source: branches/samba-3.3.x/source/smbd/server.c@ 274

Last change on this file since 274 was 274, checked in by Herwig Bauernfeind, 16 years ago

Update 3.3 branch to 3.3.5

File size: 38.5 KB
Line 
1/*
2 Unix SMB/CIFS implementation.
3 Main SMB server routines
4 Copyright (C) Andrew Tridgell 1992-1998
5 Copyright (C) Martin Pool 2002
6 Copyright (C) Jelmer Vernooij 2002-2003
7 Copyright (C) Volker Lendecke 1993-2007
8 Copyright (C) Jeremy Allison 1993-2007
9
10 This program is free software; you can redistribute it and/or modify
11 it under the terms of the GNU General Public License as published by
12 the Free Software Foundation; either version 3 of the License, or
13 (at your option) any later version.
14
15 This program is distributed in the hope that it will be useful,
16 but WITHOUT ANY WARRANTY; without even the implied warranty of
17 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 GNU General Public License for more details.
19
20 You should have received a copy of the GNU General Public License
21 along with this program. If not, see <http://www.gnu.org/licenses/>.
22*/
23
24#include "includes.h"
25
26static_decl_rpc;
27
28static int am_parent = 1;
29
30extern struct auth_context *negprot_global_auth_context;
31extern SIG_ATOMIC_T got_sig_term;
32extern SIG_ATOMIC_T reload_after_sighup;
33static SIG_ATOMIC_T got_sig_cld;
34
35#ifdef WITH_DFS
36extern int dcelogin_atmost_once;
37#endif /* WITH_DFS */
38
39/* really we should have a top level context structure that has the
40 client file descriptor as an element. That would require a major rewrite :(
41
42 the following 2 functions are an alternative - they make the file
43 descriptor private to smbd
44 */
45static int server_fd = -1;
46
47int smbd_server_fd(void)
48{
49 return server_fd;
50}
51
52static void smbd_set_server_fd(int fd)
53{
54 server_fd = fd;
55}
56
57int get_client_fd(void)
58{
59 return server_fd;
60}
61
62#ifdef CLUSTER_SUPPORT
63static int client_get_tcp_info(struct sockaddr_storage *server,
64 struct sockaddr_storage *client)
65{
66 socklen_t length;
67 if (server_fd == -1) {
68 return -1;
69 }
70 length = sizeof(*server);
71 if (getsockname(server_fd, (struct sockaddr *)server, &length) != 0) {
72 return -1;
73 }
74 length = sizeof(*client);
75 if (getpeername(server_fd, (struct sockaddr *)client, &length) != 0) {
76 return -1;
77 }
78 return 0;
79}
80#endif
81
82struct event_context *smbd_event_context(void)
83{
84 static struct event_context *ctx;
85
86 if (!ctx && !(ctx = event_context_init(talloc_autofree_context()))) {
87 smb_panic("Could not init smbd event context");
88 }
89 return ctx;
90}
91
92struct messaging_context *smbd_messaging_context(void)
93{
94 static struct messaging_context *ctx;
95
96 if (ctx == NULL) {
97 ctx = messaging_init(talloc_autofree_context(), server_id_self(),
98 smbd_event_context());
99 }
100 if (ctx == NULL) {
101 DEBUG(0, ("Could not init smbd messaging context.\n"));
102 }
103 return ctx;
104}
105
106struct memcache *smbd_memcache(void)
107{
108 static struct memcache *cache;
109
110 if (!cache
111 && !(cache = memcache_init(talloc_autofree_context(),
112 lp_max_stat_cache_size()*1024))) {
113
114 smb_panic("Could not init smbd memcache");
115 }
116 return cache;
117}
118
119/*******************************************************************
120 What to do when smb.conf is updated.
121 ********************************************************************/
122
123static void smb_conf_updated(struct messaging_context *msg,
124 void *private_data,
125 uint32_t msg_type,
126 struct server_id server_id,
127 DATA_BLOB *data)
128{
129 DEBUG(10,("smb_conf_updated: Got message saying smb.conf was "
130 "updated. Reloading.\n"));
131 reload_services(False);
132}
133
134
135/*******************************************************************
136 Delete a statcache entry.
137 ********************************************************************/
138
139static void smb_stat_cache_delete(struct messaging_context *msg,
140 void *private_data,
141 uint32_t msg_tnype,
142 struct server_id server_id,
143 DATA_BLOB *data)
144{
145 const char *name = (const char *)data->data;
146 DEBUG(10,("smb_stat_cache_delete: delete name %s\n", name));
147 stat_cache_delete(name);
148}
149
150/****************************************************************************
151 Terminate signal.
152****************************************************************************/
153
154static void sig_term(void)
155{
156 got_sig_term = 1;
157 sys_select_signal(SIGTERM);
158}
159
160/****************************************************************************
161 Catch a sighup.
162****************************************************************************/
163
164static void sig_hup(int sig)
165{
166 reload_after_sighup = 1;
167 sys_select_signal(SIGHUP);
168}
169
170/****************************************************************************
171 Catch a sigcld
172****************************************************************************/
173static void sig_cld(int sig)
174{
175 got_sig_cld = 1;
176 sys_select_signal(SIGCLD);
177}
178
179/****************************************************************************
180 Send a SIGTERM to our process group.
181*****************************************************************************/
182
183static void killkids(void)
184{
185 if(am_parent) kill(0,SIGTERM);
186}
187
188/****************************************************************************
189 Process a sam sync message - not sure whether to do this here or
190 somewhere else.
191****************************************************************************/
192
193static void msg_sam_sync(struct messaging_context *msg,
194 void *private_data,
195 uint32_t msg_type,
196 struct server_id server_id,
197 DATA_BLOB *data)
198{
199 DEBUG(10, ("** sam sync message received, ignoring\n"));
200}
201
202
203/****************************************************************************
204 Open the socket communication - inetd.
205****************************************************************************/
206
207static bool open_sockets_inetd(void)
208{
209 /* Started from inetd. fd 0 is the socket. */
210 /* We will abort gracefully when the client or remote system
211 goes away */
212 smbd_set_server_fd(dup(0));
213
214 /* close our standard file descriptors */
215 close_low_fds(False); /* Don't close stderr */
216
217 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
218 set_socket_options(smbd_server_fd(), lp_socket_options());
219
220 return True;
221}
222
223static void msg_exit_server(struct messaging_context *msg,
224 void *private_data,
225 uint32_t msg_type,
226 struct server_id server_id,
227 DATA_BLOB *data)
228{
229 DEBUG(3, ("got a SHUTDOWN message\n"));
230 exit_server_cleanly(NULL);
231}
232
233#ifdef DEVELOPER
234static void msg_inject_fault(struct messaging_context *msg,
235 void *private_data,
236 uint32_t msg_type,
237 struct server_id src,
238 DATA_BLOB *data)
239{
240 int sig;
241
242 if (data->length != sizeof(sig)) {
243
244 DEBUG(0, ("Process %s sent bogus signal injection request\n",
245 procid_str_static(&src)));
246 return;
247 }
248
249 sig = *(int *)data->data;
250 if (sig == -1) {
251 exit_server("internal error injected");
252 return;
253 }
254
255#if HAVE_STRSIGNAL
256 DEBUG(0, ("Process %s requested injection of signal %d (%s)\n",
257 procid_str_static(&src), sig, strsignal(sig)));
258#else
259 DEBUG(0, ("Process %s requested injection of signal %d\n",
260 procid_str_static(&src), sig));
261#endif
262
263 kill(sys_getpid(), sig);
264}
265#endif /* DEVELOPER */
266
267struct child_pid {
268 struct child_pid *prev, *next;
269 pid_t pid;
270};
271
272static struct child_pid *children;
273static int num_children;
274
275static void add_child_pid(pid_t pid)
276{
277 struct child_pid *child;
278
279 if (lp_max_smbd_processes() == 0) {
280 /* Don't bother with the child list if we don't care anyway */
281 return;
282 }
283
284 child = SMB_MALLOC_P(struct child_pid);
285 if (child == NULL) {
286 DEBUG(0, ("Could not add child struct -- malloc failed\n"));
287 return;
288 }
289 child->pid = pid;
290 DLIST_ADD(children, child);
291 num_children += 1;
292}
293
294static void remove_child_pid(pid_t pid, bool unclean_shutdown)
295{
296 struct child_pid *child;
297
298 if (unclean_shutdown) {
299 /* a child terminated uncleanly so tickle all processes to see
300 if they can grab any of the pending locks
301 */
302 DEBUG(3,(__location__ " Unclean shutdown of pid %u\n", (unsigned int)pid));
303 messaging_send_buf(smbd_messaging_context(), procid_self(),
304 MSG_SMB_BRL_VALIDATE, NULL, 0);
305 message_send_all(smbd_messaging_context(),
306 MSG_SMB_UNLOCK, NULL, 0, NULL);
307 }
308
309 if (lp_max_smbd_processes() == 0) {
310 /* Don't bother with the child list if we don't care anyway */
311 return;
312 }
313
314 for (child = children; child != NULL; child = child->next) {
315 if (child->pid == pid) {
316 struct child_pid *tmp = child;
317 DLIST_REMOVE(children, child);
318 SAFE_FREE(tmp);
319 num_children -= 1;
320 return;
321 }
322 }
323
324 DEBUG(0, ("Could not find child %d -- ignoring\n", (int)pid));
325}
326
327/****************************************************************************
328 Have we reached the process limit ?
329****************************************************************************/
330
331static bool allowable_number_of_smbd_processes(void)
332{
333 int max_processes = lp_max_smbd_processes();
334
335 if (!max_processes)
336 return True;
337
338 return num_children < max_processes;
339}
340
341/****************************************************************************
342 Open the socket communication.
343****************************************************************************/
344
345static bool open_sockets_smbd(bool is_daemon, bool interactive, const char *smb_ports)
346{
347 int num_interfaces = iface_count();
348 int num_sockets = 0;
349 int fd_listenset[FD_SETSIZE];
350 fd_set listen_set;
351 int s;
352 int maxfd = 0;
353 int i;
354 char *ports;
355 struct dns_reg_state * dns_reg = NULL;
356 unsigned dns_port = 0;
357
358 if (!is_daemon) {
359 return open_sockets_inetd();
360 }
361
362#ifdef HAVE_ATEXIT
363 {
364 static int atexit_set;
365 if(atexit_set == 0) {
366 atexit_set=1;
367 atexit(killkids);
368 }
369 }
370#endif
371
372 /* Stop zombies */
373 CatchSignal(SIGCLD, sig_cld);
374
375 FD_ZERO(&listen_set);
376
377 /* use a reasonable default set of ports - listing on 445 and 139 */
378 if (!smb_ports) {
379 ports = lp_smb_ports();
380 if (!ports || !*ports) {
381 ports = smb_xstrdup(SMB_PORTS);
382 } else {
383 ports = smb_xstrdup(ports);
384 }
385 } else {
386 ports = smb_xstrdup(smb_ports);
387 }
388
389 if (lp_interfaces() && lp_bind_interfaces_only()) {
390 /* We have been given an interfaces line, and been
391 told to only bind to those interfaces. Create a
392 socket per interface and bind to only these.
393 */
394
395 /* Now open a listen socket for each of the
396 interfaces. */
397 for(i = 0; i < num_interfaces; i++) {
398 TALLOC_CTX *frame = NULL;
399 const struct sockaddr_storage *ifss =
400 iface_n_sockaddr_storage(i);
401 char *tok;
402 const char *ptr;
403
404 if (ifss == NULL) {
405 DEBUG(0,("open_sockets_smbd: "
406 "interface %d has NULL IP address !\n",
407 i));
408 continue;
409 }
410
411 frame = talloc_stackframe();
412 for (ptr=ports;
413 next_token_talloc(frame,&ptr, &tok, " \t,");) {
414 unsigned port = atoi(tok);
415 if (port == 0 || port > 0xffff) {
416 continue;
417 }
418
419 /* Keep the first port for mDNS service
420 * registration.
421 */
422 if (dns_port == 0) {
423 dns_port = port;
424 }
425
426 s = fd_listenset[num_sockets] =
427 open_socket_in(SOCK_STREAM,
428 port,
429 num_sockets == 0 ? 0 : 2,
430 ifss,
431 true);
432 if(s == -1) {
433 continue;
434 }
435
436 /* ready to listen */
437 set_socket_options(s,"SO_KEEPALIVE");
438 set_socket_options(s,lp_socket_options());
439
440 /* Set server socket to
441 * non-blocking for the accept. */
442 set_blocking(s,False);
443
444 if (listen(s, SMBD_LISTEN_BACKLOG) == -1) {
445 DEBUG(0,("open_sockets_smbd: listen: "
446 "%s\n", strerror(errno)));
447 close(s);
448 TALLOC_FREE(frame);
449 return False;
450 }
451 FD_SET(s,&listen_set);
452 maxfd = MAX( maxfd, s);
453
454 num_sockets++;
455 if (num_sockets >= FD_SETSIZE) {
456 DEBUG(0,("open_sockets_smbd: Too "
457 "many sockets to bind to\n"));
458 TALLOC_FREE(frame);
459 return False;
460 }
461 }
462 TALLOC_FREE(frame);
463 }
464 } else {
465 /* Just bind to 0.0.0.0 - accept connections
466 from anywhere. */
467
468 TALLOC_CTX *frame = talloc_stackframe();
469 char *tok;
470 const char *ptr;
471 const char *sock_addr = lp_socket_address();
472 char *sock_tok;
473 const char *sock_ptr;
474
475 if (strequal(sock_addr, "0.0.0.0") ||
476 strequal(sock_addr, "::")) {
477#if HAVE_IPV6
478 sock_addr = "::,0.0.0.0";
479#else
480 sock_addr = "0.0.0.0";
481#endif
482 }
483
484 for (sock_ptr=sock_addr;
485 next_token_talloc(frame, &sock_ptr, &sock_tok, " \t,"); ) {
486 for (ptr=ports; next_token_talloc(frame, &ptr, &tok, " \t,"); ) {
487 struct sockaddr_storage ss;
488
489 unsigned port = atoi(tok);
490 if (port == 0 || port > 0xffff) {
491 continue;
492 }
493
494 /* Keep the first port for mDNS service
495 * registration.
496 */
497 if (dns_port == 0) {
498 dns_port = port;
499 }
500
501 /* open an incoming socket */
502 if (!interpret_string_addr(&ss, sock_tok,
503 AI_NUMERICHOST|AI_PASSIVE)) {
504 continue;
505 }
506
507 s = open_socket_in(SOCK_STREAM,
508 port,
509 num_sockets == 0 ? 0 : 2,
510 &ss,
511 true);
512 if (s == -1) {
513 continue;
514 }
515
516 /* ready to listen */
517 set_socket_options(s,"SO_KEEPALIVE");
518 set_socket_options(s,lp_socket_options());
519
520 /* Set server socket to non-blocking
521 * for the accept. */
522 set_blocking(s,False);
523
524 if (listen(s, SMBD_LISTEN_BACKLOG) == -1) {
525 DEBUG(0,("open_sockets_smbd: "
526 "listen: %s\n",
527 strerror(errno)));
528 close(s);
529 TALLOC_FREE(frame);
530 return False;
531 }
532
533 fd_listenset[num_sockets] = s;
534 FD_SET(s,&listen_set);
535 maxfd = MAX( maxfd, s);
536
537 num_sockets++;
538
539 if (num_sockets >= FD_SETSIZE) {
540 DEBUG(0,("open_sockets_smbd: Too "
541 "many sockets to bind to\n"));
542 TALLOC_FREE(frame);
543 return False;
544 }
545 }
546 }
547 TALLOC_FREE(frame);
548 }
549
550 SAFE_FREE(ports);
551
552 if (num_sockets == 0) {
553 DEBUG(0,("open_sockets_smbd: No "
554 "sockets available to bind to.\n"));
555 return false;
556 }
557
558 /* Setup the main smbd so that we can get messages. Note that
559 do this after starting listening. This is needed as when in
560 clustered mode, ctdb won't allow us to start doing database
561 operations until it has gone thru a full startup, which
562 includes checking to see that smbd is listening. */
563 claim_connection(NULL,"",
564 FLAG_MSG_GENERAL|FLAG_MSG_SMBD|FLAG_MSG_DBWRAP);
565
566 /* Listen to messages */
567
568 messaging_register(smbd_messaging_context(), NULL,
569 MSG_SMB_SAM_SYNC, msg_sam_sync);
570 messaging_register(smbd_messaging_context(), NULL,
571 MSG_SHUTDOWN, msg_exit_server);
572 messaging_register(smbd_messaging_context(), NULL,
573 MSG_SMB_FILE_RENAME, msg_file_was_renamed);
574 messaging_register(smbd_messaging_context(), NULL,
575 MSG_SMB_CONF_UPDATED, smb_conf_updated);
576 messaging_register(smbd_messaging_context(), NULL,
577 MSG_SMB_STAT_CACHE_DELETE, smb_stat_cache_delete);
578 brl_register_msgs(smbd_messaging_context());
579
580#ifdef CLUSTER_SUPPORT
581 if (lp_clustering()) {
582 ctdbd_register_reconfigure(messaging_ctdbd_connection());
583 }
584#endif
585
586#ifdef DEVELOPER
587 messaging_register(smbd_messaging_context(), NULL,
588 MSG_SMB_INJECT_FAULT, msg_inject_fault);
589#endif
590
591 /* Kick off our mDNS registration. */
592 if (dns_port != 0) {
593#ifdef WITH_AVAHI_SUPPORT
594 void *avahi_conn;
595 avahi_conn = avahi_start_register(
596 smbd_event_context(), smbd_event_context(),
597 dns_port);
598 if (avahi_conn == NULL) {
599 DEBUG(10, ("avahi_start_register failed\n"));
600 }
601#endif
602 }
603
604 /* now accept incoming connections - forking a new process
605 for each incoming connection */
606 DEBUG(2,("waiting for a connection\n"));
607 while (1) {
608 struct timeval now, idle_timeout;
609 fd_set r_fds, w_fds;
610 int num;
611
612 /* Ensure we respond to PING and DEBUG messages from the main smbd. */
613 message_dispatch(smbd_messaging_context());
614
615 if (got_sig_cld) {
616 pid_t pid;
617 int status;
618
619 got_sig_cld = False;
620
621 while ((pid = sys_waitpid(-1, &status, WNOHANG)) > 0) {
622 bool unclean_shutdown = False;
623
624 /* If the child terminated normally, assume
625 it was an unclean shutdown unless the
626 status is 0
627 */
628 if (WIFEXITED(status)) {
629 unclean_shutdown = WEXITSTATUS(status);
630 }
631 /* If the child terminated due to a signal
632 we always assume it was unclean.
633 */
634 if (WIFSIGNALED(status)) {
635 unclean_shutdown = True;
636 }
637 remove_child_pid(pid, unclean_shutdown);
638 }
639 }
640
641 idle_timeout = timeval_zero();
642
643 memcpy((char *)&r_fds, (char *)&listen_set,
644 sizeof(listen_set));
645 FD_ZERO(&w_fds);
646 GetTimeOfDay(&now);
647
648 event_add_to_select_args(smbd_event_context(), &now,
649 &r_fds, &w_fds, &idle_timeout,
650 &maxfd);
651
652 num = sys_select(maxfd+1,&r_fds,&w_fds,NULL,
653 timeval_is_zero(&idle_timeout) ?
654 NULL : &idle_timeout);
655
656 if (num == -1 && errno == EINTR) {
657 if (got_sig_term) {
658 exit_server_cleanly(NULL);
659 }
660
661 /* check for sighup processing */
662 if (reload_after_sighup) {
663 change_to_root_user();
664 DEBUG(1,("Reloading services after SIGHUP\n"));
665 reload_services(False);
666 reload_after_sighup = 0;
667 }
668
669 continue;
670 }
671
672
673 /* If the idle timeout fired and we don't have any connected
674 * users, exit gracefully. We should be running under a process
675 * controller that will restart us if necessry.
676 */
677 if (num == 0 && count_all_current_connections() == 0) {
678 exit_server_cleanly("idle timeout");
679 }
680
681 /* process pending nDNS responses */
682 if (dns_register_smbd_reply(dns_reg, &r_fds, &idle_timeout)) {
683 --num;
684 }
685
686 if (run_events(smbd_event_context(), num, &r_fds, &w_fds)) {
687 continue;
688 }
689
690 /* check if we need to reload services */
691 check_reload(time(NULL));
692
693 /* Find the sockets that are read-ready -
694 accept on these. */
695 for( ; num > 0; num--) {
696 struct sockaddr addr;
697 socklen_t in_addrlen = sizeof(addr);
698 pid_t child = 0;
699
700 s = -1;
701 for(i = 0; i < num_sockets; i++) {
702 if(FD_ISSET(fd_listenset[i],&r_fds)) {
703 s = fd_listenset[i];
704 /* Clear this so we don't look
705 at it again. */
706 FD_CLR(fd_listenset[i],&r_fds);
707 break;
708 }
709 }
710
711 smbd_set_server_fd(accept(s,&addr,&in_addrlen));
712
713 if (smbd_server_fd() == -1 && errno == EINTR)
714 continue;
715
716 if (smbd_server_fd() == -1) {
717 DEBUG(2,("open_sockets_smbd: accept: %s\n",
718 strerror(errno)));
719 continue;
720 }
721
722 /* Ensure child is set to blocking mode */
723 set_blocking(smbd_server_fd(),True);
724
725 if (smbd_server_fd() != -1 && interactive)
726 return True;
727
728 if (allowable_number_of_smbd_processes() &&
729 smbd_server_fd() != -1 &&
730 ((child = sys_fork())==0)) {
731 char remaddr[INET6_ADDRSTRLEN];
732
733 /* Child code ... */
734
735 /* Stop zombies, the parent explicitly handles
736 * them, counting worker smbds. */
737 CatchChild();
738
739 /* close the listening socket(s) */
740 for(i = 0; i < num_sockets; i++)
741 close(fd_listenset[i]);
742
743 /* close our mDNS daemon handle */
744 dns_register_close(&dns_reg);
745
746 /* close our standard file
747 descriptors */
748 close_low_fds(False);
749 am_parent = 0;
750
751 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
752 set_socket_options(smbd_server_fd(),
753 lp_socket_options());
754
755 /* this is needed so that we get decent entries
756 in smbstatus for port 445 connects */
757 set_remote_machine_name(get_peer_addr(smbd_server_fd(),
758 remaddr,
759 sizeof(remaddr)),
760 false);
761
762 if (!reinit_after_fork(
763 smbd_messaging_context(),
764 smbd_event_context(),
765 true)) {
766 DEBUG(0,("reinit_after_fork() failed\n"));
767 smb_panic("reinit_after_fork() failed");
768 }
769
770 return True;
771 }
772 /* The parent doesn't need this socket */
773 close(smbd_server_fd());
774
775 /* Sun May 6 18:56:14 2001 ackley@cs.unm.edu:
776 Clear the closed fd info out of server_fd --
777 and more importantly, out of client_fd in
778 util_sock.c, to avoid a possible
779 getpeername failure if we reopen the logs
780 and use %I in the filename.
781 */
782
783 smbd_set_server_fd(-1);
784
785 if (child != 0) {
786 add_child_pid(child);
787 }
788
789 /* Force parent to check log size after
790 * spawning child. Fix from
791 * klausr@ITAP.Physik.Uni-Stuttgart.De. The
792 * parent smbd will log to logserver.smb. It
793 * writes only two messages for each child
794 * started/finished. But each child writes,
795 * say, 50 messages also in logserver.smb,
796 * begining with the debug_count of the
797 * parent, before the child opens its own log
798 * file logserver.client. In a worst case
799 * scenario the size of logserver.smb would be
800 * checked after about 50*50=2500 messages
801 * (ca. 100kb).
802 * */
803 force_check_log_size();
804
805 } /* end for num */
806 } /* end while 1 */
807
808/* NOTREACHED return True; */
809}
810
811/****************************************************************************
812 Reload printers
813**************************************************************************/
814void reload_printers(void)
815{
816 int snum;
817 int n_services = lp_numservices();
818 int pnum = lp_servicenumber(PRINTERS_NAME);
819 const char *pname;
820
821 pcap_cache_reload();
822
823 /* remove stale printers */
824 for (snum = 0; snum < n_services; snum++) {
825 /* avoid removing PRINTERS_NAME or non-autoloaded printers */
826 if (snum == pnum || !(lp_snum_ok(snum) && lp_print_ok(snum) &&
827 lp_autoloaded(snum)))
828 continue;
829
830 pname = lp_printername(snum);
831 if (!pcap_printername_ok(pname)) {
832 DEBUG(3, ("removing stale printer %s\n", pname));
833
834 if (is_printer_published(NULL, snum, NULL))
835 nt_printer_publish(NULL, snum, SPOOL_DS_UNPUBLISH);
836 del_a_printer(pname);
837 lp_killservice(snum);
838 }
839 }
840
841 load_printers();
842}
843
844/****************************************************************************
845 Reload the services file.
846**************************************************************************/
847
848bool reload_services(bool test)
849{
850 bool ret;
851
852 if (lp_loaded()) {
853 char *fname = lp_configfile();
854 if (file_exist(fname, NULL) &&
855 !strcsequal(fname, get_dyn_CONFIGFILE())) {
856 set_dyn_CONFIGFILE(fname);
857 test = False;
858 }
859 }
860
861 reopen_logs();
862
863 if (test && !lp_file_list_changed())
864 return(True);
865
866 lp_killunused(conn_snum_used);
867
868 ret = lp_load(get_dyn_CONFIGFILE(), False, False, True, True);
869
870 reload_printers();
871
872 /* perhaps the config filename is now set */
873 if (!test)
874 reload_services(True);
875
876 reopen_logs();
877
878 load_interfaces();
879
880 if (smbd_server_fd() != -1) {
881 set_socket_options(smbd_server_fd(),"SO_KEEPALIVE");
882 set_socket_options(smbd_server_fd(), lp_socket_options());
883 }
884
885 mangle_reset_cache();
886 reset_stat_cache();
887
888 /* this forces service parameters to be flushed */
889 set_current_service(NULL,0,True);
890
891 return(ret);
892}
893
894/****************************************************************************
895 Exit the server.
896****************************************************************************/
897
898/* Reasons for shutting down a server process. */
899enum server_exit_reason { SERVER_EXIT_NORMAL, SERVER_EXIT_ABNORMAL };
900
901static void exit_server_common(enum server_exit_reason how,
902 const char *const reason) NORETURN_ATTRIBUTE;
903
904static void exit_server_common(enum server_exit_reason how,
905 const char *const reason)
906{
907 static int firsttime=1;
908 bool had_open_conn;
909
910 if (!firsttime)
911 exit(0);
912 firsttime = 0;
913
914 change_to_root_user();
915
916 if (negprot_global_auth_context) {
917 (negprot_global_auth_context->free)(&negprot_global_auth_context);
918 }
919
920 had_open_conn = conn_close_all();
921
922 invalidate_all_vuids();
923
924 /* 3 second timeout. */
925 print_notify_send_messages(smbd_messaging_context(), 3);
926
927 /* delete our entry in the connections database. */
928 yield_connection(NULL,"");
929
930 respond_to_all_remaining_local_messages();
931
932#ifdef WITH_DFS
933 if (dcelogin_atmost_once) {
934 dfs_unlogin();
935 }
936#endif
937
938#ifdef USE_DMAPI
939 /* Destroy Samba DMAPI session only if we are master smbd process */
940 if (am_parent) {
941 if (!dmapi_destroy_session()) {
942 DEBUG(0,("Unable to close Samba DMAPI session\n"));
943 }
944 }
945#endif
946
947 locking_end();
948 printing_end();
949
950#ifdef __OS2__
951 /* On OS/2 - we need to remove the PID file on server exit otherwise we may not be able to restart Samba */
952 char pidFile[1024];
953 slprintf(pidFile, sizeof(pidFile)-1, "%s/%s.pid", lp_piddir(), "smbd");
954 unlink(pidFile);
955#endif
956
957 if (how != SERVER_EXIT_NORMAL) {
958 int oldlevel = DEBUGLEVEL;
959
960 DEBUGLEVEL = 10;
961
962 DEBUGSEP(0);
963 DEBUG(0,("Abnormal server exit: %s\n",
964 reason ? reason : "no explanation provided"));
965 DEBUGSEP(0);
966
967 log_stack_trace();
968
969 DEBUGLEVEL = oldlevel;
970 dump_core();
971
972 } else {
973 DEBUG(3,("Server exit (%s)\n",
974 (reason ? reason : "normal exit")));
975 }
976
977 /* if we had any open SMB connections when we exited then we
978 need to tell the parent smbd so that it can trigger a retry
979 of any locks we may have been holding or open files we were
980 blocking */
981 if (had_open_conn) {
982 exit(1);
983 } else {
984 exit(0);
985 }
986}
987
988void exit_server(const char *const explanation)
989{
990 exit_server_common(SERVER_EXIT_ABNORMAL, explanation);
991}
992
993void exit_server_cleanly(const char *const explanation)
994{
995 exit_server_common(SERVER_EXIT_NORMAL, explanation);
996}
997
998void exit_server_fault(void)
999{
1000 exit_server("critical server fault");
1001}
1002
1003
1004/****************************************************************************
1005received when we should release a specific IP
1006****************************************************************************/
1007static void release_ip(const char *ip, void *priv)
1008{
1009 char addr[INET6_ADDRSTRLEN];
1010
1011 if (strcmp(client_socket_addr(get_client_fd(),addr,sizeof(addr)), ip) == 0) {
1012 /* we can't afford to do a clean exit - that involves
1013 database writes, which would potentially mean we
1014 are still running after the failover has finished -
1015 we have to get rid of this process ID straight
1016 away */
1017 DEBUG(0,("Got release IP message for our IP %s - exiting immediately\n",
1018 ip));
1019 /* note we must exit with non-zero status so the unclean handler gets
1020 called in the parent, so that the brl database is tickled */
1021 _exit(1);
1022 }
1023}
1024
1025static void msg_release_ip(struct messaging_context *msg_ctx, void *private_data,
1026 uint32_t msg_type, struct server_id server_id, DATA_BLOB *data)
1027{
1028 release_ip((char *)data->data, NULL);
1029}
1030
1031/****************************************************************************
1032 Initialise connect, service and file structs.
1033****************************************************************************/
1034
1035static bool init_structs(void )
1036{
1037 /*
1038 * Set the machine NETBIOS name if not already
1039 * set from the config file.
1040 */
1041
1042 if (!init_names())
1043 return False;
1044
1045 conn_init();
1046
1047 file_init();
1048
1049 /* for RPC pipes */
1050 init_rpc_pipe_hnd();
1051
1052 init_dptrs();
1053
1054 if (!secrets_init())
1055 return False;
1056
1057 return True;
1058}
1059
1060/*
1061 * Send keepalive packets to our client
1062 */
1063static bool keepalive_fn(const struct timeval *now, void *private_data)
1064{
1065 if (!send_keepalive(smbd_server_fd())) {
1066 DEBUG( 2, ( "Keepalive failed - exiting.\n" ) );
1067 return False;
1068 }
1069 return True;
1070}
1071
1072/*
1073 * Do the recurring check if we're idle
1074 */
1075static bool deadtime_fn(const struct timeval *now, void *private_data)
1076{
1077 if ((conn_num_open() == 0)
1078 || (conn_idle_all(now->tv_sec))) {
1079 DEBUG( 2, ( "Closing idle connection\n" ) );
1080 messaging_send(smbd_messaging_context(), procid_self(),
1081 MSG_SHUTDOWN, &data_blob_null);
1082 return False;
1083 }
1084
1085 return True;
1086}
1087
1088/*
1089 * Do the recurring log file and smb.conf reload checks.
1090 */
1091
1092static bool housekeeping_fn(const struct timeval *now, void *private_data)
1093{
1094 change_to_root_user();
1095
1096 /* update printer queue caches if necessary */
1097 update_monitored_printq_cache();
1098
1099 /* check if we need to reload services */
1100 check_reload(time(NULL));
1101
1102 /* Change machine password if neccessary. */
1103 attempt_machine_password_change();
1104
1105 /*
1106 * Force a log file check.
1107 */
1108 force_check_log_size();
1109 check_log_size();
1110 return true;
1111}
1112
1113/****************************************************************************
1114 main program.
1115****************************************************************************/
1116
1117/* Declare prototype for build_options() to avoid having to run it through
1118 mkproto.h. Mixing $(builddir) and $(srcdir) source files in the current
1119 prototype generation system is too complicated. */
1120
1121extern void build_options(bool screen);
1122
1123 int main(int argc,const char *argv[])
1124{
1125 /* shall I run as a daemon */
1126 static bool is_daemon = False;
1127 static bool interactive = False;
1128 static bool Fork = True;
1129 static bool no_process_group = False;
1130 static bool log_stdout = False;
1131 static char *ports = NULL;
1132 static char *profile_level = NULL;
1133 int opt;
1134 poptContext pc;
1135 bool print_build_options = False;
1136 enum {
1137 OPT_DAEMON = 1000,
1138 OPT_INTERACTIVE,
1139 OPT_FORK,
1140 OPT_NO_PROCESS_GROUP,
1141 OPT_LOG_STDOUT
1142 };
1143 struct poptOption long_options[] = {
1144 POPT_AUTOHELP
1145 {"daemon", 'D', POPT_ARG_NONE, NULL, OPT_DAEMON, "Become a daemon (default)" },
1146 {"interactive", 'i', POPT_ARG_NONE, NULL, OPT_INTERACTIVE, "Run interactive (not a daemon)"},
1147 {"foreground", 'F', POPT_ARG_NONE, NULL, OPT_FORK, "Run daemon in foreground (for daemontools, etc.)" },
1148 {"no-process-group", '\0', POPT_ARG_NONE, NULL, OPT_NO_PROCESS_GROUP, "Don't create a new process group" },
1149 {"log-stdout", 'S', POPT_ARG_NONE, NULL, OPT_LOG_STDOUT, "Log to stdout" },
1150 {"build-options", 'b', POPT_ARG_NONE, NULL, 'b', "Print build options" },
1151 {"port", 'p', POPT_ARG_STRING, &ports, 0, "Listen on the specified ports"},
1152 {"profiling-level", 'P', POPT_ARG_STRING, &profile_level, 0, "Set profiling level","PROFILE_LEVEL"},
1153 POPT_COMMON_SAMBA
1154 POPT_COMMON_DYNCONFIG
1155 POPT_TABLEEND
1156 };
1157 TALLOC_CTX *frame = talloc_stackframe(); /* Setup tos. */
1158
1159 TimeInit();
1160
1161#ifdef HAVE_SET_AUTH_PARAMETERS
1162 set_auth_parameters(argc,argv);
1163#endif
1164
1165 pc = poptGetContext("smbd", argc, argv, long_options, 0);
1166 while((opt = poptGetNextOpt(pc)) != -1) {
1167 switch (opt) {
1168 case OPT_DAEMON:
1169 is_daemon = true;
1170 break;
1171 case OPT_INTERACTIVE:
1172 interactive = true;
1173 break;
1174 case OPT_FORK:
1175 Fork = false;
1176 break;
1177 case OPT_NO_PROCESS_GROUP:
1178 no_process_group = true;
1179 break;
1180 case OPT_LOG_STDOUT:
1181 log_stdout = true;
1182 break;
1183 case 'b':
1184 print_build_options = True;
1185 break;
1186 default:
1187 d_fprintf(stderr, "\nInvalid option %s: %s\n\n",
1188 poptBadOption(pc, 0), poptStrerror(opt));
1189 poptPrintUsage(pc, stderr, 0);
1190 exit(1);
1191 }
1192 }
1193 poptFreeContext(pc);
1194
1195 if (interactive) {
1196 Fork = False;
1197 log_stdout = True;
1198 }
1199
1200 setup_logging(argv[0],log_stdout);
1201
1202 if (print_build_options) {
1203 build_options(True); /* Display output to screen as well as debug */
1204 exit(0);
1205 }
1206
1207 load_case_tables();
1208
1209#ifdef HAVE_SETLUID
1210 /* needed for SecureWare on SCO */
1211 setluid(0);
1212#endif
1213
1214 sec_init();
1215
1216 set_remote_machine_name("smbd", False);
1217
1218 if (interactive && (DEBUGLEVEL >= 9)) {
1219 talloc_enable_leak_report();
1220 }
1221
1222 if (log_stdout && Fork) {
1223 DEBUG(0,("ERROR: Can't log to stdout (-S) unless daemon is in foreground (-F) or interactive (-i)\n"));
1224 exit(1);
1225 }
1226
1227 /* we want to re-seed early to prevent time delays causing
1228 client problems at a later date. (tridge) */
1229 generate_random_buffer(NULL, 0);
1230
1231 /* make absolutely sure we run as root - to handle cases where people
1232 are crazy enough to have it setuid */
1233
1234 gain_root_privilege();
1235 gain_root_group_privilege();
1236
1237 fault_setup((void (*)(void *))exit_server_fault);
1238 dump_core_setup("smbd");
1239
1240 CatchSignal(SIGTERM , SIGNAL_CAST sig_term);
1241 CatchSignal(SIGHUP,SIGNAL_CAST sig_hup);
1242
1243 /* we are never interested in SIGPIPE */
1244 BlockSignals(True,SIGPIPE);
1245
1246#if defined(SIGFPE)
1247 /* we are never interested in SIGFPE */
1248 BlockSignals(True,SIGFPE);
1249#endif
1250
1251#if defined(SIGUSR2)
1252 /* We are no longer interested in USR2 */
1253 BlockSignals(True,SIGUSR2);
1254#endif
1255
1256 /* POSIX demands that signals are inherited. If the invoking process has
1257 * these signals masked, we will have problems, as we won't recieve them. */
1258 BlockSignals(False, SIGHUP);
1259 BlockSignals(False, SIGUSR1);
1260 BlockSignals(False, SIGTERM);
1261
1262 /* we want total control over the permissions on created files,
1263 so set our umask to 0 */
1264 umask(0);
1265
1266 init_sec_ctx();
1267
1268 reopen_logs();
1269
1270#ifdef __OS2__
1271 unsigned long _System DosSetPriority (unsigned long ulScope, unsigned long ulClass, long lDelta, unsigned long ulID);
1272 int rc;
1273 rc = DosSetPriority(
1274 0, /* Scope: only one process */
1275 4, /* set to PRTYC_FOREGROUNDSERVER */
1276 0, /* set delta - was 0 */
1277 0); /* Assume current process */
1278 DEBUG(0,( "Server priority set to PRTYC_FOREGROUNDSERVER\n"));
1279#endif
1280
1281 DEBUG(0,("smbd version %s started.\n", SAMBA_VERSION_STRING));
1282 DEBUGADD(0,("%s\n", COPYRIGHT_STARTUP_MESSAGE));
1283
1284 DEBUG(2,("uid=%d gid=%d euid=%d egid=%d\n",
1285 (int)getuid(),(int)getgid(),(int)geteuid(),(int)getegid()));
1286
1287 /* Output the build options to the debug log */
1288 build_options(False);
1289
1290 if (sizeof(uint16) < 2 || sizeof(uint32) < 4) {
1291 DEBUG(0,("ERROR: Samba is not configured correctly for the word size on your machine\n"));
1292 exit(1);
1293 }
1294
1295 if (!lp_load_initial_only(get_dyn_CONFIGFILE())) {
1296 DEBUG(0, ("error opening config file\n"));
1297 exit(1);
1298 }
1299
1300 if (smbd_messaging_context() == NULL)
1301 exit(1);
1302
1303 if (!reload_services(False))
1304 return(-1);
1305
1306 init_structs();
1307
1308#ifdef WITH_PROFILE
1309 if (!profile_setup(smbd_messaging_context(), False)) {
1310 DEBUG(0,("ERROR: failed to setup profiling\n"));
1311 return -1;
1312 }
1313 if (profile_level != NULL) {
1314 int pl = atoi(profile_level);
1315 struct server_id src;
1316
1317 DEBUG(1, ("setting profiling level: %s\n",profile_level));
1318 src.pid = getpid();
1319 set_profile_level(pl, src);
1320 }
1321#endif
1322
1323 DEBUG(3,( "loaded services\n"));
1324
1325 if (!is_daemon && !is_a_socket(0)) {
1326 if (!interactive)
1327 DEBUG(0,("standard input is not a socket, assuming -D option\n"));
1328
1329 /*
1330 * Setting is_daemon here prevents us from eventually calling
1331 * the open_sockets_inetd()
1332 */
1333
1334 is_daemon = True;
1335 }
1336
1337 if (is_daemon && !interactive) {
1338 DEBUG( 3, ( "Becoming a daemon.\n" ) );
1339 become_daemon(Fork, no_process_group);
1340 }
1341
1342#if HAVE_SETPGID
1343 /*
1344 * If we're interactive we want to set our own process group for
1345 * signal management.
1346 */
1347 if (interactive && !no_process_group)
1348 setpgid( (pid_t)0, (pid_t)0);
1349#endif
1350
1351 if (!directory_exist(lp_lockdir(), NULL))
1352 mkdir(lp_lockdir(), 0755);
1353
1354 if (is_daemon)
1355 pidfile_create("smbd");
1356
1357 if (!reinit_after_fork(smbd_messaging_context(),
1358 smbd_event_context(), false)) {
1359 DEBUG(0,("reinit_after_fork() failed\n"));
1360 exit(1);
1361 }
1362
1363 /* Setup all the TDB's - including CLEAR_IF_FIRST tdb's. */
1364
1365 if (smbd_memcache() == NULL) {
1366 exit(1);
1367 }
1368
1369 memcache_set_global(smbd_memcache());
1370
1371 /* Initialise the password backed before the global_sam_sid
1372 to ensure that we fetch from ldap before we make a domain sid up */
1373
1374 if(!initialize_password_db(False, smbd_event_context()))
1375 exit(1);
1376
1377 if (!secrets_init()) {
1378 DEBUG(0, ("ERROR: smbd can not open secrets.tdb\n"));
1379 exit(1);
1380 }
1381
1382 if(!get_global_sam_sid()) {
1383 DEBUG(0,("ERROR: Samba cannot create a SAM SID.\n"));
1384 exit(1);
1385 }
1386
1387 if (!session_init())
1388 exit(1);
1389
1390 if (!connections_init(True))
1391 exit(1);
1392
1393 if (!locking_init())
1394 exit(1);
1395
1396 namecache_enable();
1397
1398 if (!W_ERROR_IS_OK(registry_init_full()))
1399 exit(1);
1400
1401#if 0
1402 if (!init_svcctl_db())
1403 exit(1);
1404#endif
1405
1406 if (!print_backend_init(smbd_messaging_context()))
1407 exit(1);
1408
1409 if (!init_guest_info()) {
1410 DEBUG(0,("ERROR: failed to setup guest info.\n"));
1411 return -1;
1412 }
1413
1414 /* only start the background queue daemon if we are
1415 running as a daemon -- bad things will happen if
1416 smbd is launched via inetd and we fork a copy of
1417 ourselves here */
1418
1419 if (is_daemon && !interactive
1420 && lp_parm_bool(-1, "smbd", "backgroundqueue", true)) {
1421 start_background_queue();
1422 }
1423
1424 if (!open_sockets_smbd(is_daemon, interactive, ports))
1425 exit(1);
1426
1427 /*
1428 * everything after this point is run after the fork()
1429 */
1430
1431 static_init_rpc;
1432
1433 init_modules();
1434
1435 /* Possibly reload the services file. Only worth doing in
1436 * daemon mode. In inetd mode, we know we only just loaded this.
1437 */
1438 if (is_daemon) {
1439 reload_services(True);
1440 }
1441
1442 if (!init_account_policy()) {
1443 DEBUG(0,("Could not open account policy tdb.\n"));
1444 exit(1);
1445 }
1446
1447 if (*lp_rootdir()) {
1448 if (sys_chroot(lp_rootdir()) != 0) {
1449 DEBUG(0,("Failed to change root to %s\n", lp_rootdir()));
1450 exit(1);
1451 }
1452 if (chdir("/") == -1) {
1453 DEBUG(0,("Failed to chdir to / on chroot to %s\n", lp_rootdir()));
1454 exit(1);
1455 }
1456 DEBUG(0,("Changed root to %s\n", lp_rootdir()));
1457 }
1458
1459 /* Setup oplocks */
1460 if (!init_oplocks(smbd_messaging_context()))
1461 exit(1);
1462
1463 /* Setup aio signal handler. */
1464 initialize_async_io_handler();
1465
1466 /* register our message handlers */
1467 messaging_register(smbd_messaging_context(), NULL,
1468 MSG_SMB_FORCE_TDIS, msg_force_tdis);
1469 messaging_register(smbd_messaging_context(), NULL,
1470 MSG_SMB_RELEASE_IP, msg_release_ip);
1471 messaging_register(smbd_messaging_context(), NULL,
1472 MSG_SMB_CLOSE_FILE, msg_close_file);
1473
1474 if ((lp_keepalive() != 0)
1475 && !(event_add_idle(smbd_event_context(), NULL,
1476 timeval_set(lp_keepalive(), 0),
1477 "keepalive", keepalive_fn,
1478 NULL))) {
1479 DEBUG(0, ("Could not add keepalive event\n"));
1480 exit(1);
1481 }
1482
1483 if (!(event_add_idle(smbd_event_context(), NULL,
1484 timeval_set(IDLE_CLOSED_TIMEOUT, 0),
1485 "deadtime", deadtime_fn, NULL))) {
1486 DEBUG(0, ("Could not add deadtime event\n"));
1487 exit(1);
1488 }
1489
1490 if (!(event_add_idle(smbd_event_context(), NULL,
1491 timeval_set(SMBD_SELECT_TIMEOUT, 0),
1492 "housekeeping", housekeeping_fn, NULL))) {
1493 DEBUG(0, ("Could not add housekeeping event\n"));
1494 exit(1);
1495 }
1496
1497#ifdef CLUSTER_SUPPORT
1498
1499 if (lp_clustering()) {
1500 /*
1501 * We need to tell ctdb about our client's TCP
1502 * connection, so that for failover ctdbd can send
1503 * tickle acks, triggering a reconnection by the
1504 * client.
1505 */
1506
1507 struct sockaddr_storage srv, clnt;
1508
1509 if (client_get_tcp_info(&srv, &clnt) == 0) {
1510
1511 NTSTATUS status;
1512
1513 status = ctdbd_register_ips(
1514 messaging_ctdbd_connection(),
1515 &srv, &clnt, release_ip, NULL);
1516
1517 if (!NT_STATUS_IS_OK(status)) {
1518 DEBUG(0, ("ctdbd_register_ips failed: %s\n",
1519 nt_errstr(status)));
1520 }
1521 } else
1522 {
1523 DEBUG(0,("Unable to get tcp info for "
1524 "CTDB_CONTROL_TCP_CLIENT: %s\n",
1525 strerror(errno)));
1526 }
1527 }
1528
1529#endif
1530
1531 TALLOC_FREE(frame);
1532
1533 smbd_process();
1534
1535 namecache_shutdown();
1536
1537 exit_server_cleanly(NULL);
1538 return(0);
1539}
Note: See TracBrowser for help on using the repository browser.