]> git.sur5r.net Git - openldap/blob - servers/slapd/back-bdb/modrdn.c
d0f9870709e8ca47f800fbc01446793a489b97ec
[openldap] / servers / slapd / back-bdb / modrdn.c
1 /* modrdn.c - bdb backend modrdn routine */
2 /* $OpenLDAP$ */
3 /*
4  * Copyright 1998-2002 The OpenLDAP Foundation, All Rights Reserved.
5  * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
6  */
7
8 #include "portable.h"
9
10 #include <stdio.h>
11 #include <ac/string.h>
12
13 #include "back-bdb.h"
14 #include "external.h"
15
16 int
17 bdb_modrdn(
18         Backend *be,
19         Connection      *conn,
20         Operation       *op,
21         struct berval   *dn,
22         struct berval   *ndn,
23         struct berval   *newrdn,
24         struct berval   *nnewrdn,
25         int             deleteoldrdn,
26         struct berval   *newSuperior,
27         struct berval   *nnewSuperior )
28 {
29         struct bdb_info *bdb = (struct bdb_info *) be->be_private;
30         AttributeDescription *children = slap_schema.si_ad_children;
31         struct berval   p_dn, p_ndn;
32         struct berval   new_dn = {0, NULL}, new_ndn = {0, NULL};
33         int             isroot = -1;
34         Entry           *e, *p = NULL;
35         Entry           *matched;
36         int                     rc;
37         const char *text;
38         char textbuf[SLAP_TEXT_BUFLEN];
39         size_t textlen = sizeof textbuf;
40         DB_TXN *        ltid = NULL;
41         struct bdb_op_info opinfo;
42
43         ID                      id;
44         int             a_cnt, d_cnt;
45         LDAPRDN         *new_rdn = NULL;
46         LDAPRDN         *old_rdn = NULL;
47
48         Entry           *np = NULL;                     /* newSuperior Entry */
49         struct berval   *np_dn = NULL;                  /* newSuperior dn */
50         struct berval   *np_ndn = NULL;                 /* newSuperior ndn */
51         struct berval   *new_parent_dn = NULL;  /* np_dn, p_dn, or NULL */
52
53         /* Used to interface with bdb_modify_internal() */
54         Modifications   *mod = NULL;            /* Used to delete old rdn */
55
56         int             manageDSAit = get_manageDSAit( op );
57
58 #ifdef NEW_LOGGING
59         LDAP_LOG (( "modrdn", LDAP_LEVEL_ENTRY, "==>bdb_modrdn(%s,%s,%s)\n",
60                 dn->bv_val,newrdn->bv_val,
61                 newSuperior ? newSuperior->bv_val : "NULL" ));
62 #else
63         Debug( LDAP_DEBUG_TRACE, "==>bdb_modrdn(%s,%s,%s)\n",
64                 dn->bv_val, newrdn->bv_val,
65                 newSuperior ? newSuperior->bv_val : "NULL" );
66 #endif
67
68 #if 0
69         if( newSuperior != NULL ) {
70                 rc = LDAP_UNWILLING_TO_PERFORM;
71                 text = "newSuperior not implemented (yet)";
72                 goto return_results;
73         }
74 #endif
75
76         if( 0 ) {
77 retry:  /* transaction retry */
78                 if (e != NULL) {
79                         bdb_cache_delete_entry(&bdb->bi_cache, e);
80                         bdb_cache_return_entry_w(&bdb->bi_cache, e);
81                 }
82                 if (p != NULL) {
83                         bdb_cache_return_entry_r(&bdb->bi_cache, p);
84                 }
85                 if (np != NULL) {
86                         bdb_cache_return_entry_r(&bdb->bi_cache, np);
87                 }
88 #ifdef NEW_LOGGING
89                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: retrying...\n"));
90 #else
91                 Debug( LDAP_DEBUG_TRACE, "==>bdb_modrdn: retrying...\n", 0, 0, 0 );
92 #endif
93                 rc = TXN_ABORT( ltid );
94                 ltid = NULL;
95                 op->o_private = NULL;
96                 if( rc != 0 ) {
97                         rc = LDAP_OTHER;
98                         text = "internal error";
99                         goto return_results;
100                 }
101                 ldap_pvt_thread_yield();
102         }
103
104         /* begin transaction */
105         rc = TXN_BEGIN( bdb->bi_dbenv, NULL, &ltid, 
106                 bdb->bi_db_opflags );
107         text = NULL;
108         if( rc != 0 ) {
109 #ifdef NEW_LOGGING
110                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: txn_begin failed: %s (%d)\n", db_strerror(rc), rc ));
111 #else
112                 Debug( LDAP_DEBUG_TRACE,
113                         "bdb_delete: txn_begin failed: %s (%d)\n",
114                         db_strerror(rc), rc, 0 );
115 #endif
116                 rc = LDAP_OTHER;
117                 text = "internal error";
118                 goto return_results;
119         }
120
121         opinfo.boi_bdb = be;
122         opinfo.boi_txn = ltid;
123         opinfo.boi_err = 0;
124         op->o_private = &opinfo;
125
126         /* get entry */
127         rc = bdb_dn2entry_w( be, ltid, ndn, &e, &matched, 0 );
128
129         switch( rc ) {
130         case 0:
131         case DB_NOTFOUND:
132                 break;
133         case DB_LOCK_DEADLOCK:
134         case DB_LOCK_NOTGRANTED:
135                 goto retry;
136         default:
137                 rc = LDAP_OTHER;
138                 text = "internal error";
139                 goto return_results;
140         }
141
142         if ( e == NULL ) {
143                 char* matched_dn = NULL;
144                 BerVarray refs;
145
146                 if( matched != NULL ) {
147                         matched_dn = ch_strdup( matched->e_dn );
148                         refs = is_entry_referral( matched )
149                                 ? get_entry_referrals( be, conn, op, matched )
150                                 : NULL;
151                         bdb_cache_return_entry_r( &bdb->bi_cache, matched );
152                         matched = NULL;
153
154                 } else {
155                         refs = referral_rewrite( default_referral,
156                                 NULL, dn, LDAP_SCOPE_DEFAULT );
157                 }
158
159                 send_ldap_result( conn, op, rc = LDAP_REFERRAL,
160                         matched_dn, NULL, refs, NULL );
161
162                 ber_bvarray_free( refs );
163                 free( matched_dn );
164
165                 goto done;
166         }
167
168         if (!manageDSAit && is_entry_referral( e ) ) {
169                 /* parent is a referral, don't allow add */
170                 /* parent is an alias, don't allow add */
171                 BerVarray refs = get_entry_referrals( be,
172                         conn, op, e );
173
174 #ifdef NEW_LOGGING
175                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: entry %s is referral \n", e->e_dn ));
176 #else
177                 Debug( LDAP_DEBUG_TRACE, "bdb_modrdn: entry %s is referral\n",
178                         e->e_dn, 0, 0 );
179 #endif
180
181                 send_ldap_result( conn, op, rc = LDAP_REFERRAL,
182                         e->e_dn, NULL, refs, NULL );
183
184                 ber_bvarray_free( refs );
185                 goto done;
186         }
187
188         if ( be_issuffix( be, &e->e_nname ) ) {
189                 p_ndn = slap_empty_bv;
190         } else {
191                 dnParent( &e->e_nname, &p_ndn );
192         }
193         np_ndn = &p_ndn;
194         if ( p_ndn.bv_len != 0 ) {
195                 /* Make sure parent entry exist and we can write its 
196                  * children.
197                  */
198                 rc = bdb_dn2entry_r( be, ltid, &p_ndn, &p, NULL, 0 );
199
200                 switch( rc ) {
201                 case 0:
202                 case DB_NOTFOUND:
203                         break;
204                 case DB_LOCK_DEADLOCK:
205                 case DB_LOCK_NOTGRANTED:
206                         goto retry;
207                 default:
208                         rc = LDAP_OTHER;
209                         text = "internal error";
210                         goto return_results;
211                 }
212
213                 if( p == NULL) {
214 #ifdef NEW_LOGGING
215                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: parent does not exist\n" ));
216 #else
217                         Debug( LDAP_DEBUG_TRACE, "bdb_modrdn: parent does not exist\n",
218                                 0, 0, 0);
219 #endif
220                         rc = LDAP_OTHER;
221                         goto return_results;
222                 }
223
224                 /* check parent for "children" acl */
225                 if ( ! access_allowed( be, conn, op, p,
226                         children, NULL, ACL_WRITE, NULL ) )
227                 {
228 #ifdef NEW_LOGGING
229                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: no access to parent\n" ));
230 #else
231                         Debug( LDAP_DEBUG_TRACE, "no access to parent\n", 0,
232                                 0, 0 );
233 #endif
234                         send_ldap_result( conn, op, LDAP_INSUFFICIENT_ACCESS,
235                                 NULL, NULL, NULL, NULL );
236                         goto return_results;
237                 }
238
239 #ifdef NEW_LOGGING
240                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: wr to children %s is OK\n", p_ndn.bv_val ));
241 #else
242                 Debug( LDAP_DEBUG_TRACE,
243                         "bdb_modrdn: wr to children of entry %s OK\n",
244                         p_ndn.bv_val, 0, 0 );
245 #endif
246                 
247                 if ( p_ndn.bv_val == slap_empty_bv.bv_val ) {
248                         p_dn = slap_empty_bv;
249                 } else {
250                         dnParent( &e->e_name, &p_dn );
251                 }
252
253 #ifdef NEW_LOGGING
254                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: parent dn=%s\n", p_dn.bv_val ));
255 #else
256                 Debug( LDAP_DEBUG_TRACE,
257                         "bdb_modrdn: parent dn=%s\n",
258                         p_dn.bv_val, 0, 0 );
259 #endif
260
261         } else {
262                 /* no parent, modrdn entry directly under root */
263                 isroot = be_isroot( be, &op->o_ndn );
264                 if ( ! isroot ) {
265                         if ( be_issuffix( be, (struct berval *)&slap_empty_bv )
266                                 || be_isupdate( be, &op->o_ndn ) ) {
267
268                                 p = (Entry *)&slap_entry_root;
269
270                                 /* check parent for "children" acl */
271                                 rc = access_allowed( be, conn, op, p,
272                                         children, NULL, ACL_WRITE, NULL );
273
274                                 p = NULL;
275
276                                 if ( ! rc )
277                                 {
278 #ifdef NEW_LOGGING
279                                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: no access to parent\n" ));
280 #else
281                                         Debug( LDAP_DEBUG_TRACE, 
282                                                 "no access to parent\n", 
283                                                 0, 0, 0 );
284 #endif
285                                         send_ldap_result( conn, op, 
286                                                 LDAP_INSUFFICIENT_ACCESS,
287                                                 NULL, NULL, NULL, NULL );
288                                         goto return_results;
289                                 }
290
291 #ifdef NEW_LOGGING
292                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: wr to children of entry \"\" OK\n", p_dn.bv_val ));
293 #else
294                                 Debug( LDAP_DEBUG_TRACE,
295                                         "bdb_modrdn: wr to children of entry \"\" OK\n",
296                                         0, 0, 0 );
297 #endif
298                 
299                                 p_dn.bv_val = "";
300                                 p_dn.bv_len = 0;
301
302 #ifdef NEW_LOGGING
303                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: parent dn=\"\" \n" ));
304 #else
305                                 Debug( LDAP_DEBUG_TRACE,
306                                         "bdb_modrdn: parent dn=\"\"\n",
307                                         0, 0, 0 );
308 #endif
309
310                         } else {
311 #ifdef NEW_LOGGING
312                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: no parent, not root &\"\" is not suffix\n" ));
313 #else
314                                 Debug( LDAP_DEBUG_TRACE,
315                                         "bdb_modrdn: no parent, not root "
316                                         "& \"\" is not suffix\n",
317                                         0, 0, 0);
318 #endif
319                                 rc = LDAP_INSUFFICIENT_ACCESS;
320                                 goto return_results;
321                         }
322                 }
323         }
324
325         new_parent_dn = &p_dn;  /* New Parent unless newSuperior given */
326
327         if ( newSuperior != NULL ) {
328 #ifdef NEW_LOGGING
329                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: new parent \"%s\" requested...\n", newSuperior->bv_val ));
330 #else
331                 Debug( LDAP_DEBUG_TRACE, 
332                         "bdb_modrdn: new parent \"%s\" requested...\n",
333                         newSuperior->bv_val, 0, 0 );
334 #endif
335
336                 if ( newSuperior->bv_len ) {
337                         np_dn = newSuperior;
338                         np_ndn = nnewSuperior;
339
340                         /* newSuperior == oldParent?, if so ==> ERROR */
341                         /* newSuperior == entry being moved?, if so ==> ERROR */
342                         /* Get Entry with dn=newSuperior. Does newSuperior exist? */
343
344                         rc = bdb_dn2entry_r( be, ltid, nnewSuperior, &np, NULL, 0 );
345
346                         switch( rc ) {
347                         case 0:
348                         case DB_NOTFOUND:
349                                 break;
350                         case DB_LOCK_DEADLOCK:
351                         case DB_LOCK_NOTGRANTED:
352                                 goto retry;
353                         default:
354                                 rc = LDAP_OTHER;
355                                 text = "internal error";
356                                 goto return_results;
357                         }
358
359                         if( np == NULL) {
360 #ifdef NEW_LOGGING
361                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: newSup(ndn=%s) not here!\n", np_ndn->bv_val ));
362 #else
363                                 Debug( LDAP_DEBUG_TRACE,
364                                         "bdb_modrdn: newSup(ndn=%s) not here!\n",
365                                         np_ndn->bv_val, 0, 0);
366 #endif
367                                 rc = LDAP_OTHER;
368                                 goto return_results;
369                         }
370
371 #ifdef NEW_LOGGING
372                         LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: wr to new parent OK np=%p, id=%ld\n", np, (long) np->e_id ));
373 #else
374                         Debug( LDAP_DEBUG_TRACE,
375                                 "bdb_modrdn: wr to new parent OK np=%p, id=%ld\n",
376                                 np, (long) np->e_id, 0 );
377 #endif
378
379                         /* check newSuperior for "children" acl */
380                         if ( !access_allowed( be, conn, op, np, children, NULL, ACL_WRITE, NULL ) ) {
381 #ifdef NEW_LOGGING
382                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: no wr to newSup children\n" ));
383 #else
384                                 Debug( LDAP_DEBUG_TRACE,
385                                         "bdb_modrdn: no wr to newSup children\n",
386                                         0, 0, 0 );
387 #endif
388                                 rc = LDAP_INSUFFICIENT_ACCESS;
389                                 goto return_results;
390                         }
391
392 #ifdef BDB_ALIASES
393                         if ( is_entry_alias( np ) ) {
394                                 /* parent is an alias, don't allow add */
395 #ifdef NEW_LOGGING
396                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: entry is alias\n" ));
397 #else
398                                 Debug( LDAP_DEBUG_TRACE, "bdb_modrdn: entry is alias\n",
399                                         0, 0, 0 );
400 #endif
401
402                                 rc = LDAP_ALIAS_PROBLEM;
403                                 goto return_results;
404                         }
405 #endif
406
407                         if ( is_entry_referral( np ) ) {
408                                 /* parent is a referral, don't allow add */
409 #ifdef NEW_LOGGING
410                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "==>bdb_modrdn: entry is referral\n" ));
411 #else
412                                 Debug( LDAP_DEBUG_TRACE, "bdb_modrdn: entry is referral\n",
413                                         0, 0, 0 );
414 #endif
415
416                                 rc = LDAP_OPERATIONS_ERROR;
417                                 goto return_results;
418                         }
419
420                 } else {
421                         if ( isroot == -1 ) {
422                                 isroot = be_isroot( be, &op->o_ndn );
423                         }
424                         
425                         np_dn = NULL;
426
427                         /* no parent, modrdn entry directly under root */
428                         if ( ! isroot ) {
429                                 if ( be_issuffix( be, (struct berval *)&slap_empty_bv )
430                                         || be_isupdate( be, &op->o_ndn ) ) {
431                                         np = (Entry *)&slap_entry_root;
432
433                                         /* check parent for "children" acl */
434                                         rc = access_allowed( be, conn, op, np,
435                                                 children, NULL, ACL_WRITE, NULL );
436
437                                         np = NULL;
438
439                                         if ( ! rc )
440                                         {
441 #ifdef NEW_LOGGING
442                                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "==>bdb_modrdn: no access to superior\n" ));
443 #else
444                                                 Debug( LDAP_DEBUG_TRACE, 
445                                                         "no access to new superior\n", 
446                                                         0, 0, 0 );
447 #endif
448                                                 send_ldap_result( conn, op, 
449                                                         LDAP_INSUFFICIENT_ACCESS,
450                                                         NULL, NULL, NULL, NULL );
451                                                 goto return_results;
452                                         }
453
454 #ifdef NEW_LOGGING
455                                         LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "bdb_modrdn: wr to children entry \"\" OK\n" ));
456 #else
457                                         Debug( LDAP_DEBUG_TRACE,
458                                                 "bdb_modrdn: wr to children of entry \"\" OK\n",
459                                                 0, 0, 0 );
460 #endif
461                 
462                                 } else {
463 #ifdef NEW_LOGGING
464                                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: new superior=\"\", not root & \"\" is not suffix\n" ));
465 #else
466                                         Debug( LDAP_DEBUG_TRACE,
467                                                 "bdb_modrdn: new superior=\"\", not root "
468                                                 "& \"\" is not suffix\n",
469                                                 0, 0, 0);
470 #endif
471                                         rc = LDAP_INSUFFICIENT_ACCESS;
472                                         goto return_results;
473                                 }
474                         }
475
476 #ifdef NEW_LOGGING
477                         LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "bdb_modrdn: new superior=\"\"\n" ));
478 #else
479                         Debug( LDAP_DEBUG_TRACE,
480                                 "bdb_modrdn: new superior=\"\"\n",
481                                 0, 0, 0 );
482 #endif
483                 }
484
485 #ifdef NEW_LOGGING
486                 LDAP_LOG (( "modrdn", LDAP_LEVEL_DETAIL1, "bdb_modrdn: wr to new parent's children OK\n" ));
487 #else
488                 Debug( LDAP_DEBUG_TRACE,
489                         "bdb_modrdn: wr to new parent's children OK\n",
490                         0, 0, 0 );
491 #endif
492
493                 new_parent_dn = np_dn;
494         }
495         
496         /* Build target dn and make sure target entry doesn't exist already. */
497         build_new_dn( &new_dn, new_parent_dn, newrdn ); 
498
499         dnNormalize2( NULL, &new_dn, &new_ndn );
500
501 #ifdef NEW_LOGGING
502         LDAP_LOG (( "modrdn", LDAP_LEVEL_RESULTS, "bdb_modrdn: new ndn=%s\n", new_ndn.bv_val ));
503 #else
504         Debug( LDAP_DEBUG_TRACE, "bdb_modrdn: new ndn=%s\n",
505                 new_ndn.bv_val, 0, 0 );
506 #endif
507
508         rc = bdb_dn2id ( be, ltid, &new_ndn, &id );
509         switch( rc ) {
510         case DB_LOCK_DEADLOCK:
511         case DB_LOCK_NOTGRANTED:
512                 goto retry;
513         case DB_NOTFOUND:
514                 break;
515         case 0:
516                 rc = LDAP_ALREADY_EXISTS;
517                 goto return_results;
518         default:
519                 rc = LDAP_OTHER;
520                 text = "internal error";
521                 goto return_results;
522         }
523
524 #ifdef NEW_LOGGING
525         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: new ndn=%s does not exist\n", new_ndn.bv_val ));
526 #else
527         Debug( LDAP_DEBUG_TRACE,
528                 "bdb_modrdn: new ndn=%s does not exist\n",
529                 new_ndn.bv_val, 0, 0 );
530 #endif
531
532         /* Get attribute type and attribute value of our new rdn, we will
533          * need to add that to our new entry
534          */
535         if ( ldap_bv2rdn( newrdn, &new_rdn, (char **)&text,
536                 LDAP_DN_FORMAT_LDAP ) )
537         {
538 #ifdef NEW_LOGGING
539                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: can't figure out type(s)/values(s) of newrdn\n" ));
540 #else
541                 Debug( LDAP_DEBUG_TRACE,
542                         "bdb_modrdn: can't figure out type(s)/values(s) "
543                         "of newrdn\n", 0, 0, 0 );
544 #endif
545                 rc = LDAP_OPERATIONS_ERROR;
546                 text = "unknown type(s) used in RDN";
547                 goto return_results;            
548         }
549
550 #ifdef NEW_LOGGING
551         LDAP_LOG (( "modrdn", LDAP_LEVEL_RESULTS, "bdb_modrdn: new_rdn_type=\"%s\", new_rdn_val=\"%s\"\n", new_rdn[0][0]->la_attr.bv_val, new_rdn[0][0]->la_value.bv_val ));
552 #else
553         Debug( LDAP_DEBUG_TRACE,
554                 "bdb_modrdn: new_rdn_type=\"%s\", new_rdn_val=\"%s\"\n",
555                 new_rdn[0][0]->la_attr.bv_val, new_rdn[0][0]->la_value.bv_val, 0 );
556 #endif
557
558         if ( ldap_bv2rdn( dn, &old_rdn, (char **)&text,
559                 LDAP_DN_FORMAT_LDAP ) )
560         {
561 #ifdef NEW_LOGGING
562                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: can't figure out type(s)/values(s) of old_rdn\n" ));
563 #else
564                 Debug( LDAP_DEBUG_TRACE,
565                         "bdb_back_modrdn: can't figure out the old_rdn "
566                         "type(s)/value(s)\n", 0, 0, 0 );
567 #endif
568                 rc = LDAP_OTHER;
569                 text = "cannot parse RDN from old DN";
570                 goto return_results;            
571         }
572
573 #if 0
574         if ( newSuperior == NULL
575                 && charray_strcasecmp( ( const char ** )old_rdn_types, 
576                                 ( const char ** )new_rdn_types ) != 0 ) {
577                 /* Not a big deal but we may say something */
578 #ifdef NEW_LOGGING
579                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: old_rdn_type(s)=%s, new_rdn_type(s)=%s do not match\n", old_rdn_types[ 0 ], new_rdn_types[ 0 ] ));
580 #else
581                 Debug( LDAP_DEBUG_TRACE,
582                         "bdb_modrdn: old_rdn_type(s)=%s, new_rdn_type(s)=%s "
583                         "do not match\n", 
584                         old_rdn_types[ 0 ], new_rdn_types[ 0 ], 0 );
585 #endif
586         }               
587 #endif
588
589         /* Add new attribute values to the entry */
590         for ( a_cnt = 0; new_rdn[0][ a_cnt ]; a_cnt++ ) {
591                 int                     rc;
592                 AttributeDescription    *desc = NULL;
593                 Modifications           *mod_tmp;
594
595                 rc = slap_bv2ad( &new_rdn[0][ a_cnt ]->la_attr, &desc, &text );
596
597                 if ( rc != LDAP_SUCCESS ) {
598 #ifdef NEW_LOGGING
599                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: %s: %s (new)\n", text, new_rdn[0][a_cnt]->la_attr.bv_val ));
600 #else
601                         Debug( LDAP_DEBUG_TRACE,
602                                 "bdb_modrdn: %s: %s (new)\n",
603                                 text, new_rdn[0][ a_cnt ]->la_attr.bv_val, 0 );
604 #endif
605                         goto return_results;            
606                 }
607
608                 /* ACL check of newly added attrs */
609                 if ( !access_allowed( be, conn, op, e, desc,
610                         &new_rdn[0][ a_cnt ]->la_value, ACL_WRITE, NULL ) ) {
611 #ifdef NEW_LOGGING
612                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: access to attr \"%s\" (new) not allowed\n", new_rdn[0][a_cnt]->la_attr.bv_val ));
613 #else
614                         Debug( LDAP_DEBUG_TRACE,
615                                 "bdb_modrdn: access to attr \"%s\" "
616                                 "(new) not allowed\n", 
617                                 new_rdn[0][ a_cnt ]->la_attr.bv_val, 0, 0 );
618 #endif
619                         rc = LDAP_INSUFFICIENT_ACCESS;
620                         goto return_results;
621                 }
622
623                 /* Apply modification */
624                 mod_tmp = ( Modifications * )ch_malloc( sizeof( Modifications )
625                         + 2 * sizeof( struct berval ) );
626                 mod_tmp->sml_desc = desc;
627                 mod_tmp->sml_bvalues = ( BerVarray )( mod_tmp + 1 );
628                 mod_tmp->sml_bvalues[ 0 ] = new_rdn[0][ a_cnt ]->la_value;
629                 mod_tmp->sml_bvalues[ 1 ].bv_val = NULL;
630                 mod_tmp->sml_op = SLAP_MOD_SOFTADD;
631                 mod_tmp->sml_next = mod;
632                 mod = mod_tmp;
633         }
634
635         /* Remove old rdn value if required */
636         if ( deleteoldrdn ) {
637                 /* Get value of old rdn */
638                 if ( old_rdn == NULL) {
639 #ifdef NEW_LOGGING
640                         LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: can't figure out old RDN values(s) from old RDN\n" ));
641 #else
642                         Debug( LDAP_DEBUG_TRACE,
643                                 "bdb_modrdn: can't figure out old RDN value(s) "
644                                 "from old RDN\n", 0, 0, 0 );
645 #endif
646                         rc = LDAP_OTHER;
647                         text = "could not parse value(s) from old RDN";
648                         goto return_results;            
649                 }
650
651                 for ( d_cnt = 0; old_rdn[0][ d_cnt ]; d_cnt++ ) {
652                         int                     rc;
653                         AttributeDescription    *desc = NULL;
654                         Modifications           *mod_tmp;
655
656                         rc = slap_bv2ad( &old_rdn[0][ d_cnt ]->la_attr,
657                                         &desc, &text );
658
659                         if ( rc != LDAP_SUCCESS ) {
660 #ifdef NEW_LOGGING
661                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: %s: %s (old)\n", text, old_rdn[0][d_cnt]->la_attr.bv_val ));
662 #else
663                                 Debug( LDAP_DEBUG_TRACE,
664                                         "bdb_modrdn: %s: %s (old)\n",
665                                         text, old_rdn[0][ d_cnt ]->la_attr.bv_val, 0 );
666 #endif
667                                 goto return_results;            
668                         }
669
670                         /* ACL check of newly added attrs */
671                         if ( !access_allowed( be, conn, op, e, desc,
672                                 &old_rdn[0][d_cnt]->la_value, ACL_WRITE, NULL ) ) {
673 #ifdef NEW_LOGGING
674                                 LDAP_LOG (( "modrdn", LDAP_LEVEL_ERR, "bdb_modrdn: access to attr \"%s\" (old) not allowed\n", old_rdn[0][d_cnt]->la_attr.bv_val ));
675 #else
676                                 Debug( LDAP_DEBUG_TRACE,
677                                         "bdb_modrdn: access to attr \"%s\" "
678                                         "(old) not allowed\n", 
679                                         old_rdn[0][ d_cnt ]->la_attr.bv_val, 0, 0 );
680 #endif
681                                 rc = LDAP_INSUFFICIENT_ACCESS;
682                                 goto return_results;
683                         }
684
685                         /* Apply modification */
686                         mod_tmp = ( Modifications * )ch_malloc( sizeof( Modifications )
687                                 + 2 * sizeof ( struct berval ) );
688                         mod_tmp->sml_desc = desc;
689                         mod_tmp->sml_bvalues = ( BerVarray )(mod_tmp+1);
690                         mod_tmp->sml_bvalues[ 0 ] = old_rdn[0][ d_cnt ]->la_value;
691                         mod_tmp->sml_bvalues[ 1 ].bv_val = NULL;
692                         mod_tmp->sml_op = LDAP_MOD_DELETE;
693                         mod_tmp->sml_next = mod;
694                         mod = mod_tmp;
695                 }
696         }
697         
698         /* delete old one */
699         rc = bdb_dn2id_delete( be, ltid, p_ndn.bv_val, e );
700         if ( rc != 0 ) {
701                 switch( rc ) {
702                 case DB_LOCK_DEADLOCK:
703                 case DB_LOCK_NOTGRANTED:
704                         goto retry;
705                 }
706                 rc = LDAP_OTHER;
707                 text = "DN index delete fail";
708                 goto return_results;
709         }
710
711         (void) bdb_cache_delete_entry(&bdb->bi_cache, e);
712
713         /* Binary format uses a single contiguous block, cannot
714          * free individual fields. Leave new_dn/new_ndn set so
715          * they can be individually freed later.
716          */
717         e->e_name = new_dn;
718         e->e_nname = new_ndn;
719
720         new_dn.bv_val = NULL;
721         new_ndn.bv_val = NULL;
722
723         /* add new one */
724         rc = bdb_dn2id_add( be, ltid, np_ndn, e );
725         if ( rc != 0 ) {
726                 switch( rc ) {
727                 case DB_LOCK_DEADLOCK:
728                 case DB_LOCK_NOTGRANTED:
729                         goto retry;
730                 }
731                 rc = LDAP_OTHER;
732                 text = "DN index add failed";
733                 goto return_results;
734         }
735
736         /* modify entry */
737         rc = bdb_modify_internal( be, conn, op, ltid, &mod[0], e,
738                 &text, textbuf, textlen );
739
740         if( rc != LDAP_SUCCESS ) {
741                 switch( rc ) {
742                 case DB_LOCK_DEADLOCK:
743                 case DB_LOCK_NOTGRANTED:
744                         goto retry;
745                 }
746                 goto return_results;
747         }
748         
749         /* id2entry index */
750         rc = bdb_id2entry_update( be, ltid, e );
751         if ( rc != 0 ) {
752                 switch( rc ) {
753                 case DB_LOCK_DEADLOCK:
754                 case DB_LOCK_NOTGRANTED:
755                         goto retry;
756                 }
757                 rc = LDAP_OTHER;
758                 text = "entry update failed";
759                 goto return_results;
760         }
761
762         if( op->o_noop ) {
763                 if(( rc=TXN_ABORT( ltid )) != 0 ) {
764                         text = "txn_abort (no-op) failed";
765                 } else {
766                         rc = LDAP_SUCCESS;
767                 }
768
769         } else {
770                 char gid[DB_XIDDATASIZE];
771
772                 snprintf( gid, sizeof( gid ), "%s-%08lx-%08lx",
773                         bdb_uuid.bv_val, (long) op->o_connid, (long) op->o_opid );
774
775                 if(( rc=TXN_PREPARE( ltid, gid )) != 0 ) {
776                         text = "txn_prepare failed";
777                 } else {
778                         if( bdb_cache_update_entry(&bdb->bi_cache, e) == -1 ) {
779                                 if(( rc=TXN_ABORT( ltid )) != 0 ) {
780                                         text ="cache update & txn_abort failed";
781                                 } else {
782                                         rc = LDAP_OTHER;
783                                         text = "cache update failed";
784                                 }
785
786                         } else {
787                                 if(( rc=TXN_COMMIT( ltid, 0 )) != 0 ) {
788                                         text = "txn_commit failed";
789                                 } else {
790                                         rc = LDAP_SUCCESS;
791                                 }
792                         }
793                 }
794         }
795  
796         ltid = NULL;
797         op->o_private = NULL;
798  
799         if( rc == LDAP_SUCCESS ) {
800 #ifdef NEW_LOGGING
801                 LDAP_LOG (( "modrdn", LDAP_LEVEL_RESULTS, "bdb_modrdn: rdn modified%s id=%08lx dn=\"%s\"\n", op->o_noop ? " (no-op)" : "", e->e_id, e->e_dn ));
802 #else
803                 Debug(LDAP_DEBUG_TRACE,
804                         "bdb_modrdn: rdn modified%s id=%08lx dn=\"%s\"\n",
805                         op->o_noop ? " (no-op)" : "", e->e_id, e->e_dn )
806 #endif
807                 text = NULL;
808                 bdb_cache_entry_commit( e );
809
810         } else {
811 #ifdef NEW_LOGGING
812                 LDAP_LOG (( "modrdn", LDAP_LEVEL_RESULTS, "bdb_modrdn: %s : %s (%d)\n", text, db_strerror(rc), rc ));
813 #else
814                 Debug( LDAP_DEBUG_TRACE, "bdb_add: %s : %s (%d)\n",
815                         text, db_strerror(rc), rc );
816 #endif
817                 rc = LDAP_OTHER;
818         }
819
820 return_results:
821         send_ldap_result( conn, op, rc,
822                 NULL, text, NULL, NULL );
823
824         if( rc == LDAP_SUCCESS && bdb->bi_txn_cp ) {
825                 ldap_pvt_thread_yield();
826                 TXN_CHECKPOINT( bdb->bi_dbenv,
827                         bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
828         }
829
830 done:
831         if( new_dn.bv_val != NULL ) free( new_dn.bv_val );
832         if( new_ndn.bv_val != NULL ) free( new_ndn.bv_val );
833
834         /* LDAP v2 supporting correct attribute handling. */
835         if( new_rdn != NULL ) ldap_rdnfree( new_rdn );
836         if( old_rdn != NULL ) ldap_rdnfree( old_rdn );
837         if( mod != NULL ) {
838                 Modifications *tmp;
839                 for (; mod; mod=tmp ) {
840                         tmp = mod->sml_next;
841                         free( mod );
842                 }
843         }
844
845         /* LDAP v3 Support */
846         if( np != NULL ) {
847                 /* free new parent and reader lock */
848                 bdb_cache_return_entry_r(&bdb->bi_cache, np);
849         }
850
851         if( p != NULL ) {
852                 /* free parent and reader lock */
853                 bdb_cache_return_entry_r(&bdb->bi_cache, p);
854         }
855
856         /* free entry */
857         if( e != NULL ) {
858                 bdb_cache_return_entry_w( &bdb->bi_cache, e );
859         }
860
861         if( ltid != NULL ) {
862                 TXN_ABORT( ltid );
863                 op->o_private = NULL;
864         }
865
866         return rc;
867 }