2 Unix SMB/CIFS implementation.
4 Main SMB server routines
6 Copyright (C) Andrew Tridgell 1992-2005
7 Copyright (C) Martin Pool 2002
8 Copyright (C) Jelmer Vernooij 2002
9 Copyright (C) James J Myers 2003 <myersjj@samba.org>
11 This program is free software; you can redistribute it and/or modify
12 it under the terms of the GNU General Public License as published by
13 the Free Software Foundation; either version 3 of the License, or
14 (at your option) any later version.
16 This program is distributed in the hope that it will be useful,
17 but WITHOUT ANY WARRANTY; without even the implied warranty of
18 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
19 GNU General Public License for more details.
21 You should have received a copy of the GNU General Public License
22 along with this program. If not, see <http://www.gnu.org/licenses/>.
26 #include "lib/events/events.h"
28 #include "lib/cmdline/popt_common.h"
29 #include "system/dir.h"
30 #include "system/filesys.h"
31 #include "ntvfs/ntvfs.h"
32 #include "ntptr/ntptr.h"
33 #include "auth/gensec/gensec.h"
34 #include "libcli/auth/schannel.h"
35 #include "smbd/process_model.h"
36 #include "param/secrets.h"
37 #include "smbd/pidfile.h"
38 #include "param/param.h"
39 #include "dsdb/samdb/samdb.h"
40 #include "auth/session.h"
41 #include "lib/messaging/irpc.h"
42 #include "librpc/gen_ndr/ndr_irpc.h"
43 #include "cluster/cluster.h"
44 #include "dynconfig/dynconfig.h"
47 recursively delete a directory tree
49 static void recursive_delete(const char *path
)
59 for (de
=readdir(dir
);de
;de
=readdir(dir
)) {
63 if (ISDOT(de
->d_name
) || ISDOTDOT(de
->d_name
)) {
67 fname
= talloc_asprintf(path
, "%s/%s", path
, de
->d_name
);
68 if (stat(fname
, &st
) != 0) {
71 if (S_ISDIR(st
.st_mode
)) {
72 recursive_delete(fname
);
76 if (unlink(fname
) != 0) {
77 DEBUG(0,("Unabled to delete '%s' - %s\n",
78 fname
, strerror(errno
)));
79 smb_panic("unable to cleanup tmp files");
87 cleanup temporary files. This is the new alternative to
88 TDB_CLEAR_IF_FIRST. Unfortunately TDB_CLEAR_IF_FIRST is not
89 efficient on unix systems due to the lack of scaling of the byte
90 range locking system. So instead of putting the burden on tdb to
91 cleanup tmp files, this function deletes them.
93 static void cleanup_tmp_files(struct loadparm_context
*lp_ctx
)
96 TALLOC_CTX
*mem_ctx
= talloc_new(NULL
);
98 path
= smbd_tmp_path(mem_ctx
, lp_ctx
, NULL
);
100 recursive_delete(path
);
101 talloc_free(mem_ctx
);
104 static void sig_hup(int sig
)
106 debug_schedule_reopen_logs();
109 static void sig_term(int sig
)
112 static int done_sigterm
;
113 if (done_sigterm
== 0 && getpgrp() == getpid()) {
114 DEBUG(0,("SIGTERM: killing children\n"));
116 kill(-getpgrp(), SIGTERM
);
119 DEBUG(0,("Exiting pid %d on SIGTERM\n", (int)getpid()));
126 static void setup_signals(void)
128 /* we are never interested in SIGPIPE */
129 BlockSignals(true,SIGPIPE
);
132 /* we are never interested in SIGFPE */
133 BlockSignals(true,SIGFPE
);
136 /* We are no longer interested in USR1 */
137 BlockSignals(true, SIGUSR1
);
140 /* We are no longer interested in USR2 */
141 BlockSignals(true,SIGUSR2
);
144 /* POSIX demands that signals are inherited. If the invoking process has
145 * these signals masked, we will have problems, as we won't receive them. */
146 BlockSignals(false, SIGHUP
);
147 BlockSignals(false, SIGTERM
);
149 CatchSignal(SIGHUP
, sig_hup
);
150 CatchSignal(SIGTERM
, sig_term
);
156 static void server_stdin_handler(struct tevent_context
*event_ctx
, struct tevent_fd
*fde
,
157 uint16_t flags
, void *private_data
)
159 const char *binary_name
= (const char *)private_data
;
161 if (read(0, &c
, 1) == 0) {
162 DEBUG(0,("%s: EOF on stdin - terminating\n", binary_name
));
164 if (getpgrp() == getpid()) {
165 DEBUG(0,("Sending SIGTERM from pid %d\n", (int)getpid()));
166 kill(-getpgrp(), SIGTERM
);
174 die if the user selected maximum runtime is exceeded
176 _NORETURN_
static void max_runtime_handler(struct tevent_context
*ev
,
177 struct tevent_timer
*te
,
178 struct timeval t
, void *private_data
)
180 const char *binary_name
= (const char *)private_data
;
181 DEBUG(0,("%s: maximum runtime exceeded - terminating, current ts: %llu\n",
182 binary_name
, (unsigned long long) time(NULL
)));
187 pre-open the key databases. This saves a lot of time in child
190 static void prime_ldb_databases(struct tevent_context
*event_ctx
)
192 TALLOC_CTX
*db_context
;
193 db_context
= talloc_new(event_ctx
);
195 samdb_connect(db_context
, event_ctx
, cmdline_lp_ctx
, system_session(cmdline_lp_ctx
), 0);
196 privilege_connect(db_context
, cmdline_lp_ctx
);
198 /* we deliberately leave these open, which allows them to be
199 * re-used in ldb_wrap_connect() */
204 called when a fatal condition occurs in a child task
206 static NTSTATUS
samba_terminate(struct irpc_message
*msg
,
207 struct samba_terminate
*r
)
209 DEBUG(0,("samba_terminate: %s\n", r
->in
.reason
));
214 setup messaging for the top level samba (parent) task
216 static NTSTATUS
setup_parent_messaging(struct tevent_context
*event_ctx
,
217 struct loadparm_context
*lp_ctx
)
219 struct imessaging_context
*msg
;
222 msg
= imessaging_init(talloc_autofree_context(),
223 lpcfg_imessaging_path(event_ctx
, lp_ctx
),
224 cluster_id(0, SAMBA_PARENT_TASKID
), event_ctx
, false);
225 NT_STATUS_HAVE_NO_MEMORY(msg
);
227 irpc_add_name(msg
, "samba");
229 status
= IRPC_REGISTER(msg
, irpc
, SAMBA_TERMINATE
,
230 samba_terminate
, NULL
);
239 static void show_build(void)
241 #define CONFIG_OPTION(n) { #n, dyn_ ## n }
245 } config_options
[] = {
246 CONFIG_OPTION(BINDIR
),
247 CONFIG_OPTION(SBINDIR
),
248 CONFIG_OPTION(CONFIGFILE
),
249 CONFIG_OPTION(NCALRPCDIR
),
250 CONFIG_OPTION(LOGFILEBASE
),
251 CONFIG_OPTION(LMHOSTSFILE
),
252 CONFIG_OPTION(DATADIR
),
253 CONFIG_OPTION(MODULESDIR
),
254 CONFIG_OPTION(LOCKDIR
),
255 CONFIG_OPTION(STATEDIR
),
256 CONFIG_OPTION(CACHEDIR
),
257 CONFIG_OPTION(PIDDIR
),
258 CONFIG_OPTION(PRIVATE_DIR
),
259 CONFIG_OPTION(SWATDIR
),
260 CONFIG_OPTION(CODEPAGEDIR
),
261 CONFIG_OPTION(SETUPDIR
),
262 CONFIG_OPTION(WINBINDD_SOCKET_DIR
),
263 CONFIG_OPTION(WINBINDD_PRIVILEGED_SOCKET_DIR
),
264 CONFIG_OPTION(NTP_SIGND_SOCKET_DIR
),
269 printf("Samba version: %s\n", SAMBA_VERSION_STRING
);
270 printf("Build environment:\n");
272 printf(" Build host: %s\n", BUILD_SYSTEM
);
276 for (i
=0; config_options
[i
].name
; i
++) {
277 printf(" %s: %s\n", config_options
[i
].name
, config_options
[i
].value
);
286 static int binary_smbd_main(const char *binary_name
, int argc
, const char *argv
[])
288 bool opt_daemon
= false;
289 bool opt_interactive
= false;
292 #define _MODULE_PROTO(init) extern NTSTATUS init(void);
293 STATIC_service_MODULES_PROTO
;
294 init_module_fn static_init
[] = { STATIC_service_MODULES
};
295 init_module_fn
*shared_init
;
296 struct tevent_context
*event_ctx
;
297 uint16_t stdin_event_flags
;
299 const char *model
= "standard";
307 struct poptOption long_options
[] = {
309 {"daemon", 'D', POPT_ARG_NONE
, NULL
, OPT_DAEMON
,
310 "Become a daemon (default)", NULL
},
311 {"interactive", 'i', POPT_ARG_NONE
, NULL
, OPT_INTERACTIVE
,
312 "Run interactive (not a daemon)", NULL
},
313 {"model", 'M', POPT_ARG_STRING
, NULL
, OPT_PROCESS_MODEL
,
314 "Select process model", "MODEL"},
315 {"maximum-runtime",0, POPT_ARG_INT
, &max_runtime
, 0,
316 "set maximum runtime of the server process, till autotermination", "seconds"},
317 {"show-build", 'b', POPT_ARG_NONE
, NULL
, OPT_SHOW_BUILD
, "show build info", NULL
},
323 pc
= poptGetContext(binary_name
, argc
, argv
, long_options
, 0);
324 while((opt
= poptGetNextOpt(pc
)) != -1) {
329 case OPT_INTERACTIVE
:
330 opt_interactive
= true;
332 case OPT_PROCESS_MODEL
:
333 model
= poptGetOptArg(pc
);
339 fprintf(stderr
, "\nInvalid option %s: %s\n\n",
340 poptBadOption(pc
, 0), poptStrerror(opt
));
341 poptPrintUsage(pc
, stderr
, 0);
346 if (opt_daemon
&& opt_interactive
) {
347 fprintf(stderr
,"\nERROR: "
348 "Option -i|--interactive is not allowed together with -D|--daemon\n\n");
349 poptPrintUsage(pc
, stderr
, 0);
351 } else if (!opt_interactive
) {
352 /* default is --daemon */
358 setup_logging(binary_name
, opt_interactive
?DEBUG_STDOUT
:DEBUG_FILE
);
361 /* we want total control over the permissions on created files,
362 so set our umask to 0 */
365 DEBUG(0,("%s version %s started.\n", binary_name
, SAMBA_VERSION_STRING
));
366 DEBUGADD(0,("Copyright Andrew Tridgell and the Samba Team 1992-2011\n"));
368 if (sizeof(uint16_t) < 2 || sizeof(uint32_t) < 4 || sizeof(uint64_t) < 8) {
369 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
370 DEBUGADD(0,("sizeof(uint16_t) = %u, sizeof(uint32_t) %u, sizeof(uint64_t) = %u\n",
371 (unsigned int)sizeof(uint16_t), (unsigned int)sizeof(uint32_t), (unsigned int)sizeof(uint64_t)));
376 DEBUG(3,("Becoming a daemon.\n"));
377 become_daemon(true, false, false);
380 cleanup_tmp_files(cmdline_lp_ctx
);
382 if (!directory_exist(lpcfg_lockdir(cmdline_lp_ctx
))) {
383 mkdir(lpcfg_lockdir(cmdline_lp_ctx
), 0755);
386 pidfile_create(lpcfg_piddir(cmdline_lp_ctx
), binary_name
);
388 /* Set up a database to hold a random seed, in case we don't
389 * have /dev/urandom */
390 if (!randseed_init(talloc_autofree_context(), cmdline_lp_ctx
)) {
394 if (lpcfg_server_role(cmdline_lp_ctx
) == ROLE_DOMAIN_CONTROLLER
) {
395 if (!open_schannel_session_store(talloc_autofree_context(), lpcfg_private_dir(cmdline_lp_ctx
))) {
396 DEBUG(0,("ERROR: Samba cannot open schannel store for secured NETLOGON operations.\n"));
401 gensec_init(); /* FIXME: */
403 ntptr_init(); /* FIXME: maybe run this in the initialization function
404 of the spoolss RPC server instead? */
406 ntvfs_init(cmdline_lp_ctx
); /* FIXME: maybe run this in the initialization functions
407 of the SMB[,2] server instead? */
409 process_model_init(cmdline_lp_ctx
);
411 shared_init
= load_samba_modules(NULL
, "service");
413 run_init_functions(static_init
);
414 run_init_functions(shared_init
);
416 talloc_free(shared_init
);
418 /* the event context is the top level structure in smbd. Everything else
419 should hang off that */
420 event_ctx
= s4_event_context_init(talloc_autofree_context());
422 if (event_ctx
== NULL
) {
423 DEBUG(0,("Initializing event context failed\n"));
427 if (opt_interactive
) {
428 /* terminate when stdin goes away */
429 stdin_event_flags
= TEVENT_FD_READ
;
431 /* stay alive forever */
432 stdin_event_flags
= 0;
435 /* catch EOF on stdin */
437 signal(SIGTTIN
, SIG_IGN
);
439 tevent_add_fd(event_ctx
, event_ctx
, 0, stdin_event_flags
,
440 server_stdin_handler
,
441 discard_const(binary_name
));
444 DEBUG(0,("Called with maxruntime %d - current ts %llu\n",
445 max_runtime
, (unsigned long long) time(NULL
)));
446 tevent_add_timer(event_ctx
, event_ctx
,
447 timeval_current_ofs(max_runtime
, 0),
449 discard_const(binary_name
));
452 prime_ldb_databases(event_ctx
);
454 status
= setup_parent_messaging(event_ctx
, cmdline_lp_ctx
);
455 if (!NT_STATUS_IS_OK(status
)) {
456 DEBUG(0,("Failed to setup parent messaging - %s\n", nt_errstr(status
)));
460 DEBUG(0,("%s: using '%s' process model\n", binary_name
, model
));
462 status
= server_service_startup(event_ctx
, cmdline_lp_ctx
, model
,
463 lpcfg_server_services(cmdline_lp_ctx
));
464 if (!NT_STATUS_IS_OK(status
)) {
465 DEBUG(0,("Starting Services failed - %s\n", nt_errstr(status
)));
469 /* wait for events - this is where smbd sits for most of its
471 tevent_loop_wait(event_ctx
);
473 /* as everything hangs off this event context, freeing it
474 should initiate a clean shutdown of all services */
475 talloc_free(event_ctx
);
480 int main(int argc
, const char *argv
[])
482 return binary_smbd_main("samba", argc
, argv
);