1999-09-09 03:06:24 +08:00
|
|
|
/* $OpenLDAP$ */
|
2003-11-26 15:16:36 +08:00
|
|
|
/* This work is part of OpenLDAP Software <http://www.openldap.org/>.
|
|
|
|
*
|
2020-01-10 00:50:21 +08:00
|
|
|
* Copyright 1998-2020 The OpenLDAP Foundation.
|
2003-11-26 15:16:36 +08:00
|
|
|
* All rights reserved.
|
1998-08-09 08:43:13 +08:00
|
|
|
*
|
2003-11-26 15:16:36 +08:00
|
|
|
* Redistribution and use in source and binary forms, with or without
|
|
|
|
* modification, are permitted only as authorized by the OpenLDAP
|
|
|
|
* Public License.
|
|
|
|
*
|
|
|
|
* A copy of this license is available in the file LICENSE in the
|
|
|
|
* top-level directory of the distribution or, alternatively, at
|
|
|
|
* <http://www.OpenLDAP.org/license.html>.
|
|
|
|
*/
|
|
|
|
/* Portions Copyright (c) 1995 Regents of the University of Michigan.
|
|
|
|
* All rights reserved.
|
1998-08-09 08:43:13 +08:00
|
|
|
*/
|
|
|
|
|
1998-10-25 10:01:14 +08:00
|
|
|
#include "portable.h"
|
|
|
|
|
1998-08-09 08:43:13 +08:00
|
|
|
#include <stdio.h>
|
2005-04-11 03:32:14 +08:00
|
|
|
#ifdef HAVE_LIMITS_H
|
2000-06-02 06:01:00 +08:00
|
|
|
#include <limits.h>
|
2005-04-11 03:32:14 +08:00
|
|
|
#endif
|
1999-06-03 08:37:44 +08:00
|
|
|
|
|
|
|
#include <ac/stdlib.h>
|
1998-08-09 08:43:13 +08:00
|
|
|
|
1999-11-02 01:21:24 +08:00
|
|
|
#include <ac/param.h>
|
1998-10-25 10:01:14 +08:00
|
|
|
#include <ac/socket.h>
|
|
|
|
#include <ac/string.h>
|
|
|
|
#include <ac/time.h>
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2002-12-08 02:32:40 +08:00
|
|
|
#include <ac/unistd.h>
|
2002-12-08 01:32:33 +08:00
|
|
|
|
1998-08-09 08:43:13 +08:00
|
|
|
#include "ldap-int.h"
|
2017-12-29 16:31:51 +08:00
|
|
|
#include "ldap.h"
|
2002-07-12 04:33:24 +08:00
|
|
|
#include "ldap_log.h"
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
/* Caller must hold the conn_mutex since simultaneous accesses are possible */
|
1999-09-23 12:08:33 +08:00
|
|
|
int ldap_open_defconn( LDAP *ld )
|
|
|
|
{
|
2006-05-12 14:33:27 +08:00
|
|
|
ld->ld_defconn = ldap_new_connection( ld,
|
2010-10-23 05:45:48 +08:00
|
|
|
&ld->ld_options.ldo_defludp, 1, 1, NULL, 0, 0 );
|
2006-05-12 14:16:32 +08:00
|
|
|
|
2006-05-12 14:33:27 +08:00
|
|
|
if( ld->ld_defconn == NULL ) {
|
|
|
|
ld->ld_errno = LDAP_SERVER_DOWN;
|
|
|
|
return -1;
|
2006-05-12 14:16:32 +08:00
|
|
|
}
|
2006-05-12 14:33:27 +08:00
|
|
|
|
|
|
|
++ld->ld_defconn->lconn_refcnt; /* so it never gets closed/freed */
|
|
|
|
return 0;
|
1999-09-23 12:08:33 +08:00
|
|
|
}
|
1999-03-03 04:23:14 +08:00
|
|
|
|
2013-02-28 02:44:57 +08:00
|
|
|
/*
|
|
|
|
* ldap_connect - Connect to an ldap server.
|
|
|
|
*
|
|
|
|
* Example:
|
|
|
|
* LDAP *ld;
|
|
|
|
* ldap_initialize( &ld, url );
|
|
|
|
* ldap_connect( ld );
|
|
|
|
*/
|
|
|
|
int
|
|
|
|
ldap_connect( LDAP *ld )
|
|
|
|
{
|
|
|
|
ber_socket_t sd = AC_SOCKET_INVALID;
|
|
|
|
int rc = LDAP_SUCCESS;
|
|
|
|
|
|
|
|
LDAP_MUTEX_LOCK( &ld->ld_conn_mutex );
|
|
|
|
if ( ber_sockbuf_ctrl( ld->ld_sb, LBER_SB_OPT_GET_FD, &sd ) == -1 ) {
|
|
|
|
rc = ldap_open_defconn( ld );
|
|
|
|
}
|
|
|
|
LDAP_MUTEX_UNLOCK( &ld->ld_conn_mutex );
|
|
|
|
|
|
|
|
return rc;
|
|
|
|
}
|
|
|
|
|
1998-08-09 08:43:13 +08:00
|
|
|
/*
|
|
|
|
* ldap_open - initialize and connect to an ldap server. A magic cookie to
|
|
|
|
* be used for future communication is returned on success, NULL on failure.
|
|
|
|
* "host" may be a space-separated list of hosts or IP addresses
|
|
|
|
*
|
|
|
|
* Example:
|
|
|
|
* LDAP *ld;
|
|
|
|
* ld = ldap_open( hostname, port );
|
|
|
|
*/
|
|
|
|
|
|
|
|
LDAP *
|
1999-05-19 09:12:33 +08:00
|
|
|
ldap_open( LDAP_CONST char *host, int port )
|
1998-08-09 08:43:13 +08:00
|
|
|
{
|
1999-09-23 12:08:33 +08:00
|
|
|
int rc;
|
1998-08-09 08:43:13 +08:00
|
|
|
LDAP *ld;
|
|
|
|
|
2019-02-16 00:47:40 +08:00
|
|
|
Debug2( LDAP_DEBUG_TRACE, "ldap_open(%s, %d)\n",
|
|
|
|
host, port );
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2001-06-25 15:33:42 +08:00
|
|
|
ld = ldap_init( host, port );
|
|
|
|
if ( ld == NULL ) {
|
1998-08-09 08:43:13 +08:00
|
|
|
return( NULL );
|
|
|
|
}
|
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_LOCK( &ld->ld_conn_mutex );
|
1999-09-23 12:08:33 +08:00
|
|
|
rc = ldap_open_defconn( ld );
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_UNLOCK( &ld->ld_conn_mutex );
|
1998-08-09 08:43:13 +08:00
|
|
|
|
1999-09-23 12:08:33 +08:00
|
|
|
if( rc < 0 ) {
|
1999-05-19 09:12:33 +08:00
|
|
|
ldap_ld_free( ld, 0, NULL, NULL );
|
2001-06-25 15:33:42 +08:00
|
|
|
ld = NULL;
|
1998-08-09 08:43:13 +08:00
|
|
|
}
|
|
|
|
|
2019-02-16 00:47:40 +08:00
|
|
|
Debug1( LDAP_DEBUG_TRACE, "ldap_open: %s\n",
|
|
|
|
ld != NULL ? "succeeded" : "failed" );
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2001-06-25 15:33:42 +08:00
|
|
|
return ld;
|
1998-08-09 08:43:13 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
1999-12-08 02:52:05 +08:00
|
|
|
|
|
|
|
int
|
|
|
|
ldap_create( LDAP **ldp )
|
1998-08-09 08:43:13 +08:00
|
|
|
{
|
|
|
|
LDAP *ld;
|
2000-06-09 01:11:57 +08:00
|
|
|
struct ldapoptions *gopts;
|
1998-08-09 08:43:13 +08:00
|
|
|
|
1999-12-08 02:52:05 +08:00
|
|
|
*ldp = NULL;
|
2000-06-09 01:11:57 +08:00
|
|
|
/* Get pointer to global option structure */
|
|
|
|
if ( (gopts = LDAP_INT_GLOBAL_OPT()) == NULL) {
|
|
|
|
return LDAP_NO_MEMORY;
|
|
|
|
}
|
|
|
|
|
|
|
|
/* Initialize the global options, if not already done. */
|
|
|
|
if( gopts->ldo_valid != LDAP_INITIALIZED ) {
|
|
|
|
ldap_int_initialize(gopts, NULL);
|
2001-12-28 14:12:17 +08:00
|
|
|
if ( gopts->ldo_valid != LDAP_INITIALIZED )
|
|
|
|
return LDAP_LOCAL_ERROR;
|
1998-11-10 02:40:37 +08:00
|
|
|
}
|
|
|
|
|
2019-02-16 00:47:40 +08:00
|
|
|
Debug0( LDAP_DEBUG_TRACE, "ldap_create\n" );
|
1998-08-09 08:43:13 +08:00
|
|
|
|
1999-05-29 09:19:14 +08:00
|
|
|
if ( (ld = (LDAP *) LDAP_CALLOC( 1, sizeof(LDAP) )) == NULL ) {
|
1999-12-08 02:52:05 +08:00
|
|
|
return( LDAP_NO_MEMORY );
|
1998-08-09 08:43:13 +08:00
|
|
|
}
|
1999-03-03 04:23:14 +08:00
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
if ( (ld->ldc = (struct ldap_common *) LDAP_CALLOC( 1,
|
|
|
|
sizeof(struct ldap_common) )) == NULL ) {
|
|
|
|
LDAP_FREE( (char *)ld );
|
|
|
|
return( LDAP_NO_MEMORY );
|
|
|
|
}
|
1998-11-11 07:37:30 +08:00
|
|
|
/* copy the global options */
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_LOCK( &gopts->ldo_mutex );
|
2000-07-28 09:07:07 +08:00
|
|
|
AC_MEMCPY(&ld->ld_options, gopts, sizeof(ld->ld_options));
|
2010-10-23 05:45:48 +08:00
|
|
|
#ifdef LDAP_R_COMPILE
|
|
|
|
/* Properly initialize the structs mutex */
|
|
|
|
ldap_pvt_thread_mutex_init( &(ld->ld_ldopts_mutex) );
|
|
|
|
#endif
|
2017-11-08 02:35:33 +08:00
|
|
|
|
|
|
|
#ifdef HAVE_TLS
|
|
|
|
if ( ld->ld_options.ldo_tls_pin_hashalg ) {
|
|
|
|
int len = strlen( gopts->ldo_tls_pin_hashalg );
|
|
|
|
|
|
|
|
ld->ld_options.ldo_tls_pin_hashalg =
|
|
|
|
LDAP_MALLOC( len + 1 + gopts->ldo_tls_pin.bv_len );
|
|
|
|
if ( !ld->ld_options.ldo_tls_pin_hashalg ) goto nomem;
|
|
|
|
|
|
|
|
ld->ld_options.ldo_tls_pin.bv_val = ld->ld_options.ldo_tls_pin_hashalg
|
|
|
|
+ len + 1;
|
|
|
|
AC_MEMCPY( ld->ld_options.ldo_tls_pin_hashalg, gopts->ldo_tls_pin_hashalg,
|
|
|
|
len + 1 + gopts->ldo_tls_pin.bv_len );
|
|
|
|
} else if ( !BER_BVISEMPTY(&ld->ld_options.ldo_tls_pin) ) {
|
|
|
|
ber_dupbv( &ld->ld_options.ldo_tls_pin, &gopts->ldo_tls_pin );
|
|
|
|
}
|
|
|
|
#endif
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_UNLOCK( &gopts->ldo_mutex );
|
1998-11-11 07:37:30 +08:00
|
|
|
|
1999-05-29 03:33:05 +08:00
|
|
|
ld->ld_valid = LDAP_VALID_SESSION;
|
|
|
|
|
1999-05-19 14:27:35 +08:00
|
|
|
/* but not pointers to malloc'ed items */
|
|
|
|
ld->ld_options.ldo_sctrls = NULL;
|
|
|
|
ld->ld_options.ldo_cctrls = NULL;
|
2005-01-21 09:47:25 +08:00
|
|
|
ld->ld_options.ldo_defludp = NULL;
|
2008-08-14 12:54:32 +08:00
|
|
|
ld->ld_options.ldo_conn_cbs = NULL;
|
1998-11-11 07:37:30 +08:00
|
|
|
|
2000-07-17 08:56:29 +08:00
|
|
|
#ifdef HAVE_CYRUS_SASL
|
|
|
|
ld->ld_options.ldo_def_sasl_mech = gopts->ldo_def_sasl_mech
|
|
|
|
? LDAP_STRDUP( gopts->ldo_def_sasl_mech ) : NULL;
|
|
|
|
ld->ld_options.ldo_def_sasl_realm = gopts->ldo_def_sasl_realm
|
|
|
|
? LDAP_STRDUP( gopts->ldo_def_sasl_realm ) : NULL;
|
|
|
|
ld->ld_options.ldo_def_sasl_authcid = gopts->ldo_def_sasl_authcid
|
|
|
|
? LDAP_STRDUP( gopts->ldo_def_sasl_authcid ) : NULL;
|
|
|
|
ld->ld_options.ldo_def_sasl_authzid = gopts->ldo_def_sasl_authzid
|
|
|
|
? LDAP_STRDUP( gopts->ldo_def_sasl_authzid ) : NULL;
|
|
|
|
#endif
|
|
|
|
|
2006-04-07 08:52:38 +08:00
|
|
|
#ifdef HAVE_TLS
|
2006-04-07 09:52:32 +08:00
|
|
|
/* We explicitly inherit the SSL_CTX, don't need the names/paths. Leave
|
|
|
|
* them empty to allow new SSL_CTX's to be created from scratch.
|
2006-04-07 08:52:38 +08:00
|
|
|
*/
|
|
|
|
memset( &ld->ld_options.ldo_tls_info, 0,
|
|
|
|
sizeof( ld->ld_options.ldo_tls_info ));
|
2006-04-07 09:52:32 +08:00
|
|
|
ld->ld_options.ldo_tls_ctx = NULL;
|
2006-04-07 08:52:38 +08:00
|
|
|
#endif
|
|
|
|
|
2005-01-21 09:47:25 +08:00
|
|
|
if ( gopts->ldo_defludp ) {
|
|
|
|
ld->ld_options.ldo_defludp = ldap_url_duplist(gopts->ldo_defludp);
|
|
|
|
|
|
|
|
if ( ld->ld_options.ldo_defludp == NULL ) goto nomem;
|
1998-11-11 07:37:30 +08:00
|
|
|
}
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2005-01-21 09:47:25 +08:00
|
|
|
if (( ld->ld_selectinfo = ldap_new_select_info()) == NULL ) goto nomem;
|
|
|
|
|
1998-08-09 08:43:13 +08:00
|
|
|
ld->ld_lberoptions = LBER_USE_DER;
|
1998-08-09 10:28:45 +08:00
|
|
|
|
2000-06-02 04:59:21 +08:00
|
|
|
ld->ld_sb = ber_sockbuf_alloc( );
|
2005-01-21 09:47:25 +08:00
|
|
|
if ( ld->ld_sb == NULL ) goto nomem;
|
1999-03-03 04:23:14 +08:00
|
|
|
|
2003-02-13 18:43:16 +08:00
|
|
|
#ifdef LDAP_R_COMPILE
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_msgid_mutex );
|
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_conn_mutex );
|
2003-02-13 18:43:16 +08:00
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_req_mutex );
|
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_res_mutex );
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_abandon_mutex );
|
|
|
|
ldap_pvt_thread_mutex_init( &ld->ld_ldcmutex );
|
2003-02-13 18:43:16 +08:00
|
|
|
#endif
|
2010-10-23 05:45:48 +08:00
|
|
|
ld->ld_ldcrefcnt = 1;
|
1999-12-08 02:52:05 +08:00
|
|
|
*ldp = ld;
|
|
|
|
return LDAP_SUCCESS;
|
2005-01-21 09:47:25 +08:00
|
|
|
|
|
|
|
nomem:
|
|
|
|
ldap_free_select_info( ld->ld_selectinfo );
|
|
|
|
ldap_free_urllist( ld->ld_options.ldo_defludp );
|
|
|
|
#ifdef HAVE_CYRUS_SASL
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_def_sasl_authzid );
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_def_sasl_authcid );
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_def_sasl_realm );
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_def_sasl_mech );
|
|
|
|
#endif
|
2017-11-08 02:35:33 +08:00
|
|
|
|
|
|
|
#ifdef HAVE_TLS
|
|
|
|
/* tls_pin_hashalg and tls_pin share the same buffer */
|
|
|
|
if ( ld->ld_options.ldo_tls_pin_hashalg ) {
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_tls_pin_hashalg );
|
|
|
|
} else {
|
|
|
|
LDAP_FREE( ld->ld_options.ldo_tls_pin.bv_val );
|
|
|
|
}
|
|
|
|
#endif
|
2005-01-21 09:47:25 +08:00
|
|
|
LDAP_FREE( (char *)ld );
|
|
|
|
return LDAP_NO_MEMORY;
|
1998-08-09 08:43:13 +08:00
|
|
|
}
|
|
|
|
|
1999-12-08 14:44:22 +08:00
|
|
|
/*
|
|
|
|
* ldap_init - initialize the LDAP library. A magic cookie to be used for
|
|
|
|
* future communication is returned on success, NULL on failure.
|
|
|
|
* "host" may be a space-separated list of hosts or IP addresses
|
|
|
|
*
|
|
|
|
* Example:
|
|
|
|
* LDAP *ld;
|
2000-07-14 06:54:38 +08:00
|
|
|
* ld = ldap_init( host, port );
|
1999-12-08 14:44:22 +08:00
|
|
|
*/
|
|
|
|
LDAP *
|
|
|
|
ldap_init( LDAP_CONST char *defhost, int defport )
|
|
|
|
{
|
|
|
|
LDAP *ld;
|
|
|
|
int rc;
|
|
|
|
|
|
|
|
rc = ldap_create(&ld);
|
|
|
|
if ( rc != LDAP_SUCCESS )
|
|
|
|
return NULL;
|
|
|
|
|
|
|
|
if (defport != 0)
|
|
|
|
ld->ld_options.ldo_defport = defport;
|
|
|
|
|
|
|
|
if (defhost != NULL) {
|
|
|
|
rc = ldap_set_option(ld, LDAP_OPT_HOST_NAME, defhost);
|
|
|
|
if ( rc != LDAP_SUCCESS ) {
|
|
|
|
ldap_ld_free(ld, 1, NULL, NULL);
|
|
|
|
return NULL;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
return( ld );
|
|
|
|
}
|
|
|
|
|
|
|
|
|
1999-12-08 02:52:05 +08:00
|
|
|
int
|
|
|
|
ldap_initialize( LDAP **ldp, LDAP_CONST char *url )
|
|
|
|
{
|
|
|
|
int rc;
|
|
|
|
LDAP *ld;
|
|
|
|
|
|
|
|
*ldp = NULL;
|
|
|
|
rc = ldap_create(&ld);
|
|
|
|
if ( rc != LDAP_SUCCESS )
|
|
|
|
return rc;
|
|
|
|
|
|
|
|
if (url != NULL) {
|
|
|
|
rc = ldap_set_option(ld, LDAP_OPT_URI, url);
|
|
|
|
if ( rc != LDAP_SUCCESS ) {
|
|
|
|
ldap_ld_free(ld, 1, NULL, NULL);
|
|
|
|
return rc;
|
|
|
|
}
|
2001-09-29 04:09:49 +08:00
|
|
|
#ifdef LDAP_CONNECTIONLESS
|
2001-09-28 08:18:40 +08:00
|
|
|
if (ldap_is_ldapc_url(url))
|
2001-09-29 06:19:51 +08:00
|
|
|
LDAP_IS_UDP(ld) = 1;
|
2001-09-29 04:09:49 +08:00
|
|
|
#endif
|
1999-12-08 02:52:05 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
*ldp = ld;
|
|
|
|
return LDAP_SUCCESS;
|
|
|
|
}
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2007-02-12 12:20:24 +08:00
|
|
|
int
|
|
|
|
ldap_init_fd(
|
|
|
|
ber_socket_t fd,
|
|
|
|
int proto,
|
|
|
|
LDAP_CONST char *url,
|
|
|
|
LDAP **ldp
|
|
|
|
)
|
|
|
|
{
|
|
|
|
int rc;
|
|
|
|
LDAP *ld;
|
|
|
|
LDAPConn *conn;
|
2013-05-03 15:20:14 +08:00
|
|
|
#ifdef LDAP_CONNECTIONLESS
|
|
|
|
ber_socklen_t len;
|
|
|
|
#endif
|
2007-02-12 12:20:24 +08:00
|
|
|
|
|
|
|
*ldp = NULL;
|
|
|
|
rc = ldap_create( &ld );
|
|
|
|
if( rc != LDAP_SUCCESS )
|
|
|
|
return( rc );
|
|
|
|
|
|
|
|
if (url != NULL) {
|
|
|
|
rc = ldap_set_option(ld, LDAP_OPT_URI, url);
|
|
|
|
if ( rc != LDAP_SUCCESS ) {
|
|
|
|
ldap_ld_free(ld, 1, NULL, NULL);
|
|
|
|
return rc;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_LOCK( &ld->ld_conn_mutex );
|
2007-02-12 12:20:24 +08:00
|
|
|
/* Attach the passed socket as the LDAP's connection */
|
2010-10-23 05:45:48 +08:00
|
|
|
conn = ldap_new_connection( ld, NULL, 1, 0, NULL, 0, 0 );
|
2007-02-12 12:20:24 +08:00
|
|
|
if( conn == NULL ) {
|
|
|
|
ldap_unbind_ext( ld, NULL, NULL );
|
|
|
|
return( LDAP_NO_MEMORY );
|
|
|
|
}
|
2009-11-19 06:37:02 +08:00
|
|
|
if( url )
|
|
|
|
conn->lconn_server = ldap_url_dup( ld->ld_options.ldo_defludp );
|
2007-02-12 12:20:24 +08:00
|
|
|
ber_sockbuf_ctrl( conn->lconn_sb, LBER_SB_OPT_SET_FD, &fd );
|
|
|
|
ld->ld_defconn = conn;
|
|
|
|
++ld->ld_defconn->lconn_refcnt; /* so it never gets closed/freed */
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_UNLOCK( &ld->ld_conn_mutex );
|
2007-02-12 12:20:24 +08:00
|
|
|
|
|
|
|
switch( proto ) {
|
|
|
|
case LDAP_PROTO_TCP:
|
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"tcp_" );
|
|
|
|
#endif
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_tcp,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
|
|
|
break;
|
|
|
|
|
|
|
|
#ifdef LDAP_CONNECTIONLESS
|
|
|
|
case LDAP_PROTO_UDP:
|
2013-05-03 15:20:14 +08:00
|
|
|
LDAP_IS_UDP(ld) = 1;
|
|
|
|
if( ld->ld_options.ldo_peer )
|
|
|
|
ldap_memfree( ld->ld_options.ldo_peer );
|
2013-09-12 21:49:36 +08:00
|
|
|
ld->ld_options.ldo_peer = ldap_memcalloc( 1, sizeof( struct sockaddr_storage ) );
|
|
|
|
len = sizeof( struct sockaddr_storage );
|
2013-05-03 15:20:14 +08:00
|
|
|
if( getpeername ( fd, ld->ld_options.ldo_peer, &len ) < 0) {
|
|
|
|
ldap_unbind_ext( ld, NULL, NULL );
|
|
|
|
return( AC_SOCKET_ERROR );
|
|
|
|
}
|
2007-02-12 12:20:24 +08:00
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"udp_" );
|
|
|
|
#endif
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_udp,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_readahead,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
|
|
|
break;
|
|
|
|
#endif /* LDAP_CONNECTIONLESS */
|
|
|
|
|
|
|
|
case LDAP_PROTO_IPC:
|
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"ipc_" );
|
|
|
|
#endif
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_fd,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
|
|
|
break;
|
|
|
|
|
|
|
|
case LDAP_PROTO_EXT:
|
|
|
|
/* caller must supply sockbuf handlers */
|
|
|
|
break;
|
|
|
|
|
|
|
|
default:
|
|
|
|
ldap_unbind_ext( ld, NULL, NULL );
|
|
|
|
return LDAP_PARAM_ERROR;
|
|
|
|
}
|
|
|
|
|
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
INT_MAX, (void *)"ldap_" );
|
|
|
|
#endif
|
|
|
|
|
|
|
|
/* Add the connection to the *LDAP's select pool */
|
|
|
|
ldap_mark_select_read( ld, conn->lconn_sb );
|
|
|
|
|
|
|
|
*ldp = ld;
|
|
|
|
return LDAP_SUCCESS;
|
|
|
|
}
|
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
/* Protected by ld_conn_mutex */
|
1998-08-09 08:43:13 +08:00
|
|
|
int
|
2000-07-14 06:54:38 +08:00
|
|
|
ldap_int_open_connection(
|
|
|
|
LDAP *ld,
|
|
|
|
LDAPConn *conn,
|
|
|
|
LDAPURLDesc *srv,
|
|
|
|
int async )
|
1998-08-09 08:43:13 +08:00
|
|
|
{
|
1999-12-10 06:33:22 +08:00
|
|
|
int rc = -1;
|
2008-09-16 22:10:02 +08:00
|
|
|
int proto;
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2019-02-16 00:47:40 +08:00
|
|
|
Debug0( LDAP_DEBUG_TRACE, "ldap_int_open_connection\n" );
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2001-09-28 08:18:40 +08:00
|
|
|
switch ( proto = ldap_pvt_url_scheme2proto( srv->lud_scheme ) ) {
|
2000-01-02 09:21:25 +08:00
|
|
|
case LDAP_PROTO_TCP:
|
2001-09-28 08:18:40 +08:00
|
|
|
rc = ldap_connect_to_host( ld, conn->lconn_sb,
|
2008-08-16 06:53:47 +08:00
|
|
|
proto, srv, async );
|
2000-09-02 07:03:17 +08:00
|
|
|
|
2000-07-14 06:54:38 +08:00
|
|
|
if ( rc == -1 ) return rc;
|
2000-10-13 09:00:55 +08:00
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"tcp_" );
|
|
|
|
#endif
|
2000-07-14 06:54:38 +08:00
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_tcp,
|
2000-06-02 04:59:21 +08:00
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
2000-07-14 06:54:38 +08:00
|
|
|
|
2000-06-02 04:59:21 +08:00
|
|
|
break;
|
2002-02-21 23:39:35 +08:00
|
|
|
|
2003-02-15 07:32:30 +08:00
|
|
|
#ifdef LDAP_CONNECTIONLESS
|
2001-09-28 08:18:40 +08:00
|
|
|
case LDAP_PROTO_UDP:
|
2001-09-29 06:19:51 +08:00
|
|
|
LDAP_IS_UDP(ld) = 1;
|
2001-09-28 08:18:40 +08:00
|
|
|
rc = ldap_connect_to_host( ld, conn->lconn_sb,
|
2008-08-16 06:53:47 +08:00
|
|
|
proto, srv, async );
|
2001-09-28 08:18:40 +08:00
|
|
|
|
|
|
|
if ( rc == -1 ) return rc;
|
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"udp_" );
|
|
|
|
#endif
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_udp,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
2003-02-15 07:32:30 +08:00
|
|
|
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_readahead,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
|
|
|
|
2001-09-28 08:18:40 +08:00
|
|
|
break;
|
|
|
|
#endif
|
2000-06-10 07:09:51 +08:00
|
|
|
case LDAP_PROTO_IPC:
|
2000-07-10 05:49:36 +08:00
|
|
|
#ifdef LDAP_PF_LOCAL
|
|
|
|
/* only IPC mechanism supported is PF_LOCAL (PF_UNIX) */
|
2000-09-15 11:02:57 +08:00
|
|
|
rc = ldap_connect_to_path( ld, conn->lconn_sb,
|
2008-08-16 06:53:47 +08:00
|
|
|
srv, async );
|
2000-07-14 06:54:38 +08:00
|
|
|
if ( rc == -1 ) return rc;
|
2000-10-13 09:00:55 +08:00
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"ipc_" );
|
|
|
|
#endif
|
2000-07-14 06:54:38 +08:00
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_fd,
|
2000-06-02 04:59:21 +08:00
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
2000-07-14 06:54:38 +08:00
|
|
|
|
2000-01-02 09:21:25 +08:00
|
|
|
break;
|
2000-07-10 05:49:36 +08:00
|
|
|
#endif /* LDAP_PF_LOCAL */
|
2000-01-02 09:21:25 +08:00
|
|
|
default:
|
2000-06-02 04:59:21 +08:00
|
|
|
return -1;
|
2000-01-02 09:21:25 +08:00
|
|
|
break;
|
|
|
|
}
|
|
|
|
|
2007-01-08 06:05:33 +08:00
|
|
|
conn->lconn_created = time( NULL );
|
|
|
|
|
2000-06-02 04:59:21 +08:00
|
|
|
#ifdef LDAP_DEBUG
|
2000-07-14 06:54:38 +08:00
|
|
|
ber_sockbuf_add_io( conn->lconn_sb, &ber_sockbuf_io_debug,
|
2000-10-13 09:00:55 +08:00
|
|
|
INT_MAX, (void *)"ldap_" );
|
2000-06-02 04:59:21 +08:00
|
|
|
#endif
|
1998-08-09 08:43:13 +08:00
|
|
|
|
2001-09-28 08:18:40 +08:00
|
|
|
#ifdef LDAP_CONNECTIONLESS
|
2003-01-21 04:10:03 +08:00
|
|
|
if( proto == LDAP_PROTO_UDP ) return 0;
|
2001-09-28 08:18:40 +08:00
|
|
|
#endif
|
|
|
|
|
1999-07-14 03:32:51 +08:00
|
|
|
#ifdef HAVE_TLS
|
2019-01-31 10:33:17 +08:00
|
|
|
if ((rc == 0 || rc == -2) && ( ld->ld_options.ldo_tls_mode == LDAP_OPT_X_TLS_HARD ||
|
2011-06-25 09:03:11 +08:00
|
|
|
strcmp( srv->lud_scheme, "ldaps" ) == 0 ))
|
2000-06-07 09:09:40 +08:00
|
|
|
{
|
2000-11-23 04:27:30 +08:00
|
|
|
++conn->lconn_refcnt; /* avoid premature free */
|
|
|
|
|
2001-08-28 04:22:28 +08:00
|
|
|
rc = ldap_int_tls_start( ld, conn, srv );
|
2000-09-01 09:04:18 +08:00
|
|
|
|
2000-11-23 04:27:30 +08:00
|
|
|
--conn->lconn_refcnt;
|
|
|
|
|
2000-09-01 09:04:18 +08:00
|
|
|
if (rc != LDAP_SUCCESS) {
|
2017-09-07 04:46:09 +08:00
|
|
|
/* process connection callbacks */
|
|
|
|
{
|
|
|
|
struct ldapoptions *lo;
|
|
|
|
ldaplist *ll;
|
|
|
|
ldap_conncb *cb;
|
|
|
|
|
|
|
|
lo = &ld->ld_options;
|
|
|
|
LDAP_MUTEX_LOCK( &lo->ldo_mutex );
|
|
|
|
if ( lo->ldo_conn_cbs ) {
|
|
|
|
for ( ll=lo->ldo_conn_cbs; ll; ll=ll->ll_next ) {
|
|
|
|
cb = ll->ll_data;
|
|
|
|
cb->lc_del( ld, conn->lconn_sb, cb );
|
|
|
|
}
|
|
|
|
}
|
|
|
|
LDAP_MUTEX_UNLOCK( &lo->ldo_mutex );
|
|
|
|
lo = LDAP_INT_GLOBAL_OPT();
|
|
|
|
LDAP_MUTEX_LOCK( &lo->ldo_mutex );
|
|
|
|
if ( lo->ldo_conn_cbs ) {
|
|
|
|
for ( ll=lo->ldo_conn_cbs; ll; ll=ll->ll_next ) {
|
|
|
|
cb = ll->ll_data;
|
|
|
|
cb->lc_del( ld, conn->lconn_sb, cb );
|
|
|
|
}
|
|
|
|
}
|
|
|
|
LDAP_MUTEX_UNLOCK( &lo->ldo_mutex );
|
|
|
|
}
|
2020-01-11 12:16:01 +08:00
|
|
|
ber_int_sb_close( conn->lconn_sb );
|
2000-09-01 09:04:18 +08:00
|
|
|
return -1;
|
|
|
|
}
|
1999-07-14 03:32:51 +08:00
|
|
|
}
|
|
|
|
#endif
|
1999-12-11 11:50:33 +08:00
|
|
|
|
1998-08-09 08:43:13 +08:00
|
|
|
return( 0 );
|
|
|
|
}
|
2000-09-22 01:32:54 +08:00
|
|
|
|
2011-01-19 07:53:24 +08:00
|
|
|
/*
|
|
|
|
* ldap_open_internal_connection - open connection and set file descriptor
|
|
|
|
*
|
|
|
|
* note: ldap_init_fd() may be preferable
|
|
|
|
*/
|
2000-09-22 01:32:54 +08:00
|
|
|
|
2006-09-01 21:57:37 +08:00
|
|
|
int
|
|
|
|
ldap_open_internal_connection( LDAP **ldp, ber_socket_t *fdp )
|
2000-09-22 01:32:54 +08:00
|
|
|
{
|
|
|
|
int rc;
|
|
|
|
LDAPConn *c;
|
|
|
|
LDAPRequest *lr;
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP *ld;
|
2000-09-22 01:32:54 +08:00
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
rc = ldap_create( &ld );
|
2000-09-22 01:32:54 +08:00
|
|
|
if( rc != LDAP_SUCCESS ) {
|
|
|
|
*ldp = NULL;
|
|
|
|
return( rc );
|
|
|
|
}
|
|
|
|
|
|
|
|
/* Make it appear that a search request, msgid 0, was sent */
|
|
|
|
lr = (LDAPRequest *)LDAP_CALLOC( 1, sizeof( LDAPRequest ));
|
|
|
|
if( lr == NULL ) {
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_unbind_ext( ld, NULL, NULL );
|
2000-09-22 01:32:54 +08:00
|
|
|
*ldp = NULL;
|
|
|
|
return( LDAP_NO_MEMORY );
|
|
|
|
}
|
|
|
|
memset(lr, 0, sizeof( LDAPRequest ));
|
|
|
|
lr->lr_msgid = 0;
|
|
|
|
lr->lr_status = LDAP_REQST_INPROGRESS;
|
|
|
|
lr->lr_res_errno = LDAP_SUCCESS;
|
2003-02-13 18:43:16 +08:00
|
|
|
/* no mutex lock needed, we just created this ld here */
|
2010-10-23 05:45:48 +08:00
|
|
|
ld->ld_requests = lr;
|
2000-09-22 01:32:54 +08:00
|
|
|
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_LOCK( &ld->ld_conn_mutex );
|
2000-09-22 01:32:54 +08:00
|
|
|
/* Attach the passed socket as the *LDAP's connection */
|
2010-10-23 05:45:48 +08:00
|
|
|
c = ldap_new_connection( ld, NULL, 1, 0, NULL, 0, 0 );
|
2000-09-22 01:32:54 +08:00
|
|
|
if( c == NULL ) {
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_unbind_ext( ld, NULL, NULL );
|
2000-09-22 01:32:54 +08:00
|
|
|
*ldp = NULL;
|
2010-10-23 05:45:48 +08:00
|
|
|
LDAP_MUTEX_UNLOCK( &ld->ld_conn_mutex );
|
2000-09-22 01:32:54 +08:00
|
|
|
return( LDAP_NO_MEMORY );
|
|
|
|
}
|
|
|
|
ber_sockbuf_ctrl( c->lconn_sb, LBER_SB_OPT_SET_FD, fdp );
|
2000-10-13 09:00:55 +08:00
|
|
|
#ifdef LDAP_DEBUG
|
|
|
|
ber_sockbuf_add_io( c->lconn_sb, &ber_sockbuf_io_debug,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, (void *)"int_" );
|
|
|
|
#endif
|
2000-09-22 01:32:54 +08:00
|
|
|
ber_sockbuf_add_io( c->lconn_sb, &ber_sockbuf_io_tcp,
|
|
|
|
LBER_SBIOD_LEVEL_PROVIDER, NULL );
|
2010-10-23 05:45:48 +08:00
|
|
|
ld->ld_defconn = c;
|
|
|
|
LDAP_MUTEX_UNLOCK( &ld->ld_conn_mutex );
|
2000-09-22 01:32:54 +08:00
|
|
|
|
|
|
|
/* Add the connection to the *LDAP's select pool */
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_mark_select_read( ld, c->lconn_sb );
|
2000-09-22 01:32:54 +08:00
|
|
|
|
|
|
|
/* Make this connection an LDAP V3 protocol connection */
|
|
|
|
rc = LDAP_VERSION3;
|
2010-10-23 05:45:48 +08:00
|
|
|
ldap_set_option( ld, LDAP_OPT_PROTOCOL_VERSION, &rc );
|
|
|
|
*ldp = ld;
|
2000-09-22 01:32:54 +08:00
|
|
|
|
2011-01-19 07:53:24 +08:00
|
|
|
++ld->ld_defconn->lconn_refcnt; /* so it never gets closed/freed */
|
|
|
|
|
2000-09-22 01:32:54 +08:00
|
|
|
return( LDAP_SUCCESS );
|
|
|
|
}
|
2010-10-23 05:45:48 +08:00
|
|
|
|
|
|
|
LDAP *
|
|
|
|
ldap_dup( LDAP *old )
|
|
|
|
{
|
|
|
|
LDAP *ld;
|
|
|
|
|
|
|
|
if ( old == NULL ) {
|
|
|
|
return( NULL );
|
|
|
|
}
|
|
|
|
|
2019-02-16 00:47:40 +08:00
|
|
|
Debug0( LDAP_DEBUG_TRACE, "ldap_dup\n" );
|
2010-10-23 05:45:48 +08:00
|
|
|
|
|
|
|
if ( (ld = (LDAP *) LDAP_CALLOC( 1, sizeof(LDAP) )) == NULL ) {
|
|
|
|
return( NULL );
|
|
|
|
}
|
|
|
|
|
|
|
|
LDAP_MUTEX_LOCK( &old->ld_ldcmutex );
|
|
|
|
ld->ldc = old->ldc;
|
|
|
|
old->ld_ldcrefcnt++;
|
|
|
|
LDAP_MUTEX_UNLOCK( &old->ld_ldcmutex );
|
|
|
|
return ( ld );
|
|
|
|
}
|
2011-06-09 09:27:54 +08:00
|
|
|
|
|
|
|
int
|
|
|
|
ldap_int_check_async_open( LDAP *ld, ber_socket_t sd )
|
|
|
|
{
|
|
|
|
struct timeval tv = { 0 };
|
|
|
|
int rc;
|
|
|
|
|
2012-11-21 20:41:40 +08:00
|
|
|
rc = ldap_int_poll( ld, sd, &tv, 1 );
|
2011-06-09 09:27:54 +08:00
|
|
|
switch ( rc ) {
|
|
|
|
case 0:
|
|
|
|
/* now ready to start tls */
|
|
|
|
ld->ld_defconn->lconn_status = LDAP_CONNST_CONNECTED;
|
|
|
|
break;
|
|
|
|
|
|
|
|
default:
|
2011-06-28 09:43:31 +08:00
|
|
|
ld->ld_errno = LDAP_CONNECT_ERROR;
|
2011-06-09 09:27:54 +08:00
|
|
|
return -1;
|
|
|
|
|
|
|
|
case -2:
|
|
|
|
/* connect not completed yet */
|
|
|
|
ld->ld_errno = LDAP_X_CONNECTING;
|
|
|
|
return rc;
|
|
|
|
}
|
|
|
|
|
|
|
|
#ifdef HAVE_TLS
|
|
|
|
if ( ld->ld_options.ldo_tls_mode == LDAP_OPT_X_TLS_HARD ||
|
|
|
|
!strcmp( ld->ld_defconn->lconn_server->lud_scheme, "ldaps" )) {
|
|
|
|
|
|
|
|
++ld->ld_defconn->lconn_refcnt; /* avoid premature free */
|
|
|
|
|
|
|
|
rc = ldap_int_tls_start( ld, ld->ld_defconn, ld->ld_defconn->lconn_server );
|
|
|
|
|
|
|
|
--ld->ld_defconn->lconn_refcnt;
|
|
|
|
}
|
|
|
|
#endif
|
|
|
|
return rc;
|
|
|
|
}
|