15331Samw /* 25331Samw * CDDL HEADER START 35331Samw * 45331Samw * The contents of this file are subject to the terms of the 55331Samw * Common Development and Distribution License (the "License"). 65331Samw * You may not use this file except in compliance with the License. 75331Samw * 85331Samw * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 95331Samw * or http://www.opensolaris.org/os/licensing. 105331Samw * See the License for the specific language governing permissions 115331Samw * and limitations under the License. 125331Samw * 135331Samw * When distributing Covered Code, include this CDDL HEADER in each 145331Samw * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 155331Samw * If applicable, add the following below this CDDL HEADER, with the 165331Samw * fields enclosed by brackets "[]" replaced with your own identifying 175331Samw * information: Portions Copyright [yyyy] [name of copyright owner] 185331Samw * 195331Samw * CDDL HEADER END 205331Samw */ 215331Samw 225331Samw /* 2312065SKeyur.Desai@Sun.COM * Copyright (c) 2007, 2010, Oracle and/or its affiliates. All rights reserved. 245331Samw */ 255331Samw 265331Samw /* 275331Samw * SMB specific functions 285331Samw */ 295331Samw #include <stdio.h> 305331Samw #include <string.h> 315331Samw #include <ctype.h> 325331Samw #include <stdlib.h> 335331Samw #include <unistd.h> 345331Samw #include <zone.h> 355331Samw #include <errno.h> 365331Samw #include <locale.h> 375331Samw #include <fcntl.h> 385331Samw #include <sys/types.h> 395331Samw #include <sys/stat.h> 405331Samw #include <syslog.h> 415331Samw #include "libshare.h" 425331Samw #include "libshare_impl.h" 435331Samw #include <pwd.h> 445331Samw #include <limits.h> 455331Samw #include <libscf.h> 4612483SAntonello.Cruz@Sun.COM #include <libscf_priv.h> 475331Samw #include <strings.h> 485331Samw #include "libshare_smb.h" 495331Samw #include <rpcsvc/daemon_utils.h> 507052Samw #include <smbsrv/smb_share.h> 515331Samw #include <smbsrv/smbinfo.h> 525331Samw #include <smbsrv/libsmb.h> 538334SJose.Borrego@Sun.COM #include <libdlpi.h> 548334SJose.Borrego@Sun.COM 558334SJose.Borrego@Sun.COM #define SMB_CSC_BUFSZ 64 565331Samw 579832Samw@Sun.COM #define SMB_VALID_SUB_CHRS "UDhMLmIiSPu" /* substitution characters */ 589832Samw@Sun.COM 595331Samw /* internal functions */ 605331Samw static int smb_share_init(void); 615331Samw static void smb_share_fini(void); 625331Samw static int smb_enable_share(sa_share_t); 635331Samw static int smb_share_changed(sa_share_t); 645331Samw static int smb_resource_changed(sa_resource_t); 655331Samw static int smb_rename_resource(sa_handle_t, sa_resource_t, char *); 665331Samw static int smb_disable_share(sa_share_t share, char *); 676214Sdougm static int smb_validate_property(sa_handle_t, sa_property_t, sa_optionset_t); 685331Samw static int smb_set_proto_prop(sa_property_t); 695331Samw static sa_protocol_properties_t smb_get_proto_set(void); 705331Samw static char *smb_get_status(void); 715331Samw static int smb_parse_optstring(sa_group_t, char *); 725331Samw static char *smb_format_options(sa_group_t, int); 735331Samw 745331Samw static int smb_enable_service(void); 755331Samw 765331Samw static int range_check_validator(int, char *); 775331Samw static int range_check_validator_zero_ok(int, char *); 785331Samw static int string_length_check_validator(int, char *); 795331Samw static int true_false_validator(int, char *); 809832Samw@Sun.COM static int ipv4_validator(int, char *); 8111633SJoyce.McIntosh@Sun.COM static int hostname_validator(int, char *); 825331Samw static int path_validator(int, char *); 839832Samw@Sun.COM static int cmd_validator(int, char *); 849832Samw@Sun.COM static int disposition_validator(int, char *); 855331Samw 865331Samw static int smb_enable_resource(sa_resource_t); 875331Samw static int smb_disable_resource(sa_resource_t); 885331Samw static uint64_t smb_share_features(void); 895331Samw static int smb_list_transient(sa_handle_t); 905772Sas200622 917348SJose.Borrego@Sun.COM static int smb_build_shareinfo(sa_share_t, sa_resource_t, smb_share_t *); 928334SJose.Borrego@Sun.COM static void smb_csc_option(const char *, smb_share_t *); 938474SJose.Borrego@Sun.COM static char *smb_csc_name(const smb_share_t *); 947348SJose.Borrego@Sun.COM static sa_group_t smb_get_defaultgrp(sa_handle_t); 958334SJose.Borrego@Sun.COM static int interface_validator(int, char *); 9611633SJoyce.McIntosh@Sun.COM static int smb_update_optionset_props(sa_handle_t, sa_resource_t, nvlist_t *); 977348SJose.Borrego@Sun.COM 9811963SAfshin.Ardakani@Sun.COM static boolean_t smb_saprop_getbool(sa_optionset_t, char *); 9911963SAfshin.Ardakani@Sun.COM static boolean_t smb_saprop_getstr(sa_optionset_t, char *, char *, size_t); 10011963SAfshin.Ardakani@Sun.COM 1018474SJose.Borrego@Sun.COM static struct { 1028474SJose.Borrego@Sun.COM char *value; 1038474SJose.Borrego@Sun.COM uint32_t flag; 1048474SJose.Borrego@Sun.COM } cscopt[] = { 1058474SJose.Borrego@Sun.COM { "disabled", SMB_SHRF_CSC_DISABLED }, 1068474SJose.Borrego@Sun.COM { "manual", SMB_SHRF_CSC_MANUAL }, 1078474SJose.Borrego@Sun.COM { "auto", SMB_SHRF_CSC_AUTO }, 1088474SJose.Borrego@Sun.COM { "vdo", SMB_SHRF_CSC_VDO } 1098474SJose.Borrego@Sun.COM }; 1108474SJose.Borrego@Sun.COM 1115331Samw /* size of basic format allocation */ 1125331Samw #define OPT_CHUNK 1024 1135331Samw 1145772Sas200622 /* size of string for types - big enough to hold "dependency" */ 1155772Sas200622 #define SCFTYPE_LEN 32 1165772Sas200622 1175331Samw /* 1185331Samw * Indexes of entries in smb_proto_options table. 1195331Samw * Changes to smb_proto_options table may require 1205331Samw * an update to these values. 1215331Samw */ 1225331Samw #define PROTO_OPT_WINS1 6 1235331Samw #define PROTO_OPT_WINS_EXCLUDE 8 1245331Samw 1258334SJose.Borrego@Sun.COM typedef struct smb_hostifs_walker { 1268334SJose.Borrego@Sun.COM const char *hiw_ifname; 1278334SJose.Borrego@Sun.COM boolean_t hiw_matchfound; 1288334SJose.Borrego@Sun.COM } smb_hostifs_walker_t; 1298334SJose.Borrego@Sun.COM 1305331Samw 1315331Samw /* 1325331Samw * ops vector that provides the protocol specific info and operations 1335331Samw * for share management. 1345331Samw */ 1355331Samw 1365331Samw struct sa_plugin_ops sa_plugin_ops = { 1375331Samw SA_PLUGIN_VERSION, 1385331Samw SMB_PROTOCOL_NAME, 1395331Samw smb_share_init, 1405331Samw smb_share_fini, 1415331Samw smb_enable_share, 1425331Samw smb_disable_share, 1435331Samw smb_validate_property, 1446007Sthurlow NULL, /* valid_space */ 1456007Sthurlow NULL, /* security_prop */ 1465331Samw smb_parse_optstring, 1475331Samw smb_format_options, 1485331Samw smb_set_proto_prop, 1495331Samw smb_get_proto_set, 1505331Samw smb_get_status, 1516007Sthurlow NULL, /* space_alias */ 1526007Sthurlow NULL, /* update_legacy */ 1536007Sthurlow NULL, /* delete_legacy */ 1545331Samw smb_share_changed, 1555331Samw smb_enable_resource, 1565331Samw smb_disable_resource, 1575331Samw smb_share_features, 1585331Samw smb_list_transient, 1595331Samw smb_resource_changed, 1605331Samw smb_rename_resource, 1616007Sthurlow NULL, /* run_command */ 1626007Sthurlow NULL, /* command_help */ 1636007Sthurlow NULL /* delete_proto_section */ 1645331Samw }; 1655331Samw 1665331Samw struct option_defs optdefs[] = { 1678334SJose.Borrego@Sun.COM { SHOPT_AD_CONTAINER, OPT_TYPE_STRING }, 16810504SKeyur.Desai@Sun.COM { SHOPT_ABE, OPT_TYPE_BOOLEAN }, 1698334SJose.Borrego@Sun.COM { SHOPT_NAME, OPT_TYPE_NAME }, 1708334SJose.Borrego@Sun.COM { SHOPT_RO, OPT_TYPE_ACCLIST }, 1718334SJose.Borrego@Sun.COM { SHOPT_RW, OPT_TYPE_ACCLIST }, 1728334SJose.Borrego@Sun.COM { SHOPT_NONE, OPT_TYPE_ACCLIST }, 1739231SAfshin.Ardakani@Sun.COM { SHOPT_CATIA, OPT_TYPE_BOOLEAN }, 1748334SJose.Borrego@Sun.COM { SHOPT_CSC, OPT_TYPE_CSC }, 1759832Samw@Sun.COM { SHOPT_GUEST, OPT_TYPE_BOOLEAN }, 17611963SAfshin.Ardakani@Sun.COM { SHOPT_DFSROOT, OPT_TYPE_BOOLEAN }, 177*12508Samw@Sun.COM { SHOPT_DESCRIPTION, OPT_TYPE_STRING }, 1788334SJose.Borrego@Sun.COM { NULL, NULL } 1795331Samw }; 1805331Samw 1815331Samw /* 1825331Samw * findopt(name) 1835331Samw * 1845331Samw * Lookup option "name" in the option table and return the table 1855331Samw * index. 1865331Samw */ 1875331Samw static int 1885331Samw findopt(char *name) 1895331Samw { 1905331Samw int i; 1915331Samw if (name != NULL) { 1925331Samw for (i = 0; optdefs[i].tag != NULL; i++) { 1935331Samw if (strcmp(optdefs[i].tag, name) == 0) 1945331Samw return (i); 1955331Samw } 1965331Samw } 1975331Samw return (-1); 1985331Samw } 1995331Samw 2005331Samw /* 2015331Samw * is_a_number(number) 2025331Samw * 2035331Samw * is the string a number in one of the forms we want to use? 2045331Samw */ 2057348SJose.Borrego@Sun.COM static boolean_t 2065331Samw is_a_number(char *number) 2075331Samw { 2087348SJose.Borrego@Sun.COM boolean_t isnum = B_TRUE; 2097348SJose.Borrego@Sun.COM boolean_t ishex = B_FALSE; 2107348SJose.Borrego@Sun.COM 2117348SJose.Borrego@Sun.COM if (number == NULL || *number == '\0') 2127348SJose.Borrego@Sun.COM return (B_FALSE); 2135331Samw 2147348SJose.Borrego@Sun.COM if (strncasecmp(number, "0x", 2) == 0) { 2155331Samw number += 2; 2167348SJose.Borrego@Sun.COM ishex = B_TRUE; 2175331Samw } else if (*number == '-') { 2187348SJose.Borrego@Sun.COM number++; 2195331Samw } 2205331Samw 2217348SJose.Borrego@Sun.COM while (isnum && (*number != '\0')) { 2227348SJose.Borrego@Sun.COM isnum = (ishex) ? isxdigit(*number) : isdigit(*number); 2237348SJose.Borrego@Sun.COM number++; 2245331Samw } 2257348SJose.Borrego@Sun.COM 2267348SJose.Borrego@Sun.COM return (isnum); 2275331Samw } 2285331Samw 2295331Samw /* 2307961SNatalie.Li@Sun.COM * check ro vs rw values. Over time this may get beefed up. 2317961SNatalie.Li@Sun.COM * for now it just does simple checks. 2327961SNatalie.Li@Sun.COM */ 2337961SNatalie.Li@Sun.COM 2347961SNatalie.Li@Sun.COM static int 2357961SNatalie.Li@Sun.COM check_rorw(char *v1, char *v2) 2367961SNatalie.Li@Sun.COM { 2377961SNatalie.Li@Sun.COM int ret = SA_OK; 2387961SNatalie.Li@Sun.COM if (strcmp(v1, v2) == 0) 2397961SNatalie.Li@Sun.COM ret = SA_VALUE_CONFLICT; 2407961SNatalie.Li@Sun.COM return (ret); 2417961SNatalie.Li@Sun.COM } 2427961SNatalie.Li@Sun.COM 2437961SNatalie.Li@Sun.COM /* 2445331Samw * validresource(name) 2455331Samw * 2465331Samw * Check that name only has valid characters in it. The current valid 2475331Samw * set are the printable characters but not including: 2485331Samw * " / \ [ ] : | < > + ; , ? * = \t 2495331Samw * Note that space is included and there is a maximum length. 2505331Samw */ 2517348SJose.Borrego@Sun.COM static boolean_t 2525331Samw validresource(const char *name) 2535331Samw { 2545331Samw const char *cp; 2555331Samw size_t len; 2565331Samw 2575331Samw if (name == NULL) 2585331Samw return (B_FALSE); 2595331Samw 2605331Samw len = strlen(name); 2615331Samw if (len == 0 || len > SA_MAX_RESOURCE_NAME) 2625331Samw return (B_FALSE); 2635331Samw 2645331Samw if (strpbrk(name, "\"/\\[]:|<>+;,?*=\t") != NULL) { 2655331Samw return (B_FALSE); 2665331Samw } 2675331Samw 2685331Samw for (cp = name; *cp != '\0'; cp++) 2695331Samw if (iscntrl(*cp)) 2705331Samw return (B_FALSE); 2715331Samw 2725331Samw return (B_TRUE); 2735331Samw } 2745331Samw 2755331Samw /* 2768334SJose.Borrego@Sun.COM * Check that the client-side caching (CSC) option value is valid. 2778334SJose.Borrego@Sun.COM */ 2788334SJose.Borrego@Sun.COM static boolean_t 2798334SJose.Borrego@Sun.COM validcsc(const char *value) 2808334SJose.Borrego@Sun.COM { 2818334SJose.Borrego@Sun.COM int i; 2828334SJose.Borrego@Sun.COM 2838334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 2848474SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i].value) == 0) 2858334SJose.Borrego@Sun.COM return (B_TRUE); 2868334SJose.Borrego@Sun.COM } 2878334SJose.Borrego@Sun.COM 2888334SJose.Borrego@Sun.COM return (B_FALSE); 2898334SJose.Borrego@Sun.COM } 2908334SJose.Borrego@Sun.COM 2918334SJose.Borrego@Sun.COM /* 2925331Samw * smb_isonline() 2935331Samw * 2945331Samw * Determine if the SMF service instance is in the online state or 2955331Samw * not. A number of operations depend on this state. 2965331Samw */ 2975331Samw static boolean_t 2985331Samw smb_isonline(void) 2995331Samw { 3005331Samw char *str; 3015331Samw boolean_t ret = B_FALSE; 3025331Samw 3035331Samw if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3045331Samw ret = (strcmp(str, SCF_STATE_STRING_ONLINE) == 0); 3055331Samw free(str); 3065331Samw } 3075331Samw return (ret); 3085331Samw } 3095331Samw 3105331Samw /* 3115772Sas200622 * smb_isdisabled() 3125772Sas200622 * 3135772Sas200622 * Determine if the SMF service instance is in the disabled state or 3145772Sas200622 * not. A number of operations depend on this state. 3155772Sas200622 */ 3165772Sas200622 static boolean_t 3175772Sas200622 smb_isdisabled(void) 3185772Sas200622 { 3195772Sas200622 char *str; 3205772Sas200622 boolean_t ret = B_FALSE; 3215772Sas200622 3225772Sas200622 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3235772Sas200622 ret = (strcmp(str, SCF_STATE_STRING_DISABLED) == 0); 3245772Sas200622 free(str); 3255772Sas200622 } 3265772Sas200622 return (ret); 3275772Sas200622 } 3285772Sas200622 3295772Sas200622 /* 3305772Sas200622 * smb_isautoenable() 3315772Sas200622 * 3325772Sas200622 * Determine if the SMF service instance auto_enabled set or not. A 3335772Sas200622 * number of operations depend on this state. The property not being 3345772Sas200622 * set or being set to true means autoenable. Only being set to false 3355772Sas200622 * is not autoenabled. 3365772Sas200622 */ 3375772Sas200622 static boolean_t 3385772Sas200622 smb_isautoenable(void) 3395772Sas200622 { 3405772Sas200622 boolean_t ret = B_TRUE; 3415772Sas200622 scf_simple_prop_t *prop; 3425772Sas200622 uint8_t *retstr; 3435772Sas200622 3445772Sas200622 prop = scf_simple_prop_get(NULL, SMBD_DEFAULT_INSTANCE_FMRI, 3455772Sas200622 "application", "auto_enable"); 3465772Sas200622 if (prop != NULL) { 3475772Sas200622 retstr = scf_simple_prop_next_boolean(prop); 3485772Sas200622 ret = *retstr != 0; 3495772Sas200622 scf_simple_prop_free(prop); 3505772Sas200622 } 3515772Sas200622 return (ret); 3525772Sas200622 } 3535772Sas200622 3545772Sas200622 /* 3556030Sjb150015 * smb_ismaint() 3566030Sjb150015 * 3576030Sjb150015 * Determine if the SMF service instance is in the disabled state or 3586030Sjb150015 * not. A number of operations depend on this state. 3596030Sjb150015 */ 3606030Sjb150015 static boolean_t 3616030Sjb150015 smb_ismaint(void) 3626030Sjb150015 { 3636030Sjb150015 char *str; 3646030Sjb150015 boolean_t ret = B_FALSE; 3656030Sjb150015 3666030Sjb150015 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3676030Sjb150015 ret = (strcmp(str, SCF_STATE_STRING_MAINT) == 0); 3686030Sjb150015 free(str); 3696030Sjb150015 } 3706030Sjb150015 return (ret); 3716030Sjb150015 } 3726030Sjb150015 3736030Sjb150015 /* 3745331Samw * smb_enable_share tells the implementation that it is to enable the share. 3755331Samw * This entails converting the path and options into the appropriate ioctl 3765331Samw * calls. It is assumed that all error checking of paths, etc. were 3775331Samw * done earlier. 3785331Samw */ 3795331Samw static int 3805331Samw smb_enable_share(sa_share_t share) 3815331Samw { 3825331Samw char *path; 3837052Samw smb_share_t si; 3845331Samw sa_resource_t resource; 3855331Samw boolean_t iszfs; 3865331Samw boolean_t privileged; 3875331Samw int err = SA_OK; 3885331Samw priv_set_t *priv_effective; 3895331Samw boolean_t online; 3905331Samw 3916270Sdougm /* 3926270Sdougm * We only start in the global zone and only run if we aren't 3936270Sdougm * running Trusted Extensions. 3946270Sdougm */ 3956270Sdougm if (getzoneid() != GLOBAL_ZONEID) { 3966270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 3976270Sdougm "SMB: service not supported in local zone\n")); 3986270Sdougm return (SA_NOT_SUPPORTED); 3996270Sdougm } 4006270Sdougm if (is_system_labeled()) { 4016270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 4026270Sdougm "SMB: service not supported with Trusted Extensions\n")); 4036270Sdougm return (SA_NOT_SUPPORTED); 4046270Sdougm } 4056270Sdougm 4065331Samw priv_effective = priv_allocset(); 4075331Samw (void) getppriv(PRIV_EFFECTIVE, priv_effective); 4085331Samw privileged = (priv_isfullset(priv_effective) == B_TRUE); 4095331Samw priv_freeset(priv_effective); 4105331Samw 4115331Samw /* get the path since it is important in several places */ 4125331Samw path = sa_get_share_attr(share, "path"); 4135331Samw if (path == NULL) 4145331Samw return (SA_NO_SUCH_PATH); 4155331Samw 4165772Sas200622 /* 4175772Sas200622 * If administratively disabled, don't try to start anything. 4185772Sas200622 */ 4195331Samw online = smb_isonline(); 4205772Sas200622 if (!online && !smb_isautoenable() && smb_isdisabled()) 4215772Sas200622 goto done; 4225331Samw 4235331Samw iszfs = sa_path_is_zfs(path); 4245331Samw 4255331Samw if (iszfs) { 4265331Samw 4275331Samw if (privileged == B_FALSE && !online) { 4285331Samw 4295331Samw if (!online) { 4305331Samw (void) printf(dgettext(TEXT_DOMAIN, 4315331Samw "SMB: Cannot share remove " 4325331Samw "file system: %s\n"), path); 4335331Samw (void) printf(dgettext(TEXT_DOMAIN, 4345331Samw "SMB: Service needs to be enabled " 4355331Samw "by a privileged user\n")); 4365331Samw err = SA_NO_PERMISSION; 4375331Samw errno = EPERM; 4385331Samw } 4395331Samw if (err) { 4405331Samw sa_free_attr_string(path); 4415331Samw return (err); 4425331Samw } 4435331Samw 4445331Samw } 4455331Samw } 4465331Samw 4475331Samw if (privileged == B_TRUE && !online) { 4485331Samw err = smb_enable_service(); 4495331Samw if (err != SA_OK) { 4505331Samw (void) printf(dgettext(TEXT_DOMAIN, 4515331Samw "SMB: Unable to enable service\n")); 4525331Samw /* 4535331Samw * For now, it is OK to not be able to enable 4545331Samw * the service. 4555331Samw */ 4566030Sjb150015 if (err == SA_BUSY || err == SA_SYSTEM_ERR) 4575331Samw err = SA_OK; 4585331Samw } else { 4595331Samw online = B_TRUE; 4605331Samw } 4615331Samw } 4625331Samw 4635331Samw /* 4645331Samw * Don't bother trying to start shares if the service isn't 4655331Samw * running. 4665331Samw */ 4675331Samw if (!online) 4685331Samw goto done; 4695331Samw 4705331Samw /* Each share can have multiple resources */ 4715331Samw for (resource = sa_get_share_resource(share, NULL); 4725331Samw resource != NULL; 4735331Samw resource = sa_get_next_resource(resource)) { 4747348SJose.Borrego@Sun.COM err = smb_build_shareinfo(share, resource, &si); 4757348SJose.Borrego@Sun.COM if (err != SA_OK) { 4765331Samw sa_free_attr_string(path); 4777348SJose.Borrego@Sun.COM return (err); 4785331Samw } 4795331Samw 4805331Samw if (!iszfs) { 4817348SJose.Borrego@Sun.COM err = smb_share_create(&si); 4825331Samw } else { 4835331Samw share_t sh; 4845331Samw 48511411SSurya.Prakki@Sun.COM (void) sa_sharetab_fill_zfs(share, &sh, "smb"); 4868845Samw@Sun.COM err = sa_share_zfs(share, resource, (char *)path, &sh, 4875331Samw &si, ZFS_SHARE_SMB); 48810761SWilliam.Krier@Sun.COM if (err != SA_OK) { 48910761SWilliam.Krier@Sun.COM errno = err; 49010761SWilliam.Krier@Sun.COM err = -1; 49110761SWilliam.Krier@Sun.COM } 4925331Samw sa_emptyshare(&sh); 4935331Samw } 4945331Samw } 4955331Samw if (!iszfs) 4965331Samw (void) sa_update_sharetab(share, "smb"); 4975331Samw done: 4985331Samw sa_free_attr_string(path); 4995331Samw 5005331Samw return (err == NERR_DuplicateShare ? 0 : err); 5015331Samw } 5025331Samw 5035331Samw /* 5045331Samw * This is the share for CIFS all shares have resource names. 5055331Samw * Enable tells the smb server to update its hash. If it fails 5065331Samw * because smb server is down, we just ignore as smb server loads 5075331Samw * the resources from sharemanager at startup. 5085331Samw */ 5095331Samw 5105331Samw static int 5115331Samw smb_enable_resource(sa_resource_t resource) 5125331Samw { 5135331Samw sa_share_t share; 5147052Samw smb_share_t si; 5155772Sas200622 int ret = SA_OK; 5165772Sas200622 int err; 5175772Sas200622 boolean_t isonline; 5185331Samw 5195331Samw share = sa_get_resource_parent(resource); 5205331Samw if (share == NULL) 5215331Samw return (SA_NO_SUCH_PATH); 5225772Sas200622 5235772Sas200622 /* 5245772Sas200622 * If administratively disabled, don't try to start anything. 5255772Sas200622 */ 5265772Sas200622 isonline = smb_isonline(); 5275772Sas200622 if (!isonline && !smb_isautoenable() && smb_isdisabled()) 5287348SJose.Borrego@Sun.COM return (SA_OK); 5295772Sas200622 5307348SJose.Borrego@Sun.COM if (!isonline) { 5317348SJose.Borrego@Sun.COM (void) smb_enable_service(); 5327348SJose.Borrego@Sun.COM 5337348SJose.Borrego@Sun.COM if (!smb_isonline()) 5347348SJose.Borrego@Sun.COM return (SA_OK); 5355772Sas200622 } 5365772Sas200622 5377348SJose.Borrego@Sun.COM if ((ret = smb_build_shareinfo(share, resource, &si)) != SA_OK) 5387348SJose.Borrego@Sun.COM return (ret); 5395772Sas200622 5405772Sas200622 /* 5415772Sas200622 * Attempt to add the share. Any error that occurs if it was 5425772Sas200622 * online is an error but don't count NERR_DuplicateName if 5435772Sas200622 * smb/server had to be brought online since bringing the 5445772Sas200622 * service up will enable the share that was just added prior 5455772Sas200622 * to the attempt to enable. 5465772Sas200622 */ 5477348SJose.Borrego@Sun.COM err = smb_share_create(&si); 5485772Sas200622 if (err == NERR_Success || !(!isonline && err == NERR_DuplicateName)) 5495772Sas200622 (void) sa_update_sharetab(share, "smb"); 5505772Sas200622 else 5515331Samw return (SA_NOT_SHARED); 5525331Samw 5537348SJose.Borrego@Sun.COM return (SA_OK); 5545331Samw } 5555331Samw 5565331Samw /* 5575331Samw * Remove it from smb server hash. 5585331Samw */ 5595331Samw static int 5605331Samw smb_disable_resource(sa_resource_t resource) 5615331Samw { 5625331Samw char *rname; 5637052Samw uint32_t res; 5645331Samw sa_share_t share; 5655331Samw 5665331Samw rname = sa_get_resource_attr(resource, "name"); 5675331Samw if (rname == NULL) 5685331Samw return (SA_NO_SUCH_RESOURCE); 5695331Samw 5705331Samw if (smb_isonline()) { 5717348SJose.Borrego@Sun.COM res = smb_share_delete(rname); 57211337SWilliam.Krier@Sun.COM if (res != NERR_Success && 57311337SWilliam.Krier@Sun.COM res != NERR_NetNameNotFound) { 5745331Samw sa_free_attr_string(rname); 5755331Samw return (SA_CONFIG_ERR); 5765331Samw } 5775331Samw } 5785951Sdougm 5795951Sdougm sa_free_attr_string(rname); 5805951Sdougm 5815331Samw share = sa_get_resource_parent(resource); 5825331Samw if (share != NULL) { 5835331Samw rname = sa_get_share_attr(share, "path"); 5845331Samw if (rname != NULL) { 5855951Sdougm sa_handle_t handle; 5865951Sdougm 5875951Sdougm handle = sa_find_group_handle((sa_group_t)resource); 5885951Sdougm (void) sa_delete_sharetab(handle, rname, "smb"); 5895331Samw sa_free_attr_string(rname); 5905331Samw } 5915331Samw } 5925331Samw /* 5935331Samw * Always return OK as smb/server may be down and 5945331Samw * Shares will be picked up when loaded. 5955331Samw */ 5965331Samw return (SA_OK); 5975331Samw } 5985331Samw 5995331Samw /* 6005331Samw * smb_share_changed(sa_share_t share) 6015331Samw * 6025331Samw * The specified share has changed. 6035331Samw */ 6045331Samw static int 6055331Samw smb_share_changed(sa_share_t share) 6065331Samw { 6075331Samw char *path; 6085331Samw sa_resource_t resource; 6095331Samw 6107348SJose.Borrego@Sun.COM if (!smb_isonline()) 6117348SJose.Borrego@Sun.COM return (SA_OK); 6127348SJose.Borrego@Sun.COM 6135331Samw /* get the path since it is important in several places */ 6145331Samw path = sa_get_share_attr(share, "path"); 6155331Samw if (path == NULL) 6165331Samw return (SA_NO_SUCH_PATH); 6177348SJose.Borrego@Sun.COM 6185331Samw for (resource = sa_get_share_resource(share, NULL); 6195331Samw resource != NULL; 6205331Samw resource = sa_get_next_resource(resource)) 6215331Samw (void) smb_resource_changed(resource); 6225331Samw 6235331Samw sa_free_attr_string(path); 6245331Samw 6255331Samw return (SA_OK); 6265331Samw } 6275331Samw 6285331Samw /* 6295331Samw * smb_resource_changed(sa_resource_t resource) 6305331Samw * 6315331Samw * The specified resource has changed. 6325331Samw */ 6335331Samw static int 6345331Samw smb_resource_changed(sa_resource_t resource) 6355331Samw { 6367052Samw uint32_t res; 6377348SJose.Borrego@Sun.COM sa_share_t share; 6387052Samw smb_share_t si; 6395331Samw 6407348SJose.Borrego@Sun.COM if (!smb_isonline()) 6417348SJose.Borrego@Sun.COM return (SA_OK); 6425331Samw 6437348SJose.Borrego@Sun.COM if ((share = sa_get_resource_parent(resource)) == NULL) 6447348SJose.Borrego@Sun.COM return (SA_CONFIG_ERR); 6455331Samw 6467348SJose.Borrego@Sun.COM if ((res = smb_build_shareinfo(share, resource, &si)) != SA_OK) 6477348SJose.Borrego@Sun.COM return (res); 6485331Samw 6497961SNatalie.Li@Sun.COM res = smb_share_modify(&si); 6507348SJose.Borrego@Sun.COM 6517348SJose.Borrego@Sun.COM if (res != NERR_Success) 6525331Samw return (SA_CONFIG_ERR); 6535331Samw 6545331Samw return (smb_enable_service()); 6555331Samw } 6565331Samw 6575331Samw /* 6585800Sdougm * smb_disable_share(sa_share_t share, char *path) 6595331Samw * 6605800Sdougm * Unshare the specified share. Note that "path" is the same 6615800Sdougm * path as what is in the "share" object. It is passed in to avoid an 6625800Sdougm * additional lookup. A missing "path" value makes this a no-op 6635800Sdougm * function. 6645331Samw */ 6655331Samw static int 6665331Samw smb_disable_share(sa_share_t share, char *path) 6675331Samw { 6685331Samw char *rname; 6695331Samw sa_resource_t resource; 6705800Sdougm sa_group_t parent; 6715331Samw boolean_t iszfs; 6725331Samw int err = SA_OK; 67310761SWilliam.Krier@Sun.COM int ret = SA_OK; 6745951Sdougm sa_handle_t handle; 6757483SDoug.McCallum@Sun.COM boolean_t first = B_TRUE; /* work around sharetab issue */ 6765331Samw 6775800Sdougm if (path == NULL) 67810761SWilliam.Krier@Sun.COM return (ret); 6795800Sdougm 6805800Sdougm /* 6815800Sdougm * If the share is in a ZFS group we need to handle it 6825800Sdougm * differently. Just being on a ZFS file system isn't 6835800Sdougm * enough since we may be in a legacy share case. 6845800Sdougm */ 6855800Sdougm parent = sa_get_parent_group(share); 6865800Sdougm iszfs = sa_group_is_zfs(parent); 6875800Sdougm 6885331Samw if (!smb_isonline()) 6895331Samw goto done; 6905331Samw 6915331Samw for (resource = sa_get_share_resource(share, NULL); 69210761SWilliam.Krier@Sun.COM resource != NULL; 6935331Samw resource = sa_get_next_resource(resource)) { 6945331Samw rname = sa_get_resource_attr(resource, "name"); 6955331Samw if (rname == NULL) { 6965331Samw continue; 6975331Samw } 6985331Samw if (!iszfs) { 6997348SJose.Borrego@Sun.COM err = smb_share_delete(rname); 7005331Samw switch (err) { 7015331Samw case NERR_NetNameNotFound: 7025331Samw case NERR_Success: 7035331Samw err = SA_OK; 7045331Samw break; 7055331Samw default: 7065331Samw err = SA_CONFIG_ERR; 7075331Samw break; 7085331Samw } 7095331Samw } else { 7105331Samw share_t sh; 7115331Samw 71211411SSurya.Prakki@Sun.COM (void) sa_sharetab_fill_zfs(share, &sh, "smb"); 7138845Samw@Sun.COM err = sa_share_zfs(share, resource, (char *)path, &sh, 7145331Samw rname, ZFS_UNSHARE_SMB); 71510761SWilliam.Krier@Sun.COM if (err != SA_OK) { 71610761SWilliam.Krier@Sun.COM switch (err) { 71710761SWilliam.Krier@Sun.COM case EINVAL: 71810761SWilliam.Krier@Sun.COM case ENOENT: 71910761SWilliam.Krier@Sun.COM err = SA_OK; 72010761SWilliam.Krier@Sun.COM break; 72110761SWilliam.Krier@Sun.COM default: 72210761SWilliam.Krier@Sun.COM /* 72310761SWilliam.Krier@Sun.COM * If we are no longer the first case, 72410761SWilliam.Krier@Sun.COM * we don't care about the sa_share_zfs 72510761SWilliam.Krier@Sun.COM * err if it is -1. This works around 72610761SWilliam.Krier@Sun.COM * a problem in sharefs and should be 72710761SWilliam.Krier@Sun.COM * removed when sharefs supports 72810761SWilliam.Krier@Sun.COM * multiple entries per path. 72910761SWilliam.Krier@Sun.COM */ 73010761SWilliam.Krier@Sun.COM if (!first) 73110761SWilliam.Krier@Sun.COM err = SA_OK; 73210761SWilliam.Krier@Sun.COM else 73310761SWilliam.Krier@Sun.COM err = SA_SYSTEM_ERR; 73410761SWilliam.Krier@Sun.COM break; 73510761SWilliam.Krier@Sun.COM } 73610761SWilliam.Krier@Sun.COM } 73710761SWilliam.Krier@Sun.COM 7387483SDoug.McCallum@Sun.COM first = B_FALSE; 7397483SDoug.McCallum@Sun.COM 7405331Samw sa_emptyshare(&sh); 7415331Samw } 74210761SWilliam.Krier@Sun.COM 74310761SWilliam.Krier@Sun.COM if (err != SA_OK) 74410761SWilliam.Krier@Sun.COM ret = err; 7455331Samw sa_free_attr_string(rname); 7465331Samw } 7475331Samw done: 7485951Sdougm if (!iszfs) { 7495951Sdougm handle = sa_find_group_handle((sa_group_t)share); 7505951Sdougm if (handle != NULL) 7515951Sdougm (void) sa_delete_sharetab(handle, path, "smb"); 7525951Sdougm else 75310761SWilliam.Krier@Sun.COM ret = SA_SYSTEM_ERR; 7545951Sdougm } 75510761SWilliam.Krier@Sun.COM return (ret); 7565331Samw } 7575331Samw 7585331Samw /* 7596214Sdougm * smb_validate_property(handle, property, parent) 7605331Samw * 7615331Samw * Check that the property has a legitimate value for its type. 7626214Sdougm * Handle isn't currently used but may need to be in the future. 7635331Samw */ 7645331Samw 7656214Sdougm /*ARGSUSED*/ 7665331Samw static int 7676214Sdougm smb_validate_property(sa_handle_t handle, sa_property_t property, 7686214Sdougm sa_optionset_t parent) 7695331Samw { 7705331Samw int ret = SA_OK; 7715331Samw char *propname; 7725331Samw int optindex; 7735331Samw sa_group_t parent_group; 7745331Samw char *value; 7757961SNatalie.Li@Sun.COM char *other; 7765331Samw 7775331Samw propname = sa_get_property_attr(property, "type"); 7785331Samw 7795331Samw if ((optindex = findopt(propname)) < 0) 7805331Samw ret = SA_NO_SUCH_PROP; 7815331Samw 7825331Samw /* need to validate value range here as well */ 7835331Samw if (ret == SA_OK) { 7845331Samw parent_group = sa_get_parent_group((sa_share_t)parent); 7855331Samw if (optdefs[optindex].share && !sa_is_share(parent_group)) 7865331Samw ret = SA_PROP_SHARE_ONLY; 7875331Samw } 7885331Samw if (ret != SA_OK) { 7895331Samw if (propname != NULL) 7905331Samw sa_free_attr_string(propname); 7915331Samw return (ret); 7925331Samw } 7935331Samw 7945331Samw value = sa_get_property_attr(property, "value"); 7955331Samw if (value != NULL) { 7965331Samw /* first basic type checking */ 7975331Samw switch (optdefs[optindex].type) { 7985331Samw case OPT_TYPE_NUMBER: 7995331Samw /* check that the value is all digits */ 8005331Samw if (!is_a_number(value)) 8015331Samw ret = SA_BAD_VALUE; 8025331Samw break; 8035331Samw case OPT_TYPE_BOOLEAN: 8049832Samw@Sun.COM ret = true_false_validator(0, value); 8055331Samw break; 8065331Samw case OPT_TYPE_NAME: 8075331Samw /* 8085331Samw * Make sure no invalid characters 8095331Samw */ 8109832Samw@Sun.COM if (!validresource(value)) 8115331Samw ret = SA_BAD_VALUE; 8125331Samw break; 8135331Samw case OPT_TYPE_STRING: 8145331Samw /* whatever is here should be ok */ 8155331Samw break; 8168334SJose.Borrego@Sun.COM case OPT_TYPE_CSC: 8179832Samw@Sun.COM if (!validcsc(value)) 8188334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 8198334SJose.Borrego@Sun.COM break; 8207961SNatalie.Li@Sun.COM case OPT_TYPE_ACCLIST: { 8217961SNatalie.Li@Sun.COM sa_property_t oprop; 8227961SNatalie.Li@Sun.COM char *ovalue; 8237961SNatalie.Li@Sun.COM /* 8247961SNatalie.Li@Sun.COM * access list handling. Should eventually 8257961SNatalie.Li@Sun.COM * validate that all the values make sense. 8267961SNatalie.Li@Sun.COM * Also, ro and rw may have cross value 8277961SNatalie.Li@Sun.COM * conflicts. 8287961SNatalie.Li@Sun.COM */ 8297961SNatalie.Li@Sun.COM if (parent == NULL) 8307961SNatalie.Li@Sun.COM break; 8317961SNatalie.Li@Sun.COM if (strcmp(propname, SHOPT_RO) == 0) 8327961SNatalie.Li@Sun.COM other = SHOPT_RW; 8337961SNatalie.Li@Sun.COM else if (strcmp(propname, SHOPT_RW) == 0) 8347961SNatalie.Li@Sun.COM other = SHOPT_RO; 8357961SNatalie.Li@Sun.COM else 8367961SNatalie.Li@Sun.COM other = NULL; 8377961SNatalie.Li@Sun.COM if (other == NULL) 8387961SNatalie.Li@Sun.COM break; 8397961SNatalie.Li@Sun.COM 8407961SNatalie.Li@Sun.COM /* compare rw(ro) with ro(rw) */ 8417961SNatalie.Li@Sun.COM oprop = sa_get_property(parent, other); 8427961SNatalie.Li@Sun.COM if (oprop == NULL) 8437961SNatalie.Li@Sun.COM break; 8447961SNatalie.Li@Sun.COM /* 8457961SNatalie.Li@Sun.COM * only potential 8467961SNatalie.Li@Sun.COM * confusion if other 8477961SNatalie.Li@Sun.COM * exists 8487961SNatalie.Li@Sun.COM */ 8497961SNatalie.Li@Sun.COM ovalue = sa_get_property_attr(oprop, "value"); 8507961SNatalie.Li@Sun.COM if (ovalue != NULL) { 8517961SNatalie.Li@Sun.COM ret = check_rorw(value, ovalue); 8527961SNatalie.Li@Sun.COM sa_free_attr_string(ovalue); 8537961SNatalie.Li@Sun.COM } 8547961SNatalie.Li@Sun.COM break; 8557961SNatalie.Li@Sun.COM } 8565331Samw default: 8575331Samw break; 8585331Samw } 8595331Samw } 8605331Samw 8615331Samw if (value != NULL) 8625331Samw sa_free_attr_string(value); 8635331Samw if (ret == SA_OK && optdefs[optindex].check != NULL) 8645331Samw /* do the property specific check */ 8655331Samw ret = optdefs[optindex].check(property); 8665331Samw 8675331Samw if (propname != NULL) 8685331Samw sa_free_attr_string(propname); 8695331Samw return (ret); 8705331Samw } 8715331Samw 8725331Samw /* 8735331Samw * Protocol management functions 8745331Samw * 8755331Samw * properties defined in the default files are defined in 8765331Samw * proto_option_defs for parsing and validation. 8775331Samw */ 8785331Samw 8795331Samw struct smb_proto_option_defs { 8805331Samw int smb_index; 8815331Samw int32_t minval; 8825331Samw int32_t maxval; /* In case of length of string this should be max */ 8835331Samw int (*validator)(int, char *); 8845331Samw int32_t refresh; 8855331Samw } smb_proto_options[] = { 8865772Sas200622 { SMB_CI_SYS_CMNT, 0, MAX_VALUE_BUFLEN, 8875772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 8885772Sas200622 { SMB_CI_MAX_WORKERS, 64, 1024, range_check_validator, 8895772Sas200622 SMB_REFRESH_REFRESH }, 8905772Sas200622 { SMB_CI_NBSCOPE, 0, MAX_VALUE_BUFLEN, 8915772Sas200622 string_length_check_validator, 0 }, 8925772Sas200622 { SMB_CI_LM_LEVEL, 2, 5, range_check_validator, 0 }, 8935772Sas200622 { SMB_CI_KEEPALIVE, 20, 5400, range_check_validator_zero_ok, 8945772Sas200622 SMB_REFRESH_REFRESH }, 8955772Sas200622 { SMB_CI_WINS_SRV1, 0, MAX_VALUE_BUFLEN, 8969832Samw@Sun.COM ipv4_validator, SMB_REFRESH_REFRESH }, 8975772Sas200622 { SMB_CI_WINS_SRV2, 0, MAX_VALUE_BUFLEN, 8989832Samw@Sun.COM ipv4_validator, SMB_REFRESH_REFRESH }, 8995772Sas200622 { SMB_CI_WINS_EXCL, 0, MAX_VALUE_BUFLEN, 9008334SJose.Borrego@Sun.COM interface_validator, SMB_REFRESH_REFRESH }, 9015772Sas200622 { SMB_CI_SIGNING_ENABLE, 0, 0, true_false_validator, 9025772Sas200622 SMB_REFRESH_REFRESH }, 9035772Sas200622 { SMB_CI_SIGNING_REQD, 0, 0, true_false_validator, 9045772Sas200622 SMB_REFRESH_REFRESH }, 9055772Sas200622 { SMB_CI_RESTRICT_ANON, 0, 0, true_false_validator, 9065772Sas200622 SMB_REFRESH_REFRESH }, 9075772Sas200622 { SMB_CI_DOMAIN_SRV, 0, MAX_VALUE_BUFLEN, 90811633SJoyce.McIntosh@Sun.COM hostname_validator, SMB_REFRESH_REFRESH }, 9095772Sas200622 { SMB_CI_ADS_SITE, 0, MAX_VALUE_BUFLEN, 9105772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 9115772Sas200622 { SMB_CI_DYNDNS_ENABLE, 0, 0, true_false_validator, 0 }, 9125772Sas200622 { SMB_CI_AUTOHOME_MAP, 0, MAX_VALUE_BUFLEN, path_validator, 0 }, 9138670SJose.Borrego@Sun.COM { SMB_CI_IPV6_ENABLE, 0, 0, true_false_validator, 9148670SJose.Borrego@Sun.COM SMB_REFRESH_REFRESH }, 9159832Samw@Sun.COM { SMB_CI_MAP, 0, MAX_VALUE_BUFLEN, cmd_validator, SMB_REFRESH_REFRESH }, 9169832Samw@Sun.COM { SMB_CI_UNMAP, 0, MAX_VALUE_BUFLEN, cmd_validator, 9179832Samw@Sun.COM SMB_REFRESH_REFRESH }, 9189832Samw@Sun.COM { SMB_CI_DISPOSITION, 0, MAX_VALUE_BUFLEN, 9199832Samw@Sun.COM disposition_validator, SMB_REFRESH_REFRESH }, 9205331Samw }; 9215331Samw 9225772Sas200622 #define SMB_OPT_NUM \ 9235772Sas200622 (sizeof (smb_proto_options) / sizeof (smb_proto_options[0])) 9245772Sas200622 9255331Samw /* 9265331Samw * Check the range of value as int range. 9275331Samw */ 9285331Samw static int 9295331Samw range_check_validator(int index, char *value) 9305331Samw { 9315331Samw int ret = SA_OK; 9325331Samw 9335331Samw if (!is_a_number(value)) { 9345331Samw ret = SA_BAD_VALUE; 9355331Samw } else { 9365331Samw int val; 9375331Samw val = strtoul(value, NULL, 0); 9385331Samw if (val < smb_proto_options[index].minval || 9395331Samw val > smb_proto_options[index].maxval) 9405331Samw ret = SA_BAD_VALUE; 9415331Samw } 9425331Samw return (ret); 9435331Samw } 9445331Samw 9455331Samw /* 9465331Samw * Check the range of value as int range. 9475331Samw */ 9485331Samw static int 9495331Samw range_check_validator_zero_ok(int index, char *value) 9505331Samw { 9515331Samw int ret = SA_OK; 9525331Samw 9535331Samw if (!is_a_number(value)) { 9545331Samw ret = SA_BAD_VALUE; 9555331Samw } else { 9565331Samw int val; 9575331Samw val = strtoul(value, NULL, 0); 9585331Samw if (val == 0) 9595331Samw ret = SA_OK; 9605331Samw else { 9615331Samw if (val < smb_proto_options[index].minval || 9625331Samw val > smb_proto_options[index].maxval) 9635331Samw ret = SA_BAD_VALUE; 9645331Samw } 9655331Samw } 9665331Samw return (ret); 9675331Samw } 9685331Samw 9695331Samw /* 9705331Samw * Check the length of the string 9715331Samw */ 9725331Samw static int 9735331Samw string_length_check_validator(int index, char *value) 9745331Samw { 9755331Samw int ret = SA_OK; 9765331Samw 9775331Samw if (value == NULL) 9785331Samw return (SA_BAD_VALUE); 9795331Samw if (strlen(value) > smb_proto_options[index].maxval) 9805331Samw ret = SA_BAD_VALUE; 9815331Samw return (ret); 9825331Samw } 9835331Samw 9845331Samw /* 9855331Samw * Check yes/no 9865331Samw */ 9875331Samw /*ARGSUSED*/ 9885331Samw static int 9895331Samw true_false_validator(int index, char *value) 9905331Samw { 9915331Samw if (value == NULL) 9925331Samw return (SA_BAD_VALUE); 9935331Samw if ((strcasecmp(value, "true") == 0) || 9945331Samw (strcasecmp(value, "false") == 0)) 9955331Samw return (SA_OK); 9965331Samw return (SA_BAD_VALUE); 9975331Samw } 9985331Samw 9995331Samw /* 10009832Samw@Sun.COM * Check IP v4 address. 10015331Samw */ 10025331Samw /*ARGSUSED*/ 10035331Samw static int 10049832Samw@Sun.COM ipv4_validator(int index, char *value) 10055331Samw { 10065331Samw char sbytes[16]; 10075331Samw 10085331Samw if (value == NULL) 10095331Samw return (SA_OK); 10109832Samw@Sun.COM 10119832Samw@Sun.COM if (strlen(value) == 0) 10125331Samw return (SA_OK); 10139832Samw@Sun.COM 10145331Samw if (inet_pton(AF_INET, value, (void *)sbytes) != 1) 10155331Samw return (SA_BAD_VALUE); 10165331Samw 10175331Samw return (SA_OK); 10185331Samw } 10195331Samw 10205331Samw /* 102111633SJoyce.McIntosh@Sun.COM * Check that the specified name is an IP address (v4 or v6) or a hostname. 102211633SJoyce.McIntosh@Sun.COM * Per RFC 1035 and 1123, names may contain alphanumeric characters, hyphens 102311633SJoyce.McIntosh@Sun.COM * and dots. The first and last character of a label must be alphanumeric. 102411633SJoyce.McIntosh@Sun.COM * Interior characters may be alphanumeric or hypens. 102511633SJoyce.McIntosh@Sun.COM * 102611633SJoyce.McIntosh@Sun.COM * Domain names should not contain underscores but we allow them because 102711633SJoyce.McIntosh@Sun.COM * Windows names are often in non-compliance with this rule. 10289832Samw@Sun.COM */ 10299832Samw@Sun.COM /*ARGSUSED*/ 10309832Samw@Sun.COM static int 103111633SJoyce.McIntosh@Sun.COM hostname_validator(int index, char *value) 10329832Samw@Sun.COM { 103311633SJoyce.McIntosh@Sun.COM char sbytes[INET6_ADDRSTRLEN]; 103411633SJoyce.McIntosh@Sun.COM boolean_t new_label = B_TRUE; 103511633SJoyce.McIntosh@Sun.COM char *p; 103611633SJoyce.McIntosh@Sun.COM char label_terminator; 103711633SJoyce.McIntosh@Sun.COM int len; 10389832Samw@Sun.COM 10399832Samw@Sun.COM if (value == NULL) 10409832Samw@Sun.COM return (SA_OK); 10419832Samw@Sun.COM 104211633SJoyce.McIntosh@Sun.COM if ((len = strlen(value)) == 0) 104311633SJoyce.McIntosh@Sun.COM return (SA_OK); 104411633SJoyce.McIntosh@Sun.COM 104511633SJoyce.McIntosh@Sun.COM if (inet_pton(AF_INET, value, (void *)sbytes) == 1) 104611633SJoyce.McIntosh@Sun.COM return (SA_OK); 104711633SJoyce.McIntosh@Sun.COM 104811633SJoyce.McIntosh@Sun.COM if (inet_pton(AF_INET6, value, (void *)sbytes) == 1) 10499832Samw@Sun.COM return (SA_OK); 10509832Samw@Sun.COM 105111633SJoyce.McIntosh@Sun.COM if (len >= MAXHOSTNAMELEN) 105211633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 105311633SJoyce.McIntosh@Sun.COM 105411633SJoyce.McIntosh@Sun.COM if (strspn(value, "0123456789.") == len) 105511633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 105611633SJoyce.McIntosh@Sun.COM 105711633SJoyce.McIntosh@Sun.COM label_terminator = *value; 105811633SJoyce.McIntosh@Sun.COM 105911633SJoyce.McIntosh@Sun.COM for (p = value; *p != '\0'; ++p) { 106011633SJoyce.McIntosh@Sun.COM if (new_label) { 106111633SJoyce.McIntosh@Sun.COM if (!isalnum(*p)) 106211633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 106311633SJoyce.McIntosh@Sun.COM new_label = B_FALSE; 106411633SJoyce.McIntosh@Sun.COM label_terminator = *p; 106511633SJoyce.McIntosh@Sun.COM continue; 106611633SJoyce.McIntosh@Sun.COM } 106711633SJoyce.McIntosh@Sun.COM 106811633SJoyce.McIntosh@Sun.COM if (*p == '.') { 106911633SJoyce.McIntosh@Sun.COM if (!isalnum(label_terminator)) 107011633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 107111633SJoyce.McIntosh@Sun.COM new_label = B_TRUE; 107211633SJoyce.McIntosh@Sun.COM label_terminator = *p; 107311633SJoyce.McIntosh@Sun.COM continue; 107411633SJoyce.McIntosh@Sun.COM } 107511633SJoyce.McIntosh@Sun.COM 107611633SJoyce.McIntosh@Sun.COM label_terminator = *p; 107711633SJoyce.McIntosh@Sun.COM 107811633SJoyce.McIntosh@Sun.COM if (isalnum(*p) || *p == '-' || *p == '_') 107911633SJoyce.McIntosh@Sun.COM continue; 108011633SJoyce.McIntosh@Sun.COM 108111633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 108211633SJoyce.McIntosh@Sun.COM } 108311633SJoyce.McIntosh@Sun.COM 108411633SJoyce.McIntosh@Sun.COM if (!isalnum(label_terminator)) 10859832Samw@Sun.COM return (SA_BAD_VALUE); 10869832Samw@Sun.COM 10879832Samw@Sun.COM return (SA_OK); 10889832Samw@Sun.COM } 10899832Samw@Sun.COM 10909832Samw@Sun.COM /* 10918334SJose.Borrego@Sun.COM * Call back function for dlpi_walk. 10928334SJose.Borrego@Sun.COM * Returns TRUE if interface name exists on the host. 10938334SJose.Borrego@Sun.COM */ 10948334SJose.Borrego@Sun.COM static boolean_t 10958334SJose.Borrego@Sun.COM smb_get_interface(const char *ifname, void *arg) 10968334SJose.Borrego@Sun.COM { 10978334SJose.Borrego@Sun.COM smb_hostifs_walker_t *iterp = arg; 10988334SJose.Borrego@Sun.COM 10998334SJose.Borrego@Sun.COM iterp->hiw_matchfound = (strcmp(ifname, iterp->hiw_ifname) == 0); 11008334SJose.Borrego@Sun.COM 11018334SJose.Borrego@Sun.COM return (iterp->hiw_matchfound); 11028334SJose.Borrego@Sun.COM } 11038334SJose.Borrego@Sun.COM 11048334SJose.Borrego@Sun.COM /* 11058334SJose.Borrego@Sun.COM * Checks to see if the input interface exists on the host. 11068334SJose.Borrego@Sun.COM * Returns B_TRUE if the match is found, B_FALSE otherwise. 11078334SJose.Borrego@Sun.COM */ 11088334SJose.Borrego@Sun.COM static boolean_t 11098334SJose.Borrego@Sun.COM smb_validate_interface(const char *ifname) 11108334SJose.Borrego@Sun.COM { 11118334SJose.Borrego@Sun.COM smb_hostifs_walker_t iter; 11128334SJose.Borrego@Sun.COM 11138334SJose.Borrego@Sun.COM if ((ifname == NULL) || (*ifname == '\0')) 11148334SJose.Borrego@Sun.COM return (B_FALSE); 11158334SJose.Borrego@Sun.COM 11168334SJose.Borrego@Sun.COM iter.hiw_ifname = ifname; 11178334SJose.Borrego@Sun.COM iter.hiw_matchfound = B_FALSE; 11188334SJose.Borrego@Sun.COM dlpi_walk(smb_get_interface, &iter, 0); 11198334SJose.Borrego@Sun.COM 11208334SJose.Borrego@Sun.COM return (iter.hiw_matchfound); 11218334SJose.Borrego@Sun.COM } 11228334SJose.Borrego@Sun.COM 11238334SJose.Borrego@Sun.COM /* 11248334SJose.Borrego@Sun.COM * Check valid interfaces. Interface names value can be NULL or empty. 11258334SJose.Borrego@Sun.COM * Returns SA_BAD_VALUE if interface cannot be found on the host. 11265331Samw */ 11275331Samw /*ARGSUSED*/ 11285331Samw static int 11298334SJose.Borrego@Sun.COM interface_validator(int index, char *value) 11305331Samw { 11318334SJose.Borrego@Sun.COM char buf[16]; 11328334SJose.Borrego@Sun.COM int ret = SA_OK; 11338334SJose.Borrego@Sun.COM char *ifname, *tmp, *p; 11345331Samw 11355331Samw if (value == NULL || *value == '\0') 11368334SJose.Borrego@Sun.COM return (ret); 11375331Samw 11385331Samw if (strlen(value) > MAX_VALUE_BUFLEN) 11395331Samw return (SA_BAD_VALUE); 11405331Samw 11418334SJose.Borrego@Sun.COM if ((p = strdup(value)) == NULL) 11425331Samw return (SA_NO_MEMORY); 11435331Samw 11448334SJose.Borrego@Sun.COM tmp = p; 11458334SJose.Borrego@Sun.COM while ((ifname = strsep(&tmp, ",")) != NULL) { 11468334SJose.Borrego@Sun.COM if (*ifname == '\0') { 11478334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 11488334SJose.Borrego@Sun.COM break; 11495331Samw } 11508334SJose.Borrego@Sun.COM 11518334SJose.Borrego@Sun.COM if (!smb_validate_interface(ifname)) { 11528334SJose.Borrego@Sun.COM if (inet_pton(AF_INET, ifname, (void *)buf) == 0) { 11538334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 11548334SJose.Borrego@Sun.COM break; 11555331Samw } 11565331Samw } 11575331Samw } 11585331Samw 11598334SJose.Borrego@Sun.COM free(p); 11608334SJose.Borrego@Sun.COM return (ret); 11615331Samw } 11625331Samw 11635331Samw /* 11645331Samw * Check path 11655331Samw */ 11665331Samw /*ARGSUSED*/ 11675331Samw static int 11687588Samw@Sun.COM path_validator(int index, char *path) 11695331Samw { 11705331Samw struct stat buffer; 11715331Samw int fd, status; 11725331Samw 11737588Samw@Sun.COM if (path == NULL) 11745331Samw return (SA_BAD_VALUE); 11755331Samw 11767588Samw@Sun.COM fd = open(path, O_RDONLY); 11775331Samw if (fd < 0) 11785331Samw return (SA_BAD_VALUE); 11795331Samw 11805331Samw status = fstat(fd, &buffer); 11815331Samw (void) close(fd); 11825331Samw 11835331Samw if (status < 0) 11845331Samw return (SA_BAD_VALUE); 11855331Samw 11865331Samw if (buffer.st_mode & S_IFDIR) 11875331Samw return (SA_OK); 11885331Samw return (SA_BAD_VALUE); 11895331Samw } 11905331Samw 11915331Samw /* 11925331Samw * the protoset holds the defined options so we don't have to read 11935331Samw * them multiple times 11945331Samw */ 11955331Samw static sa_protocol_properties_t protoset; 11965331Samw 11975331Samw static int 11985331Samw findprotoopt(char *name) 11995331Samw { 12005331Samw int i; 12015772Sas200622 char *sc_name; 12025772Sas200622 12035772Sas200622 for (i = 0; i < SMB_OPT_NUM; i++) { 12045772Sas200622 sc_name = smb_config_getname(smb_proto_options[i].smb_index); 12055772Sas200622 if (strcasecmp(sc_name, name) == 0) 12065331Samw return (i); 12075331Samw } 12085772Sas200622 12095331Samw return (-1); 12105331Samw } 12115331Samw 12125331Samw /* 12135331Samw * smb_load_proto_properties() 12145331Samw * 12155331Samw * read the smb config values from SMF. 12165331Samw */ 12175331Samw 12185331Samw static int 12195331Samw smb_load_proto_properties() 12205331Samw { 12215331Samw sa_property_t prop; 12225772Sas200622 char value[MAX_VALUE_BUFLEN]; 12235772Sas200622 char *name; 12245331Samw int index; 12256019Sdougm int ret = SA_OK; 12265772Sas200622 int rc; 12275331Samw 12285331Samw protoset = sa_create_protocol_properties(SMB_PROTOCOL_NAME); 12295331Samw if (protoset == NULL) 12305331Samw return (SA_NO_MEMORY); 12315331Samw 12326019Sdougm for (index = 0; index < SMB_OPT_NUM && ret == SA_OK; index++) { 12335772Sas200622 rc = smb_config_get(smb_proto_options[index].smb_index, 12345772Sas200622 value, sizeof (value)); 12355772Sas200622 if (rc != SMBD_SMF_OK) 12365772Sas200622 continue; 12375772Sas200622 name = smb_config_getname(smb_proto_options[index].smb_index); 12385772Sas200622 prop = sa_create_property(name, value); 12395454Sdougm if (prop != NULL) 12406019Sdougm ret = sa_add_protocol_property(protoset, prop); 12416019Sdougm else 12426019Sdougm ret = SA_NO_MEMORY; 12435331Samw } 12446019Sdougm return (ret); 12455331Samw } 12465331Samw 12475331Samw /* 12485331Samw * smb_share_init() 12495331Samw * 12505331Samw * Initialize the smb plugin. 12515331Samw */ 12525331Samw 12535331Samw static int 12545331Samw smb_share_init(void) 12555331Samw { 12565331Samw if (sa_plugin_ops.sa_init != smb_share_init) 12575331Samw return (SA_SYSTEM_ERR); 12585331Samw 12597588Samw@Sun.COM smb_share_door_clnt_init(); 12607348SJose.Borrego@Sun.COM return (smb_load_proto_properties()); 12615331Samw } 12625331Samw 12635331Samw /* 12645331Samw * smb_share_fini() 12655331Samw * 12665331Samw */ 12675331Samw static void 12685331Samw smb_share_fini(void) 12695331Samw { 12705331Samw xmlFreeNode(protoset); 12715331Samw protoset = NULL; 12725772Sas200622 12737588Samw@Sun.COM smb_share_door_clnt_fini(); 12745331Samw } 12755331Samw 12765331Samw /* 12775331Samw * smb_get_proto_set() 12785331Samw * 12795331Samw * Return an optionset with all the protocol specific properties in 12805331Samw * it. 12815331Samw */ 12825331Samw static sa_protocol_properties_t 12835331Samw smb_get_proto_set(void) 12845331Samw { 12855331Samw return (protoset); 12865331Samw } 12875331Samw 12885331Samw /* 12895772Sas200622 * smb_enable_dependencies() 12905772Sas200622 * 12915772Sas200622 * SMBD_DEFAULT_INSTANCE_FMRI may have some dependencies that aren't 12925772Sas200622 * enabled. This will attempt to enable all of them. 12935772Sas200622 */ 12945772Sas200622 static void 12955772Sas200622 smb_enable_dependencies(const char *fmri) 12965772Sas200622 { 12975772Sas200622 scf_handle_t *handle; 12985772Sas200622 scf_service_t *service; 12995772Sas200622 scf_instance_t *inst = NULL; 13005772Sas200622 scf_iter_t *iter; 13015772Sas200622 scf_property_t *prop; 13025772Sas200622 scf_value_t *value; 13035772Sas200622 scf_propertygroup_t *pg; 13045772Sas200622 scf_scope_t *scope; 13055772Sas200622 char type[SCFTYPE_LEN]; 13065772Sas200622 char *dependency; 13075772Sas200622 char *servname; 13085772Sas200622 int maxlen; 13095772Sas200622 13105772Sas200622 /* 13115772Sas200622 * Get all required handles and storage. 13125772Sas200622 */ 13135772Sas200622 handle = scf_handle_create(SCF_VERSION); 13145772Sas200622 if (handle == NULL) 13155772Sas200622 return; 13165772Sas200622 13175772Sas200622 if (scf_handle_bind(handle) != 0) { 13185772Sas200622 scf_handle_destroy(handle); 13195772Sas200622 return; 13205772Sas200622 } 13215772Sas200622 13225772Sas200622 maxlen = scf_limit(SCF_LIMIT_MAX_VALUE_LENGTH); 13235772Sas200622 if (maxlen == (ssize_t)-1) 13245772Sas200622 maxlen = MAXPATHLEN; 13255772Sas200622 13265772Sas200622 dependency = malloc(maxlen); 13275772Sas200622 13285772Sas200622 service = scf_service_create(handle); 13295772Sas200622 13305772Sas200622 iter = scf_iter_create(handle); 13315772Sas200622 13325772Sas200622 pg = scf_pg_create(handle); 13335772Sas200622 13345772Sas200622 prop = scf_property_create(handle); 13355772Sas200622 13365772Sas200622 value = scf_value_create(handle); 13375772Sas200622 13385772Sas200622 scope = scf_scope_create(handle); 13395772Sas200622 13405772Sas200622 if (service == NULL || iter == NULL || pg == NULL || prop == NULL || 13415772Sas200622 value == NULL || scope == NULL || dependency == NULL) 13425772Sas200622 goto done; 13435772Sas200622 13445772Sas200622 /* 13455772Sas200622 * We passed in the FMRI for the default instance but for 13465772Sas200622 * some things we need the simple form so construct it. Since 13475772Sas200622 * we reuse the storage that dependency points to, we need to 13485772Sas200622 * use the servname early. 13495772Sas200622 */ 13505772Sas200622 (void) snprintf(dependency, maxlen, "%s", fmri + sizeof ("svc:")); 13515772Sas200622 servname = strrchr(dependency, ':'); 13525772Sas200622 if (servname == NULL) 13535772Sas200622 goto done; 13545772Sas200622 *servname = '\0'; 13555772Sas200622 servname = dependency; 13565772Sas200622 13575772Sas200622 /* 13585772Sas200622 * Setup to iterate over the service property groups, only 13595772Sas200622 * looking at those that are "dependency" types. The "entity" 13605772Sas200622 * property will have the FMRI of the service we are dependent 13615772Sas200622 * on. 13625772Sas200622 */ 13635772Sas200622 if (scf_handle_get_scope(handle, SCF_SCOPE_LOCAL, scope) != 0) 13645772Sas200622 goto done; 13655772Sas200622 13665772Sas200622 if (scf_scope_get_service(scope, servname, service) != 0) 13675772Sas200622 goto done; 13685772Sas200622 13695772Sas200622 if (scf_iter_service_pgs(iter, service) != 0) 13705772Sas200622 goto done; 13715772Sas200622 13725772Sas200622 while (scf_iter_next_pg(iter, pg) > 0) { 13735772Sas200622 char *services[2]; 13745772Sas200622 /* 13755772Sas200622 * Have a property group for the service. See if it is 13765772Sas200622 * a dependency pg and only do operations on those. 13775772Sas200622 */ 13785772Sas200622 if (scf_pg_get_type(pg, type, SCFTYPE_LEN) <= 0) 13795772Sas200622 continue; 13805772Sas200622 13815772Sas200622 if (strncmp(type, SCF_GROUP_DEPENDENCY, SCFTYPE_LEN) != 0) 13825772Sas200622 continue; 13835772Sas200622 /* 13845772Sas200622 * Have a dependency. Attempt to enable it. 13855772Sas200622 */ 13865772Sas200622 if (scf_pg_get_property(pg, SCF_PROPERTY_ENTITIES, prop) != 0) 13875772Sas200622 continue; 13885772Sas200622 13895772Sas200622 if (scf_property_get_value(prop, value) != 0) 13905772Sas200622 continue; 13915772Sas200622 13925772Sas200622 services[1] = NULL; 13935772Sas200622 13945772Sas200622 if (scf_value_get_as_string(value, dependency, maxlen) > 0) { 13955772Sas200622 services[0] = dependency; 13965772Sas200622 _check_services(services); 13975772Sas200622 } 13985772Sas200622 } 13995772Sas200622 14005772Sas200622 done: 14015772Sas200622 if (dependency != NULL) 14025772Sas200622 free(dependency); 14035772Sas200622 if (value != NULL) 14045772Sas200622 scf_value_destroy(value); 14055772Sas200622 if (prop != NULL) 14065772Sas200622 scf_property_destroy(prop); 14075772Sas200622 if (pg != NULL) 14085772Sas200622 scf_pg_destroy(pg); 14095772Sas200622 if (iter != NULL) 14105772Sas200622 scf_iter_destroy(iter); 14115772Sas200622 if (scope != NULL) 14125772Sas200622 scf_scope_destroy(scope); 14135772Sas200622 if (inst != NULL) 14145772Sas200622 scf_instance_destroy(inst); 14155772Sas200622 if (service != NULL) 14165772Sas200622 scf_service_destroy(service); 14175772Sas200622 14185772Sas200622 (void) scf_handle_unbind(handle); 14195772Sas200622 scf_handle_destroy(handle); 14205772Sas200622 } 14215772Sas200622 14225772Sas200622 /* 14235331Samw * How long to wait for service to come online 14245331Samw */ 14255331Samw #define WAIT_FOR_SERVICE 15 14265331Samw 14275331Samw /* 14285331Samw * smb_enable_service() 14295331Samw * 14305331Samw */ 14315331Samw static int 14325331Samw smb_enable_service(void) 14335331Samw { 14345331Samw int i; 14355331Samw int ret = SA_OK; 14365772Sas200622 char *service[] = { SMBD_DEFAULT_INSTANCE_FMRI, NULL }; 14375331Samw 14385331Samw if (!smb_isonline()) { 14395772Sas200622 /* 14405772Sas200622 * Attempt to start the idmap, and other dependent 14415772Sas200622 * services, first. If it fails, the SMB service will 14425772Sas200622 * ultimately fail so we use that as the error. If we 14435772Sas200622 * don't try to enable idmap, smb won't start the 14445772Sas200622 * first time unless the admin has done it 14455772Sas200622 * manually. The service could be administratively 14465772Sas200622 * disabled so we won't always get started. 14475772Sas200622 */ 14485772Sas200622 smb_enable_dependencies(SMBD_DEFAULT_INSTANCE_FMRI); 14495772Sas200622 _check_services(service); 14505331Samw 14515331Samw /* Wait for service to come online */ 14525331Samw for (i = 0; i < WAIT_FOR_SERVICE; i++) { 14535331Samw if (smb_isonline()) { 14545772Sas200622 ret = SA_OK; 14555331Samw break; 14566030Sjb150015 } else if (smb_ismaint()) { 14576030Sjb150015 /* maintenance requires help */ 14586030Sjb150015 ret = SA_SYSTEM_ERR; 14596030Sjb150015 break; 14606030Sjb150015 } else if (smb_isdisabled()) { 14616030Sjb150015 /* disabled is ok */ 14626030Sjb150015 ret = SA_OK; 14636030Sjb150015 break; 14645331Samw } else { 14656030Sjb150015 /* try another time */ 14665331Samw ret = SA_BUSY; 14675331Samw (void) sleep(1); 14685331Samw } 14695331Samw } 14705331Samw } 14715331Samw return (ret); 14725331Samw } 14735331Samw 14745331Samw /* 14755331Samw * smb_validate_proto_prop(index, name, value) 14765331Samw * 14775331Samw * Verify that the property specified by name can take the new 14785331Samw * value. This is a sanity check to prevent bad values getting into 14795331Samw * the default files. 14805331Samw */ 14815331Samw static int 14825331Samw smb_validate_proto_prop(int index, char *name, char *value) 14835331Samw { 14845331Samw if ((name == NULL) || (index < 0)) 14855331Samw return (SA_BAD_VALUE); 14865331Samw 14875331Samw if (smb_proto_options[index].validator == NULL) 14885331Samw return (SA_OK); 14895331Samw 14905331Samw if (smb_proto_options[index].validator(index, value) == SA_OK) 14915331Samw return (SA_OK); 14925331Samw return (SA_BAD_VALUE); 14935331Samw } 14945331Samw 14955331Samw /* 14965331Samw * smb_set_proto_prop(prop) 14975331Samw * 14985331Samw * check that prop is valid. 14995331Samw */ 15005331Samw /*ARGSUSED*/ 15015331Samw static int 15025331Samw smb_set_proto_prop(sa_property_t prop) 15035331Samw { 15045331Samw int ret = SA_OK; 15055331Samw char *name; 15065331Samw char *value; 15075331Samw int index = -1; 15085521Sas200622 struct smb_proto_option_defs *opt; 15095331Samw 15105331Samw name = sa_get_property_attr(prop, "type"); 15115331Samw value = sa_get_property_attr(prop, "value"); 15125331Samw if (name != NULL && value != NULL) { 15135331Samw index = findprotoopt(name); 15145331Samw if (index >= 0) { 15155331Samw /* should test for valid value */ 15165331Samw ret = smb_validate_proto_prop(index, name, value); 15175331Samw if (ret == SA_OK) { 15185521Sas200622 opt = &smb_proto_options[index]; 15195521Sas200622 15205331Samw /* Save to SMF */ 15215772Sas200622 (void) smb_config_set(opt->smb_index, value); 15225331Samw /* 15235331Samw * Specialized refresh mechanisms can 15245331Samw * be flagged in the proto_options and 15255331Samw * processed here. 15265331Samw */ 15275521Sas200622 if (opt->refresh & SMB_REFRESH_REFRESH) 15286139Sjb150015 (void) smf_refresh_instance( 15296139Sjb150015 SMBD_DEFAULT_INSTANCE_FMRI); 15305521Sas200622 else if (opt->refresh & SMB_REFRESH_RESTART) 15315331Samw (void) smf_restart_instance( 15325331Samw SMBD_DEFAULT_INSTANCE_FMRI); 15335331Samw } 15345331Samw } 15355331Samw } 15365521Sas200622 15375331Samw if (name != NULL) 15385331Samw sa_free_attr_string(name); 15395331Samw if (value != NULL) 15405331Samw sa_free_attr_string(value); 15415331Samw 15425331Samw return (ret); 15435331Samw } 15445331Samw 15455331Samw /* 15465331Samw * smb_get_status() 15475331Samw * 15485331Samw * What is the current status of the smbd? We use the SMF state here. 15495331Samw * Caller must free the returned value. 15505331Samw */ 15515331Samw 15525331Samw static char * 15535331Samw smb_get_status(void) 15545331Samw { 15555331Samw char *state = NULL; 15565331Samw state = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI); 15575331Samw return (state != NULL ? state : "-"); 15585331Samw } 15595331Samw 15605331Samw /* 15615331Samw * This protocol plugin require resource names 15625331Samw */ 15635331Samw static uint64_t 15645331Samw smb_share_features(void) 15655331Samw { 15665331Samw return (SA_FEATURE_RESOURCE | SA_FEATURE_ALLOWSUBDIRS | 15676088Sdougm SA_FEATURE_ALLOWPARDIRS | SA_FEATURE_SERVER); 15685331Samw } 15695331Samw 15705331Samw /* 15717348SJose.Borrego@Sun.COM * This should be used to convert smb_share_t to sa_resource_t 15727348SJose.Borrego@Sun.COM * Should only be needed to build transient shares/resources to be 15737348SJose.Borrego@Sun.COM * supplied to sharemgr to display. 15745331Samw */ 15755331Samw static int 15767348SJose.Borrego@Sun.COM smb_add_transient(sa_handle_t handle, smb_share_t *si) 15775331Samw { 15785331Samw int err; 15795331Samw sa_share_t share; 15805331Samw sa_group_t group; 15815331Samw sa_resource_t resource; 158211633SJoyce.McIntosh@Sun.COM nvlist_t *nvl; 15839832Samw@Sun.COM char *opt; 15845331Samw 15855331Samw if (si == NULL) 15865331Samw return (SA_INVALID_NAME); 15875331Samw 15887348SJose.Borrego@Sun.COM if ((share = sa_find_share(handle, si->shr_path)) == NULL) { 15897348SJose.Borrego@Sun.COM if ((group = smb_get_defaultgrp(handle)) == NULL) 15907348SJose.Borrego@Sun.COM return (SA_NO_SUCH_GROUP); 15915331Samw 15927052Samw share = sa_get_share(group, si->shr_path); 15935331Samw if (share == NULL) { 15947052Samw share = sa_add_share(group, si->shr_path, 15955331Samw SA_SHARE_TRANSIENT, &err); 15965331Samw if (share == NULL) 15975331Samw return (SA_NO_SUCH_PATH); 15985331Samw } 15995331Samw } 16005331Samw 16015331Samw /* 16025331Samw * Now handle the resource. Make sure that the resource is 16035331Samw * transient and added to the share. 16045331Samw */ 16057052Samw resource = sa_get_share_resource(share, si->shr_name); 16065331Samw if (resource == NULL) { 16075331Samw resource = sa_add_resource(share, 16087052Samw si->shr_name, SA_SHARE_TRANSIENT, &err); 16095331Samw if (resource == NULL) 16105331Samw return (SA_NO_SUCH_RESOURCE); 16115331Samw } 16125331Samw 16138474SJose.Borrego@Sun.COM if (si->shr_cmnt[0] != '\0') 16148474SJose.Borrego@Sun.COM (void) sa_set_resource_description(resource, si->shr_cmnt); 16159832Samw@Sun.COM 16168474SJose.Borrego@Sun.COM if (si->shr_container[0] != '\0') 16178474SJose.Borrego@Sun.COM (void) sa_set_resource_attr(resource, SHOPT_AD_CONTAINER, 16188474SJose.Borrego@Sun.COM si->shr_container); 16199832Samw@Sun.COM 162011633SJoyce.McIntosh@Sun.COM if (nvlist_alloc(&nvl, NV_UNIQUE_NAME, 0) != 0) 162111633SJoyce.McIntosh@Sun.COM return (SA_NO_MEMORY); 162211633SJoyce.McIntosh@Sun.COM 16239832Samw@Sun.COM if ((opt = smb_csc_name(si)) != NULL) 162411633SJoyce.McIntosh@Sun.COM err |= nvlist_add_string(nvl, SHOPT_CSC, opt); 16259832Samw@Sun.COM 162610504SKeyur.Desai@Sun.COM opt = (si->shr_flags & SMB_SHRF_ABE) ? "true" : "false"; 162711633SJoyce.McIntosh@Sun.COM err |= nvlist_add_string(nvl, SHOPT_ABE, opt); 162810504SKeyur.Desai@Sun.COM 1629*12508Samw@Sun.COM if ((si->shr_flags & SMB_SHRF_AUTOHOME) == 0) { 1630*12508Samw@Sun.COM opt = (si->shr_flags & SMB_SHRF_GUEST_OK) ? "true" : "false"; 1631*12508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_GUEST, opt); 1632*12508Samw@Sun.COM } 1633*12508Samw@Sun.COM 1634*12508Samw@Sun.COM if (si->shr_access_ro[0] != '\0') 1635*12508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_RO, si->shr_access_ro); 1636*12508Samw@Sun.COM 1637*12508Samw@Sun.COM if (si->shr_access_rw[0] != '\0') 1638*12508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_RW, si->shr_access_rw); 1639*12508Samw@Sun.COM 1640*12508Samw@Sun.COM if (si->shr_access_none[0] != '\0') 1641*12508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_NONE, si->shr_access_none); 1642*12508Samw@Sun.COM 164311633SJoyce.McIntosh@Sun.COM if (err) { 164411633SJoyce.McIntosh@Sun.COM nvlist_free(nvl); 164511633SJoyce.McIntosh@Sun.COM return (SA_CONFIG_ERR); 164611633SJoyce.McIntosh@Sun.COM } 16475331Samw 164811633SJoyce.McIntosh@Sun.COM err = smb_update_optionset_props(handle, resource, nvl); 164911633SJoyce.McIntosh@Sun.COM 165011633SJoyce.McIntosh@Sun.COM nvlist_free(nvl); 165111633SJoyce.McIntosh@Sun.COM return (err); 16525331Samw } 16535331Samw 16545331Samw /* 16557348SJose.Borrego@Sun.COM * Return smb transient shares. 16565331Samw */ 16575331Samw static int 16585331Samw smb_list_transient(sa_handle_t handle) 16595331Samw { 16607348SJose.Borrego@Sun.COM int i, offset; 16617052Samw smb_shrlist_t list; 16625331Samw int res; 16635331Samw 16647348SJose.Borrego@Sun.COM if (smb_share_count() <= 0) 16655331Samw return (SA_OK); 16667348SJose.Borrego@Sun.COM 16675331Samw offset = 0; 16687348SJose.Borrego@Sun.COM while (smb_share_list(offset, &list) == NERR_Success) { 16697348SJose.Borrego@Sun.COM if (list.sl_cnt == 0) 16705331Samw break; 16717348SJose.Borrego@Sun.COM 16727348SJose.Borrego@Sun.COM for (i = 0; i < list.sl_cnt; i++) { 16737348SJose.Borrego@Sun.COM res = smb_add_transient(handle, &(list.sl_shares[i])); 16745331Samw if (res != SA_OK) 16755331Samw return (res); 16765331Samw } 16777348SJose.Borrego@Sun.COM offset += list.sl_cnt; 16785331Samw } 16795331Samw 16805331Samw return (SA_OK); 16815331Samw } 16825331Samw 16835331Samw /* 16845331Samw * fix_resource_name(share, name, prefix) 16855331Samw * 16865331Samw * Construct a name where the ZFS dataset has the prefix replaced with "name". 16875331Samw */ 16885331Samw static char * 16895331Samw fix_resource_name(sa_share_t share, char *name, char *prefix) 16905331Samw { 16918474SJose.Borrego@Sun.COM char buf[SA_MAX_RESOURCE_NAME + 1]; 16928474SJose.Borrego@Sun.COM char *dataset; 16938474SJose.Borrego@Sun.COM size_t bufsz = SA_MAX_RESOURCE_NAME + 1; 16948474SJose.Borrego@Sun.COM size_t prelen; 16955331Samw 169611447Samw@Sun.COM if (prefix == NULL) 169711447Samw@Sun.COM return (strdup(name)); 169811447Samw@Sun.COM 16995331Samw dataset = sa_get_share_attr(share, "dataset"); 17008474SJose.Borrego@Sun.COM if (dataset == NULL) 17018474SJose.Borrego@Sun.COM return (strdup(name)); 17025331Samw 17038474SJose.Borrego@Sun.COM (void) strlcpy(buf, name, bufsz); 17048474SJose.Borrego@Sun.COM prelen = strlen(prefix); 17058474SJose.Borrego@Sun.COM 17068474SJose.Borrego@Sun.COM if (strncmp(dataset, prefix, prelen) == 0) 17078474SJose.Borrego@Sun.COM (void) strlcat(buf, dataset + prelen, bufsz); 17088474SJose.Borrego@Sun.COM 17098474SJose.Borrego@Sun.COM sa_free_attr_string(dataset); 17108474SJose.Borrego@Sun.COM sa_fix_resource_name(buf); 17118474SJose.Borrego@Sun.COM return (strdup(buf)); 17125331Samw } 17135331Samw 17145331Samw /* 17155331Samw * smb_parse_optstring(group, options) 17165331Samw * 17175331Samw * parse a compact option string into individual options. This allows 17185331Samw * ZFS sharesmb and sharemgr "share" command to work. group can be a 17195331Samw * group, a share or a resource. 17205331Samw */ 17215331Samw static int 17225331Samw smb_parse_optstring(sa_group_t group, char *options) 17235331Samw { 17245331Samw char *dup; 17255331Samw char *base; 17265331Samw char *lasts; 17275331Samw char *token; 17285331Samw sa_optionset_t optionset; 17295331Samw sa_group_t parent = NULL; 17305331Samw sa_resource_t resource = NULL; 17315331Samw int iszfs = 0; 17325331Samw int persist = 0; 17335331Samw int need_optionset = 0; 17345331Samw int ret = SA_OK; 17355331Samw sa_property_t prop; 17365331Samw 17375331Samw /* 17385331Samw * In order to not attempt to change ZFS properties unless 17395331Samw * absolutely necessary, we never do it in the legacy parsing 17405331Samw * so we need to keep track of this. 17415331Samw */ 17425331Samw if (sa_is_share(group)) { 17435331Samw char *zfs; 17445331Samw 17455331Samw parent = sa_get_parent_group(group); 17465331Samw if (parent != NULL) { 17475331Samw zfs = sa_get_group_attr(parent, "zfs"); 17485331Samw if (zfs != NULL) { 17495331Samw sa_free_attr_string(zfs); 17505331Samw iszfs = 1; 17515331Samw } 17525331Samw } 17535331Samw } else { 17545331Samw iszfs = sa_group_is_zfs(group); 17555331Samw /* 17565331Samw * If a ZFS group, then we need to see if a resource 17575331Samw * name is being set. If so, bail with 17585331Samw * SA_PROP_SHARE_ONLY, so we come back in with a share 17595331Samw * instead of a group. 17605331Samw */ 1761*12508Samw@Sun.COM if (iszfs || 1762*12508Samw@Sun.COM strncmp(options, "name=", sizeof ("name=") - 1) == 0 || 17635331Samw strstr(options, ",name=") != NULL) { 17645331Samw return (SA_PROP_SHARE_ONLY); 17655331Samw } 17665331Samw } 17675331Samw 17685331Samw /* do we have an existing optionset? */ 17695331Samw optionset = sa_get_optionset(group, "smb"); 17705331Samw if (optionset == NULL) { 17715331Samw /* didn't find existing optionset so create one */ 17725331Samw optionset = sa_create_optionset(group, "smb"); 17735331Samw if (optionset == NULL) 17745331Samw return (SA_NO_MEMORY); 17755331Samw } else { 17765331Samw /* 17775331Samw * If an optionset already exists, we've come through 17785331Samw * twice so ignore the second time. 17795331Samw */ 17805331Samw return (ret); 17815331Samw } 17825331Samw 17835331Samw /* We need a copy of options for the next part. */ 17845331Samw dup = strdup(options); 17855331Samw if (dup == NULL) 17865331Samw return (SA_NO_MEMORY); 17875331Samw 17885331Samw /* 17895331Samw * SMB properties are straightforward and are strings, 17905331Samw * integers or booleans. Properties are separated by 17915331Samw * commas. It will be necessary to parse quotes due to some 17925331Samw * strings not having a restricted characters set. 17935331Samw * 17945331Samw * Note that names will create a resource. For now, if there 17955331Samw * is a set of properties "before" the first name="", those 17965331Samw * properties will be placed on the group. 17975331Samw */ 17985331Samw persist = sa_is_persistent(group); 17995331Samw base = dup; 18005331Samw token = dup; 18015331Samw lasts = NULL; 18025331Samw while (token != NULL && ret == SA_OK) { 18035331Samw ret = SA_OK; 18045331Samw token = strtok_r(base, ",", &lasts); 18055331Samw base = NULL; 18065331Samw if (token != NULL) { 18075331Samw char *value; 18085331Samw /* 18095331Samw * All SMB properties have values so there 18105331Samw * MUST be an '=' character. If it doesn't, 18115331Samw * it is a syntax error. 18125331Samw */ 18135331Samw value = strchr(token, '='); 18145331Samw if (value != NULL) { 18155331Samw *value++ = '\0'; 18165331Samw } else { 18175331Samw ret = SA_SYNTAX_ERR; 18185331Samw break; 18195331Samw } 18205331Samw /* 18215331Samw * We may need to handle a "name" property 18225331Samw * that is a ZFS imposed resource name. Each 18235331Samw * name would trigger getting a new "resource" 18245331Samw * to put properties on. For now, assume no 18255331Samw * "name" property for special handling. 18265331Samw */ 18275331Samw 1828*12508Samw@Sun.COM if (strcmp(token, SHOPT_NAME) == 0) { 18295331Samw char *prefix; 18305331Samw char *name = NULL; 18315331Samw /* 18325331Samw * We have a name, so now work on the 18335331Samw * resource level. We have a "share" 18345331Samw * in "group" due to the caller having 18355331Samw * added it. If we are called with a 18365331Samw * group, the check for group/share 18375331Samw * at the beginning of this function 18385331Samw * will bail out the parse if there is a 18395331Samw * "name" but no share. 18405331Samw */ 18415331Samw if (!iszfs) { 18425331Samw ret = SA_SYNTAX_ERR; 18435331Samw break; 18445331Samw } 18455331Samw /* 18465331Samw * Make sure the parent group has the 18475331Samw * "prefix" property since we will 18485331Samw * need to use this for constructing 18495331Samw * inherited name= values. 18505331Samw */ 18515331Samw prefix = sa_get_group_attr(parent, "prefix"); 18525331Samw if (prefix == NULL) { 18535331Samw prefix = sa_get_group_attr(parent, 18545331Samw "name"); 18555331Samw if (prefix != NULL) { 18565331Samw (void) sa_set_group_attr(parent, 18575331Samw "prefix", prefix); 18585331Samw } 18595331Samw } 186011447Samw@Sun.COM name = fix_resource_name((sa_share_t)group, 186111447Samw@Sun.COM value, prefix); 18625331Samw if (name != NULL) { 18635331Samw resource = sa_add_resource( 18645331Samw (sa_share_t)group, name, 18655331Samw SA_SHARE_TRANSIENT, &ret); 18665331Samw sa_free_attr_string(name); 18675331Samw } else { 18685331Samw ret = SA_NO_MEMORY; 18695331Samw } 18705331Samw if (prefix != NULL) 18715331Samw sa_free_attr_string(prefix); 18725331Samw 18735331Samw /* A resource level optionset is needed */ 18745331Samw 18755331Samw need_optionset = 1; 18765331Samw if (resource == NULL) { 18775331Samw ret = SA_NO_MEMORY; 18785331Samw break; 18795331Samw } 18805331Samw continue; 18815331Samw } 18825331Samw 1883*12508Samw@Sun.COM if (iszfs && strcmp(token, SHOPT_DESCRIPTION) == 0) { 1884*12508Samw@Sun.COM if (resource == NULL) 1885*12508Samw@Sun.COM (void) sa_set_share_description( 1886*12508Samw@Sun.COM (sa_share_t)group, value); 1887*12508Samw@Sun.COM else 1888*12508Samw@Sun.COM (void) sa_set_resource_description( 1889*12508Samw@Sun.COM resource, value); 1890*12508Samw@Sun.COM continue; 1891*12508Samw@Sun.COM } 1892*12508Samw@Sun.COM 18935331Samw if (need_optionset) { 18945331Samw optionset = sa_create_optionset(resource, 18955331Samw "smb"); 18965331Samw need_optionset = 0; 18975331Samw } 18985331Samw 18995331Samw prop = sa_create_property(token, value); 19005331Samw if (prop == NULL) 19015331Samw ret = SA_NO_MEMORY; 19025331Samw else 19035331Samw ret = sa_add_property(optionset, prop); 19045331Samw if (ret != SA_OK) 19055331Samw break; 19065331Samw if (!iszfs) 19075331Samw ret = sa_commit_properties(optionset, !persist); 19085331Samw } 19095331Samw } 19105331Samw free(dup); 19115331Samw return (ret); 19125331Samw } 19135331Samw 19145331Samw /* 19155331Samw * smb_sprint_option(rbuff, rbuffsize, incr, prop, sep) 19165331Samw * 19175331Samw * provides a mechanism to format SMB properties into legacy output 19185331Samw * format. If the buffer would overflow, it is reallocated and grown 19195331Samw * as appropriate. Special cases of converting internal form of values 19205331Samw * to those used by "share" are done. this function does one property 19215331Samw * at a time. 19225331Samw */ 19235331Samw 19245331Samw static void 19255331Samw smb_sprint_option(char **rbuff, size_t *rbuffsize, size_t incr, 19265331Samw sa_property_t prop, int sep) 19275331Samw { 19285331Samw char *name; 19295331Samw char *value; 19305331Samw int curlen; 19315331Samw char *buff = *rbuff; 19325331Samw size_t buffsize = *rbuffsize; 19335331Samw 19345331Samw name = sa_get_property_attr(prop, "type"); 19355331Samw value = sa_get_property_attr(prop, "value"); 19365331Samw if (buff != NULL) 19375331Samw curlen = strlen(buff); 19385331Samw else 19395331Samw curlen = 0; 19405331Samw if (name != NULL) { 19415331Samw int len; 19425331Samw len = strlen(name) + sep; 19435331Samw 19445331Samw /* 19455331Samw * A future RFE would be to replace this with more 19465331Samw * generic code and to possibly handle more types. 19475331Samw * 19485331Samw * For now, everything else is treated as a string. If 19495331Samw * we get any properties that aren't exactly 19505331Samw * name/value pairs, we may need to 19515331Samw * interpret/transform. 19525331Samw */ 19535331Samw if (value != NULL) 19545331Samw len += 1 + strlen(value); 19555331Samw 19565331Samw while (buffsize <= (curlen + len)) { 19575331Samw /* need more room */ 19585331Samw buffsize += incr; 19595331Samw buff = realloc(buff, buffsize); 19605331Samw *rbuff = buff; 19615331Samw *rbuffsize = buffsize; 19625331Samw if (buff == NULL) { 19635331Samw /* realloc failed so free everything */ 19645331Samw if (*rbuff != NULL) 19655331Samw free(*rbuff); 19665331Samw goto err; 19675331Samw } 19685331Samw } 19695331Samw if (buff == NULL) 19705331Samw goto err; 19715331Samw (void) snprintf(buff + curlen, buffsize - curlen, 19725331Samw "%s%s=%s", sep ? "," : "", 19735331Samw name, value != NULL ? value : "\"\""); 19745331Samw 19755331Samw } 19765331Samw err: 19775331Samw if (name != NULL) 19785331Samw sa_free_attr_string(name); 19795331Samw if (value != NULL) 19805331Samw sa_free_attr_string(value); 19815331Samw } 19825331Samw 19835331Samw /* 19845331Samw * smb_format_resource_options(resource, hier) 19855331Samw * 19865331Samw * format all the options on the group into a flattened option 19875331Samw * string. If hier is non-zero, walk up the tree to get inherited 19885331Samw * options. 19895331Samw */ 19905331Samw 19915331Samw static char * 19925331Samw smb_format_options(sa_group_t group, int hier) 19935331Samw { 19945331Samw sa_optionset_t options = NULL; 19955331Samw sa_property_t prop; 19965331Samw int sep = 0; 19975331Samw char *buff; 19985331Samw size_t buffsize; 19995331Samw 20005331Samw 20015331Samw buff = malloc(OPT_CHUNK); 20025331Samw if (buff == NULL) 20035331Samw return (NULL); 20045331Samw 20055331Samw buff[0] = '\0'; 20065331Samw buffsize = OPT_CHUNK; 20075331Samw 20085331Samw /* 20095331Samw * We may have a an optionset relative to this item. format 20105331Samw * these if we find them and then add any security definitions. 20115331Samw */ 20125331Samw 20135331Samw options = sa_get_derived_optionset(group, "smb", hier); 20145331Samw 20155331Samw /* 20165331Samw * do the default set first but skip any option that is also 20175331Samw * in the protocol specific optionset. 20185331Samw */ 20195331Samw if (options != NULL) { 20205331Samw for (prop = sa_get_property(options, NULL); 20215331Samw prop != NULL; prop = sa_get_next_property(prop)) { 20225331Samw /* 20235331Samw * use this one since we skipped any 20245331Samw * of these that were also in 20255331Samw * optdefault 20265331Samw */ 20275331Samw smb_sprint_option(&buff, &buffsize, OPT_CHUNK, 20285331Samw prop, sep); 20295331Samw if (buff == NULL) { 20305331Samw /* 20315331Samw * buff could become NULL if there 20325331Samw * isn't enough memory for 20335331Samw * smb_sprint_option to realloc() 20345331Samw * as necessary. We can't really 20355331Samw * do anything about it at this 20365331Samw * point so we return NULL. The 20375331Samw * caller should handle the 20385331Samw * failure. 20395331Samw */ 20405331Samw if (options != NULL) 20415331Samw sa_free_derived_optionset( 20425331Samw options); 20435331Samw return (buff); 20445331Samw } 20455331Samw sep = 1; 20465331Samw } 20475331Samw } 20485331Samw 20495331Samw if (options != NULL) 20505331Samw sa_free_derived_optionset(options); 20515331Samw return (buff); 20525331Samw } 20535331Samw 20545331Samw /* 20555331Samw * smb_rename_resource(resource, newname) 20565331Samw * 20575331Samw * Change the current exported name of the resource to newname. 20585331Samw */ 20595331Samw /*ARGSUSED*/ 20605331Samw int 20615331Samw smb_rename_resource(sa_handle_t handle, sa_resource_t resource, char *newname) 20625331Samw { 20635331Samw int ret = SA_OK; 20645331Samw int err; 20655331Samw char *oldname; 20665331Samw 20677348SJose.Borrego@Sun.COM if (!smb_isonline()) 20687348SJose.Borrego@Sun.COM return (SA_OK); 20697348SJose.Borrego@Sun.COM 20705331Samw oldname = sa_get_resource_attr(resource, "name"); 20715331Samw if (oldname == NULL) 20725331Samw return (SA_NO_SUCH_RESOURCE); 20735331Samw 20747348SJose.Borrego@Sun.COM err = smb_share_rename(oldname, newname); 20755331Samw 207611337SWilliam.Krier@Sun.COM sa_free_attr_string(oldname); 207711337SWilliam.Krier@Sun.COM 20785331Samw /* improve error values somewhat */ 20795331Samw switch (err) { 20805331Samw case NERR_Success: 20815331Samw break; 20825331Samw case NERR_InternalError: 20835331Samw ret = SA_SYSTEM_ERR; 20845331Samw break; 20855331Samw case NERR_DuplicateShare: 20865331Samw ret = SA_DUPLICATE_NAME; 20875331Samw break; 20885331Samw default: 20895331Samw ret = SA_CONFIG_ERR; 20905331Samw break; 20915331Samw } 20925331Samw 20935331Samw return (ret); 20945331Samw } 20957348SJose.Borrego@Sun.COM 20967348SJose.Borrego@Sun.COM static int 20977348SJose.Borrego@Sun.COM smb_build_shareinfo(sa_share_t share, sa_resource_t resource, smb_share_t *si) 20987348SJose.Borrego@Sun.COM { 20997348SJose.Borrego@Sun.COM sa_optionset_t opts; 21007348SJose.Borrego@Sun.COM char *path; 21017348SJose.Borrego@Sun.COM char *rname; 21027348SJose.Borrego@Sun.COM char *val = NULL; 210311963SAfshin.Ardakani@Sun.COM char csc_value[SMB_CSC_BUFSZ]; 21047348SJose.Borrego@Sun.COM 21057348SJose.Borrego@Sun.COM bzero(si, sizeof (smb_share_t)); 21067348SJose.Borrego@Sun.COM 21077348SJose.Borrego@Sun.COM if ((path = sa_get_share_attr(share, "path")) == NULL) 21087348SJose.Borrego@Sun.COM return (SA_NO_SUCH_PATH); 21097348SJose.Borrego@Sun.COM 21107348SJose.Borrego@Sun.COM if ((rname = sa_get_resource_attr(resource, "name")) == NULL) { 21117348SJose.Borrego@Sun.COM sa_free_attr_string(path); 21127348SJose.Borrego@Sun.COM return (SA_NO_SUCH_RESOURCE); 21137348SJose.Borrego@Sun.COM } 21147348SJose.Borrego@Sun.COM 21157348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_path, path, sizeof (si->shr_path)); 21167348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_name, rname, sizeof (si->shr_name)); 21177348SJose.Borrego@Sun.COM sa_free_attr_string(path); 21187348SJose.Borrego@Sun.COM sa_free_attr_string(rname); 21197348SJose.Borrego@Sun.COM 21207348SJose.Borrego@Sun.COM val = sa_get_resource_description(resource); 21217348SJose.Borrego@Sun.COM if (val == NULL) 21227348SJose.Borrego@Sun.COM val = sa_get_share_description(share); 21237348SJose.Borrego@Sun.COM 21247348SJose.Borrego@Sun.COM if (val != NULL) { 21257348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_cmnt, val, sizeof (si->shr_cmnt)); 21267348SJose.Borrego@Sun.COM sa_free_share_description(val); 21277348SJose.Borrego@Sun.COM } 21287348SJose.Borrego@Sun.COM 212911963SAfshin.Ardakani@Sun.COM si->shr_flags = (sa_is_persistent(share)) 213011963SAfshin.Ardakani@Sun.COM ? SMB_SHRF_PERM : SMB_SHRF_TRANS; 213111963SAfshin.Ardakani@Sun.COM 21327348SJose.Borrego@Sun.COM opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 21337348SJose.Borrego@Sun.COM if (opts == NULL) 21347348SJose.Borrego@Sun.COM return (SA_OK); 21357348SJose.Borrego@Sun.COM 213611963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_CATIA)) 213711963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_CATIA; 213811963SAfshin.Ardakani@Sun.COM 213911963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_ABE)) 214011963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ABE; 21417348SJose.Borrego@Sun.COM 214211963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_GUEST)) 214311963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_GUEST_OK; 21449231SAfshin.Ardakani@Sun.COM 214511963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_DFSROOT)) 214611963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_DFSROOT; 214711963SAfshin.Ardakani@Sun.COM 214811963SAfshin.Ardakani@Sun.COM (void) smb_saprop_getstr(opts, SHOPT_AD_CONTAINER, si->shr_container, 214911963SAfshin.Ardakani@Sun.COM sizeof (si->shr_container)); 215010504SKeyur.Desai@Sun.COM 215111963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_CSC, csc_value, sizeof (csc_value))) 215211963SAfshin.Ardakani@Sun.COM smb_csc_option(csc_value, si); 21538334SJose.Borrego@Sun.COM 215411963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_RO, si->shr_access_ro, 215511963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_ro))) 215611963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RO; 21579832Samw@Sun.COM 215811963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_RW, si->shr_access_rw, 215911963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_rw))) 216011963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RW; 21617961SNatalie.Li@Sun.COM 216211963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_NONE, si->shr_access_none, 216311963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_none))) 216411963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_NONE; 21657961SNatalie.Li@Sun.COM 21667348SJose.Borrego@Sun.COM sa_free_derived_optionset(opts); 21677348SJose.Borrego@Sun.COM return (SA_OK); 21687348SJose.Borrego@Sun.COM } 21697348SJose.Borrego@Sun.COM 21707348SJose.Borrego@Sun.COM /* 21718334SJose.Borrego@Sun.COM * Map a client-side caching (CSC) option to the appropriate share 21728334SJose.Borrego@Sun.COM * flag. Only one option is allowed; an error will be logged if 21738334SJose.Borrego@Sun.COM * multiple options have been specified. We don't need to do anything 21748334SJose.Borrego@Sun.COM * about multiple values here because the SRVSVC will not recognize 21758334SJose.Borrego@Sun.COM * a value containing multiple flags and will return the default value. 21768334SJose.Borrego@Sun.COM * 21778334SJose.Borrego@Sun.COM * If the option value is not recognized, it will be ignored: invalid 21788334SJose.Borrego@Sun.COM * values will typically be caught and rejected by sharemgr. 21798334SJose.Borrego@Sun.COM */ 21808334SJose.Borrego@Sun.COM static void 21818334SJose.Borrego@Sun.COM smb_csc_option(const char *value, smb_share_t *si) 21828334SJose.Borrego@Sun.COM { 21838334SJose.Borrego@Sun.COM char buf[SMB_CSC_BUFSZ]; 21848334SJose.Borrego@Sun.COM int i; 21858334SJose.Borrego@Sun.COM 21868334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 21878334SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i].value) == 0) { 21888334SJose.Borrego@Sun.COM si->shr_flags |= cscopt[i].flag; 21898334SJose.Borrego@Sun.COM break; 21908334SJose.Borrego@Sun.COM } 21918334SJose.Borrego@Sun.COM } 21928334SJose.Borrego@Sun.COM 21938334SJose.Borrego@Sun.COM switch (si->shr_flags & SMB_SHRF_CSC_MASK) { 21948334SJose.Borrego@Sun.COM case 0: 21958334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_DISABLED: 21968334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_MANUAL: 21978334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_AUTO: 21988334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_VDO: 21998334SJose.Borrego@Sun.COM break; 22008334SJose.Borrego@Sun.COM 22018334SJose.Borrego@Sun.COM default: 22028334SJose.Borrego@Sun.COM buf[0] = '\0'; 22038334SJose.Borrego@Sun.COM 22048334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 22058334SJose.Borrego@Sun.COM if (si->shr_flags & cscopt[i].flag) { 22068334SJose.Borrego@Sun.COM (void) strlcat(buf, " ", SMB_CSC_BUFSZ); 22078334SJose.Borrego@Sun.COM (void) strlcat(buf, cscopt[i].value, 22088334SJose.Borrego@Sun.COM SMB_CSC_BUFSZ); 22098334SJose.Borrego@Sun.COM } 22108334SJose.Borrego@Sun.COM } 22118334SJose.Borrego@Sun.COM 22128334SJose.Borrego@Sun.COM syslog(LOG_ERR, "csc option conflict:%s", buf); 22138334SJose.Borrego@Sun.COM break; 22148334SJose.Borrego@Sun.COM } 22158334SJose.Borrego@Sun.COM } 22168334SJose.Borrego@Sun.COM 22178334SJose.Borrego@Sun.COM /* 22188474SJose.Borrego@Sun.COM * Return the option name for the first CSC flag (there should be only 22198474SJose.Borrego@Sun.COM * one) encountered in the share flags. 22208474SJose.Borrego@Sun.COM */ 22218474SJose.Borrego@Sun.COM static char * 22228474SJose.Borrego@Sun.COM smb_csc_name(const smb_share_t *si) 22238474SJose.Borrego@Sun.COM { 22248474SJose.Borrego@Sun.COM int i; 22258474SJose.Borrego@Sun.COM 22268474SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 22278474SJose.Borrego@Sun.COM if (si->shr_flags & cscopt[i].flag) 22288474SJose.Borrego@Sun.COM return (cscopt[i].value); 22298474SJose.Borrego@Sun.COM } 22308474SJose.Borrego@Sun.COM 22318474SJose.Borrego@Sun.COM return (NULL); 22328474SJose.Borrego@Sun.COM } 22338474SJose.Borrego@Sun.COM 22348474SJose.Borrego@Sun.COM /* 22357348SJose.Borrego@Sun.COM * smb_get_defaultgrp 22367348SJose.Borrego@Sun.COM * 22377348SJose.Borrego@Sun.COM * If default group for CIFS shares (i.e. "smb") exists 22387348SJose.Borrego@Sun.COM * then it will return the group handle, otherwise it will 22397348SJose.Borrego@Sun.COM * create the group and return the handle. 22407348SJose.Borrego@Sun.COM * 22417348SJose.Borrego@Sun.COM * All the shares created by CIFS clients (this is only possible 22427348SJose.Borrego@Sun.COM * via RPC) will be added to "smb" groups. 22437348SJose.Borrego@Sun.COM */ 22447348SJose.Borrego@Sun.COM static sa_group_t 22457348SJose.Borrego@Sun.COM smb_get_defaultgrp(sa_handle_t handle) 22467348SJose.Borrego@Sun.COM { 22477348SJose.Borrego@Sun.COM sa_group_t group = NULL; 22487348SJose.Borrego@Sun.COM int err; 22497348SJose.Borrego@Sun.COM 22507348SJose.Borrego@Sun.COM group = sa_get_group(handle, SMB_DEFAULT_SHARE_GROUP); 22517348SJose.Borrego@Sun.COM if (group != NULL) 22527348SJose.Borrego@Sun.COM return (group); 22537348SJose.Borrego@Sun.COM 22547348SJose.Borrego@Sun.COM group = sa_create_group(handle, SMB_DEFAULT_SHARE_GROUP, &err); 22557348SJose.Borrego@Sun.COM if (group == NULL) 22567348SJose.Borrego@Sun.COM return (NULL); 22577348SJose.Borrego@Sun.COM 22587348SJose.Borrego@Sun.COM if (sa_create_optionset(group, SMB_DEFAULT_SHARE_GROUP) == NULL) { 22597348SJose.Borrego@Sun.COM (void) sa_remove_group(group); 22607348SJose.Borrego@Sun.COM group = NULL; 22617348SJose.Borrego@Sun.COM } 22627348SJose.Borrego@Sun.COM 22637348SJose.Borrego@Sun.COM return (group); 22647348SJose.Borrego@Sun.COM } 22659832Samw@Sun.COM 22669832Samw@Sun.COM /* 22679832Samw@Sun.COM * Checks to see if the command args are the supported substitution specifier. 22689832Samw@Sun.COM * i.e. <cmd> %U %S 22699832Samw@Sun.COM */ 22709832Samw@Sun.COM static int 22719832Samw@Sun.COM cmd_validator(int index, char *value) 22729832Samw@Sun.COM { 22739832Samw@Sun.COM char cmd[MAXPATHLEN]; 22749832Samw@Sun.COM char *ptr, *v; 22759832Samw@Sun.COM boolean_t skip_cmdname; 22769832Samw@Sun.COM 22779832Samw@Sun.COM if (string_length_check_validator(index, value) != SA_OK) 22789832Samw@Sun.COM return (SA_BAD_VALUE); 22799832Samw@Sun.COM 22809832Samw@Sun.COM if (*value == '\0') 22819832Samw@Sun.COM return (SA_OK); 22829832Samw@Sun.COM 22839832Samw@Sun.COM (void) strlcpy(cmd, value, sizeof (cmd)); 22849832Samw@Sun.COM 22859832Samw@Sun.COM ptr = cmd; 22869832Samw@Sun.COM skip_cmdname = B_TRUE; 22879832Samw@Sun.COM do { 22889832Samw@Sun.COM if ((v = strsep(&ptr, " ")) == NULL) 22899832Samw@Sun.COM break; 22909832Samw@Sun.COM 22919832Samw@Sun.COM if (*v != '\0') { 22929832Samw@Sun.COM 22939832Samw@Sun.COM if (skip_cmdname) { 22949832Samw@Sun.COM skip_cmdname = B_FALSE; 22959832Samw@Sun.COM continue; 22969832Samw@Sun.COM } 22979832Samw@Sun.COM 22989832Samw@Sun.COM if ((strlen(v) != 2) || *v != '%') 22999832Samw@Sun.COM return (SA_BAD_VALUE); 23009832Samw@Sun.COM 23019832Samw@Sun.COM if (strpbrk(v, SMB_VALID_SUB_CHRS) == NULL) 23029832Samw@Sun.COM return (SA_BAD_VALUE); 23039832Samw@Sun.COM } 23049832Samw@Sun.COM 23059832Samw@Sun.COM } while (v != NULL); 23069832Samw@Sun.COM 23079832Samw@Sun.COM /* 23089832Samw@Sun.COM * If skip_cmdname is still true then the string contains 23099832Samw@Sun.COM * only spaces. Don't allow such a string. 23109832Samw@Sun.COM */ 23119832Samw@Sun.COM if (skip_cmdname) 23129832Samw@Sun.COM return (SA_BAD_VALUE); 23139832Samw@Sun.COM 23149832Samw@Sun.COM return (SA_OK); 23159832Samw@Sun.COM } 23169832Samw@Sun.COM 23179832Samw@Sun.COM /*ARGSUSED*/ 23189832Samw@Sun.COM static int 23199832Samw@Sun.COM disposition_validator(int index, char *value) 23209832Samw@Sun.COM { 23219832Samw@Sun.COM if (value == NULL) 23229832Samw@Sun.COM return (SA_BAD_VALUE); 23239832Samw@Sun.COM 23249832Samw@Sun.COM if (*value == '\0') 23259832Samw@Sun.COM return (SA_OK); 23269832Samw@Sun.COM 2327*12508Samw@Sun.COM if ((strcasecmp(value, SMB_EXEC_DISP_CONTINUE) == 0) || 2328*12508Samw@Sun.COM (strcasecmp(value, SMB_EXEC_DISP_TERMINATE) == 0)) 23299832Samw@Sun.COM return (SA_OK); 23309832Samw@Sun.COM 23319832Samw@Sun.COM return (SA_BAD_VALUE); 23329832Samw@Sun.COM } 233311633SJoyce.McIntosh@Sun.COM 233411633SJoyce.McIntosh@Sun.COM /* 233511633SJoyce.McIntosh@Sun.COM * Updates the optionset properties of the share resource. 233611633SJoyce.McIntosh@Sun.COM * The properties are given as a list of name-value pair. 233711633SJoyce.McIntosh@Sun.COM * The name argument should be the optionset property name and the value 233811633SJoyce.McIntosh@Sun.COM * should be a valid value for the specified property. 233912065SKeyur.Desai@Sun.COM * 234012065SKeyur.Desai@Sun.COM * When calling this function for permanent shares, the caller must also 234112065SKeyur.Desai@Sun.COM * call sa_commit_properties() to commit the changes to SMF. 234211633SJoyce.McIntosh@Sun.COM */ 234311633SJoyce.McIntosh@Sun.COM static int 234411633SJoyce.McIntosh@Sun.COM smb_update_optionset_props(sa_handle_t handle, sa_resource_t resource, 234511633SJoyce.McIntosh@Sun.COM nvlist_t *nvl) 234611633SJoyce.McIntosh@Sun.COM { 234711633SJoyce.McIntosh@Sun.COM sa_property_t prop; 234811633SJoyce.McIntosh@Sun.COM sa_optionset_t opts; 234911633SJoyce.McIntosh@Sun.COM int err = SA_OK; 235011633SJoyce.McIntosh@Sun.COM nvpair_t *cur; 235111633SJoyce.McIntosh@Sun.COM char *name, *val; 235211633SJoyce.McIntosh@Sun.COM 235311633SJoyce.McIntosh@Sun.COM if ((opts = sa_get_optionset(resource, SMB_PROTOCOL_NAME)) == NULL) { 235411633SJoyce.McIntosh@Sun.COM opts = sa_create_optionset(resource, SMB_PROTOCOL_NAME); 235511633SJoyce.McIntosh@Sun.COM if (opts == NULL) 235611633SJoyce.McIntosh@Sun.COM return (SA_CONFIG_ERR); 235711633SJoyce.McIntosh@Sun.COM } 235811633SJoyce.McIntosh@Sun.COM 235911633SJoyce.McIntosh@Sun.COM cur = nvlist_next_nvpair(nvl, NULL); 236011633SJoyce.McIntosh@Sun.COM while (cur != NULL) { 236111633SJoyce.McIntosh@Sun.COM name = nvpair_name(cur); 236211633SJoyce.McIntosh@Sun.COM err = nvpair_value_string(cur, &val); 236311633SJoyce.McIntosh@Sun.COM if ((err != 0) || (name == NULL) || (val == NULL)) { 236411633SJoyce.McIntosh@Sun.COM err = SA_CONFIG_ERR; 236511633SJoyce.McIntosh@Sun.COM break; 236611633SJoyce.McIntosh@Sun.COM } 236711633SJoyce.McIntosh@Sun.COM 236811633SJoyce.McIntosh@Sun.COM prop = NULL; 236911633SJoyce.McIntosh@Sun.COM if ((prop = sa_get_property(opts, name)) == NULL) { 237011633SJoyce.McIntosh@Sun.COM prop = sa_create_property(name, val); 237111633SJoyce.McIntosh@Sun.COM if (prop != NULL) { 237211633SJoyce.McIntosh@Sun.COM err = sa_valid_property(handle, opts, 237311633SJoyce.McIntosh@Sun.COM SMB_PROTOCOL_NAME, prop); 237411633SJoyce.McIntosh@Sun.COM if (err != SA_OK) { 237511633SJoyce.McIntosh@Sun.COM (void) sa_remove_property(prop); 237611633SJoyce.McIntosh@Sun.COM break; 237711633SJoyce.McIntosh@Sun.COM } 237811633SJoyce.McIntosh@Sun.COM } 237911633SJoyce.McIntosh@Sun.COM err = sa_add_property(opts, prop); 238011633SJoyce.McIntosh@Sun.COM if (err != SA_OK) 238111633SJoyce.McIntosh@Sun.COM break; 238211633SJoyce.McIntosh@Sun.COM } else { 238311633SJoyce.McIntosh@Sun.COM err = sa_update_property(prop, val); 238411633SJoyce.McIntosh@Sun.COM if (err != SA_OK) 238511633SJoyce.McIntosh@Sun.COM break; 238611633SJoyce.McIntosh@Sun.COM } 238711633SJoyce.McIntosh@Sun.COM 238811633SJoyce.McIntosh@Sun.COM cur = nvlist_next_nvpair(nvl, cur); 238911633SJoyce.McIntosh@Sun.COM } 239011633SJoyce.McIntosh@Sun.COM 239111633SJoyce.McIntosh@Sun.COM return (err); 239211633SJoyce.McIntosh@Sun.COM } 239311963SAfshin.Ardakani@Sun.COM 239411963SAfshin.Ardakani@Sun.COM static boolean_t 239511963SAfshin.Ardakani@Sun.COM smb_saprop_getbool(sa_optionset_t opts, char *propname) 239611963SAfshin.Ardakani@Sun.COM { 239711963SAfshin.Ardakani@Sun.COM sa_property_t prop; 239811963SAfshin.Ardakani@Sun.COM char *val; 239911963SAfshin.Ardakani@Sun.COM boolean_t propval = B_FALSE; 240011963SAfshin.Ardakani@Sun.COM 240111963SAfshin.Ardakani@Sun.COM prop = sa_get_property(opts, propname); 240211963SAfshin.Ardakani@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 240311963SAfshin.Ardakani@Sun.COM if ((strcasecmp(val, "true") == 0) || (strcmp(val, "1") == 0)) 240411963SAfshin.Ardakani@Sun.COM propval = B_TRUE; 240511963SAfshin.Ardakani@Sun.COM free(val); 240611963SAfshin.Ardakani@Sun.COM } 240711963SAfshin.Ardakani@Sun.COM 240811963SAfshin.Ardakani@Sun.COM return (propval); 240911963SAfshin.Ardakani@Sun.COM } 241011963SAfshin.Ardakani@Sun.COM 241111963SAfshin.Ardakani@Sun.COM static boolean_t 241211963SAfshin.Ardakani@Sun.COM smb_saprop_getstr(sa_optionset_t opts, char *propname, char *buf, size_t bufsz) 241311963SAfshin.Ardakani@Sun.COM { 241411963SAfshin.Ardakani@Sun.COM sa_property_t prop; 241511963SAfshin.Ardakani@Sun.COM char *val; 241611963SAfshin.Ardakani@Sun.COM 241711963SAfshin.Ardakani@Sun.COM prop = sa_get_property(opts, propname); 241811963SAfshin.Ardakani@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 241911963SAfshin.Ardakani@Sun.COM (void) strlcpy(buf, val, bufsz); 242011963SAfshin.Ardakani@Sun.COM free(val); 242111963SAfshin.Ardakani@Sun.COM return (B_TRUE); 242211963SAfshin.Ardakani@Sun.COM } 242311963SAfshin.Ardakani@Sun.COM 242411963SAfshin.Ardakani@Sun.COM return (B_FALSE); 242511963SAfshin.Ardakani@Sun.COM } 2426