1 /* compare.c - monitor backend compare routine */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5 * Copyright 2001-2006 The OpenLDAP Foundation.
6 * Portions Copyright 2001-2003 Pierangelo Masarati.
9 * Redistribution and use in source and binary forms, with or without
10 * modification, are permitted only as authorized by the OpenLDAP
13 * A copy of this license is available in file LICENSE in the
14 * top-level directory of the distribution or, alternatively, at
15 * <http://www.OpenLDAP.org/license.html>.
18 * This work was initially developed by Pierangelo Masarati for inclusion
19 * in OpenLDAP Software.
27 #include "back-monitor.h"
30 monitor_back_compare( struct slap_op *op, struct slap_rep *rs)
32 monitor_info_t *mi = ( monitor_info_t * ) op->o_bd->be_private;
33 Entry *e, *matched = NULL;
37 /* get entry with reader lock */
38 monitor_cache_dn2entry( op, rs, &op->o_req_ndn, &e, &matched );
40 rs->sr_err = LDAP_NO_SUCH_OBJECT;
42 #ifdef SLAP_ACL_HONOR_DISCLOSE
43 if ( !access_allowed_mask( op, matched,
44 slap_schema.si_ad_entry,
45 NULL, ACL_DISCLOSE, NULL, NULL ) )
49 #endif /* SLAP_ACL_HONOR_DISCLOSE */
51 rs->sr_matched = matched->e_dn;
54 send_ldap_result( op, rs );
56 monitor_cache_release( mi, matched );
57 rs->sr_matched = NULL;
63 rs->sr_err = access_allowed( op, e, op->oq_compare.rs_ava->aa_desc,
64 &op->oq_compare.rs_ava->aa_value, ACL_COMPARE, NULL );
66 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
70 rs->sr_err = LDAP_NO_SUCH_ATTRIBUTE;
72 for ( a = attrs_find( e->e_attrs, op->oq_compare.rs_ava->aa_desc );
74 a = attrs_find( a->a_next, op->oq_compare.rs_ava->aa_desc )) {
75 rs->sr_err = LDAP_COMPARE_FALSE;
77 if ( value_find_ex( op->oq_compare.rs_ava->aa_desc,
78 SLAP_MR_ATTRIBUTE_VALUE_NORMALIZED_MATCH |
79 SLAP_MR_ASSERTED_VALUE_NORMALIZED_MATCH,
80 a->a_nvals, &op->oq_compare.rs_ava->aa_value,
81 op->o_tmpmemctx ) == 0 )
83 rs->sr_err = LDAP_COMPARE_TRUE;
91 case LDAP_COMPARE_FALSE:
92 case LDAP_COMPARE_TRUE:
96 case LDAP_NO_SUCH_ATTRIBUTE:
100 #ifdef SLAP_ACL_HONOR_DISCLOSE
101 if ( !access_allowed_mask( op, e, slap_schema.si_ad_entry,
102 NULL, ACL_DISCLOSE, NULL, NULL ) )
104 rs->sr_err = LDAP_NO_SUCH_OBJECT;
106 #endif /* SLAP_ACL_HONOR_DISCLOSE */
110 send_ldap_result( op, rs );
113 monitor_cache_release( mi, e );