s4-dsdb: use ldb_msg_canonicalize_ex() in source4/lib/ldb/common/ldb.c
[kamenim/samba.git] / source4 / lib / ldb / common / ldb.c
index b75d837674c3c1f9bd362422632732a7c3818523..0d73d100d131a2a084edb18f8dde5b4ab999ebf3 100644 (file)
@@ -102,7 +102,7 @@ struct ldb_context *ldb_init(TALLOC_CTX *mem_ctx, struct tevent_context *ev_ctx)
        }
 
        ret = ldb_setup_wellknown_attributes(ldb);
-       if (ret != 0) {
+       if (ret != LDB_SUCCESS) {
                talloc_free(ldb);
                return NULL;
        }
@@ -217,7 +217,7 @@ int ldb_connect(struct ldb_context *ldb, const char *url,
                unsigned int flags, const char *options[])
 {
        int ret;
-       const char *url2;
+       char *url2;
        /* We seem to need to do this here, or else some utilities don't
         * get ldb backends */
 
@@ -228,7 +228,7 @@ int ldb_connect(struct ldb_context *ldb, const char *url,
                ldb_oom(ldb);
                return LDB_ERR_OPERATIONS_ERROR;
        }
-       ret = ldb_set_opaque(ldb, "ldb_url", talloc_strdup(ldb, url2));
+       ret = ldb_set_opaque(ldb, "ldb_url", url2);
        if (ret != LDB_SUCCESS) {
                return ret;
        }
@@ -257,6 +257,9 @@ void ldb_set_errstring(struct ldb_context *ldb, const char *err_string)
                talloc_free(ldb->err_string);
        }
        ldb->err_string = talloc_strdup(ldb, err_string);
+       if (ldb->flags & LDB_FLG_ENABLE_TRACING) {
+               ldb_debug(ldb, LDB_DEBUG_TRACE, "ldb_set_errstring: %s", ldb->err_string);
+       }
 }
 
 void ldb_asprintf_errstring(struct ldb_context *ldb, const char *format, ...)
@@ -282,9 +285,29 @@ void ldb_reset_err_string(struct ldb_context *ldb)
        }
 }
 
+
+
+/*
+  set an ldb error based on file:line
+*/
+int ldb_error_at(struct ldb_context *ldb, int ecode,
+                const char *reason, const char *file, int line)
+{
+       if (reason == NULL) {
+               reason = ldb_strerror(ecode);
+       }
+       ldb_asprintf_errstring(ldb, "%s at %s:%d", reason, file, line);
+       return ecode;
+}
+
+
 #define FIRST_OP_NOERR(ldb, op) do { \
        module = ldb->modules;                                  \
        while (module && module->ops->op == NULL) module = module->next; \
+       if ((ldb->flags & LDB_FLG_ENABLE_TRACING) && module) { \
+               ldb_debug(ldb, LDB_DEBUG_TRACE, "ldb_trace_request: (%s)->" #op, \
+                         module->ops->name);                           \
+       }                                                               \
 } while (0)
 
 #define FIRST_OP(ldb, op) do { \
@@ -332,6 +355,10 @@ int ldb_transaction_start(struct ldb_context *ldb)
                                status);
                }
        }
+       if ((module && module->ldb->flags & LDB_FLG_ENABLE_TRACING)) { 
+               ldb_debug(module->ldb, LDB_DEBUG_TRACE, "start ldb transaction error: %s", 
+                         ldb_errstring(module->ldb));                          
+       }
        return status;
 }
 
@@ -371,8 +398,8 @@ int ldb_transaction_prepare_commit(struct ldb_context *ldb)
        if (status != LDB_SUCCESS) {
                /* if a module fails the prepare then we need
                   to call the end transaction for everyone */
-               FIRST_OP(ldb, end_transaction);
-               module->ops->end_transaction(module);
+               FIRST_OP(ldb, del_transaction);
+               module->ops->del_transaction(module);
                if (ldb->err_string == NULL) {
                        /* no error string was setup by the backend */
                        ldb_asprintf_errstring(ldb,
@@ -380,6 +407,10 @@ int ldb_transaction_prepare_commit(struct ldb_context *ldb)
                                               ldb_strerror(status),
                                               status);
                }
+               if ((module && module->ldb->flags & LDB_FLG_ENABLE_TRACING)) { 
+                       ldb_debug(module->ldb, LDB_DEBUG_TRACE, "prepare commit transaction error: %s", 
+                                 ldb_errstring(module->ldb));                          
+               }
        }
 
        return status;
@@ -429,6 +460,10 @@ int ldb_transaction_commit(struct ldb_context *ldb)
                                ldb_strerror(status),
                                status);
                }
+               if ((module && module->ldb->flags & LDB_FLG_ENABLE_TRACING)) { 
+                       ldb_debug(module->ldb, LDB_DEBUG_TRACE, "commit ldb transaction error: %s", 
+                                 ldb_errstring(module->ldb));                          
+               }
                /* cancel the transaction */
                FIRST_OP(ldb, del_transaction);
                module->ops->del_transaction(module);
@@ -474,10 +509,27 @@ int ldb_transaction_cancel(struct ldb_context *ldb)
                                ldb_strerror(status),
                                status);
                }
+               if ((module && module->ldb->flags & LDB_FLG_ENABLE_TRACING)) { 
+                       ldb_debug(module->ldb, LDB_DEBUG_TRACE, "cancel ldb transaction error: %s", 
+                                 ldb_errstring(module->ldb));                          
+               }
        }
        return status;
 }
 
+/*
+  cancel a transaction with no error if no transaction is pending
+  used when we fork() to clear any parent transactions
+*/
+int ldb_transaction_cancel_noerr(struct ldb_context *ldb)
+{
+       if (ldb->transaction_active > 0) {
+               return ldb_transaction_cancel(ldb);
+       }
+       return LDB_SUCCESS;
+}
+
+
 /* autostarts a transacion if none active */
 static int ldb_autotransaction_request(struct ldb_context *ldb,
                                       struct ldb_request *req)
@@ -622,6 +674,99 @@ int ldb_request_get_status(struct ldb_request *req)
        return req->handle->status;
 }
 
+
+/*
+  trace a ldb request
+*/
+static void ldb_trace_request(struct ldb_context *ldb, struct ldb_request *req)
+{
+       TALLOC_CTX *tmp_ctx = talloc_new(req);
+       unsigned int i;
+
+       switch (req->operation) {
+       case LDB_SEARCH:
+               ldb_debug_add(ldb, "ldb_trace_request: SEARCH\n");
+               ldb_debug_add(ldb, " dn: %s\n",
+                             ldb_dn_is_null(req->op.search.base)?"<rootDSE>":
+                             ldb_dn_get_linearized(req->op.search.base));
+               ldb_debug_add(ldb, " scope: %s\n", 
+                         req->op.search.scope==LDB_SCOPE_BASE?"base":
+                         req->op.search.scope==LDB_SCOPE_ONELEVEL?"one":
+                         req->op.search.scope==LDB_SCOPE_SUBTREE?"sub":"UNKNOWN");
+               ldb_debug_add(ldb, " expr: %s\n", 
+                         ldb_filter_from_tree(tmp_ctx, req->op.search.tree));
+               if (req->op.search.attrs == NULL) {
+                       ldb_debug_add(ldb, " attr: <ALL>\n");
+               } else {
+                       for (i=0; req->op.search.attrs[i]; i++) {
+                               ldb_debug_add(ldb, " attr: %s\n", req->op.search.attrs[i]);
+                       }
+               }
+               break;
+       case LDB_DELETE:
+               ldb_debug_add(ldb, "ldb_trace_request: DELETE\n");
+               ldb_debug_add(ldb, " dn: %s\n", 
+                             ldb_dn_get_linearized(req->op.del.dn));
+               break;
+       case LDB_RENAME:
+               ldb_debug_add(ldb, "ldb_trace_request: RENAME\n");
+               ldb_debug_add(ldb, " olddn: %s\n", 
+                             ldb_dn_get_linearized(req->op.rename.olddn));
+               ldb_debug_add(ldb, " newdn: %s\n", 
+                             ldb_dn_get_linearized(req->op.rename.newdn));
+               break;
+       case LDB_EXTENDED:
+               ldb_debug_add(ldb, "ldb_trace_request: EXTENDED\n");
+               ldb_debug_add(ldb, " oid: %s\n", req->op.extended.oid);
+               ldb_debug_add(ldb, " data: %s\n", req->op.extended.data?"yes":"no");
+               break;
+       case LDB_ADD:
+               ldb_debug_add(ldb, "ldb_trace_request: ADD\n");
+               ldb_debug_add(req->handle->ldb, "%s\n", 
+                             ldb_ldif_message_string(req->handle->ldb, tmp_ctx, 
+                                                     LDB_CHANGETYPE_ADD, 
+                                                     req->op.add.message));
+               break;
+       case LDB_MODIFY:
+               ldb_debug_add(ldb, "ldb_trace_request: MODIFY\n");
+               ldb_debug_add(req->handle->ldb, "%s\n", 
+                             ldb_ldif_message_string(req->handle->ldb, tmp_ctx, 
+                                                     LDB_CHANGETYPE_ADD, 
+                                                     req->op.mod.message));
+               break;
+       case LDB_REQ_REGISTER_CONTROL:
+               ldb_debug_add(ldb, "ldb_trace_request: REGISTER_CONTROL\n");
+               ldb_debug_add(req->handle->ldb, "%s\n", 
+                             req->op.reg_control.oid);
+               break;
+       case LDB_REQ_REGISTER_PARTITION:
+               ldb_debug_add(ldb, "ldb_trace_request: REGISTER_PARTITION\n");
+               ldb_debug_add(req->handle->ldb, "%s\n", 
+                             ldb_dn_get_linearized(req->op.reg_partition.dn));
+               break;
+       default:
+               ldb_debug_add(ldb, "ldb_trace_request: UNKNOWN(%u)\n", 
+                             req->operation);
+               break;
+       }
+
+       if (req->controls == NULL) {
+               ldb_debug_add(ldb, " control: <NONE>\n");
+       } else {
+               for (i=0; req->controls && req->controls[i]; i++) {
+                       ldb_debug_add(ldb, " control: %s  crit:%u  data:%s\n", 
+                                     req->controls[i]->oid, 
+                                     req->controls[i]->critical, 
+                                     req->controls[i]->data?"yes":"no");
+               }
+       }
+       
+       ldb_debug_end(ldb, LDB_DEBUG_TRACE);
+
+       talloc_free(tmp_ctx);
+}
+
+
 /*
   start an ldb request
   NOTE: the request must be a talloc context.
@@ -639,6 +784,10 @@ int ldb_request(struct ldb_context *ldb, struct ldb_request *req)
 
        ldb_reset_err_string(ldb);
 
+       if (ldb->flags & LDB_FLG_ENABLE_TRACING) {
+               ldb_trace_request(ldb, req);
+       }
+
        /* call the first module in the chain */
        switch (req->operation) {
        case LDB_SEARCH:
@@ -646,6 +795,16 @@ int ldb_request(struct ldb_context *ldb, struct ldb_request *req)
                ret = module->ops->search(module, req);
                break;
        case LDB_ADD:
+               /* we have to canonicalise here, as so many places
+                * in modules and backends assume we don't have two
+                * elements with the same name */
+               ret = ldb_msg_canonicalize_ex(ldb, req->op.add.message,
+                                             (TALLOC_CTX*)req,
+                                             discard_const(&req->op.add.message));
+               if (ret != LDB_SUCCESS) {
+                       ldb_oom(ldb);
+                       return LDB_ERR_OPERATIONS_ERROR;
+               }
                FIRST_OP(ldb, add);
                ret = module->ops->add(module, req);
                break;
@@ -658,6 +817,16 @@ int ldb_request(struct ldb_context *ldb, struct ldb_request *req)
                ret = module->ops->del(module, req);
                break;
        case LDB_RENAME:
+               if (!ldb_dn_validate(req->op.rename.olddn)) {
+                       ldb_asprintf_errstring(ldb, "ldb_rename: invalid olddn '%s'",
+                                              ldb_dn_get_linearized(req->op.rename.olddn));
+                       return LDB_ERR_INVALID_DN_SYNTAX;
+               }
+               if (!ldb_dn_validate(req->op.rename.newdn)) {
+                       ldb_asprintf_errstring(ldb, "ldb_rename: invalid newdn '%s'",
+                                              ldb_dn_get_linearized(req->op.rename.newdn));
+                       return LDB_ERR_INVALID_DN_SYNTAX;
+               }
                FIRST_OP(ldb, rename);
                ret = module->ops->rename(module, req);
                break;
@@ -693,7 +862,7 @@ int ldb_search_default_callback(struct ldb_request *req,
                                struct ldb_reply *ares)
 {
        struct ldb_result *res;
-       int n;
+       unsigned int n;
 
        res = talloc_get_type(req->context, struct ldb_result);
 
@@ -751,6 +920,54 @@ int ldb_search_default_callback(struct ldb_request *req,
        return LDB_SUCCESS;
 }
 
+int ldb_modify_default_callback(struct ldb_request *req, struct ldb_reply *ares)
+{
+       struct ldb_result *res;
+       unsigned int n;
+       int ret;
+
+       res = talloc_get_type(req->context, struct ldb_result);
+
+       if (!ares) {
+               return ldb_request_done(req, LDB_ERR_OPERATIONS_ERROR);
+       }
+
+       if (ares->error != LDB_SUCCESS) {
+               ret = ares->error;
+               talloc_free(ares);
+               return ldb_request_done(req, ret);
+       }
+
+       switch (ares->type) {
+       case LDB_REPLY_REFERRAL:
+               if (res->refs) {
+                       for (n = 0; res->refs[n]; n++) /*noop*/ ;
+               } else {
+                       n = 0;
+               }
+
+               res->refs = talloc_realloc(res, res->refs, char *, n + 2);
+               if (! res->refs) {
+                       return ldb_request_done(req, LDB_ERR_OPERATIONS_ERROR);
+               }
+
+               res->refs[n] = talloc_move(res->refs, &ares->referral);
+               res->refs[n + 1] = NULL;
+               break;
+
+       case LDB_REPLY_DONE:
+               talloc_free(ares);
+               return ldb_request_done(req, LDB_SUCCESS);
+       default:
+               talloc_free(ares);
+               ldb_set_errstring(req->handle->ldb, "Invalid reply type!");
+               return ldb_request_done(req, LDB_ERR_OPERATIONS_ERROR);
+       }
+
+       talloc_free(ares);
+       return ldb_request_done(req, LDB_SUCCESS);
+}
+
 int ldb_op_default_callback(struct ldb_request *req, struct ldb_reply *ares)
 {
        int ret;
@@ -825,6 +1042,10 @@ int ldb_build_search_req_ex(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
        return LDB_SUCCESS;
 }
@@ -892,6 +1113,10 @@ int ldb_build_add_req(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
 
        return LDB_SUCCESS;
@@ -930,6 +1155,10 @@ int ldb_build_mod_req(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
 
        return LDB_SUCCESS;
@@ -968,6 +1197,10 @@ int ldb_build_del_req(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
 
        return LDB_SUCCESS;
@@ -1008,6 +1241,10 @@ int ldb_build_rename_req(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
 
        return LDB_SUCCESS;
@@ -1077,6 +1314,10 @@ int ldb_build_extended_req(struct ldb_request **ret_req,
                return LDB_ERR_OPERATIONS_ERROR;
        }
 
+       if (parent) {
+               req->handle->nesting++;
+       }
+
        *ret_req = req;
 
        return LDB_SUCCESS;
@@ -1509,3 +1750,9 @@ unsigned int ldb_get_flags(struct ldb_context *ldb)
 {
        return ldb->flags;
 }
+
+/* set the ldb flags */
+void ldb_set_flags(struct ldb_context *ldb, unsigned flags)
+{
+       ldb->flags = flags;
+}