Refactoring: Change calling conventions for cli_rpc_pipe_open_ntlmssp
[kai/samba.git] / source / rpcclient / rpcclient.c
1 /* 
2    Unix SMB/CIFS implementation.
3    RPC pipe client
4
5    Copyright (C) Tim Potter 2000-2001
6    Copyright (C) Martin Pool 2003
7
8    This program is free software; you can redistribute it and/or modify
9    it under the terms of the GNU General Public License as published by
10    the Free Software Foundation; either version 3 of the License, or
11    (at your option) any later version.
12    
13    This program is distributed in the hope that it will be useful,
14    but WITHOUT ANY WARRANTY; without even the implied warranty of
15    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
16    GNU General Public License for more details.
17    
18    You should have received a copy of the GNU General Public License
19    along with this program.  If not, see <http://www.gnu.org/licenses/>.
20 */
21
22 #include "includes.h"
23 #include "rpcclient.h"
24
25 DOM_SID domain_sid;
26
27 static enum pipe_auth_type pipe_default_auth_type = PIPE_AUTH_TYPE_NONE;
28 static enum pipe_auth_level pipe_default_auth_level = PIPE_AUTH_LEVEL_NONE;
29 static unsigned int timeout = 0;
30
31 /* List to hold groups of commands.
32  *
33  * Commands are defined in a list of arrays: arrays are easy to
34  * statically declare, and lists are easier to dynamically extend.
35  */
36
37 static struct cmd_list {
38         struct cmd_list *prev, *next;
39         struct cmd_set *cmd_set;
40 } *cmd_list;
41
42 /****************************************************************************
43 handle completion of commands for readline
44 ****************************************************************************/
45 static char **completion_fn(const char *text, int start, int end)
46 {
47 #define MAX_COMPLETIONS 100
48         char **matches;
49         int i, count=0;
50         struct cmd_list *commands = cmd_list;
51
52 #if 0   /* JERRY */
53         /* FIXME!!!  -- what to do when completing argument? */
54         /* for words not at the start of the line fallback 
55            to filename completion */
56         if (start) 
57                 return NULL;
58 #endif
59
60         /* make sure we have a list of valid commands */
61         if (!commands) {
62                 return NULL;
63         }
64
65         matches = SMB_MALLOC_ARRAY(char *, MAX_COMPLETIONS);
66         if (!matches) {
67                 return NULL;
68         }
69
70         matches[count++] = SMB_STRDUP(text);
71         if (!matches[0]) {
72                 SAFE_FREE(matches);
73                 return NULL;
74         }
75
76         while (commands && count < MAX_COMPLETIONS-1) {
77                 if (!commands->cmd_set) {
78                         break;
79                 }
80                 
81                 for (i=0; commands->cmd_set[i].name; i++) {
82                         if ((strncmp(text, commands->cmd_set[i].name, strlen(text)) == 0) &&
83                                 (( commands->cmd_set[i].returntype == RPC_RTYPE_NTSTATUS &&
84                         commands->cmd_set[i].ntfn ) || 
85                       ( commands->cmd_set[i].returntype == RPC_RTYPE_WERROR &&
86                         commands->cmd_set[i].wfn))) {
87                                 matches[count] = SMB_STRDUP(commands->cmd_set[i].name);
88                                 if (!matches[count]) {
89                                         for (i = 0; i < count; i++) {
90                                                 SAFE_FREE(matches[count]);
91                                         }
92                                         SAFE_FREE(matches);
93                                         return NULL;
94                                 }
95                                 count++;
96                         }
97                 }
98                 commands = commands->next;
99                 
100         }
101
102         if (count == 2) {
103                 SAFE_FREE(matches[0]);
104                 matches[0] = SMB_STRDUP(matches[1]);
105         }
106         matches[count] = NULL;
107         return matches;
108 }
109
110 static char *next_command (char **cmdstr)
111 {
112         char *command;
113         char                    *p;
114         
115         if (!cmdstr || !(*cmdstr))
116                 return NULL;
117         
118         p = strchr_m(*cmdstr, ';');
119         if (p)
120                 *p = '\0';
121         command = SMB_STRDUP(*cmdstr);
122         if (p)
123                 *cmdstr = p + 1;
124         else
125                 *cmdstr = NULL;
126         
127         return command;
128 }
129
130 /* Fetch the SID for this computer */
131
132 static void fetch_machine_sid(struct cli_state *cli)
133 {
134         POLICY_HND pol;
135         NTSTATUS result = NT_STATUS_OK;
136         static bool got_domain_sid;
137         TALLOC_CTX *mem_ctx;
138         struct rpc_pipe_client *lsapipe = NULL;
139         union lsa_PolicyInformation *info = NULL;
140
141         if (got_domain_sid) return;
142
143         if (!(mem_ctx=talloc_init("fetch_machine_sid"))) {
144                 DEBUG(0,("fetch_machine_sid: talloc_init returned NULL!\n"));
145                 goto error;
146         }
147
148         result = cli_rpc_pipe_open_noauth(cli, &ndr_table_lsarpc.syntax_id,
149                                           &lsapipe);
150         if (!NT_STATUS_IS_OK(result)) {
151                 fprintf(stderr, "could not initialise lsa pipe. Error was %s\n", nt_errstr(result) );
152                 goto error;
153         }
154         
155         result = rpccli_lsa_open_policy(lsapipe, mem_ctx, True, 
156                                      SEC_RIGHTS_MAXIMUM_ALLOWED,
157                                      &pol);
158         if (!NT_STATUS_IS_OK(result)) {
159                 goto error;
160         }
161
162         result = rpccli_lsa_QueryInfoPolicy(lsapipe, mem_ctx,
163                                             &pol,
164                                             LSA_POLICY_INFO_ACCOUNT_DOMAIN,
165                                             &info);
166         if (!NT_STATUS_IS_OK(result)) {
167                 goto error;
168         }
169
170         got_domain_sid = True;
171         sid_copy(&domain_sid, info->account_domain.sid);
172
173         rpccli_lsa_Close(lsapipe, mem_ctx, &pol);
174         TALLOC_FREE(lsapipe);
175         talloc_destroy(mem_ctx);
176
177         return;
178
179  error:
180
181         if (lsapipe) {
182                 TALLOC_FREE(lsapipe);
183         }
184
185         fprintf(stderr, "could not obtain sid for domain %s\n", cli->domain);
186
187         if (!NT_STATUS_IS_OK(result)) {
188                 fprintf(stderr, "error: %s\n", nt_errstr(result));
189         }
190
191         exit(1);
192 }
193
194 /* List the available commands on a given pipe */
195
196 static NTSTATUS cmd_listcommands(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
197                                  int argc, const char **argv)
198 {
199         struct cmd_list *tmp;
200         struct cmd_set *tmp_set;
201         int i;
202
203         /* Usage */
204
205         if (argc != 2) {
206                 printf("Usage: %s <pipe>\n", argv[0]);
207                 return NT_STATUS_OK;
208         }
209
210         /* Help on one command */
211
212         for (tmp = cmd_list; tmp; tmp = tmp->next) 
213         {
214                 tmp_set = tmp->cmd_set;
215                 
216                 if (!StrCaseCmp(argv[1], tmp_set->name))
217                 {
218                         printf("Available commands on the %s pipe:\n\n", tmp_set->name);
219
220                         i = 0;
221                         tmp_set++;
222                         while(tmp_set->name) {
223                                 printf("%30s", tmp_set->name);
224                                 tmp_set++;
225                                 i++;
226                                 if (i%3 == 0)
227                                         printf("\n");
228                         }
229                         
230                         /* drop out of the loop */
231                         break;
232                 }
233         }
234         printf("\n\n");
235
236         return NT_STATUS_OK;
237 }
238
239 /* Display help on commands */
240
241 static NTSTATUS cmd_help(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
242                          int argc, const char **argv)
243 {
244         struct cmd_list *tmp;
245         struct cmd_set *tmp_set;
246
247         /* Usage */
248
249         if (argc > 2) {
250                 printf("Usage: %s [command]\n", argv[0]);
251                 return NT_STATUS_OK;
252         }
253
254         /* Help on one command */
255
256         if (argc == 2) {
257                 for (tmp = cmd_list; tmp; tmp = tmp->next) {
258                         
259                         tmp_set = tmp->cmd_set;
260
261                         while(tmp_set->name) {
262                                 if (strequal(argv[1], tmp_set->name)) {
263                                         if (tmp_set->usage &&
264                                             tmp_set->usage[0])
265                                                 printf("%s\n", tmp_set->usage);
266                                         else
267                                                 printf("No help for %s\n", tmp_set->name);
268
269                                         return NT_STATUS_OK;
270                                 }
271
272                                 tmp_set++;
273                         }
274                 }
275
276                 printf("No such command: %s\n", argv[1]);
277                 return NT_STATUS_OK;
278         }
279
280         /* List all commands */
281
282         for (tmp = cmd_list; tmp; tmp = tmp->next) {
283
284                 tmp_set = tmp->cmd_set;
285
286                 while(tmp_set->name) {
287
288                         printf("%15s\t\t%s\n", tmp_set->name,
289                                tmp_set->description ? tmp_set->description:
290                                "");
291
292                         tmp_set++;
293                 }
294         }
295
296         return NT_STATUS_OK;
297 }
298
299 /* Change the debug level */
300
301 static NTSTATUS cmd_debuglevel(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
302                                int argc, const char **argv)
303 {
304         if (argc > 2) {
305                 printf("Usage: %s [debuglevel]\n", argv[0]);
306                 return NT_STATUS_OK;
307         }
308
309         if (argc == 2) {
310                 DEBUGLEVEL = atoi(argv[1]);
311         }
312
313         printf("debuglevel is %d\n", DEBUGLEVEL);
314
315         return NT_STATUS_OK;
316 }
317
318 static NTSTATUS cmd_quit(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
319                          int argc, const char **argv)
320 {
321         exit(0);
322         return NT_STATUS_OK; /* NOTREACHED */
323 }
324
325 static NTSTATUS cmd_set_ss_level(void)
326 {
327         struct cmd_list *tmp;
328
329         /* Close any existing connections not at this level. */
330
331         for (tmp = cmd_list; tmp; tmp = tmp->next) {
332                 struct cmd_set *tmp_set;
333
334                 for (tmp_set = tmp->cmd_set; tmp_set->name; tmp_set++) {
335                         if (tmp_set->rpc_pipe == NULL) {
336                                 continue;
337                         }
338
339                         if ((tmp_set->rpc_pipe->auth->auth_type
340                              != pipe_default_auth_type)
341                             || (tmp_set->rpc_pipe->auth->auth_level
342                                 != pipe_default_auth_level)) {
343                                 TALLOC_FREE(tmp_set->rpc_pipe);
344                                 tmp_set->rpc_pipe = NULL;
345                         }
346                 }
347         }
348         return NT_STATUS_OK;
349 }
350
351 static NTSTATUS cmd_sign(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
352                          int argc, const char **argv)
353 {
354         const char *type = "NTLMSSP";
355
356         pipe_default_auth_level = PIPE_AUTH_LEVEL_INTEGRITY;
357         pipe_default_auth_type = PIPE_AUTH_TYPE_NTLMSSP;
358
359         if (argc > 2) {
360                 printf("Usage: %s [NTLMSSP|NTLMSSP_SPNEGO|SCHANNEL]\n", argv[0]);
361                 return NT_STATUS_OK;
362         }
363
364         if (argc == 2) {
365                 type = argv[1];
366                 if (strequal(type, "NTLMSSP")) {
367                         pipe_default_auth_type = PIPE_AUTH_TYPE_NTLMSSP;
368                 } else if (strequal(type, "NTLMSSP_SPNEGO")) {
369                         pipe_default_auth_type = PIPE_AUTH_TYPE_SPNEGO_NTLMSSP;
370                 } else if (strequal(type, "SCHANNEL")) {
371                         pipe_default_auth_type = PIPE_AUTH_TYPE_SCHANNEL;
372                 } else {
373                         printf("unknown type %s\n", type);
374                         return NT_STATUS_INVALID_LEVEL;
375                 }
376         }
377
378         d_printf("Setting %s - sign\n", type);
379
380         return cmd_set_ss_level();
381 }
382
383 static NTSTATUS cmd_seal(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
384                          int argc, const char **argv)
385 {
386         const char *type = "NTLMSSP";
387
388         pipe_default_auth_level = PIPE_AUTH_LEVEL_PRIVACY;
389         pipe_default_auth_type = PIPE_AUTH_TYPE_NTLMSSP;
390
391         if (argc > 2) {
392                 printf("Usage: %s [NTLMSSP|NTLMSSP_SPNEGO|SCHANNEL]\n", argv[0]);
393                 return NT_STATUS_OK;
394         }
395
396         if (argc == 2) {
397                 type = argv[1];
398                 if (strequal(type, "NTLMSSP")) {
399                         pipe_default_auth_type = PIPE_AUTH_TYPE_NTLMSSP;
400                 } else if (strequal(type, "NTLMSSP_SPNEGO")) {
401                         pipe_default_auth_type = PIPE_AUTH_TYPE_SPNEGO_NTLMSSP;
402                 } else if (strequal(type, "SCHANNEL")) {
403                         pipe_default_auth_type = PIPE_AUTH_TYPE_SCHANNEL;
404                 } else {
405                         printf("unknown type %s\n", type);
406                         return NT_STATUS_INVALID_LEVEL;
407                 }
408         }
409
410         d_printf("Setting %s - sign and seal\n", type);
411
412         return cmd_set_ss_level();
413 }
414
415 static NTSTATUS cmd_timeout(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
416                             int argc, const char **argv)
417 {
418         struct cmd_list *tmp;
419
420         if (argc > 2) {
421                 printf("Usage: %s timeout\n", argv[0]);
422                 return NT_STATUS_OK;
423         }
424
425         if (argc == 2) {
426                 timeout = atoi(argv[1]);
427
428                 for (tmp = cmd_list; tmp; tmp = tmp->next) {
429                         
430                         struct cmd_set *tmp_set;
431
432                         for (tmp_set = tmp->cmd_set; tmp_set->name; tmp_set++) {
433                                 if (tmp_set->rpc_pipe == NULL) {
434                                         continue;
435                                 }
436
437                                 rpccli_set_timeout(tmp_set->rpc_pipe, timeout);
438                         }
439                 }
440         }
441
442         printf("timeout is %d\n", timeout);
443
444         return NT_STATUS_OK;
445 }
446
447
448 static NTSTATUS cmd_none(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
449                          int argc, const char **argv)
450 {
451         pipe_default_auth_level = PIPE_AUTH_LEVEL_NONE;
452         pipe_default_auth_type = PIPE_AUTH_TYPE_NONE;
453
454         return cmd_set_ss_level();
455 }
456
457 static NTSTATUS cmd_schannel(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
458                              int argc, const char **argv)
459 {
460         d_printf("Setting schannel - sign and seal\n");
461         pipe_default_auth_level = PIPE_AUTH_LEVEL_PRIVACY;
462         pipe_default_auth_type = PIPE_AUTH_TYPE_SCHANNEL;
463
464         return cmd_set_ss_level();
465 }
466
467 static NTSTATUS cmd_schannel_sign(struct rpc_pipe_client *cli, TALLOC_CTX *mem_ctx,
468                              int argc, const char **argv)
469 {
470         d_printf("Setting schannel - sign only\n");
471         pipe_default_auth_level = PIPE_AUTH_LEVEL_INTEGRITY;
472         pipe_default_auth_type = PIPE_AUTH_TYPE_SCHANNEL;
473
474         return cmd_set_ss_level();
475 }
476
477
478 /* Built in rpcclient commands */
479
480 static struct cmd_set rpcclient_commands[] = {
481
482         { "GENERAL OPTIONS" },
483
484         { "help", RPC_RTYPE_NTSTATUS, cmd_help, NULL,     -1, NULL,     "Get help on commands", "[command]" },
485         { "?",  RPC_RTYPE_NTSTATUS, cmd_help, NULL,       -1, NULL,     "Get help on commands", "[command]" },
486         { "debuglevel", RPC_RTYPE_NTSTATUS, cmd_debuglevel, NULL,   -1, NULL, "Set debug level", "level" },
487         { "debug", RPC_RTYPE_NTSTATUS, cmd_debuglevel, NULL,   -1,      NULL, "Set debug level", "level" },
488         { "list",       RPC_RTYPE_NTSTATUS, cmd_listcommands, NULL, -1, NULL, "List available commands on <pipe>", "pipe" },
489         { "exit", RPC_RTYPE_NTSTATUS, cmd_quit, NULL,   -1,     NULL,   "Exit program", "" },
490         { "quit", RPC_RTYPE_NTSTATUS, cmd_quit, NULL,     -1,   NULL, "Exit program", "" },
491         { "sign", RPC_RTYPE_NTSTATUS, cmd_sign, NULL,     -1,   NULL, "Force RPC pipe connections to be signed", "" },
492         { "seal", RPC_RTYPE_NTSTATUS, cmd_seal, NULL,     -1,   NULL, "Force RPC pipe connections to be sealed", "" },
493         { "schannel", RPC_RTYPE_NTSTATUS, cmd_schannel, NULL,     -1, NULL,     "Force RPC pipe connections to be sealed with 'schannel'.  Assumes valid machine account to this domain controller.", "" },
494         { "schannelsign", RPC_RTYPE_NTSTATUS, cmd_schannel_sign, NULL,    -1, NULL, "Force RPC pipe connections to be signed (not sealed) with 'schannel'.  Assumes valid machine account to this domain controller.", "" },
495         { "timeout", RPC_RTYPE_NTSTATUS, cmd_timeout, NULL,       -1, NULL, "Set timeout (in milliseonds) for RPC operations", "" },
496         { "none", RPC_RTYPE_NTSTATUS, cmd_none, NULL,     -1, NULL, "Force RPC pipe connections to have no special properties", "" },
497
498         { NULL }
499 };
500
501 static struct cmd_set separator_command[] = {
502         { "---------------", MAX_RPC_RETURN_TYPE, NULL, NULL,   -1, NULL, "----------------------" },
503         { NULL }
504 };
505
506
507 /* Various pipe commands */
508
509 extern struct cmd_set lsarpc_commands[];
510 extern struct cmd_set samr_commands[];
511 extern struct cmd_set spoolss_commands[];
512 extern struct cmd_set netlogon_commands[];
513 extern struct cmd_set srvsvc_commands[];
514 extern struct cmd_set dfs_commands[];
515 extern struct cmd_set ds_commands[];
516 extern struct cmd_set echo_commands[];
517 extern struct cmd_set shutdown_commands[];
518 extern struct cmd_set test_commands[];
519 extern struct cmd_set wkssvc_commands[];
520 extern struct cmd_set ntsvcs_commands[];
521 extern struct cmd_set drsuapi_commands[];
522
523 static struct cmd_set *rpcclient_command_list[] = {
524         rpcclient_commands,
525         lsarpc_commands,
526         ds_commands,
527         samr_commands,
528         spoolss_commands,
529         netlogon_commands,
530         srvsvc_commands,
531         dfs_commands,
532         echo_commands,
533         shutdown_commands,
534         test_commands,
535         wkssvc_commands,
536         ntsvcs_commands,
537         drsuapi_commands,
538         NULL
539 };
540
541 static void add_command_set(struct cmd_set *cmd_set)
542 {
543         struct cmd_list *entry;
544
545         if (!(entry = SMB_MALLOC_P(struct cmd_list))) {
546                 DEBUG(0, ("out of memory\n"));
547                 return;
548         }
549
550         ZERO_STRUCTP(entry);
551
552         entry->cmd_set = cmd_set;
553         DLIST_ADD(cmd_list, entry);
554 }
555
556
557 /**
558  * Call an rpcclient function, passing an argv array.
559  *
560  * @param cmd Command to run, as a single string.
561  **/
562 static NTSTATUS do_cmd(struct cli_state *cli,
563                        struct cmd_set *cmd_entry,
564                        int argc, char **argv)
565 {
566         NTSTATUS ntresult;
567         WERROR wresult;
568         
569         TALLOC_CTX *mem_ctx;
570
571         /* Create mem_ctx */
572
573         if (!(mem_ctx = talloc_init("do_cmd"))) {
574                 DEBUG(0, ("talloc_init() failed\n"));
575                 return NT_STATUS_NO_MEMORY;
576         }
577
578         /* Open pipe */
579
580         if (cmd_entry->pipe_idx != -1 && cmd_entry->rpc_pipe == NULL) {
581                 switch (pipe_default_auth_type) {
582                         case PIPE_AUTH_TYPE_NONE:
583                                 ntresult = cli_rpc_pipe_open_noauth(
584                                         cli,
585                                         cli_get_iface(cmd_entry->pipe_idx),
586                                         &cmd_entry->rpc_pipe);
587                                 break;
588                         case PIPE_AUTH_TYPE_SPNEGO_NTLMSSP:
589                                 ntresult = cli_rpc_pipe_open_spnego_ntlmssp(
590                                         cli,
591                                         cli_get_iface(cmd_entry->pipe_idx),
592                                         pipe_default_auth_level,
593                                         lp_workgroup(),
594                                         get_cmdline_auth_info_username(),
595                                         get_cmdline_auth_info_password(),
596                                         &cmd_entry->rpc_pipe);
597                                 break;
598                         case PIPE_AUTH_TYPE_NTLMSSP:
599                                 ntresult = cli_rpc_pipe_open_ntlmssp(
600                                         cli,
601                                         cli_get_iface(cmd_entry->pipe_idx),
602                                         pipe_default_auth_level,
603                                         lp_workgroup(),
604                                         get_cmdline_auth_info_username(),
605                                         get_cmdline_auth_info_password(),
606                                         &cmd_entry->rpc_pipe);
607                                 break;
608                         case PIPE_AUTH_TYPE_SCHANNEL:
609                                 cmd_entry->rpc_pipe = cli_rpc_pipe_open_schannel(cli,
610                                                                 cmd_entry->pipe_idx,
611                                                                 pipe_default_auth_level,
612                                                                 lp_workgroup(),
613                                                                 &ntresult);
614                                 break;
615                         default:
616                                 DEBUG(0, ("Could not initialise %s. Invalid auth type %u\n",
617                                         cli_get_pipe_name(cmd_entry->pipe_idx),
618                                         pipe_default_auth_type ));
619                                 return NT_STATUS_UNSUCCESSFUL;
620                 }
621                 if (!NT_STATUS_IS_OK(ntresult)) {
622                         DEBUG(0, ("Could not initialise %s. Error was %s\n",
623                                 cli_get_pipe_name(cmd_entry->pipe_idx),
624                                 nt_errstr(ntresult) ));
625                         return ntresult;
626                 }
627
628                 if (cmd_entry->pipe_idx == PI_NETLOGON) {
629                         uint32_t neg_flags = NETLOGON_NEG_AUTH2_ADS_FLAGS;
630                         uint32 sec_channel_type;
631                         uchar trust_password[16];
632         
633                         if (!secrets_fetch_trust_account_password(lp_workgroup(),
634                                                         trust_password,
635                                                         NULL, &sec_channel_type)) {
636                                 return NT_STATUS_UNSUCCESSFUL;
637                         }
638                 
639                         ntresult = rpccli_netlogon_setup_creds(cmd_entry->rpc_pipe,
640                                                 cli->desthost,   /* server name */
641                                                 lp_workgroup(),  /* domain */
642                                                 global_myname(), /* client name */
643                                                 global_myname(), /* machine account name */
644                                                 trust_password,
645                                                 sec_channel_type,
646                                                 &neg_flags);
647
648                         if (!NT_STATUS_IS_OK(ntresult)) {
649                                 DEBUG(0, ("Could not initialise credentials for %s.\n",
650                                         cli_get_pipe_name(cmd_entry->pipe_idx)));
651                                 return ntresult;
652                         }
653                 }
654         }
655
656         /* Run command */
657
658         if ( cmd_entry->returntype == RPC_RTYPE_NTSTATUS ) {
659                 ntresult = cmd_entry->ntfn(cmd_entry->rpc_pipe, mem_ctx, argc, (const char **) argv);
660                 if (!NT_STATUS_IS_OK(ntresult)) {
661                         printf("result was %s\n", nt_errstr(ntresult));
662                 }
663         } else {
664                 wresult = cmd_entry->wfn(cmd_entry->rpc_pipe, mem_ctx, argc, (const char **) argv);
665                 /* print out the DOS error */
666                 if (!W_ERROR_IS_OK(wresult)) {
667                         printf( "result was %s\n", dos_errstr(wresult));
668                 }
669                 ntresult = W_ERROR_IS_OK(wresult)?NT_STATUS_OK:NT_STATUS_UNSUCCESSFUL;
670         }
671
672         /* Cleanup */
673
674         talloc_destroy(mem_ctx);
675
676         return ntresult;
677 }
678
679
680 /**
681  * Process a command entered at the prompt or as part of -c
682  *
683  * @returns The NTSTATUS from running the command.
684  **/
685 static NTSTATUS process_cmd(struct cli_state *cli, char *cmd)
686 {
687         struct cmd_list *temp_list;
688         NTSTATUS result = NT_STATUS_OK;
689         int ret;
690         int argc;
691         char **argv = NULL;
692
693         if ((ret = poptParseArgvString(cmd, &argc, (const char ***) &argv)) != 0) {
694                 fprintf(stderr, "rpcclient: %s\n", poptStrerror(ret));
695                 return NT_STATUS_UNSUCCESSFUL;
696         }
697
698
699         /* Walk through a dlist of arrays of commands. */
700         for (temp_list = cmd_list; temp_list; temp_list = temp_list->next) {
701                 struct cmd_set *temp_set = temp_list->cmd_set;
702
703                 while (temp_set->name) {
704                         if (strequal(argv[0], temp_set->name)) {
705                                 if (!(temp_set->returntype == RPC_RTYPE_NTSTATUS && temp_set->ntfn ) &&
706                          !(temp_set->returntype == RPC_RTYPE_WERROR && temp_set->wfn )) {
707                                         fprintf (stderr, "Invalid command\n");
708                                         goto out_free;
709                                 }
710
711                                 result = do_cmd(cli, temp_set, argc, argv);
712
713                                 goto out_free;
714                         }
715                         temp_set++;
716                 }
717         }
718
719         if (argv[0]) {
720                 printf("command not found: %s\n", argv[0]);
721         }
722
723 out_free:
724 /* moved to do_cmd()
725         if (!NT_STATUS_IS_OK(result)) {
726                 printf("result was %s\n", nt_errstr(result));
727         }
728 */
729
730         /* NOTE: popt allocates the whole argv, including the
731          * strings, as a single block.  So a single free is
732          * enough to release it -- we don't free the
733          * individual strings.  rtfm. */
734         free(argv);
735
736         return result;
737 }
738
739
740 /* Main function */
741
742  int main(int argc, char *argv[])
743 {
744         int                     opt;
745         static char             *cmdstr = NULL;
746         const char *server;
747         struct cli_state        *cli = NULL;
748         static char             *opt_ipaddr=NULL;
749         struct cmd_set          **cmd_set;
750         struct sockaddr_storage server_ss;
751         NTSTATUS                nt_status;
752         static int              opt_port = 0;
753         fstring new_workgroup;
754         int result = 0;
755         TALLOC_CTX *frame = talloc_stackframe();
756         uint32_t flags = 0;
757
758         /* make sure the vars that get altered (4th field) are in
759            a fixed location or certain compilers complain */
760         poptContext pc;
761         struct poptOption long_options[] = {
762                 POPT_AUTOHELP
763                 {"command",     'c', POPT_ARG_STRING,   &cmdstr, 'c', "Execute semicolon separated cmds", "COMMANDS"},
764                 {"dest-ip", 'I', POPT_ARG_STRING,   &opt_ipaddr, 'I', "Specify destination IP address", "IP"},
765                 {"port", 'p', POPT_ARG_INT,   &opt_port, 'p', "Specify port number", "PORT"},
766                 POPT_COMMON_SAMBA
767                 POPT_COMMON_CONNECTION
768                 POPT_COMMON_CREDENTIALS
769                 POPT_TABLEEND
770         };
771
772         load_case_tables();
773
774         zero_addr(&server_ss);
775
776         setlinebuf(stdout);
777
778         /* the following functions are part of the Samba debugging
779            facilities.  See lib/debug.c */
780         setup_logging("rpcclient", True);
781
782         /* Parse options */
783
784         pc = poptGetContext("rpcclient", argc, (const char **) argv,
785                             long_options, 0);
786
787         if (argc == 1) {
788                 poptPrintHelp(pc, stderr, 0);
789                 goto done;
790         }
791
792         while((opt = poptGetNextOpt(pc)) != -1) {
793                 switch (opt) {
794
795                 case 'I':
796                         if (!interpret_string_addr(&server_ss,
797                                                 opt_ipaddr,
798                                                 AI_NUMERICHOST)) {
799                                 fprintf(stderr, "%s not a valid IP address\n",
800                                         opt_ipaddr);
801                                 result = 1;
802                                 goto done;
803                         }
804                 }
805         }
806
807         /* Get server as remaining unparsed argument.  Print usage if more
808            than one unparsed argument is present. */
809
810         server = poptGetArg(pc);
811
812         if (!server || poptGetArg(pc)) {
813                 poptPrintHelp(pc, stderr, 0);
814                 result = 1;
815                 goto done;
816         }
817
818         poptFreeContext(pc);
819
820         load_interfaces();
821
822         if (!init_names()) {
823                 result = 1;
824                 goto done;
825         }
826
827         /* save the workgroup...
828
829            FIXME!! do we need to do this for other options as well
830            (or maybe a generic way to keep lp_load() from overwriting
831            everything)?  */
832
833         fstrcpy( new_workgroup, lp_workgroup() );
834
835         /* Load smb.conf file */
836
837         if (!lp_load(get_dyn_CONFIGFILE(),True,False,False,True))
838                 fprintf(stderr, "Can't load %s\n", get_dyn_CONFIGFILE());
839
840         if ( strlen(new_workgroup) != 0 )
841                 set_global_myworkgroup( new_workgroup );
842
843         /*
844          * Get password
845          * from stdin if necessary
846          */
847
848         if (get_cmdline_auth_info_use_machine_account() &&
849             !set_cmdline_auth_info_machine_account_creds()) {
850                 result = 1;
851                 goto done;
852         }
853
854         if (!get_cmdline_auth_info_got_pass()) {
855                 char *pass = getpass("Password:");
856                 if (pass) {
857                         set_cmdline_auth_info_password(pass);
858                 }
859         }
860
861         if ((server[0] == '/' && server[1] == '/') ||
862                         (server[0] == '\\' && server[1] ==  '\\')) {
863                 server += 2;
864         }
865
866         if (get_cmdline_auth_info_use_kerberos()) {
867                 flags |= CLI_FULL_CONNECTION_USE_KERBEROS |
868                          CLI_FULL_CONNECTION_FALLBACK_AFTER_KERBEROS;
869         }
870
871
872         nt_status = cli_full_connection(&cli, global_myname(), server,
873                                         opt_ipaddr ? &server_ss : NULL, opt_port,
874                                         "IPC$", "IPC",
875                                         get_cmdline_auth_info_username(),
876                                         lp_workgroup(),
877                                         get_cmdline_auth_info_password(),
878                                         flags,
879                                         get_cmdline_auth_info_signing_state(),NULL);
880
881         if (!NT_STATUS_IS_OK(nt_status)) {
882                 DEBUG(0,("Cannot connect to server.  Error was %s\n", nt_errstr(nt_status)));
883                 result = 1;
884                 goto done;
885         }
886
887         if (get_cmdline_auth_info_smb_encrypt()) {
888                 nt_status = cli_cm_force_encryption(cli,
889                                         get_cmdline_auth_info_username(),
890                                         get_cmdline_auth_info_password(),
891                                         lp_workgroup(),
892                                         "IPC$");
893                 if (!NT_STATUS_IS_OK(nt_status)) {
894                         result = 1;
895                         goto done;
896                 }
897         }
898
899 #if 0   /* COMMENT OUT FOR TESTING */
900         memset(cmdline_auth_info.password,'X',sizeof(cmdline_auth_info.password));
901 #endif
902
903         /* Load command lists */
904
905         timeout = cli_set_timeout(cli, 10000);
906
907         cmd_set = rpcclient_command_list;
908
909         while(*cmd_set) {
910                 add_command_set(*cmd_set);
911                 add_command_set(separator_command);
912                 cmd_set++;
913         }
914
915         fetch_machine_sid(cli);
916
917        /* Do anything specified with -c */
918         if (cmdstr && cmdstr[0]) {
919                 char    *cmd;
920                 char    *p = cmdstr;
921
922                 result = 0;
923
924                 while((cmd=next_command(&p)) != NULL) {
925                         NTSTATUS cmd_result = process_cmd(cli, cmd);
926                         SAFE_FREE(cmd);
927                         result = NT_STATUS_IS_ERR(cmd_result);
928                 }
929
930                 goto done;
931         }
932
933         /* Loop around accepting commands */
934
935         while(1) {
936                 char *line = NULL;
937
938                 line = smb_readline("rpcclient $> ", NULL, completion_fn);
939
940                 if (line == NULL)
941                         break;
942
943                 if (line[0] != '\n')
944                         process_cmd(cli, line);
945                 SAFE_FREE(line);
946         }
947
948 done:
949         if (cli != NULL) {
950                 cli_shutdown(cli);
951         }
952         TALLOC_FREE(frame);
953         return result;
954 }