2 * Copyright (c) 1991, 1992, 1993
3 * Regents of the University of Michigan. All rights reserved.
5 * Redistribution and use in source and binary forms are permitted
6 * provided that this notice is preserved and that due credit is given
7 * to the University of Michigan at Ann Arbor. The name of the University
8 * may not be used to endorse or promote products derived from this
9 * software without specific prior written permission. This software
10 * is provided ``as is'' without express or implied warranty.
19 #include <ac/string.h>
27 static int num_picked = 0; /* used when user picks entry at More prompt */
34 static char *attrs[2] = { "objectClass", NULL };
39 printf("->vrfy(%s)\n", dn);
41 /* verify that this DN exists in the directory */
42 (void) ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", attrs, TRUE, &results);
43 (void) ldap_msgfree(results);
45 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
47 if ((ld_errno == LDAP_NO_SUCH_OBJECT) || (ld_errno == LDAP_INVALID_DN_SYNTAX))
49 else if (ld_errno == LDAP_SUCCESS)
52 ldap_perror(ld, "ldap_search");
59 disambiguate( LDAPMessage *result, int matches, char **read_attrs, char *who )
61 int choice; /* entry that user chooses */
63 char *namelist[MAX_NUM_NAMES]; /* names found */
64 char response[SMALL_BUF_SIZE]; /* results from user */
65 char *name = NULL; /* DN to lookup */
71 printf("->disambiguate(%x, %d, %x, %s)\n", result, matches,
75 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
78 * If we are here, it means that we got back multiple answers.
80 if ((ld_errno == LDAP_TIMELIMIT_EXCEEDED)
81 || (ld_errno == LDAP_SIZELIMIT_EXCEEDED)) {
83 printf(" Your query was too general and a limit was exceeded. The results listed\n");
84 printf(" are not complete. You may want to try again with a more refined query.\n\n");
87 printf(" Time or size limit exceeded. Partial results follow.\n\n");
89 printf(" %1d names matched \"%s\".\n", matches, who);
91 printf(" Do you wish to see a list of names? ");
93 (void) memset(response, 0, sizeof(response));
94 fetch_buffer(response, sizeof(response), stdin);
95 switch (response[0]) {
104 print_list(result, namelist, &matches);
106 choice = pick_one(matches);
111 name = strdup(namelist[choice]);
113 * Now free up all of the pointers allocated in
114 * namelist. The print_list() routine that filled
115 * in this collection of strings starts at 1, not 0.
117 for (i = 1; namelist[i] != NULL; i++)
125 if (debug & D_FIND) {
126 printf(" Calling ldap_search_s()\n");
127 printf(" ld = 0x%x\n", ld);
128 printf(" search base = %s\n", name);
129 printf(" scope = LDAP_SCOPE_BASE\n");
130 printf(" filter = objectClass=*\n");
131 for (i = 0; read_attrs[i] != NULL; i++)
132 printf(" read_attrs[%d] = %s\n", i, read_attrs[i]);
133 printf(" read_attrs[%d] = NULL\n", i);
134 printf(" attrsonly = FALSE\n");
135 printf(" &mp = 0x%x\n", &mp);
138 if (ldap_search_s(ld, name, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &mp) != LDAP_SUCCESS) {
139 ldap_perror(ld, "ldap_search_s");
148 printf(" Please enter 'y', 'n', or RETURN.\n");
155 find( char *who, int quiet )
157 register int i, j, k; /* general ints */
158 int matches; /* from ldap_count_entries() */
159 int admonished = FALSE;
160 static int attrs_set = 0;
161 static char *read_attrs[MAX_ATTRS]; /* attrs to use in a read op */
162 static char *search_attrs[MAX_ATTRS]; /* attrs to use in a srch op */
163 static int rc; /* return from ldap_search */
164 LDAPMessage *ldtmp, *res; /* results returned from search */
165 char name[MED_BUF_SIZE];
166 char response[SMALL_BUF_SIZE];
167 char *cp, *dn, **rdns;
172 fprintf(stderr, "->find(%s)\n", who);
174 /* did not specify a 'who' */
176 printf(" Locate whose entry? ");
178 fetch_buffer(name, sizeof(name), stdin);
184 if (attrs_set == 0) {
187 for (i = 0; attrlist[i].quipu_name != NULL; i++) {
188 if (attrlist[i].flags & ATTR_FLAG_READ)
189 read_attrs[j++] = attrlist[i].quipu_name;
190 if (attrlist[i].flags & ATTR_FLAG_SEARCH)
191 search_attrs[k++] = attrlist[i].quipu_name;
193 read_attrs[j] = NULL;
194 search_attrs[k] = NULL;
198 * If the user-supplied name has any commas in it, we
199 * assume that it is a UFN, and do everything right
200 * here. If we don't find it, treat it as NOT a UFN.
202 if (strchr(who, ',') != NULL) {
203 int savederef, deref;
206 printf("\"%s\" appears to be a UFN\n", who);
208 ldap_get_option(ld, LDAP_OPT_DEREF, &savederef);
209 deref = LDAP_DEREF_FINDING;
210 ldap_set_option(ld, LDAP_OPT_DEREF, &deref);
212 if ((rc = ldap_ufn_search_s(ld, who, search_attrs, FALSE, &res)) !=
213 LDAP_SUCCESS && rc != LDAP_SIZELIMIT_EXCEEDED &&
214 rc != LDAP_TIMELIMIT_EXCEEDED) {
215 ldap_perror(ld, "ldap_ufn_search_s");
216 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
219 if ((matches = ldap_count_entries(ld, res)) < 0) {
220 ldap_perror(ld, "ldap_count_entries");
221 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
223 } else if (matches == 1) {
224 dn = ldap_get_dn(ld, ldap_first_entry(ld, res));
225 rc = ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &res);
227 if (rc != LDAP_SUCCESS) {
229 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
230 if (ld_errno == LDAP_UNAVAILABLE)
231 printf(" Could not contact the LDAP server to find \"%s\".\n", who);
233 ldap_perror(ld, "ldap_search_s");
236 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
238 } else if (matches > 1 ) {
239 return disambiguate( res, matches, read_attrs, who );
241 ldap_set_option(ld, LDAP_OPT_DEREF, &savederef);
245 * Old users of the MTS *USERDIRECTORY will likely wrap the name
246 * in quotes. Not only is this unnecessary, but it also won't work.
248 for (cp = strchr(who, '"'); cp != NULL; cp = strchr(cp, '"')) {
250 printf(" You do not need to enclose names in quotes.\n");
259 * It wasn't a UFN, so look it up in the usual method.
261 for (fi = ldap_getfirstfilter(lfdp, "ud", who); fi != NULL;
262 fi = ldap_getnextfilter(lfdp)) {
265 printf("Searching, filter = %s\n", fi->lfi_filter);
268 if ((rc = ldap_search_s(ld, search_base, fi->lfi_scope,
269 fi->lfi_filter, search_attrs, FALSE, &res)) != LDAP_SUCCESS &&
270 rc != LDAP_SIZELIMIT_EXCEEDED && rc != LDAP_TIMELIMIT_EXCEEDED) {
271 ldap_perror(ld, "ldap_search_s");
275 if ((matches = ldap_count_entries(ld, res)) < 0) {
276 ldap_perror(ld, "ldap_count_entries");
280 else if (matches == 1) {
281 dn = ldap_get_dn(ld, ldap_first_entry(ld, res));
284 printf(" Found one %s match for \"%s\"\n",
286 if (!fi->lfi_isexact) {
287 rdns = ldap_explode_dn(dn, TRUE);
288 printf(" Do you mean %s? ", *rdns);
289 (void) ldap_value_free(rdns);
291 fetch_buffer(response, sizeof(response), stdin);
292 if ((response[0] == 'n') || (response[0] == 'N'))
299 if (debug & D_FIND) {
300 printf(" Calling ldap_search_s()\n");
301 printf(" ld = 0x%x\n", ld);
302 printf(" dn = %s\n", dn);
303 printf(" scope = LDAP_SCOPE_BASE\n");
304 printf(" filter = %s\n", "objectClass=*");
305 for (i = 0; read_attrs[i] != NULL; i++)
306 printf(" read_attrs[%d] = %s\n", i, read_attrs[i]);
307 printf(" read_attrs[%d] = NULL\n", i);
308 printf(" attrsonly = FALSE\n");
309 printf(" &results = 0x%x\n", &res);
312 if (ldap_search_s(ld, dn, LDAP_SCOPE_BASE, "objectClass=*", read_attrs, FALSE, &res) != LDAP_SUCCESS) {
313 ldap_perror(ld, "ldap_search_s");
320 else if (matches > 0) {
321 ldtmp = disambiguate(res, matches, read_attrs, who);
325 /* if we're here, there were zero matches */
335 char user_pick[SMALL_BUF_SIZE];
339 printf("->pick_one(%d)\n", i);
342 /* make the user pick an entry */
344 printf(" Enter the number of the name you want or Q to quit: ");
346 fetch_buffer(user_pick, sizeof(user_pick), stdin);
347 if (user_pick[0] == 'q' || user_pick[0] == 'Q')
350 if ((n > 0) && (n <= i))
352 printf(" Invalid response\n");
358 print_list( LDAPMessage *list, char **names, int *matches )
361 char resp[SMALL_BUF_SIZE];
362 register LDAPMessage *ep;
364 register int rest = 4; /* 4, not 1 */
368 printf("->print_list(%x, %x, %x)\n", list, names, matches);
370 /* print a list of names from which the user will select */
371 for (ep = ldap_first_entry(ld, list); ep != NULL; ep = ldap_next_entry(ld, ep)) {
373 names[i] = ldap_get_dn(ld, ep);
374 rdns = ldap_explode_dn(names[i], TRUE);
375 cpp = ldap_get_values(ld, ep, "title");
377 printf(" %3d. %s\n", i, *rdns);
379 printf(" %3d. %s, %s\n", i, *rdns, *cpp);
380 ldap_value_free(rdns);
381 ldap_value_free(cpp);
383 if ((rest++ > (lpp - 1)) && (i < *matches)) {
387 fetch_buffer(resp, sizeof(resp), stdin);
388 if ((resp[0] == 'n') || (resp[0] == 'N'))
390 else if ((num_picked = atoi(resp)) != 0) {
405 find_all_subscribers( char **sub, char *group )
409 static char *attributes[] = { "cn", NULL };
410 char filter[MED_BUF_SIZE];
411 register LDAPMessage *ep;
416 printf("->find_all_subscribers(%x, %s)\n", sub, group);
419 sprintf(filter, "%s=%s", "memberOfGroup", group);
420 if (ldap_search_s(ld, search_base, LDAP_SCOPE_SUBTREE, filter, attributes, FALSE, &result) != LDAP_SUCCESS) {
422 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
423 if (ld_errno == LDAP_NO_SUCH_ATTRIBUTE)
425 ldap_perror(ld, "ldap_search_s");
428 count = ldap_count_entries(ld, result);
430 ldap_msgfree(result);
433 if ( count > MAX_VALUES ) {
434 printf( " Only retrieving the first %d subscribers....\n",
438 for (ep = ldap_first_entry(ld, result); i < MAX_VALUES && ep != NULL; ep = ldap_next_entry(ld, ep)) {
439 sub[i++] = ldap_get_dn(ld, ep);
442 printf("sub[%d] = %s\n", i - 1, sub[i - 1]);
446 ldap_msgfree(result);
451 fetch_boolean_value( char *who, struct attribute attr )
453 LDAPMessage *result; /* from the search below */
454 register LDAPMessage *ep; /* entry pointer */
455 register char **vp; /* for parsing the result */
456 static char *attributes[] = { NULL, NULL };
460 printf("->fetch_boolean_value(%s, %s)\n", who, attr.quipu_name);
462 attributes[0] = attr.quipu_name;
463 if (ldap_search_s(ld, who, LDAP_SCOPE_BASE, "objectClass=*", attributes, FALSE, &result) != LDAP_SUCCESS) {
465 ldap_get_option(ld, LDAP_OPT_ERROR_NUMBER, &ld_errno);
466 if (ld_errno == LDAP_NO_SUCH_ATTRIBUTE)
468 ldap_perror(ld, "ldap_search_s");
469 ldap_msgfree(result);
474 * We did a read on one name and only asked for one attribute.
475 * There's no reason to loop through any of these structures.
477 * If ldap_first_attribute() returns NULL, then this entry did
478 * not have this particular attribute.
480 ep = ldap_first_entry(ld, result);
481 if ((vp = (char **) ldap_get_values(ld, ep, attr.quipu_name)) == NULL) {
482 ldap_msgfree(result);
486 ldap_msgfree(result);
487 if (!strcasecmp(*vp, "TRUE")) {
491 else if (!strcasecmp(*vp, "FALSE")) {
496 fprintf(stderr, " Got garbage -> [%s]\n", *vp);