dsgetdcname: check for invalid sitename/flag combinations.
[gd/samba/.git] / source / libsmb / dsgetdcname.c
1 /*
2    Unix SMB/CIFS implementation.
3
4    dsgetdcname
5
6    Copyright (C) Gerald Carter 2006
7    Copyright (C) Guenther Deschner 2007-2008
8
9    This program is free software; you can redistribute it and/or modify
10    it under the terms of the GNU General Public License as published by
11    the Free Software Foundation; either version 3 of the License, or
12    (at your option) any later version.
13
14    This program is distributed in the hope that it will be useful,
15    but WITHOUT ANY WARRANTY; without even the implied warranty of
16    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
17    GNU General Public License for more details.
18
19    You should have received a copy of the GNU General Public License
20    along with this program.  If not, see <http://www.gnu.org/licenses/>.
21 */
22
23 #include "includes.h"
24
25 #define DSGETDCNAME_FMT "DSGETDCNAME/DOMAIN/%s"
26 /* 15 minutes */
27 #define DSGETDCNAME_CACHE_TTL   60*15
28
29 struct ip_service_name {
30         struct sockaddr_storage ss;
31         unsigned port;
32         const char *hostname;
33 };
34
35 static NTSTATUS make_dc_info_from_cldap_reply(TALLOC_CTX *mem_ctx,
36                                               uint32_t flags,
37                                               struct sockaddr_storage *ss,
38                                               uint32_t nt_version,
39                                               union nbt_cldap_netlogon *r,
40                                               struct netr_DsRGetDCNameInfo **info);
41
42 /****************************************************************
43 ****************************************************************/
44
45 void debug_dsdcinfo_flags(int lvl, uint32_t flags)
46 {
47         DEBUG(lvl,("debug_dsdcinfo_flags: 0x%08x\n\t", flags));
48
49         if (flags & DS_FORCE_REDISCOVERY)
50                 DEBUGADD(lvl,("DS_FORCE_REDISCOVERY "));
51         if (flags & 0x000000002)
52                 DEBUGADD(lvl,("0x00000002 "));
53         if (flags & 0x000000004)
54                 DEBUGADD(lvl,("0x00000004 "));
55         if (flags & 0x000000008)
56                 DEBUGADD(lvl,("0x00000008 "));
57         if (flags & DS_DIRECTORY_SERVICE_REQUIRED)
58                 DEBUGADD(lvl,("DS_DIRECTORY_SERVICE_REQUIRED "));
59         if (flags & DS_DIRECTORY_SERVICE_PREFERRED)
60                 DEBUGADD(lvl,("DS_DIRECTORY_SERVICE_PREFERRED "));
61         if (flags & DS_GC_SERVER_REQUIRED)
62                 DEBUGADD(lvl,("DS_GC_SERVER_REQUIRED "));
63         if (flags & DS_PDC_REQUIRED)
64                 DEBUGADD(lvl,("DS_PDC_REQUIRED "));
65         if (flags & DS_BACKGROUND_ONLY)
66                 DEBUGADD(lvl,("DS_BACKGROUND_ONLY "));
67         if (flags & DS_IP_REQUIRED)
68                 DEBUGADD(lvl,("DS_IP_REQUIRED "));
69         if (flags & DS_KDC_REQUIRED)
70                 DEBUGADD(lvl,("DS_KDC_REQUIRED "));
71         if (flags & DS_TIMESERV_REQUIRED)
72                 DEBUGADD(lvl,("DS_TIMESERV_REQUIRED "));
73         if (flags & DS_WRITABLE_REQUIRED)
74                 DEBUGADD(lvl,("DS_WRITABLE_REQUIRED "));
75         if (flags & DS_GOOD_TIMESERV_PREFERRED)
76                 DEBUGADD(lvl,("DS_GOOD_TIMESERV_PREFERRED "));
77         if (flags & DS_AVOID_SELF)
78                 DEBUGADD(lvl,("DS_AVOID_SELF "));
79         if (flags & DS_ONLY_LDAP_NEEDED)
80                 DEBUGADD(lvl,("DS_ONLY_LDAP_NEEDED "));
81         if (flags & DS_IS_FLAT_NAME)
82                 DEBUGADD(lvl,("DS_IS_FLAT_NAME "));
83         if (flags & DS_IS_DNS_NAME)
84                 DEBUGADD(lvl,("DS_IS_DNS_NAME "));
85         if (flags & 0x00040000)
86                 DEBUGADD(lvl,("0x00040000 "));
87         if (flags & 0x00080000)
88                 DEBUGADD(lvl,("0x00080000 "));
89         if (flags & 0x00100000)
90                 DEBUGADD(lvl,("0x00100000 "));
91         if (flags & 0x00200000)
92                 DEBUGADD(lvl,("0x00200000 "));
93         if (flags & 0x00400000)
94                 DEBUGADD(lvl,("0x00400000 "));
95         if (flags & 0x00800000)
96                 DEBUGADD(lvl,("0x00800000 "));
97         if (flags & 0x01000000)
98                 DEBUGADD(lvl,("0x01000000 "));
99         if (flags & 0x02000000)
100                 DEBUGADD(lvl,("0x02000000 "));
101         if (flags & 0x04000000)
102                 DEBUGADD(lvl,("0x04000000 "));
103         if (flags & 0x08000000)
104                 DEBUGADD(lvl,("0x08000000 "));
105         if (flags & 0x10000000)
106                 DEBUGADD(lvl,("0x10000000 "));
107         if (flags & 0x20000000)
108                 DEBUGADD(lvl,("0x20000000 "));
109         if (flags & DS_RETURN_DNS_NAME)
110                 DEBUGADD(lvl,("DS_RETURN_DNS_NAME "));
111         if (flags & DS_RETURN_FLAT_NAME)
112                 DEBUGADD(lvl,("DS_RETURN_FLAT_NAME "));
113         if (flags)
114                 DEBUGADD(lvl,("\n"));
115 }
116
117 /****************************************************************
118 ****************************************************************/
119
120 static char *dsgetdcname_cache_key(TALLOC_CTX *mem_ctx, const char *domain)
121 {
122         if (!mem_ctx || !domain) {
123                 return NULL;
124         }
125
126         return talloc_asprintf_strupper_m(mem_ctx, DSGETDCNAME_FMT, domain);
127 }
128
129 /****************************************************************
130 ****************************************************************/
131
132 static NTSTATUS dsgetdcname_cache_delete(TALLOC_CTX *mem_ctx,
133                                         const char *domain_name)
134 {
135         char *key;
136
137         if (!gencache_init()) {
138                 return NT_STATUS_INTERNAL_DB_ERROR;
139         }
140
141         key = dsgetdcname_cache_key(mem_ctx, domain_name);
142         if (!key) {
143                 return NT_STATUS_NO_MEMORY;
144         }
145
146         if (!gencache_del(key)) {
147                 return NT_STATUS_UNSUCCESSFUL;
148         }
149
150         return NT_STATUS_OK;
151 }
152
153 /****************************************************************
154 ****************************************************************/
155
156 static NTSTATUS dsgetdcname_cache_store(TALLOC_CTX *mem_ctx,
157                                         const char *domain_name,
158                                         const DATA_BLOB *blob)
159 {
160         time_t expire_time;
161         char *key;
162         bool ret = false;
163
164         if (!gencache_init()) {
165                 return NT_STATUS_INTERNAL_DB_ERROR;
166         }
167
168         key = dsgetdcname_cache_key(mem_ctx, domain_name);
169         if (!key) {
170                 return NT_STATUS_NO_MEMORY;
171         }
172
173         expire_time = time(NULL) + DSGETDCNAME_CACHE_TTL;
174
175         if (gencache_lock_entry(key) != 0) {
176                 return NT_STATUS_LOCK_NOT_GRANTED;
177         }
178
179         ret = gencache_set_data_blob(key, blob, expire_time);
180
181         gencache_unlock_entry(key);
182
183         return ret ? NT_STATUS_OK : NT_STATUS_UNSUCCESSFUL;
184 }
185
186 /****************************************************************
187 ****************************************************************/
188
189 #define SET_STRING(x) \
190         talloc_strdup(mem_ctx, x); \
191         NT_STATUS_HAVE_NO_MEMORY(x);
192
193 static NTSTATUS map_logon29_from_cldap_reply(TALLOC_CTX *mem_ctx,
194                                              uint32_t flags,
195                                              struct sockaddr_storage *ss,
196                                              uint32_t nt_version,
197                                              union nbt_cldap_netlogon *r,
198                                              struct nbt_cldap_netlogon_29 *p)
199 {
200         char addr[INET6_ADDRSTRLEN];
201
202         ZERO_STRUCTP(p);
203
204         print_sockaddr(addr, sizeof(addr), ss);
205
206         /* FIXME */
207         p->dc_sock_addr_size = 0x10; /* the w32 winsock addr size */
208         p->dc_sock_addr.sa_family = 2; /* AF_INET */
209         p->dc_sock_addr.pdc_ip = talloc_strdup(mem_ctx, addr);
210
211         switch (nt_version & 0x0000001f) {
212                 case 0:
213                         return NT_STATUS_INVALID_PARAMETER;
214                 case 1:
215                 case 16:
216                 case 17:
217                         p->pdc_name     = SET_STRING(r->logon1.pdc_name);
218                         p->domain       = SET_STRING(r->logon1.domain_name);
219
220                         if (flags & DS_PDC_REQUIRED) {
221                                 p->server_type = NBT_SERVER_WRITABLE |
222                                                  NBT_SERVER_PDC;
223                         }
224                         break;
225                 case 2:
226                 case 3:
227                 case 18:
228                 case 19:
229                         p->pdc_name     = SET_STRING(r->logon3.pdc_name);
230                         p->domain       = SET_STRING(r->logon3.domain_name);
231                         p->pdc_dns_name = SET_STRING(r->logon3.pdc_dns_name);
232                         p->dns_domain   = SET_STRING(r->logon3.dns_domain);
233                         p->server_type  = r->logon3.server_type;
234                         p->forest       = SET_STRING(r->logon3.forest);
235                         p->domain_uuid  = r->logon3.domain_uuid;
236
237                         break;
238                 case 4:
239                 case 5:
240                 case 6:
241                 case 7:
242                         p->pdc_name     = SET_STRING(r->logon5.pdc_name);
243                         p->domain       = SET_STRING(r->logon5.domain);
244                         p->pdc_dns_name = SET_STRING(r->logon5.pdc_dns_name);
245                         p->dns_domain   = SET_STRING(r->logon5.dns_domain);
246                         p->server_type  = r->logon5.server_type;
247                         p->forest       = SET_STRING(r->logon5.forest);
248                         p->domain_uuid  = r->logon5.domain_uuid;
249                         p->server_site  = SET_STRING(r->logon5.server_site);
250                         p->client_site  = SET_STRING(r->logon5.client_site);
251
252                         break;
253                 case 8:
254                 case 9:
255                 case 10:
256                 case 11:
257                 case 12:
258                 case 13:
259                 case 14:
260                 case 15:
261                         p->pdc_name     = SET_STRING(r->logon13.pdc_name);
262                         p->domain       = SET_STRING(r->logon13.domain);
263                         p->pdc_dns_name = SET_STRING(r->logon13.pdc_dns_name);
264                         p->dns_domain   = SET_STRING(r->logon13.dns_domain);
265                         p->server_type  = r->logon13.server_type;
266                         p->forest       = SET_STRING(r->logon13.forest);
267                         p->domain_uuid  = r->logon13.domain_uuid;
268                         p->server_site  = SET_STRING(r->logon13.server_site);
269                         p->client_site  = SET_STRING(r->logon13.client_site);
270
271                         break;
272                 case 20:
273                 case 21:
274                 case 22:
275                 case 23:
276                 case 24:
277                 case 25:
278                 case 26:
279                 case 27:
280                 case 28:
281                         p->pdc_name     = SET_STRING(r->logon15.pdc_name);
282                         p->domain       = SET_STRING(r->logon15.domain);
283                         p->pdc_dns_name = SET_STRING(r->logon15.pdc_dns_name);
284                         p->dns_domain   = SET_STRING(r->logon15.dns_domain);
285                         p->server_type  = r->logon15.server_type;
286                         p->forest       = SET_STRING(r->logon15.forest);
287                         p->domain_uuid  = r->logon15.domain_uuid;
288                         p->server_site  = SET_STRING(r->logon15.server_site);
289                         p->client_site  = SET_STRING(r->logon15.client_site);
290
291                         break;
292                 case 29:
293                 case 30:
294                 case 31:
295                         p->pdc_name     = SET_STRING(r->logon29.pdc_name);
296                         p->domain       = SET_STRING(r->logon29.domain);
297                         p->pdc_dns_name = SET_STRING(r->logon29.pdc_dns_name);
298                         p->dns_domain   = SET_STRING(r->logon29.dns_domain);
299                         p->server_type  = r->logon29.server_type;
300                         p->forest       = SET_STRING(r->logon29.forest);
301                         p->domain_uuid  = r->logon29.domain_uuid;
302                         p->server_site  = SET_STRING(r->logon29.server_site);
303                         p->client_site  = SET_STRING(r->logon29.client_site);
304                         p->next_closest_site = SET_STRING(r->logon29.next_closest_site);
305
306                         break;
307                 default:
308                         return NT_STATUS_INVALID_PARAMETER;
309         }
310
311         return NT_STATUS_OK;
312 }
313
314 /****************************************************************
315 ****************************************************************/
316
317 static NTSTATUS store_cldap_reply(TALLOC_CTX *mem_ctx,
318                                   uint32_t flags,
319                                   struct sockaddr_storage *ss,
320                                   uint32_t nt_version,
321                                   union nbt_cldap_netlogon *r)
322 {
323         DATA_BLOB blob;
324         enum ndr_err_code ndr_err;
325         NTSTATUS status;
326         struct nbt_cldap_netlogon_29 logon29;
327
328         status = map_logon29_from_cldap_reply(mem_ctx, flags, ss,
329                                               nt_version, r, &logon29);
330         if (!NT_STATUS_IS_OK(status)) {
331                 return status;
332         }
333
334         ndr_err = ndr_push_struct_blob(&blob, mem_ctx, &logon29,
335                        (ndr_push_flags_fn_t)ndr_push_nbt_cldap_netlogon_29);
336         if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err)) {
337                 return ndr_map_error2ntstatus(ndr_err);
338         }
339
340         if (logon29.domain) {
341                 status = dsgetdcname_cache_store(mem_ctx, logon29.domain, &blob);
342                 if (!NT_STATUS_IS_OK(status)) {
343                         goto done;
344                 }
345         }
346         if (logon29.dns_domain) {
347                 status = dsgetdcname_cache_store(mem_ctx, logon29.dns_domain, &blob);
348                 if (!NT_STATUS_IS_OK(status)) {
349                         goto done;
350                 }
351         }
352
353  done:
354         data_blob_free(&blob);
355
356         return status;
357 }
358
359 /****************************************************************
360 ****************************************************************/
361
362 static NTSTATUS dsgetdcname_cache_refresh(TALLOC_CTX *mem_ctx,
363                                           struct messaging_context *msg_ctx,
364                                           const char *domain_name,
365                                           struct GUID *domain_guid,
366                                           uint32_t flags,
367                                           const char *site_name,
368                                           struct netr_DsRGetDCNameInfo *info)
369 {
370         struct netr_DsRGetDCNameInfo *dc_info;
371
372         return dsgetdcname(mem_ctx,
373                            msg_ctx,
374                            domain_name,
375                            domain_guid,
376                            site_name,
377                            flags | DS_FORCE_REDISCOVERY,
378                            &dc_info);
379 }
380
381 /****************************************************************
382 ****************************************************************/
383
384 static uint32_t get_cldap_reply_server_flags(union nbt_cldap_netlogon *r,
385                                              uint32_t nt_version)
386 {
387         switch (nt_version & 0x0000001f) {
388                 case 0:
389                 case 1:
390                 case 16:
391                 case 17:
392                         return 0;
393                 case 2:
394                 case 3:
395                 case 18:
396                 case 19:
397                         return r->logon3.server_type;
398                 case 4:
399                 case 5:
400                 case 6:
401                 case 7:
402                         return r->logon5.server_type;
403                 case 8:
404                 case 9:
405                 case 10:
406                 case 11:
407                 case 12:
408                 case 13:
409                 case 14:
410                 case 15:
411                         return r->logon13.server_type;
412                 case 20:
413                 case 21:
414                 case 22:
415                 case 23:
416                 case 24:
417                 case 25:
418                 case 26:
419                 case 27:
420                 case 28:
421                         return r->logon15.server_type;
422                 case 29:
423                 case 30:
424                 case 31:
425                         return r->logon29.server_type;
426                 default:
427                         return 0;
428         }
429 }
430
431 /****************************************************************
432 ****************************************************************/
433
434 #define RETURN_ON_FALSE(x) if (!x) return false;
435
436 static bool check_cldap_reply_required_flags(uint32_t ret_flags,
437                                              uint32_t req_flags)
438 {
439         if (ret_flags == 0) {
440                 return true;
441         }
442
443         if (req_flags & DS_PDC_REQUIRED)
444                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_PDC);
445
446         if (req_flags & DS_GC_SERVER_REQUIRED)
447                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_GC);
448
449         if (req_flags & DS_ONLY_LDAP_NEEDED)
450                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_LDAP);
451
452         if ((req_flags & DS_DIRECTORY_SERVICE_REQUIRED) ||
453             (req_flags & DS_DIRECTORY_SERVICE_PREFERRED))
454                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_DS);
455
456         if (req_flags & DS_KDC_REQUIRED)
457                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_KDC);
458
459         if (req_flags & DS_TIMESERV_REQUIRED)
460                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_TIMESERV);
461
462         if (req_flags & DS_WRITABLE_REQUIRED)
463                 RETURN_ON_FALSE(ret_flags & NBT_SERVER_WRITABLE);
464
465         return true;
466 }
467
468 /****************************************************************
469 ****************************************************************/
470
471 static NTSTATUS dsgetdcname_cache_fetch(TALLOC_CTX *mem_ctx,
472                                         const char *domain_name,
473                                         struct GUID *domain_guid,
474                                         uint32_t flags,
475                                         const char *site_name,
476                                         struct netr_DsRGetDCNameInfo **info_p,
477                                         bool *expired)
478 {
479         char *key;
480         DATA_BLOB blob;
481         enum ndr_err_code ndr_err;
482         struct netr_DsRGetDCNameInfo *info;
483         union nbt_cldap_netlogon p;
484         struct nbt_cldap_netlogon_29 r;
485         NTSTATUS status;
486
487         if (!gencache_init()) {
488                 return NT_STATUS_INTERNAL_DB_ERROR;
489         }
490
491         key = dsgetdcname_cache_key(mem_ctx, domain_name);
492         if (!key) {
493                 return NT_STATUS_NO_MEMORY;
494         }
495
496         if (!gencache_get_data_blob(key, &blob, expired)) {
497                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
498         }
499
500         info = TALLOC_ZERO_P(mem_ctx, struct netr_DsRGetDCNameInfo);
501         if (!info) {
502                 return NT_STATUS_NO_MEMORY;
503         }
504
505         ndr_err = ndr_pull_struct_blob(&blob, mem_ctx, &r,
506                       (ndr_pull_flags_fn_t)ndr_pull_nbt_cldap_netlogon_29);
507
508         data_blob_free(&blob);
509         if (!NDR_ERR_CODE_IS_SUCCESS(ndr_err)) {
510                 dsgetdcname_cache_delete(mem_ctx, domain_name);
511                 return ndr_map_error2ntstatus(ndr_err);
512         }
513
514         p.logon29 = r;
515
516         status = make_dc_info_from_cldap_reply(mem_ctx, flags, NULL,
517                                                29,
518                                                &p, &info);
519         if (!NT_STATUS_IS_OK(status)) {
520                 return status;
521         }
522
523         if (DEBUGLEVEL >= 10) {
524                 NDR_PRINT_DEBUG(netr_DsRGetDCNameInfo, info);
525         }
526
527         /* check flags */
528         if (!check_cldap_reply_required_flags(info->dc_flags, flags)) {
529                 DEBUG(10,("invalid flags\n"));
530                 return NT_STATUS_INVALID_PARAMETER;
531         }
532
533         if ((flags & DS_IP_REQUIRED) &&
534             (info->dc_address_type != DS_ADDRESS_TYPE_INET)) {
535                 return NT_STATUS_INVALID_PARAMETER_MIX;
536         }
537
538         *info_p = info;
539
540         return NT_STATUS_OK;
541 }
542
543 /****************************************************************
544 ****************************************************************/
545
546 static NTSTATUS dsgetdcname_cached(TALLOC_CTX *mem_ctx,
547                                    struct messaging_context *msg_ctx,
548                                    const char *domain_name,
549                                    struct GUID *domain_guid,
550                                    uint32_t flags,
551                                    const char *site_name,
552                                    struct netr_DsRGetDCNameInfo **info)
553 {
554         NTSTATUS status;
555         bool expired = false;
556
557         status = dsgetdcname_cache_fetch(mem_ctx, domain_name, domain_guid,
558                                          flags, site_name, info, &expired);
559         if (!NT_STATUS_IS_OK(status)) {
560                 DEBUG(10,("dsgetdcname_cached: cache fetch failed with: %s\n",
561                         nt_errstr(status)));
562                 return NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
563         }
564
565         if (flags & DS_BACKGROUND_ONLY) {
566                 return status;
567         }
568
569         if (expired) {
570                 status = dsgetdcname_cache_refresh(mem_ctx, msg_ctx,
571                                                    domain_name,
572                                                    domain_guid, flags,
573                                                    site_name, *info);
574                 if (!NT_STATUS_IS_OK(status)) {
575                         return status;
576                 }
577         }
578
579         return status;
580 }
581
582 /****************************************************************
583 ****************************************************************/
584
585 static bool check_allowed_required_flags(uint32_t flags,
586                                          const char *site_name)
587 {
588         uint32_t return_type = flags & (DS_RETURN_FLAT_NAME|DS_RETURN_DNS_NAME);
589         uint32_t offered_type = flags & (DS_IS_FLAT_NAME|DS_IS_DNS_NAME);
590         uint32_t query_type = flags & (DS_BACKGROUND_ONLY|DS_FORCE_REDISCOVERY);
591
592         /* FIXME: check for DSGETDC_VALID_FLAGS and check for excluse bits
593          * (DS_PDC_REQUIRED, DS_KDC_REQUIRED, DS_GC_SERVER_REQUIRED) */
594
595         debug_dsdcinfo_flags(10, flags);
596
597         if ((flags & DS_TRY_NEXTCLOSEST_SITE) && site_name) {
598                 return false;
599         }
600
601         if (return_type == (DS_RETURN_FLAT_NAME|DS_RETURN_DNS_NAME)) {
602                 return false;
603         }
604
605         if (offered_type == (DS_IS_DNS_NAME|DS_IS_FLAT_NAME)) {
606                 return false;
607         }
608
609         if (query_type == (DS_BACKGROUND_ONLY|DS_FORCE_REDISCOVERY)) {
610                 return false;
611         }
612
613 #if 0
614         if ((flags & DS_RETURN_DNS_NAME) && (!(flags & DS_IP_REQUIRED))) {
615                 printf("gd: here5 \n");
616                 return false;
617         }
618 #endif
619         return true;
620 }
621
622 /****************************************************************
623 ****************************************************************/
624
625 static NTSTATUS discover_dc_netbios(TALLOC_CTX *mem_ctx,
626                                     const char *domain_name,
627                                     uint32_t flags,
628                                     struct ip_service_name **returned_dclist,
629                                     int *returned_count)
630 {
631         NTSTATUS status;
632         enum nbt_name_type name_type = NBT_NAME_LOGON;
633         struct ip_service *iplist;
634         int i;
635         struct ip_service_name *dclist = NULL;
636         int count;
637
638         *returned_dclist = NULL;
639         *returned_count = 0;
640
641         if (lp_disable_netbios()) {
642                 return NT_STATUS_NOT_SUPPORTED;
643         }
644
645         if (flags & DS_PDC_REQUIRED) {
646                 name_type = NBT_NAME_PDC;
647         }
648
649         status = internal_resolve_name(domain_name, name_type, NULL,
650                                        &iplist, &count,
651                                        "lmhosts wins bcast");
652         if (!NT_STATUS_IS_OK(status)) {
653                 DEBUG(10,("discover_dc_netbios: failed to find DC\n"));
654                 return status;
655         }
656
657         dclist = TALLOC_ZERO_ARRAY(mem_ctx, struct ip_service_name, count);
658         if (!dclist) {
659                 return NT_STATUS_NO_MEMORY;
660         }
661
662         for (i=0; i<count; i++) {
663
664                 char addr[INET6_ADDRSTRLEN];
665                 struct ip_service_name *r = &dclist[i];
666
667                 print_sockaddr(addr, sizeof(addr),
668                                &iplist[i].ss);
669
670                 r->ss   = iplist[i].ss;
671                 r->port = iplist[i].port;
672                 r->hostname = talloc_strdup(mem_ctx, addr);
673                 if (!r->hostname) {
674                         return NT_STATUS_NO_MEMORY;
675                 }
676
677         }
678
679         *returned_dclist = dclist;
680         *returned_count = count;
681
682         return NT_STATUS_OK;
683 }
684
685 /****************************************************************
686 ****************************************************************/
687
688 static NTSTATUS discover_dc_dns(TALLOC_CTX *mem_ctx,
689                                 const char *domain_name,
690                                 struct GUID *domain_guid,
691                                 uint32_t flags,
692                                 const char *site_name,
693                                 struct ip_service_name **returned_dclist,
694                                 int *return_count)
695 {
696         int i, j;
697         NTSTATUS status;
698         struct dns_rr_srv *dcs = NULL;
699         int numdcs = 0;
700         int numaddrs = 0;
701         struct ip_service_name *dclist = NULL;
702         int count = 0;
703
704         if (flags & DS_PDC_REQUIRED) {
705                 status = ads_dns_query_pdc(mem_ctx, domain_name,
706                                            &dcs, &numdcs);
707         } else if (flags & DS_GC_SERVER_REQUIRED) {
708                 status = ads_dns_query_gcs(mem_ctx, domain_name, site_name,
709                                            &dcs, &numdcs);
710         } else if (flags & DS_KDC_REQUIRED) {
711                 status = ads_dns_query_kdcs(mem_ctx, domain_name, site_name,
712                                             &dcs, &numdcs);
713         } else if (flags & DS_DIRECTORY_SERVICE_REQUIRED) {
714                 status = ads_dns_query_dcs(mem_ctx, domain_name, site_name,
715                                            &dcs, &numdcs);
716         } else if (domain_guid) {
717                 status = ads_dns_query_dcs_guid(mem_ctx, domain_name,
718                                                 domain_guid, &dcs, &numdcs);
719         } else {
720                 status = ads_dns_query_dcs(mem_ctx, domain_name, site_name,
721                                            &dcs, &numdcs);
722         }
723
724         if (!NT_STATUS_IS_OK(status)) {
725                 return status;
726         }
727
728         if (numdcs == 0) {
729                 return NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
730         }
731
732         for (i=0;i<numdcs;i++) {
733                 numaddrs += MAX(dcs[i].num_ips,1);
734         }
735
736         dclist = TALLOC_ZERO_ARRAY(mem_ctx,
737                                    struct ip_service_name,
738                                    numaddrs);
739         if (!dclist) {
740                 return NT_STATUS_NO_MEMORY;
741         }
742
743         /* now unroll the list of IP addresses */
744
745         *return_count = 0;
746         i = 0;
747         j = 0;
748
749         while ((i < numdcs) && (count < numaddrs)) {
750
751                 struct ip_service_name *r = &dclist[count];
752
753                 r->port = dcs[count].port;
754                 r->hostname = dcs[count].hostname;
755
756                 /* If we don't have an IP list for a name, lookup it up */
757
758                 if (!dcs[i].ss_s) {
759                         interpret_string_addr(&r->ss, dcs[i].hostname, 0);
760                         i++;
761                         j = 0;
762                 } else {
763                         /* use the IP addresses from the SRV sresponse */
764
765                         if (j >= dcs[i].num_ips) {
766                                 i++;
767                                 j = 0;
768                                 continue;
769                         }
770
771                         r->ss = dcs[i].ss_s[j];
772                         j++;
773                 }
774
775                 /* make sure it is a valid IP.  I considered checking the
776                  * negative connection cache, but this is the wrong place for
777                  * it.  Maybe only as a hac.  After think about it, if all of
778                  * the IP addresses retuend from DNS are dead, what hope does a
779                  * netbios name lookup have?  The standard reason for falling
780                  * back to netbios lookups is that our DNS server doesn't know
781                  * anything about the DC's   -- jerry */
782
783                 if (!is_zero_addr(&r->ss)) {
784                         count++;
785                         continue;
786                 }
787         }
788
789         *returned_dclist = dclist;
790         *return_count = count;
791
792         if (count > 0) {
793                 return NT_STATUS_OK;
794         }
795
796         return NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
797 }
798
799 /****************************************************************
800 ****************************************************************/
801
802 static NTSTATUS make_domain_controller_info(TALLOC_CTX *mem_ctx,
803                                             const char *dc_unc,
804                                             const char *dc_address,
805                                             uint32_t dc_address_type,
806                                             const struct GUID *domain_guid,
807                                             const char *domain_name,
808                                             const char *forest_name,
809                                             uint32_t flags,
810                                             const char *dc_site_name,
811                                             const char *client_site_name,
812                                             struct netr_DsRGetDCNameInfo **info_out)
813 {
814         struct netr_DsRGetDCNameInfo *info;
815
816         info = TALLOC_ZERO_P(mem_ctx, struct netr_DsRGetDCNameInfo);
817         NT_STATUS_HAVE_NO_MEMORY(info);
818
819         if (dc_unc) {
820                 info->dc_unc = talloc_strdup(mem_ctx, dc_unc);
821                 NT_STATUS_HAVE_NO_MEMORY(info->dc_unc);
822         }
823
824         if (dc_address) {
825                 if (!(dc_address[0] == '\\' && dc_address[1] == '\\')) {
826                         info->dc_address = talloc_asprintf(mem_ctx, "\\\\%s",
827                                                            dc_address);
828                 } else {
829                         info->dc_address = talloc_strdup(mem_ctx, dc_address);
830                 }
831                 NT_STATUS_HAVE_NO_MEMORY(info->dc_address);
832         }
833
834         info->dc_address_type = dc_address_type;
835
836         if (domain_guid) {
837                 info->domain_guid = *domain_guid;
838         }
839
840         if (domain_name) {
841                 info->domain_name = talloc_strdup(mem_ctx, domain_name);
842                 NT_STATUS_HAVE_NO_MEMORY(info->domain_name);
843         }
844
845         if (forest_name && *forest_name) {
846                 info->forest_name = talloc_strdup(mem_ctx, forest_name);
847                 NT_STATUS_HAVE_NO_MEMORY(info->forest_name);
848                 flags |= DS_DNS_FOREST;
849         }
850
851         info->dc_flags = flags;
852
853         if (dc_site_name) {
854                 info->dc_site_name = talloc_strdup(mem_ctx, dc_site_name);
855                 NT_STATUS_HAVE_NO_MEMORY(info->dc_site_name);
856         }
857
858         if (client_site_name) {
859                 info->client_site_name = talloc_strdup(mem_ctx,
860                                                        client_site_name);
861                 NT_STATUS_HAVE_NO_MEMORY(info->client_site_name);
862         }
863
864         *info_out = info;
865
866         return NT_STATUS_OK;
867 }
868
869 /****************************************************************
870 ****************************************************************/
871
872 static void map_dc_and_domain_names(uint32_t flags,
873                                     const char *dc_name,
874                                     const char *domain_name,
875                                     const char *dns_dc_name,
876                                     const char *dns_domain_name,
877                                     uint32_t *dc_flags,
878                                     const char **hostname_p,
879                                     const char **domain_p)
880 {
881         switch (flags & 0xf0000000) {
882                 case DS_RETURN_FLAT_NAME:
883                         if (dc_name && domain_name &&
884                             *dc_name && *domain_name) {
885                                 *hostname_p = dc_name;
886                                 *domain_p = domain_name;
887                                 break;
888                         }
889                 case DS_RETURN_DNS_NAME:
890                 default:
891                         if (dns_dc_name && dns_domain_name &&
892                             *dns_dc_name && *dns_domain_name) {
893                                 *hostname_p = dns_dc_name;
894                                 *domain_p = dns_domain_name;
895                                 *dc_flags |= DS_DNS_DOMAIN | DS_DNS_CONTROLLER;
896                                 break;
897                         }
898                         if (dc_name && domain_name &&
899                             *dc_name && *domain_name) {
900                                 *hostname_p = dc_name;
901                                 *domain_p = domain_name;
902                                 break;
903                         }
904         }
905 }
906
907 /****************************************************************
908 ****************************************************************/
909
910 static NTSTATUS make_dc_info_from_cldap_reply(TALLOC_CTX *mem_ctx,
911                                               uint32_t flags,
912                                               struct sockaddr_storage *ss,
913                                               uint32_t nt_version,
914                                               union nbt_cldap_netlogon *r,
915                                               struct netr_DsRGetDCNameInfo **info)
916 {
917         const char *dc_hostname, *dc_domain_name;
918         const char *dc_address = NULL;
919         const char *dc_forest = NULL;
920         uint32_t dc_address_type = 0;
921         uint32_t dc_flags = 0;
922         struct GUID *dc_domain_guid = NULL;
923         const char *dc_server_site = NULL;
924         const char *dc_client_site = NULL;
925
926         char addr[INET6_ADDRSTRLEN];
927
928         if (ss) {
929                 print_sockaddr(addr, sizeof(addr), ss);
930                 dc_address = addr;
931                 dc_address_type = DS_ADDRESS_TYPE_INET;
932         }
933
934         switch (nt_version & 0x0000001f) {
935                 case 0:
936                 case 1:
937                 case 16:
938                 case 17:
939                         if (!ss) {
940                                 dc_address      = r->logon1.pdc_name;
941                                 dc_address_type = DS_ADDRESS_TYPE_NETBIOS;
942                         }
943
944                         map_dc_and_domain_names(flags,
945                                                 r->logon1.pdc_name,
946                                                 r->logon1.domain_name,
947                                                 NULL,
948                                                 NULL,
949                                                 &dc_flags,
950                                                 &dc_hostname,
951                                                 &dc_domain_name);
952
953                         if (flags & DS_PDC_REQUIRED) {
954                                 dc_flags = NBT_SERVER_WRITABLE | NBT_SERVER_PDC;
955                         }
956                         break;
957                 case 2:
958                 case 3:
959                 case 18:
960                 case 19:
961                         if (!ss) {
962                                 dc_address      = r->logon3.pdc_ip;
963                                 dc_address_type = DS_ADDRESS_TYPE_INET;
964                         }
965
966                         map_dc_and_domain_names(flags,
967                                                 r->logon3.pdc_name,
968                                                 r->logon3.domain_name,
969                                                 r->logon3.pdc_dns_name,
970                                                 r->logon3.dns_domain,
971                                                 &dc_flags,
972                                                 &dc_hostname,
973                                                 &dc_domain_name);
974
975                         dc_flags        |= r->logon3.server_type;
976                         dc_forest       = r->logon3.forest;
977                         dc_domain_guid  = &r->logon3.domain_uuid;
978
979                         break;
980                 case 4:
981                 case 5:
982                 case 6:
983                 case 7:
984                         if (!ss) {
985                                 dc_address      = r->logon5.pdc_name;
986                                 dc_address_type = DS_ADDRESS_TYPE_NETBIOS;
987                         }
988
989                         map_dc_and_domain_names(flags,
990                                                 r->logon5.pdc_name,
991                                                 r->logon5.domain,
992                                                 r->logon5.pdc_dns_name,
993                                                 r->logon5.dns_domain,
994                                                 &dc_flags,
995                                                 &dc_hostname,
996                                                 &dc_domain_name);
997
998                         dc_flags        |= r->logon5.server_type;
999                         dc_forest       = r->logon5.forest;
1000                         dc_domain_guid  = &r->logon5.domain_uuid;
1001                         dc_server_site  = r->logon5.server_site;
1002                         dc_client_site  = r->logon5.client_site;
1003
1004                         break;
1005                 case 8:
1006                 case 9:
1007                 case 10:
1008                 case 11:
1009                 case 12:
1010                 case 13:
1011                 case 14:
1012                 case 15:
1013                         if (!ss) {
1014                                 dc_address      = r->logon13.dc_sock_addr.pdc_ip;
1015                                 dc_address_type = DS_ADDRESS_TYPE_INET;
1016                         }
1017
1018                         map_dc_and_domain_names(flags,
1019                                                 r->logon13.pdc_name,
1020                                                 r->logon13.domain,
1021                                                 r->logon13.pdc_dns_name,
1022                                                 r->logon13.dns_domain,
1023                                                 &dc_flags,
1024                                                 &dc_hostname,
1025                                                 &dc_domain_name);
1026
1027                         dc_flags        |= r->logon13.server_type;
1028                         dc_forest       = r->logon13.forest;
1029                         dc_domain_guid  = &r->logon13.domain_uuid;
1030                         dc_server_site  = r->logon13.server_site;
1031                         dc_client_site  = r->logon13.client_site;
1032
1033                         break;
1034                 case 20:
1035                 case 21:
1036                 case 22:
1037                 case 23:
1038                 case 24:
1039                 case 25:
1040                 case 26:
1041                 case 27:
1042                 case 28:
1043                         if (!ss) {
1044                                 dc_address      = r->logon15.pdc_name;
1045                                 dc_address_type = DS_ADDRESS_TYPE_NETBIOS;
1046                         }
1047
1048                         map_dc_and_domain_names(flags,
1049                                                 r->logon15.pdc_name,
1050                                                 r->logon15.domain,
1051                                                 r->logon15.pdc_dns_name,
1052                                                 r->logon15.dns_domain,
1053                                                 &dc_flags,
1054                                                 &dc_hostname,
1055                                                 &dc_domain_name);
1056
1057                         dc_flags        |= r->logon15.server_type;
1058                         dc_forest       = r->logon15.forest;
1059                         dc_domain_guid  = &r->logon15.domain_uuid;
1060                         dc_server_site  = r->logon15.server_site;
1061                         dc_client_site  = r->logon15.client_site;
1062
1063                         break;
1064                 case 29:
1065                 case 30:
1066                 case 31:
1067                         if (!ss) {
1068                                 dc_address      = r->logon29.dc_sock_addr.pdc_ip;
1069                                 dc_address_type = DS_ADDRESS_TYPE_INET;
1070                         }
1071
1072                         map_dc_and_domain_names(flags,
1073                                                 r->logon29.pdc_name,
1074                                                 r->logon29.domain,
1075                                                 r->logon29.pdc_dns_name,
1076                                                 r->logon29.dns_domain,
1077                                                 &dc_flags,
1078                                                 &dc_hostname,
1079                                                 &dc_domain_name);
1080
1081                         dc_flags        |= r->logon29.server_type;
1082                         dc_forest       = r->logon29.forest;
1083                         dc_domain_guid  = &r->logon29.domain_uuid;
1084                         dc_server_site  = r->logon29.server_site;
1085                         dc_client_site  = r->logon29.client_site;
1086
1087                         break;
1088                 default:
1089                         return NT_STATUS_INVALID_PARAMETER;
1090         }
1091
1092         return make_domain_controller_info(mem_ctx,
1093                                            dc_hostname,
1094                                            dc_address,
1095                                            dc_address_type,
1096                                            dc_domain_guid,
1097                                            dc_domain_name,
1098                                            dc_forest,
1099                                            dc_flags,
1100                                            dc_server_site,
1101                                            dc_client_site,
1102                                            info);
1103 }
1104
1105 /****************************************************************
1106 ****************************************************************/
1107
1108 static uint32_t map_ds_flags_to_nt_version(uint32_t flags)
1109 {
1110         uint32_t nt_version = 0;
1111
1112         if (flags & DS_PDC_REQUIRED) {
1113                 nt_version |= NETLOGON_VERSION_PDC;
1114         }
1115
1116         if (flags & DS_GC_SERVER_REQUIRED) {
1117                 nt_version |= NETLOGON_VERSION_GC;
1118         }
1119
1120         if (flags & DS_TRY_NEXTCLOSEST_SITE) {
1121                 nt_version |= NETLOGON_VERSION_WITH_CLOSEST_SITE;
1122         }
1123
1124         if (flags & DS_IP_REQUIRED) {
1125                 nt_version |= NETLOGON_VERSION_IP;
1126         }
1127
1128         return nt_version;
1129 }
1130
1131 /****************************************************************
1132 ****************************************************************/
1133
1134 static NTSTATUS process_dc_dns(TALLOC_CTX *mem_ctx,
1135                                const char *domain_name,
1136                                uint32_t flags,
1137                                struct ip_service_name *dclist,
1138                                int num_dcs,
1139                                struct netr_DsRGetDCNameInfo **info)
1140 {
1141         int i = 0;
1142         bool valid_dc = false;
1143         union nbt_cldap_netlogon *r = NULL;
1144         uint32_t nt_version = NETLOGON_VERSION_5 |
1145                               NETLOGON_VERSION_5EX;
1146         uint32_t ret_flags = 0;
1147         NTSTATUS status;
1148
1149         nt_version |= map_ds_flags_to_nt_version(flags);
1150
1151         for (i=0; i<num_dcs; i++) {
1152
1153                 DEBUG(10,("LDAP ping to %s\n", dclist[i].hostname));
1154
1155                 if (ads_cldap_netlogon(mem_ctx, dclist[i].hostname,
1156                                         domain_name,
1157                                         &nt_version,
1158                                         &r))
1159                 {
1160                         ret_flags = get_cldap_reply_server_flags(r, nt_version);
1161
1162                         if (check_cldap_reply_required_flags(ret_flags, flags)) {
1163                                 valid_dc = true;
1164                                 break;
1165                         }
1166                 }
1167
1168                 continue;
1169         }
1170
1171         if (!valid_dc) {
1172                 return NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
1173         }
1174
1175         status = make_dc_info_from_cldap_reply(mem_ctx, flags, &dclist[i].ss,
1176                                                nt_version, r, info);
1177         if (NT_STATUS_IS_OK(status)) {
1178                 return store_cldap_reply(mem_ctx, flags, &dclist[i].ss,
1179                                          nt_version, r);
1180         }
1181
1182         return status;
1183 }
1184
1185 /****************************************************************
1186 ****************************************************************/
1187
1188 static struct event_context *ev_context(void)
1189 {
1190         static struct event_context *ctx;
1191
1192         if (!ctx && !(ctx = event_context_init(NULL))) {
1193                 smb_panic("Could not init event context");
1194         }
1195         return ctx;
1196 }
1197
1198 /****************************************************************
1199 ****************************************************************/
1200
1201 static struct messaging_context *msg_context(TALLOC_CTX *mem_ctx)
1202 {
1203         static struct messaging_context *ctx;
1204
1205         if (!ctx && !(ctx = messaging_init(mem_ctx, server_id_self(),
1206                                            ev_context()))) {
1207                 smb_panic("Could not init messaging context");
1208         }
1209         return ctx;
1210 }
1211
1212 /****************************************************************
1213 ****************************************************************/
1214
1215 static NTSTATUS process_dc_netbios(TALLOC_CTX *mem_ctx,
1216                                    struct messaging_context *msg_ctx,
1217                                    const char *domain_name,
1218                                    uint32_t flags,
1219                                    struct ip_service_name *dclist,
1220                                    int num_dcs,
1221                                    struct netr_DsRGetDCNameInfo **info)
1222 {
1223         struct sockaddr_storage ss;
1224         struct ip_service ip_list;
1225         enum nbt_name_type name_type = NBT_NAME_LOGON;
1226         NTSTATUS status;
1227         int i;
1228         const char *dc_name = NULL;
1229         fstring tmp_dc_name;
1230         union nbt_cldap_netlogon *r = NULL;
1231         bool store_cache = false;
1232         uint32_t nt_version = NETLOGON_VERSION_1 |
1233                               NETLOGON_VERSION_5 |
1234                               NETLOGON_VERSION_5EX_WITH_IP;
1235
1236         if (!msg_ctx) {
1237                 msg_ctx = msg_context(mem_ctx);
1238         }
1239
1240         if (flags & DS_PDC_REQUIRED) {
1241                 name_type = NBT_NAME_PDC;
1242         }
1243
1244         nt_version |= map_ds_flags_to_nt_version(flags);
1245
1246         DEBUG(10,("process_dc_netbios\n"));
1247
1248         for (i=0; i<num_dcs; i++) {
1249
1250                 ip_list.ss = dclist[i].ss;
1251                 ip_list.port = 0;
1252
1253                 if (!interpret_string_addr(&ss, dclist[i].hostname, AI_NUMERICHOST)) {
1254                         return NT_STATUS_UNSUCCESSFUL;
1255                 }
1256
1257                 if (send_getdc_request(mem_ctx, msg_ctx,
1258                                        &dclist[i].ss, domain_name,
1259                                        NULL, nt_version))
1260                 {
1261                         int k;
1262                         smb_msleep(300);
1263                         for (k=0; k<5; k++) {
1264                                 if (receive_getdc_response(mem_ctx,
1265                                                            &dclist[i].ss,
1266                                                            domain_name,
1267                                                            &nt_version,
1268                                                            &dc_name,
1269                                                            &r)) {
1270                                         store_cache = true;
1271                                         namecache_store(dc_name, NBT_NAME_SERVER, 1, &ip_list);
1272                                         goto make_reply;
1273                                 }
1274                                 smb_msleep(1500);
1275                         }
1276                 }
1277
1278                 if (name_status_find(domain_name,
1279                                      name_type,
1280                                      NBT_NAME_SERVER,
1281                                      &dclist[i].ss,
1282                                      tmp_dc_name))
1283                 {
1284                         struct nbt_cldap_netlogon_1 logon1;
1285
1286                         r = TALLOC_ZERO_P(mem_ctx, union nbt_cldap_netlogon);
1287                         NT_STATUS_HAVE_NO_MEMORY(r);
1288
1289                         ZERO_STRUCT(logon1);
1290
1291                         nt_version = NETLOGON_VERSION_1;
1292
1293                         logon1.nt_version = nt_version;
1294                         logon1.pdc_name = tmp_dc_name;
1295                         logon1.domain_name = talloc_strdup_upper(mem_ctx, domain_name);
1296                         NT_STATUS_HAVE_NO_MEMORY(logon1.domain_name);
1297
1298                         r->logon1 = logon1;
1299
1300                         namecache_store(tmp_dc_name, NBT_NAME_SERVER, 1, &ip_list);
1301
1302                         goto make_reply;
1303                 }
1304         }
1305
1306         return NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
1307
1308  make_reply:
1309
1310         status = make_dc_info_from_cldap_reply(mem_ctx, flags, &dclist[i].ss,
1311                                                nt_version, r, info);
1312         if (NT_STATUS_IS_OK(status) && store_cache) {
1313                 return store_cldap_reply(mem_ctx, flags, &dclist[i].ss,
1314                                          nt_version, r);
1315         }
1316
1317         return status;
1318 }
1319
1320 /****************************************************************
1321 ****************************************************************/
1322
1323 static NTSTATUS dsgetdcname_rediscover(TALLOC_CTX *mem_ctx,
1324                                        struct messaging_context *msg_ctx,
1325                                        const char *domain_name,
1326                                        struct GUID *domain_guid,
1327                                        uint32_t flags,
1328                                        const char *site_name,
1329                                        struct netr_DsRGetDCNameInfo **info)
1330 {
1331         NTSTATUS status = NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
1332         struct ip_service_name *dclist = NULL;
1333         int num_dcs;
1334
1335         DEBUG(10,("dsgetdcname_rediscover\n"));
1336
1337         if (flags & DS_IS_FLAT_NAME) {
1338
1339                 status = discover_dc_netbios(mem_ctx, domain_name, flags,
1340                                              &dclist, &num_dcs);
1341                 NT_STATUS_NOT_OK_RETURN(status);
1342
1343                 return process_dc_netbios(mem_ctx, msg_ctx, domain_name, flags,
1344                                           dclist, num_dcs, info);
1345         }
1346
1347         if (flags & DS_IS_DNS_NAME) {
1348
1349                 status = discover_dc_dns(mem_ctx, domain_name, domain_guid,
1350                                          flags, site_name, &dclist, &num_dcs);
1351                 NT_STATUS_NOT_OK_RETURN(status);
1352
1353                 return process_dc_dns(mem_ctx, domain_name, flags,
1354                                       dclist, num_dcs, info);
1355         }
1356
1357         status = discover_dc_dns(mem_ctx, domain_name, domain_guid, flags,
1358                                  site_name, &dclist, &num_dcs);
1359
1360         if (NT_STATUS_IS_OK(status) && num_dcs != 0) {
1361
1362                 status = process_dc_dns(mem_ctx, domain_name, flags, dclist,
1363                                         num_dcs, info);
1364                 if (NT_STATUS_IS_OK(status)) {
1365                         return status;
1366                 }
1367         }
1368
1369         status = discover_dc_netbios(mem_ctx, domain_name, flags, &dclist,
1370                                      &num_dcs);
1371         NT_STATUS_NOT_OK_RETURN(status);
1372
1373         return process_dc_netbios(mem_ctx, msg_ctx, domain_name, flags, dclist,
1374                                   num_dcs, info);
1375 }
1376
1377 /********************************************************************
1378  dsgetdcname.
1379
1380  This will be the only public function here.
1381 ********************************************************************/
1382
1383 NTSTATUS dsgetdcname(TALLOC_CTX *mem_ctx,
1384                      struct messaging_context *msg_ctx,
1385                      const char *domain_name,
1386                      struct GUID *domain_guid,
1387                      const char *site_name,
1388                      uint32_t flags,
1389                      struct netr_DsRGetDCNameInfo **info)
1390 {
1391         NTSTATUS status = NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND;
1392         struct netr_DsRGetDCNameInfo *myinfo = NULL;
1393
1394         DEBUG(10,("dsgetdcname: domain_name: %s, "
1395                   "domain_guid: %s, site_name: %s, flags: 0x%08x\n",
1396                   domain_name,
1397                   domain_guid ? GUID_string(mem_ctx, domain_guid) : "(null)",
1398                   site_name, flags));
1399
1400         *info = NULL;
1401
1402         if (!check_allowed_required_flags(flags, site_name)) {
1403                 DEBUG(0,("invalid flags specified\n"));
1404                 return NT_STATUS_INVALID_PARAMETER;
1405         }
1406
1407         if (flags & DS_FORCE_REDISCOVERY) {
1408                 goto rediscover;
1409         }
1410
1411         status = dsgetdcname_cached(mem_ctx, msg_ctx, domain_name, domain_guid,
1412                                     flags, site_name, &myinfo);
1413         if (NT_STATUS_IS_OK(status)) {
1414                 *info = myinfo;
1415                 return status;
1416         }
1417
1418         if (flags & DS_BACKGROUND_ONLY) {
1419                 return status;
1420         }
1421
1422  rediscover:
1423         status = dsgetdcname_rediscover(mem_ctx, msg_ctx, domain_name,
1424                                         domain_guid, flags, site_name,
1425                                         &myinfo);
1426
1427         if (NT_STATUS_IS_OK(status)) {
1428                 *info = myinfo;
1429         }
1430
1431         return status;
1432 }