15331Samw /* 25331Samw * CDDL HEADER START 35331Samw * 45331Samw * The contents of this file are subject to the terms of the 55331Samw * Common Development and Distribution License (the "License"). 65331Samw * You may not use this file except in compliance with the License. 75331Samw * 85331Samw * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 95331Samw * or http://www.opensolaris.org/os/licensing. 105331Samw * See the License for the specific language governing permissions 115331Samw * and limitations under the License. 125331Samw * 135331Samw * When distributing Covered Code, include this CDDL HEADER in each 145331Samw * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 155331Samw * If applicable, add the following below this CDDL HEADER, with the 165331Samw * fields enclosed by brackets "[]" replaced with your own identifying 175331Samw * information: Portions Copyright [yyyy] [name of copyright owner] 185331Samw * 195331Samw * CDDL HEADER END 205331Samw */ 215331Samw 225331Samw /* 2312065SKeyur.Desai@Sun.COM * Copyright (c) 2007, 2010, Oracle and/or its affiliates. All rights reserved. 245331Samw */ 255331Samw 265331Samw /* 275331Samw * SMB specific functions 285331Samw */ 295331Samw #include <stdio.h> 305331Samw #include <string.h> 315331Samw #include <ctype.h> 325331Samw #include <stdlib.h> 335331Samw #include <unistd.h> 345331Samw #include <zone.h> 355331Samw #include <errno.h> 365331Samw #include <locale.h> 375331Samw #include <fcntl.h> 385331Samw #include <sys/types.h> 395331Samw #include <sys/stat.h> 405331Samw #include <syslog.h> 415331Samw #include "libshare.h" 425331Samw #include "libshare_impl.h" 435331Samw #include <pwd.h> 445331Samw #include <limits.h> 455331Samw #include <libscf.h> 4612483SAntonello.Cruz@Sun.COM #include <libscf_priv.h> 475331Samw #include <strings.h> 485331Samw #include "libshare_smb.h" 495331Samw #include <rpcsvc/daemon_utils.h> 507052Samw #include <smbsrv/smb_share.h> 515331Samw #include <smbsrv/smbinfo.h> 525331Samw #include <smbsrv/libsmb.h> 538334SJose.Borrego@Sun.COM #include <libdlpi.h> 548334SJose.Borrego@Sun.COM 558334SJose.Borrego@Sun.COM #define SMB_CSC_BUFSZ 64 565331Samw 579832Samw@Sun.COM #define SMB_VALID_SUB_CHRS "UDhMLmIiSPu" /* substitution characters */ 589832Samw@Sun.COM 595331Samw /* internal functions */ 605331Samw static int smb_share_init(void); 615331Samw static void smb_share_fini(void); 625331Samw static int smb_enable_share(sa_share_t); 635331Samw static int smb_share_changed(sa_share_t); 645331Samw static int smb_resource_changed(sa_resource_t); 655331Samw static int smb_rename_resource(sa_handle_t, sa_resource_t, char *); 665331Samw static int smb_disable_share(sa_share_t share, char *); 676214Sdougm static int smb_validate_property(sa_handle_t, sa_property_t, sa_optionset_t); 685331Samw static int smb_set_proto_prop(sa_property_t); 695331Samw static sa_protocol_properties_t smb_get_proto_set(void); 705331Samw static char *smb_get_status(void); 715331Samw static int smb_parse_optstring(sa_group_t, char *); 725331Samw static char *smb_format_options(sa_group_t, int); 735331Samw 745331Samw static int smb_enable_service(void); 755331Samw 765331Samw static int range_check_validator(int, char *); 775331Samw static int range_check_validator_zero_ok(int, char *); 785331Samw static int string_length_check_validator(int, char *); 795331Samw static int true_false_validator(int, char *); 809832Samw@Sun.COM static int ipv4_validator(int, char *); 8111633SJoyce.McIntosh@Sun.COM static int hostname_validator(int, char *); 825331Samw static int path_validator(int, char *); 839832Samw@Sun.COM static int cmd_validator(int, char *); 849832Samw@Sun.COM static int disposition_validator(int, char *); 855331Samw 865331Samw static int smb_enable_resource(sa_resource_t); 875331Samw static int smb_disable_resource(sa_resource_t); 885331Samw static uint64_t smb_share_features(void); 895331Samw static int smb_list_transient(sa_handle_t); 905772Sas200622 917348SJose.Borrego@Sun.COM static int smb_build_shareinfo(sa_share_t, sa_resource_t, smb_share_t *); 928334SJose.Borrego@Sun.COM static void smb_csc_option(const char *, smb_share_t *); 938474SJose.Borrego@Sun.COM static char *smb_csc_name(const smb_share_t *); 947348SJose.Borrego@Sun.COM static sa_group_t smb_get_defaultgrp(sa_handle_t); 958334SJose.Borrego@Sun.COM static int interface_validator(int, char *); 9611633SJoyce.McIntosh@Sun.COM static int smb_update_optionset_props(sa_handle_t, sa_resource_t, nvlist_t *); 977348SJose.Borrego@Sun.COM 9811963SAfshin.Ardakani@Sun.COM static boolean_t smb_saprop_getbool(sa_optionset_t, char *); 9911963SAfshin.Ardakani@Sun.COM static boolean_t smb_saprop_getstr(sa_optionset_t, char *, char *, size_t); 10011963SAfshin.Ardakani@Sun.COM 1018474SJose.Borrego@Sun.COM static struct { 1028474SJose.Borrego@Sun.COM char *value; 1038474SJose.Borrego@Sun.COM uint32_t flag; 1048474SJose.Borrego@Sun.COM } cscopt[] = { 1058474SJose.Borrego@Sun.COM { "disabled", SMB_SHRF_CSC_DISABLED }, 1068474SJose.Borrego@Sun.COM { "manual", SMB_SHRF_CSC_MANUAL }, 1078474SJose.Borrego@Sun.COM { "auto", SMB_SHRF_CSC_AUTO }, 1088474SJose.Borrego@Sun.COM { "vdo", SMB_SHRF_CSC_VDO } 1098474SJose.Borrego@Sun.COM }; 1108474SJose.Borrego@Sun.COM 1115331Samw /* size of basic format allocation */ 1125331Samw #define OPT_CHUNK 1024 1135331Samw 1145772Sas200622 /* size of string for types - big enough to hold "dependency" */ 1155772Sas200622 #define SCFTYPE_LEN 32 1165772Sas200622 1175331Samw /* 1185331Samw * Indexes of entries in smb_proto_options table. 1195331Samw * Changes to smb_proto_options table may require 1205331Samw * an update to these values. 1215331Samw */ 1225331Samw #define PROTO_OPT_WINS1 6 1235331Samw #define PROTO_OPT_WINS_EXCLUDE 8 1245331Samw 1258334SJose.Borrego@Sun.COM typedef struct smb_hostifs_walker { 1268334SJose.Borrego@Sun.COM const char *hiw_ifname; 1278334SJose.Borrego@Sun.COM boolean_t hiw_matchfound; 1288334SJose.Borrego@Sun.COM } smb_hostifs_walker_t; 1298334SJose.Borrego@Sun.COM 1305331Samw 1315331Samw /* 1325331Samw * ops vector that provides the protocol specific info and operations 1335331Samw * for share management. 1345331Samw */ 1355331Samw 1365331Samw struct sa_plugin_ops sa_plugin_ops = { 1375331Samw SA_PLUGIN_VERSION, 1385331Samw SMB_PROTOCOL_NAME, 1395331Samw smb_share_init, 1405331Samw smb_share_fini, 1415331Samw smb_enable_share, 1425331Samw smb_disable_share, 1435331Samw smb_validate_property, 1446007Sthurlow NULL, /* valid_space */ 1456007Sthurlow NULL, /* security_prop */ 1465331Samw smb_parse_optstring, 1475331Samw smb_format_options, 1485331Samw smb_set_proto_prop, 1495331Samw smb_get_proto_set, 1505331Samw smb_get_status, 1516007Sthurlow NULL, /* space_alias */ 1526007Sthurlow NULL, /* update_legacy */ 1536007Sthurlow NULL, /* delete_legacy */ 1545331Samw smb_share_changed, 1555331Samw smb_enable_resource, 1565331Samw smb_disable_resource, 1575331Samw smb_share_features, 1585331Samw smb_list_transient, 1595331Samw smb_resource_changed, 1605331Samw smb_rename_resource, 1616007Sthurlow NULL, /* run_command */ 1626007Sthurlow NULL, /* command_help */ 1636007Sthurlow NULL /* delete_proto_section */ 1645331Samw }; 1655331Samw 1665331Samw struct option_defs optdefs[] = { 1678334SJose.Borrego@Sun.COM { SHOPT_AD_CONTAINER, OPT_TYPE_STRING }, 16810504SKeyur.Desai@Sun.COM { SHOPT_ABE, OPT_TYPE_BOOLEAN }, 1698334SJose.Borrego@Sun.COM { SHOPT_NAME, OPT_TYPE_NAME }, 1708334SJose.Borrego@Sun.COM { SHOPT_RO, OPT_TYPE_ACCLIST }, 1718334SJose.Borrego@Sun.COM { SHOPT_RW, OPT_TYPE_ACCLIST }, 1728334SJose.Borrego@Sun.COM { SHOPT_NONE, OPT_TYPE_ACCLIST }, 1739231SAfshin.Ardakani@Sun.COM { SHOPT_CATIA, OPT_TYPE_BOOLEAN }, 1748334SJose.Borrego@Sun.COM { SHOPT_CSC, OPT_TYPE_CSC }, 1759832Samw@Sun.COM { SHOPT_GUEST, OPT_TYPE_BOOLEAN }, 17611963SAfshin.Ardakani@Sun.COM { SHOPT_DFSROOT, OPT_TYPE_BOOLEAN }, 17712508Samw@Sun.COM { SHOPT_DESCRIPTION, OPT_TYPE_STRING }, 1788334SJose.Borrego@Sun.COM { NULL, NULL } 1795331Samw }; 1805331Samw 1815331Samw /* 1825331Samw * findopt(name) 1835331Samw * 1845331Samw * Lookup option "name" in the option table and return the table 1855331Samw * index. 1865331Samw */ 1875331Samw static int 1885331Samw findopt(char *name) 1895331Samw { 1905331Samw int i; 1915331Samw if (name != NULL) { 1925331Samw for (i = 0; optdefs[i].tag != NULL; i++) { 1935331Samw if (strcmp(optdefs[i].tag, name) == 0) 1945331Samw return (i); 1955331Samw } 1965331Samw } 1975331Samw return (-1); 1985331Samw } 1995331Samw 2005331Samw /* 2015331Samw * is_a_number(number) 2025331Samw * 2035331Samw * is the string a number in one of the forms we want to use? 2045331Samw */ 2057348SJose.Borrego@Sun.COM static boolean_t 2065331Samw is_a_number(char *number) 2075331Samw { 2087348SJose.Borrego@Sun.COM boolean_t isnum = B_TRUE; 2097348SJose.Borrego@Sun.COM boolean_t ishex = B_FALSE; 2107348SJose.Borrego@Sun.COM 2117348SJose.Borrego@Sun.COM if (number == NULL || *number == '\0') 2127348SJose.Borrego@Sun.COM return (B_FALSE); 2135331Samw 2147348SJose.Borrego@Sun.COM if (strncasecmp(number, "0x", 2) == 0) { 2155331Samw number += 2; 2167348SJose.Borrego@Sun.COM ishex = B_TRUE; 2175331Samw } else if (*number == '-') { 2187348SJose.Borrego@Sun.COM number++; 2195331Samw } 2205331Samw 2217348SJose.Borrego@Sun.COM while (isnum && (*number != '\0')) { 2227348SJose.Borrego@Sun.COM isnum = (ishex) ? isxdigit(*number) : isdigit(*number); 2237348SJose.Borrego@Sun.COM number++; 2245331Samw } 2257348SJose.Borrego@Sun.COM 2267348SJose.Borrego@Sun.COM return (isnum); 2275331Samw } 2285331Samw 2295331Samw /* 2307961SNatalie.Li@Sun.COM * check ro vs rw values. Over time this may get beefed up. 2317961SNatalie.Li@Sun.COM * for now it just does simple checks. 2327961SNatalie.Li@Sun.COM */ 2337961SNatalie.Li@Sun.COM 2347961SNatalie.Li@Sun.COM static int 2357961SNatalie.Li@Sun.COM check_rorw(char *v1, char *v2) 2367961SNatalie.Li@Sun.COM { 2377961SNatalie.Li@Sun.COM int ret = SA_OK; 2387961SNatalie.Li@Sun.COM if (strcmp(v1, v2) == 0) 2397961SNatalie.Li@Sun.COM ret = SA_VALUE_CONFLICT; 2407961SNatalie.Li@Sun.COM return (ret); 2417961SNatalie.Li@Sun.COM } 2427961SNatalie.Li@Sun.COM 2437961SNatalie.Li@Sun.COM /* 2445331Samw * validresource(name) 2455331Samw * 2465331Samw * Check that name only has valid characters in it. The current valid 2475331Samw * set are the printable characters but not including: 2485331Samw * " / \ [ ] : | < > + ; , ? * = \t 2495331Samw * Note that space is included and there is a maximum length. 2505331Samw */ 2517348SJose.Borrego@Sun.COM static boolean_t 2525331Samw validresource(const char *name) 2535331Samw { 2545331Samw const char *cp; 2555331Samw size_t len; 2565331Samw 2575331Samw if (name == NULL) 2585331Samw return (B_FALSE); 2595331Samw 2605331Samw len = strlen(name); 2615331Samw if (len == 0 || len > SA_MAX_RESOURCE_NAME) 2625331Samw return (B_FALSE); 2635331Samw 2645331Samw if (strpbrk(name, "\"/\\[]:|<>+;,?*=\t") != NULL) { 2655331Samw return (B_FALSE); 2665331Samw } 2675331Samw 2685331Samw for (cp = name; *cp != '\0'; cp++) 2695331Samw if (iscntrl(*cp)) 2705331Samw return (B_FALSE); 2715331Samw 2725331Samw return (B_TRUE); 2735331Samw } 2745331Samw 2755331Samw /* 2768334SJose.Borrego@Sun.COM * Check that the client-side caching (CSC) option value is valid. 2778334SJose.Borrego@Sun.COM */ 2788334SJose.Borrego@Sun.COM static boolean_t 2798334SJose.Borrego@Sun.COM validcsc(const char *value) 2808334SJose.Borrego@Sun.COM { 2818334SJose.Borrego@Sun.COM int i; 2828334SJose.Borrego@Sun.COM 2838334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 2848474SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i].value) == 0) 2858334SJose.Borrego@Sun.COM return (B_TRUE); 2868334SJose.Borrego@Sun.COM } 2878334SJose.Borrego@Sun.COM 2888334SJose.Borrego@Sun.COM return (B_FALSE); 2898334SJose.Borrego@Sun.COM } 2908334SJose.Borrego@Sun.COM 2918334SJose.Borrego@Sun.COM /* 2925331Samw * smb_isonline() 2935331Samw * 2945331Samw * Determine if the SMF service instance is in the online state or 2955331Samw * not. A number of operations depend on this state. 2965331Samw */ 2975331Samw static boolean_t 2985331Samw smb_isonline(void) 2995331Samw { 3005331Samw char *str; 3015331Samw boolean_t ret = B_FALSE; 3025331Samw 3035331Samw if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3045331Samw ret = (strcmp(str, SCF_STATE_STRING_ONLINE) == 0); 3055331Samw free(str); 3065331Samw } 3075331Samw return (ret); 3085331Samw } 3095331Samw 3105331Samw /* 3115772Sas200622 * smb_isdisabled() 3125772Sas200622 * 3135772Sas200622 * Determine if the SMF service instance is in the disabled state or 3145772Sas200622 * not. A number of operations depend on this state. 3155772Sas200622 */ 3165772Sas200622 static boolean_t 3175772Sas200622 smb_isdisabled(void) 3185772Sas200622 { 3195772Sas200622 char *str; 3205772Sas200622 boolean_t ret = B_FALSE; 3215772Sas200622 3225772Sas200622 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3235772Sas200622 ret = (strcmp(str, SCF_STATE_STRING_DISABLED) == 0); 3245772Sas200622 free(str); 3255772Sas200622 } 3265772Sas200622 return (ret); 3275772Sas200622 } 3285772Sas200622 3295772Sas200622 /* 3305772Sas200622 * smb_isautoenable() 3315772Sas200622 * 3325772Sas200622 * Determine if the SMF service instance auto_enabled set or not. A 3335772Sas200622 * number of operations depend on this state. The property not being 3345772Sas200622 * set or being set to true means autoenable. Only being set to false 3355772Sas200622 * is not autoenabled. 3365772Sas200622 */ 3375772Sas200622 static boolean_t 3385772Sas200622 smb_isautoenable(void) 3395772Sas200622 { 3405772Sas200622 boolean_t ret = B_TRUE; 3415772Sas200622 scf_simple_prop_t *prop; 3425772Sas200622 uint8_t *retstr; 3435772Sas200622 3445772Sas200622 prop = scf_simple_prop_get(NULL, SMBD_DEFAULT_INSTANCE_FMRI, 3455772Sas200622 "application", "auto_enable"); 3465772Sas200622 if (prop != NULL) { 3475772Sas200622 retstr = scf_simple_prop_next_boolean(prop); 3485772Sas200622 ret = *retstr != 0; 3495772Sas200622 scf_simple_prop_free(prop); 3505772Sas200622 } 3515772Sas200622 return (ret); 3525772Sas200622 } 3535772Sas200622 3545772Sas200622 /* 3556030Sjb150015 * smb_ismaint() 3566030Sjb150015 * 3576030Sjb150015 * Determine if the SMF service instance is in the disabled state or 3586030Sjb150015 * not. A number of operations depend on this state. 3596030Sjb150015 */ 3606030Sjb150015 static boolean_t 3616030Sjb150015 smb_ismaint(void) 3626030Sjb150015 { 3636030Sjb150015 char *str; 3646030Sjb150015 boolean_t ret = B_FALSE; 3656030Sjb150015 3666030Sjb150015 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3676030Sjb150015 ret = (strcmp(str, SCF_STATE_STRING_MAINT) == 0); 3686030Sjb150015 free(str); 3696030Sjb150015 } 3706030Sjb150015 return (ret); 3716030Sjb150015 } 3726030Sjb150015 3736030Sjb150015 /* 3745331Samw * smb_enable_share tells the implementation that it is to enable the share. 3755331Samw * This entails converting the path and options into the appropriate ioctl 3765331Samw * calls. It is assumed that all error checking of paths, etc. were 3775331Samw * done earlier. 3785331Samw */ 3795331Samw static int 3805331Samw smb_enable_share(sa_share_t share) 3815331Samw { 3825331Samw char *path; 3837052Samw smb_share_t si; 3845331Samw sa_resource_t resource; 3855331Samw boolean_t iszfs; 3865331Samw boolean_t privileged; 3875331Samw int err = SA_OK; 3885331Samw priv_set_t *priv_effective; 3895331Samw boolean_t online; 3905331Samw 3916270Sdougm /* 3926270Sdougm * We only start in the global zone and only run if we aren't 3936270Sdougm * running Trusted Extensions. 3946270Sdougm */ 3956270Sdougm if (getzoneid() != GLOBAL_ZONEID) { 3966270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 3976270Sdougm "SMB: service not supported in local zone\n")); 3986270Sdougm return (SA_NOT_SUPPORTED); 3996270Sdougm } 4006270Sdougm if (is_system_labeled()) { 4016270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 4026270Sdougm "SMB: service not supported with Trusted Extensions\n")); 4036270Sdougm return (SA_NOT_SUPPORTED); 4046270Sdougm } 4056270Sdougm 4065331Samw priv_effective = priv_allocset(); 4075331Samw (void) getppriv(PRIV_EFFECTIVE, priv_effective); 4085331Samw privileged = (priv_isfullset(priv_effective) == B_TRUE); 4095331Samw priv_freeset(priv_effective); 4105331Samw 4115331Samw /* get the path since it is important in several places */ 4125331Samw path = sa_get_share_attr(share, "path"); 4135331Samw if (path == NULL) 4145331Samw return (SA_NO_SUCH_PATH); 4155331Samw 4165772Sas200622 /* 4175772Sas200622 * If administratively disabled, don't try to start anything. 4185772Sas200622 */ 4195331Samw online = smb_isonline(); 4205772Sas200622 if (!online && !smb_isautoenable() && smb_isdisabled()) 4215772Sas200622 goto done; 4225331Samw 4235331Samw iszfs = sa_path_is_zfs(path); 4245331Samw 4255331Samw if (iszfs) { 4265331Samw 4275331Samw if (privileged == B_FALSE && !online) { 4285331Samw 4295331Samw if (!online) { 4305331Samw (void) printf(dgettext(TEXT_DOMAIN, 4315331Samw "SMB: Cannot share remove " 4325331Samw "file system: %s\n"), path); 4335331Samw (void) printf(dgettext(TEXT_DOMAIN, 4345331Samw "SMB: Service needs to be enabled " 4355331Samw "by a privileged user\n")); 4365331Samw err = SA_NO_PERMISSION; 4375331Samw errno = EPERM; 4385331Samw } 4395331Samw if (err) { 4405331Samw sa_free_attr_string(path); 4415331Samw return (err); 4425331Samw } 4435331Samw 4445331Samw } 4455331Samw } 4465331Samw 4475331Samw if (privileged == B_TRUE && !online) { 4485331Samw err = smb_enable_service(); 4495331Samw if (err != SA_OK) { 4505331Samw (void) printf(dgettext(TEXT_DOMAIN, 4515331Samw "SMB: Unable to enable service\n")); 4525331Samw /* 4535331Samw * For now, it is OK to not be able to enable 4545331Samw * the service. 4555331Samw */ 4566030Sjb150015 if (err == SA_BUSY || err == SA_SYSTEM_ERR) 4575331Samw err = SA_OK; 4585331Samw } else { 4595331Samw online = B_TRUE; 4605331Samw } 4615331Samw } 4625331Samw 4635331Samw /* 4645331Samw * Don't bother trying to start shares if the service isn't 4655331Samw * running. 4665331Samw */ 4675331Samw if (!online) 4685331Samw goto done; 4695331Samw 4705331Samw /* Each share can have multiple resources */ 4715331Samw for (resource = sa_get_share_resource(share, NULL); 4725331Samw resource != NULL; 4735331Samw resource = sa_get_next_resource(resource)) { 4747348SJose.Borrego@Sun.COM err = smb_build_shareinfo(share, resource, &si); 4757348SJose.Borrego@Sun.COM if (err != SA_OK) { 4765331Samw sa_free_attr_string(path); 4777348SJose.Borrego@Sun.COM return (err); 4785331Samw } 4795331Samw 4805331Samw if (!iszfs) { 4817348SJose.Borrego@Sun.COM err = smb_share_create(&si); 4825331Samw } else { 4835331Samw share_t sh; 4845331Samw 48511411SSurya.Prakki@Sun.COM (void) sa_sharetab_fill_zfs(share, &sh, "smb"); 4868845Samw@Sun.COM err = sa_share_zfs(share, resource, (char *)path, &sh, 4875331Samw &si, ZFS_SHARE_SMB); 48810761SWilliam.Krier@Sun.COM if (err != SA_OK) { 48910761SWilliam.Krier@Sun.COM errno = err; 49010761SWilliam.Krier@Sun.COM err = -1; 49110761SWilliam.Krier@Sun.COM } 4925331Samw sa_emptyshare(&sh); 4935331Samw } 4945331Samw } 4955331Samw if (!iszfs) 4965331Samw (void) sa_update_sharetab(share, "smb"); 4975331Samw done: 4985331Samw sa_free_attr_string(path); 4995331Samw 5005331Samw return (err == NERR_DuplicateShare ? 0 : err); 5015331Samw } 5025331Samw 5035331Samw /* 5045331Samw * This is the share for CIFS all shares have resource names. 5055331Samw * Enable tells the smb server to update its hash. If it fails 5065331Samw * because smb server is down, we just ignore as smb server loads 5075331Samw * the resources from sharemanager at startup. 5085331Samw */ 5095331Samw 5105331Samw static int 5115331Samw smb_enable_resource(sa_resource_t resource) 5125331Samw { 5135331Samw sa_share_t share; 5147052Samw smb_share_t si; 5155772Sas200622 int ret = SA_OK; 5165772Sas200622 int err; 5175772Sas200622 boolean_t isonline; 5185331Samw 5195331Samw share = sa_get_resource_parent(resource); 5205331Samw if (share == NULL) 5215331Samw return (SA_NO_SUCH_PATH); 5225772Sas200622 5235772Sas200622 /* 5245772Sas200622 * If administratively disabled, don't try to start anything. 5255772Sas200622 */ 5265772Sas200622 isonline = smb_isonline(); 5275772Sas200622 if (!isonline && !smb_isautoenable() && smb_isdisabled()) 5287348SJose.Borrego@Sun.COM return (SA_OK); 5295772Sas200622 5307348SJose.Borrego@Sun.COM if (!isonline) { 5317348SJose.Borrego@Sun.COM (void) smb_enable_service(); 5327348SJose.Borrego@Sun.COM 5337348SJose.Borrego@Sun.COM if (!smb_isonline()) 5347348SJose.Borrego@Sun.COM return (SA_OK); 5355772Sas200622 } 5365772Sas200622 5377348SJose.Borrego@Sun.COM if ((ret = smb_build_shareinfo(share, resource, &si)) != SA_OK) 5387348SJose.Borrego@Sun.COM return (ret); 5395772Sas200622 5405772Sas200622 /* 5415772Sas200622 * Attempt to add the share. Any error that occurs if it was 5425772Sas200622 * online is an error but don't count NERR_DuplicateName if 5435772Sas200622 * smb/server had to be brought online since bringing the 5445772Sas200622 * service up will enable the share that was just added prior 5455772Sas200622 * to the attempt to enable. 5465772Sas200622 */ 5477348SJose.Borrego@Sun.COM err = smb_share_create(&si); 5485772Sas200622 if (err == NERR_Success || !(!isonline && err == NERR_DuplicateName)) 5495772Sas200622 (void) sa_update_sharetab(share, "smb"); 5505772Sas200622 else 5515331Samw return (SA_NOT_SHARED); 5525331Samw 5537348SJose.Borrego@Sun.COM return (SA_OK); 5545331Samw } 5555331Samw 5565331Samw /* 5575331Samw * Remove it from smb server hash. 5585331Samw */ 5595331Samw static int 5605331Samw smb_disable_resource(sa_resource_t resource) 5615331Samw { 5625331Samw char *rname; 5637052Samw uint32_t res; 5645331Samw sa_share_t share; 5655331Samw 5665331Samw rname = sa_get_resource_attr(resource, "name"); 5675331Samw if (rname == NULL) 5685331Samw return (SA_NO_SUCH_RESOURCE); 5695331Samw 5705331Samw if (smb_isonline()) { 5717348SJose.Borrego@Sun.COM res = smb_share_delete(rname); 57211337SWilliam.Krier@Sun.COM if (res != NERR_Success && 57311337SWilliam.Krier@Sun.COM res != NERR_NetNameNotFound) { 5745331Samw sa_free_attr_string(rname); 5755331Samw return (SA_CONFIG_ERR); 5765331Samw } 5775331Samw } 5785951Sdougm 5795951Sdougm sa_free_attr_string(rname); 5805951Sdougm 5815331Samw share = sa_get_resource_parent(resource); 5825331Samw if (share != NULL) { 5835331Samw rname = sa_get_share_attr(share, "path"); 5845331Samw if (rname != NULL) { 5855951Sdougm sa_handle_t handle; 5865951Sdougm 5875951Sdougm handle = sa_find_group_handle((sa_group_t)resource); 5885951Sdougm (void) sa_delete_sharetab(handle, rname, "smb"); 5895331Samw sa_free_attr_string(rname); 5905331Samw } 5915331Samw } 5925331Samw /* 5935331Samw * Always return OK as smb/server may be down and 5945331Samw * Shares will be picked up when loaded. 5955331Samw */ 5965331Samw return (SA_OK); 5975331Samw } 5985331Samw 5995331Samw /* 6005331Samw * smb_share_changed(sa_share_t share) 6015331Samw * 6025331Samw * The specified share has changed. 6035331Samw */ 6045331Samw static int 6055331Samw smb_share_changed(sa_share_t share) 6065331Samw { 6075331Samw char *path; 6085331Samw sa_resource_t resource; 6095331Samw 6107348SJose.Borrego@Sun.COM if (!smb_isonline()) 6117348SJose.Borrego@Sun.COM return (SA_OK); 6127348SJose.Borrego@Sun.COM 6135331Samw /* get the path since it is important in several places */ 6145331Samw path = sa_get_share_attr(share, "path"); 6155331Samw if (path == NULL) 6165331Samw return (SA_NO_SUCH_PATH); 6177348SJose.Borrego@Sun.COM 6185331Samw for (resource = sa_get_share_resource(share, NULL); 6195331Samw resource != NULL; 6205331Samw resource = sa_get_next_resource(resource)) 6215331Samw (void) smb_resource_changed(resource); 6225331Samw 6235331Samw sa_free_attr_string(path); 6245331Samw 6255331Samw return (SA_OK); 6265331Samw } 6275331Samw 6285331Samw /* 6295331Samw * smb_resource_changed(sa_resource_t resource) 6305331Samw * 6315331Samw * The specified resource has changed. 6325331Samw */ 6335331Samw static int 6345331Samw smb_resource_changed(sa_resource_t resource) 6355331Samw { 6367052Samw uint32_t res; 6377348SJose.Borrego@Sun.COM sa_share_t share; 6387052Samw smb_share_t si; 6395331Samw 6407348SJose.Borrego@Sun.COM if (!smb_isonline()) 6417348SJose.Borrego@Sun.COM return (SA_OK); 6425331Samw 6437348SJose.Borrego@Sun.COM if ((share = sa_get_resource_parent(resource)) == NULL) 6447348SJose.Borrego@Sun.COM return (SA_CONFIG_ERR); 6455331Samw 6467348SJose.Borrego@Sun.COM if ((res = smb_build_shareinfo(share, resource, &si)) != SA_OK) 6477348SJose.Borrego@Sun.COM return (res); 6485331Samw 6497961SNatalie.Li@Sun.COM res = smb_share_modify(&si); 6507348SJose.Borrego@Sun.COM 6517348SJose.Borrego@Sun.COM if (res != NERR_Success) 6525331Samw return (SA_CONFIG_ERR); 6535331Samw 6545331Samw return (smb_enable_service()); 6555331Samw } 6565331Samw 6575331Samw /* 6585800Sdougm * smb_disable_share(sa_share_t share, char *path) 6595331Samw * 6605800Sdougm * Unshare the specified share. Note that "path" is the same 6615800Sdougm * path as what is in the "share" object. It is passed in to avoid an 6625800Sdougm * additional lookup. A missing "path" value makes this a no-op 6635800Sdougm * function. 6645331Samw */ 6655331Samw static int 6665331Samw smb_disable_share(sa_share_t share, char *path) 6675331Samw { 6685331Samw char *rname; 6695331Samw sa_resource_t resource; 6705800Sdougm sa_group_t parent; 6715331Samw boolean_t iszfs; 6725331Samw int err = SA_OK; 67310761SWilliam.Krier@Sun.COM int ret = SA_OK; 6745951Sdougm sa_handle_t handle; 6757483SDoug.McCallum@Sun.COM boolean_t first = B_TRUE; /* work around sharetab issue */ 6765331Samw 6775800Sdougm if (path == NULL) 67810761SWilliam.Krier@Sun.COM return (ret); 6795800Sdougm 6805800Sdougm /* 6815800Sdougm * If the share is in a ZFS group we need to handle it 6825800Sdougm * differently. Just being on a ZFS file system isn't 6835800Sdougm * enough since we may be in a legacy share case. 6845800Sdougm */ 6855800Sdougm parent = sa_get_parent_group(share); 6865800Sdougm iszfs = sa_group_is_zfs(parent); 6875800Sdougm 6885331Samw if (!smb_isonline()) 6895331Samw goto done; 6905331Samw 6915331Samw for (resource = sa_get_share_resource(share, NULL); 69210761SWilliam.Krier@Sun.COM resource != NULL; 6935331Samw resource = sa_get_next_resource(resource)) { 6945331Samw rname = sa_get_resource_attr(resource, "name"); 6955331Samw if (rname == NULL) { 6965331Samw continue; 6975331Samw } 6985331Samw if (!iszfs) { 6997348SJose.Borrego@Sun.COM err = smb_share_delete(rname); 7005331Samw switch (err) { 7015331Samw case NERR_NetNameNotFound: 7025331Samw case NERR_Success: 7035331Samw err = SA_OK; 7045331Samw break; 7055331Samw default: 7065331Samw err = SA_CONFIG_ERR; 7075331Samw break; 7085331Samw } 7095331Samw } else { 7105331Samw share_t sh; 7115331Samw 71211411SSurya.Prakki@Sun.COM (void) sa_sharetab_fill_zfs(share, &sh, "smb"); 7138845Samw@Sun.COM err = sa_share_zfs(share, resource, (char *)path, &sh, 7145331Samw rname, ZFS_UNSHARE_SMB); 71510761SWilliam.Krier@Sun.COM if (err != SA_OK) { 71610761SWilliam.Krier@Sun.COM switch (err) { 71710761SWilliam.Krier@Sun.COM case EINVAL: 71810761SWilliam.Krier@Sun.COM case ENOENT: 71910761SWilliam.Krier@Sun.COM err = SA_OK; 72010761SWilliam.Krier@Sun.COM break; 72110761SWilliam.Krier@Sun.COM default: 72210761SWilliam.Krier@Sun.COM /* 72310761SWilliam.Krier@Sun.COM * If we are no longer the first case, 72410761SWilliam.Krier@Sun.COM * we don't care about the sa_share_zfs 72510761SWilliam.Krier@Sun.COM * err if it is -1. This works around 72610761SWilliam.Krier@Sun.COM * a problem in sharefs and should be 72710761SWilliam.Krier@Sun.COM * removed when sharefs supports 72810761SWilliam.Krier@Sun.COM * multiple entries per path. 72910761SWilliam.Krier@Sun.COM */ 73010761SWilliam.Krier@Sun.COM if (!first) 73110761SWilliam.Krier@Sun.COM err = SA_OK; 73210761SWilliam.Krier@Sun.COM else 73310761SWilliam.Krier@Sun.COM err = SA_SYSTEM_ERR; 73410761SWilliam.Krier@Sun.COM break; 73510761SWilliam.Krier@Sun.COM } 73610761SWilliam.Krier@Sun.COM } 73710761SWilliam.Krier@Sun.COM 7387483SDoug.McCallum@Sun.COM first = B_FALSE; 7397483SDoug.McCallum@Sun.COM 7405331Samw sa_emptyshare(&sh); 7415331Samw } 74210761SWilliam.Krier@Sun.COM 74310761SWilliam.Krier@Sun.COM if (err != SA_OK) 74410761SWilliam.Krier@Sun.COM ret = err; 7455331Samw sa_free_attr_string(rname); 7465331Samw } 7475331Samw done: 7485951Sdougm if (!iszfs) { 7495951Sdougm handle = sa_find_group_handle((sa_group_t)share); 7505951Sdougm if (handle != NULL) 7515951Sdougm (void) sa_delete_sharetab(handle, path, "smb"); 7525951Sdougm else 75310761SWilliam.Krier@Sun.COM ret = SA_SYSTEM_ERR; 7545951Sdougm } 75510761SWilliam.Krier@Sun.COM return (ret); 7565331Samw } 7575331Samw 7585331Samw /* 7596214Sdougm * smb_validate_property(handle, property, parent) 7605331Samw * 7615331Samw * Check that the property has a legitimate value for its type. 7626214Sdougm * Handle isn't currently used but may need to be in the future. 7635331Samw */ 7645331Samw 7656214Sdougm /*ARGSUSED*/ 7665331Samw static int 7676214Sdougm smb_validate_property(sa_handle_t handle, sa_property_t property, 7686214Sdougm sa_optionset_t parent) 7695331Samw { 7705331Samw int ret = SA_OK; 7715331Samw char *propname; 7725331Samw int optindex; 7735331Samw sa_group_t parent_group; 7745331Samw char *value; 7757961SNatalie.Li@Sun.COM char *other; 7765331Samw 7775331Samw propname = sa_get_property_attr(property, "type"); 7785331Samw 7795331Samw if ((optindex = findopt(propname)) < 0) 7805331Samw ret = SA_NO_SUCH_PROP; 7815331Samw 7825331Samw /* need to validate value range here as well */ 7835331Samw if (ret == SA_OK) { 7845331Samw parent_group = sa_get_parent_group((sa_share_t)parent); 7855331Samw if (optdefs[optindex].share && !sa_is_share(parent_group)) 7865331Samw ret = SA_PROP_SHARE_ONLY; 7875331Samw } 7885331Samw if (ret != SA_OK) { 7895331Samw if (propname != NULL) 7905331Samw sa_free_attr_string(propname); 7915331Samw return (ret); 7925331Samw } 7935331Samw 7945331Samw value = sa_get_property_attr(property, "value"); 7955331Samw if (value != NULL) { 7965331Samw /* first basic type checking */ 7975331Samw switch (optdefs[optindex].type) { 7985331Samw case OPT_TYPE_NUMBER: 7995331Samw /* check that the value is all digits */ 8005331Samw if (!is_a_number(value)) 8015331Samw ret = SA_BAD_VALUE; 8025331Samw break; 8035331Samw case OPT_TYPE_BOOLEAN: 8049832Samw@Sun.COM ret = true_false_validator(0, value); 8055331Samw break; 8065331Samw case OPT_TYPE_NAME: 8075331Samw /* 8085331Samw * Make sure no invalid characters 8095331Samw */ 8109832Samw@Sun.COM if (!validresource(value)) 8115331Samw ret = SA_BAD_VALUE; 8125331Samw break; 8135331Samw case OPT_TYPE_STRING: 8145331Samw /* whatever is here should be ok */ 8155331Samw break; 8168334SJose.Borrego@Sun.COM case OPT_TYPE_CSC: 8179832Samw@Sun.COM if (!validcsc(value)) 8188334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 8198334SJose.Borrego@Sun.COM break; 8207961SNatalie.Li@Sun.COM case OPT_TYPE_ACCLIST: { 8217961SNatalie.Li@Sun.COM sa_property_t oprop; 8227961SNatalie.Li@Sun.COM char *ovalue; 8237961SNatalie.Li@Sun.COM /* 8247961SNatalie.Li@Sun.COM * access list handling. Should eventually 8257961SNatalie.Li@Sun.COM * validate that all the values make sense. 8267961SNatalie.Li@Sun.COM * Also, ro and rw may have cross value 8277961SNatalie.Li@Sun.COM * conflicts. 8287961SNatalie.Li@Sun.COM */ 8297961SNatalie.Li@Sun.COM if (parent == NULL) 8307961SNatalie.Li@Sun.COM break; 8317961SNatalie.Li@Sun.COM if (strcmp(propname, SHOPT_RO) == 0) 8327961SNatalie.Li@Sun.COM other = SHOPT_RW; 8337961SNatalie.Li@Sun.COM else if (strcmp(propname, SHOPT_RW) == 0) 8347961SNatalie.Li@Sun.COM other = SHOPT_RO; 8357961SNatalie.Li@Sun.COM else 8367961SNatalie.Li@Sun.COM other = NULL; 8377961SNatalie.Li@Sun.COM if (other == NULL) 8387961SNatalie.Li@Sun.COM break; 8397961SNatalie.Li@Sun.COM 8407961SNatalie.Li@Sun.COM /* compare rw(ro) with ro(rw) */ 8417961SNatalie.Li@Sun.COM oprop = sa_get_property(parent, other); 8427961SNatalie.Li@Sun.COM if (oprop == NULL) 8437961SNatalie.Li@Sun.COM break; 8447961SNatalie.Li@Sun.COM /* 8457961SNatalie.Li@Sun.COM * only potential 8467961SNatalie.Li@Sun.COM * confusion if other 8477961SNatalie.Li@Sun.COM * exists 8487961SNatalie.Li@Sun.COM */ 8497961SNatalie.Li@Sun.COM ovalue = sa_get_property_attr(oprop, "value"); 8507961SNatalie.Li@Sun.COM if (ovalue != NULL) { 8517961SNatalie.Li@Sun.COM ret = check_rorw(value, ovalue); 8527961SNatalie.Li@Sun.COM sa_free_attr_string(ovalue); 8537961SNatalie.Li@Sun.COM } 8547961SNatalie.Li@Sun.COM break; 8557961SNatalie.Li@Sun.COM } 8565331Samw default: 8575331Samw break; 8585331Samw } 8595331Samw } 8605331Samw 8615331Samw if (value != NULL) 8625331Samw sa_free_attr_string(value); 8635331Samw if (ret == SA_OK && optdefs[optindex].check != NULL) 8645331Samw /* do the property specific check */ 8655331Samw ret = optdefs[optindex].check(property); 8665331Samw 8675331Samw if (propname != NULL) 8685331Samw sa_free_attr_string(propname); 8695331Samw return (ret); 8705331Samw } 8715331Samw 8725331Samw /* 8735331Samw * Protocol management functions 8745331Samw * 8755331Samw * properties defined in the default files are defined in 8765331Samw * proto_option_defs for parsing and validation. 8775331Samw */ 8785331Samw 8795331Samw struct smb_proto_option_defs { 8805331Samw int smb_index; 8815331Samw int32_t minval; 8825331Samw int32_t maxval; /* In case of length of string this should be max */ 8835331Samw int (*validator)(int, char *); 8845331Samw int32_t refresh; 8855331Samw } smb_proto_options[] = { 8865772Sas200622 { SMB_CI_SYS_CMNT, 0, MAX_VALUE_BUFLEN, 8875772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 8885772Sas200622 { SMB_CI_MAX_WORKERS, 64, 1024, range_check_validator, 8895772Sas200622 SMB_REFRESH_REFRESH }, 8905772Sas200622 { SMB_CI_NBSCOPE, 0, MAX_VALUE_BUFLEN, 8915772Sas200622 string_length_check_validator, 0 }, 8925772Sas200622 { SMB_CI_LM_LEVEL, 2, 5, range_check_validator, 0 }, 8935772Sas200622 { SMB_CI_KEEPALIVE, 20, 5400, range_check_validator_zero_ok, 8945772Sas200622 SMB_REFRESH_REFRESH }, 8955772Sas200622 { SMB_CI_WINS_SRV1, 0, MAX_VALUE_BUFLEN, 8969832Samw@Sun.COM ipv4_validator, SMB_REFRESH_REFRESH }, 8975772Sas200622 { SMB_CI_WINS_SRV2, 0, MAX_VALUE_BUFLEN, 8989832Samw@Sun.COM ipv4_validator, SMB_REFRESH_REFRESH }, 8995772Sas200622 { SMB_CI_WINS_EXCL, 0, MAX_VALUE_BUFLEN, 9008334SJose.Borrego@Sun.COM interface_validator, SMB_REFRESH_REFRESH }, 9015772Sas200622 { SMB_CI_SIGNING_ENABLE, 0, 0, true_false_validator, 9025772Sas200622 SMB_REFRESH_REFRESH }, 9035772Sas200622 { SMB_CI_SIGNING_REQD, 0, 0, true_false_validator, 9045772Sas200622 SMB_REFRESH_REFRESH }, 9055772Sas200622 { SMB_CI_RESTRICT_ANON, 0, 0, true_false_validator, 9065772Sas200622 SMB_REFRESH_REFRESH }, 9075772Sas200622 { SMB_CI_DOMAIN_SRV, 0, MAX_VALUE_BUFLEN, 90811633SJoyce.McIntosh@Sun.COM hostname_validator, SMB_REFRESH_REFRESH }, 9095772Sas200622 { SMB_CI_ADS_SITE, 0, MAX_VALUE_BUFLEN, 9105772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 9115772Sas200622 { SMB_CI_DYNDNS_ENABLE, 0, 0, true_false_validator, 0 }, 9125772Sas200622 { SMB_CI_AUTOHOME_MAP, 0, MAX_VALUE_BUFLEN, path_validator, 0 }, 9138670SJose.Borrego@Sun.COM { SMB_CI_IPV6_ENABLE, 0, 0, true_false_validator, 9148670SJose.Borrego@Sun.COM SMB_REFRESH_REFRESH }, 915*12890SJoyce.McIntosh@Sun.COM { SMB_CI_PRINT_ENABLE, 0, 0, true_false_validator, 916*12890SJoyce.McIntosh@Sun.COM SMB_REFRESH_REFRESH }, 9179832Samw@Sun.COM { SMB_CI_MAP, 0, MAX_VALUE_BUFLEN, cmd_validator, SMB_REFRESH_REFRESH }, 9189832Samw@Sun.COM { SMB_CI_UNMAP, 0, MAX_VALUE_BUFLEN, cmd_validator, 9199832Samw@Sun.COM SMB_REFRESH_REFRESH }, 9209832Samw@Sun.COM { SMB_CI_DISPOSITION, 0, MAX_VALUE_BUFLEN, 9219832Samw@Sun.COM disposition_validator, SMB_REFRESH_REFRESH }, 9225331Samw }; 9235331Samw 9245772Sas200622 #define SMB_OPT_NUM \ 9255772Sas200622 (sizeof (smb_proto_options) / sizeof (smb_proto_options[0])) 9265772Sas200622 9275331Samw /* 9285331Samw * Check the range of value as int range. 9295331Samw */ 9305331Samw static int 9315331Samw range_check_validator(int index, char *value) 9325331Samw { 9335331Samw int ret = SA_OK; 9345331Samw 9355331Samw if (!is_a_number(value)) { 9365331Samw ret = SA_BAD_VALUE; 9375331Samw } else { 9385331Samw int val; 9395331Samw val = strtoul(value, NULL, 0); 9405331Samw if (val < smb_proto_options[index].minval || 9415331Samw val > smb_proto_options[index].maxval) 9425331Samw ret = SA_BAD_VALUE; 9435331Samw } 9445331Samw return (ret); 9455331Samw } 9465331Samw 9475331Samw /* 9485331Samw * Check the range of value as int range. 9495331Samw */ 9505331Samw static int 9515331Samw range_check_validator_zero_ok(int index, char *value) 9525331Samw { 9535331Samw int ret = SA_OK; 9545331Samw 9555331Samw if (!is_a_number(value)) { 9565331Samw ret = SA_BAD_VALUE; 9575331Samw } else { 9585331Samw int val; 9595331Samw val = strtoul(value, NULL, 0); 9605331Samw if (val == 0) 9615331Samw ret = SA_OK; 9625331Samw else { 9635331Samw if (val < smb_proto_options[index].minval || 9645331Samw val > smb_proto_options[index].maxval) 9655331Samw ret = SA_BAD_VALUE; 9665331Samw } 9675331Samw } 9685331Samw return (ret); 9695331Samw } 9705331Samw 9715331Samw /* 9725331Samw * Check the length of the string 9735331Samw */ 9745331Samw static int 9755331Samw string_length_check_validator(int index, char *value) 9765331Samw { 9775331Samw int ret = SA_OK; 9785331Samw 9795331Samw if (value == NULL) 9805331Samw return (SA_BAD_VALUE); 9815331Samw if (strlen(value) > smb_proto_options[index].maxval) 9825331Samw ret = SA_BAD_VALUE; 9835331Samw return (ret); 9845331Samw } 9855331Samw 9865331Samw /* 9875331Samw * Check yes/no 9885331Samw */ 9895331Samw /*ARGSUSED*/ 9905331Samw static int 9915331Samw true_false_validator(int index, char *value) 9925331Samw { 9935331Samw if (value == NULL) 9945331Samw return (SA_BAD_VALUE); 9955331Samw if ((strcasecmp(value, "true") == 0) || 9965331Samw (strcasecmp(value, "false") == 0)) 9975331Samw return (SA_OK); 9985331Samw return (SA_BAD_VALUE); 9995331Samw } 10005331Samw 10015331Samw /* 10029832Samw@Sun.COM * Check IP v4 address. 10035331Samw */ 10045331Samw /*ARGSUSED*/ 10055331Samw static int 10069832Samw@Sun.COM ipv4_validator(int index, char *value) 10075331Samw { 10085331Samw char sbytes[16]; 10095331Samw 10105331Samw if (value == NULL) 10115331Samw return (SA_OK); 10129832Samw@Sun.COM 10139832Samw@Sun.COM if (strlen(value) == 0) 10145331Samw return (SA_OK); 10159832Samw@Sun.COM 10165331Samw if (inet_pton(AF_INET, value, (void *)sbytes) != 1) 10175331Samw return (SA_BAD_VALUE); 10185331Samw 10195331Samw return (SA_OK); 10205331Samw } 10215331Samw 10225331Samw /* 102311633SJoyce.McIntosh@Sun.COM * Check that the specified name is an IP address (v4 or v6) or a hostname. 102411633SJoyce.McIntosh@Sun.COM * Per RFC 1035 and 1123, names may contain alphanumeric characters, hyphens 102511633SJoyce.McIntosh@Sun.COM * and dots. The first and last character of a label must be alphanumeric. 102611633SJoyce.McIntosh@Sun.COM * Interior characters may be alphanumeric or hypens. 102711633SJoyce.McIntosh@Sun.COM * 102811633SJoyce.McIntosh@Sun.COM * Domain names should not contain underscores but we allow them because 102911633SJoyce.McIntosh@Sun.COM * Windows names are often in non-compliance with this rule. 10309832Samw@Sun.COM */ 10319832Samw@Sun.COM /*ARGSUSED*/ 10329832Samw@Sun.COM static int 103311633SJoyce.McIntosh@Sun.COM hostname_validator(int index, char *value) 10349832Samw@Sun.COM { 103511633SJoyce.McIntosh@Sun.COM char sbytes[INET6_ADDRSTRLEN]; 103611633SJoyce.McIntosh@Sun.COM boolean_t new_label = B_TRUE; 103711633SJoyce.McIntosh@Sun.COM char *p; 103811633SJoyce.McIntosh@Sun.COM char label_terminator; 103911633SJoyce.McIntosh@Sun.COM int len; 10409832Samw@Sun.COM 10419832Samw@Sun.COM if (value == NULL) 10429832Samw@Sun.COM return (SA_OK); 10439832Samw@Sun.COM 104411633SJoyce.McIntosh@Sun.COM if ((len = strlen(value)) == 0) 104511633SJoyce.McIntosh@Sun.COM return (SA_OK); 104611633SJoyce.McIntosh@Sun.COM 104711633SJoyce.McIntosh@Sun.COM if (inet_pton(AF_INET, value, (void *)sbytes) == 1) 104811633SJoyce.McIntosh@Sun.COM return (SA_OK); 104911633SJoyce.McIntosh@Sun.COM 105011633SJoyce.McIntosh@Sun.COM if (inet_pton(AF_INET6, value, (void *)sbytes) == 1) 10519832Samw@Sun.COM return (SA_OK); 10529832Samw@Sun.COM 105311633SJoyce.McIntosh@Sun.COM if (len >= MAXHOSTNAMELEN) 105411633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 105511633SJoyce.McIntosh@Sun.COM 105611633SJoyce.McIntosh@Sun.COM if (strspn(value, "0123456789.") == len) 105711633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 105811633SJoyce.McIntosh@Sun.COM 105911633SJoyce.McIntosh@Sun.COM label_terminator = *value; 106011633SJoyce.McIntosh@Sun.COM 106111633SJoyce.McIntosh@Sun.COM for (p = value; *p != '\0'; ++p) { 106211633SJoyce.McIntosh@Sun.COM if (new_label) { 106311633SJoyce.McIntosh@Sun.COM if (!isalnum(*p)) 106411633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 106511633SJoyce.McIntosh@Sun.COM new_label = B_FALSE; 106611633SJoyce.McIntosh@Sun.COM label_terminator = *p; 106711633SJoyce.McIntosh@Sun.COM continue; 106811633SJoyce.McIntosh@Sun.COM } 106911633SJoyce.McIntosh@Sun.COM 107011633SJoyce.McIntosh@Sun.COM if (*p == '.') { 107111633SJoyce.McIntosh@Sun.COM if (!isalnum(label_terminator)) 107211633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 107311633SJoyce.McIntosh@Sun.COM new_label = B_TRUE; 107411633SJoyce.McIntosh@Sun.COM label_terminator = *p; 107511633SJoyce.McIntosh@Sun.COM continue; 107611633SJoyce.McIntosh@Sun.COM } 107711633SJoyce.McIntosh@Sun.COM 107811633SJoyce.McIntosh@Sun.COM label_terminator = *p; 107911633SJoyce.McIntosh@Sun.COM 108011633SJoyce.McIntosh@Sun.COM if (isalnum(*p) || *p == '-' || *p == '_') 108111633SJoyce.McIntosh@Sun.COM continue; 108211633SJoyce.McIntosh@Sun.COM 108311633SJoyce.McIntosh@Sun.COM return (SA_BAD_VALUE); 108411633SJoyce.McIntosh@Sun.COM } 108511633SJoyce.McIntosh@Sun.COM 108611633SJoyce.McIntosh@Sun.COM if (!isalnum(label_terminator)) 10879832Samw@Sun.COM return (SA_BAD_VALUE); 10889832Samw@Sun.COM 10899832Samw@Sun.COM return (SA_OK); 10909832Samw@Sun.COM } 10919832Samw@Sun.COM 10929832Samw@Sun.COM /* 10938334SJose.Borrego@Sun.COM * Call back function for dlpi_walk. 10948334SJose.Borrego@Sun.COM * Returns TRUE if interface name exists on the host. 10958334SJose.Borrego@Sun.COM */ 10968334SJose.Borrego@Sun.COM static boolean_t 10978334SJose.Borrego@Sun.COM smb_get_interface(const char *ifname, void *arg) 10988334SJose.Borrego@Sun.COM { 10998334SJose.Borrego@Sun.COM smb_hostifs_walker_t *iterp = arg; 11008334SJose.Borrego@Sun.COM 11018334SJose.Borrego@Sun.COM iterp->hiw_matchfound = (strcmp(ifname, iterp->hiw_ifname) == 0); 11028334SJose.Borrego@Sun.COM 11038334SJose.Borrego@Sun.COM return (iterp->hiw_matchfound); 11048334SJose.Borrego@Sun.COM } 11058334SJose.Borrego@Sun.COM 11068334SJose.Borrego@Sun.COM /* 11078334SJose.Borrego@Sun.COM * Checks to see if the input interface exists on the host. 11088334SJose.Borrego@Sun.COM * Returns B_TRUE if the match is found, B_FALSE otherwise. 11098334SJose.Borrego@Sun.COM */ 11108334SJose.Borrego@Sun.COM static boolean_t 11118334SJose.Borrego@Sun.COM smb_validate_interface(const char *ifname) 11128334SJose.Borrego@Sun.COM { 11138334SJose.Borrego@Sun.COM smb_hostifs_walker_t iter; 11148334SJose.Borrego@Sun.COM 11158334SJose.Borrego@Sun.COM if ((ifname == NULL) || (*ifname == '\0')) 11168334SJose.Borrego@Sun.COM return (B_FALSE); 11178334SJose.Borrego@Sun.COM 11188334SJose.Borrego@Sun.COM iter.hiw_ifname = ifname; 11198334SJose.Borrego@Sun.COM iter.hiw_matchfound = B_FALSE; 11208334SJose.Borrego@Sun.COM dlpi_walk(smb_get_interface, &iter, 0); 11218334SJose.Borrego@Sun.COM 11228334SJose.Borrego@Sun.COM return (iter.hiw_matchfound); 11238334SJose.Borrego@Sun.COM } 11248334SJose.Borrego@Sun.COM 11258334SJose.Borrego@Sun.COM /* 11268334SJose.Borrego@Sun.COM * Check valid interfaces. Interface names value can be NULL or empty. 11278334SJose.Borrego@Sun.COM * Returns SA_BAD_VALUE if interface cannot be found on the host. 11285331Samw */ 11295331Samw /*ARGSUSED*/ 11305331Samw static int 11318334SJose.Borrego@Sun.COM interface_validator(int index, char *value) 11325331Samw { 11338334SJose.Borrego@Sun.COM char buf[16]; 11348334SJose.Borrego@Sun.COM int ret = SA_OK; 11358334SJose.Borrego@Sun.COM char *ifname, *tmp, *p; 11365331Samw 11375331Samw if (value == NULL || *value == '\0') 11388334SJose.Borrego@Sun.COM return (ret); 11395331Samw 11405331Samw if (strlen(value) > MAX_VALUE_BUFLEN) 11415331Samw return (SA_BAD_VALUE); 11425331Samw 11438334SJose.Borrego@Sun.COM if ((p = strdup(value)) == NULL) 11445331Samw return (SA_NO_MEMORY); 11455331Samw 11468334SJose.Borrego@Sun.COM tmp = p; 11478334SJose.Borrego@Sun.COM while ((ifname = strsep(&tmp, ",")) != NULL) { 11488334SJose.Borrego@Sun.COM if (*ifname == '\0') { 11498334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 11508334SJose.Borrego@Sun.COM break; 11515331Samw } 11528334SJose.Borrego@Sun.COM 11538334SJose.Borrego@Sun.COM if (!smb_validate_interface(ifname)) { 11548334SJose.Borrego@Sun.COM if (inet_pton(AF_INET, ifname, (void *)buf) == 0) { 11558334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 11568334SJose.Borrego@Sun.COM break; 11575331Samw } 11585331Samw } 11595331Samw } 11605331Samw 11618334SJose.Borrego@Sun.COM free(p); 11628334SJose.Borrego@Sun.COM return (ret); 11635331Samw } 11645331Samw 11655331Samw /* 11665331Samw * Check path 11675331Samw */ 11685331Samw /*ARGSUSED*/ 11695331Samw static int 11707588Samw@Sun.COM path_validator(int index, char *path) 11715331Samw { 11725331Samw struct stat buffer; 11735331Samw int fd, status; 11745331Samw 11757588Samw@Sun.COM if (path == NULL) 11765331Samw return (SA_BAD_VALUE); 11775331Samw 11787588Samw@Sun.COM fd = open(path, O_RDONLY); 11795331Samw if (fd < 0) 11805331Samw return (SA_BAD_VALUE); 11815331Samw 11825331Samw status = fstat(fd, &buffer); 11835331Samw (void) close(fd); 11845331Samw 11855331Samw if (status < 0) 11865331Samw return (SA_BAD_VALUE); 11875331Samw 11885331Samw if (buffer.st_mode & S_IFDIR) 11895331Samw return (SA_OK); 11905331Samw return (SA_BAD_VALUE); 11915331Samw } 11925331Samw 11935331Samw /* 11945331Samw * the protoset holds the defined options so we don't have to read 11955331Samw * them multiple times 11965331Samw */ 11975331Samw static sa_protocol_properties_t protoset; 11985331Samw 11995331Samw static int 12005331Samw findprotoopt(char *name) 12015331Samw { 12025331Samw int i; 12035772Sas200622 char *sc_name; 12045772Sas200622 12055772Sas200622 for (i = 0; i < SMB_OPT_NUM; i++) { 12065772Sas200622 sc_name = smb_config_getname(smb_proto_options[i].smb_index); 12075772Sas200622 if (strcasecmp(sc_name, name) == 0) 12085331Samw return (i); 12095331Samw } 12105772Sas200622 12115331Samw return (-1); 12125331Samw } 12135331Samw 12145331Samw /* 12155331Samw * smb_load_proto_properties() 12165331Samw * 12175331Samw * read the smb config values from SMF. 12185331Samw */ 12195331Samw 12205331Samw static int 12215331Samw smb_load_proto_properties() 12225331Samw { 12235331Samw sa_property_t prop; 12245772Sas200622 char value[MAX_VALUE_BUFLEN]; 12255772Sas200622 char *name; 12265331Samw int index; 12276019Sdougm int ret = SA_OK; 12285772Sas200622 int rc; 12295331Samw 12305331Samw protoset = sa_create_protocol_properties(SMB_PROTOCOL_NAME); 12315331Samw if (protoset == NULL) 12325331Samw return (SA_NO_MEMORY); 12335331Samw 12346019Sdougm for (index = 0; index < SMB_OPT_NUM && ret == SA_OK; index++) { 12355772Sas200622 rc = smb_config_get(smb_proto_options[index].smb_index, 12365772Sas200622 value, sizeof (value)); 12375772Sas200622 if (rc != SMBD_SMF_OK) 12385772Sas200622 continue; 12395772Sas200622 name = smb_config_getname(smb_proto_options[index].smb_index); 12405772Sas200622 prop = sa_create_property(name, value); 12415454Sdougm if (prop != NULL) 12426019Sdougm ret = sa_add_protocol_property(protoset, prop); 12436019Sdougm else 12446019Sdougm ret = SA_NO_MEMORY; 12455331Samw } 12466019Sdougm return (ret); 12475331Samw } 12485331Samw 12495331Samw /* 12505331Samw * smb_share_init() 12515331Samw * 12525331Samw * Initialize the smb plugin. 12535331Samw */ 12545331Samw 12555331Samw static int 12565331Samw smb_share_init(void) 12575331Samw { 12585331Samw if (sa_plugin_ops.sa_init != smb_share_init) 12595331Samw return (SA_SYSTEM_ERR); 12605331Samw 12617588Samw@Sun.COM smb_share_door_clnt_init(); 12627348SJose.Borrego@Sun.COM return (smb_load_proto_properties()); 12635331Samw } 12645331Samw 12655331Samw /* 12665331Samw * smb_share_fini() 12675331Samw * 12685331Samw */ 12695331Samw static void 12705331Samw smb_share_fini(void) 12715331Samw { 12725331Samw xmlFreeNode(protoset); 12735331Samw protoset = NULL; 12745772Sas200622 12757588Samw@Sun.COM smb_share_door_clnt_fini(); 12765331Samw } 12775331Samw 12785331Samw /* 12795331Samw * smb_get_proto_set() 12805331Samw * 12815331Samw * Return an optionset with all the protocol specific properties in 12825331Samw * it. 12835331Samw */ 12845331Samw static sa_protocol_properties_t 12855331Samw smb_get_proto_set(void) 12865331Samw { 12875331Samw return (protoset); 12885331Samw } 12895331Samw 12905331Samw /* 12915772Sas200622 * smb_enable_dependencies() 12925772Sas200622 * 12935772Sas200622 * SMBD_DEFAULT_INSTANCE_FMRI may have some dependencies that aren't 12945772Sas200622 * enabled. This will attempt to enable all of them. 12955772Sas200622 */ 12965772Sas200622 static void 12975772Sas200622 smb_enable_dependencies(const char *fmri) 12985772Sas200622 { 12995772Sas200622 scf_handle_t *handle; 13005772Sas200622 scf_service_t *service; 13015772Sas200622 scf_instance_t *inst = NULL; 13025772Sas200622 scf_iter_t *iter; 13035772Sas200622 scf_property_t *prop; 13045772Sas200622 scf_value_t *value; 13055772Sas200622 scf_propertygroup_t *pg; 13065772Sas200622 scf_scope_t *scope; 13075772Sas200622 char type[SCFTYPE_LEN]; 13085772Sas200622 char *dependency; 13095772Sas200622 char *servname; 13105772Sas200622 int maxlen; 13115772Sas200622 13125772Sas200622 /* 13135772Sas200622 * Get all required handles and storage. 13145772Sas200622 */ 13155772Sas200622 handle = scf_handle_create(SCF_VERSION); 13165772Sas200622 if (handle == NULL) 13175772Sas200622 return; 13185772Sas200622 13195772Sas200622 if (scf_handle_bind(handle) != 0) { 13205772Sas200622 scf_handle_destroy(handle); 13215772Sas200622 return; 13225772Sas200622 } 13235772Sas200622 13245772Sas200622 maxlen = scf_limit(SCF_LIMIT_MAX_VALUE_LENGTH); 13255772Sas200622 if (maxlen == (ssize_t)-1) 13265772Sas200622 maxlen = MAXPATHLEN; 13275772Sas200622 13285772Sas200622 dependency = malloc(maxlen); 13295772Sas200622 13305772Sas200622 service = scf_service_create(handle); 13315772Sas200622 13325772Sas200622 iter = scf_iter_create(handle); 13335772Sas200622 13345772Sas200622 pg = scf_pg_create(handle); 13355772Sas200622 13365772Sas200622 prop = scf_property_create(handle); 13375772Sas200622 13385772Sas200622 value = scf_value_create(handle); 13395772Sas200622 13405772Sas200622 scope = scf_scope_create(handle); 13415772Sas200622 13425772Sas200622 if (service == NULL || iter == NULL || pg == NULL || prop == NULL || 13435772Sas200622 value == NULL || scope == NULL || dependency == NULL) 13445772Sas200622 goto done; 13455772Sas200622 13465772Sas200622 /* 13475772Sas200622 * We passed in the FMRI for the default instance but for 13485772Sas200622 * some things we need the simple form so construct it. Since 13495772Sas200622 * we reuse the storage that dependency points to, we need to 13505772Sas200622 * use the servname early. 13515772Sas200622 */ 13525772Sas200622 (void) snprintf(dependency, maxlen, "%s", fmri + sizeof ("svc:")); 13535772Sas200622 servname = strrchr(dependency, ':'); 13545772Sas200622 if (servname == NULL) 13555772Sas200622 goto done; 13565772Sas200622 *servname = '\0'; 13575772Sas200622 servname = dependency; 13585772Sas200622 13595772Sas200622 /* 13605772Sas200622 * Setup to iterate over the service property groups, only 13615772Sas200622 * looking at those that are "dependency" types. The "entity" 13625772Sas200622 * property will have the FMRI of the service we are dependent 13635772Sas200622 * on. 13645772Sas200622 */ 13655772Sas200622 if (scf_handle_get_scope(handle, SCF_SCOPE_LOCAL, scope) != 0) 13665772Sas200622 goto done; 13675772Sas200622 13685772Sas200622 if (scf_scope_get_service(scope, servname, service) != 0) 13695772Sas200622 goto done; 13705772Sas200622 13715772Sas200622 if (scf_iter_service_pgs(iter, service) != 0) 13725772Sas200622 goto done; 13735772Sas200622 13745772Sas200622 while (scf_iter_next_pg(iter, pg) > 0) { 13755772Sas200622 char *services[2]; 13765772Sas200622 /* 13775772Sas200622 * Have a property group for the service. See if it is 13785772Sas200622 * a dependency pg and only do operations on those. 13795772Sas200622 */ 13805772Sas200622 if (scf_pg_get_type(pg, type, SCFTYPE_LEN) <= 0) 13815772Sas200622 continue; 13825772Sas200622 13835772Sas200622 if (strncmp(type, SCF_GROUP_DEPENDENCY, SCFTYPE_LEN) != 0) 13845772Sas200622 continue; 13855772Sas200622 /* 13865772Sas200622 * Have a dependency. Attempt to enable it. 13875772Sas200622 */ 13885772Sas200622 if (scf_pg_get_property(pg, SCF_PROPERTY_ENTITIES, prop) != 0) 13895772Sas200622 continue; 13905772Sas200622 13915772Sas200622 if (scf_property_get_value(prop, value) != 0) 13925772Sas200622 continue; 13935772Sas200622 13945772Sas200622 services[1] = NULL; 13955772Sas200622 13965772Sas200622 if (scf_value_get_as_string(value, dependency, maxlen) > 0) { 13975772Sas200622 services[0] = dependency; 13985772Sas200622 _check_services(services); 13995772Sas200622 } 14005772Sas200622 } 14015772Sas200622 14025772Sas200622 done: 14035772Sas200622 if (dependency != NULL) 14045772Sas200622 free(dependency); 14055772Sas200622 if (value != NULL) 14065772Sas200622 scf_value_destroy(value); 14075772Sas200622 if (prop != NULL) 14085772Sas200622 scf_property_destroy(prop); 14095772Sas200622 if (pg != NULL) 14105772Sas200622 scf_pg_destroy(pg); 14115772Sas200622 if (iter != NULL) 14125772Sas200622 scf_iter_destroy(iter); 14135772Sas200622 if (scope != NULL) 14145772Sas200622 scf_scope_destroy(scope); 14155772Sas200622 if (inst != NULL) 14165772Sas200622 scf_instance_destroy(inst); 14175772Sas200622 if (service != NULL) 14185772Sas200622 scf_service_destroy(service); 14195772Sas200622 14205772Sas200622 (void) scf_handle_unbind(handle); 14215772Sas200622 scf_handle_destroy(handle); 14225772Sas200622 } 14235772Sas200622 14245772Sas200622 /* 14255331Samw * How long to wait for service to come online 14265331Samw */ 14275331Samw #define WAIT_FOR_SERVICE 15 14285331Samw 14295331Samw /* 14305331Samw * smb_enable_service() 14315331Samw * 14325331Samw */ 14335331Samw static int 14345331Samw smb_enable_service(void) 14355331Samw { 14365331Samw int i; 14375331Samw int ret = SA_OK; 14385772Sas200622 char *service[] = { SMBD_DEFAULT_INSTANCE_FMRI, NULL }; 14395331Samw 14405331Samw if (!smb_isonline()) { 14415772Sas200622 /* 14425772Sas200622 * Attempt to start the idmap, and other dependent 14435772Sas200622 * services, first. If it fails, the SMB service will 14445772Sas200622 * ultimately fail so we use that as the error. If we 14455772Sas200622 * don't try to enable idmap, smb won't start the 14465772Sas200622 * first time unless the admin has done it 14475772Sas200622 * manually. The service could be administratively 14485772Sas200622 * disabled so we won't always get started. 14495772Sas200622 */ 14505772Sas200622 smb_enable_dependencies(SMBD_DEFAULT_INSTANCE_FMRI); 14515772Sas200622 _check_services(service); 14525331Samw 14535331Samw /* Wait for service to come online */ 14545331Samw for (i = 0; i < WAIT_FOR_SERVICE; i++) { 14555331Samw if (smb_isonline()) { 14565772Sas200622 ret = SA_OK; 14575331Samw break; 14586030Sjb150015 } else if (smb_ismaint()) { 14596030Sjb150015 /* maintenance requires help */ 14606030Sjb150015 ret = SA_SYSTEM_ERR; 14616030Sjb150015 break; 14626030Sjb150015 } else if (smb_isdisabled()) { 14636030Sjb150015 /* disabled is ok */ 14646030Sjb150015 ret = SA_OK; 14656030Sjb150015 break; 14665331Samw } else { 14676030Sjb150015 /* try another time */ 14685331Samw ret = SA_BUSY; 14695331Samw (void) sleep(1); 14705331Samw } 14715331Samw } 14725331Samw } 14735331Samw return (ret); 14745331Samw } 14755331Samw 14765331Samw /* 14775331Samw * smb_validate_proto_prop(index, name, value) 14785331Samw * 14795331Samw * Verify that the property specified by name can take the new 14805331Samw * value. This is a sanity check to prevent bad values getting into 14815331Samw * the default files. 14825331Samw */ 14835331Samw static int 14845331Samw smb_validate_proto_prop(int index, char *name, char *value) 14855331Samw { 14865331Samw if ((name == NULL) || (index < 0)) 14875331Samw return (SA_BAD_VALUE); 14885331Samw 14895331Samw if (smb_proto_options[index].validator == NULL) 14905331Samw return (SA_OK); 14915331Samw 14925331Samw if (smb_proto_options[index].validator(index, value) == SA_OK) 14935331Samw return (SA_OK); 14945331Samw return (SA_BAD_VALUE); 14955331Samw } 14965331Samw 14975331Samw /* 14985331Samw * smb_set_proto_prop(prop) 14995331Samw * 15005331Samw * check that prop is valid. 15015331Samw */ 15025331Samw /*ARGSUSED*/ 15035331Samw static int 15045331Samw smb_set_proto_prop(sa_property_t prop) 15055331Samw { 15065331Samw int ret = SA_OK; 15075331Samw char *name; 15085331Samw char *value; 15095331Samw int index = -1; 15105521Sas200622 struct smb_proto_option_defs *opt; 15115331Samw 15125331Samw name = sa_get_property_attr(prop, "type"); 15135331Samw value = sa_get_property_attr(prop, "value"); 15145331Samw if (name != NULL && value != NULL) { 15155331Samw index = findprotoopt(name); 15165331Samw if (index >= 0) { 15175331Samw /* should test for valid value */ 15185331Samw ret = smb_validate_proto_prop(index, name, value); 15195331Samw if (ret == SA_OK) { 15205521Sas200622 opt = &smb_proto_options[index]; 15215521Sas200622 15225331Samw /* Save to SMF */ 15235772Sas200622 (void) smb_config_set(opt->smb_index, value); 15245331Samw /* 15255331Samw * Specialized refresh mechanisms can 15265331Samw * be flagged in the proto_options and 15275331Samw * processed here. 15285331Samw */ 15295521Sas200622 if (opt->refresh & SMB_REFRESH_REFRESH) 15306139Sjb150015 (void) smf_refresh_instance( 15316139Sjb150015 SMBD_DEFAULT_INSTANCE_FMRI); 15325521Sas200622 else if (opt->refresh & SMB_REFRESH_RESTART) 15335331Samw (void) smf_restart_instance( 15345331Samw SMBD_DEFAULT_INSTANCE_FMRI); 15355331Samw } 15365331Samw } 15375331Samw } 15385521Sas200622 15395331Samw if (name != NULL) 15405331Samw sa_free_attr_string(name); 15415331Samw if (value != NULL) 15425331Samw sa_free_attr_string(value); 15435331Samw 15445331Samw return (ret); 15455331Samw } 15465331Samw 15475331Samw /* 15485331Samw * smb_get_status() 15495331Samw * 15505331Samw * What is the current status of the smbd? We use the SMF state here. 15515331Samw * Caller must free the returned value. 15525331Samw */ 15535331Samw 15545331Samw static char * 15555331Samw smb_get_status(void) 15565331Samw { 15575331Samw char *state = NULL; 15585331Samw state = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI); 15595331Samw return (state != NULL ? state : "-"); 15605331Samw } 15615331Samw 15625331Samw /* 15635331Samw * This protocol plugin require resource names 15645331Samw */ 15655331Samw static uint64_t 15665331Samw smb_share_features(void) 15675331Samw { 15685331Samw return (SA_FEATURE_RESOURCE | SA_FEATURE_ALLOWSUBDIRS | 15696088Sdougm SA_FEATURE_ALLOWPARDIRS | SA_FEATURE_SERVER); 15705331Samw } 15715331Samw 15725331Samw /* 15737348SJose.Borrego@Sun.COM * This should be used to convert smb_share_t to sa_resource_t 15747348SJose.Borrego@Sun.COM * Should only be needed to build transient shares/resources to be 15757348SJose.Borrego@Sun.COM * supplied to sharemgr to display. 15765331Samw */ 15775331Samw static int 15787348SJose.Borrego@Sun.COM smb_add_transient(sa_handle_t handle, smb_share_t *si) 15795331Samw { 15805331Samw int err; 15815331Samw sa_share_t share; 15825331Samw sa_group_t group; 15835331Samw sa_resource_t resource; 158411633SJoyce.McIntosh@Sun.COM nvlist_t *nvl; 15859832Samw@Sun.COM char *opt; 15865331Samw 15875331Samw if (si == NULL) 15885331Samw return (SA_INVALID_NAME); 15895331Samw 15907348SJose.Borrego@Sun.COM if ((share = sa_find_share(handle, si->shr_path)) == NULL) { 15917348SJose.Borrego@Sun.COM if ((group = smb_get_defaultgrp(handle)) == NULL) 15927348SJose.Borrego@Sun.COM return (SA_NO_SUCH_GROUP); 15935331Samw 15947052Samw share = sa_get_share(group, si->shr_path); 15955331Samw if (share == NULL) { 15967052Samw share = sa_add_share(group, si->shr_path, 15975331Samw SA_SHARE_TRANSIENT, &err); 15985331Samw if (share == NULL) 15995331Samw return (SA_NO_SUCH_PATH); 16005331Samw } 16015331Samw } 16025331Samw 16035331Samw /* 16045331Samw * Now handle the resource. Make sure that the resource is 16055331Samw * transient and added to the share. 16065331Samw */ 16077052Samw resource = sa_get_share_resource(share, si->shr_name); 16085331Samw if (resource == NULL) { 16095331Samw resource = sa_add_resource(share, 16107052Samw si->shr_name, SA_SHARE_TRANSIENT, &err); 16115331Samw if (resource == NULL) 16125331Samw return (SA_NO_SUCH_RESOURCE); 16135331Samw } 16145331Samw 16158474SJose.Borrego@Sun.COM if (si->shr_cmnt[0] != '\0') 16168474SJose.Borrego@Sun.COM (void) sa_set_resource_description(resource, si->shr_cmnt); 16179832Samw@Sun.COM 16188474SJose.Borrego@Sun.COM if (si->shr_container[0] != '\0') 16198474SJose.Borrego@Sun.COM (void) sa_set_resource_attr(resource, SHOPT_AD_CONTAINER, 16208474SJose.Borrego@Sun.COM si->shr_container); 16219832Samw@Sun.COM 162211633SJoyce.McIntosh@Sun.COM if (nvlist_alloc(&nvl, NV_UNIQUE_NAME, 0) != 0) 162311633SJoyce.McIntosh@Sun.COM return (SA_NO_MEMORY); 162411633SJoyce.McIntosh@Sun.COM 16259832Samw@Sun.COM if ((opt = smb_csc_name(si)) != NULL) 162611633SJoyce.McIntosh@Sun.COM err |= nvlist_add_string(nvl, SHOPT_CSC, opt); 16279832Samw@Sun.COM 162810504SKeyur.Desai@Sun.COM opt = (si->shr_flags & SMB_SHRF_ABE) ? "true" : "false"; 162911633SJoyce.McIntosh@Sun.COM err |= nvlist_add_string(nvl, SHOPT_ABE, opt); 163010504SKeyur.Desai@Sun.COM 163112508Samw@Sun.COM if ((si->shr_flags & SMB_SHRF_AUTOHOME) == 0) { 163212508Samw@Sun.COM opt = (si->shr_flags & SMB_SHRF_GUEST_OK) ? "true" : "false"; 163312508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_GUEST, opt); 163412508Samw@Sun.COM } 163512508Samw@Sun.COM 163612508Samw@Sun.COM if (si->shr_access_ro[0] != '\0') 163712508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_RO, si->shr_access_ro); 163812508Samw@Sun.COM 163912508Samw@Sun.COM if (si->shr_access_rw[0] != '\0') 164012508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_RW, si->shr_access_rw); 164112508Samw@Sun.COM 164212508Samw@Sun.COM if (si->shr_access_none[0] != '\0') 164312508Samw@Sun.COM err |= nvlist_add_string(nvl, SHOPT_NONE, si->shr_access_none); 164412508Samw@Sun.COM 164511633SJoyce.McIntosh@Sun.COM if (err) { 164611633SJoyce.McIntosh@Sun.COM nvlist_free(nvl); 164711633SJoyce.McIntosh@Sun.COM return (SA_CONFIG_ERR); 164811633SJoyce.McIntosh@Sun.COM } 16495331Samw 165011633SJoyce.McIntosh@Sun.COM err = smb_update_optionset_props(handle, resource, nvl); 165111633SJoyce.McIntosh@Sun.COM 165211633SJoyce.McIntosh@Sun.COM nvlist_free(nvl); 165311633SJoyce.McIntosh@Sun.COM return (err); 16545331Samw } 16555331Samw 16565331Samw /* 16577348SJose.Borrego@Sun.COM * Return smb transient shares. 16585331Samw */ 16595331Samw static int 16605331Samw smb_list_transient(sa_handle_t handle) 16615331Samw { 16627348SJose.Borrego@Sun.COM int i, offset; 16637052Samw smb_shrlist_t list; 16645331Samw int res; 16655331Samw 16667348SJose.Borrego@Sun.COM if (smb_share_count() <= 0) 16675331Samw return (SA_OK); 16687348SJose.Borrego@Sun.COM 16695331Samw offset = 0; 16707348SJose.Borrego@Sun.COM while (smb_share_list(offset, &list) == NERR_Success) { 16717348SJose.Borrego@Sun.COM if (list.sl_cnt == 0) 16725331Samw break; 16737348SJose.Borrego@Sun.COM 16747348SJose.Borrego@Sun.COM for (i = 0; i < list.sl_cnt; i++) { 16757348SJose.Borrego@Sun.COM res = smb_add_transient(handle, &(list.sl_shares[i])); 16765331Samw if (res != SA_OK) 16775331Samw return (res); 16785331Samw } 16797348SJose.Borrego@Sun.COM offset += list.sl_cnt; 16805331Samw } 16815331Samw 16825331Samw return (SA_OK); 16835331Samw } 16845331Samw 16855331Samw /* 16865331Samw * fix_resource_name(share, name, prefix) 16875331Samw * 16885331Samw * Construct a name where the ZFS dataset has the prefix replaced with "name". 16895331Samw */ 16905331Samw static char * 16915331Samw fix_resource_name(sa_share_t share, char *name, char *prefix) 16925331Samw { 16938474SJose.Borrego@Sun.COM char buf[SA_MAX_RESOURCE_NAME + 1]; 16948474SJose.Borrego@Sun.COM char *dataset; 16958474SJose.Borrego@Sun.COM size_t bufsz = SA_MAX_RESOURCE_NAME + 1; 16968474SJose.Borrego@Sun.COM size_t prelen; 16975331Samw 169811447Samw@Sun.COM if (prefix == NULL) 169911447Samw@Sun.COM return (strdup(name)); 170011447Samw@Sun.COM 17015331Samw dataset = sa_get_share_attr(share, "dataset"); 17028474SJose.Borrego@Sun.COM if (dataset == NULL) 17038474SJose.Borrego@Sun.COM return (strdup(name)); 17045331Samw 17058474SJose.Borrego@Sun.COM (void) strlcpy(buf, name, bufsz); 17068474SJose.Borrego@Sun.COM prelen = strlen(prefix); 17078474SJose.Borrego@Sun.COM 17088474SJose.Borrego@Sun.COM if (strncmp(dataset, prefix, prelen) == 0) 17098474SJose.Borrego@Sun.COM (void) strlcat(buf, dataset + prelen, bufsz); 17108474SJose.Borrego@Sun.COM 17118474SJose.Borrego@Sun.COM sa_free_attr_string(dataset); 17128474SJose.Borrego@Sun.COM sa_fix_resource_name(buf); 17138474SJose.Borrego@Sun.COM return (strdup(buf)); 17145331Samw } 17155331Samw 17165331Samw /* 17175331Samw * smb_parse_optstring(group, options) 17185331Samw * 17195331Samw * parse a compact option string into individual options. This allows 17205331Samw * ZFS sharesmb and sharemgr "share" command to work. group can be a 17215331Samw * group, a share or a resource. 17225331Samw */ 17235331Samw static int 17245331Samw smb_parse_optstring(sa_group_t group, char *options) 17255331Samw { 17265331Samw char *dup; 17275331Samw char *base; 17285331Samw char *lasts; 17295331Samw char *token; 17305331Samw sa_optionset_t optionset; 17315331Samw sa_group_t parent = NULL; 17325331Samw sa_resource_t resource = NULL; 17335331Samw int iszfs = 0; 17345331Samw int persist = 0; 17355331Samw int need_optionset = 0; 17365331Samw int ret = SA_OK; 17375331Samw sa_property_t prop; 17385331Samw 17395331Samw /* 17405331Samw * In order to not attempt to change ZFS properties unless 17415331Samw * absolutely necessary, we never do it in the legacy parsing 17425331Samw * so we need to keep track of this. 17435331Samw */ 17445331Samw if (sa_is_share(group)) { 17455331Samw char *zfs; 17465331Samw 17475331Samw parent = sa_get_parent_group(group); 17485331Samw if (parent != NULL) { 17495331Samw zfs = sa_get_group_attr(parent, "zfs"); 17505331Samw if (zfs != NULL) { 17515331Samw sa_free_attr_string(zfs); 17525331Samw iszfs = 1; 17535331Samw } 17545331Samw } 17555331Samw } else { 17565331Samw iszfs = sa_group_is_zfs(group); 17575331Samw /* 17585331Samw * If a ZFS group, then we need to see if a resource 17595331Samw * name is being set. If so, bail with 17605331Samw * SA_PROP_SHARE_ONLY, so we come back in with a share 17615331Samw * instead of a group. 17625331Samw */ 176312508Samw@Sun.COM if (iszfs || 176412508Samw@Sun.COM strncmp(options, "name=", sizeof ("name=") - 1) == 0 || 17655331Samw strstr(options, ",name=") != NULL) { 17665331Samw return (SA_PROP_SHARE_ONLY); 17675331Samw } 17685331Samw } 17695331Samw 17705331Samw /* do we have an existing optionset? */ 17715331Samw optionset = sa_get_optionset(group, "smb"); 17725331Samw if (optionset == NULL) { 17735331Samw /* didn't find existing optionset so create one */ 17745331Samw optionset = sa_create_optionset(group, "smb"); 17755331Samw if (optionset == NULL) 17765331Samw return (SA_NO_MEMORY); 17775331Samw } else { 17785331Samw /* 17795331Samw * If an optionset already exists, we've come through 17805331Samw * twice so ignore the second time. 17815331Samw */ 17825331Samw return (ret); 17835331Samw } 17845331Samw 17855331Samw /* We need a copy of options for the next part. */ 17865331Samw dup = strdup(options); 17875331Samw if (dup == NULL) 17885331Samw return (SA_NO_MEMORY); 17895331Samw 17905331Samw /* 17915331Samw * SMB properties are straightforward and are strings, 17925331Samw * integers or booleans. Properties are separated by 17935331Samw * commas. It will be necessary to parse quotes due to some 17945331Samw * strings not having a restricted characters set. 17955331Samw * 17965331Samw * Note that names will create a resource. For now, if there 17975331Samw * is a set of properties "before" the first name="", those 17985331Samw * properties will be placed on the group. 17995331Samw */ 18005331Samw persist = sa_is_persistent(group); 18015331Samw base = dup; 18025331Samw token = dup; 18035331Samw lasts = NULL; 18045331Samw while (token != NULL && ret == SA_OK) { 18055331Samw ret = SA_OK; 18065331Samw token = strtok_r(base, ",", &lasts); 18075331Samw base = NULL; 18085331Samw if (token != NULL) { 18095331Samw char *value; 18105331Samw /* 18115331Samw * All SMB properties have values so there 18125331Samw * MUST be an '=' character. If it doesn't, 18135331Samw * it is a syntax error. 18145331Samw */ 18155331Samw value = strchr(token, '='); 18165331Samw if (value != NULL) { 18175331Samw *value++ = '\0'; 18185331Samw } else { 18195331Samw ret = SA_SYNTAX_ERR; 18205331Samw break; 18215331Samw } 18225331Samw /* 18235331Samw * We may need to handle a "name" property 18245331Samw * that is a ZFS imposed resource name. Each 18255331Samw * name would trigger getting a new "resource" 18265331Samw * to put properties on. For now, assume no 18275331Samw * "name" property for special handling. 18285331Samw */ 18295331Samw 183012508Samw@Sun.COM if (strcmp(token, SHOPT_NAME) == 0) { 18315331Samw char *prefix; 18325331Samw char *name = NULL; 18335331Samw /* 18345331Samw * We have a name, so now work on the 18355331Samw * resource level. We have a "share" 18365331Samw * in "group" due to the caller having 18375331Samw * added it. If we are called with a 18385331Samw * group, the check for group/share 18395331Samw * at the beginning of this function 18405331Samw * will bail out the parse if there is a 18415331Samw * "name" but no share. 18425331Samw */ 18435331Samw if (!iszfs) { 18445331Samw ret = SA_SYNTAX_ERR; 18455331Samw break; 18465331Samw } 18475331Samw /* 18485331Samw * Make sure the parent group has the 18495331Samw * "prefix" property since we will 18505331Samw * need to use this for constructing 18515331Samw * inherited name= values. 18525331Samw */ 18535331Samw prefix = sa_get_group_attr(parent, "prefix"); 18545331Samw if (prefix == NULL) { 18555331Samw prefix = sa_get_group_attr(parent, 18565331Samw "name"); 18575331Samw if (prefix != NULL) { 18585331Samw (void) sa_set_group_attr(parent, 18595331Samw "prefix", prefix); 18605331Samw } 18615331Samw } 186211447Samw@Sun.COM name = fix_resource_name((sa_share_t)group, 186311447Samw@Sun.COM value, prefix); 18645331Samw if (name != NULL) { 18655331Samw resource = sa_add_resource( 18665331Samw (sa_share_t)group, name, 18675331Samw SA_SHARE_TRANSIENT, &ret); 18685331Samw sa_free_attr_string(name); 18695331Samw } else { 18705331Samw ret = SA_NO_MEMORY; 18715331Samw } 18725331Samw if (prefix != NULL) 18735331Samw sa_free_attr_string(prefix); 18745331Samw 18755331Samw /* A resource level optionset is needed */ 18765331Samw 18775331Samw need_optionset = 1; 18785331Samw if (resource == NULL) { 18795331Samw ret = SA_NO_MEMORY; 18805331Samw break; 18815331Samw } 18825331Samw continue; 18835331Samw } 18845331Samw 188512508Samw@Sun.COM if (iszfs && strcmp(token, SHOPT_DESCRIPTION) == 0) { 188612508Samw@Sun.COM if (resource == NULL) 188712508Samw@Sun.COM (void) sa_set_share_description( 188812508Samw@Sun.COM (sa_share_t)group, value); 188912508Samw@Sun.COM else 189012508Samw@Sun.COM (void) sa_set_resource_description( 189112508Samw@Sun.COM resource, value); 189212508Samw@Sun.COM continue; 189312508Samw@Sun.COM } 189412508Samw@Sun.COM 18955331Samw if (need_optionset) { 18965331Samw optionset = sa_create_optionset(resource, 18975331Samw "smb"); 18985331Samw need_optionset = 0; 18995331Samw } 19005331Samw 19015331Samw prop = sa_create_property(token, value); 19025331Samw if (prop == NULL) 19035331Samw ret = SA_NO_MEMORY; 19045331Samw else 19055331Samw ret = sa_add_property(optionset, prop); 19065331Samw if (ret != SA_OK) 19075331Samw break; 19085331Samw if (!iszfs) 19095331Samw ret = sa_commit_properties(optionset, !persist); 19105331Samw } 19115331Samw } 19125331Samw free(dup); 19135331Samw return (ret); 19145331Samw } 19155331Samw 19165331Samw /* 19175331Samw * smb_sprint_option(rbuff, rbuffsize, incr, prop, sep) 19185331Samw * 19195331Samw * provides a mechanism to format SMB properties into legacy output 19205331Samw * format. If the buffer would overflow, it is reallocated and grown 19215331Samw * as appropriate. Special cases of converting internal form of values 19225331Samw * to those used by "share" are done. this function does one property 19235331Samw * at a time. 19245331Samw */ 19255331Samw 19265331Samw static void 19275331Samw smb_sprint_option(char **rbuff, size_t *rbuffsize, size_t incr, 19285331Samw sa_property_t prop, int sep) 19295331Samw { 19305331Samw char *name; 19315331Samw char *value; 19325331Samw int curlen; 19335331Samw char *buff = *rbuff; 19345331Samw size_t buffsize = *rbuffsize; 19355331Samw 19365331Samw name = sa_get_property_attr(prop, "type"); 19375331Samw value = sa_get_property_attr(prop, "value"); 19385331Samw if (buff != NULL) 19395331Samw curlen = strlen(buff); 19405331Samw else 19415331Samw curlen = 0; 19425331Samw if (name != NULL) { 19435331Samw int len; 19445331Samw len = strlen(name) + sep; 19455331Samw 19465331Samw /* 19475331Samw * A future RFE would be to replace this with more 19485331Samw * generic code and to possibly handle more types. 19495331Samw * 19505331Samw * For now, everything else is treated as a string. If 19515331Samw * we get any properties that aren't exactly 19525331Samw * name/value pairs, we may need to 19535331Samw * interpret/transform. 19545331Samw */ 19555331Samw if (value != NULL) 19565331Samw len += 1 + strlen(value); 19575331Samw 19585331Samw while (buffsize <= (curlen + len)) { 19595331Samw /* need more room */ 19605331Samw buffsize += incr; 19615331Samw buff = realloc(buff, buffsize); 19625331Samw *rbuff = buff; 19635331Samw *rbuffsize = buffsize; 19645331Samw if (buff == NULL) { 19655331Samw /* realloc failed so free everything */ 19665331Samw if (*rbuff != NULL) 19675331Samw free(*rbuff); 19685331Samw goto err; 19695331Samw } 19705331Samw } 19715331Samw if (buff == NULL) 19725331Samw goto err; 19735331Samw (void) snprintf(buff + curlen, buffsize - curlen, 19745331Samw "%s%s=%s", sep ? "," : "", 19755331Samw name, value != NULL ? value : "\"\""); 19765331Samw 19775331Samw } 19785331Samw err: 19795331Samw if (name != NULL) 19805331Samw sa_free_attr_string(name); 19815331Samw if (value != NULL) 19825331Samw sa_free_attr_string(value); 19835331Samw } 19845331Samw 19855331Samw /* 19865331Samw * smb_format_resource_options(resource, hier) 19875331Samw * 19885331Samw * format all the options on the group into a flattened option 19895331Samw * string. If hier is non-zero, walk up the tree to get inherited 19905331Samw * options. 19915331Samw */ 19925331Samw 19935331Samw static char * 19945331Samw smb_format_options(sa_group_t group, int hier) 19955331Samw { 19965331Samw sa_optionset_t options = NULL; 19975331Samw sa_property_t prop; 19985331Samw int sep = 0; 19995331Samw char *buff; 20005331Samw size_t buffsize; 20015331Samw 20025331Samw 20035331Samw buff = malloc(OPT_CHUNK); 20045331Samw if (buff == NULL) 20055331Samw return (NULL); 20065331Samw 20075331Samw buff[0] = '\0'; 20085331Samw buffsize = OPT_CHUNK; 20095331Samw 20105331Samw /* 20115331Samw * We may have a an optionset relative to this item. format 20125331Samw * these if we find them and then add any security definitions. 20135331Samw */ 20145331Samw 20155331Samw options = sa_get_derived_optionset(group, "smb", hier); 20165331Samw 20175331Samw /* 20185331Samw * do the default set first but skip any option that is also 20195331Samw * in the protocol specific optionset. 20205331Samw */ 20215331Samw if (options != NULL) { 20225331Samw for (prop = sa_get_property(options, NULL); 20235331Samw prop != NULL; prop = sa_get_next_property(prop)) { 20245331Samw /* 20255331Samw * use this one since we skipped any 20265331Samw * of these that were also in 20275331Samw * optdefault 20285331Samw */ 20295331Samw smb_sprint_option(&buff, &buffsize, OPT_CHUNK, 20305331Samw prop, sep); 20315331Samw if (buff == NULL) { 20325331Samw /* 20335331Samw * buff could become NULL if there 20345331Samw * isn't enough memory for 20355331Samw * smb_sprint_option to realloc() 20365331Samw * as necessary. We can't really 20375331Samw * do anything about it at this 20385331Samw * point so we return NULL. The 20395331Samw * caller should handle the 20405331Samw * failure. 20415331Samw */ 20425331Samw if (options != NULL) 20435331Samw sa_free_derived_optionset( 20445331Samw options); 20455331Samw return (buff); 20465331Samw } 20475331Samw sep = 1; 20485331Samw } 20495331Samw } 20505331Samw 20515331Samw if (options != NULL) 20525331Samw sa_free_derived_optionset(options); 20535331Samw return (buff); 20545331Samw } 20555331Samw 20565331Samw /* 20575331Samw * smb_rename_resource(resource, newname) 20585331Samw * 20595331Samw * Change the current exported name of the resource to newname. 20605331Samw */ 20615331Samw /*ARGSUSED*/ 20625331Samw int 20635331Samw smb_rename_resource(sa_handle_t handle, sa_resource_t resource, char *newname) 20645331Samw { 20655331Samw int ret = SA_OK; 20665331Samw int err; 20675331Samw char *oldname; 20685331Samw 20697348SJose.Borrego@Sun.COM if (!smb_isonline()) 20707348SJose.Borrego@Sun.COM return (SA_OK); 20717348SJose.Borrego@Sun.COM 20725331Samw oldname = sa_get_resource_attr(resource, "name"); 20735331Samw if (oldname == NULL) 20745331Samw return (SA_NO_SUCH_RESOURCE); 20755331Samw 20767348SJose.Borrego@Sun.COM err = smb_share_rename(oldname, newname); 20775331Samw 207811337SWilliam.Krier@Sun.COM sa_free_attr_string(oldname); 207911337SWilliam.Krier@Sun.COM 20805331Samw /* improve error values somewhat */ 20815331Samw switch (err) { 20825331Samw case NERR_Success: 20835331Samw break; 20845331Samw case NERR_InternalError: 20855331Samw ret = SA_SYSTEM_ERR; 20865331Samw break; 20875331Samw case NERR_DuplicateShare: 20885331Samw ret = SA_DUPLICATE_NAME; 20895331Samw break; 20905331Samw default: 20915331Samw ret = SA_CONFIG_ERR; 20925331Samw break; 20935331Samw } 20945331Samw 20955331Samw return (ret); 20965331Samw } 20977348SJose.Borrego@Sun.COM 20987348SJose.Borrego@Sun.COM static int 20997348SJose.Borrego@Sun.COM smb_build_shareinfo(sa_share_t share, sa_resource_t resource, smb_share_t *si) 21007348SJose.Borrego@Sun.COM { 21017348SJose.Borrego@Sun.COM sa_optionset_t opts; 21027348SJose.Borrego@Sun.COM char *path; 21037348SJose.Borrego@Sun.COM char *rname; 21047348SJose.Borrego@Sun.COM char *val = NULL; 210511963SAfshin.Ardakani@Sun.COM char csc_value[SMB_CSC_BUFSZ]; 21067348SJose.Borrego@Sun.COM 21077348SJose.Borrego@Sun.COM bzero(si, sizeof (smb_share_t)); 21087348SJose.Borrego@Sun.COM 21097348SJose.Borrego@Sun.COM if ((path = sa_get_share_attr(share, "path")) == NULL) 21107348SJose.Borrego@Sun.COM return (SA_NO_SUCH_PATH); 21117348SJose.Borrego@Sun.COM 21127348SJose.Borrego@Sun.COM if ((rname = sa_get_resource_attr(resource, "name")) == NULL) { 21137348SJose.Borrego@Sun.COM sa_free_attr_string(path); 21147348SJose.Borrego@Sun.COM return (SA_NO_SUCH_RESOURCE); 21157348SJose.Borrego@Sun.COM } 21167348SJose.Borrego@Sun.COM 21177348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_path, path, sizeof (si->shr_path)); 21187348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_name, rname, sizeof (si->shr_name)); 21197348SJose.Borrego@Sun.COM sa_free_attr_string(path); 21207348SJose.Borrego@Sun.COM sa_free_attr_string(rname); 21217348SJose.Borrego@Sun.COM 21227348SJose.Borrego@Sun.COM val = sa_get_resource_description(resource); 21237348SJose.Borrego@Sun.COM if (val == NULL) 21247348SJose.Borrego@Sun.COM val = sa_get_share_description(share); 21257348SJose.Borrego@Sun.COM 21267348SJose.Borrego@Sun.COM if (val != NULL) { 21277348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_cmnt, val, sizeof (si->shr_cmnt)); 21287348SJose.Borrego@Sun.COM sa_free_share_description(val); 21297348SJose.Borrego@Sun.COM } 21307348SJose.Borrego@Sun.COM 213111963SAfshin.Ardakani@Sun.COM si->shr_flags = (sa_is_persistent(share)) 213211963SAfshin.Ardakani@Sun.COM ? SMB_SHRF_PERM : SMB_SHRF_TRANS; 213311963SAfshin.Ardakani@Sun.COM 21347348SJose.Borrego@Sun.COM opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 21357348SJose.Borrego@Sun.COM if (opts == NULL) 21367348SJose.Borrego@Sun.COM return (SA_OK); 21377348SJose.Borrego@Sun.COM 213811963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_CATIA)) 213911963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_CATIA; 214011963SAfshin.Ardakani@Sun.COM 214111963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_ABE)) 214211963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ABE; 21437348SJose.Borrego@Sun.COM 214411963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_GUEST)) 214511963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_GUEST_OK; 21469231SAfshin.Ardakani@Sun.COM 214711963SAfshin.Ardakani@Sun.COM if (smb_saprop_getbool(opts, SHOPT_DFSROOT)) 214811963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_DFSROOT; 214911963SAfshin.Ardakani@Sun.COM 215011963SAfshin.Ardakani@Sun.COM (void) smb_saprop_getstr(opts, SHOPT_AD_CONTAINER, si->shr_container, 215111963SAfshin.Ardakani@Sun.COM sizeof (si->shr_container)); 215210504SKeyur.Desai@Sun.COM 215311963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_CSC, csc_value, sizeof (csc_value))) 215411963SAfshin.Ardakani@Sun.COM smb_csc_option(csc_value, si); 21558334SJose.Borrego@Sun.COM 215611963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_RO, si->shr_access_ro, 215711963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_ro))) 215811963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RO; 21599832Samw@Sun.COM 216011963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_RW, si->shr_access_rw, 216111963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_rw))) 216211963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RW; 21637961SNatalie.Li@Sun.COM 216411963SAfshin.Ardakani@Sun.COM if (smb_saprop_getstr(opts, SHOPT_NONE, si->shr_access_none, 216511963SAfshin.Ardakani@Sun.COM sizeof (si->shr_access_none))) 216611963SAfshin.Ardakani@Sun.COM si->shr_flags |= SMB_SHRF_ACC_NONE; 21677961SNatalie.Li@Sun.COM 21687348SJose.Borrego@Sun.COM sa_free_derived_optionset(opts); 21697348SJose.Borrego@Sun.COM return (SA_OK); 21707348SJose.Borrego@Sun.COM } 21717348SJose.Borrego@Sun.COM 21727348SJose.Borrego@Sun.COM /* 21738334SJose.Borrego@Sun.COM * Map a client-side caching (CSC) option to the appropriate share 21748334SJose.Borrego@Sun.COM * flag. Only one option is allowed; an error will be logged if 21758334SJose.Borrego@Sun.COM * multiple options have been specified. We don't need to do anything 21768334SJose.Borrego@Sun.COM * about multiple values here because the SRVSVC will not recognize 21778334SJose.Borrego@Sun.COM * a value containing multiple flags and will return the default value. 21788334SJose.Borrego@Sun.COM * 21798334SJose.Borrego@Sun.COM * If the option value is not recognized, it will be ignored: invalid 21808334SJose.Borrego@Sun.COM * values will typically be caught and rejected by sharemgr. 21818334SJose.Borrego@Sun.COM */ 21828334SJose.Borrego@Sun.COM static void 21838334SJose.Borrego@Sun.COM smb_csc_option(const char *value, smb_share_t *si) 21848334SJose.Borrego@Sun.COM { 21858334SJose.Borrego@Sun.COM char buf[SMB_CSC_BUFSZ]; 21868334SJose.Borrego@Sun.COM int i; 21878334SJose.Borrego@Sun.COM 21888334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 21898334SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i].value) == 0) { 21908334SJose.Borrego@Sun.COM si->shr_flags |= cscopt[i].flag; 21918334SJose.Borrego@Sun.COM break; 21928334SJose.Borrego@Sun.COM } 21938334SJose.Borrego@Sun.COM } 21948334SJose.Borrego@Sun.COM 21958334SJose.Borrego@Sun.COM switch (si->shr_flags & SMB_SHRF_CSC_MASK) { 21968334SJose.Borrego@Sun.COM case 0: 21978334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_DISABLED: 21988334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_MANUAL: 21998334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_AUTO: 22008334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_VDO: 22018334SJose.Borrego@Sun.COM break; 22028334SJose.Borrego@Sun.COM 22038334SJose.Borrego@Sun.COM default: 22048334SJose.Borrego@Sun.COM buf[0] = '\0'; 22058334SJose.Borrego@Sun.COM 22068334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 22078334SJose.Borrego@Sun.COM if (si->shr_flags & cscopt[i].flag) { 22088334SJose.Borrego@Sun.COM (void) strlcat(buf, " ", SMB_CSC_BUFSZ); 22098334SJose.Borrego@Sun.COM (void) strlcat(buf, cscopt[i].value, 22108334SJose.Borrego@Sun.COM SMB_CSC_BUFSZ); 22118334SJose.Borrego@Sun.COM } 22128334SJose.Borrego@Sun.COM } 22138334SJose.Borrego@Sun.COM 22148334SJose.Borrego@Sun.COM syslog(LOG_ERR, "csc option conflict:%s", buf); 22158334SJose.Borrego@Sun.COM break; 22168334SJose.Borrego@Sun.COM } 22178334SJose.Borrego@Sun.COM } 22188334SJose.Borrego@Sun.COM 22198334SJose.Borrego@Sun.COM /* 22208474SJose.Borrego@Sun.COM * Return the option name for the first CSC flag (there should be only 22218474SJose.Borrego@Sun.COM * one) encountered in the share flags. 22228474SJose.Borrego@Sun.COM */ 22238474SJose.Borrego@Sun.COM static char * 22248474SJose.Borrego@Sun.COM smb_csc_name(const smb_share_t *si) 22258474SJose.Borrego@Sun.COM { 22268474SJose.Borrego@Sun.COM int i; 22278474SJose.Borrego@Sun.COM 22288474SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 22298474SJose.Borrego@Sun.COM if (si->shr_flags & cscopt[i].flag) 22308474SJose.Borrego@Sun.COM return (cscopt[i].value); 22318474SJose.Borrego@Sun.COM } 22328474SJose.Borrego@Sun.COM 22338474SJose.Borrego@Sun.COM return (NULL); 22348474SJose.Borrego@Sun.COM } 22358474SJose.Borrego@Sun.COM 22368474SJose.Borrego@Sun.COM /* 22377348SJose.Borrego@Sun.COM * smb_get_defaultgrp 22387348SJose.Borrego@Sun.COM * 22397348SJose.Borrego@Sun.COM * If default group for CIFS shares (i.e. "smb") exists 22407348SJose.Borrego@Sun.COM * then it will return the group handle, otherwise it will 22417348SJose.Borrego@Sun.COM * create the group and return the handle. 22427348SJose.Borrego@Sun.COM * 22437348SJose.Borrego@Sun.COM * All the shares created by CIFS clients (this is only possible 22447348SJose.Borrego@Sun.COM * via RPC) will be added to "smb" groups. 22457348SJose.Borrego@Sun.COM */ 22467348SJose.Borrego@Sun.COM static sa_group_t 22477348SJose.Borrego@Sun.COM smb_get_defaultgrp(sa_handle_t handle) 22487348SJose.Borrego@Sun.COM { 22497348SJose.Borrego@Sun.COM sa_group_t group = NULL; 22507348SJose.Borrego@Sun.COM int err; 22517348SJose.Borrego@Sun.COM 22527348SJose.Borrego@Sun.COM group = sa_get_group(handle, SMB_DEFAULT_SHARE_GROUP); 22537348SJose.Borrego@Sun.COM if (group != NULL) 22547348SJose.Borrego@Sun.COM return (group); 22557348SJose.Borrego@Sun.COM 22567348SJose.Borrego@Sun.COM group = sa_create_group(handle, SMB_DEFAULT_SHARE_GROUP, &err); 22577348SJose.Borrego@Sun.COM if (group == NULL) 22587348SJose.Borrego@Sun.COM return (NULL); 22597348SJose.Borrego@Sun.COM 22607348SJose.Borrego@Sun.COM if (sa_create_optionset(group, SMB_DEFAULT_SHARE_GROUP) == NULL) { 22617348SJose.Borrego@Sun.COM (void) sa_remove_group(group); 22627348SJose.Borrego@Sun.COM group = NULL; 22637348SJose.Borrego@Sun.COM } 22647348SJose.Borrego@Sun.COM 22657348SJose.Borrego@Sun.COM return (group); 22667348SJose.Borrego@Sun.COM } 22679832Samw@Sun.COM 22689832Samw@Sun.COM /* 22699832Samw@Sun.COM * Checks to see if the command args are the supported substitution specifier. 22709832Samw@Sun.COM * i.e. <cmd> %U %S 22719832Samw@Sun.COM */ 22729832Samw@Sun.COM static int 22739832Samw@Sun.COM cmd_validator(int index, char *value) 22749832Samw@Sun.COM { 22759832Samw@Sun.COM char cmd[MAXPATHLEN]; 22769832Samw@Sun.COM char *ptr, *v; 22779832Samw@Sun.COM boolean_t skip_cmdname; 22789832Samw@Sun.COM 22799832Samw@Sun.COM if (string_length_check_validator(index, value) != SA_OK) 22809832Samw@Sun.COM return (SA_BAD_VALUE); 22819832Samw@Sun.COM 22829832Samw@Sun.COM if (*value == '\0') 22839832Samw@Sun.COM return (SA_OK); 22849832Samw@Sun.COM 22859832Samw@Sun.COM (void) strlcpy(cmd, value, sizeof (cmd)); 22869832Samw@Sun.COM 22879832Samw@Sun.COM ptr = cmd; 22889832Samw@Sun.COM skip_cmdname = B_TRUE; 22899832Samw@Sun.COM do { 22909832Samw@Sun.COM if ((v = strsep(&ptr, " ")) == NULL) 22919832Samw@Sun.COM break; 22929832Samw@Sun.COM 22939832Samw@Sun.COM if (*v != '\0') { 22949832Samw@Sun.COM 22959832Samw@Sun.COM if (skip_cmdname) { 22969832Samw@Sun.COM skip_cmdname = B_FALSE; 22979832Samw@Sun.COM continue; 22989832Samw@Sun.COM } 22999832Samw@Sun.COM 23009832Samw@Sun.COM if ((strlen(v) != 2) || *v != '%') 23019832Samw@Sun.COM return (SA_BAD_VALUE); 23029832Samw@Sun.COM 23039832Samw@Sun.COM if (strpbrk(v, SMB_VALID_SUB_CHRS) == NULL) 23049832Samw@Sun.COM return (SA_BAD_VALUE); 23059832Samw@Sun.COM } 23069832Samw@Sun.COM 23079832Samw@Sun.COM } while (v != NULL); 23089832Samw@Sun.COM 23099832Samw@Sun.COM /* 23109832Samw@Sun.COM * If skip_cmdname is still true then the string contains 23119832Samw@Sun.COM * only spaces. Don't allow such a string. 23129832Samw@Sun.COM */ 23139832Samw@Sun.COM if (skip_cmdname) 23149832Samw@Sun.COM return (SA_BAD_VALUE); 23159832Samw@Sun.COM 23169832Samw@Sun.COM return (SA_OK); 23179832Samw@Sun.COM } 23189832Samw@Sun.COM 23199832Samw@Sun.COM /*ARGSUSED*/ 23209832Samw@Sun.COM static int 23219832Samw@Sun.COM disposition_validator(int index, char *value) 23229832Samw@Sun.COM { 23239832Samw@Sun.COM if (value == NULL) 23249832Samw@Sun.COM return (SA_BAD_VALUE); 23259832Samw@Sun.COM 23269832Samw@Sun.COM if (*value == '\0') 23279832Samw@Sun.COM return (SA_OK); 23289832Samw@Sun.COM 232912508Samw@Sun.COM if ((strcasecmp(value, SMB_EXEC_DISP_CONTINUE) == 0) || 233012508Samw@Sun.COM (strcasecmp(value, SMB_EXEC_DISP_TERMINATE) == 0)) 23319832Samw@Sun.COM return (SA_OK); 23329832Samw@Sun.COM 23339832Samw@Sun.COM return (SA_BAD_VALUE); 23349832Samw@Sun.COM } 233511633SJoyce.McIntosh@Sun.COM 233611633SJoyce.McIntosh@Sun.COM /* 233711633SJoyce.McIntosh@Sun.COM * Updates the optionset properties of the share resource. 233811633SJoyce.McIntosh@Sun.COM * The properties are given as a list of name-value pair. 233911633SJoyce.McIntosh@Sun.COM * The name argument should be the optionset property name and the value 234011633SJoyce.McIntosh@Sun.COM * should be a valid value for the specified property. 234112065SKeyur.Desai@Sun.COM * 234212065SKeyur.Desai@Sun.COM * When calling this function for permanent shares, the caller must also 234312065SKeyur.Desai@Sun.COM * call sa_commit_properties() to commit the changes to SMF. 234411633SJoyce.McIntosh@Sun.COM */ 234511633SJoyce.McIntosh@Sun.COM static int 234611633SJoyce.McIntosh@Sun.COM smb_update_optionset_props(sa_handle_t handle, sa_resource_t resource, 234711633SJoyce.McIntosh@Sun.COM nvlist_t *nvl) 234811633SJoyce.McIntosh@Sun.COM { 234911633SJoyce.McIntosh@Sun.COM sa_property_t prop; 235011633SJoyce.McIntosh@Sun.COM sa_optionset_t opts; 235111633SJoyce.McIntosh@Sun.COM int err = SA_OK; 235211633SJoyce.McIntosh@Sun.COM nvpair_t *cur; 235311633SJoyce.McIntosh@Sun.COM char *name, *val; 235411633SJoyce.McIntosh@Sun.COM 235511633SJoyce.McIntosh@Sun.COM if ((opts = sa_get_optionset(resource, SMB_PROTOCOL_NAME)) == NULL) { 235611633SJoyce.McIntosh@Sun.COM opts = sa_create_optionset(resource, SMB_PROTOCOL_NAME); 235711633SJoyce.McIntosh@Sun.COM if (opts == NULL) 235811633SJoyce.McIntosh@Sun.COM return (SA_CONFIG_ERR); 235911633SJoyce.McIntosh@Sun.COM } 236011633SJoyce.McIntosh@Sun.COM 236111633SJoyce.McIntosh@Sun.COM cur = nvlist_next_nvpair(nvl, NULL); 236211633SJoyce.McIntosh@Sun.COM while (cur != NULL) { 236311633SJoyce.McIntosh@Sun.COM name = nvpair_name(cur); 236411633SJoyce.McIntosh@Sun.COM err = nvpair_value_string(cur, &val); 236511633SJoyce.McIntosh@Sun.COM if ((err != 0) || (name == NULL) || (val == NULL)) { 236611633SJoyce.McIntosh@Sun.COM err = SA_CONFIG_ERR; 236711633SJoyce.McIntosh@Sun.COM break; 236811633SJoyce.McIntosh@Sun.COM } 236911633SJoyce.McIntosh@Sun.COM 237011633SJoyce.McIntosh@Sun.COM prop = NULL; 237111633SJoyce.McIntosh@Sun.COM if ((prop = sa_get_property(opts, name)) == NULL) { 237211633SJoyce.McIntosh@Sun.COM prop = sa_create_property(name, val); 237311633SJoyce.McIntosh@Sun.COM if (prop != NULL) { 237411633SJoyce.McIntosh@Sun.COM err = sa_valid_property(handle, opts, 237511633SJoyce.McIntosh@Sun.COM SMB_PROTOCOL_NAME, prop); 237611633SJoyce.McIntosh@Sun.COM if (err != SA_OK) { 237711633SJoyce.McIntosh@Sun.COM (void) sa_remove_property(prop); 237811633SJoyce.McIntosh@Sun.COM break; 237911633SJoyce.McIntosh@Sun.COM } 238011633SJoyce.McIntosh@Sun.COM } 238111633SJoyce.McIntosh@Sun.COM err = sa_add_property(opts, prop); 238211633SJoyce.McIntosh@Sun.COM if (err != SA_OK) 238311633SJoyce.McIntosh@Sun.COM break; 238411633SJoyce.McIntosh@Sun.COM } else { 238511633SJoyce.McIntosh@Sun.COM err = sa_update_property(prop, val); 238611633SJoyce.McIntosh@Sun.COM if (err != SA_OK) 238711633SJoyce.McIntosh@Sun.COM break; 238811633SJoyce.McIntosh@Sun.COM } 238911633SJoyce.McIntosh@Sun.COM 239011633SJoyce.McIntosh@Sun.COM cur = nvlist_next_nvpair(nvl, cur); 239111633SJoyce.McIntosh@Sun.COM } 239211633SJoyce.McIntosh@Sun.COM 239311633SJoyce.McIntosh@Sun.COM return (err); 239411633SJoyce.McIntosh@Sun.COM } 239511963SAfshin.Ardakani@Sun.COM 239611963SAfshin.Ardakani@Sun.COM static boolean_t 239711963SAfshin.Ardakani@Sun.COM smb_saprop_getbool(sa_optionset_t opts, char *propname) 239811963SAfshin.Ardakani@Sun.COM { 239911963SAfshin.Ardakani@Sun.COM sa_property_t prop; 240011963SAfshin.Ardakani@Sun.COM char *val; 240111963SAfshin.Ardakani@Sun.COM boolean_t propval = B_FALSE; 240211963SAfshin.Ardakani@Sun.COM 240311963SAfshin.Ardakani@Sun.COM prop = sa_get_property(opts, propname); 240411963SAfshin.Ardakani@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 240511963SAfshin.Ardakani@Sun.COM if ((strcasecmp(val, "true") == 0) || (strcmp(val, "1") == 0)) 240611963SAfshin.Ardakani@Sun.COM propval = B_TRUE; 240711963SAfshin.Ardakani@Sun.COM free(val); 240811963SAfshin.Ardakani@Sun.COM } 240911963SAfshin.Ardakani@Sun.COM 241011963SAfshin.Ardakani@Sun.COM return (propval); 241111963SAfshin.Ardakani@Sun.COM } 241211963SAfshin.Ardakani@Sun.COM 241311963SAfshin.Ardakani@Sun.COM static boolean_t 241411963SAfshin.Ardakani@Sun.COM smb_saprop_getstr(sa_optionset_t opts, char *propname, char *buf, size_t bufsz) 241511963SAfshin.Ardakani@Sun.COM { 241611963SAfshin.Ardakani@Sun.COM sa_property_t prop; 241711963SAfshin.Ardakani@Sun.COM char *val; 241811963SAfshin.Ardakani@Sun.COM 241911963SAfshin.Ardakani@Sun.COM prop = sa_get_property(opts, propname); 242011963SAfshin.Ardakani@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 242111963SAfshin.Ardakani@Sun.COM (void) strlcpy(buf, val, bufsz); 242211963SAfshin.Ardakani@Sun.COM free(val); 242311963SAfshin.Ardakani@Sun.COM return (B_TRUE); 242411963SAfshin.Ardakani@Sun.COM } 242511963SAfshin.Ardakani@Sun.COM 242611963SAfshin.Ardakani@Sun.COM return (B_FALSE); 242711963SAfshin.Ardakani@Sun.COM } 2428