connection.c 48.5 KB
Newer Older
1
/* $OpenLDAP$ */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
2
3
/* This work is part of OpenLDAP Software <http://www.openldap.org/>.
 *
Kurt Zeilenga's avatar
Kurt Zeilenga committed
4
 * Copyright 1998-2008 The OpenLDAP Foundation.
Kurt Zeilenga's avatar
Kurt Zeilenga committed
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
 * All rights reserved.
 *
 * Redistribution and use in source and binary forms, with or without
 * modification, are permitted only as authorized by the OpenLDAP
 * Public License.
 *
 * A copy of this license is available in the file LICENSE in the
 * top-level directory of the distribution or, alternatively, at
 * <http://www.OpenLDAP.org/license.html>.
 */
/* Portions Copyright (c) 1995 Regents of the University of Michigan.
 * All rights reserved.
 *
 * Redistribution and use in source and binary forms are permitted
 * provided that this notice is preserved and that due credit is given
 * to the University of Michigan at Ann Arbor. The name of the University
 * may not be used to endorse or promote products derived from this
 * software without specific prior written permission. This software
 * is provided ``as is'' without express or implied warranty.
Kurt Zeilenga's avatar
Kurt Zeilenga committed
24
25
 */

Kurt Zeilenga's avatar
Kurt Zeilenga committed
26
#include "portable.h"
Kurt Zeilenga's avatar
Kurt Zeilenga committed
27
28

#include <stdio.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
29
#ifdef HAVE_LIMITS_H
Kurt Zeilenga's avatar
Kurt Zeilenga committed
30
#include <limits.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
31
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
32

33
#include <ac/socket.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
34
35
36
#include <ac/errno.h>
#include <ac/string.h>
#include <ac/time.h>
Pierangelo Masarati's avatar
Pierangelo Masarati committed
37
#include <ac/unistd.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
38

Kurt Zeilenga's avatar
Kurt Zeilenga committed
39
#include "lutil.h"
Kurt Zeilenga's avatar
Kurt Zeilenga committed
40
41
#include "slap.h"

42
#ifdef LDAP_SLAPI
43
#include "slapi/slapi.h"
44
45
#endif

46
47
48
/* protected by connections_mutex */
static ldap_pvt_thread_mutex_t connections_mutex;
static Connection *connections = NULL;
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
49

50
static ldap_pvt_thread_mutex_t conn_nextid_mutex;
51
static unsigned long conn_nextid = 0;
52

53
54
static const char conn_lost_str[] = "connection lost";

55
/* structure state (protected by connections_mutex) */
56
57
58
#define SLAP_C_UNINITIALIZED	0x00	/* MUST BE ZERO (0) */
#define SLAP_C_UNUSED			0x01
#define SLAP_C_USED				0x02
Howard Chu's avatar
Howard Chu committed
59
#define	SLAP_C_PENDING			0x03
60
61

/* connection state (protected by c_mutex ) */
62
63
64
65
66
#define SLAP_C_INVALID			0x00	/* MUST BE ZERO (0) */
#define SLAP_C_INACTIVE			0x01	/* zero threads */
#define SLAP_C_ACTIVE			0x02	/* one or more threads */
#define SLAP_C_BINDING			0x03	/* binding */
#define SLAP_C_CLOSING			0x04	/* closing */
67
#define SLAP_C_CLIENT			0x05	/* outbound client conn */
68

69
70
71
const char *
connection_state2str( int state )
{
72
	switch( state ) {
73
74
75
	case SLAP_C_INVALID:	return "!";
	case SLAP_C_INACTIVE:	return "|";
	case SLAP_C_ACTIVE:		return "";
76
	case SLAP_C_BINDING:	return "B";
77
78
	case SLAP_C_CLOSING:	return "C";
	case SLAP_C_CLIENT:		return "L";
79
80
81
82
83
	}

	return "?";
}

84
static Connection* connection_get( ber_socket_t s );
85

86
87
88
89
typedef struct conn_readinfo {
	Operation *op;
	ldap_pvt_thread_start_t *func;
	void *arg;
Howard Chu's avatar
Howard Chu committed
90
	void *ctx;
91
92
93
94
	int nullop;
} conn_readinfo;

static int connection_input( Connection *c, conn_readinfo *cri );
95
static void connection_close( Connection *c );
96

97
static int connection_op_activate( Operation *op );
98
static void connection_op_queue( Operation *op );
99
static int connection_resched( Connection *conn );
100
static void connection_abandon( Connection *conn );
101
static void connection_destroy( Connection *c );
102

103
104
static ldap_pvt_thread_start_t connection_operation;

105
106
107
108
109
/*
 * Initialize connection management infrastructure.
 */
int connections_init(void)
{
110
111
	int i;

112
113
	assert( connections == NULL );

114
	if( connections != NULL) {
115
116
117
118
119
120
121
		Debug( LDAP_DEBUG_ANY, "connections_init: already initialized.\n",
			0, 0, 0 );
		return -1;
	}

	/* should check return of every call */
	ldap_pvt_thread_mutex_init( &connections_mutex );
122
	ldap_pvt_thread_mutex_init( &conn_nextid_mutex );
123

124
	connections = (Connection *) ch_calloc( dtblsize, sizeof(Connection) );
125
126

	if( connections == NULL ) {
127
128
		Debug( LDAP_DEBUG_ANY, "connections_init: "
			"allocation (%d*%ld) of connection array failed\n",
129
			dtblsize, (long) sizeof(Connection), 0 );
130
131
132
		return -1;
	}

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
133
	assert( connections[0].c_struct_state == SLAP_C_UNINITIALIZED );
134
	assert( connections[dtblsize-1].c_struct_state == SLAP_C_UNINITIALIZED );
135

136
	for (i=0; i<dtblsize; i++) connections[i].c_conn_idx = i;
137

138
139
140
141
142
143
144
145
	/*
	 * per entry initialization of the Connection array initialization
	 * will be done by connection_init()
	 */ 

	return 0;
}

146
147
148
/*
 * Destroy connection management infrastructure.
 */
149

150
151
int connections_destroy(void)
{
152
	ber_socket_t i;
153
154
155
156
157
158
159
160
161

	/* should check return of every call */

	if( connections == NULL) {
		Debug( LDAP_DEBUG_ANY, "connections_destroy: nothing to destroy.\n",
			0, 0, 0 );
		return -1;
	}

162
	for ( i = 0; i < dtblsize; i++ ) {
163
		if( connections[i].c_struct_state != SLAP_C_UNINITIALIZED ) {
164
			ber_sockbuf_free( connections[i].c_sb );
165
166
167
			ldap_pvt_thread_mutex_destroy( &connections[i].c_mutex );
			ldap_pvt_thread_mutex_destroy( &connections[i].c_write_mutex );
			ldap_pvt_thread_cond_destroy( &connections[i].c_write_cv );
168
#ifdef LDAP_SLAPI
169
			if ( slapi_plugins_used ) {
170
171
				slapi_int_free_object_extensions( SLAPI_X_EXT_CONNECTION,
					&connections[i] );
Howard Chu's avatar
Howard Chu committed
172
			}
173
#endif
174
		}
175
176
177
178
179
180
	}

	free( connections );
	connections = NULL;

	ldap_pvt_thread_mutex_destroy( &connections_mutex );
181
	ldap_pvt_thread_mutex_destroy( &conn_nextid_mutex );
182
183
184
185
186
187
188
189
	return 0;
}

/*
 * shutdown all connections
 */
int connections_shutdown(void)
{
190
	ber_socket_t i;
191

192
	for ( i = 0; i < dtblsize; i++ ) {
193
194
195
196
197
198
199
200
201
202
203
204
205
		if( connections[i].c_struct_state != SLAP_C_UNINITIALIZED ) {
			ldap_pvt_thread_mutex_lock( &connections[i].c_mutex );
			if( connections[i].c_struct_state == SLAP_C_USED ) {

				/* give persistent clients a chance to cleanup */
				if( connections[i].c_conn_state == SLAP_C_CLIENT ) {
					ldap_pvt_thread_pool_submit( &connection_pool,
					connections[i].c_clientfunc, connections[i].c_clientarg );
				} else {
					/* c_mutex is locked */
					connection_closing( &connections[i], "slapd shutdown" );
					connection_close( &connections[i] );
				}
Howard Chu's avatar
Howard Chu committed
206
			}
207
			ldap_pvt_thread_mutex_unlock( &connections[i].c_mutex );
Howard Chu's avatar
Howard Chu committed
208
		}
209
210
	}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
211
	return 0;
212
213
}

214
215
216
217
218
219
220
221
222
/*
 * Timeout idle connections.
 */
int connections_timeout_idle(time_t now)
{
	int i = 0;
	int connindex;
	Connection* c;

Gary Williams's avatar
Gary Williams committed
223
	for( c = connection_first( &connindex );
224
225
226
		c != NULL;
		c = connection_next( c, &connindex ) )
	{
227
228
		/* Don't timeout a slow-running request or a persistent
		 * outbound connection */
229
230
231
		if( c->c_n_ops_executing || c->c_conn_state == SLAP_C_CLIENT ) {
			continue;
		}
232

233
		if( difftime( c->c_activitytime+global_idletimeout, now) < 0 ) {
234
			/* close it */
235
			connection_closing( c, "idletimeout" );
236
237
238
239
240
241
242
243
244
			connection_close( c );
			i++;
		}
	}
	connection_done( c );

	return i;
}

245
static Connection* connection_get( ber_socket_t s )
246
{
247
248
249
	Connection *c;

	Debug( LDAP_DEBUG_ARGS,
250
251
		"connection_get(%ld)\n",
		(long) s, 0, 0 );
252
253
254

	assert( connections != NULL );

255
	if(s == AC_SOCKET_INVALID) return NULL;
256

Howard Chu's avatar
Howard Chu committed
257
258
	assert( s < dtblsize );
	c = &connections[s];
259

260
	if( c != NULL ) {
Kurt Zeilenga's avatar
Kurt Zeilenga committed
261
262
		ldap_pvt_thread_mutex_lock( &c->c_mutex );

263
264
		assert( c->c_struct_state != SLAP_C_UNINITIALIZED );

265
266
		if( c->c_struct_state != SLAP_C_USED ) {
			/* connection must have been closed due to resched */
267

268
			assert( c->c_conn_state == SLAP_C_INVALID );
Howard Chu's avatar
Howard Chu committed
269
			assert( c->c_sd == AC_SOCKET_INVALID );
270
271

			Debug( LDAP_DEBUG_TRACE,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
272
273
				"connection_get(%d): connection not used\n",
				s, 0, 0 );
274

275
			ldap_pvt_thread_mutex_unlock( &c->c_mutex );
276
277
278
			return NULL;
		}

279
		Debug( LDAP_DEBUG_TRACE,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
280
			"connection_get(%d): got connid=%lu\n",
281
			s, c->c_connid, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
282

283
284
		c->c_n_get++;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
285
286
		assert( c->c_struct_state == SLAP_C_USED );
		assert( c->c_conn_state != SLAP_C_INVALID );
Howard Chu's avatar
Howard Chu committed
287
		assert( c->c_sd != AC_SOCKET_INVALID );
288

289
#ifndef SLAPD_MONITOR
290
		if ( global_idletimeout > 0 )
291
292
#endif /* ! SLAPD_MONITOR */
		{
293
294
			c->c_activitytime = slap_get_time();
		}
295
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
296

297
298
299
300
301
302
303
304
	return c;
}

static void connection_return( Connection *c )
{
	ldap_pvt_thread_mutex_unlock( &c->c_mutex );
}

305
Connection * connection_init(
306
	ber_socket_t s,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
307
	Listener *listener,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
308
309
	const char* dnsname,
	const char* peername,
310
	int flags,
311
	slap_ssf_t ssf,
Howard Chu's avatar
Howard Chu committed
312
	struct berval *authid
313
	LDAP_PF_LOCAL_SENDMSG_ARG(struct berval *peerbv))
314
{
315
	unsigned long id;
316
	Connection *c;
Howard Chu's avatar
Howard Chu committed
317
	int doinit = 0;
318
	ber_socket_t sfd = SLAP_FD2SOCK(s);
Kurt Zeilenga's avatar
Kurt Zeilenga committed
319

320
321
	assert( connections != NULL );

Pierangelo Masarati's avatar
Pierangelo Masarati committed
322
	assert( listener != NULL );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
323
324
325
	assert( dnsname != NULL );
	assert( peername != NULL );

Kurt Zeilenga's avatar
Kurt Zeilenga committed
326
#ifndef HAVE_TLS
Howard Chu's avatar
Howard Chu committed
327
	assert( !( flags & CONN_IS_TLS ));
Kurt Zeilenga's avatar
Kurt Zeilenga committed
328
329
#endif

330
	if( s == AC_SOCKET_INVALID ) {
Gary Williams's avatar
Gary Williams committed
331
		Debug( LDAP_DEBUG_ANY,
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
332
			"connection_init: init of socket %ld invalid.\n", (long)s, 0, 0 );
333
		return NULL;
334
335
336
	}

	assert( s >= 0 );
337
	assert( s < dtblsize );
Howard Chu's avatar
Howard Chu committed
338
339
340
341
342
343
	c = &connections[s];
	if( c->c_struct_state == SLAP_C_UNINITIALIZED ) {
		doinit = 1;
	} else {
		assert( c->c_struct_state == SLAP_C_UNUSED );
	}
344

Howard Chu's avatar
Howard Chu committed
345
	if( doinit ) {
346
347
348
349
		c->c_send_ldap_result = slap_send_ldap_result;
		c->c_send_search_entry = slap_send_search_entry;
		c->c_send_search_reference = slap_send_search_reference;
		c->c_send_ldap_extended = slap_send_ldap_extended;
350
		c->c_send_ldap_intermediate = slap_send_ldap_intermediate;
351

352
353
354
		BER_BVZERO( &c->c_authmech );
		BER_BVZERO( &c->c_dn );
		BER_BVZERO( &c->c_ndn );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
355

Pierangelo Masarati's avatar
Pierangelo Masarati committed
356
		c->c_listener = NULL;
357
358
		BER_BVZERO( &c->c_peer_domain );
		BER_BVZERO( &c->c_peer_name );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
359

360
361
		LDAP_STAILQ_INIT(&c->c_ops);
		LDAP_STAILQ_INIT(&c->c_pending_ops);
362

Kurt Zeilenga's avatar
Kurt Zeilenga committed
363
#ifdef LDAP_X_TXN
Kurt Zeilenga's avatar
Kurt Zeilenga committed
364
		c->c_txn = CONN_TXN_INACTIVE;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
365
366
367
368
		c->c_txn_backend = NULL;
		LDAP_STAILQ_INIT(&c->c_txn_ops);
#endif

369
		BER_BVZERO( &c->c_sasl_bind_mech );
370
371
372
		c->c_sasl_done = 0;
		c->c_sasl_authctx = NULL;
		c->c_sasl_sockctx = NULL;
373
		c->c_sasl_extra = NULL;
374
		c->c_sasl_bindop = NULL;
375

376
377
378
		c->c_sb = ber_sockbuf_alloc( );

		{
379
			ber_len_t max = sockbuf_max_incoming;
380
381
382
			ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
		}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
383
		c->c_currentber = NULL;
384

385
386
387
388
		/* should check status of thread calls */
		ldap_pvt_thread_mutex_init( &c->c_mutex );
		ldap_pvt_thread_mutex_init( &c->c_write_mutex );
		ldap_pvt_thread_cond_init( &c->c_write_cv );
389

390
#ifdef LDAP_SLAPI
391
		if ( slapi_plugins_used ) {
392
			slapi_int_create_object_extensions( SLAPI_X_EXT_CONNECTION, c );
393
		}
394
#endif
395
	}
396

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
397
	ldap_pvt_thread_mutex_lock( &c->c_mutex );
398

399
400
401
	assert( BER_BVISNULL( &c->c_authmech ) );
	assert( BER_BVISNULL( &c->c_dn ) );
	assert( BER_BVISNULL( &c->c_ndn ) );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
402
	assert( c->c_listener == NULL );
403
404
	assert( BER_BVISNULL( &c->c_peer_domain ) );
	assert( BER_BVISNULL( &c->c_peer_name ) );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
405
406
	assert( LDAP_STAILQ_EMPTY(&c->c_ops) );
	assert( LDAP_STAILQ_EMPTY(&c->c_pending_ops) );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
407
#ifdef LDAP_X_TXN
Kurt Zeilenga's avatar
Kurt Zeilenga committed
408
	assert( c->c_txn == CONN_TXN_INACTIVE );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
409
410
411
	assert( c->c_txn_backend == NULL );
	assert( LDAP_STAILQ_EMPTY(&c->c_txn_ops) );
#endif
412
	assert( BER_BVISNULL( &c->c_sasl_bind_mech ) );
413
414
415
	assert( c->c_sasl_done == 0 );
	assert( c->c_sasl_authctx == NULL );
	assert( c->c_sasl_sockctx == NULL );
416
	assert( c->c_sasl_extra == NULL );
417
	assert( c->c_sasl_bindop == NULL );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
418
	assert( c->c_currentber == NULL );
419
	assert( c->c_writewaiter == 0);
420

Pierangelo Masarati's avatar
Pierangelo Masarati committed
421
	c->c_listener = listener;
Howard Chu's avatar
Howard Chu committed
422
	c->c_sd = s;
423

Howard Chu's avatar
Howard Chu committed
424
	if ( flags & CONN_IS_CLIENT ) {
425
		c->c_connid = 0;
426
427
		c->c_conn_state = SLAP_C_CLIENT;
		c->c_struct_state = SLAP_C_USED;
428
		c->c_close_reason = "?";			/* should never be needed */
429
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_FD, &sfd );
430
431
		ldap_pvt_thread_mutex_unlock( &c->c_mutex );

432
		return c;
433
434
	}

435
436
	ber_str2bv( dnsname, 0, 1, &c->c_peer_domain );
	ber_str2bv( peername, 0, 1, &c->c_peer_name );
437

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
438
439
440
441
	c->c_n_ops_received = 0;
	c->c_n_ops_executing = 0;
	c->c_n_ops_pending = 0;
	c->c_n_ops_completed = 0;
442
443
444
445

	c->c_n_get = 0;
	c->c_n_read = 0;
	c->c_n_write = 0;
446

447
448
	/* set to zero until bind, implies LDAP_VERSION3 */
	c->c_protocol = 0;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
449

450
#ifndef SLAPD_MONITOR
451
	if ( global_idletimeout > 0 )
452
453
#endif /* ! SLAPD_MONITOR */
	{
454
455
		c->c_activitytime = c->c_starttime = slap_get_time();
	}
456

457
458
#ifdef LDAP_CONNECTIONLESS
	c->c_is_udp = 0;
Howard Chu's avatar
Howard Chu committed
459
	if( flags & CONN_IS_UDP ) {
460
461
		c->c_is_udp = 1;
#ifdef LDAP_DEBUG
Kurt Zeilenga's avatar
Kurt Zeilenga committed
462
463
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
			LBER_SBIOD_LEVEL_PROVIDER, (void*)"udp_" );
464
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
465
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_udp,
466
			LBER_SBIOD_LEVEL_PROVIDER, (void *)&sfd );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
467
468
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_readahead,
			LBER_SBIOD_LEVEL_PROVIDER, NULL );
469
	} else
Howard Chu's avatar
Howard Chu committed
470
471
472
473
474
475
#endif /* LDAP_CONNECTIONLESS */
#ifdef LDAP_PF_LOCAL
	if ( flags & CONN_IS_IPC ) {
#ifdef LDAP_DEBUG
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
			LBER_SBIOD_LEVEL_PROVIDER, (void*)"ipc_" );
476
#endif
Howard Chu's avatar
Howard Chu committed
477
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_fd,
478
			LBER_SBIOD_LEVEL_PROVIDER, (void *)&sfd );
Howard Chu's avatar
Howard Chu committed
479
480
481
482
483
484
#ifdef LDAP_PF_LOCAL_SENDMSG
		if ( !BER_BVISEMPTY( peerbv ))
			ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_UNGET_BUF, peerbv );
#endif
	} else
#endif /* LDAP_PF_LOCAL */
485
	{
486
#ifdef LDAP_DEBUG
Kurt Zeilenga's avatar
Kurt Zeilenga committed
487
488
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
			LBER_SBIOD_LEVEL_PROVIDER, (void*)"tcp_" );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
489
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
490
		ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_tcp,
491
			LBER_SBIOD_LEVEL_PROVIDER, (void *)&sfd );
492
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
493
494
495
496

#ifdef LDAP_DEBUG
	ber_sockbuf_add_io( c->c_sb, &ber_sockbuf_io_debug,
		INT_MAX, (void*)"ldap_" );
497
#endif
498

Kurt Zeilenga's avatar
Kurt Zeilenga committed
499
500
501
502
503
	if( ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_NONBLOCK,
		c /* non-NULL */ ) < 0 )
	{
		Debug( LDAP_DEBUG_ANY,
			"connection_init(%d, %s): set nonblocking failed\n",
Pierangelo Masarati's avatar
Pierangelo Masarati committed
504
			s, c->c_peer_name.bv_val, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
505
	}
506

507
	ldap_pvt_thread_mutex_lock( &conn_nextid_mutex );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
508
	id = c->c_connid = conn_nextid++;
509
	ldap_pvt_thread_mutex_unlock( &conn_nextid_mutex );
510

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
511
512
	c->c_conn_state = SLAP_C_INACTIVE;
	c->c_struct_state = SLAP_C_USED;
513
	c->c_close_reason = "?";			/* should never be needed */
514

515
516
517
	c->c_ssf = c->c_transport_ssf = ssf;
	c->c_tls_ssf = 0;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
518
#ifdef HAVE_TLS
Howard Chu's avatar
Howard Chu committed
519
	if ( flags & CONN_IS_TLS ) {
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
520
521
522
523
524
525
		c->c_is_tls = 1;
		c->c_needs_tls_accept = 1;
	} else {
		c->c_is_tls = 0;
		c->c_needs_tls_accept = 0;
	}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
526
#endif
527

528
	slap_sasl_open( c, 0 );
529
	slap_sasl_external( c, ssf, authid );
530

531
	slapd_add_internal( s, 1 );
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
532
	ldap_pvt_thread_mutex_unlock( &c->c_mutex );
533

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
534
	backend_connection_init(c);
535

536
	return c;
537
538
}

539
540
void connection2anonymous( Connection *c )
{
541
542
	assert( connections != NULL );
	assert( c != NULL );
543

544
	{
545
		ber_len_t max = sockbuf_max_incoming;
546
547
548
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
	}

549
	if ( !BER_BVISNULL( &c->c_authmech ) ) {
550
		ch_free(c->c_authmech.bv_val);
551
	}
552
	BER_BVZERO( &c->c_authmech );
553

554
	if ( !BER_BVISNULL( &c->c_dn ) ) {
555
		ch_free(c->c_dn.bv_val);
556
	}
557
	BER_BVZERO( &c->c_dn );
558

559
	if ( !BER_BVISNULL( &c->c_ndn ) ) {
560
		ch_free(c->c_ndn.bv_val);
561
	}
562
	BER_BVZERO( &c->c_ndn );
563

564
565
	if ( !BER_BVISNULL( &c->c_sasl_authz_dn ) ) {
		ber_memfree_x( c->c_sasl_authz_dn.bv_val, NULL );
566
567
	}
	BER_BVZERO( &c->c_sasl_authz_dn );
568
569
570
571

	c->c_authz_backend = NULL;
}

572
573
574
static void
connection_destroy( Connection *c )
{
Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
575
	unsigned long	connid;
576
	const char		*close_reason;
Howard Chu's avatar
Howard Chu committed
577
	Sockbuf			*sb;
Howard Chu's avatar
Howard Chu committed
578
	ber_socket_t	sd;
579

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
580
581
582
583
584
	assert( connections != NULL );
	assert( c != NULL );
	assert( c->c_struct_state != SLAP_C_UNUSED );
	assert( c->c_conn_state != SLAP_C_INVALID );
	assert( LDAP_STAILQ_EMPTY(&c->c_ops) );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
585
586
587
588
589
590
	assert( LDAP_STAILQ_EMPTY(&c->c_pending_ops) );
#ifdef LDAP_X_TXN
	assert( c->c_txn == CONN_TXN_INACTIVE );
	assert( c->c_txn_backend == NULL );
	assert( LDAP_STAILQ_EMPTY(&c->c_txn_ops) );
#endif
591
	assert( c->c_writewaiter == 0);
592

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
593
594
	/* only for stats (print -1 as "%lu" may give unexpected results ;) */
	connid = c->c_connid;
595
	close_reason = c->c_close_reason;
Pierangelo Masarati's avatar
Pierangelo Masarati committed
596

Howard Chu's avatar
Howard Chu committed
597
598
599
600
	ldap_pvt_thread_mutex_lock( &connections_mutex );
	c->c_struct_state = SLAP_C_PENDING;
	ldap_pvt_thread_mutex_unlock( &connections_mutex );

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
601
	backend_connection_destroy(c);
602

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
603
604
	c->c_protocol = 0;
	c->c_connid = -1;
605

Kurt Zeilenga's avatar
cleanup    
Kurt Zeilenga committed
606
	c->c_activitytime = c->c_starttime = 0;
607

608
	connection2anonymous( c );
Pierangelo Masarati's avatar
Pierangelo Masarati committed
609
	c->c_listener = NULL;
610

611
612
	if(c->c_peer_domain.bv_val != NULL) {
		free(c->c_peer_domain.bv_val);
Kurt Zeilenga's avatar
Kurt Zeilenga committed
613
	}
614
	BER_BVZERO( &c->c_peer_domain );
615
616
	if(c->c_peer_name.bv_val != NULL) {
		free(c->c_peer_name.bv_val);
617
	}
618
	BER_BVZERO( &c->c_peer_name );
619

620
	c->c_sasl_bind_in_progress = 0;
621
622
	if(c->c_sasl_bind_mech.bv_val != NULL) {
		free(c->c_sasl_bind_mech.bv_val);
623
	}
624
	BER_BVZERO( &c->c_sasl_bind_mech );
625
626

	slap_sasl_close( c );
627

Kurt Zeilenga's avatar
Kurt Zeilenga committed
628
629
630
631
632
	if ( c->c_currentber != NULL ) {
		ber_free( c->c_currentber, 1 );
		c->c_currentber = NULL;
	}

633

Howard Chu's avatar
Howard Chu committed
634
635
636
637
#ifdef LDAP_SLAPI
	/* call destructors, then constructors; avoids unnecessary allocation */
	if ( slapi_plugins_used ) {
		slapi_int_clear_object_extensions( SLAPI_X_EXT_CONNECTION, c );
638
	}
Howard Chu's avatar
Howard Chu committed
639
#endif
640

Howard Chu's avatar
Howard Chu committed
641
642
	sd = c->c_sd;
	c->c_sd = AC_SOCKET_INVALID;
Howard Chu's avatar
Howard Chu committed
643
644
645
	c->c_conn_state = SLAP_C_INVALID;
	c->c_struct_state = SLAP_C_UNUSED;
	c->c_close_reason = "?";			/* should never be needed */
646

Howard Chu's avatar
Howard Chu committed
647
648
	sb = c->c_sb;
	c->c_sb = ber_sockbuf_alloc( );
649
	{
650
		ber_len_t max = sockbuf_max_incoming;
651
652
653
		ber_sockbuf_ctrl( c->c_sb, LBER_SB_OPT_SET_MAX_INCOMING, &max );
	}

Howard Chu's avatar
Howard Chu committed
654
655
656
	/* c must be fully reset by this point; when we call slapd_remove
	 * it may get immediately reused by a new connection.
	 */
Howard Chu's avatar
Howard Chu committed
657
658
	if ( sd != AC_SOCKET_INVALID ) {
		slapd_remove( sd, sb, 1, 0, 0 );
Howard Chu's avatar
Howard Chu committed
659

660
		if ( close_reason == NULL ) {
Quanah Gibson-Mount's avatar
Quanah Gibson-Mount committed
661
			Statslog( LDAP_DEBUG_STATS, "conn=%lu fd=%ld closed\n",
Howard Chu's avatar
Howard Chu committed
662
				connid, (long) sd, 0, 0, 0 );
Quanah Gibson-Mount's avatar
Quanah Gibson-Mount committed
663
664
		} else {
			Statslog( LDAP_DEBUG_STATS, "conn=%lu fd=%ld closed (%s)\n",
Howard Chu's avatar
Howard Chu committed
665
				connid, (long) sd, close_reason, 0, 0 );
666
		}
667
	}
668
669
}

670
671
int connection_state_closing( Connection *c )
{
672
673
	/* c_mutex must be locked by caller */

674
	int state;
675
676
677
	assert( c != NULL );
	assert( c->c_struct_state == SLAP_C_USED );

678
679
680
681
682
	state = c->c_conn_state;

	assert( state != SLAP_C_INVALID );

	return state == SLAP_C_CLOSING;
683
684
}

685
686
687
688
static void connection_abandon( Connection *c )
{
	/* c_mutex must be locked by caller */

689
	Operation *o, *next, op = {0};
Howard Chu's avatar
Howard Chu committed
690
	Opheader ohdr = {0};
691
	SlapReply rs = {0};
692

Howard Chu's avatar
Howard Chu committed
693
694
695
	op.o_hdr = &ohdr;
	op.o_conn = c;
	op.o_connid = c->c_connid;
696
	op.o_tag = LDAP_REQ_ABANDON;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
697

698
699
700
	for ( o = LDAP_STAILQ_FIRST( &c->c_ops ); o; o=next ) {
		next = LDAP_STAILQ_NEXT( o, o_next );
		op.orn_msgid = o->o_msgid;
701
		o->o_abandon = 1;
Pierangelo Masarati's avatar
Pierangelo Masarati committed
702
		op.o_bd = frontendDB;
703
		frontendDB->be_abandon( &op, &rs );
704
705
	}

Kurt Zeilenga's avatar
Kurt Zeilenga committed
706
707
708
709
710
#ifdef LDAP_X_TXN
	/* remove operations in pending transaction */
	while ( (o = LDAP_STAILQ_FIRST( &c->c_txn_ops )) != NULL) {
		LDAP_STAILQ_REMOVE_HEAD( &c->c_txn_ops, o_next );
		LDAP_STAILQ_NEXT(o, o_next) = NULL;
Howard Chu's avatar
Howard Chu committed
711
		slap_op_free( o, NULL );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
712
713
714
715
716
717
718
	}

	/* clear transaction */
	c->c_txn_backend = NULL;
	c->c_txn = CONN_TXN_INACTIVE;
#endif

719
	/* remove pending operations */
720
721
722
	while ( (o = LDAP_STAILQ_FIRST( &c->c_pending_ops )) != NULL) {
		LDAP_STAILQ_REMOVE_HEAD( &c->c_pending_ops, o_next );
		LDAP_STAILQ_NEXT(o, o_next) = NULL;
Howard Chu's avatar
Howard Chu committed
723
		slap_op_free( o, NULL );
724
725
726
	}
}

727
void connection_closing( Connection *c, const char *why )
728
729
730
731
732
733
{
	assert( connections != NULL );
	assert( c != NULL );
	assert( c->c_struct_state == SLAP_C_USED );
	assert( c->c_conn_state != SLAP_C_INVALID );

734
735
	/* c_mutex must be locked by caller */

736
	if( c->c_conn_state != SLAP_C_CLOSING ) {
737
		Debug( LDAP_DEBUG_TRACE,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
738
			"connection_closing: readying conn=%lu sd=%d for close\n",
Howard Chu's avatar
Howard Chu committed
739
			c->c_connid, c->c_sd, 0 );
Kurt Zeilenga's avatar
Kurt Zeilenga committed
740
741
		/* update state to closing */
		c->c_conn_state = SLAP_C_CLOSING;
742
		c->c_close_reason = why;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
743

744
		/* don't listen on this port anymore */
Howard Chu's avatar
Howard Chu committed
745
		slapd_clr_read( c->c_sd, 0 );
746
747

		/* abandon active operations */
748
		connection_abandon( c );
749
750

		/* wake write blocked operations */
751
752
		if ( c->c_writewaiter ) {
			ldap_pvt_thread_cond_signal( &c->c_write_cv );
753
754
755
756
			/* ITS#4667 this may allow another thread to drop into
			 * connection_resched / connection_close before we
			 * finish, but that's OK.
			 */
Howard Chu's avatar
Howard Chu committed
757
			slapd_clr_write( c->c_sd, 1 );
Howard Chu's avatar
Howard Chu committed
758
			ldap_pvt_thread_mutex_unlock( &c->c_mutex );
759
760
761
762
			ldap_pvt_thread_mutex_lock( &c->c_write_mutex );
			ldap_pvt_thread_mutex_lock( &c->c_mutex );
			ldap_pvt_thread_mutex_unlock( &c->c_write_mutex );
		} else {
Howard Chu's avatar
Howard Chu committed
763
			slapd_clr_write( c->c_sd, 1 );
764
		}
Kurt Zeilenga's avatar
Kurt Zeilenga committed
765

766
767
768
	} else if( why == NULL && c->c_close_reason == conn_lost_str ) {
		/* Client closed connection after doing Unbind. */
		c->c_close_reason = NULL;
769
770
771
	}
}

772
773
static void
connection_close( Connection *c )
774
775
776
{
	assert( connections != NULL );
	assert( c != NULL );
777

778
779
	/* ITS#4667 we may have gotten here twice */
	if ( c->c_conn_state == SLAP_C_INVALID )
780
781
		return;

782
	assert( c->c_struct_state == SLAP_C_USED );
Howard Chu's avatar
Howard Chu committed
783
	assert( c->c_conn_state == SLAP_C_CLOSING );
784

785
	/* NOTE: c_mutex should be locked by caller */
786

787
788
789
	if ( !LDAP_STAILQ_EMPTY(&c->c_ops) ||
		!LDAP_STAILQ_EMPTY(&c->c_pending_ops) )
	{
790
		Debug( LDAP_DEBUG_TRACE,
Pierangelo Masarati's avatar
Pierangelo Masarati committed
791
			"connection_close: deferring conn=%lu sd=%d\n",
Howard Chu's avatar
Howard Chu committed
792
			c->c_connid, c->c_sd, 0 );
793
794
795
		return;
	}

Pierangelo Masarati's avatar
Pierangelo Masarati committed
796
	Debug( LDAP_DEBUG_TRACE, "connection_close: conn=%lu sd=%d\n",
Howard Chu's avatar
Howard Chu committed
797
		c->c_connid, c->c_sd, 0 );
798

799
800
801
	connection_destroy( c );
}

802
unsigned long connections_nextid(void)
803
{
804
	unsigned long id;
805
806
	assert( connections != NULL );

807
	ldap_pvt_thread_mutex_lock( &conn_nextid_mutex );
808
809
810

	id = conn_nextid;

811
	ldap_pvt_thread_mutex_unlock( &conn_nextid_mutex );
812
813
814
815

	return id;
}

816
Connection* connection_first( ber_socket_t *index )
817
818
{
	assert( connections != NULL );
819
	assert( index != NULL );
820

821
	ldap_pvt_thread_mutex_lock( &connections_mutex );
Howard Chu's avatar
Howard Chu committed
822
823
	for( *index = 0; *index < dtblsize; (*index)++) {
		if( connections[*index].c_struct_state != SLAP_C_UNINITIALIZED ) {
824
825
826
			break;
		}
	}
Howard Chu's avatar
Howard Chu committed
827
	ldap_pvt_thread_mutex_unlock( &connections_mutex );
828

Howard Chu's avatar
Howard Chu committed
829
	return connection_next(NULL, index);
830
}
Howard Chu's avatar
Howard Chu committed
831
832

Connection* connection_next( Connection *c, ber_socket_t *index )
833
834
{
	assert( connections != NULL );