15331Samw /* 25331Samw * CDDL HEADER START 35331Samw * 45331Samw * The contents of this file are subject to the terms of the 55331Samw * Common Development and Distribution License (the "License"). 65331Samw * You may not use this file except in compliance with the License. 75331Samw * 85331Samw * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 95331Samw * or http://www.opensolaris.org/os/licensing. 105331Samw * See the License for the specific language governing permissions 115331Samw * and limitations under the License. 125331Samw * 135331Samw * When distributing Covered Code, include this CDDL HEADER in each 145331Samw * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 155331Samw * If applicable, add the following below this CDDL HEADER, with the 165331Samw * fields enclosed by brackets "[]" replaced with your own identifying 175331Samw * information: Portions Copyright [yyyy] [name of copyright owner] 185331Samw * 195331Samw * CDDL HEADER END 205331Samw */ 215331Samw 225331Samw /* 235772Sas200622 * Copyright 2008 Sun Microsystems, Inc. All rights reserved. 245331Samw * Use is subject to license terms. 255331Samw */ 265331Samw 275331Samw /* 285331Samw * SMB specific functions 295331Samw */ 305331Samw #include <stdio.h> 315331Samw #include <string.h> 325331Samw #include <ctype.h> 335331Samw #include <stdlib.h> 345331Samw #include <unistd.h> 355331Samw #include <zone.h> 365331Samw #include <errno.h> 375331Samw #include <locale.h> 385331Samw #include <fcntl.h> 395331Samw #include <sys/types.h> 405331Samw #include <sys/stat.h> 415331Samw #include <syslog.h> 425331Samw #include "libshare.h" 435331Samw #include "libshare_impl.h" 445331Samw #include <pwd.h> 455331Samw #include <limits.h> 465331Samw #include <libscf.h> 475331Samw #include <strings.h> 485331Samw #include "libshare_smb.h" 495331Samw #include <rpcsvc/daemon_utils.h> 507052Samw #include <smbsrv/smb_share.h> 515331Samw #include <smbsrv/smbinfo.h> 525331Samw #include <smbsrv/libsmb.h> 53*8334SJose.Borrego@Sun.COM #include <libdlpi.h> 54*8334SJose.Borrego@Sun.COM 55*8334SJose.Borrego@Sun.COM #define SMB_CSC_BUFSZ 64 565331Samw 575331Samw /* internal functions */ 585331Samw static int smb_share_init(void); 595331Samw static void smb_share_fini(void); 605331Samw static int smb_enable_share(sa_share_t); 615331Samw static int smb_share_changed(sa_share_t); 625331Samw static int smb_resource_changed(sa_resource_t); 635331Samw static int smb_rename_resource(sa_handle_t, sa_resource_t, char *); 645331Samw static int smb_disable_share(sa_share_t share, char *); 656214Sdougm static int smb_validate_property(sa_handle_t, sa_property_t, sa_optionset_t); 665331Samw static int smb_set_proto_prop(sa_property_t); 675331Samw static sa_protocol_properties_t smb_get_proto_set(void); 685331Samw static char *smb_get_status(void); 695331Samw static int smb_parse_optstring(sa_group_t, char *); 705331Samw static char *smb_format_options(sa_group_t, int); 715331Samw 725331Samw static int smb_enable_service(void); 735331Samw 745331Samw static int range_check_validator(int, char *); 755331Samw static int range_check_validator_zero_ok(int, char *); 765331Samw static int string_length_check_validator(int, char *); 775331Samw static int true_false_validator(int, char *); 785331Samw static int ip_address_validator_empty_ok(int, char *); 795331Samw static int path_validator(int, char *); 805331Samw 815331Samw static int smb_enable_resource(sa_resource_t); 825331Samw static int smb_disable_resource(sa_resource_t); 835331Samw static uint64_t smb_share_features(void); 845331Samw static int smb_list_transient(sa_handle_t); 855772Sas200622 867348SJose.Borrego@Sun.COM static int smb_build_shareinfo(sa_share_t, sa_resource_t, smb_share_t *); 87*8334SJose.Borrego@Sun.COM static void smb_csc_option(const char *, smb_share_t *); 887348SJose.Borrego@Sun.COM static sa_group_t smb_get_defaultgrp(sa_handle_t); 89*8334SJose.Borrego@Sun.COM static int interface_validator(int, char *); 907348SJose.Borrego@Sun.COM 915331Samw /* size of basic format allocation */ 925331Samw #define OPT_CHUNK 1024 935331Samw 945772Sas200622 /* size of string for types - big enough to hold "dependency" */ 955772Sas200622 #define SCFTYPE_LEN 32 965772Sas200622 975331Samw /* 985331Samw * Indexes of entries in smb_proto_options table. 995331Samw * Changes to smb_proto_options table may require 1005331Samw * an update to these values. 1015331Samw */ 1025331Samw #define PROTO_OPT_WINS1 6 1035331Samw #define PROTO_OPT_WINS_EXCLUDE 8 1045331Samw 105*8334SJose.Borrego@Sun.COM typedef struct smb_hostifs_walker { 106*8334SJose.Borrego@Sun.COM const char *hiw_ifname; 107*8334SJose.Borrego@Sun.COM boolean_t hiw_matchfound; 108*8334SJose.Borrego@Sun.COM } smb_hostifs_walker_t; 109*8334SJose.Borrego@Sun.COM 1105331Samw 1115331Samw /* 1125331Samw * ops vector that provides the protocol specific info and operations 1135331Samw * for share management. 1145331Samw */ 1155331Samw 1165331Samw struct sa_plugin_ops sa_plugin_ops = { 1175331Samw SA_PLUGIN_VERSION, 1185331Samw SMB_PROTOCOL_NAME, 1195331Samw smb_share_init, 1205331Samw smb_share_fini, 1215331Samw smb_enable_share, 1225331Samw smb_disable_share, 1235331Samw smb_validate_property, 1246007Sthurlow NULL, /* valid_space */ 1256007Sthurlow NULL, /* security_prop */ 1265331Samw smb_parse_optstring, 1275331Samw smb_format_options, 1285331Samw smb_set_proto_prop, 1295331Samw smb_get_proto_set, 1305331Samw smb_get_status, 1316007Sthurlow NULL, /* space_alias */ 1326007Sthurlow NULL, /* update_legacy */ 1336007Sthurlow NULL, /* delete_legacy */ 1345331Samw smb_share_changed, 1355331Samw smb_enable_resource, 1365331Samw smb_disable_resource, 1375331Samw smb_share_features, 1385331Samw smb_list_transient, 1395331Samw smb_resource_changed, 1405331Samw smb_rename_resource, 1416007Sthurlow NULL, /* run_command */ 1426007Sthurlow NULL, /* command_help */ 1436007Sthurlow NULL /* delete_proto_section */ 1445331Samw }; 1455331Samw 1465331Samw struct option_defs optdefs[] = { 147*8334SJose.Borrego@Sun.COM { SHOPT_AD_CONTAINER, OPT_TYPE_STRING }, 148*8334SJose.Borrego@Sun.COM { SHOPT_NAME, OPT_TYPE_NAME }, 149*8334SJose.Borrego@Sun.COM { SHOPT_RO, OPT_TYPE_ACCLIST }, 150*8334SJose.Borrego@Sun.COM { SHOPT_RW, OPT_TYPE_ACCLIST }, 151*8334SJose.Borrego@Sun.COM { SHOPT_NONE, OPT_TYPE_ACCLIST }, 152*8334SJose.Borrego@Sun.COM { SHOPT_CSC, OPT_TYPE_CSC }, 153*8334SJose.Borrego@Sun.COM { NULL, NULL } 1545331Samw }; 1555331Samw 1565331Samw /* 1575331Samw * findopt(name) 1585331Samw * 1595331Samw * Lookup option "name" in the option table and return the table 1605331Samw * index. 1615331Samw */ 1625331Samw static int 1635331Samw findopt(char *name) 1645331Samw { 1655331Samw int i; 1665331Samw if (name != NULL) { 1675331Samw for (i = 0; optdefs[i].tag != NULL; i++) { 1685331Samw if (strcmp(optdefs[i].tag, name) == 0) 1695331Samw return (i); 1705331Samw } 1715331Samw } 1725331Samw return (-1); 1735331Samw } 1745331Samw 1755331Samw /* 1765331Samw * is_a_number(number) 1775331Samw * 1785331Samw * is the string a number in one of the forms we want to use? 1795331Samw */ 1807348SJose.Borrego@Sun.COM static boolean_t 1815331Samw is_a_number(char *number) 1825331Samw { 1837348SJose.Borrego@Sun.COM boolean_t isnum = B_TRUE; 1847348SJose.Borrego@Sun.COM boolean_t ishex = B_FALSE; 1857348SJose.Borrego@Sun.COM 1867348SJose.Borrego@Sun.COM if (number == NULL || *number == '\0') 1877348SJose.Borrego@Sun.COM return (B_FALSE); 1885331Samw 1897348SJose.Borrego@Sun.COM if (strncasecmp(number, "0x", 2) == 0) { 1905331Samw number += 2; 1917348SJose.Borrego@Sun.COM ishex = B_TRUE; 1925331Samw } else if (*number == '-') { 1937348SJose.Borrego@Sun.COM number++; 1945331Samw } 1955331Samw 1967348SJose.Borrego@Sun.COM while (isnum && (*number != '\0')) { 1977348SJose.Borrego@Sun.COM isnum = (ishex) ? isxdigit(*number) : isdigit(*number); 1987348SJose.Borrego@Sun.COM number++; 1995331Samw } 2007348SJose.Borrego@Sun.COM 2017348SJose.Borrego@Sun.COM return (isnum); 2025331Samw } 2035331Samw 2045331Samw /* 2057961SNatalie.Li@Sun.COM * check ro vs rw values. Over time this may get beefed up. 2067961SNatalie.Li@Sun.COM * for now it just does simple checks. 2077961SNatalie.Li@Sun.COM */ 2087961SNatalie.Li@Sun.COM 2097961SNatalie.Li@Sun.COM static int 2107961SNatalie.Li@Sun.COM check_rorw(char *v1, char *v2) 2117961SNatalie.Li@Sun.COM { 2127961SNatalie.Li@Sun.COM int ret = SA_OK; 2137961SNatalie.Li@Sun.COM if (strcmp(v1, v2) == 0) 2147961SNatalie.Li@Sun.COM ret = SA_VALUE_CONFLICT; 2157961SNatalie.Li@Sun.COM return (ret); 2167961SNatalie.Li@Sun.COM } 2177961SNatalie.Li@Sun.COM 2187961SNatalie.Li@Sun.COM /* 2195331Samw * validresource(name) 2205331Samw * 2215331Samw * Check that name only has valid characters in it. The current valid 2225331Samw * set are the printable characters but not including: 2235331Samw * " / \ [ ] : | < > + ; , ? * = \t 2245331Samw * Note that space is included and there is a maximum length. 2255331Samw */ 2267348SJose.Borrego@Sun.COM static boolean_t 2275331Samw validresource(const char *name) 2285331Samw { 2295331Samw const char *cp; 2305331Samw size_t len; 2315331Samw 2325331Samw if (name == NULL) 2335331Samw return (B_FALSE); 2345331Samw 2355331Samw len = strlen(name); 2365331Samw if (len == 0 || len > SA_MAX_RESOURCE_NAME) 2375331Samw return (B_FALSE); 2385331Samw 2395331Samw if (strpbrk(name, "\"/\\[]:|<>+;,?*=\t") != NULL) { 2405331Samw return (B_FALSE); 2415331Samw } 2425331Samw 2435331Samw for (cp = name; *cp != '\0'; cp++) 2445331Samw if (iscntrl(*cp)) 2455331Samw return (B_FALSE); 2465331Samw 2475331Samw return (B_TRUE); 2485331Samw } 2495331Samw 2505331Samw /* 251*8334SJose.Borrego@Sun.COM * Check that the client-side caching (CSC) option value is valid. 252*8334SJose.Borrego@Sun.COM */ 253*8334SJose.Borrego@Sun.COM static boolean_t 254*8334SJose.Borrego@Sun.COM validcsc(const char *value) 255*8334SJose.Borrego@Sun.COM { 256*8334SJose.Borrego@Sun.COM const char *cscopt[] = { "disabled", "manual", "auto", "vdo" }; 257*8334SJose.Borrego@Sun.COM int i; 258*8334SJose.Borrego@Sun.COM 259*8334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 260*8334SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i]) == 0) 261*8334SJose.Borrego@Sun.COM return (B_TRUE); 262*8334SJose.Borrego@Sun.COM } 263*8334SJose.Borrego@Sun.COM 264*8334SJose.Borrego@Sun.COM return (B_FALSE); 265*8334SJose.Borrego@Sun.COM } 266*8334SJose.Borrego@Sun.COM 267*8334SJose.Borrego@Sun.COM /* 2685331Samw * smb_isonline() 2695331Samw * 2705331Samw * Determine if the SMF service instance is in the online state or 2715331Samw * not. A number of operations depend on this state. 2725331Samw */ 2735331Samw static boolean_t 2745331Samw smb_isonline(void) 2755331Samw { 2765331Samw char *str; 2775331Samw boolean_t ret = B_FALSE; 2785331Samw 2795331Samw if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 2805331Samw ret = (strcmp(str, SCF_STATE_STRING_ONLINE) == 0); 2815331Samw free(str); 2825331Samw } 2835331Samw return (ret); 2845331Samw } 2855331Samw 2865331Samw /* 2875772Sas200622 * smb_isdisabled() 2885772Sas200622 * 2895772Sas200622 * Determine if the SMF service instance is in the disabled state or 2905772Sas200622 * not. A number of operations depend on this state. 2915772Sas200622 */ 2925772Sas200622 static boolean_t 2935772Sas200622 smb_isdisabled(void) 2945772Sas200622 { 2955772Sas200622 char *str; 2965772Sas200622 boolean_t ret = B_FALSE; 2975772Sas200622 2985772Sas200622 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 2995772Sas200622 ret = (strcmp(str, SCF_STATE_STRING_DISABLED) == 0); 3005772Sas200622 free(str); 3015772Sas200622 } 3025772Sas200622 return (ret); 3035772Sas200622 } 3045772Sas200622 3055772Sas200622 /* 3065772Sas200622 * smb_isautoenable() 3075772Sas200622 * 3085772Sas200622 * Determine if the SMF service instance auto_enabled set or not. A 3095772Sas200622 * number of operations depend on this state. The property not being 3105772Sas200622 * set or being set to true means autoenable. Only being set to false 3115772Sas200622 * is not autoenabled. 3125772Sas200622 */ 3135772Sas200622 static boolean_t 3145772Sas200622 smb_isautoenable(void) 3155772Sas200622 { 3165772Sas200622 boolean_t ret = B_TRUE; 3175772Sas200622 scf_simple_prop_t *prop; 3185772Sas200622 uint8_t *retstr; 3195772Sas200622 3205772Sas200622 prop = scf_simple_prop_get(NULL, SMBD_DEFAULT_INSTANCE_FMRI, 3215772Sas200622 "application", "auto_enable"); 3225772Sas200622 if (prop != NULL) { 3235772Sas200622 retstr = scf_simple_prop_next_boolean(prop); 3245772Sas200622 ret = *retstr != 0; 3255772Sas200622 scf_simple_prop_free(prop); 3265772Sas200622 } 3275772Sas200622 return (ret); 3285772Sas200622 } 3295772Sas200622 3305772Sas200622 /* 3316030Sjb150015 * smb_ismaint() 3326030Sjb150015 * 3336030Sjb150015 * Determine if the SMF service instance is in the disabled state or 3346030Sjb150015 * not. A number of operations depend on this state. 3356030Sjb150015 */ 3366030Sjb150015 static boolean_t 3376030Sjb150015 smb_ismaint(void) 3386030Sjb150015 { 3396030Sjb150015 char *str; 3406030Sjb150015 boolean_t ret = B_FALSE; 3416030Sjb150015 3426030Sjb150015 if ((str = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI)) != NULL) { 3436030Sjb150015 ret = (strcmp(str, SCF_STATE_STRING_MAINT) == 0); 3446030Sjb150015 free(str); 3456030Sjb150015 } 3466030Sjb150015 return (ret); 3476030Sjb150015 } 3486030Sjb150015 3496030Sjb150015 /* 3505331Samw * smb_enable_share tells the implementation that it is to enable the share. 3515331Samw * This entails converting the path and options into the appropriate ioctl 3525331Samw * calls. It is assumed that all error checking of paths, etc. were 3535331Samw * done earlier. 3545331Samw */ 3555331Samw static int 3565331Samw smb_enable_share(sa_share_t share) 3575331Samw { 3585331Samw char *path; 3597052Samw smb_share_t si; 3605331Samw sa_resource_t resource; 3615331Samw boolean_t iszfs; 3625331Samw boolean_t privileged; 3635331Samw int err = SA_OK; 3645331Samw priv_set_t *priv_effective; 3655331Samw boolean_t online; 3665331Samw 3676270Sdougm /* 3686270Sdougm * We only start in the global zone and only run if we aren't 3696270Sdougm * running Trusted Extensions. 3706270Sdougm */ 3716270Sdougm if (getzoneid() != GLOBAL_ZONEID) { 3726270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 3736270Sdougm "SMB: service not supported in local zone\n")); 3746270Sdougm return (SA_NOT_SUPPORTED); 3756270Sdougm } 3766270Sdougm if (is_system_labeled()) { 3776270Sdougm (void) printf(dgettext(TEXT_DOMAIN, 3786270Sdougm "SMB: service not supported with Trusted Extensions\n")); 3796270Sdougm return (SA_NOT_SUPPORTED); 3806270Sdougm } 3816270Sdougm 3825331Samw priv_effective = priv_allocset(); 3835331Samw (void) getppriv(PRIV_EFFECTIVE, priv_effective); 3845331Samw privileged = (priv_isfullset(priv_effective) == B_TRUE); 3855331Samw priv_freeset(priv_effective); 3865331Samw 3875331Samw /* get the path since it is important in several places */ 3885331Samw path = sa_get_share_attr(share, "path"); 3895331Samw if (path == NULL) 3905331Samw return (SA_NO_SUCH_PATH); 3915331Samw 3925772Sas200622 /* 3935772Sas200622 * If administratively disabled, don't try to start anything. 3945772Sas200622 */ 3955331Samw online = smb_isonline(); 3965772Sas200622 if (!online && !smb_isautoenable() && smb_isdisabled()) 3975772Sas200622 goto done; 3985331Samw 3995331Samw iszfs = sa_path_is_zfs(path); 4005331Samw 4015331Samw if (iszfs) { 4025331Samw 4035331Samw if (privileged == B_FALSE && !online) { 4045331Samw 4055331Samw if (!online) { 4065331Samw (void) printf(dgettext(TEXT_DOMAIN, 4075331Samw "SMB: Cannot share remove " 4085331Samw "file system: %s\n"), path); 4095331Samw (void) printf(dgettext(TEXT_DOMAIN, 4105331Samw "SMB: Service needs to be enabled " 4115331Samw "by a privileged user\n")); 4125331Samw err = SA_NO_PERMISSION; 4135331Samw errno = EPERM; 4145331Samw } 4155331Samw if (err) { 4165331Samw sa_free_attr_string(path); 4175331Samw return (err); 4185331Samw } 4195331Samw 4205331Samw } 4215331Samw } 4225331Samw 4235331Samw if (privileged == B_TRUE && !online) { 4245331Samw err = smb_enable_service(); 4255331Samw if (err != SA_OK) { 4265331Samw (void) printf(dgettext(TEXT_DOMAIN, 4275331Samw "SMB: Unable to enable service\n")); 4285331Samw /* 4295331Samw * For now, it is OK to not be able to enable 4305331Samw * the service. 4315331Samw */ 4326030Sjb150015 if (err == SA_BUSY || err == SA_SYSTEM_ERR) 4335331Samw err = SA_OK; 4345331Samw } else { 4355331Samw online = B_TRUE; 4365331Samw } 4375331Samw } 4385331Samw 4395331Samw /* 4405331Samw * Don't bother trying to start shares if the service isn't 4415331Samw * running. 4425331Samw */ 4435331Samw if (!online) 4445331Samw goto done; 4455331Samw 4465331Samw /* Each share can have multiple resources */ 4475331Samw for (resource = sa_get_share_resource(share, NULL); 4485331Samw resource != NULL; 4495331Samw resource = sa_get_next_resource(resource)) { 4507348SJose.Borrego@Sun.COM err = smb_build_shareinfo(share, resource, &si); 4517348SJose.Borrego@Sun.COM if (err != SA_OK) { 4525331Samw sa_free_attr_string(path); 4537348SJose.Borrego@Sun.COM return (err); 4545331Samw } 4555331Samw 4565331Samw if (!iszfs) { 4577348SJose.Borrego@Sun.COM err = smb_share_create(&si); 4585331Samw } else { 4595331Samw share_t sh; 4605331Samw 4615331Samw sa_sharetab_fill_zfs(share, &sh, "smb"); 4625331Samw err = sa_share_zfs(share, (char *)path, &sh, 4635331Samw &si, ZFS_SHARE_SMB); 4645331Samw 4655331Samw sa_emptyshare(&sh); 4665331Samw } 4675331Samw } 4685331Samw if (!iszfs) 4695331Samw (void) sa_update_sharetab(share, "smb"); 4705331Samw done: 4715331Samw sa_free_attr_string(path); 4725331Samw 4735331Samw return (err == NERR_DuplicateShare ? 0 : err); 4745331Samw } 4755331Samw 4765331Samw /* 4775331Samw * This is the share for CIFS all shares have resource names. 4785331Samw * Enable tells the smb server to update its hash. If it fails 4795331Samw * because smb server is down, we just ignore as smb server loads 4805331Samw * the resources from sharemanager at startup. 4815331Samw */ 4825331Samw 4835331Samw static int 4845331Samw smb_enable_resource(sa_resource_t resource) 4855331Samw { 4865331Samw sa_share_t share; 4877052Samw smb_share_t si; 4885772Sas200622 int ret = SA_OK; 4895772Sas200622 int err; 4905772Sas200622 boolean_t isonline; 4915331Samw 4925331Samw share = sa_get_resource_parent(resource); 4935331Samw if (share == NULL) 4945331Samw return (SA_NO_SUCH_PATH); 4955772Sas200622 4965772Sas200622 /* 4975772Sas200622 * If administratively disabled, don't try to start anything. 4985772Sas200622 */ 4995772Sas200622 isonline = smb_isonline(); 5005772Sas200622 if (!isonline && !smb_isautoenable() && smb_isdisabled()) 5017348SJose.Borrego@Sun.COM return (SA_OK); 5025772Sas200622 5037348SJose.Borrego@Sun.COM if (!isonline) { 5047348SJose.Borrego@Sun.COM (void) smb_enable_service(); 5057348SJose.Borrego@Sun.COM 5067348SJose.Borrego@Sun.COM if (!smb_isonline()) 5077348SJose.Borrego@Sun.COM return (SA_OK); 5085772Sas200622 } 5095772Sas200622 5107348SJose.Borrego@Sun.COM if ((ret = smb_build_shareinfo(share, resource, &si)) != SA_OK) 5117348SJose.Borrego@Sun.COM return (ret); 5125772Sas200622 5135772Sas200622 /* 5145772Sas200622 * Attempt to add the share. Any error that occurs if it was 5155772Sas200622 * online is an error but don't count NERR_DuplicateName if 5165772Sas200622 * smb/server had to be brought online since bringing the 5175772Sas200622 * service up will enable the share that was just added prior 5185772Sas200622 * to the attempt to enable. 5195772Sas200622 */ 5207348SJose.Borrego@Sun.COM err = smb_share_create(&si); 5215772Sas200622 if (err == NERR_Success || !(!isonline && err == NERR_DuplicateName)) 5225772Sas200622 (void) sa_update_sharetab(share, "smb"); 5235772Sas200622 else 5245331Samw return (SA_NOT_SHARED); 5255331Samw 5267348SJose.Borrego@Sun.COM return (SA_OK); 5275331Samw } 5285331Samw 5295331Samw /* 5305331Samw * Remove it from smb server hash. 5315331Samw */ 5325331Samw static int 5335331Samw smb_disable_resource(sa_resource_t resource) 5345331Samw { 5355331Samw char *rname; 5367052Samw uint32_t res; 5375331Samw sa_share_t share; 5385331Samw 5395331Samw rname = sa_get_resource_attr(resource, "name"); 5405331Samw if (rname == NULL) 5415331Samw return (SA_NO_SUCH_RESOURCE); 5425331Samw 5435331Samw if (smb_isonline()) { 5447348SJose.Borrego@Sun.COM res = smb_share_delete(rname); 5455331Samw if (res != NERR_Success) { 5465331Samw sa_free_attr_string(rname); 5475331Samw return (SA_CONFIG_ERR); 5485331Samw } 5495331Samw } 5505951Sdougm 5515951Sdougm sa_free_attr_string(rname); 5525951Sdougm 5535331Samw share = sa_get_resource_parent(resource); 5545331Samw if (share != NULL) { 5555331Samw rname = sa_get_share_attr(share, "path"); 5565331Samw if (rname != NULL) { 5575951Sdougm sa_handle_t handle; 5585951Sdougm 5595951Sdougm handle = sa_find_group_handle((sa_group_t)resource); 5605951Sdougm (void) sa_delete_sharetab(handle, rname, "smb"); 5615331Samw sa_free_attr_string(rname); 5625331Samw } 5635331Samw } 5645331Samw /* 5655331Samw * Always return OK as smb/server may be down and 5665331Samw * Shares will be picked up when loaded. 5675331Samw */ 5685331Samw return (SA_OK); 5695331Samw } 5705331Samw 5715331Samw /* 5725331Samw * smb_share_changed(sa_share_t share) 5735331Samw * 5745331Samw * The specified share has changed. 5755331Samw */ 5765331Samw static int 5775331Samw smb_share_changed(sa_share_t share) 5785331Samw { 5795331Samw char *path; 5805331Samw sa_resource_t resource; 5815331Samw 5827348SJose.Borrego@Sun.COM if (!smb_isonline()) 5837348SJose.Borrego@Sun.COM return (SA_OK); 5847348SJose.Borrego@Sun.COM 5855331Samw /* get the path since it is important in several places */ 5865331Samw path = sa_get_share_attr(share, "path"); 5875331Samw if (path == NULL) 5885331Samw return (SA_NO_SUCH_PATH); 5897348SJose.Borrego@Sun.COM 5905331Samw for (resource = sa_get_share_resource(share, NULL); 5915331Samw resource != NULL; 5925331Samw resource = sa_get_next_resource(resource)) 5935331Samw (void) smb_resource_changed(resource); 5945331Samw 5955331Samw sa_free_attr_string(path); 5965331Samw 5975331Samw return (SA_OK); 5985331Samw } 5995331Samw 6005331Samw /* 6015331Samw * smb_resource_changed(sa_resource_t resource) 6025331Samw * 6035331Samw * The specified resource has changed. 6045331Samw */ 6055331Samw static int 6065331Samw smb_resource_changed(sa_resource_t resource) 6075331Samw { 6087052Samw uint32_t res; 6097348SJose.Borrego@Sun.COM sa_share_t share; 6107052Samw smb_share_t si; 6115331Samw 6127348SJose.Borrego@Sun.COM if (!smb_isonline()) 6137348SJose.Borrego@Sun.COM return (SA_OK); 6145331Samw 6157348SJose.Borrego@Sun.COM if ((share = sa_get_resource_parent(resource)) == NULL) 6167348SJose.Borrego@Sun.COM return (SA_CONFIG_ERR); 6175331Samw 6187348SJose.Borrego@Sun.COM if ((res = smb_build_shareinfo(share, resource, &si)) != SA_OK) 6197348SJose.Borrego@Sun.COM return (res); 6205331Samw 6217961SNatalie.Li@Sun.COM res = smb_share_modify(&si); 6227348SJose.Borrego@Sun.COM 6237348SJose.Borrego@Sun.COM if (res != NERR_Success) 6245331Samw return (SA_CONFIG_ERR); 6255331Samw 6265331Samw return (smb_enable_service()); 6275331Samw } 6285331Samw 6295331Samw /* 6305800Sdougm * smb_disable_share(sa_share_t share, char *path) 6315331Samw * 6325800Sdougm * Unshare the specified share. Note that "path" is the same 6335800Sdougm * path as what is in the "share" object. It is passed in to avoid an 6345800Sdougm * additional lookup. A missing "path" value makes this a no-op 6355800Sdougm * function. 6365331Samw */ 6375331Samw static int 6385331Samw smb_disable_share(sa_share_t share, char *path) 6395331Samw { 6405331Samw char *rname; 6415331Samw sa_resource_t resource; 6425800Sdougm sa_group_t parent; 6435331Samw boolean_t iszfs; 6445331Samw int err = SA_OK; 6455951Sdougm sa_handle_t handle; 6467483SDoug.McCallum@Sun.COM boolean_t first = B_TRUE; /* work around sharetab issue */ 6475331Samw 6485800Sdougm if (path == NULL) 6495800Sdougm return (err); 6505800Sdougm 6515800Sdougm /* 6525800Sdougm * If the share is in a ZFS group we need to handle it 6535800Sdougm * differently. Just being on a ZFS file system isn't 6545800Sdougm * enough since we may be in a legacy share case. 6555800Sdougm */ 6565800Sdougm parent = sa_get_parent_group(share); 6575800Sdougm iszfs = sa_group_is_zfs(parent); 6585800Sdougm 6595331Samw if (!smb_isonline()) 6605331Samw goto done; 6615331Samw 6625331Samw for (resource = sa_get_share_resource(share, NULL); 6637483SDoug.McCallum@Sun.COM resource != NULL || err != SA_OK; 6645331Samw resource = sa_get_next_resource(resource)) { 6655331Samw rname = sa_get_resource_attr(resource, "name"); 6665331Samw if (rname == NULL) { 6675331Samw continue; 6685331Samw } 6695331Samw if (!iszfs) { 6707348SJose.Borrego@Sun.COM err = smb_share_delete(rname); 6715331Samw switch (err) { 6725331Samw case NERR_NetNameNotFound: 6735331Samw case NERR_Success: 6745331Samw err = SA_OK; 6755331Samw break; 6765331Samw default: 6775331Samw err = SA_CONFIG_ERR; 6785331Samw break; 6795331Samw } 6805331Samw } else { 6815331Samw share_t sh; 6825331Samw 6835331Samw sa_sharetab_fill_zfs(share, &sh, "smb"); 6845331Samw err = sa_share_zfs(share, (char *)path, &sh, 6855331Samw rname, ZFS_UNSHARE_SMB); 6867483SDoug.McCallum@Sun.COM /* 6877483SDoug.McCallum@Sun.COM * If we are no longer the first case, we 6887483SDoug.McCallum@Sun.COM * don't care about the sa_share_zfs err if it 6897483SDoug.McCallum@Sun.COM * is -1. This works around a problem in 6907483SDoug.McCallum@Sun.COM * sharefs and should be removed when sharefs 6917483SDoug.McCallum@Sun.COM * supports multiple entries per path. 6927483SDoug.McCallum@Sun.COM */ 6937483SDoug.McCallum@Sun.COM if (!first && err == -1) 6947483SDoug.McCallum@Sun.COM err = SA_OK; 6957483SDoug.McCallum@Sun.COM first = B_FALSE; 6967483SDoug.McCallum@Sun.COM 6975331Samw sa_emptyshare(&sh); 6985331Samw } 6995331Samw sa_free_attr_string(rname); 7005331Samw } 7015331Samw done: 7025951Sdougm if (!iszfs) { 7035951Sdougm handle = sa_find_group_handle((sa_group_t)share); 7045951Sdougm if (handle != NULL) 7055951Sdougm (void) sa_delete_sharetab(handle, path, "smb"); 7065951Sdougm else 7075951Sdougm err = SA_SYSTEM_ERR; 7085951Sdougm } 7095331Samw return (err); 7105331Samw } 7115331Samw 7125331Samw /* 7136214Sdougm * smb_validate_property(handle, property, parent) 7145331Samw * 7155331Samw * Check that the property has a legitimate value for its type. 7166214Sdougm * Handle isn't currently used but may need to be in the future. 7175331Samw */ 7185331Samw 7196214Sdougm /*ARGSUSED*/ 7205331Samw static int 7216214Sdougm smb_validate_property(sa_handle_t handle, sa_property_t property, 7226214Sdougm sa_optionset_t parent) 7235331Samw { 7245331Samw int ret = SA_OK; 7255331Samw char *propname; 7265331Samw int optindex; 7275331Samw sa_group_t parent_group; 7285331Samw char *value; 7297961SNatalie.Li@Sun.COM char *other; 7305331Samw 7315331Samw propname = sa_get_property_attr(property, "type"); 7325331Samw 7335331Samw if ((optindex = findopt(propname)) < 0) 7345331Samw ret = SA_NO_SUCH_PROP; 7355331Samw 7365331Samw /* need to validate value range here as well */ 7375331Samw if (ret == SA_OK) { 7385331Samw parent_group = sa_get_parent_group((sa_share_t)parent); 7395331Samw if (optdefs[optindex].share && !sa_is_share(parent_group)) 7405331Samw ret = SA_PROP_SHARE_ONLY; 7415331Samw } 7425331Samw if (ret != SA_OK) { 7435331Samw if (propname != NULL) 7445331Samw sa_free_attr_string(propname); 7455331Samw return (ret); 7465331Samw } 7475331Samw 7485331Samw value = sa_get_property_attr(property, "value"); 7495331Samw if (value != NULL) { 7505331Samw /* first basic type checking */ 7515331Samw switch (optdefs[optindex].type) { 7525331Samw case OPT_TYPE_NUMBER: 7535331Samw /* check that the value is all digits */ 7545331Samw if (!is_a_number(value)) 7555331Samw ret = SA_BAD_VALUE; 7565331Samw break; 7575331Samw case OPT_TYPE_BOOLEAN: 7585331Samw if (strlen(value) == 0 || 7595331Samw strcasecmp(value, "true") == 0 || 7605331Samw strcmp(value, "1") == 0 || 7615331Samw strcasecmp(value, "false") == 0 || 7625331Samw strcmp(value, "0") == 0) { 7635331Samw ret = SA_OK; 7645331Samw } else { 7655331Samw ret = SA_BAD_VALUE; 7665331Samw } 7675331Samw break; 7685331Samw case OPT_TYPE_NAME: 7695331Samw /* 7705331Samw * Make sure no invalid characters 7715331Samw */ 7725331Samw if (validresource(value) == B_FALSE) 7735331Samw ret = SA_BAD_VALUE; 7745331Samw break; 7755331Samw case OPT_TYPE_STRING: 7765331Samw /* whatever is here should be ok */ 7775331Samw break; 778*8334SJose.Borrego@Sun.COM case OPT_TYPE_CSC: 779*8334SJose.Borrego@Sun.COM if (validcsc(value) == B_FALSE) 780*8334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 781*8334SJose.Borrego@Sun.COM break; 7827961SNatalie.Li@Sun.COM case OPT_TYPE_ACCLIST: { 7837961SNatalie.Li@Sun.COM sa_property_t oprop; 7847961SNatalie.Li@Sun.COM char *ovalue; 7857961SNatalie.Li@Sun.COM /* 7867961SNatalie.Li@Sun.COM * access list handling. Should eventually 7877961SNatalie.Li@Sun.COM * validate that all the values make sense. 7887961SNatalie.Li@Sun.COM * Also, ro and rw may have cross value 7897961SNatalie.Li@Sun.COM * conflicts. 7907961SNatalie.Li@Sun.COM */ 7917961SNatalie.Li@Sun.COM if (parent == NULL) 7927961SNatalie.Li@Sun.COM break; 7937961SNatalie.Li@Sun.COM if (strcmp(propname, SHOPT_RO) == 0) 7947961SNatalie.Li@Sun.COM other = SHOPT_RW; 7957961SNatalie.Li@Sun.COM else if (strcmp(propname, SHOPT_RW) == 0) 7967961SNatalie.Li@Sun.COM other = SHOPT_RO; 7977961SNatalie.Li@Sun.COM else 7987961SNatalie.Li@Sun.COM other = NULL; 7997961SNatalie.Li@Sun.COM if (other == NULL) 8007961SNatalie.Li@Sun.COM break; 8017961SNatalie.Li@Sun.COM 8027961SNatalie.Li@Sun.COM /* compare rw(ro) with ro(rw) */ 8037961SNatalie.Li@Sun.COM oprop = sa_get_property(parent, other); 8047961SNatalie.Li@Sun.COM if (oprop == NULL) 8057961SNatalie.Li@Sun.COM break; 8067961SNatalie.Li@Sun.COM /* 8077961SNatalie.Li@Sun.COM * only potential 8087961SNatalie.Li@Sun.COM * confusion if other 8097961SNatalie.Li@Sun.COM * exists 8107961SNatalie.Li@Sun.COM */ 8117961SNatalie.Li@Sun.COM ovalue = sa_get_property_attr(oprop, "value"); 8127961SNatalie.Li@Sun.COM if (ovalue != NULL) { 8137961SNatalie.Li@Sun.COM ret = check_rorw(value, ovalue); 8147961SNatalie.Li@Sun.COM sa_free_attr_string(ovalue); 8157961SNatalie.Li@Sun.COM } 8167961SNatalie.Li@Sun.COM break; 8177961SNatalie.Li@Sun.COM } 8185331Samw default: 8195331Samw break; 8205331Samw } 8215331Samw } 8225331Samw 8235331Samw if (value != NULL) 8245331Samw sa_free_attr_string(value); 8255331Samw if (ret == SA_OK && optdefs[optindex].check != NULL) 8265331Samw /* do the property specific check */ 8275331Samw ret = optdefs[optindex].check(property); 8285331Samw 8295331Samw if (propname != NULL) 8305331Samw sa_free_attr_string(propname); 8315331Samw return (ret); 8325331Samw } 8335331Samw 8345331Samw /* 8355331Samw * Protocol management functions 8365331Samw * 8375331Samw * properties defined in the default files are defined in 8385331Samw * proto_option_defs for parsing and validation. 8395331Samw */ 8405331Samw 8415331Samw struct smb_proto_option_defs { 8425331Samw int smb_index; 8435331Samw int32_t minval; 8445331Samw int32_t maxval; /* In case of length of string this should be max */ 8455331Samw int (*validator)(int, char *); 8465331Samw int32_t refresh; 8475331Samw } smb_proto_options[] = { 8485772Sas200622 { SMB_CI_SYS_CMNT, 0, MAX_VALUE_BUFLEN, 8495772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 8505772Sas200622 { SMB_CI_MAX_WORKERS, 64, 1024, range_check_validator, 8515772Sas200622 SMB_REFRESH_REFRESH }, 8525772Sas200622 { SMB_CI_NBSCOPE, 0, MAX_VALUE_BUFLEN, 8535772Sas200622 string_length_check_validator, 0 }, 8545772Sas200622 { SMB_CI_LM_LEVEL, 2, 5, range_check_validator, 0 }, 8555772Sas200622 { SMB_CI_KEEPALIVE, 20, 5400, range_check_validator_zero_ok, 8565772Sas200622 SMB_REFRESH_REFRESH }, 8575772Sas200622 { SMB_CI_WINS_SRV1, 0, MAX_VALUE_BUFLEN, 8585772Sas200622 ip_address_validator_empty_ok, SMB_REFRESH_REFRESH }, 8595772Sas200622 { SMB_CI_WINS_SRV2, 0, MAX_VALUE_BUFLEN, 8605772Sas200622 ip_address_validator_empty_ok, SMB_REFRESH_REFRESH }, 8615772Sas200622 { SMB_CI_WINS_EXCL, 0, MAX_VALUE_BUFLEN, 862*8334SJose.Borrego@Sun.COM interface_validator, SMB_REFRESH_REFRESH }, 8635772Sas200622 { SMB_CI_SIGNING_ENABLE, 0, 0, true_false_validator, 8645772Sas200622 SMB_REFRESH_REFRESH }, 8655772Sas200622 { SMB_CI_SIGNING_REQD, 0, 0, true_false_validator, 8665772Sas200622 SMB_REFRESH_REFRESH }, 8675772Sas200622 { SMB_CI_RESTRICT_ANON, 0, 0, true_false_validator, 8685772Sas200622 SMB_REFRESH_REFRESH }, 8695772Sas200622 { SMB_CI_DOMAIN_SRV, 0, MAX_VALUE_BUFLEN, 8705772Sas200622 ip_address_validator_empty_ok, 0 }, 8715772Sas200622 { SMB_CI_ADS_SITE, 0, MAX_VALUE_BUFLEN, 8725772Sas200622 string_length_check_validator, SMB_REFRESH_REFRESH }, 8735772Sas200622 { SMB_CI_DYNDNS_ENABLE, 0, 0, true_false_validator, 0 }, 8745772Sas200622 { SMB_CI_AUTOHOME_MAP, 0, MAX_VALUE_BUFLEN, path_validator, 0 }, 8755331Samw }; 8765331Samw 8775772Sas200622 #define SMB_OPT_NUM \ 8785772Sas200622 (sizeof (smb_proto_options) / sizeof (smb_proto_options[0])) 8795772Sas200622 8805331Samw /* 8815331Samw * Check the range of value as int range. 8825331Samw */ 8835331Samw static int 8845331Samw range_check_validator(int index, char *value) 8855331Samw { 8865331Samw int ret = SA_OK; 8875331Samw 8885331Samw if (!is_a_number(value)) { 8895331Samw ret = SA_BAD_VALUE; 8905331Samw } else { 8915331Samw int val; 8925331Samw val = strtoul(value, NULL, 0); 8935331Samw if (val < smb_proto_options[index].minval || 8945331Samw val > smb_proto_options[index].maxval) 8955331Samw ret = SA_BAD_VALUE; 8965331Samw } 8975331Samw return (ret); 8985331Samw } 8995331Samw 9005331Samw /* 9015331Samw * Check the range of value as int range. 9025331Samw */ 9035331Samw static int 9045331Samw range_check_validator_zero_ok(int index, char *value) 9055331Samw { 9065331Samw int ret = SA_OK; 9075331Samw 9085331Samw if (!is_a_number(value)) { 9095331Samw ret = SA_BAD_VALUE; 9105331Samw } else { 9115331Samw int val; 9125331Samw val = strtoul(value, NULL, 0); 9135331Samw if (val == 0) 9145331Samw ret = SA_OK; 9155331Samw else { 9165331Samw if (val < smb_proto_options[index].minval || 9175331Samw val > smb_proto_options[index].maxval) 9185331Samw ret = SA_BAD_VALUE; 9195331Samw } 9205331Samw } 9215331Samw return (ret); 9225331Samw } 9235331Samw 9245331Samw /* 9255331Samw * Check the length of the string 9265331Samw */ 9275331Samw static int 9285331Samw string_length_check_validator(int index, char *value) 9295331Samw { 9305331Samw int ret = SA_OK; 9315331Samw 9325331Samw if (value == NULL) 9335331Samw return (SA_BAD_VALUE); 9345331Samw if (strlen(value) > smb_proto_options[index].maxval) 9355331Samw ret = SA_BAD_VALUE; 9365331Samw return (ret); 9375331Samw } 9385331Samw 9395331Samw /* 9405331Samw * Check yes/no 9415331Samw */ 9425331Samw /*ARGSUSED*/ 9435331Samw static int 9445331Samw true_false_validator(int index, char *value) 9455331Samw { 9465331Samw if (value == NULL) 9475331Samw return (SA_BAD_VALUE); 9485331Samw if ((strcasecmp(value, "true") == 0) || 9495331Samw (strcasecmp(value, "false") == 0)) 9505331Samw return (SA_OK); 9515331Samw return (SA_BAD_VALUE); 9525331Samw } 9535331Samw 9545331Samw /* 9555331Samw * Check IP address. 9565331Samw */ 9575331Samw /*ARGSUSED*/ 9585331Samw static int 9595331Samw ip_address_validator_empty_ok(int index, char *value) 9605331Samw { 9615331Samw char sbytes[16]; 9625331Samw int len; 9635331Samw 9645331Samw if (value == NULL) 9655331Samw return (SA_OK); 9665331Samw len = strlen(value); 9675331Samw if (len == 0) 9685331Samw return (SA_OK); 9695331Samw if (inet_pton(AF_INET, value, (void *)sbytes) != 1) 9705331Samw return (SA_BAD_VALUE); 9715331Samw 9725331Samw return (SA_OK); 9735331Samw } 9745331Samw 9755331Samw /* 976*8334SJose.Borrego@Sun.COM * Call back function for dlpi_walk. 977*8334SJose.Borrego@Sun.COM * Returns TRUE if interface name exists on the host. 978*8334SJose.Borrego@Sun.COM */ 979*8334SJose.Borrego@Sun.COM static boolean_t 980*8334SJose.Borrego@Sun.COM smb_get_interface(const char *ifname, void *arg) 981*8334SJose.Borrego@Sun.COM { 982*8334SJose.Borrego@Sun.COM smb_hostifs_walker_t *iterp = arg; 983*8334SJose.Borrego@Sun.COM 984*8334SJose.Borrego@Sun.COM iterp->hiw_matchfound = (strcmp(ifname, iterp->hiw_ifname) == 0); 985*8334SJose.Borrego@Sun.COM 986*8334SJose.Borrego@Sun.COM return (iterp->hiw_matchfound); 987*8334SJose.Borrego@Sun.COM } 988*8334SJose.Borrego@Sun.COM 989*8334SJose.Borrego@Sun.COM /* 990*8334SJose.Borrego@Sun.COM * Checks to see if the input interface exists on the host. 991*8334SJose.Borrego@Sun.COM * Returns B_TRUE if the match is found, B_FALSE otherwise. 992*8334SJose.Borrego@Sun.COM */ 993*8334SJose.Borrego@Sun.COM static boolean_t 994*8334SJose.Borrego@Sun.COM smb_validate_interface(const char *ifname) 995*8334SJose.Borrego@Sun.COM { 996*8334SJose.Borrego@Sun.COM smb_hostifs_walker_t iter; 997*8334SJose.Borrego@Sun.COM 998*8334SJose.Borrego@Sun.COM if ((ifname == NULL) || (*ifname == '\0')) 999*8334SJose.Borrego@Sun.COM return (B_FALSE); 1000*8334SJose.Borrego@Sun.COM 1001*8334SJose.Borrego@Sun.COM iter.hiw_ifname = ifname; 1002*8334SJose.Borrego@Sun.COM iter.hiw_matchfound = B_FALSE; 1003*8334SJose.Borrego@Sun.COM dlpi_walk(smb_get_interface, &iter, 0); 1004*8334SJose.Borrego@Sun.COM 1005*8334SJose.Borrego@Sun.COM return (iter.hiw_matchfound); 1006*8334SJose.Borrego@Sun.COM } 1007*8334SJose.Borrego@Sun.COM 1008*8334SJose.Borrego@Sun.COM /* 1009*8334SJose.Borrego@Sun.COM * Check valid interfaces. Interface names value can be NULL or empty. 1010*8334SJose.Borrego@Sun.COM * Returns SA_BAD_VALUE if interface cannot be found on the host. 10115331Samw */ 10125331Samw /*ARGSUSED*/ 10135331Samw static int 1014*8334SJose.Borrego@Sun.COM interface_validator(int index, char *value) 10155331Samw { 1016*8334SJose.Borrego@Sun.COM char buf[16]; 1017*8334SJose.Borrego@Sun.COM int ret = SA_OK; 1018*8334SJose.Borrego@Sun.COM char *ifname, *tmp, *p; 10195331Samw 10205331Samw if (value == NULL || *value == '\0') 1021*8334SJose.Borrego@Sun.COM return (ret); 10225331Samw 10235331Samw if (strlen(value) > MAX_VALUE_BUFLEN) 10245331Samw return (SA_BAD_VALUE); 10255331Samw 1026*8334SJose.Borrego@Sun.COM if ((p = strdup(value)) == NULL) 10275331Samw return (SA_NO_MEMORY); 10285331Samw 1029*8334SJose.Borrego@Sun.COM tmp = p; 1030*8334SJose.Borrego@Sun.COM while ((ifname = strsep(&tmp, ",")) != NULL) { 1031*8334SJose.Borrego@Sun.COM if (*ifname == '\0') { 1032*8334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 1033*8334SJose.Borrego@Sun.COM break; 10345331Samw } 1035*8334SJose.Borrego@Sun.COM 1036*8334SJose.Borrego@Sun.COM if (!smb_validate_interface(ifname)) { 1037*8334SJose.Borrego@Sun.COM if (inet_pton(AF_INET, ifname, (void *)buf) == 0) { 1038*8334SJose.Borrego@Sun.COM ret = SA_BAD_VALUE; 1039*8334SJose.Borrego@Sun.COM break; 10405331Samw } 10415331Samw } 10425331Samw } 10435331Samw 1044*8334SJose.Borrego@Sun.COM free(p); 1045*8334SJose.Borrego@Sun.COM return (ret); 10465331Samw } 10475331Samw 10485331Samw /* 10495331Samw * Check path 10505331Samw */ 10515331Samw /*ARGSUSED*/ 10525331Samw static int 10537588Samw@Sun.COM path_validator(int index, char *path) 10545331Samw { 10555331Samw struct stat buffer; 10565331Samw int fd, status; 10575331Samw 10587588Samw@Sun.COM if (path == NULL) 10595331Samw return (SA_BAD_VALUE); 10605331Samw 10617588Samw@Sun.COM fd = open(path, O_RDONLY); 10625331Samw if (fd < 0) 10635331Samw return (SA_BAD_VALUE); 10645331Samw 10655331Samw status = fstat(fd, &buffer); 10665331Samw (void) close(fd); 10675331Samw 10685331Samw if (status < 0) 10695331Samw return (SA_BAD_VALUE); 10705331Samw 10715331Samw if (buffer.st_mode & S_IFDIR) 10725331Samw return (SA_OK); 10735331Samw return (SA_BAD_VALUE); 10745331Samw } 10755331Samw 10765331Samw /* 10775331Samw * the protoset holds the defined options so we don't have to read 10785331Samw * them multiple times 10795331Samw */ 10805331Samw static sa_protocol_properties_t protoset; 10815331Samw 10825331Samw static int 10835331Samw findprotoopt(char *name) 10845331Samw { 10855331Samw int i; 10865772Sas200622 char *sc_name; 10875772Sas200622 10885772Sas200622 for (i = 0; i < SMB_OPT_NUM; i++) { 10895772Sas200622 sc_name = smb_config_getname(smb_proto_options[i].smb_index); 10905772Sas200622 if (strcasecmp(sc_name, name) == 0) 10915331Samw return (i); 10925331Samw } 10935772Sas200622 10945331Samw return (-1); 10955331Samw } 10965331Samw 10975331Samw /* 10985331Samw * smb_load_proto_properties() 10995331Samw * 11005331Samw * read the smb config values from SMF. 11015331Samw */ 11025331Samw 11035331Samw static int 11045331Samw smb_load_proto_properties() 11055331Samw { 11065331Samw sa_property_t prop; 11075772Sas200622 char value[MAX_VALUE_BUFLEN]; 11085772Sas200622 char *name; 11095331Samw int index; 11106019Sdougm int ret = SA_OK; 11115772Sas200622 int rc; 11125331Samw 11135331Samw protoset = sa_create_protocol_properties(SMB_PROTOCOL_NAME); 11145331Samw if (protoset == NULL) 11155331Samw return (SA_NO_MEMORY); 11165331Samw 11176019Sdougm for (index = 0; index < SMB_OPT_NUM && ret == SA_OK; index++) { 11185772Sas200622 rc = smb_config_get(smb_proto_options[index].smb_index, 11195772Sas200622 value, sizeof (value)); 11205772Sas200622 if (rc != SMBD_SMF_OK) 11215772Sas200622 continue; 11225772Sas200622 name = smb_config_getname(smb_proto_options[index].smb_index); 11235772Sas200622 prop = sa_create_property(name, value); 11245454Sdougm if (prop != NULL) 11256019Sdougm ret = sa_add_protocol_property(protoset, prop); 11266019Sdougm else 11276019Sdougm ret = SA_NO_MEMORY; 11285331Samw } 11296019Sdougm return (ret); 11305331Samw } 11315331Samw 11325331Samw /* 11335331Samw * smb_share_init() 11345331Samw * 11355331Samw * Initialize the smb plugin. 11365331Samw */ 11375331Samw 11385331Samw static int 11395331Samw smb_share_init(void) 11405331Samw { 11415331Samw if (sa_plugin_ops.sa_init != smb_share_init) 11425331Samw return (SA_SYSTEM_ERR); 11435331Samw 11447588Samw@Sun.COM smb_share_door_clnt_init(); 11457348SJose.Borrego@Sun.COM return (smb_load_proto_properties()); 11465331Samw } 11475331Samw 11485331Samw /* 11495331Samw * smb_share_fini() 11505331Samw * 11515331Samw */ 11525331Samw static void 11535331Samw smb_share_fini(void) 11545331Samw { 11555331Samw xmlFreeNode(protoset); 11565331Samw protoset = NULL; 11575772Sas200622 11587588Samw@Sun.COM smb_share_door_clnt_fini(); 11595331Samw } 11605331Samw 11615331Samw /* 11625331Samw * smb_get_proto_set() 11635331Samw * 11645331Samw * Return an optionset with all the protocol specific properties in 11655331Samw * it. 11665331Samw */ 11675331Samw static sa_protocol_properties_t 11685331Samw smb_get_proto_set(void) 11695331Samw { 11705331Samw return (protoset); 11715331Samw } 11725331Samw 11735331Samw /* 11745772Sas200622 * smb_enable_dependencies() 11755772Sas200622 * 11765772Sas200622 * SMBD_DEFAULT_INSTANCE_FMRI may have some dependencies that aren't 11775772Sas200622 * enabled. This will attempt to enable all of them. 11785772Sas200622 */ 11795772Sas200622 static void 11805772Sas200622 smb_enable_dependencies(const char *fmri) 11815772Sas200622 { 11825772Sas200622 scf_handle_t *handle; 11835772Sas200622 scf_service_t *service; 11845772Sas200622 scf_instance_t *inst = NULL; 11855772Sas200622 scf_iter_t *iter; 11865772Sas200622 scf_property_t *prop; 11875772Sas200622 scf_value_t *value; 11885772Sas200622 scf_propertygroup_t *pg; 11895772Sas200622 scf_scope_t *scope; 11905772Sas200622 char type[SCFTYPE_LEN]; 11915772Sas200622 char *dependency; 11925772Sas200622 char *servname; 11935772Sas200622 int maxlen; 11945772Sas200622 11955772Sas200622 /* 11965772Sas200622 * Get all required handles and storage. 11975772Sas200622 */ 11985772Sas200622 handle = scf_handle_create(SCF_VERSION); 11995772Sas200622 if (handle == NULL) 12005772Sas200622 return; 12015772Sas200622 12025772Sas200622 if (scf_handle_bind(handle) != 0) { 12035772Sas200622 scf_handle_destroy(handle); 12045772Sas200622 return; 12055772Sas200622 } 12065772Sas200622 12075772Sas200622 maxlen = scf_limit(SCF_LIMIT_MAX_VALUE_LENGTH); 12085772Sas200622 if (maxlen == (ssize_t)-1) 12095772Sas200622 maxlen = MAXPATHLEN; 12105772Sas200622 12115772Sas200622 dependency = malloc(maxlen); 12125772Sas200622 12135772Sas200622 service = scf_service_create(handle); 12145772Sas200622 12155772Sas200622 iter = scf_iter_create(handle); 12165772Sas200622 12175772Sas200622 pg = scf_pg_create(handle); 12185772Sas200622 12195772Sas200622 prop = scf_property_create(handle); 12205772Sas200622 12215772Sas200622 value = scf_value_create(handle); 12225772Sas200622 12235772Sas200622 scope = scf_scope_create(handle); 12245772Sas200622 12255772Sas200622 if (service == NULL || iter == NULL || pg == NULL || prop == NULL || 12265772Sas200622 value == NULL || scope == NULL || dependency == NULL) 12275772Sas200622 goto done; 12285772Sas200622 12295772Sas200622 /* 12305772Sas200622 * We passed in the FMRI for the default instance but for 12315772Sas200622 * some things we need the simple form so construct it. Since 12325772Sas200622 * we reuse the storage that dependency points to, we need to 12335772Sas200622 * use the servname early. 12345772Sas200622 */ 12355772Sas200622 (void) snprintf(dependency, maxlen, "%s", fmri + sizeof ("svc:")); 12365772Sas200622 servname = strrchr(dependency, ':'); 12375772Sas200622 if (servname == NULL) 12385772Sas200622 goto done; 12395772Sas200622 *servname = '\0'; 12405772Sas200622 servname = dependency; 12415772Sas200622 12425772Sas200622 /* 12435772Sas200622 * Setup to iterate over the service property groups, only 12445772Sas200622 * looking at those that are "dependency" types. The "entity" 12455772Sas200622 * property will have the FMRI of the service we are dependent 12465772Sas200622 * on. 12475772Sas200622 */ 12485772Sas200622 if (scf_handle_get_scope(handle, SCF_SCOPE_LOCAL, scope) != 0) 12495772Sas200622 goto done; 12505772Sas200622 12515772Sas200622 if (scf_scope_get_service(scope, servname, service) != 0) 12525772Sas200622 goto done; 12535772Sas200622 12545772Sas200622 if (scf_iter_service_pgs(iter, service) != 0) 12555772Sas200622 goto done; 12565772Sas200622 12575772Sas200622 while (scf_iter_next_pg(iter, pg) > 0) { 12585772Sas200622 char *services[2]; 12595772Sas200622 /* 12605772Sas200622 * Have a property group for the service. See if it is 12615772Sas200622 * a dependency pg and only do operations on those. 12625772Sas200622 */ 12635772Sas200622 if (scf_pg_get_type(pg, type, SCFTYPE_LEN) <= 0) 12645772Sas200622 continue; 12655772Sas200622 12665772Sas200622 if (strncmp(type, SCF_GROUP_DEPENDENCY, SCFTYPE_LEN) != 0) 12675772Sas200622 continue; 12685772Sas200622 /* 12695772Sas200622 * Have a dependency. Attempt to enable it. 12705772Sas200622 */ 12715772Sas200622 if (scf_pg_get_property(pg, SCF_PROPERTY_ENTITIES, prop) != 0) 12725772Sas200622 continue; 12735772Sas200622 12745772Sas200622 if (scf_property_get_value(prop, value) != 0) 12755772Sas200622 continue; 12765772Sas200622 12775772Sas200622 services[1] = NULL; 12785772Sas200622 12795772Sas200622 if (scf_value_get_as_string(value, dependency, maxlen) > 0) { 12805772Sas200622 services[0] = dependency; 12815772Sas200622 _check_services(services); 12825772Sas200622 } 12835772Sas200622 } 12845772Sas200622 12855772Sas200622 done: 12865772Sas200622 if (dependency != NULL) 12875772Sas200622 free(dependency); 12885772Sas200622 if (value != NULL) 12895772Sas200622 scf_value_destroy(value); 12905772Sas200622 if (prop != NULL) 12915772Sas200622 scf_property_destroy(prop); 12925772Sas200622 if (pg != NULL) 12935772Sas200622 scf_pg_destroy(pg); 12945772Sas200622 if (iter != NULL) 12955772Sas200622 scf_iter_destroy(iter); 12965772Sas200622 if (scope != NULL) 12975772Sas200622 scf_scope_destroy(scope); 12985772Sas200622 if (inst != NULL) 12995772Sas200622 scf_instance_destroy(inst); 13005772Sas200622 if (service != NULL) 13015772Sas200622 scf_service_destroy(service); 13025772Sas200622 13035772Sas200622 (void) scf_handle_unbind(handle); 13045772Sas200622 scf_handle_destroy(handle); 13055772Sas200622 } 13065772Sas200622 13075772Sas200622 /* 13085331Samw * How long to wait for service to come online 13095331Samw */ 13105331Samw #define WAIT_FOR_SERVICE 15 13115331Samw 13125331Samw /* 13135331Samw * smb_enable_service() 13145331Samw * 13155331Samw */ 13165331Samw static int 13175331Samw smb_enable_service(void) 13185331Samw { 13195331Samw int i; 13205331Samw int ret = SA_OK; 13215772Sas200622 char *service[] = { SMBD_DEFAULT_INSTANCE_FMRI, NULL }; 13225331Samw 13235331Samw if (!smb_isonline()) { 13245772Sas200622 /* 13255772Sas200622 * Attempt to start the idmap, and other dependent 13265772Sas200622 * services, first. If it fails, the SMB service will 13275772Sas200622 * ultimately fail so we use that as the error. If we 13285772Sas200622 * don't try to enable idmap, smb won't start the 13295772Sas200622 * first time unless the admin has done it 13305772Sas200622 * manually. The service could be administratively 13315772Sas200622 * disabled so we won't always get started. 13325772Sas200622 */ 13335772Sas200622 smb_enable_dependencies(SMBD_DEFAULT_INSTANCE_FMRI); 13345772Sas200622 _check_services(service); 13355331Samw 13365331Samw /* Wait for service to come online */ 13375331Samw for (i = 0; i < WAIT_FOR_SERVICE; i++) { 13385331Samw if (smb_isonline()) { 13395772Sas200622 ret = SA_OK; 13405331Samw break; 13416030Sjb150015 } else if (smb_ismaint()) { 13426030Sjb150015 /* maintenance requires help */ 13436030Sjb150015 ret = SA_SYSTEM_ERR; 13446030Sjb150015 break; 13456030Sjb150015 } else if (smb_isdisabled()) { 13466030Sjb150015 /* disabled is ok */ 13476030Sjb150015 ret = SA_OK; 13486030Sjb150015 break; 13495331Samw } else { 13506030Sjb150015 /* try another time */ 13515331Samw ret = SA_BUSY; 13525331Samw (void) sleep(1); 13535331Samw } 13545331Samw } 13555331Samw } 13565331Samw return (ret); 13575331Samw } 13585331Samw 13595331Samw /* 13605331Samw * smb_validate_proto_prop(index, name, value) 13615331Samw * 13625331Samw * Verify that the property specified by name can take the new 13635331Samw * value. This is a sanity check to prevent bad values getting into 13645331Samw * the default files. 13655331Samw */ 13665331Samw static int 13675331Samw smb_validate_proto_prop(int index, char *name, char *value) 13685331Samw { 13695331Samw if ((name == NULL) || (index < 0)) 13705331Samw return (SA_BAD_VALUE); 13715331Samw 13725331Samw if (smb_proto_options[index].validator == NULL) 13735331Samw return (SA_OK); 13745331Samw 13755331Samw if (smb_proto_options[index].validator(index, value) == SA_OK) 13765331Samw return (SA_OK); 13775331Samw return (SA_BAD_VALUE); 13785331Samw } 13795331Samw 13805331Samw /* 13815331Samw * smb_set_proto_prop(prop) 13825331Samw * 13835331Samw * check that prop is valid. 13845331Samw */ 13855331Samw /*ARGSUSED*/ 13865331Samw static int 13875331Samw smb_set_proto_prop(sa_property_t prop) 13885331Samw { 13895331Samw int ret = SA_OK; 13905331Samw char *name; 13915331Samw char *value; 13925331Samw int index = -1; 13935521Sas200622 struct smb_proto_option_defs *opt; 13945331Samw 13955331Samw name = sa_get_property_attr(prop, "type"); 13965331Samw value = sa_get_property_attr(prop, "value"); 13975331Samw if (name != NULL && value != NULL) { 13985331Samw index = findprotoopt(name); 13995331Samw if (index >= 0) { 14005331Samw /* should test for valid value */ 14015331Samw ret = smb_validate_proto_prop(index, name, value); 14025331Samw if (ret == SA_OK) { 14035521Sas200622 opt = &smb_proto_options[index]; 14045521Sas200622 14055331Samw /* Save to SMF */ 14065772Sas200622 (void) smb_config_set(opt->smb_index, value); 14075331Samw /* 14085331Samw * Specialized refresh mechanisms can 14095331Samw * be flagged in the proto_options and 14105331Samw * processed here. 14115331Samw */ 14125521Sas200622 if (opt->refresh & SMB_REFRESH_REFRESH) 14136139Sjb150015 (void) smf_refresh_instance( 14146139Sjb150015 SMBD_DEFAULT_INSTANCE_FMRI); 14155521Sas200622 else if (opt->refresh & SMB_REFRESH_RESTART) 14165331Samw (void) smf_restart_instance( 14175331Samw SMBD_DEFAULT_INSTANCE_FMRI); 14185331Samw } 14195331Samw } 14205331Samw } 14215521Sas200622 14225331Samw if (name != NULL) 14235331Samw sa_free_attr_string(name); 14245331Samw if (value != NULL) 14255331Samw sa_free_attr_string(value); 14265331Samw 14275331Samw return (ret); 14285331Samw } 14295331Samw 14305331Samw /* 14315331Samw * smb_get_status() 14325331Samw * 14335331Samw * What is the current status of the smbd? We use the SMF state here. 14345331Samw * Caller must free the returned value. 14355331Samw */ 14365331Samw 14375331Samw static char * 14385331Samw smb_get_status(void) 14395331Samw { 14405331Samw char *state = NULL; 14415331Samw state = smf_get_state(SMBD_DEFAULT_INSTANCE_FMRI); 14425331Samw return (state != NULL ? state : "-"); 14435331Samw } 14445331Samw 14455331Samw /* 14465331Samw * This protocol plugin require resource names 14475331Samw */ 14485331Samw static uint64_t 14495331Samw smb_share_features(void) 14505331Samw { 14515331Samw return (SA_FEATURE_RESOURCE | SA_FEATURE_ALLOWSUBDIRS | 14526088Sdougm SA_FEATURE_ALLOWPARDIRS | SA_FEATURE_SERVER); 14535331Samw } 14545331Samw 14555331Samw /* 14567348SJose.Borrego@Sun.COM * This should be used to convert smb_share_t to sa_resource_t 14577348SJose.Borrego@Sun.COM * Should only be needed to build transient shares/resources to be 14587348SJose.Borrego@Sun.COM * supplied to sharemgr to display. 14595331Samw */ 14605331Samw static int 14617348SJose.Borrego@Sun.COM smb_add_transient(sa_handle_t handle, smb_share_t *si) 14625331Samw { 14635331Samw int err; 14645331Samw sa_share_t share; 14655331Samw sa_group_t group; 14665331Samw sa_resource_t resource; 14675331Samw 14685331Samw if (si == NULL) 14695331Samw return (SA_INVALID_NAME); 14705331Samw 14717348SJose.Borrego@Sun.COM if ((share = sa_find_share(handle, si->shr_path)) == NULL) { 14727348SJose.Borrego@Sun.COM if ((group = smb_get_defaultgrp(handle)) == NULL) 14737348SJose.Borrego@Sun.COM return (SA_NO_SUCH_GROUP); 14745331Samw 14757052Samw share = sa_get_share(group, si->shr_path); 14765331Samw if (share == NULL) { 14777052Samw share = sa_add_share(group, si->shr_path, 14785331Samw SA_SHARE_TRANSIENT, &err); 14795331Samw if (share == NULL) 14805331Samw return (SA_NO_SUCH_PATH); 14815331Samw } 14825331Samw } 14835331Samw 14845331Samw /* 14855331Samw * Now handle the resource. Make sure that the resource is 14865331Samw * transient and added to the share. 14875331Samw */ 14887052Samw resource = sa_get_share_resource(share, si->shr_name); 14895331Samw if (resource == NULL) { 14905331Samw resource = sa_add_resource(share, 14917052Samw si->shr_name, SA_SHARE_TRANSIENT, &err); 14925331Samw if (resource == NULL) 14935331Samw return (SA_NO_SUCH_RESOURCE); 14945331Samw } 14955331Samw 14965331Samw /* set resource attributes now */ 14977052Samw (void) sa_set_resource_attr(resource, "description", si->shr_cmnt); 1498*8334SJose.Borrego@Sun.COM (void) sa_set_resource_attr(resource, SHOPT_AD_CONTAINER, 14997052Samw si->shr_container); 15005331Samw 15015331Samw return (SA_OK); 15025331Samw } 15035331Samw 15045331Samw /* 15057348SJose.Borrego@Sun.COM * Return smb transient shares. 15065331Samw */ 15075331Samw static int 15085331Samw smb_list_transient(sa_handle_t handle) 15095331Samw { 15107348SJose.Borrego@Sun.COM int i, offset; 15117052Samw smb_shrlist_t list; 15125331Samw int res; 15135331Samw 15147348SJose.Borrego@Sun.COM if (smb_share_count() <= 0) 15155331Samw return (SA_OK); 15167348SJose.Borrego@Sun.COM 15175331Samw offset = 0; 15187348SJose.Borrego@Sun.COM while (smb_share_list(offset, &list) == NERR_Success) { 15197348SJose.Borrego@Sun.COM if (list.sl_cnt == 0) 15205331Samw break; 15217348SJose.Borrego@Sun.COM 15227348SJose.Borrego@Sun.COM for (i = 0; i < list.sl_cnt; i++) { 15237348SJose.Borrego@Sun.COM res = smb_add_transient(handle, &(list.sl_shares[i])); 15245331Samw if (res != SA_OK) 15255331Samw return (res); 15265331Samw } 15277348SJose.Borrego@Sun.COM offset += list.sl_cnt; 15285331Samw } 15295331Samw 15305331Samw return (SA_OK); 15315331Samw } 15325331Samw 15335331Samw /* 15345331Samw * fix_resource_name(share, name, prefix) 15355331Samw * 15365331Samw * Construct a name where the ZFS dataset has the prefix replaced with "name". 15375331Samw */ 15385331Samw static char * 15395331Samw fix_resource_name(sa_share_t share, char *name, char *prefix) 15405331Samw { 15415331Samw char *dataset = NULL; 15425331Samw char *newname = NULL; 15435331Samw size_t psize; 15445331Samw size_t nsize; 15455331Samw 15465331Samw dataset = sa_get_share_attr(share, "dataset"); 15475331Samw 15485331Samw if (dataset != NULL && strcmp(dataset, prefix) != 0) { 15495331Samw psize = strlen(prefix); 15505331Samw if (strncmp(dataset, prefix, psize) == 0) { 15515331Samw /* need string plus ',' and NULL */ 15525331Samw nsize = (strlen(dataset) - psize) + strlen(name) + 2; 15535331Samw newname = calloc(nsize, 1); 15545331Samw if (newname != NULL) { 15555331Samw (void) snprintf(newname, nsize, "%s%s", name, 15565331Samw dataset + psize); 15575331Samw sa_fix_resource_name(newname); 15585331Samw } 15595331Samw sa_free_attr_string(dataset); 15605331Samw return (newname); 15615331Samw } 15625331Samw } 15635331Samw if (dataset != NULL) 15645331Samw sa_free_attr_string(dataset); 15655331Samw return (strdup(name)); 15665331Samw } 15675331Samw 15685331Samw /* 15695331Samw * smb_parse_optstring(group, options) 15705331Samw * 15715331Samw * parse a compact option string into individual options. This allows 15725331Samw * ZFS sharesmb and sharemgr "share" command to work. group can be a 15735331Samw * group, a share or a resource. 15745331Samw */ 15755331Samw static int 15765331Samw smb_parse_optstring(sa_group_t group, char *options) 15775331Samw { 15785331Samw char *dup; 15795331Samw char *base; 15805331Samw char *lasts; 15815331Samw char *token; 15825331Samw sa_optionset_t optionset; 15835331Samw sa_group_t parent = NULL; 15845331Samw sa_resource_t resource = NULL; 15855331Samw int iszfs = 0; 15865331Samw int persist = 0; 15875331Samw int need_optionset = 0; 15885331Samw int ret = SA_OK; 15895331Samw sa_property_t prop; 15905331Samw 15915331Samw /* 15925331Samw * In order to not attempt to change ZFS properties unless 15935331Samw * absolutely necessary, we never do it in the legacy parsing 15945331Samw * so we need to keep track of this. 15955331Samw */ 15965331Samw if (sa_is_share(group)) { 15975331Samw char *zfs; 15985331Samw 15995331Samw parent = sa_get_parent_group(group); 16005331Samw if (parent != NULL) { 16015331Samw zfs = sa_get_group_attr(parent, "zfs"); 16025331Samw if (zfs != NULL) { 16035331Samw sa_free_attr_string(zfs); 16045331Samw iszfs = 1; 16055331Samw } 16065331Samw } 16075331Samw } else { 16085331Samw iszfs = sa_group_is_zfs(group); 16095331Samw /* 16105331Samw * If a ZFS group, then we need to see if a resource 16115331Samw * name is being set. If so, bail with 16125331Samw * SA_PROP_SHARE_ONLY, so we come back in with a share 16135331Samw * instead of a group. 16145331Samw */ 16155331Samw if (strncmp(options, "name=", sizeof ("name=") - 1) == 0 || 16165331Samw strstr(options, ",name=") != NULL) { 16175331Samw return (SA_PROP_SHARE_ONLY); 16185331Samw } 16195331Samw } 16205331Samw 16215331Samw /* do we have an existing optionset? */ 16225331Samw optionset = sa_get_optionset(group, "smb"); 16235331Samw if (optionset == NULL) { 16245331Samw /* didn't find existing optionset so create one */ 16255331Samw optionset = sa_create_optionset(group, "smb"); 16265331Samw if (optionset == NULL) 16275331Samw return (SA_NO_MEMORY); 16285331Samw } else { 16295331Samw /* 16305331Samw * If an optionset already exists, we've come through 16315331Samw * twice so ignore the second time. 16325331Samw */ 16335331Samw return (ret); 16345331Samw } 16355331Samw 16365331Samw /* We need a copy of options for the next part. */ 16375331Samw dup = strdup(options); 16385331Samw if (dup == NULL) 16395331Samw return (SA_NO_MEMORY); 16405331Samw 16415331Samw /* 16425331Samw * SMB properties are straightforward and are strings, 16435331Samw * integers or booleans. Properties are separated by 16445331Samw * commas. It will be necessary to parse quotes due to some 16455331Samw * strings not having a restricted characters set. 16465331Samw * 16475331Samw * Note that names will create a resource. For now, if there 16485331Samw * is a set of properties "before" the first name="", those 16495331Samw * properties will be placed on the group. 16505331Samw */ 16515331Samw persist = sa_is_persistent(group); 16525331Samw base = dup; 16535331Samw token = dup; 16545331Samw lasts = NULL; 16555331Samw while (token != NULL && ret == SA_OK) { 16565331Samw ret = SA_OK; 16575331Samw token = strtok_r(base, ",", &lasts); 16585331Samw base = NULL; 16595331Samw if (token != NULL) { 16605331Samw char *value; 16615331Samw /* 16625331Samw * All SMB properties have values so there 16635331Samw * MUST be an '=' character. If it doesn't, 16645331Samw * it is a syntax error. 16655331Samw */ 16665331Samw value = strchr(token, '='); 16675331Samw if (value != NULL) { 16685331Samw *value++ = '\0'; 16695331Samw } else { 16705331Samw ret = SA_SYNTAX_ERR; 16715331Samw break; 16725331Samw } 16735331Samw /* 16745331Samw * We may need to handle a "name" property 16755331Samw * that is a ZFS imposed resource name. Each 16765331Samw * name would trigger getting a new "resource" 16775331Samw * to put properties on. For now, assume no 16785331Samw * "name" property for special handling. 16795331Samw */ 16805331Samw 16815331Samw if (strcmp(token, "name") == 0) { 16825331Samw char *prefix; 16835331Samw char *name = NULL; 16845331Samw /* 16855331Samw * We have a name, so now work on the 16865331Samw * resource level. We have a "share" 16875331Samw * in "group" due to the caller having 16885331Samw * added it. If we are called with a 16895331Samw * group, the check for group/share 16905331Samw * at the beginning of this function 16915331Samw * will bail out the parse if there is a 16925331Samw * "name" but no share. 16935331Samw */ 16945331Samw if (!iszfs) { 16955331Samw ret = SA_SYNTAX_ERR; 16965331Samw break; 16975331Samw } 16985331Samw /* 16995331Samw * Make sure the parent group has the 17005331Samw * "prefix" property since we will 17015331Samw * need to use this for constructing 17025331Samw * inherited name= values. 17035331Samw */ 17045331Samw prefix = sa_get_group_attr(parent, "prefix"); 17055331Samw if (prefix == NULL) { 17065331Samw prefix = sa_get_group_attr(parent, 17075331Samw "name"); 17085331Samw if (prefix != NULL) { 17095331Samw (void) sa_set_group_attr(parent, 17105331Samw "prefix", prefix); 17115331Samw } 17125331Samw } 17135331Samw name = fix_resource_name((sa_share_t)group, 17145331Samw value, prefix); 17155331Samw if (name != NULL) { 17165331Samw resource = sa_add_resource( 17175331Samw (sa_share_t)group, name, 17185331Samw SA_SHARE_TRANSIENT, &ret); 17195331Samw sa_free_attr_string(name); 17205331Samw } else { 17215331Samw ret = SA_NO_MEMORY; 17225331Samw } 17235331Samw if (prefix != NULL) 17245331Samw sa_free_attr_string(prefix); 17255331Samw 17265331Samw /* A resource level optionset is needed */ 17275331Samw 17285331Samw need_optionset = 1; 17295331Samw if (resource == NULL) { 17305331Samw ret = SA_NO_MEMORY; 17315331Samw break; 17325331Samw } 17335331Samw continue; 17345331Samw } 17355331Samw 17365331Samw if (need_optionset) { 17375331Samw optionset = sa_create_optionset(resource, 17385331Samw "smb"); 17395331Samw need_optionset = 0; 17405331Samw } 17415331Samw 17425331Samw prop = sa_create_property(token, value); 17435331Samw if (prop == NULL) 17445331Samw ret = SA_NO_MEMORY; 17455331Samw else 17465331Samw ret = sa_add_property(optionset, prop); 17475331Samw if (ret != SA_OK) 17485331Samw break; 17495331Samw if (!iszfs) 17505331Samw ret = sa_commit_properties(optionset, !persist); 17515331Samw } 17525331Samw } 17535331Samw free(dup); 17545331Samw return (ret); 17555331Samw } 17565331Samw 17575331Samw /* 17585331Samw * smb_sprint_option(rbuff, rbuffsize, incr, prop, sep) 17595331Samw * 17605331Samw * provides a mechanism to format SMB properties into legacy output 17615331Samw * format. If the buffer would overflow, it is reallocated and grown 17625331Samw * as appropriate. Special cases of converting internal form of values 17635331Samw * to those used by "share" are done. this function does one property 17645331Samw * at a time. 17655331Samw */ 17665331Samw 17675331Samw static void 17685331Samw smb_sprint_option(char **rbuff, size_t *rbuffsize, size_t incr, 17695331Samw sa_property_t prop, int sep) 17705331Samw { 17715331Samw char *name; 17725331Samw char *value; 17735331Samw int curlen; 17745331Samw char *buff = *rbuff; 17755331Samw size_t buffsize = *rbuffsize; 17765331Samw 17775331Samw name = sa_get_property_attr(prop, "type"); 17785331Samw value = sa_get_property_attr(prop, "value"); 17795331Samw if (buff != NULL) 17805331Samw curlen = strlen(buff); 17815331Samw else 17825331Samw curlen = 0; 17835331Samw if (name != NULL) { 17845331Samw int len; 17855331Samw len = strlen(name) + sep; 17865331Samw 17875331Samw /* 17885331Samw * A future RFE would be to replace this with more 17895331Samw * generic code and to possibly handle more types. 17905331Samw * 17915331Samw * For now, everything else is treated as a string. If 17925331Samw * we get any properties that aren't exactly 17935331Samw * name/value pairs, we may need to 17945331Samw * interpret/transform. 17955331Samw */ 17965331Samw if (value != NULL) 17975331Samw len += 1 + strlen(value); 17985331Samw 17995331Samw while (buffsize <= (curlen + len)) { 18005331Samw /* need more room */ 18015331Samw buffsize += incr; 18025331Samw buff = realloc(buff, buffsize); 18035331Samw *rbuff = buff; 18045331Samw *rbuffsize = buffsize; 18055331Samw if (buff == NULL) { 18065331Samw /* realloc failed so free everything */ 18075331Samw if (*rbuff != NULL) 18085331Samw free(*rbuff); 18095331Samw goto err; 18105331Samw } 18115331Samw } 18125331Samw if (buff == NULL) 18135331Samw goto err; 18145331Samw (void) snprintf(buff + curlen, buffsize - curlen, 18155331Samw "%s%s=%s", sep ? "," : "", 18165331Samw name, value != NULL ? value : "\"\""); 18175331Samw 18185331Samw } 18195331Samw err: 18205331Samw if (name != NULL) 18215331Samw sa_free_attr_string(name); 18225331Samw if (value != NULL) 18235331Samw sa_free_attr_string(value); 18245331Samw } 18255331Samw 18265331Samw /* 18275331Samw * smb_format_resource_options(resource, hier) 18285331Samw * 18295331Samw * format all the options on the group into a flattened option 18305331Samw * string. If hier is non-zero, walk up the tree to get inherited 18315331Samw * options. 18325331Samw */ 18335331Samw 18345331Samw static char * 18355331Samw smb_format_options(sa_group_t group, int hier) 18365331Samw { 18375331Samw sa_optionset_t options = NULL; 18385331Samw sa_property_t prop; 18395331Samw int sep = 0; 18405331Samw char *buff; 18415331Samw size_t buffsize; 18425331Samw 18435331Samw 18445331Samw buff = malloc(OPT_CHUNK); 18455331Samw if (buff == NULL) 18465331Samw return (NULL); 18475331Samw 18485331Samw buff[0] = '\0'; 18495331Samw buffsize = OPT_CHUNK; 18505331Samw 18515331Samw /* 18525331Samw * We may have a an optionset relative to this item. format 18535331Samw * these if we find them and then add any security definitions. 18545331Samw */ 18555331Samw 18565331Samw options = sa_get_derived_optionset(group, "smb", hier); 18575331Samw 18585331Samw /* 18595331Samw * do the default set first but skip any option that is also 18605331Samw * in the protocol specific optionset. 18615331Samw */ 18625331Samw if (options != NULL) { 18635331Samw for (prop = sa_get_property(options, NULL); 18645331Samw prop != NULL; prop = sa_get_next_property(prop)) { 18655331Samw /* 18665331Samw * use this one since we skipped any 18675331Samw * of these that were also in 18685331Samw * optdefault 18695331Samw */ 18705331Samw smb_sprint_option(&buff, &buffsize, OPT_CHUNK, 18715331Samw prop, sep); 18725331Samw if (buff == NULL) { 18735331Samw /* 18745331Samw * buff could become NULL if there 18755331Samw * isn't enough memory for 18765331Samw * smb_sprint_option to realloc() 18775331Samw * as necessary. We can't really 18785331Samw * do anything about it at this 18795331Samw * point so we return NULL. The 18805331Samw * caller should handle the 18815331Samw * failure. 18825331Samw */ 18835331Samw if (options != NULL) 18845331Samw sa_free_derived_optionset( 18855331Samw options); 18865331Samw return (buff); 18875331Samw } 18885331Samw sep = 1; 18895331Samw } 18905331Samw } 18915331Samw 18925331Samw if (options != NULL) 18935331Samw sa_free_derived_optionset(options); 18945331Samw return (buff); 18955331Samw } 18965331Samw 18975331Samw /* 18985331Samw * smb_rename_resource(resource, newname) 18995331Samw * 19005331Samw * Change the current exported name of the resource to newname. 19015331Samw */ 19025331Samw /*ARGSUSED*/ 19035331Samw int 19045331Samw smb_rename_resource(sa_handle_t handle, sa_resource_t resource, char *newname) 19055331Samw { 19065331Samw int ret = SA_OK; 19075331Samw int err; 19085331Samw char *oldname; 19095331Samw 19107348SJose.Borrego@Sun.COM if (!smb_isonline()) 19117348SJose.Borrego@Sun.COM return (SA_OK); 19127348SJose.Borrego@Sun.COM 19135331Samw oldname = sa_get_resource_attr(resource, "name"); 19145331Samw if (oldname == NULL) 19155331Samw return (SA_NO_SUCH_RESOURCE); 19165331Samw 19177348SJose.Borrego@Sun.COM err = smb_share_rename(oldname, newname); 19185331Samw 19195331Samw /* improve error values somewhat */ 19205331Samw switch (err) { 19215331Samw case NERR_Success: 19225331Samw break; 19235331Samw case NERR_InternalError: 19245331Samw ret = SA_SYSTEM_ERR; 19255331Samw break; 19265331Samw case NERR_DuplicateShare: 19275331Samw ret = SA_DUPLICATE_NAME; 19285331Samw break; 19295331Samw default: 19305331Samw ret = SA_CONFIG_ERR; 19315331Samw break; 19325331Samw } 19335331Samw 19345331Samw return (ret); 19355331Samw } 19367348SJose.Borrego@Sun.COM 19377348SJose.Borrego@Sun.COM static int 19387348SJose.Borrego@Sun.COM smb_build_shareinfo(sa_share_t share, sa_resource_t resource, smb_share_t *si) 19397348SJose.Borrego@Sun.COM { 19407348SJose.Borrego@Sun.COM sa_property_t prop; 19417348SJose.Borrego@Sun.COM sa_optionset_t opts; 19427348SJose.Borrego@Sun.COM char *path; 19437348SJose.Borrego@Sun.COM char *rname; 19447348SJose.Borrego@Sun.COM char *val = NULL; 19457348SJose.Borrego@Sun.COM 19467348SJose.Borrego@Sun.COM bzero(si, sizeof (smb_share_t)); 19477348SJose.Borrego@Sun.COM 19487348SJose.Borrego@Sun.COM if ((path = sa_get_share_attr(share, "path")) == NULL) 19497348SJose.Borrego@Sun.COM return (SA_NO_SUCH_PATH); 19507348SJose.Borrego@Sun.COM 19517348SJose.Borrego@Sun.COM if ((rname = sa_get_resource_attr(resource, "name")) == NULL) { 19527348SJose.Borrego@Sun.COM sa_free_attr_string(path); 19537348SJose.Borrego@Sun.COM return (SA_NO_SUCH_RESOURCE); 19547348SJose.Borrego@Sun.COM } 19557348SJose.Borrego@Sun.COM 19567348SJose.Borrego@Sun.COM si->shr_flags = (sa_is_persistent(share)) 19577348SJose.Borrego@Sun.COM ? SMB_SHRF_PERM : SMB_SHRF_TRANS; 19587348SJose.Borrego@Sun.COM 19597348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_path, path, sizeof (si->shr_path)); 19607348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_name, rname, sizeof (si->shr_name)); 19617348SJose.Borrego@Sun.COM sa_free_attr_string(path); 19627348SJose.Borrego@Sun.COM sa_free_attr_string(rname); 19637348SJose.Borrego@Sun.COM 19647348SJose.Borrego@Sun.COM val = sa_get_resource_description(resource); 19657348SJose.Borrego@Sun.COM if (val == NULL) 19667348SJose.Borrego@Sun.COM val = sa_get_share_description(share); 19677348SJose.Borrego@Sun.COM 19687348SJose.Borrego@Sun.COM if (val != NULL) { 19697348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_cmnt, val, sizeof (si->shr_cmnt)); 19707348SJose.Borrego@Sun.COM sa_free_share_description(val); 19717348SJose.Borrego@Sun.COM } 19727348SJose.Borrego@Sun.COM 19737348SJose.Borrego@Sun.COM opts = sa_get_derived_optionset(resource, SMB_PROTOCOL_NAME, 1); 19747348SJose.Borrego@Sun.COM if (opts == NULL) 19757348SJose.Borrego@Sun.COM return (SA_OK); 19767348SJose.Borrego@Sun.COM 1977*8334SJose.Borrego@Sun.COM prop = sa_get_property(opts, SHOPT_AD_CONTAINER); 19787348SJose.Borrego@Sun.COM if (prop != NULL) { 19797348SJose.Borrego@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 19807348SJose.Borrego@Sun.COM (void) strlcpy(si->shr_container, val, 19817348SJose.Borrego@Sun.COM sizeof (si->shr_container)); 19827348SJose.Borrego@Sun.COM free(val); 19837348SJose.Borrego@Sun.COM } 19847348SJose.Borrego@Sun.COM } 19857348SJose.Borrego@Sun.COM 1986*8334SJose.Borrego@Sun.COM prop = sa_get_property(opts, SHOPT_CSC); 1987*8334SJose.Borrego@Sun.COM if (prop != NULL) { 1988*8334SJose.Borrego@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 1989*8334SJose.Borrego@Sun.COM smb_csc_option(val, si); 1990*8334SJose.Borrego@Sun.COM free(val); 1991*8334SJose.Borrego@Sun.COM } 1992*8334SJose.Borrego@Sun.COM } 1993*8334SJose.Borrego@Sun.COM 19947961SNatalie.Li@Sun.COM prop = sa_get_property(opts, SHOPT_RO); 19957961SNatalie.Li@Sun.COM if (prop != NULL) { 19967961SNatalie.Li@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 19977961SNatalie.Li@Sun.COM (void) strlcpy(si->shr_access_ro, val, 19987961SNatalie.Li@Sun.COM sizeof (si->shr_access_ro)); 19997961SNatalie.Li@Sun.COM free(val); 20007961SNatalie.Li@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RO; 20017961SNatalie.Li@Sun.COM } 20027961SNatalie.Li@Sun.COM } 20037961SNatalie.Li@Sun.COM 20047961SNatalie.Li@Sun.COM prop = sa_get_property(opts, SHOPT_RW); 20057961SNatalie.Li@Sun.COM if (prop != NULL) { 20067961SNatalie.Li@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 20077961SNatalie.Li@Sun.COM (void) strlcpy(si->shr_access_rw, val, 20087961SNatalie.Li@Sun.COM sizeof (si->shr_access_rw)); 20097961SNatalie.Li@Sun.COM free(val); 20107961SNatalie.Li@Sun.COM si->shr_flags |= SMB_SHRF_ACC_RW; 20117961SNatalie.Li@Sun.COM } 20127961SNatalie.Li@Sun.COM } 20137961SNatalie.Li@Sun.COM 20147961SNatalie.Li@Sun.COM prop = sa_get_property(opts, SHOPT_NONE); 20157961SNatalie.Li@Sun.COM if (prop != NULL) { 20167961SNatalie.Li@Sun.COM if ((val = sa_get_property_attr(prop, "value")) != NULL) { 20177961SNatalie.Li@Sun.COM (void) strlcpy(si->shr_access_none, val, 20187961SNatalie.Li@Sun.COM sizeof (si->shr_access_none)); 20197961SNatalie.Li@Sun.COM free(val); 20207961SNatalie.Li@Sun.COM si->shr_flags |= SMB_SHRF_ACC_NONE; 20217961SNatalie.Li@Sun.COM } 20227961SNatalie.Li@Sun.COM } 20237961SNatalie.Li@Sun.COM 20247348SJose.Borrego@Sun.COM sa_free_derived_optionset(opts); 20257348SJose.Borrego@Sun.COM return (SA_OK); 20267348SJose.Borrego@Sun.COM } 20277348SJose.Borrego@Sun.COM 20287348SJose.Borrego@Sun.COM /* 2029*8334SJose.Borrego@Sun.COM * Map a client-side caching (CSC) option to the appropriate share 2030*8334SJose.Borrego@Sun.COM * flag. Only one option is allowed; an error will be logged if 2031*8334SJose.Borrego@Sun.COM * multiple options have been specified. We don't need to do anything 2032*8334SJose.Borrego@Sun.COM * about multiple values here because the SRVSVC will not recognize 2033*8334SJose.Borrego@Sun.COM * a value containing multiple flags and will return the default value. 2034*8334SJose.Borrego@Sun.COM * 2035*8334SJose.Borrego@Sun.COM * If the option value is not recognized, it will be ignored: invalid 2036*8334SJose.Borrego@Sun.COM * values will typically be caught and rejected by sharemgr. 2037*8334SJose.Borrego@Sun.COM */ 2038*8334SJose.Borrego@Sun.COM static void 2039*8334SJose.Borrego@Sun.COM smb_csc_option(const char *value, smb_share_t *si) 2040*8334SJose.Borrego@Sun.COM { 2041*8334SJose.Borrego@Sun.COM struct { 2042*8334SJose.Borrego@Sun.COM char *value; 2043*8334SJose.Borrego@Sun.COM uint32_t flag; 2044*8334SJose.Borrego@Sun.COM } cscopt[] = { 2045*8334SJose.Borrego@Sun.COM { "disabled", SMB_SHRF_CSC_DISABLED }, 2046*8334SJose.Borrego@Sun.COM { "manual", SMB_SHRF_CSC_MANUAL }, 2047*8334SJose.Borrego@Sun.COM { "auto", SMB_SHRF_CSC_AUTO }, 2048*8334SJose.Borrego@Sun.COM { "vdo", SMB_SHRF_CSC_VDO } 2049*8334SJose.Borrego@Sun.COM }; 2050*8334SJose.Borrego@Sun.COM 2051*8334SJose.Borrego@Sun.COM char buf[SMB_CSC_BUFSZ]; 2052*8334SJose.Borrego@Sun.COM int i; 2053*8334SJose.Borrego@Sun.COM 2054*8334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 2055*8334SJose.Borrego@Sun.COM if (strcasecmp(value, cscopt[i].value) == 0) { 2056*8334SJose.Borrego@Sun.COM si->shr_flags |= cscopt[i].flag; 2057*8334SJose.Borrego@Sun.COM break; 2058*8334SJose.Borrego@Sun.COM } 2059*8334SJose.Borrego@Sun.COM } 2060*8334SJose.Borrego@Sun.COM 2061*8334SJose.Borrego@Sun.COM switch (si->shr_flags & SMB_SHRF_CSC_MASK) { 2062*8334SJose.Borrego@Sun.COM case 0: 2063*8334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_DISABLED: 2064*8334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_MANUAL: 2065*8334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_AUTO: 2066*8334SJose.Borrego@Sun.COM case SMB_SHRF_CSC_VDO: 2067*8334SJose.Borrego@Sun.COM break; 2068*8334SJose.Borrego@Sun.COM 2069*8334SJose.Borrego@Sun.COM default: 2070*8334SJose.Borrego@Sun.COM buf[0] = '\0'; 2071*8334SJose.Borrego@Sun.COM 2072*8334SJose.Borrego@Sun.COM for (i = 0; i < (sizeof (cscopt) / sizeof (cscopt[0])); ++i) { 2073*8334SJose.Borrego@Sun.COM if (si->shr_flags & cscopt[i].flag) { 2074*8334SJose.Borrego@Sun.COM (void) strlcat(buf, " ", SMB_CSC_BUFSZ); 2075*8334SJose.Borrego@Sun.COM (void) strlcat(buf, cscopt[i].value, 2076*8334SJose.Borrego@Sun.COM SMB_CSC_BUFSZ); 2077*8334SJose.Borrego@Sun.COM } 2078*8334SJose.Borrego@Sun.COM } 2079*8334SJose.Borrego@Sun.COM 2080*8334SJose.Borrego@Sun.COM syslog(LOG_ERR, "csc option conflict:%s", buf); 2081*8334SJose.Borrego@Sun.COM break; 2082*8334SJose.Borrego@Sun.COM } 2083*8334SJose.Borrego@Sun.COM } 2084*8334SJose.Borrego@Sun.COM 2085*8334SJose.Borrego@Sun.COM /* 20867348SJose.Borrego@Sun.COM * smb_get_defaultgrp 20877348SJose.Borrego@Sun.COM * 20887348SJose.Borrego@Sun.COM * If default group for CIFS shares (i.e. "smb") exists 20897348SJose.Borrego@Sun.COM * then it will return the group handle, otherwise it will 20907348SJose.Borrego@Sun.COM * create the group and return the handle. 20917348SJose.Borrego@Sun.COM * 20927348SJose.Borrego@Sun.COM * All the shares created by CIFS clients (this is only possible 20937348SJose.Borrego@Sun.COM * via RPC) will be added to "smb" groups. 20947348SJose.Borrego@Sun.COM */ 20957348SJose.Borrego@Sun.COM static sa_group_t 20967348SJose.Borrego@Sun.COM smb_get_defaultgrp(sa_handle_t handle) 20977348SJose.Borrego@Sun.COM { 20987348SJose.Borrego@Sun.COM sa_group_t group = NULL; 20997348SJose.Borrego@Sun.COM int err; 21007348SJose.Borrego@Sun.COM 21017348SJose.Borrego@Sun.COM group = sa_get_group(handle, SMB_DEFAULT_SHARE_GROUP); 21027348SJose.Borrego@Sun.COM if (group != NULL) 21037348SJose.Borrego@Sun.COM return (group); 21047348SJose.Borrego@Sun.COM 21057348SJose.Borrego@Sun.COM group = sa_create_group(handle, SMB_DEFAULT_SHARE_GROUP, &err); 21067348SJose.Borrego@Sun.COM if (group == NULL) 21077348SJose.Borrego@Sun.COM return (NULL); 21087348SJose.Borrego@Sun.COM 21097348SJose.Borrego@Sun.COM if (sa_create_optionset(group, SMB_DEFAULT_SHARE_GROUP) == NULL) { 21107348SJose.Borrego@Sun.COM (void) sa_remove_group(group); 21117348SJose.Borrego@Sun.COM group = NULL; 21127348SJose.Borrego@Sun.COM } 21137348SJose.Borrego@Sun.COM 21147348SJose.Borrego@Sun.COM return (group); 21157348SJose.Borrego@Sun.COM } 2116