]> git.sur5r.net Git - openldap/blob - servers/slapd/daemon.c
bug fix
[openldap] / servers / slapd / daemon.c
1 /* $OpenLDAP$ */
2 /*
3  * Copyright 1998-2000 The OpenLDAP Foundation, All Rights Reserved.
4  * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
5  */
6
7 #include "portable.h"
8
9 #include <stdio.h>
10
11 #include <ac/ctype.h>
12 #include <ac/errno.h>
13 #include <ac/signal.h>
14 #include <ac/socket.h>
15 #include <ac/string.h>
16 #include <ac/time.h>
17 #include <ac/unistd.h>
18
19 #include "ldap_pvt.h"
20 #include "lutil.h"
21 #include "slap.h"
22
23 #ifdef HAVE_TCPD
24 #include <tcpd.h>
25
26 int allow_severity = LOG_INFO;
27 int deny_severity = LOG_NOTICE;
28 #endif /* TCP Wrappers */
29
30 #ifdef LDAP_PF_LOCAL
31 #include <sys/stat.h>
32 #endif /* LDAP_PF_LOCAL */
33
34 /* globals */
35 time_t starttime;
36 ber_socket_t dtblsize;
37
38 typedef union slap_sockaddr {
39         struct sockaddr sa_addr;
40         struct sockaddr_in sa_in_addr;
41 #ifdef LDAP_PF_INET6
42         struct sockaddr_in6 sa_in6_addr;
43 #endif
44 #ifdef LDAP_PF_LOCAL
45         struct sockaddr_un sa_un_addr;
46 #endif
47 } Sockaddr;
48
49 typedef struct slap_listener {
50         char* sl_url;
51         char* sl_name;
52 #ifdef HAVE_TLS
53         int             sl_is_tls;
54 #endif
55         ber_socket_t            sl_sd;
56         Sockaddr sl_sa;
57 #define sl_addr sl_sa.sa_in_addr
58 } Listener;
59
60 Listener **slap_listeners = NULL;
61
62 #define SLAPD_LISTEN 10
63
64 static ber_socket_t wake_sds[2];
65
66 #ifdef NO_THREADS
67 static int waking;
68 #define WAKE_LISTENER(w) \
69 ((w && !waking) ? tcp_write( wake_sds[1], "0", 1 ), waking=1 : 0)
70 #else
71 #define WAKE_LISTENER(w) \
72 do { if (w) tcp_write( wake_sds[1], "0", 1 ); } while(0)
73 #endif
74
75 #ifdef HAVE_NT_SERVICE_MANAGER
76 /* in nt_main.c */
77 extern ldap_pvt_thread_cond_t                   started_event;
78 extern int        is_NT_Service;
79 #endif
80
81 #ifndef HAVE_WINSOCK
82 static
83 #endif
84 volatile sig_atomic_t slapd_shutdown = 0;
85
86 static struct slap_daemon {
87         ldap_pvt_thread_mutex_t sd_mutex;
88
89         int sd_nactives;
90
91 #ifndef HAVE_WINSOCK
92         /* In winsock, accept() returns values higher than dtblsize
93                 so don't bother with this optimization */
94         int sd_nfds;
95 #endif
96
97         fd_set sd_actives;
98         fd_set sd_readers;
99         fd_set sd_writers;
100 } slap_daemon;
101
102
103
104 #ifdef HAVE_SLP
105 /*
106  * SLP related functions
107  */
108 #include <slp.h>
109
110 #define MAX_HOSTNAME_LEN 256
111 #define LDAP_SRVTYPE_PREFIX "service:ldap://"
112 static char** slapd_srvurls = 0;
113 static SLPHandle slapd_hslp = 0;
114
115 void slapd_slp_init( const char* urls ) {
116         int i;
117         struct hostent* he;
118         char hn[MAX_HOSTNAME_LEN];
119
120         slapd_srvurls = str2charray( urls, " " );
121
122         for( i=0; slapd_srvurls[i]!=NULL; i++ ) {
123                 if( strcmp( slapd_srvurls[i], "ldap:///" ) == 0) {
124                         /* INADDR_ANY urls should be marked up with host.domainname */
125                         if ( gethostname( hn, MAX_HOSTNAME_LEN ) == 0) {
126                                 he = gethostbyname( hn );
127                                 if( he ) {
128                                         slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
129                                                 strlen( he->h_name ) +
130                                                 strlen( LDAP_SRVTYPE_PREFIX ) + 1);
131                                         strcpy( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX );
132                                         strcat( slapd_srvurls[i], he->h_name );
133                                 }
134                         }
135                 }
136         }
137
138         /* open the SLP handle */
139         SLPOpen("en", 0, &slapd_hslp);
140 }
141
142 void slapd_slp_deinit() {
143         if ( slapd_srvurls ) {
144                 charray_free( slapd_srvurls );
145         }
146
147         /* close the SLP handle */
148         SLPClose( slapd_hslp );
149 }
150
151 void slapd_slp_regreport(
152         SLPHandle hslp,
153         SLPError errcode,
154         void* cookie )
155 {
156         /* empty report */
157 }
158
159 void slapd_slp_reg() {
160         int i;
161
162         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
163                 SLPReg( slapd_hslp,
164                         slapd_srvurls[i],
165                         SLP_LIFETIME_MAXIMUM,
166                         "ldap",
167                         "",
168                         1,
169                         slapd_slp_regreport,
170                         NULL );
171         }
172 }
173
174 void slapd_slp_dereg() {
175         int i;
176
177         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
178                 SLPDereg( slapd_hslp,
179                         slapd_srvurls[i],
180                         slapd_slp_regreport,
181                         NULL );
182         }
183 }
184 #endif /* HAVE_SLP */
185
186 /*
187  * Add a descriptor to daemon control
188  */
189 static void slapd_add(ber_socket_t s) {
190         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
191
192         assert( !FD_ISSET( s, &slap_daemon.sd_actives ));
193         assert( !FD_ISSET( s, &slap_daemon.sd_readers ));
194         assert( !FD_ISSET( s, &slap_daemon.sd_writers ));
195
196 #ifndef HAVE_WINSOCK
197         if (s >= slap_daemon.sd_nfds) {
198                 slap_daemon.sd_nfds = s + 1;
199         }
200 #endif
201
202         FD_SET( s, &slap_daemon.sd_actives );
203         FD_SET( s, &slap_daemon.sd_readers );
204
205 #ifdef NEW_LOGGING
206         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
207                    "slapd_add: added %ld%s%s\n",
208                    (long)s,
209                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
210                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" ));
211 #else
212         Debug( LDAP_DEBUG_CONNS, "daemon: added %ld%s%s\n",
213                 (long) s,
214             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
215                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
216 #endif
217         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
218 }
219
220 /*
221  * Remove the descriptor from daemon control
222  */
223 void slapd_remove(ber_socket_t s, int wake) {
224         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
225
226 #ifdef NEW_LOGGING
227         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
228                    "slapd_remove: removing %ld%s%s\n",
229                    (long) s,
230                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
231                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : ""  ));
232 #else
233         Debug( LDAP_DEBUG_CONNS, "daemon: removing %ld%s%s\n",
234                 (long) s,
235             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
236                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
237 #endif
238         FD_CLR( s, &slap_daemon.sd_actives );
239         FD_CLR( s, &slap_daemon.sd_readers );
240         FD_CLR( s, &slap_daemon.sd_writers );
241
242         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
243         WAKE_LISTENER(wake);
244 }
245
246 void slapd_clr_write(ber_socket_t s, int wake) {
247         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
248
249         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
250         FD_CLR( s, &slap_daemon.sd_writers );
251
252         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
253         WAKE_LISTENER(wake);
254 }
255
256 void slapd_set_write(ber_socket_t s, int wake) {
257         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
258
259         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
260         if (!FD_ISSET(s, &slap_daemon.sd_writers))
261             FD_SET( (unsigned) s, &slap_daemon.sd_writers );
262
263         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
264         WAKE_LISTENER(wake);
265 }
266
267 void slapd_clr_read(ber_socket_t s, int wake) {
268         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
269
270         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
271         FD_CLR( s, &slap_daemon.sd_readers );
272
273         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
274         WAKE_LISTENER(wake);
275 }
276
277 void slapd_set_read(ber_socket_t s, int wake) {
278         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
279
280         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
281         if (!FD_ISSET(s, &slap_daemon.sd_readers))
282             FD_SET( s, &slap_daemon.sd_readers );
283
284         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
285         WAKE_LISTENER(wake);
286 }
287
288 static void slapd_close(ber_socket_t s) {
289 #ifdef NEW_LOGGING
290         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
291                    "slapd_close: closing %ld\n", (long)s ));
292 #else
293         Debug( LDAP_DEBUG_CONNS, "daemon: closing %ld\n",
294                 (long) s, 0, 0 );
295 #endif
296         tcp_close(s);
297 }
298
299 static void slap_free_listener_addresses(struct sockaddr **sal)
300 {
301         struct sockaddr **sap;
302
303         if (sal == NULL) {
304                 return;
305         }
306
307         for (sap = sal; *sap != NULL; sap++) {
308                 ch_free(*sap);
309         }
310
311         ch_free(sal);
312 }
313
314 /* port = 0 indicates AF_LOCAL */
315 static int slap_get_listener_addresses(
316         const char *host,
317         unsigned short port,
318         struct sockaddr ***sal)
319 {
320         struct sockaddr **sap;
321 #ifdef HAVE_GETADDRINFO
322         struct addrinfo hints, *res, *sai;
323         int n, err;
324
325         memset( &hints, '\0', sizeof(hints) );
326         hints.ai_flags = AI_PASSIVE;
327         hints.ai_socktype = SOCK_STREAM;
328 #  ifdef LDAP_PF_LOCAL
329         if ( port == 0 ) {
330                 hints.ai_family = AF_LOCAL;
331                 /* host specifies a service in this case */
332                 if (err = getaddrinfo(NULL, host, &hints, &res)) {
333 #ifdef NEW_LOGGING
334                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
335                                    "slap_get_listener_addresses: getaddrinfo failed: %s\n",
336                                    AC_GAI_STRERROR(err) ));
337 #else
338                         Debug( LDAP_DEBUG_ANY, "daemon: getaddrinfo failed: %s\n",
339                                 AC_GAI_STRERROR(err), 0, 0);
340 #endif
341                         return -1;
342                 }
343         } else
344 #  endif
345         {
346                 char serv[7];
347
348                 snprintf(serv, sizeof serv, "%d", port);
349                 hints.ai_family = AF_UNSPEC;
350                 if (err = getaddrinfo(host, serv, &hints, &res)) {
351 #ifdef NEW_LOGGING
352                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
353                                    "slap_get_listener_addresses: getaddrinfo failed: %s\n",
354                                    AC_GAI_STRERROR(err) ));
355 #else
356                         Debug( LDAP_DEBUG_ANY, "daemon: getaddrinfo failed: %s\n",
357                                 AC_GAI_STRERROR(err), 0, 0);
358 #endif
359                         return -1;
360                 }
361         }
362
363         sai = res;
364         for (n=2; (sai = sai->ai_next) != NULL; n++) {
365                 /* EMPTY */ ;
366         }
367         *sal = ch_malloc(n * sizeof(*sal));
368         if (*sal == NULL) {
369                 return -1;
370         }
371
372         sai = res;
373         sap = *sal;
374         do {
375                 switch (sai->ai_family) {
376 #  ifdef LDAP_PF_LOCAL
377                 case AF_LOCAL: {
378                         *sap = ch_malloc(sizeof(struct sockaddr_un));
379                         if (*sap == NULL) {
380                                 freeaddrinfo(res);
381                                 goto errexit;
382                         }
383                         *(struct sockaddr_un *)*sap =
384                                 *((struct sockaddr_un *)sai->ai_addr);
385                 } break;
386 #  endif
387 #  ifdef LDAP_PF_INET6
388                 case AF_INET6: {
389                         *sap = ch_malloc(sizeof(struct sockaddr_in6));
390                         if (*sap == NULL) {
391                                 freeaddrinfo(res);
392                                 goto errexit;
393                         }
394                         *(struct sockaddr_in6 *)*sap =
395                                 *((struct sockaddr_in6 *)sai->ai_addr);
396                 } break;
397 #  endif
398                 case AF_INET: {
399                         *sap = ch_malloc(sizeof(struct sockaddr_in));
400                         if (*sap == NULL) {
401                                 freeaddrinfo(res);
402                                 goto errexit;
403                         }
404                         *(struct sockaddr_in *)*sap =
405                                 *((struct sockaddr_in *)sai->ai_addr);
406                 } break;
407                 default:
408                         *sap = NULL;
409                         break;
410                 }
411                 if (*sap != NULL) {
412                         (*sap)->sa_family = sai->ai_family;
413                         sap++;
414                 }
415         } while ((sai = sai->ai_next) != NULL);
416
417         freeaddrinfo(res);
418
419 #else
420 #  ifdef LDAP_PF_LOCAL
421         if ( port == 0 ) {
422                 *sal = ch_malloc(2 * sizeof(*sal));
423                 if (*sal == NULL) {
424                         return -1;
425                 }
426                 sap = *sal;
427                 *sap = ch_malloc(sizeof(struct sockaddr_un));
428                 if (*sap == NULL)
429                         goto errexit;
430                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_un) );
431                 (*sap)->sa_family = AF_LOCAL;
432                 if ( strlen(host) >
433                      (sizeof(((struct sockaddr_un *)*sal)->sun_path) - 1) ) {
434 #ifdef NEW_LOGGING
435                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
436                                    "slap_get_listener_addresses: domain socket path (%s) too long in URL\n",
437                                    host ));
438 #else
439                         Debug( LDAP_DEBUG_ANY,
440                                "daemon: domain socket path (%s) too long in URL",
441                                host, 0, 0);
442 #endif
443                         goto errexit;
444                 }
445                 strcpy( ((struct sockaddr_un *)*sap)->sun_path, host );
446         } else
447 #  endif
448         {
449                 struct in_addr in;
450
451                 if ( host == NULL ) {
452                         in.s_addr = htonl(INADDR_ANY);
453
454                 } else if ( !inet_aton( host, &in ) ) {
455                         struct hostent *he = gethostbyname( host );
456                         if( he == NULL ) {
457 #ifdef NEW_LOGGING
458                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
459                                            "slap_get_listener_addresses: invalid host %s\n",
460                                            host ));
461 #else
462                                 Debug( LDAP_DEBUG_ANY,
463                                        "daemon: invalid host %s", host, 0, 0);
464 #endif
465                                 return -1;
466                         }
467                         AC_MEMCPY( &in, he->h_addr, sizeof( in ) );
468                 }
469
470                 *sal = ch_malloc(2 * sizeof(*sal));
471                 if (*sal == NULL) {
472                         return -1;
473                 }
474
475                 sap = *sal;
476                 *sap = ch_malloc(sizeof(struct sockaddr_in));
477                 if (*sap == NULL) {
478                         goto errexit;
479                 }
480
481                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_in) );
482                 (*sap)->sa_family = AF_INET;
483                 ((struct sockaddr_in *)*sap)->sin_port = htons(port);
484                 ((struct sockaddr_in *)*sap)->sin_addr = in;
485         }
486         sap++;
487 #endif
488
489         *sap = NULL;
490         return 0;
491
492 errexit:
493         slap_free_listener_addresses(*sal);
494         return -1;
495 }
496
497 static Listener * slap_open_listener(
498         const char* url )
499 {
500         int     tmp, rc;
501         Listener l;
502         Listener *li;
503         LDAPURLDesc *lud;
504         unsigned short port;
505         int err, addrlen;
506         struct sockaddr **sal, **psal;
507
508         rc = ldap_url_parse( url, &lud );
509
510         if( rc != LDAP_URL_SUCCESS ) {
511 #ifdef NEW_LOGGING
512                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
513                            "slap_open_listener: listen URL \"%s\" parse error %d\n",
514                            url, rc ));
515 #else
516                 Debug( LDAP_DEBUG_ANY,
517                         "daemon: listen URL \"%s\" parse error=%d\n",
518                         url, rc, 0 );
519 #endif
520                 return NULL;
521         }
522
523 #ifndef HAVE_TLS
524         if( ldap_pvt_url_scheme2tls( lud->lud_scheme ) ) {
525 #ifdef NEW_LOGGING
526                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
527                            "slap_open_listener: TLS is not supported (%s)\n",
528                            url ));
529 #else
530                 Debug( LDAP_DEBUG_ANY,
531                         "daemon: TLS not supported (%s)\n",
532                         url, 0, 0 );
533 #endif
534                 ldap_free_urldesc( lud );
535                 return NULL;
536         }
537
538         if(! lud->lud_port ) {
539                 lud->lud_port = LDAP_PORT;
540         }
541
542 #else
543         l.sl_is_tls = ldap_pvt_url_scheme2tls( lud->lud_scheme );
544
545         if(! lud->lud_port ) {
546                 lud->lud_port = l.sl_is_tls ? LDAPS_PORT : LDAP_PORT;
547         }
548 #endif
549
550         port = (unsigned short) lud->lud_port;
551
552         if ( ldap_pvt_url_scheme2proto(lud->lud_scheme) == LDAP_PROTO_IPC ) {
553 #ifdef LDAP_PF_LOCAL
554                 if ( lud->lud_host == NULL || lud->lud_host[0] == '\0' ) {
555                         err = slap_get_listener_addresses(LDAPI_SOCK, 0, &sal);
556                 } else {
557                         err = slap_get_listener_addresses(lud->lud_host, 0, &sal);
558                 }
559 #else
560
561 #ifdef NEW_LOGGING
562                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
563                            "slap_open_listener: URL scheme is not supported: %s\n",
564                            url ));
565 #else
566                 Debug( LDAP_DEBUG_ANY, "daemon: URL scheme not supported: %s",
567                         url, 0, 0);
568 #endif
569                 ldap_free_urldesc( lud );
570                 return NULL;
571 #endif
572         } else {
573                 if( lud->lud_host == NULL || lud->lud_host[0] == '\0'
574                         || strcmp(lud->lud_host, "*") == 0 )
575                 {
576                         err = slap_get_listener_addresses(NULL, port, &sal);
577                 } else {
578                         err = slap_get_listener_addresses(lud->lud_host, port, &sal);
579                 }
580         }
581
582         ldap_free_urldesc( lud );
583         if ( err ) {
584                 return NULL;
585         }
586
587         psal = sal;
588         while ( *sal != NULL ) {
589                 switch( (*sal)->sa_family ) {
590                 case AF_INET:
591 #ifdef LDAP_PF_INET6
592                 case AF_INET6:
593 #endif
594 #ifdef LDAP_PF_LOCAL
595                 case AF_LOCAL:
596 #endif
597                         break;
598                 default:
599                         sal++;
600                         continue;
601                 }
602                 l.sl_sd = socket( (*sal)->sa_family, SOCK_STREAM, 0);
603                 if ( l.sl_sd == AC_SOCKET_INVALID ) {
604                         int err = sock_errno();
605 #ifdef NEW_LOGGING
606                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
607                                    "slap_open_listener: socket() failed errno=%d (%s)\n",
608                                    err, sock_errstr(err) ));
609 #else
610                         Debug( LDAP_DEBUG_ANY,
611                                 "daemon: socket() failed errno=%d (%s)\n", err,
612                                 sock_errstr(err), 0 );
613 #endif
614                         sal++;
615                         continue;
616                 }
617 #ifndef HAVE_WINSOCK
618                 if ( l.sl_sd >= dtblsize ) {
619 #ifdef NEW_LOGGING
620                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
621                                    "slap_open_listener: listener descriptor %ld is too great %ld\n",
622                                    (long)l.sl_sd, (long)dtblsize ));
623 #else
624                         Debug( LDAP_DEBUG_ANY,
625                                "daemon: listener descriptor %ld is too great %ld\n",
626                                (long) l.sl_sd, (long) dtblsize, 0 );
627 #endif
628                         tcp_close( l.sl_sd );
629                         sal++;
630                         continue;
631                 }
632 #endif
633 #ifdef LDAP_PF_LOCAL
634                 if ( (*sal)->sa_family == AF_LOCAL ) {
635                         unlink ( ((struct sockaddr_un *)*sal)->sun_path );
636                 } else
637 #endif
638                 {
639 #ifdef SO_REUSEADDR
640                         /* enable address reuse */
641                         tmp = 1;
642                         rc = setsockopt( l.sl_sd, SOL_SOCKET, SO_REUSEADDR,
643                                          (char *) &tmp, sizeof(tmp) );
644                         if ( rc == AC_SOCKET_ERROR ) {
645                                 int err = sock_errno();
646 #ifdef NEW_LOGGING
647                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
648                                            "slap_open_listener: setsockopt( %ld, SO_REUSEADDR ) failed errno %d (%s)\n",
649                                            (long)l.sl_sd, err, sock_errstr(err) ));
650 #else
651                                 Debug( LDAP_DEBUG_ANY,
652                                        "slapd(%ld): setsockopt(SO_REUSEADDR) failed errno=%d (%s)\n",
653                                        (long) l.sl_sd, err, sock_errstr(err) );
654 #endif
655                         }
656 #endif
657                 }
658
659                 switch( (*sal)->sa_family ) {
660                 case AF_INET:
661                         addrlen = sizeof(struct sockaddr_in);
662                         break;
663 #ifdef LDAP_PF_INET6
664                 case AF_INET6:
665                         addrlen = sizeof(struct sockaddr_in6);
666                         break;
667 #endif
668 #ifdef LDAP_PF_LOCAL
669                 case AF_LOCAL:
670                         addrlen = sizeof(struct sockaddr_un);
671                         break;
672 #endif
673                 }
674
675                 if (!bind(l.sl_sd, *sal, addrlen))
676                         break;
677                 err = sock_errno();
678 #ifdef NEW_LOGGING
679                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
680                            "slap_open_listener: bind(%ld) failed errno=%d (%s)\n",
681                            (long)l.sl_sd, err, sock_errstr(err) ));
682 #else
683                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed errno=%d (%s)\n",
684                        (long) l.sl_sd, err, sock_errstr(err) );
685 #endif
686                 tcp_close( l.sl_sd );
687                 sal++;
688         } /* while ( *sal != NULL ) */
689
690         if ( *sal == NULL ) {
691 #ifdef NEW_LOGGING
692                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
693                            "slap_open_listener: bind(%ld) failed.\n", (long)l.sl_sd ));
694 #else
695                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed\n",
696                         (long) l.sl_sd, 0, 0 );
697 #endif
698                 slap_free_listener_addresses(psal);
699                 return NULL;
700         }
701
702         switch ( (*sal)->sa_family ) {
703 #ifdef LDAP_PF_LOCAL
704         case AF_LOCAL: {
705                 char *addr = ((struct sockaddr_un *)*sal)->sun_path;
706                 if ( chmod( addr, S_IRWXU ) < 0 ) {
707                         int err = sock_errno();
708 #ifdef NEW_LOGGING
709                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
710                                    "slap_open_listener: fchmod(%ld) failed errno=%d (%s)\n",
711                                    (long)l.sl_sd, err, sock_errstr(err) ));
712 #else
713                         Debug( LDAP_DEBUG_ANY, "daemon: fchmod(%ld) failed errno=%d (%s)",
714                                (long) l.sl_sd, err, sock_errstr(err) );
715 #endif
716                         tcp_close( l.sl_sd );
717                         slap_free_listener_addresses(psal);
718                         return NULL;
719                 }
720                 l.sl_name = ch_malloc( strlen(addr) + sizeof("PATH=") );
721                 sprintf( l.sl_name, "PATH=%s", addr );
722         } break;
723 #endif /* LDAP_PF_LOCAL */
724
725         case AF_INET: {
726                 char *s;
727 #ifdef HAVE_GETADDRINFO
728                 char addr[INET_ADDRSTRLEN];
729                 inet_ntop( AF_INET, &((struct sockaddr_in *)*sal)->sin_addr,
730                            addr, sizeof(addr) );
731                 s = addr;
732                 port = ((struct sockaddr_in *)*sal) ->sin_port;
733 #else
734                 s = inet_ntoa( l.sl_addr.sin_addr );
735                 port = l.sl_addr.sin_port;
736 #endif
737                 l.sl_name = ch_malloc( sizeof("IP=255.255.255.255:65535") );
738                 sprintf( l.sl_name, "IP=%s:%d",
739                          s != NULL ? s : "unknown" , port );
740         } break;
741
742 #ifdef LDAP_PF_INET6
743         case AF_INET6: {
744                 char addr[INET6_ADDRSTRLEN];
745                 inet_ntop( AF_INET6, &((struct sockaddr_in6 *)*sal)->sin6_addr,
746                            addr, sizeof addr);
747                 port = ((struct sockaddr_in6 *)*sal)->sin6_port;
748                 l.sl_name = ch_malloc( strlen(addr) + sizeof("IP= 65535") );
749                 sprintf( l.sl_name, "IP=%s %d", addr, port );
750         } break;
751 #endif /* LDAP_PF_INET6 */
752
753         default:
754 #ifdef NEW_LOGGING
755                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
756                            "slap_open_listener: unsupported address family (%d)\n",
757                            (int)(*sal)->sa_family ));
758 #else
759                 Debug( LDAP_DEBUG_ANY, "daemon: unsupported address family (%d)\n",
760                         (int) (*sal)->sa_family, 0, 0 );
761 #endif
762                 break;
763         }
764
765         slap_free_listener_addresses(psal);
766
767         l.sl_url = ch_strdup( url );
768         li = ch_malloc( sizeof( Listener ) );
769         *li = l;
770
771 #ifdef NEW_LOGGING
772         LDAP_LOG(( "connection", LDAP_LEVEL_RESULTS,
773                    "slap_open_listener: daemon initialzed %s\n", l.sl_url ));
774 #else
775         Debug( LDAP_DEBUG_TRACE, "daemon: initialized %s\n",
776                 l.sl_url, 0, 0 );
777 #endif
778         return li;
779 }
780
781 static int sockinit(void);
782 static int sockdestroy(void);
783
784 int slapd_daemon_init( const char *urls )
785 {
786         int i, rc;
787         char **u;
788
789 #ifdef NEW_LOGGING
790         LDAP_LOG(( "connection", LDAP_LEVEL_ARGS,
791                    "slapd_daemon_init: %s\n",
792                    urls ? urls : "<null>" ));
793 #else
794         Debug( LDAP_DEBUG_ARGS, "daemon_init: %s\n",
795                 urls ? urls : "<null>", 0, 0 );
796 #endif
797         if( (rc = sockinit()) != 0 ) {
798                 return rc;
799         }
800
801 #ifdef HAVE_SYSCONF
802         dtblsize = sysconf( _SC_OPEN_MAX );
803 #elif HAVE_GETDTABLESIZE
804         dtblsize = getdtablesize();
805 #else
806         dtblsize = FD_SETSIZE;
807 #endif
808
809 #ifdef FD_SETSIZE
810         if(dtblsize > FD_SETSIZE) {
811                 dtblsize = FD_SETSIZE;
812         }
813 #endif  /* !FD_SETSIZE */
814
815         /* open a pipe (or something equivalent connected to itself).
816          * we write a byte on this fd whenever we catch a signal. The main
817          * loop will be select'ing on this socket, and will wake up when
818          * this byte arrives.
819          */
820         if( (rc = lutil_pair( wake_sds )) < 0 ) {
821 #ifdef NEW_LOGGING
822                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
823                            "slap_daemon_init: lutil_pair() failed rc=%d\n", rc ));
824 #else
825                 Debug( LDAP_DEBUG_ANY,
826                         "daemon: lutil_pair() failed rc=%d\n", rc, 0, 0 );
827 #endif
828                 return rc;
829         }
830
831         FD_ZERO( &slap_daemon.sd_readers );
832         FD_ZERO( &slap_daemon.sd_writers );
833
834         if( urls == NULL ) {
835                 urls = "ldap:///";
836         }
837
838         u = str2charray( urls, " " );
839
840         if( u == NULL || u[0] == NULL ) {
841 #ifdef NEW_LOGGING
842                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
843                            "slap_daemon_init: no urls (%s) provided.\n", urls ));
844 #else
845                 Debug( LDAP_DEBUG_ANY, "daemon_init: no urls (%s) provided.\n",
846                         urls, 0, 0 );
847 #endif
848                 return -1;
849         }
850
851         for( i=0; u[i] != NULL; i++ ) {
852 #ifdef NEW_LOGGING
853                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
854                            "slap_daemon_init: listen on %s\n.", u[i] ));
855 #else
856                 Debug( LDAP_DEBUG_TRACE, "daemon_init: listen on %s\n",
857                         u[i], 0, 0 );
858 #endif
859         }
860
861         if( i == 0 ) {
862 #ifdef NEW_LOGGING
863                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
864                            "slap_daemon_init: no listeners to open (%s)\n", urls ));
865 #else
866                 Debug( LDAP_DEBUG_ANY, "daemon_init: no listeners to open (%s)\n",
867                         urls, 0, 0 );
868 #endif
869                 charray_free( u );
870                 return -1;
871         }
872
873 #ifdef NEW_LOGGING
874         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
875                    "slap_daemon_init: %d listeners to open...\n", i ));
876 #else
877         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners to open...\n",
878                 i, 0, 0 );
879 #endif
880         slap_listeners = ch_malloc( (i+1)*sizeof(Listener *) );
881
882         for(i = 0; u[i] != NULL; i++ ) {
883                 slap_listeners[i] = slap_open_listener( u[i] );
884
885                 if( slap_listeners[i] == NULL ) {
886                         charray_free( u );
887                         return -1;
888                 }
889         }
890         slap_listeners[i] = NULL;
891
892 #ifdef NEW_LOGGING
893         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
894                    "slap_daemon_init: %d listeners opened\n", i ));
895 #else
896         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners opened\n",
897                 i, 0, 0 );
898 #endif
899
900 #ifdef HAVE_SLP
901         slapd_slp_init( urls );
902         slapd_slp_reg();
903 #endif
904
905         charray_free( u );
906         ldap_pvt_thread_mutex_init( &slap_daemon.sd_mutex );
907         return !i;
908 }
909
910
911 int
912 slapd_daemon_destroy(void)
913 {
914         connections_destroy();
915         tcp_close( wake_sds[1] );
916         tcp_close( wake_sds[0] );
917         sockdestroy();
918
919 #ifdef HAVE_SLP
920         slapd_slp_dereg();
921         slapd_slp_deinit();
922 #endif
923
924         return 0;
925 }
926
927
928 static void *
929 slapd_daemon_task(
930         void *ptr
931 )
932 {
933         int l;
934         time_t  last_idle_check = slap_get_time();
935         time( &starttime );
936
937         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
938                 if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
939                         continue;
940
941                 if ( listen( slap_listeners[l]->sl_sd, SLAPD_LISTEN ) == -1 ) {
942                         int err = sock_errno();
943 #ifdef NEW_LOGGING
944                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
945                                    "slapd_daemon_task: listen( %s, 5 ) failed errno=%d (%s)\n",
946                                    slap_listeners[l]->sl_url, err, sock_errstr(err) ));
947 #else
948                         Debug( LDAP_DEBUG_ANY,
949                                 "daemon: listen(%s, 5) failed errno=%d (%s)\n",
950                                         slap_listeners[l]->sl_url, err,
951                                         sock_errstr(err) );
952 #endif
953                         return( (void*)-1 );
954                 }
955
956                 slapd_add( slap_listeners[l]->sl_sd );
957         }
958
959 #ifdef HAVE_NT_SERVICE_MANAGER
960         if ( started_event != NULL ) {
961                 ldap_pvt_thread_cond_signal( &started_event );
962         }
963 #endif
964         /* initialization complete. Here comes the loop. */
965
966         while ( !slapd_shutdown ) {
967                 ber_socket_t i;
968                 int ns;
969                 int at;
970                 ber_socket_t nfds;
971 #define SLAPD_EBADF_LIMIT 16
972                 int ebadf = 0;
973
974 #define SLAPD_IDLE_CHECK_LIMIT 4
975                 time_t  now = slap_get_time();
976
977
978                 fd_set                  readfds;
979                 fd_set                  writefds;
980                 Sockaddr                from;
981
982 #if defined(SLAPD_RLOOKUPS)
983         struct hostent          *hp;
984 #endif
985                 struct timeval          zero;
986                 struct timeval          *tvp;
987
988                 if( global_idletimeout > 0 && difftime(
989                         last_idle_check+global_idletimeout/SLAPD_IDLE_CHECK_LIMIT,
990                         now ) < 0 )
991                 {
992                         connections_timeout_idle(now);
993                 }
994
995                 FD_ZERO( &writefds );
996                 FD_ZERO( &readfds );
997
998                 zero.tv_sec = 0;
999                 zero.tv_usec = 0;
1000
1001                 ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1002
1003 #ifdef FD_SET_MANUAL_COPY
1004                 for( s = 0; s < nfds; s++ ) {
1005                         if(FD_ISSET( &slap_sd_readers, s )) {
1006                                 FD_SET( s, &readfds );
1007                         }
1008                         if(FD_ISSET( &slap_sd_writers, s )) {
1009                                 FD_SET( s, &writefds );
1010                         }
1011                 }
1012 #else
1013                 AC_MEMCPY( &readfds, &slap_daemon.sd_readers, sizeof(fd_set) );
1014                 AC_MEMCPY( &writefds, &slap_daemon.sd_writers, sizeof(fd_set) );
1015 #endif
1016                 assert(!FD_ISSET(wake_sds[0], &readfds));
1017                 FD_SET( wake_sds[0], &readfds );
1018
1019                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1020                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1021                                 continue;
1022                         if (!FD_ISSET(slap_listeners[l]->sl_sd, &readfds))
1023                             FD_SET( slap_listeners[l]->sl_sd, &readfds );
1024                 }
1025
1026 #ifndef HAVE_WINSOCK
1027                 nfds = slap_daemon.sd_nfds;
1028 #else
1029                 nfds = dtblsize;
1030 #endif
1031
1032                 ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1033
1034                 at = ldap_pvt_thread_pool_backload(&connection_pool);
1035
1036 #if defined( HAVE_YIELDING_SELECT ) || defined( NO_THREADS )
1037                 tvp = NULL;
1038 #else
1039                 tvp = at ? &zero : NULL;
1040 #endif
1041
1042                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1043                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1044                                 continue;
1045
1046 #ifdef NEW_LOGGING
1047                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1048                                    "slapd_daemon_task: select: listen=%d active_threads=%d tvp=%s\n",
1049                                    slap_listeners[l]->sl_sd, at, tvp == NULL ? "NULL" : "zero" ));
1050 #else
1051                         Debug( LDAP_DEBUG_CONNS,
1052                                 "daemon: select: listen=%d active_threads=%d tvp=%s\n",
1053                                         slap_listeners[l]->sl_sd, at,
1054                                         tvp == NULL ? "NULL" : "zero" );
1055 #endif
1056                 }
1057
1058                 switch(ns = select( nfds, &readfds,
1059 #ifdef HAVE_WINSOCK
1060                         /* don't pass empty fd_set */
1061                         ( writefds.fd_count > 0 ? &writefds : NULL ),
1062 #else
1063                         &writefds,
1064 #endif
1065                         NULL, tvp ))
1066                 {
1067                 case -1: {      /* failure - try again */
1068                                 int err = sock_errno();
1069
1070                                 if( err == EBADF
1071 #ifdef WSAENOTSOCK
1072                                         /* you'd think this would be EBADF */
1073                                         || err == WSAENOTSOCK
1074 #endif
1075                                 ) {
1076                                         if (++ebadf < SLAPD_EBADF_LIMIT)
1077                                                 continue;
1078                                 }
1079
1080                                 if( err != EINTR ) {
1081 #ifdef NEW_LOGGING
1082                                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1083                                                    "slapd_daemon_task: select failed (%d): %s\n",
1084                                                    err, sock_errstr(err) ));
1085 #else
1086                                         Debug( LDAP_DEBUG_CONNS,
1087                                                 "daemon: select failed (%d): %s\n",
1088                                                 err, sock_errstr(err), 0 );
1089 #endif
1090                                         slapd_shutdown = -1;
1091                                 }
1092                         }
1093                         continue;
1094
1095                 case 0:         /* timeout - let threads run */
1096                         ebadf = 0;
1097 #ifdef NEW_LOGGING
1098                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1099                                    "slapd_daemon_task: select timeout - yielding\n" ));
1100 #else
1101                         Debug( LDAP_DEBUG_CONNS, "daemon: select timeout - yielding\n",
1102                             0, 0, 0 );
1103 #endif
1104                 ldap_pvt_thread_yield();
1105                         continue;
1106
1107                 default:        /* something happened - deal with it */
1108                         if( slapd_shutdown ) continue;
1109
1110                         ebadf = 0;
1111 #ifdef NEW_LOGGING
1112                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1113                                    "slapd_daemon_task: activity on %d descriptors\n", ns ));
1114 #else
1115                         Debug( LDAP_DEBUG_CONNS, "daemon: activity on %d descriptors\n",
1116                                 ns, 0, 0 );
1117 #endif
1118                         /* FALL THRU */
1119                 }
1120
1121                 if( FD_ISSET( wake_sds[0], &readfds ) ) {
1122                         char c[BUFSIZ];
1123                         tcp_read( wake_sds[0], c, sizeof(c) );
1124 #ifdef NO_THREADS
1125                         waking = 0;
1126 #endif
1127                         continue;
1128                 }
1129
1130                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1131                         ber_socket_t s;
1132                         socklen_t len = sizeof(from);
1133                         long id;
1134                         slap_ssf_t ssf = 0;
1135                         char *authid = NULL;
1136
1137                         char    *dnsname;
1138                         char    *peeraddr;
1139 #ifdef LDAP_PF_LOCAL
1140                         char    peername[MAXPATHLEN + sizeof("PATH=")];
1141 #elif defined(LDAP_PF_INET6)
1142                         char    peername[sizeof("IP=ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff 65535")];
1143 #else
1144                         char    peername[sizeof("IP=255.255.255.255:65336")];
1145 #endif /* LDAP_PF_LOCAL */
1146
1147                         peername[0] = '\0';
1148
1149                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1150                                 continue;
1151
1152                         if ( !FD_ISSET( slap_listeners[l]->sl_sd, &readfds ) )
1153                                 continue;
1154
1155                         s = accept( slap_listeners[l]->sl_sd,
1156                                 (struct sockaddr *) &from, &len );
1157                         if ( s == AC_SOCKET_INVALID ) {
1158                                 int err = sock_errno();
1159 #ifdef NEW_LOGGING
1160                                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1161                                            "slapd_daemon_task: accept(%ld) failed errno=%d (%s)\n",
1162                                            (long)slap_listeners[l]->sl_sd, err, sock_errstr(err) ));
1163 #else
1164                                 Debug( LDAP_DEBUG_ANY,
1165                                     "daemon: accept(%ld) failed errno=%d (%s)\n",
1166                                     (long) slap_listeners[l]->sl_sd, err,
1167                                     sock_errstr(err) );
1168 #endif
1169                                 continue;
1170                         }
1171
1172 #ifndef HAVE_WINSOCK
1173                         /* make sure descriptor number isn't too great */
1174                         if ( s >= dtblsize ) {
1175 #ifdef NEW_LGGING
1176                                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1177                                            "slapd_daemon_task: %ld beyond descriptor table size %ld\n",
1178                                            (long)s, (long)dtblsize ));
1179 #else
1180                                 Debug( LDAP_DEBUG_ANY,
1181                                         "daemon: %ld beyond descriptor table size %ld\n",
1182                                         (long) s, (long) dtblsize, 0 );
1183 #endif
1184                                 slapd_close(s);
1185                                 continue;
1186                         }
1187 #endif
1188
1189 #ifdef LDAP_DEBUG
1190                         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1191
1192                         /* newly accepted stream should not be in any of the FD SETS */
1193                         assert( !FD_ISSET( s, &slap_daemon.sd_actives) );
1194                         assert( !FD_ISSET( s, &slap_daemon.sd_readers) );
1195                         assert( !FD_ISSET( s, &slap_daemon.sd_writers) );
1196
1197                         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1198 #endif
1199
1200 #if defined( SO_KEEPALIVE ) || defined( TCP_NODELAY )
1201 #ifdef LDAP_PF_LOCAL
1202                         /* for IPv4 and IPv6 sockets only */
1203                         if ( from.sa_addr.sa_family != AF_LOCAL )
1204 #endif /* LDAP_PF_LOCAL */
1205                         {
1206                                 int rc;
1207                                 int tmp;
1208 #ifdef SO_KEEPALIVE
1209                                 /* enable keep alives */
1210                                 tmp = 1;
1211                                 rc = setsockopt( s, SOL_SOCKET, SO_KEEPALIVE,
1212                                         (char *) &tmp, sizeof(tmp) );
1213                                 if ( rc == AC_SOCKET_ERROR ) {
1214                                         int err = sock_errno();
1215 #ifdef NEW_LOGGING
1216                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1217                                                    "slapd_daemon_task: setsockopt( %ld, SO_KEEPALIVE) failed errno=%d (%s)\n",
1218                                                    (long)s, err, sock_errstr(err) ));
1219 #else
1220                                         Debug( LDAP_DEBUG_ANY,
1221                                                 "slapd(%ld): setsockopt(SO_KEEPALIVE) failed "
1222                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1223 #endif
1224                                 }
1225 #endif
1226 #ifdef TCP_NODELAY
1227                                 /* enable no delay */
1228                                 tmp = 1;
1229                                 rc = setsockopt( s, IPPROTO_TCP, TCP_NODELAY,
1230                                         (char *)&tmp, sizeof(tmp) );
1231                                 if ( rc == AC_SOCKET_ERROR ) {
1232                                         int err = sock_errno();
1233 #ifdef NEW_LOGGING
1234                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1235                                                    "slapd_daemon_task: setsockopt( %ld, TCP_NODELAY) failed errno=%d (%s)\n",
1236                                                    (long)s, err, sock_errstr(err) ));
1237 #else
1238                                         Debug( LDAP_DEBUG_ANY,
1239                                                 "slapd(%ld): setsockopt(TCP_NODELAY) failed "
1240                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1241 #endif
1242                                 }
1243 #endif
1244                         }
1245 #endif
1246
1247 #ifdef NEW_LOGGING
1248                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1249                                    "slapd_daemon_task: new connection on %ld\n", (long)s ));
1250 #else
1251                         Debug( LDAP_DEBUG_CONNS, "daemon: new connection on %ld\n",
1252                                 (long) s, 0, 0 );
1253 #endif
1254                         switch ( from.sa_addr.sa_family ) {
1255 #  ifdef LDAP_PF_LOCAL
1256                         case AF_LOCAL:
1257                                 sprintf( peername, "PATH=%s", from.sa_un_addr.sun_path );
1258                                 ssf = LDAP_PVT_SASL_LOCAL_SSF;
1259                                 break;
1260 #endif /* LDAP_PF_LOCAL */
1261
1262 #  ifdef LDAP_PF_INET6
1263                         case AF_INET6:
1264                         if ( IN6_IS_ADDR_V4MAPPED(&from.sa_in6_addr.sin6_addr) ) {
1265                                 peeraddr = inet_ntoa( *((struct in_addr *)
1266                                                         &from.sa_in6_addr.sin6_addr.s6_addr[12]) );
1267                                 sprintf( peername, "IP=%s:%d",
1268                                          peeraddr != NULL ? peeraddr : "unknown",
1269                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1270                         } else {
1271                                 char addr[INET6_ADDRSTRLEN];
1272                                 sprintf( peername, "IP=%s %d",
1273                                          inet_ntop( AF_INET6,
1274                                                     &from.sa_in6_addr.sin6_addr,
1275                                                     addr, sizeof addr) ? addr : "unknown",
1276                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1277                         }
1278                         break;
1279 #  endif /* LDAP_PF_INET6 */
1280
1281                         case AF_INET:
1282                         peeraddr = inet_ntoa( from.sa_in_addr.sin_addr );
1283                         sprintf( peername, "IP=%s:%d",
1284                                 peeraddr != NULL ? peeraddr : "unknown",
1285                                 (unsigned) ntohs( from.sa_in_addr.sin_port ) );
1286                                 break;
1287
1288                         default:
1289                                 slapd_close(s);
1290                                 continue;
1291                         }
1292
1293                         if ( ( from.sa_addr.sa_family == AF_INET )
1294 #ifdef LDAP_PF_INET6
1295                                 || ( from.sa_addr.sa_family == AF_INET6 )
1296 #endif
1297                         ) {
1298 #ifdef SLAPD_RLOOKUPS
1299 #  ifdef LDAP_PF_INET6
1300                                 if ( from.sa_addr.sa_family == AF_INET6 )
1301                                         hp = gethostbyaddr(
1302                                                 (char *)&(from.sa_in6_addr.sin6_addr),
1303                                                 sizeof(from.sa_in6_addr.sin6_addr),
1304                                                 AF_INET6 );
1305                                 else
1306 #  endif /* LDAP_PF_INET6 */
1307                                 hp = gethostbyaddr(
1308                                         (char *) &(from.sa_in_addr.sin_addr),
1309                                         sizeof(from.sa_in_addr.sin_addr),
1310                                         AF_INET );
1311                                 dnsname = hp ? ldap_pvt_str2lower( hp->h_name ) : NULL;
1312 #else
1313                                 dnsname = NULL;
1314 #endif /* SLAPD_RLOOKUPS */
1315
1316 #ifdef HAVE_TCPD
1317                                 if ( !hosts_ctl("slapd",
1318                                                 dnsname != NULL ? dnsname : STRING_UNKNOWN,
1319                                                 peeraddr != NULL ? peeraddr : STRING_UNKNOWN,
1320                                                 STRING_UNKNOWN ))
1321                                 {
1322                                         /* DENY ACCESS */
1323                                         Statslog( LDAP_DEBUG_ANY,
1324                                                 "fd=%ld host access from %s (%s) denied.\n",
1325                                                 (long) s,
1326                                                 dnsname != NULL ? dnsname : "unknown",
1327                                                 peeraddr != NULL ? peeraddr : "unknown",
1328                                                 0, 0 );
1329                                         slapd_close(s);
1330                                         continue;
1331                                 }
1332 #endif /* HAVE_TCPD */
1333                         }
1334
1335                         id = connection_init(s,
1336                                 slap_listeners[l]->sl_url,
1337                                 dnsname != NULL ? dnsname : "unknown",
1338                                 peername,
1339                                 slap_listeners[l]->sl_name,
1340 #ifdef HAVE_TLS
1341                                 slap_listeners[l]->sl_is_tls,
1342 #else
1343                                 0,
1344 #endif
1345                                 ssf,
1346                                 authid );
1347
1348                         if( authid ) ch_free(authid);
1349
1350                         if( id < 0 ) {
1351 #ifdef NEW_LOGGING
1352                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1353                                            "slapd_daemon_task: connection_init(%ld, %s, %s) failed.\n",
1354                                            (long)s, peername, slap_listeners[l]->sl_name ));
1355 #else
1356                                 Debug( LDAP_DEBUG_ANY,
1357                                         "daemon: connection_init(%ld, %s, %s) failed.\n",
1358                                         (long) s,
1359                                         peername,
1360                                         slap_listeners[l]->sl_name );
1361 #endif
1362                                 slapd_close(s);
1363                                 continue;
1364                         }
1365
1366                         Statslog( LDAP_DEBUG_STATS,
1367                                 "daemon: conn=%ld fd=%ld connection from %s (%s) accepted.\n",
1368                                 id, (long) s,
1369                                 peername,
1370                                 slap_listeners[l]->sl_name,
1371                                 0 );
1372
1373                         slapd_add( s );
1374                         continue;
1375                 }
1376
1377 #ifdef LDAP_DEBUG
1378 #ifdef NEW_LOGGING
1379                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1380                            "slapd_daemon_task: activity on " ));
1381 #else
1382                 Debug( LDAP_DEBUG_CONNS, "daemon: activity on:", 0, 0, 0 );
1383 #endif
1384 #ifdef HAVE_WINSOCK
1385                 for ( i = 0; i < readfds.fd_count; i++ ) {
1386 #ifdef NEW_LOGGING
1387                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1388                                    " %d%s", readfds.fd_array[i], "r", 0 ));
1389 #else
1390                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1391                                 readfds.fd_array[i], "r", 0 );
1392 #endif
1393                 }
1394                 for ( i = 0; i < writefds.fd_count; i++ ) {
1395 #ifdef NEW_LOGGING
1396                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1397                                    " %d%s", writefds.fd_array[i], "w" ));
1398 #else
1399                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1400                                 writefds.fd_array[i], "w", 0 );
1401 #endif
1402                 }
1403
1404 #else
1405                 for ( i = 0; i < nfds; i++ ) {
1406                         int     r, w;
1407                         int     is_listener = 0;
1408
1409                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1410                                 if ( i == slap_listeners[l]->sl_sd ) {
1411                                         is_listener = 1;
1412                                         break;
1413                                 }
1414                         }
1415                         if ( is_listener ) {
1416                                 continue;
1417                         }
1418                         r = FD_ISSET( i, &readfds );
1419                         w = FD_ISSET( i, &writefds );
1420                         if ( r || w ) {
1421 #ifdef NEW_LOGGING
1422                                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1423                                            " %d%s%s", i,
1424                                            r ? "r" : "", w ? "w" : "" ));
1425 #else
1426                                 Debug( LDAP_DEBUG_CONNS, " %d%s%s", i,
1427                                     r ? "r" : "", w ? "w" : "" );
1428 #endif
1429                         }
1430                 }
1431 #endif
1432 #ifdef NEW_LOGGING
1433                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2, "\n" ));
1434 #else
1435                 Debug( LDAP_DEBUG_CONNS, "\n", 0, 0, 0 );
1436 #endif
1437
1438 #endif
1439
1440                 /* loop through the writers */
1441 #ifdef HAVE_WINSOCK
1442                 for ( i = 0; i < writefds.fd_count; i++ )
1443 #else
1444                 for ( i = 0; i < nfds; i++ )
1445 #endif
1446                 {
1447                         ber_socket_t wd;
1448                         int is_listener = 0;
1449 #ifdef HAVE_WINSOCK
1450                         wd = writefds.fd_array[i];
1451 #else
1452                         if( ! FD_ISSET( i, &writefds ) ) {
1453                                 continue;
1454                         }
1455                         wd = i;
1456 #endif
1457
1458                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1459                                 if ( i == slap_listeners[l]->sl_sd ) {
1460                                         is_listener = 1;
1461                                         break;
1462                                 }
1463                         }
1464                         if ( is_listener ) {
1465                                 continue;
1466                         }
1467 #ifdef NEW_LOGGING
1468                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1469                                    "slapd_daemon_task: write active on %d\n", wd ));
1470 #else
1471                         Debug( LDAP_DEBUG_CONNS,
1472                                 "daemon: write active on %d\n",
1473                                 wd, 0, 0 );
1474 #endif
1475                         /*
1476                          * NOTE: it is possible that the connection was closed
1477                          * and that the stream is now inactive.
1478                          * connection_write() must valid the stream is still
1479                          * active.
1480                          */
1481
1482                         if ( connection_write( wd ) < 0 ) {
1483                                 FD_CLR( (unsigned) wd, &readfds );
1484                                 slapd_close( wd );
1485                         }
1486                 }
1487
1488 #ifdef HAVE_WINSOCK
1489                 for ( i = 0; i < readfds.fd_count; i++ )
1490 #else
1491                 for ( i = 0; i < nfds; i++ )
1492 #endif
1493                 {
1494                         ber_socket_t rd;
1495                         int is_listener = 0;
1496
1497 #ifdef HAVE_WINSOCK
1498                         rd = readfds.fd_array[i];
1499 #else
1500                         if( ! FD_ISSET( i, &readfds ) ) {
1501                                 continue;
1502                         }
1503                         rd = i;
1504 #endif
1505
1506                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1507                                 if ( rd == slap_listeners[l]->sl_sd ) {
1508                                         is_listener = 1;
1509                                         break;
1510                                 }
1511                         }
1512                         if ( is_listener ) {
1513                                 continue;
1514                         }
1515
1516 #ifdef NEW_LOGGING
1517                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1518                                    "slapd_daemon_task: read activity on %d\n", rd ));
1519 #else
1520                         Debug ( LDAP_DEBUG_CONNS,
1521                                 "daemon: read activity on %d\n", rd, 0, 0 );
1522 #endif
1523                         /*
1524                          * NOTE: it is possible that the connection was closed
1525                          * and that the stream is now inactive.
1526                          * connection_read() must valid the stream is still
1527                          * active.
1528                          */
1529
1530                         if ( connection_read( rd ) < 0 ) {
1531                                 slapd_close( rd );
1532                         }
1533                 }
1534                 ldap_pvt_thread_yield();
1535         }
1536
1537         if( slapd_shutdown > 0 ) {
1538 #ifdef NEW_LOGGING
1539                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1540                            "slapd_daemon_task: shutdown requested and initiated.\n"));
1541 #else
1542                 Debug( LDAP_DEBUG_TRACE,
1543                         "daemon: shutdown requested and initiated.\n",
1544                         0, 0, 0 );
1545 #endif
1546
1547         } else if ( slapd_shutdown < 0 ) {
1548 #ifdef HAVE_NT_SERVICE_MANAGER
1549                 if (slapd_shutdown == -1)
1550                 {
1551 #ifdef NEW_LOGGING
1552                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1553                                    "slapd_daemon_task: shutdown initiated by Service Manager.\n"));
1554 #else
1555                         Debug( LDAP_DEBUG_TRACE,
1556                                "daemon: shutdown initiated by Service Manager.\n",
1557                                0, 0, 0);
1558 #endif
1559                 }
1560                 else
1561 #endif
1562                 {
1563 #ifdef NEW_LOGGING
1564                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1565                                    "slapd_daemon_task: abnormal condition, shutdown initiated.\n" ));
1566 #else
1567                         Debug( LDAP_DEBUG_TRACE,
1568                                "daemon: abnormal condition, shutdown initiated.\n",
1569                                0, 0, 0 );
1570 #endif
1571                 }
1572         } else {
1573 #ifdef NEW_LOGGING
1574                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1575                            "slapd_daemon_task: no active streams, shutdown initiated.\n" ));
1576 #else
1577                 Debug( LDAP_DEBUG_TRACE,
1578                        "daemon: no active streams, shutdown initiated.\n",
1579                        0, 0, 0 );
1580 #endif
1581         }
1582
1583         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1584                 if ( slap_listeners[l]->sl_sd != AC_SOCKET_INVALID ) {
1585 #ifdef LDAP_PF_LOCAL
1586                         if ( slap_listeners[l]->sl_sa.sa_addr.sa_family == AF_LOCAL ) {
1587                                 unlink( slap_listeners[l]->sl_sa.sa_un_addr.sun_path );
1588                         }
1589 #endif /* LDAP_PF_LOCAL */
1590                         slapd_close( slap_listeners[l]->sl_sd );
1591                         break;
1592                 }
1593         }
1594
1595 #ifdef NEW_LOGGING
1596         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1597                    "slapd_daemon_task: shutdown waiting for %d threads to terminate.\n",
1598                    ldap_pvt_thread_pool_backload(&connection_pool) ));
1599 #else
1600         Debug( LDAP_DEBUG_ANY,
1601             "slapd shutdown: waiting for %d threads to terminate\n",
1602             ldap_pvt_thread_pool_backload(&connection_pool), 0, 0 );
1603 #endif
1604         ldap_pvt_thread_pool_destroy(&connection_pool, 1);
1605
1606         return NULL;
1607 }
1608
1609
1610 int slapd_daemon( void )
1611 {
1612         int rc;
1613
1614         connections_init();
1615
1616 #define SLAPD_LISTENER_THREAD 1
1617 #if defined( SLAPD_LISTENER_THREAD )
1618         {
1619                 ldap_pvt_thread_t       listener_tid;
1620
1621                 /* listener as a separate THREAD */
1622                 rc = ldap_pvt_thread_create( &listener_tid,
1623                         0, slapd_daemon_task, NULL );
1624
1625                 if ( rc != 0 ) {
1626 #ifdef NEW_LOGGING
1627                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1628                                    "slapd_daemon: listener ldap_pvt_thread_create failed (%d).\n", rc ));
1629 #else
1630                         Debug( LDAP_DEBUG_ANY,
1631                         "listener ldap_pvt_thread_create failed (%d)\n", rc, 0, 0 );
1632 #endif
1633                         return rc;
1634                 }
1635
1636                 /* wait for the listener thread to complete */
1637                 ldap_pvt_thread_join( listener_tid, (void *) NULL );
1638         }
1639 #else
1640         /* experimental code */
1641         slapd_daemon_task( NULL );
1642 #endif
1643
1644         return 0;
1645
1646 }
1647
1648 int sockinit(void)
1649 {
1650 #if defined( HAVE_WINSOCK2 )
1651     WORD wVersionRequested;
1652         WSADATA wsaData;
1653         int err;
1654
1655         wVersionRequested = MAKEWORD( 2, 0 );
1656
1657         err = WSAStartup( wVersionRequested, &wsaData );
1658         if ( err != 0 ) {
1659                 /* Tell the user that we couldn't find a usable */
1660                 /* WinSock DLL.                                  */
1661                 return -1;
1662         }
1663
1664         /* Confirm that the WinSock DLL supports 2.0.*/
1665         /* Note that if the DLL supports versions greater    */
1666         /* than 2.0 in addition to 2.0, it will still return */
1667         /* 2.0 in wVersion since that is the version we      */
1668         /* requested.                                        */
1669
1670         if ( LOBYTE( wsaData.wVersion ) != 2 ||
1671                 HIBYTE( wsaData.wVersion ) != 0 )
1672         {
1673             /* Tell the user that we couldn't find a usable */
1674             /* WinSock DLL.                                  */
1675             WSACleanup();
1676             return -1;
1677         }
1678
1679         /* The WinSock DLL is acceptable. Proceed. */
1680 #elif defined( HAVE_WINSOCK )
1681         WSADATA wsaData;
1682         if ( WSAStartup( 0x0101, &wsaData ) != 0 ) {
1683             return -1;
1684         }
1685 #endif
1686         return 0;
1687 }
1688
1689 int sockdestroy(void)
1690 {
1691 #if defined( HAVE_WINSOCK2 ) || defined( HAVE_WINSOCK )
1692         WSACleanup();
1693 #endif
1694         return 0;
1695 }
1696
1697 RETSIGTYPE
1698 slap_sig_shutdown( int sig )
1699 {
1700 #ifdef NEW_LOGGING
1701         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1702                    "slap_sig_shutdown: signal %d\n", sig ));
1703 #else
1704         Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: signal %d\n", sig, 0, 0);
1705 #endif
1706
1707         /*
1708          * If the NT Service Manager is controlling the server, we don't
1709          * want SIGBREAK to kill the server. For some strange reason,
1710          * SIGBREAK is generated when a user logs out.
1711          */
1712
1713 #if HAVE_NT_SERVICE_MANAGER && SIGBREAK
1714         if (is_NT_Service && sig == SIGBREAK)
1715 #ifdef NEW_LOGGING
1716             LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1717                        "slap_sig_shutdown: SIGBREAK ignored.\n" ));
1718 #else
1719             Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: SIGBREAK ignored.\n",
1720                   0, 0, 0);
1721 #endif
1722         else
1723 #endif
1724         slapd_shutdown = sig;
1725
1726         WAKE_LISTENER(1);
1727
1728         /* reinstall self */
1729         (void) SIGNAL_REINSTALL( sig, slap_sig_shutdown );
1730 }
1731
1732 RETSIGTYPE
1733 slap_sig_wake( int sig )
1734 {
1735         WAKE_LISTENER(1);
1736
1737         /* reinstall self */
1738         (void) SIGNAL_REINSTALL( sig, slap_sig_wake );
1739 }
1740
1741
1742 void slapd_add_internal(ber_socket_t s) {
1743         slapd_add(s);
1744 }