1 /* back-ldap.h - ldap backend header file */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5 * Copyright 1999-2004 The OpenLDAP Foundation.
6 * Portions Copyright 2000-2003 Pierangelo Masarati.
7 * Portions Copyright 1999-2003 Howard Chu.
10 * Redistribution and use in source and binary forms, with or without
11 * modification, are permitted only as authorized by the OpenLDAP
14 * A copy of this license is available in the file LICENSE in the
15 * top-level directory of the distribution or, alternatively, at
16 * <http://www.OpenLDAP.org/license.html>.
19 * This work was initially developed by the Howard Chu for inclusion
20 * in OpenLDAP Software and subsequently enhanced by Pierangelo
27 #include "proto-ldap.h"
29 /* String rewrite library */
32 #endif /* ENABLE_REWRITE */
35 #define LDAP_BACK_PROXY_AUTHZ
42 struct slap_backend_db;
45 struct slap_conn *conn;
48 struct berval bound_dn;
49 struct berval local_dn;
51 ldap_pvt_thread_mutex_t lc_mutex;
71 struct rewrite_info *rwm_rw;
72 #else /* !ENABLE_REWRITE */
73 /* some time the suffix massaging without librewrite
75 BerVarray rwm_suffix_massage;
76 #endif /* !ENABLE_REWRITE */
79 * Attribute/objectClass mapping
81 struct ldapmap rwm_oc;
82 struct ldapmap rwm_at;
86 struct berval la_authcID;
87 struct berval la_authcDN;
88 struct berval la_passwd;
90 struct berval la_authzID;
94 struct berval la_sasl_mech;
95 struct berval la_sasl_realm;
97 #define LDAP_BACK_AUTH_NONE 0x00
98 #define LDAP_BACK_AUTH_NATIVE_AUTHZ 0x01
105 struct ldapauth acl_la;
106 #define acl_authcDN acl_la.la_authcDN
107 #define acl_passwd acl_la.la_passwd
109 #ifdef LDAP_BACK_PROXY_AUTHZ
110 /* ID assert stuff */
112 #define LDAP_BACK_IDASSERT_LEGACY 0
113 #define LDAP_BACK_IDASSERT_NOASSERT 1
114 #define LDAP_BACK_IDASSERT_ANONYMOUS 2
115 #define LDAP_BACK_IDASSERT_SELF 3
116 #define LDAP_BACK_IDASSERT_OTHERDN 4
117 #define LDAP_BACK_IDASSERT_OTHERID 5
119 struct ldapauth idassert_la;
120 #define idassert_authcID idassert_la.la_authcID
121 #define idassert_authcDN idassert_la.la_authcDN
122 #define idassert_passwd idassert_la.la_passwd
123 #define idassert_authzID idassert_la.la_authzID
124 #define idassert_authmethod idassert_la.la_authmethod
125 #define idassert_sasl_flags idassert_la.la_sasl_flags
126 #define idassert_sasl_mech idassert_la.la_sasl_mech
127 #define idassert_sasl_realm idassert_la.la_sasl_realm
128 #define idassert_flags idassert_la.la_flags
129 BerVarray idassert_authz;
131 int idassert_ppolicy;
132 /* end of ID assert stuff */
133 #endif /* LDAP_BACK_PROXY_AUTHZ */
135 ldap_pvt_thread_mutex_t conn_mutex;
140 #ifdef ENABLE_REWRITE
141 struct rewrite_info *rwinfo;
142 #else /* !ENABLE_REWRITE */
143 BerVarray suffix_massage;
144 #endif /* !ENABLE_REWRITE */
146 struct ldapmap oc_map;
147 struct ldapmap at_map;
150 struct ldaprwmap rwmap;
153 /* Whatever context ldap_back_dn_massage needs... */
154 typedef struct dncookie {
155 struct ldaprwmap *rwmap;
157 #ifdef ENABLE_REWRITE
167 int ldap_back_freeconn( Operation *op, struct ldapconn *lc );
168 struct ldapconn *ldap_back_getconn(struct slap_op *op, struct slap_rep *rs);
169 int ldap_back_dobind(struct ldapconn *lc, Operation *op, SlapReply *rs);
170 int ldap_back_retry(struct ldapconn *lc, Operation *op, SlapReply *rs);
171 int ldap_back_map_result(SlapReply *rs);
172 int ldap_back_op_result(struct ldapconn *lc, Operation *op, SlapReply *rs,
173 ber_int_t msgid, int sendok);
174 int back_ldap_LTX_init_module(int argc, char *argv[]);
176 int ldap_back_dn_massage(dncookie *dc, struct berval *dn,
179 extern int ldap_back_conn_cmp( const void *c1, const void *c2);
180 extern int ldap_back_conn_dup( void *c1, void *c2 );
181 extern void ldap_back_conn_free( void *c );
183 /* attributeType/objectClass mapping */
184 int mapping_cmp (const void *, const void *);
185 int mapping_dup (void *, void *);
187 void ldap_back_map_init ( struct ldapmap *lm, struct ldapmapping ** );
188 void ldap_back_map ( struct ldapmap *map, struct berval *s, struct berval *m,
190 #define BACKLDAP_MAP 0
191 #define BACKLDAP_REMAP 1
193 ldap_back_map_filter(
194 struct ldapmap *at_map,
195 struct ldapmap *oc_map,
202 struct ldapmap *at_map,
208 extern int ldap_back_map_config(
209 struct ldapmap *oc_map,
210 struct ldapmap *at_map,
217 ldap_back_filter_map_rewrite(
223 /* suffix massaging by means of librewrite */
224 #ifdef ENABLE_REWRITE
225 extern int suffix_massage_config( struct rewrite_info *info,
226 struct berval *pvnc, struct berval *nvnc,
227 struct berval *prnc, struct berval *nrnc);
228 #endif /* ENABLE_REWRITE */
229 extern int ldap_dnattr_rewrite( dncookie *dc, BerVarray a_vals );
230 extern int ldap_dnattr_result_rewrite( dncookie *dc, BerVarray a_vals );
232 #ifdef LDAP_BACK_PROXY_AUTHZ
234 ldap_back_proxy_authz_ctrl(
238 LDAPControl ***pctrls );
239 #endif /* LDAP_BACK_PROXY_AUTHZ */
243 #endif /* SLAPD_LDAP_H */