4 Unix SMB/CIFS implementation.
5 Machine customisation and include handling
6 Copyright (C) Andrew Tridgell 1994-1998
7 Copyright (C) 2002 by Martin Pool <mbp@samba.org>
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 /* work around broken krb5.h on sles9 */
28 #include "../replace/replace.h"
30 /* make sure we have included the correct config.h */
31 #ifndef NO_CONFIG_H /* for some tests */
32 #ifndef CONFIG_H_IS_FROM_SAMBA
33 #error "make sure you have removed all config.h files from standalone builds!"
34 #error "the included config.h isn't from samba!"
36 #endif /* NO_CONFIG_H */
38 /* only do the C++ reserved word check when we compile
39 to include --with-developer since too many systems
40 still have comflicts with their header files (e.g. IRIX 6.4) */
42 #if !defined(__cplusplus) && defined(DEVELOPER)
43 #define class #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
44 #define private #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
45 #define public #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
46 #define protected #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
47 #define template #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
48 #define this #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
49 #define new #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
50 #define delete #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
51 #define friend #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
57 #define DEFAULT_PRINTING PRINT_AIX
58 #define PRINTCAP_NAME "/etc/qconfig"
62 #define DEFAULT_PRINTING PRINT_HPUX
66 #define DEFAULT_PRINTING PRINT_QNX
70 /* on SUNOS4 termios.h conflicts with sys/ioctl.h */
76 * <unistd.h> has to be included before any other to get
77 * large file support on Reliant UNIX. Yes, it's broken :-).
82 #endif /* RELIANTUNIX */
84 #include "system/capability.h"
85 #include "system/dir.h"
86 #include "system/filesys.h"
87 #include "system/glob.h"
88 #include "system/iconv.h"
89 #include "system/locale.h"
90 #include "system/network.h"
91 #include "system/passwd.h"
92 #include "system/readline.h"
93 #include "system/select.h"
94 #include "system/shmem.h"
95 #include "system/syslog.h"
96 #include "system/terminal.h"
97 #include "system/time.h"
98 #include "system/wait.h"
100 #if defined(HAVE_RPC_RPC_H)
102 * Check for AUTH_ERROR define conflict with rpc/rpc.h in prot.h.
104 #if defined(HAVE_SYS_SECURITY_H) && defined(HAVE_RPC_AUTH_ERROR_CONFLICT)
108 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
109 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
110 * them again without checking if they already exsist. This generates
111 * two "Redefinition of macro" warnings for every single .c file that is
114 #if defined(HPUX) && defined(TCP_NODELAY)
117 #if defined(HPUX) && defined(TCP_MAXSEG)
123 #if defined(HAVE_YP_GET_DEFAULT_DOMAIN) && defined(HAVE_SETNETGRENT) && defined(HAVE_ENDNETGRENT) && defined(HAVE_GETNETGRENT)
124 #define HAVE_NETGROUP 1
127 #if defined (HAVE_NETGROUP)
128 #if defined(HAVE_RPCSVC_YP_PROT_H)
130 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
131 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
132 * them again without checking if they already exsist. This generates
133 * two "Redefinition of macro" warnings for every single .c file that is
136 #if defined(HPUX) && defined(TCP_NODELAY)
139 #if defined(HPUX) && defined(TCP_MAXSEG)
142 #include <rpcsvc/yp_prot.h>
144 #if defined(HAVE_RPCSVC_YPCLNT_H)
145 #include <rpcsvc/ypclnt.h>
147 #endif /* HAVE_NETGROUP */
157 #if defined(HPUX) && !defined(_LBER_TYPES_H)
158 /* Define ber_tag_t and ber_int_t for using
159 * HP LDAP-UX Integration products' LDAP libraries.
162 typedef unsigned long ber_tag_t;
163 typedef int ber_int_t;
165 #endif /* defined(HPUX) && !defined(_LBER_TYPES_H) */
167 #define LBER_USE_DER 0x01
174 #define LDAP_CONST const
176 #ifndef LDAP_OPT_SUCCESS
177 #define LDAP_OPT_SUCCESS 0
179 /* Solaris 8 and maybe other LDAP implementations spell this "..._INPROGRESS": */
180 #if defined(LDAP_SASL_BIND_INPROGRESS) && !defined(LDAP_SASL_BIND_IN_PROGRESS)
181 #define LDAP_SASL_BIND_IN_PROGRESS LDAP_SASL_BIND_INPROGRESS
183 /* Solaris 8 defines SSL_LDAP_PORT, not LDAPS_PORT and it only does so if
184 LDAP_SSL is defined - but SSL is not working. We just want the
185 port number! Let's just define LDAPS_PORT correct. */
186 #if !defined(LDAPS_PORT)
187 #define LDAPS_PORT 636
193 #if HAVE_GSSAPI_GSSAPI_H
194 #include <gssapi/gssapi.h>
195 #elif HAVE_GSSAPI_GSSAPI_GENERIC_H
196 #include <gssapi/gssapi_generic.h>
205 #if HAVE_SYS_ATTRIBUTES_H
206 #include <sys/attributes.h>
210 #define ENOATTR ENODATA
213 /* mutually exclusive (SuSE 8.2) */
214 #if HAVE_ATTR_XATTR_H
215 #include <attr/xattr.h>
216 #elif HAVE_SYS_XATTR_H
217 #include <sys/xattr.h>
224 #ifdef HAVE_SYS_EXTATTR_H
225 #include <sys/extattr.h>
228 #ifdef HAVE_SYS_UIO_H
233 #include <langinfo.h>
237 #include <netgroup.h>
240 #if defined(HAVE_AIO_H) && defined(WITH_AIO)
244 #ifdef WITH_MADVISE_PROTECTED
245 #include <sys/mman.h>
248 /* Special macros that are no-ops except when run under Valgrind on
249 * x86. They've moved a little bit from valgrind 1.0.4 to 1.9.4 */
250 #if HAVE_VALGRIND_MEMCHECK_H
251 /* memcheck.h includes valgrind.h */
252 #include <valgrind/memcheck.h>
253 #elif HAVE_VALGRIND_H
254 #include <valgrind.h>
257 /* If we have --enable-developer and the valgrind header is present,
258 * then we're OK to use it. Set a macro so this logic can be done only
260 #if defined(DEVELOPER)
261 #if (HAVE_VALGRIND_H || HAVE_VALGRIND_VALGRIND_H)
267 /* we support ADS if we want it and have krb5 and ldap libs */
268 #if defined(WITH_ADS) && defined(HAVE_KRB5) && defined(HAVE_LDAP)
273 * Define additional missing types
276 typedef sig_atomic_t SIG_ATOMIC_T;
278 typedef sig_atomic_t volatile SIG_ATOMIC_T;
282 #define uchar unsigned char
286 Samba needs type definitions for int16, int32, uint16 and uint32.
288 Normally these are signed and unsigned 16 and 32 bit integers, but
289 they actually only need to be at least 16 and 32 bits
290 respectively. Thus if your word size is 8 bytes just defining them
291 as signed and unsigned int will work.
295 #define uint8 uint8_t
298 #if !defined(int16) && !defined(HAVE_INT16_FROM_RPC_RPC_H)
299 # define int16 int16_t
300 /* needed to work around compile issue on HP-UX 11.x */
305 * Note we duplicate the size tests in the unsigned
306 * case as int16 may be a typedef from rpc/rpc.h
310 #if !defined(uint16) && !defined(HAVE_UINT16_FROM_RPC_RPC_H)
311 # define uint16 uint16_t
314 #if !defined(int32) && !defined(HAVE_INT32_FROM_RPC_RPC_H)
315 # define int32 int32_t
316 /* needed to work around compile issue on HP-UX 11.x */
321 * Note we duplicate the size tests in the unsigned
322 * case as int32 may be a typedef from rpc/rpc.h
325 #if !defined(uint32) && !defined(HAVE_UINT32_FROM_RPC_RPC_H)
326 # define uint32 uint32_t
330 * check for 8 byte long long
334 # define uint64 uint64_t
338 # define int64 int64_t
343 * Types for devices, inodes and offsets.
347 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)
348 # define SMB_DEV_T dev64_t
350 # define SMB_DEV_T dev_t
354 #ifndef LARGE_SMB_DEV_T
355 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)) || (defined(SIZEOF_DEV_T) && (SIZEOF_DEV_T == 8))
356 # define LARGE_SMB_DEV_T 1
360 #ifdef LARGE_SMB_DEV_T
361 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
362 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(((uint64_t)(IVAL((p),(ofs))))| (((uint64_t)(IVAL((p),(ofs)+4))) << 32)))
364 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),v),SIVAL((p),(ofs)+4,0))
365 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(IVAL((p),(ofs))))
369 * Setup the correctly sized inode type.
373 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)
374 # define SMB_INO_T ino64_t
376 # define SMB_INO_T ino_t
380 #ifndef LARGE_SMB_INO_T
381 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)) || (defined(SIZEOF_INO_T) && (SIZEOF_INO_T == 8))
382 # define LARGE_SMB_INO_T 1
386 #ifdef LARGE_SMB_INO_T
387 #define SINO_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
388 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(((uint64_t)(IVAL(p,ofs)))| (((uint64_t)(IVAL(p,(ofs)+4))) << 32)))
390 #define SINO_T_VAL(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
391 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(IVAL((p),(ofs))))
395 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)
396 # define SMB_OFF_T off64_t
398 # define SMB_OFF_T off_t
402 #define SBIG_UINT(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
403 #define BIG_UINT(p, ofs) ((((uint64_t) IVAL(p,(ofs)+4))<<32)|IVAL(p,ofs))
404 #define IVAL2_TO_SMB_BIG_UINT(buf,off) ( (((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF)) | \
405 (( ((uint64_t)(IVAL((buf),(off+4)))) & ((uint64_t)0xFFFFFFFF) ) << 32 ) )
408 /* this should really be a 64 bit type if possible */
409 typedef uint64_t br_off;
411 #define SMB_OFF_T_BITS (sizeof(SMB_OFF_T)*8)
414 * Set the define that tells us if we can do 64 bit
418 #ifndef LARGE_SMB_OFF_T
419 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)) || (defined(SIZEOF_OFF_T) && (SIZEOF_OFF_T == 8))
420 # define LARGE_SMB_OFF_T 1
424 #ifdef LARGE_SMB_OFF_T
425 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
426 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,(v)&0xFFFFFFFF), SIVAL(p,ofs,(v)>>32))
427 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF) )))
429 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
430 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,v),SIVAL(p,ofs,0))
431 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint32)(IVAL((buf),(off)))) & 0xFFFFFFFF )))
434 #ifndef HAVE_BLKSIZE_T
435 /* This is mainly for HP/UX which defines st_blksize as long */
436 typedef long blksize_t;
439 #ifndef HAVE_BLKCNT_T
440 /* This is mainly for HP/UX which doesn't have blkcnt_t */
441 typedef long blkcnt_t;
445 * Type for stat structure.
457 struct timespec st_ex_atime;
458 struct timespec st_ex_mtime;
459 struct timespec st_ex_ctime;
460 struct timespec st_ex_btime; /* birthtime */
461 blksize_t st_ex_blksize;
462 blkcnt_t st_ex_blocks;
464 uint32_t st_ex_flags;
468 * Add space for VFS internal extensions. The initial user of this
469 * would be the onefs modules, passing the snapid from the stat calls
470 * to the file_id_create call. Maybe we'll have to expand this later,
471 * but the core of Samba should never look at this field.
473 uint64_t vfs_private;
476 typedef struct stat_ex SMB_STRUCT_STAT;
479 * Type for dirent structure.
482 #ifndef SMB_STRUCT_DIRENT
483 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIRENT64)
484 # define SMB_STRUCT_DIRENT struct dirent64
486 # define SMB_STRUCT_DIRENT struct dirent
491 * Type for DIR structure.
494 #ifndef SMB_STRUCT_DIR
495 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIR64)
496 # define SMB_STRUCT_DIR DIR64
498 # define SMB_STRUCT_DIR DIR
503 * Defines for 64 bit fcntl locks.
506 #ifndef SMB_STRUCT_FLOCK
507 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
508 # define SMB_STRUCT_FLOCK struct flock64
510 # define SMB_STRUCT_FLOCK struct flock
515 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
516 # define SMB_F_SETLKW F_SETLKW64
518 # define SMB_F_SETLKW F_SETLKW
523 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
524 # define SMB_F_SETLK F_SETLK64
526 # define SMB_F_SETLK F_SETLK
531 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
532 # define SMB_F_GETLK F_GETLK64
534 # define SMB_F_GETLK F_GETLK
539 * Type for aiocb structure.
542 #ifndef SMB_STRUCT_AIOCB
543 # if defined(WITH_AIO)
544 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_AIOCB64)
545 # define SMB_STRUCT_AIOCB struct aiocb64
547 # define SMB_STRUCT_AIOCB struct aiocb
550 # define SMB_STRUCT_AIOCB int /* AIO not being used but we still need the define.... */
554 #ifndef HAVE_STRUCT_TIMESPEC
556 time_t tv_sec; /* Seconds. */
557 long tv_nsec; /* Nanoseconds. */
561 #ifdef HAVE_BROKEN_GETGROUPS
568 #define NGROUPS_MAX 32 /* Guess... */
571 /* Our own fstrings */
580 | The infamous pstring |
587 _________)/\\_//(\/(/\)/\//\/\///|_)_______
591 #define FSTRING_LEN 256
592 typedef char fstring[FSTRING_LEN];
595 /* Samba 3 doesn't use iconv_convenience: */
596 extern void *cmdline_lp_ctx;
597 struct smb_iconv_convenience *lp_iconv_convenience(void *lp_ctx);
599 /* Lists, trees, caching, database... */
600 #include "../lib/util/util.h"
601 #include "../lib/util/xfile.h"
602 #include "../lib/util/memory.h"
603 #include "../lib/util/attr.h"
605 #include "../lib/util/dlinklist.h"
607 #include "util_tdb.h"
609 #include "../talloc/talloc.h"
612 #include "../lib/util/tevent_unix.h"
613 #include "../lib/util/tevent_ntstatus.h"
615 #include "../lib/util/data_blob.h"
616 #include "../lib/util/time.h"
617 #include "../lib/util/asn1.h"
621 #include "interfaces.h"
623 #include "../libcli/util/error.h"
625 #include "../lib/util/charset/charset.h"
626 #include "dynconfig.h"
627 #include "util_getent.h"
628 #include "debugparse.h"
629 #include "privileges.h"
630 #include "messages.h"
632 #include "smb_perfcount.h"
633 #include "smb_signing.h"
635 #include "nameserv.h"
637 #include "../lib/util/byteorder.h"
638 #include "privileges.h"
639 #include "rpc_misc.h"
643 #include "rpc_secdes.h"
644 #include "../libgpo/gpo.h"
645 #include "authdata.h"
648 #include "../lib/crypto/md5.h"
649 #include "../lib/crypto/md4.h"
650 #include "../lib/crypto/arcfour.h"
651 #include "../lib/crypto/crc32.h"
652 #include "../lib/crypto/hmacmd5.h"
655 #include "ntdomain.h"
656 #include "reg_objects.h"
658 #include "rpc_perfcount.h"
659 #include "rpc_perfcount_defs.h"
660 #include "librpc/gen_ndr/notify.h"
661 #include "librpc/gen_ndr/xattr.h"
662 #include "librpc/gen_ndr/messaging.h"
663 #include "librpc/gen_ndr/ndr_nbt.h"
664 #include "librpc/rpc/dcerpc.h"
665 #include "nt_printing.h"
673 #include "nsswitch/winbind_client.h"
675 #include "rpc_client.h"
678 #include "ctdbd_conn.h"
679 #include "../lib/util/talloc_stack.h"
680 #include "memcache.h"
681 #include "async_smb.h"
682 #include "../lib/async_req/async_sock.h"
683 #include "services.h"
684 #include "eventlog.h"
685 #include "../lib/util/smb_threads.h"
686 #include "../lib/util/smb_threads_internal.h"
688 #include "lib/smbconf/smbconf.h"
689 #include "lib/smbconf/smbconf_init.h"
690 #include "lib/smbconf/smbconf_reg.h"
691 #include "lib/smbconf/smbconf_txt.h"
693 /* Defines for wisXXX functions. */
694 #define UNI_UPPER 0x1
695 #define UNI_LOWER 0x2
696 #define UNI_DIGIT 0x4
697 #define UNI_XDIGIT 0x8
698 #define UNI_SPACE 0x10
700 #include "nsswitch/winbind_nss.h"
702 /* forward declaration from printing.h to get around
703 header file dependencies */
707 /* forward declarations from smbldap.c */
712 * Reasons for cache flush.
715 enum flush_reason_enum {
720 OPLOCK_RELEASE_FLUSH,
724 /* NUM_FLUSH_REASONS must remain the last value in the enumeration. */
727 #include "nss_info.h"
728 #include "modules/nfs4_acls.h"
729 #include "nsswitch/libwbclient/wbclient.h"
731 /***** prototypes *****/
735 #include "libcli/security/secace.h"
736 #include "libcli/security/secacl.h"
737 #include "libcli/security/security_descriptor.h"
739 #if defined(HAVE_POSIX_ACLS)
740 #include "modules/vfs_posixacl.h"
743 #if defined(HAVE_TRU64_ACLS)
744 #include "modules/vfs_tru64acl.h"
747 #if defined(HAVE_SOLARIS_ACLS) || defined(HAVE_UNIXWARE_ACLS)
748 #include "modules/vfs_solarisacl.h"
751 #if defined(HAVE_HPUX_ACLS)
752 #include "modules/vfs_hpuxacl.h"
755 #if defined(HAVE_IRIX_ACLS)
756 #include "modules/vfs_irixacl.h"
760 #include "ads_protos.h"
763 /* We need this after proto.h to reference GetTimeOfDay(). */
764 #include "smbprofile.h"
766 /* String routines */
769 #include "safe_string.h"
771 /* prototypes from lib/util_transfer_file.c */
772 #include "transfer_file.h"
774 #ifndef DEFAULT_PRINTING
776 #define DEFAULT_PRINTING PRINT_CUPS
777 #define PRINTCAP_NAME "cups"
779 #define DEFAULT_PRINTING PRINT_SYSV
780 #define PRINTCAP_NAME "lpstat"
782 #define DEFAULT_PRINTING PRINT_BSD
783 #define PRINTCAP_NAME "/etc/printcap"
787 #ifndef PRINTCAP_NAME
788 #define PRINTCAP_NAME "/etc/printcap"
792 #define SIGCLD SIGCHLD
803 #if defined(HAVE_PUTPRPWNAM) && defined(AUTH_CLEARTEXT_SEG_CHARS)
804 #define OSF1_ENH_SEC 1
807 #ifndef ALLOW_CHANGE_PASSWORD
808 #if (defined(HAVE_TERMIOS_H) && defined(HAVE_DUP2) && defined(HAVE_SETSID))
809 #define ALLOW_CHANGE_PASSWORD 1
813 /* what is the longest significant password available on your system?
814 Knowing this speeds up password searches a lot */
815 #ifndef PASSWORD_LENGTH
816 #define PASSWORD_LENGTH 8
823 #if defined(HAVE_CRYPT16) && defined(HAVE_GETAUTHUID)
824 #define ULTRIX_AUTH 1
827 /* yuck, I'd like a better way of doing this */
828 #define DIRP_SIZE (256 + 32)
830 /* default socket options. Dave Miller thinks we should default to TCP_NODELAY
831 given the socket IO pattern that Samba uses */
833 #define DEFAULT_SOCKET_OPTIONS "TCP_NODELAY"
835 #define DEFAULT_SOCKET_OPTIONS ""
838 /* dmalloc -- free heap debugger (dmalloc.org). This should be near
839 * the *bottom* of include files so as not to conflict. */
840 #ifdef ENABLE_DMALLOC
841 # include <dmalloc.h>
845 #if HAVE_KERNEL_SHARE_MODES
847 #define LOCK_MAND 32 /* This is a mandatory flock */
848 #define LOCK_READ 64 /* ... Which allows concurrent read operations */
849 #define LOCK_WRITE 128 /* ... Which allows concurrent write operations */
850 #define LOCK_RW 192 /* ... Which allows concurrent read & write ops */
854 extern int DEBUGLEVEL;
856 #define MAX_SEC_CTX_DEPTH 8 /* Maximum number of security contexts */
859 #ifdef GLIBC_HACK_FCNTL64
860 /* this is a gross hack. 64 bit locking is completely screwed up on
861 i386 Linux in glibc 2.1.95 (which ships with RedHat 7.0). This hack
862 "fixes" the problem with the current 2.4.0test kernels
864 #define fcntl fcntl64
872 /* needed for some systems without iconv. Doesn't really matter
873 what error code we use */
878 /* add varargs prototypes with printf checking */
880 int fdprintf(int , const char *, ...) PRINTF_ATTRIBUTE(2,3);
882 int d_printf(const char *, ...) PRINTF_ATTRIBUTE(1,2);
884 int d_fprintf(FILE *f, const char *, ...) PRINTF_ATTRIBUTE(2,3);
887 void sys_adminlog(int priority, const char *format_str, ...) PRINTF_ATTRIBUTE(2,3);
890 int fstr_sprintf(fstring s, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
892 int d_vfprintf(FILE *f, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
894 int smb_xvasprintf(char **ptr, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
896 int asprintf_strupper_m(char **strp, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
897 char *talloc_asprintf_strupper_m(TALLOC_CTX *t, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
900 * Veritas File System. Often in addition to native.
903 #if defined(HAVE_SYS_FS_VX_QUOTA_H)
908 #define XATTR_CREATE 0x1 /* set value, fail if attr already exists */
911 #ifndef XATTR_REPLACE
912 #define XATTR_REPLACE 0x2 /* set value, fail if attr does not exist */
916 * This should be under the HAVE_KRB5 flag but since they're used
917 * in lp_kerberos_method(), they ned to be always available
919 #define KERBEROS_VERIFY_SECRETS 0
920 #define KERBEROS_VERIFY_SYSTEM_KEYTAB 1
921 #define KERBEROS_VERIFY_DEDICATED_KEYTAB 2
922 #define KERBEROS_VERIFY_SECRETS_AND_KEYTAB 3
925 * If you add any entries to the above, please modify the below expressions
926 * so they remain accurate.
928 #define USE_KERBEROS_KEYTAB (KERBEROS_VERIFY_SECRETS != lp_kerberos_method())
929 #define USE_SYSTEM_KEYTAB \
930 ((KERBEROS_VERIFY_SECRETS_AND_KEYTAB == lp_kerberos_method()) || \
931 (KERBEROS_VERIFY_SYSTEM_KEYTAB == lp_kerberos_method()))
933 #if defined(HAVE_KRB5)
934 krb5_error_code smb_krb5_parse_name(krb5_context context,
935 const char *name, /* in unix charset */
936 krb5_principal *principal);
938 krb5_error_code smb_krb5_unparse_name(TALLOC_CTX *mem_ctx,
939 krb5_context context,
940 krb5_const_principal principal,
943 #ifndef HAVE_KRB5_SET_REAL_TIME
944 krb5_error_code krb5_set_real_time(krb5_context context, int32_t seconds, int32_t microseconds);
947 krb5_error_code krb5_set_default_tgs_ktypes(krb5_context ctx, const krb5_enctype *enc);
949 #if defined(HAVE_KRB5_AUTH_CON_SETKEY) && !defined(HAVE_KRB5_AUTH_CON_SETUSERUSERKEY)
950 krb5_error_code krb5_auth_con_setuseruserkey(krb5_context context, krb5_auth_context auth_context, krb5_keyblock *keyblock);
953 #ifndef HAVE_KRB5_FREE_UNPARSED_NAME
954 void krb5_free_unparsed_name(krb5_context ctx, char *val);
957 /* Stub out initialize_krb5_error_table since it is not present in all
958 * Kerberos implementations. If it's not present, it's not necessary to
961 #ifndef HAVE_INITIALIZE_KRB5_ERROR_TABLE
962 #define initialize_krb5_error_table()
965 /* Samba wrapper function for krb5 functionality. */
966 bool setup_kaddr( krb5_address *pkaddr, struct sockaddr_storage *paddr);
967 int create_kerberos_key_from_string(krb5_context context, krb5_principal host_princ, krb5_data *password, krb5_keyblock *key, krb5_enctype enctype, bool no_salt);
968 bool get_auth_data_from_tkt(TALLOC_CTX *mem_ctx, DATA_BLOB *auth_data, krb5_ticket *tkt);
969 krb5_const_principal get_principal_from_tkt(krb5_ticket *tkt);
970 krb5_error_code smb_krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
971 #if defined(HAVE_KRB5_LOCATE_KDC)
972 krb5_error_code krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
974 krb5_error_code get_kerberos_allowed_etypes(krb5_context context, krb5_enctype **enctypes);
975 bool get_krb5_smb_session_key(krb5_context context, krb5_auth_context auth_context, DATA_BLOB *session_key, bool remote);
976 krb5_error_code smb_krb5_kt_free_entry(krb5_context context, krb5_keytab_entry *kt_entry);
977 krb5_principal kerberos_fetch_salt_princ_for_host_princ(krb5_context context, krb5_principal host_princ, int enctype);
978 void kerberos_set_creds_enctype(krb5_creds *pcreds, int enctype);
979 bool kerberos_compatible_enctypes(krb5_context context, krb5_enctype enctype1, krb5_enctype enctype2);
980 void kerberos_free_data_contents(krb5_context context, krb5_data *pdata);
981 NTSTATUS decode_pac_data(TALLOC_CTX *mem_ctx,
982 DATA_BLOB *pac_data_blob,
983 krb5_context context,
984 krb5_keyblock *service_keyblock,
985 krb5_const_principal client_principal,
987 struct PAC_DATA **pac_data_out);
988 void smb_krb5_checksum_from_pac_sig(krb5_checksum *cksum,
989 struct PAC_SIGNATURE_DATA *sig);
990 krb5_error_code smb_krb5_verify_checksum(krb5_context context,
991 const krb5_keyblock *keyblock,
993 krb5_checksum *cksum,
996 time_t get_authtime_from_tkt(krb5_ticket *tkt);
997 void smb_krb5_free_ap_req(krb5_context context,
998 krb5_ap_req *ap_req);
999 krb5_error_code smb_krb5_get_keyinfo_from_ap_req(krb5_context context,
1000 const krb5_data *inbuf,
1002 krb5_enctype *enctype);
1003 krb5_error_code krb5_rd_req_return_keyblock_from_keytab(krb5_context context,
1004 krb5_auth_context *auth_context,
1005 const krb5_data *inbuf,
1006 krb5_const_principal server,
1008 krb5_flags *ap_req_options,
1009 krb5_ticket **ticket,
1010 krb5_keyblock **keyblock);
1011 krb5_error_code smb_krb5_parse_name_norealm(krb5_context context,
1013 krb5_principal *principal);
1014 bool smb_krb5_principal_compare_any_realm(krb5_context context,
1015 krb5_const_principal princ1,
1016 krb5_const_principal princ2);
1017 int cli_krb5_get_ticket(const char *principal, time_t time_offset,
1018 DATA_BLOB *ticket, DATA_BLOB *session_key_krb5, uint32 extra_ap_opts, const char *ccname, time_t *tgs_expire);
1019 krb5_error_code smb_krb5_renew_ticket(const char *ccache_string, const char *client_string, const char *service_string, time_t *expire_time);
1020 krb5_error_code kpasswd_err_to_krb5_err(krb5_error_code res_code);
1021 krb5_error_code smb_krb5_gen_netbios_krb5_address(smb_krb5_addresses **kerb_addr);
1022 krb5_error_code smb_krb5_free_addresses(krb5_context context, smb_krb5_addresses *addr);
1023 NTSTATUS krb5_to_nt_status(krb5_error_code kerberos_error);
1024 krb5_error_code nt_status_to_krb5(NTSTATUS nt_status);
1025 void smb_krb5_free_error(krb5_context context, krb5_error *krberror);
1026 krb5_error_code handle_krberror_packet(krb5_context context,
1029 void smb_krb5_get_init_creds_opt_free(krb5_context context,
1030 krb5_get_init_creds_opt *opt);
1031 krb5_error_code smb_krb5_get_init_creds_opt_alloc(krb5_context context,
1032 krb5_get_init_creds_opt **opt);
1033 krb5_error_code smb_krb5_mk_error(krb5_context context,
1034 krb5_error_code error_code,
1035 const krb5_principal server,
1037 krb5_enctype smb_get_enctype_from_kt_entry(krb5_keytab_entry *kt_entry);
1038 krb5_error_code smb_krb5_enctype_to_string(krb5_context context,
1039 krb5_enctype enctype,
1041 krb5_error_code smb_krb5_open_keytab(krb5_context context,
1042 const char *keytab_name,
1044 krb5_keytab *keytab);
1045 krb5_error_code smb_krb5_keytab_name(TALLOC_CTX *mem_ctx,
1046 krb5_context context,
1048 const char **keytab_name);
1049 int smb_krb5_kt_add_entry_ext(krb5_context context,
1052 const char *princ_s,
1053 krb5_enctype *enctypes,
1056 bool keep_old_entries);
1058 #endif /* HAVE_KRB5 */
1063 /* function declarations not included in proto.h */
1064 LDAP *ldap_open_with_timeout(const char *server, int port, unsigned int to);
1066 #endif /* HAVE_LDAP */
1068 #if defined(HAVE_LINUX_READAHEAD) && ! defined(HAVE_READAHEAD_DECL)
1069 ssize_t readahead(int fd, off64_t offset, size_t count);
1075 #define TRUE __ERROR__XX__DONT_USE_TRUE
1080 #define FALSE __ERROR__XX__DONT_USE_FALSE
1082 /* If we have blacklisted mmap() try to avoid using it accidentally by
1083 undefining the HAVE_MMAP symbol. */
1085 #ifdef MMAP_BLACKLIST
1089 #ifndef CONST_DISCARD
1090 #define CONST_DISCARD(type, ptr) ((type) ((void *) (ptr)))
1093 void smb_panic( const char *why ) _NORETURN_;
1094 void dump_core(void) _NORETURN_;
1095 void exit_server(const char *const reason) _NORETURN_;
1096 void exit_server_cleanly(const char *const reason) _NORETURN_;
1097 void exit_server_fault(void) _NORETURN_;
1100 #include "libnscd.h"
1103 #if defined(HAVE_IPV6)
1104 void in6_addr_to_sockaddr_storage(struct sockaddr_storage *ss,
1105 struct in6_addr ip);
1108 #endif /* _INCLUDES_H */