2 Unix SMB/CIFS implementation.
3 SMB parameters and setup, plus a whole lot more.
5 Copyright (C) Andrew Tridgell 1992-2000
6 Copyright (C) John H Terpstra 1996-2002
7 Copyright (C) Luke Kenneth Casson Leighton 1996-2000
8 Copyright (C) Paul Ashton 1998-2000
9 Copyright (C) Simo Sorce 2001-2002
10 Copyright (C) Martin Pool 2002
12 This program is free software; you can redistribute it and/or modify
13 it under the terms of the GNU General Public License as published by
14 the Free Software Foundation; either version 2 of the License, or
15 (at your option) any later version.
17 This program is distributed in the hope that it will be useful,
18 but WITHOUT ANY WARRANTY; without even the implied warranty of
19 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20 GNU General Public License for more details.
22 You should have received a copy of the GNU General Public License
23 along with this program; if not, write to the Free Software
24 Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
30 /* logged when starting the various Samba daemons */
31 #define COPYRIGHT_STARTUP_MESSAGE "Copyright Andrew Tridgell and the Samba Team 1992-2007"
34 #if defined(LARGE_SMB_OFF_T)
35 #define BUFFER_SIZE (128*1024)
36 #else /* no large readwrite possible */
37 #define BUFFER_SIZE (0xFFFF)
40 #define SAFETY_MARGIN 1024
41 #define LARGE_WRITEX_HDR_SIZE 65
44 #define DGRAM_PORT 138
47 #define SMB_PORTS "445 139"
49 #define Undefined (-1)
57 #ifndef DEF_CREATE_MASK
58 #define DEF_CREATE_MASK (0755)
61 /* string manipulation flags - see clistr.c and srvstr.c */
62 #define STR_TERMINATE 1
66 #define STR_NOALIGN 16
67 #define STR_TERMINATE_ASCII 128
69 /* how long to wait for secondary SMB packets (milli-seconds) */
70 #define SMB_SECONDARY_WAIT (60*1000)
75 /* this defines the error codes that receive_smb can put in smb_read_error */
76 #define READ_TIMEOUT 1
79 #define WRITE_ERROR 4 /* This error code can go into the client smb_rw_error. */
80 #define READ_BAD_SIG 5
81 #define DO_NOT_DO_TDIS 6 /* cli_close_connection() check for this when smbfs wants to keep tree connected */
83 #define DIR_STRUCT_SIZE 43
85 /* these define the attribute byte as seen by DOS */
86 #define aRONLY (1L<<0) /* 0x01 */
87 #define aHIDDEN (1L<<1) /* 0x02 */
88 #define aSYSTEM (1L<<2) /* 0x04 */
89 #define aVOLID (1L<<3) /* 0x08 */
90 #define aDIR (1L<<4) /* 0x10 */
91 #define aARCH (1L<<5) /* 0x20 */
102 #define DOS_OPEN_RDONLY 0
103 #define DOS_OPEN_WRONLY 1
104 #define DOS_OPEN_RDWR 2
105 #define DOS_OPEN_EXEC 3
106 #define DOS_OPEN_FCB 0xF
108 /* define shifts and masks for share and open modes. */
109 #define OPENX_MODE_MASK 0xF
110 #define DENY_MODE_SHIFT 4
111 #define DENY_MODE_MASK 0x7
112 #define GET_OPENX_MODE(x) ((x) & OPENX_MODE_MASK)
113 #define SET_OPENX_MODE(x) ((x) & OPENX_MODE_MASK)
114 #define GET_DENY_MODE(x) (((x)>>DENY_MODE_SHIFT) & DENY_MODE_MASK)
115 #define SET_DENY_MODE(x) (((x) & DENY_MODE_MASK) <<DENY_MODE_SHIFT)
117 /* Sync on open file (not sure if used anymore... ?) */
118 #define FILE_SYNC_OPENMODE (1<<14)
119 #define GET_FILE_SYNC_OPENMODE(x) (((x) & FILE_SYNC_OPENMODE) ? True : False)
121 /* open disposition values */
122 #define OPENX_FILE_EXISTS_FAIL 0
123 #define OPENX_FILE_EXISTS_OPEN 1
124 #define OPENX_FILE_EXISTS_TRUNCATE 2
126 /* mask for open disposition. */
127 #define OPENX_FILE_OPEN_MASK 0x3
129 #define GET_FILE_OPENX_DISPOSITION(x) ((x) & FILE_OPEN_MASK)
130 #define SET_FILE_OPENX_DISPOSITION(x) ((x) & FILE_OPEN_MASK)
132 /* The above can be OR'ed with... */
133 #define OPENX_FILE_CREATE_IF_NOT_EXIST 0x10
134 #define OPENX_FILE_FAIL_IF_NOT_EXIST 0
138 typedef union unid_t {
144 * SMB UCS2 (16-bit unicode) internal type.
145 * smb_ucs2_t is *always* in little endian format.
148 typedef uint16 smb_ucs2_t;
150 /* ucs2 string types. */
151 typedef smb_ucs2_t wpstring[PSTRING_LEN];
152 typedef smb_ucs2_t wfstring[FSTRING_LEN];
154 #ifdef WORDS_BIGENDIAN
160 /* turn a 7 bit character into a ucs2 character */
161 #define UCS2_CHAR(c) ((c) << UCS2_SHIFT)
163 /* return an ascii version of a ucs2 character */
164 #define UCS2_TO_CHAR(c) (((c) >> UCS2_SHIFT) & 0xff)
166 /* Copy into a smb_ucs2_t from a possibly unaligned buffer. Return the copied smb_ucs2_t */
167 #define COPY_UCS2_CHAR(dest,src) (((unsigned char *)(dest))[0] = ((unsigned char *)(src))[0],\
168 ((unsigned char *)(dest))[1] = ((unsigned char *)(src))[1], (dest))
170 /* Large data type for manipulating uint32 unicode codepoints */
171 typedef uint32 codepoint_t;
172 #define INVALID_CODEPOINT ((codepoint_t)-1)
174 /* pipe string names */
175 #define PIPE_LANMAN "\\PIPE\\LANMAN"
176 #define PIPE_SRVSVC "\\PIPE\\srvsvc"
177 #define PIPE_SAMR "\\PIPE\\samr"
178 #define PIPE_WINREG "\\PIPE\\winreg"
179 #define PIPE_WKSSVC "\\PIPE\\wkssvc"
180 #define PIPE_NETLOGON "\\PIPE\\NETLOGON"
181 #define PIPE_NTLSA "\\PIPE\\ntlsa"
182 #define PIPE_NTSVCS "\\PIPE\\ntsvcs"
183 #define PIPE_LSASS "\\PIPE\\lsass"
184 #define PIPE_LSARPC "\\PIPE\\lsarpc"
185 #define PIPE_SPOOLSS "\\PIPE\\spoolss"
186 #define PIPE_NETDFS "\\PIPE\\netdfs"
187 #define PIPE_ECHO "\\PIPE\\rpcecho"
188 #define PIPE_SHUTDOWN "\\PIPE\\initshutdown"
189 #define PIPE_EPM "\\PIPE\\epmapper"
190 #define PIPE_SVCCTL "\\PIPE\\svcctl"
191 #define PIPE_EVENTLOG "\\PIPE\\eventlog"
193 #define PIPE_NETLOGON_PLAIN "\\NETLOGON"
196 #define PI_LSARPC_DS 1
198 #define PI_NETLOGON 3
205 #define PI_SHUTDOWN 10
207 #define PI_EVENTLOG 12
209 #define PI_MAX_PIPES 14
211 /* 64 bit time (100usec) since ????? - cifs6.txt, section 3.5, page 30 */
212 typedef uint64_t NTTIME;
215 /* Allowable account control bits */
216 #define ACB_DISABLED 0x00000001 /* 1 = User account disabled */
217 #define ACB_HOMDIRREQ 0x00000002 /* 1 = Home directory required */
218 #define ACB_PWNOTREQ 0x00000004 /* 1 = User password not required */
219 #define ACB_TEMPDUP 0x00000008 /* 1 = Temporary duplicate account */
220 #define ACB_NORMAL 0x00000010 /* 1 = Normal user account */
221 #define ACB_MNS 0x00000020 /* 1 = MNS logon user account */
222 #define ACB_DOMTRUST 0x00000040 /* 1 = Interdomain trust account */
223 #define ACB_WSTRUST 0x00000080 /* 1 = Workstation trust account */
224 #define ACB_SVRTRUST 0x00000100 /* 1 = Server trust account (BDC) */
225 #define ACB_PWNOEXP 0x00000200 /* 1 = User password does not expire */
226 #define ACB_AUTOLOCK 0x00000400 /* 1 = Account auto locked */
228 /* only valid for > Windows 2000 */
229 #define ACB_ENC_TXT_PWD_ALLOWED 0x00000800 /* 1 = Text password encryped */
230 #define ACB_SMARTCARD_REQUIRED 0x00001000 /* 1 = Smart Card required */
231 #define ACB_TRUSTED_FOR_DELEGATION 0x00002000 /* 1 = Trusted for Delegation */
232 #define ACB_NOT_DELEGATED 0x00004000 /* 1 = Not delegated */
233 #define ACB_USE_DES_KEY_ONLY 0x00008000 /* 1 = Use DES key only */
234 #define ACB_DONT_REQUIRE_PREAUTH 0x00010000 /* 1 = Preauth not required */
235 #define ACB_PWEXPIRED 0x00020000 /* 1 = Password is expired */
236 #define ACB_NO_AUTH_DATA_REQD 0x00080000 /* 1 = No authorization data required */
238 #define MAX_HOURS_LEN 32
241 #define MAXSUBAUTHS 15 /* max sub authorities in a SID */
244 #define SID_MAX_SIZE ((size_t)(8+(MAXSUBAUTHS*4)))
248 SID_NAME_USE_NONE = 0,
249 SID_NAME_USER = 1, /* user */
250 SID_NAME_DOM_GRP, /* domain group */
251 SID_NAME_DOMAIN, /* domain sid */
252 SID_NAME_ALIAS, /* local group */
253 SID_NAME_WKN_GRP, /* well-known group */
254 SID_NAME_DELETED, /* deleted account: needed for c2 rating */
255 SID_NAME_INVALID, /* invalid account */
256 SID_NAME_UNKNOWN, /* unknown sid type */
257 SID_NAME_COMPUTER /* sid for a computer */
260 #define LOOKUP_NAME_ISOLATED 1 /* Look up unqualified names */
261 #define LOOKUP_NAME_REMOTE 2 /* Ask others */
262 #define LOOKUP_NAME_ALL (LOOKUP_NAME_ISOLATED|LOOKUP_NAME_REMOTE)
264 #define LOOKUP_NAME_GROUP 4 /* (unused) This is a NASTY hack for valid users = @foo
265 * where foo also exists in as user. */
268 * @brief Security Identifier
270 * @sa http://msdn.microsoft.com/library/default.asp?url=/library/en-us/security/accctrl_38yn.asp
272 typedef struct dom_sid {
273 uint8 sid_rev_num; /**< SID revision number */
274 uint8 num_auths; /**< Number of sub-authorities */
275 uint8 id_auth[6]; /**< Identifier Authority */
277 * Pointer to sub-authorities.
279 * @note The values in these uint32's are in *native* byteorder, not
280 * neccessarily little-endian...... JRA.
282 uint32 sub_auths[MAXSUBAUTHS];
285 #define dom_sid2 dom_sid
286 #define dom_sid28 dom_sid
307 enum id_mapping status;
310 #include "librpc/ndr/misc.h"
311 #include "librpc/ndr/security.h"
312 #include "librpc/ndr/libndr.h"
313 #include "librpc/gen_ndr/wkssvc.h"
315 struct lsa_dom_info {
323 struct lsa_name_info {
325 enum lsa_SidType type;
330 /* Some well-known SIDs */
331 extern const DOM_SID global_sid_World_Domain;
332 extern const DOM_SID global_sid_World;
333 extern const DOM_SID global_sid_Creator_Owner_Domain;
334 extern const DOM_SID global_sid_NT_Authority;
335 extern const DOM_SID global_sid_System;
336 extern const DOM_SID global_sid_NULL;
337 extern const DOM_SID global_sid_Authenticated_Users;
338 extern const DOM_SID global_sid_Network;
339 extern const DOM_SID global_sid_Creator_Owner;
340 extern const DOM_SID global_sid_Creator_Group;
341 extern const DOM_SID global_sid_Anonymous;
342 extern const DOM_SID global_sid_Builtin;
343 extern const DOM_SID global_sid_Builtin_Administrators;
344 extern const DOM_SID global_sid_Builtin_Users;
345 extern const DOM_SID global_sid_Builtin_Guests;
346 extern const DOM_SID global_sid_Builtin_Power_Users;
347 extern const DOM_SID global_sid_Builtin_Account_Operators;
348 extern const DOM_SID global_sid_Builtin_Server_Operators;
349 extern const DOM_SID global_sid_Builtin_Print_Operators;
350 extern const DOM_SID global_sid_Builtin_Backup_Operators;
351 extern const DOM_SID global_sid_Builtin_Replicator;
352 extern const DOM_SID global_sid_Builtin_PreWin2kAccess;
353 extern const DOM_SID global_sid_Unix_Users;
354 extern const DOM_SID global_sid_Unix_Groups;
357 * The complete list of SIDS belonging to this user.
358 * Created when a vuid is registered.
359 * The definition of the user_sids array is as follows :
361 * token->user_sids[0] = primary user SID.
362 * token->user_sids[1] = primary group SID.
363 * token->user_sids[2..num_sids] = supplementary group SIDS.
366 #define PRIMARY_USER_SID_INDEX 0
367 #define PRIMARY_GROUP_SID_INDEX 1
369 typedef struct nt_user_token {
375 typedef struct _unix_token {
382 /* 32 bit time (sec) since 01jan1970 - cifs6.txt, section 3.5, page 30 */
383 typedef struct time_info {
387 /* Structure used when SMBwritebmpx is active */
389 size_t wr_total_written; /* So we know when to discard this */
391 int32 wr_errclass; /* Cached errors */
392 int32 wr_error; /* Cached errors */
393 NTSTATUS wr_status; /* Cached errors */
394 BOOL wr_mode; /* write through mode) */
395 BOOL wr_discard; /* discard all further data */
398 typedef struct write_cache {
407 smb_ucs2_t *origname;
408 smb_ucs2_t *filename;
409 SMB_STRUCT_STAT *statinfo;
412 #include "fake_file.h"
417 SMB_BIG_UINT position_information;
419 uint32 private_options; /* NT Create options, but we only look at
420 * NTCREATEX_OPTIONS_PRIVATE_DENY_DOS and
421 * NTCREATEX_OPTIONS_PRIVATE_DENY_FCB (Except
422 * for print files *only*, where
423 * DELETE_ON_CLOSE is not stored in the share
426 unsigned long file_id;
431 struct share_mode_entry;
434 struct vfs_fsp_data {
435 struct vfs_fsp_data *next;
436 struct vfs_handle_struct *owner;
437 /* NOTE: This structure contains two pointers so that we can guarantee
438 * that the end of the structure is always both 4-byte and 8-byte aligned.
442 typedef struct files_struct {
443 struct files_struct *next, *prev;
445 struct connection_struct *conn;
446 struct fd_handle *fh;
447 unsigned int num_smb_operations;
448 uint16 rap_print_jobid;
451 SMB_BIG_UINT initial_allocation_size; /* Faked up initial allocation on disk. */
455 write_bmpx_struct *wbmpx_ptr;
457 struct timeval open_time;
458 uint32 access_mask; /* NTCreateX access bits (FILE_READ_DATA etc.) */
459 uint32 share_access; /* NTCreateX share constants (FILE_SHARE_READ|FILE_SHARE_WRITE|FILE_SHARE_DELETE). */
460 BOOL pending_modtime_owner;
461 time_t pending_modtime;
462 time_t last_write_time;
464 int sent_oplock_break;
465 struct timed_event *oplock_timeout;
466 struct lock_struct last_lock_failure;
468 struct share_mode_entry *pending_break_messages;
469 int num_pending_break_messages;
478 BOOL aio_write_behind;
480 BOOL initial_delete_on_close; /* Only set at NTCreateX if file was created. */
484 struct vfs_fsp_data *vfs_extension;
485 FAKE_FILE_HANDLE *fake_file_handle;
488 #include "ntquotas.h"
489 #include "sysquotas.h"
491 /* used to hold an arbitrary blob of data */
492 typedef struct data_blob_ {
495 void (*free)(struct data_blob_ *data_blob);
499 * Structure used to keep directory state information around.
500 * Used in NT change-notify code.
508 struct vuid_cache_entry {
515 unsigned int entries;
516 struct vuid_cache_entry array[VUID_CACHE_SIZE];
522 } name_compare_entry;
525 struct trans_state *next, *prev;
529 uint32 max_param_return;
530 uint32 max_data_return;
531 uint32 max_setup_return;
533 uint8 cmd; /* SMBtrans or SMBtrans2 */
535 fstring name; /* for trans requests */
536 uint16 call; /* for trans2 and nttrans requests */
538 BOOL close_on_completion;
541 unsigned int setup_count;
544 size_t received_data;
545 size_t received_param;
554 /* Include VFS stuff */
556 struct security_descriptor_info;
558 #include "smb_acls.h"
561 struct dfree_cached_info {
562 time_t last_dfree_time;
563 SMB_BIG_UINT dfree_ret;
571 struct share_params {
575 struct share_iterator {
579 typedef struct connection_struct {
580 struct connection_struct *next, *prev;
581 TALLOC_CTX *mem_ctx; /* long-lived memory context for things hanging off this struct. */
582 unsigned cnum; /* an index passed over the wire */
583 struct share_params *params;
586 struct vuid_cache vuid_cache;
587 struct dptr_struct *dirptr;
590 BOOL read_only; /* Attributes for the current user of the share. */
591 BOOL admin_user; /* Attributes for the current user of the share. */
596 struct vfs_ops vfs; /* Filesystem operations */
597 struct vfs_ops vfs_opaque; /* OPAQUE Filesystem operations */
598 struct vfs_handle_struct *vfs_handles; /* for the new plugins */
600 char *user; /* name of user who *opened* this connection */
601 uid_t uid; /* uid of user who *opened* this connection */
602 gid_t gid; /* gid of user who *opened* this connection */
603 char client_address[18]; /* String version of client IP address. */
605 uint16 vuid; /* vuid of user who *opened* this connection, or UID_FIELD_INVALID */
607 /* following groups stuff added by ih */
609 /* This groups info is valid for the user that *opened* the connection */
612 NT_USER_TOKEN *nt_user_token;
615 time_t lastused_count;
618 unsigned int num_smb_operations; /* Count of smb operations on this tree. */
622 BOOL short_case_preserve;
624 name_compare_entry *hide_list; /* Per-share list of files to return as hidden. */
625 name_compare_entry *veto_list; /* Per-share list of files to veto (never show). */
626 name_compare_entry *veto_oplock_list; /* Per-share list of files to refuse oplocks on. */
627 name_compare_entry *aio_write_behind_list; /* Per-share list of files to use aio write behind on. */
628 struct dfree_cached_info *dfree_info;
629 struct trans_state *pending_trans;
632 struct current_user {
633 connection_struct *conn;
636 NT_USER_TOKEN *nt_user_token;
639 /* Defines for the sent_oplock_break field above. */
640 #define NO_BREAK_SENT 0
641 #define BREAK_TO_NONE_SENT 1
642 #define LEVEL_II_BREAK_SENT 2
645 fstring smb_name; /* user name from the client */
646 fstring unix_name; /* unix user name of a validated user */
647 fstring full_name; /* to store full name (such as "Joe Bloggs") from gecos field of password file */
648 fstring domain; /* domain that the client specified */
651 /* Extra fields above "LPQ_PRINTING" are used to map extra NT status codes. */
653 enum {LPQ_QUEUED=0,LPQ_PAUSED,LPQ_SPOOLING,LPQ_PRINTING,LPQ_ERROR,LPQ_DELETING,
654 LPQ_OFFLINE,LPQ_PAPEROUT,LPQ_PRINTED,LPQ_DELETED,LPQ_BLOCKED,LPQ_USER_INTERVENTION};
656 typedef struct _print_queue_struct {
657 int job; /* normally the UNIX jobid -- see note in
658 printing.c:traverse_fn_delete() */
666 } print_queue_struct;
668 enum {LPSTAT_OK, LPSTAT_STOPPED, LPSTAT_ERROR};
674 } print_status_struct;
676 /* used for server information: client, nameserv and ipc */
677 struct server_info_struct {
681 fstring domain; /* used ONLY in ipc.c NOT namework.c */
682 BOOL server_added; /* used ONLY in ipc.c NOT namework.c */
685 /* used for network interfaces */
687 struct interface *next, *prev;
689 struct in_addr bcast;
690 struct in_addr nmask;
693 /* Internal message queue for deferred opens. */
694 struct pending_message_list {
695 struct pending_message_list *next, *prev;
696 struct timeval request_time; /* When was this first issued? */
697 struct timeval end_time; /* When does this time out? */
699 DATA_BLOB private_data;
702 #define SHARE_MODE_FLAG_POSIX_OPEN 0x1
704 /* struct returned by get_share_modes */
705 struct share_mode_entry {
706 struct process_id pid;
709 uint32 access_mask; /* NTCreateX access bits (FILE_READ_DATA etc.) */
710 uint32 share_access; /* NTCreateX share constants (FILE_SHARE_READ|FILE_SHARE_WRITE|FILE_SHARE_DELETE). */
711 uint32 private_options; /* NT Create options, but we only look at
712 * NTCREATEX_OPTIONS_PRIVATE_DENY_DOS and
713 * NTCREATEX_OPTIONS_PRIVATE_DENY_FCB for
714 * smbstatus and swat */
718 unsigned long share_file_id;
719 uint32 uid; /* uid of file opener. */
720 uint16 flags; /* POSIX_OPEN only defined so far... */
723 /* oplock break message definition - linearization of share_mode_entry.
726 0 struct process_id pid 4
729 8 uint32 access_mask 4
730 12 uint32 share_access 4
731 16 uint32 private_options 4
733 24 uint32 time usec 4
734 28 SMB_DEV_T dev 8 bytes.
735 36 SMB_INO_T inode 8 bytes
736 44 unsigned long file_id 4 bytes
737 48 uint32 uid 4 bytes
738 52 uint16 flags 2 bytes
742 #define MSG_SMB_SHARE_MODE_ENTRY_SIZE 54
744 struct share_mode_lock {
745 const char *servicepath; /* canonicalized. */
746 const char *filename;
750 struct share_mode_entry *share_modes;
751 UNIX_USER_TOKEN *delete_token;
752 BOOL delete_on_close;
758 * Internal structure of locking.tdb share mode db.
759 * Used by locking.c and libsmbsharemodes.c
762 struct locking_data {
765 int num_share_mode_entries;
766 BOOL delete_on_close;
767 uint32 delete_token_size; /* Only valid if either of
768 the two previous fields
771 struct share_mode_entry dummy; /* Needed for alignment. */
773 /* The following four entries are implicit
774 struct share_mode_entry modes[num_share_mode_entries];
775 char unix_token[delete_token_size] (divisible by 4).
781 /* Used to store pipe open records for NetFileEnum() */
783 struct pipe_open_rec {
784 struct process_id pid;
791 #define NT_HASH_LEN 16
792 #define LM_HASH_LEN 16
794 /* Password history contants. */
795 #define PW_HISTORY_SALT_LEN 16
796 #define SALTED_MD5_HASH_LEN 16
797 #define PW_HISTORY_ENTRY_LEN (PW_HISTORY_SALT_LEN+SALTED_MD5_HASH_LEN)
798 #define MAX_PW_HISTORY_LEN 24
801 * Flags for account policy.
803 #define AP_MIN_PASSWORD_LEN 1
804 #define AP_PASSWORD_HISTORY 2
805 #define AP_USER_MUST_LOGON_TO_CHG_PASS 3
806 #define AP_MAX_PASSWORD_AGE 4
807 #define AP_MIN_PASSWORD_AGE 5
808 #define AP_LOCK_ACCOUNT_DURATION 6
809 #define AP_RESET_COUNT_TIME 7
810 #define AP_BAD_ATTEMPT_LOCKOUT 8
811 #define AP_TIME_TO_LOGOUT 9
812 #define AP_REFUSE_MACHINE_PW_CHANGE 10
815 * Flags for local user manipulation.
818 #define LOCAL_ADD_USER 0x1
819 #define LOCAL_DELETE_USER 0x2
820 #define LOCAL_DISABLE_USER 0x4
821 #define LOCAL_ENABLE_USER 0x8
822 #define LOCAL_TRUST_ACCOUNT 0x10
823 #define LOCAL_SET_NO_PASSWORD 0x20
824 #define LOCAL_SET_PASSWORD 0x40
825 #define LOCAL_SET_LDAP_ADMIN_PW 0x80
826 #define LOCAL_INTERDOM_ACCOUNT 0x100
827 #define LOCAL_AM_ROOT 0x200 /* Act as root */
829 /* key and data in the connections database - used in smbstatus and smbd */
830 struct connections_key {
831 struct process_id pid;
836 struct connections_data {
838 struct process_id pid;
844 char machine[FSTRING_LEN];
846 uint32 bcast_msg_flags;
850 /* the following are used by loadparm for option lists */
852 P_BOOL,P_BOOLREV,P_CHAR,P_INTEGER,P_OCTAL,P_LIST,
853 P_STRING,P_USTRING,P_GSTRING,P_UGSTRING,P_ENUM,P_SEP
857 P_LOCAL,P_GLOBAL,P_SEPARATOR,P_NONE
870 BOOL (*special)(int snum, const char *, char **);
871 const struct enum_list *enum_list;
882 /* The following flags are used in SWAT */
883 #define FLAG_BASIC 0x0001 /* Display only in BASIC view */
884 #define FLAG_SHARE 0x0002 /* file sharing options */
885 #define FLAG_PRINT 0x0004 /* printing options */
886 #define FLAG_GLOBAL 0x0008 /* local options that should be globally settable in SWAT */
887 #define FLAG_WIZARD 0x0010 /* Parameters that the wizard will operate on */
888 #define FLAG_ADVANCED 0x0020 /* Parameters that will be visible in advanced view */
889 #define FLAG_DEVELOPER 0x0040 /* No longer used */
890 #define FLAG_DEPRECATED 0x1000 /* options that should no longer be used */
891 #define FLAG_HIDE 0x2000 /* options that should be hidden in SWAT */
892 #define FLAG_DOS_STRING 0x4000 /* convert from UNIX to DOS codepage when reading this string. */
899 /* the basic packet size, assuming no words or bytes */
902 /* offsets into message for common items */
909 #define smb_pidhigh 16
910 #define smb_ss_field 18
936 /* flag defines. CIFS spec 3.1.1 */
937 #define FLAG_SUPPORT_LOCKREAD 0x01
938 #define FLAG_CLIENT_BUF_AVAIL 0x02
939 #define FLAG_RESERVED 0x04
940 #define FLAG_CASELESS_PATHNAMES 0x08
941 #define FLAG_CANONICAL_PATHNAMES 0x10
942 #define FLAG_REQUEST_OPLOCK 0x20
943 #define FLAG_REQUEST_BATCH_OPLOCK 0x40
944 #define FLAG_REPLY 0x80
947 #define SMBmkdir 0x00 /* create directory */
948 #define SMBrmdir 0x01 /* delete directory */
949 #define SMBopen 0x02 /* open file */
950 #define SMBcreate 0x03 /* create file */
951 #define SMBclose 0x04 /* close file */
952 #define SMBflush 0x05 /* flush file */
953 #define SMBunlink 0x06 /* delete file */
954 #define SMBmv 0x07 /* rename file */
955 #define SMBgetatr 0x08 /* get file attributes */
956 #define SMBsetatr 0x09 /* set file attributes */
957 #define SMBread 0x0A /* read from file */
958 #define SMBwrite 0x0B /* write to file */
959 #define SMBlock 0x0C /* lock byte range */
960 #define SMBunlock 0x0D /* unlock byte range */
961 #define SMBctemp 0x0E /* create temporary file */
962 #define SMBmknew 0x0F /* make new file */
963 #define SMBcheckpath 0x10 /* check directory path */
964 #define SMBexit 0x11 /* process exit */
965 #define SMBlseek 0x12 /* seek */
966 #define SMBtcon 0x70 /* tree connect */
967 #define SMBtconX 0x75 /* tree connect and X*/
968 #define SMBtdis 0x71 /* tree disconnect */
969 #define SMBnegprot 0x72 /* negotiate protocol */
970 #define SMBdskattr 0x80 /* get disk attributes */
971 #define SMBsearch 0x81 /* search directory */
972 #define SMBsplopen 0xC0 /* open print spool file */
973 #define SMBsplwr 0xC1 /* write to print spool file */
974 #define SMBsplclose 0xC2 /* close print spool file */
975 #define SMBsplretq 0xC3 /* return print queue */
976 #define SMBsends 0xD0 /* send single block message */
977 #define SMBsendb 0xD1 /* send broadcast message */
978 #define SMBfwdname 0xD2 /* forward user name */
979 #define SMBcancelf 0xD3 /* cancel forward */
980 #define SMBgetmac 0xD4 /* get machine name */
981 #define SMBsendstrt 0xD5 /* send start of multi-block message */
982 #define SMBsendend 0xD6 /* send end of multi-block message */
983 #define SMBsendtxt 0xD7 /* send text of multi-block message */
986 #define SMBlockread 0x13 /* Lock a range and read */
987 #define SMBwriteunlock 0x14 /* Unlock a range then write */
988 #define SMBreadbraw 0x1a /* read a block of data with no smb header */
989 #define SMBwritebraw 0x1d /* write a block of data with no smb header */
990 #define SMBwritec 0x20 /* secondary write request */
991 #define SMBwriteclose 0x2c /* write a file then close it */
993 /* dos extended protocol */
994 #define SMBreadBraw 0x1A /* read block raw */
995 #define SMBreadBmpx 0x1B /* read block multiplexed */
996 #define SMBreadBs 0x1C /* read block (secondary response) */
997 #define SMBwriteBraw 0x1D /* write block raw */
998 #define SMBwriteBmpx 0x1E /* write block multiplexed */
999 #define SMBwriteBs 0x1F /* write block (secondary request) */
1000 #define SMBwriteC 0x20 /* write complete response */
1001 #define SMBsetattrE 0x22 /* set file attributes expanded */
1002 #define SMBgetattrE 0x23 /* get file attributes expanded */
1003 #define SMBlockingX 0x24 /* lock/unlock byte ranges and X */
1004 #define SMBtrans 0x25 /* transaction - name, bytes in/out */
1005 #define SMBtranss 0x26 /* transaction (secondary request/response) */
1006 #define SMBioctl 0x27 /* IOCTL */
1007 #define SMBioctls 0x28 /* IOCTL (secondary request/response) */
1008 #define SMBcopy 0x29 /* copy */
1009 #define SMBmove 0x2A /* move */
1010 #define SMBecho 0x2B /* echo */
1011 #define SMBopenX 0x2D /* open and X */
1012 #define SMBreadX 0x2E /* read and X */
1013 #define SMBwriteX 0x2F /* write and X */
1014 #define SMBsesssetupX 0x73 /* Session Set Up & X (including User Logon) */
1015 #define SMBffirst 0x82 /* find first */
1016 #define SMBfunique 0x83 /* find unique */
1017 #define SMBfclose 0x84 /* find close */
1018 #define SMBkeepalive 0x85 /* keepalive */
1019 #define SMBinvalid 0xFE /* invalid command */
1021 /* Extended 2.0 protocol */
1022 #define SMBtrans2 0x32 /* TRANS2 protocol set */
1023 #define SMBtranss2 0x33 /* TRANS2 protocol set, secondary command */
1024 #define SMBfindclose 0x34 /* Terminate a TRANSACT2_FINDFIRST */
1025 #define SMBfindnclose 0x35 /* Terminate a TRANSACT2_FINDNOTIFYFIRST */
1026 #define SMBulogoffX 0x74 /* user logoff */
1028 /* NT SMB extensions. */
1029 #define SMBnttrans 0xA0 /* NT transact */
1030 #define SMBnttranss 0xA1 /* NT transact secondary */
1031 #define SMBntcreateX 0xA2 /* NT create and X */
1032 #define SMBntcancel 0xA4 /* NT cancel */
1033 #define SMBntrename 0xA5 /* NT rename */
1035 /* These are the trans subcommands */
1036 #define TRANSACT_SETNAMEDPIPEHANDLESTATE 0x01
1037 #define TRANSACT_DCERPCCMD 0x26
1038 #define TRANSACT_WAITNAMEDPIPEHANDLESTATE 0x53
1040 /* These are the TRANS2 sub commands */
1041 #define TRANSACT2_OPEN 0x00
1042 #define TRANSACT2_FINDFIRST 0x01
1043 #define TRANSACT2_FINDNEXT 0x02
1044 #define TRANSACT2_QFSINFO 0x03
1045 #define TRANSACT2_SETFSINFO 0x04
1046 #define TRANSACT2_QPATHINFO 0x05
1047 #define TRANSACT2_SETPATHINFO 0x06
1048 #define TRANSACT2_QFILEINFO 0x07
1049 #define TRANSACT2_SETFILEINFO 0x08
1050 #define TRANSACT2_FSCTL 0x09
1051 #define TRANSACT2_IOCTL 0x0A
1052 #define TRANSACT2_FINDNOTIFYFIRST 0x0B
1053 #define TRANSACT2_FINDNOTIFYNEXT 0x0C
1054 #define TRANSACT2_MKDIR 0x0D
1055 #define TRANSACT2_SESSION_SETUP 0x0E
1056 #define TRANSACT2_GET_DFS_REFERRAL 0x10
1057 #define TRANSACT2_REPORT_DFS_INCONSISTANCY 0x11
1059 /* These are the NT transact sub commands. */
1060 #define NT_TRANSACT_CREATE 1
1061 #define NT_TRANSACT_IOCTL 2
1062 #define NT_TRANSACT_SET_SECURITY_DESC 3
1063 #define NT_TRANSACT_NOTIFY_CHANGE 4
1064 #define NT_TRANSACT_RENAME 5
1065 #define NT_TRANSACT_QUERY_SECURITY_DESC 6
1066 #define NT_TRANSACT_GET_USER_QUOTA 7
1067 #define NT_TRANSACT_SET_USER_QUOTA 8
1069 /* These are the NT transact_get_user_quota sub commands */
1070 #define TRANSACT_GET_USER_QUOTA_LIST_CONTINUE 0x0000
1071 #define TRANSACT_GET_USER_QUOTA_LIST_START 0x0100
1072 #define TRANSACT_GET_USER_QUOTA_FOR_SID 0x0101
1074 /* Relevant IOCTL codes */
1075 #define IOCTL_QUERY_JOB_INFO 0x530060
1077 /* these are the trans2 sub fields for primary requests */
1078 #define smb_tpscnt smb_vwv0
1079 #define smb_tdscnt smb_vwv1
1080 #define smb_mprcnt smb_vwv2
1081 #define smb_mdrcnt smb_vwv3
1082 #define smb_msrcnt smb_vwv4
1083 #define smb_flags smb_vwv5
1084 #define smb_timeout smb_vwv6
1085 #define smb_pscnt smb_vwv9
1086 #define smb_psoff smb_vwv10
1087 #define smb_dscnt smb_vwv11
1088 #define smb_dsoff smb_vwv12
1089 #define smb_suwcnt smb_vwv13
1090 #define smb_setup smb_vwv14
1091 #define smb_setup0 smb_setup
1092 #define smb_setup1 (smb_setup+2)
1093 #define smb_setup2 (smb_setup+4)
1095 /* these are for the secondary requests */
1096 #define smb_spscnt smb_vwv2
1097 #define smb_spsoff smb_vwv3
1098 #define smb_spsdisp smb_vwv4
1099 #define smb_sdscnt smb_vwv5
1100 #define smb_sdsoff smb_vwv6
1101 #define smb_sdsdisp smb_vwv7
1102 #define smb_sfid smb_vwv8
1104 /* and these for responses */
1105 #define smb_tprcnt smb_vwv0
1106 #define smb_tdrcnt smb_vwv1
1107 #define smb_prcnt smb_vwv3
1108 #define smb_proff smb_vwv4
1109 #define smb_prdisp smb_vwv5
1110 #define smb_drcnt smb_vwv6
1111 #define smb_droff smb_vwv7
1112 #define smb_drdisp smb_vwv8
1114 /* these are for the NT trans primary request. */
1115 #define smb_nt_MaxSetupCount smb_vwv0
1116 #define smb_nt_Flags (smb_vwv0 + 1)
1117 #define smb_nt_TotalParameterCount (smb_vwv0 + 3)
1118 #define smb_nt_TotalDataCount (smb_vwv0 + 7)
1119 #define smb_nt_MaxParameterCount (smb_vwv0 + 11)
1120 #define smb_nt_MaxDataCount (smb_vwv0 + 15)
1121 #define smb_nt_ParameterCount (smb_vwv0 + 19)
1122 #define smb_nt_ParameterOffset (smb_vwv0 + 23)
1123 #define smb_nt_DataCount (smb_vwv0 + 27)
1124 #define smb_nt_DataOffset (smb_vwv0 + 31)
1125 #define smb_nt_SetupCount (smb_vwv0 + 35)
1126 #define smb_nt_Function (smb_vwv0 + 36)
1127 #define smb_nt_SetupStart (smb_vwv0 + 38)
1129 /* these are for the NT trans secondary request. */
1130 #define smb_nts_TotalParameterCount (smb_vwv0 + 3)
1131 #define smb_nts_TotalDataCount (smb_vwv0 + 7)
1132 #define smb_nts_ParameterCount (smb_vwv0 + 11)
1133 #define smb_nts_ParameterOffset (smb_vwv0 + 15)
1134 #define smb_nts_ParameterDisplacement (smb_vwv0 + 19)
1135 #define smb_nts_DataCount (smb_vwv0 + 23)
1136 #define smb_nts_DataOffset (smb_vwv0 + 27)
1137 #define smb_nts_DataDisplacement (smb_vwv0 + 31)
1139 /* these are for the NT trans reply. */
1140 #define smb_ntr_TotalParameterCount (smb_vwv0 + 3)
1141 #define smb_ntr_TotalDataCount (smb_vwv0 + 7)
1142 #define smb_ntr_ParameterCount (smb_vwv0 + 11)
1143 #define smb_ntr_ParameterOffset (smb_vwv0 + 15)
1144 #define smb_ntr_ParameterDisplacement (smb_vwv0 + 19)
1145 #define smb_ntr_DataCount (smb_vwv0 + 23)
1146 #define smb_ntr_DataOffset (smb_vwv0 + 27)
1147 #define smb_ntr_DataDisplacement (smb_vwv0 + 31)
1149 /* these are for the NT create_and_X */
1150 #define smb_ntcreate_NameLength (smb_vwv0 + 5)
1151 #define smb_ntcreate_Flags (smb_vwv0 + 7)
1152 #define smb_ntcreate_RootDirectoryFid (smb_vwv0 + 11)
1153 #define smb_ntcreate_DesiredAccess (smb_vwv0 + 15)
1154 #define smb_ntcreate_AllocationSize (smb_vwv0 + 19)
1155 #define smb_ntcreate_FileAttributes (smb_vwv0 + 27)
1156 #define smb_ntcreate_ShareAccess (smb_vwv0 + 31)
1157 #define smb_ntcreate_CreateDisposition (smb_vwv0 + 35)
1158 #define smb_ntcreate_CreateOptions (smb_vwv0 + 39)
1159 #define smb_ntcreate_ImpersonationLevel (smb_vwv0 + 43)
1160 #define smb_ntcreate_SecurityFlags (smb_vwv0 + 47)
1162 /* this is used on a TConX. I'm not sure the name is very helpful though */
1163 #define SMB_SUPPORT_SEARCH_BITS 0x0001
1164 #define SMB_SHARE_IN_DFS 0x0002
1166 /* Named pipe write mode flags. Used in writeX calls. */
1167 #define PIPE_RAW_MODE 0x4
1168 #define PIPE_START_MESSAGE 0x8
1170 /* File Specific access rights */
1171 #define FILE_READ_DATA 0x00000001
1172 #define FILE_WRITE_DATA 0x00000002
1173 #define FILE_APPEND_DATA 0x00000004
1174 #define FILE_READ_EA 0x00000008 /* File and directory */
1175 #define FILE_WRITE_EA 0x00000010 /* File and directory */
1176 #define FILE_EXECUTE 0x00000020
1177 #define FILE_DELETE_CHILD 0x00000040
1178 #define FILE_READ_ATTRIBUTES 0x00000080
1179 #define FILE_WRITE_ATTRIBUTES 0x00000100
1181 #define FILE_ALL_ACCESS 0x000001FF
1183 /* Directory specific access rights */
1184 #define FILE_LIST_DIRECTORY 0x00000001
1185 #define FILE_ADD_FILE 0x00000002
1186 #define FILE_ADD_SUBDIRECTORY 0x00000004
1187 #define FILE_TRAVERSE 0x00000020
1188 #define FILE_DELETE_CHILD 0x00000040
1190 /* the desired access to use when opening a pipe */
1191 #define DESIRED_ACCESS_PIPE 0x2019f
1193 /* Generic access masks & rights. */
1194 #define DELETE_ACCESS 0x00010000 /* (1L<<16) */
1195 #define READ_CONTROL_ACCESS 0x00020000 /* (1L<<17) */
1196 #define WRITE_DAC_ACCESS 0x00040000 /* (1L<<18) */
1197 #define WRITE_OWNER_ACCESS 0x00080000 /* (1L<<19) */
1198 #define SYNCHRONIZE_ACCESS 0x00100000 /* (1L<<20) */
1200 #define SYSTEM_SECURITY_ACCESS 0x01000000 /* (1L<<24) */
1201 #define MAXIMUM_ALLOWED_ACCESS 0x02000000 /* (1L<<25) */
1202 #define GENERIC_ALL_ACCESS 0x10000000 /* (1<<28) */
1203 #define GENERIC_EXECUTE_ACCESS 0x20000000 /* (1<<29) */
1204 #define GENERIC_WRITE_ACCESS 0x40000000 /* (1<<30) */
1205 #define GENERIC_READ_ACCESS ((unsigned)0x80000000) /* (((unsigned)1)<<31) */
1207 /* Mapping of generic access rights for files to specific rights. */
1209 #define FILE_GENERIC_ALL (STANDARD_RIGHTS_REQUIRED_ACCESS| SYNCHRONIZE_ACCESS|FILE_ALL_ACCESS)
1211 #define FILE_GENERIC_READ (STANDARD_RIGHTS_READ_ACCESS|FILE_READ_DATA|FILE_READ_ATTRIBUTES|\
1212 FILE_READ_EA|SYNCHRONIZE_ACCESS)
1214 #define FILE_GENERIC_WRITE (STD_RIGHT_READ_CONTROL_ACCESS|FILE_WRITE_DATA|FILE_WRITE_ATTRIBUTES|\
1215 FILE_WRITE_EA|FILE_APPEND_DATA|SYNCHRONIZE_ACCESS)
1217 #define FILE_GENERIC_EXECUTE (STANDARD_RIGHTS_EXECUTE_ACCESS|\
1218 FILE_EXECUTE|SYNCHRONIZE_ACCESS)
1220 /* Mapping of access rights to UNIX perms. */
1221 #define UNIX_ACCESS_RWX FILE_GENERIC_ALL
1222 #define UNIX_ACCESS_R FILE_GENERIC_READ
1223 #define UNIX_ACCESS_W FILE_GENERIC_WRITE
1224 #define UNIX_ACCESS_X FILE_GENERIC_EXECUTE
1226 /* Mapping of access rights to UNIX perms. for a UNIX directory. */
1227 #define UNIX_DIRECTORY_ACCESS_RWX FILE_GENERIC_ALL
1228 #define UNIX_DIRECTORY_ACCESS_R FILE_GENERIC_READ
1229 #define UNIX_DIRECTORY_ACCESS_W FILE_GENERIC_WRITE
1230 #define UNIX_DIRECTORY_ACCESS_X FILE_GENERIC_EXECUTE
1234 * This is the old mapping we used to use. To get W2KSP2 profiles
1235 * working we need to map to the canonical file perms.
1237 #define UNIX_ACCESS_RWX (UNIX_ACCESS_R|UNIX_ACCESS_W|UNIX_ACCESS_X)
1238 #define UNIX_ACCESS_R (READ_CONTROL_ACCESS|SYNCHRONIZE_ACCESS|\
1239 FILE_READ_ATTRIBUTES|FILE_READ_EA|FILE_READ_DATA)
1240 #define UNIX_ACCESS_W (READ_CONTROL_ACCESS|SYNCHRONIZE_ACCESS|\
1241 FILE_WRITE_ATTRIBUTES|FILE_WRITE_EA|\
1242 FILE_APPEND_DATA|FILE_WRITE_DATA)
1243 #define UNIX_ACCESS_X (READ_CONTROL_ACCESS|SYNCHRONIZE_ACCESS|\
1244 FILE_EXECUTE|FILE_READ_ATTRIBUTES)
1247 #define UNIX_ACCESS_NONE (WRITE_OWNER_ACCESS)
1250 #define REQUEST_OPLOCK 2
1251 #define REQUEST_BATCH_OPLOCK 4
1252 #define OPEN_DIRECTORY 8
1253 #define EXTENDED_RESPONSE_REQUIRED 0x10
1255 /* ShareAccess field. */
1256 #define FILE_SHARE_NONE 0 /* Cannot be used in bitmask. */
1257 #define FILE_SHARE_READ 1
1258 #define FILE_SHARE_WRITE 2
1259 #define FILE_SHARE_DELETE 4
1261 /* FileAttributesField */
1262 #define FILE_ATTRIBUTE_READONLY 0x0001
1263 #define FILE_ATTRIBUTE_HIDDEN 0x0002
1264 #define FILE_ATTRIBUTE_SYSTEM 0x0004
1265 #define FILE_ATTRIBUTE_VOLUME 0x0008
1266 #define FILE_ATTRIBUTE_DIRECTORY 0x0010
1267 #define FILE_ATTRIBUTE_ARCHIVE 0x0020
1268 #define FILE_ATTRIBUTE_DEVICE 0x0040
1269 #define FILE_ATTRIBUTE_NORMAL 0x0080
1270 #define FILE_ATTRIBUTE_TEMPORARY 0x0100
1271 #define FILE_ATTRIBUTE_SPARSE 0x0200
1272 #define FILE_ATTRIBUTE_REPARSE_POINT 0x0400
1273 #define FILE_ATTRIBUTE_COMPRESSED 0x0800
1274 #define FILE_ATTRIBUTE_OFFLINE 0x1000
1275 #define FILE_ATTRIBUTE_NONINDEXED 0x2000
1276 #define FILE_ATTRIBUTE_ENCRYPTED 0x4000
1278 #define SAMBA_ATTRIBUTES_MASK 0x7F
1280 /* Flags - combined with attributes. */
1281 #define FILE_FLAG_WRITE_THROUGH 0x80000000L
1282 #define FILE_FLAG_NO_BUFFERING 0x20000000L
1283 #define FILE_FLAG_RANDOM_ACCESS 0x10000000L
1284 #define FILE_FLAG_SEQUENTIAL_SCAN 0x08000000L
1285 #define FILE_FLAG_DELETE_ON_CLOSE 0x04000000L
1286 #define FILE_FLAG_BACKUP_SEMANTICS 0x02000000L
1287 #define FILE_FLAG_POSIX_SEMANTICS 0x01000000L
1289 /* CreateDisposition field. */
1290 #define FILE_SUPERSEDE 0 /* File exists overwrite/supersede. File not exist create. */
1291 #define FILE_OPEN 1 /* File exists open. File not exist fail. */
1292 #define FILE_CREATE 2 /* File exists fail. File not exist create. */
1293 #define FILE_OPEN_IF 3 /* File exists open. File not exist create. */
1294 #define FILE_OVERWRITE 4 /* File exists overwrite. File not exist fail. */
1295 #define FILE_OVERWRITE_IF 5 /* File exists overwrite. File not exist create. */
1297 /* CreateOptions field. */
1298 #define FILE_DIRECTORY_FILE 0x0001
1299 #define FILE_WRITE_THROUGH 0x0002
1300 #define FILE_SEQUENTIAL_ONLY 0x0004
1301 #define FILE_NON_DIRECTORY_FILE 0x0040
1302 #define FILE_NO_EA_KNOWLEDGE 0x0200
1303 #define FILE_EIGHT_DOT_THREE_ONLY 0x0400
1304 #define FILE_RANDOM_ACCESS 0x0800
1305 #define FILE_DELETE_ON_CLOSE 0x1000
1306 #define FILE_OPEN_BY_FILE_ID 0x2000
1308 /* Private create options used by the ntcreatex processing code. From Samba4. */
1309 #define NTCREATEX_OPTIONS_PRIVATE_DENY_DOS 0x01000000
1310 #define NTCREATEX_OPTIONS_PRIVATE_DENY_FCB 0x02000000
1312 /* Responses when opening a file. */
1313 #define FILE_WAS_SUPERSEDED 0
1314 #define FILE_WAS_OPENED 1
1315 #define FILE_WAS_CREATED 2
1316 #define FILE_WAS_OVERWRITTEN 3
1318 /* File type flags */
1319 #define FILE_TYPE_DISK 0
1320 #define FILE_TYPE_BYTE_MODE_PIPE 1
1321 #define FILE_TYPE_MESSAGE_MODE_PIPE 2
1322 #define FILE_TYPE_PRINTER 3
1323 #define FILE_TYPE_COMM_DEVICE 4
1324 #define FILE_TYPE_UNKNOWN 0xFFFF
1326 /* Flag for NT transact rename call. */
1327 #define RENAME_REPLACE_IF_EXISTS 1
1329 /* flags for SMBntrename call (from Samba4) */
1330 #define RENAME_FLAG_MOVE_CLUSTER_INFORMATION 0x102 /* ???? */
1331 #define RENAME_FLAG_HARD_LINK 0x103
1332 #define RENAME_FLAG_RENAME 0x104
1333 #define RENAME_FLAG_COPY 0x105
1335 /* Filesystem Attributes. */
1336 #define FILE_CASE_SENSITIVE_SEARCH 0x00000001
1337 #define FILE_CASE_PRESERVED_NAMES 0x00000002
1338 #define FILE_UNICODE_ON_DISK 0x00000004
1339 /* According to cifs9f, this is 4, not 8 */
1340 /* Acconding to testing, this actually sets the security attribute! */
1341 #define FILE_PERSISTENT_ACLS 0x00000008
1342 #define FILE_FILE_COMPRESSION 0x00000010
1343 #define FILE_VOLUME_QUOTAS 0x00000020
1344 #define FILE_SUPPORTS_SPARSE_FILES 0x00000040
1345 #define FILE_SUPPORTS_REPARSE_POINTS 0x00000080
1346 #define FILE_SUPPORTS_REMOTE_STORAGE 0x00000100
1347 #define FS_LFN_APIS 0x00004000
1348 #define FILE_VOLUME_IS_COMPRESSED 0x00008000
1349 #define FILE_SUPPORTS_OBJECT_IDS 0x00010000
1350 #define FILE_SUPPORTS_ENCRYPTION 0x00020000
1351 #define FILE_NAMED_STREAMS 0x00040000
1352 #define FILE_READ_ONLY_VOLUME 0x00080000
1354 /* ChangeNotify flags. */
1355 #define FILE_NOTIFY_CHANGE_FILE 0x001
1356 #define FILE_NOTIFY_CHANGE_DIR_NAME 0x002
1357 #define FILE_NOTIFY_CHANGE_ATTRIBUTES 0x004
1358 #define FILE_NOTIFY_CHANGE_SIZE 0x008
1359 #define FILE_NOTIFY_CHANGE_LAST_WRITE 0x010
1360 #define FILE_NOTIFY_CHANGE_LAST_ACCESS 0x020
1361 #define FILE_NOTIFY_CHANGE_CREATION 0x040
1362 #define FILE_NOTIFY_CHANGE_EA 0x080
1363 #define FILE_NOTIFY_CHANGE_SECURITY 0x100
1364 #define FILE_NOTIFY_CHANGE_FILE_NAME 0x200
1366 /* where to find the base of the SMB packet proper */
1367 #define smb_base(buf) (((char *)(buf))+4)
1369 /* we don't allow server strings to be longer than 48 characters as
1370 otherwise NT will not honour the announce packets */
1371 #define MAX_SERVER_STRING_LENGTH 48
1374 #define SMB_SUCCESS 0 /* The request was successful. */
1377 void dfs_unlogin(void);
1378 extern int dcelogin_atmost_once;
1382 char *strdup(char *s);
1386 #define SIGNAL_CAST (RETSIGTYPE (*)(int))
1393 /* This was set by JHT in liaison with Jeremy Allison early 1997
1395 * Version 4.0 - never made public
1396 * Version 4.10 - New to 1.9.16p2, lost in space 1.9.16p3 to 1.9.16p9
1397 * - Reappeared in 1.9.16p11 with fixed smbd services
1398 * Version 4.20 - To indicate that nmbd and browsing now works better
1399 * Version 4.50 - Set at release of samba-2.2.0 by JHT
1401 * Note: In the presence of NT4.X do not set above 4.9
1402 * Setting this above 4.9 can have undesired side-effects.
1403 * This may change again in Samba-3.0 after further testing. JHT
1406 #define DEFAULT_MAJOR_VERSION 0x04
1407 #define DEFAULT_MINOR_VERSION 0x09
1409 /* Browser Election Values */
1410 #define BROWSER_ELECTION_VERSION 0x010f
1411 #define BROWSER_CONSTANT 0xaa55
1413 /* Sercurity mode bits. */
1414 #define NEGOTIATE_SECURITY_USER_LEVEL 0x01
1415 #define NEGOTIATE_SECURITY_CHALLENGE_RESPONSE 0x02
1416 #define NEGOTIATE_SECURITY_SIGNATURES_ENABLED 0x04
1417 #define NEGOTIATE_SECURITY_SIGNATURES_REQUIRED 0x08
1419 /* NT Flags2 bits - cifs6.txt section 3.1.2 */
1421 #define FLAGS2_LONG_PATH_COMPONENTS 0x0001
1422 #define FLAGS2_EXTENDED_ATTRIBUTES 0x0002
1423 #define FLAGS2_SMB_SECURITY_SIGNATURES 0x0004
1424 #define FLAGS2_UNKNOWN_BIT4 0x0010
1425 #define FLAGS2_IS_LONG_NAME 0x0040
1426 #define FLAGS2_EXTENDED_SECURITY 0x0800
1427 #define FLAGS2_DFS_PATHNAMES 0x1000
1428 #define FLAGS2_READ_PERMIT_EXECUTE 0x2000
1429 #define FLAGS2_32_BIT_ERROR_CODES 0x4000
1430 #define FLAGS2_UNICODE_STRINGS 0x8000
1432 #define FLAGS2_WIN2K_SIGNATURE 0xC852 /* Hack alert ! For now... JRA. */
1434 /* Capabilities. see ftp.microsoft.com/developr/drg/cifs/cifs/cifs4.txt */
1436 #define CAP_RAW_MODE 0x0001
1437 #define CAP_MPX_MODE 0x0002
1438 #define CAP_UNICODE 0x0004
1439 #define CAP_LARGE_FILES 0x0008
1440 #define CAP_NT_SMBS 0x0010
1441 #define CAP_RPC_REMOTE_APIS 0x0020
1442 #define CAP_STATUS32 0x0040
1443 #define CAP_LEVEL_II_OPLOCKS 0x0080
1444 #define CAP_LOCK_AND_READ 0x0100
1445 #define CAP_NT_FIND 0x0200
1446 #define CAP_DFS 0x1000
1447 #define CAP_W2K_SMBS 0x2000
1448 #define CAP_LARGE_READX 0x4000
1449 #define CAP_LARGE_WRITEX 0x8000
1450 #define CAP_UNIX 0x800000 /* Capabilities for UNIX extensions. Created by HP. */
1451 #define CAP_EXTENDED_SECURITY 0x80000000
1453 /* protocol types. It assumes that higher protocols include lower protocols
1455 enum protocol_types {PROTOCOL_NONE,PROTOCOL_CORE,PROTOCOL_COREPLUS,PROTOCOL_LANMAN1,PROTOCOL_LANMAN2,PROTOCOL_NT1};
1457 /* security levels */
1458 enum security_types {SEC_SHARE,SEC_USER,SEC_SERVER,SEC_DOMAIN,SEC_ADS};
1468 /* printing types */
1469 enum printing_types {PRINT_BSD,PRINT_SYSV,PRINT_AIX,PRINT_HPUX,
1470 PRINT_QNX,PRINT_PLP,PRINT_LPRNG,PRINT_SOFTQ,
1471 PRINT_CUPS,PRINT_LPRNT,PRINT_LPROS2,PRINT_IPRINT
1472 #if defined(DEVELOPER) || defined(ENABLE_BUILD_FARM_HACKS)
1473 ,PRINT_TEST,PRINT_VLP
1474 #endif /* DEVELOPER */
1477 /* LDAP schema types */
1478 enum schema_types {SCHEMA_COMPAT, SCHEMA_AD, SCHEMA_SAMBA};
1480 /* LDAP SSL options */
1481 enum ldap_ssl_types {LDAP_SSL_ON, LDAP_SSL_OFF, LDAP_SSL_START_TLS};
1483 /* LDAP PASSWD SYNC methods */
1484 enum ldap_passwd_sync_types {LDAP_PASSWD_SYNC_ON, LDAP_PASSWD_SYNC_OFF, LDAP_PASSWD_SYNC_ONLY};
1486 /* Remote architectures we know about. */
1487 enum remote_arch_types {RA_UNKNOWN, RA_WFWG, RA_OS2, RA_WIN95, RA_WINNT,
1488 RA_WIN2K, RA_WINXP, RA_WIN2K3, RA_VISTA,
1489 RA_SAMBA, RA_CIFSFS};
1492 enum case_handling {CASE_LOWER,CASE_UPPER};
1494 /* ACL compatibility */
1495 enum acl_compatibility {ACL_COMPAT_AUTO, ACL_COMPAT_WINNT, ACL_COMPAT_WIN2K};
1497 * Global value meaing that the smb_uid field should be
1498 * ingored (in share level security and protocol level == CORE)
1501 #define UID_FIELD_INVALID 0
1502 #define VUID_OFFSET 100 /* Amount to bias returned vuid numbers */
1505 * Size of buffer to use when moving files across filesystems.
1507 #define COPYBUF_SIZE (8*1024)
1510 * Used in chaining code.
1512 extern int chain_size;
1515 * Map the Core and Extended Oplock requesst bits down
1516 * to common bits (EXCLUSIVE_OPLOCK & BATCH_OPLOCK).
1522 #define CORE_OPLOCK_REQUEST(inbuf) \
1523 ((CVAL(inbuf,smb_flg)&(FLAG_REQUEST_OPLOCK|FLAG_REQUEST_BATCH_OPLOCK))>>5)
1526 * Extended protocol.
1528 #define EXTENDED_OPLOCK_REQUEST(inbuf) ((SVAL(inbuf,smb_vwv2)&((1<<1)|(1<<2)))>>1)
1531 #define LOCKING_ANDX_SHARED_LOCK 0x1
1532 #define LOCKING_ANDX_OPLOCK_RELEASE 0x2
1533 #define LOCKING_ANDX_CHANGE_LOCKTYPE 0x4
1534 #define LOCKING_ANDX_CANCEL_LOCK 0x8
1535 #define LOCKING_ANDX_LARGE_FILES 0x10
1538 * Bits we test with.
1539 * Note these must fit into 16-bits.
1542 #define NO_OPLOCK 0x0
1543 #define EXCLUSIVE_OPLOCK 0x1
1544 #define BATCH_OPLOCK 0x2
1545 #define LEVEL_II_OPLOCK 0x4
1547 /* The following are Samba-private. */
1548 #define INTERNAL_OPEN_ONLY 0x8
1549 #define FAKE_LEVEL_II_OPLOCK 0x10 /* Client requested no_oplock, but we have to
1550 * inform potential level2 holders on
1552 #define DEFERRED_OPEN_ENTRY 0x20
1553 #define UNUSED_SHARE_MODE_ENTRY 0x40
1554 #define FORCE_OPLOCK_BREAK_TO_NONE 0x80
1556 /* None of the following should ever appear in fsp->oplock_request. */
1557 #define SAMBA_PRIVATE_OPLOCK_MASK (INTERNAL_OPEN_ONLY|DEFERRED_OPEN_ENTRY|UNUSED_SHARE_MODE_ENTRY|FORCE_OPLOCK_BREAK_TO_NONE)
1559 #define EXCLUSIVE_OPLOCK_TYPE(lck) ((lck) & ((unsigned int)EXCLUSIVE_OPLOCK|(unsigned int)BATCH_OPLOCK))
1560 #define BATCH_OPLOCK_TYPE(lck) ((lck) & (unsigned int)BATCH_OPLOCK)
1561 #define LEVEL_II_OPLOCK_TYPE(lck) ((lck) & ((unsigned int)LEVEL_II_OPLOCK|(unsigned int)FAKE_LEVEL_II_OPLOCK))
1563 struct inform_level2_message {
1567 unsigned long target_file_id;
1568 unsigned long source_file_id;
1571 /* kernel_oplock_message definition.
1573 struct kernel_oplock_message {
1576 unsigned long file_id;
1580 0 SMB_DEV_T dev 8 bytes.
1581 8 SMB_INO_T inode 8 bytes
1582 16 unsigned long file_id 4 bytes
1586 #define MSG_SMB_KERNEL_BREAK_SIZE 20
1588 /* file_renamed_message definition.
1590 struct file_renamed_message {
1593 char names[1]; A variable area containing sharepath and filename.
1597 0 SMB_DEV_T dev 8 bytes.
1598 8 SMB_INO_T inode 8 bytes
1599 16 char [] name zero terminated namelen bytes
1600 minimum length == 18.
1604 #define MSG_FILE_RENAMED_MIN_SIZE 16
1607 * On the wire return values for oplock types.
1610 #define CORE_OPLOCK_GRANTED (1<<5)
1611 #define EXTENDED_OPLOCK_GRANTED (1<<15)
1613 #define NO_OPLOCK_RETURN 0
1614 #define EXCLUSIVE_OPLOCK_RETURN 1
1615 #define BATCH_OPLOCK_RETURN 2
1616 #define LEVEL_II_OPLOCK_RETURN 3
1619 #define OPLOCKLEVEL_NONE 0
1620 #define OPLOCKLEVEL_II 1
1623 * Capabilities abstracted for different systems.
1626 enum smbd_capability {
1627 KERNEL_OPLOCK_CAPABILITY,
1628 DMAPI_ACCESS_CAPABILITY
1631 /* if a kernel does support oplocks then a structure of the following
1632 typee is used to describe how to interact with the kernel */
1633 struct kernel_oplocks {
1634 files_struct * (*receive_message)(fd_set *fds);
1635 BOOL (*set_oplock)(files_struct *fsp, int oplock_type);
1636 void (*release_oplock)(files_struct *fsp);
1637 BOOL (*msg_waiting)(fd_set *fds);
1638 int notification_fd;
1642 /* this structure defines the functions for doing change notify in
1643 various implementations */
1644 struct cnotify_fns {
1645 void * (*register_notify)(connection_struct *conn, char *path, uint32 flags);
1646 BOOL (*check_notify)(connection_struct *conn, uint16 vuid, char *path, uint32 flags, void *data, time_t t);
1647 void (*remove_notify)(void *data);
1649 int notification_fd;
1652 #include "smb_macros.h"
1654 #define MAX_NETBIOSNAME_LEN 16
1655 /* DOS character, NetBIOS namestring. Type used on the wire. */
1656 typedef char nstring[MAX_NETBIOSNAME_LEN];
1657 /* Unix character, NetBIOS namestring. Type used to manipulate name in nmbd. */
1658 typedef char unstring[MAX_NETBIOSNAME_LEN*4];
1660 /* A netbios name structure. */
1664 unsigned int name_type;
1667 /* A netbios node status array element. */
1668 typedef struct node_status_ {
1671 unsigned char flags;
1672 } NODE_STATUS_STRUCT;
1674 /* The extra info from a NetBIOS node status query */
1675 struct node_status_extra {
1676 unsigned char mac_addr[6];
1677 /* There really is more here ... */
1687 typedef struct user_struct {
1688 struct user_struct *next, *prev;
1689 uint16 vuid; /* Tag for this entry. */
1690 uid_t uid; /* uid of a validated user */
1691 gid_t gid; /* gid of a validated user */
1693 userdom_struct user;
1700 /* following groups stuff added by ih */
1701 /* This groups info is needed for when we become_user() for this uid */
1705 NT_USER_TOKEN *nt_user_token;
1707 DATA_BLOB session_key;
1709 char *session_keystr; /* used by utmp and pam session code.
1713 struct auth_serversupplied_info *server_info;
1715 struct auth_ntlmssp_state *auth_ntlmssp_state;
1719 struct unix_error_map {
1727 * Size of new password account encoding string. This is enough space to
1728 * hold 11 ACB characters, plus the surrounding [] and a terminating null.
1729 * Do not change unless you are adding new ACB bits!
1732 #define NEW_PW_FORMAT_SPACE_PADDED_LEN 14
1735 Do you want session setups at user level security with a invalid
1736 password to be rejected or allowed in as guest? WinNT rejects them
1737 but it can be a pain as it means "net view" needs to use a password
1739 You have 3 choices in the setting of map_to_guest:
1741 "NEVER_MAP_TO_GUEST" means session setups with an invalid password
1742 are rejected. This is the default.
1744 "MAP_TO_GUEST_ON_BAD_USER" means session setups with an invalid password
1745 are rejected, unless the username does not exist, in which case it
1746 is treated as a guest login
1748 "MAP_TO_GUEST_ON_BAD_PASSWORD" means session setups with an invalid password
1749 are treated as a guest login
1751 Note that map_to_guest only has an effect in user or server
1755 #define NEVER_MAP_TO_GUEST 0
1756 #define MAP_TO_GUEST_ON_BAD_USER 1
1757 #define MAP_TO_GUEST_ON_BAD_PASSWORD 2
1758 #define MAP_TO_GUEST_ON_BAD_UID 3
1760 #define SAFE_NETBIOS_CHARS ". -_"
1762 /* generic iconv conversion structure */
1763 typedef struct _smb_iconv_t {
1764 size_t (*direct)(void *cd, const char **inbuf, size_t *inbytesleft,
1765 char **outbuf, size_t *outbytesleft);
1766 size_t (*pull)(void *cd, const char **inbuf, size_t *inbytesleft,
1767 char **outbuf, size_t *outbytesleft);
1768 size_t (*push)(void *cd, const char **inbuf, size_t *inbytesleft,
1769 char **outbuf, size_t *outbytesleft);
1770 void *cd_direct, *cd_pull, *cd_push;
1771 char *from_name, *to_name;
1774 /* The maximum length of a trust account password.
1775 Used when we randomly create it, 15 char passwords
1776 exceed NT4's max password length */
1778 #define DEFAULT_TRUST_ACCOUNT_PASSWORD_LENGTH 14
1780 #include "popt_common.h"
1784 #define LDAP_PORT 389
1787 /* used by the IP comparison function */
1793 /* Special name type used to cause a _kerberos DNS lookup. */
1794 #define KDC_NAME_TYPE 0xDCDC
1796 /* Used by the SMB signing functions. */
1798 typedef struct smb_sign_info {
1799 void (*sign_outgoing_message)(char *outbuf, struct smb_sign_info *si);
1800 BOOL (*check_incoming_message)(char *inbuf, struct smb_sign_info *si, BOOL must_be_ok);
1801 void (*free_signing_context)(struct smb_sign_info *si);
1802 void *signing_context;
1804 BOOL negotiated_smb_signing;
1805 BOOL allow_smb_signing;
1807 BOOL mandatory_signing;
1808 BOOL seen_valid; /* Have I ever seen a validly signed packet? */
1818 struct ea_list *next, *prev;
1819 struct ea_struct ea;
1822 /* EA names used internally in Samba. KEEP UP TO DATE with prohibited_ea_names in trans2.c !. */
1823 #define SAMBA_POSIX_INHERITANCE_EA_NAME "user.SAMBA_PAI"
1824 /* EA to use for DOS attributes */
1825 #define SAMBA_XATTR_DOS_ATTRIB "user.DOSATTRIB"
1827 #define UUID_SIZE 16
1828 #define UUID_FLAT_SIZE 16
1829 typedef struct uuid_flat {
1830 uint8 info[UUID_FLAT_SIZE];
1833 /* map readonly options */
1834 enum mapreadonly_options {MAP_READONLY_NO, MAP_READONLY_YES, MAP_READONLY_PERMISSIONS};
1836 /* usershare error codes. */
1837 enum usershare_err {
1839 USERSHARE_MALFORMED_FILE,
1840 USERSHARE_BAD_VERSION,
1841 USERSHARE_MALFORMED_PATH,
1842 USERSHARE_MALFORMED_COMMENT_DEF,
1843 USERSHARE_MALFORMED_ACL_DEF,
1845 USERSHARE_PATH_NOT_ABSOLUTE,
1846 USERSHARE_PATH_IS_DENIED,
1847 USERSHARE_PATH_NOT_ALLOWED,
1848 USERSHARE_PATH_NOT_DIRECTORY,
1852 /* Different reasons for closing a file. */
1853 enum file_close_type {NORMAL_CLOSE=0,SHUTDOWN_CLOSE,ERROR_CLOSE};