]> git.sur5r.net Git - openldap/blob - servers/slapd/daemon.c
128fe161196961e8079446953187641db639e0aa
[openldap] / servers / slapd / daemon.c
1 /* $OpenLDAP$ */
2 /*
3  * Copyright 1998-2002 The OpenLDAP Foundation, All Rights Reserved.
4  * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
5  */
6
7 #include "portable.h"
8
9 #include <stdio.h>
10
11 #include <ac/ctype.h>
12 #include <ac/errno.h>
13 #include <ac/socket.h>
14 #include <ac/string.h>
15 #include <ac/time.h>
16 #include <ac/unistd.h>
17
18 #include "ldap_pvt.h"
19 #include "ldap_pvt_thread.h"
20 #include "lutil.h"
21 #include "slap.h"
22
23 #ifdef HAVE_TCPD
24 #include <tcpd.h>
25
26 int allow_severity = LOG_INFO;
27 int deny_severity = LOG_NOTICE;
28 #endif /* TCP Wrappers */
29
30 #ifdef LDAP_PF_LOCAL
31 #include <sys/stat.h>
32 /* this should go in <ldap.h> as soon as it is accepted */
33 #define LDAPI_MOD_URLEXT                "x-mod"
34 #endif /* LDAP_PF_LOCAL */
35
36 #ifdef LDAP_PF_INET6
37 int slap_inet4or6 = AF_UNSPEC;
38 #else
39 int slap_inet4or6 = AF_INET;
40 #endif
41
42 /* globals */
43 time_t starttime;
44 ber_socket_t dtblsize;
45
46 Listener **slap_listeners = NULL;
47
48 #define SLAPD_LISTEN 10
49
50 static ber_socket_t wake_sds[2];
51
52 #if defined(NO_THREADS) || defined(HAVE_GNU_PTH)
53 static int waking;
54 #define WAKE_LISTENER(w) \
55 ((w && !waking) ? tcp_write( wake_sds[1], "0", 1 ), waking=1 : 0)
56 #else
57 #define WAKE_LISTENER(w) \
58 do { if (w) tcp_write( wake_sds[1], "0", 1 ); } while(0)
59 #endif
60
61 #ifndef HAVE_WINSOCK
62 static
63 #endif
64 volatile sig_atomic_t slapd_shutdown = 0, slapd_gentle_shutdown = 0;
65
66 static struct slap_daemon {
67         ldap_pvt_thread_mutex_t sd_mutex;
68
69         ber_socket_t sd_nactives;
70
71 #ifndef HAVE_WINSOCK
72         /* In winsock, accept() returns values higher than dtblsize
73                 so don't bother with this optimization */
74         int sd_nfds;
75 #endif
76
77         fd_set sd_actives;
78         fd_set sd_readers;
79         fd_set sd_writers;
80 } slap_daemon;
81
82
83
84 #ifdef HAVE_SLP
85 /*
86  * SLP related functions
87  */
88 #include <slp.h>
89
90 #define LDAP_SRVTYPE_PREFIX "service:ldap://"
91 #define LDAPS_SRVTYPE_PREFIX "service:ldaps://"
92 static char** slapd_srvurls = NULL;
93 static SLPHandle slapd_hslp = 0;
94
95 void slapd_slp_init( const char* urls ) {
96         int i;
97
98         slapd_srvurls = ldap_str2charray( urls, " " );
99
100         if( slapd_srvurls == NULL ) return;
101
102         /* find and expand INADDR_ANY URLs */
103         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
104                 if( strcmp( slapd_srvurls[i], "ldap:///" ) == 0) {
105                         char *host = ldap_pvt_get_fqdn( NULL );
106                         if ( host != NULL ) {
107                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
108                                         strlen( host ) +
109                                         sizeof( LDAP_SRVTYPE_PREFIX ) );
110                                 strcpy( lutil_strcopy(slapd_srvurls[i],
111                                         LDAP_SRVTYPE_PREFIX ), host );
112
113                                 ch_free( host );
114                         }
115
116                 } else if ( strcmp( slapd_srvurls[i], "ldaps:///" ) == 0) {
117                         char *host = ldap_pvt_get_fqdn( NULL );
118                         if ( host != NULL ) {
119                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
120                                         strlen( host ) +
121                                         sizeof( LDAPS_SRVTYPE_PREFIX ) );
122                                 strcpy( lutil_strcopy(slapd_srvurls[i],
123                                         LDAPS_SRVTYPE_PREFIX ), host );
124
125                                 ch_free( host );
126                         }
127                 }
128         }
129
130         /* open the SLP handle */
131         SLPOpen( "en", 0, &slapd_hslp );
132 }
133
134 void slapd_slp_deinit() {
135         if( slapd_srvurls == NULL ) return;
136
137         ldap_charray_free( slapd_srvurls );
138         slapd_srvurls = NULL;
139
140         /* close the SLP handle */
141         SLPClose( slapd_hslp );
142 }
143
144 void slapd_slp_regreport(
145         SLPHandle hslp,
146         SLPError errcode,
147         void* cookie )
148 {
149         /* empty report */
150 }
151
152 void slapd_slp_reg() {
153         int i;
154
155         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
156                 if( strncmp( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX,
157                                 sizeof( LDAP_SRVTYPE_PREFIX ) - 1 ) == 0 ||
158                     strncmp( slapd_srvurls[i], LDAPS_SRVTYPE_PREFIX,
159                                 sizeof( LDAPS_SRVTYPE_PREFIX ) - 1 ) == 0 )
160                 {
161                         SLPReg( slapd_hslp,
162                                 slapd_srvurls[i],
163                                 SLP_LIFETIME_MAXIMUM,
164                                 "ldap",
165                                 "",
166                                 1,
167                                 slapd_slp_regreport,
168                                 NULL );
169                 }
170         }
171 }
172
173 void slapd_slp_dereg() {
174         int i;
175
176         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
177                 SLPDereg( slapd_hslp,
178                         slapd_srvurls[i],
179                         slapd_slp_regreport,
180                         NULL );
181         }
182 }
183 #endif /* HAVE_SLP */
184
185 /*
186  * Add a descriptor to daemon control
187  */
188 static void slapd_add(ber_socket_t s) {
189         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
190
191         assert( !FD_ISSET( s, &slap_daemon.sd_actives ));
192         assert( !FD_ISSET( s, &slap_daemon.sd_readers ));
193         assert( !FD_ISSET( s, &slap_daemon.sd_writers ));
194
195 #ifndef HAVE_WINSOCK
196         if (s >= slap_daemon.sd_nfds) {
197                 slap_daemon.sd_nfds = s + 1;
198         }
199 #endif
200
201         slap_daemon.sd_nactives++;
202
203         FD_SET( s, &slap_daemon.sd_actives );
204         FD_SET( s, &slap_daemon.sd_readers );
205
206 #ifdef NEW_LOGGING
207         LDAP_LOG( CONNECTION, DETAIL1, 
208                 "slapd_add: added %ld%s%s\n", (long)s,
209                 FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
210                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
211 #else
212         Debug( LDAP_DEBUG_CONNS, "daemon: added %ld%s%s\n",
213                 (long) s,
214             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
215                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
216 #endif
217         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
218 }
219
220 /*
221  * Remove the descriptor from daemon control
222  */
223 void slapd_remove(ber_socket_t s, int wake) {
224         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
225
226         slap_daemon.sd_nactives--;
227
228 #ifdef NEW_LOGGING
229         LDAP_LOG( CONNECTION, DETAIL1, 
230                 "slapd_remove: removing %ld%s%s\n", (long) s,
231                 FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
232                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : ""  );
233 #else
234         Debug( LDAP_DEBUG_CONNS, "daemon: removing %ld%s%s\n",
235                 (long) s,
236             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
237                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
238 #endif
239         FD_CLR( s, &slap_daemon.sd_actives );
240         FD_CLR( s, &slap_daemon.sd_readers );
241         FD_CLR( s, &slap_daemon.sd_writers );
242
243         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
244         WAKE_LISTENER(wake || slapd_gentle_shutdown == 2);
245 }
246
247 void slapd_clr_write(ber_socket_t s, int wake) {
248         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
249
250         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
251         FD_CLR( s, &slap_daemon.sd_writers );
252
253         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
254         WAKE_LISTENER(wake);
255 }
256
257 void slapd_set_write(ber_socket_t s, int wake) {
258         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
259
260         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
261         if (!FD_ISSET(s, &slap_daemon.sd_writers))
262             FD_SET( (unsigned) s, &slap_daemon.sd_writers );
263
264         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
265         WAKE_LISTENER(wake);
266 }
267
268 void slapd_clr_read(ber_socket_t s, int wake) {
269         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
270
271         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
272         FD_CLR( s, &slap_daemon.sd_readers );
273
274         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
275         WAKE_LISTENER(wake);
276 }
277
278 void slapd_set_read(ber_socket_t s, int wake) {
279         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
280
281         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
282         if (!FD_ISSET(s, &slap_daemon.sd_readers))
283             FD_SET( s, &slap_daemon.sd_readers );
284
285         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
286         WAKE_LISTENER(wake);
287 }
288
289 static void slapd_close(ber_socket_t s) {
290 #ifdef NEW_LOGGING
291         LDAP_LOG( CONNECTION, DETAIL1, "slapd_close: closing %ld\n", (long)s, 0, 0);
292 #else
293         Debug( LDAP_DEBUG_CONNS, "daemon: closing %ld\n",
294                 (long) s, 0, 0 );
295 #endif
296         tcp_close(s);
297 }
298
299 static void slap_free_listener_addresses(struct sockaddr **sal)
300 {
301         struct sockaddr **sap;
302
303         if (sal == NULL) {
304                 return;
305         }
306
307         for (sap = sal; *sap != NULL; sap++) {
308                 ch_free(*sap);
309         }
310
311         ch_free(sal);
312 }
313
314 #if defined(LDAP_PF_LOCAL) || defined(SLAP_X_LISTENER_MOD)
315 static int get_url_perms(
316         char    **exts,
317         mode_t  *perms,
318         int     *crit )
319 {
320         int     i;
321
322         assert( exts );
323         assert( perms );
324         assert( crit );
325
326         *crit = 0;
327         for ( i = 0; exts[ i ]; i++ ) {
328                 char    *type = exts[ i ];
329                 int     c = 0;
330
331                 if ( type[ 0 ] == '!' ) {
332                         c = 1;
333                         type++;
334                 }
335
336                 if ( strncasecmp( type, LDAPI_MOD_URLEXT "=", sizeof(LDAPI_MOD_URLEXT "=") - 1 ) == 0 ) {
337                         char    *value = type
338                                 + ( sizeof(LDAPI_MOD_URLEXT "=") - 1 );
339                         mode_t  p = 0;
340                         int     j;
341
342                         switch (strlen(value)) {
343                         case 4:
344                                 /* skip leading '0' */
345                                 if ( value[ 0 ] != '0' ) {
346                                         return LDAP_OTHER;
347                                 }
348                                 value++;
349
350                         case 3:
351                                 for ( j = 0; j < 3; j++) {
352                                         int     v;
353
354                                         v = value[ j ] - '0';
355
356                                         if ( v < 0 || v > 7 ) {
357                                                 return LDAP_OTHER;
358                                         }
359
360                                         p |= v << 3*(2-j);
361                                 }
362                                 break;
363
364                         case 10:
365                                 for ( j = 1; j < 10; j++ ) {
366                                         static mode_t   m[] = { 0, 
367                                                 S_IRUSR, S_IWUSR, S_IXUSR,
368                                                 S_IRGRP, S_IWGRP, S_IXGRP,
369                                                 S_IROTH, S_IWOTH, S_IXOTH
370                                         };
371                                         static char     c[] = "-rwxrwxrwx"; 
372
373                                         if ( value[ j ] == c[ j ] ) {
374                                                 p |= m[ j ];
375         
376                                         } else if ( value[ j ] != '-' ) {
377                                                 return LDAP_OTHER;
378                                         }
379                                 }
380                                 break;
381
382                         default:
383                                 return LDAP_OTHER;
384                         } 
385
386                         *crit = c;
387                         *perms = p;
388
389                         return LDAP_SUCCESS;
390                 }
391         }
392
393         return LDAP_OTHER;
394 }
395 #endif /* LDAP_PF_LOCAL || SLAP_X_LISTENER_MOD */
396
397 /* port = 0 indicates AF_LOCAL */
398 static int slap_get_listener_addresses(
399         const char *host,
400         unsigned short port,
401         struct sockaddr ***sal)
402 {
403         struct sockaddr **sap;
404
405 #ifdef LDAP_PF_LOCAL
406         if ( port == 0 ) {
407                 *sal = ch_malloc(2 * sizeof(void *));
408                 if (*sal == NULL) {
409                         return -1;
410                 }
411
412                 sap = *sal;
413                 *sap = ch_malloc(sizeof(struct sockaddr_un));
414                 if (*sap == NULL)
415                         goto errexit;
416                 sap[1] = NULL;
417
418                 if ( strlen(host) >
419                      (sizeof(((struct sockaddr_un *)*sap)->sun_path) - 1) ) {
420 #ifdef NEW_LOGGING
421                         LDAP_LOG( CONNECTION, INFO, 
422                                 "slap_get_listener_addresses: domain socket path (%s) "
423                                 "too long in URL\n", host, 0, 0 );
424 #else
425                         Debug( LDAP_DEBUG_ANY,
426                                "daemon: domain socket path (%s) too long in URL",
427                                host, 0, 0);
428 #endif
429                         goto errexit;
430                 }
431
432                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_un) );
433                 (*sap)->sa_family = AF_LOCAL;
434                 strcpy( ((struct sockaddr_un *)*sap)->sun_path, host );
435         } else
436 #endif
437         {
438 #ifdef HAVE_GETADDRINFO
439                 struct addrinfo hints, *res, *sai;
440                 int n, err;
441                 char serv[7];
442
443                 memset( &hints, '\0', sizeof(hints) );
444                 hints.ai_flags = AI_PASSIVE;
445                 hints.ai_socktype = SOCK_STREAM;
446                 hints.ai_family = slap_inet4or6;
447                 snprintf(serv, sizeof serv, "%d", port);
448
449                 if ( (err = getaddrinfo(host, serv, &hints, &res)) ) {
450 #ifdef NEW_LOGGING
451                         LDAP_LOG( CONNECTION, INFO, 
452                                    "slap_get_listener_addresses: getaddrinfo failed: %s\n",
453                                    AC_GAI_STRERROR(err), 0, 0 );
454 #else
455                         Debug( LDAP_DEBUG_ANY, "daemon: getaddrinfo failed: %s\n",
456                                 AC_GAI_STRERROR(err), 0, 0);
457 #endif
458                         return -1;
459                 }
460
461                 sai = res;
462                 for (n=2; (sai = sai->ai_next) != NULL; n++) {
463                         /* EMPTY */ ;
464                 }
465                 *sal = ch_calloc(n, sizeof(void *));
466                 if (*sal == NULL) {
467                         return -1;
468                 }
469
470                 sap = *sal;
471                 *sap = NULL;
472
473                 for ( sai=res; sai; sai=sai->ai_next ) {
474                         if( sai->ai_addr == NULL ) {
475 #ifdef NEW_LOGGING
476                                 LDAP_LOG( CONNECTION, INFO,
477                                         "slap_get_listener_addresses: "
478                                         "getaddrinfo ai_addr is NULL?\n", 0, 0, 0 );
479 #else
480                                 Debug( LDAP_DEBUG_ANY, "slap_get_listener_addresses: "
481                                         "getaddrinfo ai_addr is NULL?\n", 0, 0, 0 );
482 #endif
483                                 freeaddrinfo(res);
484                                 goto errexit;
485                         }
486
487                         switch (sai->ai_family) {
488 #  ifdef LDAP_PF_INET6
489                         case AF_INET6:
490                                 *sap = ch_malloc(sizeof(struct sockaddr_in6));
491                                 if (*sap == NULL) {
492                                         freeaddrinfo(res);
493                                         goto errexit;
494                                 }
495                                 *(struct sockaddr_in6 *)*sap =
496                                         *((struct sockaddr_in6 *)sai->ai_addr);
497                                 break;
498 #  endif
499                         case AF_INET:
500                                 *sap = ch_malloc(sizeof(struct sockaddr_in));
501                                 if (*sap == NULL) {
502                                         freeaddrinfo(res);
503                                         goto errexit;
504                                 }
505                                 *(struct sockaddr_in *)*sap =
506                                         *((struct sockaddr_in *)sai->ai_addr);
507                                 break;
508                         default:
509                                 *sap = NULL;
510                                 break;
511                         }
512
513                         if (*sap != NULL) {
514                                 (*sap)->sa_family = sai->ai_family;
515                                 sap++;
516                                 *sap = NULL;
517                         }
518                 }
519
520                 freeaddrinfo(res);
521 #else
522                 int i, n = 1;
523                 struct in_addr in;
524                 struct hostent *he = NULL;
525
526                 if ( host == NULL ) {
527                         in.s_addr = htonl(INADDR_ANY);
528
529                 } else if ( !inet_aton( host, &in ) ) {
530                         he = gethostbyname( host );
531                         if( he == NULL ) {
532 #ifdef NEW_LOGGING
533                                 LDAP_LOG( CONNECTION, INFO, 
534                                         "slap_get_listener_addresses: invalid host %s\n", host, 0, 0 );
535 #else
536                                 Debug( LDAP_DEBUG_ANY,
537                                        "daemon: invalid host %s", host, 0, 0);
538 #endif
539                                 return -1;
540                         }
541                         for (n = 0; he->h_addr_list[n]; n++) ;
542                 }
543
544                 *sal = ch_malloc((n+1) * sizeof(void *));
545                 if (*sal == NULL) {
546                         return -1;
547                 }
548
549                 sap = *sal;
550                 for ( i = 0; i<n; i++ ) {
551                         sap[i] = ch_malloc(sizeof(struct sockaddr_in));
552                         if (*sap == NULL) {
553                                 goto errexit;
554                         }
555                         (void)memset( (void *)sap[i], '\0', sizeof(struct sockaddr_in) );
556                         sap[i]->sa_family = AF_INET;
557                         ((struct sockaddr_in *)sap[i])->sin_port = htons(port);
558                         if (he) {
559                                 AC_MEMCPY( &((struct sockaddr_in *)sap[i])->sin_addr, he->h_addr_list[i], sizeof(struct in_addr) );
560                         } else {
561                                 AC_MEMCPY( &((struct sockaddr_in *)sap[i])->sin_addr, &in, sizeof(struct in_addr) );
562                         }
563                 }
564                 sap[i] = NULL;
565 #endif
566         }
567
568         return 0;
569
570 errexit:
571         slap_free_listener_addresses(*sal);
572         return -1;
573 }
574
575 static int slap_open_listener(
576         const char* url,
577         int *listeners,
578         int *cur
579         )
580 {
581         int     num, tmp, rc;
582         Listener l;
583         Listener *li;
584         LDAPURLDesc *lud;
585         unsigned short port;
586         int err, addrlen = 0;
587         struct sockaddr **sal, **psal;
588         int socktype = SOCK_STREAM;     /* default to COTS */
589
590 #if defined(LDAP_PF_LOCAL) || defined(SLAP_X_LISTENER_MOD)
591         /*
592          * use safe defaults
593          */
594         int     crit = 1;
595 #endif /* LDAP_PF_LOCAL || SLAP_X_LISTENER_MOD */
596
597         rc = ldap_url_parse( url, &lud );
598
599         if( rc != LDAP_URL_SUCCESS ) {
600 #ifdef NEW_LOGGING
601                 LDAP_LOG( CONNECTION, ERR, 
602                         "slap_open_listener: listen URL \"%s\" parse error %d\n",
603                         url, rc , 0 );
604 #else
605                 Debug( LDAP_DEBUG_ANY,
606                         "daemon: listen URL \"%s\" parse error=%d\n",
607                         url, rc, 0 );
608 #endif
609                 return rc;
610         }
611
612         l.sl_url.bv_val = NULL;
613
614 #ifndef HAVE_TLS
615         if( ldap_pvt_url_scheme2tls( lud->lud_scheme ) ) {
616 #ifdef NEW_LOGGING
617                 LDAP_LOG( CONNECTION, INFO, 
618                            "slap_open_listener: TLS is not supported (%s)\n", url, 0, 0 );
619 #else
620                 Debug( LDAP_DEBUG_ANY,
621                         "daemon: TLS not supported (%s)\n",
622                         url, 0, 0 );
623 #endif
624                 ldap_free_urldesc( lud );
625                 return -1;
626         }
627
628         if(! lud->lud_port ) {
629                 lud->lud_port = LDAP_PORT;
630         }
631
632 #else
633         l.sl_is_tls = ldap_pvt_url_scheme2tls( lud->lud_scheme );
634
635         if(! lud->lud_port ) {
636                 lud->lud_port = l.sl_is_tls ? LDAPS_PORT : LDAP_PORT;
637         }
638 #endif
639
640         port = (unsigned short) lud->lud_port;
641
642         tmp = ldap_pvt_url_scheme2proto(lud->lud_scheme);
643         if ( tmp == LDAP_PROTO_IPC ) {
644 #ifdef LDAP_PF_LOCAL
645                 if ( lud->lud_host == NULL || lud->lud_host[0] == '\0' ) {
646                         err = slap_get_listener_addresses(LDAPI_SOCK, 0, &sal);
647                 } else {
648                         err = slap_get_listener_addresses(lud->lud_host, 0, &sal);
649                 }
650 #else
651
652 #ifdef NEW_LOGGING
653                 LDAP_LOG( CONNECTION, INFO, 
654                         "slap_open_listener: URL scheme is not supported: %s\n", url, 0, 0 );
655 #else
656                 Debug( LDAP_DEBUG_ANY, "daemon: URL scheme not supported: %s",
657                         url, 0, 0);
658 #endif
659                 ldap_free_urldesc( lud );
660                 return -1;
661 #endif
662         } else {
663 #ifdef LDAP_CONNECTIONLESS
664                 l.sl_is_udp = ( tmp == LDAP_PROTO_UDP );
665 #endif
666                 if( lud->lud_host == NULL || lud->lud_host[0] == '\0'
667                         || strcmp(lud->lud_host, "*") == 0 )
668                 {
669                         err = slap_get_listener_addresses(NULL, port, &sal);
670                 } else {
671                         err = slap_get_listener_addresses(lud->lud_host, port, &sal);
672                 }
673         }
674
675 #if defined(LDAP_PF_LOCAL) || defined(SLAP_X_LISTENER_MOD)
676         if ( lud->lud_exts ) {
677                 err = get_url_perms( lud->lud_exts, &l.sl_perms, &crit );
678         } else {
679                 l.sl_perms = S_IRWXU;
680         }
681 #endif /* LDAP_PF_LOCAL || SLAP_X_LISTENER_MOD */
682
683         ldap_free_urldesc( lud );
684         if ( err ) {
685                 return -1;
686         }
687
688         /* If we got more than one address returned, we need to make space
689          * for it in the slap_listeners array.
690          */
691         for ( num=0; sal[num]; num++ );
692         if ( num > 1 ) {
693                 *listeners += num-1;
694                 slap_listeners = ch_realloc( slap_listeners, (*listeners + 1) * sizeof(Listener *) );
695         }
696
697         psal = sal;
698         while ( *sal != NULL ) {
699                 switch( (*sal)->sa_family ) {
700                 case AF_INET:
701 #ifdef LDAP_PF_INET6
702                 case AF_INET6:
703 #endif
704 #ifdef LDAP_PF_LOCAL
705                 case AF_LOCAL:
706 #endif
707                         break;
708                 default:
709                         sal++;
710                         continue;
711                 }
712 #ifdef LDAP_CONNECTIONLESS
713                 if( l.sl_is_udp ) socktype = SOCK_DGRAM;
714 #endif
715                 l.sl_sd = socket( (*sal)->sa_family, socktype, 0);
716                 if ( l.sl_sd == AC_SOCKET_INVALID ) {
717                         int err = sock_errno();
718 #ifdef NEW_LOGGING
719                         LDAP_LOG( CONNECTION, ERR, 
720                                 "slap_open_listener: socket() failed errno=%d (%s)\n",
721                                 err, sock_errstr(err), 0 );
722 #else
723                         Debug( LDAP_DEBUG_ANY,
724                                 "daemon: socket() failed errno=%d (%s)\n", err,
725                                 sock_errstr(err), 0 );
726 #endif
727                         sal++;
728                         continue;
729                 }
730 #ifndef HAVE_WINSOCK
731                 if ( l.sl_sd >= dtblsize ) {
732 #ifdef NEW_LOGGING
733                         LDAP_LOG( CONNECTION, ERR, 
734                                 "slap_open_listener: listener descriptor %ld is too "
735                                 "great %ld\n", (long)l.sl_sd, (long)dtblsize, 0 );
736 #else
737                         Debug( LDAP_DEBUG_ANY,
738                                "daemon: listener descriptor %ld is too great %ld\n",
739                                (long) l.sl_sd, (long) dtblsize, 0 );
740 #endif
741                         tcp_close( l.sl_sd );
742                         sal++;
743                         continue;
744                 }
745 #endif
746 #ifdef LDAP_PF_LOCAL
747                 if ( (*sal)->sa_family == AF_LOCAL ) {
748                         unlink ( ((struct sockaddr_un *)*sal)->sun_path );
749                 } else
750 #endif
751                 {
752 #ifdef SO_REUSEADDR
753                         /* enable address reuse */
754                         tmp = 1;
755                         rc = setsockopt( l.sl_sd, SOL_SOCKET, SO_REUSEADDR,
756                                          (char *) &tmp, sizeof(tmp) );
757                         if ( rc == AC_SOCKET_ERROR ) {
758                                 int err = sock_errno();
759 #ifdef NEW_LOGGING
760                                 LDAP_LOG( CONNECTION, INFO, 
761                                         "slap_open_listener: setsockopt( %ld, SO_REUSEADDR ) "
762                                         "failed errno %d (%s)\n", (long)l.sl_sd, err, 
763                                         sock_errstr(err) );
764 #else
765                                 Debug( LDAP_DEBUG_ANY,
766                                        "slapd(%ld): setsockopt(SO_REUSEADDR) failed errno=%d (%s)\n",
767                                        (long) l.sl_sd, err, sock_errstr(err) );
768 #endif
769                         }
770 #endif
771                 }
772
773                 switch( (*sal)->sa_family ) {
774                 case AF_INET:
775                         addrlen = sizeof(struct sockaddr_in);
776                         break;
777 #ifdef LDAP_PF_INET6
778                 case AF_INET6:
779 #ifdef IPV6_V6ONLY
780                         /* Try to use IPv6 sockets for IPv6 only */
781                         tmp = 1;
782                         rc = setsockopt( l.sl_sd, IPPROTO_IPV6, IPV6_V6ONLY,
783                                          (char *) &tmp, sizeof(tmp) );
784                         if ( rc == AC_SOCKET_ERROR ) {
785                                 int err = sock_errno();
786 #ifdef NEW_LOGGING
787                                 LDAP_LOG( CONNECTION, INFO,
788                                            "slap_open_listener: setsockopt( %ld, IPV6_V6ONLY ) failed errno %d (%s)\n",
789                                            (long)l.sl_sd, err, sock_errstr(err) );
790 #else
791                                 Debug( LDAP_DEBUG_ANY,
792                                        "slapd(%ld): setsockopt(IPV6_V6ONLY) failed errno=%d (%s)\n",
793                                        (long) l.sl_sd, err, sock_errstr(err) );
794 #endif
795                         }
796 #endif
797                         addrlen = sizeof(struct sockaddr_in6);
798                         break;
799 #endif
800 #ifdef LDAP_PF_LOCAL
801                 case AF_LOCAL:
802                         addrlen = sizeof(struct sockaddr_un);
803                         break;
804 #endif
805                 }
806
807                 if (bind(l.sl_sd, *sal, addrlen)) {
808                         err = sock_errno();
809 #ifdef NEW_LOGGING
810                 LDAP_LOG( CONNECTION, INFO, 
811                         "slap_open_listener: bind(%ld) failed errno=%d (%s)\n",
812                         (long)l.sl_sd, err, sock_errstr(err) );
813 #else
814                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed errno=%d (%s)\n",
815                        (long) l.sl_sd, err, sock_errstr(err) );
816 #endif
817                         tcp_close( l.sl_sd );
818                         sal++;
819                         continue;
820                 }
821
822         switch ( (*sal)->sa_family ) {
823 #ifdef LDAP_PF_LOCAL
824         case AF_LOCAL: {
825                 char *addr = ((struct sockaddr_un *)*sal)->sun_path;
826                 if ( chmod( addr, l.sl_perms ) < 0 && crit ) {
827                         int err = sock_errno();
828 #ifdef NEW_LOGGING
829                         LDAP_LOG( CONNECTION, INFO, 
830                                 "slap_open_listener: fchmod(%ld) failed errno=%d (%s)\n",
831                                 (long)l.sl_sd, err, sock_errstr(err) );
832 #else
833                         Debug( LDAP_DEBUG_ANY, "daemon: fchmod(%ld) failed errno=%d (%s)",
834                                (long) l.sl_sd, err, sock_errstr(err) );
835 #endif
836                         tcp_close( l.sl_sd );
837                         slap_free_listener_addresses(psal);
838                         return -1;
839                 }
840                 l.sl_name.bv_len = strlen(addr) + sizeof("PATH=") - 1;
841                 l.sl_name.bv_val = ber_memalloc( l.sl_name.bv_len + 1 );
842                 snprintf( l.sl_name.bv_val, l.sl_name.bv_len + 1, 
843                                 "PATH=%s", addr );
844         } break;
845 #endif /* LDAP_PF_LOCAL */
846
847         case AF_INET: {
848                 char *s;
849 #if defined( HAVE_GETADDRINFO ) && defined( HAVE_INET_NTOP )
850                 char addr[INET_ADDRSTRLEN];
851                 inet_ntop( AF_INET, &((struct sockaddr_in *)*sal)->sin_addr,
852                            addr, sizeof(addr) );
853                 s = addr;
854 #else
855                 s = inet_ntoa( ((struct sockaddr_in *) *sal)->sin_addr );
856 #endif
857                 port = ntohs( ((struct sockaddr_in *)*sal) ->sin_port );
858                 l.sl_name.bv_val = ber_memalloc( sizeof("IP=255.255.255.255:65535") );
859                 snprintf( l.sl_name.bv_val, sizeof("IP=255.255.255.255:65535"),
860                         "IP=%s:%d",
861                          s != NULL ? s : "unknown" , port );
862                 l.sl_name.bv_len = strlen( l.sl_name.bv_val );
863         } break;
864
865 #ifdef LDAP_PF_INET6
866         case AF_INET6: {
867                 char addr[INET6_ADDRSTRLEN];
868                 inet_ntop( AF_INET6, &((struct sockaddr_in6 *)*sal)->sin6_addr,
869                            addr, sizeof addr);
870                 port = ntohs( ((struct sockaddr_in6 *)*sal)->sin6_port );
871                 l.sl_name.bv_len = strlen(addr) + sizeof("IP= 65535");
872                 l.sl_name.bv_val = ber_memalloc( l.sl_name.bv_len );
873                 snprintf( l.sl_name.bv_val, l.sl_name.bv_len, "IP=%s %d", 
874                                 addr, port );
875                 l.sl_name.bv_len = strlen( l.sl_name.bv_val );
876         } break;
877 #endif /* LDAP_PF_INET6 */
878
879         default:
880 #ifdef NEW_LOGGING
881                 LDAP_LOG( CONNECTION, INFO, 
882                         "slap_open_listener: unsupported address family (%d)\n",
883                         (int)(*sal)->sa_family, 0, 0 );
884 #else
885                 Debug( LDAP_DEBUG_ANY, "daemon: unsupported address family (%d)\n",
886                         (int) (*sal)->sa_family, 0, 0 );
887 #endif
888                 break;
889         }
890
891         AC_MEMCPY(&l.sl_sa, *sal, addrlen);
892         ber_str2bv( url, 0, 1, &l.sl_url);
893         li = ch_malloc( sizeof( Listener ) );
894         *li = l;
895         slap_listeners[*cur] = li;
896         (*cur)++;
897         sal++;
898
899         } /* while ( *sal != NULL ) */
900
901         slap_free_listener_addresses(psal);
902
903         if ( l.sl_url.bv_val == NULL )
904         {
905 #ifdef NEW_LOGGING
906                 LDAP_LOG( CONNECTION, RESULTS, 
907                         "slap_open_listener: failed on %s\n", url, 0, 0 );
908 #else
909                 Debug( LDAP_DEBUG_TRACE,
910                         "slap_open_listener: failed on %s\n", url, 0, 0 );
911 #endif
912                 return -1;
913         }
914
915 #ifdef NEW_LOGGING
916         LDAP_LOG( CONNECTION, RESULTS, 
917                 "slap_open_listener: daemon initialized %s\n",
918                 l.sl_url.bv_val, 0, 0 );
919 #else
920         Debug( LDAP_DEBUG_TRACE, "daemon: initialized %s\n",
921                 l.sl_url.bv_val, 0, 0 );
922 #endif
923         return 0;
924 }
925
926 static int sockinit(void);
927 static int sockdestroy(void);
928
929 int slapd_daemon_init( const char *urls )
930 {
931         int i, j, n, rc;
932         char **u;
933
934 #ifdef NEW_LOGGING
935         LDAP_LOG( CONNECTION, ARGS, 
936                 "slapd_daemon_init: %s\n", urls ? urls : "<null>", 0, 0 );
937 #else
938         Debug( LDAP_DEBUG_ARGS, "daemon_init: %s\n",
939                 urls ? urls : "<null>", 0, 0 );
940 #endif
941         if( (rc = sockinit()) != 0 ) {
942                 return rc;
943         }
944
945 #ifdef HAVE_SYSCONF
946         dtblsize = sysconf( _SC_OPEN_MAX );
947 #elif HAVE_GETDTABLESIZE
948         dtblsize = getdtablesize();
949 #else
950         dtblsize = FD_SETSIZE;
951 #endif
952
953 #ifdef FD_SETSIZE
954         if(dtblsize > FD_SETSIZE) {
955                 dtblsize = FD_SETSIZE;
956         }
957 #endif  /* !FD_SETSIZE */
958
959         /* open a pipe (or something equivalent connected to itself).
960          * we write a byte on this fd whenever we catch a signal. The main
961          * loop will be select'ing on this socket, and will wake up when
962          * this byte arrives.
963          */
964         if( (rc = lutil_pair( wake_sds )) < 0 ) {
965 #ifdef NEW_LOGGING
966                 LDAP_LOG( CONNECTION, ERR, 
967                         "slap_daemon_init: lutil_pair() failed rc=%d\n", rc, 0, 0);
968 #else
969                 Debug( LDAP_DEBUG_ANY,
970                         "daemon: lutil_pair() failed rc=%d\n", rc, 0, 0 );
971 #endif
972                 return rc;
973         }
974
975         FD_ZERO( &slap_daemon.sd_readers );
976         FD_ZERO( &slap_daemon.sd_writers );
977
978         if( urls == NULL ) {
979                 urls = "ldap:///";
980         }
981
982         u = ldap_str2charray( urls, " " );
983
984         if( u == NULL || u[0] == NULL ) {
985 #ifdef NEW_LOGGING
986                 LDAP_LOG( CONNECTION, ERR, 
987                         "slap_daemon_init: no urls (%s) provided.\n", urls, 0, 0 );
988 #else
989                 Debug( LDAP_DEBUG_ANY, "daemon_init: no urls (%s) provided.\n",
990                         urls, 0, 0 );
991 #endif
992                 return -1;
993         }
994
995         for( i=0; u[i] != NULL; i++ ) {
996 #ifdef NEW_LOGGING
997                 LDAP_LOG( CONNECTION, DETAIL1, 
998                         "slap_daemon_init: listen on %s\n.", u[i], 0, 0 );
999 #else
1000                 Debug( LDAP_DEBUG_TRACE, "daemon_init: listen on %s\n",
1001                         u[i], 0, 0 );
1002 #endif
1003         }
1004
1005         if( i == 0 ) {
1006 #ifdef NEW_LOGGING
1007                 LDAP_LOG( CONNECTION, INFO, 
1008                          "slap_daemon_init: no listeners to open (%s)\n", urls, 0, 0 );
1009 #else
1010                 Debug( LDAP_DEBUG_ANY, "daemon_init: no listeners to open (%s)\n",
1011                         urls, 0, 0 );
1012 #endif
1013                 ldap_charray_free( u );
1014                 return -1;
1015         }
1016
1017 #ifdef NEW_LOGGING
1018         LDAP_LOG( CONNECTION, INFO, 
1019                 "slap_daemon_init: %d listeners to open...\n", i, 0, 0 );
1020 #else
1021         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners to open...\n",
1022                 i, 0, 0 );
1023 #endif
1024         slap_listeners = ch_malloc( (i+1)*sizeof(Listener *) );
1025
1026         for(n = 0, j = 0; u[n]; n++ ) {
1027                 if ( slap_open_listener( u[n], &i, &j ) ) {
1028                         ldap_charray_free( u );
1029                         return -1;
1030                 }
1031         }
1032         slap_listeners[j] = NULL;
1033
1034 #ifdef NEW_LOGGING
1035         LDAP_LOG( CONNECTION, DETAIL1, 
1036                 "slap_daemon_init: %d listeners opened\n", i, 0, 0 );
1037 #else
1038         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners opened\n",
1039                 i, 0, 0 );
1040 #endif
1041
1042 #ifdef HAVE_SLP
1043         slapd_slp_init( urls );
1044         slapd_slp_reg();
1045 #endif
1046
1047         ldap_charray_free( u );
1048         ldap_pvt_thread_mutex_init( &slap_daemon.sd_mutex );
1049         return !i;
1050 }
1051
1052
1053 int
1054 slapd_daemon_destroy(void)
1055 {
1056         connections_destroy();
1057         tcp_close( wake_sds[1] );
1058         tcp_close( wake_sds[0] );
1059         sockdestroy();
1060
1061 #ifdef HAVE_SLP
1062         slapd_slp_dereg();
1063         slapd_slp_deinit();
1064 #endif
1065
1066         return 0;
1067 }
1068
1069
1070 static void
1071 close_listeners(
1072         int remove
1073 )
1074 {
1075         int l;
1076
1077         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1078                 if ( slap_listeners[l]->sl_sd != AC_SOCKET_INVALID ) {
1079                         if ( remove )
1080                                 slapd_remove( slap_listeners[l]->sl_sd, 0 );
1081 #ifdef LDAP_PF_LOCAL
1082                         if ( slap_listeners[l]->sl_sa.sa_addr.sa_family == AF_LOCAL ) {
1083                                 unlink( slap_listeners[l]->sl_sa.sa_un_addr.sun_path );
1084                         }
1085 #endif /* LDAP_PF_LOCAL */
1086                         slapd_close( slap_listeners[l]->sl_sd );
1087                 }
1088                 if ( slap_listeners[l]->sl_url.bv_val )
1089                         ber_memfree( slap_listeners[l]->sl_url.bv_val );
1090                 if ( slap_listeners[l]->sl_name.bv_val )
1091                         ber_memfree( slap_listeners[l]->sl_name.bv_val );
1092                 free ( slap_listeners[l] );
1093                 slap_listeners[l] = NULL;
1094         }
1095 }
1096
1097
1098 static void *
1099 slapd_daemon_task(
1100         void *ptr
1101 )
1102 {
1103         int l;
1104         time_t  last_idle_check = 0;
1105         time( &starttime );
1106
1107         if ( global_idletimeout > 0 ) {
1108                 last_idle_check = slap_get_time();
1109         }
1110         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1111                 if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1112                         continue;
1113 #ifdef LDAP_CONNECTIONLESS
1114                 /* Since this is connectionless, the data port is the
1115                  * listening port. The listen() and accept() calls
1116                  * are unnecessary.
1117                  */
1118                 if ( slap_listeners[l]->sl_is_udp ) {
1119                         slapd_add( slap_listeners[l]->sl_sd );
1120                         continue;
1121                 }
1122 #endif
1123
1124                 if ( listen( slap_listeners[l]->sl_sd, SLAPD_LISTEN ) == -1 ) {
1125                         int err = sock_errno();
1126
1127 #ifdef LDAP_PF_INET6
1128                         /* If error is EADDRINUSE, we are trying to listen to INADDR_ANY and
1129                          * we are already listening to in6addr_any, then we want to ignore
1130                          * this and continue.
1131                          */
1132                         if ( err == EADDRINUSE ) {
1133                                 int i;
1134                                 struct sockaddr_in sa = slap_listeners[l]->sl_sa.sa_in_addr;
1135                                 struct sockaddr_in6 sa6;
1136                                 
1137                                 if ( sa.sin_family == AF_INET &&
1138                                      sa.sin_addr.s_addr == htonl(INADDR_ANY) ) {
1139                                         for ( i = 0 ; i < l; i++ ) {
1140                                                 sa6 = slap_listeners[i]->sl_sa.sa_in6_addr;
1141                                                 if ( sa6.sin6_family == AF_INET6 &&
1142                                                      !memcmp( &sa6.sin6_addr, &in6addr_any, sizeof(struct in6_addr) ) )
1143                                                         break;
1144                                         }
1145
1146                                         if ( i < l ) {
1147                                                 /* We are already listening to in6addr_any */
1148 #ifdef NEW_LOGGING
1149                                                 LDAP_LOG(CONNECTION, WARNING,
1150                                                            "slapd_daemon_task: Attempt to listen to 0.0.0.0 failed, already listening on ::, assuming IPv4 included\n", 0, 0, 0 );
1151 #else
1152                                                 Debug( LDAP_DEBUG_CONNS,
1153                                                        "daemon: Attempt to listen to 0.0.0.0 failed, already listening on ::, assuming IPv4 included\n",
1154                                                        0, 0, 0 );
1155 #endif
1156                                                 slapd_close( slap_listeners[l]->sl_sd );
1157                                                 slap_listeners[l]->sl_sd = AC_SOCKET_INVALID;
1158                                                 continue;
1159                                         }
1160                                 }
1161                         }
1162 #endif                          
1163 #ifdef NEW_LOGGING
1164                         LDAP_LOG( CONNECTION, ERR, 
1165                                 "slapd_daemon_task: listen( %s, 5 ) failed errno=%d (%s)\n",
1166                                 slap_listeners[l]->sl_url.bv_val, err, sock_errstr(err) );
1167 #else
1168                         Debug( LDAP_DEBUG_ANY,
1169                                 "daemon: listen(%s, 5) failed errno=%d (%s)\n",
1170                                         slap_listeners[l]->sl_url.bv_val, err,
1171                                         sock_errstr(err) );
1172 #endif
1173                         return( (void*)-1 );
1174                 }
1175
1176                 slapd_add( slap_listeners[l]->sl_sd );
1177         }
1178
1179 #ifdef HAVE_NT_SERVICE_MANAGER
1180         if ( started_event != NULL ) {
1181                 ldap_pvt_thread_cond_signal( &started_event );
1182         }
1183 #endif
1184         /* initialization complete. Here comes the loop. */
1185
1186         while ( !slapd_shutdown ) {
1187                 ber_socket_t i;
1188                 int ns;
1189                 int at;
1190                 ber_socket_t nfds;
1191 #define SLAPD_EBADF_LIMIT 16
1192                 int ebadf = 0;
1193                 int emfile = 0;
1194
1195 #define SLAPD_IDLE_CHECK_LIMIT 4
1196                 time_t  now;
1197
1198
1199                 fd_set                  readfds;
1200                 fd_set                  writefds;
1201                 Sockaddr                from;
1202
1203 #if defined(SLAPD_RLOOKUPS)
1204                 struct hostent          *hp;
1205 #endif
1206                 struct timeval          zero;
1207                 struct timeval          *tvp;
1208
1209                 if( emfile ) {
1210                         now = slap_get_time();
1211                         connections_timeout_idle( now );
1212                 }
1213                 else if ( global_idletimeout > 0 ) {
1214                         now = slap_get_time();
1215                         if ( difftime( last_idle_check+global_idletimeout/SLAPD_IDLE_CHECK_LIMIT, now ) < 0 ) {
1216                                 connections_timeout_idle( now );
1217                         }
1218                 }
1219
1220 #ifdef SIGHUP
1221                 if( slapd_gentle_shutdown ) {
1222                         ber_socket_t active;
1223
1224                         if( slapd_gentle_shutdown == 1 ) {
1225                                 Debug( LDAP_DEBUG_ANY, "slapd gentle shutdown\n", 0, 0, 0 );
1226                                 close_listeners( 1 );
1227                                 global_restrictops |= SLAP_RESTRICT_OP_WRITES;
1228                                 slapd_gentle_shutdown = 2;
1229                         }
1230
1231                         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1232                         active = slap_daemon.sd_nactives;
1233                         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1234                         if( active == 0 ) {
1235                                 slapd_shutdown = 2;
1236                                 break;
1237                         }
1238                 }
1239 #endif
1240
1241                 FD_ZERO( &writefds );
1242                 FD_ZERO( &readfds );
1243
1244                 zero.tv_sec = 0;
1245                 zero.tv_usec = 0;
1246
1247                 ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1248
1249 #ifdef FD_SET_MANUAL_COPY
1250                 for( s = 0; s < nfds; s++ ) {
1251                         if(FD_ISSET( &slap_sd_readers, s )) {
1252                                 FD_SET( s, &readfds );
1253                         }
1254                         if(FD_ISSET( &slap_sd_writers, s )) {
1255                                 FD_SET( s, &writefds );
1256                         }
1257                 }
1258 #else
1259                 AC_MEMCPY( &readfds, &slap_daemon.sd_readers, sizeof(fd_set) );
1260                 AC_MEMCPY( &writefds, &slap_daemon.sd_writers, sizeof(fd_set) );
1261 #endif
1262                 assert(!FD_ISSET(wake_sds[0], &readfds));
1263                 FD_SET( wake_sds[0], &readfds );
1264
1265                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1266                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1267                                 continue;
1268                         if (!FD_ISSET(slap_listeners[l]->sl_sd, &readfds))
1269                             FD_SET( slap_listeners[l]->sl_sd, &readfds );
1270                 }
1271
1272 #ifndef HAVE_WINSOCK
1273                 nfds = slap_daemon.sd_nfds;
1274 #else
1275                 nfds = dtblsize;
1276 #endif
1277
1278                 ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1279
1280                 at = ldap_pvt_thread_pool_backload(&connection_pool);
1281
1282 #if defined( HAVE_YIELDING_SELECT ) || defined( NO_THREADS )
1283                 tvp = NULL;
1284 #else
1285                 tvp = at ? &zero : NULL;
1286 #endif
1287
1288                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1289                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1290                                 continue;
1291
1292 #ifdef NEW_LOGGING
1293                         LDAP_LOG( CONNECTION, DETAIL1, 
1294                                 "slapd_daemon_task: select: listen=%d "
1295                                 "active_threads=%d tvp=%s\n",
1296                                 slap_listeners[l]->sl_sd, at, tvp == NULL ? "NULL" : "zero" );
1297 #else
1298                         Debug( LDAP_DEBUG_CONNS,
1299                                 "daemon: select: listen=%d active_threads=%d tvp=%s\n",
1300                                         slap_listeners[l]->sl_sd, at,
1301                                         tvp == NULL ? "NULL" : "zero" );
1302 #endif
1303                 }
1304
1305                 switch(ns = select( nfds, &readfds,
1306 #ifdef HAVE_WINSOCK
1307                         /* don't pass empty fd_set */
1308                         ( writefds.fd_count > 0 ? &writefds : NULL ),
1309 #else
1310                         &writefds,
1311 #endif
1312                         NULL, tvp ))
1313                 {
1314                 case -1: {      /* failure - try again */
1315                                 int err = sock_errno();
1316
1317                                 if( err == EBADF
1318 #ifdef WSAENOTSOCK
1319                                         /* you'd think this would be EBADF */
1320                                         || err == WSAENOTSOCK
1321 #endif
1322                                 ) {
1323                                         if (++ebadf < SLAPD_EBADF_LIMIT)
1324                                                 continue;
1325                                 }
1326
1327                                 if( err != EINTR ) {
1328 #ifdef NEW_LOGGING
1329                                         LDAP_LOG( CONNECTION, INFO, 
1330                                                 "slapd_daemon_task: select failed (%d): %s\n",
1331                                                 err, sock_errstr(err), 0 );
1332 #else
1333                                         Debug( LDAP_DEBUG_CONNS,
1334                                                 "daemon: select failed (%d): %s\n",
1335                                                 err, sock_errstr(err), 0 );
1336 #endif
1337                                         slapd_shutdown = 2;
1338                                 }
1339                         }
1340                         continue;
1341
1342                 case 0:         /* timeout - let threads run */
1343                         ebadf = 0;
1344 #ifdef NEW_LOGGING
1345                         LDAP_LOG( CONNECTION, DETAIL2,
1346                                    "slapd_daemon_task: select timeout - yielding\n", 0, 0, 0 );
1347 #else
1348                         Debug( LDAP_DEBUG_CONNS, "daemon: select timeout - yielding\n",
1349                             0, 0, 0 );
1350 #endif
1351                         ldap_pvt_thread_yield();
1352                         continue;
1353
1354                 default:        /* something happened - deal with it */
1355                         if( slapd_shutdown ) continue;
1356
1357                         ebadf = 0;
1358 #ifdef NEW_LOGGING
1359                         LDAP_LOG( CONNECTION, DETAIL2, 
1360                                    "slapd_daemon_task: activity on %d descriptors\n", ns, 0, 0 );
1361 #else
1362                         Debug( LDAP_DEBUG_CONNS, "daemon: activity on %d descriptors\n",
1363                                 ns, 0, 0 );
1364 #endif
1365                         /* FALL THRU */
1366                 }
1367
1368                 if( FD_ISSET( wake_sds[0], &readfds ) ) {
1369                         char c[BUFSIZ];
1370                         tcp_read( wake_sds[0], c, sizeof(c) );
1371 #if defined(NO_THREADS) || defined(HAVE_GNU_PTH)
1372                         waking = 0;
1373 #endif
1374                         continue;
1375                 }
1376
1377                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1378                         ber_socket_t s;
1379                         socklen_t len = sizeof(from);
1380                         long id;
1381                         slap_ssf_t ssf = 0;
1382                         char *authid = NULL;
1383
1384                         char    *dnsname = NULL;
1385                         char    *peeraddr = NULL;
1386 #ifdef LDAP_PF_LOCAL
1387                         char    peername[MAXPATHLEN + sizeof("PATH=")];
1388 #elif defined(LDAP_PF_INET6)
1389                         char    peername[sizeof("IP=ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff 65535")];
1390 #else
1391                         char    peername[sizeof("IP=255.255.255.255:65336")];
1392 #endif /* LDAP_PF_LOCAL */
1393
1394                         peername[0] = '\0';
1395
1396                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1397                                 continue;
1398
1399                         if ( !FD_ISSET( slap_listeners[l]->sl_sd, &readfds ) )
1400                                 continue;
1401
1402 #ifdef LDAP_CONNECTIONLESS
1403                         if ( slap_listeners[l]->sl_is_udp ) {
1404                                 /* The first time we receive a query, we set this
1405                                  * up as a "connection". It remains open for the life
1406                                  * of the slapd.
1407                                  */
1408                                 if ( slap_listeners[l]->sl_is_udp < 2 ) {
1409                                     id = connection_init(
1410                                         slap_listeners[l]->sl_sd,
1411                                         slap_listeners[l], "", "",
1412                                         2, ssf, authid );
1413                                     slap_listeners[l]->sl_is_udp++;
1414                                 }
1415                                 continue;
1416                         }
1417 #endif
1418
1419                         s = accept( slap_listeners[l]->sl_sd,
1420                                 (struct sockaddr *) &from, &len );
1421                         if ( s == AC_SOCKET_INVALID ) {
1422                                 int err = sock_errno();
1423
1424 #ifdef EMFILE
1425                                 if( err == EMFILE ) {
1426                                         emfile++;
1427                                 } else
1428 #endif
1429 #ifdef ENFILE
1430                                 if( err == ENFILE ) {
1431                                         emfile++;
1432                                 } else 
1433 #endif
1434                                 {
1435                                         emfile=0;
1436                                 }
1437
1438                                 if( emfile < 3 ) {
1439 #ifdef NEW_LOGGING
1440                                         LDAP_LOG( CONNECTION, ERR, 
1441                                                 "slapd_daemon_task: accept(%ld) failed errno=%d (%s)\n",
1442                                                 (long)slap_listeners[l]->sl_sd, 
1443                                                 err, sock_errstr(err) );
1444 #else
1445                                         Debug( LDAP_DEBUG_ANY,
1446                                             "daemon: accept(%ld) failed errno=%d (%s)\n",
1447                                             (long) slap_listeners[l]->sl_sd, err,
1448                                             sock_errstr(err) );
1449 #endif
1450                                 } else {
1451                                         /* prevent busy loop */
1452 #  ifdef HAVE_USLEEP
1453                                         if( emfile % 4 == 3 ) usleep( 250 );
1454 #  else
1455                                         if( emfile % 8 == 7 ) sleep( 1 );
1456 #  endif
1457                                 }
1458
1459                                 ldap_pvt_thread_yield();
1460                                 continue;
1461                         }
1462                         emfile = 0;
1463
1464 #ifndef HAVE_WINSOCK
1465                         /* make sure descriptor number isn't too great */
1466                         if ( s >= dtblsize ) {
1467 #ifdef NEW_LOGGING
1468                                 LDAP_LOG( CONNECTION, ERR, 
1469                                    "slapd_daemon_task: %ld beyond descriptor table size %ld\n",
1470                                    (long)s, (long)dtblsize, 0 );
1471 #else
1472                                 Debug( LDAP_DEBUG_ANY,
1473                                         "daemon: %ld beyond descriptor table size %ld\n",
1474                                         (long) s, (long) dtblsize, 0 );
1475 #endif
1476
1477                                 slapd_close(s);
1478                                 ldap_pvt_thread_yield();
1479                                 continue;
1480                         }
1481 #endif
1482
1483 #ifdef LDAP_DEBUG
1484                         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1485
1486                         /* newly accepted stream should not be in any of the FD SETS */
1487                         assert( !FD_ISSET( s, &slap_daemon.sd_actives) );
1488                         assert( !FD_ISSET( s, &slap_daemon.sd_readers) );
1489                         assert( !FD_ISSET( s, &slap_daemon.sd_writers) );
1490
1491                         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1492 #endif
1493
1494 #if defined( SO_KEEPALIVE ) || defined( TCP_NODELAY )
1495 #ifdef LDAP_PF_LOCAL
1496                         /* for IPv4 and IPv6 sockets only */
1497                         if ( from.sa_addr.sa_family != AF_LOCAL )
1498 #endif /* LDAP_PF_LOCAL */
1499                         {
1500                                 int rc;
1501                                 int tmp;
1502 #ifdef SO_KEEPALIVE
1503                                 /* enable keep alives */
1504                                 tmp = 1;
1505                                 rc = setsockopt( s, SOL_SOCKET, SO_KEEPALIVE,
1506                                         (char *) &tmp, sizeof(tmp) );
1507                                 if ( rc == AC_SOCKET_ERROR ) {
1508                                         int err = sock_errno();
1509 #ifdef NEW_LOGGING
1510                                         LDAP_LOG( CONNECTION, ERR, 
1511                                                 "slapd_daemon_task: setsockopt( %ld, SO_KEEPALIVE)"
1512                                            " failed errno=%d (%s)\n",
1513                                                 (long)s, err, sock_errstr(err) );
1514 #else
1515                                         Debug( LDAP_DEBUG_ANY,
1516                                                 "slapd(%ld): setsockopt(SO_KEEPALIVE) failed "
1517                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1518 #endif
1519                                 }
1520 #endif
1521 #ifdef TCP_NODELAY
1522                                 /* enable no delay */
1523                                 tmp = 1;
1524                                 rc = setsockopt( s, IPPROTO_TCP, TCP_NODELAY,
1525                                         (char *)&tmp, sizeof(tmp) );
1526                                 if ( rc == AC_SOCKET_ERROR ) {
1527                                         int err = sock_errno();
1528 #ifdef NEW_LOGGING
1529                                         LDAP_LOG( CONNECTION, ERR, 
1530                                                 "slapd_daemon_task: setsockopt( %ld, "
1531                                                 "TCP_NODELAY) failed errno=%d (%s)\n",
1532                                                 (long)s, err, sock_errstr(err) );
1533 #else
1534                                         Debug( LDAP_DEBUG_ANY,
1535                                                 "slapd(%ld): setsockopt(TCP_NODELAY) failed "
1536                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1537 #endif
1538                                 }
1539 #endif
1540                         }
1541 #endif
1542
1543 #ifdef NEW_LOGGING
1544                         LDAP_LOG( CONNECTION, DETAIL1, 
1545                                 "slapd_daemon_task: new connection on %ld\n", (long)s, 0, 0 );
1546 #else
1547                         Debug( LDAP_DEBUG_CONNS, "daemon: new connection on %ld\n",
1548                                 (long) s, 0, 0 );
1549 #endif
1550                         switch ( from.sa_addr.sa_family ) {
1551 #  ifdef LDAP_PF_LOCAL
1552                         case AF_LOCAL:
1553                                 sprintf( peername, "PATH=%s", from.sa_un_addr.sun_path );
1554                                 ssf = LDAP_PVT_SASL_LOCAL_SSF;
1555                                 dnsname = "local";
1556                                 break;
1557 #endif /* LDAP_PF_LOCAL */
1558
1559 #  ifdef LDAP_PF_INET6
1560                         case AF_INET6:
1561                         if ( IN6_IS_ADDR_V4MAPPED(&from.sa_in6_addr.sin6_addr) ) {
1562                                 peeraddr = inet_ntoa( *((struct in_addr *)
1563                                                         &from.sa_in6_addr.sin6_addr.s6_addr[12]) );
1564                                 sprintf( peername, "IP=%s:%d",
1565                                          peeraddr != NULL ? peeraddr : "unknown",
1566                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1567                         } else {
1568                                 char addr[INET6_ADDRSTRLEN];
1569
1570                                 peeraddr = (char *) inet_ntop( AF_INET6,
1571                                                       &from.sa_in6_addr.sin6_addr,
1572                                                       addr, sizeof addr );
1573                                 sprintf( peername, "IP=%s %d",
1574                                          peeraddr != NULL ? peeraddr : "unknown",
1575                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1576                         }
1577                         break;
1578 #  endif /* LDAP_PF_INET6 */
1579
1580                         case AF_INET:
1581                         peeraddr = inet_ntoa( from.sa_in_addr.sin_addr );
1582                         sprintf( peername, "IP=%s:%d",
1583                                 peeraddr != NULL ? peeraddr : "unknown",
1584                                 (unsigned) ntohs( from.sa_in_addr.sin_port ) );
1585                                 break;
1586
1587                         default:
1588                                 slapd_close(s);
1589                                 continue;
1590                         }
1591
1592                         if ( ( from.sa_addr.sa_family == AF_INET )
1593 #ifdef LDAP_PF_INET6
1594                                 || ( from.sa_addr.sa_family == AF_INET6 )
1595 #endif
1596                         ) {
1597 #ifdef SLAPD_RLOOKUPS
1598                                 if ( use_reverse_lookup ) {
1599 #  ifdef LDAP_PF_INET6
1600                                         if ( from.sa_addr.sa_family == AF_INET6 )
1601                                                 hp = gethostbyaddr(
1602                                                         (char *)&(from.sa_in6_addr.sin6_addr),
1603                                                         sizeof(from.sa_in6_addr.sin6_addr),
1604                                                         AF_INET6 );
1605                                         else
1606 #  endif /* LDAP_PF_INET6 */
1607                                         hp = gethostbyaddr(
1608                                                 (char *) &(from.sa_in_addr.sin_addr),
1609                                                 sizeof(from.sa_in_addr.sin_addr),
1610                                                 AF_INET );
1611                                         dnsname = hp ? ldap_pvt_str2lower( hp->h_name ) : NULL;
1612                                 }
1613 #else
1614                                 dnsname = NULL;
1615 #endif /* SLAPD_RLOOKUPS */
1616
1617 #ifdef HAVE_TCPD
1618                                 if ( !hosts_ctl("slapd",
1619                                                 dnsname != NULL ? dnsname : STRING_UNKNOWN,
1620                                                 peeraddr != NULL ? peeraddr : STRING_UNKNOWN,
1621                                                 STRING_UNKNOWN ))
1622                                 {
1623                                         /* DENY ACCESS */
1624                                         Statslog( LDAP_DEBUG_ANY,
1625                                                 "fd=%ld host access from %s (%s) denied.\n",
1626                                                 (long) s,
1627                                                 dnsname != NULL ? dnsname : "unknown",
1628                                                 peeraddr != NULL ? peeraddr : "unknown",
1629                                                 0, 0 );
1630                                         slapd_close(s);
1631                                         continue;
1632                                 }
1633 #endif /* HAVE_TCPD */
1634                         }
1635
1636                         id = connection_init(s,
1637                                 slap_listeners[l],
1638                                 dnsname != NULL ? dnsname : "unknown",
1639                                 peername,
1640 #ifdef HAVE_TLS
1641                                 slap_listeners[l]->sl_is_tls,
1642 #else
1643                                 0,
1644 #endif
1645                                 ssf,
1646                                 authid );
1647
1648                         if( authid ) ch_free(authid);
1649
1650                         if( id < 0 ) {
1651 #ifdef NEW_LOGGING
1652                                 LDAP_LOG( CONNECTION, INFO, 
1653                                         "slapd_daemon_task: "
1654                                         "connection_init(%ld, %s, %s) "
1655                                         "failed.\n",
1656                                         (long)s, peername, 
1657                                         slap_listeners[l]->sl_name.bv_val );
1658 #else
1659                                 Debug( LDAP_DEBUG_ANY,
1660                                         "daemon: connection_init(%ld, %s, %s) "
1661                                         "failed.\n",
1662                                         (long) s,
1663                                         peername,
1664                                         slap_listeners[l]->sl_name.bv_val );
1665 #endif
1666                                 slapd_close(s);
1667                                 continue;
1668                         }
1669
1670                         Statslog( LDAP_DEBUG_STATS,
1671                                 "daemon: conn=%ld fd=%ld connection from %s "
1672                                 "(%s) accepted.\n",
1673                                 id, (long) s,
1674                                 peername,
1675                                 slap_listeners[l]->sl_name.bv_val,
1676                                 0 );
1677
1678                         slapd_add( s );
1679                         continue;
1680                 }
1681
1682 #ifdef LDAP_DEBUG
1683 #ifdef NEW_LOGGING
1684                 LDAP_LOG( CONNECTION, DETAIL2,
1685                            "slapd_daemon_task: activity on ", 0, 0, 0 );
1686 #else
1687                 Debug( LDAP_DEBUG_CONNS, "daemon: activity on:", 0, 0, 0 );
1688 #endif
1689 #ifdef HAVE_WINSOCK
1690                 for ( i = 0; i < readfds.fd_count; i++ ) {
1691 #ifdef NEW_LOGGING
1692                         LDAP_LOG( CONNECTION, DETAIL2, 
1693                                 " %d%s", readfds.fd_array[i], "r", 0, 0 );
1694 #else
1695                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1696                                 readfds.fd_array[i], "r", 0 );
1697 #endif
1698                 }
1699                 for ( i = 0; i < writefds.fd_count; i++ ) {
1700 #ifdef NEW_LOGGING
1701                         LDAP_LOG( CONNECTION, DETAIL2, 
1702                                 " %d%s", writefds.fd_array[i], "w" , 0 );
1703 #else
1704                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1705                                 writefds.fd_array[i], "w", 0 );
1706 #endif
1707                 }
1708
1709 #else
1710                 for ( i = 0; i < nfds; i++ ) {
1711                         int     r, w;
1712                         int     is_listener = 0;
1713
1714                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1715                                 if ( i == slap_listeners[l]->sl_sd ) {
1716 #ifdef LDAP_CONNECTIONLESS
1717                                 /* The listener is the data port. Don't
1718                                  * skip it.
1719                                  */
1720                                         if (slap_listeners[l]->sl_is_udp) continue;
1721 #endif
1722                                         is_listener = 1;
1723                                         break;
1724                                 }
1725                         }
1726                         if ( is_listener ) {
1727                                 continue;
1728                         }
1729                         r = FD_ISSET( i, &readfds );
1730                         w = FD_ISSET( i, &writefds );
1731                         if ( r || w ) {
1732 #ifdef NEW_LOGGING
1733                                 LDAP_LOG( CONNECTION, DETAIL2, 
1734                                         " %d%s%s", i, r ? "r" : "", w ? "w" : "" );
1735 #else
1736                                 Debug( LDAP_DEBUG_CONNS, " %d%s%s", i,
1737                                     r ? "r" : "", w ? "w" : "" );
1738 #endif
1739                         }
1740                 }
1741 #endif
1742 #ifdef NEW_LOGGING
1743                 LDAP_LOG( CONNECTION, DETAIL2, "\n", 0, 0, 0 );
1744 #else
1745                 Debug( LDAP_DEBUG_CONNS, "\n", 0, 0, 0 );
1746 #endif
1747
1748 #endif
1749
1750                 /* loop through the writers */
1751 #ifdef HAVE_WINSOCK
1752                 for ( i = 0; i < writefds.fd_count; i++ )
1753 #else
1754                 for ( i = 0; i < nfds; i++ )
1755 #endif
1756                 {
1757                         ber_socket_t wd;
1758                         int is_listener = 0;
1759 #ifdef HAVE_WINSOCK
1760                         wd = writefds.fd_array[i];
1761 #else
1762                         if( ! FD_ISSET( i, &writefds ) ) {
1763                                 continue;
1764                         }
1765                         wd = i;
1766 #endif
1767
1768                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1769                                 if ( i == slap_listeners[l]->sl_sd ) {
1770 #ifdef LDAP_CONNECTIONLESS
1771                                         if (slap_listeners[l]->sl_is_udp) continue;
1772 #endif
1773                                         is_listener = 1;
1774                                         break;
1775                                 }
1776                         }
1777                         if ( is_listener ) {
1778                                 continue;
1779                         }
1780 #ifdef NEW_LOGGING
1781                         LDAP_LOG( CONNECTION, DETAIL2, 
1782                                 "slapd_daemon_task: write active on %d\n", wd, 0, 0 );
1783 #else
1784                         Debug( LDAP_DEBUG_CONNS,
1785                                 "daemon: write active on %d\n",
1786                                 wd, 0, 0 );
1787 #endif
1788                         /*
1789                          * NOTE: it is possible that the connection was closed
1790                          * and that the stream is now inactive.
1791                          * connection_write() must valid the stream is still
1792                          * active.
1793                          */
1794
1795                         if ( connection_write( wd ) < 0 ) {
1796                                 FD_CLR( (unsigned) wd, &readfds );
1797                                 slapd_close( wd );
1798                         }
1799                 }
1800
1801 #ifdef HAVE_WINSOCK
1802                 for ( i = 0; i < readfds.fd_count; i++ )
1803 #else
1804                 for ( i = 0; i < nfds; i++ )
1805 #endif
1806                 {
1807                         ber_socket_t rd;
1808                         int is_listener = 0;
1809
1810 #ifdef HAVE_WINSOCK
1811                         rd = readfds.fd_array[i];
1812 #else
1813                         if( ! FD_ISSET( i, &readfds ) ) {
1814                                 continue;
1815                         }
1816                         rd = i;
1817 #endif
1818
1819                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1820                                 if ( rd == slap_listeners[l]->sl_sd ) {
1821 #ifdef LDAP_CONNECTIONLESS
1822                                         if (slap_listeners[l]->sl_is_udp) continue;
1823 #endif
1824                                         is_listener = 1;
1825                                         break;
1826                                 }
1827                         }
1828                         if ( is_listener ) {
1829                                 continue;
1830                         }
1831
1832 #ifdef NEW_LOGGING
1833                         LDAP_LOG( CONNECTION, DETAIL2, 
1834                                 "slapd_daemon_task: read activity on %d\n", rd, 0, 0 );
1835 #else
1836                         Debug ( LDAP_DEBUG_CONNS,
1837                                 "daemon: read activity on %d\n", rd, 0, 0 );
1838 #endif
1839                         /*
1840                          * NOTE: it is possible that the connection was closed
1841                          * and that the stream is now inactive.
1842                          * connection_read() must valid the stream is still
1843                          * active.
1844                          */
1845
1846                         if ( connection_read( rd ) < 0 ) {
1847                                 slapd_close( rd );
1848                         }
1849                 }
1850                 ldap_pvt_thread_yield();
1851         }
1852
1853         if( slapd_shutdown == 1 ) {
1854 #ifdef NEW_LOGGING
1855                 LDAP_LOG( CONNECTION, CRIT,
1856                    "slapd_daemon_task: shutdown requested and initiated.\n", 0, 0, 0 );
1857 #else
1858                 Debug( LDAP_DEBUG_TRACE,
1859                         "daemon: shutdown requested and initiated.\n",
1860                         0, 0, 0 );
1861 #endif
1862
1863         } else if ( slapd_shutdown == 2 ) {
1864 #ifdef HAVE_NT_SERVICE_MANAGER
1865 #ifdef NEW_LOGGING
1866                         LDAP_LOG( CONNECTION, CRIT,
1867                            "slapd_daemon_task: shutdown initiated by Service Manager.\n",
1868                            0, 0, 0);
1869 #else
1870                         Debug( LDAP_DEBUG_TRACE,
1871                                "daemon: shutdown initiated by Service Manager.\n",
1872                                0, 0, 0);
1873 #endif
1874 #else /* !HAVE_NT_SERVICE_MANAGER */
1875 #ifdef NEW_LOGGING
1876                         LDAP_LOG( CONNECTION, CRIT,
1877                            "slapd_daemon_task: abnormal condition, "
1878                            "shutdown initiated.\n", 0, 0, 0 );
1879 #else
1880                         Debug( LDAP_DEBUG_TRACE,
1881                                "daemon: abnormal condition, shutdown initiated.\n",
1882                                0, 0, 0 );
1883 #endif
1884 #endif /* !HAVE_NT_SERVICE_MANAGER */
1885         } else {
1886 #ifdef NEW_LOGGING
1887                 LDAP_LOG( CONNECTION, CRIT,
1888                    "slapd_daemon_task: no active streams, shutdown initiated.\n", 
1889                    0, 0, 0 );
1890 #else
1891                 Debug( LDAP_DEBUG_TRACE,
1892                        "daemon: no active streams, shutdown initiated.\n",
1893                        0, 0, 0 );
1894 #endif
1895         }
1896
1897         if( slapd_gentle_shutdown != 2 )
1898                 close_listeners ( 0 );
1899         free ( slap_listeners );
1900         slap_listeners = NULL;
1901
1902 #ifdef NEW_LOGGING
1903         LDAP_LOG( CONNECTION, CRIT, 
1904                 "slapd_daemon_task: shutdown waiting for %d threads to terminate.\n",
1905                 ldap_pvt_thread_pool_backload(&connection_pool), 0, 0 );
1906 #else
1907         Debug( LDAP_DEBUG_ANY,
1908             "slapd shutdown: waiting for %d threads to terminate\n",
1909             ldap_pvt_thread_pool_backload(&connection_pool), 0, 0 );
1910 #endif
1911         ldap_pvt_thread_pool_destroy(&connection_pool, 1);
1912
1913         return NULL;
1914 }
1915
1916
1917 int slapd_daemon( void )
1918 {
1919         int rc;
1920
1921         connections_init();
1922
1923 #define SLAPD_LISTENER_THREAD 1
1924 #if defined( SLAPD_LISTENER_THREAD )
1925         {
1926                 ldap_pvt_thread_t       listener_tid;
1927
1928                 /* listener as a separate THREAD */
1929                 rc = ldap_pvt_thread_create( &listener_tid,
1930                         0, slapd_daemon_task, NULL );
1931
1932                 if ( rc != 0 ) {
1933 #ifdef NEW_LOGGING
1934                         LDAP_LOG( CONNECTION, ERR, 
1935                                 "slapd_daemon: listener ldap_pvt_thread_create failed (%d).\n",
1936                                 rc, 0, 0 );
1937 #else
1938                         Debug( LDAP_DEBUG_ANY,
1939                         "listener ldap_pvt_thread_create failed (%d)\n", rc, 0, 0 );
1940 #endif
1941                         return rc;
1942                 }
1943  
1944                 /* wait for the listener thread to complete */
1945                 ldap_pvt_thread_join( listener_tid, (void *) NULL );
1946         }
1947 #else
1948         /* experimental code */
1949         slapd_daemon_task( NULL );
1950 #endif
1951
1952         return 0;
1953
1954 }
1955
1956 int sockinit(void)
1957 {
1958 #if defined( HAVE_WINSOCK2 )
1959     WORD wVersionRequested;
1960         WSADATA wsaData;
1961         int err;
1962
1963         wVersionRequested = MAKEWORD( 2, 0 );
1964
1965         err = WSAStartup( wVersionRequested, &wsaData );
1966         if ( err != 0 ) {
1967                 /* Tell the user that we couldn't find a usable */
1968                 /* WinSock DLL.                                  */
1969                 return -1;
1970         }
1971
1972         /* Confirm that the WinSock DLL supports 2.0.*/
1973         /* Note that if the DLL supports versions greater    */
1974         /* than 2.0 in addition to 2.0, it will still return */
1975         /* 2.0 in wVersion since that is the version we      */
1976         /* requested.                                        */
1977
1978         if ( LOBYTE( wsaData.wVersion ) != 2 ||
1979                 HIBYTE( wsaData.wVersion ) != 0 )
1980         {
1981             /* Tell the user that we couldn't find a usable */
1982             /* WinSock DLL.                                  */
1983             WSACleanup();
1984             return -1;
1985         }
1986
1987         /* The WinSock DLL is acceptable. Proceed. */
1988 #elif defined( HAVE_WINSOCK )
1989         WSADATA wsaData;
1990         if ( WSAStartup( 0x0101, &wsaData ) != 0 ) {
1991             return -1;
1992         }
1993 #endif
1994         return 0;
1995 }
1996
1997 int sockdestroy(void)
1998 {
1999 #if defined( HAVE_WINSOCK2 ) || defined( HAVE_WINSOCK )
2000         WSACleanup();
2001 #endif
2002         return 0;
2003 }
2004
2005 RETSIGTYPE
2006 slap_sig_shutdown( int sig )
2007 {
2008 #ifdef NEW_LOGGING
2009         LDAP_LOG( CONNECTION, CRIT, 
2010                 "slap_sig_shutdown: signal %d\n", sig, 0, 0 );
2011 #else
2012         Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: signal %d\n", sig, 0, 0);
2013 #endif
2014
2015         /*
2016          * If the NT Service Manager is controlling the server, we don't
2017          * want SIGBREAK to kill the server. For some strange reason,
2018          * SIGBREAK is generated when a user logs out.
2019          */
2020
2021 #if HAVE_NT_SERVICE_MANAGER && SIGBREAK
2022         if (is_NT_Service && sig == SIGBREAK)
2023 #ifdef NEW_LOGGING
2024             LDAP_LOG( CONNECTION, CRIT,
2025                     "slap_sig_shutdown: SIGBREAK ignored.\n", 0, 0, 0 );
2026 #else
2027             Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: SIGBREAK ignored.\n",
2028                   0, 0, 0);
2029 #endif
2030         else
2031 #endif
2032 #ifdef SIGHUP
2033         if (sig == SIGHUP && global_gentlehup && slapd_gentle_shutdown == 0)
2034                 slapd_gentle_shutdown = 1;
2035         else
2036 #endif
2037         slapd_shutdown = 1;
2038
2039         WAKE_LISTENER(1);
2040
2041         /* reinstall self */
2042         (void) SIGNAL_REINSTALL( sig, slap_sig_shutdown );
2043 }
2044
2045 RETSIGTYPE
2046 slap_sig_wake( int sig )
2047 {
2048         WAKE_LISTENER(1);
2049
2050         /* reinstall self */
2051         (void) SIGNAL_REINSTALL( sig, slap_sig_wake );
2052 }
2053
2054
2055 void slapd_add_internal(ber_socket_t s) {
2056         slapd_add(s);
2057 }
2058
2059 Listener ** slapd_get_listeners(void) {
2060         return slap_listeners;
2061 }