]> git.sur5r.net Git - openldap/blob - servers/slapd/overlays/retcode.c
better handling of randomness
[openldap] / servers / slapd / overlays / retcode.c
1 /* retcode.c - customizable response for client testing purposes */
2 /* $OpenLDAP$ */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
4  *
5  * Copyright 2005-2006 The OpenLDAP Foundation.
6  * Portions Copyright 2005 Pierangelo Masarati <ando@sys-net.it>
7  * All rights reserved.
8  *
9  * Redistribution and use in source and binary forms, with or without
10  * modification, are permitted only as authorized by the OpenLDAP
11  * Public License.
12  *
13  * A copy of this license is available in the file LICENSE in the
14  * top-level directory of the distribution or, alternatively, at
15  * <http://www.OpenLDAP.org/license.html>.
16  */
17 /* ACKNOWLEDGEMENTS:
18  * This work was initially developed by Pierangelo Masarati for inclusion
19  * in OpenLDAP Software.
20  */
21
22 #include "portable.h"
23
24 #ifdef SLAPD_OVER_RETCODE
25
26 #include <stdio.h>
27
28 #include <ac/unistd.h>
29 #include <ac/string.h>
30 #include <ac/ctype.h>
31 #include <ac/socket.h>
32
33 #include "slap.h"
34 #include "lutil.h"
35
36 static slap_overinst            retcode;
37
38 static AttributeDescription     *ad_errCode;
39 static AttributeDescription     *ad_errText;
40 static AttributeDescription     *ad_errOp;
41 static AttributeDescription     *ad_errSleepTime;
42 static AttributeDescription     *ad_errMatchedDN;
43 static ObjectClass              *oc_errAbsObject;
44 static ObjectClass              *oc_errObject;
45 static ObjectClass              *oc_errAuxObject;
46
47 typedef enum retcode_op_e {
48         SN_DG_OP_NONE           = 0x0000,
49         SN_DG_OP_ADD            = 0x0001,
50         SN_DG_OP_BIND           = 0x0002,
51         SN_DG_OP_COMPARE        = 0x0004,
52         SN_DG_OP_DELETE         = 0x0008,
53         SN_DG_OP_MODIFY         = 0x0010,
54         SN_DG_OP_RENAME         = 0x0020,
55         SN_DG_OP_SEARCH         = 0x0040,
56         SN_DG_EXTENDED          = 0x0080,
57         SN_DG_OP_AUTH           = SN_DG_OP_BIND,
58         SN_DG_OP_READ           = (SN_DG_OP_COMPARE|SN_DG_OP_SEARCH),
59         SN_DG_OP_WRITE          = (SN_DG_OP_ADD|SN_DG_OP_DELETE|SN_DG_OP_MODIFY|SN_DG_OP_RENAME),
60         SN_DG_OP_ALL            = (SN_DG_OP_AUTH|SN_DG_OP_READ|SN_DG_OP_WRITE|SN_DG_EXTENDED)
61 } retcode_op_e;
62
63 typedef struct retcode_item_t {
64         struct berval           rdi_dn;
65         struct berval           rdi_ndn;
66         struct berval           rdi_text;
67         struct berval           rdi_matched;
68         int                     rdi_err;
69         BerVarray               rdi_ref;
70         int                     rdi_sleeptime;
71         Entry                   rdi_e;
72         slap_mask_t             rdi_mask;
73         struct retcode_item_t   *rdi_next;
74 } retcode_item_t;
75
76 typedef struct retcode_t {
77         struct berval           rd_pdn;
78         struct berval           rd_npdn;
79
80         int                     rd_sleep;
81
82         retcode_item_t          *rd_item;
83
84         unsigned                rd_flags;
85 #define RETCODE_FNONE           0x00
86 #define RETCODE_FINDIR          0x01
87 #define RETCODE_INDIR( rd )     ( (rd)->rd_flags & RETCODE_FINDIR )
88 } retcode_t;
89
90 static int
91 retcode_entry_response( Operation *op, SlapReply *rs, BackendInfo *bi, Entry *e );
92
93 static unsigned int
94 retcode_sleep( int s )
95 {
96         /* sleep as required */
97         if ( s < 0 ) {
98 #if 0   /* use high-order bits for better randomness (Numerical Recipes in "C") */
99                 unsigned        r = rand() % (-s);
100 #endif
101                 unsigned        r = ((double)(-s))*rand()/(RAND_MAX + 1.0);
102                 return sleep( r );
103         }
104
105         if ( s > 0 ) {
106                 return sleep( (unsigned int)s );
107         }
108
109         return 0;
110 }
111
112 static int
113 retcode_cleanup_cb( Operation *op, SlapReply *rs )
114 {
115         rs->sr_matched = NULL;
116         rs->sr_text = NULL;
117
118         if ( rs->sr_ref != NULL ) {
119                 ber_bvarray_free( rs->sr_ref );
120                 rs->sr_ref = NULL;
121         }
122
123         ch_free( op->o_callback );
124         op->o_callback = NULL;
125
126         return SLAP_CB_CONTINUE;
127 }
128
129 static int
130 retcode_send_onelevel( Operation *op, SlapReply *rs )
131 {
132         slap_overinst   *on = (slap_overinst *)op->o_bd->bd_info;
133         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
134
135         retcode_item_t  *rdi;
136         
137         for ( rdi = rd->rd_item; rdi != NULL; rdi = rdi->rdi_next ) {
138                 if ( op->o_abandon ) {
139                         return rs->sr_err = SLAPD_ABANDON;
140                 }
141
142                 rs->sr_err = test_filter( op, &rdi->rdi_e, op->ors_filter );
143                 if ( rs->sr_err == LDAP_COMPARE_TRUE ) {
144                         if ( op->ors_slimit == rs->sr_nentries ) {
145                                 rs->sr_err = LDAP_SIZELIMIT_EXCEEDED;
146                                 goto done;
147                         }
148
149                         /* safe default */
150                         rs->sr_attrs = op->ors_attrs;
151                         rs->sr_operational_attrs = NULL;
152                         rs->sr_ctrls = NULL;
153                         rs->sr_flags = 0;
154                         rs->sr_err = LDAP_SUCCESS;
155                         rs->sr_entry = &rdi->rdi_e;
156
157                         rs->sr_err = send_search_entry( op, rs );
158                         rs->sr_entry = NULL;
159
160                         switch ( rs->sr_err ) {
161                         case LDAP_UNAVAILABLE:  /* connection closed */
162                                 rs->sr_err = LDAP_OTHER;
163                                 /* fallthru */
164                         case LDAP_SIZELIMIT_EXCEEDED:
165                                 goto done;
166                         }
167                 }
168                 rs->sr_err = LDAP_SUCCESS;
169         }
170
171 done:;
172
173         send_ldap_result( op, rs );
174
175         return rs->sr_err;
176 }
177
178 static int
179 retcode_op_add( Operation *op, SlapReply *rs )
180 {
181         return retcode_entry_response( op, rs, NULL, op->ora_e );
182 }
183
184 typedef struct retcode_cb_t {
185         BackendInfo     *rdc_info;
186         unsigned        rdc_flags;
187         ber_tag_t       rdc_tag;
188         AttributeName   *rdc_attrs;
189 } retcode_cb_t;
190
191 static int
192 retcode_cb_response( Operation *op, SlapReply *rs )
193 {
194         retcode_cb_t    *rdc = (retcode_cb_t *)op->o_callback->sc_private;
195
196         if ( rs->sr_type == REP_SEARCH ) {
197                 ber_tag_t       o_tag = op->o_tag;
198                 int             rc;
199
200                 op->o_tag = rdc->rdc_tag;
201                 if ( op->o_tag == LDAP_REQ_SEARCH ) {
202                         rs->sr_attrs = rdc->rdc_attrs;
203                 }
204                 rc = retcode_entry_response( op, rs, rdc->rdc_info, rs->sr_entry );
205                 op->o_tag = o_tag;
206
207                 return rc;
208         }
209
210         if ( rs->sr_err == LDAP_SUCCESS ) {
211                 if ( !op->o_abandon ) {
212                         rdc->rdc_flags = SLAP_CB_CONTINUE;
213                 }
214                 return 0;
215         }
216
217         return SLAP_CB_CONTINUE;
218 }
219
220 static int
221 retcode_op_internal( Operation *op, SlapReply *rs )
222 {
223         slap_overinst   *on = (slap_overinst *)op->o_bd->bd_info;
224
225         Operation       op2 = *op;
226         BackendDB       db = *op->o_bd;
227         slap_callback   sc = { 0 };
228         retcode_cb_t    rdc;
229
230         int             rc;
231
232         op2.o_tag = LDAP_REQ_SEARCH;
233         op2.ors_scope = LDAP_SCOPE_BASE;
234         op2.ors_deref = LDAP_DEREF_NEVER;
235         op2.ors_tlimit = SLAP_NO_LIMIT;
236         op2.ors_slimit = SLAP_NO_LIMIT;
237         op2.ors_limit = NULL;
238         op2.ors_attrsonly = 0;
239         op2.ors_attrs = slap_anlist_all_attributes;
240
241         ber_str2bv_x( "(objectClass=errAbsObject)",
242                 STRLENOF( "(objectClass=errAbsObject)" ),
243                 1, &op2.ors_filterstr, op2.o_tmpmemctx );
244         op2.ors_filter = str2filter_x( &op2, op2.ors_filterstr.bv_val );
245
246         db.bd_info = on->on_info->oi_orig;
247         op2.o_bd = &db;
248
249         rdc.rdc_info = on->on_info->oi_orig;
250         rdc.rdc_flags = RETCODE_FINDIR;
251         if ( op->o_tag == LDAP_REQ_SEARCH ) {
252                 rdc.rdc_attrs = op->ors_attrs;
253         }
254         rdc.rdc_tag = op->o_tag;
255         sc.sc_response = retcode_cb_response;
256         sc.sc_private = &rdc;
257         op2.o_callback = &sc;
258
259         rc = op2.o_bd->be_search( &op2, rs );
260         op->o_abandon = op2.o_abandon;
261
262         filter_free_x( &op2, op2.ors_filter );
263         ber_memfree_x( op2.ors_filterstr.bv_val, op2.o_tmpmemctx );
264
265         if ( rdc.rdc_flags == SLAP_CB_CONTINUE ) {
266                 return SLAP_CB_CONTINUE;
267         }
268
269         return rc;
270 }
271
272 static int
273 retcode_op_func( Operation *op, SlapReply *rs )
274 {
275         slap_overinst   *on = (slap_overinst *)op->o_bd->bd_info;
276         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
277
278         retcode_item_t  *rdi;
279         struct berval           nrdn, npdn;
280
281         slap_callback           *cb = NULL;
282
283         /* sleep as required */
284         retcode_sleep( rd->rd_sleep );
285
286         if ( !dnIsSuffix( &op->o_req_ndn, &rd->rd_npdn ) ) {
287                 if ( RETCODE_INDIR( rd ) ) {
288                         switch ( op->o_tag ) {
289                         case LDAP_REQ_ADD:
290                                 return retcode_op_add( op, rs );
291
292                         case LDAP_REQ_BIND:
293                                 /* skip if rootdn */
294                                 if ( be_isroot_pw( op ) ) {
295                                         return SLAP_CB_CONTINUE;
296                                 }
297                                 return retcode_op_internal( op, rs );
298
299                         case LDAP_REQ_SEARCH:
300                                 if ( op->ors_scope == LDAP_SCOPE_BASE ) {
301                                         rs->sr_err = retcode_op_internal( op, rs );
302                                         switch ( rs->sr_err ) {
303                                         case SLAP_CB_CONTINUE:
304                                                 if ( rs->sr_nentries == 0 ) {
305                                                         break;
306                                                 }
307                                                 rs->sr_err = LDAP_SUCCESS;
308                                                 /* fallthru */
309
310                                         default:
311                                                 send_ldap_result( op, rs );
312                                                 break;
313                                         }
314                                         return rs->sr_err;
315                                 }
316                                 break;
317
318                         case LDAP_REQ_MODIFY:
319                         case LDAP_REQ_DELETE:
320                         case LDAP_REQ_MODRDN:
321                         case LDAP_REQ_COMPARE:
322                                 return retcode_op_internal( op, rs );
323                         }
324                 }
325
326                 return SLAP_CB_CONTINUE;
327         }
328
329         if ( op->o_tag == LDAP_REQ_SEARCH
330                         && op->ors_scope != LDAP_SCOPE_BASE
331                         && op->o_req_ndn.bv_len == rd->rd_npdn.bv_len )
332         {
333                 return retcode_send_onelevel( op, rs );
334         }
335
336         dnParent( &op->o_req_ndn, &npdn );
337         if ( npdn.bv_len != rd->rd_npdn.bv_len ) {
338                 rs->sr_err = LDAP_NO_SUCH_OBJECT;
339                 rs->sr_matched = rd->rd_pdn.bv_val;
340                 send_ldap_result( op, rs );
341                 rs->sr_matched = NULL;
342                 return rs->sr_err;
343         }
344
345         dnRdn( &op->o_req_ndn, &nrdn );
346
347         for ( rdi = rd->rd_item; rdi != NULL; rdi = rdi->rdi_next ) {
348                 struct berval   rdi_nrdn;
349
350                 dnRdn( &rdi->rdi_ndn, &rdi_nrdn );
351                 if ( dn_match( &nrdn, &rdi_nrdn ) ) {
352                         break;
353                 }
354         }
355
356         if ( rdi != NULL && rdi->rdi_mask != SN_DG_OP_ALL ) {
357                 retcode_op_e    o_tag = SN_DG_OP_NONE;
358
359                 switch ( op->o_tag ) {
360                 case LDAP_REQ_ADD:
361                         o_tag = SN_DG_OP_ADD;
362                         break;
363
364                 case LDAP_REQ_BIND:
365                         o_tag = SN_DG_OP_BIND;
366                         break;
367
368                 case LDAP_REQ_COMPARE:
369                         o_tag = SN_DG_OP_COMPARE;
370                         break;
371
372                 case LDAP_REQ_DELETE:
373                         o_tag = SN_DG_OP_DELETE;
374                         break;
375
376                 case LDAP_REQ_MODIFY:
377                         o_tag = SN_DG_OP_MODIFY;
378                         break;
379
380                 case LDAP_REQ_MODRDN:
381                         o_tag = SN_DG_OP_RENAME;
382                         break;
383
384                 case LDAP_REQ_SEARCH:
385                         o_tag = SN_DG_OP_SEARCH;
386                         break;
387
388                 case LDAP_REQ_EXTENDED:
389                         o_tag = SN_DG_EXTENDED;
390                         break;
391
392                 default:
393                         /* Should not happen */
394                         break;
395                 }
396
397                 if ( !( o_tag & rdi->rdi_mask ) ) {
398                         return SLAP_CB_CONTINUE;
399                 }
400         }
401
402         if ( rdi == NULL ) {
403                 rs->sr_matched = rd->rd_pdn.bv_val;
404                 rs->sr_err = LDAP_NO_SUCH_OBJECT;
405                 rs->sr_text = "retcode not found";
406
407         } else {
408                 rs->sr_err = rdi->rdi_err;
409                 rs->sr_text = rdi->rdi_text.bv_val;
410                 rs->sr_matched = rdi->rdi_matched.bv_val;
411
412                 /* FIXME: we only honor the rdi_ref field in case rdi_err
413                  * is LDAP_REFERRAL otherwise send_ldap_result() bails out */
414                 if ( rs->sr_err == LDAP_REFERRAL ) {
415                         BerVarray       ref;
416
417                         if ( rdi->rdi_ref != NULL ) {
418                                 ref = rdi->rdi_ref;
419                         } else {
420                                 ref = default_referral;
421                         }
422
423                         if ( ref != NULL ) {
424                                 rs->sr_ref = referral_rewrite( ref,
425                                         NULL, &op->o_req_dn, LDAP_SCOPE_DEFAULT );
426
427                         } else {
428                                 rs->sr_err = LDAP_OTHER;
429                                 rs->sr_text = "bad referral object";
430                         }
431                 }
432
433                 retcode_sleep( rdi->rdi_sleeptime );
434         }
435
436         switch ( op->o_tag ) {
437         case LDAP_REQ_EXTENDED:
438                 if ( rdi == NULL ) {
439                         break;
440                 }
441                 cb = ( slap_callback * )ch_malloc( sizeof( slap_callback ) );
442                 memset( cb, 0, sizeof( slap_callback ) );
443                 cb->sc_cleanup = retcode_cleanup_cb;
444                 op->o_callback = cb;
445                 break;
446
447         default:
448                 send_ldap_result( op, rs );
449                 if ( rs->sr_ref != NULL ) {
450                         ber_bvarray_free( rs->sr_ref );
451                         rs->sr_ref = NULL;
452                 }
453                 rs->sr_matched = NULL;
454                 rs->sr_text = NULL;
455                 break;
456         }
457
458         return rs->sr_err;
459 }
460
461 static int
462 retcode_op2str( ber_tag_t op, struct berval *bv )
463 {
464         switch ( op ) {
465         case LDAP_REQ_BIND:
466                 BER_BVSTR( bv, "bind" );
467                 return 0;
468         case LDAP_REQ_ADD:
469                 BER_BVSTR( bv, "add" );
470                 return 0;
471         case LDAP_REQ_DELETE:
472                 BER_BVSTR( bv, "delete" );
473                 return 0;
474         case LDAP_REQ_MODRDN:
475                 BER_BVSTR( bv, "modrdn" );
476                 return 0;
477         case LDAP_REQ_MODIFY:
478                 BER_BVSTR( bv, "modify" );
479                 return 0;
480         case LDAP_REQ_COMPARE:
481                 BER_BVSTR( bv, "compare" );
482                 return 0;
483         case LDAP_REQ_SEARCH:
484                 BER_BVSTR( bv, "search" );
485                 return 0;
486         case LDAP_REQ_EXTENDED:
487                 BER_BVSTR( bv, "extended" );
488                 return 0;
489         }
490         return -1;
491 }
492
493 static int
494 retcode_entry_response( Operation *op, SlapReply *rs, BackendInfo *bi, Entry *e )
495 {
496         Attribute       *a;
497         int             err;
498         char            *next;
499
500         if ( get_manageDSAit( op ) ) {
501                 return SLAP_CB_CONTINUE;
502         }
503
504         if ( !is_entry_objectclass_or_sub( e, oc_errAbsObject ) ) {
505                 return SLAP_CB_CONTINUE;
506         }
507
508         /* operation */
509         a = attr_find( e->e_attrs, ad_errOp );
510         if ( a != NULL ) {
511                 int             i,
512                                 gotit = 0;
513                 struct berval   bv = BER_BVNULL;
514
515                 (void)retcode_op2str( op->o_tag, &bv );
516
517                 if ( BER_BVISNULL( &bv ) ) {
518                         return SLAP_CB_CONTINUE;
519                 }
520
521                 for ( i = 0; !BER_BVISNULL( &a->a_nvals[ i ] ); i++ ) {
522                         if ( bvmatch( &a->a_nvals[ i ], &bv ) ) {
523                                 gotit = 1;
524                                 break;
525                         }
526                 }
527
528                 if ( !gotit ) {
529                         return SLAP_CB_CONTINUE;
530                 }
531         }
532
533         /* error code */
534         a = attr_find( e->e_attrs, ad_errCode );
535         if ( a == NULL ) {
536                 return SLAP_CB_CONTINUE;
537         }
538         err = strtol( a->a_nvals[ 0 ].bv_val, &next, 0 );
539         if ( next == a->a_nvals[ 0 ].bv_val || next[ 0 ] != '\0' ) {
540                 return SLAP_CB_CONTINUE;
541         }
542         rs->sr_err = err;
543
544         /* sleep time */
545         a = attr_find( e->e_attrs, ad_errSleepTime );
546         if ( a != NULL && a->a_nvals[ 0 ].bv_val[ 0 ] != '-' ) {
547                 int     sleepTime;
548
549                 if ( lutil_atoi( &sleepTime, a->a_nvals[ 0 ].bv_val ) == 0 ) {
550                         retcode_sleep( sleepTime );
551                 }
552         }
553
554         if ( rs->sr_err != LDAP_SUCCESS ) {
555                 BackendDB       db = *op->o_bd,
556                                 *o_bd = op->o_bd;
557                 void            *o_callback = op->o_callback;
558
559                 /* message text */
560                 a = attr_find( e->e_attrs, ad_errText );
561                 if ( a != NULL ) {
562                         rs->sr_text = a->a_vals[ 0 ].bv_val;
563                 }
564
565                 /* matched DN */
566                 a = attr_find( e->e_attrs, ad_errMatchedDN );
567                 if ( a != NULL ) {
568                         rs->sr_matched = a->a_vals[ 0 ].bv_val;
569                 }
570
571                 if ( bi == NULL ) {
572                         slap_overinst   *on = (slap_overinst *)op->o_bd->bd_info;
573
574                         bi = on->on_info->oi_orig;
575                 }
576
577                 db.bd_info = bi;
578                 op->o_bd = &db;
579                 op->o_callback = NULL;
580
581                 /* referral */
582                 if ( rs->sr_err == LDAP_REFERRAL ) {
583                         BerVarray       refs = default_referral;
584
585                         a = attr_find( e->e_attrs, slap_schema.si_ad_ref );
586                         if ( a != NULL ) {
587                                 refs = a->a_vals;
588                         }
589                         rs->sr_ref = referral_rewrite( refs,
590                                 NULL, &op->o_req_dn, op->oq_search.rs_scope );
591         
592                         send_search_reference( op, rs );
593                         ber_bvarray_free( rs->sr_ref );
594                         rs->sr_ref = NULL;
595
596                 } else {
597                         send_ldap_result( op, rs );
598                 }
599
600                 rs->sr_text = NULL;
601                 rs->sr_matched = NULL;
602                 op->o_bd = o_bd;
603                 op->o_callback = o_callback;
604         }
605         
606         if ( rs->sr_err != LDAP_SUCCESS ) {
607                 op->o_abandon = 1;
608                 return rs->sr_err;
609         }
610
611         return SLAP_CB_CONTINUE;
612 }
613
614 static int
615 retcode_response( Operation *op, SlapReply *rs )
616 {
617         slap_overinst   *on = (slap_overinst *)op->o_bd->bd_info;
618         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
619
620         if ( rs->sr_type != REP_SEARCH || !RETCODE_INDIR( rd ) ) {
621                 return SLAP_CB_CONTINUE;
622         }
623
624         return retcode_entry_response( op, rs, NULL, rs->sr_entry );
625 }
626
627 static int
628 retcode_db_init( BackendDB *be )
629 {
630         slap_overinst   *on = (slap_overinst *)be->bd_info;
631         retcode_t       *rd;
632
633         srand( getpid() );
634
635         rd = (retcode_t *)ch_malloc( sizeof( retcode_t ) );
636         memset( rd, 0, sizeof( retcode_t ) );
637
638         on->on_bi.bi_private = (void *)rd;
639
640         return 0;
641 }
642
643 static int
644 retcode_db_config(
645         BackendDB       *be,
646         const char      *fname,
647         int             lineno,
648         int             argc,
649         char            **argv )
650 {
651         slap_overinst   *on = (slap_overinst *)be->bd_info;
652         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
653
654         char                    *argv0 = argv[ 0 ] + STRLENOF( "retcode-" );
655
656         if ( strncasecmp( argv[ 0 ], "retcode-", STRLENOF( "retcode-" ) ) != 0 ) {
657                 return SLAP_CONF_UNKNOWN;
658         }
659
660         if ( strcasecmp( argv0, "parent" ) == 0 ) {
661                 struct berval   dn;
662                 int             rc;
663
664                 if ( argc != 2 ) {
665                         fprintf( stderr, "%s: line %d: retcode: "
666                                 "\"retcode-parent <DN>\": missing <DN>\n",
667                                 fname, lineno );
668                         return 1;
669                 }
670
671                 if ( !BER_BVISNULL( &rd->rd_pdn ) ) {
672                         fprintf( stderr, "%s: line %d: retcode: "
673                                 "parent already defined.\n", fname, lineno );
674                         return 1;
675                 }
676
677                 ber_str2bv( argv[ 1 ], 0, 0, &dn );
678
679                 rc = dnPrettyNormal( NULL, &dn, &rd->rd_pdn, &rd->rd_npdn, NULL );
680                 if ( rc != LDAP_SUCCESS ) {
681                         fprintf( stderr, "%s: line %d: retcode: "
682                                 "unable to normalize parent DN \"%s\": %d\n",
683                                 fname, lineno, argv[ 1 ], rc );
684                         return 1;
685                 }
686
687         } else if ( strcasecmp( argv0, "item" ) == 0 ) {
688                 retcode_item_t  rdi = { BER_BVNULL }, **rdip;
689                 struct berval           bv, rdn, nrdn;
690                 int                     rc;
691                 char                    *next = NULL;
692
693                 if ( argc < 3 ) {
694                         fprintf( stderr, "%s: line %d: retcode: "
695                                 "\"retcode-item <RDN> <retcode> [<text>]\": "
696                                 "missing args\n",
697                                 fname, lineno );
698                         return 1;
699                 }
700
701                 ber_str2bv( argv[ 1 ], 0, 0, &bv );
702                 
703                 rc = dnPrettyNormal( NULL, &bv, &rdn, &nrdn, NULL );
704                 if ( rc != LDAP_SUCCESS ) {
705                         fprintf( stderr, "%s: line %d: retcode: "
706                                 "unable to normalize RDN \"%s\": %d\n",
707                                 fname, lineno, argv[ 1 ], rc );
708                         return 1;
709                 }
710
711                 if ( !dnIsOneLevelRDN( &nrdn ) ) {
712                         fprintf( stderr, "%s: line %d: retcode: "
713                                 "value \"%s\" is not a RDN\n",
714                                 fname, lineno, argv[ 1 ] );
715                         return 1;
716                 }
717
718                 if ( BER_BVISNULL( &rd->rd_npdn ) ) {
719                         /* FIXME: we use the database suffix */
720                         if ( be->be_nsuffix == NULL ) {
721                                 fprintf( stderr, "%s: line %d: retcode: "
722                                         "either \"retcode-parent\" "
723                                         "or \"suffix\" must be defined.\n",
724                                         fname, lineno );
725                                 return 1;
726                         }
727
728                         ber_dupbv( &rd->rd_pdn, &be->be_suffix[ 0 ] );
729                         ber_dupbv( &rd->rd_npdn, &be->be_nsuffix[ 0 ] );
730                 }
731
732                 build_new_dn( &rdi.rdi_dn, &rd->rd_pdn, &rdn, NULL );
733                 build_new_dn( &rdi.rdi_ndn, &rd->rd_npdn, &nrdn, NULL );
734
735                 ch_free( rdn.bv_val );
736                 ch_free( nrdn.bv_val );
737
738                 rdi.rdi_err = strtol( argv[ 2 ], &next, 0 );
739                 if ( next == argv[ 2 ] || next[ 0 ] != '\0' ) {
740                         fprintf( stderr, "%s: line %d: retcode: "
741                                 "unable to parse return code \"%s\"\n",
742                                 fname, lineno, argv[ 2 ] );
743                         return 1;
744                 }
745
746                 rdi.rdi_mask = SN_DG_OP_ALL;
747
748                 if ( argc > 3 ) {
749                         int     i;
750
751                         for ( i = 3; i < argc; i++ ) {
752                                 if ( strncasecmp( argv[ i ], "op=", STRLENOF( "op=" ) ) == 0 )
753                                 {
754                                         char            **ops;
755                                         int             j;
756
757                                         ops = ldap_str2charray( &argv[ i ][ STRLENOF( "op=" ) ], "," );
758                                         assert( ops != NULL );
759
760                                         rdi.rdi_mask = SN_DG_OP_NONE;
761
762                                         for ( j = 0; ops[ j ] != NULL; j++ ) {
763                                                 if ( strcasecmp( ops[ j ], "add" ) == 0 ) {
764                                                         rdi.rdi_mask |= SN_DG_OP_ADD;
765
766                                                 } else if ( strcasecmp( ops[ j ], "bind" ) == 0 ) {
767                                                         rdi.rdi_mask |= SN_DG_OP_BIND;
768
769                                                 } else if ( strcasecmp( ops[ j ], "compare" ) == 0 ) {
770                                                         rdi.rdi_mask |= SN_DG_OP_COMPARE;
771
772                                                 } else if ( strcasecmp( ops[ j ], "delete" ) == 0 ) {
773                                                         rdi.rdi_mask |= SN_DG_OP_DELETE;
774
775                                                 } else if ( strcasecmp( ops[ j ], "modify" ) == 0 ) {
776                                                         rdi.rdi_mask |= SN_DG_OP_MODIFY;
777
778                                                 } else if ( strcasecmp( ops[ j ], "rename" ) == 0
779                                                         || strcasecmp( ops[ j ], "modrdn" ) == 0 )
780                                                 {
781                                                         rdi.rdi_mask |= SN_DG_OP_RENAME;
782
783                                                 } else if ( strcasecmp( ops[ j ], "search" ) == 0 ) {
784                                                         rdi.rdi_mask |= SN_DG_OP_SEARCH;
785
786                                                 } else if ( strcasecmp( ops[ j ], "extended" ) == 0 ) {
787                                                         rdi.rdi_mask |= SN_DG_EXTENDED;
788
789                                                 } else if ( strcasecmp( ops[ j ], "auth" ) == 0 ) {
790                                                         rdi.rdi_mask |= SN_DG_OP_AUTH;
791
792                                                 } else if ( strcasecmp( ops[ j ], "read" ) == 0 ) {
793                                                         rdi.rdi_mask |= SN_DG_OP_READ;
794
795                                                 } else if ( strcasecmp( ops[ j ], "write" ) == 0 ) {
796                                                         rdi.rdi_mask |= SN_DG_OP_WRITE;
797
798                                                 } else if ( strcasecmp( ops[ j ], "all" ) == 0 ) {
799                                                         rdi.rdi_mask |= SN_DG_OP_ALL;
800
801                                                 } else {
802                                                         fprintf( stderr, "retcode: unknown op \"%s\"\n",
803                                                                 ops[ j ] );
804                                                         ldap_charray_free( ops );
805                                                         return 1;
806                                                 }
807                                         }
808
809                                         ldap_charray_free( ops );
810
811                                 } else if ( strncasecmp( argv[ i ], "text=", STRLENOF( "text=" ) ) == 0 )
812                                 {
813                                         if ( !BER_BVISNULL( &rdi.rdi_text ) ) {
814                                                 fprintf( stderr, "%s: line %d: retcode: "
815                                                         "\"text\" already provided.\n",
816                                                         fname, lineno );
817                                                 return 1;
818                                         }
819                                         ber_str2bv( &argv[ i ][ STRLENOF( "text=" ) ], 0, 1, &rdi.rdi_text );
820
821                                 } else if ( strncasecmp( argv[ i ], "matched=", STRLENOF( "matched=" ) ) == 0 )
822                                 {
823                                         struct berval   dn;
824
825                                         if ( !BER_BVISNULL( &rdi.rdi_matched ) ) {
826                                                 fprintf( stderr, "%s: line %d: retcode: "
827                                                         "\"matched\" already provided.\n",
828                                                         fname, lineno );
829                                                 return 1;
830                                         }
831                                         ber_str2bv( &argv[ i ][ STRLENOF( "matched=" ) ], 0, 0, &dn );
832                                         if ( dnPretty( NULL, &dn, &rdi.rdi_matched, NULL ) != LDAP_SUCCESS ) {
833                                                 fprintf( stderr, "%s: line %d: retcode: "
834                                                         "unable to prettify matched DN \"%s\".\n",
835                                                         fname, lineno, &argv[ i ][ STRLENOF( "matched=" ) ] );
836                                                 return 1;
837                                         }
838
839                                 } else if ( strncasecmp( argv[ i ], "ref=", STRLENOF( "ref=" ) ) == 0 )
840                                 {
841                                         char            **refs;
842                                         int             j;
843
844                                         if ( rdi.rdi_ref != NULL ) {
845                                                 fprintf( stderr, "%s: line %d: retcode: "
846                                                         "\"ref\" already provided.\n",
847                                                         fname, lineno );
848                                                 return 1;
849                                         }
850
851                                         if ( rdi.rdi_err != LDAP_REFERRAL ) {
852                                                 fprintf( stderr, "%s: line %d: retcode: "
853                                                         "providing \"ref\"\n"
854                                                         "\talong with a non-referral "
855                                                         "resultCode may cause slapd failures\n"
856                                                         "\trelated to internal checks.\n",
857                                                         fname, lineno );
858                                         }
859
860                                         refs = ldap_str2charray( &argv[ i ][ STRLENOF( "ref=" ) ], " " );
861                                         assert( refs != NULL );
862
863                                         for ( j = 0; refs[ j ] != NULL; j++ ) {
864                                                 struct berval   bv;
865
866                                                 ber_str2bv( refs[ j ], 0, 1, &bv );
867                                                 ber_bvarray_add( &rdi.rdi_ref, &bv );
868                                         }
869
870                                         ldap_charray_free( refs );
871
872                                 } else if ( strncasecmp( argv[ i ], "sleeptime=", STRLENOF( "sleeptime=" ) ) == 0 )
873                                 {
874                                         if ( rdi.rdi_sleeptime != 0 ) {
875                                                 fprintf( stderr, "%s: line %d: retcode: "
876                                                         "\"sleeptime\" already provided.\n",
877                                                         fname, lineno );
878                                                 return 1;
879                                         }
880
881                                         if ( lutil_atoi( &rdi.rdi_sleeptime, &argv[ i ][ STRLENOF( "sleeptime=" ) ] ) ) {
882                                                 fprintf( stderr, "%s: line %d: retcode: "
883                                                         "unable to parse \"sleeptime=%s\".\n",
884                                                         fname, lineno, &argv[ i ][ STRLENOF( "sleeptime=" ) ] );
885                                                 return 1;
886                                         }
887
888                                 } else {
889                                         fprintf( stderr, "%s: line %d: retcode: "
890                                                 "unknown option \"%s\".\n",
891                                                         fname, lineno, argv[ i ] );
892                                         return 1;
893                                 }
894                         }
895                 }
896
897                 for ( rdip = &rd->rd_item; *rdip; rdip = &(*rdip)->rdi_next )
898                         /* go to last */ ;
899
900                 
901                 *rdip = ( retcode_item_t * )ch_malloc( sizeof( retcode_item_t ) );
902                 *(*rdip) = rdi;
903
904         } else if ( strcasecmp( argv0, "indir" ) == 0 ) {
905                 rd->rd_flags |= RETCODE_FINDIR;
906
907         } else if ( strcasecmp( argv0, "sleep" ) == 0 ) {
908                 switch ( argc ) {
909                 case 1:
910                         fprintf( stderr, "%s: line %d: retcode: "
911                                 "\"retcode-sleep <time>\": missing <time>\n",
912                                 fname, lineno );
913                         return 1;
914
915                 case 2:
916                         break;
917
918                 default:
919                         fprintf( stderr, "%s: line %d: retcode: "
920                                 "\"retcode-sleep <time>\": extra cruft after <time>\n",
921                                 fname, lineno );
922                         return 1;
923                 }
924
925                 if ( lutil_atoi( &rd->rd_sleep, argv[ 1 ] ) != 0 ) {
926                         fprintf( stderr, "%s: line %d: retcode: "
927                                 "\"retcode-sleep <time>\": unable to parse <time>\n",
928                                 fname, lineno );
929                         return 1;
930                 }
931
932         } else {
933                 return SLAP_CONF_UNKNOWN;
934         }
935
936         return 0;
937 }
938
939 static int
940 retcode_db_open( BackendDB *be )
941 {
942         slap_overinst   *on = (slap_overinst *)be->bd_info;
943         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
944
945         retcode_item_t  *rdi;
946
947         for ( rdi = rd->rd_item; rdi; rdi = rdi->rdi_next ) {
948                 LDAPRDN                 rdn = NULL;
949                 int                     rc, j;
950                 char*                   p;
951                 struct berval           val[ 3 ];
952                 char                    buf[ SLAP_TEXT_BUFLEN ];
953
954                 /* DN */
955                 rdi->rdi_e.e_name = rdi->rdi_dn;
956                 rdi->rdi_e.e_nname = rdi->rdi_ndn;
957
958                 /* objectClass */
959                 val[ 0 ] = oc_errObject->soc_cname;
960                 val[ 1 ] = slap_schema.si_oc_extensibleObject->soc_cname;
961                 BER_BVZERO( &val[ 2 ] );
962
963                 attr_merge( &rdi->rdi_e, slap_schema.si_ad_objectClass, val, NULL );
964
965                 /* RDN avas */
966                 rc = ldap_bv2rdn( &rdi->rdi_dn, &rdn, (char **) &p,
967                                 LDAP_DN_FORMAT_LDAP );
968
969                 assert( rc == LDAP_SUCCESS );
970
971                 for ( j = 0; rdn[ j ]; j++ ) {
972                         LDAPAVA                 *ava = rdn[ j ];
973                         AttributeDescription    *ad = NULL;
974                         const char              *text;
975
976                         rc = slap_bv2ad( &ava->la_attr, &ad, &text );
977                         assert( rc == LDAP_SUCCESS );
978                         
979                         attr_merge_normalize_one( &rdi->rdi_e, ad,
980                                         &ava->la_value, NULL );
981                 }
982
983                 ldap_rdnfree( rdn );
984
985                 /* error code */
986                 snprintf( buf, sizeof( buf ), "%d", rdi->rdi_err );
987                 ber_str2bv( buf, 0, 0, &val[ 0 ] );
988
989                 attr_merge_one( &rdi->rdi_e, ad_errCode, &val[ 0 ], NULL );
990
991                 if ( rdi->rdi_ref != NULL ) {
992                         attr_merge_normalize( &rdi->rdi_e, slap_schema.si_ad_ref,
993                                 rdi->rdi_ref, NULL );
994                 }
995
996                 /* text */
997                 if ( !BER_BVISNULL( &rdi->rdi_text ) ) {
998                         val[ 0 ] = rdi->rdi_text;
999
1000                         attr_merge_normalize_one( &rdi->rdi_e, ad_errText, &val[ 0 ], NULL );
1001                 }
1002
1003                 /* matched */
1004                 if ( !BER_BVISNULL( &rdi->rdi_matched ) ) {
1005                         val[ 0 ] = rdi->rdi_matched;
1006
1007                         attr_merge_normalize_one( &rdi->rdi_e, ad_errMatchedDN, &val[ 0 ], NULL );
1008                 }
1009
1010                 /* sleep time */
1011                 if ( rdi->rdi_sleeptime ) {
1012                         snprintf( buf, sizeof( buf ), "%d", rdi->rdi_sleeptime );
1013                         ber_str2bv( buf, 0, 0, &val[ 0 ] );
1014
1015                         attr_merge_one( &rdi->rdi_e, ad_errSleepTime, &val[ 0 ], NULL );
1016                 }
1017
1018                 /* operations */
1019                 if ( rdi->rdi_mask & SN_DG_OP_ADD ) {
1020                         BER_BVSTR( &val[ 0 ], "add" );
1021                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1022                 }
1023
1024                 if ( rdi->rdi_mask & SN_DG_OP_BIND ) {
1025                         BER_BVSTR( &val[ 0 ], "bind" );
1026                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1027                 }
1028
1029                 if ( rdi->rdi_mask & SN_DG_OP_COMPARE ) {
1030                         BER_BVSTR( &val[ 0 ], "compare" );
1031                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1032                 }
1033
1034                 if ( rdi->rdi_mask & SN_DG_OP_DELETE ) {
1035                         BER_BVSTR( &val[ 0 ], "delete" );
1036                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1037                 }
1038
1039                 if ( rdi->rdi_mask & SN_DG_EXTENDED ) {
1040                         BER_BVSTR( &val[ 0 ], "extended" );
1041                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1042                 }
1043
1044                 if ( rdi->rdi_mask & SN_DG_OP_MODIFY ) {
1045                         BER_BVSTR( &val[ 0 ], "modify" );
1046                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1047                 }
1048
1049                 if ( rdi->rdi_mask & SN_DG_OP_RENAME ) {
1050                         BER_BVSTR( &val[ 0 ], "rename" );
1051                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1052                 }
1053
1054                 if ( rdi->rdi_mask & SN_DG_OP_SEARCH ) {
1055                         BER_BVSTR( &val[ 0 ], "search" );
1056                         attr_merge_normalize_one( &rdi->rdi_e, ad_errOp, &val[ 0 ], NULL );
1057                 }
1058         }
1059
1060         return 0;
1061 }
1062
1063 static int
1064 retcode_db_destroy( BackendDB *be )
1065 {
1066         slap_overinst   *on = (slap_overinst *)be->bd_info;
1067         retcode_t       *rd = (retcode_t *)on->on_bi.bi_private;
1068
1069         if ( rd ) {
1070                 retcode_item_t  *rdi, *next;
1071
1072                 for ( rdi = rd->rd_item; rdi != NULL; rdi = next ) {
1073                         ber_memfree( rdi->rdi_dn.bv_val );
1074                         ber_memfree( rdi->rdi_ndn.bv_val );
1075
1076                         if ( !BER_BVISNULL( &rdi->rdi_text ) ) {
1077                                 ber_memfree( rdi->rdi_text.bv_val );
1078                         }
1079
1080                         if ( !BER_BVISNULL( &rdi->rdi_matched ) ) {
1081                                 ber_memfree( rdi->rdi_matched.bv_val );
1082                         }
1083
1084                         if ( rdi->rdi_ref ) {
1085                                 ber_bvarray_free( rdi->rdi_ref );
1086                         }
1087
1088                         BER_BVZERO( &rdi->rdi_e.e_name );
1089                         BER_BVZERO( &rdi->rdi_e.e_nname );
1090
1091                         entry_clean( &rdi->rdi_e );
1092
1093                         next = rdi->rdi_next;
1094
1095                         ch_free( rdi );
1096                 }
1097
1098                 if ( !BER_BVISNULL( &rd->rd_pdn ) ) {
1099                         ber_memfree( rd->rd_pdn.bv_val );
1100                 }
1101
1102                 if ( !BER_BVISNULL( &rd->rd_npdn ) ) {
1103                         ber_memfree( rd->rd_npdn.bv_val );
1104                 }
1105
1106                 ber_memfree( rd );
1107         }
1108
1109         return 0;
1110 }
1111
1112 #if SLAPD_OVER_RETCODE == SLAPD_MOD_DYNAMIC
1113 static
1114 #endif /* SLAPD_OVER_RETCODE == SLAPD_MOD_DYNAMIC */
1115 int
1116 retcode_initialize( void )
1117 {
1118         int             i, code;
1119         const char      *err;
1120
1121         static struct {
1122                 char                    *name;
1123                 char                    *desc;
1124                 AttributeDescription    **ad;
1125         } retcode_at[] = {
1126                 { "errCode", "( 1.3.6.1.4.1.4203.666.11.4.1.1 "
1127                         "NAME ( 'errCode' ) "
1128                         "DESC 'LDAP error code' "
1129                         "EQUALITY integerMatch "
1130                         "ORDERING integerOrderingMatch "
1131                         "SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 "
1132                         "SINGLE-VALUE )",
1133                         &ad_errCode },
1134                 { "errOp", "( 1.3.6.1.4.1.4203.666.11.4.1.2 "
1135                         "NAME ( 'errOp' ) "
1136                         "DESC 'Operations the errObject applies to' "
1137                         "EQUALITY caseIgnoreMatch "
1138                         "SUBSTR caseIgnoreSubstringsMatch "
1139                         "SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )",
1140                         &ad_errOp},
1141                 { "errText", "( 1.3.6.1.4.1.4203.666.11.4.1.3 "
1142                         "NAME ( 'errText' ) "
1143                         "DESC 'LDAP error textual description' "
1144                         "EQUALITY caseIgnoreMatch "
1145                         "SUBSTR caseIgnoreSubstringsMatch "
1146                         "SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 "
1147                         "SINGLE-VALUE )",
1148                         &ad_errText },
1149                 { "errSleepTime", "( 1.3.6.1.4.1.4203.666.11.4.1.4 "
1150                         "NAME ( 'errSleepTime' ) "
1151                         "DESC 'Time to wait before returning the error' "
1152                         "EQUALITY integerMatch "
1153                         "SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 "
1154                         "SINGLE-VALUE )",
1155                         &ad_errSleepTime },
1156                 { "errMatchedDN", "( 1.3.6.1.4.1.4203.666.11.4.1.5 "
1157                         "NAME ( 'errMatchedDN' ) "
1158                         "DESC 'Value to be returned as matched DN' "
1159                         "EQUALITY distinguishedNameMatch "
1160                         "SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 "
1161                         "SINGLE-VALUE )",
1162                         &ad_errMatchedDN },
1163                 { NULL }
1164         };
1165
1166         static struct {
1167                 char            *name;
1168                 char            *desc;
1169                 ObjectClass     **oc;
1170         } retcode_oc[] = {
1171                 { "errAbsObject", "( 1.3.6.1.4.1.4203.666.11.4.3.0 "
1172                         "NAME ( 'errAbsObject' ) "
1173                         "SUP top ABSTRACT "
1174                         "MUST ( errCode ) "
1175                         "MAY ( "
1176                                 "cn "
1177                                 "$ description "
1178                                 "$ errOp "
1179                                 "$ errText "
1180                                 "$ errSleepTime "
1181                                 "$ errMatchedDN "
1182                         ") )",
1183                         &oc_errAbsObject },
1184                 { "errObject", "( 1.3.6.1.4.1.4203.666.11.4.3.1 "
1185                         "NAME ( 'errObject' ) "
1186                         "SUP errAbsObject STRUCTURAL "
1187                         ")",
1188                         &oc_errObject },
1189                 { "errAuxObject", "( 1.3.6.1.4.1.4203.666.11.4.3.2 "
1190                         "NAME ( 'errAuxObject' ) "
1191                         "SUP errAbsObject AUXILIARY "
1192                         ")",
1193                         &oc_errAuxObject },
1194                 { NULL }
1195         };
1196
1197
1198         for ( i = 0; retcode_at[ i ].name != NULL; i++ ) {
1199                 LDAPAttributeType       *at;
1200
1201                 at = ldap_str2attributetype( retcode_at[ i ].desc,
1202                         &code, &err, LDAP_SCHEMA_ALLOW_ALL );
1203                 if ( !at ) {
1204                         fprintf( stderr, "retcode: "
1205                                 "AttributeType load failed: %s %s\n",
1206                                 ldap_scherr2str( code ), err );
1207                         return code;
1208                 }
1209
1210 #if LDAP_VENDOR_VERSION_MINOR == X || LDAP_VENDOR_VERSION_MINOR > 2
1211                 code = at_add( at, 0, NULL, &err );
1212 #else
1213                 code = at_add( at, &err );
1214 #endif
1215                 ldap_memfree( at );
1216                 if ( code != LDAP_SUCCESS ) {
1217                         fprintf( stderr, "retcode: "
1218                                 "AttributeType load failed: %s %s\n",
1219                                 scherr2str( code ), err );
1220                         return code;
1221                 }
1222
1223                 code = slap_str2ad( retcode_at[ i ].name,
1224                                 retcode_at[ i ].ad, &err );
1225                 if ( code != LDAP_SUCCESS ) {
1226                         fprintf( stderr, "retcode: unable to find "
1227                                 "AttributeDescription \"%s\": %d (%s)\n",
1228                                 retcode_at[ i ].name, code, err );
1229                         return 1;
1230                 }
1231         }
1232
1233         for ( i = 0; retcode_oc[ i ].name != NULL; i++ ) {
1234                 LDAPObjectClass *oc;
1235
1236                 oc = ldap_str2objectclass( retcode_oc[ i ].desc,
1237                                 &code, &err, LDAP_SCHEMA_ALLOW_ALL );
1238                 if ( !oc ) {
1239                         fprintf( stderr, "retcode: "
1240                                 "ObjectClass load failed: %s %s\n",
1241                                 ldap_scherr2str( code ), err );
1242                         return code;
1243                 }
1244
1245 #if LDAP_VENDOR_VERSION_MINOR == X || LDAP_VENDOR_VERSION_MINOR > 2
1246                 code = oc_add( oc, 0, NULL, &err );
1247 #else
1248                 code = oc_add( oc, &err );
1249 #endif
1250                 ldap_memfree(oc);
1251                 if ( code != LDAP_SUCCESS ) {
1252                         fprintf( stderr, "retcode: "
1253                                 "ObjectClass load failed: %s %s\n",
1254                                 scherr2str( code ), err );
1255                         return code;
1256                 }
1257
1258                 *retcode_oc[ i ].oc = oc_find( retcode_oc[ i ].name );
1259                 if ( *retcode_oc[ i ].oc == NULL ) {
1260                         fprintf( stderr, "retcode: unable to find "
1261                                 "objectClass \"%s\"\n",
1262                                 retcode_oc[ i ].name );
1263                         return 1;
1264                 }
1265         }
1266
1267         retcode.on_bi.bi_type = "retcode";
1268
1269         retcode.on_bi.bi_db_init = retcode_db_init;
1270         retcode.on_bi.bi_db_config = retcode_db_config;
1271         retcode.on_bi.bi_db_open = retcode_db_open;
1272         retcode.on_bi.bi_db_destroy = retcode_db_destroy;
1273
1274         retcode.on_bi.bi_op_add = retcode_op_func;
1275         retcode.on_bi.bi_op_bind = retcode_op_func;
1276         retcode.on_bi.bi_op_compare = retcode_op_func;
1277         retcode.on_bi.bi_op_delete = retcode_op_func;
1278         retcode.on_bi.bi_op_modify = retcode_op_func;
1279         retcode.on_bi.bi_op_modrdn = retcode_op_func;
1280         retcode.on_bi.bi_op_search = retcode_op_func;
1281
1282         retcode.on_bi.bi_extended = retcode_op_func;
1283
1284         retcode.on_response = retcode_response;
1285
1286         return overlay_register( &retcode );
1287 }
1288
1289 #if SLAPD_OVER_RETCODE == SLAPD_MOD_DYNAMIC
1290 int
1291 init_module( int argc, char *argv[] )
1292 {
1293         return retcode_initialize();
1294 }
1295 #endif /* SLAPD_OVER_RETCODE == SLAPD_MOD_DYNAMIC */
1296
1297 #endif /* SLAPD_OVER_RETCODE */