connection.c 47.8 KB
Newer Older
1
/* $OpenLDAP$ */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
2
3
/* This work is part of OpenLDAP Software <http://www.openldap.org/>.
 *
Kurt Zeilenga's avatar
Kurt Zeilenga committed
4
 * Copyright 1998-2006 The OpenLDAP Foundation.
Kurt Zeilenga's avatar
Kurt Zeilenga committed
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
 * All rights reserved.
 *
 * Redistribution and use in source and binary forms, with or without
 * modification, are permitted only as authorized by the OpenLDAP
 * Public License.
 *
 * A copy of this license is available in the file LICENSE in the
 * top-level directory of the distribution or, alternatively, at
 * <http://www.OpenLDAP.org/license.html>.
 */
/* Portions Copyright (c) 1995 Regents of the University of Michigan.
 * All rights reserved.
 *
 * Redistribution and use in source and binary forms are permitted
 * provided that this notice is preserved and that due credit is given
 * to the University of Michigan at Ann Arbor. The name of the University
 * may not be used to endorse or promote products derived from this
 * software without specific prior written permission. This software
 * is provided ``as is'' without express or implied warranty.
Kurt Zeilenga's avatar
Kurt Zeilenga committed
24
25
 */

Kurt Zeilenga's avatar
Kurt Zeilenga committed
26
#include "portable.h"
Kurt Zeilenga's avatar
Kurt Zeilenga committed
27
28

#include <stdio.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
29
#ifdef HAVE_LIMITS_H
Kurt Zeilenga's avatar
Kurt Zeilenga committed
30
#include <limits.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
31
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
32

33
#include <ac/socket.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
34
35
36
#include <ac/errno.h>
#include <ac/string.h>
#include <ac/time.h>
Pierangelo Masarati's avatar
Pierangelo Masarati committed
37
#include <ac/unistd.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
38

Kurt Zeilenga's avatar
Kurt Zeilenga committed
39
#include "lutil.h"
Kurt Zeilenga's avatar
Kurt Zeilenga committed
40
41
#include "slap.h"

42
#ifdef LDAP_SLAPI
43
#include "slapi/slapi.h"
44
45
#endif

46
47
48
/* protected by connections_mutex */
static ldap_pvt_thread_mutex_t connections_mutex;
static Connection *connections = NULL;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
49

50
static ldap_pvt_thread_mutex_t conn_nextid_mutex;
51
static unsigned long conn_nextid = 0;
52

53
54
static const char conn_lost_str[] = "connection lost";

55
/* structure state (protected by connections_mutex) */
56
57
58
#define SLAP_C_UNINITIALIZED	0x00	/* MUST BE ZERO (0) */
#define SLAP_C_UNUSED			0x01
#define SLAP_C_USED				0x02
Howard Chu's avatar
Howard Chu committed
59
#define	SLAP_C_PENDING			0x03
60
61

/* connection state (protected by c_mutex ) */
62
63
64
65
66
#define SLAP_C_INVALID			0x00	/* MUST BE ZERO (0) */
#define SLAP_C_INACTIVE			0x01	/* zero threads */
#define SLAP_C_ACTIVE			0x02	/* one or more threads */
#define SLAP_C_BINDING			0x03	/* binding */
#define SLAP_C_CLOSING			0x04	/* closing */
67
#define SLAP_C_CLIENT			0x05	/* outbound client conn */
68

69
70
71
const char *
connection_state2str( int state )
{
72
	switch( state ) {
73
74
75
	case SLAP_C_INVALID:	return "!";
	case SLAP_C_INACTIVE:	return "|";
	case SLAP_C_ACTIVE:		return "";
76
	case SLAP_C_BINDING:	return "B";
77
78
	case SLAP_C_CLOSING:	return "C";
	case SLAP_C_CLIENT:		return "L";
79
80
81
82
83
	}

	return "?";
}

84
static Connection* connection_get( ber_socket_t s );
85

86
#ifdef SLAP_LIGHTWEIGHT_DISPATCHER
87
88
89
90
91
92
93
94
95

typedef struct conn_readinfo {
	Operation *op;
	ldap_pvt_thread_start_t *func;
	void *arg;
	int nullop;
} conn_readinfo;

static int connection_input( Connection *c, conn_readinfo *cri );
96
#else
97
static int connection_input( Connection *c );
98
#endif
99
static void connection_close( Connection *c );
100

101
static int connection_op_activate( Operation *op );
102
#ifdef SLAP_LIGHTWEIGHT_DISPATCHER
103
104
static void connection_op_queue( Operation *op );
#endif
105
static int connection_resched( Connection *conn );
106
static void connection_abandon( Connection *conn );
107
static void connection_destroy( Connection *c );
108

109
110
static ldap_pvt_thread_start_t connection_operation;

111
112
113
114
115
/*
 * Initialize connection management infrastructure.
 */
int connections_init(void)
{
116
117
	int i;

118
119
	assert( connections == NULL );

120
	if( connections != NULL) {
121
122
123
124
125
126
127
		Debug( LDAP_DEBUG_ANY, "connections_init: already initialized.\n",
			0, 0, 0 );
		return -1;
	}

	/* should check return of every call */
	ldap_pvt_thread_mutex_init( &connections_mutex );
128
	ldap_pvt_thread_mutex_init( &conn_nextid_mutex );
129

130
	connections = (Connection *) ch_calloc( dtblsize, sizeof(Connection) );
131
132

	if( connections == NULL ) {
133
134
		Debug( LDAP_DEBUG_ANY, "connections_init: "
			"allocation (%d*%ld) of connection array failed\n",
135
			dtblsize, (long) sizeof(Connection), 0 );
136
137
138
		return -1;
	}

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
139
	assert( connections[0].c_struct_state == SLAP_C_UNINITIALIZED );
140
	assert( connections[dtblsize-1].c_struct_state == SLAP_C_UNINITIALIZED );
141

142
	for (i=0; i<dtblsize; i++) connections[i].c_conn_idx = i;
143

144
145
146
147
148
149
150
151
	/*
	 * per entry initialization of the Connection array initialization
	 * will be done by connection_init()
	 */ 

	return 0;
}

152
153
154
/*
 * Destroy connection management infrastructure.
 */
155

156
157
int connections_destroy(void)
{
158
	ber_socket_t i;
159
160
161
162
163
164
165
166
167

	/* should check return of every call */

	if( connections == NULL) {
		Debug( LDAP_DEBUG_ANY, "connections_destroy: nothing to destroy.\n",
			0, 0, 0 );
		return -1;
	}

168
	for ( i = 0; i < dtblsize; i++ ) {
169
		if( connections[i].c_struct_state != SLAP_C_UNINITIALIZED ) {
170
			ber_sockbuf_free( connections[i].c_sb );
171
172
173
			ldap_pvt_thread_mutex_destroy( &connections[i].c_mutex );
			ldap_pvt_thread_mutex_destroy( &connections[i].c_write_mutex );
			ldap_pvt_thread_cond_destroy( &connections[i].c_write_cv );
174
#ifdef LDAP_SLAPI
175
			if ( slapi_plugins_used ) {
176
177
				slapi_int_free_object_extensions( SLAPI_X_EXT_CONNECTION,
					&connections[i] );
Howard Chu's avatar
Howard Chu committed
178
			}
179
#endif
180
		}
181
182
183
184
185
186
	}

	free( connections );
	connections = NULL;

	ldap_pvt_thread_mutex_destroy( &connections_mutex );
187
	ldap_pvt_thread_mutex_destroy( &conn_nextid_mutex );
188
189
190
191
192
193
194
195
	return 0;
}

/*
 * shutdown all connections
 */
int connections_shutdown(void)
{
196
	ber_socket_t i;
197

198
	for ( i = 0; i < dtblsize; i++ ) {
199
		ldap_pvt_thread_mutex_lock( &connections[i].c_mutex );
Howard Chu's avatar
Howard Chu committed
200
201
202
203
204
205
206
207
208
209
210
211
		if( connections[i].c_struct_state == SLAP_C_USED ) {

			/* give persistent clients a chance to cleanup */
			if( connections[i].c_conn_state == SLAP_C_CLIENT ) {
				ldap_pvt_thread_pool_submit( &connection_pool,
				connections[i].c_clientfunc, connections[i].c_clientarg );
			} else {
				/* c_mutex is locked */
				connection_closing( &connections[i], "slapd shutdown" );
				connection_close( &connections[i] );
			}
		}
212
213
214
		ldap_pvt_thread_mutex_unlock( &connections[i].c_mutex );
	}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
215
	return 0;
216
217
}

218
219
220
221
222
223
224
225
226
/*
 * Timeout idle connections.
 */
int connections_timeout_idle(time_t now)
{
	int i = 0;
	int connindex;
	Connection* c;

Gary Williams's avatar
Gary Williams committed
227
	for( c = connection_first( &connindex );
228
229
230
		c != NULL;
		c = connection_next( c, &connindex ) )
	{
231
232
		/* Don't timeout a slow-running request or a persistent
		 * outbound connection */
233
234
235
		if( c->c_n_ops_executing || c->c_conn_state == SLAP_C_CLIENT ) {
			continue;
		}
236

237
		if( difftime( c->c_activitytime+global_idletimeout, now) < 0 ) {
238
			/* close it */
239
			connection_closing( c, "idletimeout" );
240
241
242
243
244
245
246
247
248
			connection_close( c );
			i++;
		}
	}
	connection_done( c );

	return i;
}

249
static Connection* connection_get( ber_socket_t s )
250
{
251
252
253
	Connection *c;

	Debug( LDAP_DEBUG_ARGS,
254
255
		"connection_get(%ld)\n",
		(long) s, 0, 0 );
256
257
258

	assert( connections != NULL );

259
	if(s == AC_SOCKET_INVALID) return NULL;
260
261

#ifndef HAVE_WINSOCK
Howard Chu's avatar
Howard Chu committed
262
263
	assert( s < dtblsize );
	c = &connections[s];
264

265
#else
266
	c = NULL;
267
	{
268
		ber_socket_t i, sd;
269

Howard Chu's avatar
Howard Chu committed
270
		ldap_pvt_thread_mutex_lock( &connections_mutex );
271
		for(i=0; i<dtblsize; i++) {
Howard Chu's avatar
Howard Chu committed
272
273
274
			if( connections[i].c_struct_state == SLAP_C_PENDING )
				continue;

Gary Williams's avatar
NT port    
Gary Williams committed
275
			if( connections[i].c_struct_state == SLAP_C_UNINITIALIZED ) {
276
				assert( connections[i].c_conn_state == SLAP_C_INVALID );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
277
				assert( connections[i].c_sb == 0 );
278
279
280
				break;
			}

281
282
283
			ber_sockbuf_ctrl( connections[i].c_sb,
				LBER_SB_OPT_GET_FD, &sd );

Gary Williams's avatar
NT port    
Gary Williams committed
284
			if( connections[i].c_struct_state == SLAP_C_UNUSED ) {
285
				assert( connections[i].c_conn_state == SLAP_C_INVALID );
286
				assert( sd == AC_SOCKET_INVALID );
287
288
289
				continue;
			}

290
291
292
			/* state can actually change from used -> unused by resched,
			 * so don't assert details here.
			 */
293

294
			if( sd == s ) {
Gary Williams's avatar
NT port    
Gary Williams committed
295
				c = &connections[i];
296
297
298
				break;
			}
		}
Howard Chu's avatar
Howard Chu committed
299
		ldap_pvt_thread_mutex_unlock( &connections_mutex );
300
301
	}
#endif
302

303
	if( c != NULL ) {
304
305
		ber_socket_t	sd;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
306
307
		ldap_pvt_thread_mutex_lock( &c->c_mutex );

308
309
		assert( c->c_struct_state != SLAP_C_UNINITIALIZED );

310
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_GET_FD, &sd );
311
312
		if( c->c_struct_state != SLAP_C_USED ) {
			/* connection must have been closed due to resched */
313

314
			assert( c->c_conn_state == SLAP_C_INVALID );
315
			assert( sd == AC_SOCKET_INVALID );
316
317

			Debug( LDAP_DEBUG_TRACE,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
318
319
				"connection_get(%d): connection not used\n",
				s, 0, 0 );
320

321
			ldap_pvt_thread_mutex_unlock( &c->c_mutex );
322
323
324
			return NULL;
		}

325
		Debug( LDAP_DEBUG_TRACE,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
326
			"connection_get(%d): got connid=%lu\n",
327
			s, c->c_connid, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
328

329
330
		c->c_n_get++;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
331
332
		assert( c->c_struct_state == SLAP_C_USED );
		assert( c->c_conn_state != SLAP_C_INVALID );
333
		assert( sd != AC_SOCKET_INVALID );
334

335
#ifndef SLAPD_MONITOR
336
		if ( global_idletimeout > 0 )
337
338
#endif /* ! SLAPD_MONITOR */
		{
339
340
			c->c_activitytime = slap_get_time();
		}
341
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
342

343
344
345
346
347
348
349
350
351
	return c;
}

static void connection_return( Connection *c )
{
	ldap_pvt_thread_mutex_unlock( &c->c_mutex );
}

long connection_init(
352
	ber_socket_t s,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
353
	Listener *listener,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
354
355
	const char* dnsname,
	const char* peername,
356
	int flags,
357
	slap_ssf_t ssf,
358
	struct berval *authid )
359
{
360
	unsigned long id;
361
	Connection *c;
Howard Chu's avatar
Howard Chu committed
362
	int doinit = 0;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
363

364
365
	assert( connections != NULL );

Pierangelo Masarati's avatar
Pierangelo Masarati committed
366
	assert( listener != NULL );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
367
368
369
	assert( dnsname != NULL );
	assert( peername != NULL );

Kurt Zeilenga's avatar
Kurt Zeilenga committed
370
#ifndef HAVE_TLS
371
	assert( flags != CONN_IS_TLS );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
372
373
#endif

374
	if( s == AC_SOCKET_INVALID ) {
Gary Williams's avatar
Gary Williams committed
375
		Debug( LDAP_DEBUG_ANY,
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
376
			"connection_init: init of socket %ld invalid.\n", (long)s, 0, 0 );
377
378
379
380
381
		return -1;
	}

	assert( s >= 0 );
#ifndef HAVE_WINSOCK
382
	assert( s < dtblsize );
Howard Chu's avatar
Howard Chu committed
383
384
385
386
387
388
	c = &connections[s];
	if( c->c_struct_state == SLAP_C_UNINITIALIZED ) {
		doinit = 1;
	} else {
		assert( c->c_struct_state == SLAP_C_UNUSED );
	}
389
390
#else
	{
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
391
		ber_socket_t i;
392
393
		c = NULL;

Howard Chu's avatar
Howard Chu committed
394
		ldap_pvt_thread_mutex_lock( &connections_mutex );
395
		for( i=0; i < dtblsize; i++) {
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
396
			ber_socket_t	sd;
397

Howard Chu's avatar
Howard Chu committed
398
399
400
			if ( connections[i].c_struct_state == SLAP_C_PENDING )
				continue;

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
401
402
403
			if( connections[i].c_struct_state == SLAP_C_UNINITIALIZED ) {
				assert( connections[i].c_sb == 0 );
				c = &connections[i];
Howard Chu's avatar
Howard Chu committed
404
405
				c->c_struct_state = SLAP_C_PENDING;
				doinit = 1;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
406
407
				break;
			}
Gary Williams's avatar
NT port    
Gary Williams committed
408

409
			sd = AC_SOCKET_INVALID;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
410
411
412
413
			if (connections[i].c_sb != NULL) {
				ber_sockbuf_ctrl( connections[i].c_sb,
					LBER_SB_OPT_GET_FD, &sd );
			}
Gary Williams's avatar
Gary Williams committed
414

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
415
416
417
			if( connections[i].c_struct_state == SLAP_C_UNUSED ) {
				assert( sd == AC_SOCKET_INVALID );
				c = &connections[i];
Howard Chu's avatar
Howard Chu committed
418
				c->c_struct_state = SLAP_C_PENDING;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
419
420
				break;
			}
Gary Williams's avatar
Gary Williams committed
421

422
			if( connections[i].c_conn_state == SLAP_C_CLIENT ) continue;
423

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
424
425
426
427
			assert( connections[i].c_struct_state == SLAP_C_USED );
			assert( connections[i].c_conn_state != SLAP_C_INVALID );
			assert( sd != AC_SOCKET_INVALID );
		}
Howard Chu's avatar
Howard Chu committed
428
		ldap_pvt_thread_mutex_unlock( &connections_mutex );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
429
430
431

		if( c == NULL ) {
			Debug( LDAP_DEBUG_ANY,
432
				"connection_init(%d): connection table full "
433
				"(%d/%d)\n", s, i, dtblsize);
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
434
435
			return -1;
		}
Gary Williams's avatar
Gary Williams committed
436
	}
437
438
#endif

Howard Chu's avatar
Howard Chu committed
439
	if( doinit ) {
440
441
442
443
		c->c_send_ldap_result = slap_send_ldap_result;
		c->c_send_search_entry = slap_send_search_entry;
		c->c_send_search_reference = slap_send_search_reference;
		c->c_send_ldap_extended = slap_send_ldap_extended;
444
		c->c_send_ldap_intermediate = slap_send_ldap_intermediate;
445

446
447
448
		BER_BVZERO( &c->c_authmech );
		BER_BVZERO( &c->c_dn );
		BER_BVZERO( &c->c_ndn );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
449

Pierangelo Masarati's avatar
Pierangelo Masarati committed
450
		c->c_listener = NULL;
451
452
		BER_BVZERO( &c->c_peer_domain );
		BER_BVZERO( &c->c_peer_name );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
453

454
455
		LDAP_STAILQ_INIT(&c->c_ops);
		LDAP_STAILQ_INIT(&c->c_pending_ops);
456

Kurt Zeilenga's avatar
Kurt Zeilenga committed
457
#ifdef LDAP_X_TXN
Kurt Zeilenga's avatar
Kurt Zeilenga committed
458
		c->c_txn = CONN_TXN_INACTIVE;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
459
460
461
462
		c->c_txn_backend = NULL;
		LDAP_STAILQ_INIT(&c->c_txn_ops);
#endif

463
		BER_BVZERO( &c->c_sasl_bind_mech );
464
465
466
		c->c_sasl_done = 0;
		c->c_sasl_authctx = NULL;
		c->c_sasl_sockctx = NULL;
467
		c->c_sasl_extra = NULL;
468
		c->c_sasl_bindop = NULL;
469

470
471
472
		c->c_sb = ber_sockbuf_alloc( );

		{
473
			ber_len_t max = sockbuf_max_incoming;
474
475
476
			ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
		}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
477
		c->c_currentber = NULL;
478

479
480
481
482
		/* should check status of thread calls */
		ldap_pvt_thread_mutex_init( &c->c_mutex );
		ldap_pvt_thread_mutex_init( &c->c_write_mutex );
		ldap_pvt_thread_cond_init( &c->c_write_cv );
483

484
#ifdef LDAP_SLAPI
485
		if ( slapi_plugins_used ) {
486
			slapi_int_create_object_extensions( SLAPI_X_EXT_CONNECTION, c );
487
		}
488
#endif
489
	}
490

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
491
	ldap_pvt_thread_mutex_lock( &c->c_mutex );
492

493
494
495
	assert( BER_BVISNULL( &c->c_authmech ) );
	assert( BER_BVISNULL( &c->c_dn ) );
	assert( BER_BVISNULL( &c->c_ndn ) );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
496
	assert( c->c_listener == NULL );
497
498
	assert( BER_BVISNULL( &c->c_peer_domain ) );
	assert( BER_BVISNULL( &c->c_peer_name ) );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
499
500
	assert( LDAP_STAILQ_EMPTY(&c->c_ops) );
	assert( LDAP_STAILQ_EMPTY(&c->c_pending_ops) );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
501
#ifdef LDAP_X_TXN
Kurt Zeilenga's avatar
Kurt Zeilenga committed
502
	assert( c->c_txn == CONN_TXN_INACTIVE );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
503
504
505
	assert( c->c_txn_backend == NULL );
	assert( LDAP_STAILQ_EMPTY(&c->c_txn_ops) );
#endif
506
	assert( BER_BVISNULL( &c->c_sasl_bind_mech ) );
507
508
509
	assert( c->c_sasl_done == 0 );
	assert( c->c_sasl_authctx == NULL );
	assert( c->c_sasl_sockctx == NULL );
510
	assert( c->c_sasl_extra == NULL );
511
	assert( c->c_sasl_bindop == NULL );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
512
	assert( c->c_currentber == NULL );
513
	assert( c->c_writewaiter == 0);
514

Pierangelo Masarati's avatar
Pierangelo Masarati committed
515
	c->c_listener = listener;
516
517
518
519

	if ( flags == CONN_IS_CLIENT ) {
		c->c_conn_state = SLAP_C_CLIENT;
		c->c_struct_state = SLAP_C_USED;
520
		c->c_close_reason = "?";			/* should never be needed */
521
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_FD, &s );
522
523
524
525
526
		ldap_pvt_thread_mutex_unlock( &c->c_mutex );

		return 0;
	}

527
528
	ber_str2bv( dnsname, 0, 1, &c->c_peer_domain );
	ber_str2bv( peername, 0, 1, &c->c_peer_name );
529

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
530
531
532
533
	c->c_n_ops_received = 0;
	c->c_n_ops_executing = 0;
	c->c_n_ops_pending = 0;
	c->c_n_ops_completed = 0;
534
535
536
537

	c->c_n_get = 0;
	c->c_n_read = 0;
	c->c_n_write = 0;
538

539
540
	/* set to zero until bind, implies LDAP_VERSION3 */
	c->c_protocol = 0;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
541

542
#ifndef SLAPD_MONITOR
543
	if ( global_idletimeout > 0 )
544
545
#endif /* ! SLAPD_MONITOR */
	{
546
547
		c->c_activitytime = c->c_starttime = slap_get_time();
	}
548

549
550
#ifdef LDAP_CONNECTIONLESS
	c->c_is_udp = 0;
551
	if( flags == CONN_IS_UDP ) {
552
553
		c->c_is_udp = 1;
#ifdef LDAP_DEBUG
Kurt Zeilenga's avatar
Kurt Zeilenga committed
554
555
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
			LBER_SBIOD_LEVEL_PROVIDER, (void*)"udp_" );
556
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
557
558
559
560
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_udp,
			LBER_SBIOD_LEVEL_PROVIDER, (void *)&s );
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_readahead,
			LBER_SBIOD_LEVEL_PROVIDER, NULL );
561
562
563
	} else
#endif
	{
564
#ifdef LDAP_DEBUG
Kurt Zeilenga's avatar
Kurt Zeilenga committed
565
566
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
			LBER_SBIOD_LEVEL_PROVIDER, (void*)"tcp_" );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
567
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
568
569
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_tcp,
			LBER_SBIOD_LEVEL_PROVIDER, (void *)&s );
570
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
571
572
573
574

#ifdef LDAP_DEBUG
	ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
		INT_MAX, (void*)"ldap_" );
575
#endif
576

Kurt Zeilenga's avatar
Kurt Zeilenga committed
577
578
579
580
581
	if( ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_NONBLOCK,
		c /* non-NULL */ ) < 0 )
	{
		Debug( LDAP_DEBUG_ANY,
			"connection_init(%d, %s): set nonblocking failed\n",
Pierangelo Masarati's avatar
Pierangelo Masarati committed
582
			s, c->c_peer_name.bv_val, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
583
	}
584

585
	ldap_pvt_thread_mutex_lock( &conn_nextid_mutex );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
586
	id = c->c_connid = conn_nextid++;
587
	ldap_pvt_thread_mutex_unlock( &conn_nextid_mutex );
588

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
589
590
	c->c_conn_state = SLAP_C_INACTIVE;
	c->c_struct_state = SLAP_C_USED;
591
	c->c_close_reason = "?";			/* should never be needed */
592

593
594
595
	c->c_ssf = c->c_transport_ssf = ssf;
	c->c_tls_ssf = 0;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
596
#ifdef HAVE_TLS
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
597
598
599
600
601
602
603
	if ( flags == CONN_IS_TLS ) {
		c->c_is_tls = 1;
		c->c_needs_tls_accept = 1;
	} else {
		c->c_is_tls = 0;
		c->c_needs_tls_accept = 0;
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
604
#endif
605

606
	slap_sasl_open( c, 0 );
607
	slap_sasl_external( c, ssf, authid );
608

609
	slapd_add_internal( s, 1 );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
610
	ldap_pvt_thread_mutex_unlock( &c->c_mutex );
611

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
612
	backend_connection_init(c);
613

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
614
	return id;
615
616
}

617
618
void connection2anonymous( Connection *c )
{
619
620
	assert( connections != NULL );
	assert( c != NULL );
621

622
	{
623
		ber_len_t max = sockbuf_max_incoming;
624
625
626
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
	}

627
	if ( !BER_BVISNULL( &c->c_authmech ) ) {
628
		ch_free(c->c_authmech.bv_val);
629
	}
630
	BER_BVZERO( &c->c_authmech );
631

632
	if ( !BER_BVISNULL( &c->c_dn ) ) {
633
		ch_free(c->c_dn.bv_val);
634
	}
635
	BER_BVZERO( &c->c_dn );
636

637
	if ( !BER_BVISNULL( &c->c_ndn ) ) {
638
		ch_free(c->c_ndn.bv_val);
639
	}
640
	BER_BVZERO( &c->c_ndn );
641

642
643
	if ( !BER_BVISNULL( &c->c_sasl_authz_dn ) ) {
		ber_memfree_x( c->c_sasl_authz_dn.bv_val, NULL );
644
645
	}
	BER_BVZERO( &c->c_sasl_authz_dn );
646
647
648
649

	c->c_authz_backend = NULL;
}

650
651
652
static void
connection_destroy( Connection *c )
{
653
	ber_socket_t	sd;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
654
	unsigned long	connid;
655
	const char		*close_reason;
Howard Chu's avatar
Howard Chu committed
656
	Sockbuf			*sb;
657

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
658
659
660
661
662
	assert( connections != NULL );
	assert( c != NULL );
	assert( c->c_struct_state != SLAP_C_UNUSED );
	assert( c->c_conn_state != SLAP_C_INVALID );
	assert( LDAP_STAILQ_EMPTY(&c->c_ops) );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
663
664
665
666
667
668
	assert( LDAP_STAILQ_EMPTY(&c->c_pending_ops) );
#ifdef LDAP_X_TXN
	assert( c->c_txn == CONN_TXN_INACTIVE );
	assert( c->c_txn_backend == NULL );
	assert( LDAP_STAILQ_EMPTY(&c->c_txn_ops) );
#endif
669
	assert( c->c_writewaiter == 0);
670

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
671
672
	/* only for stats (print -1 as "%lu" may give unexpected results ;) */
	connid = c->c_connid;
673
	close_reason = c->c_close_reason;
Pierangelo Masarati's avatar
Pierangelo Masarati committed
674

Howard Chu's avatar
Howard Chu committed
675
676
677
678
	ldap_pvt_thread_mutex_lock( &connections_mutex );
	c->c_struct_state = SLAP_C_PENDING;
	ldap_pvt_thread_mutex_unlock( &connections_mutex );

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
679
	backend_connection_destroy(c);
680

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
681
682
	c->c_protocol = 0;
	c->c_connid = -1;
683

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
684
	c->c_activitytime = c->c_starttime = 0;
685

686
	connection2anonymous( c );
Pierangelo Masarati's avatar
Pierangelo Masarati committed
687
	c->c_listener = NULL;
688

689
690
	if(c->c_peer_domain.bv_val != NULL) {
		free(c->c_peer_domain.bv_val);
Kurt Zeilenga's avatar
Kurt Zeilenga committed
691
	}
692
	BER_BVZERO( &c->c_peer_domain );
693
694
	if(c->c_peer_name.bv_val != NULL) {
		free(c->c_peer_name.bv_val);
695
	}
696
	BER_BVZERO( &c->c_peer_name );
697

698
	c->c_sasl_bind_in_progress = 0;
699
700
	if(c->c_sasl_bind_mech.bv_val != NULL) {
		free(c->c_sasl_bind_mech.bv_val);
701
	}
702
	BER_BVZERO( &c->c_sasl_bind_mech );
703
704

	slap_sasl_close( c );
705

Kurt Zeilenga's avatar
Kurt Zeilenga committed
706
707
708
709
710
	if ( c->c_currentber != NULL ) {
		ber_free( c->c_currentber, 1 );
		c->c_currentber = NULL;
	}

711

Howard Chu's avatar
Howard Chu committed
712
713
714
715
#ifdef LDAP_SLAPI
	/* call destructors, then constructors; avoids unnecessary allocation */
	if ( slapi_plugins_used ) {
		slapi_int_clear_object_extensions( SLAPI_X_EXT_CONNECTION, c );
716
	}
Howard Chu's avatar
Howard Chu committed
717
#endif
718

Howard Chu's avatar
Howard Chu committed
719
720
721
	c->c_conn_state = SLAP_C_INVALID;
	c->c_struct_state = SLAP_C_UNUSED;
	c->c_close_reason = "?";			/* should never be needed */
722

Howard Chu's avatar
Howard Chu committed
723
724
	sb = c->c_sb;
	c->c_sb = ber_sockbuf_alloc( );
725
	{
726
		ber_len_t max = sockbuf_max_incoming;
727
728
729
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
	}

Howard Chu's avatar
Howard Chu committed
730
731
732
733
734
735
	ber_sockbuf_ctrl( sb, LBER_SB_OPT_GET_FD, &sd );

	/* c must be fully reset by this point; when we call slapd_remove
	 * it may get immediately reused by a new connection.
	 */
	if ( sd != AC_SOCKET_INVALID ) {
736
		slapd_remove( sd, sb, 1, 0, 0 );
Howard Chu's avatar
Howard Chu committed
737

738
739
740
741
742
		if ( close_reason == NULL ) {
			close_reason = "";
		}

		Statslog( LDAP_DEBUG_STATS, "conn=%lu fd=%ld closed (%s)\n",
Howard Chu's avatar
Howard Chu committed
743
			connid, (long) sd, close_reason, 0, 0 );
744
	}
745
746
}

747
748
int connection_state_closing( Connection *c )
{
749
750
	/* c_mutex must be locked by caller */

751
	int state;
752
753
754
	assert( c != NULL );
	assert( c->c_struct_state == SLAP_C_USED );

755
756
757
758
759
	state = c->c_conn_state;

	assert( state != SLAP_C_INVALID );

	return state == SLAP_C_CLOSING;
760
761
}

762
763
764
765
static void connection_abandon( Connection *c )
{
	/* c_mutex must be locked by caller */

766
	Operation *o, *next, op = {0};
Howard Chu's avatar
Howard Chu committed
767
	Opheader ohdr = {0};
768
	SlapReply rs = {0};
769

Howard Chu's avatar
Howard Chu committed
770
771
772
	op.o_hdr = &ohdr;
	op.o_conn = c;
	op.o_connid = c->c_connid;
773
	op.o_tag = LDAP_REQ_ABANDON;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
774

775
776
777
	for ( o = LDAP_STAILQ_FIRST( &c->c_ops ); o; o=next ) {
		next = LDAP_STAILQ_NEXT( o, o_next );
		op.orn_msgid = o->o_msgid;
778
		o->o_abandon = 1;
Pierangelo Masarati's avatar
Pierangelo Masarati committed
779
		op.o_bd = frontendDB;
780
		frontendDB->be_abandon( &op, &rs );
781
782
	}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
783
784
785
786
787
788
789
790
791
792
793
794
795
#ifdef LDAP_X_TXN
	/* remove operations in pending transaction */
	while ( (o = LDAP_STAILQ_FIRST( &c->c_txn_ops )) != NULL) {
		LDAP_STAILQ_REMOVE_HEAD( &c->c_txn_ops, o_next );
		LDAP_STAILQ_NEXT(o, o_next) = NULL;
		slap_op_free( o );
	}

	/* clear transaction */
	c->c_txn_backend = NULL;
	c->c_txn = CONN_TXN_INACTIVE;
#endif

796
	/* remove pending operations */
797
798
799
	while ( (o = LDAP_STAILQ_FIRST( &c->c_pending_ops )) != NULL) {
		LDAP_STAILQ_REMOVE_HEAD( &c->c_pending_ops, o_next );
		LDAP_STAILQ_NEXT(o, o_next) = NULL;
800
801
802
803
		slap_op_free( o );
	}
}

804
void connection_closing( Connection *c, const char *why )
805
806
807
808
809
810
{
	assert( connections != NULL );
	assert( c != NULL );
	assert( c->c_struct_state == SLAP_C_USED );
	assert( c->c_conn_state != SLAP_C_INVALID );

811
812
	/* c_mutex must be locked by caller */

813
	if( c->c_conn_state != SLAP_C_CLOSING ) {
814
815
816
		ber_socket_t	sd;

		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_GET_FD, &sd );
817
		Debug( LDAP_DEBUG_TRACE,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
818
			"connection_closing: readying conn=%lu sd=%d for close\n",
819
			c->c_connid, sd, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
820
821
		/* update state to closing */
		c->c_conn_state = SLAP_C_CLOSING;
822
		c->c_close_reason = why;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
823

824
		/* don't listen on this port anymore */
Howard Chu's avatar
Howard Chu committed
825
		slapd_clr_read( sd, 0 );
826
827

		/* abandon active operations */
828
		connection_abandon( c );
829
830

		/* wake write blocked operations */
831
832
		if ( c->c_writewaiter ) {
			ldap_pvt_thread_cond_signal( &c->c_write_cv );
833
834
835
836
			/* ITS#4667 this may allow another thread to drop into
			 * connection_resched / connection_close before we
			 * finish, but that's OK.
			 */
837
			slapd_clr_write( sd, 1 );
Howard Chu's avatar
Howard Chu committed
838
			ldap_pvt_thread_mutex_unlock( &c->c_mutex );
839
840
841
842
843
			ldap_pvt_thread_mutex_lock( &c->c_write_mutex );
			ldap_pvt_thread_mutex_lock( &c->c_mutex );
			ldap_pvt_thread_mutex_unlock( &c->c_write_mutex );
		} else {
			slapd_clr_write( sd, 1 );
844
		}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
845

846
847
848
	} else if( why == NULL && c->c_close_reason == conn_lost_str ) {
		/* Client closed connection after doing Unbind. */
		c->c_close_reason = NULL;
849
850
851
	}
}

852
853
static void
connection_close( Connection *c )
854
{
855
	ber_socket_t	sd = AC_SOCKET_INVALID;
856

857
858
	assert( connections != NULL );
	assert( c != NULL );
859

860
861