]> git.sur5r.net Git - openldap/blob - servers/slapd/back-bdb/delete.c
use slab memory for proxyauthz
[openldap] / servers / slapd / back-bdb / delete.c
1 /* delete.c - bdb backend delete routine */
2 /* $OpenLDAP$ */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
4  *
5  * Copyright 2000-2006 The OpenLDAP Foundation.
6  * All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted only as authorized by the OpenLDAP
10  * Public License.
11  *
12  * A copy of this license is available in the file LICENSE in the
13  * top-level directory of the distribution or, alternatively, at
14  * <http://www.OpenLDAP.org/license.html>.
15  */
16
17 #include "portable.h"
18
19 #include <stdio.h>
20 #include <ac/string.h>
21
22 #include "lutil.h"
23 #include "back-bdb.h"
24
25 int
26 bdb_delete( Operation *op, SlapReply *rs )
27 {
28         struct bdb_info *bdb = (struct bdb_info *) op->o_bd->be_private;
29         Entry   *matched = NULL;
30         struct berval   pdn = {0, NULL};
31         Entry   *e = NULL;
32         Entry   *p = NULL;
33         EntryInfo       *ei = NULL, *eip = NULL;
34         int             manageDSAit = get_manageDSAit( op );
35         AttributeDescription *children = slap_schema.si_ad_children;
36         AttributeDescription *entry = slap_schema.si_ad_entry;
37         DB_TXN          *ltid = NULL, *lt2;
38         struct bdb_op_info opinfo = {0};
39         ID      eid;
40
41         u_int32_t       locker = 0;
42         DB_LOCK         lock, plock;
43
44         int             num_retries = 0;
45
46         int     rc;
47
48         LDAPControl **preread_ctrl = NULL;
49         LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
50         int num_ctrls = 0;
51
52         int     parent_is_glue = 0;
53         int parent_is_leaf = 0;
54
55         ctrls[num_ctrls] = 0;
56
57         Debug( LDAP_DEBUG_ARGS, "==> " LDAP_XSTRING(bdb_delete) ": %s\n",
58                 op->o_req_dn.bv_val, 0, 0 );
59
60         /* allocate CSN */
61         if ( !SLAP_SHADOW( op->o_bd )) {
62                 struct berval csn;
63                 char csnbuf[LDAP_LUTIL_CSNSTR_BUFSIZE];
64
65                 csn.bv_val = csnbuf;
66                 csn.bv_len = sizeof(csnbuf);
67                 slap_get_csn( op, &csn, 1 );
68         }
69
70         if( 0 ) {
71 retry:  /* transaction retry */
72                 if( e != NULL ) {
73                         bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
74                         e = NULL;
75                 }
76                 if( p != NULL ) {
77                         bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
78                         p = NULL;
79                 }
80                 Debug( LDAP_DEBUG_TRACE,
81                         "==> " LDAP_XSTRING(bdb_delete) ": retrying...\n",
82                         0, 0, 0 );
83                 rs->sr_err = TXN_ABORT( ltid );
84                 ltid = NULL;
85                 op->o_private = NULL;
86                 op->o_do_not_cache = opinfo.boi_acl_cache;
87                 if( rs->sr_err != 0 ) {
88                         rs->sr_err = LDAP_OTHER;
89                         rs->sr_text = "internal error";
90                         goto return_results;
91                 }
92                 if ( op->o_abandon ) {
93                         rs->sr_err = SLAPD_ABANDON;
94                         goto return_results;
95                 }
96                 parent_is_glue = 0;
97                 parent_is_leaf = 0;
98                 ldap_pvt_thread_yield();
99                 bdb_trans_backoff( ++num_retries );
100         }
101
102         /* begin transaction */
103         rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, NULL, &ltid, 
104                 bdb->bi_db_opflags );
105         rs->sr_text = NULL;
106         if( rs->sr_err != 0 ) {
107                 Debug( LDAP_DEBUG_TRACE,
108                         LDAP_XSTRING(bdb_delete) ": txn_begin failed: "
109                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
110                 rs->sr_err = LDAP_OTHER;
111                 rs->sr_text = "internal error";
112                 goto return_results;
113         }
114
115         locker = TXN_ID ( ltid );
116
117         opinfo.boi_bdb = op->o_bd;
118         opinfo.boi_txn = ltid;
119         opinfo.boi_locker = locker;
120         opinfo.boi_err = 0;
121         opinfo.boi_acl_cache = op->o_do_not_cache;
122         op->o_private = &opinfo;
123
124         if ( !be_issuffix( op->o_bd, &op->o_req_ndn ) ) {
125                 dnParent( &op->o_req_ndn, &pdn );
126         }
127
128         /* get entry */
129         rs->sr_err = bdb_dn2entry( op, ltid, &op->o_req_ndn, &ei, 1,
130                 locker, &lock );
131
132         switch( rs->sr_err ) {
133         case 0:
134         case DB_NOTFOUND:
135                 break;
136         case DB_LOCK_DEADLOCK:
137         case DB_LOCK_NOTGRANTED:
138                 goto retry;
139         case LDAP_BUSY:
140                 rs->sr_text = "ldap server busy";
141                 goto return_results;
142         default:
143                 rs->sr_err = LDAP_OTHER;
144                 rs->sr_text = "internal error";
145                 goto return_results;
146         }
147
148         if ( rs->sr_err == 0 ) {
149                 e = ei->bei_e;
150                 eip = ei->bei_parent;
151         } else {
152                 matched = ei->bei_e;
153         }
154
155         /* FIXME : dn2entry() should return non-glue entry */
156         if ( e == NULL || ( !manageDSAit && is_entry_glue( e ))) {
157                 Debug( LDAP_DEBUG_ARGS,
158                         "<=- " LDAP_XSTRING(bdb_delete) ": no such object %s\n",
159                         op->o_req_dn.bv_val, 0, 0);
160
161                 if ( matched != NULL ) {
162                         rs->sr_matched = ch_strdup( matched->e_dn );
163                         rs->sr_ref = is_entry_referral( matched )
164                                 ? get_entry_referrals( op, matched )
165                                 : NULL;
166                         bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, matched);
167                         matched = NULL;
168
169                 } else {
170                         rs->sr_ref = referral_rewrite( default_referral, NULL,
171                                         &op->o_req_dn, LDAP_SCOPE_DEFAULT );
172                 }
173
174                 rs->sr_err = LDAP_REFERRAL;
175                 rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
176                 goto return_results;
177         }
178
179         rc = bdb_cache_find_id( op, ltid, eip->bei_id, &eip, 0, locker, &plock );
180         switch( rc ) {
181         case DB_LOCK_DEADLOCK:
182         case DB_LOCK_NOTGRANTED:
183                 goto retry;
184         case 0:
185         case DB_NOTFOUND:
186                 break;
187         default:
188                 rs->sr_err = LDAP_OTHER;
189                 rs->sr_text = "internal error";
190                 goto return_results;
191         }
192         if ( eip ) p = eip->bei_e;
193
194         if ( pdn.bv_len != 0 ) {
195                 if( p == NULL || !bvmatch( &pdn, &p->e_nname )) {
196                         Debug( LDAP_DEBUG_TRACE,
197                                 "<=- " LDAP_XSTRING(bdb_delete) ": parent "
198                                 "does not exist\n", 0, 0, 0 );
199                         rs->sr_err = LDAP_OTHER;
200                         rs->sr_text = "could not locate parent of entry";
201                         goto return_results;
202                 }
203
204                 /* check parent for "children" acl */
205                 rs->sr_err = access_allowed( op, p,
206                         children, NULL, ACL_WDEL, NULL );
207
208                 if ( !rs->sr_err  ) {
209                         switch( opinfo.boi_err ) {
210                         case DB_LOCK_DEADLOCK:
211                         case DB_LOCK_NOTGRANTED:
212                                 goto retry;
213                         }
214
215                         Debug( LDAP_DEBUG_TRACE,
216                                 "<=- " LDAP_XSTRING(bdb_delete) ": no write "
217                                 "access to parent\n", 0, 0, 0 );
218                         rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
219                         rs->sr_text = "no write access to parent";
220                         goto return_results;
221                 }
222
223         } else {
224                 /* no parent, must be root to delete */
225                 if( ! be_isroot( op ) ) {
226                         if ( be_issuffix( op->o_bd, (struct berval *)&slap_empty_bv )
227                                 || be_shadow_update( op ) ) {
228                                 p = (Entry *)&slap_entry_root;
229
230                                 /* check parent for "children" acl */
231                                 rs->sr_err = access_allowed( op, p,
232                                         children, NULL, ACL_WDEL, NULL );
233
234                                 p = NULL;
235
236                                 if ( !rs->sr_err  ) {
237                                         switch( opinfo.boi_err ) {
238                                         case DB_LOCK_DEADLOCK:
239                                         case DB_LOCK_NOTGRANTED:
240                                                 goto retry;
241                                         }
242
243                                         Debug( LDAP_DEBUG_TRACE,
244                                                 "<=- " LDAP_XSTRING(bdb_delete)
245                                                 ": no access to parent\n",
246                                                 0, 0, 0 );
247                                         rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
248                                         rs->sr_text = "no write access to parent";
249                                         goto return_results;
250                                 }
251
252                         } else {
253                                 Debug( LDAP_DEBUG_TRACE,
254                                         "<=- " LDAP_XSTRING(bdb_delete)
255                                         ": no parent and not root\n", 0, 0, 0 );
256                                 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
257                                 goto return_results;
258                         }
259                 }
260         }
261
262         if ( get_assert( op ) &&
263                 ( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
264         {
265                 rs->sr_err = LDAP_ASSERTION_FAILED;
266                 goto return_results;
267         }
268
269         rs->sr_err = access_allowed( op, e,
270                 entry, NULL, ACL_WDEL, NULL );
271
272         if ( !rs->sr_err  ) {
273                 switch( opinfo.boi_err ) {
274                 case DB_LOCK_DEADLOCK:
275                 case DB_LOCK_NOTGRANTED:
276                         goto retry;
277                 }
278
279                 Debug( LDAP_DEBUG_TRACE,
280                         "<=- " LDAP_XSTRING(bdb_delete) ": no write access "
281                         "to entry\n", 0, 0, 0 );
282                 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
283                 rs->sr_text = "no write access to entry";
284                 goto return_results;
285         }
286
287         if ( !manageDSAit && is_entry_referral( e ) ) {
288                 /* entry is a referral, don't allow delete */
289                 rs->sr_ref = get_entry_referrals( op, e );
290
291                 Debug( LDAP_DEBUG_TRACE,
292                         LDAP_XSTRING(bdb_delete) ": entry is referral\n",
293                         0, 0, 0 );
294
295                 rs->sr_err = LDAP_REFERRAL;
296                 rs->sr_matched = ch_strdup( e->e_name.bv_val );
297                 rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
298                 goto return_results;
299         }
300
301         /* pre-read */
302         if( op->o_preread ) {
303                 if( preread_ctrl == NULL ) {
304                         preread_ctrl = &ctrls[num_ctrls++];
305                         ctrls[num_ctrls] = NULL;
306                 }
307                 if( slap_read_controls( op, rs, e,
308                         &slap_pre_read_bv, preread_ctrl ) )
309                 {
310                         Debug( LDAP_DEBUG_TRACE,
311                                 "<=- " LDAP_XSTRING(bdb_delete) ": pre-read "
312                                 "failed!\n", 0, 0, 0 );
313                         goto return_results;
314                 }
315         }
316
317         /* nested transaction */
318         rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, ltid, &lt2, 
319                 bdb->bi_db_opflags );
320         rs->sr_text = NULL;
321         if( rs->sr_err != 0 ) {
322                 Debug( LDAP_DEBUG_TRACE,
323                         LDAP_XSTRING(bdb_delete) ": txn_begin(2) failed: "
324                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
325                 rs->sr_err = LDAP_OTHER;
326                 rs->sr_text = "internal error";
327                 goto return_results;
328         }
329
330         /* Can't do it if we have kids */
331         rs->sr_err = bdb_cache_children( op, lt2, e );
332         if( rs->sr_err != DB_NOTFOUND ) {
333                 switch( rs->sr_err ) {
334                 case DB_LOCK_DEADLOCK:
335                 case DB_LOCK_NOTGRANTED:
336                         goto retry;
337                 case 0:
338                         Debug(LDAP_DEBUG_ARGS,
339                                 "<=- " LDAP_XSTRING(bdb_delete)
340                                 ": non-leaf %s\n",
341                                 op->o_req_dn.bv_val, 0, 0);
342                         rs->sr_err = LDAP_NOT_ALLOWED_ON_NONLEAF;
343                         rs->sr_text = "subordinate objects must be deleted first";
344                         break;
345                 default:
346                         Debug(LDAP_DEBUG_ARGS,
347                                 "<=- " LDAP_XSTRING(bdb_delete)
348                                 ": has_children failed: %s (%d)\n",
349                                 db_strerror(rs->sr_err), rs->sr_err, 0 );
350                         rs->sr_err = LDAP_OTHER;
351                         rs->sr_text = "internal error";
352                 }
353                 goto return_results;
354         }
355
356         /* delete from dn2id */
357         rs->sr_err = bdb_dn2id_delete( op, lt2, eip, e );
358         if ( rs->sr_err != 0 ) {
359                 Debug(LDAP_DEBUG_TRACE,
360                         "<=- " LDAP_XSTRING(bdb_delete) ": dn2id failed: "
361                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
362                 switch( rs->sr_err ) {
363                 case DB_LOCK_DEADLOCK:
364                 case DB_LOCK_NOTGRANTED:
365                         goto retry;
366                 }
367                 rs->sr_text = "DN index delete failed";
368                 rs->sr_err = LDAP_OTHER;
369                 goto return_results;
370         }
371
372         /* delete indices for old attributes */
373         rs->sr_err = bdb_index_entry_del( op, lt2, e );
374         if ( rs->sr_err != LDAP_SUCCESS ) {
375                 Debug(LDAP_DEBUG_TRACE,
376                         "<=- " LDAP_XSTRING(bdb_delete) ": index failed: "
377                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
378                 switch( rs->sr_err ) {
379                 case DB_LOCK_DEADLOCK:
380                 case DB_LOCK_NOTGRANTED:
381                         goto retry;
382                 }
383                 rs->sr_text = "entry index delete failed";
384                 rs->sr_err = LDAP_OTHER;
385                 goto return_results;
386         }
387
388         /* fixup delete CSN */
389         if ( !SLAP_SHADOW( op->o_bd )) {
390                 struct berval vals[2];
391
392                 assert( !BER_BVISNULL( &op->o_csn ) );
393                 vals[0] = op->o_csn;
394                 BER_BVZERO( &vals[1] );
395                 rs->sr_err = bdb_index_values( op, lt2, slap_schema.si_ad_entryCSN,
396                         vals, 0, SLAP_INDEX_ADD_OP );
397         if ( rs->sr_err != LDAP_SUCCESS ) {
398                         switch( rs->sr_err ) {
399                         case DB_LOCK_DEADLOCK:
400                         case DB_LOCK_NOTGRANTED:
401                                 goto retry;
402                         }
403                         rs->sr_text = "entryCSN index update failed";
404                         rs->sr_err = LDAP_OTHER;
405                         goto return_results;
406                 }
407         }
408
409         /* delete from id2entry */
410         rs->sr_err = bdb_id2entry_delete( op->o_bd, lt2, e );
411         if ( rs->sr_err != 0 ) {
412                 Debug( LDAP_DEBUG_TRACE,
413                         "<=- " LDAP_XSTRING(bdb_delete) ": id2entry failed: "
414                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
415                 switch( rs->sr_err ) {
416                 case DB_LOCK_DEADLOCK:
417                 case DB_LOCK_NOTGRANTED:
418                         goto retry;
419                 }
420                 rs->sr_text = "entry delete failed";
421                 rs->sr_err = LDAP_OTHER;
422                 goto return_results;
423         }
424
425         if ( pdn.bv_len != 0 ) {
426                 parent_is_glue = is_entry_glue(p);
427                 rs->sr_err = bdb_cache_children( op, lt2, p );
428                 if ( rs->sr_err != DB_NOTFOUND ) {
429                         switch( rs->sr_err ) {
430                         case DB_LOCK_DEADLOCK:
431                         case DB_LOCK_NOTGRANTED:
432                                 goto retry;
433                         case 0:
434                                 break;
435                         default:
436                                 Debug(LDAP_DEBUG_ARGS,
437                                         "<=- " LDAP_XSTRING(bdb_delete)
438                                         ": has_children failed: %s (%d)\n",
439                                         db_strerror(rs->sr_err), rs->sr_err, 0 );
440                                 rs->sr_err = LDAP_OTHER;
441                                 rs->sr_text = "internal error";
442                                 goto return_results;
443                         }
444                         parent_is_leaf = 1;
445                 }
446                 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
447                 p = NULL;
448         }
449
450         if ( TXN_COMMIT( lt2, 0 ) != 0 ) {
451                 rs->sr_err = LDAP_OTHER;
452                 rs->sr_text = "txn_commit(2) failed";
453                 goto return_results;
454         }
455
456         eid = e->e_id;
457
458 #if 0   /* Do we want to reclaim deleted IDs? */
459         ldap_pvt_thread_mutex_lock( &bdb->bi_lastid_mutex );
460         if ( e->e_id == bdb->bi_lastid ) {
461                 bdb_last_id( op->o_bd, ltid );
462         }
463         ldap_pvt_thread_mutex_unlock( &bdb->bi_lastid_mutex );
464 #endif
465
466         if( op->o_noop ) {
467                 if ( ( rs->sr_err = TXN_ABORT( ltid ) ) != 0 ) {
468                         rs->sr_text = "txn_abort (no-op) failed";
469                 } else {
470                         rs->sr_err = LDAP_X_NO_OPERATION;
471                         ltid = NULL;
472                         goto return_results;
473                 }
474         } else {
475                 rc = bdb_cache_delete( &bdb->bi_cache, e, bdb->bi_dbenv,
476                         locker, &lock );
477                 switch( rc ) {
478                 case DB_LOCK_DEADLOCK:
479                 case DB_LOCK_NOTGRANTED:
480                         goto retry;
481                 }
482
483                 rs->sr_err = TXN_COMMIT( ltid, 0 );
484         }
485         ltid = NULL;
486         op->o_private = NULL;
487
488         if( rs->sr_err != 0 ) {
489                 Debug( LDAP_DEBUG_TRACE,
490                         LDAP_XSTRING(bdb_delete) ": txn_%s failed: %s (%d)\n",
491                         op->o_noop ? "abort (no-op)" : "commit",
492                         db_strerror(rs->sr_err), rs->sr_err );
493                 rs->sr_err = LDAP_OTHER;
494                 rs->sr_text = "commit failed";
495
496                 goto return_results;
497         }
498
499         Debug( LDAP_DEBUG_TRACE,
500                 LDAP_XSTRING(bdb_delete) ": deleted%s id=%08lx dn=\"%s\"\n",
501                 op->o_noop ? " (no-op)" : "",
502                 eid, op->o_req_dn.bv_val );
503         rs->sr_err = LDAP_SUCCESS;
504         rs->sr_text = NULL;
505         if( num_ctrls ) rs->sr_ctrls = ctrls;
506
507 return_results:
508         if ( rs->sr_err == LDAP_SUCCESS && parent_is_glue && parent_is_leaf ) {
509                 op->o_delete_glue_parent = 1;
510         }
511
512         if ( p )
513                 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
514
515         /* free entry */
516         if( e != NULL ) {
517                 if ( rs->sr_err == LDAP_SUCCESS ) {
518                         /* Free the EntryInfo and the Entry */
519                         bdb_cache_delete_cleanup( &bdb->bi_cache, BEI(e) );
520                 } else {
521                         bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
522                 }
523         }
524
525         if( ltid != NULL ) {
526                 TXN_ABORT( ltid );
527         }
528         op->o_private = NULL;
529
530         send_ldap_result( op, rs );
531         if ( !SLAP_SHADOW( op->o_bd ))
532                 slap_graduate_commit_csn( op );
533
534         if( preread_ctrl != NULL ) {
535                 slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
536                 slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
537         }
538
539         if( rs->sr_err == LDAP_SUCCESS && bdb->bi_txn_cp ) {
540                 ldap_pvt_thread_yield();
541                 TXN_CHECKPOINT( bdb->bi_dbenv,
542                         bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
543         }
544         return rs->sr_err;
545 }