4 Unix SMB/CIFS implementation.
5 Machine customisation and include handling
6 Copyright (C) Andrew Tridgell 1994-1998
7 Copyright (C) 2002 by Martin Pool <mbp@samba.org>
9 This program is free software; you can redistribute it and/or modify
10 it under the terms of the GNU General Public License as published by
11 the Free Software Foundation; either version 3 of the License, or
12 (at your option) any later version.
14 This program is distributed in the hope that it will be useful,
15 but WITHOUT ANY WARRANTY; without even the implied warranty of
16 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 GNU General Public License for more details.
19 You should have received a copy of the GNU General Public License
20 along with this program. If not, see <http://www.gnu.org/licenses/>.
23 /* work around broken krb5.h on sles9 */
28 #include "../replace/replace.h"
30 /* make sure we have included the correct config.h */
31 #ifndef NO_CONFIG_H /* for some tests */
32 #ifndef CONFIG_H_IS_FROM_SAMBA
33 #error "make sure you have removed all config.h files from standalone builds!"
34 #error "the included config.h isn't from samba!"
36 #endif /* NO_CONFIG_H */
38 /* only do the C++ reserved word check when we compile
39 to include --with-developer since too many systems
40 still have comflicts with their header files (e.g. IRIX 6.4) */
42 #if !defined(__cplusplus) && defined(DEVELOPER)
43 #define class #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
44 #define private #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
45 #define public #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
46 #define protected #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
47 #define template #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
48 #define this #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
49 #define new #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
50 #define delete #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
51 #define friend #error DONT_USE_CPLUSPLUS_RESERVED_NAMES
57 #define DEFAULT_PRINTING PRINT_AIX
58 #define PRINTCAP_NAME "/etc/qconfig"
62 #define DEFAULT_PRINTING PRINT_HPUX
66 #define DEFAULT_PRINTING PRINT_QNX
70 /* on SUNOS4 termios.h conflicts with sys/ioctl.h */
76 * <unistd.h> has to be included before any other to get
77 * large file support on Reliant UNIX. Yes, it's broken :-).
82 #endif /* RELIANTUNIX */
84 #include "system/capability.h"
85 #include "system/dir.h"
86 #include "system/filesys.h"
87 #include "system/glob.h"
88 #include "system/iconv.h"
89 #include "system/locale.h"
90 #include "system/network.h"
91 #include "system/passwd.h"
92 #include "system/readline.h"
93 #include "system/select.h"
94 #include "system/shmem.h"
95 #include "system/syslog.h"
96 #include "system/terminal.h"
97 #include "system/time.h"
98 #include "system/wait.h"
100 #if defined(HAVE_RPC_RPC_H)
102 * Check for AUTH_ERROR define conflict with rpc/rpc.h in prot.h.
104 #if defined(HAVE_SYS_SECURITY_H) && defined(HAVE_RPC_AUTH_ERROR_CONFLICT)
108 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
109 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
110 * them again without checking if they already exsist. This generates
111 * two "Redefinition of macro" warnings for every single .c file that is
114 #if defined(HPUX) && defined(TCP_NODELAY)
117 #if defined(HPUX) && defined(TCP_MAXSEG)
123 #if defined(HAVE_YP_GET_DEFAULT_DOMAIN) && defined(HAVE_SETNETGRENT) && defined(HAVE_ENDNETGRENT) && defined(HAVE_GETNETGRENT)
124 #define HAVE_NETGROUP 1
127 #if defined (HAVE_NETGROUP)
128 #if defined(HAVE_RPCSVC_YP_PROT_H)
130 * HP-UX 11.X has TCP_NODELAY and TCP_MAXSEG defined in <netinet/tcp.h> which
131 * was included above. However <rpc/rpc.h> includes <sys/xti.h> which defines
132 * them again without checking if they already exsist. This generates
133 * two "Redefinition of macro" warnings for every single .c file that is
136 #if defined(HPUX) && defined(TCP_NODELAY)
139 #if defined(HPUX) && defined(TCP_MAXSEG)
142 #include <rpcsvc/yp_prot.h>
144 #if defined(HAVE_RPCSVC_YPCLNT_H)
145 #include <rpcsvc/ypclnt.h>
147 #endif /* HAVE_NETGROUP */
157 #if defined(HPUX) && !defined(_LBER_TYPES_H)
158 /* Define ber_tag_t and ber_int_t for using
159 * HP LDAP-UX Integration products' LDAP libraries.
162 typedef unsigned long ber_tag_t;
163 typedef int ber_int_t;
165 #endif /* defined(HPUX) && !defined(_LBER_TYPES_H) */
167 #define LBER_USE_DER 0x01
174 #define LDAP_CONST const
176 #ifndef LDAP_OPT_SUCCESS
177 #define LDAP_OPT_SUCCESS 0
179 /* Solaris 8 and maybe other LDAP implementations spell this "..._INPROGRESS": */
180 #if defined(LDAP_SASL_BIND_INPROGRESS) && !defined(LDAP_SASL_BIND_IN_PROGRESS)
181 #define LDAP_SASL_BIND_IN_PROGRESS LDAP_SASL_BIND_INPROGRESS
183 /* Solaris 8 defines SSL_LDAP_PORT, not LDAPS_PORT and it only does so if
184 LDAP_SSL is defined - but SSL is not working. We just want the
185 port number! Let's just define LDAPS_PORT correct. */
186 #if !defined(LDAPS_PORT)
187 #define LDAPS_PORT 636
193 #if HAVE_GSSAPI_GSSAPI_H
194 #include <gssapi/gssapi.h>
195 #elif HAVE_GSSAPI_GSSAPI_GENERIC_H
196 #include <gssapi/gssapi_generic.h>
205 #if HAVE_SYS_ATTRIBUTES_H
206 #include <sys/attributes.h>
210 #define ENOATTR ENODATA
213 /* mutually exclusive (SuSE 8.2) */
214 #if HAVE_ATTR_XATTR_H
215 #include <attr/xattr.h>
216 #elif HAVE_SYS_XATTR_H
217 #include <sys/xattr.h>
224 #ifdef HAVE_SYS_EXTATTR_H
225 #include <sys/extattr.h>
228 #ifdef HAVE_SYS_UIO_H
233 #include <langinfo.h>
237 #include <netgroup.h>
240 #if defined(HAVE_AIO_H) && defined(WITH_AIO)
244 #ifdef WITH_MADVISE_PROTECTED
245 #include <sys/mman.h>
248 /* Special macros that are no-ops except when run under Valgrind on
249 * x86. They've moved a little bit from valgrind 1.0.4 to 1.9.4 */
250 #if HAVE_VALGRIND_MEMCHECK_H
251 /* memcheck.h includes valgrind.h */
252 #include <valgrind/memcheck.h>
253 #elif HAVE_VALGRIND_H
254 #include <valgrind.h>
257 /* If we have --enable-developer and the valgrind header is present,
258 * then we're OK to use it. Set a macro so this logic can be done only
260 #if defined(DEVELOPER)
261 #if (HAVE_VALGRIND_H || HAVE_VALGRIND_VALGRIND_H)
267 /* we support ADS if we want it and have krb5 and ldap libs */
268 #if defined(WITH_ADS) && defined(HAVE_KRB5) && defined(HAVE_LDAP)
273 * Define additional missing types
276 typedef sig_atomic_t SIG_ATOMIC_T;
278 typedef sig_atomic_t volatile SIG_ATOMIC_T;
282 #define uchar unsigned char
286 Samba needs type definitions for int16, int32, uint16 and uint32.
288 Normally these are signed and unsigned 16 and 32 bit integers, but
289 they actually only need to be at least 16 and 32 bits
290 respectively. Thus if your word size is 8 bytes just defining them
291 as signed and unsigned int will work.
295 #define uint8 uint8_t
298 #if !defined(int16) && !defined(HAVE_INT16_FROM_RPC_RPC_H)
299 # define int16 int16_t
300 /* needed to work around compile issue on HP-UX 11.x */
305 * Note we duplicate the size tests in the unsigned
306 * case as int16 may be a typedef from rpc/rpc.h
310 #if !defined(uint16) && !defined(HAVE_UINT16_FROM_RPC_RPC_H)
311 # define uint16 uint16_t
314 #if !defined(int32) && !defined(HAVE_INT32_FROM_RPC_RPC_H)
315 # define int32 int32_t
317 /* needed to work around compile issue on HP-UX 11.x */
323 * Note we duplicate the size tests in the unsigned
324 * case as int32 may be a typedef from rpc/rpc.h
327 #if !defined(uint32) && !defined(HAVE_UINT32_FROM_RPC_RPC_H)
328 # define uint32 uint32_t
332 * check for 8 byte long long
336 # define uint64 uint64_t
340 # define int64 int64_t
345 * Types for devices, inodes and offsets.
349 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)
350 # define SMB_DEV_T dev64_t
352 # define SMB_DEV_T dev_t
356 #ifndef LARGE_SMB_DEV_T
357 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_DEV64_T)) || (defined(SIZEOF_DEV_T) && (SIZEOF_DEV_T == 8))
358 # define LARGE_SMB_DEV_T 1
362 #ifdef LARGE_SMB_DEV_T
363 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
364 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(((uint64_t)(IVAL((p),(ofs))))| (((uint64_t)(IVAL((p),(ofs)+4))) << 32)))
366 #define SDEV_T_VAL(p, ofs, v) (SIVAL((p),(ofs),v),SIVAL((p),(ofs)+4,0))
367 #define DEV_T_VAL(p, ofs) ((SMB_DEV_T)(IVAL((p),(ofs))))
371 * Setup the correctly sized inode type.
375 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)
376 # define SMB_INO_T ino64_t
378 # define SMB_INO_T ino_t
382 #ifndef LARGE_SMB_INO_T
383 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_INO64_T)) || (defined(SIZEOF_INO_T) && (SIZEOF_INO_T == 8))
384 # define LARGE_SMB_INO_T 1
388 #ifdef LARGE_SMB_INO_T
389 #define SINO_T_VAL(p, ofs, v) (SIVAL((p),(ofs),(v)&0xFFFFFFFF), SIVAL((p),(ofs)+4,(v)>>32))
390 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(((uint64_t)(IVAL(p,ofs)))| (((uint64_t)(IVAL(p,(ofs)+4))) << 32)))
392 #define SINO_T_VAL(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
393 #define INO_T_VAL(p, ofs) ((SMB_INO_T)(IVAL((p),(ofs))))
397 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)
398 # define SMB_OFF_T off64_t
400 # define SMB_OFF_T off_t
404 #define SBIG_UINT(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
405 #define BIG_UINT(p, ofs) ((((uint64_t) IVAL(p,(ofs)+4))<<32)|IVAL(p,ofs))
406 #define IVAL2_TO_SMB_BIG_UINT(buf,off) ( (((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF)) | \
407 (( ((uint64_t)(IVAL((buf),(off+4)))) & ((uint64_t)0xFFFFFFFF) ) << 32 ) )
410 /* this should really be a 64 bit type if possible */
411 typedef uint64_t br_off;
413 #define SMB_OFF_T_BITS (sizeof(SMB_OFF_T)*8)
416 * Set the define that tells us if we can do 64 bit
420 #ifndef LARGE_SMB_OFF_T
421 # if (defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_OFF64_T)) || (defined(SIZEOF_OFF_T) && (SIZEOF_OFF_T == 8))
422 # define LARGE_SMB_OFF_T 1
426 #ifdef LARGE_SMB_OFF_T
427 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,(v)&0xFFFFFFFF), SIVAL(p,(ofs)+4,(v)>>32))
428 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,(v)&0xFFFFFFFF), SIVAL(p,ofs,(v)>>32))
429 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint64_t)(IVAL((buf),(off)))) & ((uint64_t)0xFFFFFFFF) )))
431 #define SOFF_T(p, ofs, v) (SIVAL(p,ofs,v),SIVAL(p,(ofs)+4,0))
432 #define SOFF_T_R(p, ofs, v) (SIVAL(p,(ofs)+4,v),SIVAL(p,ofs,0))
433 #define IVAL_TO_SMB_OFF_T(buf,off) ((SMB_OFF_T)(( ((uint32)(IVAL((buf),(off)))) & 0xFFFFFFFF )))
436 #ifndef HAVE_BLKSIZE_T
437 /* This is mainly for HP/UX which defines st_blksize as long */
438 typedef long blksize_t;
441 #ifndef HAVE_BLKCNT_T
442 /* This is mainly for HP/UX which doesn't have blkcnt_t */
443 typedef long blkcnt_t;
447 * Type for stat structure.
459 struct timespec st_ex_atime;
460 struct timespec st_ex_mtime;
461 struct timespec st_ex_ctime;
462 struct timespec st_ex_btime; /* birthtime */
463 blksize_t st_ex_blksize;
464 blkcnt_t st_ex_blocks;
466 uint32_t st_ex_flags;
470 * Add space for VFS internal extensions. The initial user of this
471 * would be the onefs modules, passing the snapid from the stat calls
472 * to the file_id_create call. Maybe we'll have to expand this later,
473 * but the core of Samba should never look at this field.
475 uint64_t vfs_private;
478 typedef struct stat_ex SMB_STRUCT_STAT;
481 * Type for dirent structure.
484 #ifndef SMB_STRUCT_DIRENT
485 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIRENT64)
486 # define SMB_STRUCT_DIRENT struct dirent64
488 # define SMB_STRUCT_DIRENT struct dirent
493 * Type for DIR structure.
496 #ifndef SMB_STRUCT_DIR
497 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_DIR64)
498 # define SMB_STRUCT_DIR DIR64
500 # define SMB_STRUCT_DIR DIR
505 * Defines for 64 bit fcntl locks.
508 #ifndef SMB_STRUCT_FLOCK
509 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
510 # define SMB_STRUCT_FLOCK struct flock64
512 # define SMB_STRUCT_FLOCK struct flock
517 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
518 # define SMB_F_SETLKW F_SETLKW64
520 # define SMB_F_SETLKW F_SETLKW
525 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
526 # define SMB_F_SETLK F_SETLK64
528 # define SMB_F_SETLK F_SETLK
533 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_STRUCT_FLOCK64) && defined(HAVE_OFF64_T)
534 # define SMB_F_GETLK F_GETLK64
536 # define SMB_F_GETLK F_GETLK
541 * Type for aiocb structure.
544 #ifndef SMB_STRUCT_AIOCB
545 # if defined(WITH_AIO)
546 # if defined(HAVE_EXPLICIT_LARGEFILE_SUPPORT) && defined(HAVE_AIOCB64)
547 # define SMB_STRUCT_AIOCB struct aiocb64
549 # define SMB_STRUCT_AIOCB struct aiocb
552 # define SMB_STRUCT_AIOCB int /* AIO not being used but we still need the define.... */
556 #ifndef HAVE_STRUCT_TIMESPEC
558 time_t tv_sec; /* Seconds. */
559 long tv_nsec; /* Nanoseconds. */
563 #ifdef HAVE_BROKEN_GETGROUPS
570 #define NGROUPS_MAX 32 /* Guess... */
573 /* Our own fstrings */
582 | The infamous pstring |
589 _________)/\\_//(\/(/\)/\//\/\///|_)_______
593 #define FSTRING_LEN 256
594 typedef char fstring[FSTRING_LEN];
597 /* Samba 3 doesn't use iconv_convenience: */
598 extern void *cmdline_lp_ctx;
599 struct smb_iconv_convenience *lp_iconv_convenience(void *lp_ctx);
601 /* Lists, trees, caching, database... */
602 #include "../lib/util/util.h"
603 #include "../lib/util/xfile.h"
604 #include "../lib/util/memory.h"
605 #include "../lib/util/attr.h"
607 #include "../lib/util/dlinklist.h"
609 #include "util_tdb.h"
611 #include "../talloc/talloc.h"
614 #include "../lib/util/tevent_unix.h"
615 #include "../lib/util/tevent_ntstatus.h"
616 #include "../lib/tsocket/tsocket.h"
618 #include "../lib/util/data_blob.h"
619 #include "../lib/util/time.h"
620 #include "../lib/util/asn1.h"
624 #include "interfaces.h"
626 #include "../libcli/util/error.h"
628 #include "../lib/util/charset/charset.h"
629 #include "dynconfig.h"
630 #include "util_getent.h"
631 #include "debugparse.h"
632 #include "privileges.h"
633 #include "messages.h"
635 #include "smb_perfcount.h"
636 #include "smb_signing.h"
638 #include "nameserv.h"
640 #include "../lib/util/byteorder.h"
641 #include "privileges.h"
642 #include "rpc_misc.h"
646 #include "rpc_secdes.h"
647 #include "../libgpo/gpo.h"
648 #include "authdata.h"
651 #include "../lib/crypto/md5.h"
652 #include "../lib/crypto/md4.h"
653 #include "../lib/crypto/arcfour.h"
654 #include "../lib/crypto/crc32.h"
655 #include "../lib/crypto/hmacmd5.h"
658 #include "ntdomain.h"
659 #include "reg_objects.h"
661 #include "rpc_perfcount.h"
662 #include "rpc_perfcount_defs.h"
663 #include "librpc/gen_ndr/notify.h"
664 #include "librpc/gen_ndr/xattr.h"
665 #include "librpc/gen_ndr/messaging.h"
666 #include "librpc/gen_ndr/ndr_nbt.h"
667 #include "librpc/rpc/dcerpc.h"
668 #include "nt_printing.h"
676 #include "nsswitch/winbind_client.h"
678 #include "rpc_client.h"
681 #include "ctdbd_conn.h"
682 #include "../lib/util/talloc_stack.h"
683 #include "memcache.h"
684 #include "async_smb.h"
685 #include "../lib/async_req/async_sock.h"
686 #include "services.h"
687 #include "eventlog.h"
688 #include "../lib/util/smb_threads.h"
689 #include "../lib/util/smb_threads_internal.h"
691 #include "tldap_util.h"
693 #include "lib/smbconf/smbconf.h"
694 #include "lib/smbconf/smbconf_init.h"
695 #include "lib/smbconf/smbconf_reg.h"
696 #include "lib/smbconf/smbconf_txt.h"
698 /* Defines for wisXXX functions. */
699 #define UNI_UPPER 0x1
700 #define UNI_LOWER 0x2
701 #define UNI_DIGIT 0x4
702 #define UNI_XDIGIT 0x8
703 #define UNI_SPACE 0x10
705 #include "nsswitch/winbind_nss.h"
707 /* forward declaration from printing.h to get around
708 header file dependencies */
712 /* forward declarations from smbldap.c */
717 * Reasons for cache flush.
720 enum flush_reason_enum {
725 OPLOCK_RELEASE_FLUSH,
729 /* NUM_FLUSH_REASONS must remain the last value in the enumeration. */
732 #include "nss_info.h"
733 #include "modules/nfs4_acls.h"
734 #include "nsswitch/libwbclient/wbclient.h"
736 /***** prototypes *****/
740 #include "libcli/security/secace.h"
741 #include "libcli/security/secacl.h"
742 #include "libcli/security/security_descriptor.h"
744 #if defined(HAVE_POSIX_ACLS)
745 #include "modules/vfs_posixacl.h"
748 #if defined(HAVE_TRU64_ACLS)
749 #include "modules/vfs_tru64acl.h"
752 #if defined(HAVE_SOLARIS_ACLS) || defined(HAVE_UNIXWARE_ACLS)
753 #include "modules/vfs_solarisacl.h"
756 #if defined(HAVE_HPUX_ACLS)
757 #include "modules/vfs_hpuxacl.h"
760 #if defined(HAVE_IRIX_ACLS)
761 #include "modules/vfs_irixacl.h"
765 #include "ads_protos.h"
768 /* We need this after proto.h to reference GetTimeOfDay(). */
769 #include "smbprofile.h"
771 /* String routines */
774 #include "safe_string.h"
776 /* prototypes from lib/util_transfer_file.c */
777 #include "transfer_file.h"
779 #ifndef DEFAULT_PRINTING
781 #define DEFAULT_PRINTING PRINT_CUPS
782 #define PRINTCAP_NAME "cups"
784 #define DEFAULT_PRINTING PRINT_SYSV
785 #define PRINTCAP_NAME "lpstat"
787 #define DEFAULT_PRINTING PRINT_BSD
788 #define PRINTCAP_NAME "/etc/printcap"
792 #ifndef PRINTCAP_NAME
793 #define PRINTCAP_NAME "/etc/printcap"
797 #define SIGCLD SIGCHLD
801 #define SIGRTMIN NSIG
808 #if defined(HAVE_PUTPRPWNAM) && defined(AUTH_CLEARTEXT_SEG_CHARS)
809 #define OSF1_ENH_SEC 1
812 #ifndef ALLOW_CHANGE_PASSWORD
813 #if (defined(HAVE_TERMIOS_H) && defined(HAVE_DUP2) && defined(HAVE_SETSID))
814 #define ALLOW_CHANGE_PASSWORD 1
818 /* what is the longest significant password available on your system?
819 Knowing this speeds up password searches a lot */
820 #ifndef PASSWORD_LENGTH
821 #define PASSWORD_LENGTH 8
828 #if defined(HAVE_CRYPT16) && defined(HAVE_GETAUTHUID)
829 #define ULTRIX_AUTH 1
832 /* yuck, I'd like a better way of doing this */
833 #define DIRP_SIZE (256 + 32)
835 /* default socket options. Dave Miller thinks we should default to TCP_NODELAY
836 given the socket IO pattern that Samba uses */
838 #define DEFAULT_SOCKET_OPTIONS "TCP_NODELAY"
840 #define DEFAULT_SOCKET_OPTIONS ""
843 /* dmalloc -- free heap debugger (dmalloc.org). This should be near
844 * the *bottom* of include files so as not to conflict. */
845 #ifdef ENABLE_DMALLOC
846 # include <dmalloc.h>
850 #if HAVE_KERNEL_SHARE_MODES
852 #define LOCK_MAND 32 /* This is a mandatory flock */
853 #define LOCK_READ 64 /* ... Which allows concurrent read operations */
854 #define LOCK_WRITE 128 /* ... Which allows concurrent write operations */
855 #define LOCK_RW 192 /* ... Which allows concurrent read & write ops */
859 extern int DEBUGLEVEL;
861 #define MAX_SEC_CTX_DEPTH 8 /* Maximum number of security contexts */
864 #ifdef GLIBC_HACK_FCNTL64
865 /* this is a gross hack. 64 bit locking is completely screwed up on
866 i386 Linux in glibc 2.1.95 (which ships with RedHat 7.0). This hack
867 "fixes" the problem with the current 2.4.0test kernels
869 #define fcntl fcntl64
877 /* needed for some systems without iconv. Doesn't really matter
878 what error code we use */
883 /* add varargs prototypes with printf checking */
885 int fdprintf(int , const char *, ...) PRINTF_ATTRIBUTE(2,3);
887 int d_printf(const char *, ...) PRINTF_ATTRIBUTE(1,2);
889 int d_fprintf(FILE *f, const char *, ...) PRINTF_ATTRIBUTE(2,3);
892 void sys_adminlog(int priority, const char *format_str, ...) PRINTF_ATTRIBUTE(2,3);
895 int fstr_sprintf(fstring s, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
897 int d_vfprintf(FILE *f, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
899 int smb_xvasprintf(char **ptr, const char *format, va_list ap) PRINTF_ATTRIBUTE(2,0);
901 int asprintf_strupper_m(char **strp, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
902 char *talloc_asprintf_strupper_m(TALLOC_CTX *t, const char *fmt, ...) PRINTF_ATTRIBUTE(2,3);
905 * Veritas File System. Often in addition to native.
908 #if defined(HAVE_SYS_FS_VX_QUOTA_H)
913 #define XATTR_CREATE 0x1 /* set value, fail if attr already exists */
916 #ifndef XATTR_REPLACE
917 #define XATTR_REPLACE 0x2 /* set value, fail if attr does not exist */
921 * This should be under the HAVE_KRB5 flag but since they're used
922 * in lp_kerberos_method(), they ned to be always available
924 #define KERBEROS_VERIFY_SECRETS 0
925 #define KERBEROS_VERIFY_SYSTEM_KEYTAB 1
926 #define KERBEROS_VERIFY_DEDICATED_KEYTAB 2
927 #define KERBEROS_VERIFY_SECRETS_AND_KEYTAB 3
930 * If you add any entries to the above, please modify the below expressions
931 * so they remain accurate.
933 #define USE_KERBEROS_KEYTAB (KERBEROS_VERIFY_SECRETS != lp_kerberos_method())
934 #define USE_SYSTEM_KEYTAB \
935 ((KERBEROS_VERIFY_SECRETS_AND_KEYTAB == lp_kerberos_method()) || \
936 (KERBEROS_VERIFY_SYSTEM_KEYTAB == lp_kerberos_method()))
938 #if defined(HAVE_KRB5)
939 krb5_error_code smb_krb5_parse_name(krb5_context context,
940 const char *name, /* in unix charset */
941 krb5_principal *principal);
943 krb5_error_code smb_krb5_unparse_name(TALLOC_CTX *mem_ctx,
944 krb5_context context,
945 krb5_const_principal principal,
948 #ifndef HAVE_KRB5_SET_REAL_TIME
949 krb5_error_code krb5_set_real_time(krb5_context context, int32_t seconds, int32_t microseconds);
952 krb5_error_code krb5_set_default_tgs_ktypes(krb5_context ctx, const krb5_enctype *enc);
954 #if defined(HAVE_KRB5_AUTH_CON_SETKEY) && !defined(HAVE_KRB5_AUTH_CON_SETUSERUSERKEY)
955 krb5_error_code krb5_auth_con_setuseruserkey(krb5_context context, krb5_auth_context auth_context, krb5_keyblock *keyblock);
958 #ifndef HAVE_KRB5_FREE_UNPARSED_NAME
959 void krb5_free_unparsed_name(krb5_context ctx, char *val);
962 /* Stub out initialize_krb5_error_table since it is not present in all
963 * Kerberos implementations. If it's not present, it's not necessary to
966 #ifndef HAVE_INITIALIZE_KRB5_ERROR_TABLE
967 #define initialize_krb5_error_table()
970 /* Samba wrapper function for krb5 functionality. */
971 bool setup_kaddr( krb5_address *pkaddr, struct sockaddr_storage *paddr);
972 int create_kerberos_key_from_string(krb5_context context, krb5_principal host_princ, krb5_data *password, krb5_keyblock *key, krb5_enctype enctype, bool no_salt);
973 bool get_auth_data_from_tkt(TALLOC_CTX *mem_ctx, DATA_BLOB *auth_data, krb5_ticket *tkt);
974 krb5_const_principal get_principal_from_tkt(krb5_ticket *tkt);
975 krb5_error_code smb_krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
976 #if defined(HAVE_KRB5_LOCATE_KDC)
977 krb5_error_code krb5_locate_kdc(krb5_context ctx, const krb5_data *realm, struct sockaddr **addr_pp, int *naddrs, int get_masters);
979 krb5_error_code get_kerberos_allowed_etypes(krb5_context context, krb5_enctype **enctypes);
980 bool get_krb5_smb_session_key(krb5_context context, krb5_auth_context auth_context, DATA_BLOB *session_key, bool remote);
981 krb5_error_code smb_krb5_kt_free_entry(krb5_context context, krb5_keytab_entry *kt_entry);
982 krb5_principal kerberos_fetch_salt_princ_for_host_princ(krb5_context context, krb5_principal host_princ, int enctype);
983 void kerberos_set_creds_enctype(krb5_creds *pcreds, int enctype);
984 bool kerberos_compatible_enctypes(krb5_context context, krb5_enctype enctype1, krb5_enctype enctype2);
985 void kerberos_free_data_contents(krb5_context context, krb5_data *pdata);
986 NTSTATUS decode_pac_data(TALLOC_CTX *mem_ctx,
987 DATA_BLOB *pac_data_blob,
988 krb5_context context,
989 krb5_keyblock *service_keyblock,
990 krb5_const_principal client_principal,
992 struct PAC_DATA **pac_data_out);
993 void smb_krb5_checksum_from_pac_sig(krb5_checksum *cksum,
994 struct PAC_SIGNATURE_DATA *sig);
995 krb5_error_code smb_krb5_verify_checksum(krb5_context context,
996 const krb5_keyblock *keyblock,
998 krb5_checksum *cksum,
1001 time_t get_authtime_from_tkt(krb5_ticket *tkt);
1002 void smb_krb5_free_ap_req(krb5_context context,
1003 krb5_ap_req *ap_req);
1004 krb5_error_code smb_krb5_get_keyinfo_from_ap_req(krb5_context context,
1005 const krb5_data *inbuf,
1007 krb5_enctype *enctype);
1008 krb5_error_code krb5_rd_req_return_keyblock_from_keytab(krb5_context context,
1009 krb5_auth_context *auth_context,
1010 const krb5_data *inbuf,
1011 krb5_const_principal server,
1013 krb5_flags *ap_req_options,
1014 krb5_ticket **ticket,
1015 krb5_keyblock **keyblock);
1016 krb5_error_code smb_krb5_parse_name_norealm(krb5_context context,
1018 krb5_principal *principal);
1019 bool smb_krb5_principal_compare_any_realm(krb5_context context,
1020 krb5_const_principal princ1,
1021 krb5_const_principal princ2);
1022 int cli_krb5_get_ticket(const char *principal, time_t time_offset,
1023 DATA_BLOB *ticket, DATA_BLOB *session_key_krb5, uint32 extra_ap_opts, const char *ccname, time_t *tgs_expire);
1024 krb5_error_code smb_krb5_renew_ticket(const char *ccache_string, const char *client_string, const char *service_string, time_t *expire_time);
1025 krb5_error_code kpasswd_err_to_krb5_err(krb5_error_code res_code);
1026 krb5_error_code smb_krb5_gen_netbios_krb5_address(smb_krb5_addresses **kerb_addr);
1027 krb5_error_code smb_krb5_free_addresses(krb5_context context, smb_krb5_addresses *addr);
1028 NTSTATUS krb5_to_nt_status(krb5_error_code kerberos_error);
1029 krb5_error_code nt_status_to_krb5(NTSTATUS nt_status);
1030 void smb_krb5_free_error(krb5_context context, krb5_error *krberror);
1031 krb5_error_code handle_krberror_packet(krb5_context context,
1034 void smb_krb5_get_init_creds_opt_free(krb5_context context,
1035 krb5_get_init_creds_opt *opt);
1036 krb5_error_code smb_krb5_get_init_creds_opt_alloc(krb5_context context,
1037 krb5_get_init_creds_opt **opt);
1038 krb5_error_code smb_krb5_mk_error(krb5_context context,
1039 krb5_error_code error_code,
1040 const krb5_principal server,
1042 krb5_enctype smb_get_enctype_from_kt_entry(krb5_keytab_entry *kt_entry);
1043 krb5_error_code smb_krb5_enctype_to_string(krb5_context context,
1044 krb5_enctype enctype,
1046 krb5_error_code smb_krb5_open_keytab(krb5_context context,
1047 const char *keytab_name,
1049 krb5_keytab *keytab);
1050 krb5_error_code smb_krb5_keytab_name(TALLOC_CTX *mem_ctx,
1051 krb5_context context,
1053 const char **keytab_name);
1054 int smb_krb5_kt_add_entry_ext(krb5_context context,
1057 const char *princ_s,
1058 krb5_enctype *enctypes,
1061 bool keep_old_entries);
1063 #endif /* HAVE_KRB5 */
1068 /* function declarations not included in proto.h */
1069 LDAP *ldap_open_with_timeout(const char *server, int port, unsigned int to);
1071 #endif /* HAVE_LDAP */
1073 #if defined(HAVE_LINUX_READAHEAD) && ! defined(HAVE_READAHEAD_DECL)
1074 ssize_t readahead(int fd, off64_t offset, size_t count);
1080 #define TRUE __ERROR__XX__DONT_USE_TRUE
1085 #define FALSE __ERROR__XX__DONT_USE_FALSE
1087 /* If we have blacklisted mmap() try to avoid using it accidentally by
1088 undefining the HAVE_MMAP symbol. */
1090 #ifdef MMAP_BLACKLIST
1094 #ifndef CONST_DISCARD
1095 #define CONST_DISCARD(type, ptr) ((type) ((void *) (ptr)))
1098 void smb_panic( const char *why ) _NORETURN_;
1099 void dump_core(void) _NORETURN_;
1100 void exit_server(const char *const reason) _NORETURN_;
1101 void exit_server_cleanly(const char *const reason) _NORETURN_;
1102 void exit_server_fault(void) _NORETURN_;
1105 #include "libnscd.h"
1108 #if defined(HAVE_IPV6)
1109 void in6_addr_to_sockaddr_storage(struct sockaddr_storage *ss,
1110 struct in6_addr ip);
1113 #endif /* _INCLUDES_H */