2 * Copyright (c) 1991, 1992, 1993
3 * Regents of the University of Michigan. All rights reserved.
5 * Redistribution and use in source and binary forms are permitted
6 * provided that this notice is preserved and that due credit is given
7 * to the University of Michigan at Ann Arbor. The name of the University
8 * may not be used to endorse or promote products derived from this
9 * software without specific prior written permission. This software
10 * is provided ``as is'' without express or implied warranty.
17 #include <ac/stdlib.h>
20 #include <ac/string.h>
28 static int num_picked = 0; /* used when user picks entry at More prompt */
35 static char *attrs[2] = { "objectClass", NULL };
40 printf("->vrfy(%s)\n", dn);
42 /* verify that this DN exists in the directory */
43 (void) ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", attrs, TRUE, &results);
44 (void) ldap_msgfree(results);
46 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
48 if ((ld_errno == LDAP_NO_SUCH_OBJECT) || (ld_errno == LDAP_INVALID_DN_SYNTAX))
50 else if (ld_errno == LDAP_SUCCESS)
53 ldap_perror(ld, "ldap_search");
60 disambiguate( LDAPMessage *result, int matches, char **read_attrs, char *who )
62 int choice; /* entry that user chooses */
64 char *namelist[MAX_NUM_NAMES]; /* names found */
65 char response[SMALL_BUF_SIZE]; /* results from user */
66 char *name = NULL; /* DN to lookup */
72 printf("->disambiguate(%x, %d, %x, %s)\n", result, matches,
76 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
79 * If we are here, it means that we got back multiple answers.
81 if ((ld_errno == LDAP_TIMELIMIT_EXCEEDED)
82 || (ld_errno == LDAP_SIZELIMIT_EXCEEDED)) {
84 printf(" Your query was too general and a limit was exceeded. The results listed\n");
85 printf(" are not complete. You may want to try again with a more refined query.\n\n");
88 printf(" Time or size limit exceeded. Partial results follow.\n\n");
90 printf(" %1d names matched \"%s\".\n", matches, who);
92 printf(" Do you wish to see a list of names? ");
94 (void) memset(response, 0, sizeof(response));
95 fetch_buffer(response, sizeof(response), stdin);
96 switch (response[0]) {
105 print_list(result, namelist, &matches);
107 choice = pick_one(matches);
112 name = strdup(namelist[choice]);
114 * Now free up all of the pointers allocated in
115 * namelist. The print_list() routine that filled
116 * in this collection of strings starts at 1, not 0.
118 for (i = 1; namelist[i] != NULL; i++)
126 if (debug & D_FIND) {
127 printf(" Calling ldap_search_s()\n");
128 printf(" ld = 0x%x\n", ld);
129 printf(" search base = %s\n", name);
130 printf(" scope = LDAP_SCOPE_BASE\n");
131 printf(" filter = objectClass=*\n");
132 for (i = 0; read_attrs[i] != NULL; i++)
133 printf(" read_attrs[%d] = %s\n", i, read_attrs[i]);
134 printf(" read_attrs[%d] = NULL\n", i);
135 printf(" attrsonly = FALSE\n");
136 printf(" &mp = 0x%x\n", &mp);
139 if (ldap_search_s(ld, name, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &mp) != LDAP_SUCCESS) {
140 ldap_perror(ld, "ldap_search_s");
149 printf(" Please enter 'y', 'n', or RETURN.\n");
156 find( char *who, int quiet )
158 register int i, j, k; /* general ints */
159 int matches; /* from ldap_count_entries() */
160 int admonished = FALSE;
161 static int attrs_set = 0;
162 static char *read_attrs[MAX_ATTRS]; /* attrs to use in a read op */
163 static char *search_attrs[MAX_ATTRS]; /* attrs to use in a srch op */
164 static int rc; /* return from ldap_search */
165 LDAPMessage *ldtmp, *res; /* results returned from search */
166 char name[MED_BUF_SIZE];
167 char response[SMALL_BUF_SIZE];
168 char *cp, *dn, **rdns;
173 fprintf(stderr, "->find(%s)\n", who);
175 /* did not specify a 'who' */
177 printf(" Locate whose entry? ");
179 fetch_buffer(name, sizeof(name), stdin);
185 if (attrs_set == 0) {
188 for (i = 0; attrlist[i].quipu_name != NULL; i++) {
189 if (attrlist[i].flags & ATTR_FLAG_READ)
190 read_attrs[j++] = attrlist[i].quipu_name;
191 if (attrlist[i].flags & ATTR_FLAG_SEARCH)
192 search_attrs[k++] = attrlist[i].quipu_name;
194 read_attrs[j] = NULL;
195 search_attrs[k] = NULL;
199 * If the user-supplied name has any commas in it, we
200 * assume that it is a UFN, and do everything right
201 * here. If we don't find it, treat it as NOT a UFN.
203 if (strchr(who, ',') != NULL) {
204 int savederef, deref;
207 printf("\"%s\" appears to be a UFN\n", who);
209 ldap_get_option(ld, LDAP_OPT_DEREF, &savederef);
210 deref = LDAP_DEREF_FINDING;
211 ldap_set_option(ld, LDAP_OPT_DEREF, &deref);
213 if ((rc = ldap_ufn_search_s(ld, who, search_attrs, FALSE, &res)) !=
214 LDAP_SUCCESS && rc != LDAP_SIZELIMIT_EXCEEDED &&
215 rc != LDAP_TIMELIMIT_EXCEEDED) {
216 ldap_perror(ld, "ldap_ufn_search_s");
217 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
220 if ((matches = ldap_count_entries(ld, res)) < 0) {
221 ldap_perror(ld, "ldap_count_entries");
222 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
224 } else if (matches == 1) {
225 dn = ldap_get_dn(ld, ldap_first_entry(ld, res));
226 rc = ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &res);
228 if (rc != LDAP_SUCCESS) {
230 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
231 if (ld_errno == LDAP_UNAVAILABLE)
232 printf(" Could not contact the LDAP server to find \"%s\".\n", who);
234 ldap_perror(ld, "ldap_search_s");
237 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
239 } else if (matches > 1 ) {
240 return disambiguate( res, matches, read_attrs, who );
242 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
246 * Old users of the MTS *USERDIRECTORY will likely wrap the name
247 * in quotes. Not only is this unnecessary, but it also won't work.
249 for (cp = strchr(who, '"'); cp != NULL; cp = strchr(cp, '"')) {
251 printf(" You do not need to enclose names in quotes.\n");
260 * It wasn't a UFN, so look it up in the usual method.
262 for (fi = ldap_getfirstfilter(lfdp, "ud", who); fi != NULL;
263 fi = ldap_getnextfilter(lfdp)) {
266 printf("Searching, filter = %s\n", fi->lfi_filter);
269 if ((rc = ldap_search_s(ld, search_base, fi->lfi_scope,
270 fi->lfi_filter, search_attrs, FALSE, &res)) != LDAP_SUCCESS &&
271 rc != LDAP_SIZELIMIT_EXCEEDED && rc != LDAP_TIMELIMIT_EXCEEDED) {
272 ldap_perror(ld, "ldap_search_s");
276 if ((matches = ldap_count_entries(ld, res)) < 0) {
277 ldap_perror(ld, "ldap_count_entries");
281 else if (matches == 1) {
282 dn = ldap_get_dn(ld, ldap_first_entry(ld, res));
285 printf(" Found one %s match for \"%s\"\n",
287 if (!fi->lfi_isexact) {
288 rdns = ldap_explode_dn(dn, TRUE);
289 printf(" Do you mean %s? ", *rdns);
290 (void) ldap_value_free(rdns);
292 fetch_buffer(response, sizeof(response), stdin);
293 if ((response[0] == 'n') || (response[0] == 'N'))
300 if (debug & D_FIND) {
301 printf(" Calling ldap_search_s()\n");
302 printf(" ld = 0x%x\n", ld);
303 printf(" dn = %s\n", dn);
304 printf(" scope = LDAP_SCOPE_BASE\n");
305 printf(" filter = %s\n", "objectClass=*");
306 for (i = 0; read_attrs[i] != NULL; i++)
307 printf(" read_attrs[%d] = %s\n", i, read_attrs[i]);
308 printf(" read_attrs[%d] = NULL\n", i);
309 printf(" attrsonly = FALSE\n");
310 printf(" &results = 0x%x\n", &res);
313 if (ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &res) != LDAP_SUCCESS) {
314 ldap_perror(ld, "ldap_search_s");
321 else if (matches > 0) {
322 ldtmp = disambiguate(res, matches, read_attrs, who);
326 /* if we're here, there were zero matches */
336 char user_pick[SMALL_BUF_SIZE];
340 printf("->pick_one(%d)\n", i);
343 /* make the user pick an entry */
345 printf(" Enter the number of the name you want or Q to quit: ");
347 fetch_buffer(user_pick, sizeof(user_pick), stdin);
348 if (user_pick[0] == 'q' || user_pick[0] == 'Q')
351 if ((n > 0) && (n <= i))
353 printf(" Invalid response\n");
359 print_list( LDAPMessage *list, char **names, int *matches )
362 char resp[SMALL_BUF_SIZE];
363 register LDAPMessage *ep;
365 register int rest = 4; /* 4, not 1 */
369 printf("->print_list(%x, %x, %x)\n", list, names, matches);
371 /* print a list of names from which the user will select */
372 for (ep = ldap_first_entry(ld, list); ep != NULL; ep = ldap_next_entry(ld, ep)) {
374 names[i] = ldap_get_dn(ld, ep);
375 rdns = ldap_explode_dn(names[i], TRUE);
376 cpp = ldap_get_values(ld, ep, "title");
378 printf(" %3d. %s\n", i, *rdns);
380 printf(" %3d. %s, %s\n", i, *rdns, *cpp);
381 ldap_value_free(rdns);
382 ldap_value_free(cpp);
384 if ((rest++ > (lpp - 1)) && (i < *matches)) {
388 fetch_buffer(resp, sizeof(resp), stdin);
389 if ((resp[0] == 'n') || (resp[0] == 'N'))
391 else if ((num_picked = atoi(resp)) != 0) {
406 find_all_subscribers( char **sub, char *group )
410 static char *attributes[] = { "cn", NULL };
411 char filter[MED_BUF_SIZE];
412 register LDAPMessage *ep;
417 printf("->find_all_subscribers(%x, %s)\n", sub, group);
420 sprintf(filter, "%s=%s", "memberOfGroup", group);
421 if (ldap_search_s(ld, search_base, LDAP_SCOPE_SUBTREE, filter, attributes, FALSE, &result) != LDAP_SUCCESS) {
423 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
424 if (ld_errno == LDAP_NO_SUCH_ATTRIBUTE)
426 ldap_perror(ld, "ldap_search_s");
429 count = ldap_count_entries(ld, result);
431 ldap_msgfree(result);
434 if ( count > MAX_VALUES ) {
435 printf( " Only retrieving the first %d subscribers....\n",
439 for (ep = ldap_first_entry(ld, result); i < MAX_VALUES && ep != NULL; ep = ldap_next_entry(ld, ep)) {
440 sub[i++] = ldap_get_dn(ld, ep);
443 printf("sub[%d] = %s\n", i - 1, sub[i - 1]);
447 ldap_msgfree(result);
452 fetch_boolean_value( char *who, struct attribute attr )
454 LDAPMessage *result; /* from the search below */
455 register LDAPMessage *ep; /* entry pointer */
456 register char **vp; /* for parsing the result */
457 static char *attributes[] = { NULL, NULL };
461 printf("->fetch_boolean_value(%s, %s)\n", who, attr.quipu_name);
463 attributes[0] = attr.quipu_name;
464 if (ldap_search_s(ld, who, LDAP_SCOPE_BASE, "objectClass=*", attributes, FALSE, &result) != LDAP_SUCCESS) {
466 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
467 if (ld_errno == LDAP_NO_SUCH_ATTRIBUTE)
469 ldap_perror(ld, "ldap_search_s");
470 ldap_msgfree(result);
475 * We did a read on one name and only asked for one attribute.
476 * There's no reason to loop through any of these structures.
478 * If ldap_first_attribute() returns NULL, then this entry did
479 * not have this particular attribute.
481 ep = ldap_first_entry(ld, result);
482 if ((vp = (char **) ldap_get_values(ld, ep, attr.quipu_name)) == NULL) {
483 ldap_msgfree(result);
487 ldap_msgfree(result);
488 if (!strcasecmp(*vp, "TRUE")) {
492 else if (!strcasecmp(*vp, "FALSE")) {
497 fprintf(stderr, " Got garbage -> [%s]\n", *vp);