4 Unix SMB/CIFS implementation.
5 Machine customisation and include handling
6 Copyright (C) Andrew Tridgell 1994-1998
7 Copyright (C) 2002 by Martin Pool <mbp@samba.org>
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 /* work around broken krb5.h on sles9 */
28 #include "../replace/replace.h"
30 /* make sure we have included the correct config.h */
31 #ifndef NO_CONFIG_H /* for some tests */
32 #ifndef CONFIG_H_IS_FROM_SAMBA
33 #error "make sure you have removed all config.h files from standalone builds!"
34 #error "the included config.h isn't from samba!"
36 #endif /* NO_CONFIG_H */
38 /* only do the C++ reserved word check when we compile
39 to include --with-developer since too many systems
40 still have comflicts with their header files (e.g. IRIX 6.4) */
42 #if !defined(__cplusplus) && defined(DEVELOPER)
43 #define class #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
44 #define private #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
45 #define public #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
46 #define protected #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
47 #define template #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
48 #define this #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
49 #define new #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
50 #define delete #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
51 #define friend #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
57 #define DEFAULT_PRINTING PRINT_AIX
58 #define PRINTCAP_NAME "/etc/qconfig"
62 #define DEFAULT_PRINTING PRINT_HPUX
66 #define DEFAULT_PRINTING PRINT_QNX
70 /* on SUNOS4 termios.h conflicts with sys/ioctl.h */
76 * <unistd.h> has to be included before any other to get
77 * large file support on Reliant UNIX. Yes, it's broken :-).
82 #endif /* RELIANTUNIX */
84 #include "system/capability.h"
85 #include "system/dir.h"
86 #include "system/filesys.h"
87 #include "system/glob.h"
88 #include "system/iconv.h"
89 #include "system/locale.h"
90 #include "system/network.h"
91 #include "system/passwd.h"
92 #include "system/readline.h"
93 #include "system/select.h"
94 #include "system/shmem.h"
95 #include "system/syslog.h"
96 #include "system/terminal.h"
97 #include "system/time.h"
98 #include "system/wait.h"
100 #if defined(HAVE_RPC_RPC_H)
102 * Check for AUTH_ERROR define conflict with rpc/rpc.h in prot.h.
104 #if defined(HAVE_SYS_SECURITY_H) && defined(HAVE_RPC_AUTH_ERROR_CONFLICT)
108 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
109 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
110 * them again without checking if they already exsist. This generates
111 * two "Redefinition of macro" warnings for every single .c file that is
114 #if defined(HPUX) && defined(TCP_NODELAY)
117 #if defined(HPUX) && defined(TCP_MAXSEG)
123 #if defined(HAVE_YP_GET_DEFAULT_DOMAIN) && defined(HAVE_SETNETGRENT) && defined(HAVE_ENDNETGRENT) && defined(HAVE_GETNETGRENT)
124 #define HAVE_NETGROUP 1
127 #if defined (HAVE_NETGROUP)
128 #if defined(HAVE_RPCSVC_YP_PROT_H)
130 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
131 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
132 * them again without checking if they already exsist. This generates
133 * two "Redefinition of macro" warnings for every single .c file that is
136 #if defined(HPUX) && defined(TCP_NODELAY)
139 #if defined(HPUX) && defined(TCP_MAXSEG)
142 #include <rpcsvc/yp_prot.h>
144 #if defined(HAVE_RPCSVC_YPCLNT_H)
145 #include <rpcsvc/ypclnt.h>
147 #endif /* HAVE_NETGROUP */
157 #if defined(HPUX) && !defined(_LBER_TYPES_H)
158 /* Define ber_tag_t and ber_int_t for using
159 * HP LDAP-UX Integration products' LDAP libraries.
162 typedef unsigned long ber_tag_t;
163 typedef int ber_int_t;
165 #endif /* defined(HPUX) && !defined(_LBER_TYPES_H) */
167 #define LBER_USE_DER 0x01
174 #define LDAP_CONST const
176 #ifndef LDAP_OPT_SUCCESS
177 #define LDAP_OPT_SUCCESS 0
179 /* Solaris 8 and maybe other LDAP implementations spell this "..._INPROGRESS": */
180 #if defined(LDAP_SASL_BIND_INPROGRESS) && !defined(LDAP_SASL_BIND_IN_PROGRESS)
181 #define LDAP_SASL_BIND_IN_PROGRESS LDAP_SASL_BIND_INPROGRESS
183 /* Solaris 8 defines SSL_LDAP_PORT, not LDAPS_PORT and it only does so if
184 LDAP_SSL is defined - but SSL is not working. We just want the
185 port number! Let's just define LDAPS_PORT correct. */
186 #if !defined(LDAPS_PORT)
187 #define LDAPS_PORT 636
193 #if HAVE_GSSAPI_GSSAPI_H
194 #include <gssapi/gssapi.h>
195 #elif HAVE_GSSAPI_GSSAPI_GENERIC_H
196 #include <gssapi/gssapi_generic.h>
205 #if HAVE_SYS_ATTRIBUTES_H
206 #include <sys/attributes.h>
211 #define ENOATTR ENODATA
213 #define ENOATTR ENOENT
217 /* mutually exclusive (SuSE 8.2) */
218 #if HAVE_ATTR_XATTR_H
219 #include <attr/xattr.h>
220 #elif HAVE_SYS_XATTR_H
221 #include <sys/xattr.h>
228 #ifdef HAVE_SYS_EXTATTR_H
229 #include <sys/extattr.h>
232 #ifdef HAVE_SYS_UIO_H
237 #include <langinfo.h>
241 #include <netgroup.h>
244 #if defined(HAVE_AIO_H) && defined(WITH_AIO)
248 #ifdef WITH_MADVISE_PROTECTED
249 #include <sys/mman.h>
252 /* Special macros that are no-ops except when run under Valgrind on
253 * x86. They've moved a little bit from valgrind 1.0.4 to 1.9.4 */
254 #if HAVE_VALGRIND_MEMCHECK_H
255 /* memcheck.h includes valgrind.h */
256 #include <valgrind/memcheck.h>
257 #elif HAVE_VALGRIND_H
258 #include <valgrind.h>
261 /* If we have --enable-developer and the valgrind header is present,
262 * then we're OK to use it. Set a macro so this logic can be done only
264 #if defined(DEVELOPER)
265 #if (HAVE_VALGRIND_H || HAVE_VALGRIND_VALGRIND_H)
271 /* we support ADS if we want it and have krb5 and ldap libs */
272 #if defined(WITH_ADS) && defined(HAVE_KRB5) && defined(HAVE_LDAP)
277 * Define additional missing types
280 typedef sig_atomic_t SIG_ATOMIC_T;
282 typedef sig_atomic_t volatile SIG_ATOMIC_T;
286 #define uchar unsigned char
290 Samba needs type definitions for int16, int32, uint16 and uint32.
292 Normally these are signed and unsigned 16 and 32 bit integers, but
293 they actually only need to be at least 16 and 32 bits
294 respectively. Thus if your word size is 8 bytes just defining them
295 as signed and unsigned int will work.
299 #define uint8 uint8_t
302 #if !defined(int16) && !defined(HAVE_INT16_FROM_RPC_RPC_H)
303 # define int16 int16_t
304 /* needed to work around compile issue on HP-UX 11.x */
309 * Note we duplicate the size tests in the unsigned
310 * case as int16 may be a typedef from rpc/rpc.h
314 #if !defined(uint16) && !defined(HAVE_UINT16_FROM_RPC_RPC_H)
315 # define uint16 uint16_t
318 #if !defined(int32) && !defined(HAVE_INT32_FROM_RPC_RPC_H)
319 # define int32 int32_t
321 /* needed to work around compile issue on HP-UX 11.x */
327 * Note we duplicate the size tests in the unsigned
328 * case as int32 may be a typedef from rpc/rpc.h
331 #if !defined(uint32) && !defined(HAVE_UINT32_FROM_RPC_RPC_H)
332 # define uint32 uint32_t
336 * check for 8 byte long long
340 # define uint64 uint64_t
344 # define int64 int64_t
349 * Types for devices, inodes and offsets.
353 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)
354 # define SMB_DEV_T dev64_t
356 # define SMB_DEV_T dev_t
360 #ifndef LARGE_SMB_DEV_T
361 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)) || (defined(SIZEOF_DEV_T) && (SIZEOF_DEV_T == 8))
362 # define LARGE_SMB_DEV_T 1
366 #ifdef LARGE_SMB_DEV_T
367 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
368 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(((uint64_t)(IVAL((p),(ofs))))| (((uint64_t)(IVAL((p),(ofs)+4))) << 32)))
370 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),v),SIVAL((p),(ofs)+4,0))
371 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(IVAL((p),(ofs))))
375 * Setup the correctly sized inode type.
379 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)
380 # define SMB_INO_T ino64_t
382 # define SMB_INO_T ino_t
386 #ifndef LARGE_SMB_INO_T
387 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)) || (defined(SIZEOF_INO_T) && (SIZEOF_INO_T == 8))
388 # define LARGE_SMB_INO_T 1
392 #ifdef LARGE_SMB_INO_T
393 #define SINO_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
394 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(((uint64_t)(IVAL(p,ofs)))| (((uint64_t)(IVAL(p,(ofs)+4))) << 32)))
396 #define SINO_T_VAL(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
397 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(IVAL((p),(ofs))))
401 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)
402 # define SMB_OFF_T off64_t
404 # define SMB_OFF_T off_t
408 #define SBIG_UINT(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
409 #define BIG_UINT(p, ofs) ((((uint64_t) IVAL(p,(ofs)+4))<<32)|IVAL(p,ofs))
410 #define IVAL2_TO_SMB_BIG_UINT(buf,off) ( (((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF)) | \
411 (( ((uint64_t)(IVAL((buf),(off+4)))) & ((uint64_t)0xFFFFFFFF) ) << 32 ) )
414 /* this should really be a 64 bit type if possible */
415 typedef uint64_t br_off;
417 #define SMB_OFF_T_BITS (sizeof(SMB_OFF_T)*8)
420 * Set the define that tells us if we can do 64 bit
424 #ifndef LARGE_SMB_OFF_T
425 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)) || (defined(SIZEOF_OFF_T) && (SIZEOF_OFF_T == 8))
426 # define LARGE_SMB_OFF_T 1
430 #ifdef LARGE_SMB_OFF_T
431 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
432 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,(v)&0xFFFFFFFF), SIVAL(p,ofs,(v)>>32))
433 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF) )))
435 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
436 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,v),SIVAL(p,ofs,0))
437 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint32)(IVAL((buf),(off)))) & 0xFFFFFFFF )))
440 #ifndef HAVE_BLKSIZE_T
441 /* This is mainly for HP/UX which defines st_blksize as long */
442 typedef long blksize_t;
445 #ifndef HAVE_BLKCNT_T
446 /* This is mainly for HP/UX which doesn't have blkcnt_t */
447 typedef long blkcnt_t;
451 * Type for stat structure.
463 struct timespec st_ex_atime;
464 struct timespec st_ex_mtime;
465 struct timespec st_ex_ctime;
466 struct timespec st_ex_btime; /* birthtime */
467 /* Is birthtime real, or was it calculated ? */
468 bool st_ex_calculated_birthtime;
469 blksize_t st_ex_blksize;
470 blkcnt_t st_ex_blocks;
472 uint32_t st_ex_flags;
476 * Add space for VFS internal extensions. The initial user of this
477 * would be the onefs modules, passing the snapid from the stat calls
478 * to the file_id_create call. Maybe we'll have to expand this later,
479 * but the core of Samba should never look at this field.
481 uint64_t vfs_private;
484 typedef struct stat_ex SMB_STRUCT_STAT;
487 * Type for dirent structure.
490 #ifndef SMB_STRUCT_DIRENT
491 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIRENT64)
492 # define SMB_STRUCT_DIRENT struct dirent64
494 # define SMB_STRUCT_DIRENT struct dirent
499 * Type for DIR structure.
502 #ifndef SMB_STRUCT_DIR
503 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIR64)
504 # define SMB_STRUCT_DIR DIR64
506 # define SMB_STRUCT_DIR DIR
511 * Defines for 64 bit fcntl locks.
514 #ifndef SMB_STRUCT_FLOCK
515 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
516 # define SMB_STRUCT_FLOCK struct flock64
518 # define SMB_STRUCT_FLOCK struct flock
523 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
524 # define SMB_F_SETLKW F_SETLKW64
526 # define SMB_F_SETLKW F_SETLKW
531 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
532 # define SMB_F_SETLK F_SETLK64
534 # define SMB_F_SETLK F_SETLK
539 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
540 # define SMB_F_GETLK F_GETLK64
542 # define SMB_F_GETLK F_GETLK
547 * Type for aiocb structure.
550 #ifndef SMB_STRUCT_AIOCB
551 # if defined(WITH_AIO)
552 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_AIOCB64)
553 # define SMB_STRUCT_AIOCB struct aiocb64
555 # define SMB_STRUCT_AIOCB struct aiocb
558 # define SMB_STRUCT_AIOCB int /* AIO not being used but we still need the define.... */
562 #ifndef HAVE_STRUCT_TIMESPEC
564 time_t tv_sec; /* Seconds. */
565 long tv_nsec; /* Nanoseconds. */
569 enum timestamp_set_resolution {
570 TIMESTAMP_SET_SECONDS = 0,
572 TIMESTAMP_SET_NT_OR_BETTER
575 #ifdef HAVE_BROKEN_GETGROUPS
582 #define NGROUPS_MAX 32 /* Guess... */
585 /* Our own fstrings */
594 | The infamous pstring |
601 _________)/\\_//(\/(/\)/\//\/\///|_)_______
605 #define FSTRING_LEN 256
606 typedef char fstring[FSTRING_LEN];
609 /* Samba 3 doesn't use iconv_convenience: */
610 extern void *cmdline_lp_ctx;
611 struct smb_iconv_convenience *lp_iconv_convenience(void *lp_ctx);
613 /* Lists, trees, caching, database... */
614 #include "../lib/util/util.h"
615 #include "../lib/util/util_net.h"
616 #include "../lib/util/xfile.h"
617 #include "../lib/util/memory.h"
618 #include "../lib/util/attr.h"
620 #include "../lib/util/dlinklist.h"
622 #include "util_tdb.h"
627 #include "../lib/util/tevent_unix.h"
628 #include "../lib/util/tevent_ntstatus.h"
629 #include "../lib/tsocket/tsocket.h"
631 #include "../lib/util/data_blob.h"
632 #include "../lib/util/time.h"
633 #include "../lib/util/asn1.h"
637 #include "interfaces.h"
639 #include "../libcli/util/error.h"
641 #include "../lib/util/charset/charset.h"
642 #include "dynconfig.h"
643 #include "util_getent.h"
644 #include "debugparse.h"
645 #include "privileges.h"
646 #include "messages.h"
648 #include "smb_perfcount.h"
649 #include "smb_signing.h"
651 #include "nameserv.h"
653 #include "../lib/util/byteorder.h"
654 #include "privileges.h"
655 #include "rpc_misc.h"
657 #include "../librpc/gen_ndr/schannel.h"
660 #include "rpc_secdes.h"
661 #include "../libgpo/gpo.h"
662 #include "authdata.h"
665 #include "../lib/crypto/md5.h"
666 #include "../lib/crypto/md4.h"
667 #include "../lib/crypto/arcfour.h"
668 #include "../lib/crypto/crc32.h"
669 #include "../lib/crypto/hmacmd5.h"
672 #include "ntdomain.h"
673 #include "reg_objects.h"
675 #include "librpc/gen_ndr/perfcount.h"
676 #include "librpc/gen_ndr/notify.h"
677 #include "librpc/gen_ndr/xattr.h"
678 #include "librpc/gen_ndr/messaging.h"
679 #include "librpc/gen_ndr/ndr_nbt.h"
680 #include "librpc/rpc/dcerpc.h"
681 #include "nt_printing.h"
689 #include "nsswitch/winbind_client.h"
692 #include "ctdbd_conn.h"
693 #include "../lib/util/talloc_stack.h"
694 #include "memcache.h"
695 #include "async_smb.h"
696 #include "../lib/async_req/async_sock.h"
697 #include "talloc_dict.h"
698 #include "services.h"
699 #include "eventlog.h"
700 #include "../lib/util/smb_threads.h"
701 #include "../lib/util/smb_threads_internal.h"
703 #include "tldap_util.h"
705 #include "lib/smbconf/smbconf.h"
706 #include "lib/smbconf/smbconf_init.h"
707 #include "lib/smbconf/smbconf_reg.h"
708 #include "lib/smbconf/smbconf_txt.h"
710 /* Defines for wisXXX functions. */
711 #define UNI_UPPER 0x1
712 #define UNI_LOWER 0x2
713 #define UNI_DIGIT 0x4
714 #define UNI_XDIGIT 0x8
715 #define UNI_SPACE 0x10
717 #include "nsswitch/winbind_nss.h"
719 /* forward declaration from printing.h to get around
720 header file dependencies */
724 /* forward declarations from smbldap.c */
729 * Reasons for cache flush.
732 enum flush_reason_enum {
737 OPLOCK_RELEASE_FLUSH,
741 /* NUM_FLUSH_REASONS must remain the last value in the enumeration. */
744 #include "nss_info.h"
745 #include "modules/nfs4_acls.h"
746 #include "nsswitch/libwbclient/wbclient.h"
748 /***** prototypes *****/
752 #include "libcli/security/secace.h"
753 #include "libcli/security/secacl.h"
754 #include "libcli/security/security_descriptor.h"
756 #if defined(HAVE_POSIX_ACLS)
757 #include "modules/vfs_posixacl.h"
760 #if defined(HAVE_TRU64_ACLS)
761 #include "modules/vfs_tru64acl.h"
764 #if defined(HAVE_SOLARIS_ACLS) || defined(HAVE_UNIXWARE_ACLS)
765 #include "modules/vfs_solarisacl.h"
768 #if defined(HAVE_HPUX_ACLS)
769 #include "modules/vfs_hpuxacl.h"
772 #if defined(HAVE_IRIX_ACLS)
773 #include "modules/vfs_irixacl.h"
777 #include "ads_protos.h"
780 /* We need this after proto.h to reference GetTimeOfDay(). */
781 #include "smbprofile.h"
783 /* String routines */
786 #include "safe_string.h"
788 /* prototypes from lib/util_transfer_file.c */
789 #include "transfer_file.h"
791 #ifndef DEFAULT_PRINTING
793 #define DEFAULT_PRINTING PRINT_CUPS
794 #define PRINTCAP_NAME "cups"
796 #define DEFAULT_PRINTING PRINT_SYSV
797 #define PRINTCAP_NAME "lpstat"
799 #define DEFAULT_PRINTING PRINT_BSD
800 #define PRINTCAP_NAME "/etc/printcap"
804 #ifndef PRINTCAP_NAME
805 #define PRINTCAP_NAME "/etc/printcap"
809 #define SIGCLD SIGCHLD
813 #define SIGRTMIN NSIG
820 #if defined(HAVE_PUTPRPWNAM) && defined(AUTH_CLEARTEXT_SEG_CHARS)
821 #define OSF1_ENH_SEC 1
824 #ifndef ALLOW_CHANGE_PASSWORD
825 #if (defined(HAVE_TERMIOS_H) && defined(HAVE_DUP2) && defined(HAVE_SETSID))
826 #define ALLOW_CHANGE_PASSWORD 1
830 /* what is the longest significant password available on your system?
831 Knowing this speeds up password searches a lot */
832 #ifndef PASSWORD_LENGTH
833 #define PASSWORD_LENGTH 8
840 #if defined(HAVE_CRYPT16) && defined(HAVE_GETAUTHUID)
841 #define ULTRIX_AUTH 1
844 /* yuck, I'd like a better way of doing this */
845 #define DIRP_SIZE (256 + 32)
847 /* default socket options. Dave Miller thinks we should default to TCP_NODELAY
848 given the socket IO pattern that Samba uses */
850 #define DEFAULT_SOCKET_OPTIONS "TCP_NODELAY"
852 #define DEFAULT_SOCKET_OPTIONS ""
855 /* dmalloc -- free heap debugger (dmalloc.org). This should be near
856 * the *bottom* of include files so as not to conflict. */
857 #ifdef ENABLE_DMALLOC
858 # include <dmalloc.h>
862 #if HAVE_KERNEL_SHARE_MODES
864 #define LOCK_MAND 32 /* This is a mandatory flock */
865 #define LOCK_READ 64 /* ... Which allows concurrent read operations */
866 #define LOCK_WRITE 128 /* ... Which allows concurrent write operations */
867 #define LOCK_RW 192 /* ... Which allows concurrent read & write ops */
871 extern int DEBUGLEVEL;
873 #define MAX_SEC_CTX_DEPTH 8 /* Maximum number of security contexts */
876 #ifdef GLIBC_HACK_FCNTL64
877 /* this is a gross hack. 64 bit locking is completely screwed up on
878 i386 Linux in glibc 2.1.95 (which ships with RedHat 7.0). This hack
879 "fixes" the problem with the current 2.4.0test kernels
881 #define fcntl fcntl64
889 /* needed for some systems without iconv. Doesn't really matter
890 what error code we use */
895 /* add varargs prototypes with printf checking */
897 int fdprintf(int , const char *, ...) PRINTF_ATTRIBUTE(2,3);
899 int d_printf(const char *, ...) PRINTF_ATTRIBUTE(1,2);
901 int d_fprintf(FILE *f, const char *, ...) PRINTF_ATTRIBUTE(2,3);
904 void sys_adminlog(int priority, const char *format_str, ...) PRINTF_ATTRIBUTE(2,3);
907 int fstr_sprintf(fstring s, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
909 int d_vfprintf(FILE *f, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
911 int smb_xvasprintf(char **ptr, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
913 int asprintf_strupper_m(char **strp, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
914 char *talloc_asprintf_strupper_m(TALLOC_CTX *t, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
917 * Veritas File System. Often in addition to native.
920 #if defined(HAVE_SYS_FS_VX_QUOTA_H)
925 #define XATTR_CREATE 0x1 /* set value, fail if attr already exists */
928 #ifndef XATTR_REPLACE
929 #define XATTR_REPLACE 0x2 /* set value, fail if attr does not exist */
933 * This should be under the HAVE_KRB5 flag but since they're used
934 * in lp_kerberos_method(), they ned to be always available
936 #define KERBEROS_VERIFY_SECRETS 0
937 #define KERBEROS_VERIFY_SYSTEM_KEYTAB 1
938 #define KERBEROS_VERIFY_DEDICATED_KEYTAB 2
939 #define KERBEROS_VERIFY_SECRETS_AND_KEYTAB 3
942 * If you add any entries to the above, please modify the below expressions
943 * so they remain accurate.
945 #define USE_KERBEROS_KEYTAB (KERBEROS_VERIFY_SECRETS != lp_kerberos_method())
946 #define USE_SYSTEM_KEYTAB \
947 ((KERBEROS_VERIFY_SECRETS_AND_KEYTAB == lp_kerberos_method()) || \
948 (KERBEROS_VERIFY_SYSTEM_KEYTAB == lp_kerberos_method()))
950 #if defined(HAVE_KRB5)
951 krb5_error_code smb_krb5_parse_name(krb5_context context,
952 const char *name, /* in unix charset */
953 krb5_principal *principal);
955 krb5_error_code smb_krb5_unparse_name(TALLOC_CTX *mem_ctx,
956 krb5_context context,
957 krb5_const_principal principal,
960 #ifndef HAVE_KRB5_SET_REAL_TIME
961 krb5_error_code krb5_set_real_time(krb5_context context, int32_t seconds, int32_t microseconds);
964 krb5_error_code krb5_set_default_tgs_ktypes(krb5_context ctx, const krb5_enctype *enc);
966 #if defined(HAVE_KRB5_AUTH_CON_SETKEY) && !defined(HAVE_KRB5_AUTH_CON_SETUSERUSERKEY)
967 krb5_error_code krb5_auth_con_setuseruserkey(krb5_context context, krb5_auth_context auth_context, krb5_keyblock *keyblock);
970 #ifndef HAVE_KRB5_FREE_UNPARSED_NAME
971 void krb5_free_unparsed_name(krb5_context ctx, char *val);
974 /* Stub out initialize_krb5_error_table since it is not present in all
975 * Kerberos implementations. If it's not present, it's not necessary to
978 #ifndef HAVE_INITIALIZE_KRB5_ERROR_TABLE
979 #define initialize_krb5_error_table()
982 /* Samba wrapper function for krb5 functionality. */
983 bool setup_kaddr( krb5_address *pkaddr, struct sockaddr_storage *paddr);
984 int create_kerberos_key_from_string(krb5_context context, krb5_principal host_princ, krb5_data *password, krb5_keyblock *key, krb5_enctype enctype, bool no_salt);
985 bool get_auth_data_from_tkt(TALLOC_CTX *mem_ctx, DATA_BLOB *auth_data, krb5_ticket *tkt);
986 krb5_const_principal get_principal_from_tkt(krb5_ticket *tkt);
987 krb5_error_code smb_krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
988 #if defined(HAVE_KRB5_LOCATE_KDC)
989 krb5_error_code krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
991 krb5_error_code get_kerberos_allowed_etypes(krb5_context context, krb5_enctype **enctypes);
992 bool get_krb5_smb_session_key(krb5_context context, krb5_auth_context auth_context, DATA_BLOB *session_key, bool remote);
993 krb5_error_code smb_krb5_kt_free_entry(krb5_context context, krb5_keytab_entry *kt_entry);
994 krb5_principal kerberos_fetch_salt_princ_for_host_princ(krb5_context context, krb5_principal host_princ, int enctype);
995 void kerberos_set_creds_enctype(krb5_creds *pcreds, int enctype);
996 bool kerberos_compatible_enctypes(krb5_context context, krb5_enctype enctype1, krb5_enctype enctype2);
997 void kerberos_free_data_contents(krb5_context context, krb5_data *pdata);
998 NTSTATUS decode_pac_data(TALLOC_CTX *mem_ctx,
999 DATA_BLOB *pac_data_blob,
1000 krb5_context context,
1001 krb5_keyblock *service_keyblock,
1002 krb5_const_principal client_principal,
1003 time_t tgs_authtime,
1004 struct PAC_DATA **pac_data_out);
1005 void smb_krb5_checksum_from_pac_sig(krb5_checksum *cksum,
1006 struct PAC_SIGNATURE_DATA *sig);
1007 krb5_error_code smb_krb5_verify_checksum(krb5_context context,
1008 const krb5_keyblock *keyblock,
1009 krb5_keyusage usage,
1010 krb5_checksum *cksum,
1013 time_t get_authtime_from_tkt(krb5_ticket *tkt);
1014 void smb_krb5_free_ap_req(krb5_context context,
1015 krb5_ap_req *ap_req);
1016 krb5_error_code smb_krb5_get_keyinfo_from_ap_req(krb5_context context,
1017 const krb5_data *inbuf,
1019 krb5_enctype *enctype);
1020 krb5_error_code krb5_rd_req_return_keyblock_from_keytab(krb5_context context,
1021 krb5_auth_context *auth_context,
1022 const krb5_data *inbuf,
1023 krb5_const_principal server,
1025 krb5_flags *ap_req_options,
1026 krb5_ticket **ticket,
1027 krb5_keyblock **keyblock);
1028 krb5_error_code smb_krb5_parse_name_norealm(krb5_context context,
1030 krb5_principal *principal);
1031 bool smb_krb5_principal_compare_any_realm(krb5_context context,
1032 krb5_const_principal princ1,
1033 krb5_const_principal princ2);
1034 int cli_krb5_get_ticket(const char *principal, time_t time_offset,
1035 DATA_BLOB *ticket, DATA_BLOB *session_key_krb5,
1036 uint32 extra_ap_opts, const char *ccname,
1038 const char *impersonate_princ_s);
1039 krb5_error_code smb_krb5_renew_ticket(const char *ccache_string, const char *client_string, const char *service_string, time_t *expire_time);
1040 krb5_error_code kpasswd_err_to_krb5_err(krb5_error_code res_code);
1041 krb5_error_code smb_krb5_gen_netbios_krb5_address(smb_krb5_addresses **kerb_addr);
1042 krb5_error_code smb_krb5_free_addresses(krb5_context context, smb_krb5_addresses *addr);
1043 NTSTATUS krb5_to_nt_status(krb5_error_code kerberos_error);
1044 krb5_error_code nt_status_to_krb5(NTSTATUS nt_status);
1045 void smb_krb5_free_error(krb5_context context, krb5_error *krberror);
1046 krb5_error_code handle_krberror_packet(krb5_context context,
1049 void smb_krb5_get_init_creds_opt_free(krb5_context context,
1050 krb5_get_init_creds_opt *opt);
1051 krb5_error_code smb_krb5_get_init_creds_opt_alloc(krb5_context context,
1052 krb5_get_init_creds_opt **opt);
1053 krb5_error_code smb_krb5_mk_error(krb5_context context,
1054 krb5_error_code error_code,
1055 const krb5_principal server,
1057 krb5_enctype smb_get_enctype_from_kt_entry(krb5_keytab_entry *kt_entry);
1058 krb5_error_code smb_krb5_enctype_to_string(krb5_context context,
1059 krb5_enctype enctype,
1061 krb5_error_code smb_krb5_open_keytab(krb5_context context,
1062 const char *keytab_name,
1064 krb5_keytab *keytab);
1065 krb5_error_code smb_krb5_keytab_name(TALLOC_CTX *mem_ctx,
1066 krb5_context context,
1068 const char **keytab_name);
1069 int smb_krb5_kt_add_entry_ext(krb5_context context,
1072 const char *princ_s,
1073 krb5_enctype *enctypes,
1076 bool keep_old_entries);
1077 krb5_error_code smb_krb5_get_credentials(krb5_context context,
1080 krb5_principal server,
1081 krb5_principal impersonate_princ,
1082 krb5_creds **out_creds);
1083 krb5_error_code smb_krb5_get_creds(const char *server_s,
1086 const char *impersonate_princ_s,
1087 krb5_creds **creds_p);
1088 char *smb_krb5_principal_get_realm(krb5_context context,
1089 krb5_principal principal);
1090 #endif /* HAVE_KRB5 */
1095 /* function declarations not included in proto.h */
1096 LDAP *ldap_open_with_timeout(const char *server, int port, unsigned int to);
1098 #endif /* HAVE_LDAP */
1100 #if defined(HAVE_LINUX_READAHEAD) && ! defined(HAVE_READAHEAD_DECL)
1101 ssize_t readahead(int fd, off64_t offset, size_t count);
1107 #define TRUE __ERROR__XX__DONT_USE_TRUE
1112 #define FALSE __ERROR__XX__DONT_USE_FALSE
1114 /* If we have blacklisted mmap() try to avoid using it accidentally by
1115 undefining the HAVE_MMAP symbol. */
1117 #ifdef MMAP_BLACKLIST
1121 #ifndef CONST_DISCARD
1122 #define CONST_DISCARD(type, ptr) ((type) ((void *) (ptr)))
1125 void smb_panic( const char *why ) _NORETURN_;
1126 void dump_core(void) _NORETURN_;
1127 void exit_server(const char *const reason) _NORETURN_;
1128 void exit_server_cleanly(const char *const reason) _NORETURN_;
1129 void exit_server_fault(void) _NORETURN_;
1132 #include "libnscd.h"
1135 #if defined(HAVE_IPV6)
1136 void in6_addr_to_sockaddr_storage(struct sockaddr_storage *ss,
1137 struct in6_addr ip);
1140 /* samba3 doesn't use uwrap yet */
1141 #define uwrap_enabled() 0
1143 #endif /* _INCLUDES_H */