2 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
4 * Copyright 1998-2017 The OpenLDAP Foundation.
7 * Redistribution and use in source and binary forms, with or without
8 * modification, are permitted only as authorized by the OpenLDAP
11 * A copy of this license is available in the file LICENSE in the
12 * top-level directory of the distribution or, alternatively, at
13 * <http://www.OpenLDAP.org/license.html>.
19 #include <ac/stdlib.h>
21 #include <ac/socket.h>
22 #include <ac/string.h>
29 ldap_build_extended_req(
31 LDAP_CONST char *reqoid,
32 struct berval *reqdata,
40 /* create a message to send */
41 if ( (ber = ldap_alloc_ber_with_options( ld )) == NULL ) {
45 LDAP_NEXT_MSGID( ld, *msgidp );
46 if ( reqdata != NULL ) {
47 rc = ber_printf( ber, "{it{tstON}", /* '}' */
48 *msgidp, LDAP_REQ_EXTENDED,
49 LDAP_TAG_EXOP_REQ_OID, reqoid,
50 LDAP_TAG_EXOP_REQ_VALUE, reqdata );
53 rc = ber_printf( ber, "{it{tsN}", /* '}' */
54 *msgidp, LDAP_REQ_EXTENDED,
55 LDAP_TAG_EXOP_REQ_OID, reqoid );
59 ld->ld_errno = LDAP_ENCODING_ERROR;
64 /* Put Server Controls */
65 if( ldap_int_put_controls( ld, sctrls, ber ) != LDAP_SUCCESS ) {
70 if ( ber_printf( ber, /*{*/ "N}" ) == -1 ) {
71 ld->ld_errno = LDAP_ENCODING_ERROR;
80 * LDAPv3 Extended Operation Request
81 * ExtendedRequest ::= [APPLICATION 23] SEQUENCE {
82 * requestName [0] LDAPOID,
83 * requestValue [1] OCTET STRING OPTIONAL
86 * LDAPv3 Extended Operation Response
87 * ExtendedResponse ::= [APPLICATION 24] SEQUENCE {
88 * COMPONENTS OF LDAPResult,
89 * responseName [10] LDAPOID OPTIONAL,
90 * response [11] OCTET STRING OPTIONAL
97 ldap_extended_operation(
99 LDAP_CONST char *reqoid,
100 struct berval *reqdata,
101 LDAPControl **sctrls,
102 LDAPControl **cctrls,
109 Debug( LDAP_DEBUG_TRACE, "ldap_extended_operation\n", 0, 0, 0 );
111 assert( ld != NULL );
112 assert( LDAP_VALID( ld ) );
113 assert( reqoid != NULL && *reqoid != '\0' );
114 assert( msgidp != NULL );
116 /* must be version 3 (or greater) */
117 if ( ld->ld_version < LDAP_VERSION3 ) {
118 ld->ld_errno = LDAP_NOT_SUPPORTED;
119 return( ld->ld_errno );
122 ber = ldap_build_extended_req( ld, reqoid, reqdata,
123 sctrls, cctrls, &id );
125 return( ld->ld_errno );
127 /* send the message */
128 *msgidp = ldap_send_initial_request( ld, LDAP_REQ_EXTENDED, NULL, ber, id );
130 return( *msgidp < 0 ? ld->ld_errno : LDAP_SUCCESS );
134 ldap_extended_operation_s(
136 LDAP_CONST char *reqoid,
137 struct berval *reqdata,
138 LDAPControl **sctrls,
139 LDAPControl **cctrls,
141 struct berval **retdatap )
147 Debug( LDAP_DEBUG_TRACE, "ldap_extended_operation_s\n", 0, 0, 0 );
149 assert( ld != NULL );
150 assert( LDAP_VALID( ld ) );
151 assert( reqoid != NULL && *reqoid != '\0' );
153 rc = ldap_extended_operation( ld, reqoid, reqdata,
154 sctrls, cctrls, &msgid );
156 if ( rc != LDAP_SUCCESS ) {
160 if ( ldap_result( ld, msgid, LDAP_MSG_ALL, (struct timeval *) NULL, &res ) == -1 || !res ) {
161 return( ld->ld_errno );
164 if ( retoidp != NULL ) *retoidp = NULL;
165 if ( retdatap != NULL ) *retdatap = NULL;
167 rc = ldap_parse_extended_result( ld, res, retoidp, retdatap, 0 );
169 if( rc != LDAP_SUCCESS ) {
174 return( ldap_result2error( ld, res, 1 ) );
177 /* Parse an extended result */
179 ldap_parse_extended_result (
183 struct berval **retdatap,
190 struct berval *resdata;
194 assert( ld != NULL );
195 assert( LDAP_VALID( ld ) );
196 assert( res != NULL );
198 Debug( LDAP_DEBUG_TRACE, "ldap_parse_extended_result\n", 0, 0, 0 );
200 if( ld->ld_version < LDAP_VERSION3 ) {
201 ld->ld_errno = LDAP_NOT_SUPPORTED;
205 if( res->lm_msgtype != LDAP_RES_EXTENDED ) {
206 ld->ld_errno = LDAP_PARAM_ERROR;
210 if( retoidp != NULL ) *retoidp = NULL;
211 if( retdatap != NULL ) *retdatap = NULL;
213 if ( ld->ld_error ) {
214 LDAP_FREE( ld->ld_error );
218 if ( ld->ld_matched ) {
219 LDAP_FREE( ld->ld_matched );
220 ld->ld_matched = NULL;
223 ber = ber_dup( res->lm_ber );
226 ld->ld_errno = LDAP_NO_MEMORY;
230 rc = ber_scanf( ber, "{eAA" /*}*/, &errcode,
231 &ld->ld_matched, &ld->ld_error );
233 if( rc == LBER_ERROR ) {
234 ld->ld_errno = LDAP_DECODING_ERROR;
242 tag = ber_peek_tag( ber, &len );
244 if( tag == LDAP_TAG_REFERRAL ) {
245 /* skip over referral */
246 if( ber_scanf( ber, "x" ) == LBER_ERROR ) {
247 ld->ld_errno = LDAP_DECODING_ERROR;
252 tag = ber_peek_tag( ber, &len );
255 if( tag == LDAP_TAG_EXOP_RES_OID ) {
256 /* we have a resoid */
257 if( ber_scanf( ber, "a", &resoid ) == LBER_ERROR ) {
258 ld->ld_errno = LDAP_DECODING_ERROR;
263 assert( resoid[ 0 ] != '\0' );
265 tag = ber_peek_tag( ber, &len );
268 if( tag == LDAP_TAG_EXOP_RES_VALUE ) {
269 /* we have a resdata */
270 if( ber_scanf( ber, "O", &resdata ) == LBER_ERROR ) {
271 ld->ld_errno = LDAP_DECODING_ERROR;
273 if( resoid != NULL ) LDAP_FREE( resoid );
280 if( retoidp != NULL ) {
286 if( retdatap != NULL ) {
289 ber_bvfree( resdata );
292 ld->ld_errno = errcode;
302 /* Parse an extended partial */
304 ldap_parse_intermediate (
308 struct berval **retdatap,
309 LDAPControl ***serverctrls,
315 struct berval *resdata;
318 assert( ld != NULL );
319 assert( LDAP_VALID( ld ) );
320 assert( res != NULL );
322 Debug( LDAP_DEBUG_TRACE, "ldap_parse_intermediate\n", 0, 0, 0 );
324 if( ld->ld_version < LDAP_VERSION3 ) {
325 ld->ld_errno = LDAP_NOT_SUPPORTED;
329 if( res->lm_msgtype != LDAP_RES_INTERMEDIATE ) {
330 ld->ld_errno = LDAP_PARAM_ERROR;
334 if( retoidp != NULL ) *retoidp = NULL;
335 if( retdatap != NULL ) *retdatap = NULL;
336 if( serverctrls != NULL ) *serverctrls = NULL;
338 ber = ber_dup( res->lm_ber );
341 ld->ld_errno = LDAP_NO_MEMORY;
345 tag = ber_scanf( ber, "{" /*}*/ );
347 if( tag == LBER_ERROR ) {
348 ld->ld_errno = LDAP_DECODING_ERROR;
356 tag = ber_peek_tag( ber, &len );
359 * NOTE: accept intermediate and extended response tag values
360 * as older versions of slapd(8) incorrectly used extended
362 * Should be removed when 2.2 is moved to Historic.
364 if( tag == LDAP_TAG_IM_RES_OID || tag == LDAP_TAG_EXOP_RES_OID ) {
365 /* we have a resoid */
366 if( ber_scanf( ber, "a", &resoid ) == LBER_ERROR ) {
367 ld->ld_errno = LDAP_DECODING_ERROR;
372 assert( resoid[ 0 ] != '\0' );
374 tag = ber_peek_tag( ber, &len );
377 if( tag == LDAP_TAG_IM_RES_VALUE || tag == LDAP_TAG_EXOP_RES_VALUE ) {
378 /* we have a resdata */
379 if( ber_scanf( ber, "O", &resdata ) == LBER_ERROR ) {
380 ld->ld_errno = LDAP_DECODING_ERROR;
382 if( resoid != NULL ) LDAP_FREE( resoid );
387 if ( serverctrls == NULL ) {
388 ld->ld_errno = LDAP_SUCCESS;
389 goto free_and_return;
392 if ( ber_scanf( ber, /*{*/ "}" ) == LBER_ERROR ) {
393 ld->ld_errno = LDAP_DECODING_ERROR;
394 goto free_and_return;
397 ld->ld_errno = ldap_pvt_get_controls( ber, serverctrls );
402 if( retoidp != NULL ) {
408 if( retdatap != NULL ) {
411 ber_bvfree( resdata );