source: branches/samba-3.3.x/source/smbd/server.c@ 221

Last change on this file since 221 was 221, checked in by Herwig Bauernfeind, 16 years ago

Update Samba 3.3 to 3.3.1

File size: 38.4 KB
Line 
1/*
2 Unix SMB/CIFS implementation.
3 Main SMB server routines
4 Copyright (C) Andrew Tridgell 1992-1998
5 Copyright (C) Martin Pool 2002
6 Copyright (C) Jelmer Vernooij 2002-2003
7 Copyright (C) Volker Lendecke 1993-2007
8 Copyright (C) Jeremy Allison 1993-2007
9
10 This program is free software; you can redistribute it and/or modify
11 it under the terms of the GNU General Public License as published by
12 the Free Software Foundation; either version 3 of the License, or
13 (at your option) any later version.
14
15 This program is distributed in the hope that it will be useful,
16 but WITHOUT ANY WARRANTY; without even the implied warranty of
17 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 GNU General Public License for more details.
19
20 You should have received a copy of the GNU General Public License
21 along with this program. If not, see <http://www.gnu.org/licenses/>.
22*/
23
24#include "includes.h"
25
26static_decl_rpc;
27
28static int am_parent = 1;
29
30extern struct auth_context *negprot_global_auth_context;
31extern SIG_ATOMIC_T got_sig_term;
32extern SIG_ATOMIC_T reload_after_sighup;
33static SIG_ATOMIC_T got_sig_cld;
34
35#ifdef WITH_DFS
36extern int dcelogin_atmost_once;
37#endif /* WITH_DFS */
38
39/* really we should have a top level context structure that has the
40 client file descriptor as an element. That would require a major rewrite :(
41
42 the following 2 functions are an alternative - they make the file
43 descriptor private to smbd
44 */
45static int server_fd = -1;
46
47int smbd_server_fd(void)
48{
49 return server_fd;
50}
51
52static void smbd_set_server_fd(int fd)
53{
54 server_fd = fd;
55}
56
57int get_client_fd(void)
58{
59 return server_fd;
60}
61
62#ifdef CLUSTER_SUPPORT
63static int client_get_tcp_info(struct sockaddr_storage *server,
64 struct sockaddr_storage *client)
65{
66 socklen_t length;
67 if (server_fd == -1) {
68 return -1;
69 }
70 length = sizeof(*server);
71 if (getsockname(server_fd, (struct sockaddr *)server, &length) != 0) {
72 return -1;
73 }
74 length = sizeof(*client);
75 if (getpeername(server_fd, (struct sockaddr *)client, &length) != 0) {
76 return -1;
77 }
78 return 0;
79}
80#endif
81
82struct event_context *smbd_event_context(void)
83{
84 static struct event_context *ctx;
85
86 if (!ctx && !(ctx = event_context_init(talloc_autofree_context()))) {
87 smb_panic("Could not init smbd event context");
88 }
89 return ctx;
90}
91
92struct messaging_context *smbd_messaging_context(void)
93{
94 static struct messaging_context *ctx;
95
96 if (ctx == NULL) {
97 ctx = messaging_init(talloc_autofree_context(), server_id_self(),
98 smbd_event_context());
99 }
100 if (ctx == NULL) {
101 DEBUG(0, ("Could not init smbd messaging context.\n"));
102 }
103 return ctx;
104}
105
106struct memcache *smbd_memcache(void)
107{
108 static struct memcache *cache;
109
110 if (!cache
111 && !(cache = memcache_init(talloc_autofree_context(),
112 lp_max_stat_cache_size()*1024))) {
113
114 smb_panic("Could not init smbd memcache");
115 }
116 return cache;
117}
118
119/*******************************************************************
120 What to do when smb.conf is updated.
121 ********************************************************************/
122
123static void smb_conf_updated(struct messaging_context *msg,
124 void *private_data,
125 uint32_t msg_type,
126 struct server_id server_id,
127 DATA_BLOB *data)
128{
129 DEBUG(10,("smb_conf_updated: Got message saying smb.conf was "
130 "updated. Reloading.\n"));
131 reload_services(False);
132}
133
134
135/*******************************************************************
136 Delete a statcache entry.
137 ********************************************************************/
138
139static void smb_stat_cache_delete(struct messaging_context *msg,
140 void *private_data,
141 uint32_t msg_tnype,
142 struct server_id server_id,
143 DATA_BLOB *data)
144{
145 const char *name = (const char *)data->data;
146 DEBUG(10,("smb_stat_cache_delete: delete name %s\n", name));
147 stat_cache_delete(name);
148}
149
150/****************************************************************************
151 Terminate signal.
152****************************************************************************/
153
154static void sig_term(void)
155{
156 got_sig_term = 1;
157 sys_select_signal(SIGTERM);
158}
159
160/****************************************************************************
161 Catch a sighup.
162****************************************************************************/
163
164static void sig_hup(int sig)
165{
166 reload_after_sighup = 1;
167 sys_select_signal(SIGHUP);
168}
169
170/****************************************************************************
171 Catch a sigcld
172****************************************************************************/
173static void sig_cld(int sig)
174{
175 got_sig_cld = 1;
176 sys_select_signal(SIGCLD);
177}
178
179/****************************************************************************
180 Send a SIGTERM to our process group.
181*****************************************************************************/
182
183static void killkids(void)
184{
185 if(am_parent) kill(0,SIGTERM);
186}
187
188/****************************************************************************
189 Process a sam sync message - not sure whether to do this here or
190 somewhere else.
191****************************************************************************/
192
193static void msg_sam_sync(struct messaging_context *msg,
194 void *private_data,
195 uint32_t msg_type,
196 struct server_id server_id,
197 DATA_BLOB *data)
198{
199 DEBUG(10, ("** sam sync message received, ignoring\n"));
200}
201
202
203/****************************************************************************
204 Open the socket communication - inetd.
205****************************************************************************/
206
207static bool open_sockets_inetd(void)
208{
209 /* Started from inetd. fd 0 is the socket. */
210 /* We will abort gracefully when the client or remote system
211 goes away */
212 smbd_set_server_fd(dup(0));
213
214 /* close our standard file descriptors */
215 close_low_fds(False); /* Don't close stderr */
216
217 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
218 set_socket_options(smbd_server_fd(), lp_socket_options());
219
220 return True;
221}
222
223static void msg_exit_server(struct messaging_context *msg,
224 void *private_data,
225 uint32_t msg_type,
226 struct server_id server_id,
227 DATA_BLOB *data)
228{
229 DEBUG(3, ("got a SHUTDOWN message\n"));
230 exit_server_cleanly(NULL);
231}
232
233#ifdef DEVELOPER
234static void msg_inject_fault(struct messaging_context *msg,
235 void *private_data,
236 uint32_t msg_type,
237 struct server_id src,
238 DATA_BLOB *data)
239{
240 int sig;
241
242 if (data->length != sizeof(sig)) {
243
244 DEBUG(0, ("Process %s sent bogus signal injection request\n",
245 procid_str_static(&src)));
246 return;
247 }
248
249 sig = *(int *)data->data;
250 if (sig == -1) {
251 exit_server("internal error injected");
252 return;
253 }
254
255#if HAVE_STRSIGNAL
256 DEBUG(0, ("Process %s requested injection of signal %d (%s)\n",
257 procid_str_static(&src), sig, strsignal(sig)));
258#else
259 DEBUG(0, ("Process %s requested injection of signal %d\n",
260 procid_str_static(&src), sig));
261#endif
262
263 kill(sys_getpid(), sig);
264}
265#endif /* DEVELOPER */
266
267struct child_pid {
268 struct child_pid *prev, *next;
269 pid_t pid;
270};
271
272static struct child_pid *children;
273static int num_children;
274
275static void add_child_pid(pid_t pid)
276{
277 struct child_pid *child;
278
279 if (lp_max_smbd_processes() == 0) {
280 /* Don't bother with the child list if we don't care anyway */
281 return;
282 }
283
284 child = SMB_MALLOC_P(struct child_pid);
285 if (child == NULL) {
286 DEBUG(0, ("Could not add child struct -- malloc failed\n"));
287 return;
288 }
289 child->pid = pid;
290 DLIST_ADD(children, child);
291 num_children += 1;
292}
293
294static void remove_child_pid(pid_t pid, bool unclean_shutdown)
295{
296 struct child_pid *child;
297
298 if (unclean_shutdown) {
299 /* a child terminated uncleanly so tickle all processes to see
300 if they can grab any of the pending locks
301 */
302 DEBUG(3,(__location__ " Unclean shutdown of pid %u\n", (unsigned int)pid));
303 messaging_send_buf(smbd_messaging_context(), procid_self(),
304 MSG_SMB_BRL_VALIDATE, NULL, 0);
305 message_send_all(smbd_messaging_context(),
306 MSG_SMB_UNLOCK, NULL, 0, NULL);
307 }
308
309 if (lp_max_smbd_processes() == 0) {
310 /* Don't bother with the child list if we don't care anyway */
311 return;
312 }
313
314 for (child = children; child != NULL; child = child->next) {
315 if (child->pid == pid) {
316 struct child_pid *tmp = child;
317 DLIST_REMOVE(children, child);
318 SAFE_FREE(tmp);
319 num_children -= 1;
320 return;
321 }
322 }
323
324 DEBUG(0, ("Could not find child %d -- ignoring\n", (int)pid));
325}
326
327/****************************************************************************
328 Have we reached the process limit ?
329****************************************************************************/
330
331static bool allowable_number_of_smbd_processes(void)
332{
333 int max_processes = lp_max_smbd_processes();
334
335 if (!max_processes)
336 return True;
337
338 return num_children < max_processes;
339}
340
341/****************************************************************************
342 Open the socket communication.
343****************************************************************************/
344
345static bool open_sockets_smbd(bool is_daemon, bool interactive, const char *smb_ports)
346{
347 int num_interfaces = iface_count();
348 int num_sockets = 0;
349 int fd_listenset[FD_SETSIZE];
350 fd_set listen_set;
351 int s;
352 int maxfd = 0;
353 int i;
354 char *ports;
355 struct dns_reg_state * dns_reg = NULL;
356 unsigned dns_port = 0;
357
358 if (!is_daemon) {
359 return open_sockets_inetd();
360 }
361
362#ifdef HAVE_ATEXIT
363 {
364 static int atexit_set;
365 if(atexit_set == 0) {
366 atexit_set=1;
367 atexit(killkids);
368 }
369 }
370#endif
371
372 /* Stop zombies */
373 CatchSignal(SIGCLD, sig_cld);
374
375 FD_ZERO(&listen_set);
376
377 /* use a reasonable default set of ports - listing on 445 and 139 */
378 if (!smb_ports) {
379 ports = lp_smb_ports();
380 if (!ports || !*ports) {
381 ports = smb_xstrdup(SMB_PORTS);
382 } else {
383 ports = smb_xstrdup(ports);
384 }
385 } else {
386 ports = smb_xstrdup(smb_ports);
387 }
388
389 if (lp_interfaces() && lp_bind_interfaces_only()) {
390 /* We have been given an interfaces line, and been
391 told to only bind to those interfaces. Create a
392 socket per interface and bind to only these.
393 */
394
395 /* Now open a listen socket for each of the
396 interfaces. */
397 for(i = 0; i < num_interfaces; i++) {
398 TALLOC_CTX *frame = NULL;
399 const struct sockaddr_storage *ifss =
400 iface_n_sockaddr_storage(i);
401 char *tok;
402 const char *ptr;
403
404 if (ifss == NULL) {
405 DEBUG(0,("open_sockets_smbd: "
406 "interface %d has NULL IP address !\n",
407 i));
408 continue;
409 }
410
411 frame = talloc_stackframe();
412 for (ptr=ports;
413 next_token_talloc(frame,&ptr, &tok, " \t,");) {
414 unsigned port = atoi(tok);
415 if (port == 0 || port > 0xffff) {
416 continue;
417 }
418
419 /* Keep the first port for mDNS service
420 * registration.
421 */
422 if (dns_port == 0) {
423 dns_port = port;
424 }
425
426 s = fd_listenset[num_sockets] =
427 open_socket_in(SOCK_STREAM,
428 port,
429 num_sockets == 0 ? 0 : 2,
430 ifss,
431 true);
432 if(s == -1) {
433 continue;
434 }
435
436 /* ready to listen */
437 set_socket_options(s,"SO_KEEPALIVE");
438 set_socket_options(s,lp_socket_options());
439
440 /* Set server socket to
441 * non-blocking for the accept. */
442 set_blocking(s,False);
443
444 if (listen(s, SMBD_LISTEN_BACKLOG) == -1) {
445 DEBUG(0,("open_sockets_smbd: listen: "
446 "%s\n", strerror(errno)));
447 close(s);
448 TALLOC_FREE(frame);
449 return False;
450 }
451 FD_SET(s,&listen_set);
452 maxfd = MAX( maxfd, s);
453
454 num_sockets++;
455 if (num_sockets >= FD_SETSIZE) {
456 DEBUG(0,("open_sockets_smbd: Too "
457 "many sockets to bind to\n"));
458 TALLOC_FREE(frame);
459 return False;
460 }
461 }
462 TALLOC_FREE(frame);
463 }
464 } else {
465 /* Just bind to 0.0.0.0 - accept connections
466 from anywhere. */
467
468 TALLOC_CTX *frame = talloc_stackframe();
469 char *tok;
470 const char *ptr;
471 const char *sock_addr = lp_socket_address();
472 char *sock_tok;
473 const char *sock_ptr;
474
475 if (strequal(sock_addr, "0.0.0.0") ||
476 strequal(sock_addr, "::")) {
477#if HAVE_IPV6
478 sock_addr = "::,0.0.0.0";
479#else
480 sock_addr = "0.0.0.0";
481#endif
482 }
483
484 for (sock_ptr=sock_addr;
485 next_token_talloc(frame, &sock_ptr, &sock_tok, " \t,"); ) {
486 for (ptr=ports; next_token_talloc(frame, &ptr, &tok, " \t,"); ) {
487 struct sockaddr_storage ss;
488
489 unsigned port = atoi(tok);
490 if (port == 0 || port > 0xffff) {
491 continue;
492 }
493
494 /* Keep the first port for mDNS service
495 * registration.
496 */
497 if (dns_port == 0) {
498 dns_port = port;
499 }
500
501 /* open an incoming socket */
502 if (!interpret_string_addr(&ss, sock_tok,
503 AI_NUMERICHOST|AI_PASSIVE)) {
504 continue;
505 }
506
507 s = open_socket_in(SOCK_STREAM,
508 port,
509 num_sockets == 0 ? 0 : 2,
510 &ss,
511 true);
512 if (s == -1) {
513 continue;
514 }
515
516 /* ready to listen */
517 set_socket_options(s,"SO_KEEPALIVE");
518 set_socket_options(s,lp_socket_options());
519
520 /* Set server socket to non-blocking
521 * for the accept. */
522 set_blocking(s,False);
523
524 if (listen(s, SMBD_LISTEN_BACKLOG) == -1) {
525 DEBUG(0,("open_sockets_smbd: "
526 "listen: %s\n",
527 strerror(errno)));
528 close(s);
529 TALLOC_FREE(frame);
530 return False;
531 }
532
533 fd_listenset[num_sockets] = s;
534 FD_SET(s,&listen_set);
535 maxfd = MAX( maxfd, s);
536
537 num_sockets++;
538
539 if (num_sockets >= FD_SETSIZE) {
540 DEBUG(0,("open_sockets_smbd: Too "
541 "many sockets to bind to\n"));
542 TALLOC_FREE(frame);
543 return False;
544 }
545 }
546 }
547 TALLOC_FREE(frame);
548 }
549
550 SAFE_FREE(ports);
551
552 if (num_sockets == 0) {
553 DEBUG(0,("open_sockets_smbd: No "
554 "sockets available to bind to.\n"));
555 return false;
556 }
557
558 /* Setup the main smbd so that we can get messages. Note that
559 do this after starting listening. This is needed as when in
560 clustered mode, ctdb won't allow us to start doing database
561 operations until it has gone thru a full startup, which
562 includes checking to see that smbd is listening. */
563 claim_connection(NULL,"",
564 FLAG_MSG_GENERAL|FLAG_MSG_SMBD|FLAG_MSG_DBWRAP);
565
566 /* Listen to messages */
567
568 messaging_register(smbd_messaging_context(), NULL,
569 MSG_SMB_SAM_SYNC, msg_sam_sync);
570 messaging_register(smbd_messaging_context(), NULL,
571 MSG_SHUTDOWN, msg_exit_server);
572 messaging_register(smbd_messaging_context(), NULL,
573 MSG_SMB_FILE_RENAME, msg_file_was_renamed);
574 messaging_register(smbd_messaging_context(), NULL,
575 MSG_SMB_CONF_UPDATED, smb_conf_updated);
576 messaging_register(smbd_messaging_context(), NULL,
577 MSG_SMB_STAT_CACHE_DELETE, smb_stat_cache_delete);
578 brl_register_msgs(smbd_messaging_context());
579
580#ifdef CLUSTER_SUPPORT
581 if (lp_clustering()) {
582 ctdbd_register_reconfigure(messaging_ctdbd_connection());
583 }
584#endif
585
586#ifdef DEVELOPER
587 messaging_register(smbd_messaging_context(), NULL,
588 MSG_SMB_INJECT_FAULT, msg_inject_fault);
589#endif
590
591 /* now accept incoming connections - forking a new process
592 for each incoming connection */
593 DEBUG(2,("waiting for a connection\n"));
594 while (1) {
595 struct timeval now, idle_timeout;
596 fd_set r_fds, w_fds;
597 int num;
598
599 /* Ensure we respond to PING and DEBUG messages from the main smbd. */
600 message_dispatch(smbd_messaging_context());
601
602 if (got_sig_cld) {
603 pid_t pid;
604 int status;
605
606 got_sig_cld = False;
607
608 while ((pid = sys_waitpid(-1, &status, WNOHANG)) > 0) {
609 bool unclean_shutdown = False;
610
611 /* If the child terminated normally, assume
612 it was an unclean shutdown unless the
613 status is 0
614 */
615 if (WIFEXITED(status)) {
616 unclean_shutdown = WEXITSTATUS(status);
617 }
618 /* If the child terminated due to a signal
619 we always assume it was unclean.
620 */
621 if (WIFSIGNALED(status)) {
622 unclean_shutdown = True;
623 }
624 remove_child_pid(pid, unclean_shutdown);
625 }
626 }
627
628 idle_timeout = timeval_zero();
629
630 memcpy((char *)&r_fds, (char *)&listen_set,
631 sizeof(listen_set));
632 FD_ZERO(&w_fds);
633 GetTimeOfDay(&now);
634
635 /* Kick off our mDNS registration. */
636 if (dns_port != 0) {
637 dns_register_smbd(&dns_reg, dns_port, &maxfd,
638 &r_fds, &idle_timeout);
639 }
640
641 event_add_to_select_args(smbd_event_context(), &now,
642 &r_fds, &w_fds, &idle_timeout,
643 &maxfd);
644
645 num = sys_select(maxfd+1,&r_fds,&w_fds,NULL,
646 timeval_is_zero(&idle_timeout) ?
647 NULL : &idle_timeout);
648
649 if (num == -1 && errno == EINTR) {
650 if (got_sig_term) {
651 exit_server_cleanly(NULL);
652 }
653
654 /* check for sighup processing */
655 if (reload_after_sighup) {
656 change_to_root_user();
657 DEBUG(1,("Reloading services after SIGHUP\n"));
658 reload_services(False);
659 reload_after_sighup = 0;
660 }
661
662 continue;
663 }
664
665
666 /* If the idle timeout fired and we don't have any connected
667 * users, exit gracefully. We should be running under a process
668 * controller that will restart us if necessry.
669 */
670 if (num == 0 && count_all_current_connections() == 0) {
671 exit_server_cleanly("idle timeout");
672 }
673
674 /* process pending nDNS responses */
675 if (dns_register_smbd_reply(dns_reg, &r_fds, &idle_timeout)) {
676 --num;
677 }
678
679 if (run_events(smbd_event_context(), num, &r_fds, &w_fds)) {
680 continue;
681 }
682
683 /* check if we need to reload services */
684 check_reload(time(NULL));
685
686 /* Find the sockets that are read-ready -
687 accept on these. */
688 for( ; num > 0; num--) {
689 struct sockaddr addr;
690 socklen_t in_addrlen = sizeof(addr);
691 pid_t child = 0;
692
693 s = -1;
694 for(i = 0; i < num_sockets; i++) {
695 if(FD_ISSET(fd_listenset[i],&r_fds)) {
696 s = fd_listenset[i];
697 /* Clear this so we don't look
698 at it again. */
699 FD_CLR(fd_listenset[i],&r_fds);
700 break;
701 }
702 }
703
704 smbd_set_server_fd(accept(s,&addr,&in_addrlen));
705
706 if (smbd_server_fd() == -1 && errno == EINTR)
707 continue;
708
709 if (smbd_server_fd() == -1) {
710 DEBUG(2,("open_sockets_smbd: accept: %s\n",
711 strerror(errno)));
712 continue;
713 }
714
715 /* Ensure child is set to blocking mode */
716 set_blocking(smbd_server_fd(),True);
717
718 if (smbd_server_fd() != -1 && interactive)
719 return True;
720
721 if (allowable_number_of_smbd_processes() &&
722 smbd_server_fd() != -1 &&
723 ((child = sys_fork())==0)) {
724 char remaddr[INET6_ADDRSTRLEN];
725
726 /* Child code ... */
727
728 /* Stop zombies, the parent explicitly handles
729 * them, counting worker smbds. */
730 CatchChild();
731
732 /* close the listening socket(s) */
733 for(i = 0; i < num_sockets; i++)
734 close(fd_listenset[i]);
735
736 /* close our mDNS daemon handle */
737 dns_register_close(&dns_reg);
738
739 /* close our standard file
740 descriptors */
741 close_low_fds(False);
742 am_parent = 0;
743
744 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
745 set_socket_options(smbd_server_fd(),
746 lp_socket_options());
747
748 /* this is needed so that we get decent entries
749 in smbstatus for port 445 connects */
750 set_remote_machine_name(get_peer_addr(smbd_server_fd(),
751 remaddr,
752 sizeof(remaddr)),
753 false);
754
755 if (!reinit_after_fork(
756 smbd_messaging_context(),
757 smbd_event_context(),
758 true)) {
759 DEBUG(0,("reinit_after_fork() failed\n"));
760 smb_panic("reinit_after_fork() failed");
761 }
762
763 return True;
764 }
765 /* The parent doesn't need this socket */
766 close(smbd_server_fd());
767
768 /* Sun May 6 18:56:14 2001 ackley@cs.unm.edu:
769 Clear the closed fd info out of server_fd --
770 and more importantly, out of client_fd in
771 util_sock.c, to avoid a possible
772 getpeername failure if we reopen the logs
773 and use %I in the filename.
774 */
775
776 smbd_set_server_fd(-1);
777
778 if (child != 0) {
779 add_child_pid(child);
780 }
781
782 /* Force parent to check log size after
783 * spawning child. Fix from
784 * klausr@ITAP.Physik.Uni-Stuttgart.De. The
785 * parent smbd will log to logserver.smb. It
786 * writes only two messages for each child
787 * started/finished. But each child writes,
788 * say, 50 messages also in logserver.smb,
789 * begining with the debug_count of the
790 * parent, before the child opens its own log
791 * file logserver.client. In a worst case
792 * scenario the size of logserver.smb would be
793 * checked after about 50*50=2500 messages
794 * (ca. 100kb).
795 * */
796 force_check_log_size();
797
798 } /* end for num */
799 } /* end while 1 */
800
801/* NOTREACHED return True; */
802}
803
804/****************************************************************************
805 Reload printers
806**************************************************************************/
807void reload_printers(void)
808{
809 int snum;
810 int n_services = lp_numservices();
811 int pnum = lp_servicenumber(PRINTERS_NAME);
812 const char *pname;
813
814 pcap_cache_reload();
815
816 /* remove stale printers */
817 for (snum = 0; snum < n_services; snum++) {
818 /* avoid removing PRINTERS_NAME or non-autoloaded printers */
819 if (snum == pnum || !(lp_snum_ok(snum) && lp_print_ok(snum) &&
820 lp_autoloaded(snum)))
821 continue;
822
823 pname = lp_printername(snum);
824 if (!pcap_printername_ok(pname)) {
825 DEBUG(3, ("removing stale printer %s\n", pname));
826
827 if (is_printer_published(NULL, snum, NULL))
828 nt_printer_publish(NULL, snum, SPOOL_DS_UNPUBLISH);
829 del_a_printer(pname);
830 lp_killservice(snum);
831 }
832 }
833
834 load_printers();
835}
836
837/****************************************************************************
838 Reload the services file.
839**************************************************************************/
840
841bool reload_services(bool test)
842{
843 bool ret;
844
845 if (lp_loaded()) {
846 char *fname = lp_configfile();
847 if (file_exist(fname, NULL) &&
848 !strcsequal(fname, get_dyn_CONFIGFILE())) {
849 set_dyn_CONFIGFILE(fname);
850 test = False;
851 }
852 }
853
854 reopen_logs();
855
856 if (test && !lp_file_list_changed())
857 return(True);
858
859 lp_killunused(conn_snum_used);
860
861 ret = lp_load(get_dyn_CONFIGFILE(), False, False, True, True);
862
863 reload_printers();
864
865 /* perhaps the config filename is now set */
866 if (!test)
867 reload_services(True);
868
869 reopen_logs();
870
871 load_interfaces();
872
873 if (smbd_server_fd() != -1) {
874 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
875 set_socket_options(smbd_server_fd(), lp_socket_options());
876 }
877
878 mangle_reset_cache();
879 reset_stat_cache();
880
881 /* this forces service parameters to be flushed */
882 set_current_service(NULL,0,True);
883
884 return(ret);
885}
886
887/****************************************************************************
888 Exit the server.
889****************************************************************************/
890
891/* Reasons for shutting down a server process. */
892enum server_exit_reason { SERVER_EXIT_NORMAL, SERVER_EXIT_ABNORMAL };
893
894static void exit_server_common(enum server_exit_reason how,
895 const char *const reason) NORETURN_ATTRIBUTE;
896
897static void exit_server_common(enum server_exit_reason how,
898 const char *const reason)
899{
900 static int firsttime=1;
901 bool had_open_conn;
902
903 if (!firsttime)
904 exit(0);
905 firsttime = 0;
906
907 change_to_root_user();
908
909 if (negprot_global_auth_context) {
910 (negprot_global_auth_context->free)(&negprot_global_auth_context);
911 }
912
913 had_open_conn = conn_close_all();
914
915 invalidate_all_vuids();
916
917 /* 3 second timeout. */
918 print_notify_send_messages(smbd_messaging_context(), 3);
919
920 /* delete our entry in the connections database. */
921 yield_connection(NULL,"");
922
923 respond_to_all_remaining_local_messages();
924
925#ifdef WITH_DFS
926 if (dcelogin_atmost_once) {
927 dfs_unlogin();
928 }
929#endif
930
931#ifdef USE_DMAPI
932 /* Destroy Samba DMAPI session only if we are master smbd process */
933 if (am_parent) {
934 if (!dmapi_destroy_session()) {
935 DEBUG(0,("Unable to close Samba DMAPI session\n"));
936 }
937 }
938#endif
939
940 locking_end();
941 printing_end();
942
943#ifdef __OS2__
944 /* On OS/2 - we need to remove the PID file on server exit otherwise we may not be able to restart Samba */
945 char pidFile[1024];
946 slprintf(pidFile, sizeof(pidFile)-1, "%s/%s.pid", lp_piddir(), "smbd");
947 unlink(pidFile);
948#endif
949
950 if (how != SERVER_EXIT_NORMAL) {
951 int oldlevel = DEBUGLEVEL;
952
953 DEBUGLEVEL = 10;
954
955 DEBUGSEP(0);
956 DEBUG(0,("Abnormal server exit: %s\n",
957 reason ? reason : "no explanation provided"));
958 DEBUGSEP(0);
959
960 log_stack_trace();
961
962 DEBUGLEVEL = oldlevel;
963 dump_core();
964
965 } else {
966 DEBUG(3,("Server exit (%s)\n",
967 (reason ? reason : "normal exit")));
968 }
969
970 /* if we had any open SMB connections when we exited then we
971 need to tell the parent smbd so that it can trigger a retry
972 of any locks we may have been holding or open files we were
973 blocking */
974 if (had_open_conn) {
975 exit(1);
976 } else {
977 exit(0);
978 }
979}
980
981void exit_server(const char *const explanation)
982{
983 exit_server_common(SERVER_EXIT_ABNORMAL, explanation);
984}
985
986void exit_server_cleanly(const char *const explanation)
987{
988 exit_server_common(SERVER_EXIT_NORMAL, explanation);
989}
990
991void exit_server_fault(void)
992{
993 exit_server("critical server fault");
994}
995
996
997/****************************************************************************
998received when we should release a specific IP
999****************************************************************************/
1000static void release_ip(const char *ip, void *priv)
1001{
1002 char addr[INET6_ADDRSTRLEN];
1003
1004 if (strcmp(client_socket_addr(get_client_fd(),addr,sizeof(addr)), ip) == 0) {
1005 /* we can't afford to do a clean exit - that involves
1006 database writes, which would potentially mean we
1007 are still running after the failover has finished -
1008 we have to get rid of this process ID straight
1009 away */
1010 DEBUG(0,("Got release IP message for our IP %s - exiting immediately\n",
1011 ip));
1012 /* note we must exit with non-zero status so the unclean handler gets
1013 called in the parent, so that the brl database is tickled */
1014 _exit(1);
1015 }
1016}
1017
1018static void msg_release_ip(struct messaging_context *msg_ctx, void *private_data,
1019 uint32_t msg_type, struct server_id server_id, DATA_BLOB *data)
1020{
1021 release_ip((char *)data->data, NULL);
1022}
1023
1024/****************************************************************************
1025 Initialise connect, service and file structs.
1026****************************************************************************/
1027
1028static bool init_structs(void )
1029{
1030 /*
1031 * Set the machine NETBIOS name if not already
1032 * set from the config file.
1033 */
1034
1035 if (!init_names())
1036 return False;
1037
1038 conn_init();
1039
1040 file_init();
1041
1042 /* for RPC pipes */
1043 init_rpc_pipe_hnd();
1044
1045 init_dptrs();
1046
1047 if (!secrets_init())
1048 return False;
1049
1050 return True;
1051}
1052
1053/*
1054 * Send keepalive packets to our client
1055 */
1056static bool keepalive_fn(const struct timeval *now, void *private_data)
1057{
1058 if (!send_keepalive(smbd_server_fd())) {
1059 DEBUG( 2, ( "Keepalive failed - exiting.\n" ) );
1060 return False;
1061 }
1062 return True;
1063}
1064
1065/*
1066 * Do the recurring check if we're idle
1067 */
1068static bool deadtime_fn(const struct timeval *now, void *private_data)
1069{
1070 if ((conn_num_open() == 0)
1071 || (conn_idle_all(now->tv_sec))) {
1072 DEBUG( 2, ( "Closing idle connection\n" ) );
1073 messaging_send(smbd_messaging_context(), procid_self(),
1074 MSG_SHUTDOWN, &data_blob_null);
1075 return False;
1076 }
1077
1078 return True;
1079}
1080
1081/*
1082 * Do the recurring log file and smb.conf reload checks.
1083 */
1084
1085static bool housekeeping_fn(const struct timeval *now, void *private_data)
1086{
1087 change_to_root_user();
1088
1089 /* update printer queue caches if necessary */
1090 update_monitored_printq_cache();
1091
1092 /* check if we need to reload services */
1093 check_reload(time(NULL));
1094
1095 /* Change machine password if neccessary. */
1096 attempt_machine_password_change();
1097
1098 /*
1099 * Force a log file check.
1100 */
1101 force_check_log_size();
1102 check_log_size();
1103 return true;
1104}
1105
1106/****************************************************************************
1107 main program.
1108****************************************************************************/
1109
1110/* Declare prototype for build_options() to avoid having to run it through
1111 mkproto.h. Mixing $(builddir) and $(srcdir) source files in the current
1112 prototype generation system is too complicated. */
1113
1114extern void build_options(bool screen);
1115
1116 int main(int argc,const char *argv[])
1117{
1118 /* shall I run as a daemon */
1119 static bool is_daemon = False;
1120 static bool interactive = False;
1121 static bool Fork = True;
1122 static bool no_process_group = False;
1123 static bool log_stdout = False;
1124 static char *ports = NULL;
1125 static char *profile_level = NULL;
1126 int opt;
1127 poptContext pc;
1128 bool print_build_options = False;
1129 enum {
1130 OPT_DAEMON = 1000,
1131 OPT_INTERACTIVE,
1132 OPT_FORK,
1133 OPT_NO_PROCESS_GROUP,
1134 OPT_LOG_STDOUT
1135 };
1136 struct poptOption long_options[] = {
1137 POPT_AUTOHELP
1138 {"daemon", 'D', POPT_ARG_NONE, NULL, OPT_DAEMON, "Become a daemon (default)" },
1139 {"interactive", 'i', POPT_ARG_NONE, NULL, OPT_INTERACTIVE, "Run interactive (not a daemon)"},
1140 {"foreground", 'F', POPT_ARG_NONE, NULL, OPT_FORK, "Run daemon in foreground (for daemontools, etc.)" },
1141 {"no-process-group", '\0', POPT_ARG_NONE, NULL, OPT_NO_PROCESS_GROUP, "Don't create a new process group" },
1142 {"log-stdout", 'S', POPT_ARG_NONE, NULL, OPT_LOG_STDOUT, "Log to stdout" },
1143 {"build-options", 'b', POPT_ARG_NONE, NULL, 'b', "Print build options" },
1144 {"port", 'p', POPT_ARG_STRING, &ports, 0, "Listen on the specified ports"},
1145 {"profiling-level", 'P', POPT_ARG_STRING, &profile_level, 0, "Set profiling level","PROFILE_LEVEL"},
1146 POPT_COMMON_SAMBA
1147 POPT_COMMON_DYNCONFIG
1148 POPT_TABLEEND
1149 };
1150 TALLOC_CTX *frame = talloc_stackframe(); /* Setup tos. */
1151
1152 TimeInit();
1153
1154#ifdef HAVE_SET_AUTH_PARAMETERS
1155 set_auth_parameters(argc,argv);
1156#endif
1157
1158 pc = poptGetContext("smbd", argc, argv, long_options, 0);
1159 while((opt = poptGetNextOpt(pc)) != -1) {
1160 switch (opt) {
1161 case OPT_DAEMON:
1162 is_daemon = true;
1163 break;
1164 case OPT_INTERACTIVE:
1165 interactive = true;
1166 break;
1167 case OPT_FORK:
1168 Fork = false;
1169 break;
1170 case OPT_NO_PROCESS_GROUP:
1171 no_process_group = true;
1172 break;
1173 case OPT_LOG_STDOUT:
1174 log_stdout = true;
1175 break;
1176 case 'b':
1177 print_build_options = True;
1178 break;
1179 default:
1180 d_fprintf(stderr, "\nInvalid option %s: %s\n\n",
1181 poptBadOption(pc, 0), poptStrerror(opt));
1182 poptPrintUsage(pc, stderr, 0);
1183 exit(1);
1184 }
1185 }
1186 poptFreeContext(pc);
1187
1188 if (interactive) {
1189 Fork = False;
1190 log_stdout = True;
1191 }
1192
1193 setup_logging(argv[0],log_stdout);
1194
1195 if (print_build_options) {
1196 build_options(True); /* Display output to screen as well as debug */
1197 exit(0);
1198 }
1199
1200 load_case_tables();
1201
1202#ifdef HAVE_SETLUID
1203 /* needed for SecureWare on SCO */
1204 setluid(0);
1205#endif
1206
1207 sec_init();
1208
1209 set_remote_machine_name("smbd", False);
1210
1211 if (interactive && (DEBUGLEVEL >= 9)) {
1212 talloc_enable_leak_report();
1213 }
1214
1215 if (log_stdout && Fork) {
1216 DEBUG(0,("ERROR: Can't log to stdout (-S) unless daemon is in foreground (-F) or interactive (-i)\n"));
1217 exit(1);
1218 }
1219
1220 /* we want to re-seed early to prevent time delays causing
1221 client problems at a later date. (tridge) */
1222 generate_random_buffer(NULL, 0);
1223
1224 /* make absolutely sure we run as root - to handle cases where people
1225 are crazy enough to have it setuid */
1226
1227 gain_root_privilege();
1228 gain_root_group_privilege();
1229
1230 fault_setup((void (*)(void *))exit_server_fault);
1231 dump_core_setup("smbd");
1232
1233 CatchSignal(SIGTERM , SIGNAL_CAST sig_term);
1234 CatchSignal(SIGHUP,SIGNAL_CAST sig_hup);
1235
1236 /* we are never interested in SIGPIPE */
1237 BlockSignals(True,SIGPIPE);
1238
1239#if defined(SIGFPE)
1240 /* we are never interested in SIGFPE */
1241 BlockSignals(True,SIGFPE);
1242#endif
1243
1244#if defined(SIGUSR2)
1245 /* We are no longer interested in USR2 */
1246 BlockSignals(True,SIGUSR2);
1247#endif
1248
1249 /* POSIX demands that signals are inherited. If the invoking process has
1250 * these signals masked, we will have problems, as we won't recieve them. */
1251 BlockSignals(False, SIGHUP);
1252 BlockSignals(False, SIGUSR1);
1253 BlockSignals(False, SIGTERM);
1254
1255 /* we want total control over the permissions on created files,
1256 so set our umask to 0 */
1257 umask(0);
1258
1259 init_sec_ctx();
1260
1261 reopen_logs();
1262
1263#ifdef __OS2__
1264 unsigned long _System DosSetPriority (unsigned long ulScope, unsigned long ulClass, long lDelta, unsigned long ulID);
1265 int rc;
1266 rc = DosSetPriority(
1267 0, /* Scope: only one process */
1268 4, /* set to PRTYC_FOREGROUNDSERVER */
1269 0, /* set delta - was 0 */
1270 0); /* Assume current process */
1271 DEBUG(0,( "Server priority set to PRTYC_FOREGROUNDSERVER\n"));
1272#endif
1273
1274 DEBUG(0,("smbd version %s started.\n", SAMBA_VERSION_STRING));
1275 DEBUGADD(0,("%s\n", COPYRIGHT_STARTUP_MESSAGE));
1276
1277 DEBUG(2,("uid=%d gid=%d euid=%d egid=%d\n",
1278 (int)getuid(),(int)getgid(),(int)geteuid(),(int)getegid()));
1279
1280 /* Output the build options to the debug log */
1281 build_options(False);
1282
1283 if (sizeof(uint16) < 2 || sizeof(uint32) < 4) {
1284 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
1285 exit(1);
1286 }
1287
1288 if (!lp_load_initial_only(get_dyn_CONFIGFILE())) {
1289 DEBUG(0, ("error opening config file\n"));
1290 exit(1);
1291 }
1292
1293 if (smbd_messaging_context() == NULL)
1294 exit(1);
1295
1296 if (!reload_services(False))
1297 return(-1);
1298
1299 init_structs();
1300
1301#ifdef WITH_PROFILE
1302 if (!profile_setup(smbd_messaging_context(), False)) {
1303 DEBUG(0,("ERROR: failed to setup profiling\n"));
1304 return -1;
1305 }
1306 if (profile_level != NULL) {
1307 int pl = atoi(profile_level);
1308 struct server_id src;
1309
1310 DEBUG(1, ("setting profiling level: %s\n",profile_level));
1311 src.pid = getpid();
1312 set_profile_level(pl, src);
1313 }
1314#endif
1315
1316 DEBUG(3,( "loaded services\n"));
1317
1318 if (!is_daemon && !is_a_socket(0)) {
1319 if (!interactive)
1320 DEBUG(0,("standard input is not a socket, assuming -D option\n"));
1321
1322 /*
1323 * Setting is_daemon here prevents us from eventually calling
1324 * the open_sockets_inetd()
1325 */
1326
1327 is_daemon = True;
1328 }
1329
1330 if (is_daemon && !interactive) {
1331 DEBUG( 3, ( "Becoming a daemon.\n" ) );
1332 become_daemon(Fork, no_process_group);
1333 }
1334
1335#if HAVE_SETPGID
1336 /*
1337 * If we're interactive we want to set our own process group for
1338 * signal management.
1339 */
1340 if (interactive && !no_process_group)
1341 setpgid( (pid_t)0, (pid_t)0);
1342#endif
1343
1344 if (!directory_exist(lp_lockdir(), NULL))
1345 mkdir(lp_lockdir(), 0755);
1346
1347 if (is_daemon)
1348 pidfile_create("smbd");
1349
1350 if (!reinit_after_fork(smbd_messaging_context(),
1351 smbd_event_context(), false)) {
1352 DEBUG(0,("reinit_after_fork() failed\n"));
1353 exit(1);
1354 }
1355
1356 /* Setup all the TDB's - including CLEAR_IF_FIRST tdb's. */
1357
1358 if (smbd_memcache() == NULL) {
1359 exit(1);
1360 }
1361
1362 memcache_set_global(smbd_memcache());
1363
1364 /* Initialise the password backed before the global_sam_sid
1365 to ensure that we fetch from ldap before we make a domain sid up */
1366
1367 if(!initialize_password_db(False, smbd_event_context()))
1368 exit(1);
1369
1370 if (!secrets_init()) {
1371 DEBUG(0, ("ERROR: smbd can not open secrets.tdb\n"));
1372 exit(1);
1373 }
1374
1375 if(!get_global_sam_sid()) {
1376 DEBUG(0,("ERROR: Samba cannot create a SAM SID.\n"));
1377 exit(1);
1378 }
1379
1380 if (!session_init())
1381 exit(1);
1382
1383 if (!connections_init(True))
1384 exit(1);
1385
1386 if (!locking_init())
1387 exit(1);
1388
1389 namecache_enable();
1390
1391 if (!W_ERROR_IS_OK(registry_init_full()))
1392 exit(1);
1393
1394#if 0
1395 if (!init_svcctl_db())
1396 exit(1);
1397#endif
1398
1399 if (!print_backend_init(smbd_messaging_context()))
1400 exit(1);
1401
1402 if (!init_guest_info()) {
1403 DEBUG(0,("ERROR: failed to setup guest info.\n"));
1404 return -1;
1405 }
1406
1407 /* only start the background queue daemon if we are
1408 running as a daemon -- bad things will happen if
1409 smbd is launched via inetd and we fork a copy of
1410 ourselves here */
1411
1412 if (is_daemon && !interactive
1413 && lp_parm_bool(-1, "smbd", "backgroundqueue", true)) {
1414 start_background_queue();
1415 }
1416
1417 if (!open_sockets_smbd(is_daemon, interactive, ports))
1418 exit(1);
1419
1420 /*
1421 * everything after this point is run after the fork()
1422 */
1423
1424 static_init_rpc;
1425
1426 init_modules();
1427
1428 /* Possibly reload the services file. Only worth doing in
1429 * daemon mode. In inetd mode, we know we only just loaded this.
1430 */
1431 if (is_daemon) {
1432 reload_services(True);
1433 }
1434
1435 if (!init_account_policy()) {
1436 DEBUG(0,("Could not open account policy tdb.\n"));
1437 exit(1);
1438 }
1439
1440 if (*lp_rootdir()) {
1441 if (sys_chroot(lp_rootdir()) != 0) {
1442 DEBUG(0,("Failed to change root to %s\n", lp_rootdir()));
1443 exit(1);
1444 }
1445 if (chdir("/") == -1) {
1446 DEBUG(0,("Failed to chdir to / on chroot to %s\n", lp_rootdir()));
1447 exit(1);
1448 }
1449 DEBUG(0,("Changed root to %s\n", lp_rootdir()));
1450 }
1451
1452 /* Setup oplocks */
1453 if (!init_oplocks(smbd_messaging_context()))
1454 exit(1);
1455
1456 /* Setup aio signal handler. */
1457 initialize_async_io_handler();
1458
1459 /* register our message handlers */
1460 messaging_register(smbd_messaging_context(), NULL,
1461 MSG_SMB_FORCE_TDIS, msg_force_tdis);
1462 messaging_register(smbd_messaging_context(), NULL,
1463 MSG_SMB_RELEASE_IP, msg_release_ip);
1464 messaging_register(smbd_messaging_context(), NULL,
1465 MSG_SMB_CLOSE_FILE, msg_close_file);
1466
1467 if ((lp_keepalive() != 0)
1468 && !(event_add_idle(smbd_event_context(), NULL,
1469 timeval_set(lp_keepalive(), 0),
1470 "keepalive", keepalive_fn,
1471 NULL))) {
1472 DEBUG(0, ("Could not add keepalive event\n"));
1473 exit(1);
1474 }
1475
1476 if (!(event_add_idle(smbd_event_context(), NULL,
1477 timeval_set(IDLE_CLOSED_TIMEOUT, 0),
1478 "deadtime", deadtime_fn, NULL))) {
1479 DEBUG(0, ("Could not add deadtime event\n"));
1480 exit(1);
1481 }
1482
1483 if (!(event_add_idle(smbd_event_context(), NULL,
1484 timeval_set(SMBD_SELECT_TIMEOUT, 0),
1485 "housekeeping", housekeeping_fn, NULL))) {
1486 DEBUG(0, ("Could not add housekeeping event\n"));
1487 exit(1);
1488 }
1489
1490#ifdef CLUSTER_SUPPORT
1491
1492 if (lp_clustering()) {
1493 /*
1494 * We need to tell ctdb about our client's TCP
1495 * connection, so that for failover ctdbd can send
1496 * tickle acks, triggering a reconnection by the
1497 * client.
1498 */
1499
1500 struct sockaddr_storage srv, clnt;
1501
1502 if (client_get_tcp_info(&srv, &clnt) == 0) {
1503
1504 NTSTATUS status;
1505
1506 status = ctdbd_register_ips(
1507 messaging_ctdbd_connection(),
1508 &srv, &clnt, release_ip, NULL);
1509
1510 if (!NT_STATUS_IS_OK(status)) {
1511 DEBUG(0, ("ctdbd_register_ips failed: %s\n",
1512 nt_errstr(status)));
1513 }
1514 } else
1515 {
1516 DEBUG(0,("Unable to get tcp info for "
1517 "CTDB_CONTROL_TCP_CLIENT: %s\n",
1518 strerror(errno)));
1519 }
1520 }
1521
1522#endif
1523
1524 TALLOC_FREE(frame);
1525
1526 smbd_process();
1527
1528 namecache_shutdown();
1529
1530 exit_server_cleanly(NULL);
1531 return(0);
1532}
Note: See TracBrowser for help on using the repository browser.