]> git.sur5r.net Git - openldap/blob - servers/slapd/daemon.c
Updated busy loop protection
[openldap] / servers / slapd / daemon.c
1 /* $OpenLDAP$ */
2 /*
3  * Copyright 1998-2000 The OpenLDAP Foundation, All Rights Reserved.
4  * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
5  */
6
7 #include "portable.h"
8
9 #include <stdio.h>
10
11 #include <ac/ctype.h>
12 #include <ac/errno.h>
13 #include <ac/signal.h>
14 #include <ac/socket.h>
15 #include <ac/string.h>
16 #include <ac/time.h>
17 #include <ac/unistd.h>
18
19 #include "ldap_pvt.h"
20 #include "lutil.h"
21 #include "slap.h"
22
23 #ifdef HAVE_TCPD
24 #include <tcpd.h>
25
26 int allow_severity = LOG_INFO;
27 int deny_severity = LOG_NOTICE;
28 #endif /* TCP Wrappers */
29
30 #ifdef LDAP_PF_LOCAL
31 #include <sys/stat.h>
32 #endif /* LDAP_PF_LOCAL */
33
34 /* globals */
35 time_t starttime;
36 ber_socket_t dtblsize;
37
38 typedef struct slap_listener {
39         char* sl_url;
40         char* sl_name;
41 #ifdef HAVE_TLS
42         int             sl_is_tls;
43 #endif
44 #ifdef LDAP_CONNECTIONLESS
45         int     sl_is_udp;              /* UDP listener is also data port */
46 #endif
47         ber_socket_t            sl_sd;
48         Sockaddr sl_sa;
49 #define sl_addr sl_sa.sa_in_addr
50 } Listener;
51
52 Listener **slap_listeners = NULL;
53
54 #define SLAPD_LISTEN 10
55
56 static ber_socket_t wake_sds[2];
57
58 #ifdef NO_THREADS
59 static int waking;
60 #define WAKE_LISTENER(w) \
61 ((w && !waking) ? tcp_write( wake_sds[1], "0", 1 ), waking=1 : 0)
62 #else
63 #define WAKE_LISTENER(w) \
64 do { if (w) tcp_write( wake_sds[1], "0", 1 ); } while(0)
65 #endif
66
67 #ifdef HAVE_NT_SERVICE_MANAGER
68 /* in nt_main.c */
69 extern ldap_pvt_thread_cond_t                   started_event;
70 extern int        is_NT_Service;
71 #endif
72
73 #ifndef HAVE_WINSOCK
74 static
75 #endif
76 volatile sig_atomic_t slapd_shutdown = 0;
77
78 static struct slap_daemon {
79         ldap_pvt_thread_mutex_t sd_mutex;
80
81         int sd_nactives;
82
83 #ifndef HAVE_WINSOCK
84         /* In winsock, accept() returns values higher than dtblsize
85                 so don't bother with this optimization */
86         int sd_nfds;
87 #endif
88
89         fd_set sd_actives;
90         fd_set sd_readers;
91         fd_set sd_writers;
92 } slap_daemon;
93
94
95
96 #ifdef HAVE_SLP
97 /*
98  * SLP related functions
99  */
100 #include <slp.h>
101
102 #define LDAP_SRVTYPE_PREFIX "service:ldap://"
103 #define LDAPS_SRVTYPE_PREFIX "service:ldaps://"
104 static char** slapd_srvurls = NULL;
105 static SLPHandle slapd_hslp = 0;
106
107 void slapd_slp_init( const char* urls ) {
108         int i;
109
110         slapd_srvurls = str2charray( urls, " " );
111
112         if( slapd_srvurls == NULL ) return;
113
114         /* find and expand INADDR_ANY URLs */
115         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
116                 if( strcmp( slapd_srvurls[i], "ldap:///" ) == 0) {
117                         char *host = ldap_pvt_get_fqdn( NULL );
118                         if ( host != NULL ) {
119                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
120                                         strlen( host ) +
121                                         sizeof( LDAP_SRVTYPE_PREFIX ) );
122                                 strcpy( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX );
123                                 strcat( slapd_srvurls[i], host );
124
125                                 ch_free( host );
126                         }
127
128                 } else if ( strcmp( slapd_srvurls[i], "ldaps:///" ) == 0) {
129                         char *host = ldap_pvt_get_fqdn( NULL );
130                         if ( host != NULL ) {
131                                 slapd_srvurls[i] = (char *) realloc( slapd_srvurls[i],
132                                         strlen( host ) +
133                                         sizeof( LDAPS_SRVTYPE_PREFIX ) );
134                                 strcpy( slapd_srvurls[i], LDAPS_SRVTYPE_PREFIX );
135                                 strcat( slapd_srvurls[i], host );
136
137                                 ch_free( host );
138                         }
139                 }
140         }
141
142         /* open the SLP handle */
143         SLPOpen( "en", 0, &slapd_hslp );
144 }
145
146 void slapd_slp_deinit() {
147         if( slapd_srvurls == NULL ) return;
148
149         charray_free( slapd_srvurls );
150         slapd_srvurls = NULL;
151
152         /* close the SLP handle */
153         SLPClose( slapd_hslp );
154 }
155
156 void slapd_slp_regreport(
157         SLPHandle hslp,
158         SLPError errcode,
159         void* cookie )
160 {
161         /* empty report */
162 }
163
164 void slapd_slp_reg() {
165         int i;
166
167         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
168                 if( strncmp( slapd_srvurls[i], LDAP_SRVTYPE_PREFIX,
169                                 sizeof( LDAP_SRVTYPE_PREFIX ) - 1 ) == 0 ||
170                     strncmp( slapd_srvurls[i], LDAPS_SRVTYPE_PREFIX,
171                                 sizeof( LDAPS_SRVTYPE_PREFIX ) - 1 ) == 0 )
172                 {
173                         SLPReg( slapd_hslp,
174                                 slapd_srvurls[i],
175                                 SLP_LIFETIME_MAXIMUM,
176                                 "ldap",
177                                 "",
178                                 1,
179                                 slapd_slp_regreport,
180                                 NULL );
181                 }
182         }
183 }
184
185 void slapd_slp_dereg() {
186         int i;
187
188         for( i=0; slapd_srvurls[i] != NULL; i++ ) {
189                 SLPDereg( slapd_hslp,
190                         slapd_srvurls[i],
191                         slapd_slp_regreport,
192                         NULL );
193         }
194 }
195 #endif /* HAVE_SLP */
196
197 /*
198  * Add a descriptor to daemon control
199  */
200 static void slapd_add(ber_socket_t s) {
201         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
202
203         assert( !FD_ISSET( s, &slap_daemon.sd_actives ));
204         assert( !FD_ISSET( s, &slap_daemon.sd_readers ));
205         assert( !FD_ISSET( s, &slap_daemon.sd_writers ));
206
207 #ifndef HAVE_WINSOCK
208         if (s >= slap_daemon.sd_nfds) {
209                 slap_daemon.sd_nfds = s + 1;
210         }
211 #endif
212
213         FD_SET( s, &slap_daemon.sd_actives );
214         FD_SET( s, &slap_daemon.sd_readers );
215
216 #ifdef NEW_LOGGING
217         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
218                    "slapd_add: added %ld%s%s\n",
219                    (long)s,
220                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
221                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" ));
222 #else
223         Debug( LDAP_DEBUG_CONNS, "daemon: added %ld%s%s\n",
224                 (long) s,
225             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
226                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
227 #endif
228         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
229 }
230
231 /*
232  * Remove the descriptor from daemon control
233  */
234 void slapd_remove(ber_socket_t s, int wake) {
235         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
236
237 #ifdef NEW_LOGGING
238         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
239                    "slapd_remove: removing %ld%s%s\n",
240                    (long) s,
241                    FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
242                    FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : ""  ));
243 #else
244         Debug( LDAP_DEBUG_CONNS, "daemon: removing %ld%s%s\n",
245                 (long) s,
246             FD_ISSET(s, &slap_daemon.sd_readers) ? "r" : "",
247                 FD_ISSET(s, &slap_daemon.sd_writers) ? "w" : "" );
248 #endif
249         FD_CLR( s, &slap_daemon.sd_actives );
250         FD_CLR( s, &slap_daemon.sd_readers );
251         FD_CLR( s, &slap_daemon.sd_writers );
252
253         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
254         WAKE_LISTENER(wake);
255 }
256
257 void slapd_clr_write(ber_socket_t s, int wake) {
258         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
259
260         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
261         FD_CLR( s, &slap_daemon.sd_writers );
262
263         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
264         WAKE_LISTENER(wake);
265 }
266
267 void slapd_set_write(ber_socket_t s, int wake) {
268         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
269
270         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
271         if (!FD_ISSET(s, &slap_daemon.sd_writers))
272             FD_SET( (unsigned) s, &slap_daemon.sd_writers );
273
274         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
275         WAKE_LISTENER(wake);
276 }
277
278 void slapd_clr_read(ber_socket_t s, int wake) {
279         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
280
281         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
282         FD_CLR( s, &slap_daemon.sd_readers );
283
284         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
285         WAKE_LISTENER(wake);
286 }
287
288 void slapd_set_read(ber_socket_t s, int wake) {
289         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
290
291         assert( FD_ISSET( s, &slap_daemon.sd_actives) );
292         if (!FD_ISSET(s, &slap_daemon.sd_readers))
293             FD_SET( s, &slap_daemon.sd_readers );
294
295         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
296         WAKE_LISTENER(wake);
297 }
298
299 static void slapd_close(ber_socket_t s) {
300 #ifdef NEW_LOGGING
301         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
302                    "slapd_close: closing %ld\n", (long)s ));
303 #else
304         Debug( LDAP_DEBUG_CONNS, "daemon: closing %ld\n",
305                 (long) s, 0, 0 );
306 #endif
307         tcp_close(s);
308 }
309
310 static void slap_free_listener_addresses(struct sockaddr **sal)
311 {
312         struct sockaddr **sap;
313
314         if (sal == NULL) {
315                 return;
316         }
317
318         for (sap = sal; *sap != NULL; sap++) {
319                 ch_free(*sap);
320         }
321
322         ch_free(sal);
323 }
324
325 /* port = 0 indicates AF_LOCAL */
326 static int slap_get_listener_addresses(
327         const char *host,
328         unsigned short port,
329         struct sockaddr ***sal)
330 {
331         struct sockaddr **sap;
332
333 #ifdef LDAP_PF_LOCAL
334         if ( port == 0 ) {
335                 *sal = ch_malloc(2 * sizeof(void *));
336                 if (*sal == NULL) {
337                         return -1;
338                 }
339
340                 sap = *sal;
341                 *sap = ch_malloc(sizeof(struct sockaddr_un));
342                 if (*sap == NULL)
343                         goto errexit;
344                 sap[1] = NULL;
345
346                 if ( strlen(host) >
347                      (sizeof(((struct sockaddr_un *)*sap)->sun_path) - 1) ) {
348 #ifdef NEW_LOGGING
349                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
350                                    "slap_get_listener_addresses: domain socket path (%s) too long in URL\n",
351                                    host ));
352 #else
353                         Debug( LDAP_DEBUG_ANY,
354                                "daemon: domain socket path (%s) too long in URL",
355                                host, 0, 0);
356 #endif
357                         goto errexit;
358                 }
359
360                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_un) );
361                 (*sap)->sa_family = AF_LOCAL;
362                 strcpy( ((struct sockaddr_un *)*sap)->sun_path, host );
363         } else
364 #endif
365         {
366 #ifdef HAVE_GETADDRINFO
367                 struct addrinfo hints, *res, *sai;
368                 int n, err;
369                 char serv[7];
370
371                 memset( &hints, '\0', sizeof(hints) );
372                 hints.ai_flags = AI_PASSIVE;
373                 hints.ai_socktype = SOCK_STREAM;
374                 hints.ai_family = AF_UNSPEC;
375                 snprintf(serv, sizeof serv, "%d", port);
376
377                 if (err = getaddrinfo(host, serv, &hints, &res)) {
378 #ifdef NEW_LOGGING
379                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
380                                    "slap_get_listener_addresses: getaddrinfo failed: %s\n",
381                                    AC_GAI_STRERROR(err) ));
382 #else
383                         Debug( LDAP_DEBUG_ANY, "daemon: getaddrinfo failed: %s\n",
384                                 AC_GAI_STRERROR(err), 0, 0);
385 #endif
386                         return -1;
387                 }
388
389                 sai = res;
390                 for (n=2; (sai = sai->ai_next) != NULL; n++) {
391                         /* EMPTY */ ;
392                 }
393                 *sal = ch_malloc(n * sizeof(void *));
394                 if (*sal == NULL) {
395                         return -1;
396                 }
397
398                 sap = *sal;
399
400                 for ( sai=res; sai; sai=sai->ai_next ) {
401                         if( sai->ai_addr == NULL ) {
402 #ifdef NEW_LOGGING
403                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
404                                         "slap_get_listener_addresses: "
405                                         "getaddrinfo ai_addr is NULL?\n" ));
406 #else
407                                 Debug( LDAP_DEBUG_ANY, "slap_get_listener_addresses: "
408                                         "getaddrinfo ai_addr is NULL?\n", 0, 0, 0 );
409 #endif
410                                 freeaddrinfo(res);
411                                 goto errexit;
412                         }
413
414                         switch (sai->ai_family) {
415 #  ifdef LDAP_PF_INET6
416                         case AF_INET6:
417                                 *sap = ch_malloc(sizeof(struct sockaddr_in6));
418                                 if (*sap == NULL) {
419                                         freeaddrinfo(res);
420                                         goto errexit;
421                                 }
422                                 *(struct sockaddr_in6 *)*sap =
423                                         *((struct sockaddr_in6 *)sai->ai_addr);
424                                 break;
425 #  endif
426                         case AF_INET:
427                                 *sap = ch_malloc(sizeof(struct sockaddr_in));
428                                 if (*sap == NULL) {
429                                         freeaddrinfo(res);
430                                         goto errexit;
431                                 }
432                                 *(struct sockaddr_in *)*sap =
433                                         *((struct sockaddr_in *)sai->ai_addr);
434                                 break;
435                         default:
436                                 *sap = NULL;
437                                 break;
438                         }
439                         if (*sap != NULL) {
440                                 (*sap)->sa_family = sai->ai_family;
441                                 sap++;
442                         }
443                 }
444
445                 *sap = NULL;
446                 freeaddrinfo(res);
447 #else
448                 struct in_addr in;
449
450                 if ( host == NULL ) {
451                         in.s_addr = htonl(INADDR_ANY);
452
453                 } else if ( !inet_aton( host, &in ) ) {
454                         struct hostent *he = gethostbyname( host );
455                         if( he == NULL ) {
456 #ifdef NEW_LOGGING
457                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
458                                            "slap_get_listener_addresses: invalid host %s\n",
459                                            host ));
460 #else
461                                 Debug( LDAP_DEBUG_ANY,
462                                        "daemon: invalid host %s", host, 0, 0);
463 #endif
464                                 return -1;
465                         }
466                         AC_MEMCPY( &in, he->h_addr, sizeof( in ) );
467                 }
468
469                 *sal = ch_malloc(2 * sizeof(void *));
470                 if (*sal == NULL) {
471                         return -1;
472                 }
473
474                 sap = *sal;
475                 *sap = ch_malloc(sizeof(struct sockaddr_in));
476                 if (*sap == NULL) {
477                         goto errexit;
478                 }
479                 sap[1] = NULL;
480
481                 (void)memset( (void *)*sap, '\0', sizeof(struct sockaddr_in) );
482                 (*sap)->sa_family = AF_INET;
483                 ((struct sockaddr_in *)*sap)->sin_port = htons(port);
484                 ((struct sockaddr_in *)*sap)->sin_addr = in;
485 #endif
486         }
487
488         return 0;
489
490 errexit:
491         slap_free_listener_addresses(*sal);
492         return -1;
493 }
494
495 static Listener * slap_open_listener(
496         const char* url )
497 {
498         int     tmp, rc;
499         Listener l;
500         Listener *li;
501         LDAPURLDesc *lud;
502         unsigned short port;
503         int err, addrlen;
504         struct sockaddr **sal, **psal;
505         int socktype = SOCK_STREAM;     /* default to COTS */
506
507         rc = ldap_url_parse( url, &lud );
508
509         if( rc != LDAP_URL_SUCCESS ) {
510 #ifdef NEW_LOGGING
511                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
512                            "slap_open_listener: listen URL \"%s\" parse error %d\n",
513                            url, rc ));
514 #else
515                 Debug( LDAP_DEBUG_ANY,
516                         "daemon: listen URL \"%s\" parse error=%d\n",
517                         url, rc, 0 );
518 #endif
519                 return NULL;
520         }
521
522 #ifndef HAVE_TLS
523         if( ldap_pvt_url_scheme2tls( lud->lud_scheme ) ) {
524 #ifdef NEW_LOGGING
525                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
526                            "slap_open_listener: TLS is not supported (%s)\n",
527                            url ));
528 #else
529                 Debug( LDAP_DEBUG_ANY,
530                         "daemon: TLS not supported (%s)\n",
531                         url, 0, 0 );
532 #endif
533                 ldap_free_urldesc( lud );
534                 return NULL;
535         }
536
537         if(! lud->lud_port ) {
538                 lud->lud_port = LDAP_PORT;
539         }
540
541 #else
542         l.sl_is_tls = ldap_pvt_url_scheme2tls( lud->lud_scheme );
543
544         if(! lud->lud_port ) {
545                 lud->lud_port = l.sl_is_tls ? LDAPS_PORT : LDAP_PORT;
546         }
547 #endif
548
549         port = (unsigned short) lud->lud_port;
550
551         tmp = ldap_pvt_url_scheme2proto(lud->lud_scheme);
552         if ( tmp == LDAP_PROTO_IPC ) {
553 #ifdef LDAP_PF_LOCAL
554                 if ( lud->lud_host == NULL || lud->lud_host[0] == '\0' ) {
555                         err = slap_get_listener_addresses(LDAPI_SOCK, 0, &sal);
556                 } else {
557                         err = slap_get_listener_addresses(lud->lud_host, 0, &sal);
558                 }
559 #else
560
561 #ifdef NEW_LOGGING
562                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
563                            "slap_open_listener: URL scheme is not supported: %s\n",
564                            url ));
565 #else
566                 Debug( LDAP_DEBUG_ANY, "daemon: URL scheme not supported: %s",
567                         url, 0, 0);
568 #endif
569                 ldap_free_urldesc( lud );
570                 return NULL;
571 #endif
572         } else {
573 #ifdef LDAP_CONNECTIONLESS
574                 l.sl_is_udp = ( tmp == LDAP_PROTO_UDP );
575 #endif
576                 if( lud->lud_host == NULL || lud->lud_host[0] == '\0'
577                         || strcmp(lud->lud_host, "*") == 0 )
578                 {
579                         err = slap_get_listener_addresses(NULL, port, &sal);
580                 } else {
581                         err = slap_get_listener_addresses(lud->lud_host, port, &sal);
582                 }
583         }
584
585         ldap_free_urldesc( lud );
586         if ( err ) {
587                 return NULL;
588         }
589
590         psal = sal;
591         while ( *sal != NULL ) {
592                 switch( (*sal)->sa_family ) {
593                 case AF_INET:
594 #ifdef LDAP_PF_INET6
595                 case AF_INET6:
596 #endif
597 #ifdef LDAP_PF_LOCAL
598                 case AF_LOCAL:
599 #endif
600                         break;
601                 default:
602                         sal++;
603                         continue;
604                 }
605 #ifdef LDAP_CONNECTIONLESS
606                 if (l.sl_is_udp)
607                     socktype = SOCK_DGRAM;
608 #endif
609                 l.sl_sd = socket( (*sal)->sa_family, socktype, 0);
610                 if ( l.sl_sd == AC_SOCKET_INVALID ) {
611                         int err = sock_errno();
612 #ifdef NEW_LOGGING
613                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
614                                    "slap_open_listener: socket() failed errno=%d (%s)\n",
615                                    err, sock_errstr(err) ));
616 #else
617                         Debug( LDAP_DEBUG_ANY,
618                                 "daemon: socket() failed errno=%d (%s)\n", err,
619                                 sock_errstr(err), 0 );
620 #endif
621                         sal++;
622                         continue;
623                 }
624 #ifndef HAVE_WINSOCK
625                 if ( l.sl_sd >= dtblsize ) {
626 #ifdef NEW_LOGGING
627                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
628                                    "slap_open_listener: listener descriptor %ld is too great %ld\n",
629                                    (long)l.sl_sd, (long)dtblsize ));
630 #else
631                         Debug( LDAP_DEBUG_ANY,
632                                "daemon: listener descriptor %ld is too great %ld\n",
633                                (long) l.sl_sd, (long) dtblsize, 0 );
634 #endif
635                         tcp_close( l.sl_sd );
636                         sal++;
637                         continue;
638                 }
639 #endif
640 #ifdef LDAP_PF_LOCAL
641                 if ( (*sal)->sa_family == AF_LOCAL ) {
642                         unlink ( ((struct sockaddr_un *)*sal)->sun_path );
643                 } else
644 #endif
645                 {
646 #ifdef SO_REUSEADDR
647                         /* enable address reuse */
648                         tmp = 1;
649                         rc = setsockopt( l.sl_sd, SOL_SOCKET, SO_REUSEADDR,
650                                          (char *) &tmp, sizeof(tmp) );
651                         if ( rc == AC_SOCKET_ERROR ) {
652                                 int err = sock_errno();
653 #ifdef NEW_LOGGING
654                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
655                                            "slap_open_listener: setsockopt( %ld, SO_REUSEADDR ) failed errno %d (%s)\n",
656                                            (long)l.sl_sd, err, sock_errstr(err) ));
657 #else
658                                 Debug( LDAP_DEBUG_ANY,
659                                        "slapd(%ld): setsockopt(SO_REUSEADDR) failed errno=%d (%s)\n",
660                                        (long) l.sl_sd, err, sock_errstr(err) );
661 #endif
662                         }
663 #endif
664                 }
665
666                 switch( (*sal)->sa_family ) {
667                 case AF_INET:
668                         addrlen = sizeof(struct sockaddr_in);
669                         break;
670 #ifdef LDAP_PF_INET6
671                 case AF_INET6:
672                         addrlen = sizeof(struct sockaddr_in6);
673                         break;
674 #endif
675 #ifdef LDAP_PF_LOCAL
676                 case AF_LOCAL:
677                         addrlen = sizeof(struct sockaddr_un);
678                         break;
679 #endif
680                 }
681
682                 if (!bind(l.sl_sd, *sal, addrlen))
683                         break;
684                 err = sock_errno();
685 #ifdef NEW_LOGGING
686                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
687                            "slap_open_listener: bind(%ld) failed errno=%d (%s)\n",
688                            (long)l.sl_sd, err, sock_errstr(err) ));
689 #else
690                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed errno=%d (%s)\n",
691                        (long) l.sl_sd, err, sock_errstr(err) );
692 #endif
693                 tcp_close( l.sl_sd );
694                 sal++;
695         } /* while ( *sal != NULL ) */
696
697         if ( *sal == NULL ) {
698 #ifdef NEW_LOGGING
699                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
700                            "slap_open_listener: bind(%ld) failed.\n", (long)l.sl_sd ));
701 #else
702                 Debug( LDAP_DEBUG_ANY, "daemon: bind(%ld) failed\n",
703                         (long) l.sl_sd, 0, 0 );
704 #endif
705                 slap_free_listener_addresses(psal);
706                 return NULL;
707         }
708
709         switch ( (*sal)->sa_family ) {
710 #ifdef LDAP_PF_LOCAL
711         case AF_LOCAL: {
712                 char *addr = ((struct sockaddr_un *)*sal)->sun_path;
713                 if ( chmod( addr, S_IRWXU ) < 0 ) {
714                         int err = sock_errno();
715 #ifdef NEW_LOGGING
716                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
717                                    "slap_open_listener: fchmod(%ld) failed errno=%d (%s)\n",
718                                    (long)l.sl_sd, err, sock_errstr(err) ));
719 #else
720                         Debug( LDAP_DEBUG_ANY, "daemon: fchmod(%ld) failed errno=%d (%s)",
721                                (long) l.sl_sd, err, sock_errstr(err) );
722 #endif
723                         tcp_close( l.sl_sd );
724                         slap_free_listener_addresses(psal);
725                         return NULL;
726                 }
727                 l.sl_name = ch_malloc( strlen(addr) + sizeof("PATH=") );
728                 sprintf( l.sl_name, "PATH=%s", addr );
729         } break;
730 #endif /* LDAP_PF_LOCAL */
731
732         case AF_INET: {
733                 char *s;
734 #if defined( HAVE_GETADDRINFO ) && defined( HAVE_INET_NTOP )
735                 char addr[INET_ADDRSTRLEN];
736                 inet_ntop( AF_INET, &((struct sockaddr_in *)*sal)->sin_addr,
737                            addr, sizeof(addr) );
738                 s = addr;
739                 port = ((struct sockaddr_in *)*sal) ->sin_port;
740 #else
741                 s = inet_ntoa( l.sl_addr.sin_addr );
742                 port = l.sl_addr.sin_port;
743 #endif
744                 l.sl_name = ch_malloc( sizeof("IP=255.255.255.255:65535") );
745                 sprintf( l.sl_name, "IP=%s:%d",
746                          s != NULL ? s : "unknown" , port );
747         } break;
748
749 #ifdef LDAP_PF_INET6
750         case AF_INET6: {
751                 char addr[INET6_ADDRSTRLEN];
752                 inet_ntop( AF_INET6, &((struct sockaddr_in6 *)*sal)->sin6_addr,
753                            addr, sizeof addr);
754                 port = ((struct sockaddr_in6 *)*sal)->sin6_port;
755                 l.sl_name = ch_malloc( strlen(addr) + sizeof("IP= 65535") );
756                 sprintf( l.sl_name, "IP=%s %d", addr, port );
757         } break;
758 #endif /* LDAP_PF_INET6 */
759
760         default:
761 #ifdef NEW_LOGGING
762                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
763                            "slap_open_listener: unsupported address family (%d)\n",
764                            (int)(*sal)->sa_family ));
765 #else
766                 Debug( LDAP_DEBUG_ANY, "daemon: unsupported address family (%d)\n",
767                         (int) (*sal)->sa_family, 0, 0 );
768 #endif
769                 break;
770         }
771
772         slap_free_listener_addresses(psal);
773
774         l.sl_url = ch_strdup( url );
775         li = ch_malloc( sizeof( Listener ) );
776         *li = l;
777
778 #ifdef NEW_LOGGING
779         LDAP_LOG(( "connection", LDAP_LEVEL_RESULTS,
780                    "slap_open_listener: daemon initialzed %s\n", l.sl_url ));
781 #else
782         Debug( LDAP_DEBUG_TRACE, "daemon: initialized %s\n",
783                 l.sl_url, 0, 0 );
784 #endif
785         return li;
786 }
787
788 static int sockinit(void);
789 static int sockdestroy(void);
790
791 int slapd_daemon_init( const char *urls )
792 {
793         int i, rc;
794         char **u;
795
796 #ifdef NEW_LOGGING
797         LDAP_LOG(( "connection", LDAP_LEVEL_ARGS,
798                    "slapd_daemon_init: %s\n",
799                    urls ? urls : "<null>" ));
800 #else
801         Debug( LDAP_DEBUG_ARGS, "daemon_init: %s\n",
802                 urls ? urls : "<null>", 0, 0 );
803 #endif
804         if( (rc = sockinit()) != 0 ) {
805                 return rc;
806         }
807
808 #ifdef HAVE_SYSCONF
809         dtblsize = sysconf( _SC_OPEN_MAX );
810 #elif HAVE_GETDTABLESIZE
811         dtblsize = getdtablesize();
812 #else
813         dtblsize = FD_SETSIZE;
814 #endif
815
816 #ifdef FD_SETSIZE
817         if(dtblsize > FD_SETSIZE) {
818                 dtblsize = FD_SETSIZE;
819         }
820 #endif  /* !FD_SETSIZE */
821
822         /* open a pipe (or something equivalent connected to itself).
823          * we write a byte on this fd whenever we catch a signal. The main
824          * loop will be select'ing on this socket, and will wake up when
825          * this byte arrives.
826          */
827         if( (rc = lutil_pair( wake_sds )) < 0 ) {
828 #ifdef NEW_LOGGING
829                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
830                            "slap_daemon_init: lutil_pair() failed rc=%d\n", rc ));
831 #else
832                 Debug( LDAP_DEBUG_ANY,
833                         "daemon: lutil_pair() failed rc=%d\n", rc, 0, 0 );
834 #endif
835                 return rc;
836         }
837
838         FD_ZERO( &slap_daemon.sd_readers );
839         FD_ZERO( &slap_daemon.sd_writers );
840
841         if( urls == NULL ) {
842                 urls = "ldap:///";
843         }
844
845         u = str2charray( urls, " " );
846
847         if( u == NULL || u[0] == NULL ) {
848 #ifdef NEW_LOGGING
849                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
850                            "slap_daemon_init: no urls (%s) provided.\n", urls ));
851 #else
852                 Debug( LDAP_DEBUG_ANY, "daemon_init: no urls (%s) provided.\n",
853                         urls, 0, 0 );
854 #endif
855                 return -1;
856         }
857
858         for( i=0; u[i] != NULL; i++ ) {
859 #ifdef NEW_LOGGING
860                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
861                            "slap_daemon_init: listen on %s\n.", u[i] ));
862 #else
863                 Debug( LDAP_DEBUG_TRACE, "daemon_init: listen on %s\n",
864                         u[i], 0, 0 );
865 #endif
866         }
867
868         if( i == 0 ) {
869 #ifdef NEW_LOGGING
870                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
871                            "slap_daemon_init: no listeners to open (%s)\n", urls ));
872 #else
873                 Debug( LDAP_DEBUG_ANY, "daemon_init: no listeners to open (%s)\n",
874                         urls, 0, 0 );
875 #endif
876                 charray_free( u );
877                 return -1;
878         }
879
880 #ifdef NEW_LOGGING
881         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
882                    "slap_daemon_init: %d listeners to open...\n", i ));
883 #else
884         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners to open...\n",
885                 i, 0, 0 );
886 #endif
887         slap_listeners = ch_malloc( (i+1)*sizeof(Listener *) );
888
889         for(i = 0; u[i] != NULL; i++ ) {
890                 slap_listeners[i] = slap_open_listener( u[i] );
891
892                 if( slap_listeners[i] == NULL ) {
893                         charray_free( u );
894                         return -1;
895                 }
896         }
897         slap_listeners[i] = NULL;
898
899 #ifdef NEW_LOGGING
900         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
901                    "slap_daemon_init: %d listeners opened\n", i ));
902 #else
903         Debug( LDAP_DEBUG_TRACE, "daemon_init: %d listeners opened\n",
904                 i, 0, 0 );
905 #endif
906
907 #ifdef HAVE_SLP
908         slapd_slp_init( urls );
909         slapd_slp_reg();
910 #endif
911
912         charray_free( u );
913         ldap_pvt_thread_mutex_init( &slap_daemon.sd_mutex );
914         return !i;
915 }
916
917
918 int
919 slapd_daemon_destroy(void)
920 {
921         connections_destroy();
922         tcp_close( wake_sds[1] );
923         tcp_close( wake_sds[0] );
924         sockdestroy();
925
926 #ifdef HAVE_SLP
927         slapd_slp_dereg();
928         slapd_slp_deinit();
929 #endif
930
931         return 0;
932 }
933
934
935 static void *
936 slapd_daemon_task(
937         void *ptr
938 )
939 {
940         int l;
941         time_t  last_idle_check = slap_get_time();
942         time( &starttime );
943
944         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
945                 if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
946                         continue;
947 #ifdef LDAP_CONNECTIONLESS
948                 /* Since this is connectionless, the data port is the
949                  * listening port. The listen() and accept() calls
950                  * are unnecessary.
951                  */
952                 if ( slap_listeners[l]->sl_is_udp )
953                 {
954                         slapd_add( slap_listeners[l]->sl_sd );
955                         continue;
956                 }
957 #endif
958
959                 if ( listen( slap_listeners[l]->sl_sd, SLAPD_LISTEN ) == -1 ) {
960                         int err = sock_errno();
961 #ifdef NEW_LOGGING
962                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
963                                    "slapd_daemon_task: listen( %s, 5 ) failed errno=%d (%s)\n",
964                                    slap_listeners[l]->sl_url, err, sock_errstr(err) ));
965 #else
966                         Debug( LDAP_DEBUG_ANY,
967                                 "daemon: listen(%s, 5) failed errno=%d (%s)\n",
968                                         slap_listeners[l]->sl_url, err,
969                                         sock_errstr(err) );
970 #endif
971                         return( (void*)-1 );
972                 }
973
974                 slapd_add( slap_listeners[l]->sl_sd );
975         }
976
977 #ifdef HAVE_NT_SERVICE_MANAGER
978         if ( started_event != NULL ) {
979                 ldap_pvt_thread_cond_signal( &started_event );
980         }
981 #endif
982         /* initialization complete. Here comes the loop. */
983
984         while ( !slapd_shutdown ) {
985                 ber_socket_t i;
986                 int ns;
987                 int at;
988                 ber_socket_t nfds;
989 #define SLAPD_EBADF_LIMIT 16
990                 int ebadf = 0;
991                 int emfile = 0;
992
993 #define SLAPD_IDLE_CHECK_LIMIT 4
994                 time_t  now = slap_get_time();
995
996
997                 fd_set                  readfds;
998                 fd_set                  writefds;
999                 Sockaddr                from;
1000
1001 #if defined(SLAPD_RLOOKUPS)
1002                 struct hostent          *hp;
1003 #endif
1004                 struct timeval          zero;
1005                 struct timeval          *tvp;
1006
1007                 if( emfile || ( global_idletimeout > 0 && difftime(
1008                         last_idle_check+global_idletimeout/SLAPD_IDLE_CHECK_LIMIT,
1009                         now ) < 0 ))
1010                 {
1011                         connections_timeout_idle(now);
1012                 }
1013
1014                 FD_ZERO( &writefds );
1015                 FD_ZERO( &readfds );
1016
1017                 zero.tv_sec = 0;
1018                 zero.tv_usec = 0;
1019
1020                 ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1021
1022 #ifdef FD_SET_MANUAL_COPY
1023                 for( s = 0; s < nfds; s++ ) {
1024                         if(FD_ISSET( &slap_sd_readers, s )) {
1025                                 FD_SET( s, &readfds );
1026                         }
1027                         if(FD_ISSET( &slap_sd_writers, s )) {
1028                                 FD_SET( s, &writefds );
1029                         }
1030                 }
1031 #else
1032                 AC_MEMCPY( &readfds, &slap_daemon.sd_readers, sizeof(fd_set) );
1033                 AC_MEMCPY( &writefds, &slap_daemon.sd_writers, sizeof(fd_set) );
1034 #endif
1035                 assert(!FD_ISSET(wake_sds[0], &readfds));
1036                 FD_SET( wake_sds[0], &readfds );
1037
1038                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1039                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1040                                 continue;
1041                         if (!FD_ISSET(slap_listeners[l]->sl_sd, &readfds))
1042                             FD_SET( slap_listeners[l]->sl_sd, &readfds );
1043                 }
1044
1045 #ifndef HAVE_WINSOCK
1046                 nfds = slap_daemon.sd_nfds;
1047 #else
1048                 nfds = dtblsize;
1049 #endif
1050
1051                 ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1052
1053                 at = ldap_pvt_thread_pool_backload(&connection_pool);
1054
1055 #if defined( HAVE_YIELDING_SELECT ) || defined( NO_THREADS )
1056                 tvp = NULL;
1057 #else
1058                 tvp = at ? &zero : NULL;
1059 #endif
1060
1061                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1062                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1063                                 continue;
1064
1065 #ifdef NEW_LOGGING
1066                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1067                                    "slapd_daemon_task: select: listen=%d active_threads=%d tvp=%s\n",
1068                                    slap_listeners[l]->sl_sd, at, tvp == NULL ? "NULL" : "zero" ));
1069 #else
1070                         Debug( LDAP_DEBUG_CONNS,
1071                                 "daemon: select: listen=%d active_threads=%d tvp=%s\n",
1072                                         slap_listeners[l]->sl_sd, at,
1073                                         tvp == NULL ? "NULL" : "zero" );
1074 #endif
1075                 }
1076
1077                 switch(ns = select( nfds, &readfds,
1078 #ifdef HAVE_WINSOCK
1079                         /* don't pass empty fd_set */
1080                         ( writefds.fd_count > 0 ? &writefds : NULL ),
1081 #else
1082                         &writefds,
1083 #endif
1084                         NULL, tvp ))
1085                 {
1086                 case -1: {      /* failure - try again */
1087                                 int err = sock_errno();
1088
1089                                 if( err == EBADF
1090 #ifdef WSAENOTSOCK
1091                                         /* you'd think this would be EBADF */
1092                                         || err == WSAENOTSOCK
1093 #endif
1094                                 ) {
1095                                         if (++ebadf < SLAPD_EBADF_LIMIT)
1096                                                 continue;
1097                                 }
1098
1099                                 if( err != EINTR ) {
1100 #ifdef NEW_LOGGING
1101                                         LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1102                                                    "slapd_daemon_task: select failed (%d): %s\n",
1103                                                    err, sock_errstr(err) ));
1104 #else
1105                                         Debug( LDAP_DEBUG_CONNS,
1106                                                 "daemon: select failed (%d): %s\n",
1107                                                 err, sock_errstr(err), 0 );
1108 #endif
1109                                         slapd_shutdown = -1;
1110                                 }
1111                         }
1112                         continue;
1113
1114                 case 0:         /* timeout - let threads run */
1115                         ebadf = 0;
1116 #ifdef NEW_LOGGING
1117                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1118                                    "slapd_daemon_task: select timeout - yielding\n" ));
1119 #else
1120                         Debug( LDAP_DEBUG_CONNS, "daemon: select timeout - yielding\n",
1121                             0, 0, 0 );
1122 #endif
1123                         ldap_pvt_thread_yield();
1124                         continue;
1125
1126                 default:        /* something happened - deal with it */
1127                         if( slapd_shutdown ) continue;
1128
1129                         ebadf = 0;
1130 #ifdef NEW_LOGGING
1131                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1132                                    "slapd_daemon_task: activity on %d descriptors\n", ns ));
1133 #else
1134                         Debug( LDAP_DEBUG_CONNS, "daemon: activity on %d descriptors\n",
1135                                 ns, 0, 0 );
1136 #endif
1137                         /* FALL THRU */
1138                 }
1139
1140                 if( FD_ISSET( wake_sds[0], &readfds ) ) {
1141                         char c[BUFSIZ];
1142                         tcp_read( wake_sds[0], c, sizeof(c) );
1143 #ifdef NO_THREADS
1144                         waking = 0;
1145 #endif
1146                         continue;
1147                 }
1148
1149                 for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1150                         ber_socket_t s;
1151                         socklen_t len = sizeof(from);
1152                         long id;
1153                         slap_ssf_t ssf = 0;
1154                         char *authid = NULL;
1155
1156                         char    *dnsname;
1157                         char    *peeraddr;
1158 #ifdef LDAP_PF_LOCAL
1159                         char    peername[MAXPATHLEN + sizeof("PATH=")];
1160 #elif defined(LDAP_PF_INET6)
1161                         char    peername[sizeof("IP=ffff:ffff:ffff:ffff:ffff:ffff:ffff:ffff 65535")];
1162 #else
1163                         char    peername[sizeof("IP=255.255.255.255:65336")];
1164 #endif /* LDAP_PF_LOCAL */
1165
1166                         peername[0] = '\0';
1167
1168                         if ( slap_listeners[l]->sl_sd == AC_SOCKET_INVALID )
1169                                 continue;
1170
1171                         if ( !FD_ISSET( slap_listeners[l]->sl_sd, &readfds ) )
1172                                 continue;
1173
1174 #ifdef LDAP_CONNECTIONLESS
1175                         if ( slap_listeners[l]->sl_is_udp )
1176                         {
1177                         /* The first time we receive a query, we set this
1178                          * up as a "connection". It remains open for the life
1179                          * of the slapd.
1180                          */
1181                                 if ( slap_listeners[l]->sl_is_udp < 2 )
1182                                 {
1183                                     id = connection_init(
1184                                         slap_listeners[l]->sl_sd,
1185                                         slap_listeners[l]->sl_url, "", "",
1186                                         slap_listeners[l]->sl_name,
1187                                         2, ssf, authid );
1188                                     slap_listeners[l]->sl_is_udp++;
1189                                 }
1190                                 continue;
1191                         }
1192 #endif
1193
1194                         s = accept( slap_listeners[l]->sl_sd,
1195                                 (struct sockaddr *) &from, &len );
1196                         if ( s == AC_SOCKET_INVALID ) {
1197                                 int err = sock_errno();
1198
1199 #ifdef EMFILE
1200                                 if( err == EMFILE ) {
1201                                         emfile++;
1202                                 } else
1203 #endif
1204 #ifdef ENFILE
1205                                 if( err == ENFILE ) {
1206                                         emfile++;
1207                                 } else 
1208 #endif
1209                                 {
1210                                         emfile=0;
1211                                 }
1212
1213                                 if( emfile < 3 ) {
1214 #ifdef NEW_LOGGING
1215                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1216                                                 "slapd_daemon_task: accept(%ld) failed errno=%d (%s)\n",
1217                                                 (long)slap_listeners[l]->sl_sd, err, sock_errstr(err) ));
1218 #else
1219                                         Debug( LDAP_DEBUG_ANY,
1220                                             "daemon: accept(%ld) failed errno=%d (%s)\n",
1221                                             (long) slap_listeners[l]->sl_sd, err,
1222                                             sock_errstr(err) );
1223 #endif
1224                                 } else {
1225                                         /* prevent busy loop */
1226 #  ifdef HAVE_USLEEP
1227                                         if( emfile % 4 == 3 ) usleep( 250 );
1228 #  else
1229                                         if( emfile % 8 == 7 ) sleep( 1 );
1230 #  endif
1231                                 }
1232
1233                                 ldap_pvt_thread_yield();
1234                                 continue;
1235                         }
1236                         emfile = 0;
1237
1238 #ifndef HAVE_WINSOCK
1239                         /* make sure descriptor number isn't too great */
1240                         if ( s >= dtblsize ) {
1241 #ifdef NEW_LOGGING
1242                                 LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1243                                    "slapd_daemon_task: %ld beyond descriptor table size %ld\n",
1244                                    (long)s, (long)dtblsize ));
1245 #else
1246                                 Debug( LDAP_DEBUG_ANY,
1247                                         "daemon: %ld beyond descriptor table size %ld\n",
1248                                         (long) s, (long) dtblsize, 0 );
1249 #endif
1250
1251                                 slapd_close(s);
1252                                 ldap_pvt_thread_yield();
1253                                 continue;
1254                         }
1255 #endif
1256
1257 #ifdef LDAP_DEBUG
1258                         ldap_pvt_thread_mutex_lock( &slap_daemon.sd_mutex );
1259
1260                         /* newly accepted stream should not be in any of the FD SETS */
1261                         assert( !FD_ISSET( s, &slap_daemon.sd_actives) );
1262                         assert( !FD_ISSET( s, &slap_daemon.sd_readers) );
1263                         assert( !FD_ISSET( s, &slap_daemon.sd_writers) );
1264
1265                         ldap_pvt_thread_mutex_unlock( &slap_daemon.sd_mutex );
1266 #endif
1267
1268 #if defined( SO_KEEPALIVE ) || defined( TCP_NODELAY )
1269 #ifdef LDAP_PF_LOCAL
1270                         /* for IPv4 and IPv6 sockets only */
1271                         if ( from.sa_addr.sa_family != AF_LOCAL )
1272 #endif /* LDAP_PF_LOCAL */
1273                         {
1274                                 int rc;
1275                                 int tmp;
1276 #ifdef SO_KEEPALIVE
1277                                 /* enable keep alives */
1278                                 tmp = 1;
1279                                 rc = setsockopt( s, SOL_SOCKET, SO_KEEPALIVE,
1280                                         (char *) &tmp, sizeof(tmp) );
1281                                 if ( rc == AC_SOCKET_ERROR ) {
1282                                         int err = sock_errno();
1283 #ifdef NEW_LOGGING
1284                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1285                                                    "slapd_daemon_task: setsockopt( %ld, SO_KEEPALIVE) failed errno=%d (%s)\n",
1286                                                    (long)s, err, sock_errstr(err) ));
1287 #else
1288                                         Debug( LDAP_DEBUG_ANY,
1289                                                 "slapd(%ld): setsockopt(SO_KEEPALIVE) failed "
1290                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1291 #endif
1292                                 }
1293 #endif
1294 #ifdef TCP_NODELAY
1295                                 /* enable no delay */
1296                                 tmp = 1;
1297                                 rc = setsockopt( s, IPPROTO_TCP, TCP_NODELAY,
1298                                         (char *)&tmp, sizeof(tmp) );
1299                                 if ( rc == AC_SOCKET_ERROR ) {
1300                                         int err = sock_errno();
1301 #ifdef NEW_LOGGING
1302                                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1303                                                    "slapd_daemon_task: setsockopt( %ld, TCP_NODELAY) failed errno=%d (%s)\n",
1304                                                    (long)s, err, sock_errstr(err) ));
1305 #else
1306                                         Debug( LDAP_DEBUG_ANY,
1307                                                 "slapd(%ld): setsockopt(TCP_NODELAY) failed "
1308                                                 "errno=%d (%s)\n", (long) s, err, sock_errstr(err) );
1309 #endif
1310                                 }
1311 #endif
1312                         }
1313 #endif
1314
1315 #ifdef NEW_LOGGING
1316                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL1,
1317                                    "slapd_daemon_task: new connection on %ld\n", (long)s ));
1318 #else
1319                         Debug( LDAP_DEBUG_CONNS, "daemon: new connection on %ld\n",
1320                                 (long) s, 0, 0 );
1321 #endif
1322                         switch ( from.sa_addr.sa_family ) {
1323 #  ifdef LDAP_PF_LOCAL
1324                         case AF_LOCAL:
1325                                 sprintf( peername, "PATH=%s", from.sa_un_addr.sun_path );
1326                                 ssf = LDAP_PVT_SASL_LOCAL_SSF;
1327                                 break;
1328 #endif /* LDAP_PF_LOCAL */
1329
1330 #  ifdef LDAP_PF_INET6
1331                         case AF_INET6:
1332                         if ( IN6_IS_ADDR_V4MAPPED(&from.sa_in6_addr.sin6_addr) ) {
1333                                 peeraddr = inet_ntoa( *((struct in_addr *)
1334                                                         &from.sa_in6_addr.sin6_addr.s6_addr[12]) );
1335                                 sprintf( peername, "IP=%s:%d",
1336                                          peeraddr != NULL ? peeraddr : "unknown",
1337                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1338                         } else {
1339                                 char addr[INET6_ADDRSTRLEN];
1340                                 sprintf( peername, "IP=%s %d",
1341                                          inet_ntop( AF_INET6,
1342                                                     &from.sa_in6_addr.sin6_addr,
1343                                                     addr, sizeof addr) ? addr : "unknown",
1344                                          (unsigned) ntohs( from.sa_in6_addr.sin6_port ) );
1345                         }
1346                         break;
1347 #  endif /* LDAP_PF_INET6 */
1348
1349                         case AF_INET:
1350                         peeraddr = inet_ntoa( from.sa_in_addr.sin_addr );
1351                         sprintf( peername, "IP=%s:%d",
1352                                 peeraddr != NULL ? peeraddr : "unknown",
1353                                 (unsigned) ntohs( from.sa_in_addr.sin_port ) );
1354                                 break;
1355
1356                         default:
1357                                 slapd_close(s);
1358                                 continue;
1359                         }
1360
1361                         if ( ( from.sa_addr.sa_family == AF_INET )
1362 #ifdef LDAP_PF_INET6
1363                                 || ( from.sa_addr.sa_family == AF_INET6 )
1364 #endif
1365                         ) {
1366 #ifdef SLAPD_RLOOKUPS
1367 #  ifdef LDAP_PF_INET6
1368                                 if ( from.sa_addr.sa_family == AF_INET6 )
1369                                         hp = gethostbyaddr(
1370                                                 (char *)&(from.sa_in6_addr.sin6_addr),
1371                                                 sizeof(from.sa_in6_addr.sin6_addr),
1372                                                 AF_INET6 );
1373                                 else
1374 #  endif /* LDAP_PF_INET6 */
1375                                 hp = gethostbyaddr(
1376                                         (char *) &(from.sa_in_addr.sin_addr),
1377                                         sizeof(from.sa_in_addr.sin_addr),
1378                                         AF_INET );
1379                                 dnsname = hp ? ldap_pvt_str2lower( hp->h_name ) : NULL;
1380 #else
1381                                 dnsname = NULL;
1382 #endif /* SLAPD_RLOOKUPS */
1383
1384 #ifdef HAVE_TCPD
1385                                 if ( !hosts_ctl("slapd",
1386                                                 dnsname != NULL ? dnsname : STRING_UNKNOWN,
1387                                                 peeraddr != NULL ? peeraddr : STRING_UNKNOWN,
1388                                                 STRING_UNKNOWN ))
1389                                 {
1390                                         /* DENY ACCESS */
1391                                         Statslog( LDAP_DEBUG_ANY,
1392                                                 "fd=%ld host access from %s (%s) denied.\n",
1393                                                 (long) s,
1394                                                 dnsname != NULL ? dnsname : "unknown",
1395                                                 peeraddr != NULL ? peeraddr : "unknown",
1396                                                 0, 0 );
1397                                         slapd_close(s);
1398                                         continue;
1399                                 }
1400 #endif /* HAVE_TCPD */
1401                         }
1402
1403                         id = connection_init(s,
1404                                 slap_listeners[l]->sl_url,
1405                                 dnsname != NULL ? dnsname : "unknown",
1406                                 peername,
1407                                 slap_listeners[l]->sl_name,
1408 #ifdef HAVE_TLS
1409                                 slap_listeners[l]->sl_is_tls,
1410 #else
1411                                 0,
1412 #endif
1413                                 ssf,
1414                                 authid );
1415
1416                         if( authid ) ch_free(authid);
1417
1418                         if( id < 0 ) {
1419 #ifdef NEW_LOGGING
1420                                 LDAP_LOG(( "connection", LDAP_LEVEL_INFO,
1421                                            "slapd_daemon_task: connection_init(%ld, %s, %s) failed.\n",
1422                                            (long)s, peername, slap_listeners[l]->sl_name ));
1423 #else
1424                                 Debug( LDAP_DEBUG_ANY,
1425                                         "daemon: connection_init(%ld, %s, %s) failed.\n",
1426                                         (long) s,
1427                                         peername,
1428                                         slap_listeners[l]->sl_name );
1429 #endif
1430                                 slapd_close(s);
1431                                 continue;
1432                         }
1433
1434                         Statslog( LDAP_DEBUG_STATS,
1435                                 "daemon: conn=%ld fd=%ld connection from %s (%s) accepted.\n",
1436                                 id, (long) s,
1437                                 peername,
1438                                 slap_listeners[l]->sl_name,
1439                                 0 );
1440
1441                         slapd_add( s );
1442                         continue;
1443                 }
1444
1445 #ifdef LDAP_DEBUG
1446 #ifdef NEW_LOGGING
1447                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1448                            "slapd_daemon_task: activity on " ));
1449 #else
1450                 Debug( LDAP_DEBUG_CONNS, "daemon: activity on:", 0, 0, 0 );
1451 #endif
1452 #ifdef HAVE_WINSOCK
1453                 for ( i = 0; i < readfds.fd_count; i++ ) {
1454 #ifdef NEW_LOGGING
1455                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1456                                    " %d%s", readfds.fd_array[i], "r", 0 ));
1457 #else
1458                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1459                                 readfds.fd_array[i], "r", 0 );
1460 #endif
1461                 }
1462                 for ( i = 0; i < writefds.fd_count; i++ ) {
1463 #ifdef NEW_LOGGING
1464                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1465                                    " %d%s", writefds.fd_array[i], "w" ));
1466 #else
1467                         Debug( LDAP_DEBUG_CONNS, " %d%s",
1468                                 writefds.fd_array[i], "w", 0 );
1469 #endif
1470                 }
1471
1472 #else
1473                 for ( i = 0; i < nfds; i++ ) {
1474                         int     r, w;
1475                         int     is_listener = 0;
1476
1477                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1478                                 if ( i == slap_listeners[l]->sl_sd ) {
1479 #ifdef LDAP_CONNECTIONLESS
1480                                 /* The listener is the data port. Don't
1481                                  * skip it.
1482                                  */
1483                                         if (slap_listeners[l]->sl_is_udp)
1484                                                 continue;
1485 #endif
1486                                         is_listener = 1;
1487                                         break;
1488                                 }
1489                         }
1490                         if ( is_listener ) {
1491                                 continue;
1492                         }
1493                         r = FD_ISSET( i, &readfds );
1494                         w = FD_ISSET( i, &writefds );
1495                         if ( r || w ) {
1496 #ifdef NEW_LOGGING
1497                                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1498                                            " %d%s%s", i,
1499                                            r ? "r" : "", w ? "w" : "" ));
1500 #else
1501                                 Debug( LDAP_DEBUG_CONNS, " %d%s%s", i,
1502                                     r ? "r" : "", w ? "w" : "" );
1503 #endif
1504                         }
1505                 }
1506 #endif
1507 #ifdef NEW_LOGGING
1508                 LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2, "\n" ));
1509 #else
1510                 Debug( LDAP_DEBUG_CONNS, "\n", 0, 0, 0 );
1511 #endif
1512
1513 #endif
1514
1515                 /* loop through the writers */
1516 #ifdef HAVE_WINSOCK
1517                 for ( i = 0; i < writefds.fd_count; i++ )
1518 #else
1519                 for ( i = 0; i < nfds; i++ )
1520 #endif
1521                 {
1522                         ber_socket_t wd;
1523                         int is_listener = 0;
1524 #ifdef HAVE_WINSOCK
1525                         wd = writefds.fd_array[i];
1526 #else
1527                         if( ! FD_ISSET( i, &writefds ) ) {
1528                                 continue;
1529                         }
1530                         wd = i;
1531 #endif
1532
1533                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1534                                 if ( i == slap_listeners[l]->sl_sd ) {
1535 #ifdef LDAP_CONNECTIONLESS
1536                                         if (slap_listeners[l]->sl_is_udp)
1537                                                 continue;
1538 #endif
1539                                         is_listener = 1;
1540                                         break;
1541                                 }
1542                         }
1543                         if ( is_listener ) {
1544                                 continue;
1545                         }
1546 #ifdef NEW_LOGGING
1547                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1548                                    "slapd_daemon_task: write active on %d\n", wd ));
1549 #else
1550                         Debug( LDAP_DEBUG_CONNS,
1551                                 "daemon: write active on %d\n",
1552                                 wd, 0, 0 );
1553 #endif
1554                         /*
1555                          * NOTE: it is possible that the connection was closed
1556                          * and that the stream is now inactive.
1557                          * connection_write() must valid the stream is still
1558                          * active.
1559                          */
1560
1561                         if ( connection_write( wd ) < 0 ) {
1562                                 FD_CLR( (unsigned) wd, &readfds );
1563                                 slapd_close( wd );
1564                         }
1565                 }
1566
1567 #ifdef HAVE_WINSOCK
1568                 for ( i = 0; i < readfds.fd_count; i++ )
1569 #else
1570                 for ( i = 0; i < nfds; i++ )
1571 #endif
1572                 {
1573                         ber_socket_t rd;
1574                         int is_listener = 0;
1575
1576 #ifdef HAVE_WINSOCK
1577                         rd = readfds.fd_array[i];
1578 #else
1579                         if( ! FD_ISSET( i, &readfds ) ) {
1580                                 continue;
1581                         }
1582                         rd = i;
1583 #endif
1584
1585                         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1586                                 if ( rd == slap_listeners[l]->sl_sd ) {
1587 #ifdef LDAP_CONNECTIONLESS
1588                                         if (slap_listeners[l]->sl_is_udp)
1589                                                 continue;
1590 #endif
1591                                         is_listener = 1;
1592                                         break;
1593                                 }
1594                         }
1595                         if ( is_listener ) {
1596                                 continue;
1597                         }
1598
1599 #ifdef NEW_LOGGING
1600                         LDAP_LOG(( "connection", LDAP_LEVEL_DETAIL2,
1601                                    "slapd_daemon_task: read activity on %d\n", rd ));
1602 #else
1603                         Debug ( LDAP_DEBUG_CONNS,
1604                                 "daemon: read activity on %d\n", rd, 0, 0 );
1605 #endif
1606                         /*
1607                          * NOTE: it is possible that the connection was closed
1608                          * and that the stream is now inactive.
1609                          * connection_read() must valid the stream is still
1610                          * active.
1611                          */
1612
1613                         if ( connection_read( rd ) < 0 ) {
1614                                 slapd_close( rd );
1615                         }
1616                 }
1617                 ldap_pvt_thread_yield();
1618         }
1619
1620         if( slapd_shutdown > 0 ) {
1621 #ifdef NEW_LOGGING
1622                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1623                            "slapd_daemon_task: shutdown requested and initiated.\n"));
1624 #else
1625                 Debug( LDAP_DEBUG_TRACE,
1626                         "daemon: shutdown requested and initiated.\n",
1627                         0, 0, 0 );
1628 #endif
1629
1630         } else if ( slapd_shutdown < 0 ) {
1631 #ifdef HAVE_NT_SERVICE_MANAGER
1632                 if (slapd_shutdown == -1)
1633                 {
1634 #ifdef NEW_LOGGING
1635                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1636                                    "slapd_daemon_task: shutdown initiated by Service Manager.\n"));
1637 #else
1638                         Debug( LDAP_DEBUG_TRACE,
1639                                "daemon: shutdown initiated by Service Manager.\n",
1640                                0, 0, 0);
1641 #endif
1642                 }
1643                 else
1644 #endif
1645                 {
1646 #ifdef NEW_LOGGING
1647                         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1648                                    "slapd_daemon_task: abnormal condition, shutdown initiated.\n" ));
1649 #else
1650                         Debug( LDAP_DEBUG_TRACE,
1651                                "daemon: abnormal condition, shutdown initiated.\n",
1652                                0, 0, 0 );
1653 #endif
1654                 }
1655         } else {
1656 #ifdef NEW_LOGGING
1657                 LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1658                            "slapd_daemon_task: no active streams, shutdown initiated.\n" ));
1659 #else
1660                 Debug( LDAP_DEBUG_TRACE,
1661                        "daemon: no active streams, shutdown initiated.\n",
1662                        0, 0, 0 );
1663 #endif
1664         }
1665
1666         for ( l = 0; slap_listeners[l] != NULL; l++ ) {
1667                 if ( slap_listeners[l]->sl_sd != AC_SOCKET_INVALID ) {
1668 #ifdef LDAP_PF_LOCAL
1669                         if ( slap_listeners[l]->sl_sa.sa_addr.sa_family == AF_LOCAL ) {
1670                                 unlink( slap_listeners[l]->sl_sa.sa_un_addr.sun_path );
1671                         }
1672 #endif /* LDAP_PF_LOCAL */
1673                         slapd_close( slap_listeners[l]->sl_sd );
1674                         break;
1675                 }
1676         }
1677
1678 #ifdef NEW_LOGGING
1679         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1680                    "slapd_daemon_task: shutdown waiting for %d threads to terminate.\n",
1681                    ldap_pvt_thread_pool_backload(&connection_pool) ));
1682 #else
1683         Debug( LDAP_DEBUG_ANY,
1684             "slapd shutdown: waiting for %d threads to terminate\n",
1685             ldap_pvt_thread_pool_backload(&connection_pool), 0, 0 );
1686 #endif
1687         ldap_pvt_thread_pool_destroy(&connection_pool, 1);
1688
1689         return NULL;
1690 }
1691
1692
1693 int slapd_daemon( void )
1694 {
1695         int rc;
1696
1697         connections_init();
1698
1699 #define SLAPD_LISTENER_THREAD 1
1700 #if defined( SLAPD_LISTENER_THREAD )
1701         {
1702                 ldap_pvt_thread_t       listener_tid;
1703
1704                 /* listener as a separate THREAD */
1705                 rc = ldap_pvt_thread_create( &listener_tid,
1706                         0, slapd_daemon_task, NULL );
1707
1708                 if ( rc != 0 ) {
1709 #ifdef NEW_LOGGING
1710                         LDAP_LOG(( "connection", LDAP_LEVEL_ERR,
1711                                    "slapd_daemon: listener ldap_pvt_thread_create failed (%d).\n", rc ));
1712 #else
1713                         Debug( LDAP_DEBUG_ANY,
1714                         "listener ldap_pvt_thread_create failed (%d)\n", rc, 0, 0 );
1715 #endif
1716                         return rc;
1717                 }
1718  
1719                 /* wait for the listener thread to complete */
1720                 ldap_pvt_thread_join( listener_tid, (void *) NULL );
1721         }
1722 #else
1723         /* experimental code */
1724         slapd_daemon_task( NULL );
1725 #endif
1726
1727         return 0;
1728
1729 }
1730
1731 int sockinit(void)
1732 {
1733 #if defined( HAVE_WINSOCK2 )
1734     WORD wVersionRequested;
1735         WSADATA wsaData;
1736         int err;
1737
1738         wVersionRequested = MAKEWORD( 2, 0 );
1739
1740         err = WSAStartup( wVersionRequested, &wsaData );
1741         if ( err != 0 ) {
1742                 /* Tell the user that we couldn't find a usable */
1743                 /* WinSock DLL.                                  */
1744                 return -1;
1745         }
1746
1747         /* Confirm that the WinSock DLL supports 2.0.*/
1748         /* Note that if the DLL supports versions greater    */
1749         /* than 2.0 in addition to 2.0, it will still return */
1750         /* 2.0 in wVersion since that is the version we      */
1751         /* requested.                                        */
1752
1753         if ( LOBYTE( wsaData.wVersion ) != 2 ||
1754                 HIBYTE( wsaData.wVersion ) != 0 )
1755         {
1756             /* Tell the user that we couldn't find a usable */
1757             /* WinSock DLL.                                  */
1758             WSACleanup();
1759             return -1;
1760         }
1761
1762         /* The WinSock DLL is acceptable. Proceed. */
1763 #elif defined( HAVE_WINSOCK )
1764         WSADATA wsaData;
1765         if ( WSAStartup( 0x0101, &wsaData ) != 0 ) {
1766             return -1;
1767         }
1768 #endif
1769         return 0;
1770 }
1771
1772 int sockdestroy(void)
1773 {
1774 #if defined( HAVE_WINSOCK2 ) || defined( HAVE_WINSOCK )
1775         WSACleanup();
1776 #endif
1777         return 0;
1778 }
1779
1780 RETSIGTYPE
1781 slap_sig_shutdown( int sig )
1782 {
1783 #ifdef NEW_LOGGING
1784         LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1785                    "slap_sig_shutdown: signal %d\n", sig ));
1786 #else
1787         Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: signal %d\n", sig, 0, 0);
1788 #endif
1789
1790         /*
1791          * If the NT Service Manager is controlling the server, we don't
1792          * want SIGBREAK to kill the server. For some strange reason,
1793          * SIGBREAK is generated when a user logs out.
1794          */
1795
1796 #if HAVE_NT_SERVICE_MANAGER && SIGBREAK
1797         if (is_NT_Service && sig == SIGBREAK)
1798 #ifdef NEW_LOGGING
1799             LDAP_LOG(( "connection", LDAP_LEVEL_CRIT,
1800                        "slap_sig_shutdown: SIGBREAK ignored.\n" ));
1801 #else
1802             Debug(LDAP_DEBUG_TRACE, "slap_sig_shutdown: SIGBREAK ignored.\n",
1803                   0, 0, 0);
1804 #endif
1805         else
1806 #endif
1807         slapd_shutdown = sig;
1808
1809         WAKE_LISTENER(1);
1810
1811         /* reinstall self */
1812         (void) SIGNAL_REINSTALL( sig, slap_sig_shutdown );
1813 }
1814
1815 RETSIGTYPE
1816 slap_sig_wake( int sig )
1817 {
1818         WAKE_LISTENER(1);
1819
1820         /* reinstall self */
1821         (void) SIGNAL_REINSTALL( sig, slap_sig_wake );
1822 }
1823
1824
1825 void slapd_add_internal(ber_socket_t s) {
1826         slapd_add(s);
1827 }