4 Unix SMB/CIFS implementation.
5 Machine customisation and include handling
6 Copyright (C) Andrew Tridgell 1994-1998
7 Copyright (C) 2002 by Martin Pool <mbp@samba.org>
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 /* work around broken krb5.h on sles9 */
28 #include "../replace/replace.h"
30 /* make sure we have included the correct config.h */
31 #ifndef NO_CONFIG_H /* for some tests */
32 #ifndef CONFIG_H_IS_FROM_SAMBA
33 #error "make sure you have removed all config.h files from standalone builds!"
34 #error "the included config.h isn't from samba!"
36 #endif /* NO_CONFIG_H */
38 /* only do the C++ reserved word check when we compile
39 to include --with-developer since too many systems
40 still have comflicts with their header files (e.g. IRIX 6.4) */
42 #if !defined(__cplusplus) && defined(DEVELOPER)
43 #define class #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
44 #define private #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
45 #define public #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
46 #define protected #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
47 #define template #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
48 #define this #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
49 #define new #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
50 #define delete #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
51 #define friend #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
57 #define DEFAULT_PRINTING PRINT_AIX
58 #define PRINTCAP_NAME "/etc/qconfig"
62 #define DEFAULT_PRINTING PRINT_HPUX
66 #define DEFAULT_PRINTING PRINT_QNX
70 /* on SUNOS4 termios.h conflicts with sys/ioctl.h */
76 * <unistd.h> has to be included before any other to get
77 * large file support on Reliant UNIX. Yes, it's broken :-).
82 #endif /* RELIANTUNIX */
84 #include "system/capability.h"
85 #include "system/dir.h"
86 #include "system/filesys.h"
87 #include "system/glob.h"
88 #include "system/iconv.h"
89 #include "system/locale.h"
90 #include "system/network.h"
91 #include "system/passwd.h"
92 #include "system/readline.h"
93 #include "system/select.h"
94 #include "system/shmem.h"
95 #include "system/syslog.h"
96 #include "system/terminal.h"
97 #include "system/time.h"
98 #include "system/wait.h"
100 #if defined(HAVE_RPC_RPC_H)
102 * Check for AUTH_ERROR define conflict with rpc/rpc.h in prot.h.
104 #if defined(HAVE_SYS_SECURITY_H) && defined(HAVE_RPC_AUTH_ERROR_CONFLICT)
108 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
109 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
110 * them again without checking if they already exsist. This generates
111 * two "Redefinition of macro" warnings for every single .c file that is
114 #if defined(HPUX) && defined(TCP_NODELAY)
117 #if defined(HPUX) && defined(TCP_MAXSEG)
123 #if defined(HAVE_YP_GET_DEFAULT_DOMAIN) && defined(HAVE_SETNETGRENT) && defined(HAVE_ENDNETGRENT) && defined(HAVE_GETNETGRENT)
124 #define HAVE_NETGROUP 1
127 #if defined (HAVE_NETGROUP)
128 #if defined(HAVE_RPCSVC_YP_PROT_H)
130 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
131 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
132 * them again without checking if they already exsist. This generates
133 * two "Redefinition of macro" warnings for every single .c file that is
136 #if defined(HPUX) && defined(TCP_NODELAY)
139 #if defined(HPUX) && defined(TCP_MAXSEG)
142 #include <rpcsvc/yp_prot.h>
144 #if defined(HAVE_RPCSVC_YPCLNT_H)
145 #include <rpcsvc/ypclnt.h>
147 #endif /* HAVE_NETGROUP */
157 #if defined(HPUX) && !defined(_LBER_TYPES_H)
158 /* Define ber_tag_t and ber_int_t for using
159 * HP LDAP-UX Integration products' LDAP libraries.
162 typedef unsigned long ber_tag_t
;
163 typedef int ber_int_t
;
165 #endif /* defined(HPUX) && !defined(_LBER_TYPES_H) */
167 #define LBER_USE_DER 0x01
174 #define LDAP_CONST const
176 #ifndef LDAP_OPT_SUCCESS
177 #define LDAP_OPT_SUCCESS 0
179 /* Solaris 8 and maybe other LDAP implementations spell this "..._INPROGRESS": */
180 #if defined(LDAP_SASL_BIND_INPROGRESS) && !defined(LDAP_SASL_BIND_IN_PROGRESS)
181 #define LDAP_SASL_BIND_IN_PROGRESS LDAP_SASL_BIND_INPROGRESS
183 /* Solaris 8 defines SSL_LDAP_PORT, not LDAPS_PORT and it only does so if
184 LDAP_SSL is defined - but SSL is not working. We just want the
185 port number! Let's just define LDAPS_PORT correct. */
186 #if !defined(LDAPS_PORT)
187 #define LDAPS_PORT 636
193 #if HAVE_GSSAPI_GSSAPI_H
194 #include <gssapi/gssapi.h>
195 #elif HAVE_GSSAPI_GSSAPI_GENERIC_H
196 #include <gssapi/gssapi_generic.h>
205 #if HAVE_SYS_ATTRIBUTES_H
206 #include <sys/attributes.h>
211 #define ENOATTR ENODATA
213 #define ENOATTR ENOENT
217 /* mutually exclusive (SuSE 8.2) */
218 #if HAVE_ATTR_XATTR_H
219 #include <attr/xattr.h>
220 #elif HAVE_SYS_XATTR_H
221 #include <sys/xattr.h>
228 #ifdef HAVE_SYS_EXTATTR_H
229 #include <sys/extattr.h>
232 #ifdef HAVE_SYS_UIO_H
237 #include <langinfo.h>
241 #include <netgroup.h>
244 #if defined(HAVE_AIO_H) && defined(WITH_AIO)
248 #ifdef WITH_MADVISE_PROTECTED
249 #include <sys/mman.h>
252 /* Special macros that are no-ops except when run under Valgrind on
253 * x86. They've moved a little bit from valgrind 1.0.4 to 1.9.4 */
254 #if HAVE_VALGRIND_MEMCHECK_H
255 /* memcheck.h includes valgrind.h */
256 #include <valgrind/memcheck.h>
257 #elif HAVE_VALGRIND_H
258 #include <valgrind.h>
261 /* If we have --enable-developer and the valgrind header is present,
262 * then we're OK to use it. Set a macro so this logic can be done only
264 #if defined(DEVELOPER)
265 #if (HAVE_VALGRIND_H || HAVE_VALGRIND_VALGRIND_H)
271 /* we support ADS if we want it and have krb5 and ldap libs */
272 #if defined(WITH_ADS) && defined(HAVE_KRB5) && defined(HAVE_LDAP)
277 * Define additional missing types
280 typedef sig_atomic_t SIG_ATOMIC_T
;
282 typedef sig_atomic_t volatile SIG_ATOMIC_T
;
286 #define uchar unsigned char
290 Samba needs type definitions for int16, int32, uint16 and uint32.
292 Normally these are signed and unsigned 16 and 32 bit integers, but
293 they actually only need to be at least 16 and 32 bits
294 respectively. Thus if your word size is 8 bytes just defining them
295 as signed and unsigned int will work.
299 #define uint8 uint8_t
302 #if !defined(int16) && !defined(HAVE_INT16_FROM_RPC_RPC_H)
303 # define int16 int16_t
304 /* needed to work around compile issue on HP-UX 11.x */
309 * Note we duplicate the size tests in the unsigned
310 * case as int16 may be a typedef from rpc/rpc.h
314 #if !defined(uint16) && !defined(HAVE_UINT16_FROM_RPC_RPC_H)
315 # define uint16 uint16_t
318 #if !defined(int32) && !defined(HAVE_INT32_FROM_RPC_RPC_H)
319 # define int32 int32_t
321 /* needed to work around compile issue on HP-UX 11.x */
327 * Note we duplicate the size tests in the unsigned
328 * case as int32 may be a typedef from rpc/rpc.h
331 #if !defined(uint32) && !defined(HAVE_UINT32_FROM_RPC_RPC_H)
332 # define uint32 uint32_t
336 * check for 8 byte long long
340 # define uint64 uint64_t
344 # define int64 int64_t
349 * Types for devices, inodes and offsets.
353 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)
354 # define SMB_DEV_T dev64_t
356 # define SMB_DEV_T dev_t
360 #ifndef LARGE_SMB_DEV_T
361 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)) || (defined(SIZEOF_DEV_T) && (SIZEOF_DEV_T == 8))
362 # define LARGE_SMB_DEV_T 1
366 #ifdef LARGE_SMB_DEV_T
367 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
368 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(((uint64_t)(IVAL((p),(ofs))))| (((uint64_t)(IVAL((p),(ofs)+4))) << 32)))
370 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),v),SIVAL((p),(ofs)+4,0))
371 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(IVAL((p),(ofs))))
375 * Setup the correctly sized inode type.
379 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)
380 # define SMB_INO_T ino64_t
382 # define SMB_INO_T ino_t
386 #ifndef LARGE_SMB_INO_T
387 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)) || (defined(SIZEOF_INO_T) && (SIZEOF_INO_T == 8))
388 # define LARGE_SMB_INO_T 1
392 #ifdef LARGE_SMB_INO_T
393 #define SINO_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
394 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(((uint64_t)(IVAL(p,ofs)))| (((uint64_t)(IVAL(p,(ofs)+4))) << 32)))
396 #define SINO_T_VAL(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
397 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(IVAL((p),(ofs))))
401 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)
402 # define SMB_OFF_T off64_t
404 # define SMB_OFF_T off_t
408 #define SBIG_UINT(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
409 #define BIG_UINT(p, ofs) ((((uint64_t) IVAL(p,(ofs)+4))<<32)|IVAL(p,ofs))
410 #define IVAL2_TO_SMB_BIG_UINT(buf,off) ( (((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF)) | \
411 (( ((uint64_t)(IVAL((buf),(off+4)))) & ((uint64_t)0xFFFFFFFF) ) << 32 ) )
414 /* this should really be a 64 bit type if possible */
415 typedef uint64_t br_off
;
417 #define SMB_OFF_T_BITS (sizeof(SMB_OFF_T)*8)
420 * Set the define that tells us if we can do 64 bit
424 #ifndef LARGE_SMB_OFF_T
425 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)) || (defined(SIZEOF_OFF_T) && (SIZEOF_OFF_T == 8))
426 # define LARGE_SMB_OFF_T 1
430 #ifdef LARGE_SMB_OFF_T
431 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
432 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,(v)&0xFFFFFFFF), SIVAL(p,ofs,(v)>>32))
433 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF) )))
435 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
436 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,v),SIVAL(p,ofs,0))
437 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint32)(IVAL((buf),(off)))) & 0xFFFFFFFF )))
440 #ifndef HAVE_BLKSIZE_T
441 /* This is mainly for HP/UX which defines st_blksize as long */
442 typedef long blksize_t
;
445 #ifndef HAVE_BLKCNT_T
446 /* This is mainly for HP/UX which doesn't have blkcnt_t */
447 typedef long blkcnt_t
;
451 * Type for stat structure.
463 struct timespec st_ex_atime
;
464 struct timespec st_ex_mtime
;
465 struct timespec st_ex_ctime
;
466 struct timespec st_ex_btime
; /* birthtime */
467 /* Is birthtime real, or was it calculated ? */
468 bool st_ex_calculated_birthtime
;
469 blksize_t st_ex_blksize
;
470 blkcnt_t st_ex_blocks
;
472 uint32_t st_ex_flags
;
476 * Add space for VFS internal extensions. The initial user of this
477 * would be the onefs modules, passing the snapid from the stat calls
478 * to the file_id_create call. Maybe we'll have to expand this later,
479 * but the core of Samba should never look at this field.
481 uint64_t vfs_private
;
484 typedef struct stat_ex SMB_STRUCT_STAT
;
487 * Type for dirent structure.
490 #ifndef SMB_STRUCT_DIRENT
491 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIRENT64)
492 # define SMB_STRUCT_DIRENT struct dirent64
494 # define SMB_STRUCT_DIRENT struct dirent
499 * Type for DIR structure.
502 #ifndef SMB_STRUCT_DIR
503 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIR64)
504 # define SMB_STRUCT_DIR DIR64
506 # define SMB_STRUCT_DIR DIR
511 * Defines for 64 bit fcntl locks.
514 #ifndef SMB_STRUCT_FLOCK
515 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
516 # define SMB_STRUCT_FLOCK struct flock64
518 # define SMB_STRUCT_FLOCK struct flock
523 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
524 # define SMB_F_SETLKW F_SETLKW64
526 # define SMB_F_SETLKW F_SETLKW
531 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
532 # define SMB_F_SETLK F_SETLK64
534 # define SMB_F_SETLK F_SETLK
539 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
540 # define SMB_F_GETLK F_GETLK64
542 # define SMB_F_GETLK F_GETLK
547 * Type for aiocb structure.
550 #ifndef SMB_STRUCT_AIOCB
551 # if defined(WITH_AIO)
552 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_AIOCB64)
553 # define SMB_STRUCT_AIOCB struct aiocb64
555 # define SMB_STRUCT_AIOCB struct aiocb
558 # define SMB_STRUCT_AIOCB int /* AIO not being used but we still need the define.... */
562 #ifndef HAVE_STRUCT_TIMESPEC
564 time_t tv_sec
; /* Seconds. */
565 long tv_nsec
; /* Nanoseconds. */
569 enum timestamp_set_resolution
{
570 TIMESTAMP_SET_SECONDS
= 0,
572 TIMESTAMP_SET_NT_OR_BETTER
575 #ifdef HAVE_BROKEN_GETGROUPS
582 #define NGROUPS_MAX 32 /* Guess... */
585 /* Our own fstrings */
594 | The infamous pstring |
601 _________)/\\_//(\/(/\)/\//\/\///|_)_______
605 #define FSTRING_LEN 256
606 typedef char fstring
[FSTRING_LEN
];
609 /* Samba 3 doesn't use iconv_convenience: */
610 extern void *cmdline_lp_ctx
;
611 struct smb_iconv_convenience
*lp_iconv_convenience(void *lp_ctx
);
613 /* Lists, trees, caching, database... */
614 #include "../lib/util/util.h"
615 #include "../lib/util/util_net.h"
616 #include "../lib/util/xfile.h"
617 #include "../lib/util/memory.h"
618 #include "../lib/util/attr.h"
620 #include "../lib/util/dlinklist.h"
622 #include "util_tdb.h"
627 #include "../lib/util/tevent_unix.h"
628 #include "../lib/util/tevent_ntstatus.h"
629 #include "../lib/tsocket/tsocket.h"
631 #include "../lib/util/data_blob.h"
632 #include "../lib/util/time.h"
633 #include "../lib/util/asn1.h"
637 #include "interfaces.h"
639 #include "../libcli/util/error.h"
641 #include "../lib/util/charset/charset.h"
642 #include "dynconfig.h"
643 #include "util_getent.h"
644 #include "debugparse.h"
645 #include "privileges.h"
646 #include "messages.h"
648 #include "smb_perfcount.h"
649 #include "smb_signing.h"
651 #include "nameserv.h"
653 #include "../lib/util/byteorder.h"
654 #include "privileges.h"
655 #include "rpc_misc.h"
657 #include "../librpc/gen_ndr/schannel.h"
660 #include "rpc_secdes.h"
661 #include "../libgpo/gpo.h"
662 #include "authdata.h"
665 #include "../lib/crypto/md5.h"
666 #include "../lib/crypto/md4.h"
667 #include "../lib/crypto/arcfour.h"
668 #include "../lib/crypto/crc32.h"
669 #include "../lib/crypto/hmacmd5.h"
672 #include "ntdomain.h"
673 #include "reg_objects.h"
675 #include "librpc/gen_ndr/perfcount.h"
676 #include "librpc/gen_ndr/notify.h"
677 #include "librpc/gen_ndr/xattr.h"
678 #include "librpc/gen_ndr/messaging.h"
679 #include "librpc/gen_ndr/ndr_nbt.h"
680 #include "librpc/rpc/dcerpc.h"
681 #include "nt_printing.h"
689 #include "nsswitch/winbind_client.h"
690 #include "rpc_client.h"
693 #include "ctdbd_conn.h"
694 #include "../lib/util/talloc_stack.h"
695 #include "memcache.h"
696 #include "async_smb.h"
697 #include "../lib/async_req/async_sock.h"
698 #include "talloc_dict.h"
699 #include "services.h"
700 #include "eventlog.h"
701 #include "../lib/util/smb_threads.h"
702 #include "../lib/util/smb_threads_internal.h"
704 #include "tldap_util.h"
706 #include "lib/smbconf/smbconf.h"
707 #include "lib/smbconf/smbconf_init.h"
708 #include "lib/smbconf/smbconf_reg.h"
709 #include "lib/smbconf/smbconf_txt.h"
711 /* Defines for wisXXX functions. */
712 #define UNI_UPPER 0x1
713 #define UNI_LOWER 0x2
714 #define UNI_DIGIT 0x4
715 #define UNI_XDIGIT 0x8
716 #define UNI_SPACE 0x10
718 #include "nsswitch/winbind_nss.h"
720 /* forward declaration from printing.h to get around
721 header file dependencies */
725 /* forward declarations from smbldap.c */
730 * Reasons for cache flush.
733 enum flush_reason_enum
{
738 OPLOCK_RELEASE_FLUSH
,
742 /* NUM_FLUSH_REASONS must remain the last value in the enumeration. */
745 #include "nss_info.h"
746 #include "modules/nfs4_acls.h"
747 #include "nsswitch/libwbclient/wbclient.h"
749 /***** prototypes *****/
753 #include "libcli/security/secace.h"
754 #include "libcli/security/secacl.h"
755 #include "libcli/security/security_descriptor.h"
757 #if defined(HAVE_POSIX_ACLS)
758 #include "modules/vfs_posixacl.h"
761 #if defined(HAVE_TRU64_ACLS)
762 #include "modules/vfs_tru64acl.h"
765 #if defined(HAVE_SOLARIS_ACLS) || defined(HAVE_UNIXWARE_ACLS)
766 #include "modules/vfs_solarisacl.h"
769 #if defined(HAVE_HPUX_ACLS)
770 #include "modules/vfs_hpuxacl.h"
773 #if defined(HAVE_IRIX_ACLS)
774 #include "modules/vfs_irixacl.h"
778 #include "ads_protos.h"
781 /* We need this after proto.h to reference GetTimeOfDay(). */
782 #include "smbprofile.h"
784 /* String routines */
787 #include "safe_string.h"
789 /* prototypes from lib/util_transfer_file.c */
790 #include "transfer_file.h"
792 #ifndef DEFAULT_PRINTING
794 #define DEFAULT_PRINTING PRINT_CUPS
795 #define PRINTCAP_NAME "cups"
797 #define DEFAULT_PRINTING PRINT_SYSV
798 #define PRINTCAP_NAME "lpstat"
800 #define DEFAULT_PRINTING PRINT_BSD
801 #define PRINTCAP_NAME "/etc/printcap"
805 #ifndef PRINTCAP_NAME
806 #define PRINTCAP_NAME "/etc/printcap"
810 #define SIGCLD SIGCHLD
814 #define SIGRTMIN NSIG
821 #if defined(HAVE_PUTPRPWNAM) && defined(AUTH_CLEARTEXT_SEG_CHARS)
822 #define OSF1_ENH_SEC 1
825 #ifndef ALLOW_CHANGE_PASSWORD
826 #if (defined(HAVE_TERMIOS_H) && defined(HAVE_DUP2) && defined(HAVE_SETSID))
827 #define ALLOW_CHANGE_PASSWORD 1
831 /* what is the longest significant password available on your system?
832 Knowing this speeds up password searches a lot */
833 #ifndef PASSWORD_LENGTH
834 #define PASSWORD_LENGTH 8
841 #if defined(HAVE_CRYPT16) && defined(HAVE_GETAUTHUID)
842 #define ULTRIX_AUTH 1
845 /* yuck, I'd like a better way of doing this */
846 #define DIRP_SIZE (256 + 32)
848 /* default socket options. Dave Miller thinks we should default to TCP_NODELAY
849 given the socket IO pattern that Samba uses */
851 #define DEFAULT_SOCKET_OPTIONS "TCP_NODELAY"
853 #define DEFAULT_SOCKET_OPTIONS ""
856 /* dmalloc -- free heap debugger (dmalloc.org). This should be near
857 * the *bottom* of include files so as not to conflict. */
858 #ifdef ENABLE_DMALLOC
859 # include <dmalloc.h>
863 #if HAVE_KERNEL_SHARE_MODES
865 #define LOCK_MAND 32 /* This is a mandatory flock */
866 #define LOCK_READ 64 /* ... Which allows concurrent read operations */
867 #define LOCK_WRITE 128 /* ... Which allows concurrent write operations */
868 #define LOCK_RW 192 /* ... Which allows concurrent read & write ops */
872 extern int DEBUGLEVEL
;
874 #define MAX_SEC_CTX_DEPTH 8 /* Maximum number of security contexts */
877 #ifdef GLIBC_HACK_FCNTL64
878 /* this is a gross hack. 64 bit locking is completely screwed up on
879 i386 Linux in glibc 2.1.95 (which ships with RedHat 7.0). This hack
880 "fixes" the problem with the current 2.4.0test kernels
882 #define fcntl fcntl64
890 /* needed for some systems without iconv. Doesn't really matter
891 what error code we use */
896 /* add varargs prototypes with printf checking */
898 int fdprintf(int , const char *, ...) PRINTF_ATTRIBUTE(2,3);
900 int d_printf(const char *, ...) PRINTF_ATTRIBUTE(1,2);
902 int d_fprintf(FILE *f
, const char *, ...) PRINTF_ATTRIBUTE(2,3);
905 void sys_adminlog(int priority
, const char *format_str
, ...) PRINTF_ATTRIBUTE(2,3);
908 int fstr_sprintf(fstring s
, const char *fmt
, ...) PRINTF_ATTRIBUTE(2,3);
910 int d_vfprintf(FILE *f
, const char *format
, va_list ap
) PRINTF_ATTRIBUTE(2,0);
912 int smb_xvasprintf(char **ptr
, const char *format
, va_list ap
) PRINTF_ATTRIBUTE(2,0);
914 int asprintf_strupper_m(char **strp
, const char *fmt
, ...) PRINTF_ATTRIBUTE(2,3);
915 char *talloc_asprintf_strupper_m(TALLOC_CTX
*t
, const char *fmt
, ...) PRINTF_ATTRIBUTE(2,3);
918 * Veritas File System. Often in addition to native.
921 #if defined(HAVE_SYS_FS_VX_QUOTA_H)
926 #define XATTR_CREATE 0x1 /* set value, fail if attr already exists */
929 #ifndef XATTR_REPLACE
930 #define XATTR_REPLACE 0x2 /* set value, fail if attr does not exist */
934 * This should be under the HAVE_KRB5 flag but since they're used
935 * in lp_kerberos_method(), they ned to be always available
937 #define KERBEROS_VERIFY_SECRETS 0
938 #define KERBEROS_VERIFY_SYSTEM_KEYTAB 1
939 #define KERBEROS_VERIFY_DEDICATED_KEYTAB 2
940 #define KERBEROS_VERIFY_SECRETS_AND_KEYTAB 3
943 * If you add any entries to the above, please modify the below expressions
944 * so they remain accurate.
946 #define USE_KERBEROS_KEYTAB (KERBEROS_VERIFY_SECRETS != lp_kerberos_method())
947 #define USE_SYSTEM_KEYTAB \
948 ((KERBEROS_VERIFY_SECRETS_AND_KEYTAB == lp_kerberos_method()) || \
949 (KERBEROS_VERIFY_SYSTEM_KEYTAB == lp_kerberos_method()))
951 #if defined(HAVE_KRB5)
952 krb5_error_code
smb_krb5_parse_name(krb5_context context
,
953 const char *name
, /* in unix charset */
954 krb5_principal
*principal
);
956 krb5_error_code
smb_krb5_unparse_name(TALLOC_CTX
*mem_ctx
,
957 krb5_context context
,
958 krb5_const_principal principal
,
961 #ifndef HAVE_KRB5_SET_REAL_TIME
962 krb5_error_code
krb5_set_real_time(krb5_context context
, int32_t seconds
, int32_t microseconds
);
965 krb5_error_code
krb5_set_default_tgs_ktypes(krb5_context ctx
, const krb5_enctype
*enc
);
967 #if defined(HAVE_KRB5_AUTH_CON_SETKEY) && !defined(HAVE_KRB5_AUTH_CON_SETUSERUSERKEY)
968 krb5_error_code
krb5_auth_con_setuseruserkey(krb5_context context
, krb5_auth_context auth_context
, krb5_keyblock
*keyblock
);
971 #ifndef HAVE_KRB5_FREE_UNPARSED_NAME
972 void krb5_free_unparsed_name(krb5_context ctx
, char *val
);
975 /* Stub out initialize_krb5_error_table since it is not present in all
976 * Kerberos implementations. If it's not present, it's not necessary to
979 #ifndef HAVE_INITIALIZE_KRB5_ERROR_TABLE
980 #define initialize_krb5_error_table()
983 /* Samba wrapper function for krb5 functionality. */
984 bool setup_kaddr( krb5_address
*pkaddr
, struct sockaddr_storage
*paddr
);
985 int create_kerberos_key_from_string(krb5_context context
, krb5_principal host_princ
, krb5_data
*password
, krb5_keyblock
*key
, krb5_enctype enctype
, bool no_salt
);
986 bool get_auth_data_from_tkt(TALLOC_CTX
*mem_ctx
, DATA_BLOB
*auth_data
, krb5_ticket
*tkt
);
987 krb5_const_principal
get_principal_from_tkt(krb5_ticket
*tkt
);
988 krb5_error_code
smb_krb5_locate_kdc(krb5_context ctx
, const krb5_data
*realm
, struct sockaddr
**addr_pp
, int *naddrs
, int get_masters
);
989 #if defined(HAVE_KRB5_LOCATE_KDC)
990 krb5_error_code
krb5_locate_kdc(krb5_context ctx
, const krb5_data
*realm
, struct sockaddr
**addr_pp
, int *naddrs
, int get_masters
);
992 krb5_error_code
get_kerberos_allowed_etypes(krb5_context context
, krb5_enctype
**enctypes
);
993 bool get_krb5_smb_session_key(krb5_context context
, krb5_auth_context auth_context
, DATA_BLOB
*session_key
, bool remote
);
994 krb5_error_code
smb_krb5_kt_free_entry(krb5_context context
, krb5_keytab_entry
*kt_entry
);
995 krb5_principal
kerberos_fetch_salt_princ_for_host_princ(krb5_context context
, krb5_principal host_princ
, int enctype
);
996 void kerberos_set_creds_enctype(krb5_creds
*pcreds
, int enctype
);
997 bool kerberos_compatible_enctypes(krb5_context context
, krb5_enctype enctype1
, krb5_enctype enctype2
);
998 void kerberos_free_data_contents(krb5_context context
, krb5_data
*pdata
);
999 NTSTATUS
decode_pac_data(TALLOC_CTX
*mem_ctx
,
1000 DATA_BLOB
*pac_data_blob
,
1001 krb5_context context
,
1002 krb5_keyblock
*service_keyblock
,
1003 krb5_const_principal client_principal
,
1004 time_t tgs_authtime
,
1005 struct PAC_DATA
**pac_data_out
);
1006 void smb_krb5_checksum_from_pac_sig(krb5_checksum
*cksum
,
1007 struct PAC_SIGNATURE_DATA
*sig
);
1008 krb5_error_code
smb_krb5_verify_checksum(krb5_context context
,
1009 const krb5_keyblock
*keyblock
,
1010 krb5_keyusage usage
,
1011 krb5_checksum
*cksum
,
1014 time_t get_authtime_from_tkt(krb5_ticket
*tkt
);
1015 void smb_krb5_free_ap_req(krb5_context context
,
1016 krb5_ap_req
*ap_req
);
1017 krb5_error_code
smb_krb5_get_keyinfo_from_ap_req(krb5_context context
,
1018 const krb5_data
*inbuf
,
1020 krb5_enctype
*enctype
);
1021 krb5_error_code
krb5_rd_req_return_keyblock_from_keytab(krb5_context context
,
1022 krb5_auth_context
*auth_context
,
1023 const krb5_data
*inbuf
,
1024 krb5_const_principal server
,
1026 krb5_flags
*ap_req_options
,
1027 krb5_ticket
**ticket
,
1028 krb5_keyblock
**keyblock
);
1029 krb5_error_code
smb_krb5_parse_name_norealm(krb5_context context
,
1031 krb5_principal
*principal
);
1032 bool smb_krb5_principal_compare_any_realm(krb5_context context
,
1033 krb5_const_principal princ1
,
1034 krb5_const_principal princ2
);
1035 int cli_krb5_get_ticket(const char *principal
, time_t time_offset
,
1036 DATA_BLOB
*ticket
, DATA_BLOB
*session_key_krb5
, uint32 extra_ap_opts
, const char *ccname
, time_t *tgs_expire
);
1037 krb5_error_code
smb_krb5_renew_ticket(const char *ccache_string
, const char *client_string
, const char *service_string
, time_t *expire_time
);
1038 krb5_error_code
kpasswd_err_to_krb5_err(krb5_error_code res_code
);
1039 krb5_error_code
smb_krb5_gen_netbios_krb5_address(smb_krb5_addresses
**kerb_addr
);
1040 krb5_error_code
smb_krb5_free_addresses(krb5_context context
, smb_krb5_addresses
*addr
);
1041 NTSTATUS
krb5_to_nt_status(krb5_error_code kerberos_error
);
1042 krb5_error_code
nt_status_to_krb5(NTSTATUS nt_status
);
1043 void smb_krb5_free_error(krb5_context context
, krb5_error
*krberror
);
1044 krb5_error_code
handle_krberror_packet(krb5_context context
,
1047 void smb_krb5_get_init_creds_opt_free(krb5_context context
,
1048 krb5_get_init_creds_opt
*opt
);
1049 krb5_error_code
smb_krb5_get_init_creds_opt_alloc(krb5_context context
,
1050 krb5_get_init_creds_opt
**opt
);
1051 krb5_error_code
smb_krb5_mk_error(krb5_context context
,
1052 krb5_error_code error_code
,
1053 const krb5_principal server
,
1055 krb5_enctype
smb_get_enctype_from_kt_entry(krb5_keytab_entry
*kt_entry
);
1056 krb5_error_code
smb_krb5_enctype_to_string(krb5_context context
,
1057 krb5_enctype enctype
,
1059 krb5_error_code
smb_krb5_open_keytab(krb5_context context
,
1060 const char *keytab_name
,
1062 krb5_keytab
*keytab
);
1063 krb5_error_code
smb_krb5_keytab_name(TALLOC_CTX
*mem_ctx
,
1064 krb5_context context
,
1066 const char **keytab_name
);
1067 int smb_krb5_kt_add_entry_ext(krb5_context context
,
1070 const char *princ_s
,
1071 krb5_enctype
*enctypes
,
1074 bool keep_old_entries
);
1076 #endif /* HAVE_KRB5 */
1081 /* function declarations not included in proto.h */
1082 LDAP
*ldap_open_with_timeout(const char *server
, int port
, unsigned int to
);
1084 #endif /* HAVE_LDAP */
1086 #if defined(HAVE_LINUX_READAHEAD) && ! defined(HAVE_READAHEAD_DECL)
1087 ssize_t
readahead(int fd
, off64_t offset
, size_t count
);
1093 #define TRUE __ERROR__XX__DONT_USE_TRUE
1098 #define FALSE __ERROR__XX__DONT_USE_FALSE
1100 /* If we have blacklisted mmap() try to avoid using it accidentally by
1101 undefining the HAVE_MMAP symbol. */
1103 #ifdef MMAP_BLACKLIST
1107 #ifndef CONST_DISCARD
1108 #define CONST_DISCARD(type, ptr) ((type) ((void *) (ptr)))
1111 void smb_panic( const char *why
) _NORETURN_
;
1112 void dump_core(void) _NORETURN_
;
1113 void exit_server(const char *const reason
) _NORETURN_
;
1114 void exit_server_cleanly(const char *const reason
) _NORETURN_
;
1115 void exit_server_fault(void) _NORETURN_
;
1118 #include "libnscd.h"
1121 #if defined(HAVE_IPV6)
1122 void in6_addr_to_sockaddr_storage(struct sockaddr_storage
*ss
,
1123 struct in6_addr ip
);
1126 /* samba3 doesn't use uwrap yet */
1127 #define uwrap_enabled() 0
1129 #endif /* _INCLUDES_H */