2 * ircd-ratbox: A slightly useful ircd.
3 * s_serv.c: Server related functions.
5 * Copyright (C) 1990 Jarkko Oikarinen and University of Oulu, Co Center
6 * Copyright (C) 1996-2002 Hybrid Development Team
7 * Copyright (C) 2002-2005 ircd-ratbox development team
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
19 * You should have received a copy of the GNU General Public License
20 * along with this program; if not, write to the Free Software
21 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
28 #include <openssl/rsa.h>
37 #include "ircd_defs.h"
41 #include "s_newconf.h"
48 #include "channel.h" /* chcap_usage_counts stuff... */
53 #include "capability.h"
56 int MaxConnectionCount
= 1;
57 int MaxClientCount
= 1;
58 int refresh_user_links
= 0;
60 static char buf
[BUFSIZE
];
63 * list of recognized server capabilities. "TS" is not on the list
64 * because all servers that we talk to already do TS, and the kludged
65 * extra argument to "PASS" takes care of checking that. -orabidoo
67 struct CapabilityIndex
*serv_capindex
= NULL
;
68 struct CapabilityIndex
*cli_capindex
= NULL
;
77 unsigned int CAP_KNOCK
;
79 unsigned int CAP_UNKLN
;
80 unsigned int CAP_CLUSTER
;
81 unsigned int CAP_ENCAP
;
83 unsigned int CAP_SERVICE
;
84 unsigned int CAP_RSFNC
;
85 unsigned int CAP_SAVE
;
86 unsigned int CAP_EUID
;
87 unsigned int CAP_EOPMOD
;
89 unsigned int CAP_MLOCK
;
91 unsigned int CLICAP_MULTI_PREFIX
;
92 unsigned int CLICAP_ACCOUNT_NOTIFY
;
93 unsigned int CLICAP_EXTENDED_JOIN
;
94 unsigned int CLICAP_AWAY_NOTIFY
;
95 unsigned int CLICAP_USERHOST_IN_NAMES
;
96 unsigned int CLICAP_CAP_NOTIFY
;
97 unsigned int CLICAP_CHGHOST
;
98 unsigned int CLICAP_ECHO_MESSAGE
;
101 * initialize our builtin capability table. --nenolod
104 init_builtin_capabs(void)
106 static struct ClientCapability high_priority
= {.flags
= CLICAP_FLAGS_PRIORITY
};
107 serv_capindex
= capability_index_create("server capabilities");
109 /* These two are not set via CAPAB/GCAP keywords. */
110 CAP_CAP
= capability_put_anonymous(serv_capindex
);
111 CAP_TS6
= capability_put_anonymous(serv_capindex
);
113 CAP_QS
= capability_put(serv_capindex
, "QS", NULL
);
114 CAP_EX
= capability_put(serv_capindex
, "EX", NULL
);
115 CAP_CHW
= capability_put(serv_capindex
, "CHW", NULL
);
116 CAP_IE
= capability_put(serv_capindex
, "IE", NULL
);
117 CAP_KLN
= capability_put(serv_capindex
, "KLN", NULL
);
118 CAP_KNOCK
= capability_put(serv_capindex
, "KNOCK", NULL
);
119 CAP_ZIP
= capability_put(serv_capindex
, "ZIP", NULL
);
120 CAP_TB
= capability_put(serv_capindex
, "TB", NULL
);
121 CAP_UNKLN
= capability_put(serv_capindex
, "UNKLN", NULL
);
122 CAP_CLUSTER
= capability_put(serv_capindex
, "CLUSTER", NULL
);
123 CAP_ENCAP
= capability_put(serv_capindex
, "ENCAP", NULL
);
124 CAP_SERVICE
= capability_put(serv_capindex
, "SERVICES", NULL
);
125 CAP_RSFNC
= capability_put(serv_capindex
, "RSFNC", NULL
);
126 CAP_SAVE
= capability_put(serv_capindex
, "SAVE", NULL
);
127 CAP_EUID
= capability_put(serv_capindex
, "EUID", NULL
);
128 CAP_EOPMOD
= capability_put(serv_capindex
, "EOPMOD", NULL
);
129 CAP_BAN
= capability_put(serv_capindex
, "BAN", NULL
);
130 CAP_MLOCK
= capability_put(serv_capindex
, "MLOCK", NULL
);
132 capability_require(serv_capindex
, "QS");
133 capability_require(serv_capindex
, "EX");
134 capability_require(serv_capindex
, "IE");
135 capability_require(serv_capindex
, "ENCAP");
137 cli_capindex
= capability_index_create("client capabilities");
139 CLICAP_MULTI_PREFIX
= capability_put(cli_capindex
, "multi-prefix", &high_priority
);
140 CLICAP_ACCOUNT_NOTIFY
= capability_put(cli_capindex
, "account-notify", &high_priority
);
141 CLICAP_EXTENDED_JOIN
= capability_put(cli_capindex
, "extended-join", &high_priority
);
142 CLICAP_AWAY_NOTIFY
= capability_put(cli_capindex
, "away-notify", &high_priority
);
143 CLICAP_USERHOST_IN_NAMES
= capability_put(cli_capindex
, "userhost-in-names", &high_priority
);
144 CLICAP_CAP_NOTIFY
= capability_put(cli_capindex
, "cap-notify", NULL
);
145 CLICAP_CHGHOST
= capability_put(cli_capindex
, "chghost", &high_priority
);
146 CLICAP_ECHO_MESSAGE
= capability_put(cli_capindex
, "echo-message", NULL
);
149 static CNCB serv_connect_callback
;
150 static CNCB serv_connect_ssl_callback
;
151 static SSL_OPEN_CB serv_connect_ssl_open_callback
;
154 * hunt_server - Do the basic thing in delivering the message (command)
155 * across the relays to the specific server (server) for
158 * Note: The command is a format string and *MUST* be
159 * of prefixed style (e.g. ":%s COMMAND %s ...").
160 * Command can have only max 8 parameters.
162 * server parv[server] is the parameter identifying the
166 * parv[server] is replaced with the pointer to the
167 * real servername from the matched client (I'm lazy
170 * returns: (see #defines)
173 hunt_server(struct Client
*client_p
, struct Client
*source_p
,
174 const char *command
, int server
, int parc
, const char *parv
[])
176 struct Client
*target_p
;
183 * Assume it's me, if no server
185 if(parc
<= server
|| EmptyString(parv
[server
]) ||
186 match(parv
[server
], me
.name
) || (strcmp(parv
[server
], me
.id
) == 0))
187 return (HUNTED_ISME
);
189 new = LOCAL_COPY(parv
[server
]);
192 * These are to pickup matches that would cause the following
193 * message to go in the wrong direction while doing quick fast
194 * non-matching lookups.
196 if(MyClient(source_p
))
197 target_p
= find_named_client(new);
199 target_p
= find_client(new);
202 if(target_p
->from
== source_p
->from
&& !MyConnect(target_p
))
206 wilds
= (strchr(new, '?') || strchr(new, '*'));
209 * Again, if there are no wild cards involved in the server
210 * name, use the hash lookup
212 if(!target_p
&& wilds
)
214 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
216 if(match(new, ((struct Client
*) (ptr
->data
))->name
))
218 target_p
= ptr
->data
;
224 if(target_p
&& !IsRegistered(target_p
))
229 if(IsMe(target_p
) || MyClient(target_p
))
233 parv
[server
] = get_id(target_p
, target_p
);
235 sendto_one(target_p
, command
, get_id(source_p
, target_p
),
236 parv
[1], parv
[2], parv
[3], parv
[4], parv
[5], parv
[6], parv
[7], parv
[8]);
238 return (HUNTED_PASS
);
241 if(MyClient(source_p
) || !IsDigit(parv
[server
][0]))
242 sendto_one_numeric(source_p
, ERR_NOSUCHSERVER
,
243 form_str(ERR_NOSUCHSERVER
), parv
[server
]);
244 return (HUNTED_NOSUCH
);
248 * try_connections - scan through configuration and try new connections.
249 * Returns the calendar time when the next call to this
250 * function should be made latest. (No harm done if this
251 * is called earlier or later...)
254 try_connections(void *unused
)
256 struct Client
*client_p
;
257 struct server_conf
*server_p
= NULL
;
258 struct server_conf
*tmp_p
;
261 bool connecting
= false;
265 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
269 if(ServerConfIllegal(tmp_p
) || !ServerConfAutoconn(tmp_p
))
272 /* don't allow ssl connections if ssl isn't setup */
273 if(ServerConfSSL(tmp_p
) && (!ircd_ssl_ok
|| !get_ssld_count()))
276 cltmp
= tmp_p
->class;
279 * Skip this entry if the use of it is still on hold until
280 * future. Otherwise handle this entry (and set it on hold
281 * until next time). Will reset only hold times, if already
282 * made one successfull connection... [this algorithm is
283 * a bit fuzzy... -- msa >;) ]
285 if(tmp_p
->hold
> rb_current_time())
287 if(next
> tmp_p
->hold
|| next
== 0)
292 confrq
= get_con_freq(cltmp
);
293 tmp_p
->hold
= rb_current_time() + confrq
;
296 * Found a CONNECT config with port specified, scan clients
297 * and see if this server is already connected?
299 client_p
= find_server(NULL
, tmp_p
->name
);
301 if(!client_p
&& (CurrUsers(cltmp
) < MaxAutoconn(cltmp
)) && !connecting
)
305 /* We connect only one at time... */
309 if((next
> tmp_p
->hold
) || (next
== 0))
313 /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
314 if(GlobalSetOptions
.autoconn
== 0)
320 /* move this connect entry to end.. */
321 rb_dlinkDelete(&server_p
->node
, &server_conf_list
);
322 rb_dlinkAddTail(server_p
, &server_p
->node
, &server_conf_list
);
325 * We used to only print this if serv_connect() actually
326 * suceeded, but since rb_tcp_connect() can call the callback
327 * immediately if there is an error, we were getting error messages
328 * in the wrong order. SO, we just print out the activated line,
329 * and let serv_connect() / serv_connect_callback() print an
330 * error afterwards if it fails.
333 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
334 "Connection to %s activated",
337 serv_connect(server_p
, 0);
341 check_server(const char *name
, struct Client
*client_p
)
343 struct server_conf
*server_p
= NULL
;
344 struct server_conf
*tmp_p
;
348 bool name_matched
= false;
349 bool host_matched
= false;
350 bool certfp_failed
= false;
352 s_assert(NULL
!= client_p
);
356 if(!(client_p
->localClient
->passwd
))
359 if(strlen(name
) > HOSTLEN
)
362 RB_DLINK_FOREACH(ptr
, server_conf_list
.head
)
364 struct rb_sockaddr_storage client_addr
;
368 if(ServerConfIllegal(tmp_p
))
371 if(!match(tmp_p
->name
, name
))
376 if(rb_inet_pton_sock(client_p
->sockhost
, &client_addr
) <= 0)
377 SET_SS_FAMILY(&client_addr
, AF_UNSPEC
);
379 if((tmp_p
->connect_host
&& match(tmp_p
->connect_host
, client_p
->host
))
380 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect4
)
381 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
382 (struct sockaddr
*)&tmp_p
->connect4
, 32))
383 || (GET_SS_FAMILY(&client_addr
) == GET_SS_FAMILY(&tmp_p
->connect6
)
384 && comp_with_mask_sock((struct sockaddr
*)&client_addr
,
385 (struct sockaddr
*)&tmp_p
->connect6
, 128))
392 if(ServerConfEncrypted(tmp_p
))
394 encr
= rb_crypt(client_p
->localClient
->passwd
,
396 if(encr
!= NULL
&& !strcmp(tmp_p
->passwd
, encr
))
404 else if(strcmp(tmp_p
->passwd
, client_p
->localClient
->passwd
))
410 if(!client_p
->certfp
|| rb_strcasecmp(tmp_p
->certfp
, client_p
->certfp
) != 0) {
411 certfp_failed
= true;
423 /* return the most specific error */
426 else if(host_matched
)
428 else if(name_matched
)
434 if(ServerConfSSL(server_p
) && client_p
->localClient
->ssl_ctl
== NULL
)
439 if (client_p
->localClient
->att_sconf
&& client_p
->localClient
->att_sconf
->class == server_p
->class) {
440 /* this is an outgoing connection that is already attached to the correct class */
441 } else if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
444 attach_server_conf(client_p
, server_p
);
446 /* clear ZIP/TB if they support but we dont want them */
448 if(!ServerConfCompressed(server_p
))
450 ClearCap(client_p
, CAP_ZIP
);
452 if(!ServerConfTb(server_p
))
453 ClearCap(client_p
, CAP_TB
);
461 * inputs - Client pointer to send to
462 * - int flag of capabilities that this server has
464 * side effects - send the CAPAB line to a server -orabidoo
467 send_capabilities(struct Client
*client_p
, unsigned int cap_can_send
)
469 sendto_one(client_p
, "CAPAB :%s", capability_index_list(serv_capindex
, cap_can_send
));
473 burst_ban(struct Client
*client_p
)
475 struct ConfItem
*aconf
;
477 rb_dictionary_iter state
;
479 RB_DICTIONARY_FOREACH(aconf
, &state
, prop_bans_dict
)
481 /* Skip expired stuff. */
482 if(aconf
->lifetime
< rb_current_time())
484 switch(aconf
->status
& ~CONF_ILLEGAL
)
486 case CONF_KILL
: type
= "K"; break;
487 case CONF_DLINE
: type
= "D"; break;
488 case CONF_XLINE
: type
= "X"; break;
489 case CONF_RESV_NICK
: type
= "R"; break;
490 case CONF_RESV_CHANNEL
: type
= "R"; break;
494 sendto_one(client_p
, ":%s BAN %s %s %s %lu %d %d %s :%s%s%s",
497 aconf
->user
? aconf
->user
: "*", aconf
->host
,
498 (unsigned long)aconf
->created
,
499 (int)(aconf
->hold
- aconf
->created
),
500 (int)(aconf
->lifetime
- aconf
->created
),
503 aconf
->spasswd
? "|" : "",
504 aconf
->spasswd
? aconf
->spasswd
: "");
510 * input - client to burst to, channel name, list to burst, mode flag
512 * side effects - client is sent a list of +b, +e, or +I modes
515 burst_modes_TS6(struct Client
*client_p
, struct Channel
*chptr
,
516 rb_dlink_list
*list
, char flag
)
521 send_multiline_init(client_p
, " ", ":%s BMASK %ld %s %c :",
523 (long)chptr
->channelts
,
527 RB_DLINK_FOREACH_PREV(ptr
, list
->tail
)
532 send_multiline_item(client_p
, "%s$%s",
536 send_multiline_item(client_p
, "%s", banptr
->banstr
);
539 send_multiline_fini(client_p
, NULL
);
545 * inputs - client (server) to send nick towards
546 * - client to send nick for
548 * side effects - NICK message is sent towards given client_p
551 burst_TS6(struct Client
*client_p
)
554 struct Client
*target_p
;
555 struct Channel
*chptr
;
556 struct membership
*msptr
;
557 hook_data_client hclientinfo
;
558 hook_data_channel hchaninfo
;
565 hclientinfo
.client
= hchaninfo
.client
= client_p
;
567 RB_DLINK_FOREACH(ptr
, global_client_list
.head
)
569 target_p
= ptr
->data
;
571 if(!IsPerson(target_p
))
574 if(MyClient(target_p
->from
) && target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
577 send_umode(NULL
, target_p
, 0, ubuf
);
584 if(IsCapable(client_p
, CAP_EUID
))
585 sendto_one(client_p
, ":%s EUID %s %d %ld %s %s %s %s %s %s %s :%s",
586 target_p
->servptr
->id
, target_p
->name
,
587 target_p
->hopcount
+ 1,
588 (long) target_p
->tsinfo
, ubuf
,
589 target_p
->username
, target_p
->host
,
590 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
592 IsDynSpoof(target_p
) ? target_p
->orighost
: "*",
593 EmptyString(target_p
->user
->suser
) ? "*" : target_p
->user
->suser
,
596 sendto_one(client_p
, ":%s UID %s %d %ld %s %s %s %s %s :%s",
597 target_p
->servptr
->id
, target_p
->name
,
598 target_p
->hopcount
+ 1,
599 (long) target_p
->tsinfo
, ubuf
,
600 target_p
->username
, target_p
->host
,
601 IsIPSpoof(target_p
) ? "0" : target_p
->sockhost
,
602 target_p
->id
, target_p
->info
);
604 if(!EmptyString(target_p
->certfp
))
605 sendto_one(client_p
, ":%s ENCAP * CERTFP :%s",
606 use_id(target_p
), target_p
->certfp
);
608 if(!IsCapable(client_p
, CAP_EUID
))
610 if(IsDynSpoof(target_p
))
611 sendto_one(client_p
, ":%s ENCAP * REALHOST %s",
612 use_id(target_p
), target_p
->orighost
);
613 if(!EmptyString(target_p
->user
->suser
))
614 sendto_one(client_p
, ":%s ENCAP * LOGIN %s",
615 use_id(target_p
), target_p
->user
->suser
);
618 if(ConfigFileEntry
.burst_away
&& !EmptyString(target_p
->user
->away
))
619 sendto_one(client_p
, ":%s AWAY :%s",
621 target_p
->user
->away
);
623 if (IsOper(target_p
) && target_p
->user
&& target_p
->user
->opername
)
625 if (target_p
->user
->privset
)
626 sendto_one(client_p
, ":%s OPER %s %s",
628 target_p
->user
->opername
,
629 target_p
->user
->privset
->name
);
631 sendto_one(client_p
, ":%s OPER %s",
633 target_p
->user
->opername
);
636 hclientinfo
.target
= target_p
;
637 call_hook(h_burst_client
, &hclientinfo
);
640 RB_DLINK_FOREACH(ptr
, global_channel_list
.head
)
644 if(*chptr
->chname
!= '#')
647 cur_len
= mlen
= sprintf(buf
, ":%s SJOIN %ld %s %s :", me
.id
,
648 (long) chptr
->channelts
, chptr
->chname
,
649 channel_modes(chptr
, client_p
));
653 RB_DLINK_FOREACH(uptr
, chptr
->members
.head
)
657 tlen
= strlen(use_id(msptr
->client_p
)) + 1;
663 if(cur_len
+ tlen
>= BUFSIZE
- 3)
666 sendto_one(client_p
, "%s", buf
);
671 sprintf(t
, "%s%s ", find_channel_status(msptr
, 1),
672 use_id(msptr
->client_p
));
678 if (rb_dlink_list_length(&chptr
->members
) > 0)
680 /* remove trailing space */
683 sendto_one(client_p
, "%s", buf
);
685 if(rb_dlink_list_length(&chptr
->banlist
) > 0)
686 burst_modes_TS6(client_p
, chptr
, &chptr
->banlist
, 'b');
688 if(IsCapable(client_p
, CAP_EX
) &&
689 rb_dlink_list_length(&chptr
->exceptlist
) > 0)
690 burst_modes_TS6(client_p
, chptr
, &chptr
->exceptlist
, 'e');
692 if(IsCapable(client_p
, CAP_IE
) &&
693 rb_dlink_list_length(&chptr
->invexlist
) > 0)
694 burst_modes_TS6(client_p
, chptr
, &chptr
->invexlist
, 'I');
696 if(rb_dlink_list_length(&chptr
->quietlist
) > 0)
697 burst_modes_TS6(client_p
, chptr
, &chptr
->quietlist
, 'q');
699 if(IsCapable(client_p
, CAP_TB
) && chptr
->topic
!= NULL
)
700 sendto_one(client_p
, ":%s TB %s %ld %s%s:%s",
701 me
.id
, chptr
->chname
, (long) chptr
->topic_time
,
702 ConfigChannel
.burst_topicwho
? chptr
->topic_info
: "",
703 ConfigChannel
.burst_topicwho
? " " : "",
706 if(IsCapable(client_p
, CAP_MLOCK
))
707 sendto_one(client_p
, ":%s MLOCK %ld %s :%s",
708 me
.id
, (long) chptr
->channelts
, chptr
->chname
,
709 EmptyString(chptr
->mode_lock
) ? "" : chptr
->mode_lock
);
711 hchaninfo
.chptr
= chptr
;
712 call_hook(h_burst_channel
, &hchaninfo
);
715 hclientinfo
.target
= NULL
;
716 call_hook(h_burst_finished
, &hclientinfo
);
720 * show_capabilities - show current server capabilities
722 * inputs - pointer to an struct Client
723 * output - pointer to static string
724 * side effects - build up string representing capabilities of server listed
727 show_capabilities(struct Client
*target_p
)
729 static char msgbuf
[BUFSIZE
];
734 rb_strlcpy(msgbuf
, " TS6", sizeof(msgbuf
));
737 rb_strlcat(msgbuf
, " SSL", sizeof(msgbuf
));
739 if(!IsServer(target_p
) || !target_p
->serv
->caps
) /* short circuit if no caps */
742 rb_strlcat(msgbuf
, " ", sizeof(msgbuf
));
743 rb_strlcat(msgbuf
, capability_index_list(serv_capindex
, target_p
->serv
->caps
), sizeof(msgbuf
));
751 * inputs - pointer to a struct Client
756 server_estab(struct Client
*client_p
)
758 struct Client
*target_p
;
759 struct server_conf
*server_p
;
760 hook_data_client hdata
;
763 char note
[HOSTLEN
+ 15];
765 s_assert(NULL
!= client_p
);
769 host
= client_p
->name
;
771 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
773 /* This shouldn't happen, better tell the ops... -A1kmm */
774 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
775 "Warning: Lost connect{} block for server %s!", host
);
776 return exit_client(client_p
, client_p
, client_p
, "Lost connect{} block!");
779 /* We shouldn't have to check this, it should already done before
780 * server_estab is called. -A1kmm
782 if(client_p
->localClient
->passwd
)
784 memset(client_p
->localClient
->passwd
, 0, strlen(client_p
->localClient
->passwd
));
785 rb_free(client_p
->localClient
->passwd
);
786 client_p
->localClient
->passwd
= NULL
;
789 /* Its got identd , since its a server */
792 if(IsUnknown(client_p
))
794 /* the server may be linking based on certificate fingerprint now. --nenolod */
795 sendto_one(client_p
, "PASS %s TS %d :%s",
796 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
798 /* pass info to new server */
799 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
800 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
801 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
803 sendto_one(client_p
, "SERVER %s 1 :%s%s",
805 ConfigServerHide
.hidden
? "(H) " : "",
806 (me
.info
[0]) ? (me
.info
) : "IRCers United");
809 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
810 ilog_error("rb_set_buffers failed for server");
812 /* Enable compression now */
813 if(IsCapable(client_p
, CAP_ZIP
))
815 start_zlib_session(client_p
);
818 client_p
->servptr
= &me
;
820 if(IsAnyDead(client_p
))
821 return CLIENT_EXITED
;
823 sendto_one(client_p
, "SVINFO %d %d 0 :%ld", TS_CURRENT
, TS_MIN
, (long int)rb_current_time());
825 rb_dlinkAdd(client_p
, &client_p
->lnode
, &me
.serv
->servers
);
826 rb_dlinkMoveNode(&client_p
->localClient
->tnode
, &unknown_list
, &serv_list
);
827 rb_dlinkAddTailAlloc(client_p
, &global_serv_list
);
830 add_to_id_hash(client_p
->id
, client_p
);
832 add_to_client_hash(client_p
->name
, client_p
);
833 /* doesnt duplicate client_p->serv if allocated this struct already */
834 make_server(client_p
);
837 client_p
->serv
->caps
= client_p
->localClient
->caps
;
839 if(client_p
->localClient
->fullcaps
)
841 client_p
->serv
->fullcaps
= rb_strdup(client_p
->localClient
->fullcaps
);
842 rb_free(client_p
->localClient
->fullcaps
);
843 client_p
->localClient
->fullcaps
= NULL
;
846 client_p
->serv
->nameinfo
= scache_connect(client_p
->name
, client_p
->info
, IsHidden(client_p
));
847 client_p
->localClient
->firsttime
= rb_current_time();
848 /* fixing eob timings.. -gnp */
850 if((rb_dlink_list_length(&lclient_list
) + rb_dlink_list_length(&serv_list
)) >
851 (unsigned long)MaxConnectionCount
)
852 MaxConnectionCount
= rb_dlink_list_length(&lclient_list
) +
853 rb_dlink_list_length(&serv_list
);
855 /* Show the real host/IP to admins */
856 sendto_realops_snomask(SNO_GENERAL
, L_ALL
,
857 "Link with %s established: (%s) link",
859 show_capabilities(client_p
));
861 ilog(L_SERVER
, "Link with %s established: (%s) link",
862 log_client_name(client_p
, SHOW_IP
), show_capabilities(client_p
));
865 hdata
.target
= client_p
;
866 call_hook(h_server_introduced
, &hdata
);
868 snprintf(note
, sizeof(note
), "Server: %s", client_p
->name
);
869 rb_note(client_p
->localClient
->F
, note
);
872 ** Old sendto_serv_but_one() call removed because we now
873 ** need to send different names to different servers
874 ** (domain name matching) Send new server to other servers.
876 RB_DLINK_FOREACH(ptr
, serv_list
.head
)
878 target_p
= ptr
->data
;
880 if(target_p
== client_p
)
883 if(target_p
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->localClient
->att_sconf
))
886 if(has_id(target_p
) && has_id(client_p
))
888 sendto_one(target_p
, ":%s SID %s 2 %s :%s%s",
889 me
.id
, client_p
->name
, client_p
->id
,
890 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
892 if(!EmptyString(client_p
->serv
->fullcaps
))
893 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
894 client_p
->id
, client_p
->serv
->fullcaps
);
898 sendto_one(target_p
, ":%s SERVER %s 2 :%s%s",
899 me
.name
, client_p
->name
,
900 IsHidden(client_p
) ? "(H) " : "", client_p
->info
);
902 if(!EmptyString(client_p
->serv
->fullcaps
))
903 sendto_one(target_p
, ":%s ENCAP * GCAP :%s",
904 client_p
->name
, client_p
->serv
->fullcaps
);
909 ** Pass on my client information to the new server
911 ** First, pass only servers (idea is that if the link gets
912 ** cancelled beacause the server was already there,
913 ** there are no NICK's to be cancelled...). Of course,
914 ** if cancellation occurs, all this info is sent anyway,
915 ** and I guess the link dies when a read is attempted...? --msa
917 ** Note: Link cancellation to occur at this point means
918 ** that at least two servers from my fragment are building
919 ** up connection this other fragment at the same time, it's
920 ** a race condition, not the normal way of operation...
922 ** ALSO NOTE: using the get_client_name for server names--
923 ** see previous *WARNING*!!! (Also, original inpath
926 RB_DLINK_FOREACH(ptr
, global_serv_list
.head
)
928 target_p
= ptr
->data
;
930 /* target_p->from == target_p for target_p == client_p */
931 if(IsMe(target_p
) || target_p
->from
== client_p
)
934 /* don't distribute downstream leaves of servers that are no-export */
935 if(MyClient(target_p
->from
) && target_p
->from
->localClient
->att_sconf
!= NULL
&& ServerConfNoExport(target_p
->from
->localClient
->att_sconf
))
938 /* presumption, if target has an id, so does its uplink */
939 if(has_id(client_p
) && has_id(target_p
))
940 sendto_one(client_p
, ":%s SID %s %d %s :%s%s",
941 target_p
->servptr
->id
, target_p
->name
,
942 target_p
->hopcount
+ 1, target_p
->id
,
943 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
945 sendto_one(client_p
, ":%s SERVER %s %d :%s%s",
946 target_p
->servptr
->name
,
947 target_p
->name
, target_p
->hopcount
+ 1,
948 IsHidden(target_p
) ? "(H) " : "", target_p
->info
);
950 if(!EmptyString(target_p
->serv
->fullcaps
))
951 sendto_one(client_p
, ":%s ENCAP * GCAP :%s",
952 get_id(target_p
, client_p
),
953 target_p
->serv
->fullcaps
);
956 if(IsCapable(client_p
, CAP_BAN
))
961 /* Always send a PING after connect burst is done */
962 sendto_one(client_p
, "PING :%s", get_id(&me
, client_p
));
964 free_pre_client(client_p
);
966 send_pop_queue(client_p
);
972 * New server connection code
973 * Based upon the stuff floating about in s_bsd.c
978 * serv_connect() - initiate a server connection
980 * inputs - pointer to conf
981 * - pointer to client doing the connet
985 * This code initiates a connection to a server. It first checks to make
986 * sure the given server exists. If this is the case, it creates a socket,
987 * creates a client, saves the socket information in the client, and
988 * initiates a connection to the server through rb_connect_tcp(). The
989 * completion of this goes through serv_completed_connection().
991 * We return 1 if the connection is attempted, since we don't know whether
992 * it suceeded or not, and 0 if it fails in here somewhere.
995 serv_connect(struct server_conf
*server_p
, struct Client
*by
)
997 struct Client
*client_p
;
998 struct sockaddr_storage sa_connect
[2];
999 struct sockaddr_storage sa_bind
[ARRAY_SIZE(sa_connect
)];
1000 char note
[HOSTLEN
+ 10];
1003 s_assert(server_p
!= NULL
);
1004 if(server_p
== NULL
)
1007 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1008 SET_SS_FAMILY(&sa_connect
[i
], AF_UNSPEC
);
1009 SET_SS_FAMILY(&sa_bind
[i
], AF_UNSPEC
);
1012 if(server_p
->aftype
== AF_UNSPEC
1013 && GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
1014 && GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1018 sa_connect
[0] = server_p
->connect4
;
1019 sa_connect
[1] = server_p
->connect6
;
1020 sa_bind
[0] = server_p
->bind4
;
1021 sa_bind
[1] = server_p
->bind6
;
1025 sa_connect
[0] = server_p
->connect6
;
1026 sa_connect
[1] = server_p
->connect4
;
1027 sa_bind
[0] = server_p
->bind6
;
1028 sa_bind
[1] = server_p
->bind4
;
1031 else if(server_p
->aftype
== AF_INET
|| GET_SS_FAMILY(&server_p
->connect4
) == AF_INET
)
1033 sa_connect
[0] = server_p
->connect4
;
1034 sa_bind
[0] = server_p
->bind4
;
1036 else if(server_p
->aftype
== AF_INET6
|| GET_SS_FAMILY(&server_p
->connect6
) == AF_INET6
)
1038 sa_connect
[0] = server_p
->connect6
;
1039 sa_bind
[0] = server_p
->bind6
;
1044 if (ServerConfSCTP(server_p
) && GET_SS_FAMILY(&sa_connect
[1]) != AF_UNSPEC
) {
1045 char buf2
[HOSTLEN
+ 1];
1049 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1050 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[1], buf2
, sizeof(buf2
));
1051 ilog(L_SERVER
, "Connect to *[%s] @%s&%s", server_p
->name
, buf
, buf2
);
1057 rb_inet_ntop_sock((struct sockaddr
*)&sa_connect
[0], buf
, sizeof(buf
));
1058 ilog(L_SERVER
, "Connect to *[%s] @%s", server_p
->name
, buf
);
1062 * Make sure this server isn't already connected
1064 if((client_p
= find_server(NULL
, server_p
->name
)))
1066 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1067 "Server %s already present from %s",
1068 server_p
->name
, client_p
->name
);
1069 if(by
&& IsPerson(by
) && !MyClient(by
))
1070 sendto_one_notice(by
, ":Server %s already present from %s",
1071 server_p
->name
, client_p
->name
);
1075 if (CurrUsers(server_p
->class) >= MaxUsers(server_p
->class)) {
1076 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1077 "No more connections allowed in class \"%s\" for server %s",
1078 server_p
->class->class_name
, server_p
->name
);
1079 if(by
&& IsPerson(by
) && !MyClient(by
))
1080 sendto_one_notice(by
, ":No more connections allowed in class \"%s\" for server %s",
1081 server_p
->class->class_name
, server_p
->name
);
1085 /* create a socket for the server connection */
1086 if(GET_SS_FAMILY(&sa_connect
[0]) == AF_UNSPEC
) {
1087 ilog_error("unspecified socket address family");
1090 } else if (ServerConfSCTP(server_p
)) {
1091 if ((F
= rb_socket(AF_INET6
, SOCK_STREAM
, IPPROTO_SCTP
, NULL
)) == NULL
) {
1092 ilog_error("opening a stream socket");
1096 } else if ((F
= rb_socket(GET_SS_FAMILY(&sa_connect
[0]), SOCK_STREAM
, IPPROTO_TCP
, NULL
)) == NULL
) {
1097 ilog_error("opening a stream socket");
1101 /* servernames are always guaranteed under HOSTLEN chars */
1102 snprintf(note
, sizeof(note
), "Server: %s", server_p
->name
);
1105 /* Create a local client */
1106 client_p
= make_client(NULL
);
1108 /* Copy in the server, hostname, fd */
1109 rb_strlcpy(client_p
->name
, server_p
->name
, sizeof(client_p
->name
));
1110 if(server_p
->connect_host
)
1111 rb_strlcpy(client_p
->host
, server_p
->connect_host
, sizeof(client_p
->host
));
1113 rb_strlcpy(client_p
->host
, buf
, sizeof(client_p
->host
));
1114 rb_strlcpy(client_p
->sockhost
, buf
, sizeof(client_p
->sockhost
));
1115 client_p
->localClient
->F
= F
;
1116 /* shove the port number into the sockaddr */
1117 SET_SS_PORT(&sa_connect
[0], htons(server_p
->port
));
1118 SET_SS_PORT(&sa_connect
[1], htons(server_p
->port
));
1121 * Set up the initial server evilness, ripped straight from
1122 * connect_server(), so don't blame me for it being evil.
1126 if(!rb_set_buffers(client_p
->localClient
->F
, READBUF_SIZE
))
1128 ilog_error("setting the buffer size for a server connection");
1132 * Attach config entries to client here rather than in
1133 * serv_connect_callback(). This to avoid null pointer references.
1135 attach_server_conf(client_p
, server_p
);
1138 * at this point we have a connection in progress and C/N lines
1139 * attached to the client, the socket info should be saved in the
1140 * client and it should either be resolved or have a valid address.
1142 * The socket has been connected or connect is in progress.
1144 make_server(client_p
);
1145 if(by
&& IsClient(by
))
1146 rb_strlcpy(client_p
->serv
->by
, by
->name
, sizeof(client_p
->serv
->by
));
1148 strcpy(client_p
->serv
->by
, "AutoConn.");
1150 SetConnecting(client_p
);
1151 rb_dlinkAddTail(client_p
, &client_p
->node
, &global_client_list
);
1153 for (int i
= 0; i
< ARRAY_SIZE(sa_connect
); i
++) {
1154 if (GET_SS_FAMILY(&sa_bind
[i
]) == AF_UNSPEC
) {
1155 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind4
))
1156 sa_bind
[i
] = ServerInfo
.bind4
;
1157 if (GET_SS_FAMILY(&sa_connect
[i
]) == GET_SS_FAMILY(&ServerInfo
.bind6
))
1158 sa_bind
[i
] = ServerInfo
.bind6
;
1163 if (ServerConfSCTP(server_p
)) {
1164 rb_connect_sctp(client_p
->localClient
->F
,
1165 sa_connect
, ARRAY_SIZE(sa_connect
), sa_bind
, ARRAY_SIZE(sa_bind
),
1166 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1167 client_p
, ConfigFileEntry
.connect_timeout
);
1172 rb_connect_tcp(client_p
->localClient
->F
,
1173 (struct sockaddr
*)&sa_connect
[0],
1174 GET_SS_FAMILY(&sa_bind
[0]) == AF_UNSPEC
? NULL
: (struct sockaddr
*)&sa_bind
[0],
1175 ServerConfSSL(server_p
) ? serv_connect_ssl_callback
: serv_connect_callback
,
1176 client_p
, ConfigFileEntry
.connect_timeout
);
1182 serv_connect_ssl_callback(rb_fde_t
*F
, int status
, void *data
)
1184 struct Client
*client_p
= data
;
1186 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1189 /* Print error message, just like non-SSL. */
1190 serv_connect_callback(F
, status
, data
);
1193 if(rb_socketpair(AF_UNIX
, SOCK_STREAM
, 0, &xF
[0], &xF
[1], "Outgoing ssld connection") == -1)
1195 ilog_error("rb_socketpair failed for server");
1196 serv_connect_callback(F
, RB_ERROR
, data
);
1200 client_p
->localClient
->F
= xF
[0];
1201 client_p
->localClient
->ssl_callback
= serv_connect_ssl_open_callback
;
1203 client_p
->localClient
->ssl_ctl
= start_ssld_connect(F
, xF
[1], connid_get(client_p
));
1204 if(!client_p
->localClient
->ssl_ctl
)
1206 serv_connect_callback(client_p
->localClient
->F
, RB_ERROR
, data
);
1213 serv_connect_ssl_open_callback(struct Client
*client_p
, int status
)
1215 serv_connect_callback(client_p
->localClient
->F
, status
, client_p
);
1216 return 1; /* suppress default exit_client handler for status != RB_OK */
1220 * serv_connect_callback() - complete a server connection.
1222 * This routine is called after the server connection attempt has
1223 * completed. If unsucessful, an error is sent to ops and the client
1224 * is closed. If sucessful, it goes through the initialisation/check
1225 * procedures, the capabilities are sent, and the socket is then
1226 * marked for reading.
1229 serv_connect_callback(rb_fde_t
*F
, int status
, void *data
)
1231 struct Client
*client_p
= data
;
1232 struct server_conf
*server_p
;
1235 /* First, make sure its a real client! */
1236 s_assert(client_p
!= NULL
);
1237 s_assert(client_p
->localClient
->F
== F
);
1239 if(client_p
== NULL
)
1242 /* while we were waiting for the callback, its possible this already
1245 if(find_server(NULL
, client_p
->name
) != NULL
)
1247 exit_client(client_p
, client_p
, &me
, "Server Exists");
1251 if(client_p
->localClient
->ssl_ctl
== NULL
)
1252 rb_connect_sockaddr(F
, (struct sockaddr
*)&client_p
->localClient
->ip
, sizeof(client_p
->localClient
->ip
));
1254 /* Check the status */
1257 /* COMM_ERR_TIMEOUT wont have an errno associated with it,
1258 * the others will.. --fl
1260 if(status
== RB_ERR_TIMEOUT
|| status
== RB_ERROR_SSL
)
1262 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1263 "Error connecting to %s[%s]: %s",
1267 ilog(L_SERVER
, "Error connecting to %s[%s]: %s",
1268 client_p
->name
, client_p
->sockhost
,
1273 errstr
= strerror(rb_get_sockerr(F
));
1274 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1275 "Error connecting to %s[%s]: %s (%s)",
1278 rb_errstr(status
), errstr
);
1279 ilog(L_SERVER
, "Error connecting to %s[%s]: %s (%s)",
1280 client_p
->name
, client_p
->sockhost
,
1281 rb_errstr(status
), errstr
);
1284 exit_client(client_p
, client_p
, &me
, rb_errstr(status
));
1288 /* COMM_OK, so continue the connection procedure */
1289 /* Get the C/N lines */
1290 if((server_p
= client_p
->localClient
->att_sconf
) == NULL
)
1292 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
, "Lost connect{} block for %s",
1294 exit_client(client_p
, client_p
, &me
, "Lost connect{} block");
1298 if(server_p
->certfp
&& (!client_p
->certfp
|| rb_strcasecmp(server_p
->certfp
, client_p
->certfp
) != 0))
1300 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1301 "Connection to %s has invalid certificate fingerprint %s",
1302 client_p
->name
, client_p
->certfp
);
1303 ilog(L_SERVER
, "Access denied, invalid certificate fingerprint %s from %s",
1304 client_p
->certfp
, log_client_name(client_p
, SHOW_IP
));
1306 exit_client(client_p
, client_p
, &me
, "Invalid fingerprint.");
1310 /* Next, send the initial handshake */
1311 SetHandshake(client_p
);
1313 /* the server may be linking based on certificate fingerprint now. --nenolod */
1314 sendto_one(client_p
, "PASS %s TS %d :%s",
1315 EmptyString(server_p
->spasswd
) ? "*" : server_p
->spasswd
, TS_CURRENT
, me
.id
);
1317 /* pass my info to the new server */
1318 send_capabilities(client_p
, default_server_capabs
| CAP_MASK
1319 | (ServerConfCompressed(server_p
) ? CAP_ZIP_SUPPORTED
: 0)
1320 | (ServerConfTb(server_p
) ? CAP_TB
: 0));
1322 sendto_one(client_p
, "SERVER %s 1 :%s%s",
1324 ConfigServerHide
.hidden
? "(H) " : "", me
.info
);
1327 * If we've been marked dead because a send failed, just exit
1328 * here now and save everyone the trouble of us ever existing.
1330 if(IsAnyDead(client_p
))
1332 sendto_realops_snomask(SNO_GENERAL
, L_NETWIDE
,
1333 "%s went dead during handshake", client_p
->name
);
1334 exit_client(client_p
, client_p
, &me
, "Went dead during handshake");
1338 /* don't move to serv_list yet -- we haven't sent a burst! */
1340 /* If we get here, we're ok, so lets start reading some data */
1341 read_packet(F
, client_p
);