2 Unix SMB/CIFS implementation.
4 Copyright (C) Volker Lendecke 2004
5 Copyright (C) Stefan Metzmacher 2004
7 This program is free software; you can redistribute it and/or modify
8 it under the terms of the GNU General Public License as published by
9 the Free Software Foundation; either version 3 of the License, or
10 (at your option) any later version.
12 This program is distributed in the hope that it will be useful,
13 but WITHOUT ANY WARRANTY; without even the implied warranty of
14 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 GNU General Public License for more details.
17 You should have received a copy of the GNU General Public License
18 along with this program. If not, see <http://www.gnu.org/licenses/>.
21 #include "libcli/ldap/libcli_ldap.h"
22 #include "lib/socket/socket.h"
23 #include "lib/stream/packet.h"
24 #include "system/network.h"
25 #include "lib/param/loadparm.h"
27 enum ldap_server_referral_scheme
{
28 LDAP_REFERRAL_SCHEME_LDAP
,
29 LDAP_REFERRAL_SCHEME_LDAPS
32 struct ldapsrv_connection
{
33 struct ldapsrv_connection
*next
, *prev
;
34 struct loadparm_context
*lp_ctx
;
35 struct stream_connection
*connection
;
36 struct gensec_security
*gensec
;
37 struct auth_session_info
*session_info
;
38 struct ldapsrv_service
*service
;
39 struct cli_credentials
*server_credentials
;
40 struct ldb_context
*ldb
;
43 struct tevent_queue
*send_queue
;
44 struct tevent_req
*read_req
;
45 struct tstream_context
*raw
;
46 struct tstream_context
*tls
;
47 struct tstream_context
*sasl
;
48 struct tstream_context
*active
;
53 enum ldap_server_require_strong_auth require_strong_auth
;
55 enum ldap_server_referral_scheme referral_scheme
;
61 int max_notifications
;
63 struct timeval endtime
;
64 struct timeval expire_time
; /* Krb5 ticket expiry */
68 struct tevent_req
*active_call
;
69 struct tevent_req
*deferred_expire_disconnect
;
71 struct ldapsrv_call
*pending_calls
;
75 struct ldapsrv_call
*prev
, *next
;
76 struct ldapsrv_connection
*conn
;
77 struct ldap_message
*request
;
78 struct ldapsrv_reply
{
79 struct ldapsrv_reply
*prev
, *next
;
80 struct ldap_message
*msg
;
83 struct iovec
*out_iov
;
87 struct tevent_req
*(*wait_send
)(TALLOC_CTX
*mem_ctx
,
88 struct tevent_context
*ev
,
90 NTSTATUS (*wait_recv
)(struct tevent_req
*req
);
93 struct tevent_req
*(*postprocess_send
)(TALLOC_CTX
*mem_ctx
,
94 struct tevent_context
*ev
,
96 NTSTATUS (*postprocess_recv
)(struct tevent_req
*req
);
97 void *postprocess_private
;
106 * This matches the previous implicit size limit via talloc's maximum
109 #define LDAP_SERVER_MAX_REPLY_SIZE ((size_t)(256 * 1024 * 1024))
112 * Start writing to the network before we hit this size
114 #define LDAP_SERVER_MAX_CHUNK_SIZE ((size_t)(25 * 1024 * 1024))
116 struct ldapsrv_service
{
117 struct tstream_tls_params
*tls_params
;
118 struct task_server
*task
;
119 struct tevent_queue
*call_queue
;
120 struct ldapsrv_connection
*connections
;
123 struct tevent_req
*retry
;
126 struct ldb_context
*sam_ctx
;
129 #include "ldap_server/proto.h"