1*549b59edSchristos /* $NetBSD: ldapmodrdn.c,v 1.3 2021/08/14 16:14:49 christos Exp $ */
24e6df137Slukem
32de962bdSlukem /* ldapmodrdn.c - generic program to modify an entry's RDN using LDAP */
4d11b170bStron /* $OpenLDAP$ */
52de962bdSlukem /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
62de962bdSlukem *
7*549b59edSchristos * Copyright 1998-2021 The OpenLDAP Foundation.
82de962bdSlukem * Portions Copyright 1998-2003 Kurt D. Zeilenga.
92de962bdSlukem * Portions Copyright 1998-2001 Net Boolean Incorporated.
102de962bdSlukem * Portions Copyright 2001-2003 IBM Corporation.
112de962bdSlukem * All rights reserved.
122de962bdSlukem *
132de962bdSlukem * Redistribution and use in source and binary forms, with or without
142de962bdSlukem * modification, are permitted only as authorized by the OpenLDAP
152de962bdSlukem * Public License.
162de962bdSlukem *
172de962bdSlukem * A copy of this license is available in the file LICENSE in the
182de962bdSlukem * top-level directory of the distribution or, alternatively, at
192de962bdSlukem * <http://www.OpenLDAP.org/license.html>.
202de962bdSlukem */
212de962bdSlukem /* Portions Copyright 1999, Juan C. Gomez, All rights reserved.
222de962bdSlukem * This software is not subject to any license of Silicon Graphics
232de962bdSlukem * Inc. or Purdue University.
242de962bdSlukem *
252de962bdSlukem * Redistribution and use in source and binary forms are permitted
262de962bdSlukem * without restriction or fee of any kind as long as this notice
272de962bdSlukem * is preserved.
282de962bdSlukem */
292de962bdSlukem /* Portions Copyright (c) 1992-1996 Regents of the University of Michigan.
302de962bdSlukem * All rights reserved.
312de962bdSlukem *
322de962bdSlukem * Redistribution and use in source and binary forms are permitted
332de962bdSlukem * provided that this notice is preserved and that due credit is given
342de962bdSlukem * to the University of Michigan at Ann Arbor. The name of the
352de962bdSlukem * University may not be used to endorse or promote products derived
362de962bdSlukem * from this software without specific prior written permission. This
372de962bdSlukem * software is provided ``as is'' without express or implied warranty.
382de962bdSlukem */
392de962bdSlukem /* ACKNOWLEDGEMENTS:
402de962bdSlukem * This work was originally developed by the University of Michigan
412de962bdSlukem * (as part of U-MICH LDAP). Additional significant contributors
422de962bdSlukem * include:
432de962bdSlukem * Kurt D. Zeilenga
442de962bdSlukem * Juan C Gomez
452de962bdSlukem */
462de962bdSlukem
472de962bdSlukem
48376af7d7Schristos #include <sys/cdefs.h>
49*549b59edSchristos __RCSID("$NetBSD: ldapmodrdn.c,v 1.3 2021/08/14 16:14:49 christos Exp $");
50376af7d7Schristos
512de962bdSlukem #include "portable.h"
522de962bdSlukem
532de962bdSlukem #include <stdio.h>
542de962bdSlukem
552de962bdSlukem #include <ac/stdlib.h>
562de962bdSlukem
572de962bdSlukem #include <ac/ctype.h>
582de962bdSlukem #include <ac/string.h>
592de962bdSlukem #include <ac/unistd.h>
602de962bdSlukem #include <ac/socket.h>
612de962bdSlukem #include <ac/time.h>
622de962bdSlukem
632de962bdSlukem #include <ldap.h>
642de962bdSlukem #include "lutil.h"
652de962bdSlukem #include "lutil_ldap.h"
662de962bdSlukem #include "ldap_defaults.h"
672de962bdSlukem
682de962bdSlukem #include "common.h"
692de962bdSlukem
702de962bdSlukem
712de962bdSlukem static char *newSuperior = NULL;
722de962bdSlukem static int remove_old_RDN = 0;
732de962bdSlukem
742de962bdSlukem
752de962bdSlukem static int domodrdn(
762de962bdSlukem LDAP *ld,
772de962bdSlukem char *dn,
782de962bdSlukem char *rdn,
792de962bdSlukem char *newSuperior,
802de962bdSlukem int remove ); /* flag: remove old RDN */
812de962bdSlukem
822de962bdSlukem void
usage(void)832de962bdSlukem usage( void )
842de962bdSlukem {
852de962bdSlukem fprintf( stderr, _("Rename LDAP entries\n\n"));
862de962bdSlukem fprintf( stderr, _("usage: %s [options] [dn rdn]\n"), prog);
872de962bdSlukem fprintf( stderr, _(" dn rdn: If given, rdn will replace the RDN of the entry specified by DN\n"));
882de962bdSlukem fprintf( stderr, _(" If not given, the list of modifications is read from stdin or\n"));
892de962bdSlukem fprintf( stderr, _(" from the file specified by \"-f file\" (see man page).\n"));
902de962bdSlukem fprintf( stderr, _("Rename options:\n"));
914e6df137Slukem fprintf( stderr, _(" -c continuous operation mode (do not stop on errors)\n"));
924e6df137Slukem fprintf( stderr, _(" -f file read operations from `file'\n"));
934e6df137Slukem fprintf( stderr, _(" -M enable Manage DSA IT control (-MM to make critical)\n"));
944e6df137Slukem fprintf( stderr, _(" -P version protocol version (default: 3)\n"));
952de962bdSlukem fprintf( stderr, _(" -r remove old RDN\n"));
962de962bdSlukem fprintf( stderr, _(" -s newsup new superior entry\n"));
972de962bdSlukem tool_common_usage();
982de962bdSlukem exit( EXIT_FAILURE );
992de962bdSlukem }
1002de962bdSlukem
1012de962bdSlukem
1022de962bdSlukem const char options[] = "rs:"
1034e6df137Slukem "cd:D:e:f:h:H:IMnNO:o:p:P:QR:U:vVw:WxX:y:Y:Z";
1042de962bdSlukem
1052de962bdSlukem int
handle_private_option(int i)1062de962bdSlukem handle_private_option( int i )
1072de962bdSlukem {
1082de962bdSlukem switch ( i ) {
1092de962bdSlukem #if 0
1102de962bdSlukem int crit;
1112de962bdSlukem char *control, *cvalue;
1122de962bdSlukem case 'E': /* modrdn extensions */
1132de962bdSlukem if( protocol == LDAP_VERSION2 ) {
1142de962bdSlukem fprintf( stderr, _("%s: -E incompatible with LDAPv%d\n"),
1152de962bdSlukem prog, version );
1162de962bdSlukem exit( EXIT_FAILURE );
1172de962bdSlukem }
1182de962bdSlukem
1192de962bdSlukem /* should be extended to support comma separated list of
1202de962bdSlukem * [!]key[=value] parameters, e.g. -E !foo,bar=567
1212de962bdSlukem */
1222de962bdSlukem
1232de962bdSlukem crit = 0;
1242de962bdSlukem cvalue = NULL;
1252de962bdSlukem if( optarg[0] == '!' ) {
1262de962bdSlukem crit = 1;
1272de962bdSlukem optarg++;
1282de962bdSlukem }
1292de962bdSlukem
130*549b59edSchristos control = optarg;
1312de962bdSlukem if ( (cvalue = strchr( control, '=' )) != NULL ) {
1322de962bdSlukem *cvalue++ = '\0';
1332de962bdSlukem }
1342de962bdSlukem fprintf( stderr, _("Invalid modrdn extension name: %s\n"), control );
1352de962bdSlukem usage();
1362de962bdSlukem #endif
1372de962bdSlukem
1382de962bdSlukem case 'r': /* remove old RDN */
1392de962bdSlukem remove_old_RDN++;
1402de962bdSlukem break;
1412de962bdSlukem
1422de962bdSlukem case 's': /* newSuperior */
1432de962bdSlukem if( protocol == LDAP_VERSION2 ) {
1442de962bdSlukem fprintf( stderr, _("%s: -X incompatible with LDAPv%d\n"),
1452de962bdSlukem prog, protocol );
1462de962bdSlukem exit( EXIT_FAILURE );
1472de962bdSlukem }
148*549b59edSchristos newSuperior = optarg;
1492de962bdSlukem protocol = LDAP_VERSION3;
1502de962bdSlukem break;
1512de962bdSlukem
1522de962bdSlukem default:
1532de962bdSlukem return 0;
1542de962bdSlukem }
1552de962bdSlukem return 1;
1562de962bdSlukem }
1572de962bdSlukem
1582de962bdSlukem
1592de962bdSlukem int
main(int argc,char ** argv)1602de962bdSlukem main(int argc, char **argv)
1612de962bdSlukem {
1622de962bdSlukem char *entrydn = NULL, *rdn = NULL, buf[ 4096 ];
1634e6df137Slukem FILE *fp = NULL;
164d11b170bStron LDAP *ld = NULL;
1652de962bdSlukem int rc, retval, havedn;
1662de962bdSlukem
1672de962bdSlukem tool_init( TOOL_MODRDN );
1682de962bdSlukem prog = lutil_progname( "ldapmodrdn", argc, argv );
1692de962bdSlukem
1702de962bdSlukem tool_args( argc, argv );
1712de962bdSlukem
1722de962bdSlukem havedn = 0;
1732de962bdSlukem if (argc - optind == 2) {
1742de962bdSlukem if (( rdn = strdup( argv[argc - 1] )) == NULL ) {
1752de962bdSlukem perror( "strdup" );
1764e6df137Slukem retval = EXIT_FAILURE;
1774e6df137Slukem goto fail;
1782de962bdSlukem }
1792de962bdSlukem if (( entrydn = strdup( argv[argc - 2] )) == NULL ) {
1802de962bdSlukem perror( "strdup" );
1814e6df137Slukem retval = EXIT_FAILURE;
1824e6df137Slukem goto fail;
1832de962bdSlukem }
1842de962bdSlukem ++havedn;
1852de962bdSlukem } else if ( argc - optind != 0 ) {
1862de962bdSlukem fprintf( stderr, _("%s: invalid number of arguments (%d), only two allowed\n"), prog, argc-optind );
1872de962bdSlukem usage();
1882de962bdSlukem }
1892de962bdSlukem
1902de962bdSlukem if ( infile != NULL ) {
1912de962bdSlukem if (( fp = fopen( infile, "r" )) == NULL ) {
1922de962bdSlukem perror( infile );
1934e6df137Slukem retval = EXIT_FAILURE;
1944e6df137Slukem goto fail;
1952de962bdSlukem }
1962de962bdSlukem } else {
1972de962bdSlukem fp = stdin;
1982de962bdSlukem }
1992de962bdSlukem
2002de962bdSlukem ld = tool_conn_setup( 0, 0 );
2012de962bdSlukem
2022de962bdSlukem tool_bind( ld );
2032de962bdSlukem
2042de962bdSlukem tool_server_controls( ld, NULL, 0 );
2052de962bdSlukem
2062de962bdSlukem retval = rc = 0;
2072de962bdSlukem if (havedn)
2082de962bdSlukem retval = domodrdn( ld, entrydn, rdn, newSuperior, remove_old_RDN );
2092de962bdSlukem else while ((rc == 0 || contoper) && fgets(buf, sizeof(buf), fp) != NULL) {
2102de962bdSlukem if ( *buf != '\n' ) { /* blank lines optional, skip */
2112de962bdSlukem buf[ strlen( buf ) - 1 ] = '\0'; /* remove nl */
2122de962bdSlukem
2132de962bdSlukem if ( havedn ) { /* have DN, get RDN */
2142de962bdSlukem if (( rdn = strdup( buf )) == NULL ) {
2152de962bdSlukem perror( "strdup" );
2164e6df137Slukem retval = EXIT_FAILURE;
2174e6df137Slukem goto fail;
2182de962bdSlukem }
2192de962bdSlukem rc = domodrdn(ld, entrydn, rdn, newSuperior, remove_old_RDN );
2202de962bdSlukem if ( rc != 0 )
2212de962bdSlukem retval = rc;
2222de962bdSlukem havedn = 0;
2234e6df137Slukem free( rdn ); rdn = NULL;
2244e6df137Slukem free( entrydn ); entrydn = NULL;
2252de962bdSlukem } else if ( !havedn ) { /* don't have DN yet */
2262de962bdSlukem if (( entrydn = strdup( buf )) == NULL ) {
2274e6df137Slukem retval = EXIT_FAILURE;
2284e6df137Slukem goto fail;
2292de962bdSlukem }
2302de962bdSlukem ++havedn;
2312de962bdSlukem }
2322de962bdSlukem }
2332de962bdSlukem }
2342de962bdSlukem
2354e6df137Slukem fail:
2364e6df137Slukem if ( fp && fp != stdin ) fclose( fp );
2374e6df137Slukem if ( entrydn ) free( entrydn );
2384e6df137Slukem if ( rdn ) free( rdn );
239d11b170bStron tool_exit( ld, retval );
2402de962bdSlukem }
2412de962bdSlukem
domodrdn(LDAP * ld,char * dn,char * rdn,char * newSuperior,int remove)2422de962bdSlukem static int domodrdn(
2432de962bdSlukem LDAP *ld,
2442de962bdSlukem char *dn,
2452de962bdSlukem char *rdn,
2462de962bdSlukem char *newSuperior,
2472de962bdSlukem int remove ) /* flag: remove old RDN */
2482de962bdSlukem {
2492de962bdSlukem int rc, code, id;
2502de962bdSlukem char *matcheddn=NULL, *text=NULL, **refs=NULL;
2512de962bdSlukem LDAPControl **ctrls = NULL;
2522de962bdSlukem LDAPMessage *res;
2532de962bdSlukem
2542de962bdSlukem if ( verbose ) {
2552de962bdSlukem printf( _("Renaming \"%s\"\n"), dn );
2562de962bdSlukem printf( _("\tnew rdn=\"%s\" (%s old rdn)\n"),
2572de962bdSlukem rdn, remove ? _("delete") : _("keep") );
2582de962bdSlukem if( newSuperior != NULL ) {
2592de962bdSlukem printf(_("\tnew parent=\"%s\"\n"), newSuperior);
2602de962bdSlukem }
2612de962bdSlukem }
2622de962bdSlukem
2632de962bdSlukem if( dont ) return LDAP_SUCCESS;
2642de962bdSlukem
2652de962bdSlukem rc = ldap_rename( ld, dn, rdn, newSuperior, remove,
2662de962bdSlukem NULL, NULL, &id );
2672de962bdSlukem
2682de962bdSlukem if ( rc != LDAP_SUCCESS ) {
2692de962bdSlukem fprintf( stderr, "%s: ldap_rename: %s (%d)\n",
2702de962bdSlukem prog, ldap_err2string( rc ), rc );
2712de962bdSlukem return rc;
2722de962bdSlukem }
2732de962bdSlukem
2742de962bdSlukem for ( ; ; ) {
2752de962bdSlukem struct timeval tv = { 0, 0 };
2762de962bdSlukem
2772de962bdSlukem if ( tool_check_abandon( ld, id ) ) {
2782de962bdSlukem return LDAP_CANCELLED;
2792de962bdSlukem }
2802de962bdSlukem
2812de962bdSlukem tv.tv_sec = 0;
2822de962bdSlukem tv.tv_usec = 100000;
2832de962bdSlukem
2842de962bdSlukem rc = ldap_result( ld, LDAP_RES_ANY, LDAP_MSG_ALL, &tv, &res );
2852de962bdSlukem if ( rc < 0 ) {
2862de962bdSlukem tool_perror( "ldap_result", rc, NULL, NULL, NULL, NULL );
2872de962bdSlukem return rc;
2882de962bdSlukem }
2892de962bdSlukem
2902de962bdSlukem if ( rc != 0 ) {
2912de962bdSlukem break;
2922de962bdSlukem }
2932de962bdSlukem }
2942de962bdSlukem
2952de962bdSlukem rc = ldap_parse_result( ld, res, &code, &matcheddn, &text, &refs, &ctrls, 1 );
2962de962bdSlukem
2972de962bdSlukem if( rc != LDAP_SUCCESS ) {
2982de962bdSlukem fprintf( stderr, "%s: ldap_parse_result: %s (%d)\n",
2992de962bdSlukem prog, ldap_err2string( rc ), rc );
3002de962bdSlukem return rc;
3012de962bdSlukem }
3022de962bdSlukem
3032de962bdSlukem if( verbose || code != LDAP_SUCCESS ||
3042de962bdSlukem (matcheddn && *matcheddn) || (text && *text) || (refs && *refs) )
3052de962bdSlukem {
3062de962bdSlukem printf( _("Rename Result: %s (%d)\n"),
3072de962bdSlukem ldap_err2string( code ), code );
3082de962bdSlukem
3092de962bdSlukem if( text && *text ) {
3102de962bdSlukem printf( _("Additional info: %s\n"), text );
3112de962bdSlukem }
3122de962bdSlukem
3132de962bdSlukem if( matcheddn && *matcheddn ) {
3142de962bdSlukem printf( _("Matched DN: %s\n"), matcheddn );
3152de962bdSlukem }
3162de962bdSlukem
3172de962bdSlukem if( refs ) {
3182de962bdSlukem int i;
3192de962bdSlukem for( i=0; refs[i]; i++ ) {
3202de962bdSlukem printf(_("Referral: %s\n"), refs[i] );
3212de962bdSlukem }
3222de962bdSlukem }
3232de962bdSlukem }
3242de962bdSlukem
3252de962bdSlukem if (ctrls) {
3262de962bdSlukem tool_print_ctrls( ld, ctrls );
3272de962bdSlukem ldap_controls_free( ctrls );
3282de962bdSlukem }
3292de962bdSlukem
3302de962bdSlukem ber_memfree( text );
3312de962bdSlukem ber_memfree( matcheddn );
3322de962bdSlukem ber_memvfree( (void **) refs );
3332de962bdSlukem
3342de962bdSlukem return code;
3352de962bdSlukem }
336