Rename parent_dirname_talloc() to parent_dirname()
[samba.git] / source3 / smbd / trans2.c
1 /*
2    Unix SMB/CIFS implementation.
3    SMB transaction2 handling
4    Copyright (C) Jeremy Allison                 1994-2007
5    Copyright (C) Stefan (metze) Metzmacher      2003
6    Copyright (C) Volker Lendecke                2005-2007
7    Copyright (C) Steve French                   2005
8    Copyright (C) James Peach                    2006-2007
9
10    Extensively modified by Andrew Tridgell, 1995
11
12    This program is free software; you can redistribute it and/or modify
13    it under the terms of the GNU General Public License as published by
14    the Free Software Foundation; either version 3 of the License, or
15    (at your option) any later version.
16
17    This program is distributed in the hope that it will be useful,
18    but WITHOUT ANY WARRANTY; without even the implied warranty of
19    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
20    GNU General Public License for more details.
21
22    You should have received a copy of the GNU General Public License
23    along with this program.  If not, see <http://www.gnu.org/licenses/>.
24 */
25
26 #include "includes.h"
27
28 extern int max_send;
29 extern enum protocol_types Protocol;
30 extern uint32 global_client_caps;
31
32 #define get_file_size(sbuf) ((sbuf).st_size)
33 #define DIR_ENTRY_SAFETY_MARGIN 4096
34
35 static char *store_file_unix_basic(connection_struct *conn,
36                                 char *pdata,
37                                 files_struct *fsp,
38                                 const SMB_STRUCT_STAT *psbuf);
39
40 static char *store_file_unix_basic_info2(connection_struct *conn,
41                                 char *pdata,
42                                 files_struct *fsp,
43                                 const SMB_STRUCT_STAT *psbuf);
44
45 /********************************************************************
46  Roundup a value to the nearest allocation roundup size boundary.
47  Only do this for Windows clients.
48 ********************************************************************/
49
50 uint64_t smb_roundup(connection_struct *conn, uint64_t val)
51 {
52         uint64_t rval = lp_allocation_roundup_size(SNUM(conn));
53
54         /* Only roundup for Windows clients. */
55         enum remote_arch_types ra_type = get_remote_arch();
56         if (rval && (ra_type != RA_SAMBA) && (ra_type != RA_CIFSFS)) {
57                 val = SMB_ROUNDUP(val,rval);
58         }
59         return val;
60 }
61
62 /********************************************************************
63  Given a stat buffer return the allocated size on disk, taking into
64  account sparse files.
65 ********************************************************************/
66
67 uint64_t get_allocation_size(connection_struct *conn, files_struct *fsp, const SMB_STRUCT_STAT *sbuf)
68 {
69         uint64_t ret;
70
71         if(S_ISDIR(sbuf->st_mode)) {
72                 return 0;
73         }
74
75 #if defined(HAVE_STAT_ST_BLOCKS) && defined(STAT_ST_BLOCKSIZE)
76         ret = (uint64_t)STAT_ST_BLOCKSIZE * (uint64_t)sbuf->st_blocks;
77 #else
78         ret = (uint64_t)get_file_size(*sbuf);
79 #endif
80
81         if (fsp && fsp->initial_allocation_size)
82                 ret = MAX(ret,fsp->initial_allocation_size);
83
84         return smb_roundup(conn, ret);
85 }
86
87 /****************************************************************************
88  Utility functions for dealing with extended attributes.
89 ****************************************************************************/
90
91 /****************************************************************************
92  Refuse to allow clients to overwrite our private xattrs.
93 ****************************************************************************/
94
95 static bool samba_private_attr_name(const char *unix_ea_name)
96 {
97         static const char *prohibited_ea_names[] = {
98                 SAMBA_POSIX_INHERITANCE_EA_NAME,
99                 SAMBA_XATTR_DOS_ATTRIB,
100                 NULL
101         };
102
103         int i;
104
105         for (i = 0; prohibited_ea_names[i]; i++) {
106                 if (strequal( prohibited_ea_names[i], unix_ea_name))
107                         return true;
108         }
109         if (StrnCaseCmp(unix_ea_name, SAMBA_XATTR_DOSSTREAM_PREFIX,
110                         strlen(SAMBA_XATTR_DOSSTREAM_PREFIX)) == 0) {
111                 return true;
112         }
113         return false;
114 }
115
116 /****************************************************************************
117  Get one EA value. Fill in a struct ea_struct.
118 ****************************************************************************/
119
120 NTSTATUS get_ea_value(TALLOC_CTX *mem_ctx, connection_struct *conn,
121                       files_struct *fsp, const char *fname,
122                       const char *ea_name, struct ea_struct *pea)
123 {
124         /* Get the value of this xattr. Max size is 64k. */
125         size_t attr_size = 256;
126         char *val = NULL;
127         ssize_t sizeret;
128
129  again:
130
131         val = TALLOC_REALLOC_ARRAY(mem_ctx, val, char, attr_size);
132         if (!val) {
133                 return NT_STATUS_NO_MEMORY;
134         }
135
136         if (fsp && fsp->fh->fd != -1) {
137                 sizeret = SMB_VFS_FGETXATTR(fsp, ea_name, val, attr_size);
138         } else {
139                 sizeret = SMB_VFS_GETXATTR(conn, fname, ea_name, val, attr_size);
140         }
141
142         if (sizeret == -1 && errno == ERANGE && attr_size != 65536) {
143                 attr_size = 65536;
144                 goto again;
145         }
146
147         if (sizeret == -1) {
148                 return map_nt_error_from_unix(errno);
149         }
150
151         DEBUG(10,("get_ea_value: EA %s is of length %u\n", ea_name, (unsigned int)sizeret));
152         dump_data(10, (uint8 *)val, sizeret);
153
154         pea->flags = 0;
155         if (strnequal(ea_name, "user.", 5)) {
156                 pea->name = talloc_strdup(mem_ctx, &ea_name[5]);
157         } else {
158                 pea->name = talloc_strdup(mem_ctx, ea_name);
159         }
160         if (pea->name == NULL) {
161                 TALLOC_FREE(val);
162                 return NT_STATUS_NO_MEMORY;
163         }
164         pea->value.data = (unsigned char *)val;
165         pea->value.length = (size_t)sizeret;
166         return NT_STATUS_OK;
167 }
168
169 NTSTATUS get_ea_names_from_file(TALLOC_CTX *mem_ctx, connection_struct *conn,
170                                 files_struct *fsp, const char *fname,
171                                 char ***pnames, size_t *pnum_names)
172 {
173         /* Get a list of all xattrs. Max namesize is 64k. */
174         size_t ea_namelist_size = 1024;
175         char *ea_namelist = NULL;
176
177         char *p;
178         char **names, **tmp;
179         size_t num_names;
180         ssize_t sizeret = -1;
181
182         if (!lp_ea_support(SNUM(conn))) {
183                 *pnames = NULL;
184                 *pnum_names = 0;
185                 return NT_STATUS_OK;
186         }
187
188         /*
189          * TALLOC the result early to get the talloc hierarchy right.
190          */
191
192         names = TALLOC_ARRAY(mem_ctx, char *, 1);
193         if (names == NULL) {
194                 DEBUG(0, ("talloc failed\n"));
195                 return NT_STATUS_NO_MEMORY;
196         }
197
198         while (ea_namelist_size <= 65536) {
199
200                 ea_namelist = TALLOC_REALLOC_ARRAY(
201                         names, ea_namelist, char, ea_namelist_size);
202                 if (ea_namelist == NULL) {
203                         DEBUG(0, ("talloc failed\n"));
204                         TALLOC_FREE(names);
205                         return NT_STATUS_NO_MEMORY;
206                 }
207
208                 if (fsp && fsp->fh->fd != -1) {
209                         sizeret = SMB_VFS_FLISTXATTR(fsp, ea_namelist,
210                                                      ea_namelist_size);
211                 } else {
212                         sizeret = SMB_VFS_LISTXATTR(conn, fname, ea_namelist,
213                                                     ea_namelist_size);
214                 }
215
216                 if ((sizeret == -1) && (errno == ERANGE)) {
217                         ea_namelist_size *= 2;
218                 }
219                 else {
220                         break;
221                 }
222         }
223
224         if (sizeret == -1) {
225                 TALLOC_FREE(names);
226                 return map_nt_error_from_unix(errno);
227         }
228
229         DEBUG(10, ("get_ea_list_from_file: ea_namelist size = %u\n",
230                    (unsigned int)sizeret));
231
232         if (sizeret == 0) {
233                 TALLOC_FREE(names);
234                 *pnames = NULL;
235                 *pnum_names = 0;
236                 return NT_STATUS_OK;
237         }
238
239         /*
240          * Ensure the result is 0-terminated
241          */
242
243         if (ea_namelist[sizeret-1] != '\0') {
244                 TALLOC_FREE(names);
245                 return NT_STATUS_INTERNAL_ERROR;
246         }
247
248         /*
249          * count the names
250          */
251         num_names = 0;
252
253         for (p = ea_namelist; p - ea_namelist < sizeret; p += strlen(p)+1) {
254                 num_names += 1;
255         }
256
257         tmp = TALLOC_REALLOC_ARRAY(mem_ctx, names, char *, num_names);
258         if (tmp == NULL) {
259                 DEBUG(0, ("talloc failed\n"));
260                 TALLOC_FREE(names);
261                 return NT_STATUS_NO_MEMORY;
262         }
263
264         names = tmp;
265         num_names = 0;
266
267         for (p = ea_namelist; p - ea_namelist < sizeret; p += strlen(p)+1) {
268                 names[num_names++] = p;
269         }
270
271         *pnames = names;
272         *pnum_names = num_names;
273         return NT_STATUS_OK;
274 }
275
276 /****************************************************************************
277  Return a linked list of the total EA's. Plus the total size
278 ****************************************************************************/
279
280 static struct ea_list *get_ea_list_from_file(TALLOC_CTX *mem_ctx, connection_struct *conn, files_struct *fsp,
281                                         const char *fname, size_t *pea_total_len)
282 {
283         /* Get a list of all xattrs. Max namesize is 64k. */
284         size_t i, num_names;
285         char **names;
286         struct ea_list *ea_list_head = NULL;
287         NTSTATUS status;
288
289         *pea_total_len = 0;
290
291         if (!lp_ea_support(SNUM(conn))) {
292                 return NULL;
293         }
294
295         status = get_ea_names_from_file(talloc_tos(), conn, fsp, fname,
296                                         &names, &num_names);
297
298         if (!NT_STATUS_IS_OK(status) || (num_names == 0)) {
299                 return NULL;
300         }
301
302         for (i=0; i<num_names; i++) {
303                 struct ea_list *listp;
304                 fstring dos_ea_name;
305
306                 if (strnequal(names[i], "system.", 7)
307                     || samba_private_attr_name(names[i]))
308                         continue;
309
310                 listp = TALLOC_P(mem_ctx, struct ea_list);
311                 if (listp == NULL) {
312                         return NULL;
313                 }
314
315                 if (!NT_STATUS_IS_OK(get_ea_value(mem_ctx, conn, fsp,
316                                                   fname, names[i],
317                                                   &listp->ea))) {
318                         return NULL;
319                 }
320
321                 push_ascii_fstring(dos_ea_name, listp->ea.name);
322
323                 *pea_total_len +=
324                         4 + strlen(dos_ea_name) + 1 + listp->ea.value.length;
325
326                 DEBUG(10,("get_ea_list_from_file: total_len = %u, %s, val len "
327                           "= %u\n", (unsigned int)*pea_total_len, dos_ea_name,
328                           (unsigned int)listp->ea.value.length));
329
330                 DLIST_ADD_END(ea_list_head, listp, struct ea_list *);
331
332         }
333
334         /* Add on 4 for total length. */
335         if (*pea_total_len) {
336                 *pea_total_len += 4;
337         }
338
339         DEBUG(10, ("get_ea_list_from_file: total_len = %u\n",
340                    (unsigned int)*pea_total_len));
341
342         return ea_list_head;
343 }
344
345 /****************************************************************************
346  Fill a qfilepathinfo buffer with EA's. Returns the length of the buffer
347  that was filled.
348 ****************************************************************************/
349
350 static unsigned int fill_ea_buffer(TALLOC_CTX *mem_ctx, char *pdata, unsigned int total_data_size,
351         connection_struct *conn, struct ea_list *ea_list)
352 {
353         unsigned int ret_data_size = 4;
354         char *p = pdata;
355
356         SMB_ASSERT(total_data_size >= 4);
357
358         if (!lp_ea_support(SNUM(conn))) {
359                 SIVAL(pdata,4,0);
360                 return 4;
361         }
362
363         for (p = pdata + 4; ea_list; ea_list = ea_list->next) {
364                 size_t dos_namelen;
365                 fstring dos_ea_name;
366                 push_ascii_fstring(dos_ea_name, ea_list->ea.name);
367                 dos_namelen = strlen(dos_ea_name);
368                 if (dos_namelen > 255 || dos_namelen == 0) {
369                         break;
370                 }
371                 if (ea_list->ea.value.length > 65535) {
372                         break;
373                 }
374                 if (4 + dos_namelen + 1 + ea_list->ea.value.length > total_data_size) {
375                         break;
376                 }
377
378                 /* We know we have room. */
379                 SCVAL(p,0,ea_list->ea.flags);
380                 SCVAL(p,1,dos_namelen);
381                 SSVAL(p,2,ea_list->ea.value.length);
382                 fstrcpy(p+4, dos_ea_name);
383                 memcpy( p + 4 + dos_namelen + 1, ea_list->ea.value.data, ea_list->ea.value.length);
384
385                 total_data_size -= 4 + dos_namelen + 1 + ea_list->ea.value.length;
386                 p += 4 + dos_namelen + 1 + ea_list->ea.value.length;
387         }
388
389         ret_data_size = PTR_DIFF(p, pdata);
390         DEBUG(10,("fill_ea_buffer: data_size = %u\n", ret_data_size ));
391         SIVAL(pdata,0,ret_data_size);
392         return ret_data_size;
393 }
394
395 static unsigned int estimate_ea_size(connection_struct *conn, files_struct *fsp, const char *fname)
396 {
397         size_t total_ea_len = 0;
398         TALLOC_CTX *mem_ctx = NULL;
399
400         if (!lp_ea_support(SNUM(conn))) {
401                 return 0;
402         }
403         mem_ctx = talloc_tos();
404         (void)get_ea_list_from_file(mem_ctx, conn, fsp, fname, &total_ea_len);
405         return total_ea_len;
406 }
407
408 /****************************************************************************
409  Ensure the EA name is case insensitive by matching any existing EA name.
410 ****************************************************************************/
411
412 static void canonicalize_ea_name(connection_struct *conn, files_struct *fsp, const char *fname, fstring unix_ea_name)
413 {
414         size_t total_ea_len;
415         TALLOC_CTX *mem_ctx = talloc_tos();
416         struct ea_list *ea_list = get_ea_list_from_file(mem_ctx, conn, fsp, fname, &total_ea_len);
417
418         for (; ea_list; ea_list = ea_list->next) {
419                 if (strequal(&unix_ea_name[5], ea_list->ea.name)) {
420                         DEBUG(10,("canonicalize_ea_name: %s -> %s\n",
421                                 &unix_ea_name[5], ea_list->ea.name));
422                         safe_strcpy(&unix_ea_name[5], ea_list->ea.name, sizeof(fstring)-6);
423                         break;
424                 }
425         }
426 }
427
428 /****************************************************************************
429  Set or delete an extended attribute.
430 ****************************************************************************/
431
432 NTSTATUS set_ea(connection_struct *conn, files_struct *fsp, const char *fname, struct ea_list *ea_list)
433 {
434         if (!lp_ea_support(SNUM(conn))) {
435                 return NT_STATUS_EAS_NOT_SUPPORTED;
436         }
437
438         for (;ea_list; ea_list = ea_list->next) {
439                 int ret;
440                 fstring unix_ea_name;
441
442                 fstrcpy(unix_ea_name, "user."); /* All EA's must start with user. */
443                 fstrcat(unix_ea_name, ea_list->ea.name);
444
445                 canonicalize_ea_name(conn, fsp, fname, unix_ea_name);
446
447                 DEBUG(10,("set_ea: ea_name %s ealen = %u\n", unix_ea_name, (unsigned int)ea_list->ea.value.length));
448
449                 if (samba_private_attr_name(unix_ea_name)) {
450                         DEBUG(10,("set_ea: ea name %s is a private Samba name.\n", unix_ea_name));
451                         return NT_STATUS_ACCESS_DENIED;
452                 }
453
454                 if (ea_list->ea.value.length == 0) {
455                         /* Remove the attribute. */
456                         if (fsp && (fsp->fh->fd != -1)) {
457                                 DEBUG(10,("set_ea: deleting ea name %s on file %s by file descriptor.\n",
458                                         unix_ea_name, fsp->fsp_name));
459                                 ret = SMB_VFS_FREMOVEXATTR(fsp, unix_ea_name);
460                         } else {
461                                 DEBUG(10,("set_ea: deleting ea name %s on file %s.\n",
462                                         unix_ea_name, fname));
463                                 ret = SMB_VFS_REMOVEXATTR(conn, fname, unix_ea_name);
464                         }
465 #ifdef ENOATTR
466                         /* Removing a non existent attribute always succeeds. */
467                         if (ret == -1 && errno == ENOATTR) {
468                                 DEBUG(10,("set_ea: deleting ea name %s didn't exist - succeeding by default.\n",
469                                                 unix_ea_name));
470                                 ret = 0;
471                         }
472 #endif
473                 } else {
474                         if (fsp && (fsp->fh->fd != -1)) {
475                                 DEBUG(10,("set_ea: setting ea name %s on file %s by file descriptor.\n",
476                                         unix_ea_name, fsp->fsp_name));
477                                 ret = SMB_VFS_FSETXATTR(fsp, unix_ea_name,
478                                                         ea_list->ea.value.data, ea_list->ea.value.length, 0);
479                         } else {
480                                 DEBUG(10,("set_ea: setting ea name %s on file %s.\n",
481                                         unix_ea_name, fname));
482                                 ret = SMB_VFS_SETXATTR(conn, fname, unix_ea_name,
483                                                         ea_list->ea.value.data, ea_list->ea.value.length, 0);
484                         }
485                 }
486
487                 if (ret == -1) {
488 #ifdef ENOTSUP
489                         if (errno == ENOTSUP) {
490                                 return NT_STATUS_EAS_NOT_SUPPORTED;
491                         }
492 #endif
493                         return map_nt_error_from_unix(errno);
494                 }
495
496         }
497         return NT_STATUS_OK;
498 }
499 /****************************************************************************
500  Read a list of EA names from an incoming data buffer. Create an ea_list with them.
501 ****************************************************************************/
502
503 static struct ea_list *read_ea_name_list(TALLOC_CTX *ctx, const char *pdata, size_t data_size)
504 {
505         struct ea_list *ea_list_head = NULL;
506         size_t converted_size, offset = 0;
507
508         while (offset + 2 < data_size) {
509                 struct ea_list *eal = TALLOC_ZERO_P(ctx, struct ea_list);
510                 unsigned int namelen = CVAL(pdata,offset);
511
512                 offset++; /* Go past the namelen byte. */
513
514                 /* integer wrap paranioa. */
515                 if ((offset + namelen < offset) || (offset + namelen < namelen) ||
516                                 (offset > data_size) || (namelen > data_size) ||
517                                 (offset + namelen >= data_size)) {
518                         break;
519                 }
520                 /* Ensure the name is null terminated. */
521                 if (pdata[offset + namelen] != '\0') {
522                         return NULL;
523                 }
524                 if (!pull_ascii_talloc(ctx, &eal->ea.name, &pdata[offset],
525                                        &converted_size)) {
526                         DEBUG(0,("read_ea_name_list: pull_ascii_talloc "
527                                  "failed: %s", strerror(errno)));
528                 }
529                 if (!eal->ea.name) {
530                         return NULL;
531                 }
532
533                 offset += (namelen + 1); /* Go past the name + terminating zero. */
534                 DLIST_ADD_END(ea_list_head, eal, struct ea_list *);
535                 DEBUG(10,("read_ea_name_list: read ea name %s\n", eal->ea.name));
536         }
537
538         return ea_list_head;
539 }
540
541 /****************************************************************************
542  Read one EA list entry from the buffer.
543 ****************************************************************************/
544
545 struct ea_list *read_ea_list_entry(TALLOC_CTX *ctx, const char *pdata, size_t data_size, size_t *pbytes_used)
546 {
547         struct ea_list *eal = TALLOC_ZERO_P(ctx, struct ea_list);
548         uint16 val_len;
549         unsigned int namelen;
550         size_t converted_size;
551
552         if (!eal) {
553                 return NULL;
554         }
555
556         if (data_size < 6) {
557                 return NULL;
558         }
559
560         eal->ea.flags = CVAL(pdata,0);
561         namelen = CVAL(pdata,1);
562         val_len = SVAL(pdata,2);
563
564         if (4 + namelen + 1 + val_len > data_size) {
565                 return NULL;
566         }
567
568         /* Ensure the name is null terminated. */
569         if (pdata[namelen + 4] != '\0') {
570                 return NULL;
571         }
572         if (!pull_ascii_talloc(ctx, &eal->ea.name, pdata + 4, &converted_size)) {
573                 DEBUG(0,("read_ea_list_entry: pull_ascii_talloc failed: %s",
574                          strerror(errno)));
575         }
576         if (!eal->ea.name) {
577                 return NULL;
578         }
579
580         eal->ea.value = data_blob_talloc(eal, NULL, (size_t)val_len + 1);
581         if (!eal->ea.value.data) {
582                 return NULL;
583         }
584
585         memcpy(eal->ea.value.data, pdata + 4 + namelen + 1, val_len);
586
587         /* Ensure we're null terminated just in case we print the value. */
588         eal->ea.value.data[val_len] = '\0';
589         /* But don't count the null. */
590         eal->ea.value.length--;
591
592         if (pbytes_used) {
593                 *pbytes_used = 4 + namelen + 1 + val_len;
594         }
595
596         DEBUG(10,("read_ea_list_entry: read ea name %s\n", eal->ea.name));
597         dump_data(10, eal->ea.value.data, eal->ea.value.length);
598
599         return eal;
600 }
601
602 /****************************************************************************
603  Read a list of EA names and data from an incoming data buffer. Create an ea_list with them.
604 ****************************************************************************/
605
606 static struct ea_list *read_ea_list(TALLOC_CTX *ctx, const char *pdata, size_t data_size)
607 {
608         struct ea_list *ea_list_head = NULL;
609         size_t offset = 0;
610         size_t bytes_used = 0;
611
612         while (offset < data_size) {
613                 struct ea_list *eal = read_ea_list_entry(ctx, pdata + offset, data_size - offset, &bytes_used);
614
615                 if (!eal) {
616                         return NULL;
617                 }
618
619                 DLIST_ADD_END(ea_list_head, eal, struct ea_list *);
620                 offset += bytes_used;
621         }
622
623         return ea_list_head;
624 }
625
626 /****************************************************************************
627  Count the total EA size needed.
628 ****************************************************************************/
629
630 static size_t ea_list_size(struct ea_list *ealist)
631 {
632         fstring dos_ea_name;
633         struct ea_list *listp;
634         size_t ret = 0;
635
636         for (listp = ealist; listp; listp = listp->next) {
637                 push_ascii_fstring(dos_ea_name, listp->ea.name);
638                 ret += 4 + strlen(dos_ea_name) + 1 + listp->ea.value.length;
639         }
640         /* Add on 4 for total length. */
641         if (ret) {
642                 ret += 4;
643         }
644
645         return ret;
646 }
647
648 /****************************************************************************
649  Return a union of EA's from a file list and a list of names.
650  The TALLOC context for the two lists *MUST* be identical as we steal
651  memory from one list to add to another. JRA.
652 ****************************************************************************/
653
654 static struct ea_list *ea_list_union(struct ea_list *name_list, struct ea_list *file_list, size_t *total_ea_len)
655 {
656         struct ea_list *nlistp, *flistp;
657
658         for (nlistp = name_list; nlistp; nlistp = nlistp->next) {
659                 for (flistp = file_list; flistp; flistp = flistp->next) {
660                         if (strequal(nlistp->ea.name, flistp->ea.name)) {
661                                 break;
662                         }
663                 }
664
665                 if (flistp) {
666                         /* Copy the data from this entry. */
667                         nlistp->ea.flags = flistp->ea.flags;
668                         nlistp->ea.value = flistp->ea.value;
669                 } else {
670                         /* Null entry. */
671                         nlistp->ea.flags = 0;
672                         ZERO_STRUCT(nlistp->ea.value);
673                 }
674         }
675
676         *total_ea_len = ea_list_size(name_list);
677         return name_list;
678 }
679
680 /****************************************************************************
681   Send the required number of replies back.
682   We assume all fields other than the data fields are
683   set correctly for the type of call.
684   HACK ! Always assumes smb_setup field is zero.
685 ****************************************************************************/
686
687 void send_trans2_replies(connection_struct *conn,
688                         struct smb_request *req,
689                          const char *params,
690                          int paramsize,
691                          const char *pdata,
692                          int datasize,
693                          int max_data_bytes)
694 {
695         /* As we are using a protocol > LANMAN1 then the max_send
696          variable must have been set in the sessetupX call.
697          This takes precedence over the max_xmit field in the
698          global struct. These different max_xmit variables should
699          be merged as this is now too confusing */
700
701         int data_to_send = datasize;
702         int params_to_send = paramsize;
703         int useable_space;
704         const char *pp = params;
705         const char *pd = pdata;
706         int params_sent_thistime, data_sent_thistime, total_sent_thistime;
707         int alignment_offset = 1; /* JRA. This used to be 3. Set to 1 to make netmon parse ok. */
708         int data_alignment_offset = 0;
709         bool overflow = False;
710
711         /* Modify the data_to_send and datasize and set the error if
712            we're trying to send more than max_data_bytes. We still send
713            the part of the packet(s) that fit. Strange, but needed
714            for OS/2. */
715
716         if (max_data_bytes > 0 && datasize > max_data_bytes) {
717                 DEBUG(5,("send_trans2_replies: max_data_bytes %d exceeded by data %d\n",
718                         max_data_bytes, datasize ));
719                 datasize = data_to_send = max_data_bytes;
720                 overflow = True;
721         }
722
723         /* If there genuinely are no parameters or data to send just send the empty packet */
724
725         if(params_to_send == 0 && data_to_send == 0) {
726                 reply_outbuf(req, 10, 0);
727                 show_msg((char *)req->outbuf);
728                 return;
729         }
730
731         /* When sending params and data ensure that both are nicely aligned */
732         /* Only do this alignment when there is also data to send - else
733                 can cause NT redirector problems. */
734
735         if (((params_to_send % 4) != 0) && (data_to_send != 0))
736                 data_alignment_offset = 4 - (params_to_send % 4);
737
738         /* Space is bufsize minus Netbios over TCP header minus SMB header */
739         /* The alignment_offset is to align the param bytes on an even byte
740                 boundary. NT 4.0 Beta needs this to work correctly. */
741
742         useable_space = max_send - (smb_size
743                                     + 2 * 10 /* wct */
744                                     + alignment_offset
745                                     + data_alignment_offset);
746
747         if (useable_space < 0) {
748                 DEBUG(0, ("send_trans2_replies failed sanity useable_space "
749                           "= %d!!!", useable_space));
750                 exit_server_cleanly("send_trans2_replies: Not enough space");
751         }
752
753         while (params_to_send || data_to_send) {
754                 /* Calculate whether we will totally or partially fill this packet */
755
756                 total_sent_thistime = params_to_send + data_to_send;
757
758                 /* We can never send more than useable_space */
759                 /*
760                  * Note that 'useable_space' does not include the alignment offsets,
761                  * but we must include the alignment offsets in the calculation of
762                  * the length of the data we send over the wire, as the alignment offsets
763                  * are sent here. Fix from Marc_Jacobsen@hp.com.
764                  */
765
766                 total_sent_thistime = MIN(total_sent_thistime, useable_space);
767
768                 reply_outbuf(req, 10, total_sent_thistime + alignment_offset
769                              + data_alignment_offset);
770
771                 /*
772                  * We might have SMBtrans2s in req which was transferred to
773                  * the outbuf, fix that.
774                  */
775                 SCVAL(req->outbuf, smb_com, SMBtrans2);
776
777                 /* Set total params and data to be sent */
778                 SSVAL(req->outbuf,smb_tprcnt,paramsize);
779                 SSVAL(req->outbuf,smb_tdrcnt,datasize);
780
781                 /* Calculate how many parameters and data we can fit into
782                  * this packet. Parameters get precedence
783                  */
784
785                 params_sent_thistime = MIN(params_to_send,useable_space);
786                 data_sent_thistime = useable_space - params_sent_thistime;
787                 data_sent_thistime = MIN(data_sent_thistime,data_to_send);
788
789                 SSVAL(req->outbuf,smb_prcnt, params_sent_thistime);
790
791                 /* smb_proff is the offset from the start of the SMB header to the
792                         parameter bytes, however the first 4 bytes of outbuf are
793                         the Netbios over TCP header. Thus use smb_base() to subtract
794                         them from the calculation */
795
796                 SSVAL(req->outbuf,smb_proff,
797                       ((smb_buf(req->outbuf)+alignment_offset)
798                        - smb_base(req->outbuf)));
799
800                 if(params_sent_thistime == 0)
801                         SSVAL(req->outbuf,smb_prdisp,0);
802                 else
803                         /* Absolute displacement of param bytes sent in this packet */
804                         SSVAL(req->outbuf,smb_prdisp,pp - params);
805
806                 SSVAL(req->outbuf,smb_drcnt, data_sent_thistime);
807                 if(data_sent_thistime == 0) {
808                         SSVAL(req->outbuf,smb_droff,0);
809                         SSVAL(req->outbuf,smb_drdisp, 0);
810                 } else {
811                         /* The offset of the data bytes is the offset of the
812                                 parameter bytes plus the number of parameters being sent this time */
813                         SSVAL(req->outbuf, smb_droff,
814                               ((smb_buf(req->outbuf)+alignment_offset)
815                                - smb_base(req->outbuf))
816                               + params_sent_thistime + data_alignment_offset);
817                         SSVAL(req->outbuf,smb_drdisp, pd - pdata);
818                 }
819
820                 /* Initialize the padding for alignment */
821
822                 if (alignment_offset != 0) {
823                         memset(smb_buf(req->outbuf), 0, alignment_offset);
824                 }
825
826                 /* Copy the param bytes into the packet */
827
828                 if(params_sent_thistime) {
829                         memcpy((smb_buf(req->outbuf)+alignment_offset), pp,
830                                params_sent_thistime);
831                 }
832
833                 /* Copy in the data bytes */
834                 if(data_sent_thistime) {
835                         if (data_alignment_offset != 0) {
836                                 memset((smb_buf(req->outbuf)+alignment_offset+
837                                         params_sent_thistime), 0,
838                                        data_alignment_offset);
839                         }
840                         memcpy(smb_buf(req->outbuf)+alignment_offset
841                                +params_sent_thistime+data_alignment_offset,
842                                pd,data_sent_thistime);
843                 }
844
845                 DEBUG(9,("t2_rep: params_sent_thistime = %d, data_sent_thistime = %d, useable_space = %d\n",
846                         params_sent_thistime, data_sent_thistime, useable_space));
847                 DEBUG(9,("t2_rep: params_to_send = %d, data_to_send = %d, paramsize = %d, datasize = %d\n",
848                         params_to_send, data_to_send, paramsize, datasize));
849
850                 if (overflow) {
851                         error_packet_set((char *)req->outbuf,
852                                          ERRDOS,ERRbufferoverflow,
853                                          STATUS_BUFFER_OVERFLOW,
854                                          __LINE__,__FILE__);
855                 }
856
857                 /* Send the packet */
858                 show_msg((char *)req->outbuf);
859                 if (!srv_send_smb(smbd_server_fd(),
860                                 (char *)req->outbuf,
861                                 IS_CONN_ENCRYPTED(conn)))
862                         exit_server_cleanly("send_trans2_replies: srv_send_smb failed.");
863
864                 TALLOC_FREE(req->outbuf);
865
866                 pp += params_sent_thistime;
867                 pd += data_sent_thistime;
868
869                 params_to_send -= params_sent_thistime;
870                 data_to_send -= data_sent_thistime;
871
872                 /* Sanity check */
873                 if(params_to_send < 0 || data_to_send < 0) {
874                         DEBUG(0,("send_trans2_replies failed sanity check pts = %d, dts = %d\n!!!",
875                                 params_to_send, data_to_send));
876                         return;
877                 }
878         }
879
880         return;
881 }
882
883 /****************************************************************************
884  Reply to a TRANSACT2_OPEN.
885 ****************************************************************************/
886
887 static void call_trans2open(connection_struct *conn,
888                             struct smb_request *req,
889                             char **pparams, int total_params,
890                             char **ppdata, int total_data,
891                             unsigned int max_data_bytes)
892 {
893         char *params = *pparams;
894         char *pdata = *ppdata;
895         int deny_mode;
896         int32 open_attr;
897         bool oplock_request;
898 #if 0
899         bool return_additional_info;
900         int16 open_sattr;
901         time_t open_time;
902 #endif
903         int open_ofun;
904         uint32 open_size;
905         char *pname;
906         char *fname = NULL;
907         SMB_OFF_T size=0;
908         int fattr=0,mtime=0;
909         SMB_INO_T inode = 0;
910         SMB_STRUCT_STAT sbuf;
911         int smb_action = 0;
912         files_struct *fsp;
913         struct ea_list *ea_list = NULL;
914         uint16 flags = 0;
915         NTSTATUS status;
916         uint32 access_mask;
917         uint32 share_mode;
918         uint32 create_disposition;
919         uint32 create_options = 0;
920         TALLOC_CTX *ctx = talloc_tos();
921
922         /*
923          * Ensure we have enough parameters to perform the operation.
924          */
925
926         if (total_params < 29) {
927                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
928                 return;
929         }
930
931         flags = SVAL(params, 0);
932         deny_mode = SVAL(params, 2);
933         open_attr = SVAL(params,6);
934         oplock_request = (flags & REQUEST_OPLOCK) ? EXCLUSIVE_OPLOCK : 0;
935         if (oplock_request) {
936                 oplock_request |= (flags & REQUEST_BATCH_OPLOCK) ? BATCH_OPLOCK : 0;
937         }
938
939 #if 0
940         return_additional_info = BITSETW(params,0);
941         open_sattr = SVAL(params, 4);
942         open_time = make_unix_date3(params+8);
943 #endif
944         open_ofun = SVAL(params,12);
945         open_size = IVAL(params,14);
946         pname = &params[28];
947
948         if (IS_IPC(conn)) {
949                 reply_doserror(req, ERRSRV, ERRaccess);
950                 return;
951         }
952
953         srvstr_get_path(ctx, params, req->flags2, &fname, pname,
954                         total_params - 28, STR_TERMINATE,
955                         &status);
956         if (!NT_STATUS_IS_OK(status)) {
957                 reply_nterror(req, status);
958                 return;
959         }
960
961         DEBUG(3,("call_trans2open %s deny_mode=0x%x attr=%d ofun=0x%x size=%d\n",
962                 fname, (unsigned int)deny_mode, (unsigned int)open_attr,
963                 (unsigned int)open_ofun, open_size));
964
965         if (open_ofun == 0) {
966                 reply_nterror(req, NT_STATUS_OBJECT_NAME_COLLISION);
967                 return;
968         }
969
970         if (!map_open_params_to_ntcreate(fname, deny_mode, open_ofun,
971                                 &access_mask,
972                                 &share_mode,
973                                 &create_disposition,
974                                 &create_options)) {
975                 reply_doserror(req, ERRDOS, ERRbadaccess);
976                 return;
977         }
978
979         /* Any data in this call is an EA list. */
980         if (total_data && (total_data != 4) && !lp_ea_support(SNUM(conn))) {
981                 reply_nterror(req, NT_STATUS_EAS_NOT_SUPPORTED);
982                 return;
983         }
984
985         if (total_data != 4) {
986                 if (total_data < 10) {
987                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
988                         return;
989                 }
990
991                 if (IVAL(pdata,0) > total_data) {
992                         DEBUG(10,("call_trans2open: bad total data size (%u) > %u\n",
993                                 IVAL(pdata,0), (unsigned int)total_data));
994                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
995                         return;
996                 }
997
998                 ea_list = read_ea_list(talloc_tos(), pdata + 4,
999                                        total_data - 4);
1000                 if (!ea_list) {
1001                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
1002                         return;
1003                 }
1004         } else if (IVAL(pdata,0) != 4) {
1005                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
1006                 return;
1007         }
1008
1009         status = SMB_VFS_CREATE_FILE(
1010                 conn,                                   /* conn */
1011                 req,                                    /* req */
1012                 0,                                      /* root_dir_fid */
1013                 fname,                                  /* fname */
1014                 CFF_DOS_PATH,                           /* create_file_flags */
1015                 access_mask,                            /* access_mask */
1016                 share_mode,                             /* share_access */
1017                 create_disposition,                     /* create_disposition*/
1018                 create_options,                         /* create_options */
1019                 open_attr,                              /* file_attributes */
1020                 oplock_request,                         /* oplock_request */
1021                 open_size,                              /* allocation_size */
1022                 NULL,                                   /* sd */
1023                 ea_list,                                /* ea_list */
1024                 &fsp,                                   /* result */
1025                 &smb_action,                            /* pinfo */
1026                 &sbuf);                                 /* psbuf */
1027
1028         if (!NT_STATUS_IS_OK(status)) {
1029                 if (open_was_deferred(req->mid)) {
1030                         /* We have re-scheduled this call. */
1031                         return;
1032                 }
1033                 reply_openerror(req, status);
1034                 return;
1035         }
1036
1037         size = get_file_size(sbuf);
1038         fattr = dos_mode(conn,fsp->fsp_name,&sbuf);
1039         mtime = sbuf.st_mtime;
1040         inode = sbuf.st_ino;
1041         if (fattr & aDIR) {
1042                 close_file(req, fsp, ERROR_CLOSE);
1043                 reply_doserror(req, ERRDOS,ERRnoaccess);
1044                 return;
1045         }
1046
1047         /* Realloc the size of parameters and data we will return */
1048         *pparams = (char *)SMB_REALLOC(*pparams, 30);
1049         if(*pparams == NULL ) {
1050                 reply_nterror(req, NT_STATUS_NO_MEMORY);
1051                 return;
1052         }
1053         params = *pparams;
1054
1055         SSVAL(params,0,fsp->fnum);
1056         SSVAL(params,2,fattr);
1057         srv_put_dos_date2(params,4, mtime);
1058         SIVAL(params,8, (uint32)size);
1059         SSVAL(params,12,deny_mode);
1060         SSVAL(params,14,0); /* open_type - file or directory. */
1061         SSVAL(params,16,0); /* open_state - only valid for IPC device. */
1062
1063         if (oplock_request && lp_fake_oplocks(SNUM(conn))) {
1064                 smb_action |= EXTENDED_OPLOCK_GRANTED;
1065         }
1066
1067         SSVAL(params,18,smb_action);
1068
1069         /*
1070          * WARNING - this may need to be changed if SMB_INO_T <> 4 bytes.
1071          */
1072         SIVAL(params,20,inode);
1073         SSVAL(params,24,0); /* Padding. */
1074         if (flags & 8) {
1075                 uint32 ea_size = estimate_ea_size(conn, fsp, fsp->fsp_name);
1076                 SIVAL(params, 26, ea_size);
1077         } else {
1078                 SIVAL(params, 26, 0);
1079         }
1080
1081         /* Send the required number of replies */
1082         send_trans2_replies(conn, req, params, 30, *ppdata, 0, max_data_bytes);
1083 }
1084
1085 /*********************************************************
1086  Routine to check if a given string matches exactly.
1087  as a special case a mask of "." does NOT match. That
1088  is required for correct wildcard semantics
1089  Case can be significant or not.
1090 **********************************************************/
1091
1092 static bool exact_match(connection_struct *conn,
1093                 const char *str,
1094                 const char *mask)
1095 {
1096         if (mask[0] == '.' && mask[1] == 0)
1097                 return False;
1098         if (dptr_has_wild(conn->dirptr)) {
1099                 return False;
1100         }
1101         if (conn->case_sensitive)
1102                 return strcmp(str,mask)==0;
1103         else
1104                 return StrCaseCmp(str,mask) == 0;
1105 }
1106
1107 /****************************************************************************
1108  Return the filetype for UNIX extensions.
1109 ****************************************************************************/
1110
1111 static uint32 unix_filetype(mode_t mode)
1112 {
1113         if(S_ISREG(mode))
1114                 return UNIX_TYPE_FILE;
1115         else if(S_ISDIR(mode))
1116                 return UNIX_TYPE_DIR;
1117 #ifdef S_ISLNK
1118         else if(S_ISLNK(mode))
1119                 return UNIX_TYPE_SYMLINK;
1120 #endif
1121 #ifdef S_ISCHR
1122         else if(S_ISCHR(mode))
1123                 return UNIX_TYPE_CHARDEV;
1124 #endif
1125 #ifdef S_ISBLK
1126         else if(S_ISBLK(mode))
1127                 return UNIX_TYPE_BLKDEV;
1128 #endif
1129 #ifdef S_ISFIFO
1130         else if(S_ISFIFO(mode))
1131                 return UNIX_TYPE_FIFO;
1132 #endif
1133 #ifdef S_ISSOCK
1134         else if(S_ISSOCK(mode))
1135                 return UNIX_TYPE_SOCKET;
1136 #endif
1137
1138         DEBUG(0,("unix_filetype: unknown filetype %u\n", (unsigned)mode));
1139         return UNIX_TYPE_UNKNOWN;
1140 }
1141
1142 /****************************************************************************
1143  Map wire perms onto standard UNIX permissions. Obey share restrictions.
1144 ****************************************************************************/
1145
1146 enum perm_type { PERM_NEW_FILE, PERM_NEW_DIR, PERM_EXISTING_FILE, PERM_EXISTING_DIR};
1147
1148 static NTSTATUS unix_perms_from_wire( connection_struct *conn,
1149                                 SMB_STRUCT_STAT *psbuf,
1150                                 uint32 perms,
1151                                 enum perm_type ptype,
1152                                 mode_t *ret_perms)
1153 {
1154         mode_t ret = 0;
1155
1156         if (perms == SMB_MODE_NO_CHANGE) {
1157                 if (!VALID_STAT(*psbuf)) {
1158                         return NT_STATUS_INVALID_PARAMETER;
1159                 } else {
1160                         *ret_perms = psbuf->st_mode;
1161                         return NT_STATUS_OK;
1162                 }
1163         }
1164
1165         ret |= ((perms & UNIX_X_OTH ) ? S_IXOTH : 0);
1166         ret |= ((perms & UNIX_W_OTH ) ? S_IWOTH : 0);
1167         ret |= ((perms & UNIX_R_OTH ) ? S_IROTH : 0);
1168         ret |= ((perms & UNIX_X_GRP ) ? S_IXGRP : 0);
1169         ret |= ((perms & UNIX_W_GRP ) ? S_IWGRP : 0);
1170         ret |= ((perms & UNIX_R_GRP ) ? S_IRGRP : 0);
1171         ret |= ((perms & UNIX_X_USR ) ? S_IXUSR : 0);
1172         ret |= ((perms & UNIX_W_USR ) ? S_IWUSR : 0);
1173         ret |= ((perms & UNIX_R_USR ) ? S_IRUSR : 0);
1174 #ifdef S_ISVTX
1175         ret |= ((perms & UNIX_STICKY ) ? S_ISVTX : 0);
1176 #endif
1177 #ifdef S_ISGID
1178         ret |= ((perms & UNIX_SET_GID ) ? S_ISGID : 0);
1179 #endif
1180 #ifdef S_ISUID
1181         ret |= ((perms & UNIX_SET_UID ) ? S_ISUID : 0);
1182 #endif
1183
1184         switch (ptype) {
1185         case PERM_NEW_FILE:
1186                 /* Apply mode mask */
1187                 ret &= lp_create_mask(SNUM(conn));
1188                 /* Add in force bits */
1189                 ret |= lp_force_create_mode(SNUM(conn));
1190                 break;
1191         case PERM_NEW_DIR:
1192                 ret &= lp_dir_mask(SNUM(conn));
1193                 /* Add in force bits */
1194                 ret |= lp_force_dir_mode(SNUM(conn));
1195                 break;
1196         case PERM_EXISTING_FILE:
1197                 /* Apply mode mask */
1198                 ret &= lp_security_mask(SNUM(conn));
1199                 /* Add in force bits */
1200                 ret |= lp_force_security_mode(SNUM(conn));
1201                 break;
1202         case PERM_EXISTING_DIR:
1203                 /* Apply mode mask */
1204                 ret &= lp_dir_security_mask(SNUM(conn));
1205                 /* Add in force bits */
1206                 ret |= lp_force_dir_security_mode(SNUM(conn));
1207                 break;
1208         }
1209
1210         *ret_perms = ret;
1211         return NT_STATUS_OK;
1212 }
1213
1214 /****************************************************************************
1215  Needed to show the msdfs symlinks as directories. Modifies psbuf
1216  to be a directory if it's a msdfs link.
1217 ****************************************************************************/
1218
1219 static bool check_msdfs_link(connection_struct *conn,
1220                                 const char *pathname,
1221                                 SMB_STRUCT_STAT *psbuf)
1222 {
1223         int saved_errno = errno;
1224         if(lp_host_msdfs() &&
1225                 lp_msdfs_root(SNUM(conn)) &&
1226                 is_msdfs_link(conn, pathname, psbuf)) {
1227
1228                 DEBUG(5,("check_msdfs_link: Masquerading msdfs link %s "
1229                         "as a directory\n",
1230                         pathname));
1231                 psbuf->st_mode = (psbuf->st_mode & 0xFFF) | S_IFDIR;
1232                 errno = saved_errno;
1233                 return true;
1234         }
1235         errno = saved_errno;
1236         return false;
1237 }
1238
1239
1240 /****************************************************************************
1241  Get a level dependent lanman2 dir entry.
1242 ****************************************************************************/
1243
1244 static bool get_lanman2_dir_entry(TALLOC_CTX *ctx,
1245                                 connection_struct *conn,
1246                                 uint16 flags2,
1247                                 const char *path_mask,
1248                                 uint32 dirtype,
1249                                 int info_level,
1250                                 int requires_resume_key,
1251                                 bool dont_descend,
1252                                 bool ask_sharemode,
1253                                 char **ppdata,
1254                                 char *base_data,
1255                                 char *end_data,
1256                                 int space_remaining,
1257                                 bool *out_of_space,
1258                                 bool *got_exact_match,
1259                                 int *last_entry_off,
1260                                 struct ea_list *name_list)
1261 {
1262         const char *dname;
1263         bool found = False;
1264         SMB_STRUCT_STAT sbuf;
1265         const char *mask = NULL;
1266         char *pathreal = NULL;
1267         const char *fname = NULL;
1268         char *p, *q, *pdata = *ppdata;
1269         uint32 reskey=0;
1270         long prev_dirpos=0;
1271         uint32 mode=0;
1272         SMB_OFF_T file_size = 0;
1273         uint64_t allocation_size = 0;
1274         uint32 len;
1275         struct timespec mdate_ts, adate_ts, create_date_ts;
1276         time_t mdate = (time_t)0, adate = (time_t)0, create_date = (time_t)0;
1277         char *nameptr;
1278         char *last_entry_ptr;
1279         bool was_8_3;
1280         uint32 nt_extmode; /* Used for NT connections instead of mode */
1281         bool needslash = ( conn->dirpath[strlen(conn->dirpath) -1] != '/');
1282         bool check_mangled_names = lp_manglednames(conn->params);
1283         char mangled_name[13]; /* mangled 8.3 name. */
1284
1285         *out_of_space = False;
1286         *got_exact_match = False;
1287
1288         ZERO_STRUCT(mdate_ts);
1289         ZERO_STRUCT(adate_ts);
1290         ZERO_STRUCT(create_date_ts);
1291
1292         if (!conn->dirptr) {
1293                 return(False);
1294         }
1295
1296         p = strrchr_m(path_mask,'/');
1297         if(p != NULL) {
1298                 if(p[1] == '\0') {
1299                         mask = talloc_strdup(ctx,"*.*");
1300                 } else {
1301                         mask = p+1;
1302                 }
1303         } else {
1304                 mask = path_mask;
1305         }
1306
1307         while (!found) {
1308                 bool got_match;
1309                 bool ms_dfs_link = False;
1310
1311                 /* Needed if we run out of space */
1312                 long curr_dirpos = prev_dirpos = dptr_TellDir(conn->dirptr);
1313                 dname = dptr_ReadDirName(ctx,conn->dirptr,&curr_dirpos,&sbuf);
1314
1315                 /*
1316                  * Due to bugs in NT client redirectors we are not using
1317                  * resume keys any more - set them to zero.
1318                  * Check out the related comments in findfirst/findnext.
1319                  * JRA.
1320                  */
1321
1322                 reskey = 0;
1323
1324                 DEBUG(8,("get_lanman2_dir_entry:readdir on dirptr 0x%lx now at offset %ld\n",
1325                         (long)conn->dirptr,curr_dirpos));
1326
1327                 if (!dname) {
1328                         return(False);
1329                 }
1330
1331                 /*
1332                  * fname may get mangled, dname is never mangled.
1333                  * Whenever we're accessing the filesystem we use
1334                  * pathreal which is composed from dname.
1335                  */
1336
1337                 pathreal = NULL;
1338                 fname = dname;
1339
1340                 /* Mangle fname if it's an illegal name. */
1341                 if (mangle_must_mangle(dname,conn->params)) {
1342                         if (!name_to_8_3(dname,mangled_name,True,conn->params)) {
1343                                 continue; /* Error - couldn't mangle. */
1344                         }
1345                         fname = mangled_name;
1346                 }
1347
1348                 if(!(got_match = *got_exact_match = exact_match(conn, fname, mask))) {
1349                         got_match = mask_match(fname, mask, conn->case_sensitive);
1350                 }
1351
1352                 if(!got_match && check_mangled_names &&
1353                    !mangle_is_8_3(fname, False, conn->params)) {
1354                         /*
1355                          * It turns out that NT matches wildcards against
1356                          * both long *and* short names. This may explain some
1357                          * of the wildcard wierdness from old DOS clients
1358                          * that some people have been seeing.... JRA.
1359                          */
1360                         /* Force the mangling into 8.3. */
1361                         if (!name_to_8_3( fname, mangled_name, False, conn->params)) {
1362                                 continue; /* Error - couldn't mangle. */
1363                         }
1364
1365                         if(!(got_match = *got_exact_match = exact_match(conn, mangled_name, mask))) {
1366                                 got_match = mask_match(mangled_name, mask, conn->case_sensitive);
1367                         }
1368                 }
1369
1370                 if (got_match) {
1371                         bool isdots = (ISDOT(dname) || ISDOTDOT(dname));
1372
1373                         if (dont_descend && !isdots) {
1374                                 continue;
1375                         }
1376
1377                         if (needslash) {
1378                                 pathreal = NULL;
1379                                 pathreal = talloc_asprintf(ctx,
1380                                         "%s/%s",
1381                                         conn->dirpath,
1382                                         dname);
1383                         } else {
1384                                 pathreal = talloc_asprintf(ctx,
1385                                         "%s%s",
1386                                         conn->dirpath,
1387                                         dname);
1388                         }
1389
1390                         if (!pathreal) {
1391                                 return False;
1392                         }
1393
1394                         if (INFO_LEVEL_IS_UNIX(info_level)) {
1395                                 if (SMB_VFS_LSTAT(conn,pathreal,&sbuf) != 0) {
1396                                         DEBUG(5,("get_lanman2_dir_entry:Couldn't lstat [%s] (%s)\n",
1397                                                 pathreal,strerror(errno)));
1398                                         TALLOC_FREE(pathreal);
1399                                         continue;
1400                                 }
1401                         } else if (!VALID_STAT(sbuf) && SMB_VFS_STAT(conn,pathreal,&sbuf) != 0) {
1402                                 /* Needed to show the msdfs symlinks as
1403                                  * directories */
1404
1405                                 ms_dfs_link = check_msdfs_link(conn, pathreal, &sbuf);
1406                                 if (!ms_dfs_link) {
1407                                         DEBUG(5,("get_lanman2_dir_entry:Couldn't stat [%s] (%s)\n",
1408                                                 pathreal,strerror(errno)));
1409                                         TALLOC_FREE(pathreal);
1410                                         continue;
1411                                 }
1412                         }
1413
1414                         if (ms_dfs_link) {
1415                                 mode = dos_mode_msdfs(conn,pathreal,&sbuf);
1416                         } else {
1417                                 mode = dos_mode(conn,pathreal,&sbuf);
1418                         }
1419
1420                         if (!dir_check_ftype(conn,mode,dirtype)) {
1421                                 DEBUG(5,("get_lanman2_dir_entry: [%s] attribs didn't match %x\n",fname,dirtype));
1422                                 TALLOC_FREE(pathreal);
1423                                 continue;
1424                         }
1425
1426                         if (!(mode & aDIR)) {
1427                                 file_size = get_file_size(sbuf);
1428                         }
1429                         allocation_size = get_allocation_size(conn,NULL,&sbuf);
1430
1431                         mdate_ts = get_mtimespec(&sbuf);
1432                         adate_ts = get_atimespec(&sbuf);
1433                         create_date_ts = get_create_timespec(&sbuf,lp_fake_dir_create_times(SNUM(conn)));
1434
1435                         if (ask_sharemode) {
1436                                 struct timespec write_time_ts;
1437                                 struct file_id fileid;
1438
1439                                 fileid = vfs_file_id_from_sbuf(conn, &sbuf);
1440                                 get_file_infos(fileid, NULL, &write_time_ts);
1441                                 if (!null_timespec(write_time_ts)) {
1442                                         mdate_ts = write_time_ts;
1443                                 }
1444                         }
1445
1446                         if (lp_dos_filetime_resolution(SNUM(conn))) {
1447                                 dos_filetime_timespec(&create_date_ts);
1448                                 dos_filetime_timespec(&mdate_ts);
1449                                 dos_filetime_timespec(&adate_ts);
1450                         }
1451
1452                         create_date = convert_timespec_to_time_t(create_date_ts);
1453                         mdate = convert_timespec_to_time_t(mdate_ts);
1454                         adate = convert_timespec_to_time_t(adate_ts);
1455
1456                         DEBUG(5,("get_lanman2_dir_entry: found %s fname=%s\n",pathreal,fname));
1457
1458                         found = True;
1459
1460                         dptr_DirCacheAdd(conn->dirptr, dname, curr_dirpos);
1461                 }
1462         }
1463
1464         p = pdata;
1465         last_entry_ptr = p;
1466
1467         nt_extmode = mode ? mode : FILE_ATTRIBUTE_NORMAL;
1468
1469         switch (info_level) {
1470                 case SMB_FIND_INFO_STANDARD:
1471                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_INFO_STANDARD\n"));
1472                         if(requires_resume_key) {
1473                                 SIVAL(p,0,reskey);
1474                                 p += 4;
1475                         }
1476                         srv_put_dos_date2(p,0,create_date);
1477                         srv_put_dos_date2(p,4,adate);
1478                         srv_put_dos_date2(p,8,mdate);
1479                         SIVAL(p,12,(uint32)file_size);
1480                         SIVAL(p,16,(uint32)allocation_size);
1481                         SSVAL(p,20,mode);
1482                         p += 23;
1483                         nameptr = p;
1484                         if (flags2 & FLAGS2_UNICODE_STRINGS) {
1485                                 p += ucs2_align(base_data, p, 0);
1486                         }
1487                         len = srvstr_push(base_data, flags2, p,
1488                                           fname, PTR_DIFF(end_data, p),
1489                                           STR_TERMINATE);
1490                         if (flags2 & FLAGS2_UNICODE_STRINGS) {
1491                                 if (len > 2) {
1492                                         SCVAL(nameptr, -1, len - 2);
1493                                 } else {
1494                                         SCVAL(nameptr, -1, 0);
1495                                 }
1496                         } else {
1497                                 if (len > 1) {
1498                                         SCVAL(nameptr, -1, len - 1);
1499                                 } else {
1500                                         SCVAL(nameptr, -1, 0);
1501                                 }
1502                         }
1503                         p += len;
1504                         break;
1505
1506                 case SMB_FIND_EA_SIZE:
1507                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_EA_SIZE\n"));
1508                         if(requires_resume_key) {
1509                                 SIVAL(p,0,reskey);
1510                                 p += 4;
1511                         }
1512                         srv_put_dos_date2(p,0,create_date);
1513                         srv_put_dos_date2(p,4,adate);
1514                         srv_put_dos_date2(p,8,mdate);
1515                         SIVAL(p,12,(uint32)file_size);
1516                         SIVAL(p,16,(uint32)allocation_size);
1517                         SSVAL(p,20,mode);
1518                         {
1519                                 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1520                                 SIVAL(p,22,ea_size); /* Extended attributes */
1521                         }
1522                         p += 27;
1523                         nameptr = p - 1;
1524                         len = srvstr_push(base_data, flags2,
1525                                           p, fname, PTR_DIFF(end_data, p),
1526                                           STR_TERMINATE | STR_NOALIGN);
1527                         if (flags2 & FLAGS2_UNICODE_STRINGS) {
1528                                 if (len > 2) {
1529                                         len -= 2;
1530                                 } else {
1531                                         len = 0;
1532                                 }
1533                         } else {
1534                                 if (len > 1) {
1535                                         len -= 1;
1536                                 } else {
1537                                         len = 0;
1538                                 }
1539                         }
1540                         SCVAL(nameptr,0,len);
1541                         p += len;
1542                         SCVAL(p,0,0); p += 1; /* Extra zero byte ? - why.. */
1543                         break;
1544
1545                 case SMB_FIND_EA_LIST:
1546                 {
1547                         struct ea_list *file_list = NULL;
1548                         size_t ea_len = 0;
1549
1550                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_EA_LIST\n"));
1551                         if (!name_list) {
1552                                 return False;
1553                         }
1554                         if(requires_resume_key) {
1555                                 SIVAL(p,0,reskey);
1556                                 p += 4;
1557                         }
1558                         srv_put_dos_date2(p,0,create_date);
1559                         srv_put_dos_date2(p,4,adate);
1560                         srv_put_dos_date2(p,8,mdate);
1561                         SIVAL(p,12,(uint32)file_size);
1562                         SIVAL(p,16,(uint32)allocation_size);
1563                         SSVAL(p,20,mode);
1564                         p += 22; /* p now points to the EA area. */
1565
1566                         file_list = get_ea_list_from_file(ctx, conn, NULL, pathreal, &ea_len);
1567                         name_list = ea_list_union(name_list, file_list, &ea_len);
1568
1569                         /* We need to determine if this entry will fit in the space available. */
1570                         /* Max string size is 255 bytes. */
1571                         if (PTR_DIFF(p + 255 + ea_len,pdata) > space_remaining) {
1572                                 /* Move the dirptr back to prev_dirpos */
1573                                 dptr_SeekDir(conn->dirptr, prev_dirpos);
1574                                 *out_of_space = True;
1575                                 DEBUG(9,("get_lanman2_dir_entry: out of space\n"));
1576                                 return False; /* Not finished - just out of space */
1577                         }
1578
1579                         /* Push the ea_data followed by the name. */
1580                         p += fill_ea_buffer(ctx, p, space_remaining, conn, name_list);
1581                         nameptr = p;
1582                         len = srvstr_push(base_data, flags2,
1583                                           p + 1, fname, PTR_DIFF(end_data, p+1),
1584                                           STR_TERMINATE | STR_NOALIGN);
1585                         if (flags2 & FLAGS2_UNICODE_STRINGS) {
1586                                 if (len > 2) {
1587                                         len -= 2;
1588                                 } else {
1589                                         len = 0;
1590                                 }
1591                         } else {
1592                                 if (len > 1) {
1593                                         len -= 1;
1594                                 } else {
1595                                         len = 0;
1596                                 }
1597                         }
1598                         SCVAL(nameptr,0,len);
1599                         p += len + 1;
1600                         SCVAL(p,0,0); p += 1; /* Extra zero byte ? - why.. */
1601                         break;
1602                 }
1603
1604                 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
1605                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_BOTH_DIRECTORY_INFO\n"));
1606                         was_8_3 = mangle_is_8_3(fname, True, conn->params);
1607                         p += 4;
1608                         SIVAL(p,0,reskey); p += 4;
1609                         put_long_date_timespec(p,create_date_ts); p += 8;
1610                         put_long_date_timespec(p,adate_ts); p += 8;
1611                         put_long_date_timespec(p,mdate_ts); p += 8;
1612                         put_long_date_timespec(p,mdate_ts); p += 8;
1613                         SOFF_T(p,0,file_size); p += 8;
1614                         SOFF_T(p,0,allocation_size); p += 8;
1615                         SIVAL(p,0,nt_extmode); p += 4;
1616                         q = p; p += 4; /* q is placeholder for name length. */
1617                         {
1618                                 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1619                                 SIVAL(p,0,ea_size); /* Extended attributes */
1620                                 p += 4;
1621                         }
1622                         /* Clear the short name buffer. This is
1623                          * IMPORTANT as not doing so will trigger
1624                          * a Win2k client bug. JRA.
1625                          */
1626                         if (!was_8_3 && check_mangled_names) {
1627                                 if (!name_to_8_3(fname,mangled_name,True,
1628                                                    conn->params)) {
1629                                         /* Error - mangle failed ! */
1630                                         memset(mangled_name,'\0',12);
1631                                 }
1632                                 mangled_name[12] = 0;
1633                                 len = srvstr_push(base_data, flags2,
1634                                                   p+2, mangled_name, 24,
1635                                                   STR_UPPER|STR_UNICODE);
1636                                 if (len < 24) {
1637                                         memset(p + 2 + len,'\0',24 - len);
1638                                 }
1639                                 SSVAL(p, 0, len);
1640                         } else {
1641                                 memset(p,'\0',26);
1642                         }
1643                         p += 2 + 24;
1644                         len = srvstr_push(base_data, flags2, p,
1645                                           fname, PTR_DIFF(end_data, p),
1646                                           STR_TERMINATE_ASCII);
1647                         SIVAL(q,0,len);
1648                         p += len;
1649                         SIVAL(p,0,0); /* Ensure any padding is null. */
1650                         len = PTR_DIFF(p, pdata);
1651                         len = (len + 3) & ~3;
1652                         SIVAL(pdata,0,len);
1653                         p = pdata + len;
1654                         break;
1655
1656                 case SMB_FIND_FILE_DIRECTORY_INFO:
1657                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_DIRECTORY_INFO\n"));
1658                         p += 4;
1659                         SIVAL(p,0,reskey); p += 4;
1660                         put_long_date_timespec(p,create_date_ts); p += 8;
1661                         put_long_date_timespec(p,adate_ts); p += 8;
1662                         put_long_date_timespec(p,mdate_ts); p += 8;
1663                         put_long_date_timespec(p,mdate_ts); p += 8;
1664                         SOFF_T(p,0,file_size); p += 8;
1665                         SOFF_T(p,0,allocation_size); p += 8;
1666                         SIVAL(p,0,nt_extmode); p += 4;
1667                         len = srvstr_push(base_data, flags2,
1668                                           p + 4, fname, PTR_DIFF(end_data, p+4),
1669                                           STR_TERMINATE_ASCII);
1670                         SIVAL(p,0,len);
1671                         p += 4 + len;
1672                         SIVAL(p,0,0); /* Ensure any padding is null. */
1673                         len = PTR_DIFF(p, pdata);
1674                         len = (len + 3) & ~3;
1675                         SIVAL(pdata,0,len);
1676                         p = pdata + len;
1677                         break;
1678
1679                 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
1680                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_FULL_DIRECTORY_INFO\n"));
1681                         p += 4;
1682                         SIVAL(p,0,reskey); p += 4;
1683                         put_long_date_timespec(p,create_date_ts); p += 8;
1684                         put_long_date_timespec(p,adate_ts); p += 8;
1685                         put_long_date_timespec(p,mdate_ts); p += 8;
1686                         put_long_date_timespec(p,mdate_ts); p += 8;
1687                         SOFF_T(p,0,file_size); p += 8;
1688                         SOFF_T(p,0,allocation_size); p += 8;
1689                         SIVAL(p,0,nt_extmode); p += 4;
1690                         q = p; p += 4; /* q is placeholder for name length. */
1691                         {
1692                                 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1693                                 SIVAL(p,0,ea_size); /* Extended attributes */
1694                                 p +=4;
1695                         }
1696                         len = srvstr_push(base_data, flags2, p,
1697                                           fname, PTR_DIFF(end_data, p),
1698                                           STR_TERMINATE_ASCII);
1699                         SIVAL(q, 0, len);
1700                         p += len;
1701
1702                         SIVAL(p,0,0); /* Ensure any padding is null. */
1703                         len = PTR_DIFF(p, pdata);
1704                         len = (len + 3) & ~3;
1705                         SIVAL(pdata,0,len);
1706                         p = pdata + len;
1707                         break;
1708
1709                 case SMB_FIND_FILE_NAMES_INFO:
1710                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_NAMES_INFO\n"));
1711                         p += 4;
1712                         SIVAL(p,0,reskey); p += 4;
1713                         p += 4;
1714                         /* this must *not* be null terminated or w2k gets in a loop trying to set an
1715                            acl on a dir (tridge) */
1716                         len = srvstr_push(base_data, flags2, p,
1717                                           fname, PTR_DIFF(end_data, p),
1718                                           STR_TERMINATE_ASCII);
1719                         SIVAL(p, -4, len);
1720                         p += len;
1721                         SIVAL(p,0,0); /* Ensure any padding is null. */
1722                         len = PTR_DIFF(p, pdata);
1723                         len = (len + 3) & ~3;
1724                         SIVAL(pdata,0,len);
1725                         p = pdata + len;
1726                         break;
1727
1728                 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
1729                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_ID_FULL_DIRECTORY_INFO\n"));
1730                         p += 4;
1731                         SIVAL(p,0,reskey); p += 4;
1732                         put_long_date_timespec(p,create_date_ts); p += 8;
1733                         put_long_date_timespec(p,adate_ts); p += 8;
1734                         put_long_date_timespec(p,mdate_ts); p += 8;
1735                         put_long_date_timespec(p,mdate_ts); p += 8;
1736                         SOFF_T(p,0,file_size); p += 8;
1737                         SOFF_T(p,0,allocation_size); p += 8;
1738                         SIVAL(p,0,nt_extmode); p += 4;
1739                         q = p; p += 4; /* q is placeholder for name length. */
1740                         {
1741                                 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1742                                 SIVAL(p,0,ea_size); /* Extended attributes */
1743                                 p +=4;
1744                         }
1745                         SIVAL(p,0,0); p += 4; /* Unknown - reserved ? */
1746                         SIVAL(p,0,sbuf.st_ino); p += 4; /* FileIndexLow */
1747                         SIVAL(p,0,sbuf.st_dev); p += 4; /* FileIndexHigh */
1748                         len = srvstr_push(base_data, flags2, p,
1749                                           fname, PTR_DIFF(end_data, p),
1750                                           STR_TERMINATE_ASCII);
1751                         SIVAL(q, 0, len);
1752                         p += len; 
1753                         SIVAL(p,0,0); /* Ensure any padding is null. */
1754                         len = PTR_DIFF(p, pdata);
1755                         len = (len + 3) & ~3;
1756                         SIVAL(pdata,0,len);
1757                         p = pdata + len;
1758                         break;
1759
1760                 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
1761                         DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_ID_BOTH_DIRECTORY_INFO\n"));
1762                         was_8_3 = mangle_is_8_3(fname, True, conn->params);
1763                         p += 4;
1764                         SIVAL(p,0,reskey); p += 4;
1765                         put_long_date_timespec(p,create_date_ts); p += 8;
1766                         put_long_date_timespec(p,adate_ts); p += 8;
1767                         put_long_date_timespec(p,mdate_ts); p += 8;
1768                         put_long_date_timespec(p,mdate_ts); p += 8;
1769                         SOFF_T(p,0,file_size); p += 8;
1770                         SOFF_T(p,0,allocation_size); p += 8;
1771                         SIVAL(p,0,nt_extmode); p += 4;
1772                         q = p; p += 4; /* q is placeholder for name length */
1773                         {
1774                                 unsigned int ea_size = estimate_ea_size(conn, NULL, pathreal);
1775                                 SIVAL(p,0,ea_size); /* Extended attributes */
1776                                 p +=4;
1777                         }
1778                         /* Clear the short name buffer. This is
1779                          * IMPORTANT as not doing so will trigger
1780                          * a Win2k client bug. JRA.
1781                          */
1782                         if (!was_8_3 && check_mangled_names) {
1783                                 if (!name_to_8_3(fname,mangled_name,True,
1784                                                 conn->params)) {
1785                                         /* Error - mangle failed ! */
1786                                         memset(mangled_name,'\0',12);
1787                                 }
1788                                 mangled_name[12] = 0;
1789                                 len = srvstr_push(base_data, flags2,
1790                                                   p+2, mangled_name, 24,
1791                                                   STR_UPPER|STR_UNICODE);
1792                                 SSVAL(p, 0, len);
1793                                 if (len < 24) {
1794                                         memset(p + 2 + len,'\0',24 - len);
1795                                 }
1796                                 SSVAL(p, 0, len);
1797                         } else {
1798                                 memset(p,'\0',26);
1799                         }
1800                         p += 26;
1801                         SSVAL(p,0,0); p += 2; /* Reserved ? */
1802                         SIVAL(p,0,sbuf.st_ino); p += 4; /* FileIndexLow */
1803                         SIVAL(p,0,sbuf.st_dev); p += 4; /* FileIndexHigh */
1804                         len = srvstr_push(base_data, flags2, p,
1805                                           fname, PTR_DIFF(end_data, p),
1806                                           STR_TERMINATE_ASCII);
1807                         SIVAL(q,0,len);
1808                         p += len;
1809                         SIVAL(p,0,0); /* Ensure any padding is null. */
1810                         len = PTR_DIFF(p, pdata);
1811                         len = (len + 3) & ~3;
1812                         SIVAL(pdata,0,len);
1813                         p = pdata + len;
1814                         break;
1815
1816                 /* CIFS UNIX Extension. */
1817
1818                 case SMB_FIND_FILE_UNIX:
1819                 case SMB_FIND_FILE_UNIX_INFO2:
1820                         p+= 4;
1821                         SIVAL(p,0,reskey); p+= 4;    /* Used for continuing search. */
1822
1823                         /* Begin of SMB_QUERY_FILE_UNIX_BASIC */
1824
1825                         if (info_level == SMB_FIND_FILE_UNIX) {
1826                                 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_UNIX\n"));
1827                                 p = store_file_unix_basic(conn, p,
1828                                                         NULL, &sbuf);
1829                                 len = srvstr_push(base_data, flags2, p,
1830                                                   fname, PTR_DIFF(end_data, p),
1831                                                   STR_TERMINATE);
1832                         } else {
1833                                 DEBUG(10,("get_lanman2_dir_entry: SMB_FIND_FILE_UNIX_INFO2\n"));
1834                                 p = store_file_unix_basic_info2(conn, p,
1835                                                         NULL, &sbuf);
1836                                 nameptr = p;
1837                                 p += 4;
1838                                 len = srvstr_push(base_data, flags2, p, fname,
1839                                                   PTR_DIFF(end_data, p), 0);
1840                                 SIVAL(nameptr, 0, len);
1841                         }
1842
1843                         p += len;
1844                         SIVAL(p,0,0); /* Ensure any padding is null. */
1845
1846                         len = PTR_DIFF(p, pdata);
1847                         len = (len + 3) & ~3;
1848                         SIVAL(pdata,0,len);     /* Offset from this structure to the beginning of the next one */
1849                         p = pdata + len;
1850                         /* End of SMB_QUERY_FILE_UNIX_BASIC */
1851
1852                         break;
1853
1854                 default:
1855                         return(False);
1856         }
1857
1858
1859         if (PTR_DIFF(p,pdata) > space_remaining) {
1860                 /* Move the dirptr back to prev_dirpos */
1861                 dptr_SeekDir(conn->dirptr, prev_dirpos);
1862                 *out_of_space = True;
1863                 DEBUG(9,("get_lanman2_dir_entry: out of space\n"));
1864                 return False; /* Not finished - just out of space */
1865         }
1866
1867         /* Setup the last entry pointer, as an offset from base_data */
1868         *last_entry_off = PTR_DIFF(last_entry_ptr,base_data);
1869         /* Advance the data pointer to the next slot */
1870         *ppdata = p;
1871
1872         return(found);
1873 }
1874
1875 /****************************************************************************
1876  Reply to a TRANS2_FINDFIRST.
1877 ****************************************************************************/
1878
1879 static void call_trans2findfirst(connection_struct *conn,
1880                                  struct smb_request *req,
1881                                  char **pparams, int total_params,
1882                                  char **ppdata, int total_data,
1883                                  unsigned int max_data_bytes)
1884 {
1885         /* We must be careful here that we don't return more than the
1886                 allowed number of data bytes. If this means returning fewer than
1887                 maxentries then so be it. We assume that the redirector has
1888                 enough room for the fixed number of parameter bytes it has
1889                 requested. */
1890         char *params = *pparams;
1891         char *pdata = *ppdata;
1892         char *data_end;
1893         uint32 dirtype;
1894         int maxentries;
1895         uint16 findfirst_flags;
1896         bool close_after_first;
1897         bool close_if_end;
1898         bool requires_resume_key;
1899         int info_level;
1900         char *directory = NULL;
1901         char *mask = NULL;
1902         char *p;
1903         int last_entry_off=0;
1904         int dptr_num = -1;
1905         int numentries = 0;
1906         int i;
1907         bool finished = False;
1908         bool dont_descend = False;
1909         bool out_of_space = False;
1910         int space_remaining;
1911         bool mask_contains_wcard = False;
1912         SMB_STRUCT_STAT sbuf;
1913         struct ea_list *ea_list = NULL;
1914         NTSTATUS ntstatus = NT_STATUS_OK;
1915         bool ask_sharemode = lp_parm_bool(SNUM(conn), "smbd", "search ask sharemode", true);
1916         TALLOC_CTX *ctx = talloc_tos();
1917
1918         if (total_params < 13) {
1919                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
1920                 return;
1921         }
1922
1923         dirtype = SVAL(params,0);
1924         maxentries = SVAL(params,2);
1925         findfirst_flags = SVAL(params,4);
1926         close_after_first = (findfirst_flags & FLAG_TRANS2_FIND_CLOSE);
1927         close_if_end = (findfirst_flags & FLAG_TRANS2_FIND_CLOSE_IF_END);
1928         requires_resume_key = (findfirst_flags & FLAG_TRANS2_FIND_REQUIRE_RESUME);
1929         info_level = SVAL(params,6);
1930
1931         DEBUG(3,("call_trans2findfirst: dirtype = %x, maxentries = %d, close_after_first=%d, \
1932 close_if_end = %d requires_resume_key = %d level = 0x%x, max_data_bytes = %d\n",
1933                 (unsigned int)dirtype, maxentries, close_after_first, close_if_end, requires_resume_key,
1934                 info_level, max_data_bytes));
1935
1936         if (!maxentries) {
1937                 /* W2K3 seems to treat zero as 1. */
1938                 maxentries = 1;
1939         }
1940  
1941         switch (info_level) {
1942                 case SMB_FIND_INFO_STANDARD:
1943                 case SMB_FIND_EA_SIZE:
1944                 case SMB_FIND_EA_LIST:
1945                 case SMB_FIND_FILE_DIRECTORY_INFO:
1946                 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
1947                 case SMB_FIND_FILE_NAMES_INFO:
1948                 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
1949                 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
1950                 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
1951                         break;
1952                 case SMB_FIND_FILE_UNIX:
1953                 case SMB_FIND_FILE_UNIX_INFO2:
1954                         /* Always use filesystem for UNIX mtime query. */
1955                         ask_sharemode = false;
1956                         if (!lp_unix_extensions()) {
1957                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
1958                                 return;
1959                         }
1960                         break;
1961                 default:
1962                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
1963                         return;
1964         }
1965
1966         srvstr_get_path_wcard(ctx, params, req->flags2, &directory,
1967                               params+12, total_params - 12,
1968                               STR_TERMINATE, &ntstatus, &mask_contains_wcard);
1969         if (!NT_STATUS_IS_OK(ntstatus)) {
1970                 reply_nterror(req, ntstatus);
1971                 return;
1972         }
1973
1974         ntstatus = resolve_dfspath_wcard(ctx, conn,
1975                         req->flags2 & FLAGS2_DFS_PATHNAMES,
1976                         directory,
1977                         &directory,
1978                         &mask_contains_wcard);
1979         if (!NT_STATUS_IS_OK(ntstatus)) {
1980                 if (NT_STATUS_EQUAL(ntstatus,NT_STATUS_PATH_NOT_COVERED)) {
1981                         reply_botherror(req, NT_STATUS_PATH_NOT_COVERED,
1982                                         ERRSRV, ERRbadpath);
1983                         return;
1984                 }
1985                 reply_nterror(req, ntstatus);
1986                 return;
1987         }
1988
1989         ntstatus = unix_convert(ctx, conn, directory, True, &directory, &mask, &sbuf);
1990         if (!NT_STATUS_IS_OK(ntstatus)) {
1991                 reply_nterror(req, ntstatus);
1992                 return;
1993         }
1994
1995         ntstatus = check_name(conn, directory);
1996         if (!NT_STATUS_IS_OK(ntstatus)) {
1997                 reply_nterror(req, ntstatus);
1998                 return;
1999         }
2000
2001         p = strrchr_m(directory,'/');
2002         if(p == NULL) {
2003                 /* Windows and OS/2 systems treat search on the root '\' as if it were '\*' */
2004                 if((directory[0] == '.') && (directory[1] == '\0')) {
2005                         mask = talloc_strdup(ctx,"*");
2006                         if (!mask) {
2007                                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2008                                 return;
2009                         }
2010                         mask_contains_wcard = True;
2011                 }
2012                 directory = talloc_strdup(talloc_tos(), "./");
2013                 if (!directory) {
2014                         reply_nterror(req, NT_STATUS_NO_MEMORY);
2015                         return;
2016                 }
2017         } else {
2018                 *p = 0;
2019         }
2020
2021         DEBUG(5,("dir=%s, mask = %s\n",directory, mask));
2022
2023         if (info_level == SMB_FIND_EA_LIST) {
2024                 uint32 ea_size;
2025
2026                 if (total_data < 4) {
2027                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2028                         return;
2029                 }
2030
2031                 ea_size = IVAL(pdata,0);
2032                 if (ea_size != total_data) {
2033                         DEBUG(4,("call_trans2findfirst: Rejecting EA request with incorrect \
2034 total_data=%u (should be %u)\n", (unsigned int)total_data, (unsigned int)IVAL(pdata,0) ));
2035                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2036                         return;
2037                 }
2038
2039                 if (!lp_ea_support(SNUM(conn))) {
2040                         reply_doserror(req, ERRDOS, ERReasnotsupported);
2041                         return;
2042                 }
2043
2044                 /* Pull out the list of names. */
2045                 ea_list = read_ea_name_list(ctx, pdata + 4, ea_size - 4);
2046                 if (!ea_list) {
2047                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2048                         return;
2049                 }
2050         }
2051
2052         *ppdata = (char *)SMB_REALLOC(
2053                 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2054         if(*ppdata == NULL ) {
2055                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2056                 return;
2057         }
2058         pdata = *ppdata;
2059         data_end = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2060
2061         /* Realloc the params space */
2062         *pparams = (char *)SMB_REALLOC(*pparams, 10);
2063         if (*pparams == NULL) {
2064                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2065                 return;
2066         }
2067         params = *pparams;
2068
2069         /* Save the wildcard match and attribs we are using on this directory - 
2070                 needed as lanman2 assumes these are being saved between calls */
2071
2072         ntstatus = dptr_create(conn,
2073                                 directory,
2074                                 False,
2075                                 True,
2076                                 req->smbpid,
2077                                 mask,
2078                                 mask_contains_wcard,
2079                                 dirtype,
2080                                 &conn->dirptr);
2081
2082         if (!NT_STATUS_IS_OK(ntstatus)) {
2083                 reply_nterror(req, ntstatus);
2084                 return;
2085         }
2086
2087         dptr_num = dptr_dnum(conn->dirptr);
2088         DEBUG(4,("dptr_num is %d, wcard = %s, attr = %d\n", dptr_num, mask, dirtype));
2089
2090         /* We don't need to check for VOL here as this is returned by
2091                 a different TRANS2 call. */
2092
2093         DEBUG(8,("dirpath=<%s> dontdescend=<%s>\n", conn->dirpath,lp_dontdescend(SNUM(conn))));
2094         if (in_list(conn->dirpath,lp_dontdescend(SNUM(conn)),conn->case_sensitive))
2095                 dont_descend = True;
2096
2097         p = pdata;
2098         space_remaining = max_data_bytes;
2099         out_of_space = False;
2100
2101         for (i=0;(i<maxentries) && !finished && !out_of_space;i++) {
2102                 bool got_exact_match = False;
2103
2104                 /* this is a heuristic to avoid seeking the dirptr except when 
2105                         absolutely necessary. It allows for a filename of about 40 chars */
2106                 if (space_remaining < DIRLEN_GUESS && numentries > 0) {
2107                         out_of_space = True;
2108                         finished = False;
2109                 } else {
2110                         finished = !get_lanman2_dir_entry(ctx,
2111                                         conn,
2112                                         req->flags2,
2113                                         mask,dirtype,info_level,
2114                                         requires_resume_key,dont_descend,
2115                                         ask_sharemode,
2116                                         &p,pdata,data_end,
2117                                         space_remaining, &out_of_space,
2118                                         &got_exact_match,
2119                                         &last_entry_off, ea_list);
2120                 }
2121
2122                 if (finished && out_of_space)
2123                         finished = False;
2124
2125                 if (!finished && !out_of_space)
2126                         numentries++;
2127
2128                 /*
2129                  * As an optimisation if we know we aren't looking
2130                  * for a wildcard name (ie. the name matches the wildcard exactly)
2131                  * then we can finish on any (first) match.
2132                  * This speeds up large directory searches. JRA.
2133                  */
2134
2135                 if(got_exact_match)
2136                         finished = True;
2137
2138                 /* Ensure space_remaining never goes -ve. */
2139                 if (PTR_DIFF(p,pdata) > max_data_bytes) {
2140                         space_remaining = 0;
2141                         out_of_space = true;
2142                 } else {
2143                         space_remaining = max_data_bytes - PTR_DIFF(p,pdata);
2144                 }
2145         }
2146
2147         /* Check if we can close the dirptr */
2148         if(close_after_first || (finished && close_if_end)) {
2149                 DEBUG(5,("call_trans2findfirst - (2) closing dptr_num %d\n", dptr_num));
2150                 dptr_close(&dptr_num);
2151         }
2152
2153         /*
2154          * If there are no matching entries we must return ERRDOS/ERRbadfile -
2155          * from observation of NT. NB. This changes to ERRDOS,ERRnofiles if
2156          * the protocol level is less than NT1. Tested with smbclient. JRA.
2157          * This should fix the OS/2 client bug #2335.
2158          */
2159
2160         if(numentries == 0) {
2161                 dptr_close(&dptr_num);
2162                 if (Protocol < PROTOCOL_NT1) {
2163                         reply_doserror(req, ERRDOS, ERRnofiles);
2164                         return;
2165                 } else {
2166                         reply_botherror(req, NT_STATUS_NO_SUCH_FILE,
2167                                         ERRDOS, ERRbadfile);
2168                         return;
2169                 }
2170         }
2171
2172         /* At this point pdata points to numentries directory entries. */
2173
2174         /* Set up the return parameter block */
2175         SSVAL(params,0,dptr_num);
2176         SSVAL(params,2,numentries);
2177         SSVAL(params,4,finished);
2178         SSVAL(params,6,0); /* Never an EA error */
2179         SSVAL(params,8,last_entry_off);
2180
2181         send_trans2_replies(conn, req, params, 10, pdata, PTR_DIFF(p,pdata),
2182                             max_data_bytes);
2183
2184         if ((! *directory) && dptr_path(dptr_num)) {
2185                 directory = talloc_strdup(talloc_tos(),dptr_path(dptr_num));
2186                 if (!directory) {
2187                         reply_nterror(req, NT_STATUS_NO_MEMORY);
2188                 }
2189         }
2190
2191         DEBUG( 4, ( "%s mask=%s directory=%s dirtype=%d numentries=%d\n",
2192                 smb_fn_name(req->cmd),
2193                 mask, directory, dirtype, numentries ) );
2194
2195         /*
2196          * Force a name mangle here to ensure that the
2197          * mask as an 8.3 name is top of the mangled cache.
2198          * The reasons for this are subtle. Don't remove
2199          * this code unless you know what you are doing
2200          * (see PR#13758). JRA.
2201          */
2202
2203         if(!mangle_is_8_3_wildcards( mask, False, conn->params)) {
2204                 char mangled_name[13];
2205                 name_to_8_3(mask, mangled_name, True, conn->params);
2206         }
2207
2208         return;
2209 }
2210
2211 /****************************************************************************
2212  Reply to a TRANS2_FINDNEXT.
2213 ****************************************************************************/
2214
2215 static void call_trans2findnext(connection_struct *conn,
2216                                 struct smb_request *req,
2217                                 char **pparams, int total_params,
2218                                 char **ppdata, int total_data,
2219                                 unsigned int max_data_bytes)
2220 {
2221         /* We must be careful here that we don't return more than the
2222                 allowed number of data bytes. If this means returning fewer than
2223                 maxentries then so be it. We assume that the redirector has
2224                 enough room for the fixed number of parameter bytes it has
2225                 requested. */
2226         char *params = *pparams;
2227         char *pdata = *ppdata;
2228         char *data_end;
2229         int dptr_num;
2230         int maxentries;
2231         uint16 info_level;
2232         uint32 resume_key;
2233         uint16 findnext_flags;
2234         bool close_after_request;
2235         bool close_if_end;
2236         bool requires_resume_key;
2237         bool continue_bit;
2238         bool mask_contains_wcard = False;
2239         char *resume_name = NULL;
2240         const char *mask = NULL;
2241         const char *directory = NULL;
2242         char *p = NULL;
2243         uint16 dirtype;
2244         int numentries = 0;
2245         int i, last_entry_off=0;
2246         bool finished = False;
2247         bool dont_descend = False;
2248         bool out_of_space = False;
2249         int space_remaining;
2250         struct ea_list *ea_list = NULL;
2251         NTSTATUS ntstatus = NT_STATUS_OK;
2252         bool ask_sharemode = lp_parm_bool(SNUM(conn), "smbd", "search ask sharemode", true);
2253         TALLOC_CTX *ctx = talloc_tos();
2254
2255         if (total_params < 13) {
2256                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2257                 return;
2258         }
2259
2260         dptr_num = SVAL(params,0);
2261         maxentries = SVAL(params,2);
2262         info_level = SVAL(params,4);
2263         resume_key = IVAL(params,6);
2264         findnext_flags = SVAL(params,10);
2265         close_after_request = (findnext_flags & FLAG_TRANS2_FIND_CLOSE);
2266         close_if_end = (findnext_flags & FLAG_TRANS2_FIND_CLOSE_IF_END);
2267         requires_resume_key = (findnext_flags & FLAG_TRANS2_FIND_REQUIRE_RESUME);
2268         continue_bit = (findnext_flags & FLAG_TRANS2_FIND_CONTINUE);
2269
2270         srvstr_get_path_wcard(ctx, params, req->flags2, &resume_name,
2271                               params+12,
2272                               total_params - 12, STR_TERMINATE, &ntstatus,
2273                               &mask_contains_wcard);
2274         if (!NT_STATUS_IS_OK(ntstatus)) {
2275                 /* Win9x or OS/2 can send a resume name of ".." or ".". This will cause the parser to
2276                    complain (it thinks we're asking for the directory above the shared
2277                    path or an invalid name). Catch this as the resume name is only compared, never used in
2278                    a file access. JRA. */
2279                 srvstr_pull_talloc(ctx, params, req->flags2,
2280                                 &resume_name, params+12,
2281                                 total_params - 12,
2282                                 STR_TERMINATE);
2283
2284                 if (!resume_name || !(ISDOT(resume_name) || ISDOTDOT(resume_name))) {
2285                         reply_nterror(req, ntstatus);
2286                         return;
2287                 }
2288         }
2289
2290         DEBUG(3,("call_trans2findnext: dirhandle = %d, max_data_bytes = %d, maxentries = %d, \
2291 close_after_request=%d, close_if_end = %d requires_resume_key = %d \
2292 resume_key = %d resume name = %s continue=%d level = %d\n",
2293                 dptr_num, max_data_bytes, maxentries, close_after_request, close_if_end, 
2294                 requires_resume_key, resume_key, resume_name, continue_bit, info_level));
2295
2296         if (!maxentries) {
2297                 /* W2K3 seems to treat zero as 1. */
2298                 maxentries = 1;
2299         }
2300
2301         switch (info_level) {
2302                 case SMB_FIND_INFO_STANDARD:
2303                 case SMB_FIND_EA_SIZE:
2304                 case SMB_FIND_EA_LIST:
2305                 case SMB_FIND_FILE_DIRECTORY_INFO:
2306                 case SMB_FIND_FILE_FULL_DIRECTORY_INFO:
2307                 case SMB_FIND_FILE_NAMES_INFO:
2308                 case SMB_FIND_FILE_BOTH_DIRECTORY_INFO:
2309                 case SMB_FIND_ID_FULL_DIRECTORY_INFO:
2310                 case SMB_FIND_ID_BOTH_DIRECTORY_INFO:
2311                         break;
2312                 case SMB_FIND_FILE_UNIX:
2313                 case SMB_FIND_FILE_UNIX_INFO2:
2314                         /* Always use filesystem for UNIX mtime query. */
2315                         ask_sharemode = false;
2316                         if (!lp_unix_extensions()) {
2317                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2318                                 return;
2319                         }
2320                         break;
2321                 default:
2322                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2323                         return;
2324         }
2325
2326         if (info_level == SMB_FIND_EA_LIST) {
2327                 uint32 ea_size;
2328
2329                 if (total_data < 4) {
2330                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2331                         return;
2332                 }
2333
2334                 ea_size = IVAL(pdata,0);
2335                 if (ea_size != total_data) {
2336                         DEBUG(4,("call_trans2findnext: Rejecting EA request with incorrect \
2337 total_data=%u (should be %u)\n", (unsigned int)total_data, (unsigned int)IVAL(pdata,0) ));
2338                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2339                         return;
2340                 }
2341
2342                 if (!lp_ea_support(SNUM(conn))) {
2343                         reply_doserror(req, ERRDOS, ERReasnotsupported);
2344                         return;
2345                 }
2346
2347                 /* Pull out the list of names. */
2348                 ea_list = read_ea_name_list(ctx, pdata + 4, ea_size - 4);
2349                 if (!ea_list) {
2350                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2351                         return;
2352                 }
2353         }
2354
2355         *ppdata = (char *)SMB_REALLOC(
2356                 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2357         if(*ppdata == NULL) {
2358                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2359                 return;
2360         }
2361
2362         pdata = *ppdata;
2363         data_end = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2364
2365         /* Realloc the params space */
2366         *pparams = (char *)SMB_REALLOC(*pparams, 6*SIZEOFWORD);
2367         if(*pparams == NULL ) {
2368                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2369                 return;
2370         }
2371
2372         params = *pparams;
2373
2374         /* Check that the dptr is valid */
2375         if(!(conn->dirptr = dptr_fetch_lanman2(dptr_num))) {
2376                 reply_doserror(req, ERRDOS, ERRnofiles);
2377                 return;
2378         }
2379
2380         string_set(&conn->dirpath,dptr_path(dptr_num));
2381
2382         /* Get the wildcard mask from the dptr */
2383         if((p = dptr_wcard(dptr_num))== NULL) {
2384                 DEBUG(2,("dptr_num %d has no wildcard\n", dptr_num));
2385                 reply_doserror(req, ERRDOS, ERRnofiles);
2386                 return;
2387         }
2388
2389         mask = p;
2390         directory = conn->dirpath;
2391
2392         /* Get the attr mask from the dptr */
2393         dirtype = dptr_attr(dptr_num);
2394
2395         DEBUG(3,("dptr_num is %d, mask = %s, attr = %x, dirptr=(0x%lX,%ld)\n",
2396                 dptr_num, mask, dirtype,
2397                 (long)conn->dirptr,
2398                 dptr_TellDir(conn->dirptr)));
2399
2400         /* We don't need to check for VOL here as this is returned by
2401                 a different TRANS2 call. */
2402
2403         DEBUG(8,("dirpath=<%s> dontdescend=<%s>\n",conn->dirpath,lp_dontdescend(SNUM(conn))));
2404         if (in_list(conn->dirpath,lp_dontdescend(SNUM(conn)),conn->case_sensitive))
2405                 dont_descend = True;
2406
2407         p = pdata;
2408         space_remaining = max_data_bytes;
2409         out_of_space = False;
2410
2411         /*
2412          * Seek to the correct position. We no longer use the resume key but
2413          * depend on the last file name instead.
2414          */
2415
2416         if(*resume_name && !continue_bit) {
2417                 SMB_STRUCT_STAT st;
2418
2419                 long current_pos = 0;
2420                 /*
2421                  * Remember, name_to_8_3 is called by
2422                  * get_lanman2_dir_entry(), so the resume name
2423                  * could be mangled. Ensure we check the unmangled name.
2424                  */
2425
2426                 if (mangle_is_mangled(resume_name, conn->params)) {
2427                         char *new_resume_name = NULL;
2428                         mangle_lookup_name_from_8_3(ctx,
2429                                                 resume_name,
2430                                                 &new_resume_name,
2431                                                 conn->params);
2432                         if (new_resume_name) {
2433                                 resume_name = new_resume_name;
2434                         }
2435                 }
2436
2437                 /*
2438                  * Fix for NT redirector problem triggered by resume key indexes
2439                  * changing between directory scans. We now return a resume key of 0
2440                  * and instead look for the filename to continue from (also given
2441                  * to us by NT/95/smbfs/smbclient). If no other scans have been done between the
2442                  * findfirst/findnext (as is usual) then the directory pointer
2443                  * should already be at the correct place.
2444                  */
2445
2446                 finished = !dptr_SearchDir(conn->dirptr, resume_name, &current_pos, &st);
2447         } /* end if resume_name && !continue_bit */
2448
2449         for (i=0;(i<(int)maxentries) && !finished && !out_of_space ;i++) {
2450                 bool got_exact_match = False;
2451
2452                 /* this is a heuristic to avoid seeking the dirptr except when 
2453                         absolutely necessary. It allows for a filename of about 40 chars */
2454                 if (space_remaining < DIRLEN_GUESS && numentries > 0) {
2455                         out_of_space = True;
2456                         finished = False;
2457                 } else {
2458                         finished = !get_lanman2_dir_entry(ctx,
2459                                                 conn,
2460                                                 req->flags2,
2461                                                 mask,dirtype,info_level,
2462                                                 requires_resume_key,dont_descend,
2463                                                 ask_sharemode,
2464                                                 &p,pdata,data_end,
2465                                                 space_remaining, &out_of_space,
2466                                                 &got_exact_match,
2467                                                 &last_entry_off, ea_list);
2468                 }
2469
2470                 if (finished && out_of_space)
2471                         finished = False;
2472
2473                 if (!finished && !out_of_space)
2474                         numentries++;
2475
2476                 /*
2477                  * As an optimisation if we know we aren't looking
2478                  * for a wildcard name (ie. the name matches the wildcard exactly)
2479                  * then we can finish on any (first) match.
2480                  * This speeds up large directory searches. JRA.
2481                  */
2482
2483                 if(got_exact_match)
2484                         finished = True;
2485
2486                 space_remaining = max_data_bytes - PTR_DIFF(p,pdata);
2487         }
2488
2489         DEBUG( 3, ( "%s mask=%s directory=%s dirtype=%d numentries=%d\n",
2490                 smb_fn_name(req->cmd),
2491                 mask, directory, dirtype, numentries ) );
2492
2493         /* Check if we can close the dirptr */
2494         if(close_after_request || (finished && close_if_end)) {
2495                 DEBUG(5,("call_trans2findnext: closing dptr_num = %d\n", dptr_num));
2496                 dptr_close(&dptr_num); /* This frees up the saved mask */
2497         }
2498
2499         /* Set up the return parameter block */
2500         SSVAL(params,0,numentries);
2501         SSVAL(params,2,finished);
2502         SSVAL(params,4,0); /* Never an EA error */
2503         SSVAL(params,6,last_entry_off);
2504
2505         send_trans2_replies(conn, req, params, 8, pdata, PTR_DIFF(p,pdata),
2506                             max_data_bytes);
2507
2508         return;
2509 }
2510
2511 unsigned char *create_volume_objectid(connection_struct *conn, unsigned char objid[16])
2512 {
2513         E_md4hash(lp_servicename(SNUM(conn)),objid);
2514         return objid;
2515 }
2516
2517 static void samba_extended_info_version(struct smb_extended_info *extended_info)
2518 {
2519         SMB_ASSERT(extended_info != NULL);
2520
2521         extended_info->samba_magic = SAMBA_EXTENDED_INFO_MAGIC;
2522         extended_info->samba_version = ((SAMBA_VERSION_MAJOR & 0xff) << 24)
2523                                        | ((SAMBA_VERSION_MINOR & 0xff) << 16)
2524                                        | ((SAMBA_VERSION_RELEASE & 0xff) << 8);
2525 #ifdef SAMBA_VERSION_REVISION
2526         extended_info->samba_version |= (tolower(*SAMBA_VERSION_REVISION) - 'a' + 1) & 0xff;
2527 #endif
2528         extended_info->samba_subversion = 0;
2529 #ifdef SAMBA_VERSION_RC_RELEASE
2530         extended_info->samba_subversion |= (SAMBA_VERSION_RC_RELEASE & 0xff) << 24;
2531 #else
2532 #ifdef SAMBA_VERSION_PRE_RELEASE
2533         extended_info->samba_subversion |= (SAMBA_VERSION_PRE_RELEASE & 0xff) << 16;
2534 #endif
2535 #endif
2536 #ifdef SAMBA_VERSION_VENDOR_PATCH
2537         extended_info->samba_subversion |= (SAMBA_VERSION_VENDOR_PATCH & 0xffff);
2538 #endif
2539         extended_info->samba_gitcommitdate = 0;
2540 #ifdef SAMBA_VERSION_GIT_COMMIT_TIME
2541         unix_to_nt_time(&extended_info->samba_gitcommitdate, SAMBA_VERSION_GIT_COMMIT_TIME);
2542 #endif
2543
2544         memset(extended_info->samba_version_string, 0,
2545                sizeof(extended_info->samba_version_string));
2546
2547         snprintf (extended_info->samba_version_string,
2548                   sizeof(extended_info->samba_version_string),
2549                   "%s", samba_version_string());
2550 }
2551
2552 /****************************************************************************
2553  Reply to a TRANS2_QFSINFO (query filesystem info).
2554 ****************************************************************************/
2555
2556 static void call_trans2qfsinfo(connection_struct *conn,
2557                                struct smb_request *req,
2558                                char **pparams, int total_params,
2559                                char **ppdata, int total_data,
2560                                unsigned int max_data_bytes)
2561 {
2562         char *pdata, *end_data;
2563         char *params = *pparams;
2564         uint16 info_level;
2565         int data_len, len;
2566         SMB_STRUCT_STAT st;
2567         const char *vname = volume_label(SNUM(conn));
2568         int snum = SNUM(conn);
2569         char *fstype = lp_fstype(SNUM(conn));
2570         uint32 additional_flags = 0;
2571         
2572         if (total_params < 2) {
2573                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
2574                 return;
2575         }
2576
2577         info_level = SVAL(params,0);
2578
2579         if (IS_IPC(conn)) {
2580                 if (info_level != SMB_QUERY_CIFS_UNIX_INFO) {
2581                         DEBUG(0,("call_trans2qfsinfo: not an allowed "
2582                                 "info level (0x%x) on IPC$.\n",
2583                                 (unsigned int)info_level));
2584                         reply_nterror(req, NT_STATUS_ACCESS_DENIED);
2585                         return;
2586                 }
2587         }
2588
2589         if (ENCRYPTION_REQUIRED(conn) && !req->encrypted) {
2590                 if (info_level != SMB_QUERY_CIFS_UNIX_INFO) {
2591                         DEBUG(0,("call_trans2qfsinfo: encryption required "
2592                                 "and info level 0x%x sent.\n",
2593                                 (unsigned int)info_level));
2594                         exit_server_cleanly("encryption required "
2595                                 "on connection");
2596                         return;
2597                 }
2598         }
2599
2600         DEBUG(3,("call_trans2qfsinfo: level = %d\n", info_level));
2601
2602         if(SMB_VFS_STAT(conn,".",&st)!=0) {
2603                 DEBUG(2,("call_trans2qfsinfo: stat of . failed (%s)\n", strerror(errno)));
2604                 reply_doserror(req, ERRSRV, ERRinvdevice);
2605                 return;
2606         }
2607
2608         *ppdata = (char *)SMB_REALLOC(
2609                 *ppdata, max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2610         if (*ppdata == NULL ) {
2611                 reply_nterror(req, NT_STATUS_NO_MEMORY);
2612                 return;
2613         }
2614
2615         pdata = *ppdata;
2616         memset((char *)pdata,'\0',max_data_bytes + DIR_ENTRY_SAFETY_MARGIN);
2617         end_data = pdata + max_data_bytes + DIR_ENTRY_SAFETY_MARGIN - 1;
2618
2619         switch (info_level) {
2620                 case SMB_INFO_ALLOCATION:
2621                 {
2622                         uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2623                         data_len = 18;
2624                         if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2625                                 reply_unixerror(req, ERRHRD, ERRgeneral);
2626                                 return;
2627                         }
2628
2629                         block_size = lp_block_size(snum);
2630                         if (bsize < block_size) {
2631                                 uint64_t factor = block_size/bsize;
2632                                 bsize = block_size;
2633                                 dsize /= factor;
2634                                 dfree /= factor;
2635                         }
2636                         if (bsize > block_size) {
2637                                 uint64_t factor = bsize/block_size;
2638                                 bsize = block_size;
2639                                 dsize *= factor;
2640                                 dfree *= factor;
2641                         }
2642                         bytes_per_sector = 512;
2643                         sectors_per_unit = bsize/bytes_per_sector;
2644
2645                         DEBUG(5,("call_trans2qfsinfo : SMB_INFO_ALLOCATION id=%x, bsize=%u, cSectorUnit=%u, \
2646 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)st.st_dev, (unsigned int)bsize, (unsigned int)sectors_per_unit,
2647                                 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2648
2649                         SIVAL(pdata,l1_idFileSystem,st.st_dev);
2650                         SIVAL(pdata,l1_cSectorUnit,sectors_per_unit);
2651                         SIVAL(pdata,l1_cUnit,dsize);
2652                         SIVAL(pdata,l1_cUnitAvail,dfree);
2653                         SSVAL(pdata,l1_cbSector,bytes_per_sector);
2654                         break;
2655                 }
2656
2657                 case SMB_INFO_VOLUME:
2658                         /* Return volume name */
2659                         /* 
2660                          * Add volume serial number - hash of a combination of
2661                          * the called hostname and the service name.
2662                          */
2663                         SIVAL(pdata,0,str_checksum(lp_servicename(snum)) ^ (str_checksum(get_local_machine_name())<<16) );
2664                         /*
2665                          * Win2k3 and previous mess this up by sending a name length
2666                          * one byte short. I believe only older clients (OS/2 Win9x) use
2667                          * this call so try fixing this by adding a terminating null to
2668                          * the pushed string. The change here was adding the STR_TERMINATE. JRA.
2669                          */
2670                         len = srvstr_push(
2671                                 pdata, req->flags2,
2672                                 pdata+l2_vol_szVolLabel, vname,
2673                                 PTR_DIFF(end_data, pdata+l2_vol_szVolLabel),
2674                                 STR_NOALIGN|STR_TERMINATE);
2675                         SCVAL(pdata,l2_vol_cch,len);
2676                         data_len = l2_vol_szVolLabel + len;
2677                         DEBUG(5,("call_trans2qfsinfo : time = %x, namelen = %d, name = %s\n",
2678                                 (unsigned)st.st_ctime, len, vname));
2679                         break;
2680
2681                 case SMB_QUERY_FS_ATTRIBUTE_INFO:
2682                 case SMB_FS_ATTRIBUTE_INFORMATION:
2683
2684                         additional_flags = 0;
2685 #if defined(HAVE_SYS_QUOTAS)
2686                         additional_flags |= FILE_VOLUME_QUOTAS;
2687 #endif
2688
2689                         if(lp_nt_acl_support(SNUM(conn))) {
2690                                 additional_flags |= FILE_PERSISTENT_ACLS;
2691                         }
2692
2693                         /* Capabilities are filled in at connection time through STATVFS call */
2694                         additional_flags |= conn->fs_capabilities;
2695
2696                         SIVAL(pdata,0,FILE_CASE_PRESERVED_NAMES|FILE_CASE_SENSITIVE_SEARCH|
2697                                 FILE_SUPPORTS_OBJECT_IDS|FILE_UNICODE_ON_DISK|
2698                                 additional_flags); /* FS ATTRIBUTES */
2699
2700                         SIVAL(pdata,4,255); /* Max filename component length */
2701                         /* NOTE! the fstype must *not* be null terminated or win98 won't recognise it
2702                                 and will think we can't do long filenames */
2703                         len = srvstr_push(pdata, req->flags2, pdata+12, fstype,
2704                                           PTR_DIFF(end_data, pdata+12),
2705                                           STR_UNICODE);
2706                         SIVAL(pdata,8,len);
2707                         data_len = 12 + len;
2708                         break;
2709
2710                 case SMB_QUERY_FS_LABEL_INFO:
2711                 case SMB_FS_LABEL_INFORMATION:
2712                         len = srvstr_push(pdata, req->flags2, pdata+4, vname,
2713                                           PTR_DIFF(end_data, pdata+4), 0);
2714                         data_len = 4 + len;
2715                         SIVAL(pdata,0,len);
2716                         break;
2717
2718                 case SMB_QUERY_FS_VOLUME_INFO:      
2719                 case SMB_FS_VOLUME_INFORMATION:
2720
2721                         /* 
2722                          * Add volume serial number - hash of a combination of
2723                          * the called hostname and the service name.
2724                          */
2725                         SIVAL(pdata,8,str_checksum(lp_servicename(snum)) ^ 
2726                                 (str_checksum(get_local_machine_name())<<16));
2727
2728                         /* Max label len is 32 characters. */
2729                         len = srvstr_push(pdata, req->flags2, pdata+18, vname,
2730                                           PTR_DIFF(end_data, pdata+18),
2731                                           STR_UNICODE);
2732                         SIVAL(pdata,12,len);
2733                         data_len = 18+len;
2734
2735                         DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_VOLUME_INFO namelen = %d, vol=%s serv=%s\n", 
2736                                 (int)strlen(vname),vname, lp_servicename(snum)));
2737                         break;
2738
2739                 case SMB_QUERY_FS_SIZE_INFO:
2740                 case SMB_FS_SIZE_INFORMATION:
2741                 {
2742                         uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2743                         data_len = 24;
2744                         if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2745                                 reply_unixerror(req, ERRHRD, ERRgeneral);
2746                                 return;
2747                         }
2748                         block_size = lp_block_size(snum);
2749                         if (bsize < block_size) {
2750                                 uint64_t factor = block_size/bsize;
2751                                 bsize = block_size;
2752                                 dsize /= factor;
2753                                 dfree /= factor;
2754                         }
2755                         if (bsize > block_size) {
2756                                 uint64_t factor = bsize/block_size;
2757                                 bsize = block_size;
2758                                 dsize *= factor;
2759                                 dfree *= factor;
2760                         }
2761                         bytes_per_sector = 512;
2762                         sectors_per_unit = bsize/bytes_per_sector;
2763                         DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_SIZE_INFO bsize=%u, cSectorUnit=%u, \
2764 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)bsize, (unsigned int)sectors_per_unit,
2765                                 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2766                         SBIG_UINT(pdata,0,dsize);
2767                         SBIG_UINT(pdata,8,dfree);
2768                         SIVAL(pdata,16,sectors_per_unit);
2769                         SIVAL(pdata,20,bytes_per_sector);
2770                         break;
2771                 }
2772
2773                 case SMB_FS_FULL_SIZE_INFORMATION:
2774                 {
2775                         uint64_t dfree,dsize,bsize,block_size,sectors_per_unit,bytes_per_sector;
2776                         data_len = 32;
2777                         if (get_dfree_info(conn,".",False,&bsize,&dfree,&dsize) == (uint64_t)-1) {
2778                                 reply_unixerror(req, ERRHRD, ERRgeneral);
2779                                 return;
2780                         }
2781                         block_size = lp_block_size(snum);
2782                         if (bsize < block_size) {
2783                                 uint64_t factor = block_size/bsize;
2784                                 bsize = block_size;
2785                                 dsize /= factor;
2786                                 dfree /= factor;
2787                         }
2788                         if (bsize > block_size) {
2789                                 uint64_t factor = bsize/block_size;
2790                                 bsize = block_size;
2791                                 dsize *= factor;
2792                                 dfree *= factor;
2793                         }
2794                         bytes_per_sector = 512;
2795                         sectors_per_unit = bsize/bytes_per_sector;
2796                         DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_FS_FULL_SIZE_INFO bsize=%u, cSectorUnit=%u, \
2797 cBytesSector=%u, cUnitTotal=%u, cUnitAvail=%d\n", (unsigned int)bsize, (unsigned int)sectors_per_unit,
2798                                 (unsigned int)bytes_per_sector, (unsigned int)dsize, (unsigned int)dfree));
2799                         SBIG_UINT(pdata,0,dsize); /* Total Allocation units. */
2800                         SBIG_UINT(pdata,8,dfree); /* Caller available allocation units. */
2801                         SBIG_UINT(pdata,16,dfree); /* Actual available allocation units. */
2802                         SIVAL(pdata,24,sectors_per_unit); /* Sectors per allocation unit. */
2803                         SIVAL(pdata,28,bytes_per_sector); /* Bytes per sector. */
2804                         break;
2805                 }
2806
2807                 case SMB_QUERY_FS_DEVICE_INFO:
2808                 case SMB_FS_DEVICE_INFORMATION:
2809                         data_len = 8;
2810                         SIVAL(pdata,0,0); /* dev type */
2811                         SIVAL(pdata,4,0); /* characteristics */
2812                         break;
2813
2814 #ifdef HAVE_SYS_QUOTAS
2815                 case SMB_FS_QUOTA_INFORMATION:
2816                 /* 
2817                  * what we have to send --metze:
2818                  *
2819                  * Unknown1:            24 NULL bytes
2820                  * Soft Quota Treshold: 8 bytes seems like uint64_t or so
2821                  * Hard Quota Limit:    8 bytes seems like uint64_t or so
2822                  * Quota Flags:         2 byte :
2823                  * Unknown3:            6 NULL bytes
2824                  *
2825                  * 48 bytes total
2826                  * 
2827                  * details for Quota Flags:
2828                  * 
2829                  * 0x0020 Log Limit: log if the user exceeds his Hard Quota
2830                  * 0x0010 Log Warn:  log if the user exceeds his Soft Quota
2831                  * 0x0002 Deny Disk: deny disk access when the user exceeds his Hard Quota
2832                  * 0x0001 Enable Quotas: enable quota for this fs
2833                  *
2834                  */
2835                 {
2836                         /* we need to fake up a fsp here,
2837                          * because its not send in this call
2838                          */
2839                         files_struct fsp;
2840                         SMB_NTQUOTA_STRUCT quotas;
2841                         
2842                         ZERO_STRUCT(fsp);
2843                         ZERO_STRUCT(quotas);
2844                         
2845                         fsp.conn = conn;
2846                         fsp.fnum = -1;
2847                         
2848                         /* access check */
2849                         if (conn->server_info->utok.uid != 0) {
2850                                 DEBUG(0,("set_user_quota: access_denied "
2851                                          "service [%s] user [%s]\n",
2852                                          lp_servicename(SNUM(conn)),
2853                                          conn->server_info->unix_name));
2854                                 reply_doserror(req, ERRDOS, ERRnoaccess);
2855                                 return;
2856                         }
2857                         
2858                         if (vfs_get_ntquota(&fsp, SMB_USER_FS_QUOTA_TYPE, NULL, &quotas)!=0) {
2859                                 DEBUG(0,("vfs_get_ntquota() failed for service [%s]\n",lp_servicename(SNUM(conn))));
2860                                 reply_doserror(req, ERRSRV, ERRerror);
2861                                 return;
2862                         }
2863
2864                         data_len = 48;
2865
2866                         DEBUG(10,("SMB_FS_QUOTA_INFORMATION: for service [%s]\n",lp_servicename(SNUM(conn))));          
2867                 
2868                         /* Unknown1 24 NULL bytes*/
2869                         SBIG_UINT(pdata,0,(uint64_t)0);
2870                         SBIG_UINT(pdata,8,(uint64_t)0);
2871                         SBIG_UINT(pdata,16,(uint64_t)0);
2872                 
2873                         /* Default Soft Quota 8 bytes */
2874                         SBIG_UINT(pdata,24,quotas.softlim);
2875
2876                         /* Default Hard Quota 8 bytes */
2877                         SBIG_UINT(pdata,32,quotas.hardlim);
2878         
2879                         /* Quota flag 2 bytes */
2880                         SSVAL(pdata,40,quotas.qflags);
2881                 
2882                         /* Unknown3 6 NULL bytes */
2883                         SSVAL(pdata,42,0);
2884                         SIVAL(pdata,44,0);
2885                         
2886                         break;
2887                 }
2888 #endif /* HAVE_SYS_QUOTAS */
2889                 case SMB_FS_OBJECTID_INFORMATION:
2890                 {
2891                         unsigned char objid[16];
2892                         struct smb_extended_info extended_info;
2893                         memcpy(pdata,create_volume_objectid(conn, objid),16);
2894                         samba_extended_info_version (&extended_info);
2895                         SIVAL(pdata,16,extended_info.samba_magic);
2896                         SIVAL(pdata,20,extended_info.samba_version);
2897                         SIVAL(pdata,24,extended_info.samba_subversion);
2898                         SBIG_UINT(pdata,28,extended_info.samba_gitcommitdate);
2899                         memcpy(pdata+36,extended_info.samba_version_string,28);
2900                         data_len = 64;
2901                         break;
2902                 }
2903
2904                 /*
2905                  * Query the version and capabilities of the CIFS UNIX extensions
2906                  * in use.
2907                  */
2908
2909                 case SMB_QUERY_CIFS_UNIX_INFO:
2910                 {
2911                         bool large_write = lp_min_receive_file_size() &&
2912                                                 !srv_is_signing_active();
2913                         bool large_read = !srv_is_signing_active();
2914                         int encrypt_caps = 0;
2915
2916                         if (!lp_unix_extensions()) {
2917                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2918                                 return;
2919                         }
2920
2921                         switch (conn->encrypt_level) {
2922                         case 0:
2923                                 encrypt_caps = 0;
2924                                 break;
2925                         case 1:
2926                         case Auto:
2927                                 encrypt_caps = CIFS_UNIX_TRANSPORT_ENCRYPTION_CAP;
2928                                 break;
2929                         case Required:
2930                                 encrypt_caps = CIFS_UNIX_TRANSPORT_ENCRYPTION_CAP|
2931                                                 CIFS_UNIX_TRANSPORT_ENCRYPTION_MANDATORY_CAP;
2932                                 large_write = false;
2933                                 large_read = false;
2934                                 break;
2935                         }
2936
2937                         data_len = 12;
2938                         SSVAL(pdata,0,CIFS_UNIX_MAJOR_VERSION);
2939                         SSVAL(pdata,2,CIFS_UNIX_MINOR_VERSION);
2940
2941                         /* We have POSIX ACLs, pathname, encryption, 
2942                          * large read/write, and locking capability. */
2943
2944                         SBIG_UINT(pdata,4,((uint64_t)(
2945                                         CIFS_UNIX_POSIX_ACLS_CAP|
2946                                         CIFS_UNIX_POSIX_PATHNAMES_CAP|
2947                                         CIFS_UNIX_FCNTL_LOCKS_CAP|
2948                                         CIFS_UNIX_EXTATTR_CAP|
2949                                         CIFS_UNIX_POSIX_PATH_OPERATIONS_CAP|
2950                                         encrypt_caps|
2951                                         (large_read ? CIFS_UNIX_LARGE_READ_CAP : 0) |
2952                                         (large_write ?
2953                                         CIFS_UNIX_LARGE_WRITE_CAP : 0))));
2954                         break;
2955                 }
2956
2957                 case SMB_QUERY_POSIX_FS_INFO:
2958                 {
2959                         int rc;
2960                         vfs_statvfs_struct svfs;
2961
2962                         if (!lp_unix_extensions()) {
2963                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2964                                 return;
2965                         }
2966
2967                         rc = SMB_VFS_STATVFS(conn, ".", &svfs);
2968
2969                         if (!rc) {
2970                                 data_len = 56;
2971                                 SIVAL(pdata,0,svfs.OptimalTransferSize);
2972                                 SIVAL(pdata,4,svfs.BlockSize);
2973                                 SBIG_UINT(pdata,8,svfs.TotalBlocks);
2974                                 SBIG_UINT(pdata,16,svfs.BlocksAvail);
2975                                 SBIG_UINT(pdata,24,svfs.UserBlocksAvail);
2976                                 SBIG_UINT(pdata,32,svfs.TotalFileNodes);
2977                                 SBIG_UINT(pdata,40,svfs.FreeFileNodes);
2978                                 SBIG_UINT(pdata,48,svfs.FsIdentifier);
2979                                 DEBUG(5,("call_trans2qfsinfo : SMB_QUERY_POSIX_FS_INFO succsessful\n"));
2980 #ifdef EOPNOTSUPP
2981                         } else if (rc == EOPNOTSUPP) {
2982                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
2983                                 return;
2984 #endif /* EOPNOTSUPP */
2985                         } else {
2986                                 DEBUG(0,("vfs_statvfs() failed for service [%s]\n",lp_servicename(SNUM(conn))));
2987                                 reply_doserror(req, ERRSRV, ERRerror);
2988                                 return;
2989                         }
2990                         break;
2991                 }
2992
2993                 case SMB_QUERY_POSIX_WHOAMI:
2994                 {
2995                         uint32_t flags = 0;
2996                         uint32_t sid_bytes;
2997                         int i;
2998
2999                         if (!lp_unix_extensions()) {
3000                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3001                                 return;
3002                         }
3003
3004                         if (max_data_bytes < 40) {
3005                                 reply_nterror(req, NT_STATUS_BUFFER_TOO_SMALL);
3006                                 return;
3007                         }
3008
3009                         /* We ARE guest if global_sid_Builtin_Guests is
3010                          * in our list of SIDs.
3011                          */
3012                         if (nt_token_check_sid(&global_sid_Builtin_Guests,
3013                                                conn->server_info->ptok)) {
3014                                 flags |= SMB_WHOAMI_GUEST;
3015                         }
3016
3017                         /* We are NOT guest if global_sid_Authenticated_Users
3018                          * is in our list of SIDs.
3019                          */
3020                         if (nt_token_check_sid(&global_sid_Authenticated_Users,
3021                                                conn->server_info->ptok)) {
3022                                 flags &= ~SMB_WHOAMI_GUEST;
3023                         }
3024
3025                         /* NOTE: 8 bytes for UID/GID, irrespective of native
3026                          * platform size. This matches
3027                          * SMB_QUERY_FILE_UNIX_BASIC and friends.
3028                          */
3029                         data_len = 4 /* flags */
3030                             + 4 /* flag mask */
3031                             + 8 /* uid */
3032                             + 8 /* gid */
3033                             + 4 /* ngroups */
3034                             + 4 /* num_sids */
3035                             + 4 /* SID bytes */
3036                             + 4 /* pad/reserved */
3037                             + (conn->server_info->utok.ngroups * 8)
3038                                 /* groups list */
3039                             + (conn->server_info->ptok->num_sids *
3040                                     SID_MAX_SIZE)
3041                                 /* SID list */;
3042
3043                         SIVAL(pdata, 0, flags);
3044                         SIVAL(pdata, 4, SMB_WHOAMI_MASK);
3045                         SBIG_UINT(pdata, 8,
3046                                   (uint64_t)conn->server_info->utok.uid);
3047                         SBIG_UINT(pdata, 16,
3048                                   (uint64_t)conn->server_info->utok.gid);
3049
3050
3051                         if (data_len >= max_data_bytes) {
3052                                 /* Potential overflow, skip the GIDs and SIDs. */
3053
3054                                 SIVAL(pdata, 24, 0); /* num_groups */
3055                                 SIVAL(pdata, 28, 0); /* num_sids */
3056                                 SIVAL(pdata, 32, 0); /* num_sid_bytes */
3057                                 SIVAL(pdata, 36, 0); /* reserved */
3058
3059                                 data_len = 40;
3060                                 break;
3061                         }
3062
3063                         SIVAL(pdata, 24, conn->server_info->utok.ngroups);
3064                         SIVAL(pdata, 28, conn->server_info->num_sids);
3065
3066                         /* We walk the SID list twice, but this call is fairly
3067                          * infrequent, and I don't expect that it's performance
3068                          * sensitive -- jpeach
3069                          */
3070                         for (i = 0, sid_bytes = 0;
3071                              i < conn->server_info->ptok->num_sids; ++i) {
3072                                 sid_bytes += ndr_size_dom_sid(
3073                                         &conn->server_info->ptok->user_sids[i],
3074                                         0);
3075                         }
3076
3077                         /* SID list byte count */
3078                         SIVAL(pdata, 32, sid_bytes);
3079
3080                         /* 4 bytes pad/reserved - must be zero */
3081                         SIVAL(pdata, 36, 0);
3082                         data_len = 40;
3083
3084                         /* GID list */
3085                         for (i = 0; i < conn->server_info->utok.ngroups; ++i) {
3086                                 SBIG_UINT(pdata, data_len,
3087                                           (uint64_t)conn->server_info->utok.groups[i]);
3088                                 data_len += 8;
3089                         }
3090
3091                         /* SID list */
3092                         for (i = 0;
3093                             i < conn->server_info->ptok->num_sids; ++i) {
3094                                 int sid_len = ndr_size_dom_sid(
3095                                         &conn->server_info->ptok->user_sids[i],
3096                                         0);
3097
3098                                 sid_linearize(pdata + data_len, sid_len,
3099                                     &conn->server_info->ptok->user_sids[i]);
3100                                 data_len += sid_len;
3101                         }
3102
3103                         break;
3104                 }
3105
3106                 case SMB_MAC_QUERY_FS_INFO:
3107                         /*
3108                          * Thursby MAC extension... ONLY on NTFS filesystems
3109                          * once we do streams then we don't need this
3110                          */
3111                         if (strequal(lp_fstype(SNUM(conn)),"NTFS")) {
3112                                 data_len = 88;
3113                                 SIVAL(pdata,84,0x100); /* Don't support mac... */
3114                                 break;
3115                         }
3116                         /* drop through */
3117                 default:
3118                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3119                         return;
3120         }
3121
3122
3123         send_trans2_replies(conn, req, params, 0, pdata, data_len,
3124                             max_data_bytes);
3125
3126         DEBUG( 4, ( "%s info_level = %d\n",
3127                     smb_fn_name(req->cmd), info_level) );
3128
3129         return;
3130 }
3131
3132 /****************************************************************************
3133  Reply to a TRANS2_SETFSINFO (set filesystem info).
3134 ****************************************************************************/
3135
3136 static void call_trans2setfsinfo(connection_struct *conn,
3137                                  struct smb_request *req,
3138                                  char **pparams, int total_params,
3139                                  char **ppdata, int total_data,
3140                                  unsigned int max_data_bytes)
3141 {
3142         char *pdata = *ppdata;
3143         char *params = *pparams;
3144         uint16 info_level;
3145
3146         DEBUG(10,("call_trans2setfsinfo: for service [%s]\n",lp_servicename(SNUM(conn))));
3147
3148         /*  */
3149         if (total_params < 4) {
3150                 DEBUG(0,("call_trans2setfsinfo: requires total_params(%d) >= 4 bytes!\n",
3151                         total_params));
3152                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3153                 return;
3154         }
3155
3156         info_level = SVAL(params,2);
3157
3158         if (IS_IPC(conn)) {
3159                 if (info_level != SMB_REQUEST_TRANSPORT_ENCRYPTION &&
3160                                 info_level != SMB_SET_CIFS_UNIX_INFO) {
3161                         DEBUG(0,("call_trans2setfsinfo: not an allowed "
3162                                 "info level (0x%x) on IPC$.\n",
3163                                 (unsigned int)info_level));
3164                         reply_nterror(req, NT_STATUS_ACCESS_DENIED);
3165                         return;
3166                 }
3167         }
3168
3169         if (ENCRYPTION_REQUIRED(conn) && !req->encrypted) {
3170                 if (info_level != SMB_REQUEST_TRANSPORT_ENCRYPTION) {
3171                         DEBUG(0,("call_trans2setfsinfo: encryption required "
3172                                 "and info level 0x%x sent.\n",
3173                                 (unsigned int)info_level));
3174                         exit_server_cleanly("encryption required "
3175                                 "on connection");
3176                         return;
3177                 }
3178         }
3179
3180         switch(info_level) {
3181                 case SMB_SET_CIFS_UNIX_INFO:
3182                         {
3183                                 uint16 client_unix_major;
3184                                 uint16 client_unix_minor;
3185                                 uint32 client_unix_cap_low;
3186                                 uint32 client_unix_cap_high;
3187
3188                                 if (!lp_unix_extensions()) {
3189                                         reply_nterror(req,
3190                                                       NT_STATUS_INVALID_LEVEL);
3191                                         return;
3192                                 }
3193
3194                                 /* There should be 12 bytes of capabilities set. */
3195                                 if (total_data < 8) {
3196                                         reply_nterror(
3197                                                 req,
3198                                                 NT_STATUS_INVALID_PARAMETER);
3199                                         return;
3200                                 }
3201                                 client_unix_major = SVAL(pdata,0);
3202                                 client_unix_minor = SVAL(pdata,2);
3203                                 client_unix_cap_low = IVAL(pdata,4);
3204                                 client_unix_cap_high = IVAL(pdata,8);
3205                                 /* Just print these values for now. */
3206                                 DEBUG(10,("call_trans2setfsinfo: set unix info. major = %u, minor = %u \
3207 cap_low = 0x%x, cap_high = 0x%x\n",
3208                                         (unsigned int)client_unix_major,
3209                                         (unsigned int)client_unix_minor,
3210                                         (unsigned int)client_unix_cap_low,
3211                                         (unsigned int)client_unix_cap_high ));
3212
3213                                 /* Here is where we must switch to posix pathname processing... */
3214                                 if (client_unix_cap_low & CIFS_UNIX_POSIX_PATHNAMES_CAP) {
3215                                         lp_set_posix_pathnames();
3216                                         mangle_change_to_posix();
3217                                 }
3218
3219                                 if ((client_unix_cap_low & CIFS_UNIX_FCNTL_LOCKS_CAP) &&
3220                                     !(client_unix_cap_low & CIFS_UNIX_POSIX_PATH_OPERATIONS_CAP)) {
3221                                         /* Client that knows how to do posix locks,
3222                                          * but not posix open/mkdir operations. Set a
3223                                          * default type for read/write checks. */
3224
3225                                         lp_set_posix_default_cifsx_readwrite_locktype(POSIX_LOCK);
3226
3227                                 }
3228                                 break;
3229                         }
3230
3231                 case SMB_REQUEST_TRANSPORT_ENCRYPTION:
3232                         {
3233                                 NTSTATUS status;
3234                                 size_t param_len = 0;
3235                                 size_t data_len = total_data;
3236
3237                                 if (!lp_unix_extensions()) {
3238                                         reply_nterror(
3239                                                 req,
3240                                                 NT_STATUS_INVALID_LEVEL);
3241                                         return;
3242                                 }
3243
3244                                 if (lp_smb_encrypt(SNUM(conn)) == false) {
3245                                         reply_nterror(
3246                                                 req,
3247                                                 NT_STATUS_NOT_SUPPORTED);
3248                                         return;
3249                                 }
3250
3251                                 DEBUG( 4,("call_trans2setfsinfo: "
3252                                         "request transport encryption.\n"));
3253
3254                                 status = srv_request_encryption_setup(conn,
3255                                                                 (unsigned char **)ppdata,
3256                                                                 &data_len,
3257                                                                 (unsigned char **)pparams,
3258                                                                 &param_len);
3259
3260                                 if (!NT_STATUS_EQUAL(status, NT_STATUS_MORE_PROCESSING_REQUIRED) &&
3261                                                 !NT_STATUS_IS_OK(status)) {
3262                                         reply_nterror(req, status);
3263                                         return;
3264                                 }
3265
3266                                 send_trans2_replies(conn, req,
3267                                                 *pparams,
3268                                                 param_len,
3269                                                 *ppdata,
3270                                                 data_len,
3271                                                 max_data_bytes);
3272
3273                                 if (NT_STATUS_IS_OK(status)) {
3274                                         /* Server-side transport
3275                                          * encryption is now *on*. */
3276                                         status = srv_encryption_start(conn);
3277                                         if (!NT_STATUS_IS_OK(status)) {
3278                                                 exit_server_cleanly(
3279                                                         "Failure in setting "
3280                                                         "up encrypted transport");
3281                                         }
3282                                 }
3283                                 return;
3284                         }
3285
3286                 case SMB_FS_QUOTA_INFORMATION:
3287                         {
3288                                 files_struct *fsp = NULL;
3289                                 SMB_NTQUOTA_STRUCT quotas;
3290         
3291                                 ZERO_STRUCT(quotas);
3292
3293                                 /* access check */
3294                                 if ((conn->server_info->utok.uid != 0)
3295                                     ||!CAN_WRITE(conn)) {
3296                                         DEBUG(0,("set_user_quota: access_denied service [%s] user [%s]\n",
3297                                                  lp_servicename(SNUM(conn)),
3298                                                  conn->server_info->unix_name));
3299                                         reply_doserror(req, ERRSRV, ERRaccess);
3300                                         return;
3301                                 }
3302
3303                                 /* note: normaly there're 48 bytes,
3304                                  * but we didn't use the last 6 bytes for now 
3305                                  * --metze 
3306                                  */
3307                                 fsp = file_fsp(req, SVAL(params,0));
3308
3309                                 if (!check_fsp_ntquota_handle(conn, req,
3310                                                               fsp)) {
3311                                         DEBUG(3,("TRANSACT_GET_USER_QUOTA: no valid QUOTA HANDLE\n"));
3312                                         reply_nterror(
3313                                                 req, NT_STATUS_INVALID_HANDLE);
3314                                         return;
3315                                 }
3316
3317                                 if (total_data < 42) {
3318                                         DEBUG(0,("call_trans2setfsinfo: SET_FS_QUOTA: requires total_data(%d) >= 42 bytes!\n",
3319                                                 total_data));
3320                                         reply_nterror(
3321                                                 req,
3322                                                 NT_STATUS_INVALID_PARAMETER);
3323                                         return;
3324                                 }
3325                         
3326                                 /* unknown_1 24 NULL bytes in pdata*/
3327                 
3328                                 /* the soft quotas 8 bytes (uint64_t)*/
3329                                 quotas.softlim = (uint64_t)IVAL(pdata,24);
3330 #ifdef LARGE_SMB_OFF_T
3331                                 quotas.softlim |= (((uint64_t)IVAL(pdata,28)) << 32);
3332 #else /* LARGE_SMB_OFF_T */
3333                                 if ((IVAL(pdata,28) != 0)&&
3334                                         ((quotas.softlim != 0xFFFFFFFF)||
3335                                         (IVAL(pdata,28)!=0xFFFFFFFF))) {
3336                                         /* more than 32 bits? */
3337                                         reply_nterror(
3338                                                 req,
3339                                                 NT_STATUS_INVALID_PARAMETER);
3340                                         return;
3341                                 }
3342 #endif /* LARGE_SMB_OFF_T */
3343                 
3344                                 /* the hard quotas 8 bytes (uint64_t)*/
3345                                 quotas.hardlim = (uint64_t)IVAL(pdata,32);
3346 #ifdef LARGE_SMB_OFF_T
3347                                 quotas.hardlim |= (((uint64_t)IVAL(pdata,36)) << 32);
3348 #else /* LARGE_SMB_OFF_T */
3349                                 if ((IVAL(pdata,36) != 0)&&
3350                                         ((quotas.hardlim != 0xFFFFFFFF)||
3351                                         (IVAL(pdata,36)!=0xFFFFFFFF))) {
3352                                         /* more than 32 bits? */
3353                                         reply_nterror(
3354                                                 req,
3355                                                 NT_STATUS_INVALID_PARAMETER);
3356                                         return;
3357                                 }
3358 #endif /* LARGE_SMB_OFF_T */
3359                 
3360                                 /* quota_flags 2 bytes **/
3361                                 quotas.qflags = SVAL(pdata,40);
3362                 
3363                                 /* unknown_2 6 NULL bytes follow*/
3364                 
3365                                 /* now set the quotas */
3366                                 if (vfs_set_ntquota(fsp, SMB_USER_FS_QUOTA_TYPE, NULL, &quotas)!=0) {
3367                                         DEBUG(0,("vfs_set_ntquota() failed for service [%s]\n",lp_servicename(SNUM(conn))));
3368                                         reply_doserror(req, ERRSRV, ERRerror);
3369                                         return;
3370                                 }
3371                         
3372                                 break;
3373                         }
3374                 default:
3375                         DEBUG(3,("call_trans2setfsinfo: unknown level (0x%X) not implemented yet.\n",
3376                                 info_level));
3377                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3378                         return;
3379                         break;
3380         }
3381
3382         /* 
3383          * sending this reply works fine, 
3384          * but I'm not sure it's the same 
3385          * like windows do...
3386          * --metze
3387          */
3388         reply_outbuf(req, 10, 0);
3389 }
3390
3391 #if defined(HAVE_POSIX_ACLS)
3392 /****************************************************************************
3393  Utility function to count the number of entries in a POSIX acl.
3394 ****************************************************************************/
3395
3396 static unsigned int count_acl_entries(connection_struct *conn, SMB_ACL_T posix_acl)
3397 {
3398         unsigned int ace_count = 0;
3399         int entry_id = SMB_ACL_FIRST_ENTRY;
3400         SMB_ACL_ENTRY_T entry;
3401
3402         while ( posix_acl && (SMB_VFS_SYS_ACL_GET_ENTRY(conn, posix_acl, entry_id, &entry) == 1)) {
3403                 /* get_next... */
3404                 if (entry_id == SMB_ACL_FIRST_ENTRY) {
3405                         entry_id = SMB_ACL_NEXT_ENTRY;
3406                 }
3407                 ace_count++;
3408         }
3409         return ace_count;
3410 }
3411
3412 /****************************************************************************
3413  Utility function to marshall a POSIX acl into wire format.
3414 ****************************************************************************/
3415
3416 static bool marshall_posix_acl(connection_struct *conn, char *pdata, SMB_STRUCT_STAT *pst, SMB_ACL_T posix_acl)
3417 {
3418         int entry_id = SMB_ACL_FIRST_ENTRY;
3419         SMB_ACL_ENTRY_T entry;
3420
3421         while ( posix_acl && (SMB_VFS_SYS_ACL_GET_ENTRY(conn, posix_acl, entry_id, &entry) == 1)) {
3422                 SMB_ACL_TAG_T tagtype;
3423                 SMB_ACL_PERMSET_T permset;
3424                 unsigned char perms = 0;
3425                 unsigned int own_grp;
3426
3427                 /* get_next... */
3428                 if (entry_id == SMB_ACL_FIRST_ENTRY) {
3429                         entry_id = SMB_ACL_NEXT_ENTRY;
3430                 }
3431
3432                 if (SMB_VFS_SYS_ACL_GET_TAG_TYPE(conn, entry, &tagtype) == -1) {
3433                         DEBUG(0,("marshall_posix_acl: SMB_VFS_SYS_ACL_GET_TAG_TYPE failed.\n"));
3434                         return False;
3435                 }
3436
3437                 if (SMB_VFS_SYS_ACL_GET_PERMSET(conn, entry, &permset) == -1) {
3438                         DEBUG(0,("marshall_posix_acl: SMB_VFS_SYS_ACL_GET_PERMSET failed.\n"));
3439                         return False;
3440                 }
3441
3442                 perms |= (SMB_VFS_SYS_ACL_GET_PERM(conn, permset, SMB_ACL_READ) ? SMB_POSIX_ACL_READ : 0);
3443                 perms |= (SMB_VFS_SYS_ACL_GET_PERM(conn, permset, SMB_ACL_WRITE) ? SMB_POSIX_ACL_WRITE : 0);
3444                 perms |= (SMB_VFS_SYS_ACL_GET_PERM(conn, permset, SMB_ACL_EXECUTE) ? SMB_POSIX_ACL_EXECUTE : 0);
3445
3446                 SCVAL(pdata,1,perms);
3447
3448                 switch (tagtype) {
3449                         case SMB_ACL_USER_OBJ:
3450                                 SCVAL(pdata,0,SMB_POSIX_ACL_USER_OBJ);
3451                                 own_grp = (unsigned int)pst->st_uid;
3452                                 SIVAL(pdata,2,own_grp);
3453                                 SIVAL(pdata,6,0);
3454                                 break;
3455                         case SMB_ACL_USER:
3456                                 {
3457                                         uid_t *puid = (uid_t *)SMB_VFS_SYS_ACL_GET_QUALIFIER(conn, entry);
3458                                         if (!puid) {
3459                                                 DEBUG(0,("marshall_posix_acl: SMB_VFS_SYS_ACL_GET_QUALIFIER failed.\n"));
3460                                                 return False;
3461                                         }
3462                                         own_grp = (unsigned int)*puid;
3463                                         SMB_VFS_SYS_ACL_FREE_QUALIFIER(conn, (void *)puid,tagtype);
3464                                         SCVAL(pdata,0,SMB_POSIX_ACL_USER);
3465                                         SIVAL(pdata,2,own_grp);
3466                                         SIVAL(pdata,6,0);
3467                                         break;
3468                                 }
3469                         case SMB_ACL_GROUP_OBJ:
3470                                 SCVAL(pdata,0,SMB_POSIX_ACL_GROUP_OBJ);
3471                                 own_grp = (unsigned int)pst->st_gid;
3472                                 SIVAL(pdata,2,own_grp);
3473                                 SIVAL(pdata,6,0);
3474                                 break;
3475                         case SMB_ACL_GROUP:
3476                                 {
3477                                         gid_t *pgid= (gid_t *)SMB_VFS_SYS_ACL_GET_QUALIFIER(conn, entry);
3478                                         if (!pgid) {
3479                                                 DEBUG(0,("marshall_posix_acl: SMB_VFS_SYS_ACL_GET_QUALIFIER failed.\n"));
3480                                                 return False;
3481                                         }
3482                                         own_grp = (unsigned int)*pgid;
3483                                         SMB_VFS_SYS_ACL_FREE_QUALIFIER(conn, (void *)pgid,tagtype);
3484                                         SCVAL(pdata,0,SMB_POSIX_ACL_GROUP);
3485                                         SIVAL(pdata,2,own_grp);
3486                                         SIVAL(pdata,6,0);
3487                                         break;
3488                                 }
3489                         case SMB_ACL_MASK:
3490                                 SCVAL(pdata,0,SMB_POSIX_ACL_MASK);
3491                                 SIVAL(pdata,2,0xFFFFFFFF);
3492                                 SIVAL(pdata,6,0xFFFFFFFF);
3493                                 break;
3494                         case SMB_ACL_OTHER:
3495                                 SCVAL(pdata,0,SMB_POSIX_ACL_OTHER);
3496                                 SIVAL(pdata,2,0xFFFFFFFF);
3497                                 SIVAL(pdata,6,0xFFFFFFFF);
3498                                 break;
3499                         default:
3500                                 DEBUG(0,("marshall_posix_acl: unknown tagtype.\n"));
3501                                 return False;
3502                 }
3503                 pdata += SMB_POSIX_ACL_ENTRY_SIZE;
3504         }
3505
3506         return True;
3507 }
3508 #endif
3509
3510 /****************************************************************************
3511  Store the FILE_UNIX_BASIC info.
3512 ****************************************************************************/
3513
3514 static char *store_file_unix_basic(connection_struct *conn,
3515                                 char *pdata,
3516                                 files_struct *fsp,
3517                                 const SMB_STRUCT_STAT *psbuf)
3518 {
3519         DEBUG(10,("store_file_unix_basic: SMB_QUERY_FILE_UNIX_BASIC\n"));
3520         DEBUG(4,("store_file_unix_basic: st_mode=%o\n",(int)psbuf->st_mode));
3521
3522         SOFF_T(pdata,0,get_file_size(*psbuf));             /* File size 64 Bit */
3523         pdata += 8;
3524
3525         SOFF_T(pdata,0,get_allocation_size(conn,fsp,psbuf)); /* Number of bytes used on disk - 64 Bit */
3526         pdata += 8;
3527
3528         put_long_date_timespec(pdata,get_ctimespec(psbuf));       /* Change Time 64 Bit */
3529         put_long_date_timespec(pdata+8,get_atimespec(psbuf));     /* Last access time 64 Bit */
3530         put_long_date_timespec(pdata+16,get_mtimespec(psbuf));    /* Last modification time 64 Bit */
3531         pdata += 24;
3532
3533         SIVAL(pdata,0,psbuf->st_uid);               /* user id for the owner */
3534         SIVAL(pdata,4,0);
3535         pdata += 8;
3536
3537         SIVAL(pdata,0,psbuf->st_gid);               /* group id of owner */
3538         SIVAL(pdata,4,0);
3539         pdata += 8;
3540
3541         SIVAL(pdata,0,unix_filetype(psbuf->st_mode));
3542         pdata += 4;
3543
3544         SIVAL(pdata,0,unix_dev_major(psbuf->st_rdev));   /* Major device number if type is device */
3545         SIVAL(pdata,4,0);
3546         pdata += 8;
3547
3548         SIVAL(pdata,0,unix_dev_minor(psbuf->st_rdev));   /* Minor device number if type is device */
3549         SIVAL(pdata,4,0);
3550         pdata += 8;
3551
3552         SINO_T_VAL(pdata,0,(SMB_INO_T)psbuf->st_ino);   /* inode number */
3553         pdata += 8;
3554                                 
3555         SIVAL(pdata,0, unix_perms_to_wire(psbuf->st_mode));     /* Standard UNIX file permissions */
3556         SIVAL(pdata,4,0);
3557         pdata += 8;
3558
3559         SIVAL(pdata,0,psbuf->st_nlink);             /* number of hard links */
3560         SIVAL(pdata,4,0);
3561         pdata += 8;
3562
3563         return pdata;
3564 }
3565
3566 /* Forward and reverse mappings from the UNIX_INFO2 file flags field and
3567  * the chflags(2) (or equivalent) flags.
3568  *
3569  * XXX: this really should be behind the VFS interface. To do this, we would
3570  * need to alter SMB_STRUCT_STAT so that it included a flags and a mask field.
3571  * Each VFS module could then implement its own mapping as appropriate for the
3572  * platform. We would then pass the SMB flags into SMB_VFS_CHFLAGS.
3573  */
3574 static const struct {unsigned stat_fflag; unsigned smb_fflag;}
3575         info2_flags_map[] =
3576 {
3577 #ifdef UF_NODUMP
3578     { UF_NODUMP, EXT_DO_NOT_BACKUP },
3579 #endif
3580
3581 #ifdef UF_IMMUTABLE
3582     { UF_IMMUTABLE, EXT_IMMUTABLE },
3583 #endif
3584
3585 #ifdef UF_APPEND
3586     { UF_APPEND, EXT_OPEN_APPEND_ONLY },
3587 #endif
3588
3589 #ifdef UF_HIDDEN
3590     { UF_HIDDEN, EXT_HIDDEN },
3591 #endif
3592
3593     /* Do not remove. We need to guarantee that this array has at least one
3594      * entry to build on HP-UX.
3595      */
3596     { 0, 0 }
3597
3598 };
3599
3600 static void map_info2_flags_from_sbuf(const SMB_STRUCT_STAT *psbuf,
3601                                 uint32 *smb_fflags, uint32 *smb_fmask)
3602 {
3603 #ifdef HAVE_STAT_ST_FLAGS
3604         int i;
3605
3606         for (i = 0; i < ARRAY_SIZE(info2_flags_map); ++i) {
3607             *smb_fmask |= info2_flags_map[i].smb_fflag;
3608             if (psbuf->st_flags & info2_flags_map[i].stat_fflag) {
3609                     *smb_fflags |= info2_flags_map[i].smb_fflag;
3610             }
3611         }
3612 #endif /* HAVE_STAT_ST_FLAGS */
3613 }
3614
3615 static bool map_info2_flags_to_sbuf(const SMB_STRUCT_STAT *psbuf,
3616                                 const uint32 smb_fflags,
3617                                 const uint32 smb_fmask,
3618                                 int *stat_fflags)
3619 {
3620 #ifdef HAVE_STAT_ST_FLAGS
3621         uint32 max_fmask = 0;
3622         int i;
3623
3624         *stat_fflags = psbuf->st_flags;
3625
3626         /* For each flags requested in smb_fmask, check the state of the
3627          * corresponding flag in smb_fflags and set or clear the matching
3628          * stat flag.
3629          */
3630
3631         for (i = 0; i < ARRAY_SIZE(info2_flags_map); ++i) {
3632             max_fmask |= info2_flags_map[i].smb_fflag;
3633             if (smb_fmask & info2_flags_map[i].smb_fflag) {
3634                     if (smb_fflags & info2_flags_map[i].smb_fflag) {
3635                             *stat_fflags |= info2_flags_map[i].stat_fflag;
3636                     } else {
3637                             *stat_fflags &= ~info2_flags_map[i].stat_fflag;
3638                     }
3639             }
3640         }
3641
3642         /* If smb_fmask is asking to set any bits that are not supported by
3643          * our flag mappings, we should fail.
3644          */
3645         if ((smb_fmask & max_fmask) != smb_fmask) {
3646                 return False;
3647         }
3648
3649         return True;
3650 #else
3651         return False;
3652 #endif /* HAVE_STAT_ST_FLAGS */
3653 }
3654
3655
3656 /* Just like SMB_QUERY_FILE_UNIX_BASIC, but with the addition
3657  * of file flags and birth (create) time.
3658  */
3659 static char *store_file_unix_basic_info2(connection_struct *conn,
3660                                 char *pdata,
3661                                 files_struct *fsp,
3662                                 const SMB_STRUCT_STAT *psbuf)
3663 {
3664         uint32 file_flags = 0;
3665         uint32 flags_mask = 0;
3666
3667         pdata = store_file_unix_basic(conn, pdata, fsp, psbuf);
3668
3669         /* Create (birth) time 64 bit */
3670         put_long_date_timespec(pdata, get_create_timespec(psbuf, False));
3671         pdata += 8;
3672
3673         map_info2_flags_from_sbuf(psbuf, &file_flags, &flags_mask);
3674         SIVAL(pdata, 0, file_flags); /* flags */
3675         SIVAL(pdata, 4, flags_mask); /* mask */
3676         pdata += 8;
3677
3678         return pdata;
3679 }
3680
3681 static NTSTATUS marshall_stream_info(unsigned int num_streams,
3682                                      const struct stream_struct *streams,
3683                                      char *data,
3684                                      unsigned int max_data_bytes,
3685                                      unsigned int *data_size)
3686 {
3687         unsigned int i;
3688         unsigned int ofs = 0;
3689
3690         for (i = 0; i < num_streams && ofs <= max_data_bytes; i++) {
3691                 unsigned int next_offset;
3692                 size_t namelen;
3693                 smb_ucs2_t *namebuf;
3694
3695                 if (!push_ucs2_talloc(talloc_tos(), &namebuf,
3696                                       streams[i].name, &namelen) ||
3697                     namelen <= 2)
3698                 {
3699                         return NT_STATUS_INVALID_PARAMETER;
3700                 }
3701
3702                 /*
3703                  * name_buf is now null-terminated, we need to marshall as not
3704                  * terminated
3705                  */
3706
3707                 namelen -= 2;
3708
3709                 SIVAL(data, ofs+4, namelen);
3710                 SOFF_T(data, ofs+8, streams[i].size);
3711                 SOFF_T(data, ofs+16, streams[i].alloc_size);
3712                 memcpy(data+ofs+24, namebuf, namelen);
3713                 TALLOC_FREE(namebuf);
3714
3715                 next_offset = ofs + 24 + namelen;
3716
3717                 if (i == num_streams-1) {
3718                         SIVAL(data, ofs, 0);
3719                 }
3720                 else {
3721                         unsigned int align = ndr_align_size(next_offset, 8);
3722
3723                         memset(data+next_offset, 0, align);
3724                         next_offset += align;
3725
3726                         SIVAL(data, ofs, next_offset - ofs);
3727                         ofs = next_offset;
3728                 }
3729
3730                 ofs = next_offset;
3731         }
3732
3733         *data_size = ofs;
3734
3735         return NT_STATUS_OK;
3736 }
3737
3738 /****************************************************************************
3739  Reply to a TRANSACT2_QFILEINFO on a PIPE !
3740 ****************************************************************************/
3741
3742 static void call_trans2qpipeinfo(connection_struct *conn,
3743                                  struct smb_request *req,
3744                                  unsigned int tran_call,
3745                                  char **pparams, int total_params,
3746                                  char **ppdata, int total_data,
3747                                  unsigned int max_data_bytes)
3748 {
3749         char *params = *pparams;
3750         char *pdata = *ppdata;
3751         unsigned int data_size = 0;
3752         unsigned int param_size = 2;
3753         uint16 info_level;
3754         files_struct *fsp;
3755
3756         if (!params) {
3757                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3758                 return;
3759         }
3760
3761         if (total_params < 4) {
3762                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3763                 return;
3764         }
3765
3766         fsp = file_fsp(req, SVAL(params,0));
3767         if (!fsp_is_np(fsp)) {
3768                 reply_nterror(req, NT_STATUS_INVALID_HANDLE);
3769                 return;
3770         }
3771
3772         info_level = SVAL(params,2);
3773
3774         *pparams = (char *)SMB_REALLOC(*pparams,2);
3775         if (*pparams == NULL) {
3776                 reply_nterror(req, NT_STATUS_NO_MEMORY);
3777                 return;
3778         }
3779         params = *pparams;
3780         SSVAL(params,0,0);
3781         data_size = max_data_bytes + DIR_ENTRY_SAFETY_MARGIN;
3782         *ppdata = (char *)SMB_REALLOC(*ppdata, data_size); 
3783         if (*ppdata == NULL ) {
3784                 reply_nterror(req, NT_STATUS_NO_MEMORY);
3785                 return;
3786         }
3787         pdata = *ppdata;
3788
3789         switch (info_level) {
3790                 case SMB_FILE_STANDARD_INFORMATION:
3791                         memset(pdata,0,24);
3792                         SOFF_T(pdata,0,4096LL);
3793                         SIVAL(pdata,16,1);
3794                         SIVAL(pdata,20,1);
3795                         data_size = 24;
3796                         break;
3797
3798                 default:
3799                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3800                         return;
3801         }
3802
3803         send_trans2_replies(conn, req, params, param_size, *ppdata, data_size,
3804                             max_data_bytes);
3805
3806         return;
3807 }
3808
3809 /****************************************************************************
3810  Reply to a TRANS2_QFILEPATHINFO or TRANSACT2_QFILEINFO (query file info by
3811  file name or file id).
3812 ****************************************************************************/
3813
3814 static void call_trans2qfilepathinfo(connection_struct *conn,
3815                                      struct smb_request *req,
3816                                      unsigned int tran_call,
3817                                      char **pparams, int total_params,
3818                                      char **ppdata, int total_data,
3819                                      unsigned int max_data_bytes)
3820 {
3821         char *params = *pparams;
3822         char *pdata = *ppdata;
3823         char *dstart, *dend;
3824         uint16 info_level;
3825         int mode=0;
3826         int nlink;
3827         SMB_OFF_T file_size=0;
3828         uint64_t allocation_size=0;
3829         unsigned int data_size = 0;
3830         unsigned int param_size = 2;
3831         SMB_STRUCT_STAT sbuf;
3832         char *dos_fname = NULL;
3833         char *fname = NULL;
3834         char *fullpathname;
3835         char *base_name;
3836         char *p;
3837         SMB_OFF_T pos = 0;
3838         bool delete_pending = False;
3839         int len;
3840         time_t create_time, mtime, atime;
3841         struct timespec create_time_ts, mtime_ts, atime_ts;
3842         struct timespec write_time_ts;
3843         files_struct *fsp = NULL;
3844         struct file_id fileid;
3845         struct ea_list *ea_list = NULL;
3846         char *lock_data = NULL;
3847         bool ms_dfs_link = false;
3848         TALLOC_CTX *ctx = talloc_tos();
3849
3850         if (!params) {
3851                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3852                 return;
3853         }
3854
3855         ZERO_STRUCT(sbuf);
3856         ZERO_STRUCT(write_time_ts);
3857
3858         if (tran_call == TRANSACT2_QFILEINFO) {
3859                 if (total_params < 4) {
3860                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3861                         return;
3862                 }
3863
3864                 if (IS_IPC(conn)) {
3865                         call_trans2qpipeinfo(conn, req, tran_call,
3866                                              pparams, total_params,
3867                                              ppdata, total_data,
3868                                              max_data_bytes);
3869                         return;
3870                 }
3871
3872                 fsp = file_fsp(req, SVAL(params,0));
3873                 info_level = SVAL(params,2);
3874
3875                 DEBUG(3,("call_trans2qfilepathinfo: TRANSACT2_QFILEINFO: level = %d\n", info_level));
3876
3877                 if (INFO_LEVEL_IS_UNIX(info_level) && !lp_unix_extensions()) {
3878                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3879                         return;
3880                 }
3881
3882                 /* Initial check for valid fsp ptr. */
3883                 if (!check_fsp_open(conn, req, fsp)) {
3884                         return;
3885                 }
3886
3887                 fname = talloc_strdup(talloc_tos(),fsp->fsp_name);
3888                 if (!fname) {
3889                         reply_nterror(req, NT_STATUS_NO_MEMORY);
3890                         return;
3891                 }
3892
3893                 if(fsp->fake_file_handle) {
3894                         /*
3895                          * This is actually for the QUOTA_FAKE_FILE --metze
3896                          */
3897
3898                         /* We know this name is ok, it's already passed the checks. */
3899
3900                 } else if(fsp && (fsp->is_directory || fsp->fh->fd == -1)) {
3901                         /*
3902                          * This is actually a QFILEINFO on a directory
3903                          * handle (returned from an NT SMB). NT5.0 seems
3904                          * to do this call. JRA.
3905                          */
3906
3907                         if (INFO_LEVEL_IS_UNIX(info_level)) {
3908                                 /* Always do lstat for UNIX calls. */
3909                                 if (SMB_VFS_LSTAT(conn,fname,&sbuf)) {
3910                                         DEBUG(3,("call_trans2qfilepathinfo: SMB_VFS_LSTAT of %s failed (%s)\n",fname,strerror(errno)));
3911                                         reply_unixerror(req,ERRDOS,ERRbadpath);
3912                                         return;
3913                                 }
3914                         } else if (SMB_VFS_STAT(conn,fname,&sbuf)) {
3915                                 DEBUG(3,("call_trans2qfilepathinfo: SMB_VFS_STAT of %s failed (%s)\n",fname,strerror(errno)));
3916                                 reply_unixerror(req, ERRDOS, ERRbadpath);
3917                                 return;
3918                         }
3919
3920                         fileid = vfs_file_id_from_sbuf(conn, &sbuf);
3921                         get_file_infos(fileid, &delete_pending, &write_time_ts);
3922                 } else {
3923                         /*
3924                          * Original code - this is an open file.
3925                          */
3926                         if (!check_fsp(conn, req, fsp)) {
3927                                 return;
3928                         }
3929
3930                         if (SMB_VFS_FSTAT(fsp, &sbuf) != 0) {
3931                                 DEBUG(3,("fstat of fnum %d failed (%s)\n", fsp->fnum, strerror(errno)));
3932                                 reply_unixerror(req, ERRDOS, ERRbadfid);
3933                                 return;
3934                         }
3935                         pos = fsp->fh->position_information;
3936                         fileid = vfs_file_id_from_sbuf(conn, &sbuf);
3937                         get_file_infos(fileid, &delete_pending, &write_time_ts);
3938                 }
3939
3940         } else {
3941                 NTSTATUS status = NT_STATUS_OK;
3942
3943                 /* qpathinfo */
3944                 if (total_params < 7) {
3945                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
3946                         return;
3947                 }
3948
3949                 info_level = SVAL(params,0);
3950
3951                 DEBUG(3,("call_trans2qfilepathinfo: TRANSACT2_QPATHINFO: level = %d\n", info_level));
3952
3953                 if (INFO_LEVEL_IS_UNIX(info_level) && !lp_unix_extensions()) {
3954                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
3955                         return;
3956                 }
3957
3958                 srvstr_get_path(ctx, params, req->flags2, &fname, &params[6],
3959                                 total_params - 6,
3960                                 STR_TERMINATE, &status);
3961                 if (!NT_STATUS_IS_OK(status)) {
3962                         reply_nterror(req, status);
3963                         return;
3964                 }
3965
3966                 status = resolve_dfspath(ctx,
3967                                         conn,
3968                                         req->flags2 & FLAGS2_DFS_PATHNAMES,
3969                                         fname,
3970                                         &fname);
3971                 if (!NT_STATUS_IS_OK(status)) {
3972                         if (NT_STATUS_EQUAL(status,NT_STATUS_PATH_NOT_COVERED)) {
3973                                 reply_botherror(req,
3974                                                 NT_STATUS_PATH_NOT_COVERED,
3975                                                 ERRSRV, ERRbadpath);
3976                         }
3977                         reply_nterror(req, status);
3978                         return;
3979                 }
3980
3981                 status = unix_convert(ctx, conn, fname, False, &fname, NULL, &sbuf);
3982                 if (!NT_STATUS_IS_OK(status)) {
3983                         reply_nterror(req, status);
3984                         return;
3985                 }
3986                 status = check_name(conn, fname);
3987                 if (!NT_STATUS_IS_OK(status)) {
3988                         DEBUG(3,("call_trans2qfilepathinfo: fileinfo of %s failed (%s)\n",fname,nt_errstr(status)));
3989                         reply_nterror(req, status);
3990                         return;
3991                 }
3992
3993                 if ((conn->fs_capabilities & FILE_NAMED_STREAMS)
3994                     && is_ntfs_stream_name(fname)) {
3995                         char *base;
3996                         SMB_STRUCT_STAT bsbuf;
3997
3998                         status = split_ntfs_stream_name(talloc_tos(), fname,
3999                                                         &base, NULL);
4000                         if (!NT_STATUS_IS_OK(status)) {
4001                                 DEBUG(10, ("create_file_unixpath: "
4002                                         "split_ntfs_stream_name failed: %s\n",
4003                                         nt_errstr(status)));
4004                                 reply_nterror(req, status);
4005                                 return;
4006                         }
4007
4008                         SMB_ASSERT(!is_ntfs_stream_name(base)); /* paranoia.. */
4009
4010                         if (INFO_LEVEL_IS_UNIX(info_level)) {
4011                                 /* Always do lstat for UNIX calls. */
4012                                 if (SMB_VFS_LSTAT(conn,base,&bsbuf)) {
4013                                         DEBUG(3,("call_trans2qfilepathinfo: SMB_VFS_LSTAT of %s failed (%s)\n",base,strerror(errno)));
4014                                         reply_unixerror(req,ERRDOS,ERRbadpath);
4015                                         return;
4016                                 }
4017                         } else {
4018                                 if (SMB_VFS_STAT(conn,base,&bsbuf) != 0) {
4019                                         DEBUG(3,("call_trans2qfilepathinfo: fileinfo of %s failed (%s)\n",base,strerror(errno)));
4020                                         reply_unixerror(req,ERRDOS,ERRbadpath);
4021                                         return;
4022                                 }
4023                         }
4024
4025                         fileid = vfs_file_id_from_sbuf(conn, &bsbuf);
4026                         get_file_infos(fileid, &delete_pending, NULL);
4027                         if (delete_pending) {
4028                                 reply_nterror(req, NT_STATUS_DELETE_PENDING);
4029                                 return;
4030                         }
4031                 }
4032
4033                 if (INFO_LEVEL_IS_UNIX(info_level)) {
4034                         /* Always do lstat for UNIX calls. */
4035                         if (SMB_VFS_LSTAT(conn,fname,&sbuf)) {
4036                                 DEBUG(3,("call_trans2qfilepathinfo: SMB_VFS_LSTAT of %s failed (%s)\n",fname,strerror(errno)));
4037                                 reply_unixerror(req, ERRDOS, ERRbadpath);
4038                                 return;
4039                         }
4040
4041                 } else if (!VALID_STAT(sbuf) && SMB_VFS_STAT(conn,fname,&sbuf) && (info_level != SMB_INFO_IS_NAME_VALID)) {
4042                         ms_dfs_link = check_msdfs_link(conn,fname,&sbuf);
4043
4044                         if (!ms_dfs_link) {
4045                                 DEBUG(3,("call_trans2qfilepathinfo: SMB_VFS_STAT of %s failed (%s)\n",fname,strerror(errno)));
4046                                 reply_unixerror(req, ERRDOS, ERRbadpath);
4047                                 return;
4048                         }
4049                 }
4050
4051                 fileid = vfs_file_id_from_sbuf(conn, &sbuf);
4052                 get_file_infos(fileid, &delete_pending, &write_time_ts);
4053                 if (delete_pending) {
4054                         reply_nterror(req, NT_STATUS_DELETE_PENDING);
4055                         return;
4056                 }
4057         }
4058
4059         if (INFO_LEVEL_IS_UNIX(info_level) && !lp_unix_extensions()) {
4060                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
4061                 return;
4062         }
4063
4064         DEBUG(3,("call_trans2qfilepathinfo %s (fnum = %d) level=%d call=%d total_data=%d\n",
4065                 fname,fsp ? fsp->fnum : -1, info_level,tran_call,total_data));
4066
4067         p = strrchr_m(fname,'/');
4068         if (!p)
4069                 base_name = fname;
4070         else
4071                 base_name = p+1;
4072
4073         if (ms_dfs_link) {
4074                 mode = dos_mode_msdfs(conn,fname,&sbuf);
4075         } else {
4076                 mode = dos_mode(conn,fname,&sbuf);
4077         }
4078         if (!mode)
4079                 mode = FILE_ATTRIBUTE_NORMAL;
4080
4081         nlink = sbuf.st_nlink;
4082
4083         if (nlink && (mode&aDIR)) {
4084                 nlink = 1;
4085         }
4086
4087         if ((nlink > 0) && delete_pending) {
4088                 nlink -= 1;
4089         }
4090
4091         fullpathname = fname;
4092         if (!(mode & aDIR))
4093                 file_size = get_file_size(sbuf);
4094
4095         /* Pull out any data sent here before we realloc. */
4096         switch (info_level) {
4097                 case SMB_INFO_QUERY_EAS_FROM_LIST:
4098                 {
4099                         /* Pull any EA list from the data portion. */
4100                         uint32 ea_size;
4101
4102                         if (total_data < 4) {
4103                                 reply_nterror(
4104                                         req, NT_STATUS_INVALID_PARAMETER);
4105                                 return;
4106                         }
4107                         ea_size = IVAL(pdata,0);
4108
4109                         if (total_data > 0 && ea_size != total_data) {
4110                                 DEBUG(4,("call_trans2qfilepathinfo: Rejecting EA request with incorrect \
4111 total_data=%u (should be %u)\n", (unsigned int)total_data, (unsigned int)IVAL(pdata,0) ));
4112                                 reply_nterror(
4113                                         req, NT_STATUS_INVALID_PARAMETER);
4114                                 return;
4115                         }
4116
4117                         if (!lp_ea_support(SNUM(conn))) {
4118                                 reply_doserror(req, ERRDOS,
4119                                                ERReasnotsupported);
4120                                 return;
4121                         }
4122
4123                         /* Pull out the list of names. */
4124                         ea_list = read_ea_name_list(ctx, pdata + 4, ea_size - 4);
4125                         if (!ea_list) {
4126                                 reply_nterror(
4127                                         req, NT_STATUS_INVALID_PARAMETER);
4128                                 return;
4129                         }
4130                         break;
4131                 }
4132
4133                 case SMB_QUERY_POSIX_LOCK:
4134                 {
4135                         if (fsp == NULL || fsp->fh->fd == -1) {
4136                                 reply_nterror(req, NT_STATUS_INVALID_HANDLE);
4137                                 return;
4138                         }
4139
4140                         if (total_data != POSIX_LOCK_DATA_SIZE) {
4141                                 reply_nterror(
4142                                         req, NT_STATUS_INVALID_PARAMETER);
4143                                 return;
4144                         }
4145
4146                         /* Copy the lock range data. */
4147                         lock_data = (char *)TALLOC_MEMDUP(
4148                                 ctx, pdata, total_data);
4149                         if (!lock_data) {
4150                                 reply_nterror(req, NT_STATUS_NO_MEMORY);
4151                                 return;
4152                         }
4153                 }
4154                 default:
4155                         break;
4156         }
4157
4158         *pparams = (char *)SMB_REALLOC(*pparams,2);
4159         if (*pparams == NULL) {
4160                 reply_nterror(req, NT_STATUS_NO_MEMORY);
4161                 return;
4162         }
4163         params = *pparams;
4164         SSVAL(params,0,0);
4165         data_size = max_data_bytes + DIR_ENTRY_SAFETY_MARGIN;
4166         *ppdata = (char *)SMB_REALLOC(*ppdata, data_size); 
4167         if (*ppdata == NULL ) {
4168                 reply_nterror(req, NT_STATUS_NO_MEMORY);
4169                 return;
4170         }
4171         pdata = *ppdata;
4172         dstart = pdata;
4173         dend = dstart + data_size - 1;
4174
4175         create_time_ts = get_create_timespec(&sbuf,lp_fake_dir_create_times(SNUM(conn)));
4176         mtime_ts = get_mtimespec(&sbuf);
4177         atime_ts = get_atimespec(&sbuf);
4178
4179         allocation_size = get_allocation_size(conn,fsp,&sbuf);
4180
4181         if (!fsp) {
4182                 /* Do we have this path open ? */
4183                 files_struct *fsp1;
4184                 fileid = vfs_file_id_from_sbuf(conn, &sbuf);
4185                 fsp1 = file_find_di_first(fileid);
4186                 if (fsp1 && fsp1->initial_allocation_size) {
4187                         allocation_size = get_allocation_size(conn, fsp1, &sbuf);
4188                 }
4189         }
4190
4191         if (!null_timespec(write_time_ts) && !INFO_LEVEL_IS_UNIX(info_level)) {
4192                 mtime_ts = write_time_ts;
4193         }
4194
4195         if (lp_dos_filetime_resolution(SNUM(conn))) {
4196                 dos_filetime_timespec(&create_time_ts);
4197                 dos_filetime_timespec(&mtime_ts);
4198                 dos_filetime_timespec(&atime_ts);
4199         }
4200
4201         create_time = convert_timespec_to_time_t(create_time_ts);
4202         mtime = convert_timespec_to_time_t(mtime_ts);
4203         atime = convert_timespec_to_time_t(atime_ts);
4204
4205         /* NT expects the name to be in an exact form of the *full*
4206            filename. See the trans2 torture test */
4207         if (ISDOT(base_name)) {
4208                 dos_fname = talloc_strdup(ctx, "\\");
4209                 if (!dos_fname) {
4210                         reply_nterror(req, NT_STATUS_NO_MEMORY);
4211                         return;
4212                 }
4213         } else {
4214                 dos_fname = talloc_asprintf(ctx,
4215                                 "\\%s",
4216                                 fname);
4217                 if (!dos_fname) {
4218                         reply_nterror(req, NT_STATUS_NO_MEMORY);
4219                         return;
4220                 }
4221                 string_replace(dos_fname, '/', '\\');
4222         }
4223
4224         switch (info_level) {
4225                 case SMB_INFO_STANDARD:
4226                         DEBUG(10,("call_trans2qfilepathinfo: SMB_INFO_STANDARD\n"));
4227                         data_size = 22;
4228                         srv_put_dos_date2(pdata,l1_fdateCreation,create_time);
4229                         srv_put_dos_date2(pdata,l1_fdateLastAccess,atime);
4230                         srv_put_dos_date2(pdata,l1_fdateLastWrite,mtime); /* write time */
4231                         SIVAL(pdata,l1_cbFile,(uint32)file_size);
4232                         SIVAL(pdata,l1_cbFileAlloc,(uint32)allocation_size);
4233                         SSVAL(pdata,l1_attrFile,mode);
4234                         break;
4235
4236                 case SMB_INFO_QUERY_EA_SIZE:
4237                 {
4238                         unsigned int ea_size = estimate_ea_size(conn, fsp, fname);
4239                         DEBUG(10,("call_trans2qfilepathinfo: SMB_INFO_QUERY_EA_SIZE\n"));
4240                         data_size = 26;
4241                         srv_put_dos_date2(pdata,0,create_time);
4242                         srv_put_dos_date2(pdata,4,atime);
4243                         srv_put_dos_date2(pdata,8,mtime); /* write time */
4244                         SIVAL(pdata,12,(uint32)file_size);
4245                         SIVAL(pdata,16,(uint32)allocation_size);
4246                         SSVAL(pdata,20,mode);
4247                         SIVAL(pdata,22,ea_size);
4248                         break;
4249                 }
4250
4251                 case SMB_INFO_IS_NAME_VALID:
4252                         DEBUG(10,("call_trans2qfilepathinfo: SMB_INFO_IS_NAME_VALID\n"));
4253                         if (tran_call == TRANSACT2_QFILEINFO) {
4254                                 /* os/2 needs this ? really ?*/
4255                                 reply_doserror(req, ERRDOS, ERRbadfunc);
4256                                 return;
4257                         }
4258                         data_size = 0;
4259                         param_size = 0;
4260                         break;
4261
4262                 case SMB_INFO_QUERY_EAS_FROM_LIST:
4263                 {
4264                         size_t total_ea_len = 0;
4265                         struct ea_list *ea_file_list = NULL;
4266
4267                         DEBUG(10,("call_trans2qfilepathinfo: SMB_INFO_QUERY_EAS_FROM_LIST\n"));
4268
4269                         ea_file_list = get_ea_list_from_file(ctx, conn, fsp, fname, &total_ea_len);
4270                         ea_list = ea_list_union(ea_list, ea_file_list, &total_ea_len);
4271
4272                         if (!ea_list || (total_ea_len > data_size)) {
4273                                 data_size = 4;
4274                                 SIVAL(pdata,0,4);   /* EA List Length must be set to 4 if no EA's. */
4275                                 break;
4276                         }
4277
4278                         data_size = fill_ea_buffer(ctx, pdata, data_size, conn, ea_list);
4279                         break;
4280                 }
4281
4282                 case SMB_INFO_QUERY_ALL_EAS:
4283                 {
4284                         /* We have data_size bytes to put EA's into. */
4285                         size_t total_ea_len = 0;
4286
4287                         DEBUG(10,("call_trans2qfilepathinfo: SMB_INFO_QUERY_ALL_EAS\n"));
4288
4289                         ea_list = get_ea_list_from_file(ctx, conn, fsp, fname, &total_ea_len);
4290                         if (!ea_list || (total_ea_len > data_size)) {
4291                                 data_size = 4;
4292                                 SIVAL(pdata,0,4);   /* EA List Length must be set to 4 if no EA's. */
4293                                 break;
4294                         }
4295
4296                         data_size = fill_ea_buffer(ctx, pdata, data_size, conn, ea_list);
4297                         break;
4298                 }
4299
4300                 case SMB_FILE_BASIC_INFORMATION:
4301                 case SMB_QUERY_FILE_BASIC_INFO:
4302
4303                         if (info_level == SMB_QUERY_FILE_BASIC_INFO) {
4304                                 DEBUG(10,("call_trans2qfilepathinfo: SMB_QUERY_FILE_BASIC_INFO\n"));
4305                                 data_size = 36; /* w95 returns 40 bytes not 36 - why ?. */
4306                         } else {
4307                                 DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_BASIC_INFORMATION\n"));
4308                                 data_size = 40;
4309                                 SIVAL(pdata,36,0);
4310                         }
4311                         put_long_date_timespec(pdata,create_time_ts);
4312                         put_long_date_timespec(pdata+8,atime_ts);
4313                         put_long_date_timespec(pdata+16,mtime_ts); /* write time */
4314                         put_long_date_timespec(pdata+24,mtime_ts); /* change time */
4315                         SIVAL(pdata,32,mode);
4316
4317                         DEBUG(5,("SMB_QFBI - "));
4318                         DEBUG(5,("create: %s ", ctime(&create_time)));
4319                         DEBUG(5,("access: %s ", ctime(&atime)));
4320                         DEBUG(5,("write: %s ", ctime(&mtime)));
4321                         DEBUG(5,("change: %s ", ctime(&mtime)));
4322                         DEBUG(5,("mode: %x\n", mode));
4323                         break;
4324
4325                 case SMB_FILE_STANDARD_INFORMATION:
4326                 case SMB_QUERY_FILE_STANDARD_INFO:
4327
4328                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_STANDARD_INFORMATION\n"));
4329                         data_size = 24;
4330                         SOFF_T(pdata,0,allocation_size);
4331                         SOFF_T(pdata,8,file_size);
4332                         SIVAL(pdata,16,nlink);
4333                         SCVAL(pdata,20,delete_pending?1:0);
4334                         SCVAL(pdata,21,(mode&aDIR)?1:0);
4335                         SSVAL(pdata,22,0); /* Padding. */
4336                         break;
4337
4338                 case SMB_FILE_EA_INFORMATION:
4339                 case SMB_QUERY_FILE_EA_INFO:
4340                 {
4341                         unsigned int ea_size = estimate_ea_size(conn, fsp, fname);
4342                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_EA_INFORMATION\n"));
4343                         data_size = 4;
4344                         SIVAL(pdata,0,ea_size);
4345                         break;
4346                 }
4347
4348                 /* Get the 8.3 name - used if NT SMB was negotiated. */
4349                 case SMB_QUERY_FILE_ALT_NAME_INFO:
4350                 case SMB_FILE_ALTERNATE_NAME_INFORMATION:
4351                 {
4352                         char mangled_name[13];
4353                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ALTERNATE_NAME_INFORMATION\n"));
4354                         if (!name_to_8_3(base_name,mangled_name,
4355                                                 True,conn->params)) {
4356                                 reply_nterror(
4357                                         req,
4358                                         NT_STATUS_NO_MEMORY);
4359                         }
4360                         len = srvstr_push(dstart, req->flags2,
4361                                           pdata+4, mangled_name,
4362                                           PTR_DIFF(dend, pdata+4),
4363                                           STR_UNICODE);
4364                         data_size = 4 + len;
4365                         SIVAL(pdata,0,len);
4366                         break;
4367                 }
4368
4369                 case SMB_QUERY_FILE_NAME_INFO:
4370                         /*
4371                           this must be *exactly* right for ACLs on mapped drives to work
4372                          */
4373                         len = srvstr_push(dstart, req->flags2,
4374                                           pdata+4, dos_fname,
4375                                           PTR_DIFF(dend, pdata+4),
4376                                           STR_UNICODE);
4377                         DEBUG(10,("call_trans2qfilepathinfo: SMB_QUERY_FILE_NAME_INFO\n"));
4378                         data_size = 4 + len;
4379                         SIVAL(pdata,0,len);
4380                         break;
4381
4382                 case SMB_FILE_ALLOCATION_INFORMATION:
4383                 case SMB_QUERY_FILE_ALLOCATION_INFO:
4384                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ALLOCATION_INFORMATION\n"));
4385                         data_size = 8;
4386                         SOFF_T(pdata,0,allocation_size);
4387                         break;
4388
4389                 case SMB_FILE_END_OF_FILE_INFORMATION:
4390                 case SMB_QUERY_FILE_END_OF_FILEINFO:
4391                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_END_OF_FILE_INFORMATION\n"));
4392                         data_size = 8;
4393                         SOFF_T(pdata,0,file_size);
4394                         break;
4395
4396                 case SMB_QUERY_FILE_ALL_INFO:
4397                 case SMB_FILE_ALL_INFORMATION:
4398                 {
4399                         unsigned int ea_size = estimate_ea_size(conn, fsp, fname);
4400                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ALL_INFORMATION\n"));
4401                         put_long_date_timespec(pdata,create_time_ts);
4402                         put_long_date_timespec(pdata+8,atime_ts);
4403                         put_long_date_timespec(pdata+16,mtime_ts); /* write time */
4404                         put_long_date_timespec(pdata+24,mtime_ts); /* change time */
4405                         SIVAL(pdata,32,mode);
4406                         SIVAL(pdata,36,0); /* padding. */
4407                         pdata += 40;
4408                         SOFF_T(pdata,0,allocation_size);
4409                         SOFF_T(pdata,8,file_size);
4410                         SIVAL(pdata,16,nlink);
4411                         SCVAL(pdata,20,delete_pending);
4412                         SCVAL(pdata,21,(mode&aDIR)?1:0);
4413                         SSVAL(pdata,22,0);
4414                         pdata += 24;
4415                         SIVAL(pdata,0,ea_size);
4416                         pdata += 4; /* EA info */
4417                         len = srvstr_push(dstart, req->flags2,
4418                                           pdata+4, dos_fname,
4419                                           PTR_DIFF(dend, pdata+4),
4420                                           STR_UNICODE);
4421                         SIVAL(pdata,0,len);
4422                         pdata += 4 + len;
4423                         data_size = PTR_DIFF(pdata,(*ppdata));
4424                         break;
4425                 }
4426                 case SMB_FILE_INTERNAL_INFORMATION:
4427                         /* This should be an index number - looks like
4428                            dev/ino to me :-) 
4429
4430                            I think this causes us to fail the IFSKIT
4431                            BasicFileInformationTest. -tpot */
4432
4433                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_INTERNAL_INFORMATION\n"));
4434                         SIVAL(pdata,0,sbuf.st_ino); /* FileIndexLow */
4435                         SIVAL(pdata,4,sbuf.st_dev); /* FileIndexHigh */
4436                         data_size = 8;
4437                         break;
4438
4439                 case SMB_FILE_ACCESS_INFORMATION:
4440                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ACCESS_INFORMATION\n"));
4441                         if (fsp) {
4442                                 SIVAL(pdata,0,fsp->access_mask);
4443                         } else {
4444                                 /* GENERIC_EXECUTE mapping from Windows */
4445                                 SIVAL(pdata,0,0x12019F);
4446                         }
4447                         data_size = 4;
4448                         break;
4449
4450                 case SMB_FILE_NAME_INFORMATION:
4451                         /* Pathname with leading '\'. */
4452                         {
4453                                 size_t byte_len;
4454                                 byte_len = dos_PutUniCode(pdata+4,dos_fname,(size_t)max_data_bytes,False);
4455                                 DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_NAME_INFORMATION\n"));
4456                                 SIVAL(pdata,0,byte_len);
4457                                 data_size = 4 + byte_len;
4458                                 break;
4459                         }
4460
4461                 case SMB_FILE_DISPOSITION_INFORMATION:
4462                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_DISPOSITION_INFORMATION\n"));
4463                         data_size = 1;
4464                         SCVAL(pdata,0,delete_pending);
4465                         break;
4466
4467                 case SMB_FILE_POSITION_INFORMATION:
4468                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_POSITION_INFORMATION\n"));
4469                         data_size = 8;
4470                         SOFF_T(pdata,0,pos);
4471                         break;
4472
4473                 case SMB_FILE_MODE_INFORMATION:
4474                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_MODE_INFORMATION\n"));
4475                         SIVAL(pdata,0,mode);
4476                         data_size = 4;
4477                         break;
4478
4479                 case SMB_FILE_ALIGNMENT_INFORMATION:
4480                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ALIGNMENT_INFORMATION\n"));
4481                         SIVAL(pdata,0,0); /* No alignment needed. */
4482                         data_size = 4;
4483                         break;
4484
4485                 /*
4486                  * NT4 server just returns "invalid query" to this - if we try
4487                  * to answer it then NTws gets a BSOD! (tridge).  W2K seems to
4488                  * want this. JRA.
4489                  */
4490                 /* The first statement above is false - verified using Thursby
4491                  * client against NT4 -- gcolley.
4492                  */
4493                 case SMB_QUERY_FILE_STREAM_INFO:
4494                 case SMB_FILE_STREAM_INFORMATION: {
4495                         unsigned int num_streams;
4496                         struct stream_struct *streams;
4497                         NTSTATUS status;
4498
4499                         DEBUG(10,("call_trans2qfilepathinfo: "
4500                                   "SMB_FILE_STREAM_INFORMATION\n"));
4501
4502                         status = SMB_VFS_STREAMINFO(
4503                                 conn, fsp, fname, talloc_tos(),
4504                                 &num_streams, &streams);
4505
4506                         if (!NT_STATUS_IS_OK(status)) {
4507                                 DEBUG(10, ("could not get stream info: %s\n",
4508                                            nt_errstr(status)));
4509                                 reply_nterror(req, status);
4510                                 return;
4511                         }
4512
4513                         status = marshall_stream_info(num_streams, streams,
4514                                                       pdata, max_data_bytes,
4515                                                       &data_size);
4516
4517                         if (!NT_STATUS_IS_OK(status)) {
4518                                 DEBUG(10, ("marshall_stream_info failed: %s\n",
4519                                            nt_errstr(status)));
4520                                 reply_nterror(req, status);
4521                                 return;
4522                         }
4523
4524                         TALLOC_FREE(streams);
4525
4526                         break;
4527                 }
4528                 case SMB_QUERY_COMPRESSION_INFO:
4529                 case SMB_FILE_COMPRESSION_INFORMATION:
4530                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_COMPRESSION_INFORMATION\n"));
4531                         SOFF_T(pdata,0,file_size);
4532                         SIVAL(pdata,8,0); /* ??? */
4533                         SIVAL(pdata,12,0); /* ??? */
4534                         data_size = 16;
4535                         break;
4536
4537                 case SMB_FILE_NETWORK_OPEN_INFORMATION:
4538                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_NETWORK_OPEN_INFORMATION\n"));
4539                         put_long_date_timespec(pdata,create_time_ts);
4540                         put_long_date_timespec(pdata+8,atime_ts);
4541                         put_long_date_timespec(pdata+16,mtime_ts); /* write time */
4542                         put_long_date_timespec(pdata+24,mtime_ts); /* change time */
4543                         SOFF_T(pdata,32,allocation_size);
4544                         SOFF_T(pdata,40,file_size);
4545                         SIVAL(pdata,48,mode);
4546                         SIVAL(pdata,52,0); /* ??? */
4547                         data_size = 56;
4548                         break;
4549
4550                 case SMB_FILE_ATTRIBUTE_TAG_INFORMATION:
4551                         DEBUG(10,("call_trans2qfilepathinfo: SMB_FILE_ATTRIBUTE_TAG_INFORMATION\n"));
4552                         SIVAL(pdata,0,mode);
4553                         SIVAL(pdata,4,0);
4554                         data_size = 8;
4555                         break;
4556
4557                 /*
4558                  * CIFS UNIX Extensions.
4559                  */
4560
4561                 case SMB_QUERY_FILE_UNIX_BASIC:
4562
4563                         pdata = store_file_unix_basic(conn, pdata, fsp, &sbuf);
4564                         data_size = PTR_DIFF(pdata,(*ppdata));
4565
4566                         {
4567                                 int i;
4568                                 DEBUG(4,("call_trans2qfilepathinfo: SMB_QUERY_FILE_UNIX_BASIC "));
4569
4570                                 for (i=0; i<100; i++)
4571                                         DEBUG(4,("%d=%x, ",i, (*ppdata)[i]));
4572                                 DEBUG(4,("\n"));
4573                         }
4574
4575                         break;
4576
4577                 case SMB_QUERY_FILE_UNIX_INFO2:
4578
4579                         pdata = store_file_unix_basic_info2(conn, pdata, fsp, &sbuf);
4580                         data_size = PTR_DIFF(pdata,(*ppdata));
4581
4582                         {
4583                                 int i;
4584                                 DEBUG(4,("call_trans2qfilepathinfo: SMB_QUERY_FILE_UNIX_INFO2 "));
4585
4586                                 for (i=0; i<100; i++)
4587                                         DEBUG(4,("%d=%x, ",i, (*ppdata)[i]));
4588                                 DEBUG(4,("\n"));
4589                         }
4590
4591                         break;
4592
4593                 case SMB_QUERY_FILE_UNIX_LINK:
4594                         {
4595                                 char *buffer = TALLOC_ARRAY(ctx, char, PATH_MAX+1);
4596
4597                                 if (!buffer) {
4598                                         reply_nterror(req, NT_STATUS_NO_MEMORY);
4599                                         return;
4600                                 }
4601
4602                                 DEBUG(10,("call_trans2qfilepathinfo: SMB_QUERY_FILE_UNIX_LINK\n"));
4603 #ifdef S_ISLNK
4604                                 if(!S_ISLNK(sbuf.st_mode)) {
4605                                         reply_unixerror(req, ERRSRV,
4606                                                         ERRbadlink);
4607                                         return;
4608                                 }
4609 #else
4610                                 reply_unixerror(req, ERRDOS, ERRbadlink);
4611                                 return;
4612 #endif
4613                                 len = SMB_VFS_READLINK(conn,fullpathname,
4614                                                 buffer, PATH_MAX);
4615                                 if (len == -1) {
4616                                         reply_unixerror(req, ERRDOS,
4617                                                         ERRnoaccess);
4618                                         return;
4619                                 }
4620                                 buffer[len] = 0;
4621                                 len = srvstr_push(dstart, req->flags2,
4622                                                   pdata, buffer,
4623                                                   PTR_DIFF(dend, pdata),
4624                                                   STR_TERMINATE);
4625                                 pdata += len;
4626                                 data_size = PTR_DIFF(pdata,(*ppdata));
4627
4628                                 break;
4629                         }
4630
4631 #if defined(HAVE_POSIX_ACLS)
4632                 case SMB_QUERY_POSIX_ACL:
4633                         {
4634                                 SMB_ACL_T file_acl = NULL;
4635                                 SMB_ACL_T def_acl = NULL;
4636                                 uint16 num_file_acls = 0;
4637                                 uint16 num_def_acls = 0;
4638
4639                                 if (fsp && !fsp->is_directory && (fsp->fh->fd != -1)) {
4640                                         file_acl = SMB_VFS_SYS_ACL_GET_FD(fsp);
4641                                 } else {
4642                                         file_acl = SMB_VFS_SYS_ACL_GET_FILE(conn, fname, SMB_ACL_TYPE_ACCESS);
4643                                 }
4644
4645                                 if (file_acl == NULL && no_acl_syscall_error(errno)) {
4646                                         DEBUG(5,("call_trans2qfilepathinfo: ACLs not implemented on filesystem containing %s\n",
4647                                                 fname ));
4648                                         reply_nterror(
4649                                                 req,
4650                                                 NT_STATUS_NOT_IMPLEMENTED);
4651                                         return;
4652                                 }
4653
4654                                 if (S_ISDIR(sbuf.st_mode)) {
4655                                         if (fsp && fsp->is_directory) {
4656                                                 def_acl = SMB_VFS_SYS_ACL_GET_FILE(conn, fsp->fsp_name, SMB_ACL_TYPE_DEFAULT);
4657                                         } else {
4658                                                 def_acl = SMB_VFS_SYS_ACL_GET_FILE(conn, fname, SMB_ACL_TYPE_DEFAULT);
4659                                         }
4660                                         def_acl = free_empty_sys_acl(conn, def_acl);
4661                                 }
4662
4663                                 num_file_acls = count_acl_entries(conn, file_acl);
4664                                 num_def_acls = count_acl_entries(conn, def_acl);
4665
4666                                 if ( data_size < (num_file_acls + num_def_acls)*SMB_POSIX_ACL_ENTRY_SIZE + SMB_POSIX_ACL_HEADER_SIZE) {
4667                                         DEBUG(5,("call_trans2qfilepathinfo: data_size too small (%u) need %u\n",
4668                                                 data_size,
4669                                                 (unsigned int)((num_file_acls + num_def_acls)*SMB_POSIX_ACL_ENTRY_SIZE +
4670                                                         SMB_POSIX_ACL_HEADER_SIZE) ));
4671                                         if (file_acl) {
4672                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, file_acl);
4673                                         }
4674                                         if (def_acl) {
4675                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, def_acl);
4676                                         }
4677                                         reply_nterror(
4678                                                 req,
4679                                                 NT_STATUS_BUFFER_TOO_SMALL);
4680                                         return;
4681                                 }
4682
4683                                 SSVAL(pdata,0,SMB_POSIX_ACL_VERSION);
4684                                 SSVAL(pdata,2,num_file_acls);
4685                                 SSVAL(pdata,4,num_def_acls);
4686                                 if (!marshall_posix_acl(conn, pdata + SMB_POSIX_ACL_HEADER_SIZE, &sbuf, file_acl)) {
4687                                         if (file_acl) {
4688                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, file_acl);
4689                                         }
4690                                         if (def_acl) {
4691                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, def_acl);
4692                                         }
4693                                         reply_nterror(
4694                                                 req, NT_STATUS_INTERNAL_ERROR);
4695                                         return;
4696                                 }
4697                                 if (!marshall_posix_acl(conn, pdata + SMB_POSIX_ACL_HEADER_SIZE + (num_file_acls*SMB_POSIX_ACL_ENTRY_SIZE), &sbuf, def_acl)) {
4698                                         if (file_acl) {
4699                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, file_acl);
4700                                         }
4701                                         if (def_acl) {
4702                                                 SMB_VFS_SYS_ACL_FREE_ACL(conn, def_acl);
4703                                         }
4704                                         reply_nterror(
4705                                                 req,
4706                                                 NT_STATUS_INTERNAL_ERROR);
4707                                         return;
4708                                 }
4709
4710                                 if (file_acl) {
4711                                         SMB_VFS_SYS_ACL_FREE_ACL(conn, file_acl);
4712                                 }
4713                                 if (def_acl) {
4714                                         SMB_VFS_SYS_ACL_FREE_ACL(conn, def_acl);
4715                                 }
4716                                 data_size = (num_file_acls + num_def_acls)*SMB_POSIX_ACL_ENTRY_SIZE + SMB_POSIX_ACL_HEADER_SIZE;
4717                                 break;
4718                         }
4719 #endif
4720
4721
4722                 case SMB_QUERY_POSIX_LOCK:
4723                 {
4724                         NTSTATUS status = NT_STATUS_INVALID_LEVEL;
4725                         uint64_t count;
4726                         uint64_t offset;
4727                         uint32 lock_pid;
4728                         enum brl_type lock_type;
4729
4730                         if (total_data != POSIX_LOCK_DATA_SIZE) {
4731                                 reply_nterror(
4732                                         req, NT_STATUS_INVALID_PARAMETER);
4733                                 return;
4734                         }
4735
4736                         switch (SVAL(pdata, POSIX_LOCK_TYPE_OFFSET)) {
4737                                 case POSIX_LOCK_TYPE_READ:
4738                                         lock_type = READ_LOCK;
4739                                         break;
4740                                 case POSIX_LOCK_TYPE_WRITE:
4741                                         lock_type = WRITE_LOCK;
4742                                         break;
4743                                 case POSIX_LOCK_TYPE_UNLOCK:
4744                                 default:
4745                                         /* There's no point in asking for an unlock... */
4746                                         reply_nterror(
4747                                                 req,
4748                                                 NT_STATUS_INVALID_PARAMETER);
4749                                         return;
4750                         }
4751
4752                         lock_pid = IVAL(pdata, POSIX_LOCK_PID_OFFSET);
4753 #if defined(HAVE_LONGLONG)
4754                         offset = (((uint64_t) IVAL(pdata,(POSIX_LOCK_START_OFFSET+4))) << 32) |
4755                                         ((uint64_t) IVAL(pdata,POSIX_LOCK_START_OFFSET));
4756                         count = (((uint64_t) IVAL(pdata,(POSIX_LOCK_LEN_OFFSET+4))) << 32) |
4757                                         ((uint64_t) IVAL(pdata,POSIX_LOCK_LEN_OFFSET));
4758 #else /* HAVE_LONGLONG */
4759                         offset = (uint64_t)IVAL(pdata,POSIX_LOCK_START_OFFSET);
4760                         count = (uint64_t)IVAL(pdata,POSIX_LOCK_LEN_OFFSET);
4761 #endif /* HAVE_LONGLONG */
4762
4763                         status = query_lock(fsp,
4764                                         &lock_pid,
4765                                         &count,
4766                                         &offset,
4767                                         &lock_type,
4768                                         POSIX_LOCK);
4769
4770                         if (ERROR_WAS_LOCK_DENIED(status)) {
4771                                 /* Here we need to report who has it locked... */
4772                                 data_size = POSIX_LOCK_DATA_SIZE;
4773
4774                                 SSVAL(pdata, POSIX_LOCK_TYPE_OFFSET, lock_type);
4775                                 SSVAL(pdata, POSIX_LOCK_FLAGS_OFFSET, 0);
4776                                 SIVAL(pdata, POSIX_LOCK_PID_OFFSET, lock_pid);
4777 #if defined(HAVE_LONGLONG)
4778                                 SIVAL(pdata, POSIX_LOCK_START_OFFSET, (uint32)(offset & 0xFFFFFFFF));
4779                                 SIVAL(pdata, POSIX_LOCK_START_OFFSET + 4, (uint32)((offset >> 32) & 0xFFFFFFFF));
4780                                 SIVAL(pdata, POSIX_LOCK_LEN_OFFSET, (uint32)(count & 0xFFFFFFFF));
4781                                 SIVAL(pdata, POSIX_LOCK_LEN_OFFSET + 4, (uint32)((count >> 32) & 0xFFFFFFFF));
4782 #else /* HAVE_LONGLONG */
4783                                 SIVAL(pdata, POSIX_LOCK_START_OFFSET, offset);
4784                                 SIVAL(pdata, POSIX_LOCK_LEN_OFFSET, count);
4785 #endif /* HAVE_LONGLONG */
4786
4787                         } else if (NT_STATUS_IS_OK(status)) {
4788                                 /* For success we just return a copy of what we sent
4789                                    with the lock type set to POSIX_LOCK_TYPE_UNLOCK. */
4790                                 data_size = POSIX_LOCK_DATA_SIZE;
4791                                 memcpy(pdata, lock_data, POSIX_LOCK_DATA_SIZE);
4792                                 SSVAL(pdata, POSIX_LOCK_TYPE_OFFSET, POSIX_LOCK_TYPE_UNLOCK);
4793                         } else {
4794                                 reply_nterror(req, status);
4795                                 return;
4796                         }
4797                         break;
4798                 }
4799
4800                 default:
4801                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
4802                         return;
4803         }
4804
4805         send_trans2_replies(conn, req, params, param_size, *ppdata, data_size,
4806                             max_data_bytes);
4807
4808         return;
4809 }
4810
4811 /****************************************************************************
4812  Set a hard link (called by UNIX extensions and by NT rename with HARD link
4813  code.
4814 ****************************************************************************/
4815
4816 NTSTATUS hardlink_internals(TALLOC_CTX *ctx,
4817                 connection_struct *conn,
4818                 const char *oldname_in,
4819                 const char *newname_in)
4820 {
4821         SMB_STRUCT_STAT sbuf1, sbuf2;
4822         char *last_component_oldname = NULL;
4823         char *last_component_newname = NULL;
4824         char *oldname = NULL;
4825         char *newname = NULL;
4826         NTSTATUS status = NT_STATUS_OK;
4827
4828         ZERO_STRUCT(sbuf1);
4829         ZERO_STRUCT(sbuf2);
4830
4831         status = unix_convert(ctx, conn, oldname_in, False, &oldname,
4832                         &last_component_oldname, &sbuf1);
4833         if (!NT_STATUS_IS_OK(status)) {
4834                 return status;
4835         }
4836
4837         status = check_name(conn, oldname);
4838         if (!NT_STATUS_IS_OK(status)) {
4839                 return status;
4840         }
4841
4842         /* source must already exist. */
4843         if (!VALID_STAT(sbuf1)) {
4844                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
4845         }
4846
4847         status = unix_convert(ctx, conn, newname_in, False, &newname,
4848                         &last_component_newname, &sbuf2);
4849         if (!NT_STATUS_IS_OK(status)) {
4850                 return status;
4851         }
4852
4853         status = check_name(conn, newname);
4854         if (!NT_STATUS_IS_OK(status)) {
4855                 return status;
4856         }
4857
4858         /* Disallow if newname already exists. */
4859         if (VALID_STAT(sbuf2)) {
4860                 return NT_STATUS_OBJECT_NAME_COLLISION;
4861         }
4862
4863         /* No links from a directory. */
4864         if (S_ISDIR(sbuf1.st_mode)) {
4865                 return NT_STATUS_FILE_IS_A_DIRECTORY;
4866         }
4867
4868         /* Ensure this is within the share. */
4869         status = check_reduced_name(conn, oldname);
4870         if (!NT_STATUS_IS_OK(status)) {
4871                 return status;
4872         }
4873
4874         DEBUG(10,("hardlink_internals: doing hard link %s -> %s\n", newname, oldname ));
4875
4876         if (SMB_VFS_LINK(conn,oldname,newname) != 0) {
4877                 status = map_nt_error_from_unix(errno);
4878                 DEBUG(3,("hardlink_internals: Error %s hard link %s -> %s\n",
4879                                 nt_errstr(status), newname, oldname));
4880         }
4881
4882         return status;
4883 }
4884
4885 /****************************************************************************
4886  Deal with setting the time from any of the setfilepathinfo functions.
4887 ****************************************************************************/
4888
4889 NTSTATUS smb_set_file_time(connection_struct *conn,
4890                            files_struct *fsp,
4891                            const char *fname,
4892                            const SMB_STRUCT_STAT *psbuf,
4893                            struct timespec ts[2],
4894                            bool setting_write_time)
4895 {
4896         uint32 action =
4897                 FILE_NOTIFY_CHANGE_LAST_ACCESS
4898                 |FILE_NOTIFY_CHANGE_LAST_WRITE;
4899
4900         if (!VALID_STAT(*psbuf)) {
4901                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
4902         }
4903
4904         /* get some defaults (no modifications) if any info is zero or -1. */
4905         if (null_timespec(ts[0])) {
4906                 ts[0] = get_atimespec(psbuf);
4907                 action &= ~FILE_NOTIFY_CHANGE_LAST_ACCESS;
4908         }
4909
4910         if (null_timespec(ts[1])) {
4911                 ts[1] = get_mtimespec(psbuf);
4912                 action &= ~FILE_NOTIFY_CHANGE_LAST_WRITE;
4913         }
4914
4915         if (!setting_write_time) {
4916                 /* ts[1] comes from change time, not write time. */
4917                 action &= ~FILE_NOTIFY_CHANGE_LAST_WRITE;
4918         }
4919
4920         DEBUG(6,("smb_set_file_time: actime: %s " , time_to_asc(convert_timespec_to_time_t(ts[0])) ));
4921         DEBUG(6,("smb_set_file_time: modtime: %s ", time_to_asc(convert_timespec_to_time_t(ts[1])) ));
4922
4923         /*
4924          * Try and set the times of this file if
4925          * they are different from the current values.
4926          */
4927
4928         {
4929                 struct timespec mts = get_mtimespec(psbuf);
4930                 struct timespec ats = get_atimespec(psbuf);
4931                 if ((timespec_compare(&ts[0], &ats) == 0) && (timespec_compare(&ts[1], &mts) == 0)) {
4932                         return NT_STATUS_OK;
4933                 }
4934         }
4935
4936         if (setting_write_time) {
4937                 /*
4938                  * This was a setfileinfo on an open file.
4939                  * NT does this a lot. We also need to 
4940                  * set the time here, as it can be read by 
4941                  * FindFirst/FindNext and with the patch for bug #2045
4942                  * in smbd/fileio.c it ensures that this timestamp is
4943                  * kept sticky even after a write. We save the request
4944                  * away and will set it on file close and after a write. JRA.
4945                  */
4946
4947                 DEBUG(10,("smb_set_file_time: setting pending modtime to %s\n",
4948                           time_to_asc(convert_timespec_to_time_t(ts[1])) ));
4949
4950                 if (fsp != NULL) {
4951                         if (fsp->base_fsp) {
4952                                 set_sticky_write_time_fsp(fsp->base_fsp, ts[1]);
4953                         } else {
4954                                 set_sticky_write_time_fsp(fsp, ts[1]);
4955                         }
4956                 } else {
4957                         set_sticky_write_time_path(conn, fname,
4958                                             vfs_file_id_from_sbuf(conn, psbuf),
4959                                             ts[1]);
4960                 }
4961         }
4962
4963         DEBUG(10,("smb_set_file_time: setting utimes to modified values.\n"));
4964
4965         if (fsp && fsp->base_fsp) {
4966                 fname = fsp->base_fsp->fsp_name;
4967         }
4968
4969         if(file_ntimes(conn, fname, ts)!=0) {
4970                 return map_nt_error_from_unix(errno);
4971         }
4972         notify_fname(conn, NOTIFY_ACTION_MODIFIED, action, fname);
4973
4974         return NT_STATUS_OK;
4975 }
4976
4977 /****************************************************************************
4978  Deal with setting the dosmode from any of the setfilepathinfo functions.
4979 ****************************************************************************/
4980
4981 static NTSTATUS smb_set_file_dosmode(connection_struct *conn,
4982                                 const char *fname,
4983                                 SMB_STRUCT_STAT *psbuf,
4984                                 uint32 dosmode)
4985 {
4986         if (!VALID_STAT(*psbuf)) {
4987                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
4988         }
4989
4990         if (dosmode) {
4991                 if (S_ISDIR(psbuf->st_mode)) {
4992                         dosmode |= aDIR;
4993                 } else {
4994                         dosmode &= ~aDIR;
4995                 }
4996         }
4997
4998         DEBUG(6,("smb_set_file_dosmode: dosmode: 0x%x\n", (unsigned int)dosmode));
4999
5000         /* check the mode isn't different, before changing it */
5001         if ((dosmode != 0) && (dosmode != dos_mode(conn, fname, psbuf))) {
5002
5003                 DEBUG(10,("smb_set_file_dosmode: file %s : setting dos mode 0x%x\n",
5004                                         fname, (unsigned int)dosmode ));
5005
5006                 if(file_set_dosmode(conn, fname, dosmode, psbuf, NULL, false)) {
5007                         DEBUG(2,("smb_set_file_dosmode: file_set_dosmode of %s failed (%s)\n",
5008                                                 fname, strerror(errno)));
5009                         return map_nt_error_from_unix(errno);
5010                 }
5011         }
5012         return NT_STATUS_OK;
5013 }
5014
5015 /****************************************************************************
5016  Deal with setting the size from any of the setfilepathinfo functions.
5017 ****************************************************************************/
5018
5019 static NTSTATUS smb_set_file_size(connection_struct *conn,
5020                                   struct smb_request *req,
5021                                 files_struct *fsp,
5022                                 const char *fname,
5023                                 SMB_STRUCT_STAT *psbuf,
5024                                 SMB_OFF_T size)
5025 {
5026         NTSTATUS status = NT_STATUS_OK;
5027         files_struct *new_fsp = NULL;
5028
5029         if (!VALID_STAT(*psbuf)) {
5030                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
5031         }
5032
5033         DEBUG(6,("smb_set_file_size: size: %.0f ", (double)size));
5034
5035         if (size == get_file_size(*psbuf)) {
5036                 return NT_STATUS_OK;
5037         }
5038
5039         DEBUG(10,("smb_set_file_size: file %s : setting new size to %.0f\n",
5040                 fname, (double)size ));
5041
5042         if (fsp && fsp->fh->fd != -1) {
5043                 /* Handle based call. */
5044                 if (vfs_set_filelen(fsp, size) == -1) {
5045                         return map_nt_error_from_unix(errno);
5046                 }
5047                 trigger_write_time_update_immediate(fsp);
5048                 return NT_STATUS_OK;
5049         }
5050
5051         status = SMB_VFS_CREATE_FILE(
5052                 conn,                                   /* conn */
5053                 req,                                    /* req */
5054                 0,                                      /* root_dir_fid */
5055                 fname,                                  /* fname */
5056                 0,                                      /* create_file_flags */
5057                 FILE_WRITE_ATTRIBUTES,                  /* access_mask */
5058                 (FILE_SHARE_READ | FILE_SHARE_WRITE |   /* share_access */
5059                     FILE_SHARE_DELETE),
5060                 FILE_OPEN,                              /* create_disposition*/
5061                 0,                                      /* create_options */
5062                 FILE_ATTRIBUTE_NORMAL,                  /* file_attributes */
5063                 FORCE_OPLOCK_BREAK_TO_NONE,             /* oplock_request */
5064                 0,                                      /* allocation_size */
5065                 NULL,                                   /* sd */
5066                 NULL,                                   /* ea_list */
5067                 &new_fsp,                               /* result */
5068                 NULL,                                   /* pinfo */
5069                 psbuf);                                 /* psbuf */
5070
5071         if (!NT_STATUS_IS_OK(status)) {
5072                 /* NB. We check for open_was_deferred in the caller. */
5073                 return status;
5074         }
5075
5076         if (vfs_set_filelen(new_fsp, size) == -1) {
5077                 status = map_nt_error_from_unix(errno);
5078                 close_file(req, new_fsp,NORMAL_CLOSE);
5079                 return status;
5080         }
5081
5082         trigger_write_time_update_immediate(new_fsp);
5083         close_file(req, new_fsp,NORMAL_CLOSE);
5084         return NT_STATUS_OK;
5085 }
5086
5087 /****************************************************************************
5088  Deal with SMB_INFO_SET_EA.
5089 ****************************************************************************/
5090
5091 static NTSTATUS smb_info_set_ea(connection_struct *conn,
5092                                 const char *pdata,
5093                                 int total_data,
5094                                 files_struct *fsp,
5095                                 const char *fname)
5096 {
5097         struct ea_list *ea_list = NULL;
5098         TALLOC_CTX *ctx = NULL;
5099         NTSTATUS status = NT_STATUS_OK;
5100
5101         if (total_data < 10) {
5102
5103                 /* OS/2 workplace shell seems to send SET_EA requests of "null"
5104                    length. They seem to have no effect. Bug #3212. JRA */
5105
5106                 if ((total_data == 4) && (IVAL(pdata,0) == 4)) {
5107                         /* We're done. We only get EA info in this call. */
5108                         return NT_STATUS_OK;
5109                 }
5110
5111                 return NT_STATUS_INVALID_PARAMETER;
5112         }
5113
5114         if (IVAL(pdata,0) > total_data) {
5115                 DEBUG(10,("smb_info_set_ea: bad total data size (%u) > %u\n",
5116                         IVAL(pdata,0), (unsigned int)total_data));
5117                 return NT_STATUS_INVALID_PARAMETER;
5118         }
5119
5120         ctx = talloc_tos();
5121         ea_list = read_ea_list(ctx, pdata + 4, total_data - 4);
5122         if (!ea_list) {
5123                 return NT_STATUS_INVALID_PARAMETER;
5124         }
5125         status = set_ea(conn, fsp, fname, ea_list);
5126
5127         return status;
5128 }
5129
5130 /****************************************************************************
5131  Deal with SMB_SET_FILE_DISPOSITION_INFO.
5132 ****************************************************************************/
5133
5134 static NTSTATUS smb_set_file_disposition_info(connection_struct *conn,
5135                                 const char *pdata,
5136                                 int total_data,
5137                                 files_struct *fsp,
5138                                 const char *fname,
5139                                 SMB_STRUCT_STAT *psbuf)
5140 {
5141         NTSTATUS status = NT_STATUS_OK;
5142         bool delete_on_close;
5143         uint32 dosmode = 0;
5144
5145         if (total_data < 1) {
5146                 return NT_STATUS_INVALID_PARAMETER;
5147         }
5148
5149         if (fsp == NULL) {
5150                 return NT_STATUS_INVALID_HANDLE;
5151         }
5152
5153         delete_on_close = (CVAL(pdata,0) ? True : False);
5154         dosmode = dos_mode(conn, fname, psbuf);
5155
5156         DEBUG(10,("smb_set_file_disposition_info: file %s, dosmode = %u, "
5157                 "delete_on_close = %u\n",
5158                 fsp->fsp_name,
5159                 (unsigned int)dosmode,
5160                 (unsigned int)delete_on_close ));
5161
5162         status = can_set_delete_on_close(fsp, delete_on_close, dosmode);
5163  
5164         if (!NT_STATUS_IS_OK(status)) {
5165                 return status;
5166         }
5167
5168         /* The set is across all open files on this dev/inode pair. */
5169         if (!set_delete_on_close(fsp, delete_on_close,
5170                                  &conn->server_info->utok)) {
5171                 return NT_STATUS_ACCESS_DENIED;
5172         }
5173         return NT_STATUS_OK;
5174 }
5175
5176 /****************************************************************************
5177  Deal with SMB_FILE_POSITION_INFORMATION.
5178 ****************************************************************************/
5179
5180 static NTSTATUS smb_file_position_information(connection_struct *conn,
5181                                 const char *pdata,
5182                                 int total_data,
5183                                 files_struct *fsp)
5184 {
5185         uint64_t position_information;
5186
5187         if (total_data < 8) {
5188                 return NT_STATUS_INVALID_PARAMETER;
5189         }
5190
5191         if (fsp == NULL) {
5192                 /* Ignore on pathname based set. */
5193                 return NT_STATUS_OK;
5194         }
5195
5196         position_information = (uint64_t)IVAL(pdata,0);
5197 #ifdef LARGE_SMB_OFF_T
5198         position_information |= (((uint64_t)IVAL(pdata,4)) << 32);
5199 #else /* LARGE_SMB_OFF_T */
5200         if (IVAL(pdata,4) != 0) {
5201                 /* more than 32 bits? */
5202                 return NT_STATUS_INVALID_PARAMETER;
5203         }
5204 #endif /* LARGE_SMB_OFF_T */
5205
5206         DEBUG(10,("smb_file_position_information: Set file position information for file %s to %.0f\n",
5207                 fsp->fsp_name, (double)position_information ));
5208         fsp->fh->position_information = position_information;
5209         return NT_STATUS_OK;
5210 }
5211
5212 /****************************************************************************
5213  Deal with SMB_FILE_MODE_INFORMATION.
5214 ****************************************************************************/
5215
5216 static NTSTATUS smb_file_mode_information(connection_struct *conn,
5217                                 const char *pdata,
5218                                 int total_data)
5219 {
5220         uint32 mode;
5221
5222         if (total_data < 4) {
5223                 return NT_STATUS_INVALID_PARAMETER;
5224         }
5225         mode = IVAL(pdata,0);
5226         if (mode != 0 && mode != 2 && mode != 4 && mode != 6) {
5227                 return NT_STATUS_INVALID_PARAMETER;
5228         }
5229         return NT_STATUS_OK;
5230 }
5231
5232 /****************************************************************************
5233  Deal with SMB_SET_FILE_UNIX_LINK (create a UNIX symlink).
5234 ****************************************************************************/
5235
5236 static NTSTATUS smb_set_file_unix_link(connection_struct *conn,
5237                                        struct smb_request *req,
5238                                        const char *pdata,
5239                                        int total_data,
5240                                        const char *fname)
5241 {
5242         char *link_target = NULL;
5243         const char *newname = fname;
5244         NTSTATUS status = NT_STATUS_OK;
5245         TALLOC_CTX *ctx = talloc_tos();
5246
5247         /* Set a symbolic link. */
5248         /* Don't allow this if follow links is false. */
5249
5250         if (total_data == 0) {
5251                 return NT_STATUS_INVALID_PARAMETER;
5252         }
5253
5254         if (!lp_symlinks(SNUM(conn))) {
5255                 return NT_STATUS_ACCESS_DENIED;
5256         }
5257
5258         srvstr_pull_talloc(ctx, pdata, req->flags2, &link_target, pdata,
5259                     total_data, STR_TERMINATE);
5260
5261         if (!link_target) {
5262                 return NT_STATUS_INVALID_PARAMETER;
5263         }
5264
5265         /* !widelinks forces the target path to be within the share. */
5266         /* This means we can interpret the target as a pathname. */
5267         if (!lp_widelinks(SNUM(conn))) {
5268                 char *rel_name = NULL;
5269                 char *last_dirp = NULL;
5270
5271                 if (*link_target == '/') {
5272                         /* No absolute paths allowed. */
5273                         return NT_STATUS_ACCESS_DENIED;
5274                 }
5275                 rel_name = talloc_strdup(ctx,newname);
5276                 if (!rel_name) {
5277                         return NT_STATUS_NO_MEMORY;
5278                 }
5279                 last_dirp = strrchr_m(rel_name, '/');
5280                 if (last_dirp) {
5281                         last_dirp[1] = '\0';
5282                 } else {
5283                         rel_name = talloc_strdup(ctx,"./");
5284                         if (!rel_name) {
5285                                 return NT_STATUS_NO_MEMORY;
5286                         }
5287                 }
5288                 rel_name = talloc_asprintf_append(rel_name,
5289                                 "%s",
5290                                 link_target);
5291                 if (!rel_name) {
5292                         return NT_STATUS_NO_MEMORY;
5293                 }
5294
5295                 status = check_name(conn, rel_name);
5296                 if (!NT_STATUS_IS_OK(status)) {
5297                         return status;
5298                 }
5299         }
5300
5301         DEBUG(10,("smb_set_file_unix_link: SMB_SET_FILE_UNIX_LINK doing symlink %s -> %s\n",
5302                         newname, link_target ));
5303
5304         if (SMB_VFS_SYMLINK(conn,link_target,newname) != 0) {
5305                 return map_nt_error_from_unix(errno);
5306         }
5307
5308         return NT_STATUS_OK;
5309 }
5310
5311 /****************************************************************************
5312  Deal with SMB_SET_FILE_UNIX_HLINK (create a UNIX hard link).
5313 ****************************************************************************/
5314
5315 static NTSTATUS smb_set_file_unix_hlink(connection_struct *conn,
5316                                         struct smb_request *req,
5317                                         const char *pdata, int total_data,
5318                                         const char *fname)
5319 {
5320         char *oldname = NULL;
5321         TALLOC_CTX *ctx = talloc_tos();
5322         NTSTATUS status = NT_STATUS_OK;
5323
5324         /* Set a hard link. */
5325         if (total_data == 0) {
5326                 return NT_STATUS_INVALID_PARAMETER;
5327         }
5328
5329         srvstr_get_path(ctx, pdata, req->flags2, &oldname, pdata,
5330                         total_data, STR_TERMINATE, &status);
5331         if (!NT_STATUS_IS_OK(status)) {
5332                 return status;
5333         }
5334
5335         status = resolve_dfspath(ctx, conn,
5336                                 req->flags2 & FLAGS2_DFS_PATHNAMES,
5337                                 oldname,
5338                                 &oldname);
5339         if (!NT_STATUS_IS_OK(status)) {
5340                 return status;
5341         }
5342
5343         DEBUG(10,("smb_set_file_unix_hlink: SMB_SET_FILE_UNIX_LINK doing hard link %s -> %s\n",
5344                 fname, oldname));
5345
5346         return hardlink_internals(ctx, conn, oldname, fname);
5347 }
5348
5349 /****************************************************************************
5350  Deal with SMB_FILE_RENAME_INFORMATION.
5351 ****************************************************************************/
5352
5353 static NTSTATUS smb_file_rename_information(connection_struct *conn,
5354                                             struct smb_request *req,
5355                                             const char *pdata,
5356                                             int total_data,
5357                                             files_struct *fsp,
5358                                             const char *fname)
5359 {
5360         bool overwrite;
5361         uint32 root_fid;
5362         uint32 len;
5363         char *newname = NULL;
5364         char *base_name = NULL;
5365         bool dest_has_wcard = False;
5366         SMB_STRUCT_STAT sbuf;
5367         char *newname_last_component = NULL;
5368         NTSTATUS status = NT_STATUS_OK;
5369         char *p;
5370         TALLOC_CTX *ctx = talloc_tos();
5371
5372         if (total_data < 13) {
5373                 return NT_STATUS_INVALID_PARAMETER;
5374         }
5375
5376         ZERO_STRUCT(sbuf);
5377
5378         overwrite = (CVAL(pdata,0) ? True : False);
5379         root_fid = IVAL(pdata,4);
5380         len = IVAL(pdata,8);
5381
5382         if (len > (total_data - 12) || (len == 0) || (root_fid != 0)) {
5383                 return NT_STATUS_INVALID_PARAMETER;
5384         }
5385
5386         srvstr_get_path_wcard(ctx, pdata, req->flags2, &newname, &pdata[12],
5387                               len, 0, &status,
5388                               &dest_has_wcard);
5389         if (!NT_STATUS_IS_OK(status)) {
5390                 return status;
5391         }
5392
5393         DEBUG(10,("smb_file_rename_information: got name |%s|\n",
5394                                 newname));
5395
5396         status = resolve_dfspath_wcard(ctx, conn,
5397                                        req->flags2 & FLAGS2_DFS_PATHNAMES,
5398                                        newname,
5399                                        &newname,
5400                                        &dest_has_wcard);
5401         if (!NT_STATUS_IS_OK(status)) {
5402                 return status;
5403         }
5404
5405         /* Check the new name has no '/' characters. */
5406         if (strchr_m(newname, '/')) {
5407                 return NT_STATUS_NOT_SUPPORTED;
5408         }
5409
5410         if (fsp && fsp->base_fsp) {
5411                 /* newname must be a stream name. */
5412                 if (newname[0] != ':') {
5413                         return NT_STATUS_NOT_SUPPORTED;
5414                 }
5415                 base_name = talloc_asprintf(ctx, "%s%s",
5416                                            fsp->base_fsp->fsp_name,
5417                                            newname);
5418                 if (!base_name) {
5419                         return NT_STATUS_NO_MEMORY;
5420                 }
5421         } else {
5422                 /* newname must *not* be a stream name. */
5423                 if (is_ntfs_stream_name(newname)) {
5424                         return NT_STATUS_NOT_SUPPORTED;
5425                 }
5426
5427                 /* Create the base directory. */
5428                 base_name = talloc_strdup(ctx, fname);
5429                 if (!base_name) {
5430                         return NT_STATUS_NO_MEMORY;
5431                 }
5432                 p = strrchr_m(base_name, '/');
5433                 if (p) {
5434                         p[1] = '\0';
5435                 } else {
5436                         base_name = talloc_strdup(ctx, "./");
5437                         if (!base_name) {
5438                                 return NT_STATUS_NO_MEMORY;
5439                         }
5440                 }
5441                 /* Append the new name. */
5442                 base_name = talloc_asprintf_append(base_name,
5443                                 "%s",
5444                                 newname);
5445                 if (!base_name) {
5446                         return NT_STATUS_NO_MEMORY;
5447                 }
5448
5449                 status = unix_convert(ctx, conn, newname, False,
5450                                 &newname,
5451                                 &newname_last_component,
5452                                 &sbuf);
5453
5454                 /* If an error we expect this to be
5455                  * NT_STATUS_OBJECT_PATH_NOT_FOUND */
5456
5457                 if (!NT_STATUS_IS_OK(status)
5458                     && !NT_STATUS_EQUAL(NT_STATUS_OBJECT_PATH_NOT_FOUND,
5459                                         status)) {
5460                         return status;
5461                 }
5462         }
5463
5464         if (fsp) {
5465                 DEBUG(10,("smb_file_rename_information: SMB_FILE_RENAME_INFORMATION (fnum %d) %s -> %s\n",
5466                         fsp->fnum, fsp->fsp_name, base_name ));
5467                 status = rename_internals_fsp(conn, fsp, base_name,
5468                                               newname_last_component, 0,
5469                                               overwrite);
5470         } else {
5471                 DEBUG(10,("smb_file_rename_information: SMB_FILE_RENAME_INFORMATION %s -> %s\n",
5472                         fname, base_name ));
5473                 status = rename_internals(ctx, conn, req, fname, base_name, 0,
5474                                         overwrite, False, dest_has_wcard,
5475                                         FILE_WRITE_ATTRIBUTES);
5476         }
5477
5478         return status;
5479 }
5480
5481 /****************************************************************************
5482  Deal with SMB_SET_POSIX_ACL.
5483 ****************************************************************************/
5484
5485 #if defined(HAVE_POSIX_ACLS)
5486 static NTSTATUS smb_set_posix_acl(connection_struct *conn,
5487                                 const char *pdata,
5488                                 int total_data,
5489                                 files_struct *fsp,
5490                                 const char *fname,
5491                                 SMB_STRUCT_STAT *psbuf)
5492 {
5493         uint16 posix_acl_version;
5494         uint16 num_file_acls;
5495         uint16 num_def_acls;
5496         bool valid_file_acls = True;
5497         bool valid_def_acls = True;
5498
5499         if (total_data < SMB_POSIX_ACL_HEADER_SIZE) {
5500                 return NT_STATUS_INVALID_PARAMETER;
5501         }
5502         posix_acl_version = SVAL(pdata,0);
5503         num_file_acls = SVAL(pdata,2);
5504         num_def_acls = SVAL(pdata,4);
5505
5506         if (num_file_acls == SMB_POSIX_IGNORE_ACE_ENTRIES) {
5507                 valid_file_acls = False;
5508                 num_file_acls = 0;
5509         }
5510
5511         if (num_def_acls == SMB_POSIX_IGNORE_ACE_ENTRIES) {
5512                 valid_def_acls = False;
5513                 num_def_acls = 0;
5514         }
5515
5516         if (posix_acl_version != SMB_POSIX_ACL_VERSION) {
5517                 return NT_STATUS_INVALID_PARAMETER;
5518         }
5519
5520         if (total_data < SMB_POSIX_ACL_HEADER_SIZE +
5521                         (num_file_acls+num_def_acls)*SMB_POSIX_ACL_ENTRY_SIZE) {
5522                 return NT_STATUS_INVALID_PARAMETER;
5523         }
5524
5525         DEBUG(10,("smb_set_posix_acl: file %s num_file_acls = %u, num_def_acls = %u\n",
5526                 fname ? fname : fsp->fsp_name,
5527                 (unsigned int)num_file_acls,
5528                 (unsigned int)num_def_acls));
5529
5530         if (valid_file_acls && !set_unix_posix_acl(conn, fsp, fname, num_file_acls,
5531                         pdata + SMB_POSIX_ACL_HEADER_SIZE)) {
5532                 return map_nt_error_from_unix(errno);
5533         }
5534
5535         if (valid_def_acls && !set_unix_posix_default_acl(conn, fname, psbuf, num_def_acls,
5536                         pdata + SMB_POSIX_ACL_HEADER_SIZE +
5537                         (num_file_acls*SMB_POSIX_ACL_ENTRY_SIZE))) {
5538                 return map_nt_error_from_unix(errno);
5539         }
5540         return NT_STATUS_OK;
5541 }
5542 #endif
5543
5544 /****************************************************************************
5545  Deal with SMB_SET_POSIX_LOCK.
5546 ****************************************************************************/
5547
5548 static NTSTATUS smb_set_posix_lock(connection_struct *conn,
5549                                 struct smb_request *req,
5550                                 const char *pdata,
5551                                 int total_data,
5552                                 files_struct *fsp)
5553 {
5554         uint64_t count;
5555         uint64_t offset;
5556         uint32 lock_pid;
5557         bool blocking_lock = False;
5558         enum brl_type lock_type;
5559
5560         NTSTATUS status = NT_STATUS_OK;
5561
5562         if (fsp == NULL || fsp->fh->fd == -1) {
5563                 return NT_STATUS_INVALID_HANDLE;
5564         }
5565
5566         if (total_data != POSIX_LOCK_DATA_SIZE) {
5567                 return NT_STATUS_INVALID_PARAMETER;
5568         }
5569
5570         switch (SVAL(pdata, POSIX_LOCK_TYPE_OFFSET)) {
5571                 case POSIX_LOCK_TYPE_READ:
5572                         lock_type = READ_LOCK;
5573                         break;
5574                 case POSIX_LOCK_TYPE_WRITE:
5575                         /* Return the right POSIX-mappable error code for files opened read-only. */
5576                         if (!fsp->can_write) {
5577                                 return NT_STATUS_INVALID_HANDLE;
5578                         }
5579                         lock_type = WRITE_LOCK;
5580                         break;
5581                 case POSIX_LOCK_TYPE_UNLOCK:
5582                         lock_type = UNLOCK_LOCK;
5583                         break;
5584                 default:
5585                         return NT_STATUS_INVALID_PARAMETER;
5586         }
5587
5588         if (SVAL(pdata,POSIX_LOCK_FLAGS_OFFSET) == POSIX_LOCK_FLAG_NOWAIT) {
5589                 blocking_lock = False;
5590         } else if (SVAL(pdata,POSIX_LOCK_FLAGS_OFFSET) == POSIX_LOCK_FLAG_WAIT) {
5591                 blocking_lock = True;
5592         } else {
5593                 return NT_STATUS_INVALID_PARAMETER;
5594         }
5595
5596         if (!lp_blocking_locks(SNUM(conn))) { 
5597                 blocking_lock = False;
5598         }
5599
5600         lock_pid = IVAL(pdata, POSIX_LOCK_PID_OFFSET);
5601 #if defined(HAVE_LONGLONG)
5602         offset = (((uint64_t) IVAL(pdata,(POSIX_LOCK_START_OFFSET+4))) << 32) |
5603                         ((uint64_t) IVAL(pdata,POSIX_LOCK_START_OFFSET));
5604         count = (((uint64_t) IVAL(pdata,(POSIX_LOCK_LEN_OFFSET+4))) << 32) |
5605                         ((uint64_t) IVAL(pdata,POSIX_LOCK_LEN_OFFSET));
5606 #else /* HAVE_LONGLONG */
5607         offset = (uint64_t)IVAL(pdata,POSIX_LOCK_START_OFFSET);
5608         count = (uint64_t)IVAL(pdata,POSIX_LOCK_LEN_OFFSET);
5609 #endif /* HAVE_LONGLONG */
5610
5611         DEBUG(10,("smb_set_posix_lock: file %s, lock_type = %u,"
5612                         "lock_pid = %u, count = %.0f, offset = %.0f\n",
5613                 fsp->fsp_name,
5614                 (unsigned int)lock_type,
5615                 (unsigned int)lock_pid,
5616                 (double)count,
5617                 (double)offset ));
5618
5619         if (lock_type == UNLOCK_LOCK) {
5620                 status = do_unlock(smbd_messaging_context(),
5621                                 fsp,
5622                                 lock_pid,
5623                                 count,
5624                                 offset,
5625                                 POSIX_LOCK);
5626         } else {
5627                 uint32 block_smbpid;
5628
5629                 struct byte_range_lock *br_lck = do_lock(smbd_messaging_context(),
5630                                                         fsp,
5631                                                         lock_pid,
5632                                                         count,
5633                                                         offset,
5634                                                         lock_type,
5635                                                         POSIX_LOCK,
5636                                                         blocking_lock,
5637                                                         &status,
5638                                                         &block_smbpid);
5639
5640                 if (br_lck && blocking_lock && ERROR_WAS_LOCK_DENIED(status)) {
5641                         /*
5642                          * A blocking lock was requested. Package up
5643                          * this smb into a queued request and push it
5644                          * onto the blocking lock queue.
5645                          */
5646                         if(push_blocking_lock_request(br_lck,
5647                                                 req,
5648                                                 fsp,
5649                                                 -1, /* infinite timeout. */
5650                                                 0,
5651                                                 lock_pid,
5652                                                 lock_type,
5653                                                 POSIX_LOCK,
5654                                                 offset,
5655                                                 count,
5656                                                 block_smbpid)) {
5657                                 TALLOC_FREE(br_lck);
5658                                 return status;
5659                         }
5660                 }
5661                 TALLOC_FREE(br_lck);
5662         }
5663
5664         return status;
5665 }
5666
5667 /****************************************************************************
5668  Deal with SMB_INFO_STANDARD.
5669 ****************************************************************************/
5670
5671 static NTSTATUS smb_set_info_standard(connection_struct *conn,
5672                                         const char *pdata,
5673                                         int total_data,
5674                                         files_struct *fsp,
5675                                         const char *fname,
5676                                         const SMB_STRUCT_STAT *psbuf)
5677 {
5678         struct timespec ts[2];
5679
5680         if (total_data < 12) {
5681                 return NT_STATUS_INVALID_PARAMETER;
5682         }
5683
5684         /* access time */
5685         ts[0] = convert_time_t_to_timespec(srv_make_unix_date2(pdata+l1_fdateLastAccess));
5686         /* write time */
5687         ts[1] = convert_time_t_to_timespec(srv_make_unix_date2(pdata+l1_fdateLastWrite));
5688
5689         DEBUG(10,("smb_set_info_standard: file %s\n",
5690                 fname ? fname : fsp->fsp_name ));
5691
5692         return smb_set_file_time(conn,
5693                                 fsp,
5694                                 fname,
5695                                 psbuf,
5696                                 ts,
5697                                 true);
5698 }
5699
5700 /****************************************************************************
5701  Deal with SMB_SET_FILE_BASIC_INFO.
5702 ****************************************************************************/
5703
5704 static NTSTATUS smb_set_file_basic_info(connection_struct *conn,
5705                                         const char *pdata,
5706                                         int total_data,
5707                                         files_struct *fsp,
5708                                         const char *fname,
5709                                         SMB_STRUCT_STAT *psbuf)
5710 {
5711         /* Patch to do this correctly from Paul Eggert <eggert@twinsun.com>. */
5712         struct timespec write_time;
5713         struct timespec changed_time;
5714         uint32 dosmode = 0;
5715         struct timespec ts[2];
5716         NTSTATUS status = NT_STATUS_OK;
5717         bool setting_write_time = true;
5718
5719         if (total_data < 36) {
5720                 return NT_STATUS_INVALID_PARAMETER;
5721         }
5722
5723         /* Set the attributes */
5724         dosmode = IVAL(pdata,32);
5725         status = smb_set_file_dosmode(conn,
5726                                         fname,
5727                                         psbuf,
5728                                         dosmode);
5729         if (!NT_STATUS_IS_OK(status)) {
5730                 return status;
5731         }
5732
5733         /* Ignore create time at offset pdata. */
5734
5735         /* access time */
5736         ts[0] = interpret_long_date(pdata+8);
5737
5738         write_time = interpret_long_date(pdata+16);
5739         changed_time = interpret_long_date(pdata+24);
5740
5741         /* mtime */
5742         ts[1] = timespec_min(&write_time, &changed_time);
5743
5744         if ((timespec_compare(&write_time, &ts[1]) == 1) && !null_timespec(write_time)) {
5745                 ts[1] = write_time;
5746         }
5747
5748         /* Prefer a defined time to an undefined one. */
5749         if (null_timespec(ts[1])) {
5750                 if (null_timespec(write_time)) {
5751                         ts[1] = changed_time;
5752                         setting_write_time = false;
5753                 } else {
5754                         ts[1] = write_time;
5755                 }
5756         }
5757
5758         DEBUG(10,("smb_set_file_basic_info: file %s\n",
5759                 fname ? fname : fsp->fsp_name ));
5760
5761         return smb_set_file_time(conn,
5762                                 fsp,
5763                                 fname,
5764                                 psbuf,
5765                                 ts,
5766                                 setting_write_time);
5767 }
5768
5769 /****************************************************************************
5770  Deal with SMB_SET_FILE_ALLOCATION_INFO.
5771 ****************************************************************************/
5772
5773 static NTSTATUS smb_set_file_allocation_info(connection_struct *conn,
5774                                              struct smb_request *req,
5775                                         const char *pdata,
5776                                         int total_data,
5777                                         files_struct *fsp,
5778                                         const char *fname,
5779                                         SMB_STRUCT_STAT *psbuf)
5780 {
5781         uint64_t allocation_size = 0;
5782         NTSTATUS status = NT_STATUS_OK;
5783         files_struct *new_fsp = NULL;
5784
5785         if (!VALID_STAT(*psbuf)) {
5786                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
5787         }
5788
5789         if (total_data < 8) {
5790                 return NT_STATUS_INVALID_PARAMETER;
5791         }
5792
5793         allocation_size = (uint64_t)IVAL(pdata,0);
5794 #ifdef LARGE_SMB_OFF_T
5795         allocation_size |= (((uint64_t)IVAL(pdata,4)) << 32);
5796 #else /* LARGE_SMB_OFF_T */
5797         if (IVAL(pdata,4) != 0) {
5798                 /* more than 32 bits? */
5799                 return NT_STATUS_INVALID_PARAMETER;
5800         }
5801 #endif /* LARGE_SMB_OFF_T */
5802
5803         DEBUG(10,("smb_set_file_allocation_info: Set file allocation info for file %s to %.0f\n",
5804                         fname, (double)allocation_size ));
5805
5806         if (allocation_size) {
5807                 allocation_size = smb_roundup(conn, allocation_size);
5808         }
5809
5810         DEBUG(10,("smb_set_file_allocation_info: file %s : setting new allocation size to %.0f\n",
5811                         fname, (double)allocation_size ));
5812
5813         if (fsp && fsp->fh->fd != -1) {
5814                 /* Open file handle. */
5815                 /* Only change if needed. */
5816                 if (allocation_size != get_file_size(*psbuf)) {
5817                         if (vfs_allocate_file_space(fsp, allocation_size) == -1) {
5818                                 return map_nt_error_from_unix(errno);
5819                         }
5820                 }
5821                 /* But always update the time. */
5822                 /*
5823                  * This is equivalent to a write. Ensure it's seen immediately
5824                  * if there are no pending writes.
5825                  */
5826                 trigger_write_time_update_immediate(fsp);
5827                 return NT_STATUS_OK;
5828         }
5829
5830         /* Pathname or stat or directory file. */
5831
5832         status = SMB_VFS_CREATE_FILE(
5833                 conn,                                   /* conn */
5834                 req,                                    /* req */
5835                 0,                                      /* root_dir_fid */
5836                 fname,                                  /* fname */
5837                 0,                                      /* create_file_flags */
5838                 FILE_WRITE_DATA,                        /* access_mask */
5839                 (FILE_SHARE_READ | FILE_SHARE_WRITE |   /* share_access */
5840                     FILE_SHARE_DELETE),
5841                 FILE_OPEN,                              /* create_disposition*/
5842                 0,                                      /* create_options */
5843                 FILE_ATTRIBUTE_NORMAL,                  /* file_attributes */
5844                 FORCE_OPLOCK_BREAK_TO_NONE,             /* oplock_request */
5845                 0,                                      /* allocation_size */
5846                 NULL,                                   /* sd */
5847                 NULL,                                   /* ea_list */
5848                 &new_fsp,                               /* result */
5849                 NULL,                                   /* pinfo */
5850                 psbuf);                                 /* psbuf */
5851
5852         if (!NT_STATUS_IS_OK(status)) {
5853                 /* NB. We check for open_was_deferred in the caller. */
5854                 return status;
5855         }
5856
5857         /* Only change if needed. */
5858         if (allocation_size != get_file_size(*psbuf)) {
5859                 if (vfs_allocate_file_space(new_fsp, allocation_size) == -1) {
5860                         status = map_nt_error_from_unix(errno);
5861                         close_file(req, new_fsp, NORMAL_CLOSE);
5862                         return status;
5863                 }
5864         }
5865
5866         /* Changing the allocation size should set the last mod time. */
5867         /*
5868          * This is equivalent to a write. Ensure it's seen immediately
5869          * if there are no pending writes.
5870          */
5871         trigger_write_time_update_immediate(new_fsp);
5872
5873         close_file(req, new_fsp, NORMAL_CLOSE);
5874         return NT_STATUS_OK;
5875 }
5876
5877 /****************************************************************************
5878  Deal with SMB_SET_FILE_END_OF_FILE_INFO.
5879 ****************************************************************************/
5880
5881 static NTSTATUS smb_set_file_end_of_file_info(connection_struct *conn,
5882                                               struct smb_request *req,
5883                                         const char *pdata,
5884                                         int total_data,
5885                                         files_struct *fsp,
5886                                         const char *fname,
5887                                         SMB_STRUCT_STAT *psbuf)
5888 {
5889         SMB_OFF_T size;
5890
5891         if (total_data < 8) {
5892                 return NT_STATUS_INVALID_PARAMETER;
5893         }
5894
5895         size = IVAL(pdata,0);
5896 #ifdef LARGE_SMB_OFF_T
5897         size |= (((SMB_OFF_T)IVAL(pdata,4)) << 32);
5898 #else /* LARGE_SMB_OFF_T */
5899         if (IVAL(pdata,4) != 0) {
5900                 /* more than 32 bits? */
5901                 return NT_STATUS_INVALID_PARAMETER;
5902         }
5903 #endif /* LARGE_SMB_OFF_T */
5904         DEBUG(10,("smb_set_file_end_of_file_info: Set end of file info for "
5905                 "file %s to %.0f\n", fname, (double)size ));
5906
5907         return smb_set_file_size(conn, req,
5908                                 fsp,
5909                                 fname,
5910                                 psbuf,
5911                                 size);
5912 }
5913
5914 /****************************************************************************
5915  Allow a UNIX info mknod.
5916 ****************************************************************************/
5917
5918 static NTSTATUS smb_unix_mknod(connection_struct *conn,
5919                                         const char *pdata,
5920                                         int total_data,
5921                                         const char *fname,
5922                                         SMB_STRUCT_STAT *psbuf)
5923 {
5924         uint32 file_type = IVAL(pdata,56);
5925 #if defined(HAVE_MAKEDEV)
5926         uint32 dev_major = IVAL(pdata,60);
5927         uint32 dev_minor = IVAL(pdata,68);
5928 #endif
5929         SMB_DEV_T dev = (SMB_DEV_T)0;
5930         uint32 raw_unixmode = IVAL(pdata,84);
5931         NTSTATUS status;
5932         mode_t unixmode;
5933
5934         if (total_data < 100) {
5935                 return NT_STATUS_INVALID_PARAMETER;
5936         }
5937
5938         status = unix_perms_from_wire(conn, psbuf, raw_unixmode, PERM_NEW_FILE, &unixmode);
5939         if (!NT_STATUS_IS_OK(status)) {
5940                 return status;
5941         }
5942
5943 #if defined(HAVE_MAKEDEV)
5944         dev = makedev(dev_major, dev_minor);
5945 #endif
5946
5947         switch (file_type) {
5948 #if defined(S_IFIFO)
5949                 case UNIX_TYPE_FIFO:
5950                         unixmode |= S_IFIFO;
5951                         break;
5952 #endif
5953 #if defined(S_IFSOCK)
5954                 case UNIX_TYPE_SOCKET:
5955                         unixmode |= S_IFSOCK;
5956                         break;
5957 #endif
5958 #if defined(S_IFCHR)
5959                 case UNIX_TYPE_CHARDEV:
5960                         unixmode |= S_IFCHR;
5961                         break;
5962 #endif
5963 #if defined(S_IFBLK)
5964                 case UNIX_TYPE_BLKDEV:
5965                         unixmode |= S_IFBLK;
5966                         break;
5967 #endif
5968                 default:
5969                         return NT_STATUS_INVALID_PARAMETER;
5970         }
5971
5972         DEBUG(10,("smb_unix_mknod: SMB_SET_FILE_UNIX_BASIC doing mknod dev %.0f mode \
5973 0%o for file %s\n", (double)dev, (unsigned int)unixmode, fname ));
5974
5975         /* Ok - do the mknod. */
5976         if (SMB_VFS_MKNOD(conn, fname, unixmode, dev) != 0) {
5977                 return map_nt_error_from_unix(errno);
5978         }
5979
5980         /* If any of the other "set" calls fail we
5981          * don't want to end up with a half-constructed mknod.
5982          */
5983
5984         if (lp_inherit_perms(SNUM(conn))) {
5985                 char *parent;
5986                 if (!parent_dirname(talloc_tos(), fname, &parent, NULL)) {
5987                         return NT_STATUS_NO_MEMORY;
5988                 }
5989                 inherit_access_posix_acl(conn, parent, fname, unixmode);
5990                 TALLOC_FREE(parent);
5991         }
5992
5993         if (SMB_VFS_STAT(conn, fname, psbuf) != 0) {
5994                 status = map_nt_error_from_unix(errno);
5995                 SMB_VFS_UNLINK(conn,fname);
5996                 return status;
5997         }
5998         return NT_STATUS_OK;
5999 }
6000
6001 /****************************************************************************
6002  Deal with SMB_SET_FILE_UNIX_BASIC.
6003 ****************************************************************************/
6004
6005 static NTSTATUS smb_set_file_unix_basic(connection_struct *conn,
6006                                         struct smb_request *req,
6007                                         const char *pdata,
6008                                         int total_data,
6009                                         files_struct *fsp,
6010                                         const char *fname,
6011                                         SMB_STRUCT_STAT *psbuf)
6012 {
6013         struct timespec ts[2];
6014         uint32 raw_unixmode;
6015         mode_t unixmode;
6016         SMB_OFF_T size = 0;
6017         uid_t set_owner = (uid_t)SMB_UID_NO_CHANGE;
6018         gid_t set_grp = (uid_t)SMB_GID_NO_CHANGE;
6019         NTSTATUS status = NT_STATUS_OK;
6020         bool delete_on_fail = False;
6021         enum perm_type ptype;
6022
6023         if (total_data < 100) {
6024                 return NT_STATUS_INVALID_PARAMETER;
6025         }
6026
6027         if(IVAL(pdata, 0) != SMB_SIZE_NO_CHANGE_LO &&
6028            IVAL(pdata, 4) != SMB_SIZE_NO_CHANGE_HI) {
6029                 size=IVAL(pdata,0); /* first 8 Bytes are size */
6030 #ifdef LARGE_SMB_OFF_T
6031                 size |= (((SMB_OFF_T)IVAL(pdata,4)) << 32);
6032 #else /* LARGE_SMB_OFF_T */
6033                 if (IVAL(pdata,4) != 0) {
6034                         /* more than 32 bits? */
6035                         return NT_STATUS_INVALID_PARAMETER;
6036                 }
6037 #endif /* LARGE_SMB_OFF_T */
6038         }
6039
6040         ts[0] = interpret_long_date(pdata+24); /* access_time */
6041         ts[1] = interpret_long_date(pdata+32); /* modification_time */
6042         set_owner = (uid_t)IVAL(pdata,40);
6043         set_grp = (gid_t)IVAL(pdata,48);
6044         raw_unixmode = IVAL(pdata,84);
6045
6046         if (VALID_STAT(*psbuf)) {
6047                 if (S_ISDIR(psbuf->st_mode)) {
6048                         ptype = PERM_EXISTING_DIR;
6049                 } else {
6050                         ptype = PERM_EXISTING_FILE;
6051                 }
6052         } else {
6053                 ptype = PERM_NEW_FILE;
6054         }
6055
6056         status = unix_perms_from_wire(conn, psbuf, raw_unixmode, ptype, &unixmode);
6057         if (!NT_STATUS_IS_OK(status)) {
6058                 return status;
6059         }
6060
6061         DEBUG(10,("smb_set_file_unix_basic: SMB_SET_FILE_UNIX_BASIC: name = %s \
6062 size = %.0f, uid = %u, gid = %u, raw perms = 0%o\n",
6063                 fname, (double)size, (unsigned int)set_owner, (unsigned int)set_grp, (int)raw_unixmode));
6064
6065         if (!VALID_STAT(*psbuf)) {
6066                 /*
6067                  * The only valid use of this is to create character and block
6068                  * devices, and named pipes. This is deprecated (IMHO) and 
6069                  * a new info level should be used for mknod. JRA.
6070                  */
6071
6072                 status = smb_unix_mknod(conn,
6073                                         pdata,
6074                                         total_data,
6075                                         fname,
6076                                         psbuf);
6077                 if (!NT_STATUS_IS_OK(status)) {
6078                         return status;
6079                 }
6080
6081                 /* Ensure we don't try and change anything else. */
6082                 raw_unixmode = SMB_MODE_NO_CHANGE;
6083                 size = get_file_size(*psbuf);
6084                 ts[0] = get_atimespec(psbuf);
6085                 ts[1] = get_mtimespec(psbuf);
6086                 /* 
6087                  * We continue here as we might want to change the 
6088                  * owner uid/gid.
6089                  */
6090                 delete_on_fail = True;
6091         }
6092
6093 #if 1
6094         /* Horrible backwards compatibility hack as an old server bug
6095          * allowed a CIFS client bug to remain unnoticed :-(. JRA.
6096          * */
6097
6098         if (!size) {
6099                 size = get_file_size(*psbuf);
6100         }
6101 #endif
6102
6103         /*
6104          * Deal with the UNIX specific mode set.
6105          */
6106
6107         if (raw_unixmode != SMB_MODE_NO_CHANGE) {
6108                 DEBUG(10,("smb_set_file_unix_basic: SMB_SET_FILE_UNIX_BASIC setting mode 0%o for file %s\n",
6109                         (unsigned int)unixmode, fname ));
6110                 if (SMB_VFS_CHMOD(conn, fname, unixmode) != 0) {
6111                         return map_nt_error_from_unix(errno);
6112                 }
6113         }
6114
6115         /*
6116          * Deal with the UNIX specific uid set.
6117          */
6118
6119         if ((set_owner != (uid_t)SMB_UID_NO_CHANGE) && (psbuf->st_uid != set_owner)) {
6120                 int ret;
6121
6122                 DEBUG(10,("smb_set_file_unix_basic: SMB_SET_FILE_UNIX_BASIC changing owner %u for path %s\n",
6123                         (unsigned int)set_owner, fname ));
6124
6125                 if (S_ISLNK(psbuf->st_mode)) {
6126                         ret = SMB_VFS_LCHOWN(conn, fname, set_owner, (gid_t)-1);
6127                 } else {
6128                         ret = SMB_VFS_CHOWN(conn, fname, set_owner, (gid_t)-1);
6129                 }
6130
6131                 if (ret != 0) {
6132                         status = map_nt_error_from_unix(errno);
6133                         if (delete_on_fail) {
6134                                 SMB_VFS_UNLINK(conn,fname);
6135                         }
6136                         return status;
6137                 }
6138         }
6139
6140         /*
6141          * Deal with the UNIX specific gid set.
6142          */
6143
6144         if ((set_grp != (uid_t)SMB_GID_NO_CHANGE) && (psbuf->st_gid != set_grp)) {
6145                 DEBUG(10,("smb_set_file_unix_basic: SMB_SET_FILE_UNIX_BASIC changing group %u for file %s\n",
6146                         (unsigned int)set_owner, fname ));
6147                 if (SMB_VFS_CHOWN(conn, fname, (uid_t)-1, set_grp) != 0) {
6148                         status = map_nt_error_from_unix(errno);
6149                         if (delete_on_fail) {
6150                                 SMB_VFS_UNLINK(conn,fname);
6151                         }
6152                         return status;
6153                 }
6154         }
6155
6156         /* Deal with any size changes. */
6157
6158         status = smb_set_file_size(conn, req,
6159                                 fsp,
6160                                 fname,
6161                                 psbuf,
6162                                 size);
6163         if (!NT_STATUS_IS_OK(status)) {
6164                 return status;
6165         }
6166
6167         /* Deal with any time changes. */
6168
6169         return smb_set_file_time(conn,
6170                                 fsp,
6171                                 fname,
6172                                 psbuf,
6173                                 ts,
6174                                 true);
6175 }
6176
6177 /****************************************************************************
6178  Deal with SMB_SET_FILE_UNIX_INFO2.
6179 ****************************************************************************/
6180
6181 static NTSTATUS smb_set_file_unix_info2(connection_struct *conn,
6182                                         struct smb_request *req,
6183                                         const char *pdata,
6184                                         int total_data,
6185                                         files_struct *fsp,
6186                                         const char *fname,
6187                                         SMB_STRUCT_STAT *psbuf)
6188 {
6189         NTSTATUS status;
6190         uint32 smb_fflags;
6191         uint32 smb_fmask;
6192
6193         if (total_data < 116) {
6194                 return NT_STATUS_INVALID_PARAMETER;
6195         }
6196
6197         /* Start by setting all the fields that are common between UNIX_BASIC
6198          * and UNIX_INFO2.
6199          */
6200         status = smb_set_file_unix_basic(conn, req, pdata, total_data,
6201                                 fsp, fname, psbuf);
6202         if (!NT_STATUS_IS_OK(status)) {
6203                 return status;
6204         }
6205
6206         smb_fflags = IVAL(pdata, 108);
6207         smb_fmask = IVAL(pdata, 112);
6208
6209         /* NB: We should only attempt to alter the file flags if the client
6210          * sends a non-zero mask.
6211          */
6212         if (smb_fmask != 0) {
6213                 int stat_fflags = 0;
6214
6215                 if (!map_info2_flags_to_sbuf(psbuf, smb_fflags, smb_fmask,
6216                             &stat_fflags)) {
6217                         /* Client asked to alter a flag we don't understand. */
6218                         return NT_STATUS_INVALID_PARAMETER;
6219                 }
6220
6221                 if (fsp && fsp->fh->fd != -1) {
6222                         /* XXX: we should be  using SMB_VFS_FCHFLAGS here. */
6223                         return NT_STATUS_NOT_SUPPORTED;
6224                 } else {
6225                         if (SMB_VFS_CHFLAGS(conn, fname, stat_fflags) != 0) {
6226                                 return map_nt_error_from_unix(errno);
6227                         }
6228                 }
6229         }
6230
6231         /* XXX: need to add support for changing the create_time here. You
6232          * can do this for paths on Darwin with setattrlist(2). The right way
6233          * to hook this up is probably by extending the VFS utimes interface.
6234          */
6235
6236         return NT_STATUS_OK;
6237 }
6238
6239 /****************************************************************************
6240  Create a directory with POSIX semantics.
6241 ****************************************************************************/
6242
6243 static NTSTATUS smb_posix_mkdir(connection_struct *conn,
6244                                 struct smb_request *req,
6245                                 char **ppdata,
6246                                 int total_data,
6247                                 const char *fname,
6248                                 SMB_STRUCT_STAT *psbuf,
6249                                 int *pdata_return_size)
6250 {
6251         NTSTATUS status = NT_STATUS_OK;
6252         uint32 raw_unixmode = 0;
6253         uint32 mod_unixmode = 0;
6254         mode_t unixmode = (mode_t)0;
6255         files_struct *fsp = NULL;
6256         uint16 info_level_return = 0;
6257         int info;
6258         char *pdata = *ppdata;
6259
6260         if (total_data < 18) {
6261                 return NT_STATUS_INVALID_PARAMETER;
6262         }
6263
6264         raw_unixmode = IVAL(pdata,8);
6265         /* Next 4 bytes are not yet defined. */
6266
6267         status = unix_perms_from_wire(conn, psbuf, raw_unixmode, PERM_NEW_DIR, &unixmode);
6268         if (!NT_STATUS_IS_OK(status)) {
6269                 return status;
6270         }
6271
6272         mod_unixmode = (uint32)unixmode | FILE_FLAG_POSIX_SEMANTICS;
6273
6274         DEBUG(10,("smb_posix_mkdir: file %s, mode 0%o\n",
6275                 fname, (unsigned int)unixmode ));
6276
6277         status = SMB_VFS_CREATE_FILE(
6278                 conn,                                   /* conn */
6279                 req,                                    /* req */
6280                 0,                                      /* root_dir_fid */
6281                 fname,                                  /* fname */
6282                 0,                                      /* create_file_flags */
6283                 FILE_READ_ATTRIBUTES,                   /* access_mask */
6284                 FILE_SHARE_NONE,                        /* share_access */
6285                 FILE_CREATE,                            /* create_disposition*/
6286                 FILE_DIRECTORY_FILE,                    /* create_options */
6287                 mod_unixmode,                           /* file_attributes */
6288                 0,                                      /* oplock_request */
6289                 0,                                      /* allocation_size */
6290                 NULL,                                   /* sd */
6291                 NULL,                                   /* ea_list */
6292                 &fsp,                                   /* result */
6293                 &info,                                  /* pinfo */
6294                 psbuf);                                 /* psbuf */
6295
6296         if (NT_STATUS_IS_OK(status)) {
6297                 close_file(req, fsp, NORMAL_CLOSE);
6298         }
6299
6300         info_level_return = SVAL(pdata,16);
6301  
6302         if (info_level_return == SMB_QUERY_FILE_UNIX_BASIC) {
6303                 *pdata_return_size = 12 + SMB_FILE_UNIX_BASIC_SIZE;
6304         } else if (info_level_return ==  SMB_QUERY_FILE_UNIX_INFO2) {
6305                 *pdata_return_size = 12 + SMB_FILE_UNIX_INFO2_SIZE;
6306         } else {
6307                 *pdata_return_size = 12;
6308         }
6309
6310         /* Realloc the data size */
6311         *ppdata = (char *)SMB_REALLOC(*ppdata,*pdata_return_size);
6312         if (*ppdata == NULL) {
6313                 *pdata_return_size = 0;
6314                 return NT_STATUS_NO_MEMORY;
6315         }
6316         pdata = *ppdata;
6317
6318         SSVAL(pdata,0,NO_OPLOCK_RETURN);
6319         SSVAL(pdata,2,0); /* No fnum. */
6320         SIVAL(pdata,4,info); /* Was directory created. */
6321
6322         switch (info_level_return) {
6323                 case SMB_QUERY_FILE_UNIX_BASIC:
6324                         SSVAL(pdata,8,SMB_QUERY_FILE_UNIX_BASIC);
6325                         SSVAL(pdata,10,0); /* Padding. */
6326                         store_file_unix_basic(conn, pdata + 12, fsp, psbuf);
6327                         break;
6328                 case SMB_QUERY_FILE_UNIX_INFO2:
6329                         SSVAL(pdata,8,SMB_QUERY_FILE_UNIX_INFO2);
6330                         SSVAL(pdata,10,0); /* Padding. */
6331                         store_file_unix_basic_info2(conn, pdata + 12, fsp, psbuf);
6332                         break;
6333                 default:
6334                         SSVAL(pdata,8,SMB_NO_INFO_LEVEL_RETURNED);
6335                         SSVAL(pdata,10,0); /* Padding. */
6336                         break;
6337         }
6338
6339         return status;
6340 }
6341
6342 /****************************************************************************
6343  Open/Create a file with POSIX semantics.
6344 ****************************************************************************/
6345
6346 static NTSTATUS smb_posix_open(connection_struct *conn,
6347                                struct smb_request *req,
6348                                 char **ppdata,
6349                                 int total_data,
6350                                 const char *fname,
6351                                 SMB_STRUCT_STAT *psbuf,
6352                                 int *pdata_return_size)
6353 {
6354         bool extended_oplock_granted = False;
6355         char *pdata = *ppdata;
6356         uint32 flags = 0;
6357         uint32 wire_open_mode = 0;
6358         uint32 raw_unixmode = 0;
6359         uint32 mod_unixmode = 0;
6360         uint32 create_disp = 0;
6361         uint32 access_mask = 0;
6362         uint32 create_options = 0;
6363         NTSTATUS status = NT_STATUS_OK;
6364         mode_t unixmode = (mode_t)0;
6365         files_struct *fsp = NULL;
6366         int oplock_request = 0;
6367         int info = 0;
6368         uint16 info_level_return = 0;
6369
6370         if (total_data < 18) {
6371                 return NT_STATUS_INVALID_PARAMETER;
6372         }
6373
6374         flags = IVAL(pdata,0);
6375         oplock_request = (flags & REQUEST_OPLOCK) ? EXCLUSIVE_OPLOCK : 0;
6376         if (oplock_request) {
6377                 oplock_request |= (flags & REQUEST_BATCH_OPLOCK) ? BATCH_OPLOCK : 0;
6378         }
6379
6380         wire_open_mode = IVAL(pdata,4);
6381
6382         if (wire_open_mode == (SMB_O_CREAT|SMB_O_DIRECTORY)) {
6383                 return smb_posix_mkdir(conn, req,
6384                                         ppdata,
6385                                         total_data,
6386                                         fname,
6387                                         psbuf,
6388                                         pdata_return_size);
6389         }
6390
6391         switch (wire_open_mode & SMB_ACCMODE) {
6392                 case SMB_O_RDONLY:
6393                         access_mask = FILE_READ_DATA;
6394                         break;
6395                 case SMB_O_WRONLY:
6396                         access_mask = FILE_WRITE_DATA;
6397                         break;
6398                 case SMB_O_RDWR:
6399                         access_mask = FILE_READ_DATA|FILE_WRITE_DATA;
6400                         break;
6401                 default:
6402                         DEBUG(5,("smb_posix_open: invalid open mode 0x%x\n",
6403                                 (unsigned int)wire_open_mode ));
6404                         return NT_STATUS_INVALID_PARAMETER;
6405         }
6406
6407         wire_open_mode &= ~SMB_ACCMODE;
6408
6409         if((wire_open_mode & (SMB_O_CREAT | SMB_O_EXCL)) == (SMB_O_CREAT | SMB_O_EXCL)) {
6410                 create_disp = FILE_CREATE;
6411         } else if((wire_open_mode & (SMB_O_CREAT | SMB_O_TRUNC)) == (SMB_O_CREAT | SMB_O_TRUNC)) {
6412                 create_disp = FILE_OVERWRITE_IF;
6413         } else if((wire_open_mode & SMB_O_CREAT) == SMB_O_CREAT) {
6414                 create_disp = FILE_OPEN_IF;
6415         } else {
6416                 DEBUG(5,("smb_posix_open: invalid create mode 0x%x\n",
6417                         (unsigned int)wire_open_mode ));
6418                 return NT_STATUS_INVALID_PARAMETER;
6419         }
6420
6421         raw_unixmode = IVAL(pdata,8);
6422         /* Next 4 bytes are not yet defined. */
6423
6424         status = unix_perms_from_wire(conn,
6425                                 psbuf,
6426                                 raw_unixmode,
6427                                 VALID_STAT(*psbuf) ? PERM_EXISTING_FILE : PERM_NEW_FILE,
6428                                 &unixmode);
6429
6430         if (!NT_STATUS_IS_OK(status)) {
6431                 return status;
6432         }
6433
6434         mod_unixmode = (uint32)unixmode | FILE_FLAG_POSIX_SEMANTICS;
6435
6436         if (wire_open_mode & SMB_O_SYNC) {
6437                 create_options |= FILE_WRITE_THROUGH;
6438         }
6439         if (wire_open_mode & SMB_O_APPEND) {
6440                 access_mask |= FILE_APPEND_DATA;
6441         }
6442         if (wire_open_mode & SMB_O_DIRECT) {
6443                 mod_unixmode |= FILE_FLAG_NO_BUFFERING;
6444         }
6445
6446         DEBUG(10,("smb_posix_open: file %s, smb_posix_flags = %u, mode 0%o\n",
6447                 fname,
6448                 (unsigned int)wire_open_mode,
6449                 (unsigned int)unixmode ));
6450
6451         status = SMB_VFS_CREATE_FILE(
6452                 conn,                                   /* conn */
6453                 req,                                    /* req */
6454                 0,                                      /* root_dir_fid */
6455                 fname,                                  /* fname */
6456                 0,                                      /* create_file_flags */
6457                 access_mask,                            /* access_mask */
6458                 (FILE_SHARE_READ | FILE_SHARE_WRITE |   /* share_access */
6459                     FILE_SHARE_DELETE),
6460                 create_disp,                            /* create_disposition*/
6461                 0,                                      /* create_options */
6462                 mod_unixmode,                           /* file_attributes */
6463                 oplock_request,                         /* oplock_request */
6464                 0,                                      /* allocation_size */
6465                 NULL,                                   /* sd */
6466                 NULL,                                   /* ea_list */
6467                 &fsp,                                   /* result */
6468                 &info,                                  /* pinfo */
6469                 psbuf);                                 /* psbuf */
6470
6471         if (!NT_STATUS_IS_OK(status)) {
6472                 return status;
6473         }
6474
6475         if (oplock_request && lp_fake_oplocks(SNUM(conn))) {
6476                 extended_oplock_granted = True;
6477         }
6478
6479         if(oplock_request && EXCLUSIVE_OPLOCK_TYPE(fsp->oplock_type)) {
6480                 extended_oplock_granted = True;
6481         }
6482
6483         info_level_return = SVAL(pdata,16);
6484  
6485         /* Allocate the correct return size. */
6486
6487         if (info_level_return == SMB_QUERY_FILE_UNIX_BASIC) {
6488                 *pdata_return_size = 12 + SMB_FILE_UNIX_BASIC_SIZE;
6489         } else if (info_level_return ==  SMB_QUERY_FILE_UNIX_INFO2) {
6490                 *pdata_return_size = 12 + SMB_FILE_UNIX_INFO2_SIZE;
6491         } else {
6492                 *pdata_return_size = 12;
6493         }
6494
6495         /* Realloc the data size */
6496         *ppdata = (char *)SMB_REALLOC(*ppdata,*pdata_return_size);
6497         if (*ppdata == NULL) {
6498                 close_file(req, fsp, ERROR_CLOSE);
6499                 *pdata_return_size = 0;
6500                 return NT_STATUS_NO_MEMORY;
6501         }
6502         pdata = *ppdata;
6503
6504         if (extended_oplock_granted) {
6505                 if (flags & REQUEST_BATCH_OPLOCK) {
6506                         SSVAL(pdata,0, BATCH_OPLOCK_RETURN);
6507                 } else {
6508                         SSVAL(pdata,0, EXCLUSIVE_OPLOCK_RETURN);
6509                 }
6510         } else if (fsp->oplock_type == LEVEL_II_OPLOCK) {
6511                 SSVAL(pdata,0, LEVEL_II_OPLOCK_RETURN);
6512         } else {
6513                 SSVAL(pdata,0,NO_OPLOCK_RETURN);
6514         }
6515
6516         SSVAL(pdata,2,fsp->fnum);
6517         SIVAL(pdata,4,info); /* Was file created etc. */
6518
6519         switch (info_level_return) {
6520                 case SMB_QUERY_FILE_UNIX_BASIC:
6521                         SSVAL(pdata,8,SMB_QUERY_FILE_UNIX_BASIC);
6522                         SSVAL(pdata,10,0); /* padding. */
6523                         store_file_unix_basic(conn, pdata + 12, fsp, psbuf);
6524                         break;
6525                 case SMB_QUERY_FILE_UNIX_INFO2:
6526                         SSVAL(pdata,8,SMB_QUERY_FILE_UNIX_INFO2);
6527                         SSVAL(pdata,10,0); /* padding. */
6528                         store_file_unix_basic_info2(conn, pdata + 12, fsp, psbuf);
6529                         break;
6530                 default:
6531                         SSVAL(pdata,8,SMB_NO_INFO_LEVEL_RETURNED);
6532                         SSVAL(pdata,10,0); /* padding. */
6533                         break;
6534         }
6535         return NT_STATUS_OK;
6536 }
6537
6538 /****************************************************************************
6539  Delete a file with POSIX semantics.
6540 ****************************************************************************/
6541
6542 static NTSTATUS smb_posix_unlink(connection_struct *conn,
6543                                  struct smb_request *req,
6544                                 const char *pdata,
6545                                 int total_data,
6546                                 const char *fname,
6547                                 SMB_STRUCT_STAT *psbuf)
6548 {
6549         NTSTATUS status = NT_STATUS_OK;
6550         files_struct *fsp = NULL;
6551         uint16 flags = 0;
6552         char del = 1;
6553         int info = 0;
6554         int create_options = 0;
6555         int i;
6556         struct share_mode_lock *lck = NULL;
6557
6558         if (total_data < 2) {
6559                 return NT_STATUS_INVALID_PARAMETER;
6560         }
6561
6562         flags = SVAL(pdata,0);
6563
6564         if (!VALID_STAT(*psbuf)) {
6565                 return NT_STATUS_OBJECT_NAME_NOT_FOUND;
6566         }
6567
6568         if ((flags == SMB_POSIX_UNLINK_DIRECTORY_TARGET) &&
6569                         !VALID_STAT_OF_DIR(*psbuf)) {
6570                 return NT_STATUS_NOT_A_DIRECTORY;
6571         }
6572
6573         DEBUG(10,("smb_posix_unlink: %s %s\n",
6574                 (flags == SMB_POSIX_UNLINK_DIRECTORY_TARGET) ? "directory" : "file",
6575                 fname));
6576
6577         if (VALID_STAT_OF_DIR(*psbuf)) {
6578                 create_options |= FILE_DIRECTORY_FILE;
6579         }
6580
6581         status = SMB_VFS_CREATE_FILE(
6582                 conn,                                   /* conn */
6583                 req,                                    /* req */
6584                 0,                                      /* root_dir_fid */
6585                 fname,                                  /* fname */
6586                 0,                                      /* create_file_flags */
6587                 DELETE_ACCESS,                          /* access_mask */
6588                 (FILE_SHARE_READ | FILE_SHARE_WRITE |   /* share_access */
6589                     FILE_SHARE_DELETE),
6590                 FILE_OPEN,                              /* create_disposition*/
6591                 create_options,                         /* create_options */
6592                 FILE_FLAG_POSIX_SEMANTICS|0777,         /* file_attributes */
6593                 0,                                      /* oplock_request */
6594                 0,                                      /* allocation_size */
6595                 NULL,                                   /* sd */
6596                 NULL,                                   /* ea_list */
6597                 &fsp,                                   /* result */
6598                 &info,                                  /* pinfo */
6599                 psbuf);                                 /* psbuf */
6600
6601         if (!NT_STATUS_IS_OK(status)) {
6602                 return status;
6603         }
6604
6605         /*
6606          * Don't lie to client. If we can't really delete due to
6607          * non-POSIX opens return SHARING_VIOLATION.
6608          */
6609
6610         lck = get_share_mode_lock(talloc_tos(), fsp->file_id, NULL, NULL,
6611                                   NULL);
6612         if (lck == NULL) {
6613                 DEBUG(0, ("smb_posix_unlink: Could not get share mode "
6614                         "lock for file %s\n", fsp->fsp_name));
6615                 close_file(req, fsp, NORMAL_CLOSE);
6616                 return NT_STATUS_INVALID_PARAMETER;
6617         }
6618
6619         /*
6620          * See if others still have the file open. If this is the case, then
6621          * don't delete. If all opens are POSIX delete we can set the delete
6622          * on close disposition.
6623          */
6624         for (i=0; i<lck->num_share_modes; i++) {
6625                 struct share_mode_entry *e = &lck->share_modes[i];
6626                 if (is_valid_share_mode_entry(e)) {
6627                         if (e->flags & SHARE_MODE_FLAG_POSIX_OPEN) {
6628                                 continue;
6629                         }
6630                         /* Fail with sharing violation. */
6631                         close_file(req, fsp, NORMAL_CLOSE);
6632                         TALLOC_FREE(lck);
6633                         return NT_STATUS_SHARING_VIOLATION;
6634                 }
6635         }
6636
6637         /*
6638          * Set the delete on close.
6639          */
6640         status = smb_set_file_disposition_info(conn,
6641                                                 &del,
6642                                                 1,
6643                                                 fsp,
6644                                                 fname,
6645                                                 psbuf);
6646
6647         if (!NT_STATUS_IS_OK(status)) {
6648                 close_file(req, fsp, NORMAL_CLOSE);
6649                 TALLOC_FREE(lck);
6650                 return status;
6651         }
6652         TALLOC_FREE(lck);
6653         return close_file(req, fsp, NORMAL_CLOSE);
6654 }
6655
6656 /****************************************************************************
6657  Reply to a TRANS2_SETFILEINFO (set file info by fileid or pathname).
6658 ****************************************************************************/
6659
6660 static void call_trans2setfilepathinfo(connection_struct *conn,
6661                                        struct smb_request *req,
6662                                        unsigned int tran_call,
6663                                        char **pparams, int total_params,
6664                                        char **ppdata, int total_data,
6665                                        unsigned int max_data_bytes)
6666 {
6667         char *params = *pparams;
6668         char *pdata = *ppdata;
6669         uint16 info_level;
6670         SMB_STRUCT_STAT sbuf;
6671         char *fname = NULL;
6672         files_struct *fsp = NULL;
6673         NTSTATUS status = NT_STATUS_OK;
6674         int data_return_size = 0;
6675         TALLOC_CTX *ctx = talloc_tos();
6676
6677         if (!params) {
6678                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
6679                 return;
6680         }
6681
6682         ZERO_STRUCT(sbuf);
6683
6684         if (tran_call == TRANSACT2_SETFILEINFO) {
6685                 if (total_params < 4) {
6686                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
6687                         return;
6688                 }
6689
6690                 fsp = file_fsp(req, SVAL(params,0));
6691                 /* Basic check for non-null fsp. */
6692                 if (!check_fsp_open(conn, req, fsp)) {
6693                         return;
6694                 }
6695                 info_level = SVAL(params,2);
6696
6697                 fname = talloc_strdup(talloc_tos(),fsp->fsp_name);
6698                 if (!fname) {
6699                         reply_nterror(req, NT_STATUS_NO_MEMORY);
6700                         return;
6701                 }
6702
6703                 if(fsp->is_directory || fsp->fh->fd == -1) {
6704                         /*
6705                          * This is actually a SETFILEINFO on a directory
6706                          * handle (returned from an NT SMB). NT5.0 seems
6707                          * to do this call. JRA.
6708                          */
6709                         if (INFO_LEVEL_IS_UNIX(info_level)) {
6710                                 /* Always do lstat for UNIX calls. */
6711                                 if (SMB_VFS_LSTAT(conn,fname,&sbuf)) {
6712                                         DEBUG(3,("call_trans2setfilepathinfo: SMB_VFS_LSTAT of %s failed (%s)\n",fname,strerror(errno)));
6713                                         reply_unixerror(req,ERRDOS,ERRbadpath);
6714                                         return;
6715                                 }
6716                         } else {
6717                                 if (SMB_VFS_STAT(conn,fname,&sbuf) != 0) {
6718                                         DEBUG(3,("call_trans2setfilepathinfo: fileinfo of %s failed (%s)\n",fname,strerror(errno)));
6719                                         reply_unixerror(req,ERRDOS,ERRbadpath);
6720                                         return;
6721                                 }
6722                         }
6723                 } else if (fsp->print_file) {
6724                         /*
6725                          * Doing a DELETE_ON_CLOSE should cancel a print job.
6726                          */
6727                         if ((info_level == SMB_SET_FILE_DISPOSITION_INFO) && CVAL(pdata,0)) {
6728                                 fsp->fh->private_options |= FILE_DELETE_ON_CLOSE;
6729
6730                                 DEBUG(3,("call_trans2setfilepathinfo: Cancelling print job (%s)\n", fsp->fsp_name ));
6731
6732                                 SSVAL(params,0,0);
6733                                 send_trans2_replies(conn, req, params, 2,
6734                                                     *ppdata, 0,
6735                                                     max_data_bytes);
6736                                 return;
6737                         } else {
6738                                 reply_unixerror(req, ERRDOS, ERRbadpath);
6739                                 return;
6740                         }
6741                 } else {
6742                         /*
6743                          * Original code - this is an open file.
6744                          */
6745                         if (!check_fsp(conn, req, fsp)) {
6746                                 return;
6747                         }
6748
6749                         if (SMB_VFS_FSTAT(fsp, &sbuf) != 0) {
6750                                 DEBUG(3,("call_trans2setfilepathinfo: fstat of fnum %d failed (%s)\n",fsp->fnum, strerror(errno)));
6751                                 reply_unixerror(req, ERRDOS, ERRbadfid);
6752                                 return;
6753                         }
6754                 }
6755         } else {
6756                 /* set path info */
6757                 if (total_params < 7) {
6758                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
6759                         return;
6760                 }
6761
6762                 info_level = SVAL(params,0);
6763                 srvstr_get_path(ctx, params, req->flags2, &fname, &params[6],
6764                                 total_params - 6, STR_TERMINATE,
6765                                 &status);
6766                 if (!NT_STATUS_IS_OK(status)) {
6767                         reply_nterror(req, status);
6768                         return;
6769                 }
6770
6771                 status = resolve_dfspath(ctx, conn,
6772                                          req->flags2 & FLAGS2_DFS_PATHNAMES,
6773                                          fname,
6774                                          &fname);
6775                 if (!NT_STATUS_IS_OK(status)) {
6776                         if (NT_STATUS_EQUAL(status,NT_STATUS_PATH_NOT_COVERED)) {
6777                                 reply_botherror(req,
6778                                                 NT_STATUS_PATH_NOT_COVERED,
6779                                                 ERRSRV, ERRbadpath);
6780                                 return;
6781                         }
6782                         reply_nterror(req, status);
6783                         return;
6784                 }
6785
6786                 status = unix_convert(ctx, conn, fname, False,
6787                                 &fname, NULL, &sbuf);
6788                 if (!NT_STATUS_IS_OK(status)) {
6789                         reply_nterror(req, status);
6790                         return;
6791                 }
6792
6793                 status = check_name(conn, fname);
6794                 if (!NT_STATUS_IS_OK(status)) {
6795                         reply_nterror(req, status);
6796                         return;
6797                 }
6798
6799                 if (INFO_LEVEL_IS_UNIX(info_level)) {
6800                         /*
6801                          * For CIFS UNIX extensions the target name may not exist.
6802                          */
6803
6804                         /* Always do lstat for UNIX calls. */
6805                         SMB_VFS_LSTAT(conn,fname,&sbuf);
6806
6807                 } else if (!VALID_STAT(sbuf) && SMB_VFS_STAT(conn,fname,&sbuf)) {
6808                         DEBUG(3,("call_trans2setfilepathinfo: SMB_VFS_STAT of %s failed (%s)\n",fname,strerror(errno)));
6809                         reply_unixerror(req, ERRDOS, ERRbadpath);
6810                         return;
6811                 }
6812         }
6813
6814         if (!CAN_WRITE(conn)) {
6815                 reply_doserror(req, ERRSRV, ERRaccess);
6816                 return;
6817         }
6818
6819         if (INFO_LEVEL_IS_UNIX(info_level) && !lp_unix_extensions()) {
6820                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
6821                 return;
6822         }
6823
6824         DEBUG(3,("call_trans2setfilepathinfo(%d) %s (fnum %d) info_level=%d totdata=%d\n",
6825                 tran_call,fname, fsp ? fsp->fnum : -1, info_level,total_data));
6826
6827         /* Realloc the parameter size */
6828         *pparams = (char *)SMB_REALLOC(*pparams,2);
6829         if (*pparams == NULL) {
6830                 reply_nterror(req, NT_STATUS_NO_MEMORY);
6831                 return;
6832         }
6833         params = *pparams;
6834
6835         SSVAL(params,0,0);
6836
6837         switch (info_level) {
6838
6839                 case SMB_INFO_STANDARD:
6840                 {
6841                         status = smb_set_info_standard(conn,
6842                                         pdata,
6843                                         total_data,
6844                                         fsp,
6845                                         fname,
6846                                         &sbuf);
6847                         break;
6848                 }
6849
6850                 case SMB_INFO_SET_EA:
6851                 {
6852                         status = smb_info_set_ea(conn,
6853                                                 pdata,
6854                                                 total_data,
6855                                                 fsp,
6856                                                 fname);
6857                         break;
6858                 }
6859
6860                 case SMB_SET_FILE_BASIC_INFO:
6861                 case SMB_FILE_BASIC_INFORMATION:
6862                 {
6863                         status = smb_set_file_basic_info(conn,
6864                                                         pdata,
6865                                                         total_data,
6866                                                         fsp,
6867                                                         fname,
6868                                                         &sbuf);
6869                         break;
6870                 }
6871
6872                 case SMB_FILE_ALLOCATION_INFORMATION:
6873                 case SMB_SET_FILE_ALLOCATION_INFO:
6874                 {
6875                         status = smb_set_file_allocation_info(conn, req,
6876                                                                 pdata,
6877                                                                 total_data,
6878                                                                 fsp,
6879                                                                 fname,
6880                                                                 &sbuf);
6881                         break;
6882                 }
6883
6884                 case SMB_FILE_END_OF_FILE_INFORMATION:
6885                 case SMB_SET_FILE_END_OF_FILE_INFO:
6886                 {
6887                         status = smb_set_file_end_of_file_info(conn, req,
6888                                                                 pdata,
6889                                                                 total_data,
6890                                                                 fsp,
6891                                                                 fname,
6892                                                                 &sbuf);
6893                         break;
6894                 }
6895
6896                 case SMB_FILE_DISPOSITION_INFORMATION:
6897                 case SMB_SET_FILE_DISPOSITION_INFO: /* Set delete on close for open file. */
6898                 {
6899 #if 0
6900                         /* JRA - We used to just ignore this on a path ? 
6901                          * Shouldn't this be invalid level on a pathname
6902                          * based call ?
6903                          */
6904                         if (tran_call != TRANSACT2_SETFILEINFO) {
6905                                 return ERROR_NT(NT_STATUS_INVALID_LEVEL);
6906                         }
6907 #endif
6908                         status = smb_set_file_disposition_info(conn,
6909                                                 pdata,
6910                                                 total_data,
6911                                                 fsp,
6912                                                 fname,
6913                                                 &sbuf);
6914                         break;
6915                 }
6916
6917                 case SMB_FILE_POSITION_INFORMATION:
6918                 {
6919                         status = smb_file_position_information(conn,
6920                                                 pdata,
6921                                                 total_data,
6922                                                 fsp);
6923                         break;
6924                 }
6925
6926                 /* From tridge Samba4 : 
6927                  * MODE_INFORMATION in setfileinfo (I have no
6928                  * idea what "mode information" on a file is - it takes a value of 0,
6929                  * 2, 4 or 6. What could it be?).
6930                  */
6931
6932                 case SMB_FILE_MODE_INFORMATION:
6933                 {
6934                         status = smb_file_mode_information(conn,
6935                                                 pdata,
6936                                                 total_data);
6937                         break;
6938                 }
6939
6940                 /*
6941                  * CIFS UNIX extensions.
6942                  */
6943
6944                 case SMB_SET_FILE_UNIX_BASIC:
6945                 {
6946                         status = smb_set_file_unix_basic(conn, req,
6947                                                         pdata,
6948                                                         total_data,
6949                                                         fsp,
6950                                                         fname,
6951                                                         &sbuf);
6952                         break;
6953                 }
6954
6955                 case SMB_SET_FILE_UNIX_INFO2:
6956                 {
6957                         status = smb_set_file_unix_info2(conn, req,
6958                                                         pdata,
6959                                                         total_data,
6960                                                         fsp,
6961                                                         fname,
6962                                                         &sbuf);
6963                         break;
6964                 }
6965
6966                 case SMB_SET_FILE_UNIX_LINK:
6967                 {
6968                         if (tran_call != TRANSACT2_SETPATHINFO) {
6969                                 /* We must have a pathname for this. */
6970                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
6971                                 return;
6972                         }
6973                         status = smb_set_file_unix_link(conn, req, pdata,
6974                                                         total_data, fname);
6975                         break;
6976                 }
6977
6978                 case SMB_SET_FILE_UNIX_HLINK:
6979                 {
6980                         if (tran_call != TRANSACT2_SETPATHINFO) {
6981                                 /* We must have a pathname for this. */
6982                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
6983                                 return;
6984                         }
6985                         status = smb_set_file_unix_hlink(conn, req,
6986                                                          pdata, total_data,
6987                                                          fname);
6988                         break;
6989                 }
6990
6991                 case SMB_FILE_RENAME_INFORMATION:
6992                 {
6993                         status = smb_file_rename_information(conn, req,
6994                                                              pdata, total_data,
6995                                                              fsp, fname);
6996                         break;
6997                 }
6998
6999 #if defined(HAVE_POSIX_ACLS)
7000                 case SMB_SET_POSIX_ACL:
7001                 {
7002                         status = smb_set_posix_acl(conn,
7003                                                 pdata,
7004                                                 total_data,
7005                                                 fsp,
7006                                                 fname,
7007                                                 &sbuf);
7008                         break;
7009                 }
7010 #endif
7011
7012                 case SMB_SET_POSIX_LOCK:
7013                 {
7014                         if (tran_call != TRANSACT2_SETFILEINFO) {
7015                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
7016                                 return;
7017                         }
7018                         status = smb_set_posix_lock(conn, req,
7019                                                     pdata, total_data, fsp);
7020                         break;
7021                 }
7022
7023                 case SMB_POSIX_PATH_OPEN:
7024                 {
7025                         if (tran_call != TRANSACT2_SETPATHINFO) {
7026                                 /* We must have a pathname for this. */
7027                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
7028                                 return;
7029                         }
7030
7031                         status = smb_posix_open(conn, req,
7032                                                 ppdata,
7033                                                 total_data,
7034                                                 fname,
7035                                                 &sbuf,
7036                                                 &data_return_size);
7037                         break;
7038                 }
7039
7040                 case SMB_POSIX_PATH_UNLINK:
7041                 {
7042                         if (tran_call != TRANSACT2_SETPATHINFO) {
7043                                 /* We must have a pathname for this. */
7044                                 reply_nterror(req, NT_STATUS_INVALID_LEVEL);
7045                                 return;
7046                         }
7047
7048                         status = smb_posix_unlink(conn, req,
7049                                                 pdata,
7050                                                 total_data,
7051                                                 fname,
7052                                                 &sbuf);
7053                         break;
7054                 }
7055
7056                 default:
7057                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
7058                         return;
7059         }
7060
7061         
7062         if (!NT_STATUS_IS_OK(status)) {
7063                 if (open_was_deferred(req->mid)) {
7064                         /* We have re-scheduled this call. */
7065                         return;
7066                 }
7067                 if (blocking_lock_was_deferred(req->mid)) {
7068                         /* We have re-scheduled this call. */
7069                         return;
7070                 }
7071                 if (NT_STATUS_EQUAL(status,NT_STATUS_PATH_NOT_COVERED)) {
7072                         reply_botherror(req, NT_STATUS_PATH_NOT_COVERED,
7073                                         ERRSRV, ERRbadpath);
7074                         return;
7075                 }
7076                 if (info_level == SMB_POSIX_PATH_OPEN) {
7077                         reply_openerror(req, status);
7078                         return;
7079                 }
7080
7081                 reply_nterror(req, status);
7082                 return;
7083         }
7084
7085         SSVAL(params,0,0);
7086         send_trans2_replies(conn, req, params, 2, *ppdata, data_return_size,
7087                             max_data_bytes);
7088   
7089         return;
7090 }
7091
7092 /****************************************************************************
7093  Reply to a TRANS2_MKDIR (make directory with extended attributes).
7094 ****************************************************************************/
7095
7096 static void call_trans2mkdir(connection_struct *conn, struct smb_request *req,
7097                              char **pparams, int total_params,
7098                              char **ppdata, int total_data,
7099                              unsigned int max_data_bytes)
7100 {
7101         char *params = *pparams;
7102         char *pdata = *ppdata;
7103         char *directory = NULL;
7104         SMB_STRUCT_STAT sbuf;
7105         NTSTATUS status = NT_STATUS_OK;
7106         struct ea_list *ea_list = NULL;
7107         TALLOC_CTX *ctx = talloc_tos();
7108
7109         if (!CAN_WRITE(conn)) {
7110                 reply_doserror(req, ERRSRV, ERRaccess);
7111                 return;
7112         }
7113
7114         if (total_params < 5) {
7115                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7116                 return;
7117         }
7118
7119         srvstr_get_path(ctx, params, req->flags2, &directory, &params[4],
7120                         total_params - 4, STR_TERMINATE,
7121                         &status);
7122         if (!NT_STATUS_IS_OK(status)) {
7123                 reply_nterror(req, status);
7124                 return;
7125         }
7126
7127         DEBUG(3,("call_trans2mkdir : name = %s\n", directory));
7128
7129         status = unix_convert(ctx, conn, directory, False, &directory, NULL, &sbuf);
7130         if (!NT_STATUS_IS_OK(status)) {
7131                 reply_nterror(req, status);
7132                 return;
7133         }
7134
7135         status = check_name(conn, directory);
7136         if (!NT_STATUS_IS_OK(status)) {
7137                 DEBUG(5,("call_trans2mkdir error (%s)\n", nt_errstr(status)));
7138                 reply_nterror(req, status);
7139                 return;
7140         }
7141
7142         /* Any data in this call is an EA list. */
7143         if (total_data && (total_data != 4) && !lp_ea_support(SNUM(conn))) {
7144                 reply_nterror(req, NT_STATUS_EAS_NOT_SUPPORTED);
7145                 return;
7146         }
7147
7148         /*
7149          * OS/2 workplace shell seems to send SET_EA requests of "null"
7150          * length (4 bytes containing IVAL 4).
7151          * They seem to have no effect. Bug #3212. JRA.
7152          */
7153
7154         if (total_data != 4) {
7155                 if (total_data < 10) {
7156                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7157                         return;
7158                 }
7159
7160                 if (IVAL(pdata,0) > total_data) {
7161                         DEBUG(10,("call_trans2mkdir: bad total data size (%u) > %u\n",
7162                                 IVAL(pdata,0), (unsigned int)total_data));
7163                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7164                         return;
7165                 }
7166
7167                 ea_list = read_ea_list(talloc_tos(), pdata + 4,
7168                                        total_data - 4);
7169                 if (!ea_list) {
7170                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7171                         return;
7172                 }
7173         }
7174         /* If total_data == 4 Windows doesn't care what values
7175          * are placed in that field, it just ignores them.
7176          * The System i QNTC IBM SMB client puts bad values here,
7177          * so ignore them. */
7178
7179         status = create_directory(conn, req, directory);
7180
7181         if (!NT_STATUS_IS_OK(status)) {
7182                 reply_nterror(req, status);
7183                 return;
7184         }
7185   
7186         /* Try and set any given EA. */
7187         if (ea_list) {
7188                 status = set_ea(conn, NULL, directory, ea_list);
7189                 if (!NT_STATUS_IS_OK(status)) {
7190                         reply_nterror(req, status);
7191                         return;
7192                 }
7193         }
7194
7195         /* Realloc the parameter and data sizes */
7196         *pparams = (char *)SMB_REALLOC(*pparams,2);
7197         if(*pparams == NULL) {
7198                 reply_nterror(req, NT_STATUS_NO_MEMORY);
7199                 return;
7200         }
7201         params = *pparams;
7202
7203         SSVAL(params,0,0);
7204
7205         send_trans2_replies(conn, req, params, 2, *ppdata, 0, max_data_bytes);
7206   
7207         return;
7208 }
7209
7210 /****************************************************************************
7211  Reply to a TRANS2_FINDNOTIFYFIRST (start monitoring a directory for changes).
7212  We don't actually do this - we just send a null response.
7213 ****************************************************************************/
7214
7215 static void call_trans2findnotifyfirst(connection_struct *conn,
7216                                        struct smb_request *req,
7217                                        char **pparams, int total_params,
7218                                        char **ppdata, int total_data,
7219                                        unsigned int max_data_bytes)
7220 {
7221         static uint16 fnf_handle = 257;
7222         char *params = *pparams;
7223         uint16 info_level;
7224
7225         if (total_params < 6) {
7226                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7227                 return;
7228         }
7229
7230         info_level = SVAL(params,4);
7231         DEBUG(3,("call_trans2findnotifyfirst - info_level %d\n", info_level));
7232
7233         switch (info_level) {
7234                 case 1:
7235                 case 2:
7236                         break;
7237                 default:
7238                         reply_nterror(req, NT_STATUS_INVALID_LEVEL);
7239                         return;
7240         }
7241
7242         /* Realloc the parameter and data sizes */
7243         *pparams = (char *)SMB_REALLOC(*pparams,6);
7244         if (*pparams == NULL) {
7245                 reply_nterror(req, NT_STATUS_NO_MEMORY);
7246                 return;
7247         }
7248         params = *pparams;
7249
7250         SSVAL(params,0,fnf_handle);
7251         SSVAL(params,2,0); /* No changes */
7252         SSVAL(params,4,0); /* No EA errors */
7253
7254         fnf_handle++;
7255
7256         if(fnf_handle == 0)
7257                 fnf_handle = 257;
7258
7259         send_trans2_replies(conn, req, params, 6, *ppdata, 0, max_data_bytes);
7260   
7261         return;
7262 }
7263
7264 /****************************************************************************
7265  Reply to a TRANS2_FINDNOTIFYNEXT (continue monitoring a directory for 
7266  changes). Currently this does nothing.
7267 ****************************************************************************/
7268
7269 static void call_trans2findnotifynext(connection_struct *conn,
7270                                       struct smb_request *req,
7271                                       char **pparams, int total_params,
7272                                       char **ppdata, int total_data,
7273                                       unsigned int max_data_bytes)
7274 {
7275         char *params = *pparams;
7276
7277         DEBUG(3,("call_trans2findnotifynext\n"));
7278
7279         /* Realloc the parameter and data sizes */
7280         *pparams = (char *)SMB_REALLOC(*pparams,4);
7281         if (*pparams == NULL) {
7282                 reply_nterror(req, NT_STATUS_NO_MEMORY);
7283                 return;
7284         }
7285         params = *pparams;
7286
7287         SSVAL(params,0,0); /* No changes */
7288         SSVAL(params,2,0); /* No EA errors */
7289
7290         send_trans2_replies(conn, req, params, 4, *ppdata, 0, max_data_bytes);
7291   
7292         return;
7293 }
7294
7295 /****************************************************************************
7296  Reply to a TRANS2_GET_DFS_REFERRAL - Shirish Kalele <kalele@veritas.com>.
7297 ****************************************************************************/
7298
7299 static void call_trans2getdfsreferral(connection_struct *conn,
7300                                       struct smb_request *req,
7301                                       char **pparams, int total_params,
7302                                       char **ppdata, int total_data,
7303                                       unsigned int max_data_bytes)
7304 {
7305         char *params = *pparams;
7306         char *pathname = NULL;
7307         int reply_size = 0;
7308         int max_referral_level;
7309         NTSTATUS status = NT_STATUS_OK;
7310         TALLOC_CTX *ctx = talloc_tos();
7311
7312         DEBUG(10,("call_trans2getdfsreferral\n"));
7313
7314         if (total_params < 3) {
7315                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7316                 return;
7317         }
7318
7319         max_referral_level = SVAL(params,0);
7320
7321         if(!lp_host_msdfs()) {
7322                 reply_doserror(req, ERRDOS, ERRbadfunc);
7323                 return;
7324         }
7325
7326         srvstr_pull_talloc(ctx, params, req->flags2, &pathname, &params[2],
7327                     total_params - 2, STR_TERMINATE);
7328         if (!pathname) {
7329                 reply_nterror(req, NT_STATUS_NOT_FOUND);
7330                 return;
7331         }
7332         if((reply_size = setup_dfs_referral(conn, pathname, max_referral_level,
7333                                             ppdata,&status)) < 0) {
7334                 reply_nterror(req, status);
7335                 return;
7336         }
7337
7338         SSVAL(req->inbuf, smb_flg2,
7339               SVAL(req->inbuf,smb_flg2) | FLAGS2_DFS_PATHNAMES);
7340         send_trans2_replies(conn, req,0,0,*ppdata,reply_size, max_data_bytes);
7341
7342         return;
7343 }
7344
7345 #define LMCAT_SPL       0x53
7346 #define LMFUNC_GETJOBID 0x60
7347
7348 /****************************************************************************
7349  Reply to a TRANS2_IOCTL - used for OS/2 printing.
7350 ****************************************************************************/
7351
7352 static void call_trans2ioctl(connection_struct *conn,
7353                              struct smb_request *req,
7354                              char **pparams, int total_params,
7355                              char **ppdata, int total_data,
7356                              unsigned int max_data_bytes)
7357 {
7358         char *pdata = *ppdata;
7359         files_struct *fsp = file_fsp(req, SVAL(req->vwv+15, 0));
7360
7361         /* check for an invalid fid before proceeding */
7362
7363         if (!fsp) {
7364                 reply_doserror(req, ERRDOS, ERRbadfid);
7365                 return;
7366         }
7367
7368         if ((SVAL(req->vwv+16, 0) == LMCAT_SPL)
7369             && (SVAL(req->vwv+17, 0) == LMFUNC_GETJOBID)) {
7370                 *ppdata = (char *)SMB_REALLOC(*ppdata, 32);
7371                 if (*ppdata == NULL) {
7372                         reply_nterror(req, NT_STATUS_NO_MEMORY);
7373                         return;
7374                 }
7375                 pdata = *ppdata;
7376
7377                 /* NOTE - THIS IS ASCII ONLY AT THE MOMENT - NOT SURE IF OS/2
7378                         CAN ACCEPT THIS IN UNICODE. JRA. */
7379
7380                 SSVAL(pdata,0,fsp->rap_print_jobid);                     /* Job number */
7381                 srvstr_push(pdata, req->flags2, pdata + 2,
7382                             global_myname(), 15,
7383                             STR_ASCII|STR_TERMINATE); /* Our NetBIOS name */
7384                 srvstr_push(pdata, req->flags2, pdata+18,
7385                             lp_servicename(SNUM(conn)), 13,
7386                             STR_ASCII|STR_TERMINATE); /* Service name */
7387                 send_trans2_replies(conn, req, *pparams, 0, *ppdata, 32,
7388                                     max_data_bytes);
7389                 return;
7390         }
7391
7392         DEBUG(2,("Unknown TRANS2_IOCTL\n"));
7393         reply_doserror(req, ERRSRV, ERRerror);
7394 }
7395
7396 /****************************************************************************
7397  Reply to a SMBfindclose (stop trans2 directory search).
7398 ****************************************************************************/
7399
7400 void reply_findclose(struct smb_request *req)
7401 {
7402         int dptr_num;
7403
7404         START_PROFILE(SMBfindclose);
7405
7406         if (req->wct < 1) {
7407                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7408                 END_PROFILE(SMBfindclose);
7409                 return;
7410         }
7411
7412         dptr_num = SVALS(req->vwv+0, 0);
7413
7414         DEBUG(3,("reply_findclose, dptr_num = %d\n", dptr_num));
7415
7416         dptr_close(&dptr_num);
7417
7418         reply_outbuf(req, 0, 0);
7419
7420         DEBUG(3,("SMBfindclose dptr_num = %d\n", dptr_num));
7421
7422         END_PROFILE(SMBfindclose);
7423         return;
7424 }
7425
7426 /****************************************************************************
7427  Reply to a SMBfindnclose (stop FINDNOTIFYFIRST directory search).
7428 ****************************************************************************/
7429
7430 void reply_findnclose(struct smb_request *req)
7431 {
7432         int dptr_num;
7433
7434         START_PROFILE(SMBfindnclose);
7435
7436         if (req->wct < 1) {
7437                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7438                 END_PROFILE(SMBfindnclose);
7439                 return;
7440         }
7441         
7442         dptr_num = SVAL(req->vwv+0, 0);
7443
7444         DEBUG(3,("reply_findnclose, dptr_num = %d\n", dptr_num));
7445
7446         /* We never give out valid handles for a 
7447            findnotifyfirst - so any dptr_num is ok here. 
7448            Just ignore it. */
7449
7450         reply_outbuf(req, 0, 0);
7451
7452         DEBUG(3,("SMB_findnclose dptr_num = %d\n", dptr_num));
7453
7454         END_PROFILE(SMBfindnclose);
7455         return;
7456 }
7457
7458 static void handle_trans2(connection_struct *conn, struct smb_request *req,
7459                           struct trans_state *state)
7460 {
7461         if (Protocol >= PROTOCOL_NT1) {
7462                 req->flags2 |= 0x40; /* IS_LONG_NAME */
7463                 SSVAL(req->inbuf,smb_flg2,req->flags2);
7464         }
7465
7466         if (conn->encrypt_level == Required && !req->encrypted) {
7467                 if (state->call != TRANSACT2_QFSINFO &&
7468                                 state->call != TRANSACT2_SETFSINFO) {
7469                         DEBUG(0,("handle_trans2: encryption required "
7470                                 "with call 0x%x\n",
7471                                 (unsigned int)state->call));
7472                         reply_nterror(req, NT_STATUS_ACCESS_DENIED);
7473                         return;
7474                 }
7475         }
7476
7477         /* Now we must call the relevant TRANS2 function */
7478         switch(state->call)  {
7479         case TRANSACT2_OPEN:
7480         {
7481                 START_PROFILE(Trans2_open);
7482                 call_trans2open(conn, req,
7483                                 &state->param, state->total_param,
7484                                 &state->data, state->total_data,
7485                                 state->max_data_return);
7486                 END_PROFILE(Trans2_open);
7487                 break;
7488         }
7489
7490         case TRANSACT2_FINDFIRST:
7491         {
7492                 START_PROFILE(Trans2_findfirst);
7493                 call_trans2findfirst(conn, req,
7494                                      &state->param, state->total_param,
7495                                      &state->data, state->total_data,
7496                                      state->max_data_return);
7497                 END_PROFILE(Trans2_findfirst);
7498                 break;
7499         }
7500
7501         case TRANSACT2_FINDNEXT:
7502         {
7503                 START_PROFILE(Trans2_findnext);
7504                 call_trans2findnext(conn, req,
7505                                     &state->param, state->total_param,
7506                                     &state->data, state->total_data,
7507                                     state->max_data_return);
7508                 END_PROFILE(Trans2_findnext);
7509                 break;
7510         }
7511
7512         case TRANSACT2_QFSINFO:
7513         {
7514                 START_PROFILE(Trans2_qfsinfo);
7515                 call_trans2qfsinfo(conn, req,
7516                                    &state->param, state->total_param,
7517                                    &state->data, state->total_data,
7518                                    state->max_data_return);
7519                 END_PROFILE(Trans2_qfsinfo);
7520             break;
7521         }
7522
7523         case TRANSACT2_SETFSINFO:
7524         {
7525                 START_PROFILE(Trans2_setfsinfo);
7526                 call_trans2setfsinfo(conn, req,
7527                                      &state->param, state->total_param,
7528                                      &state->data, state->total_data,
7529                                      state->max_data_return);
7530                 END_PROFILE(Trans2_setfsinfo);
7531                 break;
7532         }
7533
7534         case TRANSACT2_QPATHINFO:
7535         case TRANSACT2_QFILEINFO:
7536         {
7537                 START_PROFILE(Trans2_qpathinfo);
7538                 call_trans2qfilepathinfo(conn, req, state->call,
7539                                          &state->param, state->total_param,
7540                                          &state->data, state->total_data,
7541                                          state->max_data_return);
7542                 END_PROFILE(Trans2_qpathinfo);
7543                 break;
7544         }
7545
7546         case TRANSACT2_SETPATHINFO:
7547         case TRANSACT2_SETFILEINFO:
7548         {
7549                 START_PROFILE(Trans2_setpathinfo);
7550                 call_trans2setfilepathinfo(conn, req, state->call,
7551                                            &state->param, state->total_param,
7552                                            &state->data, state->total_data,
7553                                            state->max_data_return);
7554                 END_PROFILE(Trans2_setpathinfo);
7555                 break;
7556         }
7557
7558         case TRANSACT2_FINDNOTIFYFIRST:
7559         {
7560                 START_PROFILE(Trans2_findnotifyfirst);
7561                 call_trans2findnotifyfirst(conn, req,
7562                                            &state->param, state->total_param,
7563                                            &state->data, state->total_data,
7564                                            state->max_data_return);
7565                 END_PROFILE(Trans2_findnotifyfirst);
7566                 break;
7567         }
7568
7569         case TRANSACT2_FINDNOTIFYNEXT:
7570         {
7571                 START_PROFILE(Trans2_findnotifynext);
7572                 call_trans2findnotifynext(conn, req,
7573                                           &state->param, state->total_param,
7574                                           &state->data, state->total_data,
7575                                           state->max_data_return);
7576                 END_PROFILE(Trans2_findnotifynext);
7577                 break;
7578         }
7579
7580         case TRANSACT2_MKDIR:
7581         {
7582                 START_PROFILE(Trans2_mkdir);
7583                 call_trans2mkdir(conn, req,
7584                                  &state->param, state->total_param,
7585                                  &state->data, state->total_data,
7586                                  state->max_data_return);
7587                 END_PROFILE(Trans2_mkdir);
7588                 break;
7589         }
7590
7591         case TRANSACT2_GET_DFS_REFERRAL:
7592         {
7593                 START_PROFILE(Trans2_get_dfs_referral);
7594                 call_trans2getdfsreferral(conn, req,
7595                                           &state->param, state->total_param,
7596                                           &state->data, state->total_data,
7597                                           state->max_data_return);
7598                 END_PROFILE(Trans2_get_dfs_referral);
7599                 break;
7600         }
7601
7602         case TRANSACT2_IOCTL:
7603         {
7604                 START_PROFILE(Trans2_ioctl);
7605                 call_trans2ioctl(conn, req,
7606                                  &state->param, state->total_param,
7607                                  &state->data, state->total_data,
7608                                  state->max_data_return);
7609                 END_PROFILE(Trans2_ioctl);
7610                 break;
7611         }
7612
7613         default:
7614                 /* Error in request */
7615                 DEBUG(2,("Unknown request %d in trans2 call\n", state->call));
7616                 reply_doserror(req, ERRSRV,ERRerror);
7617         }
7618 }
7619
7620 /****************************************************************************
7621  Reply to a SMBtrans2.
7622  ****************************************************************************/
7623
7624 void reply_trans2(struct smb_request *req)
7625 {
7626         connection_struct *conn = req->conn;
7627         unsigned int dsoff;
7628         unsigned int dscnt;
7629         unsigned int psoff;
7630         unsigned int pscnt;
7631         unsigned int tran_call;
7632         struct trans_state *state;
7633         NTSTATUS result;
7634
7635         START_PROFILE(SMBtrans2);
7636
7637         if (req->wct < 14) {
7638                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7639                 END_PROFILE(SMBtrans2);
7640                 return;
7641         }
7642
7643         dsoff = SVAL(req->vwv+12, 0);
7644         dscnt = SVAL(req->vwv+11, 0);
7645         psoff = SVAL(req->vwv+10, 0);
7646         pscnt = SVAL(req->vwv+9, 0);
7647         tran_call = SVAL(req->vwv+14, 0);
7648
7649         result = allow_new_trans(conn->pending_trans, req->mid);
7650         if (!NT_STATUS_IS_OK(result)) {
7651                 DEBUG(2, ("Got invalid trans2 request: %s\n",
7652                           nt_errstr(result)));
7653                 reply_nterror(req, result);
7654                 END_PROFILE(SMBtrans2);
7655                 return;
7656         }
7657
7658         if (IS_IPC(conn)) {
7659                 switch (tran_call) {
7660                 /* List the allowed trans2 calls on IPC$ */
7661                 case TRANSACT2_OPEN:
7662                 case TRANSACT2_GET_DFS_REFERRAL:
7663                 case TRANSACT2_QFILEINFO:
7664                 case TRANSACT2_QFSINFO:
7665                 case TRANSACT2_SETFSINFO:
7666                         break;
7667                 default:
7668                         reply_doserror(req, ERRSRV, ERRaccess);
7669                         END_PROFILE(SMBtrans2);
7670                         return;
7671                 }
7672         }
7673
7674         if ((state = TALLOC_P(conn, struct trans_state)) == NULL) {
7675                 DEBUG(0, ("talloc failed\n"));
7676                 reply_nterror(req, NT_STATUS_NO_MEMORY);
7677                 END_PROFILE(SMBtrans2);
7678                 return;
7679         }
7680
7681         state->cmd = SMBtrans2;
7682
7683         state->mid = req->mid;
7684         state->vuid = req->vuid;
7685         state->setup_count = SVAL(req->vwv+13, 0);
7686         state->setup = NULL;
7687         state->total_param = SVAL(req->vwv+0, 0);
7688         state->param = NULL;
7689         state->total_data =  SVAL(req->vwv+1, 0);
7690         state->data = NULL;
7691         state->max_param_return = SVAL(req->vwv+2, 0);
7692         state->max_data_return  = SVAL(req->vwv+3, 0);
7693         state->max_setup_return = SVAL(req->vwv+4, 0);
7694         state->close_on_completion = BITSETW(req->vwv+5, 0);
7695         state->one_way = BITSETW(req->vwv+5, 1);
7696
7697         state->call = tran_call;
7698
7699         /* All trans2 messages we handle have smb_sucnt == 1 - ensure this
7700            is so as a sanity check */
7701         if (state->setup_count != 1) {
7702                 /*
7703                  * Need to have rc=0 for ioctl to get job id for OS/2.
7704                  *  Network printing will fail if function is not successful.
7705                  *  Similar function in reply.c will be used if protocol
7706                  *  is LANMAN1.0 instead of LM1.2X002.
7707                  *  Until DosPrintSetJobInfo with PRJINFO3 is supported,
7708                  *  outbuf doesn't have to be set(only job id is used).
7709                  */
7710                 if ( (state->setup_count == 4)
7711                      && (tran_call == TRANSACT2_IOCTL)
7712                      && (SVAL(req->vwv+16, 0) == LMCAT_SPL)
7713                      && (SVAL(req->vwv+17, 0) == LMFUNC_GETJOBID)) {
7714                         DEBUG(2,("Got Trans2 DevIOctl jobid\n"));
7715                 } else {
7716                         DEBUG(2,("Invalid smb_sucnt in trans2 call(%u)\n",state->setup_count));
7717                         DEBUG(2,("Transaction is %d\n",tran_call));
7718                         TALLOC_FREE(state);
7719                         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7720                         END_PROFILE(SMBtrans2);
7721                         return;
7722                 }
7723         }
7724
7725         if ((dscnt > state->total_data) || (pscnt > state->total_param))
7726                 goto bad_param;
7727
7728         if (state->total_data) {
7729
7730                 if (trans_oob(state->total_data, 0, dscnt)
7731                     || trans_oob(smb_len(req->inbuf), dsoff, dscnt)) {
7732                         goto bad_param;
7733                 }
7734
7735                 /* Can't use talloc here, the core routines do realloc on the
7736                  * params and data. */
7737                 state->data = (char *)SMB_MALLOC(state->total_data);
7738                 if (state->data == NULL) {
7739                         DEBUG(0,("reply_trans2: data malloc fail for %u "
7740                                  "bytes !\n", (unsigned int)state->total_data));
7741                         TALLOC_FREE(state);
7742                         reply_nterror(req, NT_STATUS_NO_MEMORY);
7743                         END_PROFILE(SMBtrans2);
7744                         return;
7745                 }
7746
7747                 memcpy(state->data,smb_base(req->inbuf)+dsoff,dscnt);
7748         }
7749
7750         if (state->total_param) {
7751
7752                 if (trans_oob(state->total_param, 0, pscnt)
7753                     || trans_oob(smb_len(req->inbuf), psoff, pscnt)) {
7754                         goto bad_param;
7755                 }
7756
7757                 /* Can't use talloc here, the core routines do realloc on the
7758                  * params and data. */
7759                 state->param = (char *)SMB_MALLOC(state->total_param);
7760                 if (state->param == NULL) {
7761                         DEBUG(0,("reply_trans: param malloc fail for %u "
7762                                  "bytes !\n", (unsigned int)state->total_param));
7763                         SAFE_FREE(state->data);
7764                         TALLOC_FREE(state);
7765                         reply_nterror(req, NT_STATUS_NO_MEMORY);
7766                         END_PROFILE(SMBtrans2);
7767                         return;
7768                 } 
7769
7770                 memcpy(state->param,smb_base(req->inbuf)+psoff,pscnt);
7771         }
7772
7773         state->received_data  = dscnt;
7774         state->received_param = pscnt;
7775
7776         if ((state->received_param == state->total_param) &&
7777             (state->received_data == state->total_data)) {
7778
7779                 handle_trans2(conn, req, state);
7780
7781                 SAFE_FREE(state->data);
7782                 SAFE_FREE(state->param);
7783                 TALLOC_FREE(state);
7784                 END_PROFILE(SMBtrans2);
7785                 return;
7786         }
7787
7788         DLIST_ADD(conn->pending_trans, state);
7789
7790         /* We need to send an interim response then receive the rest
7791            of the parameter/data bytes */
7792         reply_outbuf(req, 0, 0);
7793         show_msg((char *)req->outbuf);
7794         END_PROFILE(SMBtrans2);
7795         return;
7796
7797   bad_param:
7798
7799         DEBUG(0,("reply_trans2: invalid trans parameters\n"));
7800         SAFE_FREE(state->data);
7801         SAFE_FREE(state->param);
7802         TALLOC_FREE(state);
7803         END_PROFILE(SMBtrans2);
7804         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7805 }
7806
7807
7808 /****************************************************************************
7809  Reply to a SMBtranss2
7810  ****************************************************************************/
7811
7812 void reply_transs2(struct smb_request *req)
7813 {
7814         connection_struct *conn = req->conn;
7815         unsigned int pcnt,poff,dcnt,doff,pdisp,ddisp;
7816         struct trans_state *state;
7817
7818         START_PROFILE(SMBtranss2);
7819
7820         show_msg((char *)req->inbuf);
7821
7822         if (req->wct < 8) {
7823                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7824                 END_PROFILE(SMBtranss2);
7825                 return;
7826         }
7827
7828         for (state = conn->pending_trans; state != NULL;
7829              state = state->next) {
7830                 if (state->mid == req->mid) {
7831                         break;
7832                 }
7833         }
7834
7835         if ((state == NULL) || (state->cmd != SMBtrans2)) {
7836                 reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7837                 END_PROFILE(SMBtranss2);
7838                 return;
7839         }
7840
7841         /* Revise state->total_param and state->total_data in case they have
7842            changed downwards */
7843
7844         if (SVAL(req->vwv+0, 0) < state->total_param)
7845                 state->total_param = SVAL(req->vwv+0, 0);
7846         if (SVAL(req->vwv+1, 0) < state->total_data)
7847                 state->total_data = SVAL(req->vwv+1, 0);
7848
7849         pcnt = SVAL(req->vwv+2, 0);
7850         poff = SVAL(req->vwv+3, 0);
7851         pdisp = SVAL(req->vwv+4, 0);
7852
7853         dcnt = SVAL(req->vwv+5, 0);
7854         doff = SVAL(req->vwv+6, 0);
7855         ddisp = SVAL(req->vwv+7, 0);
7856
7857         state->received_param += pcnt;
7858         state->received_data += dcnt;
7859                 
7860         if ((state->received_data > state->total_data) ||
7861             (state->received_param > state->total_param))
7862                 goto bad_param;
7863
7864         if (pcnt) {
7865                 if (trans_oob(state->total_param, pdisp, pcnt)
7866                     || trans_oob(smb_len(req->inbuf), poff, pcnt)) {
7867                         goto bad_param;
7868                 }
7869                 memcpy(state->param+pdisp,smb_base(req->inbuf)+poff,pcnt);
7870         }
7871
7872         if (dcnt) {
7873                 if (trans_oob(state->total_data, ddisp, dcnt)
7874                     || trans_oob(smb_len(req->inbuf), doff, dcnt)) {
7875                         goto bad_param;
7876                 }
7877                 memcpy(state->data+ddisp, smb_base(req->inbuf)+doff,dcnt);
7878         }
7879
7880         if ((state->received_param < state->total_param) ||
7881             (state->received_data < state->total_data)) {
7882                 END_PROFILE(SMBtranss2);
7883                 return;
7884         }
7885
7886         handle_trans2(conn, req, state);
7887
7888         DLIST_REMOVE(conn->pending_trans, state);
7889         SAFE_FREE(state->data);
7890         SAFE_FREE(state->param);
7891         TALLOC_FREE(state);
7892
7893         END_PROFILE(SMBtranss2);
7894         return;
7895
7896   bad_param:
7897
7898         DEBUG(0,("reply_transs2: invalid trans parameters\n"));
7899         DLIST_REMOVE(conn->pending_trans, state);
7900         SAFE_FREE(state->data);
7901         SAFE_FREE(state->param);
7902         TALLOC_FREE(state);
7903         reply_nterror(req, NT_STATUS_INVALID_PARAMETER);
7904         END_PROFILE(SMBtranss2);
7905         return;
7906 }