]> git.sur5r.net Git - openldap/blobdiff - servers/slapd/slapi/slapi_ops.c
Happy new year! (belated)
[openldap] / servers / slapd / slapi / slapi_ops.c
index fcfa6fe5bb642dec2f8e28a4a2a936c24593d46e..9a95d502299756f28ba77539d6c1c28b38a9acc2 100644 (file)
-/*\r
- * Copyright 1998-2003 The OpenLDAP Foundation, All Rights Reserved.\r
- * COPYING RESTRICTIONS APPLY, see COPYRIGHT file\r
- */\r
-/*\r
- * (C) Copyright IBM Corp. 1997,2002\r
- * Redistribution and use in source and binary forms are permitted\r
- * provided that this notice is preserved and that due credit is\r
- * given to IBM Corporation. This software is provided ``as is''\r
- * without express or implied warranty.\r
- */\r
-\r
-#include "portable.h"\r
-#include "slapi_common.h"\r
-#include <slap.h>\r
-#include <slapi.h>\r
-#include <lber.h>\r
-#include "../../../libraries/liblber/lber-int.h"\r
-\r
-\r
-int bvptr2obj( struct berval **bvptr, struct berval **bvobj );\r
-\r
-static void\r
-internal_result_v3(\r
-       Connection      *conn, \r
-       Operation       *op, \r
-       ber_int_t       err,\r
-       const char      *matched, \r
-       const char      *text, \r
-       BerVarray       referrals,\r
-       LDAPControl     **ctrls )\r
-{\r
-       return;\r
-}\r
-\r
-static int\r
-internal_search_entry(\r
-       Backend         *be, \r
-       Connection      *conn, \r
-       Operation       *op, \r
-       Entry           *e, \r
-       AttributeName   *attrs, \r
-       int             attrsonly, \r
-       LDAPControl     **ctrls ) \r
-{\r
-       char *ent2str = NULL;\r
-       int nentries = 0, len = 0, i = 0;\r
-       Slapi_Entry **head = NULL, **tp;\r
-       \r
-       ent2str = slapi_entry2str( e, &len );\r
-       if ( ent2str == NULL ) {\r
-               return 1;\r
-       }\r
-\r
-       slapi_pblock_get( (Slapi_PBlock *)op->o_pb,\r
-                       SLAPI_NENTRIES, &nentries );\r
-       slapi_pblock_get( (Slapi_PBlock *)op->o_pb,\r
-                       SLAPI_PLUGIN_INTOP_SEARCH_ENTRIES, &head );\r
-       \r
-       i = nentries + 1;\r
-       if ( nentries == 0 ) {\r
-               tp = (Slapi_Entry **)slapi_ch_malloc( 2 * sizeof(Slapi_Entry *) );\r
-               if ( tp == NULL ) {\r
-                       return 1;\r
-               }\r
-\r
-               tp[ 0 ] = (Slapi_Entry *)str2entry( ent2str );\r
-               if ( tp[ 0 ] == NULL ) { \r
-                       return 1;\r
-               }\r
-\r
-       } else {\r
-               tp = (Slapi_Entry **)slapi_ch_realloc( (char *)head,\r
-                               sizeof(Slapi_Entry *) * ( i + 1 ) );\r
-               if ( tp == NULL ) {\r
-                       return 1;\r
-               }\r
-               tp[ i - 1 ] = (Slapi_Entry *)str2entry( ent2str );\r
-               if ( tp[ i - 1 ] == NULL ) { \r
-                       return 1;\r
-               }\r
-       }\r
-       tp[ i ] = NULL;\r
-                 \r
-       slapi_pblock_set( (Slapi_PBlock *)op->o_pb,\r
-                       SLAPI_PLUGIN_INTOP_SEARCH_ENTRIES, (void *)tp );\r
-       slapi_pblock_set( (Slapi_PBlock *)op->o_pb,\r
-                       SLAPI_NENTRIES, (void *)i );\r
-\r
-       return LDAP_SUCCESS;\r
-}\r
-\r
-static void\r
-internal_search_result(\r
-       Connection      *conn, \r
-       Operation       *op,\r
-       ber_int_t       err, \r
-       const char      *matched, \r
-       const char      *text, \r
-       BerVarray       refs,\r
-       LDAPControl     **ctrls,\r
-       int             nentries ) \r
-{\r
-       slapi_pblock_set( (Slapi_PBlock *)op->o_pb,\r
-                       SLAPI_NENTRIES, (void *)nentries );\r
-\r
-       return;\r
-}\r
-\r
-static void\r
-internal_result_ext(\r
-       Connection      *conn, \r
-       Operation       *op, \r
-       ber_int_t       errnum, \r
-       const char      *matched,\r
-       const char      *text,\r
-       BerVarray       refs,\r
-       const char      *rspoid,\r
-       struct berval   *rspdata,\r
-       LDAPControl     **ctrls )\r
-{\r
-       return;\r
-}\r
-\r
-static int\r
-internal_search_reference(\r
-       Backend         *be,\r
-       Connection      *conn, \r
-       Operation       *op, \r
-       Entry           *e,\r
-       BerVarray       refs,\r
-       LDAPControl     **ctrls,\r
-       BerVarray       *v2refs )\r
-{\r
-       return LDAP_SUCCESS;\r
-}\r
-\r
-static Connection *\r
-fakeConnection(\r
-       char *DN, \r
-       int OpType ) \r
-{ \r
-       Connection *pConn, *c;\r
-       ber_len_t max = sockbuf_max_incoming;\r
-\r
-       pConn = (Connection *) slapi_ch_calloc(1, sizeof(Connection));\r
-       if (pConn == NULL) {\r
-               return (Connection *)NULL;\r
-       }\r
-\r
-       LDAP_STAILQ_INIT( &pConn->c_pending_ops );\r
-\r
-       pConn->c_pending_ops.stqh_first =\r
-               (Operation *) slapi_ch_calloc( 1, sizeof(Operation) );\r
-       if ( pConn->c_pending_ops.stqh_first == NULL ) { \r
-               slapi_ch_free( (void **)&pConn );\r
-               return (Connection *)NULL;\r
-       }\r
-\r
-       pConn->c_pending_ops.stqh_first->o_pb = \r
-               (Slapi_PBlock *) slapi_pblock_new();\r
-       if ( pConn->c_pending_ops.stqh_first->o_pb == NULL ) {\r
-               slapi_ch_free( (void **)&pConn->c_pending_ops.stqh_first );\r
-               slapi_ch_free( (void **)&pConn );\r
-               return (Connection *)NULL;\r
-       }\r
-\r
-       c = pConn;\r
-\r
-       /* operation object */\r
-       c->c_pending_ops.stqh_first->o_tag = OpType;\r
-       c->c_pending_ops.stqh_first->o_protocol = LDAP_VERSION3; \r
-       c->c_pending_ops.stqh_first->o_authmech.bv_val = NULL; \r
-       c->c_pending_ops.stqh_first->o_authmech.bv_len = 0; \r
-       c->c_pending_ops.stqh_first->o_time = slap_get_time();\r
-       c->c_pending_ops.stqh_first->o_do_not_cache = 1;\r
-       c->c_pending_ops.stqh_first->o_threadctx = ldap_pvt_thread_pool_context( &connection_pool );\r
-\r
-       /* connection object */\r
-       c->c_authmech.bv_val = NULL;\r
-       c->c_authmech.bv_len = 0;\r
-       c->c_dn.bv_val = NULL;\r
-       c->c_dn.bv_len = 0;\r
-       c->c_ndn.bv_val = NULL;\r
-       c->c_ndn.bv_len = 0;\r
-       c->c_groups = NULL;\r
-\r
-       c->c_listener = NULL;\r
-       c->c_peer_domain.bv_val = NULL;\r
-       c->c_peer_domain.bv_len = 0;\r
-       c->c_peer_name.bv_val = NULL;\r
-       c->c_peer_name.bv_len = 0;\r
-\r
-       LDAP_STAILQ_INIT( &c->c_ops );\r
-\r
-       c->c_sasl_bind_mech.bv_val = NULL;\r
-       c->c_sasl_bind_mech.bv_len = 0;\r
-       c->c_sasl_context = NULL;\r
-       c->c_sasl_extra = NULL;\r
-\r
-       c->c_sb = ber_sockbuf_alloc( );\r
-\r
-       ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );\r
-\r
-       c->c_currentber = NULL;\r
-\r
-       /* should check status of thread calls */\r
-       ldap_pvt_thread_mutex_init( &c->c_mutex );\r
-       ldap_pvt_thread_mutex_init( &c->c_write_mutex );\r
-       ldap_pvt_thread_cond_init( &c->c_write_cv );\r
-\r
-       c->c_n_ops_received = 0;\r
-       c->c_n_ops_executing = 0;\r
-       c->c_n_ops_pending = 0;\r
-       c->c_n_ops_completed = 0;\r
-\r
-       c->c_n_get = 0;\r
-       c->c_n_read = 0;\r
-       c->c_n_write = 0;\r
-\r
-       c->c_protocol = LDAP_VERSION3; \r
-\r
-       c->c_activitytime = c->c_starttime = slap_get_time();\r
-\r
-       c->c_connid = 0;\r
-\r
-       c->c_conn_state  = 0x01;        /* SLAP_C_ACTIVE */\r
-       c->c_struct_state = 0x02;       /* SLAP_C_USED */\r
-\r
-       c->c_ssf = c->c_transport_ssf = 0;\r
-       c->c_tls_ssf = 0;\r
-\r
-       backend_connection_init( c );\r
-\r
-       pConn->c_send_ldap_result = internal_result_v3;\r
-       pConn->c_send_search_entry = internal_search_entry;\r
-       pConn->c_send_search_result = internal_search_result;\r
-       pConn->c_send_ldap_extended = internal_result_ext;\r
-       pConn->c_send_search_reference = internal_search_reference;\r
-\r
-       return pConn;\r
-}\r
-\r
-/* \r
- * Function : ValuestoBValues \r
- * Convert an array of char ptrs to an array of berval ptrs.\r
- * return value : LDAP_SUCCESS\r
- *                LDAP_NO_MEMORY\r
- *                LDAP_OTHER\r
-*/\r
-\r
-static int \r
-ValuesToBValues(\r
-       char **ppValue, \r
-       struct berval ***pppBV )\r
-{\r
-       int  rc = LDAP_SUCCESS;\r
-       int  i;\r
-       struct berval *pTmpBV;\r
-       struct berval **ppNewBV;\r
-\r
-       /* count the number of char ptrs. */\r
-       for ( i = 0; ppValue != NULL && ppValue[i] != NULL; i++ ) {\r
-               ;       /* NULL */\r
-       }\r
-\r
-       if ( i == 0 ) {\r
-               rc = LDAP_OTHER;\r
-       } else {\r
-               *pppBV = ppNewBV = (struct berval **)slapi_ch_malloc( (i+1)*(sizeof(struct berval *)) );\r
-               if ( *pppBV == NULL ) {\r
-                       rc = LDAP_NO_MEMORY;\r
-               } else {\r
-                       while ( ppValue != NULL && *ppValue != NULL && rc == LDAP_SUCCESS ) {\r
-                               pTmpBV = (struct berval *)slapi_ch_malloc(sizeof(struct berval));\r
-                               if ( pTmpBV == NULL) {\r
-                                       rc = LDAP_NO_MEMORY;\r
-                               } else {\r
-                                       pTmpBV->bv_val = slapi_ch_strdup(*ppValue);\r
-                                       if ( pTmpBV->bv_val == NULL ) {\r
-                                               rc = LDAP_NO_MEMORY;\r
-                                       } else {\r
-                                               pTmpBV->bv_len = strlen(*ppValue);\r
-                                               *ppNewBV = pTmpBV;\r
-                                               ppNewBV++;\r
-                                       }\r
-                                       ppValue++;\r
-                               }\r
-                       }\r
-                       /* null terminate the array of berval ptrs */\r
-                       *ppNewBV = NULL;\r
-               }\r
-       }\r
-       return( rc );\r
-}\r
-\r
-\r
-/*\r
- * Function : LDAPModToEntry \r
- * convert a dn plus an array of LDAPMod struct ptrs to an entry structure\r
- * with a link list of the correspondent attributes.\r
- * Return value : LDAP_SUCCESS\r
- *                LDAP_NO_MEMORY\r
- *                LDAP_OTHER\r
-*/\r
-Entry *\r
-LDAPModToEntry(\r
-       char *ldn, \r
-       LDAPMod **mods )\r
-{\r
-       struct berval           dn = { 0, NULL };\r
-       Entry                   *pEntry=NULL;\r
-       LDAPMod                 *pMod;\r
-       struct berval           *bv;\r
-       struct berval           **ppBV;\r
-       Backend                 *be;\r
-       Operation               *op;\r
-\r
-       Modifications           *modlist = NULL;\r
-       Modifications           **modtail = &modlist;\r
-       Modifications           tmp;\r
-\r
-       int                     rc = LDAP_SUCCESS;\r
-       int                     i;\r
-\r
-       const char              *text = NULL;\r
-\r
-\r
-       op = (Operation *) slapi_ch_calloc(1, sizeof(Operation));\r
-       if ( pEntry == NULL) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }  \r
-       op->o_tag = LDAP_REQ_ADD;\r
-\r
-       pEntry = (Entry *) ch_calloc( 1, sizeof(Entry) );\r
-       if ( pEntry == NULL) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       } \r
-\r
-       dn.bv_val = slapi_ch_strdup(ldn);\r
-       dn.bv_len = strlen(ldn);\r
-\r
-       rc = dnPrettyNormal( NULL, &dn, &pEntry->e_name, &pEntry->e_nname );\r
-       if (rc != LDAP_SUCCESS) goto cleanup;\r
-\r
-       if ( rc == LDAP_SUCCESS ) {\r
-               for ( i=0, pMod=mods[0]; rc == LDAP_SUCCESS && pMod != NULL; pMod=mods[++i]) {\r
-                       Modifications *mod;\r
-                       if ( (pMod->mod_op & LDAP_MOD_BVALUES) != 0 ) {\r
-                               /* attr values are in berval format */\r
-                               /* convert an array of pointers to bervals to an array of bervals */\r
-                               rc = bvptr2obj(pMod->mod_bvalues, &bv);\r
-                               if (rc != LDAP_SUCCESS) goto cleanup;\r
-                               tmp.sml_type.bv_val = slapi_ch_strdup(pMod->mod_type);\r
-                               tmp.sml_type.bv_len = slapi_ch_stlen(pMod->mod_type);\r
-                               tmp.sml_bvalues = bv;\r
-               \r
-                               mod  = (Modifications *) ch_malloc( sizeof(Modifications) );\r
-\r
-                               mod->sml_op = LDAP_MOD_ADD;\r
-                               mod->sml_next = NULL;\r
-                               mod->sml_desc = NULL;\r
-                               mod->sml_type = tmp.sml_type;\r
-                               mod->sml_bvalues = tmp.sml_bvalues;\r
-\r
-                               *modtail = mod;\r
-                               modtail = &mod->sml_next;\r
-\r
-                       } else {\r
-                               /* attr values are in string format, need to be converted */\r
-                               /* to an array of bervals */ \r
-                               if ( pMod->mod_values == NULL ) {\r
-                                       rc = LDAP_OTHER;\r
-                               } else {\r
-                                       rc = ValuesToBValues( pMod->mod_values, &ppBV );\r
-                                       if (rc != LDAP_SUCCESS) goto cleanup;\r
-                                       rc = bvptr2obj(ppBV, &bv);\r
-                                       if (rc != LDAP_SUCCESS) goto cleanup;\r
-                                       tmp.sml_type.bv_val = slapi_ch_strdup(pMod->mod_type);\r
-                                       tmp.sml_type.bv_len = slapi_ch_stlen(pMod->mod_type);\r
-                                       tmp.sml_bvalues = bv;\r
-               \r
-                                       mod  = (Modifications *) ch_malloc( sizeof(Modifications) );\r
-\r
-                                       mod->sml_op = LDAP_MOD_ADD;\r
-                                       mod->sml_next = NULL;\r
-                                       mod->sml_desc = NULL;\r
-                                       mod->sml_type = tmp.sml_type;\r
-                                       mod->sml_bvalues = tmp.sml_bvalues;\r
-\r
-                                       *modtail = mod;\r
-                                       modtail = &mod->sml_next;\r
-\r
-                                       if ( ppBV != NULL ) {\r
-                                               ber_bvecfree( ppBV );\r
-                                       }\r
-                               }\r
-                       }\r
-               } /* for each LDAPMod */\r
-       }\r
-\r
-       be = select_backend(&dn, 0, 0);\r
-       if ( be == NULL ) {\r
-               rc =  LDAP_PARTIAL_RESULTS;\r
-               goto cleanup;\r
-       }\r
-\r
-       if ( be ) {\r
-               int repl_user = be_isupdate(be, &be->be_rootdn );\r
-               if ( !be->be_update_ndn.bv_len || repl_user ) {\r
-                       int update = be->be_update_ndn.bv_len;\r
-                       char textbuf[SLAP_TEXT_BUFLEN];\r
-                       size_t textlen = sizeof textbuf;\r
-\r
-                       rc = slap_mods_check( modlist, update, &text, \r
-                                       textbuf, textlen );\r
-                       if ( rc != LDAP_SUCCESS) {\r
-                               goto cleanup;\r
-                       }\r
-\r
-                       if ( !repl_user ) {\r
-                               rc = slap_mods_opattrs( be, op,\r
-                                               modlist, modtail, &text, \r
-                                               textbuf, textlen );\r
-                               if ( rc != LDAP_SUCCESS) {\r
-                                       goto cleanup;\r
-                               }\r
-                       }\r
-\r
-                       /*\r
-                        * FIXME: slap_mods2entry is declared static \r
-                        * in servers/slapd/add.c\r
-                        */\r
-                       rc = slap_mods2entry( modlist, &pEntry, repl_user,\r
-                                       &text, textbuf, textlen );\r
-                       if (rc != LDAP_SUCCESS) {\r
-                               goto cleanup;\r
-                       }\r
-\r
-               } else {\r
-                       rc = LDAP_REFERRAL;\r
-               }\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-\r
-       if ( dn.bv_val ) slapi_ch_free( (void **)&dn.bv_val );\r
-       if ( op ) slapi_ch_free( (void **)&op );\r
-       if ( modlist != NULL ) slap_mods_free( modlist );\r
-       if ( rc != LDAP_SUCCESS ) {\r
-               if ( pEntry != NULL ) {\r
-                       slapi_entry_free( pEntry );\r
-               }\r
-               pEntry = NULL;\r
-       }\r
-\r
-       return( pEntry );\r
-}\r
-\r
-/* Function : slapi_delete_internal\r
- *\r
- * Description : Plugin functions call this routine to delete an entry \r
- *               in the backend directly\r
- * Return values : LDAP_SUCCESS\r
- *                 LDAP_PARAM_ERROR\r
- *                 LDAP_NO_MEMORY\r
- *                 LDAP_OTHER\r
- *                 LDAP_UNWILLING_TO_PERFORM\r
-*/\r
-Slapi_PBlock *\r
-slapi_delete_internal(\r
-       char *ldn, \r
-       LDAPControl **controls, \r
-       int log_change )\r
-{\r
-#if defined(LDAP_SLAPI)\r
-       Backend                 *be;\r
-       Connection              *pConn = NULL;\r
-       Operation               *op = NULL;\r
-       Slapi_PBlock            *pPB = NULL;\r
-       Slapi_PBlock            *pSavePB = NULL;\r
-\r
-       struct berval dn  = { 0, NULL };\r
-       struct berval pdn = { 0, NULL };\r
-       struct berval ndn = { 0, NULL };\r
-\r
-       int                             rc=LDAP_SUCCESS;\r
-       int                             manageDsaIt = 0;\r
-       int                             isCritical;\r
-\r
-       if ( ldn == NULL ) {\r
-               rc = LDAP_PARAM_ERROR; \r
-               goto cleanup;\r
-       }\r
-\r
-       pConn = fakeConnection( NULL,  LDAP_REQ_DELETE );\r
-       if (pConn == NULL) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }\r
-\r
-       op = (Operation *)pConn->c_pending_ops.stqh_first;\r
-       pPB = (Slapi_PBlock *)op->o_pb;\r
-       op->o_ctrls = controls;\r
-\r
-       dn.bv_val = slapi_ch_strdup(ldn);\r
-       dn.bv_len = slapi_strlen(ldn);\r
-       rc = dnPrettyNormal( NULL, &dn, &pdn, &ndn );\r
-       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-\r
-       if ( slapi_control_present( controls, \r
-                       SLAPI_CONTROL_MANAGEDSAIT_OID, NULL, &isCritical) ) {\r
-               manageDsaIt = 1; \r
-       }\r
-\r
-       be = select_backend( &dn, manageDsaIt, 0 );\r
-       if ( be == NULL ) {\r
-               rc =  LDAP_PARTIAL_RESULTS;\r
-               goto cleanup;\r
-       }\r
-\r
-       op->o_ndn.bv_val = slapi_ch_strdup(be->be_rootdn.bv_val);\r
-       op->o_ndn.bv_len = be->be_rootdn.bv_len;\r
-       pConn->c_dn.bv_val = slapi_ch_strdup(be->be_rootdn.bv_val);\r
-       pConn->c_dn.bv_len = be->be_rootdn.bv_len;\r
-\r
-       suffix_alias( be, &ndn );\r
-\r
-       if ( be->be_delete ) {\r
-               int repl_user = be_isupdate( be, &op->o_ndn );\r
-               if ( !be->be_update_ndn.bv_len || repl_user ) {\r
-                       rc = (*be->be_delete)( be, pConn, op, &pdn, &ndn );\r
-                       if ( rc == 0 ) {\r
-                               if (log_change) {\r
-                                       replog( be, op, &pdn, &ndn, NULL );\r
-                               }\r
-                               rc = LDAP_SUCCESS;\r
-                       } else {\r
-                               rc = LDAP_OPERATIONS_ERROR;\r
-                       }\r
-               } else {\r
-                       rc = LDAP_REFERRAL;\r
-               }\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-       if (pPB != NULL) \r
-               slapi_pblock_set( pPB, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-\r
-       if (dn.bv_val) slapi_ch_free( (void **)&dn.bv_val );\r
-       if (pdn.bv_val) slapi_ch_free( (void **)&pdn.bv_val );\r
-       if (ndn.bv_val) slapi_ch_free( (void **)&ndn.bv_val );\r
-\r
-       if ( pConn != NULL ) {\r
-               if ( pConn->c_sb != NULL ) ber_sockbuf_free( pConn->c_sb );\r
-               if ( pConn->c_dn.bv_val ) slapi_ch_free( (void **)&pConn->c_dn.bv_val );\r
-               if ( op->o_dn.bv_val ) slapi_ch_free( (void **)&op->o_dn.bv_val );\r
-               if ( op ) slapi_ch_free( (void **)&op );\r
-               pSavePB = pPB;\r
-               free( pConn );\r
-       }\r
-       \r
-       return (pSavePB);\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-Slapi_PBlock * \r
-slapi_add_entry_internal(\r
-       Slapi_Entry *e, \r
-       LDAPControl **controls, \r
-       int log_changes ) \r
-{\r
-#if defined(LDAP_SLAPI)\r
-       Connection              *pConn = NULL;\r
-       Operation               *op = NULL;\r
-       Slapi_PBlock            *pPB = NULL, *pSavePB = NULL;\r
-       Backend                 *be;\r
-\r
-       int                     manageDsaIt = 0;\r
-       int                     isCritical;\r
-       int                     rc = LDAP_SUCCESS;\r
-\r
-       if ( e == NULL ) {\r
-               rc = LDAP_PARAM_ERROR;\r
-               goto cleanup;\r
-       }\r
-       \r
-       pConn = fakeConnection( NULL, LDAP_REQ_ADD );\r
-       if ( pConn == NULL ) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }\r
-\r
-       if ( slapi_control_present( controls, LDAP_CONTROL_MANAGEDSAIT,\r
-                               NULL, &isCritical ) ) {\r
-               manageDsaIt = 1; \r
-       }\r
-\r
-       op = (Operation *)pConn->c_pending_ops.stqh_first;\r
-       pPB = (Slapi_PBlock *)op->o_pb;\r
-       op->o_ctrls = controls;\r
-\r
-       be = select_backend( &e->e_nname, manageDsaIt, 0 );\r
-       if ( be == NULL ) {\r
-               rc = LDAP_PARTIAL_RESULTS;\r
-               goto cleanup;\r
-       }\r
-\r
-       op->o_ndn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       op->o_ndn.bv_len = be->be_rootdn.bv_len;\r
-       pConn->c_dn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       pConn->c_dn.bv_len = be->be_rootdn.bv_len;\r
-\r
-       if ( be->be_add ) {\r
-               int repl_user = be_isupdate( be, &op->o_ndn );\r
-               if ( !be->be_update_ndn.bv_len || repl_user ){\r
-                       if ( (*be->be_add)( be, pConn, op, e ) == 0 ) {\r
-                               if ( log_changes ) {\r
-                                       replog( be, op, &e->e_name, \r
-                                                       &e->e_nname, e );\r
-                               }\r
-                               rc = LDAP_SUCCESS;\r
-                       }\r
-               } else {\r
-                       rc = LDAP_REFERRAL;\r
-               }\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-\r
-       if ( pPB != NULL ) {\r
-               slapi_pblock_set( pPB, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-       }\r
-\r
-       if ( pConn != NULL ) {\r
-               if ( pConn->c_sb != NULL ) ber_sockbuf_free( pConn->c_sb );\r
-               if ( pConn->c_dn.bv_val ) slapi_ch_free( (void **)&pConn->c_dn.bv_val );\r
-               if ( op ) {\r
-                       if ( op->o_ndn.bv_val ) {\r
-                               slapi_ch_free( (void **)&op->o_ndn.bv_val );\r
-                       }\r
-                       free(op);\r
-               }\r
-               pSavePB = pPB;\r
-               free( pConn );\r
-       }\r
-       return( pSavePB );\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-\r
-Slapi_PBlock *\r
-slapi_add_internal(\r
-       char *dn, \r
-       LDAPMod **mods, \r
-       LDAPControl **controls, \r
-       int log_changes  ) \r
-{\r
-#if defined(LDAP_SLAPI)\r
-       LDAPMod                 *pMod = NULL;\r
-       Slapi_PBlock            *pb = NULL;\r
-       Entry                   *pEntry = NULL;\r
-       int                     i, rc=LDAP_SUCCESS;\r
-\r
-       if ( mods == NULL || *mods == NULL || dn == NULL || *dn == '\0' ) {\r
-               rc = LDAP_PARAM_ERROR ;\r
-       }\r
-\r
-       if ( rc == LDAP_SUCCESS ) {\r
-               for ( i = 0, pMod = mods[0]; pMod != NULL; pMod = mods[++i] ) {\r
-                       if ( (pMod->mod_op & ~LDAP_MOD_BVALUES) != LDAP_MOD_ADD ) {\r
-                               rc = LDAP_OTHER;\r
-                               break;\r
-                       }\r
-               }\r
-       }\r
-\r
-       if ( rc == LDAP_SUCCESS ) {\r
-               if((pEntry = LDAPModToEntry( dn, mods )) == NULL) {\r
-                       rc = LDAP_OTHER;\r
-               }\r
-       }\r
-\r
-       if ( rc != LDAP_SUCCESS ) {\r
-               pb = slapi_pblock_new();\r
-               slapi_pblock_set( pb, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-       } else {\r
-               pb = slapi_add_entry_internal( pEntry, controls, log_changes );\r
-       }\r
-\r
-       if ( pEntry ) {\r
-               slapi_entry_free(pEntry);\r
-       }\r
-\r
-       return(pb);\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-/* Function : slapi_modrdn_internal\r
- *\r
- * Description : Plugin functions call this routine to modify the rdn \r
- *                              of an entry in the backend directly\r
- * Return values : LDAP_SUCCESS\r
- *                 LDAP_PARAM_ERROR\r
- *                 LDAP_OPERATIONS_ERROR\r
- *                 LDAP_NO_MEMORY\r
- *                 LDAP_OTHER\r
- *                 LDAP_UNWILLING_TO_PERFORM\r
- *\r
- * NOTE: This function does not support the "newSuperior" option from LDAP V3.\r
- */\r
-Slapi_PBlock *\r
-slapi_modrdn_internal(\r
-       char *olddn, \r
-       char *lnewrdn, \r
-       int deloldrdn, \r
-       LDAPControl **controls, \r
-       int log_change )\r
-{\r
-#if defined(LDAP_SLAPI)\r
-       int                     rc = LDAP_SUCCESS;\r
-\r
-       struct berval           dn = { 0, NULL };\r
-       struct berval           pdn = { 0, NULL };\r
-       struct berval           ndn = { 0, NULL };\r
-\r
-       struct berval           newrdn = { 0, NULL };\r
-       struct berval           pnewrdn = { 0, NULL };\r
-       struct berval           nnewrdn = { 0, NULL };\r
-\r
-#if 0 /* currently unused */\r
-       struct berval           newSuperior = { 0, NULL };\r
-#endif\r
-       struct berval           pnewSuperior = { 0, NULL }; \r
-#if 0 /* currently unused */\r
-       struct berval           nnewSuperior = { 0, NULL }; \r
-#endif\r
-\r
-       struct berval           *pnewS = NULL;\r
-       struct berval           *nnewS = NULL;\r
-\r
-       Connection              *pConn = NULL;\r
-       Operation               *op = NULL;\r
-       Slapi_PBlock            *pPB = NULL;\r
-       Slapi_PBlock            *pSavePB = NULL;\r
-\r
-       Backend                 *be;\r
-#if 0 /* currently unused */\r
-       Backend                 *newSuperior_be = NULL;\r
-#endif\r
-\r
-       int                     manageDsaIt = 0;\r
-       int                     isCritical;\r
-#if 0 /* currently unused */\r
-       const char              *text = NULL;\r
-#endif\r
-\r
-       dn.bv_val = slapi_ch_strdup(olddn);\r
-       dn.bv_len = slapi_ch_stlen(olddn);\r
-\r
-       rc = dnPrettyNormal( NULL, &dn, &pdn, &ndn );\r
-\r
-       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-\r
-       if ( ndn.bv_len == 0 ) {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-               goto cleanup;\r
-       }\r
-\r
-       newrdn.bv_val = slapi_ch_strdup( lnewrdn );\r
-       newrdn.bv_len = slapi_ch_stlen( lnewrdn );\r
-\r
-       rc = dnPrettyNormal( NULL, &newrdn, &pnewrdn, &nnewrdn );\r
-\r
-       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-\r
-       if ( rdnValidate( &pnewrdn ) != LDAP_SUCCESS ) goto cleanup;\r
-\r
-       pConn = fakeConnection( NULL,  LDAP_REQ_MODRDN);\r
-       if ( pConn == NULL) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }\r
-\r
-       op = (Operation *)pConn->c_pending_ops.stqh_first;\r
-       pPB = (Slapi_PBlock *)op->o_pb;\r
-       op->o_ctrls = controls;\r
-\r
-       if ( slapi_control_present( controls, \r
-                       SLAPI_CONTROL_MANAGEDSAIT_OID, NULL, &isCritical ) ) {\r
-               manageDsaIt = 1;\r
-       }\r
-\r
-       be = select_backend( &dn, manageDsaIt, 0 );\r
-       if ( be == NULL ) {\r
-               rc =  LDAP_PARTIAL_RESULTS;\r
-               goto cleanup;\r
-       }\r
-\r
-       op->o_ndn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       op->o_ndn.bv_len = be->be_rootdn.bv_len;\r
-       pConn->c_dn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       pConn->c_dn.bv_len = be->be_rootdn.bv_len;\r
-\r
-       suffix_alias( be, &ndn );\r
-\r
-       if ( be->be_modrdn ) {\r
-               int repl_user = be_isupdate( be, &op->o_ndn );\r
-               if ( !be->be_update_ndn.bv_len || repl_user ) {\r
-                       rc = (*be->be_modrdn)( be, pConn, op, &pdn, &ndn,\r
-                                       &pnewrdn, &nnewrdn, deloldrdn, pnewS,\r
-                                       nnewS );\r
-                       if ( rc == 0 ) {\r
-                               struct slap_replog_moddn moddn;\r
-                               moddn.newrdn = &pnewrdn;\r
-                               moddn.deloldrdn = deloldrdn;\r
-                               moddn.newsup = &pnewSuperior;\r
-                               if ( log_change ) {\r
-                                       replog( be, op, &pdn, &ndn, &moddn );\r
-                               }\r
-                               rc = LDAP_SUCCESS;\r
-\r
-                       } else {\r
-                               rc = LDAP_OPERATIONS_ERROR;\r
-                       }\r
-\r
-               } else {\r
-                       rc = LDAP_REFERRAL;\r
-               }\r
-\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-\r
-       if ( pPB != NULL ) {\r
-               slapi_pblock_set( pPB, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-       }\r
-       \r
-       if ( dn.bv_val ) ch_free( dn.bv_val );\r
-       if ( pdn.bv_val ) ch_free( pdn.bv_val );\r
-       if ( ndn.bv_val ) ch_free( ndn.bv_val );\r
-\r
-       if ( newrdn.bv_val ) ch_free( newrdn.bv_val );\r
-       if ( pnewrdn.bv_val ) ch_free( newrdn.bv_val );\r
-       if ( nnewrdn.bv_val ) ch_free( newrdn.bv_val );\r
-\r
-       if ( pConn != NULL ) {\r
-               if ( pConn->c_sb != NULL ) ber_sockbuf_free( pConn->c_sb );\r
-               if ( pConn->c_dn.bv_val ) slapi_ch_free( (void **)&pConn->c_dn.bv_val );\r
-               if ( op ) {\r
-                       if ( op->o_dn.bv_val ) slapi_ch_free( (void **)&op->o_dn.bv_val );\r
-                       slapi_ch_free( (void **)&op );\r
-               }\r
-               pSavePB = pPB;\r
-               free( pConn );\r
-       }\r
-\r
-       return( pSavePB );\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-/* Function : slapi_modify_internal\r
- *\r
- * Description:        Plugin functions call this routine to modify an entry \r
- *                             in the backend directly\r
- * Return values : LDAP_SUCCESS\r
- *                 LDAP_PARAM_ERROR\r
- *                 LDAP_NO_MEMORY\r
- *                 LDAP_OPERATIONS_ERROR\r
- *                 LDAP_OTHER\r
- *                 LDAP_UNWILLING_TO_PERFORM\r
-*/\r
-Slapi_PBlock *\r
-slapi_modify_internal(\r
-       char *ldn,      \r
-       LDAPMod **mods, \r
-       LDAPControl **controls, \r
-       int log_change )\r
-{\r
-#if defined(LDAP_SLAPI)\r
-       int                     i, rc = LDAP_SUCCESS;\r
-       Connection              *pConn = NULL;\r
-       Operation               *op = NULL;\r
-       Slapi_PBlock            *pPB = NULL;\r
-       Slapi_PBlock            *pSavePB = NULL;\r
-\r
-       struct berval dn = { 0, NULL };\r
-       struct berval pdn = { 0, NULL };\r
-       struct berval ndn = { 0, NULL };\r
-\r
-       int                     manageDsaIt = 0;\r
-       int                     isCritical;\r
-       Backend                 *be;\r
-       struct berval           *bv;\r
-       struct berval           **ppBV;\r
-       LDAPMod                 *pMod;\r
-\r
-       Modifications           *modlist = NULL;\r
-       Modifications           **modtail = &modlist;\r
-       Modifications           tmp;\r
-\r
-       if ( mods == NULL || *mods == NULL || ldn == NULL ) {\r
-               rc = LDAP_PARAM_ERROR ;\r
-               goto cleanup;\r
-       }\r
-\r
-       pConn = fakeConnection( NULL,  LDAP_REQ_MODIFY );\r
-       if ( pConn == NULL ) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }\r
-\r
-       op = (Operation *)pConn->c_pending_ops.stqh_first;\r
-       pPB = (Slapi_PBlock *)op->o_pb;\r
-       op->o_ctrls = controls;\r
-\r
-       dn.bv_val = slapi_ch_strdup( ldn );\r
-       dn.bv_len = slapi_strlen( ldn );\r
-       rc = dnPrettyNormal( NULL, &dn, &pdn, &ndn );\r
-       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-\r
-       if ( slapi_control_present( controls, \r
-                       SLAPI_CONTROL_MANAGEDSAIT_OID, NULL, &isCritical ) ) {\r
-               manageDsaIt = 1;\r
-       }\r
-\r
-       be = select_backend( &dn, manageDsaIt, 0 );\r
-       if ( be == NULL ) {\r
-               rc =  LDAP_PARTIAL_RESULTS;\r
-               goto cleanup;\r
-       }\r
-\r
-       op->o_ndn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       op->o_ndn.bv_len = be->be_rootdn.bv_len;\r
-       pConn->c_dn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       pConn->c_dn.bv_len = be->be_rootdn.bv_len;\r
-\r
-       suffix_alias( be, &ndn );\r
-\r
-       for ( i = 0, pMod = mods[0]; rc == LDAP_SUCCESS && pMod != NULL; \r
-                       pMod = mods[++i] ) {\r
-               Modifications *mod;\r
-               if ( (pMod->mod_op & LDAP_MOD_BVALUES) != 0 ) {\r
-                       /*\r
-                        * attr values are in berval format\r
-                        * convert an array of pointers to bervals\r
-                        * to an array of bervals\r
-                        */\r
-                       rc = bvptr2obj( pMod->mod_bvalues, &bv );\r
-                       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-                       tmp.sml_type.bv_val = slapi_ch_strdup( pMod->mod_type );\r
-                       tmp.sml_type.bv_len = slapi_ch_stlen( pMod->mod_type );\r
-                       tmp.sml_bvalues = bv;\r
-\r
-                       mod  = (Modifications *)ch_malloc( sizeof(Modifications) );\r
-\r
-                       mod->sml_op = pMod->mod_op;\r
-                       mod->sml_next = NULL;\r
-                       mod->sml_desc = NULL;\r
-                       mod->sml_type = tmp.sml_type;\r
-                       mod->sml_bvalues = tmp.sml_bvalues;\r
-               } else { \r
-                       rc = ValuesToBValues( pMod->mod_values, &ppBV );\r
-                       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-                       rc = bvptr2obj( ppBV, &bv );\r
-                       if ( rc != LDAP_SUCCESS ) goto cleanup;\r
-                       tmp.sml_type.bv_val = slapi_ch_strdup( pMod->mod_type );\r
-                       tmp.sml_type.bv_len = slapi_ch_stlen( pMod->mod_type );\r
-                       tmp.sml_bvalues = bv;\r
-\r
-                       mod  = (Modifications *) ch_malloc( sizeof(Modifications) );\r
-\r
-                       mod->sml_op = pMod->mod_op;\r
-                       mod->sml_next = NULL;\r
-                       mod->sml_desc = NULL;\r
-                       mod->sml_type = tmp.sml_type;\r
-                       mod->sml_bvalues = tmp.sml_bvalues;\r
-\r
-                       if ( ppBV != NULL ) {\r
-                               ber_bvecfree( ppBV );\r
-                       }\r
-               }\r
-               *modtail = mod;\r
-               modtail = &mod->sml_next;\r
-\r
-               switch( pMod->mod_op ) {\r
-               case LDAP_MOD_ADD:\r
-               if ( mod->sml_bvalues == NULL ) {\r
-                       rc = LDAP_PROTOCOL_ERROR;\r
-                       goto cleanup;\r
-               }\r
-\r
-               /* fall through */\r
-               case LDAP_MOD_DELETE:\r
-               case LDAP_MOD_REPLACE:\r
-               break;\r
-\r
-               default:\r
-                       rc = LDAP_PROTOCOL_ERROR;\r
-                       goto cleanup;\r
-               }\r
-       } \r
-       *modtail = NULL;\r
-\r
-       if ( ndn.bv_len == 0 ) {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-               goto cleanup;\r
-       }\r
-\r
-       if ( be->be_modify ) {\r
-               int repl_user = be_isupdate( be, &op->o_ndn );\r
-               if ( !be->be_update_ndn.bv_len || repl_user ) {\r
-                       int update = be->be_update_ndn.bv_len;\r
-                       const char *text = NULL;\r
-                       char textbuf[SLAP_TEXT_BUFLEN];\r
-                       size_t textlen = sizeof( textbuf );\r
-\r
-                       rc = slap_mods_check( modlist, update,\r
-                                       &text, textbuf, textlen );\r
-                       if (rc != LDAP_SUCCESS) {\r
-                               goto cleanup;\r
-                       }\r
-\r
-                       if ( !repl_user ) {\r
-                               rc = slap_mods_opattrs( be, op, modlist,\r
-                                               modtail, &text, textbuf, \r
-                                               textlen );\r
-                               if (rc != LDAP_SUCCESS) {\r
-                                       goto cleanup;\r
-                               }\r
-                       }\r
-                       rc = (*be->be_modify)( be, pConn, op,\r
-                                       &pdn, &ndn, modlist );\r
-                       if ( rc == 0 ) {\r
-                               if ( log_change ) {\r
-                                       replog( be, op, &pdn, &ndn, modlist );\r
-                               }\r
-                               rc = LDAP_SUCCESS;\r
-                       } else {\r
-                               rc = LDAP_OPERATIONS_ERROR;\r
-                       }\r
-               } else {\r
-                       rc = LDAP_REFERRAL;\r
-               }\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-\r
-       if ( pPB != NULL ) \r
-               slapi_pblock_set( pPB, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-\r
-       if ( dn.bv_val ) ch_free( dn.bv_val );\r
-       if ( pdn.bv_val ) ch_free( pdn.bv_val );\r
-       if ( ndn.bv_val ) ch_free( ndn.bv_val );\r
-\r
-       if ( modlist != NULL ) slap_mods_free( modlist );\r
-\r
-       if ( pConn != NULL ) {\r
-               if ( pConn->c_sb != NULL ) ber_sockbuf_free( pConn->c_sb );\r
-               if ( pConn->c_dn.bv_val ) slapi_ch_free( (void **)&pConn->c_dn.bv_val );\r
-               if ( op ) {\r
-                       if ( op->o_dn.bv_val ) slapi_ch_free( (void **)&op->o_dn.bv_val );\r
-                       slapi_ch_free( (void **)&op );\r
-               }\r
-               pSavePB = pPB;\r
-               free( pConn );\r
-       }\r
-\r
-       return ( pSavePB );\r
-\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-Slapi_PBlock *\r
-slapi_search_internal_bind(\r
-       char *bindDN, \r
-       char *ldn, \r
-       int scope, \r
-       char *filStr, \r
-       LDAPControl **controls, \r
-       char **attrs, \r
-       int attrsonly ) \r
-{      \r
-#if defined(LDAP_SLAPI)\r
-       Backend                 *be;\r
-       Connection              *c;\r
-       Operation               *op = NULL;\r
-       Slapi_PBlock            *ptr = NULL;            \r
-       Slapi_PBlock            *pSavePB = NULL;                \r
-       struct berval           dn = { 0, NULL };\r
-       struct berval           pdn = { 0, NULL };\r
-       struct berval           ndn = { 0, NULL };\r
-       Filter                  *filter=NULL;\r
-       struct berval           fstr = { 0, NULL };\r
-       AttributeName           *an = NULL;\r
-       const char              *text = NULL;\r
-\r
-       int                     deref=0;\r
-       int                     sizelimit=-1, timelimit=-1;\r
-\r
-       int                     manageDsaIt = 0; \r
-       int                     isCritical;\r
-\r
-       int                     i, rc = LDAP_SUCCESS;\r
-       \r
-       c = fakeConnection( NULL, LDAP_REQ_SEARCH );\r
-       if (c == NULL) {\r
-               rc = LDAP_NO_MEMORY;\r
-               goto cleanup;\r
-       }\r
-\r
-       op = (Operation *)c->c_pending_ops.stqh_first;\r
-       ptr = (Slapi_PBlock *)op->o_pb;\r
-       op->o_ctrls = controls;\r
-\r
-       dn.bv_val = slapi_ch_strdup(ldn);\r
-       dn.bv_len = slapi_strlen(ldn);\r
-\r
-       rc = dnPrettyNormal( NULL, &dn, &pdn, &ndn );\r
-       if (rc != LDAP_SUCCESS) goto cleanup;\r
-\r
-       if ( scope != LDAP_SCOPE_BASE && \r
-                       scope != LDAP_SCOPE_ONELEVEL && \r
-                       scope != LDAP_SCOPE_SUBTREE ) {\r
-               rc = LDAP_PROTOCOL_ERROR;\r
-               goto cleanup;\r
-       }\r
-\r
-       filter = slapi_str2filter(filStr);\r
-       if ( filter == NULL ) {\r
-               rc = LDAP_PROTOCOL_ERROR;\r
-               goto cleanup;\r
-       }\r
-\r
-       filter2bv( filter, &fstr );\r
-\r
-       for ( i = 0; attrs != NULL && attrs[i] != NULL; i++ ) {\r
-               ; /* count the number of attributes */\r
-       }\r
-\r
-       if (i > 0) {\r
-               an = (AttributeName *)slapi_ch_calloc(1, sizeof(AttributeName));\r
-               for (i = 0; attrs[i] != 0; i++) {\r
-                       an[i].an_desc = NULL;\r
-                       an[i].an_oc = NULL;\r
-                       an[i].an_name.bv_val = slapi_ch_strdup(attrs[i]);\r
-                       an[i].an_name.bv_len = slapi_strlen(attrs[i]);\r
-                       slap_bv2ad( &an[i].an_name, &an[i].an_desc, &text );\r
-               }\r
-       }\r
-\r
-       if ( scope == LDAP_SCOPE_BASE ) {\r
-               Entry *entry = NULL;\r
-\r
-               if ( ndn.bv_len == 0 ) {\r
-                       rc = root_dse_info( c, &entry, &text );\r
-               }\r
-\r
-               if( rc != LDAP_SUCCESS ) {\r
-                       send_ldap_result( c, op, rc, NULL, text, NULL, NULL );\r
-                       goto cleanup;\r
-               } else if ( entry != NULL ) {\r
-                       rc = test_filter( NULL, c, op, entry, filter );\r
-\r
-                       if( rc == LDAP_COMPARE_TRUE ) {\r
-                               send_search_entry( NULL, c, op, entry,\r
-                                               an, attrsonly, NULL );\r
-                       }\r
-\r
-                       entry_free( entry );\r
-\r
-                       send_ldap_result( c, op, LDAP_SUCCESS, \r
-                                       NULL, NULL, NULL, NULL );\r
-\r
-                       rc = LDAP_SUCCESS;\r
-\r
-                       goto cleanup;\r
-               }\r
-       }\r
-\r
-       if ( !ndn.bv_len && default_search_nbase.bv_len ) {\r
-               ch_free( pdn.bv_val );\r
-               ch_free( ndn.bv_val );\r
-\r
-               ber_dupbv( &pdn, &default_search_base );\r
-               ber_dupbv( &ndn, &default_search_nbase );\r
-       }\r
-\r
-       if ( slapi_control_present( controls,\r
-                       LDAP_CONTROL_MANAGEDSAIT, NULL, &isCritical ) ) {\r
-               manageDsaIt = 1;\r
-       }\r
-\r
-       be = select_backend( &ndn, manageDsaIt, 0 );\r
-       if ( be == NULL ) {\r
-               if ( manageDsaIt == 1 ) {\r
-                       rc = LDAP_NO_SUCH_OBJECT;\r
-               } else {\r
-                       rc = LDAP_PARTIAL_RESULTS;\r
-               }\r
-               goto cleanup;\r
-       } \r
-\r
-       op->o_ndn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       op->o_ndn.bv_len = be->be_rootdn.bv_len;\r
-       c->c_dn.bv_val = slapi_ch_strdup( be->be_rootdn.bv_val );\r
-       c->c_dn.bv_len = be->be_rootdn.bv_len;\r
-\r
-       if ( be->be_search ) {\r
-               rc = (*be->be_search)( be, c, op, &pdn, &ndn,\r
-                       scope, deref, sizelimit, timelimit,\r
-                       filter, &fstr, an, attrsonly );\r
-               if ( rc == 0 ) {\r
-                       rc = LDAP_SUCCESS;\r
-               } else {\r
-                       rc = LDAP_OPERATIONS_ERROR;\r
-               }\r
-       } else {\r
-               rc = LDAP_UNWILLING_TO_PERFORM;\r
-       }\r
-\r
-cleanup:\r
-\r
-       if ( ptr != NULL )\r
-               slapi_pblock_set( ptr, SLAPI_PLUGIN_INTOP_RESULT, (void *)rc );\r
-\r
-       if ( dn.bv_val ) free( dn.bv_val );\r
-       if ( ndn.bv_val ) free( ndn.bv_val );\r
-       if ( pdn.bv_val ) free( pdn.bv_val );\r
-\r
-       if ( filter ) slapi_filter_free( filter, 1 );\r
-       if ( fstr.bv_val ) free ( fstr.bv_val );\r
-\r
-       if ( an != NULL ) free( an );\r
-\r
-       if ( c != NULL ) {\r
-               if ( c->c_sb != NULL ) ber_sockbuf_free( c->c_sb );\r
-               if ( c->c_dn.bv_val ) slapi_ch_free( (void **)&c->c_dn.bv_val );\r
-               if ( op ) {\r
-                       if ( op->o_ndn.bv_val ) slapi_ch_free( (void **)&op->o_ndn.bv_val );\r
-                       free( op );\r
-               }\r
-               pSavePB = ptr;\r
-               free( c );\r
-       }\r
-       return( pSavePB );\r
-#endif /* LDAP_SLAPI */\r
-       return NULL;\r
-}\r
-\r
-Slapi_PBlock * \r
-slapi_search_internal(\r
-       char *base,\r
-       int scope,\r
-       char *filStr, \r
-       LDAPControl **controls,\r
-       char **attrs,\r
-       int attrsonly ) \r
-{\r
-#if defined(LDAP_SLAPI)\r
-       return slapi_search_internal_bind( NULL, base, scope, filStr,\r
-                       controls, attrs, attrsonly );\r
-#else\r
-       return NULL;\r
-#endif /* LDAP_SLAPI */\r
-}\r
-\r
+/* $OpenLDAP$ */
+/* This work is part of OpenLDAP Software <http://www.openldap.org/>.
+ *
+ * Copyright 2002-2008 The OpenLDAP Foundation.
+ * Portions Copyright 1997,2002-2003 IBM Corporation.
+ * All rights reserved.
+ *
+ * Redistribution and use in source and binary forms, with or without
+ * modification, are permitted only as authorized by the OpenLDAP
+ * Public License.
+ *
+ * A copy of this license is available in the file LICENSE in the
+ * top-level directory of the distribution or, alternatively, at
+ * <http://www.OpenLDAP.org/license.html>.
+ */
+/* ACKNOWLEDGEMENTS:
+ * This work was initially developed by IBM Corporation for use in
+ * IBM products and subsequently ported to OpenLDAP Software by
+ * Steve Omrani.  Additional significant contributors include:
+ *   Luke Howard
+ */
+
+#include "portable.h"
+
+#include <ac/string.h>
+#include <ac/stdarg.h>
+#include <ac/ctype.h>
+#include <ac/unistd.h>
+
+#include <slap.h>
+#include <lber_pvt.h>
+#include <slapi.h>
+
+#ifdef LDAP_SLAPI
+
+static struct slap_listener slapi_listener = {
+       BER_BVC("slapi://"),
+       BER_BVC("slapi://")
+};
+
+static LDAPControl **
+slapi_int_dup_controls( LDAPControl **controls )
+{
+       LDAPControl **c;
+       size_t i;
+
+       if ( controls == NULL )
+               return NULL;
+
+       for ( i = 0; controls[i] != NULL; i++ )
+               ;
+
+       c = (LDAPControl **) slapi_ch_calloc( i + 1, sizeof(LDAPControl *) );
+
+       for ( i = 0; controls[i] != NULL; i++ ) {
+               c[i] = slapi_dup_control( controls[i] );
+       }
+
+       return c;
+}
+
+static int
+slapi_int_result(
+       Operation       *op, 
+       SlapReply       *rs )
+{
+       Slapi_PBlock            *pb = SLAPI_OPERATION_PBLOCK( op );
+       plugin_result_callback  prc = NULL;
+       void                    *callback_data = NULL;
+       LDAPControl             **ctrls = NULL;
+
+       assert( pb != NULL );   
+
+       slapi_pblock_get( pb, SLAPI_X_INTOP_RESULT_CALLBACK, (void **)&prc );
+       slapi_pblock_get( pb, SLAPI_X_INTOP_CALLBACK_DATA,   &callback_data );
+
+       /* we need to duplicate controls because they might go out of scope */
+       ctrls = slapi_int_dup_controls( rs->sr_ctrls );
+       slapi_pblock_set( pb, SLAPI_RESCONTROLS, ctrls );
+
+       if ( prc != NULL ) {
+               (*prc)( rs->sr_err, callback_data );
+       }
+
+       return rs->sr_err;
+}
+
+static int
+slapi_int_search_entry(
+       Operation       *op,
+       SlapReply       *rs )
+{
+       Slapi_PBlock                    *pb = SLAPI_OPERATION_PBLOCK( op );
+       plugin_search_entry_callback    psec = NULL;
+       void                            *callback_data = NULL;
+       int                             rc = LDAP_SUCCESS;
+
+       assert( pb != NULL );
+
+       slapi_pblock_get( pb, SLAPI_X_INTOP_SEARCH_ENTRY_CALLBACK, (void **)&psec );
+       slapi_pblock_get( pb, SLAPI_X_INTOP_CALLBACK_DATA,         &callback_data );
+
+       if ( psec != NULL ) {
+               rc = (*psec)( rs->sr_entry, callback_data );
+       }
+
+       return rc;
+}
+
+static int
+slapi_int_search_reference(
+       Operation       *op,    
+       SlapReply       *rs )
+{
+       int                             i, rc = LDAP_SUCCESS;
+       plugin_referral_entry_callback  prec = NULL;
+       void                            *callback_data = NULL;
+       Slapi_PBlock                    *pb = SLAPI_OPERATION_PBLOCK( op );
+
+       assert( pb != NULL );
+
+       slapi_pblock_get( pb, SLAPI_X_INTOP_REFERRAL_ENTRY_CALLBACK, (void **)&prec );
+       slapi_pblock_get( pb, SLAPI_X_INTOP_CALLBACK_DATA,           &callback_data );
+
+       if ( prec != NULL ) {
+               for ( i = 0; rs->sr_ref[i].bv_val != NULL; i++ ) {
+                       rc = (*prec)( rs->sr_ref[i].bv_val, callback_data );
+                       if ( rc != LDAP_SUCCESS ) {
+                               break;
+                       }
+               }
+       }
+
+       return rc;
+}
+
+int
+slapi_int_response( Slapi_Operation *op, SlapReply *rs )
+{
+       int                             rc;
+
+       switch ( rs->sr_type ) {
+       case REP_RESULT:
+               rc = slapi_int_result( op, rs );
+               break;
+       case REP_SEARCH:
+               rc = slapi_int_search_entry( op, rs );
+               break;
+       case REP_SEARCHREF:
+               rc = slapi_int_search_reference( op, rs );
+               break;
+       default:
+               rc = LDAP_OTHER;
+               break;
+       }
+
+       assert( rc != SLAP_CB_CONTINUE ); /* never try to send a wire response */
+
+       return rc;
+}
+
+static int
+slapi_int_get_ctrls( Slapi_PBlock *pb )
+{
+       LDAPControl             **c;
+       int                     rc = LDAP_SUCCESS;
+
+       if ( pb->pb_op->o_ctrls != NULL ) {
+               for ( c = pb->pb_op->o_ctrls; *c != NULL; c++ ) {
+                       rc = slap_parse_ctrl( pb->pb_op, pb->pb_rs, *c, &pb->pb_rs->sr_text );
+                       if ( rc != LDAP_SUCCESS )
+                               break;
+               }
+       }
+
+       return rc;
+}
+
+void
+slapi_int_connection_init_pb( Slapi_PBlock *pb, ber_tag_t tag )
+{
+       Connection              *conn;
+       Operation               *op;
+       ber_len_t               max = sockbuf_max_incoming;
+
+       conn = (Connection *) slapi_ch_calloc( 1, sizeof(Connection) );
+
+       LDAP_STAILQ_INIT( &conn->c_pending_ops );
+
+       op = (Operation *) slapi_ch_calloc( 1, OPERATION_BUFFER_SIZE );
+       op->o_hdr = (Opheader *)(op + 1);
+       op->o_controls = (void **)(op->o_hdr + 1);
+
+       op->o_callback = (slap_callback *) slapi_ch_calloc( 1, sizeof(slap_callback) );
+       op->o_callback->sc_response = slapi_int_response;
+       op->o_callback->sc_cleanup = NULL;
+       op->o_callback->sc_private = pb;
+       op->o_callback->sc_next = NULL;
+
+       conn->c_pending_ops.stqh_first = op;
+
+       /* connection object authorization information */
+       conn->c_authtype = LDAP_AUTH_NONE;
+       BER_BVZERO( &conn->c_authmech );
+       BER_BVZERO( &conn->c_dn );
+       BER_BVZERO( &conn->c_ndn );
+
+       conn->c_listener = &slapi_listener;
+       ber_dupbv( &conn->c_peer_domain, (struct berval *)&slap_unknown_bv );
+       ber_dupbv( &conn->c_peer_name, (struct berval *)&slap_unknown_bv );
+
+       LDAP_STAILQ_INIT( &conn->c_ops );
+
+       BER_BVZERO( &conn->c_sasl_bind_mech );
+       conn->c_sasl_authctx = NULL;
+       conn->c_sasl_sockctx = NULL;
+       conn->c_sasl_extra = NULL;
+
+       conn->c_sb = ber_sockbuf_alloc();
+
+       ber_sockbuf_ctrl( conn->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
+
+       conn->c_currentber = NULL;
+
+       /* should check status of thread calls */
+       ldap_pvt_thread_mutex_init( &conn->c_mutex );
+       ldap_pvt_thread_mutex_init( &conn->c_write_mutex );
+       ldap_pvt_thread_cond_init( &conn->c_write_cv );
+
+       ldap_pvt_thread_mutex_lock( &conn->c_mutex );
+
+       conn->c_n_ops_received = 0;
+       conn->c_n_ops_executing = 0;
+       conn->c_n_ops_pending = 0;
+       conn->c_n_ops_completed = 0;
+
+       conn->c_n_get = 0;
+       conn->c_n_read = 0;
+       conn->c_n_write = 0;
+
+       conn->c_protocol = LDAP_VERSION3; 
+
+       conn->c_activitytime = conn->c_starttime = slap_get_time();
+
+       /*
+        * A real connection ID is required, because syncrepl associates
+        * pending CSNs with unique ( connection, operation ) tuples.
+        * Setting a fake connection ID will cause slap_get_commit_csn()
+        * to return a stale value.
+        */
+       connection_assign_nextid( conn );
+
+       conn->c_conn_state  = 0x01;     /* SLAP_C_ACTIVE */
+       conn->c_struct_state = 0x02;    /* SLAP_C_USED */
+
+       conn->c_ssf = conn->c_transport_ssf = local_ssf;
+       conn->c_tls_ssf = 0;
+
+       backend_connection_init( conn );
+
+       conn->c_send_ldap_result = slap_send_ldap_result;
+       conn->c_send_search_entry = slap_send_search_entry;
+       conn->c_send_ldap_extended = slap_send_ldap_extended;
+       conn->c_send_search_reference = slap_send_search_reference;
+
+       /* operation object */
+       op->o_tag = tag;
+       op->o_protocol = LDAP_VERSION3; 
+       BER_BVZERO( &op->o_authmech );
+       op->o_time = slap_get_time();
+       op->o_do_not_cache = 1;
+       op->o_threadctx = ldap_pvt_thread_pool_context();
+       op->o_tmpmemctx = NULL;
+       op->o_tmpmfuncs = &ch_mfuncs;
+       op->o_conn = conn;
+       op->o_connid = conn->c_connid;
+       op->o_bd = frontendDB;
+
+       /* extensions */
+       slapi_int_create_object_extensions( SLAPI_X_EXT_OPERATION, op );
+       slapi_int_create_object_extensions( SLAPI_X_EXT_CONNECTION, conn );
+
+       pb->pb_rs = (SlapReply *)slapi_ch_calloc( 1, sizeof(SlapReply) );
+       pb->pb_op = op;
+       pb->pb_conn = conn;
+       pb->pb_intop = 1;
+
+       ldap_pvt_thread_mutex_unlock( &conn->c_mutex );
+}
+
+static void
+slapi_int_set_operation_dn( Slapi_PBlock *pb )
+{
+       Backend                 *be;
+       Operation               *op = pb->pb_op;
+
+       if ( BER_BVISNULL( &op->o_ndn ) ) {
+               /* set to root DN */
+               be = select_backend( &op->o_req_ndn, get_manageDSAit( op ), 1 );
+               if ( be != NULL ) {
+                       ber_dupbv( &op->o_dn, &be->be_rootdn );
+                       ber_dupbv( &op->o_ndn, &be->be_rootndn );
+               }
+       }
+}
+
+void
+slapi_int_connection_done_pb( Slapi_PBlock *pb )
+{
+       Connection              *conn;
+       Operation               *op;
+
+       PBLOCK_ASSERT_INTOP( pb, 0 );
+
+       conn = pb->pb_conn;
+       op = pb->pb_op;
+
+       /* free allocated DNs */
+       if ( !BER_BVISNULL( &op->o_dn ) )
+               op->o_tmpfree( op->o_dn.bv_val, op->o_tmpmemctx );
+       if ( !BER_BVISNULL( &op->o_ndn ) )
+               op->o_tmpfree( op->o_ndn.bv_val, op->o_tmpmemctx );
+
+       if ( !BER_BVISNULL( &op->o_req_dn ) )
+               op->o_tmpfree( op->o_req_dn.bv_val, op->o_tmpmemctx );
+       if ( !BER_BVISNULL( &op->o_req_ndn ) )
+               op->o_tmpfree( op->o_req_ndn.bv_val, op->o_tmpmemctx );
+
+       switch ( op->o_tag ) {
+       case LDAP_REQ_MODRDN:
+               if ( !BER_BVISNULL( &op->orr_newrdn ))
+                       op->o_tmpfree( op->orr_newrdn.bv_val, op->o_tmpmemctx );
+               if ( !BER_BVISNULL( &op->orr_nnewrdn ))
+                       op->o_tmpfree( op->orr_nnewrdn.bv_val, op->o_tmpmemctx );
+               if ( op->orr_newSup != NULL ) {
+                       assert( !BER_BVISNULL( op->orr_newSup ) );
+                       op->o_tmpfree( op->orr_newSup->bv_val, op->o_tmpmemctx );
+                       op->o_tmpfree( op->orr_newSup, op->o_tmpmemctx );
+               }
+               if ( op->orr_nnewSup != NULL ) {
+                       assert( !BER_BVISNULL( op->orr_nnewSup ) );
+                       op->o_tmpfree( op->orr_nnewSup->bv_val, op->o_tmpmemctx );
+                       op->o_tmpfree( op->orr_nnewSup, op->o_tmpmemctx );
+               }
+               break;
+       case LDAP_REQ_ADD:
+               slap_mods_free( op->ora_modlist, 0 );
+               break;
+       case LDAP_REQ_MODIFY:
+               slap_mods_free( op->orm_modlist, 1 );
+               break;
+       case LDAP_REQ_SEARCH:
+               if ( op->ors_attrs != NULL ) {
+                       op->o_tmpfree( op->ors_attrs, op->o_tmpmemctx );
+                       op->ors_attrs = NULL;
+               }
+               break;
+       default:
+               break;
+       }
+
+       slapi_ch_free_string( &conn->c_authmech.bv_val );
+       slapi_ch_free_string( &conn->c_dn.bv_val );
+       slapi_ch_free_string( &conn->c_ndn.bv_val );
+       slapi_ch_free_string( &conn->c_peer_domain.bv_val );
+       slapi_ch_free_string( &conn->c_peer_name.bv_val );
+
+       if ( conn->c_sb != NULL ) {
+               ber_sockbuf_free( conn->c_sb );
+       }
+
+       slapi_int_free_object_extensions( SLAPI_X_EXT_OPERATION, op );
+       slapi_int_free_object_extensions( SLAPI_X_EXT_CONNECTION, conn );
+
+       slapi_ch_free( (void **)&pb->pb_op->o_callback );
+       slapi_ch_free( (void **)&pb->pb_op );
+       slapi_ch_free( (void **)&pb->pb_conn );
+       slapi_ch_free( (void **)&pb->pb_rs );
+}
+
+static int
+slapi_int_func_internal_pb( Slapi_PBlock *pb, slap_operation_t which )
+{
+       BI_op_bind              **func;
+       SlapReply               *rs = pb->pb_rs;
+       int                     rc;
+
+       PBLOCK_ASSERT_INTOP( pb, 0 );
+
+       rc = slapi_int_get_ctrls( pb );
+       if ( rc != LDAP_SUCCESS ) {
+               rs->sr_err = rc;
+               return rc;
+       }
+
+       pb->pb_op->o_bd = frontendDB;
+       func = &frontendDB->be_bind;
+
+       return func[which]( pb->pb_op, pb->pb_rs );
+}
+
+int
+slapi_delete_internal_pb( Slapi_PBlock *pb )
+{
+       if ( pb == NULL ) {
+               return -1;
+       }
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_DELETE );
+
+       slapi_int_func_internal_pb( pb, op_delete );
+
+       return 0;
+}
+
+int
+slapi_add_internal_pb( Slapi_PBlock *pb )
+{
+       SlapReply               *rs;
+       Slapi_Entry             *entry_orig = NULL;
+
+       if ( pb == NULL ) {
+               return -1;
+       }
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_ADD );
+
+       rs = pb->pb_rs;
+
+       entry_orig = pb->pb_op->ora_e;
+       pb->pb_op->ora_e = NULL;
+
+       /*
+        * The caller can specify a new entry, or a target DN and set
+        * of modifications, but not both.
+        */
+       if ( entry_orig != NULL ) {
+               if ( pb->pb_op->ora_modlist != NULL || !BER_BVISNULL( &pb->pb_op->o_req_ndn )) {
+                       rs->sr_err = LDAP_PARAM_ERROR;
+                       goto cleanup;
+               }
+
+               assert( BER_BVISNULL( &pb->pb_op->o_req_dn ) ); /* shouldn't get set */
+               ber_dupbv( &pb->pb_op->o_req_dn, &entry_orig->e_name );
+               ber_dupbv( &pb->pb_op->o_req_ndn, &entry_orig->e_nname );
+       } else if ( pb->pb_op->ora_modlist == NULL || BER_BVISNULL( &pb->pb_op->o_req_ndn )) {
+               rs->sr_err = LDAP_PARAM_ERROR;
+               goto cleanup;
+       }
+
+       pb->pb_op->ora_e = (Entry *)slapi_ch_calloc( 1, sizeof(Entry) );
+       ber_dupbv( &pb->pb_op->ora_e->e_name,  &pb->pb_op->o_req_dn );
+       ber_dupbv( &pb->pb_op->ora_e->e_nname, &pb->pb_op->o_req_ndn );
+
+       if ( entry_orig != NULL ) {
+               assert( pb->pb_op->ora_modlist == NULL );
+
+               rs->sr_err = slap_entry2mods( entry_orig, &pb->pb_op->ora_modlist,
+                       &rs->sr_text, pb->pb_textbuf, sizeof( pb->pb_textbuf ) );
+               if ( rs->sr_err != LDAP_SUCCESS ) {
+                       goto cleanup;
+               }
+       } else {
+               assert( pb->pb_op->ora_modlist != NULL );
+       }
+
+       rs->sr_err = slap_mods_check( pb->pb_op->ora_modlist, &rs->sr_text,
+               pb->pb_textbuf, sizeof( pb->pb_textbuf ), NULL );
+       if ( rs->sr_err != LDAP_SUCCESS ) {
+                goto cleanup;
+        }
+
+       /* Duplicate the values, because we may call slapi_entry_free() */
+       rs->sr_err = slap_mods2entry( pb->pb_op->ora_modlist, &pb->pb_op->ora_e,
+               1, 0, &rs->sr_text, pb->pb_textbuf, sizeof( pb->pb_textbuf ) );
+       if ( rs->sr_err != LDAP_SUCCESS ) {
+               goto cleanup;
+       }
+
+       if ( slapi_int_func_internal_pb( pb, op_add ) == 0 ) {
+               if ( pb->pb_op->ora_e != NULL && pb->pb_op->o_private != NULL ) {
+                       BackendDB       *bd = pb->pb_op->o_bd;
+
+                       pb->pb_op->o_bd = (BackendDB *)pb->pb_op->o_private;
+                       pb->pb_op->o_private = NULL;
+                       be_entry_release_w( pb->pb_op, pb->pb_op->ora_e );
+                       pb->pb_op->ora_e = NULL;
+                       pb->pb_op->o_bd = bd;
+                       pb->pb_op->o_private = NULL;
+               }
+       }
+
+cleanup:
+
+       if ( pb->pb_op->ora_e != NULL ) {
+               slapi_entry_free( pb->pb_op->ora_e );
+               pb->pb_op->ora_e = NULL;
+       }
+       if ( entry_orig != NULL ) {
+               pb->pb_op->ora_e = entry_orig;
+               slap_mods_free( pb->pb_op->ora_modlist, 1 );
+               pb->pb_op->ora_modlist = NULL;
+       }
+
+       return 0;
+}
+
+int
+slapi_modrdn_internal_pb( Slapi_PBlock *pb )
+{
+       if ( pb == NULL ) {
+               return -1;
+       }
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_MODRDN );
+
+       if ( BER_BVISEMPTY( &pb->pb_op->o_req_ndn ) ) {
+               pb->pb_rs->sr_err = LDAP_UNWILLING_TO_PERFORM;
+               goto cleanup;
+       }
+
+       slapi_int_func_internal_pb( pb, op_modrdn );
+
+cleanup:
+
+       return 0;
+}
+
+int
+slapi_modify_internal_pb( Slapi_PBlock *pb )
+{
+       SlapReply               *rs;
+
+       if ( pb == NULL ) {
+               return -1;
+       }
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_MODIFY );
+
+       rs = pb->pb_rs;
+
+       if ( pb->pb_op->orm_modlist == NULL ) {
+               rs->sr_err = LDAP_PARAM_ERROR;
+               goto cleanup;
+       }
+
+       if ( BER_BVISEMPTY( &pb->pb_op->o_req_ndn ) ) {
+               rs->sr_err = LDAP_UNWILLING_TO_PERFORM;
+               goto cleanup;
+       }
+
+       rs->sr_err = slap_mods_check( pb->pb_op->orm_modlist,
+               &rs->sr_text, pb->pb_textbuf, sizeof( pb->pb_textbuf ), NULL );
+       if ( rs->sr_err != LDAP_SUCCESS ) {
+                goto cleanup;
+        }
+
+       slapi_int_func_internal_pb( pb, op_modify );
+
+cleanup:
+
+       return 0;
+}
+
+static int
+slapi_int_search_entry_callback( Slapi_Entry *entry, void *callback_data )
+{
+       int             nentries = 0, i = 0;
+       Slapi_Entry     **head = NULL, **tp;
+       Slapi_PBlock    *pb = (Slapi_PBlock *)callback_data;
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_SEARCH );
+
+       entry = slapi_entry_dup( entry );
+       if ( entry == NULL ) {
+               return LDAP_NO_MEMORY;
+       }
+
+       slapi_pblock_get( pb, SLAPI_NENTRIES, &nentries );
+       slapi_pblock_get( pb, SLAPI_PLUGIN_INTOP_SEARCH_ENTRIES, &head );
+       
+       i = nentries + 1;
+       if ( nentries == 0 ) {
+               tp = (Slapi_Entry **)slapi_ch_malloc( 2 * sizeof(Slapi_Entry *) );
+               if ( tp == NULL ) {
+                       slapi_entry_free( entry );
+                       return LDAP_NO_MEMORY;
+               }
+
+               tp[0] = entry;
+       } else {
+               tp = (Slapi_Entry **)slapi_ch_realloc( (char *)head,
+                               sizeof(Slapi_Entry *) * ( i + 1 ) );
+               if ( tp == NULL ) {
+                       slapi_entry_free( entry );
+                       return LDAP_NO_MEMORY;
+               }
+               tp[i - 1] = entry;
+       }
+       tp[i] = NULL;
+                 
+       slapi_pblock_set( pb, SLAPI_PLUGIN_INTOP_SEARCH_ENTRIES, (void *)tp );
+       slapi_pblock_set( pb, SLAPI_NENTRIES, (void *)&i );
+
+       return LDAP_SUCCESS;
+}
+
+int
+slapi_search_internal_pb( Slapi_PBlock *pb )
+{
+       return slapi_search_internal_callback_pb( pb,
+               (void *)pb,
+               NULL,
+               slapi_int_search_entry_callback,
+               NULL );
+}
+
+int
+slapi_search_internal_callback_pb( Slapi_PBlock *pb,
+       void *callback_data,
+       plugin_result_callback prc,
+       plugin_search_entry_callback psec,
+       plugin_referral_entry_callback prec )
+{
+       int                     free_filter = 0;
+       SlapReply               *rs;
+
+       if ( pb == NULL ) {
+               return -1;
+       }
+
+       PBLOCK_ASSERT_INTOP( pb, LDAP_REQ_SEARCH );
+
+       rs = pb->pb_rs;
+
+       /* search callback and arguments */
+       slapi_pblock_set( pb, SLAPI_X_INTOP_RESULT_CALLBACK,         (void *)prc );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_SEARCH_ENTRY_CALLBACK,   (void *)psec );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_REFERRAL_ENTRY_CALLBACK, (void *)prec );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_CALLBACK_DATA,           (void *)callback_data );
+
+       if ( BER_BVISEMPTY( &pb->pb_op->ors_filterstr )) {
+               rs->sr_err = LDAP_PARAM_ERROR;
+               goto cleanup;
+       }
+
+       if ( pb->pb_op->ors_filter == NULL ) {
+               pb->pb_op->ors_filter = slapi_str2filter( pb->pb_op->ors_filterstr.bv_val );
+               if ( pb->pb_op->ors_filter == NULL ) {
+                       rs->sr_err = LDAP_PROTOCOL_ERROR;
+                       goto cleanup;
+               }
+
+               free_filter = 1;
+       }
+
+       slapi_int_func_internal_pb( pb, op_search );
+
+cleanup:
+       if ( free_filter ) {
+               slapi_filter_free( pb->pb_op->ors_filter, 1 );
+               pb->pb_op->ors_filter = NULL;
+       }
+
+       slapi_pblock_delete_param( pb, SLAPI_X_INTOP_RESULT_CALLBACK );
+       slapi_pblock_delete_param( pb, SLAPI_X_INTOP_SEARCH_ENTRY_CALLBACK );
+       slapi_pblock_delete_param( pb, SLAPI_X_INTOP_REFERRAL_ENTRY_CALLBACK );
+       slapi_pblock_delete_param( pb, SLAPI_X_INTOP_CALLBACK_DATA );
+
+       return 0;
+}
+
+/* Wrappers for old API */
+
+void
+slapi_search_internal_set_pb( Slapi_PBlock *pb,
+       const char *base,
+       int scope,
+       const char *filter,
+       char **attrs,
+       int attrsonly,
+       LDAPControl **controls,
+       const char *uniqueid,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       int no_limit = SLAP_NO_LIMIT;
+       int deref = LDAP_DEREF_NEVER;
+
+       slapi_int_connection_init_pb( pb, LDAP_REQ_SEARCH );
+       slapi_pblock_set( pb, SLAPI_SEARCH_TARGET,    (void *)base );
+       slapi_pblock_set( pb, SLAPI_SEARCH_SCOPE,     (void *)&scope );
+       slapi_pblock_set( pb, SLAPI_SEARCH_FILTER,    (void *)0 );
+       slapi_pblock_set( pb, SLAPI_SEARCH_STRFILTER, (void *)filter );
+       slapi_pblock_set( pb, SLAPI_SEARCH_ATTRS,     (void *)attrs );
+       slapi_pblock_set( pb, SLAPI_SEARCH_ATTRSONLY, (void *)&attrsonly );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,      (void *)controls );
+       slapi_pblock_set( pb, SLAPI_TARGET_UNIQUEID,  (void *)uniqueid );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY,  (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,    (void *)&operation_flags );
+       slapi_pblock_set( pb, SLAPI_SEARCH_DEREF,     (void *)&deref );
+       slapi_pblock_set( pb, SLAPI_SEARCH_SIZELIMIT, (void *)&no_limit );
+       slapi_pblock_set( pb, SLAPI_SEARCH_TIMELIMIT, (void *)&no_limit );
+
+       slapi_int_set_operation_dn( pb );
+}
+
+Slapi_PBlock *
+slapi_search_internal(
+       char *ldn, 
+       int scope, 
+       char *filStr, 
+       LDAPControl **controls, 
+       char **attrs, 
+       int attrsonly ) 
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new();
+
+       slapi_search_internal_set_pb( pb, ldn, scope, filStr,
+               attrs, attrsonly,
+               controls, NULL, NULL, 0 );
+
+       slapi_search_internal_pb( pb );
+
+       return pb;
+}
+
+void
+slapi_modify_internal_set_pb( Slapi_PBlock *pb,
+       const char *dn,
+       LDAPMod **mods,
+       LDAPControl **controls,
+       const char *uniqueid,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       slapi_int_connection_init_pb( pb, LDAP_REQ_MODIFY );
+       slapi_pblock_set( pb, SLAPI_MODIFY_TARGET,   (void *)dn );
+       slapi_pblock_set( pb, SLAPI_MODIFY_MODS,     (void *)mods );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,     (void *)controls );
+       slapi_pblock_set( pb, SLAPI_TARGET_UNIQUEID, (void *)uniqueid );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY, (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,   (void *)&operation_flags );
+       slapi_int_set_operation_dn( pb );
+}
+
+/* Function : slapi_modify_internal
+ *
+ * Description:        Plugin functions call this routine to modify an entry 
+ *                             in the backend directly
+ * Return values : LDAP_SUCCESS
+ *                 LDAP_PARAM_ERROR
+ *                 LDAP_NO_MEMORY
+ *                 LDAP_OTHER
+ *                 LDAP_UNWILLING_TO_PERFORM
+*/
+Slapi_PBlock *
+slapi_modify_internal(
+       char *ldn,      
+       LDAPMod **mods, 
+       LDAPControl **controls, 
+       int log_change )
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new();
+
+       slapi_modify_internal_set_pb( pb, ldn, mods, controls, NULL, NULL, 0 );
+       slapi_pblock_set( pb, SLAPI_LOG_OPERATION, (void *)&log_change );
+       slapi_modify_internal_pb( pb );
+
+       return pb;
+}
+
+int
+slapi_add_internal_set_pb( Slapi_PBlock *pb,
+       const char *dn,
+       LDAPMod **attrs,
+       LDAPControl **controls,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       slapi_int_connection_init_pb( pb, LDAP_REQ_ADD );
+       slapi_pblock_set( pb, SLAPI_ADD_TARGET,      (void *)dn );
+       slapi_pblock_set( pb, SLAPI_MODIFY_MODS,     (void *)attrs );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,     (void *)controls );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY, (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,   (void *)&operation_flags );
+       slapi_int_set_operation_dn( pb );
+
+       return 0;
+}
+
+Slapi_PBlock *
+slapi_add_internal(
+       char * dn,
+       LDAPMod **attrs,
+       LDAPControl **controls,
+       int log_change )
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new();
+
+       slapi_add_internal_set_pb( pb, dn, attrs, controls, NULL, 0);
+       slapi_pblock_set( pb, SLAPI_LOG_OPERATION, (void *)&log_change );
+       slapi_add_internal_pb( pb );
+
+       return pb;
+}
+
+void
+slapi_add_entry_internal_set_pb( Slapi_PBlock *pb,
+       Slapi_Entry *e,
+       LDAPControl **controls,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       slapi_int_connection_init_pb( pb, LDAP_REQ_ADD );
+       slapi_pblock_set( pb, SLAPI_ADD_ENTRY,       (void *)e );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,     (void *)controls );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY, (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,   (void *)&operation_flags );
+       slapi_int_set_operation_dn( pb );
+}
+
+Slapi_PBlock * 
+slapi_add_entry_internal(
+       Slapi_Entry *e, 
+       LDAPControl **controls, 
+       int log_change )
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new();
+
+       slapi_add_entry_internal_set_pb( pb, e, controls, NULL, 0 );
+       slapi_pblock_set( pb, SLAPI_LOG_OPERATION, (void *)&log_change );
+       slapi_add_internal_pb( pb );
+
+       return pb;
+}
+
+void
+slapi_rename_internal_set_pb( Slapi_PBlock *pb,
+       const char *olddn,
+       const char *newrdn,
+       const char *newsuperior,
+       int deloldrdn,
+       LDAPControl **controls,
+       const char *uniqueid,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       slapi_int_connection_init_pb( pb, LDAP_REQ_MODRDN );
+       slapi_pblock_set( pb, SLAPI_MODRDN_TARGET,      (void *)olddn );
+       slapi_pblock_set( pb, SLAPI_MODRDN_NEWRDN,      (void *)newrdn );
+       slapi_pblock_set( pb, SLAPI_MODRDN_NEWSUPERIOR, (void *)newsuperior );
+       slapi_pblock_set( pb, SLAPI_MODRDN_DELOLDRDN,   (void *)&deloldrdn );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,        (void *)controls );
+       slapi_pblock_set( pb, SLAPI_TARGET_UNIQUEID,    (void *)uniqueid );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY,    (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,      (void *)&operation_flags );
+       slapi_int_set_operation_dn( pb );
+}
+
+/* Function : slapi_modrdn_internal
+ *
+ * Description : Plugin functions call this routine to modify the rdn 
+ *                              of an entry in the backend directly
+ * Return values : LDAP_SUCCESS
+ *                 LDAP_PARAM_ERROR
+ *                 LDAP_NO_MEMORY
+ *                 LDAP_OTHER
+ *                 LDAP_UNWILLING_TO_PERFORM
+ *
+ * NOTE: This function does not support the "newSuperior" option from LDAP V3.
+ */
+Slapi_PBlock *
+slapi_modrdn_internal(
+       char *olddn, 
+       char *lnewrdn, 
+       int deloldrdn, 
+       LDAPControl **controls, 
+       int log_change )
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new ();
+
+       slapi_rename_internal_set_pb( pb, olddn, lnewrdn, NULL,
+               deloldrdn, controls, NULL, NULL, 0 );
+       slapi_pblock_set( pb, SLAPI_LOG_OPERATION, (void *)&log_change );
+       slapi_modrdn_internal_pb( pb );
+
+       return pb;
+}
+
+void
+slapi_delete_internal_set_pb( Slapi_PBlock *pb,
+       const char *dn,
+       LDAPControl **controls,
+       const char *uniqueid,
+       Slapi_ComponentId *plugin_identity,
+       int operation_flags )
+{
+       slapi_int_connection_init_pb( pb, LDAP_REQ_DELETE );
+       slapi_pblock_set( pb, SLAPI_TARGET_DN,       (void *)dn );
+       slapi_pblock_set( pb, SLAPI_REQCONTROLS,     (void *)controls );
+       slapi_pblock_set( pb, SLAPI_TARGET_UNIQUEID, (void *)uniqueid );
+       slapi_pblock_set( pb, SLAPI_PLUGIN_IDENTITY, (void *)plugin_identity );
+       slapi_pblock_set( pb, SLAPI_X_INTOP_FLAGS,   (void *)&operation_flags );
+       slapi_int_set_operation_dn( pb );
+}
+
+/* Function : slapi_delete_internal
+ *
+ * Description : Plugin functions call this routine to delete an entry 
+ *               in the backend directly
+ * Return values : LDAP_SUCCESS
+ *                 LDAP_PARAM_ERROR
+ *                 LDAP_NO_MEMORY
+ *                 LDAP_OTHER
+ *                 LDAP_UNWILLING_TO_PERFORM
+*/
+Slapi_PBlock *
+slapi_delete_internal(
+       char *ldn, 
+       LDAPControl **controls, 
+       int log_change )
+{
+       Slapi_PBlock *pb;
+
+       pb = slapi_pblock_new();
+
+       slapi_delete_internal_set_pb( pb, ldn, controls, NULL, NULL, 0 );
+       slapi_pblock_set( pb, SLAPI_LOG_OPERATION, (void *)&log_change );
+       slapi_delete_internal_pb( pb );
+
+       return pb;
+}
+
+#endif /* LDAP_SLAPI */
+