winbind: Fix bug 9854 -- NULL pointer dereference
[Samba/gebeck_regimport.git] / source4 / smbd / server.c
blob193d5044084aac59feb39d068ca6263a3d78f534
1 /*
2 Unix SMB/CIFS implementation.
4 Main SMB server routines
6 Copyright (C) Andrew Tridgell 1992-2005
7 Copyright (C) Martin Pool 2002
8 Copyright (C) Jelmer Vernooij 2002
9 Copyright (C) James J Myers 2003 <myersjj@samba.org>
11 This program is free software; you can redistribute it and/or modify
12 it under the terms of the GNU General Public License as published by
13 the Free Software Foundation; either version 3 of the License, or
14 (at your option) any later version.
16 This program is distributed in the hope that it will be useful,
17 but WITHOUT ANY WARRANTY; without even the implied warranty of
18 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
19 GNU General Public License for more details.
21 You should have received a copy of the GNU General Public License
22 along with this program. If not, see <http://www.gnu.org/licenses/>.
25 #include "includes.h"
26 #include "lib/events/events.h"
27 #include "version.h"
28 #include "lib/cmdline/popt_common.h"
29 #include "system/dir.h"
30 #include "system/filesys.h"
31 #include "ntvfs/ntvfs.h"
32 #include "ntptr/ntptr.h"
33 #include "auth/gensec/gensec.h"
34 #include "libcli/auth/schannel.h"
35 #include "smbd/process_model.h"
36 #include "param/secrets.h"
37 #include "lib/util/pidfile.h"
38 #include "param/param.h"
39 #include "dsdb/samdb/samdb.h"
40 #include "auth/session.h"
41 #include "lib/messaging/irpc.h"
42 #include "librpc/gen_ndr/ndr_irpc.h"
43 #include "cluster/cluster.h"
44 #include "dynconfig/dynconfig.h"
45 #include "lib/util/samba_modules.h"
48 recursively delete a directory tree
50 static void recursive_delete(const char *path)
52 DIR *dir;
53 struct dirent *de;
55 dir = opendir(path);
56 if (!dir) {
57 return;
60 for (de=readdir(dir);de;de=readdir(dir)) {
61 char *fname;
62 struct stat st;
64 if (ISDOT(de->d_name) || ISDOTDOT(de->d_name)) {
65 continue;
68 fname = talloc_asprintf(path, "%s/%s", path, de->d_name);
69 if (stat(fname, &st) != 0) {
70 continue;
72 if (S_ISDIR(st.st_mode)) {
73 recursive_delete(fname);
74 talloc_free(fname);
75 continue;
77 if (unlink(fname) != 0) {
78 DEBUG(0,("Unabled to delete '%s' - %s\n",
79 fname, strerror(errno)));
80 smb_panic("unable to cleanup tmp files");
82 talloc_free(fname);
84 closedir(dir);
88 cleanup temporary files. This is the new alternative to
89 TDB_CLEAR_IF_FIRST. Unfortunately TDB_CLEAR_IF_FIRST is not
90 efficient on unix systems due to the lack of scaling of the byte
91 range locking system. So instead of putting the burden on tdb to
92 cleanup tmp files, this function deletes them.
94 static void cleanup_tmp_files(struct loadparm_context *lp_ctx)
96 char *path;
97 TALLOC_CTX *mem_ctx = talloc_new(NULL);
99 path = smbd_tmp_path(mem_ctx, lp_ctx, NULL);
101 recursive_delete(path);
102 talloc_free(mem_ctx);
105 static void sig_hup(int sig)
107 debug_schedule_reopen_logs();
110 static void sig_term(int sig)
112 #if HAVE_GETPGRP
113 static int done_sigterm;
114 if (done_sigterm == 0 && getpgrp() == getpid()) {
115 DEBUG(0,("SIGTERM: killing children\n"));
116 done_sigterm = 1;
117 kill(-getpgrp(), SIGTERM);
119 #endif
120 DEBUG(0,("Exiting pid %d on SIGTERM\n", (int)getpid()));
121 exit(127);
125 setup signal masks
127 static void setup_signals(void)
129 /* we are never interested in SIGPIPE */
130 BlockSignals(true,SIGPIPE);
132 #if defined(SIGFPE)
133 /* we are never interested in SIGFPE */
134 BlockSignals(true,SIGFPE);
135 #endif
137 /* We are no longer interested in USR1 */
138 BlockSignals(true, SIGUSR1);
140 #if defined(SIGUSR2)
141 /* We are no longer interested in USR2 */
142 BlockSignals(true,SIGUSR2);
143 #endif
145 /* POSIX demands that signals are inherited. If the invoking process has
146 * these signals masked, we will have problems, as we won't receive them. */
147 BlockSignals(false, SIGHUP);
148 BlockSignals(false, SIGTERM);
150 CatchSignal(SIGHUP, sig_hup);
151 CatchSignal(SIGTERM, sig_term);
155 handle io on stdin
157 static void server_stdin_handler(struct tevent_context *event_ctx, struct tevent_fd *fde,
158 uint16_t flags, void *private_data)
160 const char *binary_name = (const char *)private_data;
161 uint8_t c;
162 if (read(0, &c, 1) == 0) {
163 DEBUG(0,("%s: EOF on stdin - terminating\n", binary_name));
164 #if HAVE_GETPGRP
165 if (getpgrp() == getpid()) {
166 DEBUG(0,("Sending SIGTERM from pid %d\n", (int)getpid()));
167 kill(-getpgrp(), SIGTERM);
169 #endif
170 exit(0);
175 die if the user selected maximum runtime is exceeded
177 _NORETURN_ static void max_runtime_handler(struct tevent_context *ev,
178 struct tevent_timer *te,
179 struct timeval t, void *private_data)
181 const char *binary_name = (const char *)private_data;
182 DEBUG(0,("%s: maximum runtime exceeded - terminating at %llu, current ts: %llu\n",
183 binary_name, (unsigned long long)t.tv_sec, (unsigned long long) time(NULL)));
184 exit(0);
188 pre-open the key databases. This saves a lot of time in child
189 processes
191 static void prime_ldb_databases(struct tevent_context *event_ctx)
193 TALLOC_CTX *db_context;
194 db_context = talloc_new(event_ctx);
196 samdb_connect(db_context, event_ctx, cmdline_lp_ctx, system_session(cmdline_lp_ctx), 0);
197 privilege_connect(db_context, cmdline_lp_ctx);
199 /* we deliberately leave these open, which allows them to be
200 * re-used in ldb_wrap_connect() */
205 called when a fatal condition occurs in a child task
207 static NTSTATUS samba_terminate(struct irpc_message *msg,
208 struct samba_terminate *r)
210 DEBUG(0,("samba_terminate: %s\n", r->in.reason));
211 exit(1);
215 setup messaging for the top level samba (parent) task
217 static NTSTATUS setup_parent_messaging(struct tevent_context *event_ctx,
218 struct loadparm_context *lp_ctx)
220 struct imessaging_context *msg;
221 NTSTATUS status;
223 msg = imessaging_init(talloc_autofree_context(),
224 lp_ctx,
225 cluster_id(0, SAMBA_PARENT_TASKID), event_ctx, false);
226 NT_STATUS_HAVE_NO_MEMORY(msg);
228 status = irpc_add_name(msg, "samba");
229 if (!NT_STATUS_IS_OK(status)) {
230 return status;
233 status = IRPC_REGISTER(msg, irpc, SAMBA_TERMINATE,
234 samba_terminate, NULL);
236 return status;
241 show build info
243 static void show_build(void)
245 #define CONFIG_OPTION(n) { #n, dyn_ ## n }
246 struct {
247 const char *name;
248 const char *value;
249 } config_options[] = {
250 CONFIG_OPTION(BINDIR),
251 CONFIG_OPTION(SBINDIR),
252 CONFIG_OPTION(CONFIGFILE),
253 CONFIG_OPTION(NCALRPCDIR),
254 CONFIG_OPTION(LOGFILEBASE),
255 CONFIG_OPTION(LMHOSTSFILE),
256 CONFIG_OPTION(DATADIR),
257 CONFIG_OPTION(MODULESDIR),
258 CONFIG_OPTION(LOCKDIR),
259 CONFIG_OPTION(STATEDIR),
260 CONFIG_OPTION(CACHEDIR),
261 CONFIG_OPTION(PIDDIR),
262 CONFIG_OPTION(PRIVATE_DIR),
263 CONFIG_OPTION(SWATDIR),
264 CONFIG_OPTION(CODEPAGEDIR),
265 CONFIG_OPTION(SETUPDIR),
266 CONFIG_OPTION(WINBINDD_SOCKET_DIR),
267 CONFIG_OPTION(WINBINDD_PRIVILEGED_SOCKET_DIR),
268 CONFIG_OPTION(NTP_SIGND_SOCKET_DIR),
269 { NULL, NULL}
271 int i;
273 printf("Samba version: %s\n", SAMBA_VERSION_STRING);
274 printf("Build environment:\n");
275 #ifdef BUILD_SYSTEM
276 printf(" Build host: %s\n", BUILD_SYSTEM);
277 #endif
279 printf("Paths:\n");
280 for (i=0; config_options[i].name; i++) {
281 printf(" %s: %s\n", config_options[i].name, config_options[i].value);
284 exit(0);
288 main server.
290 static int binary_smbd_main(const char *binary_name, int argc, const char *argv[])
292 bool opt_daemon = false;
293 bool opt_interactive = false;
294 int opt;
295 poptContext pc;
296 #define _MODULE_PROTO(init) extern NTSTATUS init(void);
297 STATIC_service_MODULES_PROTO;
298 init_module_fn static_init[] = { STATIC_service_MODULES };
299 init_module_fn *shared_init;
300 struct tevent_context *event_ctx;
301 uint16_t stdin_event_flags;
302 NTSTATUS status;
303 const char *model = "standard";
304 int max_runtime = 0;
305 enum {
306 OPT_DAEMON = 1000,
307 OPT_INTERACTIVE,
308 OPT_PROCESS_MODEL,
309 OPT_SHOW_BUILD
311 struct poptOption long_options[] = {
312 POPT_AUTOHELP
313 {"daemon", 'D', POPT_ARG_NONE, NULL, OPT_DAEMON,
314 "Become a daemon (default)", NULL },
315 {"interactive", 'i', POPT_ARG_NONE, NULL, OPT_INTERACTIVE,
316 "Run interactive (not a daemon)", NULL},
317 {"model", 'M', POPT_ARG_STRING, NULL, OPT_PROCESS_MODEL,
318 "Select process model", "MODEL"},
319 {"maximum-runtime",0, POPT_ARG_INT, &max_runtime, 0,
320 "set maximum runtime of the server process, till autotermination", "seconds"},
321 {"show-build", 'b', POPT_ARG_NONE, NULL, OPT_SHOW_BUILD, "show build info", NULL },
322 POPT_COMMON_SAMBA
323 POPT_COMMON_VERSION
324 { NULL }
327 pc = poptGetContext(binary_name, argc, argv, long_options, 0);
328 while((opt = poptGetNextOpt(pc)) != -1) {
329 switch(opt) {
330 case OPT_DAEMON:
331 opt_daemon = true;
332 break;
333 case OPT_INTERACTIVE:
334 opt_interactive = true;
335 break;
336 case OPT_PROCESS_MODEL:
337 model = poptGetOptArg(pc);
338 break;
339 case OPT_SHOW_BUILD:
340 show_build();
341 break;
342 default:
343 fprintf(stderr, "\nInvalid option %s: %s\n\n",
344 poptBadOption(pc, 0), poptStrerror(opt));
345 poptPrintUsage(pc, stderr, 0);
346 return 1;
350 if (opt_daemon && opt_interactive) {
351 fprintf(stderr,"\nERROR: "
352 "Option -i|--interactive is not allowed together with -D|--daemon\n\n");
353 poptPrintUsage(pc, stderr, 0);
354 return 1;
355 } else if (!opt_interactive) {
356 /* default is --daemon */
357 opt_daemon = true;
360 poptFreeContext(pc);
362 setup_logging(binary_name, opt_interactive?DEBUG_STDOUT:DEBUG_FILE);
363 setup_signals();
365 /* we want total control over the permissions on created files,
366 so set our umask to 0 */
367 umask(0);
369 DEBUG(0,("%s version %s started.\n", binary_name, SAMBA_VERSION_STRING));
370 DEBUGADD(0,("Copyright Andrew Tridgell and the Samba Team 1992-2013\n"));
372 if (sizeof(uint16_t) < 2 || sizeof(uint32_t) < 4 || sizeof(uint64_t) < 8) {
373 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
374 DEBUGADD(0,("sizeof(uint16_t) = %u, sizeof(uint32_t) %u, sizeof(uint64_t) = %u\n",
375 (unsigned int)sizeof(uint16_t), (unsigned int)sizeof(uint32_t), (unsigned int)sizeof(uint64_t)));
376 return 1;
379 if (opt_daemon) {
380 DEBUG(3,("Becoming a daemon.\n"));
381 become_daemon(true, false, false);
384 cleanup_tmp_files(cmdline_lp_ctx);
386 if (!directory_exist(lpcfg_lockdir(cmdline_lp_ctx))) {
387 mkdir(lpcfg_lockdir(cmdline_lp_ctx), 0755);
390 pidfile_create(lpcfg_piddir(cmdline_lp_ctx), binary_name);
392 /* Set up a database to hold a random seed, in case we don't
393 * have /dev/urandom */
394 if (!randseed_init(talloc_autofree_context(), cmdline_lp_ctx)) {
395 return 1;
398 if (lpcfg_server_role(cmdline_lp_ctx) == ROLE_ACTIVE_DIRECTORY_DC) {
399 if (!open_schannel_session_store(talloc_autofree_context(), cmdline_lp_ctx)) {
400 DEBUG(0,("ERROR: Samba cannot open schannel store for secured NETLOGON operations.\n"));
401 exit(1);
405 gensec_init(); /* FIXME: */
407 ntptr_init(); /* FIXME: maybe run this in the initialization function
408 of the spoolss RPC server instead? */
410 ntvfs_init(cmdline_lp_ctx); /* FIXME: maybe run this in the initialization functions
411 of the SMB[,2] server instead? */
413 process_model_init(cmdline_lp_ctx);
415 shared_init = load_samba_modules(NULL, "service");
417 run_init_functions(static_init);
418 run_init_functions(shared_init);
420 talloc_free(shared_init);
422 /* the event context is the top level structure in smbd. Everything else
423 should hang off that */
424 event_ctx = s4_event_context_init(talloc_autofree_context());
426 if (event_ctx == NULL) {
427 DEBUG(0,("Initializing event context failed\n"));
428 return 1;
431 if (opt_interactive) {
432 /* terminate when stdin goes away */
433 stdin_event_flags = TEVENT_FD_READ;
434 } else {
435 /* stay alive forever */
436 stdin_event_flags = 0;
439 /* catch EOF on stdin */
440 #ifdef SIGTTIN
441 signal(SIGTTIN, SIG_IGN);
442 #endif
443 tevent_add_fd(event_ctx, event_ctx, 0, stdin_event_flags,
444 server_stdin_handler,
445 discard_const(binary_name));
447 if (max_runtime) {
448 DEBUG(0,("Called with maxruntime %d - current ts %llu\n",
449 max_runtime, (unsigned long long) time(NULL)));
450 tevent_add_timer(event_ctx, event_ctx,
451 timeval_current_ofs(max_runtime, 0),
452 max_runtime_handler,
453 discard_const(binary_name));
456 if (lpcfg_server_role(cmdline_lp_ctx) != ROLE_ACTIVE_DIRECTORY_DC
457 && !lpcfg_parm_bool(cmdline_lp_ctx, NULL, "server role check", "inhibit", false)
458 && !str_list_check_ci(lpcfg_server_services(cmdline_lp_ctx), "smb")
459 && !str_list_check_ci(lpcfg_dcerpc_endpoint_servers(cmdline_lp_ctx), "remote")
460 && !str_list_check_ci(lpcfg_dcerpc_endpoint_servers(cmdline_lp_ctx), "mapiproxy")) {
461 DEBUG(0, ("At this time the 'samba' binary should only be used for either:\n"));
462 DEBUGADD(0, ("'server role = active directory domain controller' or to access the ntvfs file server with 'server services = +smb' or the rpc proxy with 'dcerpc endpoint servers = remote'\n"));
463 DEBUGADD(0, ("You should start smbd/nmbd/winbindd instead for domain member and standalone file server tasks\n"));
464 exit(1);
467 prime_ldb_databases(event_ctx);
469 status = setup_parent_messaging(event_ctx, cmdline_lp_ctx);
470 if (!NT_STATUS_IS_OK(status)) {
471 DEBUG(0,("Failed to setup parent messaging - %s\n", nt_errstr(status)));
472 return 1;
475 DEBUG(0,("%s: using '%s' process model\n", binary_name, model));
477 status = server_service_startup(event_ctx, cmdline_lp_ctx, model,
478 lpcfg_server_services(cmdline_lp_ctx));
479 if (!NT_STATUS_IS_OK(status)) {
480 DEBUG(0,("Starting Services failed - %s\n", nt_errstr(status)));
481 return 1;
484 /* wait for events - this is where smbd sits for most of its
485 life */
486 tevent_loop_wait(event_ctx);
488 /* as everything hangs off this event context, freeing it
489 should initiate a clean shutdown of all services */
490 talloc_free(event_ctx);
492 return 0;
495 int main(int argc, const char *argv[])
497 return binary_smbd_main("samba", argc, argv);