2 * ircd-ratbox: A slightly useful ircd.
3 * s_serv.c: Server related functions.
5 * Copyright (C) 1990 Jarkko Oikarinen and University of Oulu, Co Center
6 * Copyright (C) 1996-2002 Hybrid Development Team
7 * Copyright (C) 2002-2005 ircd-ratbox development team
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
19 * You should have received a copy of the GNU General Public License
20 * along with this program; if not, write to the Free Software
21 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
28 #include <openssl/rsa.h>
37 #include "ircd_defs.h"
41 #include "s_newconf.h"
48 #include "channel.h" /* chcap_usage_counts stuff... */
53 #include "capability.h"
56 int MaxConnectionCount
= 1;
57 int MaxClientCount
= 1;
58 int refresh_user_links
= 0;
60 static char buf
[BUFSIZE
];
63 * list of recognized server capabilities. "TS" is not on the list
64 * because all servers that we talk to already do TS, and the kludged
65 * extra argument to "PASS" takes care of checking that. -orabidoo
67 struct CapabilityIndex
*serv_capindex
= NULL
;
68 struct CapabilityIndex
*cli_capindex
= NULL
;
77 unsigned int CAP_KNOCK
;
79 unsigned int CAP_UNKLN
;
80 unsigned int CAP_CLUSTER
;
81 unsigned int CAP_ENCAP
;
83 unsigned int CAP_SERVICE
;
84 unsigned int CAP_RSFNC
;
85 unsigned int CAP_SAVE
;
86 unsigned int CAP_EUID
;
87 unsigned int CAP_EOPMOD
;
89 unsigned int CAP_MLOCK
;
91 unsigned int CLICAP_MULTI_PREFIX
;
92 unsigned int CLICAP_ACCOUNT_NOTIFY
;
93 unsigned int CLICAP_EXTENDED_JOIN
;
94 unsigned int CLICAP_AWAY_NOTIFY
;
95 unsigned int CLICAP_USERHOST_IN_NAMES
;
96 unsigned int CLICAP_CAP_NOTIFY
;
97 unsigned int CLICAP_CHGHOST
;
98 unsigned int CLICAP_ECHO_MESSAGE
;
101 * initialize our builtin capability table. --nenolod
104 init_builtin_capabs(void)
106 static struct ClientCapability high_priority
= {.flags
= CLICAP_FLAGS_PRIORITY
};
107 serv_capindex
= capability_index_create("server capabilities");
109 /* These two are not set via CAPAB/GCAP keywords. */
110 CAP_CAP
= capability_put_anonymous(serv_capindex
);
111 CAP_TS6
= capability_put_anonymous(serv_capindex
);
113 CAP_QS
= capability_put(serv_capindex
, "QS", NULL
);
114 CAP_EX
= capability_put(serv_capindex
, "EX", NULL
);
115 CAP_CHW
= capability_put(serv_capindex
, "CHW", NULL
);
116 CAP_IE
= capability_put(serv_capindex
, "IE", NULL
);
117 CAP_KLN
= capability_put(serv_capindex
, "KLN", NULL
);
118 CAP_KNOCK
= capability_put(serv_capindex
, "KNOCK", NULL
);
119 CAP_ZIP
= capability_put(serv_capindex
, "ZIP", NULL
);
120 CAP_TB
= capability_put(serv_capindex
, "TB", NULL
);
121 CAP_UNKLN
= capability_put(serv_capindex
, "UNKLN", NULL
);
122 CAP_CLUSTER
= capability_put(serv_capindex
, "CLUSTER", NULL
);
123 CAP_ENCAP
= capability_put(serv_capindex
, "ENCAP", NULL
);
124 CAP_SERVICE
= capability_put(serv_capindex
, "SERVICES", NULL
);
125 CAP_RSFNC
= capability_put(serv_capindex
, "RSFNC", NULL
);
126 CAP_SAVE
= capability_put(serv_capindex
, "SAVE", NULL
);
127 CAP_EUID
= capability_put(serv_capindex
, "EUID", NULL
);
128 CAP_EOPMOD
= capability_put(serv_capindex
, "EOPMOD", NULL
);
129 CAP_BAN
= capability_put(serv_capindex
, "BAN", NULL
);
130 CAP_MLOCK
= capability_put(serv_capindex
, "MLOCK", NULL
);
132 capability_require(serv_capindex
, "QS");
133 capability_require(serv_capindex
, "EX");
134 capability_require(serv_capindex
, "IE");
135 capability_require(serv_capindex
, "ENCAP");
137 cli_capindex
= capability_index_create("client capabilities");
139 CLICAP_MULTI_PREFIX
= capability_put(cli_capindex
, "multi-prefix", &high_priority
);
140 CLICAP_ACCOUNT_NOTIFY
= capability_put(cli_capindex
, "account-notify", &high_priority
);
141 CLICAP_EXTENDED_JOIN
= capability_put(cli_capindex
, "extended-join", &high_priority
);
142 CLICAP_AWAY_NOTIFY
= capability_put(cli_capindex
, "away-notify", &high_priority
);
143 CLICAP_USERHOST_IN_NAMES
= capability_put(cli_capindex
, "userhost-in-names", &high_priority
);
144 CLICAP_CAP_NOTIFY
= capability_put(cli_capindex
, "cap-notify", NULL
);
145 CLICAP_CHGHOST
= capability_put(cli_capindex
, "chghost", &high_priority
);
146 CLICAP_ECHO_MESSAGE
= capability_put(cli_capindex
, "echo-message", NULL
);
149 static CNCB serv_connect_callback
;
150 static CNCB serv_connect_ssl_callback
;
151 static SSL_OPEN_CB serv_connect_ssl_open_callback
;
154 * hunt_server - Do the basic thing in delivering the message (command)
155 * across the relays to the specific server (server) for
158 * Note: The command is a format string and *MUST* be
159 * of prefixed style (e.g. ":%s COMMAND %s ...").
160 * Command can have only max 8 parameters.
162 * server parv[server] is the parameter identifying the
166 * parv[server] is replaced with the pointer to the
167 * real servername from the matched client (I'm lazy
170 * returns: (see #defines)
173 hunt_server(struct Client
*client_p
, struct Client
*source_p
,
174 const char *command
, int server
, int parc
, const char *parv
[])
176 struct Client
*target_p
;
183 * Assume it's me, if no server
185 if(parc
<= server
|| EmptyString(parv
[server
]) ||
186 match(parv
[server
], me
.name
) || (strcmp(parv
[server
], me
.id
) == 0))
187 return (HUNTED_ISME
);
189 new = LOCAL_COPY(parv
[server
]);
192 * These are to pickup matches that would cause the following
193 * message to go in the wrong direction while doing quick fast
194 * non-matching lookups.
196 if(MyClient(source_p
))
197 target_p
= find_named_client(new);
199 target_p
= find_client(new);
202 if(target_p
->from
== source_p
->from
&& !MyConnect(target_p
))
206 wilds
= (strchr(new, '?') || strchr(new, '*'));
209 * Again, if there are no wild cards involved in the server
210 * name, use the hash lookup
212 if(!target_p
&& wilds
)
214 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
216 if(match(new, ((struct Client
*) (ptr
->data
))->name
))
218 target_p
= ptr
->data
;
224 if(target_p
&& !IsRegistered(target_p
))
229 if(IsMe(target_p
) || MyClient(target_p
))
233 parv
[server
] = get_id(target_p
, target_p
);
235 sendto_one(target_p
, command
, get_id(source_p
, target_p
),
236 parv
[1], parv
[2], parv
[3], parv
[4], parv
[5], parv
[6], parv
[7], parv
[8]);
238 return (HUNTED_PASS
);
241 if(MyClient(source_p
) || !IsDigit(parv
[server
][0]))
242 sendto_one_numeric(source_p
, ERR_NOSUCHSERVER
,
243 form_str(ERR_NOSUCHSERVER
), parv
[server
]);
244 return (HUNTED_NOSUCH
);
248 * try_connections - scan through configuration and try new connections.
249 * Returns the calendar time when the next call to this
250 * function should be made latest. (No harm done if this
251 * is called earlier or later...)
254 try_connections(void *unused
)
256 struct Client
*client_p
;
257 struct server_conf
*server_p
= NULL
;
258 struct server_conf
*tmp_p
;
261 bool connecting
= false;
265 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
269 if(ServerConfIllegal(tmp_p
) || !ServerConfAutoconn(tmp_p
))
272 /* don't allow ssl connections if ssl isn't setup */
273 if(ServerConfSSL(tmp_p
) && (!ircd_ssl_ok
|| !get_ssld_count()))
276 cltmp
= tmp_p
->class;
279 * Skip this entry if the use of it is still on hold until
280 * future. Otherwise handle this entry (and set it on hold
281 * until next time). Will reset only hold times, if already
282 * made one successfull connection... [this algorithm is
283 * a bit fuzzy... -- msa >;) ]
285 if(tmp_p
->hold
> rb_current_time())
287 if(next
> tmp_p
->hold
|| next
== 0)
292 confrq
= get_con_freq(cltmp
);
293 tmp_p
->hold
= rb_current_time() + confrq
;
296 * Found a CONNECT config with port specified, scan clients
297 * and see if this server is already connected?
299 client_p
= find_server(NULL
, tmp_p
->name
);
301 if(!client_p
&& (CurrUsers(cltmp
) < MaxAutoconn(cltmp
)) && !connecting
)
305 /* We connect only one at time... */
309 if((next
> tmp_p
->hold
) || (next
== 0))
313 /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
314 if(GlobalSetOptions
.autoconn
== 0)
320 /* move this connect entry to end.. */
321 rb_dlinkDelete(&server_p
->node
, &server_conf_list
);
322 rb_dlinkAddTail(server_p
, &server_p
->node
, &server_conf_list
);
325 * We used to only print this if serv_connect() actually
326 * suceeded, but since rb_tcp_connect() can call the callback
327 * immediately if there is an error, we were getting error messages
328 * in the wrong order. SO, we just print out the activated line,
329 * and let serv_connect() / serv_connect_callback() print an
330 * error afterwards if it fails.
333 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
334 "Connection to %s activated",
337 serv_connect(server_p
, 0);
341 check_server(const char *name
, struct Client
*client_p
)
343 struct server_conf
*server_p
= NULL
;
344 struct server_conf
*tmp_p
;
348 bool name_matched
= false;
349 bool host_matched
= false;
350 bool certfp_failed
= false;
352 s_assert(NULL
!= client_p
);
356 if(!(client_p
->localClient
->passwd
))
359 if(strlen(name
) > HOSTLEN
)
362 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
364 struct rb_sockaddr_storage client_addr
;
368 if(ServerConfIllegal(tmp_p
))
371 if(!match(tmp_p
->name
, name
))
376 if(rb_inet_pton_sock(client_p
->sockhost
, &client_addr
) <= 0)
377 SET_SS_FAMILY(&client_addr
, AF_UNSPEC
);
379 if((tmp_p
->connect_host
&& match(tmp_p
->connect_host
, client_p
->host
))
380 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect4
)
381 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
382 (struct sockaddr
*)&tmp_p
->connect4
, 32))
383 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect6
)
384 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
385 (struct sockaddr
*)&tmp_p
->connect6
, 128))
392 if(ServerConfEncrypted(tmp_p
))
394 encr
= rb_crypt(client_p
->localClient
->passwd
,
396 if(encr
!= NULL
&& !strcmp(tmp_p
->passwd
, encr
))
404 else if(strcmp(tmp_p
->passwd
, client_p
->localClient
->passwd
))
410 if(!client_p
->certfp
|| rb_strcasecmp(tmp_p
->certfp
, client_p
->certfp
) != 0) {
411 certfp_failed
= true;
423 /* return the most specific error */
426 else if(host_matched
)
428 else if(name_matched
)
434 if(ServerConfSSL(server_p
) && client_p
->localClient
->ssl_ctl
== NULL
)
439 if (client_p
->localClient
->att_sconf
&& client_p
->localClient
->att_sconf
->class == server_p
->class) {
440 /* this is an outgoing connection that is already attached to the correct class */
441 } else if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
444 attach_server_conf(client_p
, server_p
);
446 /* clear ZIP/TB if they support but we dont want them */
448 if(!ServerConfCompressed(server_p
))
450 ClearCap(client_p
, CAP_ZIP
);
452 if(!ServerConfTb(server_p
))
453 ClearCap(client_p
, CAP_TB
);
461 * inputs - Client pointer to send to
462 * - int flag of capabilities that this server has
464 * side effects - send the CAPAB line to a server -orabidoo
467 send_capabilities(struct Client
*client_p
, unsigned int cap_can_send
)
469 sendto_one(client_p
, "CAPAB :%s", capability_index_list(serv_capindex
, cap_can_send
));
473 burst_ban(struct Client
*client_p
)
476 struct ConfItem
*aconf
;
477 const char *type
, *oper
;
478 /* +5 for !,@,{,} and null */
479 char operbuf
[NICKLEN
+ USERLEN
+ HOSTLEN
+ HOSTLEN
+ 5];
483 melen
= strlen(me
.name
);
484 RB_DLINK_FOREACH(ptr
, prop_bans
.head
)
488 /* Skip expired stuff. */
489 if(aconf
->lifetime
< rb_current_time())
491 switch(aconf
->status
& ~CONF_ILLEGAL
)
493 case CONF_KILL
: type
= "K"; break;
494 case CONF_DLINE
: type
= "D"; break;
495 case CONF_XLINE
: type
= "X"; break;
496 case CONF_RESV_NICK
: type
= "R"; break;
497 case CONF_RESV_CHANNEL
: type
= "R"; break;
501 oper
= aconf
->info
.oper
;
502 if(aconf
->flags
& CONF_FLAGS_MYOPER
)
504 /* Our operator{} names may not be meaningful
505 * to other servers, so rewrite to our server
508 rb_strlcpy(operbuf
, aconf
->info
.oper
, sizeof operbuf
);
509 p
= strrchr(operbuf
, '{');
511 operbuf
+ sizeof operbuf
- p
> (ptrdiff_t)(melen
+ 2))
513 memcpy(p
+ 1, me
.name
, melen
);
519 sendto_one(client_p
, ":%s BAN %s %s %s %lu %d %d %s :%s%s%s",
522 aconf
->user
? aconf
->user
: "*", aconf
->host
,
523 (unsigned long)aconf
->created
,
524 (int)(aconf
->hold
- aconf
->created
),
525 (int)(aconf
->lifetime
- aconf
->created
),
528 aconf
->spasswd
? "|" : "",
529 aconf
->spasswd
? aconf
->spasswd
: "");
535 * input - client to burst to, channel name, list to burst, mode flag
537 * side effects - client is sent a list of +b, +e, or +I modes
540 burst_modes_TS6(struct Client
*client_p
, struct Channel
*chptr
,
541 rb_dlink_list
*list
, char flag
)
546 send_multiline_init(client_p
, " ", ":%s BMASK %ld %s %c :",
548 (long)chptr
->channelts
,
552 RB_DLINK_FOREACH_PREV(ptr
, list
->tail
)
557 send_multiline_item(client_p
, "%s$%s",
561 send_multiline_item(client_p
, "%s", banptr
->banstr
);
564 send_multiline_fini(client_p
, NULL
);
570 * inputs - client (server) to send nick towards
571 * - client to send nick for
573 * side effects - NICK message is sent towards given client_p
576 burst_TS6(struct Client
*client_p
)
579 struct Client
*target_p
;
580 struct Channel
*chptr
;
581 struct membership
*msptr
;
582 hook_data_client hclientinfo
;
583 hook_data_channel hchaninfo
;
590 hclientinfo
.client
= hchaninfo
.client
= client_p
;
592 RB_DLINK_FOREACH(ptr
, global_client_list
.head
)
594 target_p
= ptr
->data
;
596 if(!IsPerson(target_p
))
599 if(MyClient(target_p
->from
) && target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
602 send_umode(NULL
, target_p
, 0, ubuf
);
609 if(IsCapable(client_p
, CAP_EUID
))
610 sendto_one(client_p
, ":%s EUID %s %d %ld %s %s %s %s %s %s %s :%s",
611 target_p
->servptr
->id
, target_p
->name
,
612 target_p
->hopcount
+ 1,
613 (long) target_p
->tsinfo
, ubuf
,
614 target_p
->username
, target_p
->host
,
615 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
617 IsDynSpoof(target_p
) ? target_p
->orighost
: "*",
618 EmptyString(target_p
->user
->suser
) ? "*" : target_p
->user
->suser
,
621 sendto_one(client_p
, ":%s UID %s %d %ld %s %s %s %s %s :%s",
622 target_p
->servptr
->id
, target_p
->name
,
623 target_p
->hopcount
+ 1,
624 (long) target_p
->tsinfo
, ubuf
,
625 target_p
->username
, target_p
->host
,
626 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
627 target_p
->id
, target_p
->info
);
629 if(!EmptyString(target_p
->certfp
))
630 sendto_one(client_p
, ":%s ENCAP * CERTFP :%s",
631 use_id(target_p
), target_p
->certfp
);
633 if(!IsCapable(client_p
, CAP_EUID
))
635 if(IsDynSpoof(target_p
))
636 sendto_one(client_p
, ":%s ENCAP * REALHOST %s",
637 use_id(target_p
), target_p
->orighost
);
638 if(!EmptyString(target_p
->user
->suser
))
639 sendto_one(client_p
, ":%s ENCAP * LOGIN %s",
640 use_id(target_p
), target_p
->user
->suser
);
643 if(ConfigFileEntry
.burst_away
&& !EmptyString(target_p
->user
->away
))
644 sendto_one(client_p
, ":%s AWAY :%s",
646 target_p
->user
->away
);
648 if(IsOper(target_p
) && target_p
->user
&& target_p
->user
->opername
&& target_p
->user
->privset
)
649 sendto_one(client_p
, ":%s OPER %s %s",
651 target_p
->user
->opername
,
652 target_p
->user
->privset
->name
);
654 hclientinfo
.target
= target_p
;
655 call_hook(h_burst_client
, &hclientinfo
);
658 RB_DLINK_FOREACH(ptr
, global_channel_list
.head
)
662 if(*chptr
->chname
!= '#')
665 cur_len
= mlen
= sprintf(buf
, ":%s SJOIN %ld %s %s :", me
.id
,
666 (long) chptr
->channelts
, chptr
->chname
,
667 channel_modes(chptr
, client_p
));
671 RB_DLINK_FOREACH(uptr
, chptr
->members
.head
)
675 tlen
= strlen(use_id(msptr
->client_p
)) + 1;
681 if(cur_len
+ tlen
>= BUFSIZE
- 3)
684 sendto_one(client_p
, "%s", buf
);
689 sprintf(t
, "%s%s ", find_channel_status(msptr
, 1),
690 use_id(msptr
->client_p
));
696 if (rb_dlink_list_length(&chptr
->members
) > 0)
698 /* remove trailing space */
701 sendto_one(client_p
, "%s", buf
);
703 if(rb_dlink_list_length(&chptr
->banlist
) > 0)
704 burst_modes_TS6(client_p
, chptr
, &chptr
->banlist
, 'b');
706 if(IsCapable(client_p
, CAP_EX
) &&
707 rb_dlink_list_length(&chptr
->exceptlist
) > 0)
708 burst_modes_TS6(client_p
, chptr
, &chptr
->exceptlist
, 'e');
710 if(IsCapable(client_p
, CAP_IE
) &&
711 rb_dlink_list_length(&chptr
->invexlist
) > 0)
712 burst_modes_TS6(client_p
, chptr
, &chptr
->invexlist
, 'I');
714 if(rb_dlink_list_length(&chptr
->quietlist
) > 0)
715 burst_modes_TS6(client_p
, chptr
, &chptr
->quietlist
, 'q');
717 if(IsCapable(client_p
, CAP_TB
) && chptr
->topic
!= NULL
)
718 sendto_one(client_p
, ":%s TB %s %ld %s%s:%s",
719 me
.id
, chptr
->chname
, (long) chptr
->topic_time
,
720 ConfigChannel
.burst_topicwho
? chptr
->topic_info
: "",
721 ConfigChannel
.burst_topicwho
? " " : "",
724 if(IsCapable(client_p
, CAP_MLOCK
))
725 sendto_one(client_p
, ":%s MLOCK %ld %s :%s",
726 me
.id
, (long) chptr
->channelts
, chptr
->chname
,
727 EmptyString(chptr
->mode_lock
) ? "" : chptr
->mode_lock
);
729 hchaninfo
.chptr
= chptr
;
730 call_hook(h_burst_channel
, &hchaninfo
);
733 hclientinfo
.target
= NULL
;
734 call_hook(h_burst_finished
, &hclientinfo
);
738 * show_capabilities - show current server capabilities
740 * inputs - pointer to an struct Client
741 * output - pointer to static string
742 * side effects - build up string representing capabilities of server listed
745 show_capabilities(struct Client
*target_p
)
747 static char msgbuf
[BUFSIZE
];
752 rb_strlcpy(msgbuf
, " TS6", sizeof(msgbuf
));
755 rb_strlcat(msgbuf
, " SSL", sizeof(msgbuf
));
757 if(!IsServer(target_p
) || !target_p
->serv
->caps
) /* short circuit if no caps */
760 rb_strlcat(msgbuf
, " ", sizeof(msgbuf
));
761 rb_strlcat(msgbuf
, capability_index_list(serv_capindex
, target_p
->serv
->caps
), sizeof(msgbuf
));
769 * inputs - pointer to a struct Client
774 server_estab(struct Client
*client_p
)
776 struct Client
*target_p
;
777 struct server_conf
*server_p
;
778 hook_data_client hdata
;
781 char note
[HOSTLEN
+ 15];
783 s_assert(NULL
!= client_p
);
787 host
= client_p
->name
;
789 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
791 /* This shouldn't happen, better tell the ops... -A1kmm */
792 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
793 "Warning: Lost connect{} block for server %s!", host
);
794 return exit_client(client_p
, client_p
, client_p
, "Lost connect{} block!");
797 /* We shouldn't have to check this, it should already done before
798 * server_estab is called. -A1kmm
800 if(client_p
->localClient
->passwd
)
802 memset(client_p
->localClient
->passwd
, 0, strlen(client_p
->localClient
->passwd
));
803 rb_free(client_p
->localClient
->passwd
);
804 client_p
->localClient
->passwd
= NULL
;
807 /* Its got identd , since its a server */
810 if(IsUnknown(client_p
))
812 /* the server may be linking based on certificate fingerprint now. --nenolod */
813 sendto_one(client_p
, "PASS %s TS %d :%s",
814 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
816 /* pass info to new server */
817 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
818 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
819 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
821 sendto_one(client_p
, "SERVER %s 1 :%s%s",
823 ConfigServerHide
.hidden
? "(H) " : "",
824 (me
.info
[0]) ? (me
.info
) : "IRCers United");
827 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
828 ilog_error("rb_set_buffers failed for server");
830 /* Enable compression now */
831 if(IsCapable(client_p
, CAP_ZIP
))
833 start_zlib_session(client_p
);
836 client_p
->servptr
= &me
;
838 if(IsAnyDead(client_p
))
839 return CLIENT_EXITED
;
841 sendto_one(client_p
, "SVINFO %d %d 0 :%ld", TS_CURRENT
, TS_MIN
, (long int)rb_current_time());
843 rb_dlinkAdd(client_p
, &client_p
->lnode
, &me
.serv
->servers
);
844 rb_dlinkMoveNode(&client_p
->localClient
->tnode
, &unknown_list
, &serv_list
);
845 rb_dlinkAddTailAlloc(client_p
, &global_serv_list
);
848 add_to_id_hash(client_p
->id
, client_p
);
850 add_to_client_hash(client_p
->name
, client_p
);
851 /* doesnt duplicate client_p->serv if allocated this struct already */
852 make_server(client_p
);
855 client_p
->serv
->caps
= client_p
->localClient
->caps
;
857 if(client_p
->localClient
->fullcaps
)
859 client_p
->serv
->fullcaps
= rb_strdup(client_p
->localClient
->fullcaps
);
860 rb_free(client_p
->localClient
->fullcaps
);
861 client_p
->localClient
->fullcaps
= NULL
;
864 client_p
->serv
->nameinfo
= scache_connect(client_p
->name
, client_p
->info
, IsHidden(client_p
));
865 client_p
->localClient
->firsttime
= rb_current_time();
866 /* fixing eob timings.. -gnp */
868 if((rb_dlink_list_length(&lclient_list
) + rb_dlink_list_length(&serv_list
)) >
869 (unsigned long)MaxConnectionCount
)
870 MaxConnectionCount
= rb_dlink_list_length(&lclient_list
) +
871 rb_dlink_list_length(&serv_list
);
873 /* Show the real host/IP to admins */
874 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
875 "Link with %s established: (%s) link",
877 show_capabilities(client_p
));
879 ilog(L_SERVER
, "Link with %s established: (%s) link",
880 log_client_name(client_p
, SHOW_IP
), show_capabilities(client_p
));
883 hdata
.target
= client_p
;
884 call_hook(h_server_introduced
, &hdata
);
886 snprintf(note
, sizeof(note
), "Server: %s", client_p
->name
);
887 rb_note(client_p
->localClient
->F
, note
);
890 ** Old sendto_serv_but_one() call removed because we now
891 ** need to send different names to different servers
892 ** (domain name matching) Send new server to other servers.
894 RB_DLINK_FOREACH(ptr
, serv_list
.head
)
896 target_p
= ptr
->data
;
898 if(target_p
== client_p
)
901 if(target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
904 if(has_id(target_p
) && has_id(client_p
))
906 sendto_one(target_p
, ":%s SID %s 2 %s :%s%s",
907 me
.id
, client_p
->name
, client_p
->id
,
908 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
910 if(!EmptyString(client_p
->serv
->fullcaps
))
911 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
912 client_p
->id
, client_p
->serv
->fullcaps
);
916 sendto_one(target_p
, ":%s SERVER %s 2 :%s%s",
917 me
.name
, client_p
->name
,
918 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
920 if(!EmptyString(client_p
->serv
->fullcaps
))
921 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
922 client_p
->name
, client_p
->serv
->fullcaps
);
927 ** Pass on my client information to the new server
929 ** First, pass only servers (idea is that if the link gets
930 ** cancelled beacause the server was already there,
931 ** there are no NICK's to be cancelled...). Of course,
932 ** if cancellation occurs, all this info is sent anyway,
933 ** and I guess the link dies when a read is attempted...? --msa
935 ** Note: Link cancellation to occur at this point means
936 ** that at least two servers from my fragment are building
937 ** up connection this other fragment at the same time, it's
938 ** a race condition, not the normal way of operation...
940 ** ALSO NOTE: using the get_client_name for server names--
941 ** see previous *WARNING*!!! (Also, original inpath
944 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
946 target_p
= ptr
->data
;
948 /* target_p->from == target_p for target_p == client_p */
949 if(IsMe(target_p
) || target_p
->from
== client_p
)
952 /* don't distribute downstream leaves of servers that are no-export */
953 if(MyClient(target_p
->from
) && target_p
->from
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->from
->localClient
->att_sconf
))
956 /* presumption, if target has an id, so does its uplink */
957 if(has_id(client_p
) && has_id(target_p
))
958 sendto_one(client_p
, ":%s SID %s %d %s :%s%s",
959 target_p
->servptr
->id
, target_p
->name
,
960 target_p
->hopcount
+ 1, target_p
->id
,
961 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
963 sendto_one(client_p
, ":%s SERVER %s %d :%s%s",
964 target_p
->servptr
->name
,
965 target_p
->name
, target_p
->hopcount
+ 1,
966 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
968 if(!EmptyString(target_p
->serv
->fullcaps
))
969 sendto_one(client_p
, ":%s ENCAP * GCAP :%s",
970 get_id(target_p
, client_p
),
971 target_p
->serv
->fullcaps
);
974 if(IsCapable(client_p
, CAP_BAN
))
979 /* Always send a PING after connect burst is done */
980 sendto_one(client_p
, "PING :%s", get_id(&me
, client_p
));
982 free_pre_client(client_p
);
984 send_pop_queue(client_p
);
990 * New server connection code
991 * Based upon the stuff floating about in s_bsd.c
996 * serv_connect() - initiate a server connection
998 * inputs - pointer to conf
999 * - pointer to client doing the connet
1003 * This code initiates a connection to a server. It first checks to make
1004 * sure the given server exists. If this is the case, it creates a socket,
1005 * creates a client, saves the socket information in the client, and
1006 * initiates a connection to the server through rb_connect_tcp(). The
1007 * completion of this goes through serv_completed_connection().
1009 * We return 1 if the connection is attempted, since we don't know whether
1010 * it suceeded or not, and 0 if it fails in here somewhere.
1013 serv_connect(struct server_conf
*server_p
, struct Client
*by
)
1015 struct Client
*client_p
;
1016 struct sockaddr_storage sa_connect
[2];
1017 struct sockaddr_storage sa_bind
[ARRAY_SIZE(sa_connect
)];
1018 char note
[HOSTLEN
+ 10];
1021 s_assert(server_p
!= NULL
);
1022 if(server_p
== NULL
)
1025 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1026 SET_SS_FAMILY(&sa_connect
[i
], AF_UNSPEC
);
1027 SET_SS_FAMILY(&sa_bind
[i
], AF_UNSPEC
);
1030 if(server_p
->aftype
== AF_UNSPEC
1031 && GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
1032 && GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1036 sa_connect
[0] = server_p
->connect4
;
1037 sa_connect
[1] = server_p
->connect6
;
1038 sa_bind
[0] = server_p
->bind4
;
1039 sa_bind
[1] = server_p
->bind6
;
1043 sa_connect
[0] = server_p
->connect6
;
1044 sa_connect
[1] = server_p
->connect4
;
1045 sa_bind
[0] = server_p
->bind6
;
1046 sa_bind
[1] = server_p
->bind4
;
1049 else if(server_p
->aftype
== AF_INET
|| GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
)
1051 sa_connect
[0] = server_p
->connect4
;
1052 sa_bind
[0] = server_p
->bind4
;
1054 else if(server_p
->aftype
== AF_INET6
|| GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1056 sa_connect
[0] = server_p
->connect6
;
1057 sa_bind
[0] = server_p
->bind6
;
1062 if (ServerConfSCTP(server_p
) && GET_SS_FAMILY(&sa_connect
[1]) != AF_UNSPEC
) {
1063 char buf2
[HOSTLEN
+ 1];
1067 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1068 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[1], buf2
, sizeof(buf2
));
1069 ilog(L_SERVER
, "Connect to *[%s] @%s&%s", server_p
->name
, buf
, buf2
);
1075 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1076 ilog(L_SERVER
, "Connect to *[%s] @%s", server_p
->name
, buf
);
1080 * Make sure this server isn't already connected
1082 if((client_p
= find_server(NULL
, server_p
->name
)))
1084 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1085 "Server %s already present from %s",
1086 server_p
->name
, client_p
->name
);
1087 if(by
&& IsPerson(by
) && !MyClient(by
))
1088 sendto_one_notice(by
, ":Server %s already present from %s",
1089 server_p
->name
, client_p
->name
);
1093 if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
1094 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1095 "No more connections allowed in class \"%s\" for server %s",
1096 server_p
->class->class_name
, server_p
->name
);
1097 if(by
&& IsPerson(by
) && !MyClient(by
))
1098 sendto_one_notice(by
, ":No more connections allowed in class \"%s\" for server %s",
1099 server_p
->class->class_name
, server_p
->name
);
1103 /* create a socket for the server connection */
1104 if(GET_SS_FAMILY(&sa_connect
[0]) == AF_UNSPEC
) {
1105 ilog_error("unspecified socket address family");
1108 } else if (ServerConfSCTP(server_p
)) {
1109 if ((F
= rb_socket(AF_INET6
, SOCK_STREAM
, IPPROTO_SCTP
, NULL
)) == NULL
) {
1110 ilog_error("opening a stream socket");
1114 } else if ((F
= rb_socket(GET_SS_FAMILY(&sa_connect
[0]), SOCK_STREAM
, IPPROTO_TCP
, NULL
)) == NULL
) {
1115 ilog_error("opening a stream socket");
1119 /* servernames are always guaranteed under HOSTLEN chars */
1120 snprintf(note
, sizeof(note
), "Server: %s", server_p
->name
);
1123 /* Create a local client */
1124 client_p
= make_client(NULL
);
1126 /* Copy in the server, hostname, fd */
1127 rb_strlcpy(client_p
->name
, server_p
->name
, sizeof(client_p
->name
));
1128 if(server_p
->connect_host
)
1129 rb_strlcpy(client_p
->host
, server_p
->connect_host
, sizeof(client_p
->host
));
1131 rb_strlcpy(client_p
->host
, buf
, sizeof(client_p
->host
));
1132 rb_strlcpy(client_p
->sockhost
, buf
, sizeof(client_p
->sockhost
));
1133 client_p
->localClient
->F
= F
;
1134 /* shove the port number into the sockaddr */
1135 SET_SS_PORT(&sa_connect
[0], htons(server_p
->port
));
1136 SET_SS_PORT(&sa_connect
[1], htons(server_p
->port
));
1139 * Set up the initial server evilness, ripped straight from
1140 * connect_server(), so don't blame me for it being evil.
1144 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
1146 ilog_error("setting the buffer size for a server connection");
1150 * Attach config entries to client here rather than in
1151 * serv_connect_callback(). This to avoid null pointer references.
1153 attach_server_conf(client_p
, server_p
);
1156 * at this point we have a connection in progress and C/N lines
1157 * attached to the client, the socket info should be saved in the
1158 * client and it should either be resolved or have a valid address.
1160 * The socket has been connected or connect is in progress.
1162 make_server(client_p
);
1163 if(by
&& IsClient(by
))
1164 rb_strlcpy(client_p
->serv
->by
, by
->name
, sizeof(client_p
->serv
->by
));
1166 strcpy(client_p
->serv
->by
, "AutoConn.");
1168 SetConnecting(client_p
);
1169 rb_dlinkAddTail(client_p
, &client_p
->node
, &global_client_list
);
1171 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1172 if (GET_SS_FAMILY(&sa_bind
[i
]) == AF_UNSPEC
) {
1173 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind4
))
1174 sa_bind
[i
] = ServerInfo
.bind4
;
1175 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind6
))
1176 sa_bind
[i
] = ServerInfo
.bind6
;
1181 if (ServerConfSCTP(server_p
)) {
1182 rb_connect_sctp(client_p
->localClient
->F
,
1183 sa_connect
, ARRAY_SIZE(sa_connect
), sa_bind
, ARRAY_SIZE(sa_bind
),
1184 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1185 client_p
, ConfigFileEntry
.connect_timeout
);
1190 rb_connect_tcp(client_p
->localClient
->F
,
1191 (struct sockaddr
*)&sa_connect
[0],
1192 GET_SS_FAMILY(&sa_bind
[0]) == AF_UNSPEC
? NULL
: (struct sockaddr
*)&sa_bind
[0],
1193 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1194 client_p
, ConfigFileEntry
.connect_timeout
);
1200 serv_connect_ssl_callback(rb_fde_t
*F
, int status
, void *data
)
1202 struct Client
*client_p
= data
;
1204 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1207 /* Print error message, just like non-SSL. */
1208 serv_connect_callback(F
, status
, data
);
1211 if(rb_socketpair(AF_UNIX
, SOCK_STREAM
, 0, &xF
[0], &xF
[1], "Outgoing ssld connection") == -1)
1213 ilog_error("rb_socketpair failed for server");
1214 serv_connect_callback(F
, RB_ERROR
, data
);
1218 client_p
->localClient
->F
= xF
[0];
1219 client_p
->localClient
->ssl_callback
= serv_connect_ssl_open_callback
;
1221 client_p
->localClient
->ssl_ctl
= start_ssld_connect(F
, xF
[1], connid_get(client_p
));
1222 if(!client_p
->localClient
->ssl_ctl
)
1224 serv_connect_callback(client_p
->localClient
->F
, RB_ERROR
, data
);
1231 serv_connect_ssl_open_callback(struct Client
*client_p
, int status
)
1233 serv_connect_callback(client_p
->localClient
->F
, status
, client_p
);
1234 return 1; /* suppress default exit_client handler for status != RB_OK */
1238 * serv_connect_callback() - complete a server connection.
1240 * This routine is called after the server connection attempt has
1241 * completed. If unsucessful, an error is sent to ops and the client
1242 * is closed. If sucessful, it goes through the initialisation/check
1243 * procedures, the capabilities are sent, and the socket is then
1244 * marked for reading.
1247 serv_connect_callback(rb_fde_t
*F
, int status
, void *data
)
1249 struct Client
*client_p
= data
;
1250 struct server_conf
*server_p
;
1253 /* First, make sure its a real client! */
1254 s_assert(client_p
!= NULL
);
1255 s_assert(client_p
->localClient
->F
== F
);
1257 if(client_p
== NULL
)
1260 /* while we were waiting for the callback, its possible this already
1263 if(find_server(NULL
, client_p
->name
) != NULL
)
1265 exit_client(client_p
, client_p
, &me
, "Server Exists");
1269 if(client_p
->localClient
->ssl_ctl
== NULL
)
1270 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1272 /* Check the status */
1275 /* COMM_ERR_TIMEOUT wont have an errno associated with it,
1276 * the others will.. --fl
1278 if(status
== RB_ERR_TIMEOUT
|| status
== RB_ERROR_SSL
)
1280 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1281 "Error connecting to %s[%s]: %s",
1285 ilog(L_SERVER
, "Error connecting to %s[%s]: %s",
1286 client_p
->name
, client_p
->sockhost
,
1291 errstr
= strerror(rb_get_sockerr(F
));
1292 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1293 "Error connecting to %s[%s]: %s (%s)",
1296 rb_errstr(status
), errstr
);
1297 ilog(L_SERVER
, "Error connecting to %s[%s]: %s (%s)",
1298 client_p
->name
, client_p
->sockhost
,
1299 rb_errstr(status
), errstr
);
1302 exit_client(client_p
, client_p
, &me
, rb_errstr(status
));
1306 /* COMM_OK, so continue the connection procedure */
1307 /* Get the C/N lines */
1308 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
1310 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
, "Lost connect{} block for %s",
1312 exit_client(client_p
, client_p
, &me
, "Lost connect{} block");
1316 if(server_p
->certfp
&& (!client_p
->certfp
|| rb_strcasecmp(server_p
->certfp
, client_p
->certfp
) != 0))
1318 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1319 "Connection to %s has invalid certificate fingerprint %s",
1320 client_p
->name
, client_p
->certfp
);
1321 ilog(L_SERVER
, "Access denied, invalid certificate fingerprint %s from %s",
1322 client_p
->certfp
, log_client_name(client_p
, SHOW_IP
));
1324 exit_client(client_p
, client_p
, &me
, "Invalid fingerprint.");
1328 /* Next, send the initial handshake */
1329 SetHandshake(client_p
);
1331 /* the server may be linking based on certificate fingerprint now. --nenolod */
1332 sendto_one(client_p
, "PASS %s TS %d :%s",
1333 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
1335 /* pass my info to the new server */
1336 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
1337 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
1338 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
1340 sendto_one(client_p
, "SERVER %s 1 :%s%s",
1342 ConfigServerHide
.hidden
? "(H) " : "", me
.info
);
1345 * If we've been marked dead because a send failed, just exit
1346 * here now and save everyone the trouble of us ever existing.
1348 if(IsAnyDead(client_p
))
1350 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1351 "%s went dead during handshake", client_p
->name
);
1352 exit_client(client_p
, client_p
, &me
, "Went dead during handshake");
1356 /* don't move to serv_list yet -- we haven't sent a burst! */
1358 /* If we get here, we're ok, so lets start reading some data */
1359 read_packet(F
, client_p
);