]> git.sur5r.net Git - openldap/blobdiff - servers/slapd/slapcommon.c
declare oc_bvfind_undef()
[openldap] / servers / slapd / slapcommon.c
index a3cbc72507488d11218112de09addf1528e8e972..fbae61c2abbdd0267db5dc5839e08a31dcfaffef 100644 (file)
@@ -59,7 +59,8 @@ usage( int tool, const char *progname )
                break;
 
        case SLAPCAT:
-               options = "\t[-n databasenumber | -b suffix] [-l ldiffile] [-m] [-k]\n";
+               options = "\t[-n databasenumber | -b suffix]"
+                       " [-l ldiffile] [-a filter] [-m] [-k]\n";
                break;
 
        case SLAPDN:
@@ -70,8 +71,13 @@ usage( int tool, const char *progname )
                options = "\t[-n databasenumber | -b suffix]\n";
                break;
 
-       case SLAPSASLAUTH:
-               options = "\t[-U authcID] [-X authzID] ID [...]\n";
+       case SLAPAUTH:
+               options = "\t[-U authcID] [-X authzID] [-R realm] [-M mech] ID [...]\n";
+               break;
+
+       case SLAPACL:
+               options = "\t[-U authcID | -D authcDN]"
+                       " -b DN [attr[/access][:value]] [...]\n";
                break;
        }
 
@@ -99,6 +105,7 @@ slap_tool_init(
        char *options;
        char *conffile = SLAPD_DEFAULT_CONFIGFILE;
        struct berval base = BER_BVNULL;
+       char *filterstr = NULL;
        char *subtree = NULL;
        char *ldiffile  = NULL;
        int rc, i, dbnum;
@@ -120,17 +127,19 @@ slap_tool_init(
                break;
 
        case SLAPCAT:
-               options = "b:cd:f:kl:mn:s:v";
+               options = "a:b:cd:f:kl:mn:s:v";
                mode |= SLAP_TOOL_READMAIN | SLAP_TOOL_READONLY;
                break;
 
        case SLAPDN:
        case SLAPTEST:
                options = "d:f:v";
+               mode |= SLAP_TOOL_READMAIN | SLAP_TOOL_READONLY;
                break;
 
-       case SLAPSASLAUTH:
-               options = "d:f:U:vX:";
+       case SLAPAUTH:
+               options = "d:f:M:R:U:vX:";
+               mode |= SLAP_TOOL_READMAIN | SLAP_TOOL_READONLY;
                break;
 
        case SLAPINDEX:
@@ -138,15 +147,23 @@ slap_tool_init(
                mode |= SLAP_TOOL_READMAIN;
                break;
 
+       case SLAPACL:
+               options = "b:D:d:f:U:v";
+               mode |= SLAP_TOOL_READMAIN | SLAP_TOOL_READONLY;
+               break;
+
        default:
-               fprintf( stderr, "%s: unknown tool mode (%d)\n",
-                        progname, tool );
+               fprintf( stderr, "%s: unknown tool mode (%d)\n", progname, tool );
                exit( EXIT_FAILURE );
        }
 
        dbnum = -1;
        while ( (i = getopt( argc, argv, options )) != EOF ) {
                switch ( i ) {
+               case 'a':
+                       filterstr = strdup( optarg );
+                       break;
+
                case 'b':
                        ber_str2bv( optarg, 0, 1, &base );
                        break;
@@ -159,6 +176,10 @@ slap_tool_init(
                        ldap_debug += atoi( optarg );
                        break;
 
+               case 'D':
+                       ber_str2bv( optarg, 0, 1, &authcDN );
+                       break;
+
                case 'f':       /* specify a conf file */
                        conffile = strdup( optarg );
                        break;
@@ -169,7 +190,7 @@ slap_tool_init(
                                usage( tool, progname );
                                exit( EXIT_FAILURE );
                        }
-                       str2clist( &replica_id_strlist, replica_id_string, "," );
+                       slap_str2clist( &replica_id_strlist, replica_id_string, "," );
                        for ( i = 0; replica_id_strlist && replica_id_strlist[i]; i++ ) ;
                        replica_id_list = ch_calloc( i + 1, sizeof( int ) );
                        for ( i = 0; replica_id_strlist && replica_id_strlist[i]; i++ ) {
@@ -196,6 +217,10 @@ slap_tool_init(
                        retrieve_ctxcsn = 1;
                        break;
 
+               case 'M':
+                       ber_str2bv( optarg, 0, 0, &mech );
+                       break;
+
                case 'n':       /* which config file db to index */
                        dbnum = atoi( optarg ) - 1;
                        break;
@@ -208,6 +233,10 @@ slap_tool_init(
                        replica_demotion = 1;           
                        break;
 
+               case 'R':
+                       realm = optarg;
+                       break;
+
                case 's':       /* dump subtree */
                        subtree = strdup( optarg );
                        break;
@@ -272,7 +301,7 @@ slap_tool_init(
                }
                break;
 
-       case SLAPSASLAUTH:
+       case SLAPAUTH:
                if ( argc == optind && BER_BVISNULL( &authcID ) ) {
                        usage( tool, progname );
                }
@@ -284,6 +313,16 @@ slap_tool_init(
                }
                break;
 
+       case SLAPACL:
+               if ( !BER_BVISNULL( &authcDN ) && !BER_BVISNULL( &authcID ) ) {
+                       usage( tool, progname );
+               }
+               if ( BER_BVISNULL( &base ) ) {
+                       usage( tool, progname );
+               }
+               ber_dupbv( &baseDN, &base );
+               break;
+
        default:
                break;
        }
@@ -291,7 +330,7 @@ slap_tool_init(
        if ( ldiffile == NULL ) {
                ldiffp = tool == SLAPCAT ? stdout : stdin;
 
-       } else if(ldiffp = fopen( ldiffile, tool == SLAPCAT ? "w" : "r" ))
+       } else if ((ldiffp = fopen( ldiffile, tool == SLAPCAT ? "w" : "r" ))
                == NULL )
        {
                perror( ldiffile );
@@ -323,6 +362,11 @@ slap_tool_init(
                exit( EXIT_FAILURE );
        }
 
+       if ( frontend_init() ) {
+               fprintf( stderr, "%s: frontend_init failed!\n", progname );
+               exit( EXIT_FAILURE );
+       }
+
        if ( overlay_init() ) {
                fprintf( stderr, "%s: overlay_init failed!\n", progname );
                exit( EXIT_FAILURE );
@@ -352,13 +396,6 @@ slap_tool_init(
                break;
        }
 
-       rc = glue_sub_init();
-
-       if ( rc != 0 ) {
-               fprintf( stderr, "Subordinate configuration error\n" );
-               exit( EXIT_FAILURE );
-       }
-
        rc = slap_schema_check();
 
        if ( rc != 0 ) {
@@ -369,9 +406,7 @@ slap_tool_init(
        switch ( tool ) {
        case SLAPDN:
        case SLAPTEST:
-               return;
-
-       case SLAPSASLAUTH:
+       case SLAPAUTH:
                be = NULL;
                goto startup;
 
@@ -379,19 +414,29 @@ slap_tool_init(
                break;
        }
 
+       if( filterstr ) {
+               filter = str2filter( filterstr );
+
+               if( filter == NULL ) {
+                       fprintf( stderr, "Invalid filter '%s'\n", filterstr );
+                       exit( EXIT_FAILURE );
+               }
+       }
+
        if( subtree ) {
                struct berval val;
                ber_str2bv( subtree, 0, 0, &val );
                rc = dnNormalize( 0, NULL, NULL, &val, &sub_ndn, NULL );
                if( rc != LDAP_SUCCESS ) {
-                       fprintf( stderr, "Invalid subtree DN '%s'\n", optarg );
+                       fprintf( stderr, "Invalid subtree DN '%s'\n", subtree );
                        exit( EXIT_FAILURE );
                }
 
-               if ( BER_BVISNULL( &base ) && dbnum == -1 )
+               if ( BER_BVISNULL( &base ) && dbnum == -1 ) {
                        base = val;
-               else
+               } else {
                        free( subtree );
+               }
        }
 
        if( base.bv_val != NULL ) {
@@ -407,6 +452,14 @@ slap_tool_init(
                be = select_backend( &nbase, 0, 0 );
                ber_memfree( nbase.bv_val );
 
+               switch ( tool ) {
+               case SLAPACL:
+                       goto startup;
+
+               default:
+                       break;
+               }
+
                if( be == NULL ) {
                        fprintf( stderr, "%s: slap_init no backend for \"%s\"\n",
                                progname, base.bv_val );
@@ -445,22 +498,17 @@ slap_tool_init(
                }
                
                if ( nosubordinates == 0 && dbnum > 0 ) {
-#ifdef NEW_LOGGING
-                       LDAP_LOG( BACKEND, ERR, 
-"The first database does not allow %s; using the first available one (%d)\n",
-                               progname, dbnum + 1, 0 );
-#else
                        Debug( LDAP_DEBUG_ANY,
-"The first database does not allow %s; using the first available one (%d)\n",
+                               "The first database does not allow %s;"
+                               " using the first available one (%d)\n",
                                progname, dbnum + 1, 0 );
-#endif
                }
 
        } else if ( dbnum < 0 || dbnum > (nbackends-1) ) {
                fprintf( stderr,
                        "Database number selected via -n is out of range\n"
                        "Must be in the range 1 to %d"
-                               " (number of databases in the config file)\n",
+                       " (number of databases in the config file)\n",
                        nbackends );
                exit( EXIT_FAILURE );
 
@@ -474,7 +522,7 @@ startup:;
        mal_leaktrace(1);
 #endif
 
-       if ( slap_startup( be ) ) {
+       if ( !dryrun && slap_startup( be ) ) {
                fprintf( stderr, "slap_startup failed\n" );
                exit( EXIT_FAILURE );
        }
@@ -482,7 +530,9 @@ startup:;
 
 void slap_tool_destroy( void )
 {
-       slap_shutdown( be );
+       if ( !dryrun && be != NULL ) {
+               slap_shutdown( be );
+       }
        slap_destroy();
 #ifdef SLAPD_MODULES
        if ( slapMode == SLAP_SERVER_MODE ) {
@@ -500,4 +550,8 @@ void slap_tool_destroy( void )
 #ifdef CSRIMALLOC
        mal_dumpleaktrace( leakfile );
 #endif
+
+       if ( !BER_BVISNULL( &authcDN ) ) {
+               ch_free( authcDN.bv_val );
+       }
 }