xref: /onnv-gate/usr/src/cmd/smbsrv/smbd/smbd_main.c (revision 11963:061945695ce1)
15331Samw /*
25331Samw  * CDDL HEADER START
35331Samw  *
45331Samw  * The contents of this file are subject to the terms of the
55331Samw  * Common Development and Distribution License (the "License").
65331Samw  * You may not use this file except in compliance with the License.
75331Samw  *
85331Samw  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
95331Samw  * or http://www.opensolaris.org/os/licensing.
105331Samw  * See the License for the specific language governing permissions
115331Samw  * and limitations under the License.
125331Samw  *
135331Samw  * When distributing Covered Code, include this CDDL HEADER in each
145331Samw  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
155331Samw  * If applicable, add the following below this CDDL HEADER, with the
165331Samw  * fields enclosed by brackets "[]" replaced with your own identifying
175331Samw  * information: Portions Copyright [yyyy] [name of copyright owner]
185331Samw  *
195331Samw  * CDDL HEADER END
205331Samw  */
215331Samw /*
2211537SCasper.Dik@Sun.COM  * Copyright 2010 Sun Microsystems, Inc.  All rights reserved.
235331Samw  * Use is subject to license terms.
245331Samw  */
255331Samw 
265331Samw #include <sys/types.h>
275331Samw #include <sys/stat.h>
285331Samw #include <sys/ioccom.h>
299832Samw@Sun.COM #include <sys/corectl.h>
305331Samw #include <stdio.h>
315331Samw #include <string.h>
325331Samw #include <strings.h>
335331Samw #include <stdlib.h>
345331Samw #include <unistd.h>
355331Samw #include <stdarg.h>
365331Samw #include <fcntl.h>
375331Samw #include <wait.h>
385331Samw #include <signal.h>
398334SJose.Borrego@Sun.COM #include <atomic.h>
405331Samw #include <libscf.h>
415331Samw #include <limits.h>
425331Samw #include <priv_utils.h>
435331Samw #include <door.h>
445331Samw #include <errno.h>
455331Samw #include <pthread.h>
465331Samw #include <time.h>
475331Samw #include <libscf.h>
485331Samw #include <zone.h>
495331Samw #include <libgen.h>
505331Samw #include <pwd.h>
515331Samw #include <grp.h>
525331Samw 
53*11963SAfshin.Ardakani@Sun.COM #include <smbsrv/smb_door.h>
545331Samw #include <smbsrv/smb_ioctl.h>
5510966SJordan.Brown@Sun.COM #include <smbsrv/string.h>
565331Samw #include <smbsrv/libsmb.h>
575331Samw #include <smbsrv/libsmbns.h>
585331Samw #include <smbsrv/libmlsvc.h>
595331Samw #include "smbd.h"
605331Samw 
615331Samw #define	DRV_DEVICE_PATH	"/devices/pseudo/smbsrv@0:smbsrv"
625331Samw #define	SMB_DBDIR "/var/smb"
635331Samw 
649832Samw@Sun.COM static void *smbd_nbt_listener(void *);
659832Samw@Sun.COM static void *smbd_tcp_listener(void *);
669832Samw@Sun.COM static void *smbd_nbt_receiver(void *);
679832Samw@Sun.COM static void *smbd_tcp_receiver(void *);
686139Sjb150015 
695331Samw static int smbd_daemonize_init(void);
705331Samw static void smbd_daemonize_fini(int, int);
719832Samw@Sun.COM static int smb_init_daemon_priv(int, uid_t, gid_t);
725331Samw 
736432Sas200622 static int smbd_kernel_bind(void);
745331Samw static void smbd_kernel_unbind(void);
755331Samw static int smbd_already_running(void);
765331Samw 
775331Samw static int smbd_service_init(void);
785331Samw static void smbd_service_fini(void);
795331Samw 
805331Samw static int smbd_setup_options(int argc, char *argv[]);
815331Samw static void smbd_usage(FILE *fp);
825331Samw static void smbd_report(const char *fmt, ...);
835331Samw 
845331Samw static void smbd_sig_handler(int sig);
855331Samw 
867348SJose.Borrego@Sun.COM static int32_t smbd_gmtoff(void);
875331Samw static int smbd_localtime_init(void);
885331Samw static void *smbd_localtime_monitor(void *arg);
895331Samw 
905331Samw static pthread_t localtime_thr;
915331Samw 
925331Samw static int smbd_refresh_init(void);
935331Samw static void smbd_refresh_fini(void);
945331Samw static void *smbd_refresh_monitor(void *);
958670SJose.Borrego@Sun.COM static void smbd_refresh_dc(void);
968670SJose.Borrego@Sun.COM 
979832Samw@Sun.COM static void *smbd_nbt_receiver(void *);
989832Samw@Sun.COM static void *smbd_nbt_listener(void *);
999832Samw@Sun.COM 
1009832Samw@Sun.COM static void *smbd_tcp_receiver(void *);
1019832Samw@Sun.COM static void *smbd_tcp_listener(void *);
1029832Samw@Sun.COM 
1039046SJose.Borrego@Sun.COM static int smbd_start_listeners(void);
1049046SJose.Borrego@Sun.COM static void smbd_stop_listeners(void);
1059832Samw@Sun.COM static int smbd_kernel_start(void);
1069832Samw@Sun.COM 
1079832Samw@Sun.COM static void smbd_fatal_error(const char *);
1089046SJose.Borrego@Sun.COM 
1095331Samw static pthread_t refresh_thr;
1105331Samw static pthread_cond_t refresh_cond;
1115331Samw static pthread_mutex_t refresh_mutex;
1125331Samw 
113*11963SAfshin.Ardakani@Sun.COM static cond_t listener_cv;
114*11963SAfshin.Ardakani@Sun.COM static mutex_t listener_mutex;
115*11963SAfshin.Ardakani@Sun.COM 
116*11963SAfshin.Ardakani@Sun.COM /*
117*11963SAfshin.Ardakani@Sun.COM  * Mutex to ensure that smbd_service_fini() and smbd_service_init()
118*11963SAfshin.Ardakani@Sun.COM  * are atomic w.r.t. one another.  Otherwise, if a shutdown begins
119*11963SAfshin.Ardakani@Sun.COM  * before initialization is complete, resources can get deallocated
120*11963SAfshin.Ardakani@Sun.COM  * while initialization threads are still using them.
121*11963SAfshin.Ardakani@Sun.COM  */
122*11963SAfshin.Ardakani@Sun.COM static mutex_t smbd_service_mutex;
123*11963SAfshin.Ardakani@Sun.COM static cond_t smbd_service_cv;
124*11963SAfshin.Ardakani@Sun.COM 
1256139Sjb150015 smbd_t smbd;
1265331Samw 
1275331Samw /*
1285331Samw  * Use SMF error codes only on return or exit.
1295331Samw  */
1305331Samw int
1315331Samw main(int argc, char *argv[])
1325331Samw {
1336432Sas200622 	struct sigaction	act;
1346432Sas200622 	sigset_t		set;
1356432Sas200622 	uid_t			uid;
1366432Sas200622 	int			pfd = -1;
1378334SJose.Borrego@Sun.COM 	uint_t			sigval;
1385331Samw 
1395331Samw 	smbd.s_pname = basename(argv[0]);
1405331Samw 	openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
1415331Samw 
1425331Samw 	if (smbd_setup_options(argc, argv) != 0)
1435331Samw 		return (SMF_EXIT_ERR_FATAL);
1445331Samw 
1455331Samw 	if ((uid = getuid()) != smbd.s_uid) {
1465331Samw 		smbd_report("user %d: %s", uid, strerror(EPERM));
1475331Samw 		return (SMF_EXIT_ERR_FATAL);
1485331Samw 	}
1495331Samw 
1505331Samw 	if (getzoneid() != GLOBAL_ZONEID) {
1515331Samw 		smbd_report("non-global zones are not supported");
1525331Samw 		return (SMF_EXIT_ERR_FATAL);
1535331Samw 	}
1545331Samw 
1555331Samw 	if (is_system_labeled()) {
1565331Samw 		smbd_report("Trusted Extensions not supported");
1575331Samw 		return (SMF_EXIT_ERR_FATAL);
1585331Samw 	}
1595331Samw 
1605331Samw 	if (smbd_already_running())
1615331Samw 		return (SMF_EXIT_OK);
1625331Samw 
1635331Samw 	(void) sigfillset(&set);
1645331Samw 	(void) sigdelset(&set, SIGABRT);
1655331Samw 
1665331Samw 	(void) sigfillset(&act.sa_mask);
1675331Samw 	act.sa_handler = smbd_sig_handler;
1685331Samw 	act.sa_flags = 0;
1695331Samw 
170*11963SAfshin.Ardakani@Sun.COM 	(void) sigaction(SIGABRT, &act, NULL);
1715331Samw 	(void) sigaction(SIGTERM, &act, NULL);
1725331Samw 	(void) sigaction(SIGHUP, &act, NULL);
1735331Samw 	(void) sigaction(SIGINT, &act, NULL);
1745331Samw 	(void) sigaction(SIGPIPE, &act, NULL);
1755331Samw 
1765331Samw 	(void) sigdelset(&set, SIGTERM);
1775331Samw 	(void) sigdelset(&set, SIGHUP);
1785331Samw 	(void) sigdelset(&set, SIGINT);
1795331Samw 	(void) sigdelset(&set, SIGPIPE);
1805331Samw 
1815331Samw 	if (smbd.s_fg) {
1825331Samw 		(void) sigdelset(&set, SIGTSTP);
1835331Samw 		(void) sigdelset(&set, SIGTTIN);
1845331Samw 		(void) sigdelset(&set, SIGTTOU);
1855331Samw 
1865331Samw 		if (smbd_service_init() != 0) {
1875331Samw 			smbd_report("service initialization failed");
1885331Samw 			exit(SMF_EXIT_ERR_FATAL);
1895331Samw 		}
1905331Samw 	} else {
1915331Samw 		/*
1925331Samw 		 * "pfd" is a pipe descriptor -- any fatal errors
1935331Samw 		 * during subsequent initialization of the child
1945331Samw 		 * process should be written to this pipe and the
1955331Samw 		 * parent will report this error as the exit status.
1965331Samw 		 */
1975331Samw 		pfd = smbd_daemonize_init();
1985331Samw 
1995331Samw 		if (smbd_service_init() != 0) {
2005331Samw 			smbd_report("daemon initialization failed");
2015331Samw 			exit(SMF_EXIT_ERR_FATAL);
2025331Samw 		}
2035331Samw 
2045331Samw 		smbd_daemonize_fini(pfd, SMF_EXIT_OK);
2055331Samw 	}
2065331Samw 
207*11963SAfshin.Ardakani@Sun.COM 	(void) atexit(smb_kmod_stop);
2085331Samw 
2098334SJose.Borrego@Sun.COM 	while (!smbd.s_shutting_down) {
2108334SJose.Borrego@Sun.COM 		if (smbd.s_sigval == 0 && smbd.s_refreshes == 0)
2117052Samw 			(void) sigsuspend(&set);
2125331Samw 
2138334SJose.Borrego@Sun.COM 		sigval = atomic_swap_uint(&smbd.s_sigval, 0);
2147052Samw 
2157052Samw 		switch (sigval) {
2165331Samw 		case 0:
2175331Samw 		case SIGPIPE:
218*11963SAfshin.Ardakani@Sun.COM 		case SIGABRT:
2195331Samw 			break;
2205331Samw 
2215331Samw 		case SIGHUP:
2228334SJose.Borrego@Sun.COM 			syslog(LOG_DEBUG, "refresh requested");
2235331Samw 			(void) pthread_cond_signal(&refresh_cond);
2245331Samw 			break;
2255331Samw 
2265331Samw 		default:
2275331Samw 			/*
2285331Samw 			 * Typically SIGINT or SIGTERM.
2295331Samw 			 */
2308334SJose.Borrego@Sun.COM 			smbd.s_shutting_down = B_TRUE;
2315331Samw 			break;
2325331Samw 		}
2335331Samw 	}
2345331Samw 
2355331Samw 	smbd_service_fini();
2365331Samw 	closelog();
2379832Samw@Sun.COM 	return ((smbd.s_fatal_error) ? SMF_EXIT_ERR_FATAL : SMF_EXIT_OK);
2385331Samw }
2395331Samw 
2405331Samw /*
2415331Samw  * This function will fork off a child process,
2425331Samw  * from which only the child will return.
2435331Samw  *
2445331Samw  * Use SMF error codes only on exit.
2455331Samw  */
2465331Samw static int
2475331Samw smbd_daemonize_init(void)
2485331Samw {
2495331Samw 	int status, pfds[2];
2505331Samw 	sigset_t set, oset;
2515331Samw 	pid_t pid;
2525331Samw 	int rc;
2535331Samw 
2545331Samw 	/*
2555331Samw 	 * Reset privileges to the minimum set required. We continue
2565331Samw 	 * to run as root to create and access files in /var.
2575331Samw 	 */
2589832Samw@Sun.COM 	rc = smb_init_daemon_priv(PU_RESETGROUPS, smbd.s_uid, smbd.s_gid);
2595331Samw 
2605331Samw 	if (rc != 0) {
2615331Samw 		smbd_report("insufficient privileges");
2625331Samw 		exit(SMF_EXIT_ERR_FATAL);
2635331Samw 	}
2645331Samw 
2655331Samw 	/*
2665331Samw 	 * Block all signals prior to the fork and leave them blocked in the
2675331Samw 	 * parent so we don't get in a situation where the parent gets SIGINT
2685331Samw 	 * and returns non-zero exit status and the child is actually running.
2695331Samw 	 * In the child, restore the signal mask once we've done our setsid().
2705331Samw 	 */
2715331Samw 	(void) sigfillset(&set);
2725331Samw 	(void) sigdelset(&set, SIGABRT);
2735331Samw 	(void) sigprocmask(SIG_BLOCK, &set, &oset);
2745331Samw 
2755331Samw 	if (pipe(pfds) == -1) {
2765331Samw 		smbd_report("unable to create pipe");
2775331Samw 		exit(SMF_EXIT_ERR_FATAL);
2785331Samw 	}
2795331Samw 
2805331Samw 	closelog();
2815331Samw 
2825331Samw 	if ((pid = fork()) == -1) {
2835331Samw 		openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
2845331Samw 		smbd_report("unable to fork");
2855331Samw 		closelog();
2865331Samw 		exit(SMF_EXIT_ERR_FATAL);
2875331Samw 	}
2885331Samw 
2895331Samw 	/*
2905331Samw 	 * If we're the parent process, wait for either the child to send us
2915331Samw 	 * the appropriate exit status over the pipe or for the read to fail
2925331Samw 	 * (presumably with 0 for EOF if our child terminated abnormally).
2935331Samw 	 * If the read fails, exit with either the child's exit status if it
2945331Samw 	 * exited or with SMF_EXIT_ERR_FATAL if it died from a fatal signal.
2955331Samw 	 */
2965331Samw 	if (pid != 0) {
2975331Samw 		(void) close(pfds[1]);
2985331Samw 
2995331Samw 		if (read(pfds[0], &status, sizeof (status)) == sizeof (status))
3005331Samw 			_exit(status);
3015331Samw 
3025331Samw 		if (waitpid(pid, &status, 0) == pid && WIFEXITED(status))
3035331Samw 			_exit(WEXITSTATUS(status));
3045331Samw 
3055331Samw 		_exit(SMF_EXIT_ERR_FATAL);
3065331Samw 	}
3075331Samw 
3085331Samw 	openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
3095331Samw 	(void) setsid();
3105331Samw 	(void) sigprocmask(SIG_SETMASK, &oset, NULL);
3115331Samw 	(void) chdir("/");
3125331Samw 	(void) umask(022);
3135331Samw 	(void) close(pfds[0]);
3145331Samw 
3155331Samw 	return (pfds[1]);
3165331Samw }
3175331Samw 
3189832Samw@Sun.COM /*
3199832Samw@Sun.COM  * This function is based on __init_daemon_priv() and replaces
3209832Samw@Sun.COM  * __init_daemon_priv() since we want smbd to have all privileges so that it
3219832Samw@Sun.COM  * can execute map/unmap commands with all privileges during share
3229832Samw@Sun.COM  * connection/disconnection.  Unused privileges are disabled until command
3239832Samw@Sun.COM  * execution.  The permitted and the limit set contains all privileges.  The
3249832Samw@Sun.COM  * inheritable set contains no privileges.
3259832Samw@Sun.COM  */
3269832Samw@Sun.COM 
3279832Samw@Sun.COM static const char root_cp[] = "/core.%f.%t";
3289832Samw@Sun.COM static const char daemon_cp[] = "/var/tmp/core.%f.%t";
3299832Samw@Sun.COM 
3309832Samw@Sun.COM static int
3319832Samw@Sun.COM smb_init_daemon_priv(int flags, uid_t uid, gid_t gid)
3329832Samw@Sun.COM {
3339832Samw@Sun.COM 	priv_set_t *perm = NULL;
3349832Samw@Sun.COM 	int ret = -1;
3359832Samw@Sun.COM 	char buf[1024];
3369832Samw@Sun.COM 
3379832Samw@Sun.COM 	/*
3389832Samw@Sun.COM 	 * This is not a significant failure: it allows us to start programs
3399832Samw@Sun.COM 	 * with sufficient privileges and with the proper uid.   We don't
3409832Samw@Sun.COM 	 * care enough about the extra groups in that case.
3419832Samw@Sun.COM 	 */
3429832Samw@Sun.COM 	if (flags & PU_RESETGROUPS)
3439832Samw@Sun.COM 		(void) setgroups(0, NULL);
3449832Samw@Sun.COM 
3459832Samw@Sun.COM 	if (gid != (gid_t)-1 && setgid(gid) != 0)
3469832Samw@Sun.COM 		goto end;
3479832Samw@Sun.COM 
3489832Samw@Sun.COM 	perm = priv_allocset();
3499832Samw@Sun.COM 	if (perm == NULL)
3509832Samw@Sun.COM 		goto end;
3519832Samw@Sun.COM 
3529832Samw@Sun.COM 	/* E = P */
3539832Samw@Sun.COM 	(void) getppriv(PRIV_PERMITTED, perm);
3549832Samw@Sun.COM 	(void) setppriv(PRIV_SET, PRIV_EFFECTIVE, perm);
3559832Samw@Sun.COM 
3569832Samw@Sun.COM 	/* Now reset suid and euid */
3579832Samw@Sun.COM 	if (uid != (uid_t)-1 && setreuid(uid, uid) != 0)
3589832Samw@Sun.COM 		goto end;
3599832Samw@Sun.COM 
3609832Samw@Sun.COM 	/* I = 0 */
3619832Samw@Sun.COM 	priv_emptyset(perm);
3629832Samw@Sun.COM 	ret = setppriv(PRIV_SET, PRIV_INHERITABLE, perm);
3639832Samw@Sun.COM end:
3649832Samw@Sun.COM 	priv_freeset(perm);
3659832Samw@Sun.COM 
3669832Samw@Sun.COM 	if (core_get_process_path(buf, sizeof (buf), getpid()) == 0 &&
3679832Samw@Sun.COM 	    strcmp(buf, "core") == 0) {
3689832Samw@Sun.COM 
3699832Samw@Sun.COM 		if ((uid == (uid_t)-1 ? geteuid() : uid) == 0) {
3709832Samw@Sun.COM 			(void) core_set_process_path(root_cp, sizeof (root_cp),
3719832Samw@Sun.COM 			    getpid());
3729832Samw@Sun.COM 		} else {
3739832Samw@Sun.COM 			(void) core_set_process_path(daemon_cp,
3749832Samw@Sun.COM 			    sizeof (daemon_cp), getpid());
3759832Samw@Sun.COM 		}
3769832Samw@Sun.COM 	}
3779832Samw@Sun.COM 	(void) setpflags(__PROC_PROTECT, 0);
3789832Samw@Sun.COM 
3799832Samw@Sun.COM 	return (ret);
3809832Samw@Sun.COM }
3819832Samw@Sun.COM 
3829832Samw@Sun.COM /*
3839832Samw@Sun.COM  * Most privileges, except the ones that are required for smbd, are turn off
3849832Samw@Sun.COM  * in the effective set.  They will be turn on when needed for command
3859832Samw@Sun.COM  * execution during share connection/disconnection.
3869832Samw@Sun.COM  */
3875331Samw static void
3885331Samw smbd_daemonize_fini(int fd, int exit_status)
3895331Samw {
3909832Samw@Sun.COM 	priv_set_t *pset;
3919832Samw@Sun.COM 
3925331Samw 	/*
3935331Samw 	 * Now that we're running, if a pipe fd was specified, write an exit
3945331Samw 	 * status to it to indicate that our parent process can safely detach.
3955331Samw 	 * Then proceed to loading the remaining non-built-in modules.
3965331Samw 	 */
3975331Samw 	if (fd >= 0)
3985331Samw 		(void) write(fd, &exit_status, sizeof (exit_status));
3995331Samw 
4005331Samw 	(void) close(fd);
4015331Samw 
4029832Samw@Sun.COM 	pset = priv_allocset();
4039832Samw@Sun.COM 	if (pset == NULL)
4049832Samw@Sun.COM 		return;
4059832Samw@Sun.COM 
40611537SCasper.Dik@Sun.COM 	priv_basicset(pset);
4079832Samw@Sun.COM 
4089832Samw@Sun.COM 	/* list of privileges for smbd */
4099832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_NET_MAC_AWARE);
4109832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_NET_PRIVADDR);
4119832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_PROC_AUDIT);
4129832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_SYS_DEVICES);
4139832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_SYS_SMB);
414*11963SAfshin.Ardakani@Sun.COM 	(void) priv_addset(pset, PRIV_SYS_MOUNT);
4159832Samw@Sun.COM 
4169832Samw@Sun.COM 	priv_inverse(pset);
4179832Samw@Sun.COM 
4189832Samw@Sun.COM 	/* turn off unneeded privileges */
4199832Samw@Sun.COM 	(void) setppriv(PRIV_OFF, PRIV_EFFECTIVE, pset);
4209832Samw@Sun.COM 
4219832Samw@Sun.COM 	priv_freeset(pset);
4229832Samw@Sun.COM 
4239832Samw@Sun.COM 	/* reenable core dumps */
4249832Samw@Sun.COM 	__fini_daemon_priv(NULL);
4255331Samw }
4265331Samw 
4276139Sjb150015 /*
4286139Sjb150015  * smbd_service_init
4296139Sjb150015  */
4305331Samw static int
4315331Samw smbd_service_init(void)
4325331Samw {
433*11963SAfshin.Ardakani@Sun.COM 	static struct dir {
434*11963SAfshin.Ardakani@Sun.COM 		char	*name;
435*11963SAfshin.Ardakani@Sun.COM 		int	perm;
436*11963SAfshin.Ardakani@Sun.COM 	} dir[] = {
437*11963SAfshin.Ardakani@Sun.COM 		{ SMB_DBDIR,	0700 },
438*11963SAfshin.Ardakani@Sun.COM 		{ SMB_CVOL,	0755 },
439*11963SAfshin.Ardakani@Sun.COM 		{ SMB_SYSROOT,	0755 },
440*11963SAfshin.Ardakani@Sun.COM 		{ SMB_SYSTEM32,	0755 },
441*11963SAfshin.Ardakani@Sun.COM 		{ SMB_VSS,	0755 }
442*11963SAfshin.Ardakani@Sun.COM 	};
443*11963SAfshin.Ardakani@Sun.COM 	int	rc, i;
444*11963SAfshin.Ardakani@Sun.COM 
445*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_lock(&smbd_service_mutex);
4466432Sas200622 
4479832Samw@Sun.COM 	smbd.s_pid = getpid();
448*11963SAfshin.Ardakani@Sun.COM 	for (i = 0; i < sizeof (dir)/sizeof (dir[0]); ++i) {
449*11963SAfshin.Ardakani@Sun.COM 		if ((mkdir(dir[i].name, dir[i].perm) < 0) &&
450*11963SAfshin.Ardakani@Sun.COM 		    (errno != EEXIST)) {
451*11963SAfshin.Ardakani@Sun.COM 			smbd_report("mkdir %s: %s", dir[i].name,
452*11963SAfshin.Ardakani@Sun.COM 			    strerror(errno));
453*11963SAfshin.Ardakani@Sun.COM 			(void) mutex_unlock(&smbd_service_mutex);
454*11963SAfshin.Ardakani@Sun.COM 			return (-1);
455*11963SAfshin.Ardakani@Sun.COM 		}
4565331Samw 	}
4575331Samw 
4586139Sjb150015 	if ((rc = smb_ccache_init(SMB_VARRUN_DIR, SMB_CCACHE_FILE)) != 0) {
4596139Sjb150015 		if (rc == -1)
4606139Sjb150015 			smbd_report("mkdir %s: %s", SMB_VARRUN_DIR,
4616139Sjb150015 			    strerror(errno));
4626139Sjb150015 		else
4636139Sjb150015 			smbd_report("unable to set KRB5CCNAME");
464*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
465*11963SAfshin.Ardakani@Sun.COM 		return (-1);
4665331Samw 	}
4675331Samw 
46810966SJordan.Brown@Sun.COM 	smb_codepage_init();
4695331Samw 
4706432Sas200622 	if (smb_nicmon_start(SMBD_DEFAULT_INSTANCE_FMRI) != 0)
4716432Sas200622 		smbd_report("NIC monitoring failed to start");
4726432Sas200622 
4738334SJose.Borrego@Sun.COM 	(void) dyndns_start();
47410717Samw@Sun.COM 	smb_ipc_init();
4755331Samw 
4765772Sas200622 	if (smb_netbios_start() != 0)
4775772Sas200622 		smbd_report("NetBIOS services failed to start");
4785772Sas200622 	else
4795772Sas200622 		smbd_report("NetBIOS services started");
4805772Sas200622 
4816432Sas200622 	smbd.s_secmode = smb_config_get_secmode();
48210717Samw@Sun.COM 	if ((rc = smb_domain_init(smbd.s_secmode)) != 0) {
4835772Sas200622 		if (rc == SMB_DOMAIN_NOMACHINE_SID) {
4845772Sas200622 			smbd_report(
4855772Sas200622 			    "no machine SID: check idmap configuration");
486*11963SAfshin.Ardakani@Sun.COM 			(void) mutex_unlock(&smbd_service_mutex);
487*11963SAfshin.Ardakani@Sun.COM 			return (-1);
4885772Sas200622 		}
4895331Samw 	}
4905331Samw 
4917052Samw 	smb_ads_init();
492*11963SAfshin.Ardakani@Sun.COM 	if (mlsvc_init() != 0) {
4935331Samw 		smbd_report("msrpc initialization failed");
494*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
495*11963SAfshin.Ardakani@Sun.COM 		return (-1);
4965331Samw 	}
4975331Samw 
4987348SJose.Borrego@Sun.COM 	if (smbd.s_secmode == SMB_SECMODE_DOMAIN)
4998334SJose.Borrego@Sun.COM 		if (smbd_locate_dc_start() != 0)
5007348SJose.Borrego@Sun.COM 			smbd_report("dc discovery failed %s", strerror(errno));
5016139Sjb150015 
502*11963SAfshin.Ardakani@Sun.COM 	smbd.s_door_srv = smbd_door_start();
503*11963SAfshin.Ardakani@Sun.COM 	smbd.s_door_opipe = smbd_opipe_start();
504*11963SAfshin.Ardakani@Sun.COM 	if (smbd.s_door_srv < 0 || smbd.s_door_opipe < 0) {
505*11963SAfshin.Ardakani@Sun.COM 		smbd_report("door initialization failed %s", strerror(errno));
506*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
507*11963SAfshin.Ardakani@Sun.COM 		return (-1);
508*11963SAfshin.Ardakani@Sun.COM 	}
5095331Samw 
510*11963SAfshin.Ardakani@Sun.COM 	if (smbd_refresh_init() != 0) {
511*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
512*11963SAfshin.Ardakani@Sun.COM 		return (-1);
513*11963SAfshin.Ardakani@Sun.COM 	}
5145331Samw 
5158334SJose.Borrego@Sun.COM 	dyndns_update_zones();
5165331Samw 	(void) smbd_localtime_init();
5175772Sas200622 	(void) smb_lgrp_start();
5187052Samw 	smb_pwd_init(B_TRUE);
5196030Sjb150015 
520*11963SAfshin.Ardakani@Sun.COM 	if (smb_shr_start() != 0) {
5217961SNatalie.Li@Sun.COM 		smbd_report("share initialization failed: %s", strerror(errno));
522*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
523*11963SAfshin.Ardakani@Sun.COM 		return (-1);
5247961SNatalie.Li@Sun.COM 	}
5257961SNatalie.Li@Sun.COM 
526*11963SAfshin.Ardakani@Sun.COM 	smbd.s_door_lmshr = smbd_share_start();
527*11963SAfshin.Ardakani@Sun.COM 	if (smbd.s_door_lmshr < 0)
528*11963SAfshin.Ardakani@Sun.COM 		smbd_report("share initialization failed");
529*11963SAfshin.Ardakani@Sun.COM 
530*11963SAfshin.Ardakani@Sun.COM 	if (smbd_kernel_bind() != 0) {
531*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
532*11963SAfshin.Ardakani@Sun.COM 		return (-1);
5336432Sas200622 	}
5345331Samw 
535*11963SAfshin.Ardakani@Sun.COM 	if (smb_shr_load() != 0) {
5368334SJose.Borrego@Sun.COM 		smbd_report("failed to start loading shares: %s",
5378334SJose.Borrego@Sun.COM 		    strerror(errno));
538*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
539*11963SAfshin.Ardakani@Sun.COM 		return (-1);
5408334SJose.Borrego@Sun.COM 	}
5418334SJose.Borrego@Sun.COM 
542*11963SAfshin.Ardakani@Sun.COM 	smbd.s_initialized = B_TRUE;
543*11963SAfshin.Ardakani@Sun.COM 	smbd_report("service initialized");
544*11963SAfshin.Ardakani@Sun.COM 	(void) cond_signal(&smbd_service_cv);
545*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_unlock(&smbd_service_mutex);
5467348SJose.Borrego@Sun.COM 	return (0);
5475521Sas200622 }
5485521Sas200622 
5495331Samw /*
550*11963SAfshin.Ardakani@Sun.COM  * Shutdown smbd and smbsrv kernel services.
551*11963SAfshin.Ardakani@Sun.COM  *
552*11963SAfshin.Ardakani@Sun.COM  * Shutdown will not begin until initialization has completed.
553*11963SAfshin.Ardakani@Sun.COM  * Only one thread is allowed to perform the shutdown.  Other
554*11963SAfshin.Ardakani@Sun.COM  * threads will be blocked on fini_in_progress until the process
555*11963SAfshin.Ardakani@Sun.COM  * has exited.
5565331Samw  */
5575331Samw static void
5585331Samw smbd_service_fini(void)
5595331Samw {
560*11963SAfshin.Ardakani@Sun.COM 	static uint_t	fini_in_progress;
561*11963SAfshin.Ardakani@Sun.COM 
562*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_lock(&smbd_service_mutex);
563*11963SAfshin.Ardakani@Sun.COM 
564*11963SAfshin.Ardakani@Sun.COM 	while (!smbd.s_initialized)
565*11963SAfshin.Ardakani@Sun.COM 		(void) cond_wait(&smbd_service_cv, &smbd_service_mutex);
566*11963SAfshin.Ardakani@Sun.COM 
567*11963SAfshin.Ardakani@Sun.COM 	if (atomic_swap_uint(&fini_in_progress, 1) != 0) {
568*11963SAfshin.Ardakani@Sun.COM 		while (fini_in_progress)
569*11963SAfshin.Ardakani@Sun.COM 			(void) cond_wait(&smbd_service_cv, &smbd_service_mutex);
570*11963SAfshin.Ardakani@Sun.COM 		/*NOTREACHED*/
571*11963SAfshin.Ardakani@Sun.COM 	}
572*11963SAfshin.Ardakani@Sun.COM 
573*11963SAfshin.Ardakani@Sun.COM 	smbd.s_shutting_down = B_TRUE;
574*11963SAfshin.Ardakani@Sun.COM 	smbd_report("service shutting down");
575*11963SAfshin.Ardakani@Sun.COM 
576*11963SAfshin.Ardakani@Sun.COM 	smb_kmod_stop();
577*11963SAfshin.Ardakani@Sun.COM 	smb_logon_abort();
578*11963SAfshin.Ardakani@Sun.COM 	smb_lgrp_stop();
579*11963SAfshin.Ardakani@Sun.COM 	smbd_opipe_stop();
580*11963SAfshin.Ardakani@Sun.COM 	smbd_door_stop();
5815331Samw 	smbd_refresh_fini();
5825331Samw 	smbd_kernel_unbind();
583*11963SAfshin.Ardakani@Sun.COM 	smbd_share_stop();
5847052Samw 	smb_shr_stop();
5858334SJose.Borrego@Sun.COM 	dyndns_stop();
5865331Samw 	smb_nicmon_stop();
5876139Sjb150015 	smb_ccache_remove(SMB_CCACHE_PATH);
5886030Sjb150015 	smb_pwd_fini();
58910717Samw@Sun.COM 	smb_domain_fini();
5909832Samw@Sun.COM 	mlsvc_fini();
5919832Samw@Sun.COM 	smb_ads_fini();
59210717Samw@Sun.COM 	smb_netbios_stop();
593*11963SAfshin.Ardakani@Sun.COM 
594*11963SAfshin.Ardakani@Sun.COM 	smbd.s_initialized = B_FALSE;
595*11963SAfshin.Ardakani@Sun.COM 	smbd_report("service terminated");
596*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_unlock(&smbd_service_mutex);
597*11963SAfshin.Ardakani@Sun.COM 	exit((smbd.s_fatal_error) ? SMF_EXIT_ERR_FATAL : SMF_EXIT_OK);
5985331Samw }
5995331Samw 
6005331Samw /*
6015331Samw  * smbd_refresh_init()
6025331Samw  *
6035331Samw  * SMB service refresh thread initialization.  This thread waits for a
6045331Samw  * refresh event and updates the daemon's view of the configuration
6055331Samw  * before going back to sleep.
6065331Samw  */
6075331Samw static int
6085331Samw smbd_refresh_init()
6095331Samw {
6106432Sas200622 	pthread_attr_t		tattr;
6116432Sas200622 	pthread_condattr_t	cattr;
6126432Sas200622 	int			rc;
6135331Samw 
6145331Samw 	(void) pthread_condattr_init(&cattr);
6155331Samw 	(void) pthread_cond_init(&refresh_cond, &cattr);
6165331Samw 	(void) pthread_condattr_destroy(&cattr);
6175331Samw 
6185331Samw 	(void) pthread_mutex_init(&refresh_mutex, NULL);
6195331Samw 
6205331Samw 	(void) pthread_attr_init(&tattr);
6215331Samw 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
6225331Samw 	rc = pthread_create(&refresh_thr, &tattr, smbd_refresh_monitor, 0);
6235331Samw 	(void) pthread_attr_destroy(&tattr);
6246432Sas200622 
6255331Samw 	return (rc);
6265331Samw }
6275331Samw 
6285331Samw /*
6295331Samw  * smbd_refresh_fini()
6305331Samw  *
6315331Samw  * Stop the refresh thread.
6325331Samw  */
6335331Samw static void
6345331Samw smbd_refresh_fini()
6355331Samw {
636*11963SAfshin.Ardakani@Sun.COM 	if (pthread_self() != refresh_thr) {
637*11963SAfshin.Ardakani@Sun.COM 		(void) pthread_cancel(refresh_thr);
638*11963SAfshin.Ardakani@Sun.COM 		(void) pthread_cond_destroy(&refresh_cond);
639*11963SAfshin.Ardakani@Sun.COM 		(void) pthread_mutex_destroy(&refresh_mutex);
640*11963SAfshin.Ardakani@Sun.COM 	}
6415331Samw }
6425331Samw 
6435331Samw /*
6445331Samw  * smbd_refresh_monitor()
6455331Samw  *
6465331Samw  * Wait for a refresh event. When this thread wakes up, update the
6475331Samw  * smbd configuration from the SMF config information then go back to
6485331Samw  * wait for the next refresh.
6495331Samw  */
6505331Samw /*ARGSUSED*/
6515331Samw static void *
6525331Samw smbd_refresh_monitor(void *arg)
6535331Samw {
6549832Samw@Sun.COM 	smb_kmod_cfg_t	cfg;
6559832Samw@Sun.COM 	int		error;
6566771Sjb150015 
6578334SJose.Borrego@Sun.COM 	while (!smbd.s_shutting_down) {
6588334SJose.Borrego@Sun.COM 		(void) pthread_mutex_lock(&refresh_mutex);
6598334SJose.Borrego@Sun.COM 		while ((atomic_swap_uint(&smbd.s_refreshes, 0) == 0) &&
6608334SJose.Borrego@Sun.COM 		    (!smbd.s_shutting_down))
6618334SJose.Borrego@Sun.COM 			(void) pthread_cond_wait(&refresh_cond, &refresh_mutex);
6628334SJose.Borrego@Sun.COM 		(void) pthread_mutex_unlock(&refresh_mutex);
6638334SJose.Borrego@Sun.COM 
6648334SJose.Borrego@Sun.COM 		if (smbd.s_shutting_down) {
665*11963SAfshin.Ardakani@Sun.COM 			smbd_service_fini();
666*11963SAfshin.Ardakani@Sun.COM 			/*NOTREACHED*/
6678334SJose.Borrego@Sun.COM 		}
6688334SJose.Borrego@Sun.COM 
669*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_lock(&smbd_service_mutex);
670*11963SAfshin.Ardakani@Sun.COM 
6715331Samw 		/*
6725331Samw 		 * We've been woken up by a refresh event so go do
6735331Samw 		 * what is necessary.
6745331Samw 		 */
6757052Samw 		smb_ads_refresh();
6766139Sjb150015 		smb_ccache_remove(SMB_CCACHE_PATH);
6776432Sas200622 
6788334SJose.Borrego@Sun.COM 		/*
6798334SJose.Borrego@Sun.COM 		 * Start the dyndns thread, if required.
6808334SJose.Borrego@Sun.COM 		 * Clear the DNS zones for the existing interfaces
6818334SJose.Borrego@Sun.COM 		 * before updating the NIC interface list.
6828334SJose.Borrego@Sun.COM 		 */
6838334SJose.Borrego@Sun.COM 		(void) dyndns_start();
6848334SJose.Borrego@Sun.COM 		dyndns_clear_zones();
6856432Sas200622 
6866432Sas200622 		/* re-initialize NIC table */
687*11963SAfshin.Ardakani@Sun.COM 		if (smb_nic_init() != SMB_NIC_SUCCESS)
6886432Sas200622 			smbd_report("failed to get NIC information");
6896432Sas200622 		smb_netbios_name_reconfig();
6906432Sas200622 		smb_browser_reconfig();
6918670SJose.Borrego@Sun.COM 		smbd_refresh_dc();
6928334SJose.Borrego@Sun.COM 		dyndns_update_zones();
6936432Sas200622 
694*11963SAfshin.Ardakani@Sun.COM 		(void) mutex_unlock(&smbd_service_mutex);
695*11963SAfshin.Ardakani@Sun.COM 
6968334SJose.Borrego@Sun.COM 		if (smbd_set_netlogon_cred()) {
6976432Sas200622 			/*
6988334SJose.Borrego@Sun.COM 			 * Restart required because the domain changed
6998334SJose.Borrego@Sun.COM 			 * or the credential chain setup failed.
7006432Sas200622 			 */
7018334SJose.Borrego@Sun.COM 			if (smb_smf_restart_service() != 0) {
7028334SJose.Borrego@Sun.COM 				syslog(LOG_ERR,
703*11963SAfshin.Ardakani@Sun.COM 				    "unable to restart smb/server. "
7048334SJose.Borrego@Sun.COM 				    "Run 'svcs -xv smb/server' for more "
7058334SJose.Borrego@Sun.COM 				    "information.");
706*11963SAfshin.Ardakani@Sun.COM 				smbd_service_fini();
707*11963SAfshin.Ardakani@Sun.COM 				/*NOTREACHED*/
7088334SJose.Borrego@Sun.COM 			}
7098334SJose.Borrego@Sun.COM 
7108334SJose.Borrego@Sun.COM 			break;
7118334SJose.Borrego@Sun.COM 		}
7128334SJose.Borrego@Sun.COM 
7139832Samw@Sun.COM 		if (!smbd.s_kbound) {
714*11963SAfshin.Ardakani@Sun.COM 			if ((error = smbd_kernel_bind()) == 0)
7158334SJose.Borrego@Sun.COM 				(void) smb_shr_load();
7169832Samw@Sun.COM 
7176432Sas200622 			continue;
7186432Sas200622 		}
7196432Sas200622 
7208334SJose.Borrego@Sun.COM 		(void) smb_shr_load();
7218334SJose.Borrego@Sun.COM 
7229832Samw@Sun.COM 		smb_load_kconfig(&cfg);
7239832Samw@Sun.COM 		error = smb_kmod_setcfg(&cfg);
7249832Samw@Sun.COM 		if (error < 0)
7259832Samw@Sun.COM 			smbd_report("configuration update failed: %s",
7269832Samw@Sun.COM 			    strerror(error));
7275331Samw 	}
7288334SJose.Borrego@Sun.COM 
7295331Samw 	return (NULL);
7305331Samw }
7315331Samw 
7328670SJose.Borrego@Sun.COM /*
7338670SJose.Borrego@Sun.COM  * Update DC information on a refresh.
7348670SJose.Borrego@Sun.COM  */
7358670SJose.Borrego@Sun.COM static void
7368670SJose.Borrego@Sun.COM smbd_refresh_dc(void)
7378670SJose.Borrego@Sun.COM {
7388670SJose.Borrego@Sun.COM 	char fqdomain[MAXHOSTNAMELEN];
7398670SJose.Borrego@Sun.COM 	if (smb_config_get_secmode() != SMB_SECMODE_DOMAIN)
7408670SJose.Borrego@Sun.COM 		return;
7418670SJose.Borrego@Sun.COM 
7428670SJose.Borrego@Sun.COM 	if (smb_getfqdomainname(fqdomain, MAXHOSTNAMELEN))
7438670SJose.Borrego@Sun.COM 		return;
7448670SJose.Borrego@Sun.COM 
7458670SJose.Borrego@Sun.COM 	if (smb_locate_dc(fqdomain, "", NULL))
7468670SJose.Borrego@Sun.COM 		smbd_report("DC discovery failed");
7478670SJose.Borrego@Sun.COM }
7488670SJose.Borrego@Sun.COM 
7498334SJose.Borrego@Sun.COM void
7508334SJose.Borrego@Sun.COM smbd_set_secmode(int secmode)
7518334SJose.Borrego@Sun.COM {
7528334SJose.Borrego@Sun.COM 	switch (secmode) {
7538334SJose.Borrego@Sun.COM 	case SMB_SECMODE_WORKGRP:
7548334SJose.Borrego@Sun.COM 	case SMB_SECMODE_DOMAIN:
7558334SJose.Borrego@Sun.COM 		(void) smb_config_set_secmode(secmode);
7568334SJose.Borrego@Sun.COM 		smbd.s_secmode = secmode;
7578334SJose.Borrego@Sun.COM 		break;
7588334SJose.Borrego@Sun.COM 
7598334SJose.Borrego@Sun.COM 	default:
7608334SJose.Borrego@Sun.COM 		syslog(LOG_ERR, "invalid security mode: %d", secmode);
7618334SJose.Borrego@Sun.COM 		syslog(LOG_ERR, "entering maintenance mode");
7628334SJose.Borrego@Sun.COM 		(void) smb_smf_maintenance_mode();
7638334SJose.Borrego@Sun.COM 	}
7648334SJose.Borrego@Sun.COM }
7655331Samw 
7665331Samw /*
767*11963SAfshin.Ardakani@Sun.COM  * The service is online if initialization is complete and shutdown
768*11963SAfshin.Ardakani@Sun.COM  * has not begun.
769*11963SAfshin.Ardakani@Sun.COM  */
770*11963SAfshin.Ardakani@Sun.COM boolean_t
771*11963SAfshin.Ardakani@Sun.COM smbd_online(void)
772*11963SAfshin.Ardakani@Sun.COM {
773*11963SAfshin.Ardakani@Sun.COM 	return (smbd.s_initialized && !smbd.s_shutting_down);
774*11963SAfshin.Ardakani@Sun.COM }
775*11963SAfshin.Ardakani@Sun.COM 
776*11963SAfshin.Ardakani@Sun.COM /*
7775331Samw  * If the door has already been opened by another process (non-zero pid
7785331Samw  * in target), we assume that another smbd is already running.  If there
7795331Samw  * is a race here, it will be caught later when smbsrv is opened because
7805331Samw  * only one process is allowed to open the device at a time.
7815331Samw  */
7825331Samw static int
7835331Samw smbd_already_running(void)
7845331Samw {
7855331Samw 	door_info_t info;
7865331Samw 	int door;
7875331Samw 
788*11963SAfshin.Ardakani@Sun.COM 	if ((door = open(SMBD_DOOR_NAME, O_RDONLY)) < 0)
7895331Samw 		return (0);
7905331Samw 
7915331Samw 	if (door_info(door, &info) < 0)
7925331Samw 		return (0);
7935331Samw 
7945331Samw 	if (info.di_target > 0) {
7955331Samw 		smbd_report("already running: pid %ld\n", info.di_target);
7965331Samw 		(void) close(door);
7975331Samw 		return (1);
7985331Samw 	}
7995331Samw 
8005331Samw 	(void) close(door);
8015331Samw 	return (0);
8025331Samw }
8035331Samw 
8046139Sjb150015 /*
8056139Sjb150015  * smbd_kernel_bind
8066432Sas200622  *
8076432Sas200622  * This function open the smbsrv device and start the kernel service.
8086139Sjb150015  */
8095331Samw static int
8106432Sas200622 smbd_kernel_bind(void)
8115331Samw {
8129832Samw@Sun.COM 	int rc;
8136139Sjb150015 
8148334SJose.Borrego@Sun.COM 	smbd_kernel_unbind();
8155331Samw 
816*11963SAfshin.Ardakani@Sun.COM 	if ((rc = smb_kmod_bind()) == 0) {
8179832Samw@Sun.COM 		rc = smbd_kernel_start();
8189832Samw@Sun.COM 		if (rc != 0)
8199832Samw@Sun.COM 			smb_kmod_unbind();
8209832Samw@Sun.COM 		else
8219832Samw@Sun.COM 			smbd.s_kbound = B_TRUE;
8226139Sjb150015 	}
823*11963SAfshin.Ardakani@Sun.COM 
824*11963SAfshin.Ardakani@Sun.COM 	if (rc != 0)
825*11963SAfshin.Ardakani@Sun.COM 		smbd_report("kernel bind error: %s", strerror(errno));
8269832Samw@Sun.COM 	return (rc);
8279832Samw@Sun.COM }
8289832Samw@Sun.COM 
8299832Samw@Sun.COM static int
8309832Samw@Sun.COM smbd_kernel_start(void)
8319832Samw@Sun.COM {
8329832Samw@Sun.COM 	smb_kmod_cfg_t	cfg;
8339832Samw@Sun.COM 	int		rc;
8349832Samw@Sun.COM 
8359832Samw@Sun.COM 	smb_load_kconfig(&cfg);
8369832Samw@Sun.COM 	rc = smb_kmod_setcfg(&cfg);
8379832Samw@Sun.COM 	if (rc != 0)
8389832Samw@Sun.COM 		return (rc);
8399832Samw@Sun.COM 
8409832Samw@Sun.COM 	rc = smb_kmod_setgmtoff(smbd_gmtoff());
8419832Samw@Sun.COM 	if (rc != 0)
8429832Samw@Sun.COM 		return (rc);
8439832Samw@Sun.COM 
8449832Samw@Sun.COM 	rc = smb_kmod_start(smbd.s_door_opipe, smbd.s_door_lmshr,
8459832Samw@Sun.COM 	    smbd.s_door_srv);
8469832Samw@Sun.COM 	if (rc != 0)
8479832Samw@Sun.COM 		return (rc);
8486139Sjb150015 
8499046SJose.Borrego@Sun.COM 	rc = smbd_start_listeners();
8509832Samw@Sun.COM 	if (rc != 0)
8519832Samw@Sun.COM 		return (rc);
8529832Samw@Sun.COM 
8539832Samw@Sun.COM 	return (0);
8545331Samw }
8555331Samw 
8566139Sjb150015 /*
8576139Sjb150015  * smbd_kernel_unbind
8586139Sjb150015  */
8596139Sjb150015 static void
8606139Sjb150015 smbd_kernel_unbind(void)
8616139Sjb150015 {
8629832Samw@Sun.COM 	smbd_stop_listeners();
8639832Samw@Sun.COM 	smb_kmod_unbind();
8649832Samw@Sun.COM 	smbd.s_kbound = B_FALSE;
8658167Samw@Sun.COM }
8668167Samw@Sun.COM 
8675331Samw /*
8685331Samw  * Initialization of the localtime thread.
8695331Samw  * Returns 0 on success, an error number if thread creation fails.
8705331Samw  */
8715331Samw 
8725331Samw int
8735331Samw smbd_localtime_init(void)
8745331Samw {
8755331Samw 	pthread_attr_t tattr;
8765331Samw 	int rc;
8775331Samw 
8785331Samw 	(void) pthread_attr_init(&tattr);
8795331Samw 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
8805331Samw 	rc = pthread_create(&localtime_thr, &tattr, smbd_localtime_monitor, 0);
8815331Samw 	(void) pthread_attr_destroy(&tattr);
8825331Samw 	return (rc);
8835331Samw }
8845331Samw 
8855331Samw /*
8865331Samw  * Local time thread to kernel land.
8875331Samw  * Send local gmtoff to kernel module one time at startup
8885331Samw  * and each time it changes (up to twice a year).
8895331Samw  * Local gmtoff is checked once every 15 minutes and
8905331Samw  * since some timezones are aligned on half and qtr hour boundaries,
8915331Samw  * once an hour would likely suffice.
8925331Samw  */
8935331Samw 
8945331Samw /*ARGSUSED*/
8955331Samw static void *
8965331Samw smbd_localtime_monitor(void *arg)
8975331Samw {
8985331Samw 	struct tm local_tm;
8997348SJose.Borrego@Sun.COM 	time_t secs;
9007348SJose.Borrego@Sun.COM 	int32_t gmtoff, last_gmtoff = -1;
9015331Samw 	int timeout;
9029832Samw@Sun.COM 	int error;
9038167Samw@Sun.COM 
9045331Samw 	for (;;) {
9057348SJose.Borrego@Sun.COM 		gmtoff = smbd_gmtoff();
9065331Samw 
9079832Samw@Sun.COM 		if ((last_gmtoff != gmtoff) && smbd.s_kbound) {
9089832Samw@Sun.COM 			error = smb_kmod_setgmtoff(gmtoff);
9099832Samw@Sun.COM 			if (error != 0)
9109832Samw@Sun.COM 				smbd_report("localtime set failed: %s",
9119832Samw@Sun.COM 				    strerror(error));
9125331Samw 		}
9135331Samw 
9145331Samw 		/*
9155331Samw 		 * Align the next iteration on a fifteen minute boundary.
9165331Samw 		 */
9175331Samw 		secs = time(0);
9185331Samw 		(void) localtime_r(&secs, &local_tm);
9195331Samw 		timeout = ((15 - (local_tm.tm_min % 15)) * SECSPERMIN);
9205331Samw 		(void) sleep(timeout);
9215331Samw 
9225331Samw 		last_gmtoff = gmtoff;
9235331Samw 	}
9245331Samw 
9255331Samw 	/*NOTREACHED*/
9265331Samw 	return (NULL);
9275331Samw }
9285331Samw 
9297348SJose.Borrego@Sun.COM /*
9307348SJose.Borrego@Sun.COM  * smbd_gmtoff
9317348SJose.Borrego@Sun.COM  *
9327348SJose.Borrego@Sun.COM  * Determine offset from GMT. If daylight saving time use altzone,
9337348SJose.Borrego@Sun.COM  * otherwise use timezone.
9347348SJose.Borrego@Sun.COM  */
9357348SJose.Borrego@Sun.COM static int32_t
9367348SJose.Borrego@Sun.COM smbd_gmtoff(void)
9377348SJose.Borrego@Sun.COM {
9387348SJose.Borrego@Sun.COM 	time_t clock_val;
9397348SJose.Borrego@Sun.COM 	struct tm *atm;
9407348SJose.Borrego@Sun.COM 	int32_t gmtoff;
9417348SJose.Borrego@Sun.COM 
9427348SJose.Borrego@Sun.COM 	(void) time(&clock_val);
9437348SJose.Borrego@Sun.COM 	atm = localtime(&clock_val);
9447348SJose.Borrego@Sun.COM 
9457348SJose.Borrego@Sun.COM 	gmtoff = (atm->tm_isdst) ? altzone : timezone;
9467348SJose.Borrego@Sun.COM 
9477348SJose.Borrego@Sun.COM 	return (gmtoff);
9487348SJose.Borrego@Sun.COM }
9497348SJose.Borrego@Sun.COM 
9505331Samw static void
9515331Samw smbd_sig_handler(int sigval)
9525331Samw {
9535331Samw 	if (smbd.s_sigval == 0)
9548334SJose.Borrego@Sun.COM 		(void) atomic_swap_uint(&smbd.s_sigval, sigval);
9558334SJose.Borrego@Sun.COM 
9568334SJose.Borrego@Sun.COM 	if (sigval == SIGHUP) {
9578334SJose.Borrego@Sun.COM 		atomic_inc_uint(&smbd.s_refreshes);
9588334SJose.Borrego@Sun.COM 		(void) pthread_cond_signal(&refresh_cond);
9598334SJose.Borrego@Sun.COM 	}
9608334SJose.Borrego@Sun.COM 
9618334SJose.Borrego@Sun.COM 	if (sigval == SIGINT || sigval == SIGTERM) {
9628334SJose.Borrego@Sun.COM 		smbd.s_shutting_down = B_TRUE;
9638334SJose.Borrego@Sun.COM 		(void) pthread_cond_signal(&refresh_cond);
9648334SJose.Borrego@Sun.COM 	}
9655331Samw }
9665331Samw 
9675331Samw /*
9685331Samw  * Set up configuration options and parse the command line.
9695331Samw  * This function will determine if we will run as a daemon
9705331Samw  * or in the foreground.
9715331Samw  *
9725331Samw  * Failure to find a uid or gid results in using the default (0).
9735331Samw  */
9745331Samw static int
9755331Samw smbd_setup_options(int argc, char *argv[])
9765331Samw {
9775331Samw 	struct passwd *pwd;
9785331Samw 	struct group *grp;
9795331Samw 	int c;
9805331Samw 
9815331Samw 	if ((pwd = getpwnam("root")) != NULL)
9825331Samw 		smbd.s_uid = pwd->pw_uid;
9835331Samw 
9845331Samw 	if ((grp = getgrnam("sys")) != NULL)
9855331Samw 		smbd.s_gid = grp->gr_gid;
9865331Samw 
9875772Sas200622 	smbd.s_fg = smb_config_get_fg_flag();
9885331Samw 
9895331Samw 	while ((c = getopt(argc, argv, ":f")) != -1) {
9905331Samw 		switch (c) {
9915331Samw 		case 'f':
9925331Samw 			smbd.s_fg = 1;
9935331Samw 			break;
9945331Samw 
9955331Samw 		case ':':
9965331Samw 		case '?':
9975331Samw 		default:
9985331Samw 			smbd_usage(stderr);
9995331Samw 			return (-1);
10005331Samw 		}
10015331Samw 	}
10025331Samw 
10035331Samw 	return (0);
10045331Samw }
10055331Samw 
10065331Samw static void
10075331Samw smbd_usage(FILE *fp)
10085331Samw {
10095331Samw 	static char *help[] = {
10105331Samw 		"-f  run program in foreground"
10115331Samw 	};
10125331Samw 
10135331Samw 	int i;
10145331Samw 
10155331Samw 	(void) fprintf(fp, "Usage: %s [-f]\n", smbd.s_pname);
10165331Samw 
10175331Samw 	for (i = 0; i < sizeof (help)/sizeof (help[0]); ++i)
10185331Samw 		(void) fprintf(fp, "    %s\n", help[i]);
10195331Samw }
10205331Samw 
10215331Samw static void
10225331Samw smbd_report(const char *fmt, ...)
10235331Samw {
10245331Samw 	char buf[128];
10255331Samw 	va_list ap;
10265331Samw 
10275331Samw 	if (fmt == NULL)
10285331Samw 		return;
10295331Samw 
10305331Samw 	va_start(ap, fmt);
10315331Samw 	(void) vsnprintf(buf, 128, fmt, ap);
10325331Samw 	va_end(ap);
10335331Samw 
10345331Samw 	(void) fprintf(stderr, "smbd: %s\n", buf);
10355331Samw }
10365331Samw 
10379046SJose.Borrego@Sun.COM static int
10389046SJose.Borrego@Sun.COM smbd_start_listeners(void)
10399046SJose.Borrego@Sun.COM {
10409046SJose.Borrego@Sun.COM 	int		rc1;
10419046SJose.Borrego@Sun.COM 	int		rc2;
10429046SJose.Borrego@Sun.COM 	pthread_attr_t	tattr;
10439046SJose.Borrego@Sun.COM 
10449046SJose.Borrego@Sun.COM 	(void) pthread_attr_init(&tattr);
10459046SJose.Borrego@Sun.COM 
10469046SJose.Borrego@Sun.COM 	if (!smbd.s_nbt_listener_running) {
10479046SJose.Borrego@Sun.COM 		rc1 = pthread_create(&smbd.s_nbt_listener_id, &tattr,
10489046SJose.Borrego@Sun.COM 		    smbd_nbt_listener, NULL);
10499046SJose.Borrego@Sun.COM 		if (rc1 != 0)
10509046SJose.Borrego@Sun.COM 			smbd_report("unable to start NBT service");
10519046SJose.Borrego@Sun.COM 		else
10529046SJose.Borrego@Sun.COM 			smbd.s_nbt_listener_running = B_TRUE;
10539046SJose.Borrego@Sun.COM 	}
10549046SJose.Borrego@Sun.COM 
10559046SJose.Borrego@Sun.COM 	if (!smbd.s_tcp_listener_running) {
10569046SJose.Borrego@Sun.COM 		rc2 = pthread_create(&smbd.s_tcp_listener_id, &tattr,
10579046SJose.Borrego@Sun.COM 		    smbd_tcp_listener, NULL);
10589046SJose.Borrego@Sun.COM 		if (rc2 != 0)
10599046SJose.Borrego@Sun.COM 			smbd_report("unable to start TCP service");
10609046SJose.Borrego@Sun.COM 		else
10619046SJose.Borrego@Sun.COM 			smbd.s_tcp_listener_running = B_TRUE;
10629046SJose.Borrego@Sun.COM 	}
10639046SJose.Borrego@Sun.COM 
10649046SJose.Borrego@Sun.COM 	(void) pthread_attr_destroy(&tattr);
10659046SJose.Borrego@Sun.COM 
10669046SJose.Borrego@Sun.COM 	if (rc1 != 0)
10679046SJose.Borrego@Sun.COM 		return (rc1);
10689046SJose.Borrego@Sun.COM 	return (rc2);
10699046SJose.Borrego@Sun.COM }
10709046SJose.Borrego@Sun.COM 
1071*11963SAfshin.Ardakani@Sun.COM /*
1072*11963SAfshin.Ardakani@Sun.COM  * Stop the listener threads.  In an attempt to ensure that the listener
1073*11963SAfshin.Ardakani@Sun.COM  * threads get the signal, we use the timed wait loop to harass the
1074*11963SAfshin.Ardakani@Sun.COM  * threads into terminating.  Then, if they are still running, we make
1075*11963SAfshin.Ardakani@Sun.COM  * one final attempt to deliver the signal before calling thread join
1076*11963SAfshin.Ardakani@Sun.COM  * to wait for them.  Note: if these threads don't terminate, smbd will
1077*11963SAfshin.Ardakani@Sun.COM  * hang here and SMF will probably end up killing the contract.
1078*11963SAfshin.Ardakani@Sun.COM  */
10799046SJose.Borrego@Sun.COM static void
10809046SJose.Borrego@Sun.COM smbd_stop_listeners(void)
10819046SJose.Borrego@Sun.COM {
1082*11963SAfshin.Ardakani@Sun.COM 	void		*status;
1083*11963SAfshin.Ardakani@Sun.COM 	timestruc_t	delay;
1084*11963SAfshin.Ardakani@Sun.COM 	int		rc = 0;
1085*11963SAfshin.Ardakani@Sun.COM 
1086*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_lock(&listener_mutex);
1087*11963SAfshin.Ardakani@Sun.COM 
1088*11963SAfshin.Ardakani@Sun.COM 	while ((smbd.s_nbt_listener_running || smbd.s_tcp_listener_running) &&
1089*11963SAfshin.Ardakani@Sun.COM 	    (rc != ETIME)) {
1090*11963SAfshin.Ardakani@Sun.COM 		if (smbd.s_nbt_listener_running)
1091*11963SAfshin.Ardakani@Sun.COM 			(void) pthread_kill(smbd.s_nbt_listener_id, SIGTERM);
1092*11963SAfshin.Ardakani@Sun.COM 
1093*11963SAfshin.Ardakani@Sun.COM 		if (smbd.s_tcp_listener_running)
1094*11963SAfshin.Ardakani@Sun.COM 			(void) pthread_kill(smbd.s_tcp_listener_id, SIGTERM);
1095*11963SAfshin.Ardakani@Sun.COM 
1096*11963SAfshin.Ardakani@Sun.COM 		delay.tv_sec = 3;
1097*11963SAfshin.Ardakani@Sun.COM 		delay.tv_nsec = 0;
1098*11963SAfshin.Ardakani@Sun.COM 		rc = cond_reltimedwait(&listener_cv, &listener_mutex, &delay);
1099*11963SAfshin.Ardakani@Sun.COM 	}
1100*11963SAfshin.Ardakani@Sun.COM 
1101*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_unlock(&listener_mutex);
11029046SJose.Borrego@Sun.COM 
11039046SJose.Borrego@Sun.COM 	if (smbd.s_nbt_listener_running) {
1104*11963SAfshin.Ardakani@Sun.COM 		syslog(LOG_WARNING, "NBT listener still running");
11059046SJose.Borrego@Sun.COM 		(void) pthread_kill(smbd.s_nbt_listener_id, SIGTERM);
11069046SJose.Borrego@Sun.COM 		(void) pthread_join(smbd.s_nbt_listener_id, &status);
11079046SJose.Borrego@Sun.COM 		smbd.s_nbt_listener_running = B_FALSE;
11089046SJose.Borrego@Sun.COM 	}
11099046SJose.Borrego@Sun.COM 
11109046SJose.Borrego@Sun.COM 	if (smbd.s_tcp_listener_running) {
1111*11963SAfshin.Ardakani@Sun.COM 		syslog(LOG_WARNING, "TCP listener still running");
11129046SJose.Borrego@Sun.COM 		(void) pthread_kill(smbd.s_tcp_listener_id, SIGTERM);
11139046SJose.Borrego@Sun.COM 		(void) pthread_join(smbd.s_tcp_listener_id, &status);
11149046SJose.Borrego@Sun.COM 		smbd.s_tcp_listener_running = B_FALSE;
11159046SJose.Borrego@Sun.COM 	}
11169046SJose.Borrego@Sun.COM }
11179046SJose.Borrego@Sun.COM 
11185331Samw /*
11199832Samw@Sun.COM  * Perform fatal error exit.
11209832Samw@Sun.COM  */
11219832Samw@Sun.COM static void
11229832Samw@Sun.COM smbd_fatal_error(const char *msg)
11239832Samw@Sun.COM {
11249832Samw@Sun.COM 	if (msg == NULL)
11259832Samw@Sun.COM 		msg = "Fatal error";
11269832Samw@Sun.COM 
11279832Samw@Sun.COM 	smbd_report("%s", msg);
11289832Samw@Sun.COM 	smbd.s_fatal_error = B_TRUE;
11299832Samw@Sun.COM 	(void) kill(smbd.s_pid, SIGTERM);
11309832Samw@Sun.COM }
11319832Samw@Sun.COM 
11329832Samw@Sun.COM /*ARGSUSED*/
11339832Samw@Sun.COM static void *
11349832Samw@Sun.COM smbd_nbt_receiver(void *arg)
11359832Samw@Sun.COM {
11369832Samw@Sun.COM 	(void) smb_kmod_nbtreceive();
11379832Samw@Sun.COM 	return (NULL);
11389832Samw@Sun.COM }
11399832Samw@Sun.COM 
11409832Samw@Sun.COM /*ARGSUSED*/
11419832Samw@Sun.COM static void *
11429832Samw@Sun.COM smbd_nbt_listener(void *arg)
11439832Samw@Sun.COM {
11449832Samw@Sun.COM 	pthread_attr_t	tattr;
11459832Samw@Sun.COM 	sigset_t	set;
11469832Samw@Sun.COM 	sigset_t	oset;
11479832Samw@Sun.COM 	pthread_t	tid;
11489832Samw@Sun.COM 	int		error = 0;
11499832Samw@Sun.COM 
11509832Samw@Sun.COM 	(void) sigfillset(&set);
11519832Samw@Sun.COM 	(void) sigdelset(&set, SIGTERM);
11529832Samw@Sun.COM 	(void) sigdelset(&set, SIGINT);
11539832Samw@Sun.COM 	(void) pthread_sigmask(SIG_SETMASK, &set, &oset);
11549832Samw@Sun.COM 	(void) pthread_attr_init(&tattr);
11559832Samw@Sun.COM 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
11569832Samw@Sun.COM 
11579832Samw@Sun.COM 	while (smb_kmod_nbtlisten(error) == 0)
11589832Samw@Sun.COM 		error = pthread_create(&tid, &tattr, smbd_nbt_receiver, NULL);
11599832Samw@Sun.COM 
11609832Samw@Sun.COM 	(void) pthread_attr_destroy(&tattr);
11619832Samw@Sun.COM 
11629832Samw@Sun.COM 	if (!smbd.s_shutting_down)
11639832Samw@Sun.COM 		smbd_fatal_error("NBT listener thread terminated unexpectedly");
11649832Samw@Sun.COM 
1165*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_lock(&listener_mutex);
1166*11963SAfshin.Ardakani@Sun.COM 	smbd.s_nbt_listener_running = B_FALSE;
1167*11963SAfshin.Ardakani@Sun.COM 	(void) cond_broadcast(&listener_cv);
1168*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_unlock(&listener_mutex);
11699832Samw@Sun.COM 	return (NULL);
11709832Samw@Sun.COM }
11719832Samw@Sun.COM 
11729832Samw@Sun.COM /*ARGSUSED*/
11739832Samw@Sun.COM static void *
11749832Samw@Sun.COM smbd_tcp_receiver(void *arg)
11759832Samw@Sun.COM {
11769832Samw@Sun.COM 	(void) smb_kmod_tcpreceive();
11779832Samw@Sun.COM 	return (NULL);
11789832Samw@Sun.COM }
11799832Samw@Sun.COM 
11809832Samw@Sun.COM /*ARGSUSED*/
11819832Samw@Sun.COM static void *
11829832Samw@Sun.COM smbd_tcp_listener(void *arg)
11839832Samw@Sun.COM {
11849832Samw@Sun.COM 	pthread_attr_t	tattr;
11859832Samw@Sun.COM 	sigset_t	set;
11869832Samw@Sun.COM 	sigset_t	oset;
11879832Samw@Sun.COM 	pthread_t	tid;
11889832Samw@Sun.COM 	int		error = 0;
11899832Samw@Sun.COM 
11909832Samw@Sun.COM 	(void) sigfillset(&set);
11919832Samw@Sun.COM 	(void) sigdelset(&set, SIGTERM);
11929832Samw@Sun.COM 	(void) sigdelset(&set, SIGINT);
11939832Samw@Sun.COM 	(void) pthread_sigmask(SIG_SETMASK, &set, &oset);
11949832Samw@Sun.COM 	(void) pthread_attr_init(&tattr);
11959832Samw@Sun.COM 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
11969832Samw@Sun.COM 
11979832Samw@Sun.COM 	while (smb_kmod_tcplisten(error) == 0)
11989832Samw@Sun.COM 		error = pthread_create(&tid, &tattr, smbd_tcp_receiver, NULL);
11999832Samw@Sun.COM 
12009832Samw@Sun.COM 	(void) pthread_attr_destroy(&tattr);
12019832Samw@Sun.COM 
12029832Samw@Sun.COM 	if (!smbd.s_shutting_down)
12039832Samw@Sun.COM 		smbd_fatal_error("TCP listener thread terminated unexpectedly");
12049832Samw@Sun.COM 
1205*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_lock(&listener_mutex);
1206*11963SAfshin.Ardakani@Sun.COM 	smbd.s_tcp_listener_running = B_FALSE;
1207*11963SAfshin.Ardakani@Sun.COM 	(void) cond_broadcast(&listener_cv);
1208*11963SAfshin.Ardakani@Sun.COM 	(void) mutex_unlock(&listener_mutex);
12099832Samw@Sun.COM 	return (NULL);
12109832Samw@Sun.COM }
12119832Samw@Sun.COM 
12129832Samw@Sun.COM /*
12135331Samw  * Enable libumem debugging by default on DEBUG builds.
12145331Samw  */
12155331Samw #ifdef DEBUG
12165331Samw const char *
12175331Samw _umem_debug_init(void)
12185331Samw {
12195331Samw 	return ("default,verbose"); /* $UMEM_DEBUG setting */
12205331Samw }
12215331Samw 
12225331Samw const char *
12235331Samw _umem_logging_init(void)
12245331Samw {
12255331Samw 	return ("fail,contents"); /* $UMEM_LOGGING setting */
12265331Samw }
12275331Samw #endif
1228