libcli/auth/smbencrypt: in E_deshash, use talloc_stackframe instead of "#if _SAMBA_BU...
[Samba.git] / source4 / smbd / server.c
blob8daf5d4c1184a2536a86155ca4bf0ca3f259511a
1 /*
2 Unix SMB/CIFS implementation.
4 Main SMB server routines
6 Copyright (C) Andrew Tridgell 1992-2005
7 Copyright (C) Martin Pool 2002
8 Copyright (C) Jelmer Vernooij 2002
9 Copyright (C) James J Myers 2003 <myersjj@samba.org>
11 This program is free software; you can redistribute it and/or modify
12 it under the terms of the GNU General Public License as published by
13 the Free Software Foundation; either version 3 of the License, or
14 (at your option) any later version.
16 This program is distributed in the hope that it will be useful,
17 but WITHOUT ANY WARRANTY; without even the implied warranty of
18 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
19 GNU General Public License for more details.
21 You should have received a copy of the GNU General Public License
22 along with this program. If not, see <http://www.gnu.org/licenses/>.
25 #include "includes.h"
26 #include "lib/events/events.h"
27 #include "version.h"
28 #include "lib/cmdline/popt_common.h"
29 #include "system/dir.h"
30 #include "system/filesys.h"
31 #include "ntvfs/ntvfs.h"
32 #include "ntptr/ntptr.h"
33 #include "auth/gensec/gensec.h"
34 #include "libcli/auth/schannel.h"
35 #include "smbd/process_model.h"
36 #include "param/secrets.h"
37 #include "smbd/pidfile.h"
38 #include "param/param.h"
39 #include "dsdb/samdb/samdb.h"
40 #include "auth/session.h"
41 #include "lib/messaging/irpc.h"
42 #include "librpc/gen_ndr/ndr_irpc.h"
43 #include "cluster/cluster.h"
44 #include "dynconfig/dynconfig.h"
47 recursively delete a directory tree
49 static void recursive_delete(const char *path)
51 DIR *dir;
52 struct dirent *de;
54 dir = opendir(path);
55 if (!dir) {
56 return;
59 for (de=readdir(dir);de;de=readdir(dir)) {
60 char *fname;
61 struct stat st;
63 if (ISDOT(de->d_name) || ISDOTDOT(de->d_name)) {
64 continue;
67 fname = talloc_asprintf(path, "%s/%s", path, de->d_name);
68 if (stat(fname, &st) != 0) {
69 continue;
71 if (S_ISDIR(st.st_mode)) {
72 recursive_delete(fname);
73 talloc_free(fname);
74 continue;
76 if (unlink(fname) != 0) {
77 DEBUG(0,("Unabled to delete '%s' - %s\n",
78 fname, strerror(errno)));
79 smb_panic("unable to cleanup tmp files");
81 talloc_free(fname);
83 closedir(dir);
87 cleanup temporary files. This is the new alternative to
88 TDB_CLEAR_IF_FIRST. Unfortunately TDB_CLEAR_IF_FIRST is not
89 efficient on unix systems due to the lack of scaling of the byte
90 range locking system. So instead of putting the burden on tdb to
91 cleanup tmp files, this function deletes them.
93 static void cleanup_tmp_files(struct loadparm_context *lp_ctx)
95 char *path;
96 TALLOC_CTX *mem_ctx = talloc_new(NULL);
98 path = smbd_tmp_path(mem_ctx, lp_ctx, NULL);
100 recursive_delete(path);
101 talloc_free(mem_ctx);
104 static void sig_hup(int sig)
106 debug_schedule_reopen_logs();
109 static void sig_term(int sig)
111 #if HAVE_GETPGRP
112 static int done_sigterm;
113 if (done_sigterm == 0 && getpgrp() == getpid()) {
114 DEBUG(0,("SIGTERM: killing children\n"));
115 done_sigterm = 1;
116 kill(-getpgrp(), SIGTERM);
118 #endif
119 DEBUG(0,("Exiting pid %d on SIGTERM\n", (int)getpid()));
120 exit(127);
124 setup signal masks
126 static void setup_signals(void)
128 /* we are never interested in SIGPIPE */
129 BlockSignals(true,SIGPIPE);
131 #if defined(SIGFPE)
132 /* we are never interested in SIGFPE */
133 BlockSignals(true,SIGFPE);
134 #endif
136 /* We are no longer interested in USR1 */
137 BlockSignals(true, SIGUSR1);
139 #if defined(SIGUSR2)
140 /* We are no longer interested in USR2 */
141 BlockSignals(true,SIGUSR2);
142 #endif
144 /* POSIX demands that signals are inherited. If the invoking process has
145 * these signals masked, we will have problems, as we won't receive them. */
146 BlockSignals(false, SIGHUP);
147 BlockSignals(false, SIGTERM);
149 CatchSignal(SIGHUP, sig_hup);
150 CatchSignal(SIGTERM, sig_term);
154 handle io on stdin
156 static void server_stdin_handler(struct tevent_context *event_ctx, struct tevent_fd *fde,
157 uint16_t flags, void *private_data)
159 const char *binary_name = (const char *)private_data;
160 uint8_t c;
161 if (read(0, &c, 1) == 0) {
162 DEBUG(0,("%s: EOF on stdin - terminating\n", binary_name));
163 #if HAVE_GETPGRP
164 if (getpgrp() == getpid()) {
165 DEBUG(0,("Sending SIGTERM from pid %d\n", (int)getpid()));
166 kill(-getpgrp(), SIGTERM);
168 #endif
169 exit(0);
174 die if the user selected maximum runtime is exceeded
176 _NORETURN_ static void max_runtime_handler(struct tevent_context *ev,
177 struct tevent_timer *te,
178 struct timeval t, void *private_data)
180 const char *binary_name = (const char *)private_data;
181 struct timeval tv;
182 struct timezone tz;
183 if (gettimeofday(&tv, &tz) == 0) {
184 DEBUG(0,("%s: maximum runtime exceeded - terminating, current ts: %d\n", binary_name, (int)tv.tv_sec));
185 } else {
186 DEBUG(0,("%s: maximum runtime exceeded - terminating\n", binary_name));
188 exit(0);
192 pre-open the key databases. This saves a lot of time in child
193 processes
195 static void prime_ldb_databases(struct tevent_context *event_ctx)
197 TALLOC_CTX *db_context;
198 db_context = talloc_new(event_ctx);
200 samdb_connect(db_context, event_ctx, cmdline_lp_ctx, system_session(cmdline_lp_ctx), 0);
201 privilege_connect(db_context, cmdline_lp_ctx);
203 /* we deliberately leave these open, which allows them to be
204 * re-used in ldb_wrap_connect() */
209 called when a fatal condition occurs in a child task
211 static NTSTATUS samba_terminate(struct irpc_message *msg,
212 struct samba_terminate *r)
214 DEBUG(0,("samba_terminate: %s\n", r->in.reason));
215 exit(1);
219 setup messaging for the top level samba (parent) task
221 static NTSTATUS setup_parent_messaging(struct tevent_context *event_ctx,
222 struct loadparm_context *lp_ctx)
224 struct imessaging_context *msg;
225 NTSTATUS status;
227 msg = imessaging_init(talloc_autofree_context(),
228 lpcfg_imessaging_path(event_ctx, lp_ctx),
229 cluster_id(0, SAMBA_PARENT_TASKID), event_ctx);
230 NT_STATUS_HAVE_NO_MEMORY(msg);
232 irpc_add_name(msg, "samba");
234 status = IRPC_REGISTER(msg, irpc, SAMBA_TERMINATE,
235 samba_terminate, NULL);
237 return status;
242 show build info
244 static void show_build(void)
246 #define CONFIG_OPTION(n) { #n, dyn_ ## n }
247 struct {
248 const char *name;
249 const char *value;
250 } config_options[] = {
251 CONFIG_OPTION(BINDIR),
252 CONFIG_OPTION(SBINDIR),
253 CONFIG_OPTION(CONFIGFILE),
254 CONFIG_OPTION(NCALRPCDIR),
255 CONFIG_OPTION(LOGFILEBASE),
256 CONFIG_OPTION(LMHOSTSFILE),
257 CONFIG_OPTION(DATADIR),
258 CONFIG_OPTION(MODULESDIR),
259 CONFIG_OPTION(LOCKDIR),
260 CONFIG_OPTION(PIDDIR),
261 CONFIG_OPTION(PRIVATE_DIR),
262 CONFIG_OPTION(SWATDIR),
263 CONFIG_OPTION(CODEPAGEDIR),
264 CONFIG_OPTION(SETUPDIR),
265 CONFIG_OPTION(WINBINDD_SOCKET_DIR),
266 CONFIG_OPTION(WINBINDD_PRIVILEGED_SOCKET_DIR),
267 CONFIG_OPTION(NTP_SIGND_SOCKET_DIR),
268 { NULL, NULL}
270 int i;
272 printf("Samba version: %s\n", SAMBA_VERSION_STRING);
273 printf("Build environment:\n");
274 #ifdef BUILD_SYSTEM
275 printf(" Build host: %s\n", BUILD_SYSTEM);
276 #endif
278 printf("Paths:\n");
279 for (i=0; config_options[i].name; i++) {
280 printf(" %s: %s\n", config_options[i].name, config_options[i].value);
283 exit(0);
287 main server.
289 static int binary_smbd_main(const char *binary_name, int argc, const char *argv[])
291 bool opt_daemon = false;
292 bool opt_interactive = false;
293 int opt;
294 poptContext pc;
295 #define _MODULE_PROTO(init) extern NTSTATUS init(void);
296 STATIC_service_MODULES_PROTO;
297 init_module_fn static_init[] = { STATIC_service_MODULES };
298 init_module_fn *shared_init;
299 struct tevent_context *event_ctx;
300 uint16_t stdin_event_flags;
301 NTSTATUS status;
302 const char *model = "standard";
303 int max_runtime = 0;
304 enum {
305 OPT_DAEMON = 1000,
306 OPT_INTERACTIVE,
307 OPT_PROCESS_MODEL,
308 OPT_SHOW_BUILD
310 struct poptOption long_options[] = {
311 POPT_AUTOHELP
312 {"daemon", 'D', POPT_ARG_NONE, NULL, OPT_DAEMON,
313 "Become a daemon (default)", NULL },
314 {"interactive", 'i', POPT_ARG_NONE, NULL, OPT_INTERACTIVE,
315 "Run interactive (not a daemon)", NULL},
316 {"model", 'M', POPT_ARG_STRING, NULL, OPT_PROCESS_MODEL,
317 "Select process model", "MODEL"},
318 {"maximum-runtime",0, POPT_ARG_INT, &max_runtime, 0,
319 "set maximum runtime of the server process, till autotermination", "seconds"},
320 {"show-build", 'b', POPT_ARG_NONE, NULL, OPT_SHOW_BUILD, "show build info", NULL },
321 POPT_COMMON_SAMBA
322 POPT_COMMON_VERSION
323 { NULL }
326 pc = poptGetContext(binary_name, argc, argv, long_options, 0);
327 while((opt = poptGetNextOpt(pc)) != -1) {
328 switch(opt) {
329 case OPT_DAEMON:
330 opt_daemon = true;
331 break;
332 case OPT_INTERACTIVE:
333 opt_interactive = true;
334 break;
335 case OPT_PROCESS_MODEL:
336 model = poptGetOptArg(pc);
337 break;
338 case OPT_SHOW_BUILD:
339 show_build();
340 break;
341 default:
342 fprintf(stderr, "\nInvalid option %s: %s\n\n",
343 poptBadOption(pc, 0), poptStrerror(opt));
344 poptPrintUsage(pc, stderr, 0);
345 return 1;
349 if (opt_daemon && opt_interactive) {
350 fprintf(stderr,"\nERROR: "
351 "Option -i|--interactive is not allowed together with -D|--daemon\n\n");
352 poptPrintUsage(pc, stderr, 0);
353 return 1;
354 } else if (!opt_interactive) {
355 /* default is --daemon */
356 opt_daemon = true;
359 poptFreeContext(pc);
361 setup_logging(binary_name, opt_interactive?DEBUG_STDOUT:DEBUG_FILE);
362 setup_signals();
364 /* we want total control over the permissions on created files,
365 so set our umask to 0 */
366 umask(0);
368 DEBUG(0,("%s version %s started.\n", binary_name, SAMBA_VERSION_STRING));
369 DEBUGADD(0,("Copyright Andrew Tridgell and the Samba Team 1992-2011\n"));
371 if (sizeof(uint16_t) < 2 || sizeof(uint32_t) < 4 || sizeof(uint64_t) < 8) {
372 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
373 DEBUGADD(0,("sizeof(uint16_t) = %u, sizeof(uint32_t) %u, sizeof(uint64_t) = %u\n",
374 (unsigned int)sizeof(uint16_t), (unsigned int)sizeof(uint32_t), (unsigned int)sizeof(uint64_t)));
375 return 1;
378 if (opt_daemon) {
379 DEBUG(3,("Becoming a daemon.\n"));
380 become_daemon(true, false, false);
383 cleanup_tmp_files(cmdline_lp_ctx);
385 if (!directory_exist(lpcfg_lockdir(cmdline_lp_ctx))) {
386 mkdir(lpcfg_lockdir(cmdline_lp_ctx), 0755);
389 pidfile_create(lpcfg_piddir(cmdline_lp_ctx), binary_name);
391 /* Set up a database to hold a random seed, in case we don't
392 * have /dev/urandom */
393 if (!randseed_init(talloc_autofree_context(), cmdline_lp_ctx)) {
394 return 1;
397 if (lpcfg_server_role(cmdline_lp_ctx) == ROLE_DOMAIN_CONTROLLER) {
398 if (!open_schannel_session_store(talloc_autofree_context(), lpcfg_private_dir(cmdline_lp_ctx))) {
399 DEBUG(0,("ERROR: Samba cannot open schannel store for secured NETLOGON operations.\n"));
400 exit(1);
404 gensec_init(cmdline_lp_ctx); /* FIXME: */
406 ntptr_init(cmdline_lp_ctx); /* FIXME: maybe run this in the initialization function
407 of the spoolss RPC server instead? */
409 ntvfs_init(cmdline_lp_ctx); /* FIXME: maybe run this in the initialization functions
410 of the SMB[,2] server instead? */
412 process_model_init(cmdline_lp_ctx);
414 shared_init = load_samba_modules(NULL, cmdline_lp_ctx, "service");
416 run_init_functions(static_init);
417 run_init_functions(shared_init);
419 talloc_free(shared_init);
421 /* the event context is the top level structure in smbd. Everything else
422 should hang off that */
423 event_ctx = s4_event_context_init(talloc_autofree_context());
425 if (event_ctx == NULL) {
426 DEBUG(0,("Initializing event context failed\n"));
427 return 1;
430 if (opt_interactive) {
431 /* terminate when stdin goes away */
432 stdin_event_flags = TEVENT_FD_READ;
433 } else {
434 /* stay alive forever */
435 stdin_event_flags = 0;
438 /* catch EOF on stdin */
439 #ifdef SIGTTIN
440 signal(SIGTTIN, SIG_IGN);
441 #endif
442 tevent_add_fd(event_ctx, event_ctx, 0, stdin_event_flags,
443 server_stdin_handler,
444 discard_const(binary_name));
446 if (max_runtime) {
447 struct timeval tv;
448 struct timezone tz;
450 if (gettimeofday(&tv, &tz) == 0) {
451 DEBUG(0,("Called with maxruntime %d - current ts %d\n", max_runtime, (int)tv.tv_sec));
452 } else {
453 DEBUG(0,("Called with maxruntime %d\n", max_runtime));
455 tevent_add_timer(event_ctx, event_ctx,
456 timeval_current_ofs(max_runtime, 0),
457 max_runtime_handler,
458 discard_const(binary_name));
461 prime_ldb_databases(event_ctx);
463 status = setup_parent_messaging(event_ctx, cmdline_lp_ctx);
464 if (!NT_STATUS_IS_OK(status)) {
465 DEBUG(0,("Failed to setup parent messaging - %s\n", nt_errstr(status)));
466 return 1;
469 DEBUG(0,("%s: using '%s' process model\n", binary_name, model));
471 status = server_service_startup(event_ctx, cmdline_lp_ctx, model,
472 lpcfg_server_services(cmdline_lp_ctx));
473 if (!NT_STATUS_IS_OK(status)) {
474 DEBUG(0,("Starting Services failed - %s\n", nt_errstr(status)));
475 return 1;
478 /* wait for events - this is where smbd sits for most of its
479 life */
480 tevent_loop_wait(event_ctx);
482 /* as everything hangs off this event context, freeing it
483 should initiate a clean shutdown of all services */
484 talloc_free(event_ctx);
486 return 0;
489 int main(int argc, const char *argv[])
491 return binary_smbd_main("samba", argc, argv);