slap.h 31 KB
Newer Older
Kurt Zeilenga's avatar
Kurt Zeilenga committed
1
/* slap.h - stand alone ldap server include file */
2
/* $OpenLDAP$ */
3
4
5
6
/*
 * Copyright 1998-1999 The OpenLDAP Foundation, All Rights Reserved.
 * COPYING RESTRICTIONS APPLY, see COPYRIGHT file
 */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
7
8
9
10

#ifndef _SLDAPD_H_
#define _SLDAPD_H_

11
12
#include "ldap_defaults.h"

Kurt Zeilenga's avatar
Kurt Zeilenga committed
13
#include <ac/stdlib.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
14

15
#include <sys/types.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
16
17
#include <ac/syslog.h>
#include <ac/regex.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
18
#include <ac/socket.h>
19
#include <ac/time.h>
20
#include <ac/param.h>
Kurt Zeilenga's avatar
Kurt Zeilenga committed
21

22
23
24
25
#ifdef HAVE_CYRUS_SASL
#include <sasl.h>
#endif

Kurt Zeilenga's avatar
Kurt Zeilenga committed
26
#include "avl.h"
27
28
29
30
31

#ifndef ldap_debug
#define ldap_debug slap_debug
#endif

32

33
34
#include "ldap_log.h"

Kurt Zeilenga's avatar
Kurt Zeilenga committed
35
36
#include <ldap.h>
#include <ldap_schema.h>
37

38
#include "ldap_pvt_thread.h"
Kurt Zeilenga's avatar
Kurt Zeilenga committed
39
#include "ldif.h"
40
41
42

LDAP_BEGIN_DECL

Hallvard Furuseth's avatar
Hallvard Furuseth committed
43
44
45
#ifdef f_next
#undef f_next /* name conflict between sys/file.h on SCO and struct filter */
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
46

47
48
#define SERVICE_NAME  OPENLDAP_PACKAGE "-slapd"

Juan Gomez's avatar
Juan Gomez committed
49
50
51
52
53
54
55
/* LDAPMod.mod_op value ===> Must be kept in sync with ldap.h!
 *
 * This is a value used internally by the backends. It is needed to allow
 * adding values that already exist without getting an error as required by
 * modrdn when the new rdn was already an attribute value itself.
 * JCG 05/1999 (gomez@engr.sgi.com)
 */
56
#define SLAP_MOD_SOFTADD	0x1000
57
#undef LDAP_MOD_BVALUES /* we always use BVALUES */
Juan Gomez's avatar
Juan Gomez committed
58

Kurt Zeilenga's avatar
Kurt Zeilenga committed
59
60
#define ON	1
#define OFF	(-1)
61
#define UNDEFINED 0
Kurt Zeilenga's avatar
Kurt Zeilenga committed
62

63
64
#define MAXREMATCHES 10

65
66
67
/* psuedo error code to indicating abandoned operation */
#define SLAPD_ABANDON -1

68
69
/* We assume "C" locale, that is US-ASCII */
#define ASCII_SPACE(c)	( (c) == ' ' )
70
71
72
73
74
75
#define ASCII_LOWER(c)	( (c) >= 'a' && (c) <= 'z' )
#define ASCII_UPPER(c)	( (c) >= 'A' && (c) <= 'Z' )
#define ASCII_ALPHA(c)	( ASCII_LOWER(c) || ASCII_UPPER(c) )
#define ASCII_DIGIT(c)	( (c) >= '0' && (c) <= '9' )
#define ASCII_ALNUM(c)	( ASCII_ALPHA(c) || ASCII_DIGIT(c) )

76
77
78
79
80
81
82
83
#define DN_SEPARATOR(c)	((c) == ',' || (c) == ';')
#define RDN_SEPARATOR(c)	((c) == ',' || (c) == ';' || (c) == '+')
#define RDN_NEEDSESCAPE(c)	((c) == '\\' || (c) == '"')

#define DESC_LEADCHAR(c)	( ASCII_ALPHA(c) )
#define DESC_CHAR(c)	( ASCII_ALNUM(c) || (c) == '-' )
#define OID_LEADCHAR(c)	( ASCII_DIGIT(c) )
#define OID_CHAR(c)	( ASCII_DIGIT(c) || (c) == '.' )
84

85
86
#define ATTR_LEADCHAR(c)	( DESC_LEADCHAR(c) || OID_LEADCHAR(c) )
#define ATTR_CHAR(c)	( DESC_CHAR((c)) || (c) == '.' )
87

88
89
#define AD_LEADCHAR(c)	( ATTR_CHAR(c) )
#define AD_CHAR(c)		( ATTR_CHAR(c) || (c) == ';' )
90

91
92
#define SLAPD_ACI_DEFAULT_ATTR		"aci"

93
94
/* schema needed by slapd */
#define SLAPD_OID_DN_SYNTAX "1.3.6.1.4.1.1466.115.121.1.12"
95
#define SLAPD_OID_ACI_SYNTAX "1.3.6.1.4.1.4203.2.1" /* experimental */
96

97
98
LIBSLAPD_F (int) slap_debug;

99
100
101
102
103
104
105
106
107
108
/*
 * Index types
 */
#define SLAP_INDEX_PRESENCE      0x0001U
#define SLAP_INDEX_EQUALITY      0x0002U
#define SLAP_INDEX_APPROX        0x0004U
#define SLAP_INDEX_SUB           0x0008U
#define SLAP_INDEX_UNKNOWN       0x0010U
#define SLAP_INDEX_FROMINIT      0x8000U	/* psuedo type */

109
110
111
112

/*
 * represents schema information for a database
 */
Julio Sánchez Fernández's avatar
   
Julio Sánchez Fernández committed
113
114
115
116
117
#define SLAP_SCHERR_OUTOFMEM		1
#define SLAP_SCHERR_CLASS_NOT_FOUND	2
#define SLAP_SCHERR_ATTR_NOT_FOUND	3
#define SLAP_SCHERR_DUP_CLASS		4
#define SLAP_SCHERR_DUP_ATTR		5
Julio Sánchez Fernández's avatar
   
Julio Sánchez Fernández committed
118
119
120
121
122
123
#define SLAP_SCHERR_DUP_SYNTAX		6
#define SLAP_SCHERR_DUP_RULE		7
#define SLAP_SCHERR_NO_NAME		8
#define SLAP_SCHERR_ATTR_INCOMPLETE	9
#define SLAP_SCHERR_MR_NOT_FOUND	10
#define SLAP_SCHERR_SYN_NOT_FOUND	11
124
#define SLAP_SCHERR_MR_INCOMPLETE	12
Julio Sánchez Fernández's avatar
   
Julio Sánchez Fernández committed
125

126
typedef struct slap_oid_macro {
127
	struct berval som_oid;
128
	char **som_names;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
129
	struct slap_oid_macro *som_next;
130
131
} OidMacro;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
132
133
134
135
/* forward declarations */
struct slap_syntax;
struct slap_matching_rule;

136
typedef int slap_syntax_validate_func LDAP_P((
Kurt Zeilenga's avatar
Kurt Zeilenga committed
137
	struct slap_syntax *syntax,
138
139
	struct berval * in));

Kurt Zeilenga's avatar
Kurt Zeilenga committed
140
141
typedef int slap_syntax_transform_func LDAP_P((
	struct slap_syntax *syntax,
142
143
144
145
146
	struct berval * in,
	struct berval ** out));

typedef struct slap_syntax {
	LDAP_SYNTAX			ssyn_syn;
147
	unsigned	ssyn_flags;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
148

149
150
#define SLAP_SYNTAX_NONE	0x0U
#define SLAP_SYNTAX_BINARY	0x1U
151

152
	slap_syntax_validate_func	*ssyn_validate;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
153
154
155
156
157

	/* convert to and from binary */
	slap_syntax_transform_func	*ssyn_ber2str;
	slap_syntax_transform_func	*ssyn_str2ber;

158
159
160
161
162
	struct slap_syntax		*ssyn_next;
#define ssyn_oid			ssyn_syn.syn_oid
#define ssyn_desc			ssyn_syn.syn_desc
} Syntax;

163
164
165
166
/* XXX -> UCS-2 Converter */
typedef int slap_mr_convert_func LDAP_P((
	struct berval * in,
	struct berval ** out ));
Kurt Zeilenga's avatar
Kurt Zeilenga committed
167
168
169

/* Normalizer */
typedef int slap_mr_normalize_func LDAP_P((
170
	unsigned use,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
171
172
173
174
175
176
	struct slap_syntax *syntax, /* NULL if in is asserted value */
	struct slap_matching_rule *mr,
	struct berval * in,
	struct berval ** out ));

/* Match (compare) function */
177
typedef int slap_mr_match_func LDAP_P((
178
	unsigned use,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
179
180
181
	struct slap_syntax *syntax,	/* syntax of stored value */
	struct slap_matching_rule *mr,
	struct berval * value,
182
	void * assertValue ));
183

184
185
/* Index generation function */
typedef int slap_mr_indexer_func LDAP_P((
186
	unsigned use,
187
188
189
190
191
192
193
194
	struct slap_syntax *syntax,	/* syntax of stored value */
	struct slap_matching_rule *mr,
	struct berval **values,
	struct berval **keys ));

struct slap_filter; 	/* forward declaration */
/* Filter index function */
typedef int slap_mr_filter_func LDAP_P((
195
	unsigned use,
196
197
198
199
200
	struct slap_syntax *syntax,	/* syntax of stored value */
	struct slap_matching_rule *mr,
	struct slap_filter *filter,
	struct berval **keys ));

201
202
typedef struct slap_matching_rule {
	LDAP_MATCHING_RULE		smr_mrule;
203
204
205
206
207
208
209
	unsigned				smr_usage;
#define SLAP_MR_NONE		0x00U
#define SLAP_MR_EQUALITY	0x01U
#define SLAP_MR_APPROX		0x02U
#define SLAP_MR_ORDERING	0x04U
#define SLAP_MR_SUBSTR		0x08U
#define SLAP_MR_EXT			0x10U
210
	Syntax					*smr_syntax;
211
	slap_mr_convert_func	*smr_convert;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
212
	slap_mr_normalize_func	*smr_normalize;
213
	slap_mr_match_func		*smr_match;
214
215
	slap_mr_indexer_func	*smr_indexer;
	slap_mr_filter_func		*smr_filter;
216
217
218
219
	struct slap_matching_rule	*smr_next;
#define smr_oid				smr_mrule.mr_oid
#define smr_names			smr_mrule.mr_names
#define smr_desc			smr_mrule.mr_desc
Kurt Zeilenga's avatar
Kurt Zeilenga committed
220
221
#define smr_obsolete		smr_mrule.mr_obsolete
#define smr_syntax_oid		smr_mrule.mr_syntax_oid
222
223
224
} MatchingRule;

typedef struct slap_attribute_type {
225
226
227
#ifdef SLAPD_SCHEMA_NOT_COMPAT
	char					*sat_cname;
#endif
228
229
230
231
232
233
234
	LDAP_ATTRIBUTE_TYPE		sat_atype;
	struct slap_attribute_type	*sat_sup;
	struct slap_attribute_type	**sat_subtypes;
	MatchingRule			*sat_equality;
	MatchingRule			*sat_ordering;
	MatchingRule			*sat_substr;
	Syntax				*sat_syntax;
235
#ifndef SLAPD_SCHEMA_NOT_COMPAT
236
237
	/* The next one is created to help in the transition */
	int				sat_syntax_compat;
238
#endif
239
240
241
242
243
244
245
246
247
248
249
250
	struct slap_attribute_type	*sat_next;
#define sat_oid			sat_atype.at_oid
#define sat_names		sat_atype.at_names
#define sat_desc		sat_atype.at_desc
#define sat_obsolete		sat_atype.at_obsolete
#define sat_sup_oid		sat_atype.at_sup_oid
#define sat_equality_oid	sat_atype.at_equality_oid
#define sat_ordering_oid	sat_atype.at_ordering_oid
#define sat_substr_oid		sat_atype.at_substr_oid
#define sat_syntax_oid		sat_atype.at_syntax_oid
#define sat_single_value	sat_atype.at_single_value
#define sat_collective		sat_atype.at_collective
251
#define sat_no_user_mod		sat_atype.at_no_user_mod
252
253
254
#define sat_usage		sat_atype.at_usage
} AttributeType;

255
256
257
258
259
#define is_at_operational(at)	((at)->sat_usage)
#define is_at_single_value(at)	((at)->sat_single_value)
#define is_at_collective(at)	((at)->sat_collective)
#define is_at_no_user_mod(at)	((at)->sat_no_user_mod)

260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
typedef struct slap_object_class {
	LDAP_OBJECT_CLASS		soc_oclass;
	struct slap_object_class	**soc_sups;
	AttributeType			**soc_required;
	AttributeType			**soc_allowed;
	struct slap_object_class	*soc_next;
#define soc_oid			soc_oclass.oc_oid
#define soc_names		soc_oclass.oc_names
#define soc_desc		soc_oclass.oc_desc
#define soc_obsolete		soc_oclass.oc_obsolete
#define soc_sup_oids		soc_oclass.oc_sup_oids
#define soc_kind		soc_oclass.oc_kind
#define soc_at_oids_must	soc_oclass.oc_at_oids_must
#define soc_at_oids_may		soc_oclass.oc_at_oids_may
} ObjectClass;
275

276

277
278
279
280
281
282
283
284
285
286
287
288
289
290
#ifdef SLAPD_SCHEMA_NOT_COMPAT
/*
 * represents a recognized attribute description ( type + options )
 */
typedef struct slap_attr_desc {
	struct berval *ad_cname;	/* canonical name */
	AttributeType *ad_type;		/* NULL if unknown */
	char *ad_lang;				/* NULL if no language tags */
	unsigned ad_flags;
#define SLAP_DESC_NONE		0x0U
#define SLAP_DESC_BINARY	0x1U
} AttributeDescription;

typedef struct slap_attr_assertion {
291
	AttributeDescription	*aa_desc;
292
293
294
	struct berval *aa_value;
} AttributeAssertion;

295
296
297
298
299
300
301
typedef struct slap_ss_assertion {
	AttributeDescription	*sa_desc;
	struct berval			*sa_initial;
	struct berval			**sa_any;
	struct berval			*sa_final;
} SubstringAssertion;

302
303
304
305
306
307
typedef struct slap_mr_assertion {
	char					*ma_rule;	/* optional */
	AttributeDescription	*ma_desc;	/* optional */
	int						ma_dnattrs; /* boolean */
	struct berval			*ma_value;	/* required */
} MatchingRuleAssertion;
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328

#else

/*
 * represents an attribute value assertion (i.e., attr;option=value)
 */
typedef struct slap_ava {
	char		*ava_type;	/* attribute description */
	struct berval	ava_value;
} Ava;

/*
 * represents an matching rule assertion
 */
typedef struct slap_mra {
	char	*mra_rule;	/* optional */
	char	*mra_type;	/* attribute description -- optional */
	int		mra_dnattrs;
	struct berval	*mra_value;
} Mra;

329
330
#endif

Kurt Zeilenga's avatar
Kurt Zeilenga committed
331
332
333
/*
 * represents a search filter
 */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
334
typedef struct slap_filter {
335
	ber_tag_t	f_choice;	/* values taken from ldap.h */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
336

Kurt Zeilenga's avatar
Kurt Zeilenga committed
337
	union f_un_u {
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
#ifdef SLAPD_SCHEMA_NOT_COMPAT
		/* DN */
		char *f_un_dn;

		/* present */
		AttributeDescription *f_un_desc;

		/* simple value assertion */
		AttributeAssertion *f_un_ava;

		/* substring assertion */
		SubstringAssertion *f_un_ssa;

		/* matching rule assertion */
		MatchingRuleAssertion *f_un_mra;

		/* and, or, not */
		struct slap_filter *f_un_complex;

#define f_dn			f_un.f_un_dn
#define f_desc			f_un.f_un_desc
#define f_ava			f_un.f_un_ava
#define f_av_desc		f_un.f_un_ava->aa_desc
#define f_av_value		f_un.f_un_ava->aa_value
#define f_sub			f_un.f_un_ssa
#define f_sub_desc		f_un.f_un_ssa->sa_desc
#define f_sub_initial	f_un.f_un_ssa->sa_initial
#define f_sub_any		f_un.f_un_ssa->sa_any
#define f_sub_final		f_un.f_un_ssa->sa_final
#define f_mra			f_un.f_un_mra
#define f_mr_rule		f_un.f_un_mra->ma_rule
#define f_mr_desc		f_un.f_un_mra->ma_desc
#define f_mr_value		f_un.f_un_mra->ma_value
#define	f_mr_dnaddrs	f_un.f_un_mra->ma_dnattrs
#else
Kurt Zeilenga's avatar
Kurt Zeilenga committed
373
374
375
376
377
378
		/* present */
		char		*f_un_type;

		/* equality, lessorequal, greaterorequal, approx */
		Ava		f_un_ava;

379
380
381
		/* extensible */
		Mra		f_un_fra;	

382
		/* and, or, not, list */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
383
		struct slap_filter	*f_un_complex;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
384
385
386
387

		/* substrings */
		struct sub {
			char	*f_un_sub_type;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
388
389
390
391

			struct berval	*f_un_sub_initial;
			struct berval	**f_un_sub_any;
			struct berval	*f_un_sub_final;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
392
		} f_un_sub;
393
394

#define f_dn		f_un.f_un_type  /* used for DN indices */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
395
396
397
398
#define f_type		f_un.f_un_type
#define f_ava		f_un.f_un_ava
#define f_avtype	f_un.f_un_ava.ava_type
#define f_avvalue	f_un.f_un_ava.ava_value
399
400
401
402
#define f_mra		f_un.f_un_mra
#define f_mrtype	f_un.f_un_mra.mra_type
#define f_mrvalue	f_un.f_un_mra.mra_value
#define	f_mrdnaddrs	f_un.f_un_mra.mra_dnattrs
Kurt Zeilenga's avatar
Kurt Zeilenga committed
403
404
405
406
407
#define f_sub		f_un.f_un_sub
#define f_sub_type	f_un.f_un_sub.f_un_sub_type
#define f_sub_initial	f_un.f_un_sub.f_un_sub_initial
#define f_sub_any	f_un.f_un_sub.f_un_sub_any
#define f_sub_final	f_un.f_un_sub.f_un_sub_final
408
409
410
411
412
413
414
#endif
	} f_un;

#define f_and		f_un.f_un_complex
#define f_or		f_un.f_un_complex
#define f_not		f_un.f_un_complex
#define f_list		f_un.f_un_complex
Kurt Zeilenga's avatar
Kurt Zeilenga committed
415

Kurt Zeilenga's avatar
Kurt Zeilenga committed
416
	struct slap_filter	*f_next;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
417
418
419
} Filter;

/*
420
 * represents an attribute (description + values)
Kurt Zeilenga's avatar
Kurt Zeilenga committed
421
 */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
422
typedef struct slap_attr {
423
424
425
#ifdef SLAPD_SCHEMA_NOT_COMPAT
	AttributeDescription a_desc;
#else
426
	char		*a_type;	/* description */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
427
	int		a_syntax;
428
#endif
429
	struct berval	**a_vals;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
430
	struct slap_attr	*a_next;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
431
432
} Attribute;

433
#ifndef SLAPD_SCHEMA_NOT_COMPAT
Kurt Zeilenga's avatar
Kurt Zeilenga committed
434
435
436
437
438
439
440
441
442
/*
 * the attr_syntax() routine returns one of these values
 * telling what kind of syntax an attribute supports.
 */
#define SYNTAX_CIS	0x01	/* case insensitive string		*/
#define SYNTAX_CES	0x02	/* case sensitive string		*/
#define SYNTAX_BIN	0x04	/* binary data 				*/
#define SYNTAX_TEL	0x08	/* telephone number string		*/
#define SYNTAX_DN	0x10	/* dn string				*/
443
#endif
Kurt Zeilenga's avatar
Kurt Zeilenga committed
444
445
446
447
448

/*
 * the id used in the indexes to refer to an entry
 */
typedef unsigned long	ID;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
449
#define NOID	((ID)~0)
Kurt Zeilenga's avatar
Kurt Zeilenga committed
450
451
452
453

/*
 * represents an entry in core
 */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
454
typedef struct slap_entry {
455
456
457
458
459
	/*
	 * The ID field should only be changed before entry is
	 * inserted into a cache.  The ID value is backend
	 * specific.
	 */
460
	ID		e_id;
461

462
463
464
	char		*e_dn;		/* DN of this entry */
	char		*e_ndn;		/* normalized DN of this entry */
	Attribute	*e_attrs;	/* list of attributes + values */
465

466
467
	/* for use by the backend for any purpose */
	void*	e_private;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
468
469
} Entry;

470
471
472
473
474
475
476
477
478
479
480
481
482
483
/*
 * A list of LDAPMods
 */
#ifdef SLAPD_SCHEMA_NOT_COMPAT
typedef struct slap_mod {
	int sm_op;
	AttributeDescription sm_desc;
	struct berval **sm_bvalues;
} Modification;
#else
#define Modification LDAPMod
#endif

typedef struct slap_mod_list {
484
	Modification sml_mod;
485
#ifdef SLAPD_SCHEMA_NOT_COMPAT
486
487
488
#define sml_op		sml_mod.sm_op
#define sml_desc	sml_mod.sm_desc
#define sml_bvalues	sml_mod.sm_bvalues
489
#else
490
491
492
493
494
495
496
497
498
499
500
501
#define sml_op		sml_mod.mod_op
#define sml_type	sml_mod.mod_type
#define sml_values	sml_mod.mod_values
#define sml_bvalues	sml_mod.mod_bvalues
#endif
	struct slap_mod_list *sml_next;
} Modifications;

#ifdef SLAPD_SCHEMA_NOT_COMPAT
typedef struct slap_ldap_modlist {
	LDAPMod ml_mod;
	struct slap_ldap_modlist *ml_next;
502
503
504
505
#define ml_op		ml_mod.mod_op
#define ml_type		ml_mod.mod_type
#define ml_values	ml_mod.mod_values
#define ml_bvalues	ml_mod.mod_bvalues
506
507
508
509
510
511
512
513
514
} LDAPModList;
#else
#define LDAPModList Modifications
#define ml_mod		sml_mod
#define ml_op		sml_mod.mod_op
#define ml_type		sml_mod.mod_type
#define ml_values	sml_mod.mod_values
#define ml_bvalues	sml_mod.mod_bvalues
#define ml_next		sml_next
515
516
#endif

Kurt Zeilenga's avatar
Kurt Zeilenga committed
517
518
519
520
/*
 * represents an access control list
 */

521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
typedef enum slap_access_e {
	ACL_INVALID_ACCESS = -1,
	ACL_NONE = 0,
	ACL_AUTH,
	ACL_COMPARE,
	ACL_SEARCH,
	ACL_READ,
	ACL_WRITE
} slap_access_t;

typedef enum slap_control_e {
	ACL_INVALID_CONTROL	= 0,
	ACL_STOP,
	ACL_CONTINUE,
	ACL_BREAK
} slap_control_t;

typedef unsigned long slap_access_mask_t;

Kurt Zeilenga's avatar
Kurt Zeilenga committed
540
/* the "by" part */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
541
typedef struct slap_access {
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
	slap_control_t a_type;

#define ACL_ACCESS2PRIV(access)	(0x01U << (access))

#define ACL_PRIV_NONE			ACL_ACCESS2PRIV( ACL_NONE )
#define ACL_PRIV_AUTH			ACL_ACCESS2PRIV( ACL_AUTH )
#define ACL_PRIV_COMPARE		ACL_ACCESS2PRIV( ACL_COMPARE )
#define ACL_PRIV_SEARCH			ACL_ACCESS2PRIV( ACL_SEARCH )
#define ACL_PRIV_READ			ACL_ACCESS2PRIV( ACL_READ )
#define ACL_PRIV_WRITE			ACL_ACCESS2PRIV( ACL_WRITE )

#define ACL_PRIV_MASK			0x00ffUL

/* priv flags */
#define ACL_PRIV_LEVEL			0x1000UL
#define ACL_PRIV_ADDITIVE		0x2000UL
#define ACL_PRIV_SUBSTRACTIVE	0x4000UL

/* invalid privs */
#define ACL_PRIV_INVALID		0x0UL

#define ACL_PRIV_ISSET(m,p)		(((m) & (p)) == (p))
#define ACL_PRIV_ASSIGN(m,p)	do { (m)  =  (p); } while(0)
#define ACL_PRIV_SET(m,p)		do { (m) |=  (p); } while(0)
#define ACL_PRIV_CLR(m,p)		do { (m) &= ~(p); } while(0)

#define ACL_INIT(m)				ACL_PRIV_ASSIGN(m, ACL_PRIV_NONE)
#define ACL_INVALIDATE(m)		ACL_PRIV_ASSIGN(m, ACL_PRIV_INVALID)

#define ACL_GRANT(m,a)			ACL_PRIV_ISSET((m),ACL_ACCESS2PRIV(a))

#define ACL_IS_INVALID(m)		((m) == ACL_PRIV_INVALID)

#define ACL_IS_LEVEL(m)			ACL_PRIV_ISSET((m),ACL_PRIV_LEVEL)
#define ACL_IS_ADDITIVE(m)		ACL_PRIV_ISSET((m),ACL_PRIV_ADDITIVE)
#define ACL_IS_SUBTRACTIVE(m)	ACL_PRIV_ISSET((m),ACL_PRIV_SUBSTRACTIVE)

#define ACL_LVL_NONE			(ACL_PRIV_NONE|ACL_PRIV_LEVEL)
#define ACL_LVL_AUTH			(ACL_PRIV_AUTH|ACL_LVL_NONE)
#define ACL_LVL_COMPARE			(ACL_PRIV_COMPARE|ACL_LVL_AUTH)
#define ACL_LVL_SEARCH			(ACL_PRIV_SEARCH|ACL_LVL_COMPARE)
#define ACL_LVL_READ			(ACL_PRIV_READ|ACL_LVL_SEARCH)
#define ACL_LVL_WRITE			(ACL_PRIV_WRITE|ACL_LVL_READ)

#define ACL_LVL(m,l)			(((m)&ACL_PRIV_MASK) == ((l)&ACL_PRIV_MASK))
#define ACL_LVL_IS_NONE(m)		ACL_LVL((m),ACL_LVL_NONE)
#define ACL_LVL_IS_AUTH(m)		ACL_LVL((m),ACL_LVL_AUTH)
#define ACL_LVL_IS_COMPARE(m)	ACL_LVL((m),ACL_LVL_COMPARE)
#define ACL_LVL_IS_SEARCH(m)	ACL_LVL((m),ACL_LVL_SEARCH)
#define ACL_LVL_IS_READ(m)		ACL_LVL((m),ACL_LVL_READ)
#define ACL_LVL_IS_WRITE(m)		ACL_LVL((m),ACL_LVL_WRITE)

#define ACL_LVL_ASSIGN_NONE(m)		ACL_PRIV_ASSIGN((m),ACL_LVL_NONE)
#define ACL_LVL_ASSIGN_AUTH(m)		ACL_PRIV_ASSIGN((m),ACL_LVL_AUTH)
#define ACL_LVL_ASSIGN_COMPARE(m)	ACL_PRIV_ASSIGN((m),ACL_LVL_COMPARE)
#define ACL_LVL_ASSIGN_SEARCH(m)	ACL_PRIV_ASSIGN((m),ACL_LVL_SEARCH)
#define ACL_LVL_ASSIGN_READ(m)		ACL_PRIV_ASSIGN((m),ACL_LVL_READ)
#define ACL_LVL_ASSIGN_WRITE(m)		ACL_PRIV_ASSIGN((m),ACL_LVL_WRITE)
600

601
	slap_access_mask_t	a_mask;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
602

Kurt Zeilenga's avatar
Kurt Zeilenga committed
603
	char		*a_dn_pat;
604
#ifdef SLAPD_SCHEMA_NOT_COMPAT
605
	AttributeDescription	*a_dn_at;
606
607
#else
	char		*a_dn_at;
608
#endif
609
	int			a_dn_self;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
610
611
612
613
614

	char		*a_peername_pat;
	char		*a_sockname_pat;

	char		*a_domain_pat;
615
	char		*a_sockurl_pat;
616

617
#ifdef SLAPD_ACI_ENABLED
618
#ifdef SLAPD_SCHEMA_NOT_COMPAT
619
	AttributeDescription	*a_aci_at;
620
621
#else
	char		*a_aci_at;
622
#endif
623
624
#endif

625
	/* ACL Groups */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
626
	char		*a_group_pat;
627
	char		*a_group_oc;
628
#ifdef SLAPD_SCHEMA_NOT_COMPAT
629
	AttributeDescription	*a_group_at;
630
631
#else
	char		*a_group_at;
632
#endif
633

Kurt Zeilenga's avatar
Kurt Zeilenga committed
634
635
	struct slap_access	*a_next;
} Access;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
636
637

/* the "to" part */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
638
typedef struct slap_acl {
Kurt Zeilenga's avatar
Kurt Zeilenga committed
639
640
	/* "to" part: the entries this acl applies to */
	Filter		*acl_filter;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
641
642
	regex_t		acl_dn_re;
	char		*acl_dn_pat;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
643
644
645
	char		**acl_attrs;

	/* "by" part: list of who has what access to the entries */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
646
	Access	*acl_access;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
647

Kurt Zeilenga's avatar
Kurt Zeilenga committed
648
649
	struct slap_acl	*acl_next;
} AccessControl;
Kurt Zeilenga's avatar
Kurt Zeilenga committed
650

Kurt Zeilenga's avatar
Kurt Zeilenga committed
651
/*
652
 * replog moddn param structure
Kurt Zeilenga's avatar
Kurt Zeilenga committed
653
 */
654
655
656
657
658
659
struct replog_moddn {
	char *newrdn;
	int	deloldrdn;
	char *newsup;
};

Kurt Zeilenga's avatar
Kurt Zeilenga committed
660
/*
661
662
 * Backend-info
 * represents a backend 
Kurt Zeilenga's avatar
Kurt Zeilenga committed
663
664
 */

Kurt Zeilenga's avatar
Kurt Zeilenga committed
665
666
typedef struct slap_backend_info BackendInfo;	/* per backend type */
typedef struct slap_backend_db BackendDB;		/* per backend database */
667

Howard Chu's avatar
Howard Chu committed
668
669
670
671
LIBSLAPD_F (int) nBackendInfo;
LIBSLAPD_F (int) nBackendDB;
LIBSLAPD_F (BackendInfo	*) backendInfo;
LIBSLAPD_F (BackendDB *) backendDB;
672

Howard Chu's avatar
Howard Chu committed
673
LIBSLAPD_F (int) slapMode;	
674
675
676
677
678
679
#define SLAP_UNDEFINED_MODE	0x0000
#define SLAP_SERVER_MODE	0x0001
#define SLAP_TOOL_MODE		0x0002
#define SLAP_MODE			0x0003

#define SLAP_TRUNCATE_MODE	0x0100
680
#ifdef SLAPD_BDB2
681
#define SLAP_TIMED_MODE		0x1000
682
#endif
683
#define SLAP_TOOLID_MODE    4
684
685
686
687
688
689

/* temporary aliases */
typedef BackendDB Backend;
#define nbackends nBackendDB
#define backends backendDB

Kurt Zeilenga's avatar
Kurt Zeilenga committed
690
struct slap_backend_db {
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
	BackendInfo	*bd_info;	/* pointer to shared backend info */

	/* BackendInfo accessors */
#define		be_config	bd_info->bi_db_config
#define		be_type		bd_info->bi_type

#define		be_bind		bd_info->bi_op_bind
#define		be_unbind	bd_info->bi_op_unbind
#define		be_add		bd_info->bi_op_add
#define		be_compare	bd_info->bi_op_compare
#define		be_delete	bd_info->bi_op_delete
#define		be_modify	bd_info->bi_op_modify
#define		be_modrdn	bd_info->bi_op_modrdn
#define		be_search	bd_info->bi_op_search

706
707
#define		be_extended	bd_info->bi_extended

708
#define		be_release	bd_info->bi_entry_release_rw
709
710
#define		be_group	bd_info->bi_acl_group

711
712
#define		be_controls	bd_info->bi_controls

713
714
715
#define		be_connection_init	bd_info->bi_connection_init
#define		be_connection_destroy	bd_info->bi_connection_destroy

716
717
718
719
720
721
722
723
724
725
#ifdef SLAPD_TOOLS
#define		be_entry_open bd_info->bi_tool_entry_open
#define		be_entry_close bd_info->bi_tool_entry_close
#define		be_entry_first bd_info->bi_tool_entry_first
#define		be_entry_next bd_info->bi_tool_entry_next
#define		be_entry_get bd_info->bi_tool_entry_get
#define		be_entry_put bd_info->bi_tool_entry_put
#define		be_index_attr bd_info->bi_tool_index_attr
#define		be_index_change bd_info->bi_tool_index_change
#define		be_sync bd_info->bi_tool_sync
726
727
728
729
730
731
#endif

#ifdef HAVE_CYRUS_SASL
#define		be_sasl_authorize bd_info->bi_sasl_authorize
#define		be_sasl_getsecret bd_info->bi_sasl_getsecret
#define		be_sasl_putsecret bd_info->bi_sasl_putsecret
732
#endif
733

734
	/* these should be renamed from be_ to bd_ */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
735
	char	**be_suffix;	/* the DN suffixes of data in this backend */
736
	char	**be_nsuffix;	/* the normalized DN suffixes in this backend */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
737
	char	**be_suffixAlias; /* pairs of DN suffix aliases and deref values */
738
739
	char	*be_root_dn;	/* the magic "root" dn for this db 	*/
	char	*be_root_ndn;	/* the magic "root" normalized dn for this db	*/
740
	struct berval be_root_pw;	/* the magic "root" password for this db	*/
Kurt Zeilenga's avatar
Kurt Zeilenga committed
741
	int	be_readonly;	/* 1 => db is in "read only" mode	   */
742
	unsigned int be_max_deref_depth;       /* limit for depth of an alias deref  */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
743
744
	int	be_sizelimit;	/* size limit for this backend   	   */
	int	be_timelimit;	/* time limit for this backend       	   */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
745
	AccessControl *be_acl;	/* access control list for this backend	   */
746
	slap_access_t	be_dfltaccess;	/* access given if no acl matches	   */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
747
748
	char	**be_replica;	/* replicas of this backend (in master)	   */
	char	*be_replogfile;	/* replication log file (in master)	   */
749
	char	*be_update_ndn;	/* allowed to make changes (in replicas) */
750
	struct berval **be_update_refs;	/* where to refer modifying clients to */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
751
752
	int	be_lastmod;	/* keep track of lastmodified{by,time}	   */

753
754
	char	*be_realm;

755
	void	*be_private;	/* anything the backend database needs 	   */
756
757
};

758
759
760
struct slap_conn;
struct slap_op;

761
762
763
764
typedef int (*SLAP_EXTENDED_FN) LDAP_P((
    Backend		*be,
    struct slap_conn		*conn,
    struct slap_op		*op,
765
	char		*reqoid,
766
    struct berval * reqdata,
767
	char		**rspoid,
768
    struct berval ** rspdata,
769
770
771
	LDAPControl *** rspctrls,
	char **	text,
	struct berval *** refs ));
772

Kurt Zeilenga's avatar
Kurt Zeilenga committed
773
struct slap_backend_info {
774
	char	*bi_type;	/* type of backend */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
775

776
777
778
779
780
781
782
783
784
785
786
787
788
789
790
791
792
793
794
795
796
797
	/*
	 * per backend type routines:
	 * bi_init: called to allocate a backend_info structure,
	 *		called once BEFORE configuration file is read.
	 *		bi_init() initializes this structure hence is
	 *		called directly from be_initialize()
	 * bi_config: called per 'backend' specific option
	 *		all such options must before any 'database' options
	 *		bi_config() is called only from read_config()
	 * bi_open: called to open each database, called
	 *		once AFTER configuration file is read but
	 *		BEFORE any bi_db_open() calls.
	 *		bi_open() is called from backend_startup()
	 * bi_close: called to close each database, called
	 *		once during shutdown after all bi_db_close calls.
	 *		bi_close() is called from backend_shutdown()
	 * bi_destroy: called to destroy each database, called
	 *		once during shutdown after all bi_db_destroy calls.
	 *		bi_destory() is called from backend_destroy()
	 */
	int (*bi_init)	LDAP_P((BackendInfo *bi));
	int	(*bi_config) LDAP_P((BackendInfo *bi,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
798
		const char *fname, int lineno, int argc, char **argv ));
799
800
801
802
803
804
805
806
807
808
809
810
811
812
813
814
815
816
817
818
819
820
821
822
823
824
825
	int (*bi_open) LDAP_P((BackendInfo *bi));
	int (*bi_close) LDAP_P((BackendInfo *bi));
	int (*bi_destroy) LDAP_P((BackendInfo *bi));

	/*
	 * per database routines:
	 * bi_db_init: called to initialize each database,
	 *	called upon reading 'database <type>' 
	 *	called only from backend_db_init()
	 * bi_db_config: called to configure each database,
	 *  called per database to handle per database options
	 *	called only from read_config()
	 * bi_db_open: called to open each database
	 *	called once per database immediately AFTER bi_open()
	 *	calls but before daemon startup.
	 *  called only by backend_startup()
	 * bi_db_close: called to close each database
	 *	called once per database during shutdown but BEFORE
	 *  any bi_close call.
	 *  called only by backend_shutdown()
	 * bi_db_destroy: called to destroy each database
	 *  called once per database during shutdown AFTER all
	 *  bi_close calls but before bi_destory calls.
	 *  called only by backend_destory()
	 */
	int (*bi_db_init) LDAP_P((Backend *bd));
	int	(*bi_db_config) LDAP_P((Backend *bd,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
826
		const char *fname, int lineno, int argc, char **argv ));
827
828
829
830
831
832
	int (*bi_db_open) LDAP_P((Backend *bd));
	int (*bi_db_close) LDAP_P((Backend *bd));
	int (*bi_db_destroy) LDAP_P((Backend *db));

	/* LDAP Operations Handling Routines */
	int	(*bi_op_bind)  LDAP_P(( BackendDB *bd,
833
		struct slap_conn *c, struct slap_op *o,
834
		char *dn, char *ndn, int method, char* mechanism,
835
		struct berval *cred, char** edn ));
836
	int (*bi_op_unbind) LDAP_P((BackendDB *bd,
837
		struct slap_conn *c, struct slap_op *o ));
838
	int	(*bi_op_search) LDAP_P((BackendDB *bd,
839
		struct slap_conn *c, struct slap_op *o,
840
		char *base, char *nbase, int scope, int deref,
841
842
843
		int slimit, int tlimit,
		Filter *f, char *filterstr, char **attrs,
		int attrsonly));
844
845
846
847
848
#ifdef SLAPD_SCHEMA_NOT_COMPAT
	int	(*bi_op_compare)LDAP_P((BackendDB *bd,
		struct slap_conn *c, struct slap_op *o,
		char *dn, char *ndn, AttributeAssertion *ava));
#else
849
	int	(*bi_op_compare)LDAP_P((BackendDB *bd,
850
		struct slap_conn *c, struct slap_op *o,
851
		char *dn, char *ndn, Ava *ava));
852
#endif
853
	int	(*bi_op_modify) LDAP_P((BackendDB *bd,
854
		struct slap_conn *c, struct slap_op *o,
855
		char *dn, char *ndn, Modifications *m));
856
	int	(*bi_op_modrdn) LDAP_P((BackendDB *bd,
857
		struct slap_conn *c, struct slap_op *o,
858
		char *dn, char *ndn, char *newrdn, int deleteoldrdn,
859
		char *newSuperior));
860
	int	(*bi_op_add)    LDAP_P((BackendDB *bd,
861
862
		struct slap_conn *c, struct slap_op *o,
		Entry *e));
863
	int	(*bi_op_delete) LDAP_P((BackendDB *bd,
864
		struct slap_conn *c, struct slap_op *o,
865
		char *dn, char *ndn));
866
	int	(*bi_op_abandon) LDAP_P((BackendDB *bd,
867
		struct slap_conn *c, struct slap_op *o,
868
		ber_int_t msgid));
869

870
871
872
	/* Extended Operations Helper */
	SLAP_EXTENDED_FN bi_extended;

873
	/* Auxilary Functions */
874
	int	(*bi_entry_release_rw) LDAP_P((BackendDB *bd, Entry *e, int rw));
875

876
#ifdef SLAPD_SCHEMA_NOT_COMPAT
877
	int	(*bi_acl_group)  LDAP_P((Backend *bd,
Kurt Zeilenga's avatar
Kurt Zeilenga committed
878
		Entry *e, const char *bdn, const char *edn,
879
		const char *objectclassValue,
880
		AttributeDescription *group_at ));
881
882
883
884
885
886
#else
	int	(*bi_acl_group)  LDAP_P((Backend *bd,
		Entry *e, const char *bdn, const char *edn,
		const char *objectclassValue,
		const char *group_at ));
#endif
887

888
889
890
891
892
	int	(*bi_connection_init) LDAP_P((BackendDB *bd,
		struct slap_conn *c));
	int	(*bi_connection_destroy) LDAP_P((BackendDB *bd,
		struct slap_conn *c));

893
894
895
896
897
898
899
900
901
902
903
904
	/* hooks for slap tools */
	int (*bi_tool_entry_open) LDAP_P(( BackendDB *be, int mode ));
	int (*bi_tool_entry_close) LDAP_P(( BackendDB *be ));
	ID (*bi_tool_entry_first) LDAP_P(( BackendDB *be ));
	ID (*bi_tool_entry_next) LDAP_P(( BackendDB *be ));
	Entry* (*bi_tool_entry_get) LDAP_P(( BackendDB *be, ID id ));
	ID (*bi_tool_entry_put) LDAP_P(( BackendDB *be, Entry *e ));
	int (*bi_tool_index_attr) LDAP_P(( BackendDB *be, char* type ));
	int (*bi_tool_index_change) LDAP_P(( BackendDB *be, char* type,
		struct berval **bv, ID id, int op ));
	int (*bi_tool_sync) LDAP_P(( BackendDB *be ));

905
906
907
908
909
910
911
912
913
914
915
916
#ifdef HAVE_CYRUS_SASL
	int (*bi_sasl_authorize) LDAP_P(( BackendDB *be,
		const char *authnid, const char *authzid,
		const char **canon_authzid, const char **errstr ));
	int (*bi_sasl_getsecret) LDAP_P(( BackendDB *be,
		const char *mechanism, const char *authzid,
		const char *realm, sasl_secret_t **secret ));
	int (*bi_sasl_putsecret) LDAP_P(( BackendDB *be,
		const char *mechanism, const char *auth_identity,
		const char *realm, const sasl_secret_t *secret ));
#endif /* HAVE_CYRUS_SASL */

917
918
#define SLAP_INDEX_ADD_OP		0x0001
#define SLAP_INDEX_DELETE_OP	0x0002
919

920
921
	char **bi_controls;		/* supported controls */

922
	unsigned int bi_nDB;	/* number of databases of this type */
923
	void	*bi_private;	/* anything the backend type needs */
924
};
Kurt Zeilenga's avatar
Kurt Zeilenga committed
925
926
927
928
929

/*
 * represents an operation pending from an ldap client
 */

930
typedef struct slap_op {
931
932
	ber_int_t	o_opid;		/* id of this operation		  */
	ber_int_t	o_msgid;	/* msgid of the request		  */
933
934
935

	ldap_pvt_thread_t	o_tid;		/* thread handling this op	  */

Kurt Zeilenga's avatar
Kurt Zeilenga committed
936
	BerElement	*o_ber;		/* ber of the request		  */
937

938
	ber_tag_t	o_tag;		/* tag of the request		  */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
939
	time_t		o_time;		/* time op was initiated	  */
940

Kurt Zeilenga's avatar
Kurt Zeilenga committed
941
	int		o_bind_in_progress;	/* multi-step bind in progress */
942
943
944
945
946
947
948
#ifdef SLAP_AUTHZID
	/* should only be used for reporting purposes */
	char	*o_authc_dn;	/* authentication DN */

	/* should be used as the DN of the User */
	char	*o_authz_dn;	/* authorization DN */
	char	*o_authz_ndn;	/* authorizaiton NDN */
949

950
#else
Kurt Zeilenga's avatar
Kurt Zeilenga committed
951
	char		*o_dn;		/* dn bound when op was initiated */
952
	char		*o_ndn;		/* normalized dn bound when op was initiated */
953
954
#endif

955
	ber_int_t	o_protocol;	/* version of the LDAP protocol used by client */
956
	ber_tag_t	o_authtype;	/* auth method used to bind dn	  */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
957
958
					/* values taken from ldap.h	  */
					/* LDAP_AUTH_*			  */
959
960
961
	char		*o_authmech; /* SASL mechanism used to bind dn */

	LDAPControl	**o_ctrls;	 /* controls */
962

963
	unsigned long	o_connid; /* id of conn initiating this op  */
964

Kurt Zeilenga's avatar
Kurt Zeilenga committed
965
#ifdef LDAP_CONNECTIONLESS
Kurt Zeilenga's avatar
Kurt Zeilenga committed
966
967
968
969
970
	int		o_cldap;	/* != 0 if this came in via CLDAP */
	struct sockaddr	o_clientaddr;	/* client address if via CLDAP	  */
	char		o_searchbase;	/* search base if via CLDAP	  */
#endif

971
972
973
974
	ldap_pvt_thread_mutex_t	o_abandonmutex; /* protects o_abandon  */
	int		o_abandon;	/* abandon flag */

	struct slap_op	*o_next;	/* next operation in list	  */
975
	void	*o_private;	/* anything the backend needs	  */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
976
977
978
979
980
981
} Operation;

/*
 * represents a connection from an ldap client
 */

982
typedef struct slap_conn {
983
984
985
986
	int			c_struct_state; /* structure management state */
	int			c_conn_state;	/* connection state */

	ldap_pvt_thread_mutex_t	c_mutex; /* protect the connection */
Kurt Zeilenga's avatar
Kurt Zeilenga committed
987
	Sockbuf		*c_sb;			/* ber connection stuff		  */
988
989
990

	/* only can be changed by connect_init */
	time_t		c_starttime;	/* when the connection was opened */
991
	time_t		c_activitytime;	/* when the connection was last used */
992
	unsigned long		c_connid;	/* id of this connection for stats*/
Kurt Zeilenga's avatar
Kurt Zeilenga committed
993
994
995
996
997

	char		*c_listener_url;	/* listener URL */
	char		*c_peer_domain;	/* DNS name of client */
	char		*c_peer_name;	/* peer name (trans=addr:port) */
	char		*c_sock_name;	/* sock name (trans=addr:port) */
998

999
1000
	/* only can be changed by binding thread */
	int		c_bind_in_progress;	/* multi-op bind in progress */
For faster browsing, not all history is shown. View entire blame