]> git.sur5r.net Git - openldap/blob - servers/slapd/back-bdb/modify.c
condition compilation of DISCLOSE checking
[openldap] / servers / slapd / back-bdb / modify.c
1 /* modify.c - bdb backend modify routine */
2 /* $OpenLDAP$ */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
4  *
5  * Copyright 2000-2005 The OpenLDAP Foundation.
6  * All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted only as authorized by the OpenLDAP
10  * Public License.
11  *
12  * A copy of this license is available in the file LICENSE in the
13  * top-level directory of the distribution or, alternatively, at
14  * <http://www.OpenLDAP.org/license.html>.
15  */
16
17 #include "portable.h"
18
19 #include <stdio.h>
20 #include <ac/string.h>
21 #include <ac/time.h>
22
23 #include "back-bdb.h"
24
25 static struct berval scbva[] = {
26         BER_BVC("glue"),
27         BER_BVNULL
28 };
29
30 int bdb_modify_internal(
31         Operation *op,
32         DB_TXN *tid,
33         Modifications *modlist,
34         Entry *e,
35         const char **text,
36         char *textbuf,
37         size_t textlen )
38 {
39         int rc, err;
40         Modification    *mod;
41         Modifications   *ml;
42         Attribute       *save_attrs;
43         Attribute       *ap;
44         int                     glue_attr_delete = 0;
45
46         Debug( LDAP_DEBUG_TRACE, "bdb_modify_internal: 0x%08lx: %s\n",
47                 e->e_id, e->e_dn, 0);
48
49         if ( !acl_check_modlist( op, e, modlist )) {
50                 return LDAP_INSUFFICIENT_ACCESS;
51         }
52
53         /* save_attrs will be disposed of by bdb_cache_modify */
54         save_attrs = e->e_attrs;
55         e->e_attrs = attrs_dup( e->e_attrs );
56
57         for ( ml = modlist; ml != NULL; ml = ml->sml_next ) {
58                 int match;
59                 mod = &ml->sml_mod;
60                 switch( mod->sm_op ) {
61                 case LDAP_MOD_ADD:
62                 case LDAP_MOD_REPLACE:
63                         if ( mod->sm_desc == slap_schema.si_ad_structuralObjectClass ) {
64                                 value_match( &match, slap_schema.si_ad_structuralObjectClass,
65                                 slap_schema.si_ad_structuralObjectClass->ad_type->sat_equality,
66                                 SLAP_MR_VALUE_OF_ATTRIBUTE_SYNTAX,
67                                 &mod->sm_values[0], &scbva[0], text );
68                                 if ( !match )
69                                         glue_attr_delete = 1;
70                         }
71                 }
72                 if ( glue_attr_delete )
73                         break;
74         }
75
76         if ( glue_attr_delete ) {
77                 Attribute       **app = &e->e_attrs;
78                 while ( *app != NULL ) {
79                         if ( !is_at_operational( (*app)->a_desc->ad_type )) {
80                                 Attribute *save = *app;
81                                 *app = (*app)->a_next;
82                                 attr_free( save );
83                                 continue;
84                         }
85                         app = &(*app)->a_next;
86                 }
87         }
88
89         for ( ml = modlist; ml != NULL; ml = ml->sml_next ) {
90                 mod = &ml->sml_mod;
91
92                 switch ( mod->sm_op ) {
93                 case LDAP_MOD_ADD:
94                         Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: add\n", 0, 0, 0);
95                         err = modify_add_values( e, mod, get_permissiveModify(op),
96                                 text, textbuf, textlen );
97                         if( err != LDAP_SUCCESS ) {
98                                 Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: %d %s\n",
99                                         err, *text, 0);
100                         }
101                         break;
102
103                 case LDAP_MOD_DELETE:
104                         if ( glue_attr_delete ) {
105                                 err = LDAP_SUCCESS;
106                                 break;
107                         }
108
109                         Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: delete\n", 0, 0, 0);
110                         err = modify_delete_values( e, mod, get_permissiveModify(op),
111                                 text, textbuf, textlen );
112                         assert( err != LDAP_TYPE_OR_VALUE_EXISTS );
113                         if( err != LDAP_SUCCESS ) {
114                                 Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: %d %s\n",
115                                         err, *text, 0);
116                         }
117                         break;
118
119                 case LDAP_MOD_REPLACE:
120                         Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: replace\n", 0, 0, 0);
121                         err = modify_replace_values( e, mod, get_permissiveModify(op),
122                                 text, textbuf, textlen );
123                         if( err != LDAP_SUCCESS ) {
124                                 Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: %d %s\n",
125                                         err, *text, 0);
126                         }
127                         break;
128
129                 case LDAP_MOD_INCREMENT:
130                         Debug(LDAP_DEBUG_ARGS,
131                                 "bdb_modify_internal: increment\n", 0, 0, 0);
132                         err = modify_increment_values( e, mod, get_permissiveModify(op),
133                                 text, textbuf, textlen );
134                         if( err != LDAP_SUCCESS ) {
135                                 Debug(LDAP_DEBUG_ARGS,
136                                         "bdb_modify_internal: %d %s\n",
137                                         err, *text, 0);
138                         }
139                         break;
140
141                 case SLAP_MOD_SOFTADD:
142                         Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: softadd\n", 0, 0, 0);
143                         /* Avoid problems in index_add_mods()
144                          * We need to add index if necessary.
145                          */
146                         mod->sm_op = LDAP_MOD_ADD;
147
148                         err = modify_add_values( e, mod, get_permissiveModify(op),
149                                 text, textbuf, textlen );
150
151                         mod->sm_op = SLAP_MOD_SOFTADD;
152
153                         if ( err == LDAP_TYPE_OR_VALUE_EXISTS ) {
154                                 err = LDAP_SUCCESS;
155                         }
156
157                         if( err != LDAP_SUCCESS ) {
158                                 Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: %d %s\n",
159                                         err, *text, 0);
160                         }
161                         break;
162
163                 default:
164                         Debug(LDAP_DEBUG_ANY, "bdb_modify_internal: invalid op %d\n",
165                                 mod->sm_op, 0, 0);
166                         *text = "Invalid modify operation";
167                         err = LDAP_OTHER;
168                         Debug(LDAP_DEBUG_ARGS, "bdb_modify_internal: %d %s\n",
169                                 err, *text, 0);
170                 }
171
172                 if ( err != LDAP_SUCCESS ) {
173                         attrs_free( e->e_attrs );
174                         e->e_attrs = save_attrs;
175                         /* unlock entry, delete from cache */
176                         return err; 
177                 }
178
179                 /* If objectClass was modified, reset the flags */
180                 if ( mod->sm_desc == slap_schema.si_ad_objectClass ) {
181                         e->e_ocflags = 0;
182                 }
183
184                 if ( glue_attr_delete ) {
185                         e->e_ocflags = 0;
186                 }
187
188                 /* check if modified attribute was indexed
189                  * but not in case of NOOP... */
190                 err = bdb_index_is_indexed( op->o_bd, mod->sm_desc );
191                 if ( err == LDAP_SUCCESS && !op->o_noop ) {
192                         ap = attr_find( save_attrs, mod->sm_desc );
193                         if ( ap ) ap->a_flags |= SLAP_ATTR_IXDEL;
194
195                         ap = attr_find( e->e_attrs, mod->sm_desc );
196                         if ( ap ) ap->a_flags |= SLAP_ATTR_IXADD;
197                 }
198         }
199
200         /* check that the entry still obeys the schema */
201         rc = entry_schema_check( op->o_bd, e, save_attrs, text, textbuf, textlen );
202         if ( rc != LDAP_SUCCESS || op->o_noop ) {
203                 attrs_free( e->e_attrs );
204                 /* clear the indexing flags */
205                 for ( ap = save_attrs; ap != NULL; ap = ap->a_next ) {
206                         ap->a_flags = 0;
207                 }
208                 e->e_attrs = save_attrs;
209
210                 if ( rc != LDAP_SUCCESS ) {
211                         Debug( LDAP_DEBUG_ANY,
212                                 "entry failed schema check: %s\n",
213                                 *text, 0, 0 );
214                 }
215
216                 /* if NOOP then silently revert to saved attrs */
217                 return rc;
218         }
219
220         /* update the indices of the modified attributes */
221
222         /* start with deleting the old index entries */
223         for ( ap = save_attrs; ap != NULL; ap = ap->a_next ) {
224                 if ( ap->a_flags & SLAP_ATTR_IXDEL ) {
225                         rc = bdb_index_values( op, tid, ap->a_desc,
226                                 ap->a_nvals,
227                                 e->e_id, SLAP_INDEX_DELETE_OP );
228                         if ( rc != LDAP_SUCCESS ) {
229                                 attrs_free( e->e_attrs );
230                                 e->e_attrs = save_attrs;
231                                 Debug( LDAP_DEBUG_ANY,
232                                        "Attribute index delete failure",
233                                        0, 0, 0 );
234                                 return rc;
235                         }
236                         ap->a_flags &= ~SLAP_ATTR_IXDEL;
237                 }
238         }
239
240         /* add the new index entries */
241         for ( ap = e->e_attrs; ap != NULL; ap = ap->a_next ) {
242                 if (ap->a_flags & SLAP_ATTR_IXADD) {
243                         rc = bdb_index_values( op, tid, ap->a_desc,
244                                 ap->a_nvals,
245                                 e->e_id, SLAP_INDEX_ADD_OP );
246                         if ( rc != LDAP_SUCCESS ) {
247                                 attrs_free( e->e_attrs );
248                                 e->e_attrs = save_attrs;
249                                 Debug( LDAP_DEBUG_ANY,
250                                        "Attribute index add failure",
251                                        0, 0, 0 );
252                                 return rc;
253                         }
254                         ap->a_flags &= ~SLAP_ATTR_IXADD;
255                 }
256         }
257
258         return rc;
259 }
260
261
262 int
263 bdb_modify( Operation *op, SlapReply *rs )
264 {
265         struct bdb_info *bdb = (struct bdb_info *) op->o_bd->be_private;
266         Entry           *e = NULL;
267         EntryInfo       *ei = NULL;
268         int             manageDSAit = get_manageDSAit( op );
269         char textbuf[SLAP_TEXT_BUFLEN];
270         size_t textlen = sizeof textbuf;
271         DB_TXN  *ltid = NULL, *lt2;
272         struct bdb_op_info opinfo = {0};
273         Entry           dummy = {0};
274
275         u_int32_t       locker = 0;
276         DB_LOCK         lock;
277
278         int             num_retries = 0;
279
280         LDAPControl **preread_ctrl = NULL;
281         LDAPControl **postread_ctrl = NULL;
282         LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
283         int num_ctrls = 0;
284
285         Operation* ps_list;
286         struct psid_entry *pm_list, *pm_prev;
287         int rc;
288         EntryInfo       *suffix_ei;
289         Entry           *ctxcsn_e;
290         int                     ctxcsn_added = 0;
291
292         Debug( LDAP_DEBUG_ARGS, LDAP_XSTRING(bdb_modify) ": %s\n",
293                 op->o_req_dn.bv_val, 0, 0 );
294
295         ctrls[num_ctrls] = NULL;
296
297         if( 0 ) {
298 retry:  /* transaction retry */
299                 if ( dummy.e_attrs ) {
300                         attrs_free( dummy.e_attrs );
301                         dummy.e_attrs = NULL;
302                 }
303                 if( e != NULL ) {
304                         bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
305                         e = NULL;
306                 }
307                 Debug(LDAP_DEBUG_TRACE,
308                         LDAP_XSTRING(bdb_modify) ": retrying...\n", 0, 0, 0);
309
310                 rs->sr_err = TXN_ABORT( ltid );
311                 ltid = NULL;
312                 op->o_private = NULL;
313                 op->o_do_not_cache = opinfo.boi_acl_cache;
314                 if( rs->sr_err != 0 ) {
315                         rs->sr_err = LDAP_OTHER;
316                         rs->sr_text = "internal error";
317                         goto return_results;
318                 }
319                 ldap_pvt_thread_yield();
320                 bdb_trans_backoff( ++num_retries );
321         }
322
323         /* begin transaction */
324         rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, NULL, &ltid, 
325                 bdb->bi_db_opflags );
326         rs->sr_text = NULL;
327         if( rs->sr_err != 0 ) {
328                 Debug( LDAP_DEBUG_TRACE,
329                         LDAP_XSTRING(bdb_modify) ": txn_begin failed: "
330                         "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
331                 rs->sr_err = LDAP_OTHER;
332                 rs->sr_text = "internal error";
333                 goto return_results;
334         }
335
336         locker = TXN_ID ( ltid );
337
338         opinfo.boi_bdb = op->o_bd;
339         opinfo.boi_txn = ltid;
340         opinfo.boi_locker = locker;
341         opinfo.boi_err = 0;
342         opinfo.boi_acl_cache = op->o_do_not_cache;
343         op->o_private = &opinfo;
344
345         /* get entry or ancestor */
346         rs->sr_err = bdb_dn2entry( op, ltid, &op->o_req_ndn, &ei, 1,
347                 locker, &lock );
348
349         if ( rs->sr_err != 0 ) {
350                 Debug( LDAP_DEBUG_TRACE,
351                         LDAP_XSTRING(bdb_modify) ": dn2entry failed (%d)\n",
352                         rs->sr_err, 0, 0 );
353                 switch( rs->sr_err ) {
354                 case DB_LOCK_DEADLOCK:
355                 case DB_LOCK_NOTGRANTED:
356                         goto retry;
357                 case DB_NOTFOUND:
358                         break;
359                 case LDAP_BUSY:
360                         rs->sr_text = "ldap server busy";
361                         goto return_results;
362                 default:
363                         rs->sr_err = LDAP_OTHER;
364                         rs->sr_text = "internal error";
365                         goto return_results;
366                 }
367         }
368
369         e = ei->bei_e;
370         /* acquire and lock entry */
371         /* FIXME: dn2entry() should return non-glue entry */
372         if (( rs->sr_err == DB_NOTFOUND ) ||
373                 ( !manageDSAit && e && is_entry_glue( e )))
374         {
375                 BerVarray deref = NULL;
376                 if ( e != NULL ) {
377                         rs->sr_matched = ch_strdup( e->e_dn );
378                         rs->sr_ref = is_entry_referral( e )
379                                 ? get_entry_referrals( op, e )
380                                 : NULL;
381                         bdb_unlocked_cache_return_entry_r (&bdb->bi_cache, e);
382                         e = NULL;
383
384                 } else {
385                         if ( op->o_bd->be_syncinfo ) {
386                                 syncinfo_t *si = op->o_bd->be_syncinfo;
387                                 {
388                                         struct berval tmpbv;
389                                         ber_dupbv( &tmpbv, &si->si_provideruri_bv[0] );
390                                         ber_bvarray_add( &deref, &tmpbv );
391                 }
392                         } else {
393                                 deref = default_referral;
394                         }
395                         rs->sr_ref = referral_rewrite( deref, NULL, &op->o_req_dn,
396                                         LDAP_SCOPE_DEFAULT );
397                 }
398
399                 rs->sr_err = LDAP_REFERRAL;
400                 send_ldap_result( op, rs );
401
402                 if ( rs->sr_ref != default_referral ) {
403                         ber_bvarray_free( rs->sr_ref );
404                 }
405                 if ( deref != default_referral ) {
406                         ber_bvarray_free( deref );
407                 }
408                 free( (char *)rs->sr_matched );
409                 rs->sr_ref = NULL;
410                 rs->sr_matched = NULL;
411
412                 goto done;
413         }
414
415         if ( !manageDSAit && is_entry_referral( e ) ) {
416                 /* entry is a referral, don't allow modify */
417                 rs->sr_ref = get_entry_referrals( op, e );
418
419                 Debug( LDAP_DEBUG_TRACE,
420                         LDAP_XSTRING(bdb_modify) ": entry is referral\n",
421                         0, 0, 0 );
422
423                 rs->sr_err = LDAP_REFERRAL;
424                 rs->sr_matched = e->e_name.bv_val;
425                 send_ldap_result( op, rs );
426
427                 ber_bvarray_free( rs->sr_ref );
428                 rs->sr_ref = NULL;
429                 rs->sr_matched = NULL;
430                 goto done;
431         }
432
433         if ( get_assert( op ) &&
434                 ( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
435         {
436                 rs->sr_err = LDAP_ASSERTION_FAILED;
437                 goto return_results;
438         }
439
440         if( op->o_preread ) {
441                 if( preread_ctrl == NULL ) {
442                         preread_ctrl = &ctrls[num_ctrls++];
443                         ctrls[num_ctrls] = NULL;
444                 }
445                 if ( slap_read_controls( op, rs, e,
446                         &slap_pre_read_bv, preread_ctrl ) )
447                 {
448                         Debug( LDAP_DEBUG_TRACE,
449                                 "<=- " LDAP_XSTRING(bdb_modify)
450                                 ": pre-read failed!\n", 0, 0, 0 );
451                         goto return_results;
452                 }
453         }
454
455         /* nested transaction */
456         rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, ltid, &lt2, 
457                 bdb->bi_db_opflags );
458         rs->sr_text = NULL;
459         if( rs->sr_err != 0 ) {
460                 Debug( LDAP_DEBUG_TRACE,
461                         LDAP_XSTRING(bdb_modify) ": txn_begin(2) failed: "
462                         "%s (%d)\n",
463                         db_strerror(rs->sr_err), rs->sr_err, 0 );
464                 rs->sr_err = LDAP_OTHER;
465                 rs->sr_text = "internal error";
466                 goto return_results;
467         }
468         /* Modify the entry */
469         dummy = *e;
470         rs->sr_err = bdb_modify_internal( op, lt2, op->oq_modify.rs_modlist,
471                 &dummy, &rs->sr_text, textbuf, textlen );
472
473         if( rs->sr_err != LDAP_SUCCESS ) {
474                 Debug( LDAP_DEBUG_TRACE,
475                         LDAP_XSTRING(bdb_modify) ": modify failed (%d)\n",
476                         rs->sr_err, 0, 0 );
477                 if ( (rs->sr_err == LDAP_INSUFFICIENT_ACCESS) && opinfo.boi_err ) {
478                         rs->sr_err = opinfo.boi_err;
479                 }
480                 /* Only free attrs if they were dup'd.  */
481                 if ( dummy.e_attrs == e->e_attrs ) dummy.e_attrs = NULL;
482                 switch( rs->sr_err ) {
483                 case DB_LOCK_DEADLOCK:
484                 case DB_LOCK_NOTGRANTED:
485                         goto retry;
486                 }
487                 goto return_results;
488         }
489
490         /* change the entry itself */
491         rs->sr_err = bdb_id2entry_update( op->o_bd, lt2, &dummy );
492         if ( rs->sr_err != 0 ) {
493                 Debug( LDAP_DEBUG_TRACE,
494                         LDAP_XSTRING(bdb_modify) ": id2entry update failed "
495                         "(%d)\n", rs->sr_err, 0, 0 );
496                 switch( rs->sr_err ) {
497                 case DB_LOCK_DEADLOCK:
498                 case DB_LOCK_NOTGRANTED:
499                         goto retry;
500                 }
501                 rs->sr_text = "entry update failed";
502                 goto return_results;
503         }
504
505         if ( TXN_COMMIT( lt2, 0 ) != 0 ) {
506                 rs->sr_err = LDAP_OTHER;
507                 rs->sr_text = "txn_commit(2) failed";
508                 goto return_results;
509         }
510
511         if( op->o_postread ) {
512                 if( postread_ctrl == NULL ) {
513                         postread_ctrl = &ctrls[num_ctrls++];
514                         ctrls[num_ctrls] = NULL;
515                 }
516                 if( slap_read_controls( op, rs, &dummy,
517                         &slap_post_read_bv, postread_ctrl ) )
518                 {
519                         Debug( LDAP_DEBUG_TRACE,
520                                 "<=- " LDAP_XSTRING(bdb_modify)
521                                 ": post-read failed!\n", 0, 0, 0 );
522                         goto return_results;
523                 }
524         }
525
526         if( op->o_noop ) {
527                 if ( ( rs->sr_err = TXN_ABORT( ltid ) ) != 0 ) {
528                         rs->sr_text = "txn_abort (no-op) failed";
529                 } else {
530                         rs->sr_err = LDAP_NO_OPERATION;
531                         goto return_results;
532                 }
533         } else {
534                 /* may have changed in bdb_modify_internal() */
535                 e->e_ocflags = dummy.e_ocflags;
536                 rc = bdb_cache_modify( e, dummy.e_attrs, bdb->bi_dbenv, locker, &lock );
537                 switch( rc ) {
538                 case DB_LOCK_DEADLOCK:
539                 case DB_LOCK_NOTGRANTED:
540                         goto retry;
541                 }
542                 dummy.e_attrs = NULL;
543
544                 rs->sr_err = TXN_COMMIT( ltid, 0 );
545         }
546         ltid = NULL;
547         op->o_private = NULL;
548
549         if( rs->sr_err != 0 ) {
550                 Debug( LDAP_DEBUG_TRACE,
551                         LDAP_XSTRING(bdb_modify) ": txn_%s failed: %s (%d)\n",
552                         op->o_noop ? "abort (no-op)" : "commit",
553                         db_strerror(rs->sr_err), rs->sr_err );
554                 rs->sr_err = LDAP_OTHER;
555                 rs->sr_text = "commit failed";
556
557                 goto return_results;
558         }
559
560         Debug( LDAP_DEBUG_TRACE,
561                 LDAP_XSTRING(bdb_modify) ": updated%s id=%08lx dn=\"%s\"\n",
562                 op->o_noop ? " (no-op)" : "",
563                 dummy.e_id, op->o_req_dn.bv_val );
564
565         rs->sr_err = LDAP_SUCCESS;
566         rs->sr_text = NULL;
567         if( num_ctrls ) rs->sr_ctrls = ctrls;
568
569 return_results:
570         if( dummy.e_attrs ) {
571                 attrs_free( dummy.e_attrs );
572         }
573         send_ldap_result( op, rs );
574
575         if( rs->sr_err == LDAP_SUCCESS && bdb->bi_txn_cp ) {
576                 ldap_pvt_thread_yield();
577                 TXN_CHECKPOINT( bdb->bi_dbenv,
578                         bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
579         }
580
581 done:
582         if( ltid != NULL ) {
583                 TXN_ABORT( ltid );
584                 op->o_private = NULL;
585         }
586
587         if( e != NULL ) {
588                 bdb_unlocked_cache_return_entry_w (&bdb->bi_cache, e);
589         }
590
591         if( preread_ctrl != NULL ) {
592                 slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
593                 slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
594         }
595         if( postread_ctrl != NULL ) {
596                 slap_sl_free( (*postread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
597                 slap_sl_free( *postread_ctrl, op->o_tmpmemctx );
598         }
599         return rs->sr_err;
600 }