3 * Copyright 1998-2002 The OpenLDAP Foundation, All Rights Reserved.
4 * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
7 * Copyright (c) 1995 Regents of the University of Michigan.
18 #include <ac/stdlib.h>
21 #include <ac/socket.h>
22 #include <ac/string.h>
25 #include <ac/unistd.h>
30 int ldap_open_defconn( LDAP *ld )
32 ld->ld_defconn = ldap_new_connection( ld,
33 ld->ld_options.ldo_defludp, 1, 1, NULL );
35 if( ld->ld_defconn == NULL ) {
36 ld->ld_errno = LDAP_SERVER_DOWN;
40 ++ld->ld_defconn->lconn_refcnt; /* so it never gets closed/freed */
45 * ldap_open - initialize and connect to an ldap server. A magic cookie to
46 * be used for future communication is returned on success, NULL on failure.
47 * "host" may be a space-separated list of hosts or IP addresses
51 * ld = ldap_open( hostname, port );
55 ldap_open( LDAP_CONST char *host, int port )
61 LDAP_LOG ( CONNECTION, ARGS, "ldap_open(%s, %d)\n", host, port, 0 );
63 Debug( LDAP_DEBUG_TRACE, "ldap_open(%s, %d)\n",
67 ld = ldap_init( host, port );
72 rc = ldap_open_defconn( ld );
75 ldap_ld_free( ld, 0, NULL, NULL );
80 LDAP_LOG ( CONNECTION, RESULTS, "ldap_open: %s\n",
81 ld == NULL ? "succeeded" : "failed", 0, 0 );
83 Debug( LDAP_DEBUG_TRACE, "ldap_open: %s\n",
84 ld == NULL ? "succeeded" : "failed", 0, 0 );
93 ldap_create( LDAP **ldp )
96 struct ldapoptions *gopts;
99 /* Get pointer to global option structure */
100 if ( (gopts = LDAP_INT_GLOBAL_OPT()) == NULL) {
101 return LDAP_NO_MEMORY;
104 /* Initialize the global options, if not already done. */
105 if( gopts->ldo_valid != LDAP_INITIALIZED ) {
106 ldap_int_initialize(gopts, NULL);
107 if ( gopts->ldo_valid != LDAP_INITIALIZED )
108 return LDAP_LOCAL_ERROR;
112 LDAP_LOG ( CONNECTION, ENTRY, "ldap_create\n", 0, 0, 0 );
114 Debug( LDAP_DEBUG_TRACE, "ldap_create\n", 0, 0, 0 );
117 if ( (ld = (LDAP *) LDAP_CALLOC( 1, sizeof(LDAP) )) == NULL ) {
118 return( LDAP_NO_MEMORY );
121 /* copy the global options */
122 AC_MEMCPY(&ld->ld_options, gopts, sizeof(ld->ld_options));
124 ld->ld_valid = LDAP_VALID_SESSION;
126 /* but not pointers to malloc'ed items */
127 ld->ld_options.ldo_sctrls = NULL;
128 ld->ld_options.ldo_cctrls = NULL;
130 #ifdef HAVE_CYRUS_SASL
131 ld->ld_options.ldo_def_sasl_mech = gopts->ldo_def_sasl_mech
132 ? LDAP_STRDUP( gopts->ldo_def_sasl_mech ) : NULL;
133 ld->ld_options.ldo_def_sasl_realm = gopts->ldo_def_sasl_realm
134 ? LDAP_STRDUP( gopts->ldo_def_sasl_realm ) : NULL;
135 ld->ld_options.ldo_def_sasl_authcid = gopts->ldo_def_sasl_authcid
136 ? LDAP_STRDUP( gopts->ldo_def_sasl_authcid ) : NULL;
137 ld->ld_options.ldo_def_sasl_authzid = gopts->ldo_def_sasl_authzid
138 ? LDAP_STRDUP( gopts->ldo_def_sasl_authzid ) : NULL;
141 ld->ld_options.ldo_defludp = ldap_url_duplist(gopts->ldo_defludp);
143 if ( ld->ld_options.ldo_defludp == NULL ) {
144 LDAP_FREE( (char*)ld );
145 return LDAP_NO_MEMORY;
148 if (( ld->ld_selectinfo = ldap_new_select_info()) == NULL ) {
149 ldap_free_urllist( ld->ld_options.ldo_defludp );
150 LDAP_FREE( (char*) ld );
151 return LDAP_NO_MEMORY;
154 ld->ld_lberoptions = LBER_USE_DER;
156 ld->ld_sb = ber_sockbuf_alloc( );
157 if ( ld->ld_sb == NULL ) {
158 ldap_free_urllist( ld->ld_options.ldo_defludp );
159 LDAP_FREE( (char*) ld );
160 return LDAP_NO_MEMORY;
168 * ldap_init - initialize the LDAP library. A magic cookie to be used for
169 * future communication is returned on success, NULL on failure.
170 * "host" may be a space-separated list of hosts or IP addresses
174 * ld = ldap_init( host, port );
177 ldap_init( LDAP_CONST char *defhost, int defport )
182 rc = ldap_create(&ld);
183 if ( rc != LDAP_SUCCESS )
187 ld->ld_options.ldo_defport = defport;
189 if (defhost != NULL) {
190 rc = ldap_set_option(ld, LDAP_OPT_HOST_NAME, defhost);
191 if ( rc != LDAP_SUCCESS ) {
192 ldap_ld_free(ld, 1, NULL, NULL);
202 ldap_initialize( LDAP **ldp, LDAP_CONST char *url )
208 rc = ldap_create(&ld);
209 if ( rc != LDAP_SUCCESS )
213 rc = ldap_set_option(ld, LDAP_OPT_URI, url);
214 if ( rc != LDAP_SUCCESS ) {
215 ldap_ld_free(ld, 1, NULL, NULL);
218 #ifdef LDAP_CONNECTIONLESS
219 if (ldap_is_ldapc_url(url))
229 ldap_int_open_connection(
236 #ifdef HAVE_CYRUS_SASL
237 char *sasl_host = NULL;
245 LDAP_LOG ( CONNECTION, ENTRY, "ldap_int_open_connection\n", 0, 0, 0 );
247 Debug( LDAP_DEBUG_TRACE, "ldap_int_open_connection\n", 0, 0, 0 );
250 switch ( proto = ldap_pvt_url_scheme2proto( srv->lud_scheme ) ) {
252 port = srv->lud_port;
255 if ( srv->lud_host == NULL || *srv->lud_host == 0 ) {
257 addr = htonl( INADDR_LOOPBACK );
259 host = srv->lud_host;
263 if( strcmp(srv->lud_scheme, "ldaps") == 0 ) {
270 rc = ldap_connect_to_host( ld, conn->lconn_sb,
271 proto, host, addr, port, async );
273 if ( rc == -1 ) return rc;
276 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
277 LBER_SBIOD_LEVEL_PROVIDER, (void *)"tcp_" );
279 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_tcp,
280 LBER_SBIOD_LEVEL_PROVIDER, NULL );
282 #ifdef HAVE_CYRUS_SASL
283 sasl_host = ldap_host_connected_to( conn->lconn_sb );
286 #ifdef LDAP_CONNECTIONLESS
289 port = srv->lud_port;
292 if ( srv->lud_host == NULL || *srv->lud_host == 0 ) {
294 addr = htonl( INADDR_LOOPBACK );
296 host = srv->lud_host;
299 if( !port ) port = LDAP_PORT;
302 rc = ldap_connect_to_host( ld, conn->lconn_sb,
303 proto, host, addr, port, async );
305 if ( rc == -1 ) return rc;
307 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
308 LBER_SBIOD_LEVEL_PROVIDER, (void *)"udp_" );
310 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_udp,
311 LBER_SBIOD_LEVEL_PROVIDER, NULL );
316 /* only IPC mechanism supported is PF_LOCAL (PF_UNIX) */
317 rc = ldap_connect_to_path( ld, conn->lconn_sb,
318 srv->lud_host, async );
319 if ( rc == -1 ) return rc;
321 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
322 LBER_SBIOD_LEVEL_PROVIDER, (void *)"ipc_" );
324 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_fd,
325 LBER_SBIOD_LEVEL_PROVIDER, NULL );
327 #ifdef HAVE_CYRUS_SASL
328 sasl_host = ldap_host_connected_to( conn->lconn_sb );
329 sasl_ssf = LDAP_PVT_SASL_LOCAL_SSF;
332 #endif /* LDAP_PF_LOCAL */
338 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_readahead,
339 LBER_SBIOD_LEVEL_PROVIDER, NULL );
342 ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
343 INT_MAX, (void *)"ldap_" );
346 #ifdef LDAP_CONNECTIONLESS
347 if( proto == LDAP_PROTO_UDP )
351 #ifdef HAVE_CYRUS_SASL
352 /* establish Cyrus SASL context prior to starting TLS so
353 that SASL EXTERNAL might be used */
354 if( sasl_host != NULL ) {
355 ldap_int_sasl_open( ld, conn, sasl_host, sasl_ssf );
356 LDAP_FREE( sasl_host );
358 /* sasl_ssf is set redundantly. Should probably remove it from
359 * the ldap_int_sasl_open call since the TLS ssf isn't known
362 if( proto == LDAP_PROTO_IPC ) {
363 char authid[sizeof("uidNumber=XXXXXX,gidNumber=XXXXXX,"
364 "cn=peercred,cn=external,cn=auth")];
365 sprintf( authid, "uidNumber=%d,gidNumber=%d,"
366 "cn=peercred,cn=external,cn=auth",
367 geteuid(), getegid() );
368 ldap_int_sasl_external( ld, conn, authid, sasl_ssf );
373 if (ld->ld_options.ldo_tls_mode == LDAP_OPT_X_TLS_HARD ||
374 strcmp( srv->lud_scheme, "ldaps" ) == 0 )
376 ++conn->lconn_refcnt; /* avoid premature free */
378 rc = ldap_int_tls_start( ld, conn, srv );
380 --conn->lconn_refcnt;
382 if (rc != LDAP_SUCCESS) {
388 #ifdef LDAP_API_FEATURE_X_OPENLDAP_V2_KBIND
389 if ( conn->lconn_krbinstance == NULL ) {
391 conn->lconn_krbinstance = ldap_host_connected_to( conn->lconn_sb );
393 if( conn->lconn_krbinstance != NULL &&
394 ( c = strchr( conn->lconn_krbinstance, '.' )) != NULL ) {
398 #endif /* LDAP_API_FEATURE_X_OPENLDAP_V2_KBIND */
404 int ldap_open_internal_connection( LDAP **ldp, ber_socket_t *fdp )
410 rc = ldap_create( ldp );
411 if( rc != LDAP_SUCCESS ) {
416 /* Make it appear that a search request, msgid 0, was sent */
417 lr = (LDAPRequest *)LDAP_CALLOC( 1, sizeof( LDAPRequest ));
421 return( LDAP_NO_MEMORY );
423 memset(lr, 0, sizeof( LDAPRequest ));
425 lr->lr_status = LDAP_REQST_INPROGRESS;
426 lr->lr_res_errno = LDAP_SUCCESS;
427 (*ldp)->ld_requests = lr;
429 /* Attach the passed socket as the *LDAP's connection */
430 c = ldap_new_connection( *ldp, NULL, 1, 0, NULL);
434 return( LDAP_NO_MEMORY );
436 ber_sockbuf_ctrl( c->lconn_sb, LBER_SB_OPT_SET_FD, fdp );
438 ber_sockbuf_add_io( c->lconn_sb, &ber_sockbuf_io_debug,
439 LBER_SBIOD_LEVEL_PROVIDER, (void *)"int_" );
441 ber_sockbuf_add_io( c->lconn_sb, &ber_sockbuf_io_tcp,
442 LBER_SBIOD_LEVEL_PROVIDER, NULL );
443 (*ldp)->ld_defconn = c;
445 /* Add the connection to the *LDAP's select pool */
446 ldap_mark_select_read( *ldp, c->lconn_sb );
447 ldap_mark_select_write( *ldp, c->lconn_sb );
449 /* Make this connection an LDAP V3 protocol connection */
451 ldap_set_option( *ldp, LDAP_OPT_PROTOCOL_VERSION, &rc );
453 return( LDAP_SUCCESS );