]> git.sur5r.net Git - openldap/blob - servers/slapd/daemon.c
Remove lint
[openldap] / servers / slapd / daemon.c
1 /* $OpenLDAP$ */
2 /*
3  * Copyright 1998-2000 The OpenLDAP Foundation, All Rights Reserved.
4  * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
5  */
6
7 #include "portable.h"
8
9 #include <stdio.h>
10
11 #include <ac/ctype.h>
12 #include <ac/errno.h>
13 #include <ac/signal.h>
14 #include <ac/socket.h>
15 #include <ac/string.h>
16 #include <ac/time.h>
17 #include <ac/unistd.h>
18
19 #include "ldap_pvt.h"
20 #include "lutil.h"
21 #include "slap.h"
22
23 #ifdef HAVE_TCPD
24 #include <tcpd.h>
25
26 int allow_severity = LOG_INFO;
27 int deny_severity = LOG_NOTICE;
28 #endif /* TCP Wrappers */
29
30 #ifdef LDAP_PF_LOCAL
31 #include <sys/stat.h>
32 #endif /* LDAP_PF_LOCAL */
33
34 /* globals */
35 time_t starttime;
36 ber_socket_t dtblsize;
37
38 typedef struct slap_listener {
39         char* sl_url;
40         char* sl_name;
41 #ifdef HAVE_TLS
42         int             sl_is_tls;
43 #endif
44 #ifdef LDAP_CONNECTIONLESS
45         int     sl_is_udp;              /* UDP listener is also data port */
46 #endif
47         ber_socket_t            sl_sd;
48         Sockaddr sl_sa;
49 #define sl_addr sl_sa.sa_in_addr
50 } Listener;
51
52 Listener **slap_listeners = NULL;
53
54 #define SLAPD_LISTEN 10
55
56 static ber_socket_t wake_sds[2];
57
58 #ifdef NO_THREADS
59 static int waking;
60 #define WAKE_LISTENER(w) \
61 ((w && !waking) ? tcp_write( wake_sds[1], "0", 1 ), waking=1 : 0)
62 #else
63 #define WAKE_LISTENER(w) \
64 do { if (w) tcp_write( wake_sds[1], "0", 1 ); } while(0)
65 #endif
66
67 #ifdef HAVE_NT_SERVICE_MANAGER
68 /* in nt_main.c */
69 extern ldap_pvt_thread_cond_t                   started_event;
70 extern int        is_NT_Service;
71 #endif
72
73 #ifndef HAVE_WINSOCK
74 static
75 #endif
76 volatile sig_atomic_t slapd_shutdown = 0;
77
78 static struct slap_daemon {
79         ldap_pvt_thread_mutex_t sd_mutex;
80
81         int sd_nactives;
82
83 #ifndef HAVE_WINSOCK
84         /* In winsock, accept() returns values higher than dtblsize
85                 so don't bother with this optimization */
86         int sd_nfds;
87 #endif
88
89         fd_set sd_actives;
90         fd_set sd_readers;
91         fd_set sd_writers;
92 } slap_daemon;
93
94
95
96 #ifdef HAVE_SLP
97 /*
98  * SLP related functions
99  */
100 #include <slp.h>
101
102 #define LDAP_SRVTYPE_PREFIX "service:ldap://"
103 #define LDAPS_SRVTYPE_PREFIX "service:ldaps://"
104 static char** slapd_srvurls = NULL;
105 static SLPHandle slapd_hslp = 0;
106
107 void slapd_slp_init( const char* urls ) {
108         int i;
109
110         slapd_srvurls = str2charray( urls, " " );
111
112         if( slapd_srvurls == NULL ) return;
113
114         /* find and expand INADDR_ANY URLs */
115         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
116                 if( strcmp( slapd_srvurls[i], "ldap:///" ) == 0) {
117                         char *host = ldap_pvt_get_fqdn( NULL );
118                         if ( host != NULL ) {
119                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
120                                         strlen( host ) +
121                                         sizeof( LDAP_SRVTYPE_PREFIX ) );
122                                 strcpy( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX );
123                                 strcat( slapd_srvurls[i], host );
124
125                                 ch_free( host );
126                         }
127
128                 } else if ( strcmp( slapd_srvurls[i], "ldaps:///" ) == 0) {
129                         char *host = ldap_pvt_get_fqdn( NULL );
130                         if ( host != NULL ) {
131                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
132                                         strlen( host ) +
133                                         sizeof( LDAPS_SRVTYPE_PREFIX ) );
134                                 strcpy( slapd_srvurls[i], LDAPS_SRVTYPE_PREFIX );
135                                 strcat( slapd_srvurls[i], host );
136
137                                 ch_free( host );
138                         }
139                 }
140         }
141
142         /* open the SLP handle */
143         SLPOpen( "en", 0, &slapd_hslp );
144 }
145
146 void slapd_slp_deinit() {
147         if( slapd_srvurls == NULL ) return;
148
149         charray_free( slapd_srvurls );
150         slapd_srvurls = NULL;
151
152         /* close the SLP handle */
153         SLPClose( slapd_hslp );
154 }
155
156 void slapd_slp_regreport(
157         SLPHandle hslp,
158         SLPError errcode,
159         void* cookie )
160 {
161         /* empty report */
162 }
163
164 void slapd_slp_reg() {
165         int i;
166
167         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
168                 if( strncmp( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX,
169                                 sizeof( LDAP_SRVTYPE_PREFIX ) - 1 ) == 0 ||
170                     strncmp( slapd_srvurls[i], LDAPS_SRVTYPE_PREFIX,
171                                 sizeof( LDAPS_SRVTYPE_PREFIX ) - 1 ) == 0 )
172                 {
173                         SLPReg( slapd_hslp,
174                                 slapd_srvurls[i],
175                                 SLP_LIFETIME_MAXIMUM,
176                                 "ldap",
177                                 "",
178                                 1,
179                                 slapd_slp_regreport,
180                                 NULL );
181                 }
182         }
183 }
184
185 void slapd_slp_dereg() {
186         int i;
187
188         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
189                 SLPDereg( slapd_hslp,
190                         slapd_srvurls[i],
191                         slapd_slp_regreport,
192                         NULL );
193         }
194 }
195 #endif /* HAVE_SLP */
196
197 /*
198  * Add a descriptor to daemon control
199  */
200 static void slapd_add(ber_socket_t s) {
201         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
202
203         assert( !FD_ISSET( s, &slap_daemon.sd_actives ));
204         assert( !FD_ISSET( s, &slap_daemon.sd_readers ));
205         assert( !FD_ISSET( s, &slap_daemon.sd_writers ));
206
207 #ifndef HAVE_WINSOCK
208         if (s >= slap_daemon.sd_nfds) {
209                 slap_daemon.sd_nfds = s + 1;
210         }
211 #endif
212
213         FD_SET( s, &slap_daemon.sd_actives );
214         FD_SET( s, &slap_daemon.sd_readers );
215
216 #ifdef NEW_LOGGING
217         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
218                    "slapd_add: added %ld%s%s\n",
219                    (long)s,
220                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
221                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" ));
222 #else
223         Debug( LDAP_DEBUG_CONNS, "daemon: added %ld%s%s\n",
224                 (long) s,
225             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
226                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
227 #endif
228         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
229 }
230
231 /*
232  * Remove the descriptor from daemon control
233  */
234 void slapd_remove(ber_socket_t s, int wake) {
235         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
236
237 #ifdef NEW_LOGGING
238         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
239                    "slapd_remove: removing %ld%s%s\n",
240                    (long) s,
241                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
242                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : ""  ));
243 #else
244         Debug( LDAP_DEBUG_CONNS, "daemon: removing %ld%s%s\n",
245                 (long) s,
246             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
247                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
248 #endif
249         FD_CLR( s, &slap_daemon.sd_actives );
250         FD_CLR( s, &slap_daemon.sd_readers );
251         FD_CLR( s, &slap_daemon.sd_writers );
252
253         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
254         WAKE_LISTENER(wake);
255 }
256
257 void slapd_clr_write(ber_socket_t s, int wake) {
258         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
259
260         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
261         FD_CLR( s, &slap_daemon.sd_writers );
262
263         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
264         WAKE_LISTENER(wake);
265 }
266
267 void slapd_set_write(ber_socket_t s, int wake) {
268         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
269
270         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
271         if (!FD_ISSET(s, &slap_daemon.sd_writers))
272             FD_SET( (unsigned) s, &slap_daemon.sd_writers );
273
274         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
275         WAKE_LISTENER(wake);
276 }
277
278 void slapd_clr_read(ber_socket_t s, int wake) {
279         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
280
281         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
282         FD_CLR( s, &slap_daemon.sd_readers );
283
284         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
285         WAKE_LISTENER(wake);
286 }
287
288 void slapd_set_read(ber_socket_t s, int wake) {
289         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
290
291         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
292         if (!FD_ISSET(s, &slap_daemon.sd_readers))
293             FD_SET( s, &slap_daemon.sd_readers );
294
295         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
296         WAKE_LISTENER(wake);
297 }
298
299 static void slapd_close(ber_socket_t s) {
300 #ifdef NEW_LOGGING
301         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
302                    "slapd_close: closing %ld\n", (long)s ));
303 #else
304         Debug( LDAP_DEBUG_CONNS, "daemon: closing %ld\n",
305                 (long) s, 0, 0 );
306 #endif
307         tcp_close(s);
308 }
309
310 static void slap_free_listener_addresses(struct sockaddr **sal)
311 {
312         struct sockaddr **sap;
313
314         if (sal == NULL) {
315                 return;
316         }
317
318         for (sap = sal; *sap != NULL; sap++) {
319                 ch_free(*sap);
320         }
321
322         ch_free(sal);
323 }
324
325 /* port = 0 indicates AF_LOCAL */
326 static int slap_get_listener_addresses(
327         const char *host,
328         unsigned short port,
329         struct sockaddr ***sal)
330 {
331         struct sockaddr **sap;
332
333 #ifdef LDAP_PF_LOCAL
334         if ( port == 0 ) {
335                 *sal = ch_malloc(2 * sizeof(void *));
336                 if (*sal == NULL) {
337                         return -1;
338                 }
339
340                 sap = *sal;
341                 *sap = ch_malloc(sizeof(struct sockaddr_un));
342                 if (*sap == NULL)
343                         goto errexit;
344                 sap[1] = NULL;
345
346                 if ( strlen(host) >
347                      (sizeof(((struct sockaddr_un *)*sap)->sun_path) - 1) ) {
348 #ifdef NEW_LOGGING
349                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
350                                    "slap_get_listener_addresses: domain socket path (%s) too long in URL\n",
351                                    host ));
352 #else
353                         Debug( LDAP_DEBUG_ANY,
354                                "daemon: domain socket path (%s) too long in URL",
355                                host, 0, 0);
356 #endif
357                         goto errexit;
358                 }
359
360                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_un) );
361                 (*sap)->sa_family = AF_LOCAL;
362                 strcpy( ((struct sockaddr_un *)*sap)->sun_path, host );
363         } else
364 #endif
365         {
366 #ifdef HAVE_GETADDRINFO
367                 struct addrinfo hints, *res, *sai;
368                 int n, err;
369                 char serv[7];
370
371                 memset( &hints, '\0', sizeof(hints) );
372                 hints.ai_flags = AI_PASSIVE;
373                 hints.ai_socktype = SOCK_STREAM;
374                 hints.ai_family = AF_UNSPEC;
375                 snprintf(serv, sizeof serv, "%d", port);
376
377                 if (err = getaddrinfo(host, serv, &hints, &res)) {
378 #ifdef NEW_LOGGING
379                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
380                                    "slap_get_listener_addresses: getaddrinfo failed: %s\n",
381                                    AC_GAI_STRERROR(err) ));
382 #else
383                         Debug( LDAP_DEBUG_ANY, "daemon: getaddrinfo failed: %s\n",
384                                 AC_GAI_STRERROR(err), 0, 0);
385 #endif
386                         return -1;
387                 }
388
389                 sai = res;
390                 for (n=2; (sai = sai->ai_next) != NULL; n++) {
391                         /* EMPTY */ ;
392                 }
393                 *sal = ch_malloc(n * sizeof(void *));
394                 if (*sal == NULL) {
395                         return -1;
396                 }
397
398                 sap = *sal;
399                 *sap = NULL;
400
401                 for ( sai=res; sai; sai=sai->ai_next ) {
402                         if( sai->ai_addr == NULL ) {
403 #ifdef NEW_LOGGING
404                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
405                                         "slap_get_listener_addresses: "
406                                         "getaddrinfo ai_addr is NULL?\n" ));
407 #else
408                                 Debug( LDAP_DEBUG_ANY, "slap_get_listener_addresses: "
409                                         "getaddrinfo ai_addr is NULL?\n", 0, 0, 0 );
410 #endif
411                                 freeaddrinfo(res);
412                                 goto errexit;
413                         }
414
415                         switch (sai->ai_family) {
416 #  ifdef LDAP_PF_INET6
417                         case AF_INET6:
418                                 *sap = ch_malloc(sizeof(struct sockaddr_in6));
419                                 if (*sap == NULL) {
420                                         freeaddrinfo(res);
421                                         goto errexit;
422                                 }
423                                 *(struct sockaddr_in6 *)*sap =
424                                         *((struct sockaddr_in6 *)sai->ai_addr);
425                                 break;
426 #  endif
427                         case AF_INET:
428                                 *sap = ch_malloc(sizeof(struct sockaddr_in));
429                                 if (*sap == NULL) {
430                                         freeaddrinfo(res);
431                                         goto errexit;
432                                 }
433                                 *(struct sockaddr_in *)*sap =
434                                         *((struct sockaddr_in *)sai->ai_addr);
435                                 break;
436                         default:
437                                 *sap = NULL;
438                                 break;
439                         }
440
441                         if (*sap != NULL) {
442                                 (*sap)->sa_family = sai->ai_family;
443                                 sap++;
444                                 *sap = NULL;
445                         }
446                 }
447
448                 freeaddrinfo(res);
449 #else
450                 struct in_addr in;
451
452                 if ( host == NULL ) {
453                         in.s_addr = htonl(INADDR_ANY);
454
455                 } else if ( !inet_aton( host, &in ) ) {
456                         struct hostent *he = gethostbyname( host );
457                         if( he == NULL ) {
458 #ifdef NEW_LOGGING
459                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
460                                            "slap_get_listener_addresses: invalid host %s\n",
461                                            host ));
462 #else
463                                 Debug( LDAP_DEBUG_ANY,
464                                        "daemon: invalid host %s", host, 0, 0);
465 #endif
466                                 return -1;
467                         }
468                         AC_MEMCPY( &in, he->h_addr, sizeof( in ) );
469                 }
470
471                 *sal = ch_malloc(2 * sizeof(void *));
472                 if (*sal == NULL) {
473                         return -1;
474                 }
475
476                 sap = *sal;
477                 *sap = ch_malloc(sizeof(struct sockaddr_in));
478                 if (*sap == NULL) {
479                         goto errexit;
480                 }
481                 sap[1] = NULL;
482
483                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_in) );
484                 (*sap)->sa_family = AF_INET;
485                 ((struct sockaddr_in *)*sap)->sin_port = htons(port);
486                 ((struct sockaddr_in *)*sap)->sin_addr = in;
487 #endif
488         }
489
490         return 0;
491
492 errexit:
493         slap_free_listener_addresses(*sal);
494         return -1;
495 }
496
497 static Listener * slap_open_listener(
498         const char* url )
499 {
500         int     tmp, rc;
501         Listener l;
502         Listener *li;
503         LDAPURLDesc *lud;
504         unsigned short port;
505         int err, addrlen;
506         struct sockaddr **sal, **psal;
507         int socktype = SOCK_STREAM;     /* default to COTS */
508
509         rc = ldap_url_parse( url, &lud );
510
511         if( rc != LDAP_URL_SUCCESS ) {
512 #ifdef NEW_LOGGING
513                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
514                            "slap_open_listener: listen URL \"%s\" parse error %d\n",
515                            url, rc ));
516 #else
517                 Debug( LDAP_DEBUG_ANY,
518                         "daemon: listen URL \"%s\" parse error=%d\n",
519                         url, rc, 0 );
520 #endif
521                 return NULL;
522         }
523
524 #ifndef HAVE_TLS
525         if( ldap_pvt_url_scheme2tls( lud->lud_scheme ) ) {
526 #ifdef NEW_LOGGING
527                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
528                            "slap_open_listener: TLS is not supported (%s)\n",
529                            url ));
530 #else
531                 Debug( LDAP_DEBUG_ANY,
532                         "daemon: TLS not supported (%s)\n",
533                         url, 0, 0 );
534 #endif
535                 ldap_free_urldesc( lud );
536                 return NULL;
537         }
538
539         if(! lud->lud_port ) {
540                 lud->lud_port = LDAP_PORT;
541         }
542
543 #else
544         l.sl_is_tls = ldap_pvt_url_scheme2tls( lud->lud_scheme );
545
546         if(! lud->lud_port ) {
547                 lud->lud_port = l.sl_is_tls ? LDAPS_PORT : LDAP_PORT;
548         }
549 #endif
550
551         port = (unsigned short) lud->lud_port;
552
553         tmp = ldap_pvt_url_scheme2proto(lud->lud_scheme);
554         if ( tmp == LDAP_PROTO_IPC ) {
555 #ifdef LDAP_PF_LOCAL
556                 if ( lud->lud_host == NULL || lud->lud_host[0] == '\0' ) {
557                         err = slap_get_listener_addresses(LDAPI_SOCK, 0, &sal);
558                 } else {
559                         err = slap_get_listener_addresses(lud->lud_host, 0, &sal);
560                 }
561 #else
562
563 #ifdef NEW_LOGGING
564                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
565                            "slap_open_listener: URL scheme is not supported: %s\n",
566                            url ));
567 #else
568                 Debug( LDAP_DEBUG_ANY, "daemon: URL scheme not supported: %s",
569                         url, 0, 0);
570 #endif
571                 ldap_free_urldesc( lud );
572                 return NULL;
573 #endif
574         } else {
575 #ifdef LDAP_CONNECTIONLESS
576                 l.sl_is_udp = ( tmp == LDAP_PROTO_UDP );
577 #endif
578                 if( lud->lud_host == NULL || lud->lud_host[0] == '\0'
579                         || strcmp(lud->lud_host, "*") == 0 )
580                 {
581                         err = slap_get_listener_addresses(NULL, port, &sal);
582                 } else {
583                         err = slap_get_listener_addresses(lud->lud_host, port, &sal);
584                 }
585         }
586
587         ldap_free_urldesc( lud );
588         if ( err ) {
589                 return NULL;
590         }
591
592         psal = sal;
593         while ( *sal != NULL ) {
594                 switch( (*sal)->sa_family ) {
595                 case AF_INET:
596 #ifdef LDAP_PF_INET6
597                 case AF_INET6:
598 #endif
599 #ifdef LDAP_PF_LOCAL
600                 case AF_LOCAL:
601 #endif
602                         break;
603                 default:
604                         sal++;
605                         continue;
606                 }
607 #ifdef LDAP_CONNECTIONLESS
608                 if (l.sl_is_udp)
609                     socktype = SOCK_DGRAM;
610 #endif
611                 l.sl_sd = socket( (*sal)->sa_family, socktype, 0);
612                 if ( l.sl_sd == AC_SOCKET_INVALID ) {
613                         int err = sock_errno();
614 #ifdef NEW_LOGGING
615                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
616                                    "slap_open_listener: socket() failed errno=%d (%s)\n",
617                                    err, sock_errstr(err) ));
618 #else
619                         Debug( LDAP_DEBUG_ANY,
620                                 "daemon: socket() failed errno=%d (%s)\n", err,
621                                 sock_errstr(err), 0 );
622 #endif
623                         sal++;
624                         continue;
625                 }
626 #ifndef HAVE_WINSOCK
627                 if ( l.sl_sd >= dtblsize ) {
628 #ifdef NEW_LOGGING
629                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
630                                    "slap_open_listener: listener descriptor %ld is too great %ld\n",
631                                    (long)l.sl_sd, (long)dtblsize ));
632 #else
633                         Debug( LDAP_DEBUG_ANY,
634                                "daemon: listener descriptor %ld is too great %ld\n",
635                                (long) l.sl_sd, (long) dtblsize, 0 );
636 #endif
637                         tcp_close( l.sl_sd );
638                         sal++;
639                         continue;
640                 }
641 #endif
642 #ifdef LDAP_PF_LOCAL
643                 if ( (*sal)->sa_family == AF_LOCAL ) {
644                         unlink ( ((struct sockaddr_un *)*sal)->sun_path );
645                 } else
646 #endif
647                 {
648 #ifdef SO_REUSEADDR
649                         /* enable address reuse */
650                         tmp = 1;
651                         rc = setsockopt( l.sl_sd, SOL_SOCKET, SO_REUSEADDR,
652                                          (char *) &tmp, sizeof(tmp) );
653                         if ( rc == AC_SOCKET_ERROR ) {
654                                 int err = sock_errno();
655 #ifdef NEW_LOGGING
656                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
657                                            "slap_open_listener: setsockopt( %ld, SO_REUSEADDR ) failed errno %d (%s)\n",
658                                            (long)l.sl_sd, err, sock_errstr(err) ));
659 #else
660                                 Debug( LDAP_DEBUG_ANY,
661                                        "slapd(%ld): setsockopt(SO_REUSEADDR) failed errno=%d (%s)\n",
662                                        (long) l.sl_sd, err, sock_errstr(err) );
663 #endif
664                         }
665 #endif
666                 }
667
668                 switch( (*sal)->sa_family ) {
669                 case AF_INET:
670                         addrlen = sizeof(struct sockaddr_in);
671                         break;
672 #ifdef LDAP_PF_INET6
673                 case AF_INET6:
674                         addrlen = sizeof(struct sockaddr_in6);
675                         break;
676 #endif
677 #ifdef LDAP_PF_LOCAL
678                 case AF_LOCAL:
679                         addrlen = sizeof(struct sockaddr_un);
680                         break;
681 #endif
682                 }
683
684                 if (!bind(l.sl_sd, *sal, addrlen))
685                         break;
686                 err = sock_errno();
687 #ifdef NEW_LOGGING
688                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
689                            "slap_open_listener: bind(%ld) failed errno=%d (%s)\n",
690                            (long)l.sl_sd, err, sock_errstr(err) ));
691 #else
692                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed errno=%d (%s)\n",
693                        (long) l.sl_sd, err, sock_errstr(err) );
694 #endif
695                 tcp_close( l.sl_sd );
696                 sal++;
697         } /* while ( *sal != NULL ) */
698
699         if ( *sal == NULL ) {
700 #ifdef NEW_LOGGING
701                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
702                            "slap_open_listener: bind(%ld) failed.\n", (long)l.sl_sd ));
703 #else
704                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed\n",
705                         (long) l.sl_sd, 0, 0 );
706 #endif
707                 slap_free_listener_addresses(psal);
708                 return NULL;
709         }
710
711         switch ( (*sal)->sa_family ) {
712 #ifdef LDAP_PF_LOCAL
713         case AF_LOCAL: {
714                 char *addr = ((struct sockaddr_un *)*sal)->sun_path;
715                 if ( chmod( addr, S_IRWXU ) < 0 ) {
716                         int err = sock_errno();
717 #ifdef NEW_LOGGING
718                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
719                                    "slap_open_listener: fchmod(%ld) failed errno=%d (%s)\n",
720                                    (long)l.sl_sd, err, sock_errstr(err) ));
721 #else
722                         Debug( LDAP_DEBUG_ANY, "daemon: fchmod(%ld) failed errno=%d (%s)",
723                                (long) l.sl_sd, err, sock_errstr(err) );
724 #endif
725                         tcp_close( l.sl_sd );
726                         slap_free_listener_addresses(psal);
727                         return NULL;
728                 }
729                 l.sl_name = ch_malloc( strlen(addr) + sizeof("PATH=") );
730                 sprintf( l.sl_name, "PATH=%s", addr );
731         } break;
732 #endif /* LDAP_PF_LOCAL */
733
734         case AF_INET: {
735                 char *s;
736 #if defined( HAVE_GETADDRINFO ) && defined( HAVE_INET_NTOP )
737                 char addr[INET_ADDRSTRLEN];
738                 inet_ntop( AF_INET, &((struct sockaddr_in *)*sal)->sin_addr,
739                            addr, sizeof(addr) );
740                 s = addr;
741                 port = ((struct sockaddr_in *)*sal) ->sin_port;
742 #else
743                 s = inet_ntoa( l.sl_addr.sin_addr );
744                 port = l.sl_addr.sin_port;
745 #endif
746                 l.sl_name = ch_malloc( sizeof("IP=255.255.255.255:65535") );
747                 sprintf( l.sl_name, "IP=%s:%d",
748                          s != NULL ? s : "unknown" , port );
749         } break;
750
751 #ifdef LDAP_PF_INET6
752         case AF_INET6: {
753                 char addr[INET6_ADDRSTRLEN];
754                 inet_ntop( AF_INET6, &((struct sockaddr_in6 *)*sal)->sin6_addr,
755                            addr, sizeof addr);
756                 port = ((struct sockaddr_in6 *)*sal)->sin6_port;
757                 l.sl_name = ch_malloc( strlen(addr) + sizeof("IP= 65535") );
758                 sprintf( l.sl_name, "IP=%s %d", addr, port );
759         } break;
760 #endif /* LDAP_PF_INET6 */
761
762         default:
763 #ifdef NEW_LOGGING
764                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
765                            "slap_open_listener: unsupported address family (%d)\n",
766                            (int)(*sal)->sa_family ));
767 #else
768                 Debug( LDAP_DEBUG_ANY, "daemon: unsupported address family (%d)\n",
769                         (int) (*sal)->sa_family, 0, 0 );
770 #endif
771                 break;
772         }
773
774         slap_free_listener_addresses(psal);
775
776         l.sl_url = ch_strdup( url );
777         li = ch_malloc( sizeof( Listener ) );
778         *li = l;
779
780 #ifdef NEW_LOGGING
781         LDAP_LOG(( "connection", LDAP_LEVEL_RESULTS,
782                    "slap_open_listener: daemon initialzed %s\n", l.sl_url ));
783 #else
784         Debug( LDAP_DEBUG_TRACE, "daemon: initialized %s\n",
785                 l.sl_url, 0, 0 );
786 #endif
787         return li;
788 }
789
790 static int sockinit(void);
791 static int sockdestroy(void);
792
793 int slapd_daemon_init( const char *urls )
794 {
795         int i, rc;
796         char **u;
797
798 #ifdef NEW_LOGGING
799         LDAP_LOG(( "connection", LDAP_LEVEL_ARGS,
800                    "slapd_daemon_init: %s\n",
801                    urls ? urls : "<null>" ));
802 #else
803         Debug( LDAP_DEBUG_ARGS, "daemon_init: %s\n",
804                 urls ? urls : "<null>", 0, 0 );
805 #endif
806         if( (rc = sockinit()) != 0 ) {
807                 return rc;
808         }
809
810 #ifdef HAVE_SYSCONF
811         dtblsize = sysconf( _SC_OPEN_MAX );
812 #elif HAVE_GETDTABLESIZE
813         dtblsize = getdtablesize();
814 #else
815         dtblsize = FD_SETSIZE;
816 #endif
817
818 #ifdef FD_SETSIZE
819         if(dtblsize > FD_SETSIZE) {
820                 dtblsize = FD_SETSIZE;
821         }
822 #endif  /* !FD_SETSIZE */
823
824         /* open a pipe (or something equivalent connected to itself).
825          * we write a byte on this fd whenever we catch a signal. The main
826          * loop will be select'ing on this socket, and will wake up when
827          * this byte arrives.
828          */
829         if( (rc = lutil_pair( wake_sds )) < 0 ) {
830 #ifdef NEW_LOGGING
831                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
832                            "slap_daemon_init: lutil_pair() failed rc=%d\n", rc ));
833 #else
834                 Debug( LDAP_DEBUG_ANY,
835                         "daemon: lutil_pair() failed rc=%d\n", rc, 0, 0 );
836 #endif
837                 return rc;
838         }
839
840         FD_ZERO( &slap_daemon.sd_readers );
841         FD_ZERO( &slap_daemon.sd_writers );
842
843         if( urls == NULL ) {
844                 urls = "ldap:///";
845         }
846
847         u = str2charray( urls, " " );
848
849         if( u == NULL || u[0] == NULL ) {
850 #ifdef NEW_LOGGING
851                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
852                            "slap_daemon_init: no urls (%s) provided.\n", urls ));
853 #else
854                 Debug( LDAP_DEBUG_ANY, "daemon_init: no urls (%s) provided.\n",
855                         urls, 0, 0 );
856 #endif
857                 return -1;
858         }
859
860         for( i=0; u[i] != NULL; i++ ) {
861 #ifdef NEW_LOGGING
862                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
863                            "slap_daemon_init: listen on %s\n.", u[i] ));
864 #else
865                 Debug( LDAP_DEBUG_TRACE, "daemon_init: listen on %s\n",
866                         u[i], 0, 0 );
867 #endif
868         }
869
870         if( i == 0 ) {
871 #ifdef NEW_LOGGING
872                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
873                            "slap_daemon_init: no listeners to open (%s)\n", urls ));
874 #else
875                 Debug( LDAP_DEBUG_ANY, "daemon_init: no listeners to open (%s)\n",
876                         urls, 0, 0 );
877 #endif
878                 charray_free( u );
879                 return -1;
880         }
881
882 #ifdef NEW_LOGGING
883         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
884                    "slap_daemon_init: %d listeners to open...\n", i ));
885 #else
886         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners to open...\n",
887                 i, 0, 0 );
888 #endif
889         slap_listeners = ch_malloc( (i+1)*sizeof(Listener *) );
890
891         for(i = 0; u[i] != NULL; i++ ) {
892                 slap_listeners[i] = slap_open_listener( u[i] );
893
894                 if( slap_listeners[i] == NULL ) {
895                         charray_free( u );
896                         return -1;
897                 }
898         }
899         slap_listeners[i] = NULL;
900
901 #ifdef NEW_LOGGING
902         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
903                    "slap_daemon_init: %d listeners opened\n", i ));
904 #else
905         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners opened\n",
906                 i, 0, 0 );
907 #endif
908
909 #ifdef HAVE_SLP
910         slapd_slp_init( urls );
911         slapd_slp_reg();
912 #endif
913
914         charray_free( u );
915         ldap_pvt_thread_mutex_init( &slap_daemon.sd_mutex );
916         return !i;
917 }
918
919
920 int
921 slapd_daemon_destroy(void)
922 {
923         connections_destroy();
924         tcp_close( wake_sds[1] );
925         tcp_close( wake_sds[0] );
926         sockdestroy();
927
928 #ifdef HAVE_SLP
929         slapd_slp_dereg();
930         slapd_slp_deinit();
931 #endif
932
933         return 0;
934 }
935
936
937 static void *
938 slapd_daemon_task(
939         void *ptr
940 )
941 {
942         int l;
943         time_t  last_idle_check = slap_get_time();
944         time( &starttime );
945
946         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
947                 if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
948                         continue;
949 #ifdef LDAP_CONNECTIONLESS
950                 /* Since this is connectionless, the data port is the
951                  * listening port. The listen() and accept() calls
952                  * are unnecessary.
953                  */
954                 if ( slap_listeners[l]->sl_is_udp )
955                 {
956                         slapd_add( slap_listeners[l]->sl_sd );
957                         continue;
958                 }
959 #endif
960
961                 if ( listen( slap_listeners[l]->sl_sd, SLAPD_LISTEN ) == -1 ) {
962                         int err = sock_errno();
963 #ifdef NEW_LOGGING
964                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
965                                    "slapd_daemon_task: listen( %s, 5 ) failed errno=%d (%s)\n",
966                                    slap_listeners[l]->sl_url, err, sock_errstr(err) ));
967 #else
968                         Debug( LDAP_DEBUG_ANY,
969                                 "daemon: listen(%s, 5) failed errno=%d (%s)\n",
970                                         slap_listeners[l]->sl_url, err,
971                                         sock_errstr(err) );
972 #endif
973                         return( (void*)-1 );
974                 }
975
976                 slapd_add( slap_listeners[l]->sl_sd );
977         }
978
979 #ifdef HAVE_NT_SERVICE_MANAGER
980         if ( started_event != NULL ) {
981                 ldap_pvt_thread_cond_signal( &started_event );
982         }
983 #endif
984         /* initialization complete. Here comes the loop. */
985
986         while ( !slapd_shutdown ) {
987                 ber_socket_t i;
988                 int ns;
989                 int at;
990                 ber_socket_t nfds;
991 #define SLAPD_EBADF_LIMIT 16
992                 int ebadf = 0;
993                 int emfile = 0;
994
995 #define SLAPD_IDLE_CHECK_LIMIT 4
996                 time_t  now = slap_get_time();
997
998
999                 fd_set                  readfds;
1000                 fd_set                  writefds;
1001                 Sockaddr                from;
1002
1003 #if defined(SLAPD_RLOOKUPS)
1004                 struct hostent          *hp;
1005 #endif
1006                 struct timeval          zero;
1007                 struct timeval          *tvp;
1008
1009                 if( emfile || ( global_idletimeout > 0 && difftime(
1010                         last_idle_check+global_idletimeout/SLAPD_IDLE_CHECK_LIMIT,
1011                         now ) < 0 ))
1012                 {
1013                         connections_timeout_idle(now);
1014                 }
1015
1016                 FD_ZERO( &writefds );
1017                 FD_ZERO( &readfds );
1018
1019                 zero.tv_sec = 0;
1020                 zero.tv_usec = 0;
1021
1022                 ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1023
1024 #ifdef FD_SET_MANUAL_COPY
1025                 for( s = 0; s < nfds; s++ ) {
1026                         if(FD_ISSET( &slap_sd_readers, s )) {
1027                                 FD_SET( s, &readfds );
1028                         }
1029                         if(FD_ISSET( &slap_sd_writers, s )) {
1030                                 FD_SET( s, &writefds );
1031                         }
1032                 }
1033 #else
1034                 AC_MEMCPY( &readfds, &slap_daemon.sd_readers, sizeof(fd_set) );
1035                 AC_MEMCPY( &writefds, &slap_daemon.sd_writers, sizeof(fd_set) );
1036 #endif
1037                 assert(!FD_ISSET(wake_sds[0], &readfds));
1038                 FD_SET( wake_sds[0], &readfds );
1039
1040                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1041                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1042                                 continue;
1043                         if (!FD_ISSET(slap_listeners[l]->sl_sd, &readfds))
1044                             FD_SET( slap_listeners[l]->sl_sd, &readfds );
1045                 }
1046
1047 #ifndef HAVE_WINSOCK
1048                 nfds = slap_daemon.sd_nfds;
1049 #else
1050                 nfds = dtblsize;
1051 #endif
1052
1053                 ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1054
1055                 at = ldap_pvt_thread_pool_backload(&connection_pool);
1056
1057 #if defined( HAVE_YIELDING_SELECT ) || defined( NO_THREADS )
1058                 tvp = NULL;
1059 #else
1060                 tvp = at ? &zero : NULL;
1061 #endif
1062
1063                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1064                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1065                                 continue;
1066
1067 #ifdef NEW_LOGGING
1068                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1069                                    "slapd_daemon_task: select: listen=%d active_threads=%d tvp=%s\n",
1070                                    slap_listeners[l]->sl_sd, at, tvp == NULL ? "NULL" : "zero" ));
1071 #else
1072                         Debug( LDAP_DEBUG_CONNS,
1073                                 "daemon: select: listen=%d active_threads=%d tvp=%s\n",
1074                                         slap_listeners[l]->sl_sd, at,
1075                                         tvp == NULL ? "NULL" : "zero" );
1076 #endif
1077                 }
1078
1079                 switch(ns = select( nfds, &readfds,
1080 #ifdef HAVE_WINSOCK
1081                         /* don't pass empty fd_set */
1082                         ( writefds.fd_count > 0 ? &writefds : NULL ),
1083 #else
1084                         &writefds,
1085 #endif
1086                         NULL, tvp ))
1087                 {
1088                 case -1: {      /* failure - try again */
1089                                 int err = sock_errno();
1090
1091                                 if( err == EBADF
1092 #ifdef WSAENOTSOCK
1093                                         /* you'd think this would be EBADF */
1094                                         || err == WSAENOTSOCK
1095 #endif
1096                                 ) {
1097                                         if (++ebadf < SLAPD_EBADF_LIMIT)
1098                                                 continue;
1099                                 }
1100
1101                                 if( err != EINTR ) {
1102 #ifdef NEW_LOGGING
1103                                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1104                                                    "slapd_daemon_task: select failed (%d): %s\n",
1105                                                    err, sock_errstr(err) ));
1106 #else
1107                                         Debug( LDAP_DEBUG_CONNS,
1108                                                 "daemon: select failed (%d): %s\n",
1109                                                 err, sock_errstr(err), 0 );
1110 #endif
1111                                         slapd_shutdown = -1;
1112                                 }
1113                         }
1114                         continue;
1115
1116                 case 0:         /* timeout - let threads run */
1117                         ebadf = 0;
1118 #ifdef NEW_LOGGING
1119                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1120                                    "slapd_daemon_task: select timeout - yielding\n" ));
1121 #else
1122                         Debug( LDAP_DEBUG_CONNS, "daemon: select timeout - yielding\n",
1123                             0, 0, 0 );
1124 #endif
1125                         ldap_pvt_thread_yield();
1126                         continue;
1127
1128                 default:        /* something happened - deal with it */
1129                         if( slapd_shutdown ) continue;
1130
1131                         ebadf = 0;
1132 #ifdef NEW_LOGGING
1133                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1134                                    "slapd_daemon_task: activity on %d descriptors\n", ns ));
1135 #else
1136                         Debug( LDAP_DEBUG_CONNS, "daemon: activity on %d descriptors\n",
1137                                 ns, 0, 0 );
1138 #endif
1139                         /* FALL THRU */
1140                 }
1141
1142                 if( FD_ISSET( wake_sds[0], &readfds ) ) {
1143                         char c[BUFSIZ];
1144                         tcp_read( wake_sds[0], c, sizeof(c) );
1145 #ifdef NO_THREADS
1146                         waking = 0;
1147 #endif
1148                         continue;
1149                 }
1150
1151                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1152                         ber_socket_t s;
1153                         socklen_t len = sizeof(from);
1154                         long id;
1155                         slap_ssf_t ssf = 0;
1156                         char *authid = NULL;
1157
1158                         char    *dnsname;
1159                         char    *peeraddr;
1160 #ifdef LDAP_PF_LOCAL
1161                         char    peername[MAXPATHLEN + sizeof("PATH=")];
1162 #elif defined(LDAP_PF_INET6)
1163                         char    peername[sizeof("IP=ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff 65535")];
1164 #else
1165                         char    peername[sizeof("IP=255.255.255.255:65336")];
1166 #endif /* LDAP_PF_LOCAL */
1167
1168                         peername[0] = '\0';
1169
1170                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1171                                 continue;
1172
1173                         if ( !FD_ISSET( slap_listeners[l]->sl_sd, &readfds ) )
1174                                 continue;
1175
1176 #ifdef LDAP_CONNECTIONLESS
1177                         if ( slap_listeners[l]->sl_is_udp )
1178                         {
1179                         /* The first time we receive a query, we set this
1180                          * up as a "connection". It remains open for the life
1181                          * of the slapd.
1182                          */
1183                                 if ( slap_listeners[l]->sl_is_udp < 2 )
1184                                 {
1185                                     id = connection_init(
1186                                         slap_listeners[l]->sl_sd,
1187                                         slap_listeners[l]->sl_url, "", "",
1188                                         slap_listeners[l]->sl_name,
1189                                         2, ssf, authid );
1190                                     slap_listeners[l]->sl_is_udp++;
1191                                 }
1192                                 continue;
1193                         }
1194 #endif
1195
1196                         s = accept( slap_listeners[l]->sl_sd,
1197                                 (struct sockaddr *) &from, &len );
1198                         if ( s == AC_SOCKET_INVALID ) {
1199                                 int err = sock_errno();
1200
1201 #ifdef EMFILE
1202                                 if( err == EMFILE ) {
1203                                         emfile++;
1204                                 } else
1205 #endif
1206 #ifdef ENFILE
1207                                 if( err == ENFILE ) {
1208                                         emfile++;
1209                                 } else 
1210 #endif
1211                                 {
1212                                         emfile=0;
1213                                 }
1214
1215                                 if( emfile < 3 ) {
1216 #ifdef NEW_LOGGING
1217                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1218                                                 "slapd_daemon_task: accept(%ld) failed errno=%d (%s)\n",
1219                                                 (long)slap_listeners[l]->sl_sd, err, sock_errstr(err) ));
1220 #else
1221                                         Debug( LDAP_DEBUG_ANY,
1222                                             "daemon: accept(%ld) failed errno=%d (%s)\n",
1223                                             (long) slap_listeners[l]->sl_sd, err,
1224                                             sock_errstr(err) );
1225 #endif
1226                                 } else {
1227                                         /* prevent busy loop */
1228 #  ifdef HAVE_USLEEP
1229                                         if( emfile % 4 == 3 ) usleep( 250 );
1230 #  else
1231                                         if( emfile % 8 == 7 ) sleep( 1 );
1232 #  endif
1233                                 }
1234
1235                                 ldap_pvt_thread_yield();
1236                                 continue;
1237                         }
1238                         emfile = 0;
1239
1240 #ifndef HAVE_WINSOCK
1241                         /* make sure descriptor number isn't too great */
1242                         if ( s >= dtblsize ) {
1243 #ifdef NEW_LOGGING
1244                                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1245                                    "slapd_daemon_task: %ld beyond descriptor table size %ld\n",
1246                                    (long)s, (long)dtblsize ));
1247 #else
1248                                 Debug( LDAP_DEBUG_ANY,
1249                                         "daemon: %ld beyond descriptor table size %ld\n",
1250                                         (long) s, (long) dtblsize, 0 );
1251 #endif
1252
1253                                 slapd_close(s);
1254                                 ldap_pvt_thread_yield();
1255                                 continue;
1256                         }
1257 #endif
1258
1259 #ifdef LDAP_DEBUG
1260                         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1261
1262                         /* newly accepted stream should not be in any of the FD SETS */
1263                         assert( !FD_ISSET( s, &slap_daemon.sd_actives) );
1264                         assert( !FD_ISSET( s, &slap_daemon.sd_readers) );
1265                         assert( !FD_ISSET( s, &slap_daemon.sd_writers) );
1266
1267                         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1268 #endif
1269
1270 #if defined( SO_KEEPALIVE ) || defined( TCP_NODELAY )
1271 #ifdef LDAP_PF_LOCAL
1272                         /* for IPv4 and IPv6 sockets only */
1273                         if ( from.sa_addr.sa_family != AF_LOCAL )
1274 #endif /* LDAP_PF_LOCAL */
1275                         {
1276                                 int rc;
1277                                 int tmp;
1278 #ifdef SO_KEEPALIVE
1279                                 /* enable keep alives */
1280                                 tmp = 1;
1281                                 rc = setsockopt( s, SOL_SOCKET, SO_KEEPALIVE,
1282                                         (char *) &tmp, sizeof(tmp) );
1283                                 if ( rc == AC_SOCKET_ERROR ) {
1284                                         int err = sock_errno();
1285 #ifdef NEW_LOGGING
1286                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1287                                                    "slapd_daemon_task: setsockopt( %ld, SO_KEEPALIVE) failed errno=%d (%s)\n",
1288                                                    (long)s, err, sock_errstr(err) ));
1289 #else
1290                                         Debug( LDAP_DEBUG_ANY,
1291                                                 "slapd(%ld): setsockopt(SO_KEEPALIVE) failed "
1292                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1293 #endif
1294                                 }
1295 #endif
1296 #ifdef TCP_NODELAY
1297                                 /* enable no delay */
1298                                 tmp = 1;
1299                                 rc = setsockopt( s, IPPROTO_TCP, TCP_NODELAY,
1300                                         (char *)&tmp, sizeof(tmp) );
1301                                 if ( rc == AC_SOCKET_ERROR ) {
1302                                         int err = sock_errno();
1303 #ifdef NEW_LOGGING
1304                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1305                                                    "slapd_daemon_task: setsockopt( %ld, TCP_NODELAY) failed errno=%d (%s)\n",
1306                                                    (long)s, err, sock_errstr(err) ));
1307 #else
1308                                         Debug( LDAP_DEBUG_ANY,
1309                                                 "slapd(%ld): setsockopt(TCP_NODELAY) failed "
1310                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1311 #endif
1312                                 }
1313 #endif
1314                         }
1315 #endif
1316
1317 #ifdef NEW_LOGGING
1318                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1319                                    "slapd_daemon_task: new connection on %ld\n", (long)s ));
1320 #else
1321                         Debug( LDAP_DEBUG_CONNS, "daemon: new connection on %ld\n",
1322                                 (long) s, 0, 0 );
1323 #endif
1324                         switch ( from.sa_addr.sa_family ) {
1325 #  ifdef LDAP_PF_LOCAL
1326                         case AF_LOCAL:
1327                                 sprintf( peername, "PATH=%s", from.sa_un_addr.sun_path );
1328                                 ssf = LDAP_PVT_SASL_LOCAL_SSF;
1329                                 break;
1330 #endif /* LDAP_PF_LOCAL */
1331
1332 #  ifdef LDAP_PF_INET6
1333                         case AF_INET6:
1334                         if ( IN6_IS_ADDR_V4MAPPED(&from.sa_in6_addr.sin6_addr) ) {
1335                                 peeraddr = inet_ntoa( *((struct in_addr *)
1336                                                         &from.sa_in6_addr.sin6_addr.s6_addr[12]) );
1337                                 sprintf( peername, "IP=%s:%d",
1338                                          peeraddr != NULL ? peeraddr : "unknown",
1339                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1340                         } else {
1341                                 char addr[INET6_ADDRSTRLEN];
1342                                 sprintf( peername, "IP=%s %d",
1343                                          inet_ntop( AF_INET6,
1344                                                     &from.sa_in6_addr.sin6_addr,
1345                                                     addr, sizeof addr) ? addr : "unknown",
1346                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1347                         }
1348                         break;
1349 #  endif /* LDAP_PF_INET6 */
1350
1351                         case AF_INET:
1352                         peeraddr = inet_ntoa( from.sa_in_addr.sin_addr );
1353                         sprintf( peername, "IP=%s:%d",
1354                                 peeraddr != NULL ? peeraddr : "unknown",
1355                                 (unsigned) ntohs( from.sa_in_addr.sin_port ) );
1356                                 break;
1357
1358                         default:
1359                                 slapd_close(s);
1360                                 continue;
1361                         }
1362
1363                         if ( ( from.sa_addr.sa_family == AF_INET )
1364 #ifdef LDAP_PF_INET6
1365                                 || ( from.sa_addr.sa_family == AF_INET6 )
1366 #endif
1367                         ) {
1368 #ifdef SLAPD_RLOOKUPS
1369 #  ifdef LDAP_PF_INET6
1370                                 if ( from.sa_addr.sa_family == AF_INET6 )
1371                                         hp = gethostbyaddr(
1372                                                 (char *)&(from.sa_in6_addr.sin6_addr),
1373                                                 sizeof(from.sa_in6_addr.sin6_addr),
1374                                                 AF_INET6 );
1375                                 else
1376 #  endif /* LDAP_PF_INET6 */
1377                                 hp = gethostbyaddr(
1378                                         (char *) &(from.sa_in_addr.sin_addr),
1379                                         sizeof(from.sa_in_addr.sin_addr),
1380                                         AF_INET );
1381                                 dnsname = hp ? ldap_pvt_str2lower( hp->h_name ) : NULL;
1382 #else
1383                                 dnsname = NULL;
1384 #endif /* SLAPD_RLOOKUPS */
1385
1386 #ifdef HAVE_TCPD
1387                                 if ( !hosts_ctl("slapd",
1388                                                 dnsname != NULL ? dnsname : STRING_UNKNOWN,
1389                                                 peeraddr != NULL ? peeraddr : STRING_UNKNOWN,
1390                                                 STRING_UNKNOWN ))
1391                                 {
1392                                         /* DENY ACCESS */
1393                                         Statslog( LDAP_DEBUG_ANY,
1394                                                 "fd=%ld host access from %s (%s) denied.\n",
1395                                                 (long) s,
1396                                                 dnsname != NULL ? dnsname : "unknown",
1397                                                 peeraddr != NULL ? peeraddr : "unknown",
1398                                                 0, 0 );
1399                                         slapd_close(s);
1400                                         continue;
1401                                 }
1402 #endif /* HAVE_TCPD */
1403                         }
1404
1405                         id = connection_init(s,
1406                                 slap_listeners[l]->sl_url,
1407                                 dnsname != NULL ? dnsname : "unknown",
1408                                 peername,
1409                                 slap_listeners[l]->sl_name,
1410 #ifdef HAVE_TLS
1411                                 slap_listeners[l]->sl_is_tls,
1412 #else
1413                                 0,
1414 #endif
1415                                 ssf,
1416                                 authid );
1417
1418                         if( authid ) ch_free(authid);
1419
1420                         if( id < 0 ) {
1421 #ifdef NEW_LOGGING
1422                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1423                                            "slapd_daemon_task: connection_init(%ld, %s, %s) failed.\n",
1424                                            (long)s, peername, slap_listeners[l]->sl_name ));
1425 #else
1426                                 Debug( LDAP_DEBUG_ANY,
1427                                         "daemon: connection_init(%ld, %s, %s) failed.\n",
1428                                         (long) s,
1429                                         peername,
1430                                         slap_listeners[l]->sl_name );
1431 #endif
1432                                 slapd_close(s);
1433                                 continue;
1434                         }
1435
1436                         Statslog( LDAP_DEBUG_STATS,
1437                                 "daemon: conn=%ld fd=%ld connection from %s (%s) accepted.\n",
1438                                 id, (long) s,
1439                                 peername,
1440                                 slap_listeners[l]->sl_name,
1441                                 0 );
1442
1443                         slapd_add( s );
1444                         continue;
1445                 }
1446
1447 #ifdef LDAP_DEBUG
1448 #ifdef NEW_LOGGING
1449                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1450                            "slapd_daemon_task: activity on " ));
1451 #else
1452                 Debug( LDAP_DEBUG_CONNS, "daemon: activity on:", 0, 0, 0 );
1453 #endif
1454 #ifdef HAVE_WINSOCK
1455                 for ( i = 0; i < readfds.fd_count; i++ ) {
1456 #ifdef NEW_LOGGING
1457                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1458                                    " %d%s", readfds.fd_array[i], "r", 0 ));
1459 #else
1460                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1461                                 readfds.fd_array[i], "r", 0 );
1462 #endif
1463                 }
1464                 for ( i = 0; i < writefds.fd_count; i++ ) {
1465 #ifdef NEW_LOGGING
1466                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1467                                    " %d%s", writefds.fd_array[i], "w" ));
1468 #else
1469                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1470                                 writefds.fd_array[i], "w", 0 );
1471 #endif
1472                 }
1473
1474 #else
1475                 for ( i = 0; i < nfds; i++ ) {
1476                         int     r, w;
1477                         int     is_listener = 0;
1478
1479                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1480                                 if ( i == slap_listeners[l]->sl_sd ) {
1481 #ifdef LDAP_CONNECTIONLESS
1482                                 /* The listener is the data port. Don't
1483                                  * skip it.
1484                                  */
1485                                         if (slap_listeners[l]->sl_is_udp)
1486                                                 continue;
1487 #endif
1488                                         is_listener = 1;
1489                                         break;
1490                                 }
1491                         }
1492                         if ( is_listener ) {
1493                                 continue;
1494                         }
1495                         r = FD_ISSET( i, &readfds );
1496                         w = FD_ISSET( i, &writefds );
1497                         if ( r || w ) {
1498 #ifdef NEW_LOGGING
1499                                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1500                                            " %d%s%s", i,
1501                                            r ? "r" : "", w ? "w" : "" ));
1502 #else
1503                                 Debug( LDAP_DEBUG_CONNS, " %d%s%s", i,
1504                                     r ? "r" : "", w ? "w" : "" );
1505 #endif
1506                         }
1507                 }
1508 #endif
1509 #ifdef NEW_LOGGING
1510                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2, "\n" ));
1511 #else
1512                 Debug( LDAP_DEBUG_CONNS, "\n", 0, 0, 0 );
1513 #endif
1514
1515 #endif
1516
1517                 /* loop through the writers */
1518 #ifdef HAVE_WINSOCK
1519                 for ( i = 0; i < writefds.fd_count; i++ )
1520 #else
1521                 for ( i = 0; i < nfds; i++ )
1522 #endif
1523                 {
1524                         ber_socket_t wd;
1525                         int is_listener = 0;
1526 #ifdef HAVE_WINSOCK
1527                         wd = writefds.fd_array[i];
1528 #else
1529                         if( ! FD_ISSET( i, &writefds ) ) {
1530                                 continue;
1531                         }
1532                         wd = i;
1533 #endif
1534
1535                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1536                                 if ( i == slap_listeners[l]->sl_sd ) {
1537 #ifdef LDAP_CONNECTIONLESS
1538                                         if (slap_listeners[l]->sl_is_udp)
1539                                                 continue;
1540 #endif
1541                                         is_listener = 1;
1542                                         break;
1543                                 }
1544                         }
1545                         if ( is_listener ) {
1546                                 continue;
1547                         }
1548 #ifdef NEW_LOGGING
1549                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1550                                    "slapd_daemon_task: write active on %d\n", wd ));
1551 #else
1552                         Debug( LDAP_DEBUG_CONNS,
1553                                 "daemon: write active on %d\n",
1554                                 wd, 0, 0 );
1555 #endif
1556                         /*
1557                          * NOTE: it is possible that the connection was closed
1558                          * and that the stream is now inactive.
1559                          * connection_write() must valid the stream is still
1560                          * active.
1561                          */
1562
1563                         if ( connection_write( wd ) < 0 ) {
1564                                 FD_CLR( (unsigned) wd, &readfds );
1565                                 slapd_close( wd );
1566                         }
1567                 }
1568
1569 #ifdef HAVE_WINSOCK
1570                 for ( i = 0; i < readfds.fd_count; i++ )
1571 #else
1572                 for ( i = 0; i < nfds; i++ )
1573 #endif
1574                 {
1575                         ber_socket_t rd;
1576                         int is_listener = 0;
1577
1578 #ifdef HAVE_WINSOCK
1579                         rd = readfds.fd_array[i];
1580 #else
1581                         if( ! FD_ISSET( i, &readfds ) ) {
1582                                 continue;
1583                         }
1584                         rd = i;
1585 #endif
1586
1587                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1588                                 if ( rd == slap_listeners[l]->sl_sd ) {
1589 #ifdef LDAP_CONNECTIONLESS
1590                                         if (slap_listeners[l]->sl_is_udp)
1591                                                 continue;
1592 #endif
1593                                         is_listener = 1;
1594                                         break;
1595                                 }
1596                         }
1597                         if ( is_listener ) {
1598                                 continue;
1599                         }
1600
1601 #ifdef NEW_LOGGING
1602                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1603                                    "slapd_daemon_task: read activity on %d\n", rd ));
1604 #else
1605                         Debug ( LDAP_DEBUG_CONNS,
1606                                 "daemon: read activity on %d\n", rd, 0, 0 );
1607 #endif
1608                         /*
1609                          * NOTE: it is possible that the connection was closed
1610                          * and that the stream is now inactive.
1611                          * connection_read() must valid the stream is still
1612                          * active.
1613                          */
1614
1615                         if ( connection_read( rd ) < 0 ) {
1616                                 slapd_close( rd );
1617                         }
1618                 }
1619                 ldap_pvt_thread_yield();
1620         }
1621
1622         if( slapd_shutdown > 0 ) {
1623 #ifdef NEW_LOGGING
1624                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1625                            "slapd_daemon_task: shutdown requested and initiated.\n"));
1626 #else
1627                 Debug( LDAP_DEBUG_TRACE,
1628                         "daemon: shutdown requested and initiated.\n",
1629                         0, 0, 0 );
1630 #endif
1631
1632         } else if ( slapd_shutdown < 0 ) {
1633 #ifdef HAVE_NT_SERVICE_MANAGER
1634                 if (slapd_shutdown == -1)
1635                 {
1636 #ifdef NEW_LOGGING
1637                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1638                                    "slapd_daemon_task: shutdown initiated by Service Manager.\n"));
1639 #else
1640                         Debug( LDAP_DEBUG_TRACE,
1641                                "daemon: shutdown initiated by Service Manager.\n",
1642                                0, 0, 0);
1643 #endif
1644                 }
1645                 else
1646 #endif
1647                 {
1648 #ifdef NEW_LOGGING
1649                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1650                                    "slapd_daemon_task: abnormal condition, shutdown initiated.\n" ));
1651 #else
1652                         Debug( LDAP_DEBUG_TRACE,
1653                                "daemon: abnormal condition, shutdown initiated.\n",
1654                                0, 0, 0 );
1655 #endif
1656                 }
1657         } else {
1658 #ifdef NEW_LOGGING
1659                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1660                            "slapd_daemon_task: no active streams, shutdown initiated.\n" ));
1661 #else
1662                 Debug( LDAP_DEBUG_TRACE,
1663                        "daemon: no active streams, shutdown initiated.\n",
1664                        0, 0, 0 );
1665 #endif
1666         }
1667
1668         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1669                 if ( slap_listeners[l]->sl_sd != AC_SOCKET_INVALID ) {
1670 #ifdef LDAP_PF_LOCAL
1671                         if ( slap_listeners[l]->sl_sa.sa_addr.sa_family == AF_LOCAL ) {
1672                                 unlink( slap_listeners[l]->sl_sa.sa_un_addr.sun_path );
1673                         }
1674 #endif /* LDAP_PF_LOCAL */
1675                         slapd_close( slap_listeners[l]->sl_sd );
1676                         break;
1677                 }
1678         }
1679
1680 #ifdef NEW_LOGGING
1681         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1682                    "slapd_daemon_task: shutdown waiting for %d threads to terminate.\n",
1683                    ldap_pvt_thread_pool_backload(&connection_pool) ));
1684 #else
1685         Debug( LDAP_DEBUG_ANY,
1686             "slapd shutdown: waiting for %d threads to terminate\n",
1687             ldap_pvt_thread_pool_backload(&connection_pool), 0, 0 );
1688 #endif
1689         ldap_pvt_thread_pool_destroy(&connection_pool, 1);
1690
1691         return NULL;
1692 }
1693
1694
1695 int slapd_daemon( void )
1696 {
1697         int rc;
1698
1699         connections_init();
1700
1701 #define SLAPD_LISTENER_THREAD 1
1702 #if defined( SLAPD_LISTENER_THREAD )
1703         {
1704                 ldap_pvt_thread_t       listener_tid;
1705
1706                 /* listener as a separate THREAD */
1707                 rc = ldap_pvt_thread_create( &listener_tid,
1708                         0, slapd_daemon_task, NULL );
1709
1710                 if ( rc != 0 ) {
1711 #ifdef NEW_LOGGING
1712                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1713                                    "slapd_daemon: listener ldap_pvt_thread_create failed (%d).\n", rc ));
1714 #else
1715                         Debug( LDAP_DEBUG_ANY,
1716                         "listener ldap_pvt_thread_create failed (%d)\n", rc, 0, 0 );
1717 #endif
1718                         return rc;
1719                 }
1720  
1721                 /* wait for the listener thread to complete */
1722                 ldap_pvt_thread_join( listener_tid, (void *) NULL );
1723         }
1724 #else
1725         /* experimental code */
1726         slapd_daemon_task( NULL );
1727 #endif
1728
1729         return 0;
1730
1731 }
1732
1733 int sockinit(void)
1734 {
1735 #if defined( HAVE_WINSOCK2 )
1736     WORD wVersionRequested;
1737         WSADATA wsaData;
1738         int err;
1739
1740         wVersionRequested = MAKEWORD( 2, 0 );
1741
1742         err = WSAStartup( wVersionRequested, &wsaData );
1743         if ( err != 0 ) {
1744                 /* Tell the user that we couldn't find a usable */
1745                 /* WinSock DLL.                                  */
1746                 return -1;
1747         }
1748
1749         /* Confirm that the WinSock DLL supports 2.0.*/
1750         /* Note that if the DLL supports versions greater    */
1751         /* than 2.0 in addition to 2.0, it will still return */
1752         /* 2.0 in wVersion since that is the version we      */
1753         /* requested.                                        */
1754
1755         if ( LOBYTE( wsaData.wVersion ) != 2 ||
1756                 HIBYTE( wsaData.wVersion ) != 0 )
1757         {
1758             /* Tell the user that we couldn't find a usable */
1759             /* WinSock DLL.                                  */
1760             WSACleanup();
1761             return -1;
1762         }
1763
1764         /* The WinSock DLL is acceptable. Proceed. */
1765 #elif defined( HAVE_WINSOCK )
1766         WSADATA wsaData;
1767         if ( WSAStartup( 0x0101, &wsaData ) != 0 ) {
1768             return -1;
1769         }
1770 #endif
1771         return 0;
1772 }
1773
1774 int sockdestroy(void)
1775 {
1776 #if defined( HAVE_WINSOCK2 ) || defined( HAVE_WINSOCK )
1777         WSACleanup();
1778 #endif
1779         return 0;
1780 }
1781
1782 RETSIGTYPE
1783 slap_sig_shutdown( int sig )
1784 {
1785 #ifdef NEW_LOGGING
1786         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1787                    "slap_sig_shutdown: signal %d\n", sig ));
1788 #else
1789         Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: signal %d\n", sig, 0, 0);
1790 #endif
1791
1792         /*
1793          * If the NT Service Manager is controlling the server, we don't
1794          * want SIGBREAK to kill the server. For some strange reason,
1795          * SIGBREAK is generated when a user logs out.
1796          */
1797
1798 #if HAVE_NT_SERVICE_MANAGER && SIGBREAK
1799         if (is_NT_Service && sig == SIGBREAK)
1800 #ifdef NEW_LOGGING
1801             LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1802                        "slap_sig_shutdown: SIGBREAK ignored.\n" ));
1803 #else
1804             Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: SIGBREAK ignored.\n",
1805                   0, 0, 0);
1806 #endif
1807         else
1808 #endif
1809         slapd_shutdown = sig;
1810
1811         WAKE_LISTENER(1);
1812
1813         /* reinstall self */
1814         (void) SIGNAL_REINSTALL( sig, slap_sig_shutdown );
1815 }
1816
1817 RETSIGTYPE
1818 slap_sig_wake( int sig )
1819 {
1820         WAKE_LISTENER(1);
1821
1822         /* reinstall self */
1823         (void) SIGNAL_REINSTALL( sig, slap_sig_wake );
1824 }
1825
1826
1827 void slapd_add_internal(ber_socket_t s) {
1828         slapd_add(s);
1829 }