2 * ircd-ratbox: A slightly useful ircd.
3 * s_serv.c: Server related functions.
5 * Copyright (C) 1990 Jarkko Oikarinen and University of Oulu, Co Center
6 * Copyright (C) 1996-2002 Hybrid Development Team
7 * Copyright (C) 2002-2005 ircd-ratbox development team
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
19 * You should have received a copy of the GNU General Public License
20 * along with this program; if not, write to the Free Software
21 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
28 #include <openssl/rsa.h>
37 #include "ircd_defs.h"
41 #include "s_newconf.h"
48 #include "channel.h" /* chcap_usage_counts stuff... */
53 #include "capability.h"
56 int MaxConnectionCount
= 1;
57 int MaxClientCount
= 1;
58 int refresh_user_links
= 0;
60 static char buf
[BUFSIZE
];
63 * list of recognized server capabilities. "TS" is not on the list
64 * because all servers that we talk to already do TS, and the kludged
65 * extra argument to "PASS" takes care of checking that. -orabidoo
67 struct CapabilityIndex
*serv_capindex
= NULL
;
68 struct CapabilityIndex
*cli_capindex
= NULL
;
77 unsigned int CAP_KNOCK
;
79 unsigned int CAP_UNKLN
;
80 unsigned int CAP_CLUSTER
;
81 unsigned int CAP_ENCAP
;
83 unsigned int CAP_SERVICE
;
84 unsigned int CAP_RSFNC
;
85 unsigned int CAP_SAVE
;
86 unsigned int CAP_EUID
;
87 unsigned int CAP_EOPMOD
;
89 unsigned int CAP_MLOCK
;
91 unsigned int CLICAP_MULTI_PREFIX
;
92 unsigned int CLICAP_ACCOUNT_NOTIFY
;
93 unsigned int CLICAP_EXTENDED_JOIN
;
94 unsigned int CLICAP_AWAY_NOTIFY
;
95 unsigned int CLICAP_USERHOST_IN_NAMES
;
96 unsigned int CLICAP_CAP_NOTIFY
;
97 unsigned int CLICAP_CHGHOST
;
98 unsigned int CLICAP_ECHO_MESSAGE
;
101 * initialize our builtin capability table. --nenolod
104 init_builtin_capabs(void)
106 static struct ClientCapability high_priority
= {.flags
= CLICAP_FLAGS_PRIORITY
};
107 serv_capindex
= capability_index_create("server capabilities");
109 /* These two are not set via CAPAB/GCAP keywords. */
110 CAP_CAP
= capability_put_anonymous(serv_capindex
);
111 CAP_TS6
= capability_put_anonymous(serv_capindex
);
113 CAP_QS
= capability_put(serv_capindex
, "QS", NULL
);
114 CAP_EX
= capability_put(serv_capindex
, "EX", NULL
);
115 CAP_CHW
= capability_put(serv_capindex
, "CHW", NULL
);
116 CAP_IE
= capability_put(serv_capindex
, "IE", NULL
);
117 CAP_KLN
= capability_put(serv_capindex
, "KLN", NULL
);
118 CAP_KNOCK
= capability_put(serv_capindex
, "KNOCK", NULL
);
119 CAP_ZIP
= capability_put(serv_capindex
, "ZIP", NULL
);
120 CAP_TB
= capability_put(serv_capindex
, "TB", NULL
);
121 CAP_UNKLN
= capability_put(serv_capindex
, "UNKLN", NULL
);
122 CAP_CLUSTER
= capability_put(serv_capindex
, "CLUSTER", NULL
);
123 CAP_ENCAP
= capability_put(serv_capindex
, "ENCAP", NULL
);
124 CAP_SERVICE
= capability_put(serv_capindex
, "SERVICES", NULL
);
125 CAP_RSFNC
= capability_put(serv_capindex
, "RSFNC", NULL
);
126 CAP_SAVE
= capability_put(serv_capindex
, "SAVE", NULL
);
127 CAP_EUID
= capability_put(serv_capindex
, "EUID", NULL
);
128 CAP_EOPMOD
= capability_put(serv_capindex
, "EOPMOD", NULL
);
129 CAP_BAN
= capability_put(serv_capindex
, "BAN", NULL
);
130 CAP_MLOCK
= capability_put(serv_capindex
, "MLOCK", NULL
);
132 capability_require(serv_capindex
, "QS");
133 capability_require(serv_capindex
, "EX");
134 capability_require(serv_capindex
, "IE");
135 capability_require(serv_capindex
, "ENCAP");
137 cli_capindex
= capability_index_create("client capabilities");
139 CLICAP_MULTI_PREFIX
= capability_put(cli_capindex
, "multi-prefix", &high_priority
);
140 CLICAP_ACCOUNT_NOTIFY
= capability_put(cli_capindex
, "account-notify", &high_priority
);
141 CLICAP_EXTENDED_JOIN
= capability_put(cli_capindex
, "extended-join", &high_priority
);
142 CLICAP_AWAY_NOTIFY
= capability_put(cli_capindex
, "away-notify", &high_priority
);
143 CLICAP_USERHOST_IN_NAMES
= capability_put(cli_capindex
, "userhost-in-names", &high_priority
);
144 CLICAP_CAP_NOTIFY
= capability_put(cli_capindex
, "cap-notify", NULL
);
145 CLICAP_CHGHOST
= capability_put(cli_capindex
, "chghost", &high_priority
);
146 CLICAP_ECHO_MESSAGE
= capability_put(cli_capindex
, "echo-message", NULL
);
149 static CNCB serv_connect_callback
;
150 static CNCB serv_connect_ssl_callback
;
151 static SSL_OPEN_CB serv_connect_ssl_open_callback
;
154 * hunt_server - Do the basic thing in delivering the message (command)
155 * across the relays to the specific server (server) for
158 * Note: The command is a format string and *MUST* be
159 * of prefixed style (e.g. ":%s COMMAND %s ...").
160 * Command can have only max 8 parameters.
162 * server parv[server] is the parameter identifying the
166 * parv[server] is replaced with the pointer to the
167 * real servername from the matched client (I'm lazy
170 * returns: (see #defines)
173 hunt_server(struct Client
*client_p
, struct Client
*source_p
,
174 const char *command
, int server
, int parc
, const char *parv
[])
176 struct Client
*target_p
;
183 * Assume it's me, if no server
185 if(parc
<= server
|| EmptyString(parv
[server
]) ||
186 match(parv
[server
], me
.name
) || (strcmp(parv
[server
], me
.id
) == 0))
187 return (HUNTED_ISME
);
189 new = LOCAL_COPY(parv
[server
]);
192 * These are to pickup matches that would cause the following
193 * message to go in the wrong direction while doing quick fast
194 * non-matching lookups.
196 if(MyClient(source_p
))
197 target_p
= find_named_client(new);
199 target_p
= find_client(new);
202 if(target_p
->from
== source_p
->from
&& !MyConnect(target_p
))
206 wilds
= (strchr(new, '?') || strchr(new, '*'));
209 * Again, if there are no wild cards involved in the server
210 * name, use the hash lookup
212 if(!target_p
&& wilds
)
214 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
216 if(match(new, ((struct Client
*) (ptr
->data
))->name
))
218 target_p
= ptr
->data
;
224 if(target_p
&& !IsRegistered(target_p
))
229 if(IsMe(target_p
) || MyClient(target_p
))
233 parv
[server
] = get_id(target_p
, target_p
);
235 sendto_one(target_p
, command
, get_id(source_p
, target_p
),
236 parv
[1], parv
[2], parv
[3], parv
[4], parv
[5], parv
[6], parv
[7], parv
[8]);
238 return (HUNTED_PASS
);
241 if(MyClient(source_p
) || !IsDigit(parv
[server
][0]))
242 sendto_one_numeric(source_p
, ERR_NOSUCHSERVER
,
243 form_str(ERR_NOSUCHSERVER
), parv
[server
]);
244 return (HUNTED_NOSUCH
);
248 * try_connections - scan through configuration and try new connections.
249 * Returns the calendar time when the next call to this
250 * function should be made latest. (No harm done if this
251 * is called earlier or later...)
254 try_connections(void *unused
)
256 struct Client
*client_p
;
257 struct server_conf
*server_p
= NULL
;
258 struct server_conf
*tmp_p
;
261 bool connecting
= false;
265 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
269 if(ServerConfIllegal(tmp_p
) || !ServerConfAutoconn(tmp_p
))
272 /* don't allow ssl connections if ssl isn't setup */
273 if(ServerConfSSL(tmp_p
) && (!ircd_ssl_ok
|| !get_ssld_count()))
276 cltmp
= tmp_p
->class;
279 * Skip this entry if the use of it is still on hold until
280 * future. Otherwise handle this entry (and set it on hold
281 * until next time). Will reset only hold times, if already
282 * made one successfull connection... [this algorithm is
283 * a bit fuzzy... -- msa >;) ]
285 if(tmp_p
->hold
> rb_current_time())
287 if(next
> tmp_p
->hold
|| next
== 0)
292 confrq
= get_con_freq(cltmp
);
293 tmp_p
->hold
= rb_current_time() + confrq
;
296 * Found a CONNECT config with port specified, scan clients
297 * and see if this server is already connected?
299 client_p
= find_server(NULL
, tmp_p
->name
);
301 if(!client_p
&& (CurrUsers(cltmp
) < MaxAutoconn(cltmp
)) && !connecting
)
305 /* We connect only one at time... */
309 if((next
> tmp_p
->hold
) || (next
== 0))
313 /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
314 if(GlobalSetOptions
.autoconn
== 0)
320 /* move this connect entry to end.. */
321 rb_dlinkDelete(&server_p
->node
, &server_conf_list
);
322 rb_dlinkAddTail(server_p
, &server_p
->node
, &server_conf_list
);
325 * We used to only print this if serv_connect() actually
326 * suceeded, but since rb_tcp_connect() can call the callback
327 * immediately if there is an error, we were getting error messages
328 * in the wrong order. SO, we just print out the activated line,
329 * and let serv_connect() / serv_connect_callback() print an
330 * error afterwards if it fails.
333 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
334 "Connection to %s activated",
337 serv_connect(server_p
, 0);
341 check_server(const char *name
, struct Client
*client_p
)
343 struct server_conf
*server_p
= NULL
;
344 struct server_conf
*tmp_p
;
348 bool name_matched
= false;
349 bool host_matched
= false;
350 bool certfp_failed
= false;
352 s_assert(NULL
!= client_p
);
356 if(!(client_p
->localClient
->passwd
))
359 if(strlen(name
) > HOSTLEN
)
362 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
364 struct rb_sockaddr_storage client_addr
;
368 if(ServerConfIllegal(tmp_p
))
371 if(!match(tmp_p
->name
, name
))
376 if(rb_inet_pton_sock(client_p
->sockhost
, &client_addr
) <= 0)
377 SET_SS_FAMILY(&client_addr
, AF_UNSPEC
);
379 if((tmp_p
->connect_host
&& match(tmp_p
->connect_host
, client_p
->host
))
380 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect4
)
381 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
382 (struct sockaddr
*)&tmp_p
->connect4
, 32))
383 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect6
)
384 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
385 (struct sockaddr
*)&tmp_p
->connect6
, 128))
392 if(ServerConfEncrypted(tmp_p
))
394 encr
= rb_crypt(client_p
->localClient
->passwd
,
396 if(encr
!= NULL
&& !strcmp(tmp_p
->passwd
, encr
))
404 else if(strcmp(tmp_p
->passwd
, client_p
->localClient
->passwd
))
410 if(!client_p
->certfp
|| rb_strcasecmp(tmp_p
->certfp
, client_p
->certfp
) != 0) {
411 certfp_failed
= true;
423 /* return the most specific error */
426 else if(host_matched
)
428 else if(name_matched
)
434 if(ServerConfSSL(server_p
) && client_p
->localClient
->ssl_ctl
== NULL
)
439 if (client_p
->localClient
->att_sconf
&& client_p
->localClient
->att_sconf
->class == server_p
->class) {
440 /* this is an outgoing connection that is already attached to the correct class */
441 } else if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
444 attach_server_conf(client_p
, server_p
);
446 /* clear ZIP/TB if they support but we dont want them */
448 if(!ServerConfCompressed(server_p
))
450 ClearCap(client_p
, CAP_ZIP
);
452 if(!ServerConfTb(server_p
))
453 ClearCap(client_p
, CAP_TB
);
461 * inputs - Client pointer to send to
462 * - int flag of capabilities that this server has
464 * side effects - send the CAPAB line to a server -orabidoo
467 send_capabilities(struct Client
*client_p
, unsigned int cap_can_send
)
469 sendto_one(client_p
, "CAPAB :%s", capability_index_list(serv_capindex
, cap_can_send
));
473 burst_ban(struct Client
*client_p
)
476 struct ConfItem
*aconf
;
477 const char *type
, *oper
;
478 /* +5 for !,@,{,} and null */
479 char operbuf
[NICKLEN
+ USERLEN
+ HOSTLEN
+ HOSTLEN
+ 5];
483 melen
= strlen(me
.name
);
484 RB_DLINK_FOREACH(ptr
, prop_bans
.head
)
488 /* Skip expired stuff. */
489 if(aconf
->lifetime
< rb_current_time())
491 switch(aconf
->status
& ~CONF_ILLEGAL
)
493 case CONF_KILL
: type
= "K"; break;
494 case CONF_DLINE
: type
= "D"; break;
495 case CONF_XLINE
: type
= "X"; break;
496 case CONF_RESV_NICK
: type
= "R"; break;
497 case CONF_RESV_CHANNEL
: type
= "R"; break;
501 oper
= aconf
->info
.oper
;
502 if(aconf
->flags
& CONF_FLAGS_MYOPER
)
504 /* Our operator{} names may not be meaningful
505 * to other servers, so rewrite to our server
508 rb_strlcpy(operbuf
, aconf
->info
.oper
, sizeof operbuf
);
509 p
= strrchr(operbuf
, '{');
511 operbuf
+ sizeof operbuf
- p
> (ptrdiff_t)(melen
+ 2))
513 memcpy(p
+ 1, me
.name
, melen
);
519 sendto_one(client_p
, ":%s BAN %s %s %s %lu %d %d %s :%s%s%s",
522 aconf
->user
? aconf
->user
: "*", aconf
->host
,
523 (unsigned long)aconf
->created
,
524 (int)(aconf
->hold
- aconf
->created
),
525 (int)(aconf
->lifetime
- aconf
->created
),
528 aconf
->spasswd
? "|" : "",
529 aconf
->spasswd
? aconf
->spasswd
: "");
535 * input - client to burst to, channel name, list to burst, mode flag
537 * side effects - client is sent a list of +b, +e, or +I modes
540 burst_modes_TS6(struct Client
*client_p
, struct Channel
*chptr
,
541 rb_dlink_list
*list
, char flag
)
550 cur_len
= mlen
= sprintf(buf
, ":%s BMASK %ld %s %c :",
551 me
.id
, (long) chptr
->channelts
, chptr
->chname
, flag
);
554 RB_DLINK_FOREACH(ptr
, list
->head
)
558 tlen
= strlen(banptr
->banstr
) + (banptr
->forward
? strlen(banptr
->forward
) + 1 : 0) + 1;
561 if(cur_len
+ tlen
> BUFSIZE
- 3)
563 /* the one we're trying to send doesnt fit at all! */
570 /* chop off trailing space and send.. */
572 sendto_one(client_p
, "%s", buf
);
578 sprintf(t
, "%s$%s ", banptr
->banstr
, banptr
->forward
);
580 sprintf(t
, "%s ", banptr
->banstr
);
585 /* cant ever exit the loop above without having modified buf,
586 * chop off trailing space and send.
589 sendto_one(client_p
, "%s", buf
);
595 * inputs - client (server) to send nick towards
596 * - client to send nick for
598 * side effects - NICK message is sent towards given client_p
601 burst_TS6(struct Client
*client_p
)
604 struct Client
*target_p
;
605 struct Channel
*chptr
;
606 struct membership
*msptr
;
607 hook_data_client hclientinfo
;
608 hook_data_channel hchaninfo
;
615 hclientinfo
.client
= hchaninfo
.client
= client_p
;
617 RB_DLINK_FOREACH(ptr
, global_client_list
.head
)
619 target_p
= ptr
->data
;
621 if(!IsPerson(target_p
))
624 if(MyClient(target_p
->from
) && target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
627 send_umode(NULL
, target_p
, 0, ubuf
);
634 if(IsCapable(client_p
, CAP_EUID
))
635 sendto_one(client_p
, ":%s EUID %s %d %ld %s %s %s %s %s %s %s :%s",
636 target_p
->servptr
->id
, target_p
->name
,
637 target_p
->hopcount
+ 1,
638 (long) target_p
->tsinfo
, ubuf
,
639 target_p
->username
, target_p
->host
,
640 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
642 IsDynSpoof(target_p
) ? target_p
->orighost
: "*",
643 EmptyString(target_p
->user
->suser
) ? "*" : target_p
->user
->suser
,
646 sendto_one(client_p
, ":%s UID %s %d %ld %s %s %s %s %s :%s",
647 target_p
->servptr
->id
, target_p
->name
,
648 target_p
->hopcount
+ 1,
649 (long) target_p
->tsinfo
, ubuf
,
650 target_p
->username
, target_p
->host
,
651 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
652 target_p
->id
, target_p
->info
);
654 if(!EmptyString(target_p
->certfp
))
655 sendto_one(client_p
, ":%s ENCAP * CERTFP :%s",
656 use_id(target_p
), target_p
->certfp
);
658 if(!IsCapable(client_p
, CAP_EUID
))
660 if(IsDynSpoof(target_p
))
661 sendto_one(client_p
, ":%s ENCAP * REALHOST %s",
662 use_id(target_p
), target_p
->orighost
);
663 if(!EmptyString(target_p
->user
->suser
))
664 sendto_one(client_p
, ":%s ENCAP * LOGIN %s",
665 use_id(target_p
), target_p
->user
->suser
);
668 if(ConfigFileEntry
.burst_away
&& !EmptyString(target_p
->user
->away
))
669 sendto_one(client_p
, ":%s AWAY :%s",
671 target_p
->user
->away
);
673 if(IsOper(target_p
) && target_p
->user
&& target_p
->user
->opername
&& target_p
->user
->privset
)
674 sendto_one(client_p
, ":%s OPER %s %s",
676 target_p
->user
->opername
,
677 target_p
->user
->privset
->name
);
679 hclientinfo
.target
= target_p
;
680 call_hook(h_burst_client
, &hclientinfo
);
683 RB_DLINK_FOREACH(ptr
, global_channel_list
.head
)
687 if(*chptr
->chname
!= '#')
690 cur_len
= mlen
= sprintf(buf
, ":%s SJOIN %ld %s %s :", me
.id
,
691 (long) chptr
->channelts
, chptr
->chname
,
692 channel_modes(chptr
, client_p
));
696 RB_DLINK_FOREACH(uptr
, chptr
->members
.head
)
700 tlen
= strlen(use_id(msptr
->client_p
)) + 1;
706 if(cur_len
+ tlen
>= BUFSIZE
- 3)
709 sendto_one(client_p
, "%s", buf
);
714 sprintf(t
, "%s%s ", find_channel_status(msptr
, 1),
715 use_id(msptr
->client_p
));
721 if (rb_dlink_list_length(&chptr
->members
) > 0)
723 /* remove trailing space */
726 sendto_one(client_p
, "%s", buf
);
728 if(rb_dlink_list_length(&chptr
->banlist
) > 0)
729 burst_modes_TS6(client_p
, chptr
, &chptr
->banlist
, 'b');
731 if(IsCapable(client_p
, CAP_EX
) &&
732 rb_dlink_list_length(&chptr
->exceptlist
) > 0)
733 burst_modes_TS6(client_p
, chptr
, &chptr
->exceptlist
, 'e');
735 if(IsCapable(client_p
, CAP_IE
) &&
736 rb_dlink_list_length(&chptr
->invexlist
) > 0)
737 burst_modes_TS6(client_p
, chptr
, &chptr
->invexlist
, 'I');
739 if(rb_dlink_list_length(&chptr
->quietlist
) > 0)
740 burst_modes_TS6(client_p
, chptr
, &chptr
->quietlist
, 'q');
742 if(IsCapable(client_p
, CAP_TB
) && chptr
->topic
!= NULL
)
743 sendto_one(client_p
, ":%s TB %s %ld %s%s:%s",
744 me
.id
, chptr
->chname
, (long) chptr
->topic_time
,
745 ConfigChannel
.burst_topicwho
? chptr
->topic_info
: "",
746 ConfigChannel
.burst_topicwho
? " " : "",
749 if(IsCapable(client_p
, CAP_MLOCK
))
750 sendto_one(client_p
, ":%s MLOCK %ld %s :%s",
751 me
.id
, (long) chptr
->channelts
, chptr
->chname
,
752 EmptyString(chptr
->mode_lock
) ? "" : chptr
->mode_lock
);
754 hchaninfo
.chptr
= chptr
;
755 call_hook(h_burst_channel
, &hchaninfo
);
758 hclientinfo
.target
= NULL
;
759 call_hook(h_burst_finished
, &hclientinfo
);
763 * show_capabilities - show current server capabilities
765 * inputs - pointer to an struct Client
766 * output - pointer to static string
767 * side effects - build up string representing capabilities of server listed
770 show_capabilities(struct Client
*target_p
)
772 static char msgbuf
[BUFSIZE
];
777 rb_strlcpy(msgbuf
, " TS6", sizeof(msgbuf
));
780 rb_strlcat(msgbuf
, " SSL", sizeof(msgbuf
));
782 if(!IsServer(target_p
) || !target_p
->serv
->caps
) /* short circuit if no caps */
785 rb_strlcat(msgbuf
, " ", sizeof(msgbuf
));
786 rb_strlcat(msgbuf
, capability_index_list(serv_capindex
, target_p
->serv
->caps
), sizeof(msgbuf
));
794 * inputs - pointer to a struct Client
799 server_estab(struct Client
*client_p
)
801 struct Client
*target_p
;
802 struct server_conf
*server_p
;
803 hook_data_client hdata
;
806 char note
[HOSTLEN
+ 15];
808 s_assert(NULL
!= client_p
);
812 host
= client_p
->name
;
814 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
816 /* This shouldn't happen, better tell the ops... -A1kmm */
817 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
,
818 "Warning: Lost connect{} block for server %s!", host
);
819 return exit_client(client_p
, client_p
, client_p
, "Lost connect{} block!");
822 /* We shouldn't have to check this, it should already done before
823 * server_estab is called. -A1kmm
825 if(client_p
->localClient
->passwd
)
827 memset(client_p
->localClient
->passwd
, 0, strlen(client_p
->localClient
->passwd
));
828 rb_free(client_p
->localClient
->passwd
);
829 client_p
->localClient
->passwd
= NULL
;
832 /* Its got identd , since its a server */
835 if(IsUnknown(client_p
))
837 /* the server may be linking based on certificate fingerprint now. --nenolod */
838 sendto_one(client_p
, "PASS %s TS %d :%s",
839 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
841 /* pass info to new server */
842 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
843 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
844 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
846 sendto_one(client_p
, "SERVER %s 1 :%s%s",
848 ConfigServerHide
.hidden
? "(H) " : "",
849 (me
.info
[0]) ? (me
.info
) : "IRCers United");
852 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
853 ilog_error("rb_set_buffers failed for server");
855 /* Enable compression now */
856 if(IsCapable(client_p
, CAP_ZIP
))
858 start_zlib_session(client_p
);
861 client_p
->servptr
= &me
;
863 if(IsAnyDead(client_p
))
864 return CLIENT_EXITED
;
866 sendto_one(client_p
, "SVINFO %d %d 0 :%ld", TS_CURRENT
, TS_MIN
, (long int)rb_current_time());
868 rb_dlinkAdd(client_p
, &client_p
->lnode
, &me
.serv
->servers
);
869 rb_dlinkMoveNode(&client_p
->localClient
->tnode
, &unknown_list
, &serv_list
);
870 rb_dlinkAddTailAlloc(client_p
, &global_serv_list
);
873 add_to_id_hash(client_p
->id
, client_p
);
875 add_to_client_hash(client_p
->name
, client_p
);
876 /* doesnt duplicate client_p->serv if allocated this struct already */
877 make_server(client_p
);
880 client_p
->serv
->caps
= client_p
->localClient
->caps
;
882 if(client_p
->localClient
->fullcaps
)
884 client_p
->serv
->fullcaps
= rb_strdup(client_p
->localClient
->fullcaps
);
885 rb_free(client_p
->localClient
->fullcaps
);
886 client_p
->localClient
->fullcaps
= NULL
;
889 client_p
->serv
->nameinfo
= scache_connect(client_p
->name
, client_p
->info
, IsHidden(client_p
));
890 client_p
->localClient
->firsttime
= rb_current_time();
891 /* fixing eob timings.. -gnp */
893 if((rb_dlink_list_length(&lclient_list
) + rb_dlink_list_length(&serv_list
)) >
894 (unsigned long)MaxConnectionCount
)
895 MaxConnectionCount
= rb_dlink_list_length(&lclient_list
) +
896 rb_dlink_list_length(&serv_list
);
898 /* Show the real host/IP to admins */
899 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
900 "Link with %s established: (%s) link",
902 show_capabilities(client_p
));
904 ilog(L_SERVER
, "Link with %s established: (%s) link",
905 log_client_name(client_p
, SHOW_IP
), show_capabilities(client_p
));
908 hdata
.target
= client_p
;
909 call_hook(h_server_introduced
, &hdata
);
911 snprintf(note
, sizeof(note
), "Server: %s", client_p
->name
);
912 rb_note(client_p
->localClient
->F
, note
);
915 ** Old sendto_serv_but_one() call removed because we now
916 ** need to send different names to different servers
917 ** (domain name matching) Send new server to other servers.
919 RB_DLINK_FOREACH(ptr
, serv_list
.head
)
921 target_p
= ptr
->data
;
923 if(target_p
== client_p
)
926 if(target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
929 if(has_id(target_p
) && has_id(client_p
))
931 sendto_one(target_p
, ":%s SID %s 2 %s :%s%s",
932 me
.id
, client_p
->name
, client_p
->id
,
933 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
935 if(!EmptyString(client_p
->serv
->fullcaps
))
936 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
937 client_p
->id
, client_p
->serv
->fullcaps
);
941 sendto_one(target_p
, ":%s SERVER %s 2 :%s%s",
942 me
.name
, client_p
->name
,
943 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
945 if(!EmptyString(client_p
->serv
->fullcaps
))
946 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
947 client_p
->name
, client_p
->serv
->fullcaps
);
952 ** Pass on my client information to the new server
954 ** First, pass only servers (idea is that if the link gets
955 ** cancelled beacause the server was already there,
956 ** there are no NICK's to be cancelled...). Of course,
957 ** if cancellation occurs, all this info is sent anyway,
958 ** and I guess the link dies when a read is attempted...? --msa
960 ** Note: Link cancellation to occur at this point means
961 ** that at least two servers from my fragment are building
962 ** up connection this other fragment at the same time, it's
963 ** a race condition, not the normal way of operation...
965 ** ALSO NOTE: using the get_client_name for server names--
966 ** see previous *WARNING*!!! (Also, original inpath
969 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
971 target_p
= ptr
->data
;
973 /* target_p->from == target_p for target_p == client_p */
974 if(IsMe(target_p
) || target_p
->from
== client_p
)
977 /* don't distribute downstream leaves of servers that are no-export */
978 if(MyClient(target_p
->from
) && target_p
->from
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->from
->localClient
->att_sconf
))
981 /* presumption, if target has an id, so does its uplink */
982 if(has_id(client_p
) && has_id(target_p
))
983 sendto_one(client_p
, ":%s SID %s %d %s :%s%s",
984 target_p
->servptr
->id
, target_p
->name
,
985 target_p
->hopcount
+ 1, target_p
->id
,
986 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
988 sendto_one(client_p
, ":%s SERVER %s %d :%s%s",
989 target_p
->servptr
->name
,
990 target_p
->name
, target_p
->hopcount
+ 1,
991 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
993 if(!EmptyString(target_p
->serv
->fullcaps
))
994 sendto_one(client_p
, ":%s ENCAP * GCAP :%s",
995 get_id(target_p
, client_p
),
996 target_p
->serv
->fullcaps
);
999 if(IsCapable(client_p
, CAP_BAN
))
1000 burst_ban(client_p
);
1002 burst_TS6(client_p
);
1004 /* Always send a PING after connect burst is done */
1005 sendto_one(client_p
, "PING :%s", get_id(&me
, client_p
));
1007 free_pre_client(client_p
);
1009 send_pop_queue(client_p
);
1015 * New server connection code
1016 * Based upon the stuff floating about in s_bsd.c
1021 * serv_connect() - initiate a server connection
1023 * inputs - pointer to conf
1024 * - pointer to client doing the connet
1028 * This code initiates a connection to a server. It first checks to make
1029 * sure the given server exists. If this is the case, it creates a socket,
1030 * creates a client, saves the socket information in the client, and
1031 * initiates a connection to the server through rb_connect_tcp(). The
1032 * completion of this goes through serv_completed_connection().
1034 * We return 1 if the connection is attempted, since we don't know whether
1035 * it suceeded or not, and 0 if it fails in here somewhere.
1038 serv_connect(struct server_conf
*server_p
, struct Client
*by
)
1040 struct Client
*client_p
;
1041 struct sockaddr_storage sa_connect
[2];
1042 struct sockaddr_storage sa_bind
[ARRAY_SIZE(sa_connect
)];
1043 char note
[HOSTLEN
+ 10];
1046 s_assert(server_p
!= NULL
);
1047 if(server_p
== NULL
)
1050 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1051 SET_SS_FAMILY(&sa_connect
[i
], AF_UNSPEC
);
1052 SET_SS_FAMILY(&sa_bind
[i
], AF_UNSPEC
);
1055 if(server_p
->aftype
== AF_UNSPEC
1056 && GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
1057 && GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1061 sa_connect
[0] = server_p
->connect4
;
1062 sa_connect
[1] = server_p
->connect6
;
1063 sa_bind
[0] = server_p
->bind4
;
1064 sa_bind
[1] = server_p
->bind6
;
1068 sa_connect
[0] = server_p
->connect6
;
1069 sa_connect
[1] = server_p
->connect4
;
1070 sa_bind
[0] = server_p
->bind6
;
1071 sa_bind
[1] = server_p
->bind4
;
1074 else if(server_p
->aftype
== AF_INET
|| GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
)
1076 sa_connect
[0] = server_p
->connect4
;
1077 sa_bind
[0] = server_p
->bind4
;
1079 else if(server_p
->aftype
== AF_INET6
|| GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1081 sa_connect
[0] = server_p
->connect6
;
1082 sa_bind
[0] = server_p
->bind6
;
1087 if (ServerConfSCTP(server_p
) && GET_SS_FAMILY(&sa_connect
[1]) != AF_UNSPEC
) {
1088 char buf2
[HOSTLEN
+ 1];
1092 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1093 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[1], buf2
, sizeof(buf2
));
1094 ilog(L_SERVER
, "Connect to *[%s] @%s&%s", server_p
->name
, buf
, buf2
);
1100 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1101 ilog(L_SERVER
, "Connect to *[%s] @%s", server_p
->name
, buf
);
1105 * Make sure this server isn't already connected
1107 if((client_p
= find_server(NULL
, server_p
->name
)))
1109 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
1110 "Server %s already present from %s",
1111 server_p
->name
, client_p
->name
);
1112 if(by
&& IsPerson(by
) && !MyClient(by
))
1113 sendto_one_notice(by
, ":Server %s already present from %s",
1114 server_p
->name
, client_p
->name
);
1118 if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
1119 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
1120 "No more connections allowed in class \"%s\" for server %s",
1121 server_p
->class->class_name
, server_p
->name
);
1122 if(by
&& IsPerson(by
) && !MyClient(by
))
1123 sendto_one_notice(by
, ":No more connections allowed in class \"%s\" for server %s",
1124 server_p
->class->class_name
, server_p
->name
);
1128 /* create a socket for the server connection */
1129 if(GET_SS_FAMILY(&sa_connect
[0]) == AF_UNSPEC
) {
1130 ilog_error("unspecified socket address family");
1133 } else if (ServerConfSCTP(server_p
)) {
1134 if ((F
= rb_socket(AF_INET6
, SOCK_STREAM
, IPPROTO_SCTP
, NULL
)) == NULL
) {
1135 ilog_error("opening a stream socket");
1139 } else if ((F
= rb_socket(GET_SS_FAMILY(&sa_connect
[0]), SOCK_STREAM
, IPPROTO_TCP
, NULL
)) == NULL
) {
1140 ilog_error("opening a stream socket");
1144 /* servernames are always guaranteed under HOSTLEN chars */
1145 snprintf(note
, sizeof(note
), "Server: %s", server_p
->name
);
1148 /* Create a local client */
1149 client_p
= make_client(NULL
);
1151 /* Copy in the server, hostname, fd */
1152 rb_strlcpy(client_p
->name
, server_p
->name
, sizeof(client_p
->name
));
1153 if(server_p
->connect_host
)
1154 rb_strlcpy(client_p
->host
, server_p
->connect_host
, sizeof(client_p
->host
));
1156 rb_strlcpy(client_p
->host
, buf
, sizeof(client_p
->host
));
1157 rb_strlcpy(client_p
->sockhost
, buf
, sizeof(client_p
->sockhost
));
1158 client_p
->localClient
->F
= F
;
1159 /* shove the port number into the sockaddr */
1160 SET_SS_PORT(&sa_connect
[0], htons(server_p
->port
));
1161 SET_SS_PORT(&sa_connect
[1], htons(server_p
->port
));
1164 * Set up the initial server evilness, ripped straight from
1165 * connect_server(), so don't blame me for it being evil.
1169 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
1171 ilog_error("setting the buffer size for a server connection");
1175 * Attach config entries to client here rather than in
1176 * serv_connect_callback(). This to avoid null pointer references.
1178 attach_server_conf(client_p
, server_p
);
1181 * at this point we have a connection in progress and C/N lines
1182 * attached to the client, the socket info should be saved in the
1183 * client and it should either be resolved or have a valid address.
1185 * The socket has been connected or connect is in progress.
1187 make_server(client_p
);
1188 if(by
&& IsClient(by
))
1189 rb_strlcpy(client_p
->serv
->by
, by
->name
, sizeof(client_p
->serv
->by
));
1191 strcpy(client_p
->serv
->by
, "AutoConn.");
1193 SetConnecting(client_p
);
1194 rb_dlinkAddTail(client_p
, &client_p
->node
, &global_client_list
);
1196 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1197 if (GET_SS_FAMILY(&sa_bind
[i
]) == AF_UNSPEC
) {
1198 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind4
))
1199 sa_bind
[i
] = ServerInfo
.bind4
;
1200 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind6
))
1201 sa_bind
[i
] = ServerInfo
.bind6
;
1206 if (ServerConfSCTP(server_p
)) {
1207 rb_connect_sctp(client_p
->localClient
->F
,
1208 sa_connect
, ARRAY_SIZE(sa_connect
), sa_bind
, ARRAY_SIZE(sa_bind
),
1209 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1210 client_p
, ConfigFileEntry
.connect_timeout
);
1215 rb_connect_tcp(client_p
->localClient
->F
,
1216 (struct sockaddr
*)&sa_connect
[0],
1217 GET_SS_FAMILY(&sa_bind
[0]) == AF_UNSPEC
? NULL
: (struct sockaddr
*)&sa_bind
[0],
1218 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1219 client_p
, ConfigFileEntry
.connect_timeout
);
1225 serv_connect_ssl_callback(rb_fde_t
*F
, int status
, void *data
)
1227 struct Client
*client_p
= data
;
1229 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1232 /* Print error message, just like non-SSL. */
1233 serv_connect_callback(F
, status
, data
);
1236 if(rb_socketpair(AF_UNIX
, SOCK_STREAM
, 0, &xF
[0], &xF
[1], "Outgoing ssld connection") == -1)
1238 ilog_error("rb_socketpair failed for server");
1239 serv_connect_callback(F
, RB_ERROR
, data
);
1243 client_p
->localClient
->F
= xF
[0];
1244 client_p
->localClient
->ssl_callback
= serv_connect_ssl_open_callback
;
1246 client_p
->localClient
->ssl_ctl
= start_ssld_connect(F
, xF
[1], connid_get(client_p
));
1247 if(!client_p
->localClient
->ssl_ctl
)
1249 serv_connect_callback(client_p
->localClient
->F
, RB_ERROR
, data
);
1256 serv_connect_ssl_open_callback(struct Client
*client_p
, int status
)
1258 serv_connect_callback(client_p
->localClient
->F
, status
, client_p
);
1259 return 1; /* suppress default exit_client handler for status != RB_OK */
1263 * serv_connect_callback() - complete a server connection.
1265 * This routine is called after the server connection attempt has
1266 * completed. If unsucessful, an error is sent to ops and the client
1267 * is closed. If sucessful, it goes through the initialisation/check
1268 * procedures, the capabilities are sent, and the socket is then
1269 * marked for reading.
1272 serv_connect_callback(rb_fde_t
*F
, int status
, void *data
)
1274 struct Client
*client_p
= data
;
1275 struct server_conf
*server_p
;
1278 /* First, make sure its a real client! */
1279 s_assert(client_p
!= NULL
);
1280 s_assert(client_p
->localClient
->F
== F
);
1282 if(client_p
== NULL
)
1285 /* while we were waiting for the callback, its possible this already
1288 if(find_server(NULL
, client_p
->name
) != NULL
)
1290 exit_client(client_p
, client_p
, &me
, "Server Exists");
1294 if(client_p
->localClient
->ssl_ctl
== NULL
)
1295 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1297 /* Check the status */
1300 /* COMM_ERR_TIMEOUT wont have an errno associated with it,
1301 * the others will.. --fl
1303 if(status
== RB_ERR_TIMEOUT
|| status
== RB_ERROR_SSL
)
1305 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
,
1306 "Error connecting to %s[%s]: %s",
1310 ilog(L_SERVER
, "Error connecting to %s[%s]: %s",
1311 client_p
->name
, client_p
->sockhost
,
1316 errstr
= strerror(rb_get_sockerr(F
));
1317 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
,
1318 "Error connecting to %s[%s]: %s (%s)",
1321 rb_errstr(status
), errstr
);
1322 ilog(L_SERVER
, "Error connecting to %s[%s]: %s (%s)",
1323 client_p
->name
, client_p
->sockhost
,
1324 rb_errstr(status
), errstr
);
1327 exit_client(client_p
, client_p
, &me
, rb_errstr(status
));
1331 /* COMM_OK, so continue the connection procedure */
1332 /* Get the C/N lines */
1333 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
1335 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
, "Lost connect{} block for %s",
1337 exit_client(client_p
, client_p
, &me
, "Lost connect{} block");
1341 if(server_p
->certfp
&& (!client_p
->certfp
|| rb_strcasecmp(server_p
->certfp
, client_p
->certfp
) != 0))
1343 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
,
1344 "Connection to %s has invalid certificate fingerprint %s",
1345 client_p
->name
, client_p
->certfp
);
1346 ilog(L_SERVER
, "Access denied, invalid certificate fingerprint %s from %s",
1347 client_p
->certfp
, log_client_name(client_p
, SHOW_IP
));
1349 exit_client(client_p
, client_p
, &me
, "Invalid fingerprint.");
1353 /* Next, send the initial handshake */
1354 SetHandshake(client_p
);
1356 /* the server may be linking based on certificate fingerprint now. --nenolod */
1357 sendto_one(client_p
, "PASS %s TS %d :%s",
1358 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
1360 /* pass my info to the new server */
1361 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
1362 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
1363 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
1365 sendto_one(client_p
, "SERVER %s 1 :%s%s",
1367 ConfigServerHide
.hidden
? "(H) " : "", me
.info
);
1370 * If we've been marked dead because a send failed, just exit
1371 * here now and save everyone the trouble of us ever existing.
1373 if(IsAnyDead(client_p
))
1375 sendto_realops_snomask(SNO_GENERAL
, is_remote_connect(client_p
) ? L_NETWIDE
: L_ALL
,
1376 "%s went dead during handshake", client_p
->name
);
1377 exit_client(client_p
, client_p
, &me
, "Went dead during handshake");
1381 /* don't move to serv_list yet -- we haven't sent a burst! */
1383 /* If we get here, we're ok, so lets start reading some data */
1384 read_packet(F
, client_p
);