDir(conn->dirptr);
1292 dname = dptr_ReadDirName(ctx,conn->dirptr,&curr_dirpos,&sbuf);
1295 * Due to bugs in NT client redirectors we are not using
1296 * resume keys any more - set them to zero.
1297 * Check out the related comments in findfirst/findnext.
1303 DEBUG(8,("get_lanman2_dir_entry:readdir on dirptr 0x%lx now at offset %ld\n",
1304 (long)conn->dirptr,curr_dirpos));
1311 * fname may get mangled, dname is never mangled.
1312 * Whenever we're accessing the filesystem we use
1313 * pathreal which is composed from dname.
1319 /* Mangle fname if it's an illegal name. */
1320 if (mangle_must_mangle(dname,conn->params)) {
1321 if (!name_to_8_3(dname,mangled_name,True,conn->params)) {
1323 continue; /* Error - couldn't mangle. */
1325 fname = talloc_strdup(ctx, mangled_name);
1331 if(!(got_match = *got_exact_match = exact_match(conn, fname, mask))) {
1332 got_match = mask_match(fname, mask, conn->case_sensitive);
1335 if(!got_match && check_mangled_names &&
1336 !mangle_is_8_3(fname, False, conn->params)) {
1338 * It turns out that NT matches wildcards against
1339 * both long *and* short names. This may explain some
1340 * of the wildcard wierdness from old DOS clients
1341 * that some people have been seeing.... JRA.
1343 /* Force the mangling into 8.3. */
1344 if (!name_to_8_3( fname, mangled_name, False, conn->params)) {
1346 continue; /* Error - couldn't mangle. */
1349 if(!(got_match = *got_exact_match = exact_match(conn, mangled_name, mask))) {
1350 got_match = mask_match(mangled_name, mask, conn->case_sensitive);
1355 bool isdots = (ISDOT(dname) || ISDOTDOT(dname));
1357 if (dont_descend && !isdots) {
1364 pathreal = talloc_asprintf(ctx,
1369 pathreal = talloc_asprintf(ctx,
1380 if (INFO_LEVEL_IS_UNIX(info_level)) {
1381 if (SMB_VFS_LSTAT(conn,pathreal,&sbuf) != 0) {
1382 DEBUG(5,("get_lanman2_dir_entry:Couldn't lstat [%s] (%s)\n",
1383 pathreal,strerror(errno)));
1384 TALLOC_FREE(pathreal);
1388 } else if (!VALID_STAT(sbuf) && SMB_VFS_STAT(conn,pathreal,&sbuf) != 0) {
1389 /* Needed to show the msdfs symlinks as
1392 ms_dfs_link = check_msdfs_link(conn, pathreal, &sbuf);
1394 DEBUG(5,("get_lanman2_dir_entry:Couldn't stat [%s] (%s)\n",
1395 pathreal,strerror(errno)));
1396 TALLOC_FREE(pathreal);
1403 mode = dos_mode_msdfs(conn,pathreal,&sbuf);
1405 mode = dos_mode(conn,pathreal,&sbuf);
1408 if (!dir_check_ftype(conn,mode,dirtype)) {
1409 DEBUG(5,("get_lanman2_dir_entry: [%s] attribs didn't match %x\n",fname,dirtype));
1410 TALLOC_FREE(pathreal);
1415 if (!(mode & aDIR)) {
1416 file_size = get_file_size_stat(&sbuf);
1418 allocation_size = SMB_VFS_GET_ALLOC_SIZE(conn,NULL,&sbuf);
1420 mdate_ts = get_mtimespec(&sbuf);
1421 adate_ts = get_atimespec(&sbuf);
1422 create_date_ts = get_create_timespec(&sbuf,
1423 lp_fake_dir_create_times(SNUM(conn)));
1425 if (ask_sharemode) {
1426 struct timespec write_time_ts;
1427 struct file_id fileid;
1429 fileid = vfs_file_id_from_sbuf(conn, &sbuf);
1430 get_file_infos(fileid, NULL, &write_time_ts);
1431 if (!null_timespec(write_time_ts)) {
1432 mdate_ts = write_time_ts;
1436 if (lp_dos_filetime_resolution(SNUM(conn))) {
1437 dos_filetime_timespec(&create_date_ts);
1438 dos_filetime_timespec(&mdate_ts);
1439 dos_filetime_timespec(&adate_ts);
1442 create_date = convert_timespec_to_time_t(create_date_ts);
1443 mdate = convert_timespec_to_time_t(mdate_ts);
1444 adate = convert_timespec_to_time_t(adate_ts);
1446 DEBUG(5,("get_lanman2_dir_entry: found %s fname=%s\n",
1451 dptr_DirCacheAdd(conn->dirptr, dname, curr_dirpos);
1461 nt_extmode = mode ? mode : FILE_ATTRIBUTE_NORMAL;
1463 switch (info_level) {
1464 case SMB_FIND_INFO_STANDARD:
1465 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_INFO_STANDARD\n"));
1466 if(requires_resume_key) {
1470 srv_put_dos_date2(p,0,create_date);
1471 srv_put_dos_date2(p,4,adate);
1472 srv_put_dos_date2(p,8,mdate);
1473 SIVAL(p,12,(uint32)file_size);
1474 SIVAL(p,16,(uint32)allocation_size);
1478 if (flags2 & FLAGS2_UNICODE_STRINGS) {
1479 p += ucs2_align(base_data, p, 0);
1481 len = srvstr_push(base_data, flags2, p,
1482 fname, PTR_DIFF(end_data, p),
1484 if (flags2 & FLAGS2_UNICODE_STRINGS) {
1486 SCVAL(nameptr, -1, len - 2);
1488 SCVAL(nameptr, -1, 0);
1492 SCVAL(nameptr, -1, len - 1);
1494 SCVAL(nameptr, -1, 0);
1500 case SMB_FIND_EA_SIZE:
1501 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_EA_SIZE\n"));
1502 if(requires_resume_key) {
1506 srv_put_dos_date2(p,0,create_date);
1507 srv_put_dos_date2(p,4,adate);
1508 srv_put_dos_date2(p,8,mdate);
1509 SIVAL(p,12,(uint32)file_size);
1510 SIVAL(p,16,(uint32)allocation_size);
1513 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1514 SIVAL(p,22,ea_size); /* Extended attributes */
1518 len = srvstr_push(base_data, flags2,
1519 p, fname, PTR_DIFF(end_data, p),
1520 STR_TERMINATE | STR_NOALIGN);
1521 if (flags2 & FLAGS2_UNICODE_STRINGS) {
1534 SCVAL(nameptr,0,len);
1536 SCVAL(p,0,0); p += 1; /* Extra zero byte ? - why.. */
1539 case SMB_FIND_EA_LIST:
1541 struct ea_list *file_list = NULL;
1544 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_EA_LIST\n"));
1548 if(requires_resume_key) {
1552 srv_put_dos_date2(p,0,create_date);
1553 srv_put_dos_date2(p,4,adate);
1554 srv_put_dos_date2(p,8,mdate);
1555 SIVAL(p,12,(uint32)file_size);
1556 SIVAL(p,16,(uint32)allocation_size);
1558 p += 22; /* p now points to the EA area. */
1560 file_list = get_ea_list_from_file(ctx, conn, NULL, pathreal, &ea_len);
1561 name_list = ea_list_union(name_list, file_list, &ea_len);
1563 /* We need to determine if this entry will fit in the space available. */
1564 /* Max string size is 255 bytes. */
1565 if (PTR_DIFF(p + 255 + ea_len,pdata) > space_remaining) {
1566 /* Move the dirptr back to prev_dirpos */
1567 dptr_SeekDir(conn->dirptr, prev_dirpos);
1568 *out_of_space = True;
1569 DEBUG(9,("get_lanman2_dir_entry: out of space\n"));
1570 return False; /* Not finished - just out of space */
1573 /* Push the ea_data followed by the name. */
1574 p += fill_ea_buffer(ctx, p, space_remaining, conn, name_list);
1576 len = srvstr_push(base_data, flags2,
1577 p + 1, fname, PTR_DIFF(end_data, p+1),
1578 STR_TERMINATE | STR_NOALIGN);
1579 if (flags2 & FLAGS2_UNICODE_STRINGS) {
1592 SCVAL(nameptr,0,len);
1594 SCVAL(p,0,0); p += 1; /* Extra zero byte ? - why.. */
1598 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
1599 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_BOTH_DIRECTORY_INFO\n"));
1600 was_8_3 = mangle_is_8_3(fname, True, conn->params);
1602 SIVAL(p,0,reskey); p += 4;
1603 put_long_date_timespec(p,create_date_ts); p += 8;
1604 put_long_date_timespec(p,adate_ts); p += 8;
1605 put_long_date_timespec(p,mdate_ts); p += 8;
1606 put_long_date_timespec(p,mdate_ts); p += 8;
1607 SOFF_T(p,0,file_size); p += 8;
1608 SOFF_T(p,0,allocation_size); p += 8;
1609 SIVAL(p,0,nt_extmode); p += 4;
1610 q = p; p += 4; /* q is placeholder for name length. */
1612 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1613 SIVAL(p,0,ea_size); /* Extended attributes */
1616 /* Clear the short name buffer. This is
1617 * IMPORTANT as not doing so will trigger
1618 * a Win2k client bug. JRA.
1620 if (!was_8_3 && check_mangled_names) {
1621 if (!name_to_8_3(fname,mangled_name,True,
1623 /* Error - mangle failed ! */
1624 memset(mangled_name,'\0',12);
1626 mangled_name[12] = 0;
1627 len = srvstr_push(base_data, flags2,
1628 p+2, mangled_name, 24,
1629 STR_UPPER|STR_UNICODE);
1631 memset(p + 2 + len,'\0',24 - len);
1638 len = srvstr_push(base_data, flags2, p,
1639 fname, PTR_DIFF(end_data, p),
1640 STR_TERMINATE_ASCII);
1643 SIVAL(p,0,0); /* Ensure any padding is null. */
1644 len = PTR_DIFF(p, pdata);
1645 len = (len + 3) & ~3;
1650 case SMB_FIND_FILE_DIRECTORY_INFO:
1651 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_DIRECTORY_INFO\n"));
1653 SIVAL(p,0,reskey); p += 4;
1654 put_long_date_timespec(p,create_date_ts); p += 8;
1655 put_long_date_timespec(p,adate_ts); p += 8;
1656 put_long_date_timespec(p,mdate_ts); p += 8;
1657 put_long_date_timespec(p,mdate_ts); p += 8;
1658 SOFF_T(p,0,file_size); p += 8;
1659 SOFF_T(p,0,allocation_size); p += 8;
1660 SIVAL(p,0,nt_extmode); p += 4;
1661 len = srvstr_push(base_data, flags2,
1662 p + 4, fname, PTR_DIFF(end_data, p+4),
1663 STR_TERMINATE_ASCII);
1666 SIVAL(p,0,0); /* Ensure any padding is null. */
1667 len = PTR_DIFF(p, pdata);
1668 len = (len + 3) & ~3;
1673 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
1674 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_FULL_DIRECTORY_INFO\n"));
1676 SIVAL(p,0,reskey); p += 4;
1677 put_long_date_timespec(p,create_date_ts); p += 8;
1678 put_long_date_timespec(p,adate_ts); p += 8;
1679 put_long_date_timespec(p,mdate_ts); p += 8;
1680 put_long_date_timespec(p,mdate_ts); p += 8;
1681 SOFF_T(p,0,file_size); p += 8;
1682 SOFF_T(p,0,allocation_size); p += 8;
1683 SIVAL(p,0,nt_extmode); p += 4;
1684 q = p; p += 4; /* q is placeholder for name length. */
1686 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1687 SIVAL(p,0,ea_size); /* Extended attributes */
1690 len = srvstr_push(base_data, flags2, p,
1691 fname, PTR_DIFF(end_data, p),
1692 STR_TERMINATE_ASCII);
1696 SIVAL(p,0,0); /* Ensure any padding is null. */
1697 len = PTR_DIFF(p, pdata);
1698 len = (len + 3) & ~3;
1703 case SMB_FIND_FILE_NAMES_INFO:
1704 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_NAMES_INFO\n"));
1706 SIVAL(p,0,reskey); p += 4;
1708 /* this must *not* be null terminated or w2k gets in a loop trying to set an
1709 acl on a dir (tridge) */
1710 len = srvstr_push(base_data, flags2, p,
1711 fname, PTR_DIFF(end_data, p),
1712 STR_TERMINATE_ASCII);
1715 SIVAL(p,0,0); /* Ensure any padding is null. */
1716 len = PTR_DIFF(p, pdata);
1717 len = (len + 3) & ~3;
1722 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
1723 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_ID_FULL_DIRECTORY_INFO\n"));
1725 SIVAL(p,0,reskey); p += 4;
1726 put_long_date_timespec(p,create_date_ts); p += 8;
1727 put_long_date_timespec(p,adate_ts); p += 8;
1728 put_long_date_timespec(p,mdate_ts); p += 8;
1729 put_long_date_timespec(p,mdate_ts); p += 8;
1730 SOFF_T(p,0,file_size); p += 8;
1731 SOFF_T(p,0,allocation_size); p += 8;
1732 SIVAL(p,0,nt_extmode); p += 4;
1733 q = p; p += 4; /* q is placeholder for name length. */
1735 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1736 SIVAL(p,0,ea_size); /* Extended attributes */
1739 SIVAL(p,0,0); p += 4; /* Unknown - reserved ? */
1740 SIVAL(p,0,sbuf.st_ino); p += 4; /* FileIndexLow */
1741 SIVAL(p,0,sbuf.st_dev); p += 4; /* FileIndexHigh */
1742 len = srvstr_push(base_data, flags2, p,
1743 fname, PTR_DIFF(end_data, p),
1744 STR_TERMINATE_ASCII);
1747 SIVAL(p,0,0); /* Ensure any padding is null. */
1748 len = PTR_DIFF(p, pdata);
1749 len = (len + 3) & ~3;
1754 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
1755 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_ID_BOTH_DIRECTORY_INFO\n"));
1756 was_8_3 = mangle_is_8_3(fname, True, conn->params);
1758 SIVAL(p,0,reskey); p += 4;
1759 put_long_date_timespec(p,create_date_ts); p += 8;
1760 put_long_date_timespec(p,adate_ts); p += 8;
1761 put_long_date_timespec(p,mdate_ts); p += 8;
1762 put_long_date_timespec(p,mdate_ts); p += 8;
1763 SOFF_T(p,0,file_size); p += 8;
1764 SOFF_T(p,0,allocation_size); p += 8;
1765 SIVAL(p,0,nt_extmode); p += 4;
1766 q = p; p += 4; /* q is placeholder for name length */
1768 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1769 SIVAL(p,0,ea_size); /* Extended attributes */
1772 /* Clear the short name buffer. This is
1773 * IMPORTANT as not doing so will trigger
1774 * a Win2k client bug. JRA.
1776 if (!was_8_3 && check_mangled_names) {
1777 if (!name_to_8_3(fname,mangled_name,True,
1779 /* Error - mangle failed ! */
1780 memset(mangled_name,'\0',12);
1782 mangled_name[12] = 0;
1783 len = srvstr_push(base_data, flags2,
1784 p+2, mangled_name, 24,
1785 STR_UPPER|STR_UNICODE);
1788 memset(p + 2 + len,'\0',24 - len);
1795 SSVAL(p,0,0); p += 2; /* Reserved ? */
1796 SIVAL(p,0,sbuf.st_ino); p += 4; /* FileIndexLow */
1797 SIVAL(p,0,sbuf.st_dev); p += 4; /* FileIndexHigh */
1798 len = srvstr_push(base_data, flags2, p,
1799 fname, PTR_DIFF(end_data, p),
1800 STR_TERMINATE_ASCII);
1803 SIVAL(p,0,0); /* Ensure any padding is null. */
1804 len = PTR_DIFF(p, pdata);
1805 len = (len + 3) & ~3;
1810 /* CIFS UNIX Extension. */
1812 case SMB_FIND_FILE_UNIX:
1813 case SMB_FIND_FILE_UNIX_INFO2:
1815 SIVAL(p,0,reskey); p+= 4; /* Used for continuing search. */
1817 /* Begin of SMB_QUERY_FILE_UNIX_BASIC */
1819 if (info_level == SMB_FIND_FILE_UNIX) {
1820 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_UNIX\n"));
1821 p = store_file_unix_basic(conn, p,
1823 len = srvstr_push(base_data, flags2, p,
1824 fname, PTR_DIFF(end_data, p),
1827 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_UNIX_INFO2\n"));
1828 p = store_file_unix_basic_info2(conn, p,
1832 len = srvstr_push(base_data, flags2, p, fname,
1833 PTR_DIFF(end_data, p), 0);
1834 SIVAL(nameptr, 0, len);
1838 SIVAL(p,0,0); /* Ensure any padding is null. */
1840 len = PTR_DIFF(p, pdata);
1841 len = (len + 3) & ~3;
1842 SIVAL(pdata,0,len); /* Offset from this structure to the beginning of the next one */
1844 /* End of SMB_QUERY_FILE_UNIX_BASIC */
1854 if (PTR_DIFF(p,pdata) > space_remaining) {
1855 /* Move the dirptr back to prev_dirpos */
1856 dptr_SeekDir(conn->dirptr, prev_dirpos);
1857 *out_of_space = True;
1858 DEBUG(9,("get_lanman2_dir_entry: out of space\n"));
1859 return False; /* Not finished - just out of space */
1862 /* Setup the last entry pointer, as an offset from base_data */
1863 *last_entry_off = PTR_DIFF(last_entry_ptr,base_data);
1864 /* Advance the data pointer to the next slot */
1870 /****************************************************************************
1871 Reply to a TRANS2_FINDFIRST.
1872 ****************************************************************************/
1874 static void call_trans2findfirst(connection_struct *conn,
1875 struct smb_request *req,
1876 char **pparams, int total_params,
1877 char **ppdata, int total_data,
1878 unsigned int max_data_bytes)
1880 /* We must be careful here that we don't return more than the
1881 allowed number of data bytes. If this means returning fewer than
1882 maxentries then so be it. We assume that the redirector has
1883 enough room for the fixed number of parameter bytes it has
1885 struct smb_filename *smb_dname = NULL;
1886 char *params = *pparams;
1887 char *pdata = *ppdata;
1891 uint16 findfirst_flags;
1892 bool close_after_first;
1894 bool requires_resume_key;
1896 char *directory = NULL;
1899 int last_entry_off=0;
1903 bool finished = False;
1904 bool dont_descend = False;
1905 bool out_of_space = False;
1906 int space_remaining;
1907 bool mask_contains_wcard = False;
1908 struct ea_list *ea_list = NULL;
1909 NTSTATUS ntstatus = NT_STATUS_OK;
1910 bool ask_sharemode = lp_parm_bool(SNUM(conn), "smbd", "search ask sharemode", true);
1911 TALLOC_CTX *ctx = talloc_tos();
1913 if (total_params < 13) {
1914 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
1918 dirtype = SVAL(params,0);
1919 maxentries = SVAL(params,2);
1920 findfirst_flags = SVAL(params,4);
1921 close_after_first = (findfirst_flags & FLAG_TRANS2_FIND_CLOSE);
1922 close_if_end = (findfirst_flags & FLAG_TRANS2_FIND_CLOSE_IF_END);
1923 requires_resume_key = (findfirst_flags & FLAG_TRANS2_FIND_REQUIRE_RESUME);
1924 info_level = SVAL(params,6);
1926 DEBUG(3,("call_trans2findfirst: dirtype = %x, maxentries = %d, close_after_first=%d, \
1927 close_if_end = %d requires_resume_key = %d level = 0x%x, max_data_bytes = %d\n",
1928 (unsigned int)dirtype, maxentries, close_after_first, close_if_end, requires_resume_key,
1929 info_level, max_data_bytes));
1932 /* W2K3 seems to treat zero as 1. */
1936 switch (info_level) {
1937 case SMB_FIND_INFO_STANDARD:
1938 case SMB_FIND_EA_SIZE:
1939 case SMB_FIND_EA_LIST:
1940 case SMB_FIND_FILE_DIRECTORY_INFO:
1941 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
1942 case SMB_FIND_FILE_NAMES_INFO:
1943 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
1944 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
1945 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
1947 case SMB_FIND_FILE_UNIX:
1948 case SMB_FIND_FILE_UNIX_INFO2:
1949 /* Always use filesystem for UNIX mtime query. */
1950 ask_sharemode = false;
1951 if (!lp_unix_extensions()) {
1952 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
1957 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
1961 srvstr_get_path_wcard(ctx, params, req->flags2, &directory,
1962 params+12, total_params - 12,
1963 STR_TERMINATE, &ntstatus, &mask_contains_wcard);
1964 if (!NT_STATUS_IS_OK(ntstatus)) {
1965 reply_nterror(req, ntstatus);
1969 ntstatus = resolve_dfspath_wcard(ctx, conn,
1970 req->flags2 & FLAGS2_DFS_PATHNAMES,
1973 &mask_contains_wcard);
1974 if (!NT_STATUS_IS_OK(ntstatus)) {
1975 if (NT_STATUS_EQUAL(ntstatus,NT_STATUS_PATH_NOT_COVERED)) {
1976 reply_botherror(req, NT_STATUS_PATH_NOT_COVERED,
1977 ERRSRV, ERRbadpath);
1980 reply_nterror(req, ntstatus);
1984 ntstatus = unix_convert(ctx, conn, directory, &smb_dname,
1985 (UCF_SAVE_LCOMP | UCF_ALLOW_WCARD_LCOMP));
1986 if (!NT_STATUS_IS_OK(ntstatus)) {
1987 reply_nterror(req, ntstatus);
1991 mask = smb_dname->original_lcomp;
1993 ntstatus = get_full_smb_filename(ctx, smb_dname, &directory);
1994 TALLOC_FREE(smb_dname);
1995 if (!NT_STATUS_IS_OK(ntstatus)) {
1996 reply_nterror(req, ntstatus);
2000 ntstatus = check_name(conn, directory);
2001 if (!NT_STATUS_IS_OK(ntstatus)) {
2002 reply_nterror(req, ntstatus);
2006 p = strrchr_m(directory,'/');
2008 /* Windows and OS/2 systems treat search on the root '\' as if it were '\*' */
2009 if((directory[0] == '.') && (directory[1] == '\0')) {
2010 mask = talloc_strdup(ctx,"*");
2012 reply_nterror(req, NT_STATUS_NO_MEMORY);
2015 mask_contains_wcard = True;
2017 directory = talloc_strdup(talloc_tos(), "./");
2019 reply_nterror(req, NT_STATUS_NO_MEMORY);
2026 DEBUG(5,("dir=%s, mask = %s\n",directory, mask));
2028 if (info_level == SMB_FIND_EA_LIST) {
2031 if (total_data < 4) {
2032 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2036 ea_size = IVAL(pdata,0);
2037 if (ea_size != total_data) {
2038 DEBUG(4,("call_trans2findfirst: Rejecting EA request with incorrect \
2039 total_data=%u (should be %u)\n", (unsigned int)total_data, (unsigned int)IVAL(pdata,0) ));
2040 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2044 if (!lp_ea_support(SNUM(conn))) {
2045 reply_doserror(req, ERRDOS, ERReasnotsupported);
2049 /* Pull out the list of names. */
2050 ea_list = read_ea_name_list(ctx, pdata + 4, ea_size - 4);
2052 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2057 *ppdata = (char *)SMB_REALLOC(
2058 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2059 if(*ppdata == NULL ) {
2060 reply_nterror(req, NT_STATUS_NO_MEMORY);
2064 data_end = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2066 /* Realloc the params space */
2067 *pparams = (char *)SMB_REALLOC(*pparams, 10);
2068 if (*pparams == NULL) {
2069 reply_nterror(req, NT_STATUS_NO_MEMORY);
2074 /* Save the wildcard match and attribs we are using on this directory -
2075 needed as lanman2 assumes these are being saved between calls */
2077 ntstatus = dptr_create(conn,
2083 mask_contains_wcard,
2087 if (!NT_STATUS_IS_OK(ntstatus)) {
2088 reply_nterror(req, ntstatus);
2092 dptr_num = dptr_dnum(conn->dirptr);
2093 DEBUG(4,("dptr_num is %d, wcard = %s, attr = %d\n", dptr_num, mask, dirtype));
2095 /* Initialize per TRANS2_FIND_FIRST operation data */
2096 dptr_init_search_op(conn->dirptr);
2098 /* We don't need to check for VOL here as this is returned by
2099 a different TRANS2 call. */
2101 DEBUG(8,("dirpath=<%s> dontdescend=<%s>\n", conn->dirpath,lp_dontdescend(SNUM(conn))));
2102 if (in_list(conn->dirpath,lp_dontdescend(SNUM(conn)),conn->case_sensitive))
2103 dont_descend = True;
2106 space_remaining = max_data_bytes;
2107 out_of_space = False;
2109 for (i=0;(i<maxentries) && !finished && !out_of_space;i++) {
2110 bool got_exact_match = False;
2112 /* this is a heuristic to avoid seeking the dirptr except when
2113 absolutely necessary. It allows for a filename of about 40 chars */
2114 if (space_remaining < DIRLEN_GUESS && numentries > 0) {
2115 out_of_space = True;
2118 finished = !get_lanman2_dir_entry(ctx,
2121 mask,dirtype,info_level,
2122 requires_resume_key,dont_descend,
2125 space_remaining, &out_of_space,
2127 &last_entry_off, ea_list);
2130 if (finished && out_of_space)
2133 if (!finished && !out_of_space)
2137 * As an optimisation if we know we aren't looking
2138 * for a wildcard name (ie. the name matches the wildcard exactly)
2139 * then we can finish on any (first) match.
2140 * This speeds up large directory searches. JRA.
2146 /* Ensure space_remaining never goes -ve. */
2147 if (PTR_DIFF(p,pdata) > max_data_bytes) {
2148 space_remaining = 0;
2149 out_of_space = true;
2151 space_remaining = max_data_bytes - PTR_DIFF(p,pdata);
2155 /* Check if we can close the dirptr */
2156 if(close_after_first || (finished && close_if_end)) {
2157 DEBUG(5,("call_trans2findfirst - (2) closing dptr_num %d\n", dptr_num));
2158 dptr_close(&dptr_num);
2162 * If there are no matching entries we must return ERRDOS/ERRbadfile -
2163 * from observation of NT. NB. This changes to ERRDOS,ERRnofiles if
2164 * the protocol level is less than NT1. Tested with smbclient. JRA.
2165 * This should fix the OS/2 client bug #2335.
2168 if(numentries == 0) {
2169 dptr_close(&dptr_num);
2170 if (Protocol < PROTOCOL_NT1) {
2171 reply_doserror(req, ERRDOS, ERRnofiles);
2174 reply_botherror(req, NT_STATUS_NO_SUCH_FILE,
2175 ERRDOS, ERRbadfile);
2180 /* At this point pdata points to numentries directory entries. */
2182 /* Set up the return parameter block */
2183 SSVAL(params,0,dptr_num);
2184 SSVAL(params,2,numentries);
2185 SSVAL(params,4,finished);
2186 SSVAL(params,6,0); /* Never an EA error */
2187 SSVAL(params,8,last_entry_off);
2189 send_trans2_replies(conn, req, params, 10, pdata, PTR_DIFF(p,pdata),
2192 if ((! *directory) && dptr_path(dptr_num)) {
2193 directory = talloc_strdup(talloc_tos(),dptr_path(dptr_num));
2195 reply_nterror(req, NT_STATUS_NO_MEMORY);
2199 DEBUG( 4, ( "%s mask=%s directory=%s dirtype=%d numentries=%d\n",
2200 smb_fn_name(req->cmd),
2201 mask, directory, dirtype, numentries ) );
2204 * Force a name mangle here to ensure that the
2205 * mask as an 8.3 name is top of the mangled cache.
2206 * The reasons for this are subtle. Don't remove
2207 * this code unless you know what you are doing
2208 * (see PR#13758). JRA.
2211 if(!mangle_is_8_3_wildcards( mask, False, conn->params)) {
2212 char mangled_name[13];
2213 name_to_8_3(mask, mangled_name, True, conn->params);
2219 /****************************************************************************
2220 Reply to a TRANS2_FINDNEXT.
2221 ****************************************************************************/
2223 static void call_trans2findnext(connection_struct *conn,
2224 struct smb_request *req,
2225 char **pparams, int total_params,
2226 char **ppdata, int total_data,
2227 unsigned int max_data_bytes)
2229 /* We must be careful here that we don't return more than the
2230 allowed number of data bytes. If this means returning fewer than
2231 maxentries then so be it. We assume that the redirector has
2232 enough room for the fixed number of parameter bytes it has
2234 char *params = *pparams;
2235 char *pdata = *ppdata;
2241 uint16 findnext_flags;
2242 bool close_after_request;
2244 bool requires_resume_key;
2246 bool mask_contains_wcard = False;
2247 char *resume_name = NULL;
2248 const char *mask = NULL;
2249 const char *directory = NULL;
2253 int i, last_entry_off=0;
2254 bool finished = False;
2255 bool dont_descend = False;
2256 bool out_of_space = False;
2257 int space_remaining;
2258 struct ea_list *ea_list = NULL;
2259 NTSTATUS ntstatus = NT_STATUS_OK;
2260 bool ask_sharemode = lp_parm_bool(SNUM(conn), "smbd", "search ask sharemode", true);
2261 TALLOC_CTX *ctx = talloc_tos();
2263 if (total_params < 13) {
2264 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2268 dptr_num = SVAL(params,0);
2269 maxentries = SVAL(params,2);
2270 info_level = SVAL(params,4);
2271 resume_key = IVAL(params,6);
2272 findnext_flags = SVAL(params,10);
2273 close_after_request = (findnext_flags & FLAG_TRANS2_FIND_CLOSE);
2274 close_if_end = (findnext_flags & FLAG_TRANS2_FIND_CLOSE_IF_END);
2275 requires_resume_key = (findnext_flags & FLAG_TRANS2_FIND_REQUIRE_RESUME);
2276 continue_bit = (findnext_flags & FLAG_TRANS2_FIND_CONTINUE);
2278 srvstr_get_path_wcard(ctx, params, req->flags2, &resume_name,
2280 total_params - 12, STR_TERMINATE, &ntstatus,
2281 &mask_contains_wcard);
2282 if (!NT_STATUS_IS_OK(ntstatus)) {
2283 /* Win9x or OS/2 can send a resume name of ".." or ".". This will cause the parser to
2284 complain (it thinks we're asking for the directory above the shared
2285 path or an invalid name). Catch this as the resume name is only compared, never used in
2286 a file access. JRA. */
2287 srvstr_pull_talloc(ctx, params, req->flags2,
2288 &resume_name, params+12,
2292 if (!resume_name || !(ISDOT(resume_name) || ISDOTDOT(resume_name))) {
2293 reply_nterror(req, ntstatus);
2298 DEBUG(3,("call_trans2findnext: dirhandle = %d, max_data_bytes = %d, maxentries = %d, \
2299 close_after_request=%d, close_if_end = %d requires_resume_key = %d \
2300 resume_key = %d resume name = %s continue=%d level = %d\n",
2301 dptr_num, max_data_bytes, maxentries, close_after_request, close_if_end,
2302 requires_resume_key, resume_key, resume_name, continue_bit, info_level));
2305 /* W2K3 seems to treat zero as 1. */
2309 switch (info_level) {
2310 case SMB_FIND_INFO_STANDARD:
2311 case SMB_FIND_EA_SIZE:
2312 case SMB_FIND_EA_LIST:
2313 case SMB_FIND_FILE_DIRECTORY_INFO:
2314 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
2315 case SMB_FIND_FILE_NAMES_INFO:
2316 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
2317 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
2318 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
2320 case SMB_FIND_FILE_UNIX:
2321 case SMB_FIND_FILE_UNIX_INFO2:
2322 /* Always use filesystem for UNIX mtime query. */
2323 ask_sharemode = false;
2324 if (!lp_unix_extensions()) {
2325 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2330 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2334 if (info_level == SMB_FIND_EA_LIST) {
2337 if (total_data < 4) {
2338 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2342 ea_size = IVAL(pdata,0);
2343 if (ea_size != total_data) {
2344 DEBUG(4,("call_trans2findnext: Rejecting EA request with incorrect \
2345 total_data=%u (should be %u)\n", (unsigned int)total_data, (unsigned int)IVAL(pdata,0) ));
2346 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2350 if (!lp_ea_support(SNUM(conn))) {
2351 reply_doserror(req, ERRDOS, ERReasnotsupported);
2355 /* Pull out the list of names. */
2356 ea_list = read_ea_name_list(ctx, pdata + 4, ea_size - 4);
2358 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2363 *ppdata = (char *)SMB_REALLOC(
2364 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2365 if(*ppdata == NULL) {
2366 reply_nterror(req, NT_STATUS_NO_MEMORY);
2371 data_end = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2373 /* Realloc the params space */
2374 *pparams = (char *)SMB_REALLOC(*pparams, 6*SIZEOFWORD);
2375 if(*pparams == NULL ) {
2376 reply_nterror(req, NT_STATUS_NO_MEMORY);
2382 /* Check that the dptr is valid */
2383 if(!(conn->dirptr = dptr_fetch_lanman2(dptr_num))) {
2384 reply_doserror(req, ERRDOS, ERRnofiles);
2388 string_set(&conn->dirpath,dptr_path(dptr_num));
2390 /* Get the wildcard mask from the dptr */
2391 if((p = dptr_wcard(dptr_num))== NULL) {
2392 DEBUG(2,("dptr_num %d has no wildcard\n", dptr_num));
2393 reply_doserror(req, ERRDOS, ERRnofiles);
2398 directory = conn->dirpath;
2400 /* Get the attr mask from the dptr */
2401 dirtype = dptr_attr(dptr_num);
2403 DEBUG(3,("dptr_num is %d, mask = %s, attr = %x, dirptr=(0x%lX,%ld)\n",
2404 dptr_num, mask, dirtype,
2406 dptr_TellDir(conn->dirptr)));
2408 /* Initialize per TRANS2_FIND_NEXT operation data */
2409 dptr_init_search_op(conn->dirptr);
2411 /* We don't need to check for VOL here as this is returned by
2412 a different TRANS2 call. */
2414 DEBUG(8,("dirpath=<%s> dontdescend=<%s>\n",conn->dirpath,lp_dontdescend(SNUM(conn))));
2415 if (in_list(conn->dirpath,lp_dontdescend(SNUM(conn)),conn->case_sensitive))
2416 dont_descend = True;
2419 space_remaining = max_data_bytes;
2420 out_of_space = False;
2423 * Seek to the correct position. We no longer use the resume key but
2424 * depend on the last file name instead.
2427 if(*resume_name && !continue_bit) {
2430 long current_pos = 0;
2432 * Remember, name_to_8_3 is called by
2433 * get_lanman2_dir_entry(), so the resume name
2434 * could be mangled. Ensure we check the unmangled name.
2437 if (mangle_is_mangled(resume_name, conn->params)) {
2438 char *new_resume_name = NULL;
2439 mangle_lookup_name_from_8_3(ctx,
2443 if (new_resume_name) {
2444 resume_name = new_resume_name;
2449 * Fix for NT redirector problem triggered by resume key indexes
2450 * changing between directory scans. We now return a resume key of 0
2451 * and instead look for the filename to continue from (also given
2452 * to us by NT/95/smbfs/smbclient). If no other scans have been done between the
2453 * findfirst/findnext (as is usual) then the directory pointer
2454 * should already be at the correct place.
2457 finished = !dptr_SearchDir(conn->dirptr, resume_name, ¤t_pos, &st);
2458 } /* end if resume_name && !continue_bit */
2460 for (i=0;(i<(int)maxentries) && !finished && !out_of_space ;i++) {
2461 bool got_exact_match = False;
2463 /* this is a heuristic to avoid seeking the dirptr except when
2464 absolutely necessary. It allows for a filename of about 40 chars */
2465 if (space_remaining < DIRLEN_GUESS && numentries > 0) {
2466 out_of_space = True;
2469 finished = !get_lanman2_dir_entry(ctx,
2472 mask,dirtype,info_level,
2473 requires_resume_key,dont_descend,
2476 space_remaining, &out_of_space,
2478 &last_entry_off, ea_list);
2481 if (finished && out_of_space)
2484 if (!finished && !out_of_space)
2488 * As an optimisation if we know we aren't looking
2489 * for a wildcard name (ie. the name matches the wildcard exactly)
2490 * then we can finish on any (first) match.
2491 * This speeds up large directory searches. JRA.
2497 space_remaining = max_data_bytes - PTR_DIFF(p,pdata);
2500 DEBUG( 3, ( "%s mask=%s directory=%s dirtype=%d numentries=%d\n",
2501 smb_fn_name(req->cmd),
2502 mask, directory, dirtype, numentries ) );
2504 /* Check if we can close the dirptr */
2505 if(close_after_request || (finished && close_if_end)) {
2506 DEBUG(5,("call_trans2findnext: closing dptr_num = %d\n", dptr_num));
2507 dptr_close(&dptr_num); /* This frees up the saved mask */
2510 /* Set up the return parameter block */
2511 SSVAL(params,0,numentries);
2512 SSVAL(params,2,finished);
2513 SSVAL(params,4,0); /* Never an EA error */
2514 SSVAL(params,6,last_entry_off);
2516 send_trans2_replies(conn, req, params, 8, pdata, PTR_DIFF(p,pdata),
2522 unsigned char *create_volume_objectid(connection_struct *conn, unsigned char objid[16])
2524 E_md4hash(lp_servicename(SNUM(conn)),objid);
2528 static void samba_extended_info_version(struct smb_extended_info *extended_info)
2530 SMB_ASSERT(extended_info != NULL);
2532 extended_info->samba_magic = SAMBA_EXTENDED_INFO_MAGIC;
2533 extended_info->samba_version = ((SAMBA_VERSION_MAJOR & 0xff) << 24)
2534 | ((SAMBA_VERSION_MINOR & 0xff) << 16)
2535 | ((SAMBA_VERSION_RELEASE & 0xff) << 8);
2536 #ifdef SAMBA_VERSION_REVISION
2537 extended_info->samba_version |= (tolower(*SAMBA_VERSION_REVISION) - 'a' + 1) & 0xff;
2539 extended_info->samba_subversion = 0;
2540 #ifdef SAMBA_VERSION_RC_RELEASE
2541 extended_info->samba_subversion |= (SAMBA_VERSION_RC_RELEASE & 0xff) << 24;
2543 #ifdef SAMBA_VERSION_PRE_RELEASE
2544 extended_info->samba_subversion |= (SAMBA_VERSION_PRE_RELEASE & 0xff) << 16;
2547 #ifdef SAMBA_VERSION_VENDOR_PATCH
2548 extended_info->samba_subversion |= (SAMBA_VERSION_VENDOR_PATCH & 0xffff);
2550 extended_info->samba_gitcommitdate = 0;
2551 #ifdef SAMBA_VERSION_GIT_COMMIT_TIME
2552 unix_to_nt_time(&extended_info->samba_gitcommitdate, SAMBA_VERSION_GIT_COMMIT_TIME);
2555 memset(extended_info->samba_version_string, 0,
2556 sizeof(extended_info->samba_version_string));
2558 snprintf (extended_info->samba_version_string,
2559 sizeof(extended_info->samba_version_string),
2560 "%s", samba_version_string());
2563 /****************************************************************************
2564 Reply to a TRANS2_QFSINFO (query filesystem info).
2565 ****************************************************************************/
2567 static void call_trans2qfsinfo(connection_struct *conn,
2568 struct smb_request *req,
2569 char **pparams, int total_params,
2570 char **ppdata, int total_data,
2571 unsigned int max_data_bytes)
2573 char *pdata, *end_data;
2574 char *params = *pparams;
2578 const char *vname = volume_label(SNUM(conn));
2579 int snum = SNUM(conn);
2580 char *fstype = lp_fstype(SNUM(conn));
2581 uint32 additional_flags = 0;
2583 if (total_params < 2) {
2584 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2588 info_level = SVAL(params,0);
2591 if (info_level != SMB_QUERY_CIFS_UNIX_INFO) {
2592 DEBUG(0,("call_trans2qfsinfo: not an allowed "
2593 "info level (0x%x) on IPC$.\n",
2594 (unsigned int)info_level));
2595 reply_nterror(req, NT_STATUS_ACCESS_DENIED);
2600 if (ENCRYPTION_REQUIRED(conn) && !req->encrypted) {
2601 if (info_level != SMB_QUERY_CIFS_UNIX_INFO) {
2602 DEBUG(0,("call_trans2qfsinfo: encryption required "
2603 "and info level 0x%x sent.\n",
2604 (unsigned int)info_level));
2605 exit_server_cleanly("encryption required "
2611 DEBUG(3,("call_trans2qfsinfo: level = %d\n", info_level));
2613 if(SMB_VFS_STAT(conn,".",&st)!=0) {
2614 DEBUG(2,("call_trans2qfsinfo: stat of . failed (%s)\n", strerror(errno)));
2615 reply_doserror(req, ERRSRV, ERRinvdevice);
2619 *ppdata = (char *)SMB_REALLOC(
2620 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2621 if (*ppdata == NULL ) {
2622 reply_nterror(req, NT_STATUS_NO_MEMORY);
2627 memset((char *)pdata,'\0',max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2628 end_data = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2630 switch (info_level) {
2631 case SMB_INFO_ALLOCATION:
2633 uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2635 if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2636 reply_unixerror(req, ERRHRD, ERRgeneral);
2640 block_size = lp_block_size(snum);
2641 if (bsize < block_size) {
2642 uint64_t factor = block_size/bsize;
2647 if (bsize > block_size) {
2648 uint64_t factor = bsize/block_size;
2653 bytes_per_sector = 512;
2654 sectors_per_unit = bsize/bytes_per_sector;
2656 DEBUG(5,("call_trans2qfsinfo : SMB_INFO_ALLOCATION id=%x, bsize=%u, cSectorUnit=%u, \
2657 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)st.st_dev, (unsigned int)bsize, (unsigned int)sectors_per_unit,
2658 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2660 SIVAL(pdata,l1_idFileSystem,st.st_dev);
2661 SIVAL(pdata,l1_cSectorUnit,sectors_per_unit);
2662 SIVAL(pdata,l1_cUnit,dsize);
2663 SIVAL(pdata,l1_cUnitAvail,dfree);
2664 SSVAL(pdata,l1_cbSector,bytes_per_sector);
2668 case SMB_INFO_VOLUME:
2669 /* Return volume name */
2671 * Add volume serial number - hash of a combination of
2672 * the called hostname and the service name.
2674 SIVAL(pdata,0,str_checksum(lp_servicename(snum)) ^ (str_checksum(get_local_machine_name())<<16) );
2676 * Win2k3 and previous mess this up by sending a name length
2677 * one byte short. I believe only older clients (OS/2 Win9x) use
2678 * this call so try fixing this by adding a terminating null to
2679 * the pushed string. The change here was adding the STR_TERMINATE. JRA.
2683 pdata+l2_vol_szVolLabel, vname,
2684 PTR_DIFF(end_data, pdata+l2_vol_szVolLabel),
2685 STR_NOALIGN|STR_TERMINATE);
2686 SCVAL(pdata,l2_vol_cch,len);
2687 data_len = l2_vol_szVolLabel + len;
2688 DEBUG(5,("call_trans2qfsinfo : time = %x, namelen = %d, name = %s\n",
2689 (unsigned)st.st_ctime, len, vname));
2692 case SMB_QUERY_FS_ATTRIBUTE_INFO:
2693 case SMB_FS_ATTRIBUTE_INFORMATION:
2695 additional_flags = 0;
2696 #if defined(HAVE_SYS_QUOTAS)
2697 additional_flags |= FILE_VOLUME_QUOTAS;
2700 if(lp_nt_acl_support(SNUM(conn))) {
2701 additional_flags |= FILE_PERSISTENT_ACLS;
2704 /* Capabilities are filled in at connection time through STATVFS call */
2705 additional_flags |= conn->fs_capabilities;
2707 SIVAL(pdata,0,FILE_CASE_PRESERVED_NAMES|FILE_CASE_SENSITIVE_SEARCH|
2708 FILE_SUPPORTS_OBJECT_IDS|FILE_UNICODE_ON_DISK|
2709 additional_flags); /* FS ATTRIBUTES */
2711 SIVAL(pdata,4,255); /* Max filename component length */
2712 /* NOTE! the fstype must *not* be null terminated or win98 won't recognise it
2713 and will think we can't do long filenames */
2714 len = srvstr_push(pdata, req->flags2, pdata+12, fstype,
2715 PTR_DIFF(end_data, pdata+12),
2718 data_len = 12 + len;
2721 case SMB_QUERY_FS_LABEL_INFO:
2722 case SMB_FS_LABEL_INFORMATION:
2723 len = srvstr_push(pdata, req->flags2, pdata+4, vname,
2724 PTR_DIFF(end_data, pdata+4), 0);
2729 case SMB_QUERY_FS_VOLUME_INFO:
2730 case SMB_FS_VOLUME_INFORMATION:
2733 * Add volume serial number - hash of a combination of
2734 * the called hostname and the service name.
2736 SIVAL(pdata,8,str_checksum(lp_servicename(snum)) ^
2737 (str_checksum(get_local_machine_name())<<16));
2739 /* Max label len is 32 characters. */
2740 len = srvstr_push(pdata, req->flags2, pdata+18, vname,
2741 PTR_DIFF(end_data, pdata+18),
2743 SIVAL(pdata,12,len);
2746 DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_VOLUME_INFO namelen = %d, vol=%s serv=%s\n",
2747 (int)strlen(vname),vname, lp_servicename(snum)));
2750 case SMB_QUERY_FS_SIZE_INFO:
2751 case SMB_FS_SIZE_INFORMATION:
2753 uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2755 if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2756 reply_unixerror(req, ERRHRD, ERRgeneral);
2759 block_size = lp_block_size(snum);
2760 if (bsize < block_size) {
2761 uint64_t factor = block_size/bsize;
2766 if (bsize > block_size) {
2767 uint64_t factor = bsize/block_size;
2772 bytes_per_sector = 512;
2773 sectors_per_unit = bsize/bytes_per_sector;
2774 DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_SIZE_INFO bsize=%u, cSectorUnit=%u, \
2775 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)bsize, (unsigned int)sectors_per_unit,
2776 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2777 SBIG_UINT(pdata,0,dsize);
2778 SBIG_UINT(pdata,8,dfree);
2779 SIVAL(pdata,16,sectors_per_unit);
2780 SIVAL(pdata,20,bytes_per_sector);
2784 case SMB_FS_FULL_SIZE_INFORMATION:
2786 uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2788 if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2789 reply_unixerror(req, ERRHRD, ERRgeneral);
2792 block_size = lp_block_size(snum);
2793 if (bsize < block_size) {
2794 uint64_t factor = block_size/bsize;
2799 if (bsize > block_size) {
2800 uint64_t factor = bsize/block_size;
2805 bytes_per_sector = 512;
2806 sectors_per_unit = bsize/bytes_per_sector;
2807 DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_FULL_SIZE_INFO bsize=%u, cSectorUnit=%u, \
2808 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)bsize, (unsigned int)sectors_per_unit,
2809 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2810 SBIG_UINT(pdata,0,dsize); /* Total Allocation units. */
2811 SBIG_UINT(pdata,8,dfree); /* Caller available allocation units. */
2812 SBIG_UINT(pdata,16,dfree); /* Actual available allocation units. */
2813 SIVAL(pdata,24,sectors_per_unit); /* Sectors per allocation unit. */
2814 SIVAL(pdata,28,bytes_per_sector); /* Bytes per sector. */
2818 case SMB_QUERY_FS_DEVICE_INFO:
2819 case SMB_FS_DEVICE_INFORMATION:
2821 SIVAL(pdata,0,0); /* dev type */
2822 SIVAL(pdata,4,0); /* characteristics */
2825 #ifdef HAVE_SYS_QUOTAS
2826 case SMB_FS_QUOTA_INFORMATION:
2828 * what we have to send --metze:
2830 * Unknown1: 24 NULL bytes
2831 * Soft Quota Treshold: 8 bytes seems like uint64_t or so
2832 * Hard Quota Limit: 8 bytes seems like uint64_t or so
2833 * Quota Flags: 2 byte :
2834 * Unknown3: 6 NULL bytes
2838 * details for Quota Flags:
2840 * 0x0020 Log Limit: log if the user exceeds his Hard Quota
2841 * 0x0010 Log Warn: log if the user exceeds his Soft Quota
2842 * 0x0002 Deny Disk: deny disk access when the user exceeds his Hard Quota
2843 * 0x0001 Enable Quotas: enable quota for this fs
2847 /* we need to fake up a fsp here,
2848 * because its not send in this call
2851 SMB_NTQUOTA_STRUCT quotas;
2854 ZERO_STRUCT(quotas);
2860 if (conn->server_info->utok.uid != 0) {
2861 DEBUG(0,("set_user_quota: access_denied "
2862 "service [%s] user [%s]\n",
2863 lp_servicename(SNUM(conn)),
2864 conn->server_info->unix_name));
2865 reply_doserror(req, ERRDOS, ERRnoaccess);
2869 if (vfs_get_ntquota(&fsp, SMB_USER_FS_QUOTA_TYPE, NULL, "as)!=0) {
2870 DEBUG(0,("vfs_get_ntquota() failed for service [%s]\n",lp_servicename(SNUM(conn))));
2871 reply_doserror(req, ERRSRV, ERRerror);
2877 DEBUG(10,("SMB_FS_QUOTA_INFORMATION: for service [%s]\n",lp_servicename(SNUM(conn))));
2879 /* Unknown1 24 NULL bytes*/
2880 SBIG_UINT(pdata,0,(uint64_t)0);
2881 SBIG_UINT(pdata,8,(uint64_t)0);
2882 SBIG_UINT(pdata,16,(uint64_t)0);
2884 /* Default Soft Quota 8 bytes */
2885 SBIG_UINT(pdata,24,quotas.softlim);
2887 /* Default Hard Quota 8 bytes */
2888 SBIG_UINT(pdata,32,quotas.hardlim);
2890 /* Quota flag 2 bytes */
2891 SSVAL(pdata,40,quotas.qflags);
2893 /* Unknown3 6 NULL bytes */
2899 #endif /* HAVE_SYS_QUOTAS */
2900 case SMB_FS_OBJECTID_INFORMATION:
2902 unsigned char objid[16];
2903 struct smb_extended_info extended_info;
2904 memcpy(pdata,create_volume_objectid(conn, objid),16);
2905 samba_extended_info_version (&extended_info);
2906 SIVAL(pdata,16,extended_info.samba_magic);
2907 SIVAL(pdata,20,extended_info.samba_version);
2908 SIVAL(pdata,24,extended_info.samba_subversion);
2909 SBIG_UINT(pdata,28,extended_info.samba_gitcommitdate);
2910 memcpy(pdata+36,extended_info.samba_version_string,28);
2916 * Query the version and capabilities of the CIFS UNIX extensions
2920 case SMB_QUERY_CIFS_UNIX_INFO:
2922 bool large_write = lp_min_receive_file_size() &&
2923 !srv_is_signing_active(smbd_server_conn);
2924 bool large_read = !srv_is_signing_active(smbd_server_conn);
2925 int encrypt_caps = 0;
2927 if (!lp_unix_extensions()) {
2928 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2932 switch (conn->encrypt_level) {
2938 encrypt_caps = CIFS_UNIX_TRANSPORT_ENCRYPTION_CAP;
2941 encrypt_caps = CIFS_UNIX_TRANSPORT_ENCRYPTION_CAP|
2942 CIFS_UNIX_TRANSPORT_ENCRYPTION_MANDATORY_CAP;
2943 large_write = false;
2949 SSVAL(pdata,0,CIFS_UNIX_MAJOR_VERSION);
2950 SSVAL(pdata,2,CIFS_UNIX_MINOR_VERSION);
2952 /* We have POSIX ACLs, pathname, encryption,
2953 * large read/write, and locking capability. */
2955 SBIG_UINT(pdata,4,((uint64_t)(
2956 CIFS_UNIX_POSIX_ACLS_CAP|
2957 CIFS_UNIX_POSIX_PATHNAMES_CAP|
2958 CIFS_UNIX_FCNTL_LOCKS_CAP|
2959 CIFS_UNIX_EXTATTR_CAP|
2960 CIFS_UNIX_POSIX_PATH_OPERATIONS_CAP|
2962 (large_read ? CIFS_UNIX_LARGE_READ_CAP : 0) |
2964 CIFS_UNIX_LARGE_WRITE_CAP : 0))));
2968 case SMB_QUERY_POSIX_FS_INFO:
2971 vfs_statvfs_struct svfs;
2973 if (!lp_unix_extensions()) {
2974 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2978 rc = SMB_VFS_STATVFS(conn, ".", &svfs);
2982 SIVAL(pdata,0,svfs.OptimalTransferSize);
2983 SIVAL(pdata,4,svfs.BlockSize);
2984 SBIG_UINT(pdata,8,svfs.TotalBlocks);
2985 SBIG_UINT(pdata,16,svfs.BlocksAvail);
2986 SBIG_UINT(pdata,24,svfs.UserBlocksAvail);
2987 SBIG_UINT(pdata,32,svfs.TotalFileNodes);
2988 SBIG_UINT(pdata,40,svfs.FreeFileNodes);
2989 SBIG_UINT(pdata,48,svfs.FsIdentifier);
2990 DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_POSIX_FS_INFO succsessful\n"));
2992 } else if (rc == EOPNOTSUPP) {
2993 reply_nterror(req, NT_STATUS_INVALID_LEVEL);