1 /* search.c - DNS SRV backend search function */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5 * Copyright 2000-2006 The OpenLDAP Foundation.
6 * Portions Copyright 2000-2003 Kurt D. Zeilenga.
9 * Redistribution and use in source and binary forms, with or without
10 * modification, are permitted only as authorized by the OpenLDAP
13 * A copy of this license is available in the file LICENSE in the
14 * top-level directory of the distribution or, alternatively, at
15 * <http://www.OpenLDAP.org/license.html>.
18 * This work was originally developed by Kurt D. Zeilenga for inclusion
19 * in OpenLDAP Software.
26 #include <ac/socket.h>
27 #include <ac/string.h>
31 #include "proto-dnssrv.h"
41 char *hostlist = NULL;
44 struct berval nrefdn = BER_BVNULL;
45 BerVarray urls = NULL;
50 if ( BER_BVISEMPTY( &op->o_req_ndn ) ) {
52 /* FIXME: need some means to determine whether the database
53 * is a glue instance; if we got here with empty DN, then
54 * we passed this same test in dnssrv_back_referrals() */
55 if ( !SLAP_GLUE_INSTANCE( op->o_bd ) ) {
56 rs->sr_err = LDAP_UNWILLING_TO_PERFORM;
57 rs->sr_text = "DNS SRV operation upon null (empty) DN disallowed";
60 rs->sr_err = LDAP_SUCCESS;
63 #endif /* LDAP_DEVEL */
66 manageDSAit = get_manageDSAit( op );
68 * FIXME: we may return a referral if manageDSAit is not set
71 send_ldap_error( op, rs, LDAP_UNWILLING_TO_PERFORM,
72 "manageDSAit must be set" );
76 if( ldap_dn2domain( op->o_req_dn.bv_val, &domain ) || domain == NULL ) {
77 rs->sr_err = LDAP_REFERRAL;
78 rs->sr_ref = default_referral;
79 send_ldap_result( op, rs );
84 Debug( LDAP_DEBUG_TRACE, "DNSSRV: dn=\"%s\" -> domain=\"%s\"\n",
85 op->o_req_dn.bv_len ? op->o_req_dn.bv_val : "", domain, 0 );
87 if( ( rc = ldap_domain2hostlist( domain, &hostlist ) ) ) {
88 Debug( LDAP_DEBUG_TRACE, "DNSSRV: domain2hostlist returned %d\n",
90 send_ldap_error( op, rs, LDAP_NO_SUCH_OBJECT,
91 "no DNS SRV RR available for DN" );
95 hosts = ldap_str2charray( hostlist, " " );
98 Debug( LDAP_DEBUG_TRACE, "DNSSRV: str2charrary error\n", 0, 0, 0 );
99 send_ldap_error( op, rs, LDAP_OTHER,
100 "problem processing DNS SRV records for DN" );
104 for( i=0; hosts[i] != NULL; i++) {
107 url.bv_len = STRLENOF( "ldap://" ) + strlen(hosts[i]);
108 url.bv_val = ch_malloc( url.bv_len + 1 );
110 strcpy( url.bv_val, "ldap://" );
111 strcpy( &url.bv_val[STRLENOF( "ldap://" )], hosts[i] );
113 if( ber_bvarray_add( &urls, &url ) < 0 ) {
115 send_ldap_error( op, rs, LDAP_OTHER,
116 "problem processing DNS SRV records for DN" );
121 Statslog( LDAP_DEBUG_STATS,
122 "%s DNSSRV p=%d dn=\"%s\" url=\"%s\"\n",
123 op->o_log_prefix, op->o_protocol,
124 op->o_req_dn.bv_len ? op->o_req_dn.bv_val : "", urls[0].bv_val, 0 );
126 Debug( LDAP_DEBUG_TRACE,
127 "DNSSRV: ManageDSAit scope=%d dn=\"%s\" -> url=\"%s\"\n",
128 op->oq_search.rs_scope,
129 op->o_req_dn.bv_len ? op->o_req_dn.bv_val : "",
132 rc = ldap_domain2dn(domain, &refdn);
134 if( rc != LDAP_SUCCESS ) {
135 send_ldap_error( op, rs, LDAP_OTHER,
136 "DNS SRV problem processing manageDSAit control" );
142 bv.bv_len = strlen( refdn );
144 rc = dnNormalize( 0, NULL, NULL, &bv, &nrefdn, op->o_tmpmemctx );
145 if( rc != LDAP_SUCCESS ) {
146 send_ldap_error( op, rs, LDAP_OTHER,
147 "DNS SRV problem processing manageDSAit control" );
152 if( !dn_match( &nrefdn, &op->o_req_ndn ) ) {
153 /* requested dn is subordinate */
155 Debug( LDAP_DEBUG_TRACE,
156 "DNSSRV: dn=\"%s\" subordinate to refdn=\"%s\"\n",
157 op->o_req_dn.bv_len ? op->o_req_dn.bv_val : "",
158 refdn == NULL ? "" : refdn,
161 rs->sr_matched = refdn;
162 rs->sr_err = LDAP_NO_SUCH_OBJECT;
163 send_ldap_result( op, rs );
164 rs->sr_matched = NULL;
166 } else if ( op->oq_search.rs_scope == LDAP_SCOPE_ONELEVEL ) {
167 send_ldap_error( op, rs, LDAP_SUCCESS, NULL );
171 AttributeDescription *ad_objectClass
172 = slap_schema.si_ad_objectClass;
173 AttributeDescription *ad_ref = slap_schema.si_ad_ref;
174 e.e_name.bv_val = strdup( op->o_req_dn.bv_val );
175 e.e_name.bv_len = op->o_req_dn.bv_len;
176 e.e_nname.bv_val = strdup( op->o_req_ndn.bv_val );
177 e.e_nname.bv_len = op->o_req_ndn.bv_len;
182 attr_merge_one( &e, ad_objectClass, &slap_schema.si_oc_referral->soc_cname, NULL );
183 attr_merge_one( &e, ad_objectClass, &slap_schema.si_oc_extensibleObject->soc_cname, NULL );
191 p = strchr( bv.bv_val, '.' );
193 if ( p == bv.bv_val ) {
196 } else if ( p != NULL ) {
197 bv.bv_len = p - bv.bv_val;
200 bv.bv_len = strlen( bv.bv_val );
203 attr_merge_normalize_one( &e, ad_dc, &bv, NULL );
206 if ( ad_associatedDomain ) {
209 ber_str2bv( domain, 0, 0, &bv );
210 attr_merge_normalize_one( &e, ad_associatedDomain, &bv, NULL );
213 attr_merge_normalize_one( &e, ad_ref, urls, NULL );
215 rc = test_filter( op, &e, op->oq_search.rs_filter );
217 if( rc == LDAP_COMPARE_TRUE ) {
219 rs->sr_attrs = op->oq_search.rs_attrs;
220 rs->sr_flags = REP_ENTRY_MODIFIABLE;
221 send_search_entry( op, rs );
228 rs->sr_err = LDAP_SUCCESS;
229 send_ldap_result( op, rs );
232 if ( refdn ) free( refdn );
233 if ( nrefdn.bv_val ) free( nrefdn.bv_val );
236 if( domain != NULL ) ch_free( domain );
237 if( hostlist != NULL ) ch_free( hostlist );
238 if( hosts != NULL ) ldap_charray_free( hosts );
239 if( urls != NULL ) ber_bvarray_free( urls );