15331Samw /* 25331Samw * CDDL HEADER START 35331Samw * 45331Samw * The contents of this file are subject to the terms of the 55331Samw * Common Development and Distribution License (the "License"). 65331Samw * You may not use this file except in compliance with the License. 75331Samw * 85331Samw * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 95331Samw * or http://www.opensolaris.org/os/licensing. 105331Samw * See the License for the specific language governing permissions 115331Samw * and limitations under the License. 125331Samw * 135331Samw * When distributing Covered Code, include this CDDL HEADER in each 145331Samw * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 155331Samw * If applicable, add the following below this CDDL HEADER, with the 165331Samw * fields enclosed by brackets "[]" replaced with your own identifying 175331Samw * information: Portions Copyright [yyyy] [name of copyright owner] 185331Samw * 195331Samw * CDDL HEADER END 205331Samw */ 215331Samw 225331Samw /* 235331Samw * Copyright 2007 Sun Microsystems, Inc. All rights reserved. 245331Samw * Use is subject to license terms. 255331Samw */ 265331Samw 275331Samw #pragma ident "%Z%%M% %I% %E% SMI" 285331Samw 295331Samw /* 305331Samw * SMB specific functions 315331Samw */ 325331Samw #include <stdio.h> 335331Samw #include <string.h> 345331Samw #include <ctype.h> 355331Samw #include <stdlib.h> 365331Samw #include <unistd.h> 375331Samw #include <zone.h> 385331Samw #include <errno.h> 395331Samw #include <locale.h> 405331Samw #include <fcntl.h> 415331Samw #include <sys/types.h> 425331Samw #include <sys/stat.h> 435331Samw #include <syslog.h> 445331Samw #include "libshare.h" 455331Samw #include "libshare_impl.h" 465331Samw #include <pwd.h> 475331Samw #include <limits.h> 485331Samw #include <libscf.h> 495331Samw #include <strings.h> 505331Samw #include "libshare_smb.h" 515331Samw #include <rpcsvc/daemon_utils.h> 525331Samw #include <smbsrv/lmshare.h> 535331Samw #include <smbsrv/lmshare_door.h> 545331Samw #include <smbsrv/smbinfo.h> 555331Samw #include <smbsrv/libsmb.h> 565331Samw 575331Samw /* internal functions */ 585331Samw static int smb_share_init(void); 595331Samw static void smb_share_fini(void); 605331Samw static int smb_enable_share(sa_share_t); 615331Samw static int smb_share_changed(sa_share_t); 625331Samw static int smb_resource_changed(sa_resource_t); 635331Samw static int smb_rename_resource(sa_handle_t, sa_resource_t, char *); 645331Samw static int smb_disable_share(sa_share_t share, char *); 655331Samw static int smb_validate_property(sa_property_t, sa_optionset_t); 665331Samw static int smb_set_proto_prop(sa_property_t); 675331Samw static sa_protocol_properties_t smb_get_proto_set(void); 685331Samw static char *smb_get_status(void); 695331Samw static int smb_parse_optstring(sa_group_t, char *); 705331Samw static char *smb_format_options(sa_group_t, int); 715331Samw 725331Samw static int smb_enable_service(void); 735331Samw 745331Samw static int range_check_validator(int, char *); 755331Samw static int range_check_validator_zero_ok(int, char *); 765331Samw static int string_length_check_validator(int, char *); 775331Samw static int true_false_validator(int, char *); 785331Samw static int ip_address_validator_empty_ok(int, char *); 795331Samw static int ip_address_csv_list_validator_empty_ok(int, char *); 805331Samw static int ipc_mode_validator(int, char *); 815331Samw static int path_validator(int, char *); 825331Samw 835331Samw static int smb_enable_resource(sa_resource_t); 845331Samw static int smb_disable_resource(sa_resource_t); 855331Samw static uint64_t smb_share_features(void); 865331Samw static int smb_list_transient(sa_handle_t); 87*5521Sas200622 static int smb_domain_change_event(char *new_domain); 885331Samw 895331Samw /* size of basic format allocation */ 905331Samw #define OPT_CHUNK 1024 915331Samw 925331Samw /* 935331Samw * Indexes of entries in smb_proto_options table. 945331Samw * Changes to smb_proto_options table may require 955331Samw * an update to these values. 965331Samw */ 975331Samw #define PROTO_OPT_WINS1 6 985331Samw #define PROTO_OPT_WINS_EXCLUDE 8 995331Samw 1005331Samw 1015331Samw /* 1025331Samw * ops vector that provides the protocol specific info and operations 1035331Samw * for share management. 1045331Samw */ 1055331Samw 1065331Samw struct sa_plugin_ops sa_plugin_ops = { 1075331Samw SA_PLUGIN_VERSION, 1085331Samw SMB_PROTOCOL_NAME, 1095331Samw smb_share_init, 1105331Samw smb_share_fini, 1115331Samw smb_enable_share, 1125331Samw smb_disable_share, 1135331Samw smb_validate_property, 1145331Samw NULL, 1155331Samw NULL, 1165331Samw smb_parse_optstring, 1175331Samw smb_format_options, 1185331Samw smb_set_proto_prop, 1195331Samw smb_get_proto_set, 1205331Samw smb_get_status, 1215331Samw NULL, 1225331Samw NULL, 1235331Samw NULL, 1245331Samw smb_share_changed, 1255331Samw smb_enable_resource, 1265331Samw smb_disable_resource, 1275331Samw smb_share_features, 1285331Samw smb_list_transient, 1295331Samw smb_resource_changed, 1305331Samw smb_rename_resource, 1315331Samw NULL, 1325331Samw NULL 1335331Samw }; 1345331Samw 1355331Samw /* 1365331Samw * option definitions. Make sure to keep the #define for the option 1375331Samw * index just before the entry it is the index for. Changing the order 1385331Samw * can cause breakage. 1395331Samw */ 1405331Samw 1415331Samw struct option_defs optdefs[] = { 1425331Samw {SHOPT_AD_CONTAINER, OPT_TYPE_STRING}, 1435331Samw {SHOPT_NAME, OPT_TYPE_NAME}, 1445331Samw {NULL, NULL}, 1455331Samw }; 1465331Samw 1475331Samw /* 1485331Samw * findopt(name) 1495331Samw * 1505331Samw * Lookup option "name" in the option table and return the table 1515331Samw * index. 1525331Samw */ 1535331Samw 1545331Samw static int 1555331Samw findopt(char *name) 1565331Samw { 1575331Samw int i; 1585331Samw if (name != NULL) { 1595331Samw for (i = 0; optdefs[i].tag != NULL; i++) { 1605331Samw if (strcmp(optdefs[i].tag, name) == 0) 1615331Samw return (i); 1625331Samw } 1635331Samw } 1645331Samw return (-1); 1655331Samw } 1665331Samw 1675331Samw /* 1685331Samw * is_a_number(number) 1695331Samw * 1705331Samw * is the string a number in one of the forms we want to use? 1715331Samw */ 1725331Samw 1735331Samw static int 1745331Samw is_a_number(char *number) 1755331Samw { 1765331Samw int ret = 1; 1775331Samw int hex = 0; 1785331Samw 1795331Samw if (strncmp(number, "0x", 2) == 0) { 1805331Samw number += 2; 1815331Samw hex = 1; 1825331Samw } else if (*number == '-') { 1835331Samw number++; /* skip the minus */ 1845331Samw } 1855331Samw 1865331Samw while (ret == 1 && *number != '\0') { 1875331Samw if (hex) { 1885331Samw ret = isxdigit(*number++); 1895331Samw } else { 1905331Samw ret = isdigit(*number++); 1915331Samw } 1925331Samw } 1935331Samw return (ret); 1945331Samw } 1955331Samw 1965331Samw /* 1975331Samw * validresource(name) 1985331Samw * 1995331Samw * Check that name only has valid characters in it. The current valid 2005331Samw * set are the printable characters but not including: 2015331Samw * " / \ [ ] : | < > + ; , ? * = \t 2025331Samw * Note that space is included and there is a maximum length. 2035331Samw */ 2045331Samw static int 2055331Samw validresource(const char *name) 2065331Samw { 2075331Samw const char *cp; 2085331Samw size_t len; 2095331Samw 2105331Samw if (name == NULL) 2115331Samw return (B_FALSE); 2125331Samw 2135331Samw len = strlen(name); 2145331Samw if (len == 0 || len > SA_MAX_RESOURCE_NAME) 2155331Samw return (B_FALSE); 2165331Samw 2175331Samw if (strpbrk(name, "\"/\\[]:|<>+;,?*=\t") != NULL) { 2185331Samw return (B_FALSE); 2195331Samw } 2205331Samw 2215331Samw for (cp = name; *cp != '\0'; cp++) 2225331Samw if (iscntrl(*cp)) 2235331Samw return (B_FALSE); 2245331Samw 2255331Samw return (B_TRUE); 2265331Samw } 2275331Samw 2285331Samw /* 2295331Samw * smb_isonline() 2305331Samw * 2315331Samw * Determine if the SMF service instance is in the online state or 2325331Samw * not. A number of operations depend on this state. 2335331Samw */ 2345331Samw static boolean_t 2355331Samw smb_isonline(void) 2365331Samw { 2375331Samw char *str; 2385331Samw boolean_t ret = B_FALSE; 2395331Samw 2405331Samw if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 2415331Samw ret = (strcmp(str, SCF_STATE_STRING_ONLINE) == 0); 2425331Samw free(str); 2435331Samw } 2445331Samw return (ret); 2455331Samw } 2465331Samw 2475331Samw /* 2485331Samw * smb_enable_share tells the implementation that it is to enable the share. 2495331Samw * This entails converting the path and options into the appropriate ioctl 2505331Samw * calls. It is assumed that all error checking of paths, etc. were 2515331Samw * done earlier. 2525331Samw */ 2535331Samw static int 2545331Samw smb_enable_share(sa_share_t share) 2555331Samw { 2565331Samw char *path; 2575331Samw char *rname; 2585331Samw lmshare_info_t si; 2595331Samw sa_resource_t resource; 2605331Samw boolean_t iszfs; 2615331Samw boolean_t privileged; 2625331Samw int err = SA_OK; 2635331Samw priv_set_t *priv_effective; 2645331Samw boolean_t online; 2655331Samw 2665331Samw priv_effective = priv_allocset(); 2675331Samw (void) getppriv(PRIV_EFFECTIVE, priv_effective); 2685331Samw privileged = (priv_isfullset(priv_effective) == B_TRUE); 2695331Samw priv_freeset(priv_effective); 2705331Samw 2715331Samw /* get the path since it is important in several places */ 2725331Samw path = sa_get_share_attr(share, "path"); 2735331Samw if (path == NULL) 2745331Samw return (SA_NO_SUCH_PATH); 2755331Samw 2765331Samw online = smb_isonline(); 2775331Samw 2785331Samw iszfs = sa_path_is_zfs(path); 2795331Samw 2805331Samw if (iszfs) { 2815331Samw 2825331Samw if (privileged == B_FALSE && !online) { 2835331Samw 2845331Samw if (!online) { 2855331Samw (void) printf(dgettext(TEXT_DOMAIN, 2865331Samw "SMB: Cannot share remove " 2875331Samw "file system: %s\n"), path); 2885331Samw (void) printf(dgettext(TEXT_DOMAIN, 2895331Samw "SMB: Service needs to be enabled " 2905331Samw "by a privileged user\n")); 2915331Samw err = SA_NO_PERMISSION; 2925331Samw errno = EPERM; 2935331Samw } 2945331Samw if (err) { 2955331Samw sa_free_attr_string(path); 2965331Samw return (err); 2975331Samw } 2985331Samw 2995331Samw } 3005331Samw } 3015331Samw 3025331Samw if (privileged == B_TRUE && !online) { 3035331Samw err = smb_enable_service(); 3045331Samw if (err != SA_OK) { 3055331Samw (void) printf(dgettext(TEXT_DOMAIN, 3065331Samw "SMB: Unable to enable service\n")); 3075331Samw /* 3085331Samw * For now, it is OK to not be able to enable 3095331Samw * the service. 3105331Samw */ 3115331Samw if (err == SA_BUSY) 3125331Samw err = SA_OK; 3135331Samw } else { 3145331Samw online = B_TRUE; 3155331Samw } 3165331Samw } 3175331Samw 3185331Samw /* 3195331Samw * Don't bother trying to start shares if the service isn't 3205331Samw * running. 3215331Samw */ 3225331Samw if (!online) 3235331Samw goto done; 3245331Samw 3255331Samw /* Each share can have multiple resources */ 3265331Samw for (resource = sa_get_share_resource(share, NULL); 3275331Samw resource != NULL; 3285331Samw resource = sa_get_next_resource(resource)) { 3295331Samw sa_optionset_t opts; 3305331Samw bzero(&si, sizeof (lmshare_info_t)); 3315331Samw rname = sa_get_resource_attr(resource, "name"); 3325331Samw if (rname == NULL) { 3335331Samw sa_free_attr_string(path); 3345331Samw return (SA_NO_SUCH_RESOURCE); 3355331Samw } 3365331Samw 3375331Samw opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 3385331Samw smb_build_lmshare_info(rname, path, opts, &si); 3395331Samw sa_free_attr_string(rname); 3405331Samw 3415331Samw sa_free_derived_optionset(opts); 3425331Samw if (!iszfs) { 3435331Samw err = lmshrd_add(&si); 3445331Samw } else { 3455331Samw share_t sh; 3465331Samw 3475331Samw sa_sharetab_fill_zfs(share, &sh, "smb"); 3485331Samw err = sa_share_zfs(share, (char *)path, &sh, 3495331Samw &si, ZFS_SHARE_SMB); 3505331Samw 3515331Samw sa_emptyshare(&sh); 3525331Samw } 3535331Samw } 3545331Samw if (!iszfs) 3555331Samw (void) sa_update_sharetab(share, "smb"); 3565331Samw done: 3575331Samw sa_free_attr_string(path); 3585331Samw 3595331Samw return (err == NERR_DuplicateShare ? 0 : err); 3605331Samw } 3615331Samw 3625331Samw /* 3635331Samw * This is the share for CIFS all shares have resource names. 3645331Samw * Enable tells the smb server to update its hash. If it fails 3655331Samw * because smb server is down, we just ignore as smb server loads 3665331Samw * the resources from sharemanager at startup. 3675331Samw */ 3685331Samw 3695331Samw static int 3705331Samw smb_enable_resource(sa_resource_t resource) 3715331Samw { 3725331Samw char *path; 3735331Samw char *rname; 3745331Samw sa_optionset_t opts; 3755331Samw sa_share_t share; 3765331Samw lmshare_info_t si; 3775331Samw int ret; 3785331Samw 3795331Samw share = sa_get_resource_parent(resource); 3805331Samw if (share == NULL) 3815331Samw return (SA_NO_SUCH_PATH); 3825331Samw path = sa_get_share_attr(share, "path"); 3835331Samw if (path == NULL) 3845331Samw return (SA_SYSTEM_ERR); 3855331Samw rname = sa_get_resource_attr(resource, "name"); 3865331Samw if (rname == NULL) { 3875331Samw sa_free_attr_string(path); 3885331Samw return (SA_NO_SUCH_RESOURCE); 3895331Samw } 3905331Samw 3915331Samw ret = smb_enable_service(); 3925331Samw 3935331Samw if (!smb_isonline()) { 3945331Samw ret = SA_OK; 3955331Samw goto done; 3965331Samw } 3975331Samw 3985331Samw opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 3995331Samw smb_build_lmshare_info(rname, path, opts, &si); 4005331Samw sa_free_attr_string(path); 4015331Samw sa_free_attr_string(rname); 4025331Samw sa_free_derived_optionset(opts); 4035331Samw if (lmshrd_add(&si) != NERR_Success) 4045331Samw return (SA_NOT_SHARED); 4055331Samw (void) sa_update_sharetab(share, "smb"); 4065331Samw 4075331Samw done: 4085331Samw return (ret); 4095331Samw } 4105331Samw 4115331Samw /* 4125331Samw * Remove it from smb server hash. 4135331Samw */ 4145331Samw static int 4155331Samw smb_disable_resource(sa_resource_t resource) 4165331Samw { 4175331Samw char *rname; 4185331Samw DWORD res; 4195331Samw sa_share_t share; 4205331Samw 4215331Samw rname = sa_get_resource_attr(resource, "name"); 4225331Samw if (rname == NULL) 4235331Samw return (SA_NO_SUCH_RESOURCE); 4245331Samw 4255331Samw if (smb_isonline()) { 4265331Samw res = lmshrd_delete(rname); 4275331Samw if (res != NERR_Success) { 4285331Samw sa_free_attr_string(rname); 4295331Samw return (SA_CONFIG_ERR); 4305331Samw } 4315331Samw sa_free_attr_string(rname); 4325331Samw rname = NULL; 4335331Samw } 4345331Samw share = sa_get_resource_parent(resource); 4355331Samw if (share != NULL) { 4365331Samw rname = sa_get_share_attr(share, "path"); 4375331Samw if (rname != NULL) { 4385331Samw (void) sa_delete_sharetab(rname, "smb"); 4395331Samw sa_free_attr_string(rname); 4405331Samw rname = NULL; 4415331Samw } 4425331Samw } 4435331Samw if (rname != NULL) 4445331Samw sa_free_attr_string(rname); 4455331Samw /* 4465331Samw * Always return OK as smb/server may be down and 4475331Samw * Shares will be picked up when loaded. 4485331Samw */ 4495331Samw return (SA_OK); 4505331Samw } 4515331Samw 4525331Samw /* 4535331Samw * smb_share_changed(sa_share_t share) 4545331Samw * 4555331Samw * The specified share has changed. 4565331Samw */ 4575331Samw static int 4585331Samw smb_share_changed(sa_share_t share) 4595331Samw { 4605331Samw char *path; 4615331Samw sa_resource_t resource; 4625331Samw 4635331Samw /* get the path since it is important in several places */ 4645331Samw path = sa_get_share_attr(share, "path"); 4655331Samw if (path == NULL) 4665331Samw return (SA_NO_SUCH_PATH); 4675331Samw for (resource = sa_get_share_resource(share, NULL); 4685331Samw resource != NULL; 4695331Samw resource = sa_get_next_resource(resource)) 4705331Samw (void) smb_resource_changed(resource); 4715331Samw 4725331Samw sa_free_attr_string(path); 4735331Samw 4745331Samw return (SA_OK); 4755331Samw } 4765331Samw 4775331Samw /* 4785331Samw * smb_resource_changed(sa_resource_t resource) 4795331Samw * 4805331Samw * The specified resource has changed. 4815331Samw */ 4825331Samw static int 4835331Samw smb_resource_changed(sa_resource_t resource) 4845331Samw { 4855331Samw DWORD res; 4865331Samw lmshare_info_t si; 4875331Samw lmshare_info_t new_si; 4885331Samw char *rname, *path; 4895331Samw sa_optionset_t opts; 4905331Samw sa_share_t share; 4915331Samw 4925331Samw rname = sa_get_resource_attr(resource, "name"); 4935331Samw if (rname == NULL) 4945331Samw return (SA_NO_SUCH_RESOURCE); 4955331Samw 4965331Samw share = sa_get_resource_parent(resource); 4975331Samw if (share == NULL) { 4985331Samw sa_free_attr_string(rname); 4995331Samw return (SA_CONFIG_ERR); 5005331Samw } 5015331Samw 5025331Samw path = sa_get_share_attr(share, "path"); 5035331Samw if (path == NULL) { 5045331Samw sa_free_attr_string(rname); 5055331Samw return (SA_NO_SUCH_PATH); 5065331Samw } 5075331Samw 5085331Samw if (!smb_isonline()) { 5095331Samw sa_free_attr_string(rname); 5105331Samw return (SA_OK); 5115331Samw } 5125331Samw 5135331Samw /* Update the share cache in smb/server */ 5145331Samw res = lmshrd_getinfo(rname, &si); 5155331Samw if (res != NERR_Success) { 5165331Samw sa_free_attr_string(path); 5175331Samw sa_free_attr_string(rname); 5185331Samw return (SA_CONFIG_ERR); 5195331Samw } 5205331Samw 5215331Samw opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 5225331Samw smb_build_lmshare_info(rname, path, opts, &new_si); 5235331Samw sa_free_derived_optionset(opts); 5245331Samw sa_free_attr_string(path); 5255331Samw sa_free_attr_string(rname); 5265331Samw 5275331Samw /* 5285331Samw * Update all fields from sa_share_t 5295331Samw * Get derived values. 5305331Samw */ 5315331Samw if (lmshrd_setinfo(&new_si) != LMSHR_DOOR_SRV_SUCCESS) 5325331Samw return (SA_CONFIG_ERR); 5335331Samw return (smb_enable_service()); 5345331Samw } 5355331Samw 5365331Samw /* 5375331Samw * smb_disable_share(sa_share_t share) 5385331Samw * 5395331Samw * Unshare the specified share. 5405331Samw */ 5415331Samw static int 5425331Samw smb_disable_share(sa_share_t share, char *path) 5435331Samw { 5445331Samw char *rname; 5455331Samw sa_resource_t resource; 5465331Samw boolean_t iszfs; 5475331Samw int err = SA_OK; 5485331Samw 5495331Samw iszfs = sa_path_is_zfs(path); 5505331Samw if (!smb_isonline()) 5515331Samw goto done; 5525331Samw 5535331Samw for (resource = sa_get_share_resource(share, NULL); 5545331Samw resource != NULL; 5555331Samw resource = sa_get_next_resource(resource)) { 5565331Samw rname = sa_get_resource_attr(resource, "name"); 5575331Samw if (rname == NULL) { 5585331Samw continue; 5595331Samw } 5605331Samw if (!iszfs) { 5615331Samw err = lmshrd_delete(rname); 5625331Samw switch (err) { 5635331Samw case NERR_NetNameNotFound: 5645331Samw case NERR_Success: 5655331Samw err = SA_OK; 5665331Samw break; 5675331Samw default: 5685331Samw err = SA_CONFIG_ERR; 5695331Samw break; 5705331Samw } 5715331Samw } else { 5725331Samw share_t sh; 5735331Samw 5745331Samw sa_sharetab_fill_zfs(share, &sh, "smb"); 5755331Samw err = sa_share_zfs(share, (char *)path, &sh, 5765331Samw rname, ZFS_UNSHARE_SMB); 5775331Samw sa_emptyshare(&sh); 5785331Samw } 5795331Samw sa_free_attr_string(rname); 5805331Samw } 5815331Samw done: 5825331Samw if (!iszfs) 5835331Samw (void) sa_delete_sharetab(path, "smb"); 5845331Samw return (err); 5855331Samw } 5865331Samw 5875331Samw /* 5885331Samw * smb_validate_property(property, parent) 5895331Samw * 5905331Samw * Check that the property has a legitimate value for its type. 5915331Samw */ 5925331Samw 5935331Samw static int 5945331Samw smb_validate_property(sa_property_t property, sa_optionset_t parent) 5955331Samw { 5965331Samw int ret = SA_OK; 5975331Samw char *propname; 5985331Samw int optindex; 5995331Samw sa_group_t parent_group; 6005331Samw char *value; 6015331Samw 6025331Samw propname = sa_get_property_attr(property, "type"); 6035331Samw 6045331Samw if ((optindex = findopt(propname)) < 0) 6055331Samw ret = SA_NO_SUCH_PROP; 6065331Samw 6075331Samw /* need to validate value range here as well */ 6085331Samw if (ret == SA_OK) { 6095331Samw parent_group = sa_get_parent_group((sa_share_t)parent); 6105331Samw if (optdefs[optindex].share && !sa_is_share(parent_group)) 6115331Samw ret = SA_PROP_SHARE_ONLY; 6125331Samw } 6135331Samw if (ret != SA_OK) { 6145331Samw if (propname != NULL) 6155331Samw sa_free_attr_string(propname); 6165331Samw return (ret); 6175331Samw } 6185331Samw 6195331Samw value = sa_get_property_attr(property, "value"); 6205331Samw if (value != NULL) { 6215331Samw /* first basic type checking */ 6225331Samw switch (optdefs[optindex].type) { 6235331Samw case OPT_TYPE_NUMBER: 6245331Samw /* check that the value is all digits */ 6255331Samw if (!is_a_number(value)) 6265331Samw ret = SA_BAD_VALUE; 6275331Samw break; 6285331Samw case OPT_TYPE_BOOLEAN: 6295331Samw if (strlen(value) == 0 || 6305331Samw strcasecmp(value, "true") == 0 || 6315331Samw strcmp(value, "1") == 0 || 6325331Samw strcasecmp(value, "false") == 0 || 6335331Samw strcmp(value, "0") == 0) { 6345331Samw ret = SA_OK; 6355331Samw } else { 6365331Samw ret = SA_BAD_VALUE; 6375331Samw } 6385331Samw break; 6395331Samw case OPT_TYPE_NAME: 6405331Samw /* 6415331Samw * Make sure no invalid characters 6425331Samw */ 6435331Samw if (validresource(value) == B_FALSE) 6445331Samw ret = SA_BAD_VALUE; 6455331Samw break; 6465331Samw case OPT_TYPE_STRING: 6475331Samw /* whatever is here should be ok */ 6485331Samw break; 6495331Samw default: 6505331Samw break; 6515331Samw } 6525331Samw } 6535331Samw 6545331Samw if (value != NULL) 6555331Samw sa_free_attr_string(value); 6565331Samw if (ret == SA_OK && optdefs[optindex].check != NULL) 6575331Samw /* do the property specific check */ 6585331Samw ret = optdefs[optindex].check(property); 6595331Samw 6605331Samw if (propname != NULL) 6615331Samw sa_free_attr_string(propname); 6625331Samw return (ret); 6635331Samw } 6645331Samw 6655331Samw /* 6665331Samw * Protocol management functions 6675331Samw * 6685331Samw * properties defined in the default files are defined in 6695331Samw * proto_option_defs for parsing and validation. 6705331Samw */ 6715331Samw 6725331Samw struct smb_proto_option_defs { 6735331Samw char *name; /* display name -- remove protocol identifier */ 6745331Samw int smb_index; 6755331Samw int32_t minval; 6765331Samw int32_t maxval; /* In case of length of string this should be max */ 6775331Samw int (*validator)(int, char *); 6785331Samw int32_t refresh; 6795331Samw } smb_proto_options[] = { 6805331Samw { SMB_CD_SYS_CMNT, 6815331Samw SMB_CI_SYS_CMNT, 0, MAX_VALUE_BUFLEN, 6825331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 6835331Samw { SMB_CD_MAX_WORKERS, 6845331Samw SMB_CI_MAX_WORKERS, 64, 1024, range_check_validator, 6855331Samw SMB_REFRESH_REFRESH}, 6865331Samw { SMB_CD_NBSCOPE, 6875331Samw SMB_CI_NBSCOPE, 0, MAX_VALUE_BUFLEN, 6885331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 6895331Samw { SMB_CD_RDR_IPCMODE, 6905331Samw SMB_CI_RDR_IPCMODE, 0, 0, ipc_mode_validator, SMB_REFRESH_REFRESH}, 6915331Samw { SMB_CD_LM_LEVEL, 6925331Samw SMB_CI_LM_LEVEL, 2, 5, range_check_validator, SMB_REFRESH_REFRESH}, 6935331Samw { SMB_CD_KEEPALIVE, 6945331Samw SMB_CI_KEEPALIVE, 20, 5400, range_check_validator_zero_ok, 6955331Samw SMB_REFRESH_REFRESH}, 6965331Samw { SMB_CD_WINS_SRV1, 6975331Samw SMB_CI_WINS_SRV1, 0, MAX_VALUE_BUFLEN, 6985331Samw ip_address_validator_empty_ok, SMB_REFRESH_REFRESH}, 6995331Samw { SMB_CD_WINS_SRV2, 7005331Samw SMB_CI_WINS_SRV2, 0, MAX_VALUE_BUFLEN, 7015331Samw ip_address_validator_empty_ok, SMB_REFRESH_REFRESH}, 7025331Samw { SMB_CD_WINS_EXCL, 7035331Samw SMB_CI_WINS_EXCL, 0, MAX_VALUE_BUFLEN, 7045331Samw ip_address_csv_list_validator_empty_ok, SMB_REFRESH_REFRESH}, 7055331Samw { SMB_CD_SIGNING_ENABLE, 7065331Samw SMB_CI_SIGNING_ENABLE, 0, 0, true_false_validator, 7075331Samw SMB_REFRESH_REFRESH}, 7085331Samw { SMB_CD_SIGNING_REQD, 7095331Samw SMB_CI_SIGNING_REQD, 0, 0, true_false_validator, 7105331Samw SMB_REFRESH_REFRESH}, 7115331Samw { SMB_CD_RESTRICT_ANON, 7125331Samw SMB_CI_RESTRICT_ANON, 0, 0, true_false_validator, 7135331Samw SMB_REFRESH_REFRESH}, 7145331Samw { SMB_CD_DOMAIN_SRV, 7155331Samw SMB_CI_DOMAIN_SRV, 0, MAX_VALUE_BUFLEN, 7165331Samw ip_address_validator_empty_ok, SMB_REFRESH_REFRESH}, 7175331Samw { SMB_CD_ADS_ENABLE, 7185331Samw SMB_CI_ADS_ENABLE, 0, 0, true_false_validator, SMB_REFRESH_REFRESH}, 7195331Samw { SMB_CD_ADS_USER, 7205331Samw SMB_CI_ADS_USER, 0, MAX_VALUE_BUFLEN, 7215331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 7225331Samw { SMB_CD_ADS_USER_CONTAINER, 7235331Samw SMB_CI_ADS_USER_CONTAINER, 0, MAX_VALUE_BUFLEN, 7245331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 7255331Samw { SMB_CD_ADS_DOMAIN, 7265331Samw SMB_CI_ADS_DOMAIN, 0, MAX_VALUE_BUFLEN, 7275331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 7285331Samw { SMB_CD_ADS_PASSWD, 7295331Samw SMB_CI_ADS_PASSWD, 0, MAX_VALUE_BUFLEN, 7305331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 7315331Samw { SMB_CD_ADS_IPLOOKUP, 7325331Samw SMB_CI_ADS_IPLOOKUP, 0, 0, true_false_validator, 7335331Samw SMB_REFRESH_REFRESH}, 7345331Samw { SMB_CD_ADS_SITE, 7355331Samw SMB_CI_ADS_SITE, 0, MAX_VALUE_BUFLEN, 7365331Samw string_length_check_validator, SMB_REFRESH_REFRESH}, 7375331Samw { SMB_CD_DYNDNS_ENABLE, 7385331Samw SMB_CI_DYNDNS_ENABLE, 0, 0, true_false_validator, 7395331Samw SMB_REFRESH_REFRESH}, 7405331Samw { SMB_CD_DYNDNS_RETRY_SEC, 7415331Samw SMB_CI_DYNDNS_RETRY_SEC, 0, 20, range_check_validator, 7425331Samw SMB_REFRESH_REFRESH}, 7435331Samw { SMB_CD_DYNDNS_RETRY_COUNT, 7445331Samw SMB_CI_DYNDNS_RETRY_COUNT, 3, 5, range_check_validator, 7455331Samw SMB_REFRESH_REFRESH}, 7465331Samw { SMB_CD_AUTOHOME_MAP, 7475331Samw SMB_CI_AUTOHOME_MAP, 0, MAX_VALUE_BUFLEN, 7485331Samw path_validator}, 7495331Samw {NULL, -1, 0, 0, NULL} 7505331Samw }; 7515331Samw 7525331Samw /* 7535331Samw * Check the range of value as int range. 7545331Samw */ 7555331Samw static int 7565331Samw range_check_validator(int index, char *value) 7575331Samw { 7585331Samw int ret = SA_OK; 7595331Samw 7605331Samw if (!is_a_number(value)) { 7615331Samw ret = SA_BAD_VALUE; 7625331Samw } else { 7635331Samw int val; 7645331Samw val = strtoul(value, NULL, 0); 7655331Samw if (val < smb_proto_options[index].minval || 7665331Samw val > smb_proto_options[index].maxval) 7675331Samw ret = SA_BAD_VALUE; 7685331Samw } 7695331Samw return (ret); 7705331Samw } 7715331Samw 7725331Samw /* 7735331Samw * Check the range of value as int range. 7745331Samw */ 7755331Samw static int 7765331Samw range_check_validator_zero_ok(int index, char *value) 7775331Samw { 7785331Samw int ret = SA_OK; 7795331Samw 7805331Samw if (!is_a_number(value)) { 7815331Samw ret = SA_BAD_VALUE; 7825331Samw } else { 7835331Samw int val; 7845331Samw val = strtoul(value, NULL, 0); 7855331Samw if (val == 0) 7865331Samw ret = SA_OK; 7875331Samw else { 7885331Samw if (val < smb_proto_options[index].minval || 7895331Samw val > smb_proto_options[index].maxval) 7905331Samw ret = SA_BAD_VALUE; 7915331Samw } 7925331Samw } 7935331Samw return (ret); 7945331Samw } 7955331Samw 7965331Samw /* 7975331Samw * Check the length of the string 7985331Samw */ 7995331Samw static int 8005331Samw string_length_check_validator(int index, char *value) 8015331Samw { 8025331Samw int ret = SA_OK; 8035331Samw 8045331Samw if (value == NULL) 8055331Samw return (SA_BAD_VALUE); 8065331Samw if (strlen(value) > smb_proto_options[index].maxval) 8075331Samw ret = SA_BAD_VALUE; 8085331Samw return (ret); 8095331Samw } 8105331Samw 8115331Samw /* 8125331Samw * Check yes/no 8135331Samw */ 8145331Samw /*ARGSUSED*/ 8155331Samw static int 8165331Samw true_false_validator(int index, char *value) 8175331Samw { 8185331Samw if (value == NULL) 8195331Samw return (SA_BAD_VALUE); 8205331Samw if ((strcasecmp(value, "true") == 0) || 8215331Samw (strcasecmp(value, "false") == 0)) 8225331Samw return (SA_OK); 8235331Samw return (SA_BAD_VALUE); 8245331Samw } 8255331Samw 8265331Samw /* 8275331Samw * Check IP address. 8285331Samw */ 8295331Samw /*ARGSUSED*/ 8305331Samw static int 8315331Samw ip_address_validator_empty_ok(int index, char *value) 8325331Samw { 8335331Samw char sbytes[16]; 8345331Samw int len; 8355331Samw 8365331Samw if (value == NULL) 8375331Samw return (SA_OK); 8385331Samw len = strlen(value); 8395331Samw if (len == 0) 8405331Samw return (SA_OK); 8415331Samw if (inet_pton(AF_INET, value, (void *)sbytes) != 1) 8425331Samw return (SA_BAD_VALUE); 8435331Samw 8445331Samw return (SA_OK); 8455331Samw } 8465331Samw 8475331Samw /* 8485331Samw * Check IP address list 8495331Samw */ 8505331Samw /*ARGSUSED*/ 8515331Samw static int 8525331Samw ip_address_csv_list_validator_empty_ok(int index, char *value) 8535331Samw { 8545331Samw char sbytes[16]; 8555331Samw char *ip, *tmp, *ctx; 8565331Samw 8575331Samw if (value == NULL || *value == '\0') 8585331Samw return (SA_OK); 8595331Samw 8605331Samw if (strlen(value) > MAX_VALUE_BUFLEN) 8615331Samw return (SA_BAD_VALUE); 8625331Samw 8635331Samw if ((tmp = strdup(value)) == NULL) 8645331Samw return (SA_NO_MEMORY); 8655331Samw 8665331Samw ip = strtok_r(tmp, ",", &ctx); 8675331Samw while (ip) { 8685331Samw if (strlen(ip) == 0) { 8695331Samw free(tmp); 8705331Samw return (SA_BAD_VALUE); 8715331Samw } 8725331Samw if (*ip != 0) { 8735331Samw if (inet_pton(AF_INET, ip, 8745331Samw (void *)sbytes) != 1) { 8755331Samw free(tmp); 8765331Samw return (SA_BAD_VALUE); 8775331Samw } 8785331Samw } 8795331Samw ip = strtok_r(0, ",", &ctx); 8805331Samw } 8815331Samw 8825331Samw free(tmp); 8835331Samw return (SA_OK); 8845331Samw } 8855331Samw 8865331Samw /* 8875331Samw * Check IPC mode 8885331Samw */ 8895331Samw /*ARGSUSED*/ 8905331Samw static int 8915331Samw ipc_mode_validator(int index, char *value) 8925331Samw { 8935331Samw if (value == NULL) 8945331Samw return (SA_BAD_VALUE); 8955331Samw if (strcasecmp(value, "anon") == 0) 8965331Samw return (SA_OK); 8975331Samw if (strcasecmp(value, "auth") == 0) 8985331Samw return (SA_OK); 8995331Samw return (SA_BAD_VALUE); 9005331Samw } 9015331Samw 9025331Samw /* 9035331Samw * Check path 9045331Samw */ 9055331Samw /*ARGSUSED*/ 9065331Samw static int 9075331Samw path_validator(int index, char *value) 9085331Samw { 9095331Samw struct stat buffer; 9105331Samw int fd, status; 9115331Samw 9125331Samw if (value == NULL) 9135331Samw return (SA_BAD_VALUE); 9145331Samw 9155331Samw fd = open(value, O_RDONLY); 9165331Samw if (fd < 0) 9175331Samw return (SA_BAD_VALUE); 9185331Samw 9195331Samw status = fstat(fd, &buffer); 9205331Samw (void) close(fd); 9215331Samw 9225331Samw if (status < 0) 9235331Samw return (SA_BAD_VALUE); 9245331Samw 9255331Samw if (buffer.st_mode & S_IFDIR) 9265331Samw return (SA_OK); 9275331Samw return (SA_BAD_VALUE); 9285331Samw } 9295331Samw 9305331Samw /* 9315331Samw * the protoset holds the defined options so we don't have to read 9325331Samw * them multiple times 9335331Samw */ 9345331Samw static sa_protocol_properties_t protoset; 9355331Samw 9365331Samw static int 9375331Samw findprotoopt(char *name) 9385331Samw { 9395331Samw int i; 9405331Samw for (i = 0; smb_proto_options[i].name != NULL; i++) { 9415331Samw if (strcasecmp(smb_proto_options[i].name, name) == 0) 9425331Samw return (i); 9435331Samw } 9445331Samw return (-1); 9455331Samw } 9465331Samw 9475331Samw /* 9485331Samw * smb_load_proto_properties() 9495331Samw * 9505331Samw * read the smb config values from SMF. 9515331Samw */ 9525331Samw 9535331Samw static int 9545331Samw smb_load_proto_properties() 9555331Samw { 9565331Samw sa_property_t prop; 9575331Samw int index; 9585331Samw char *value; 9595331Samw 9605331Samw protoset = sa_create_protocol_properties(SMB_PROTOCOL_NAME); 9615331Samw if (protoset == NULL) 9625331Samw return (SA_NO_MEMORY); 9635331Samw 9645331Samw if (smb_config_load() != 0) 9655331Samw return (SA_CONFIG_ERR); 9665331Samw for (index = 0; smb_proto_options[index].name != NULL; index++) { 9675331Samw value = smb_config_getenv(smb_proto_options[index].smb_index); 9685331Samw prop = sa_create_property( 9695454Sdougm smb_proto_options[index].name, value != NULL ? value : ""); 9705454Sdougm if (value != NULL) 9715454Sdougm free(value); 9725454Sdougm if (prop != NULL) 9735454Sdougm (void) sa_add_protocol_property(protoset, prop); 9745331Samw } 9755331Samw return (SA_OK); 9765331Samw } 9775331Samw 9785331Samw /* 9795331Samw * smb_share_init() 9805331Samw * 9815331Samw * Initialize the smb plugin. 9825331Samw */ 9835331Samw 9845331Samw static int 9855331Samw smb_share_init(void) 9865331Samw { 9875331Samw int ret = SA_OK; 9885331Samw 9895331Samw if (sa_plugin_ops.sa_init != smb_share_init) 9905331Samw return (SA_SYSTEM_ERR); 9915331Samw 9925331Samw if (smb_load_proto_properties() != SA_OK) 9935331Samw return (SA_SYSTEM_ERR); 9945331Samw 9955331Samw return (ret); 9965331Samw } 9975331Samw 9985331Samw /* 9995331Samw * smb_share_fini() 10005331Samw * 10015331Samw */ 10025331Samw static void 10035331Samw smb_share_fini(void) 10045331Samw { 10055331Samw xmlFreeNode(protoset); 10065331Samw protoset = NULL; 10075331Samw } 10085331Samw 10095331Samw /* 10105331Samw * smb_get_proto_set() 10115331Samw * 10125331Samw * Return an optionset with all the protocol specific properties in 10135331Samw * it. 10145331Samw */ 10155331Samw static sa_protocol_properties_t 10165331Samw smb_get_proto_set(void) 10175331Samw { 10185331Samw return (protoset); 10195331Samw } 10205331Samw 10215331Samw /* 10225331Samw * How long to wait for service to come online 10235331Samw */ 10245331Samw #define WAIT_FOR_SERVICE 15 10255331Samw 10265331Samw /* 10275331Samw * smb_enable_service() 10285331Samw * 10295331Samw */ 10305331Samw static int 10315331Samw smb_enable_service(void) 10325331Samw { 10335331Samw int i; 10345331Samw int ret = SA_OK; 10355331Samw 10365331Samw if (!smb_isonline()) { 10375331Samw if (smf_enable_instance(SMBD_DEFAULT_INSTANCE_FMRI, 0) != 0) { 10385331Samw (void) fprintf(stderr, 10395331Samw dgettext(TEXT_DOMAIN, 10405331Samw "%s failed to restart: %s\n"), 1041*5521Sas200622 SMBD_DEFAULT_INSTANCE_FMRI, 10425331Samw scf_strerror(scf_error())); 10435331Samw return (SA_CONFIG_ERR); 10445331Samw } 10455331Samw 10465331Samw /* Wait for service to come online */ 10475331Samw for (i = 0; i < WAIT_FOR_SERVICE; i++) { 10485331Samw if (smb_isonline()) { 10495331Samw ret = SA_OK; 10505331Samw break; 10515331Samw } else { 10525331Samw ret = SA_BUSY; 10535331Samw (void) sleep(1); 10545331Samw } 10555331Samw } 10565331Samw } 10575331Samw return (ret); 10585331Samw } 10595331Samw 10605331Samw /* 10615331Samw * smb_validate_proto_prop(index, name, value) 10625331Samw * 10635331Samw * Verify that the property specified by name can take the new 10645331Samw * value. This is a sanity check to prevent bad values getting into 10655331Samw * the default files. 10665331Samw */ 10675331Samw static int 10685331Samw smb_validate_proto_prop(int index, char *name, char *value) 10695331Samw { 10705331Samw if ((name == NULL) || (index < 0)) 10715331Samw return (SA_BAD_VALUE); 10725331Samw 10735331Samw if (smb_proto_options[index].validator == NULL) 10745331Samw return (SA_OK); 10755331Samw 10765331Samw if (smb_proto_options[index].validator(index, value) == SA_OK) 10775331Samw return (SA_OK); 10785331Samw return (SA_BAD_VALUE); 10795331Samw } 10805331Samw 10815331Samw /* 1082*5521Sas200622 * smb_domain_change_event 1083*5521Sas200622 * 1084*5521Sas200622 * This function is called whenever ads_domain is changed via sharectl. 1085*5521Sas200622 * It will make a door call to trigger the ADS domain change event. 1086*5521Sas200622 */ 1087*5521Sas200622 static int 1088*5521Sas200622 smb_domain_change_event(char *new_domain) 1089*5521Sas200622 { 1090*5521Sas200622 char *orig_domain; 1091*5521Sas200622 int rc = SA_OK; 1092*5521Sas200622 1093*5521Sas200622 orig_domain = smb_config_getenv(SMB_CI_ADS_DOMAIN); 1094*5521Sas200622 if (orig_domain == NULL) 1095*5521Sas200622 return (rc); 1096*5521Sas200622 1097*5521Sas200622 if (strcasecmp(orig_domain, new_domain) == 0) { 1098*5521Sas200622 free(orig_domain); 1099*5521Sas200622 return (rc); 1100*5521Sas200622 } 1101*5521Sas200622 1102*5521Sas200622 if (!smb_isonline()) { 1103*5521Sas200622 free(orig_domain); 1104*5521Sas200622 return (SA_NO_SERVICE); 1105*5521Sas200622 } 1106*5521Sas200622 1107*5521Sas200622 /* 1108*5521Sas200622 * Clear the ADS_HOST_INFO cache 1109*5521Sas200622 * and remove old keys from the 1110*5521Sas200622 * Kerberos keytab. 1111*5521Sas200622 */ 1112*5521Sas200622 if (smb_ads_domain_change_notify(orig_domain) != 0) 1113*5521Sas200622 rc = SA_KRB_KEYTAB_ERR; 1114*5521Sas200622 1115*5521Sas200622 free(orig_domain); 1116*5521Sas200622 return (rc); 1117*5521Sas200622 } 1118*5521Sas200622 1119*5521Sas200622 1120*5521Sas200622 /* 11215331Samw * smb_set_proto_prop(prop) 11225331Samw * 11235331Samw * check that prop is valid. 11245331Samw */ 11255331Samw /*ARGSUSED*/ 11265331Samw static int 11275331Samw smb_set_proto_prop(sa_property_t prop) 11285331Samw { 11295331Samw int ret = SA_OK; 11305331Samw char *name; 11315331Samw char *value; 11325331Samw int index = -1; 1133*5521Sas200622 struct smb_proto_option_defs *opt; 11345331Samw 11355331Samw name = sa_get_property_attr(prop, "type"); 11365331Samw value = sa_get_property_attr(prop, "value"); 11375331Samw if (name != NULL && value != NULL) { 11385331Samw index = findprotoopt(name); 11395331Samw if (index >= 0) { 11405331Samw /* should test for valid value */ 11415331Samw ret = smb_validate_proto_prop(index, name, value); 11425331Samw if (ret == SA_OK) { 1143*5521Sas200622 opt = &smb_proto_options[index]; 1144*5521Sas200622 if ((opt->smb_index == SMB_CI_ADS_DOMAIN) && 1145*5521Sas200622 (ret = smb_domain_change_event(value)) 1146*5521Sas200622 != SA_OK) 1147*5521Sas200622 goto cleanup; 1148*5521Sas200622 11495331Samw /* Save to SMF */ 1150*5521Sas200622 smb_config_setenv(opt->smb_index, value); 11515331Samw /* 11525331Samw * Specialized refresh mechanisms can 11535331Samw * be flagged in the proto_options and 11545331Samw * processed here. 11555331Samw */ 1156*5521Sas200622 if (opt->refresh & SMB_REFRESH_REFRESH) 1157*5521Sas200622 (void) smb_config_refresh(); 1158*5521Sas200622 else if (opt->refresh & SMB_REFRESH_RESTART) 11595331Samw (void) smf_restart_instance( 11605331Samw SMBD_DEFAULT_INSTANCE_FMRI); 11615331Samw } 11625331Samw } 11635331Samw } 1164*5521Sas200622 1165*5521Sas200622 cleanup: 11665331Samw if (name != NULL) 11675331Samw sa_free_attr_string(name); 11685331Samw if (value != NULL) 11695331Samw sa_free_attr_string(value); 11705331Samw 11715331Samw return (ret); 11725331Samw } 11735331Samw 11745331Samw /* 11755331Samw * smb_get_status() 11765331Samw * 11775331Samw * What is the current status of the smbd? We use the SMF state here. 11785331Samw * Caller must free the returned value. 11795331Samw */ 11805331Samw 11815331Samw static char * 11825331Samw smb_get_status(void) 11835331Samw { 11845331Samw char *state = NULL; 11855331Samw state = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI); 11865331Samw return (state != NULL ? state : "-"); 11875331Samw } 11885331Samw 11895331Samw /* 11905331Samw * This protocol plugin require resource names 11915331Samw */ 11925331Samw static uint64_t 11935331Samw smb_share_features(void) 11945331Samw { 11955331Samw return (SA_FEATURE_RESOURCE | SA_FEATURE_ALLOWSUBDIRS | 11965331Samw SA_FEATURE_ALLOWPARDIRS); 11975331Samw } 11985331Samw 11995331Samw /* 12005331Samw * This should be used to convert lmshare_info to sa_resource_t 12015331Samw * Should only be needed to build temp shares/resources to be 12025331Samw * supplied to sharemanager to display temp shares. 12035331Samw */ 12045331Samw static int 12055331Samw smb_build_tmp_sa_resource(sa_handle_t handle, lmshare_info_t *si) 12065331Samw { 12075331Samw int err; 12085331Samw sa_share_t share; 12095331Samw sa_group_t group; 12105331Samw sa_resource_t resource; 12115331Samw 12125331Samw if (si == NULL) 12135331Samw return (SA_INVALID_NAME); 12145331Samw 12155331Samw /* 12165331Samw * First determine if the "share path" is already shared 12175331Samw * somewhere. If it is, we have to use it as the authority on 12185331Samw * where the transient share lives so will use it's parent 12195331Samw * group. If it doesn't exist, it needs to land in "smb". 12205331Samw */ 12215331Samw 12225331Samw share = sa_find_share(handle, si->directory); 12235331Samw if (share != NULL) { 12245331Samw group = sa_get_parent_group(share); 12255331Samw } else { 12265331Samw group = smb_get_smb_share_group(handle); 12275331Samw if (group == NULL) 12285331Samw return (SA_NO_SUCH_GROUP); 12295331Samw share = sa_get_share(group, si->directory); 12305331Samw if (share == NULL) { 12315331Samw share = sa_add_share(group, si->directory, 12325331Samw SA_SHARE_TRANSIENT, &err); 12335331Samw if (share == NULL) 12345331Samw return (SA_NO_SUCH_PATH); 12355331Samw } 12365331Samw } 12375331Samw 12385331Samw /* 12395331Samw * Now handle the resource. Make sure that the resource is 12405331Samw * transient and added to the share. 12415331Samw */ 12425331Samw resource = sa_get_share_resource(share, si->share_name); 12435331Samw if (resource == NULL) { 12445331Samw resource = sa_add_resource(share, 12455331Samw si->share_name, SA_SHARE_TRANSIENT, &err); 12465331Samw if (resource == NULL) 12475331Samw return (SA_NO_SUCH_RESOURCE); 12485331Samw } 12495331Samw 12505331Samw /* set resource attributes now */ 12515331Samw (void) sa_set_resource_attr(resource, "description", si->comment); 12525331Samw (void) sa_set_resource_attr(resource, SHOPT_AD_CONTAINER, 12535331Samw si->container); 12545331Samw 12555331Samw return (SA_OK); 12565331Samw } 12575331Samw 12585331Samw /* 12595331Samw * Return smb transient shares. Note that we really want to look at 12605331Samw * all current shares from SMB in order to determine this. Transient 12615331Samw * shares should be those that don't appear in either the SMF or ZFS 12625331Samw * configurations. Those that are in the repositories will be 12635331Samw * filtered out by smb_build_tmp_sa_resource. 12645331Samw */ 12655331Samw static int 12665331Samw smb_list_transient(sa_handle_t handle) 12675331Samw { 12685331Samw int i, offset, num; 12695331Samw lmshare_list_t list; 12705331Samw int res; 12715331Samw 12725331Samw num = lmshrd_num_shares(); 12735331Samw if (num <= 0) 12745331Samw return (SA_OK); 12755331Samw offset = 0; 12765331Samw while (lmshrd_list(offset, &list) != NERR_InternalError) { 12775331Samw if (list.no == 0) 12785331Samw break; 12795331Samw for (i = 0; i < list.no; i++) { 12805331Samw res = smb_build_tmp_sa_resource(handle, 12815331Samw &(list.smbshr[i])); 12825331Samw if (res != SA_OK) 12835331Samw return (res); 12845331Samw } 12855331Samw offset += list.no; 12865331Samw } 12875331Samw 12885331Samw return (SA_OK); 12895331Samw } 12905331Samw 12915331Samw /* 12925331Samw * fix_resource_name(share, name, prefix) 12935331Samw * 12945331Samw * Construct a name where the ZFS dataset has the prefix replaced with "name". 12955331Samw */ 12965331Samw static char * 12975331Samw fix_resource_name(sa_share_t share, char *name, char *prefix) 12985331Samw { 12995331Samw char *dataset = NULL; 13005331Samw char *newname = NULL; 13015331Samw size_t psize; 13025331Samw size_t nsize; 13035331Samw 13045331Samw dataset = sa_get_share_attr(share, "dataset"); 13055331Samw 13065331Samw if (dataset != NULL && strcmp(dataset, prefix) != 0) { 13075331Samw psize = strlen(prefix); 13085331Samw if (strncmp(dataset, prefix, psize) == 0) { 13095331Samw /* need string plus ',' and NULL */ 13105331Samw nsize = (strlen(dataset) - psize) + strlen(name) + 2; 13115331Samw newname = calloc(nsize, 1); 13125331Samw if (newname != NULL) { 13135331Samw (void) snprintf(newname, nsize, "%s%s", name, 13145331Samw dataset + psize); 13155331Samw sa_fix_resource_name(newname); 13165331Samw } 13175331Samw sa_free_attr_string(dataset); 13185331Samw return (newname); 13195331Samw } 13205331Samw } 13215331Samw if (dataset != NULL) 13225331Samw sa_free_attr_string(dataset); 13235331Samw return (strdup(name)); 13245331Samw } 13255331Samw 13265331Samw /* 13275331Samw * smb_parse_optstring(group, options) 13285331Samw * 13295331Samw * parse a compact option string into individual options. This allows 13305331Samw * ZFS sharesmb and sharemgr "share" command to work. group can be a 13315331Samw * group, a share or a resource. 13325331Samw */ 13335331Samw static int 13345331Samw smb_parse_optstring(sa_group_t group, char *options) 13355331Samw { 13365331Samw char *dup; 13375331Samw char *base; 13385331Samw char *lasts; 13395331Samw char *token; 13405331Samw sa_optionset_t optionset; 13415331Samw sa_group_t parent = NULL; 13425331Samw sa_resource_t resource = NULL; 13435331Samw int iszfs = 0; 13445331Samw int persist = 0; 13455331Samw int need_optionset = 0; 13465331Samw int ret = SA_OK; 13475331Samw sa_property_t prop; 13485331Samw 13495331Samw /* 13505331Samw * In order to not attempt to change ZFS properties unless 13515331Samw * absolutely necessary, we never do it in the legacy parsing 13525331Samw * so we need to keep track of this. 13535331Samw */ 13545331Samw if (sa_is_share(group)) { 13555331Samw char *zfs; 13565331Samw 13575331Samw parent = sa_get_parent_group(group); 13585331Samw if (parent != NULL) { 13595331Samw zfs = sa_get_group_attr(parent, "zfs"); 13605331Samw if (zfs != NULL) { 13615331Samw sa_free_attr_string(zfs); 13625331Samw iszfs = 1; 13635331Samw } 13645331Samw } 13655331Samw } else { 13665331Samw iszfs = sa_group_is_zfs(group); 13675331Samw /* 13685331Samw * If a ZFS group, then we need to see if a resource 13695331Samw * name is being set. If so, bail with 13705331Samw * SA_PROP_SHARE_ONLY, so we come back in with a share 13715331Samw * instead of a group. 13725331Samw */ 13735331Samw if (strncmp(options, "name=", sizeof ("name=") - 1) == 0 || 13745331Samw strstr(options, ",name=") != NULL) { 13755331Samw return (SA_PROP_SHARE_ONLY); 13765331Samw } 13775331Samw } 13785331Samw 13795331Samw /* do we have an existing optionset? */ 13805331Samw optionset = sa_get_optionset(group, "smb"); 13815331Samw if (optionset == NULL) { 13825331Samw /* didn't find existing optionset so create one */ 13835331Samw optionset = sa_create_optionset(group, "smb"); 13845331Samw if (optionset == NULL) 13855331Samw return (SA_NO_MEMORY); 13865331Samw } else { 13875331Samw /* 13885331Samw * If an optionset already exists, we've come through 13895331Samw * twice so ignore the second time. 13905331Samw */ 13915331Samw return (ret); 13925331Samw } 13935331Samw 13945331Samw /* We need a copy of options for the next part. */ 13955331Samw dup = strdup(options); 13965331Samw if (dup == NULL) 13975331Samw return (SA_NO_MEMORY); 13985331Samw 13995331Samw /* 14005331Samw * SMB properties are straightforward and are strings, 14015331Samw * integers or booleans. Properties are separated by 14025331Samw * commas. It will be necessary to parse quotes due to some 14035331Samw * strings not having a restricted characters set. 14045331Samw * 14055331Samw * Note that names will create a resource. For now, if there 14065331Samw * is a set of properties "before" the first name="", those 14075331Samw * properties will be placed on the group. 14085331Samw */ 14095331Samw persist = sa_is_persistent(group); 14105331Samw base = dup; 14115331Samw token = dup; 14125331Samw lasts = NULL; 14135331Samw while (token != NULL && ret == SA_OK) { 14145331Samw ret = SA_OK; 14155331Samw token = strtok_r(base, ",", &lasts); 14165331Samw base = NULL; 14175331Samw if (token != NULL) { 14185331Samw char *value; 14195331Samw /* 14205331Samw * All SMB properties have values so there 14215331Samw * MUST be an '=' character. If it doesn't, 14225331Samw * it is a syntax error. 14235331Samw */ 14245331Samw value = strchr(token, '='); 14255331Samw if (value != NULL) { 14265331Samw *value++ = '\0'; 14275331Samw } else { 14285331Samw ret = SA_SYNTAX_ERR; 14295331Samw break; 14305331Samw } 14315331Samw /* 14325331Samw * We may need to handle a "name" property 14335331Samw * that is a ZFS imposed resource name. Each 14345331Samw * name would trigger getting a new "resource" 14355331Samw * to put properties on. For now, assume no 14365331Samw * "name" property for special handling. 14375331Samw */ 14385331Samw 14395331Samw if (strcmp(token, "name") == 0) { 14405331Samw char *prefix; 14415331Samw char *name = NULL; 14425331Samw /* 14435331Samw * We have a name, so now work on the 14445331Samw * resource level. We have a "share" 14455331Samw * in "group" due to the caller having 14465331Samw * added it. If we are called with a 14475331Samw * group, the check for group/share 14485331Samw * at the beginning of this function 14495331Samw * will bail out the parse if there is a 14505331Samw * "name" but no share. 14515331Samw */ 14525331Samw if (!iszfs) { 14535331Samw ret = SA_SYNTAX_ERR; 14545331Samw break; 14555331Samw } 14565331Samw /* 14575331Samw * Make sure the parent group has the 14585331Samw * "prefix" property since we will 14595331Samw * need to use this for constructing 14605331Samw * inherited name= values. 14615331Samw */ 14625331Samw prefix = sa_get_group_attr(parent, "prefix"); 14635331Samw if (prefix == NULL) { 14645331Samw prefix = sa_get_group_attr(parent, 14655331Samw "name"); 14665331Samw if (prefix != NULL) { 14675331Samw (void) sa_set_group_attr(parent, 14685331Samw "prefix", prefix); 14695331Samw } 14705331Samw } 14715331Samw name = fix_resource_name((sa_share_t)group, 14725331Samw value, prefix); 14735331Samw if (name != NULL) { 14745331Samw resource = sa_add_resource( 14755331Samw (sa_share_t)group, name, 14765331Samw SA_SHARE_TRANSIENT, &ret); 14775331Samw sa_free_attr_string(name); 14785331Samw } else { 14795331Samw ret = SA_NO_MEMORY; 14805331Samw } 14815331Samw if (prefix != NULL) 14825331Samw sa_free_attr_string(prefix); 14835331Samw 14845331Samw /* A resource level optionset is needed */ 14855331Samw 14865331Samw need_optionset = 1; 14875331Samw if (resource == NULL) { 14885331Samw ret = SA_NO_MEMORY; 14895331Samw break; 14905331Samw } 14915331Samw continue; 14925331Samw } 14935331Samw 14945331Samw if (need_optionset) { 14955331Samw optionset = sa_create_optionset(resource, 14965331Samw "smb"); 14975331Samw need_optionset = 0; 14985331Samw } 14995331Samw 15005331Samw prop = sa_create_property(token, value); 15015331Samw if (prop == NULL) 15025331Samw ret = SA_NO_MEMORY; 15035331Samw else 15045331Samw ret = sa_add_property(optionset, prop); 15055331Samw if (ret != SA_OK) 15065331Samw break; 15075331Samw if (!iszfs) 15085331Samw ret = sa_commit_properties(optionset, !persist); 15095331Samw } 15105331Samw } 15115331Samw free(dup); 15125331Samw return (ret); 15135331Samw } 15145331Samw 15155331Samw /* 15165331Samw * smb_sprint_option(rbuff, rbuffsize, incr, prop, sep) 15175331Samw * 15185331Samw * provides a mechanism to format SMB properties into legacy output 15195331Samw * format. If the buffer would overflow, it is reallocated and grown 15205331Samw * as appropriate. Special cases of converting internal form of values 15215331Samw * to those used by "share" are done. this function does one property 15225331Samw * at a time. 15235331Samw */ 15245331Samw 15255331Samw static void 15265331Samw smb_sprint_option(char **rbuff, size_t *rbuffsize, size_t incr, 15275331Samw sa_property_t prop, int sep) 15285331Samw { 15295331Samw char *name; 15305331Samw char *value; 15315331Samw int curlen; 15325331Samw char *buff = *rbuff; 15335331Samw size_t buffsize = *rbuffsize; 15345331Samw 15355331Samw name = sa_get_property_attr(prop, "type"); 15365331Samw value = sa_get_property_attr(prop, "value"); 15375331Samw if (buff != NULL) 15385331Samw curlen = strlen(buff); 15395331Samw else 15405331Samw curlen = 0; 15415331Samw if (name != NULL) { 15425331Samw int len; 15435331Samw len = strlen(name) + sep; 15445331Samw 15455331Samw /* 15465331Samw * A future RFE would be to replace this with more 15475331Samw * generic code and to possibly handle more types. 15485331Samw * 15495331Samw * For now, everything else is treated as a string. If 15505331Samw * we get any properties that aren't exactly 15515331Samw * name/value pairs, we may need to 15525331Samw * interpret/transform. 15535331Samw */ 15545331Samw if (value != NULL) 15555331Samw len += 1 + strlen(value); 15565331Samw 15575331Samw while (buffsize <= (curlen + len)) { 15585331Samw /* need more room */ 15595331Samw buffsize += incr; 15605331Samw buff = realloc(buff, buffsize); 15615331Samw *rbuff = buff; 15625331Samw *rbuffsize = buffsize; 15635331Samw if (buff == NULL) { 15645331Samw /* realloc failed so free everything */ 15655331Samw if (*rbuff != NULL) 15665331Samw free(*rbuff); 15675331Samw goto err; 15685331Samw } 15695331Samw } 15705331Samw if (buff == NULL) 15715331Samw goto err; 15725331Samw (void) snprintf(buff + curlen, buffsize - curlen, 15735331Samw "%s%s=%s", sep ? "," : "", 15745331Samw name, value != NULL ? value : "\"\""); 15755331Samw 15765331Samw } 15775331Samw err: 15785331Samw if (name != NULL) 15795331Samw sa_free_attr_string(name); 15805331Samw if (value != NULL) 15815331Samw sa_free_attr_string(value); 15825331Samw } 15835331Samw 15845331Samw /* 15855331Samw * smb_format_resource_options(resource, hier) 15865331Samw * 15875331Samw * format all the options on the group into a flattened option 15885331Samw * string. If hier is non-zero, walk up the tree to get inherited 15895331Samw * options. 15905331Samw */ 15915331Samw 15925331Samw static char * 15935331Samw smb_format_options(sa_group_t group, int hier) 15945331Samw { 15955331Samw sa_optionset_t options = NULL; 15965331Samw sa_property_t prop; 15975331Samw int sep = 0; 15985331Samw char *buff; 15995331Samw size_t buffsize; 16005331Samw 16015331Samw 16025331Samw buff = malloc(OPT_CHUNK); 16035331Samw if (buff == NULL) 16045331Samw return (NULL); 16055331Samw 16065331Samw buff[0] = '\0'; 16075331Samw buffsize = OPT_CHUNK; 16085331Samw 16095331Samw /* 16105331Samw * We may have a an optionset relative to this item. format 16115331Samw * these if we find them and then add any security definitions. 16125331Samw */ 16135331Samw 16145331Samw options = sa_get_derived_optionset(group, "smb", hier); 16155331Samw 16165331Samw /* 16175331Samw * do the default set first but skip any option that is also 16185331Samw * in the protocol specific optionset. 16195331Samw */ 16205331Samw if (options != NULL) { 16215331Samw for (prop = sa_get_property(options, NULL); 16225331Samw prop != NULL; prop = sa_get_next_property(prop)) { 16235331Samw /* 16245331Samw * use this one since we skipped any 16255331Samw * of these that were also in 16265331Samw * optdefault 16275331Samw */ 16285331Samw smb_sprint_option(&buff, &buffsize, OPT_CHUNK, 16295331Samw prop, sep); 16305331Samw if (buff == NULL) { 16315331Samw /* 16325331Samw * buff could become NULL if there 16335331Samw * isn't enough memory for 16345331Samw * smb_sprint_option to realloc() 16355331Samw * as necessary. We can't really 16365331Samw * do anything about it at this 16375331Samw * point so we return NULL. The 16385331Samw * caller should handle the 16395331Samw * failure. 16405331Samw */ 16415331Samw if (options != NULL) 16425331Samw sa_free_derived_optionset( 16435331Samw options); 16445331Samw return (buff); 16455331Samw } 16465331Samw sep = 1; 16475331Samw } 16485331Samw } 16495331Samw 16505331Samw if (options != NULL) 16515331Samw sa_free_derived_optionset(options); 16525331Samw return (buff); 16535331Samw } 16545331Samw 16555331Samw /* 16565331Samw * smb_rename_resource(resource, newname) 16575331Samw * 16585331Samw * Change the current exported name of the resource to newname. 16595331Samw */ 16605331Samw /*ARGSUSED*/ 16615331Samw int 16625331Samw smb_rename_resource(sa_handle_t handle, sa_resource_t resource, char *newname) 16635331Samw { 16645331Samw int ret = SA_OK; 16655331Samw int err; 16665331Samw char *oldname; 16675331Samw 16685331Samw oldname = sa_get_resource_attr(resource, "name"); 16695331Samw if (oldname == NULL) 16705331Samw return (SA_NO_SUCH_RESOURCE); 16715331Samw 16725331Samw err = lmshrd_rename(oldname, newname); 16735331Samw 16745331Samw /* improve error values somewhat */ 16755331Samw switch (err) { 16765331Samw case NERR_Success: 16775331Samw break; 16785331Samw case NERR_InternalError: 16795331Samw ret = SA_SYSTEM_ERR; 16805331Samw break; 16815331Samw case NERR_DuplicateShare: 16825331Samw ret = SA_DUPLICATE_NAME; 16835331Samw break; 16845331Samw default: 16855331Samw ret = SA_CONFIG_ERR; 16865331Samw break; 16875331Samw } 16885331Samw 16895331Samw return (ret); 16905331Samw } 1691