xref: /onnv-gate/usr/src/cmd/smbsrv/smbd/smbd_main.c (revision 9832:3569b6c7f56c)
15331Samw /*
25331Samw  * CDDL HEADER START
35331Samw  *
45331Samw  * The contents of this file are subject to the terms of the
55331Samw  * Common Development and Distribution License (the "License").
65331Samw  * You may not use this file except in compliance with the License.
75331Samw  *
85331Samw  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
95331Samw  * or http://www.opensolaris.org/os/licensing.
105331Samw  * See the License for the specific language governing permissions
115331Samw  * and limitations under the License.
125331Samw  *
135331Samw  * When distributing Covered Code, include this CDDL HEADER in each
145331Samw  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
155331Samw  * If applicable, add the following below this CDDL HEADER, with the
165331Samw  * fields enclosed by brackets "[]" replaced with your own identifying
175331Samw  * information: Portions Copyright [yyyy] [name of copyright owner]
185331Samw  *
195331Samw  * CDDL HEADER END
205331Samw  */
215331Samw /*
228474SJose.Borrego@Sun.COM  * Copyright 2009 Sun Microsystems, Inc.  All rights reserved.
235331Samw  * Use is subject to license terms.
245331Samw  */
255331Samw 
265331Samw #include <sys/types.h>
275331Samw #include <sys/stat.h>
285331Samw #include <sys/ioccom.h>
29*9832Samw@Sun.COM #include <sys/corectl.h>
305331Samw #include <stdio.h>
315331Samw #include <string.h>
325331Samw #include <strings.h>
335331Samw #include <stdlib.h>
345331Samw #include <unistd.h>
355331Samw #include <stdarg.h>
365331Samw #include <fcntl.h>
375331Samw #include <wait.h>
385331Samw #include <signal.h>
398334SJose.Borrego@Sun.COM #include <atomic.h>
405331Samw #include <libscf.h>
415331Samw #include <limits.h>
425331Samw #include <priv_utils.h>
435331Samw #include <door.h>
445331Samw #include <errno.h>
455331Samw #include <pthread.h>
465331Samw #include <time.h>
475331Samw #include <libscf.h>
485331Samw #include <zone.h>
495331Samw #include <libgen.h>
505331Samw #include <pwd.h>
515331Samw #include <grp.h>
525331Samw 
535331Samw #include <smbsrv/smb_door_svc.h>
545331Samw #include <smbsrv/smb_ioctl.h>
555331Samw #include <smbsrv/libsmb.h>
565331Samw #include <smbsrv/libsmbns.h>
575331Samw #include <smbsrv/libsmbrdr.h>
585331Samw #include <smbsrv/libmlsvc.h>
595331Samw #include "smbd.h"
605331Samw 
615331Samw #define	DRV_DEVICE_PATH	"/devices/pseudo/smbsrv@0:smbsrv"
625331Samw #define	SMB_DBDIR "/var/smb"
635331Samw 
64*9832Samw@Sun.COM static void *smbd_nbt_listener(void *);
65*9832Samw@Sun.COM static void *smbd_tcp_listener(void *);
66*9832Samw@Sun.COM static void *smbd_nbt_receiver(void *);
67*9832Samw@Sun.COM static void *smbd_tcp_receiver(void *);
686139Sjb150015 
695331Samw static int smbd_daemonize_init(void);
705331Samw static void smbd_daemonize_fini(int, int);
71*9832Samw@Sun.COM static int smb_init_daemon_priv(int, uid_t, gid_t);
725331Samw 
736432Sas200622 static int smbd_kernel_bind(void);
745331Samw static void smbd_kernel_unbind(void);
755331Samw static int smbd_already_running(void);
765331Samw 
775331Samw static int smbd_service_init(void);
785331Samw static void smbd_service_fini(void);
795331Samw 
805331Samw static int smbd_setup_options(int argc, char *argv[]);
815331Samw static void smbd_usage(FILE *fp);
825331Samw static void smbd_report(const char *fmt, ...);
835331Samw 
845331Samw static void smbd_sig_handler(int sig);
855331Samw 
867348SJose.Borrego@Sun.COM static int32_t smbd_gmtoff(void);
875331Samw static int smbd_localtime_init(void);
885331Samw static void *smbd_localtime_monitor(void *arg);
895331Samw 
905331Samw static pthread_t localtime_thr;
915331Samw 
925331Samw static int smbd_refresh_init(void);
935331Samw static void smbd_refresh_fini(void);
945331Samw static void *smbd_refresh_monitor(void *);
958670SJose.Borrego@Sun.COM static void smbd_refresh_dc(void);
968670SJose.Borrego@Sun.COM 
97*9832Samw@Sun.COM static void *smbd_nbt_receiver(void *);
98*9832Samw@Sun.COM static void *smbd_nbt_listener(void *);
99*9832Samw@Sun.COM 
100*9832Samw@Sun.COM static void *smbd_tcp_receiver(void *);
101*9832Samw@Sun.COM static void *smbd_tcp_listener(void *);
102*9832Samw@Sun.COM 
1039046SJose.Borrego@Sun.COM static int smbd_start_listeners(void);
1049046SJose.Borrego@Sun.COM static void smbd_stop_listeners(void);
105*9832Samw@Sun.COM static int smbd_kernel_start(void);
106*9832Samw@Sun.COM 
107*9832Samw@Sun.COM static void smbd_fatal_error(const char *);
1089046SJose.Borrego@Sun.COM 
1095331Samw static pthread_t refresh_thr;
1105331Samw static pthread_cond_t refresh_cond;
1115331Samw static pthread_mutex_t refresh_mutex;
1125331Samw 
1136139Sjb150015 smbd_t smbd;
1145331Samw 
1155331Samw /*
1165331Samw  * smbd user land daemon
1175331Samw  *
1185331Samw  * Use SMF error codes only on return or exit.
1195331Samw  */
1205331Samw int
1215331Samw main(int argc, char *argv[])
1225331Samw {
1236432Sas200622 	struct sigaction	act;
1246432Sas200622 	sigset_t		set;
1256432Sas200622 	uid_t			uid;
1266432Sas200622 	int			pfd = -1;
1278334SJose.Borrego@Sun.COM 	uint_t			sigval;
1285331Samw 
1295331Samw 	smbd.s_pname = basename(argv[0]);
1305331Samw 	openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
1315331Samw 
1325331Samw 	if (smbd_setup_options(argc, argv) != 0)
1335331Samw 		return (SMF_EXIT_ERR_FATAL);
1345331Samw 
1355331Samw 	if ((uid = getuid()) != smbd.s_uid) {
1365331Samw 		smbd_report("user %d: %s", uid, strerror(EPERM));
1375331Samw 		return (SMF_EXIT_ERR_FATAL);
1385331Samw 	}
1395331Samw 
1405331Samw 	if (getzoneid() != GLOBAL_ZONEID) {
1415331Samw 		smbd_report("non-global zones are not supported");
1425331Samw 		return (SMF_EXIT_ERR_FATAL);
1435331Samw 	}
1445331Samw 
1455331Samw 	if (is_system_labeled()) {
1465331Samw 		smbd_report("Trusted Extensions not supported");
1475331Samw 		return (SMF_EXIT_ERR_FATAL);
1485331Samw 	}
1495331Samw 
1505331Samw 	if (smbd_already_running())
1515331Samw 		return (SMF_EXIT_OK);
1525331Samw 
1535331Samw 	(void) sigfillset(&set);
1545331Samw 	(void) sigdelset(&set, SIGABRT);
1555331Samw 
1565331Samw 	(void) sigfillset(&act.sa_mask);
1575331Samw 	act.sa_handler = smbd_sig_handler;
1585331Samw 	act.sa_flags = 0;
1595331Samw 
1605331Samw 	(void) sigaction(SIGTERM, &act, NULL);
1615331Samw 	(void) sigaction(SIGHUP, &act, NULL);
1625331Samw 	(void) sigaction(SIGINT, &act, NULL);
1635331Samw 	(void) sigaction(SIGPIPE, &act, NULL);
1645331Samw 
1655331Samw 	(void) sigdelset(&set, SIGTERM);
1665331Samw 	(void) sigdelset(&set, SIGHUP);
1675331Samw 	(void) sigdelset(&set, SIGINT);
1685331Samw 	(void) sigdelset(&set, SIGPIPE);
1695331Samw 
1705331Samw 	if (smbd.s_fg) {
1715331Samw 		(void) sigdelset(&set, SIGTSTP);
1725331Samw 		(void) sigdelset(&set, SIGTTIN);
1735331Samw 		(void) sigdelset(&set, SIGTTOU);
1745331Samw 
1755331Samw 		if (smbd_service_init() != 0) {
1765331Samw 			smbd_report("service initialization failed");
1775331Samw 			exit(SMF_EXIT_ERR_FATAL);
1785331Samw 		}
1795331Samw 	} else {
1805331Samw 		/*
1815331Samw 		 * "pfd" is a pipe descriptor -- any fatal errors
1825331Samw 		 * during subsequent initialization of the child
1835331Samw 		 * process should be written to this pipe and the
1845331Samw 		 * parent will report this error as the exit status.
1855331Samw 		 */
1865331Samw 		pfd = smbd_daemonize_init();
1875331Samw 
1885331Samw 		if (smbd_service_init() != 0) {
1895331Samw 			smbd_report("daemon initialization failed");
1905331Samw 			exit(SMF_EXIT_ERR_FATAL);
1915331Samw 		}
1925331Samw 
1935331Samw 		smbd_daemonize_fini(pfd, SMF_EXIT_OK);
1945331Samw 	}
1955331Samw 
1965331Samw 	(void) atexit(smbd_service_fini);
1975331Samw 
1988334SJose.Borrego@Sun.COM 	while (!smbd.s_shutting_down) {
1998334SJose.Borrego@Sun.COM 		if (smbd.s_sigval == 0 && smbd.s_refreshes == 0)
2007052Samw 			(void) sigsuspend(&set);
2015331Samw 
2028334SJose.Borrego@Sun.COM 		sigval = atomic_swap_uint(&smbd.s_sigval, 0);
2037052Samw 
2047052Samw 		switch (sigval) {
2055331Samw 		case 0:
2065331Samw 		case SIGPIPE:
2075331Samw 			break;
2085331Samw 
2095331Samw 		case SIGHUP:
2108334SJose.Borrego@Sun.COM 			syslog(LOG_DEBUG, "refresh requested");
2115331Samw 			(void) pthread_cond_signal(&refresh_cond);
2125331Samw 			break;
2135331Samw 
2145331Samw 		default:
2155331Samw 			/*
2165331Samw 			 * Typically SIGINT or SIGTERM.
2175331Samw 			 */
2188334SJose.Borrego@Sun.COM 			smbd.s_shutting_down = B_TRUE;
2195331Samw 			break;
2205331Samw 		}
2215331Samw 	}
2225331Samw 
2235331Samw 	smbd_service_fini();
2245331Samw 	closelog();
225*9832Samw@Sun.COM 	return ((smbd.s_fatal_error) ? SMF_EXIT_ERR_FATAL : SMF_EXIT_OK);
2265331Samw }
2275331Samw 
2285331Samw /*
2295331Samw  * This function will fork off a child process,
2305331Samw  * from which only the child will return.
2315331Samw  *
2325331Samw  * Use SMF error codes only on exit.
2335331Samw  */
2345331Samw static int
2355331Samw smbd_daemonize_init(void)
2365331Samw {
2375331Samw 	int status, pfds[2];
2385331Samw 	sigset_t set, oset;
2395331Samw 	pid_t pid;
2405331Samw 	int rc;
2415331Samw 
2425331Samw 	/*
2435331Samw 	 * Reset privileges to the minimum set required. We continue
2445331Samw 	 * to run as root to create and access files in /var.
2455331Samw 	 */
246*9832Samw@Sun.COM 	rc = smb_init_daemon_priv(PU_RESETGROUPS, smbd.s_uid, smbd.s_gid);
2475331Samw 
2485331Samw 	if (rc != 0) {
2495331Samw 		smbd_report("insufficient privileges");
2505331Samw 		exit(SMF_EXIT_ERR_FATAL);
2515331Samw 	}
2525331Samw 
2535331Samw 	/*
2545331Samw 	 * Block all signals prior to the fork and leave them blocked in the
2555331Samw 	 * parent so we don't get in a situation where the parent gets SIGINT
2565331Samw 	 * and returns non-zero exit status and the child is actually running.
2575331Samw 	 * In the child, restore the signal mask once we've done our setsid().
2585331Samw 	 */
2595331Samw 	(void) sigfillset(&set);
2605331Samw 	(void) sigdelset(&set, SIGABRT);
2615331Samw 	(void) sigprocmask(SIG_BLOCK, &set, &oset);
2625331Samw 
2635331Samw 	if (pipe(pfds) == -1) {
2645331Samw 		smbd_report("unable to create pipe");
2655331Samw 		exit(SMF_EXIT_ERR_FATAL);
2665331Samw 	}
2675331Samw 
2685331Samw 	closelog();
2695331Samw 
2705331Samw 	if ((pid = fork()) == -1) {
2715331Samw 		openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
2725331Samw 		smbd_report("unable to fork");
2735331Samw 		closelog();
2745331Samw 		exit(SMF_EXIT_ERR_FATAL);
2755331Samw 	}
2765331Samw 
2775331Samw 	/*
2785331Samw 	 * If we're the parent process, wait for either the child to send us
2795331Samw 	 * the appropriate exit status over the pipe or for the read to fail
2805331Samw 	 * (presumably with 0 for EOF if our child terminated abnormally).
2815331Samw 	 * If the read fails, exit with either the child's exit status if it
2825331Samw 	 * exited or with SMF_EXIT_ERR_FATAL if it died from a fatal signal.
2835331Samw 	 */
2845331Samw 	if (pid != 0) {
2855331Samw 		(void) close(pfds[1]);
2865331Samw 
2875331Samw 		if (read(pfds[0], &status, sizeof (status)) == sizeof (status))
2885331Samw 			_exit(status);
2895331Samw 
2905331Samw 		if (waitpid(pid, &status, 0) == pid && WIFEXITED(status))
2915331Samw 			_exit(WEXITSTATUS(status));
2925331Samw 
2935331Samw 		_exit(SMF_EXIT_ERR_FATAL);
2945331Samw 	}
2955331Samw 
2965331Samw 	openlog(smbd.s_pname, LOG_PID | LOG_NOWAIT, LOG_DAEMON);
2975331Samw 	(void) setsid();
2985331Samw 	(void) sigprocmask(SIG_SETMASK, &oset, NULL);
2995331Samw 	(void) chdir("/");
3005331Samw 	(void) umask(022);
3015331Samw 	(void) close(pfds[0]);
3025331Samw 
3035331Samw 	return (pfds[1]);
3045331Samw }
3055331Samw 
306*9832Samw@Sun.COM /*
307*9832Samw@Sun.COM  * This function is based on __init_daemon_priv() and replaces
308*9832Samw@Sun.COM  * __init_daemon_priv() since we want smbd to have all privileges so that it
309*9832Samw@Sun.COM  * can execute map/unmap commands with all privileges during share
310*9832Samw@Sun.COM  * connection/disconnection.  Unused privileges are disabled until command
311*9832Samw@Sun.COM  * execution.  The permitted and the limit set contains all privileges.  The
312*9832Samw@Sun.COM  * inheritable set contains no privileges.
313*9832Samw@Sun.COM  */
314*9832Samw@Sun.COM 
315*9832Samw@Sun.COM static const char root_cp[] = "/core.%f.%t";
316*9832Samw@Sun.COM static const char daemon_cp[] = "/var/tmp/core.%f.%t";
317*9832Samw@Sun.COM 
318*9832Samw@Sun.COM static int
319*9832Samw@Sun.COM smb_init_daemon_priv(int flags, uid_t uid, gid_t gid)
320*9832Samw@Sun.COM {
321*9832Samw@Sun.COM 	priv_set_t *perm = NULL;
322*9832Samw@Sun.COM 	int ret = -1;
323*9832Samw@Sun.COM 	char buf[1024];
324*9832Samw@Sun.COM 
325*9832Samw@Sun.COM 	/*
326*9832Samw@Sun.COM 	 * This is not a significant failure: it allows us to start programs
327*9832Samw@Sun.COM 	 * with sufficient privileges and with the proper uid.   We don't
328*9832Samw@Sun.COM 	 * care enough about the extra groups in that case.
329*9832Samw@Sun.COM 	 */
330*9832Samw@Sun.COM 	if (flags & PU_RESETGROUPS)
331*9832Samw@Sun.COM 		(void) setgroups(0, NULL);
332*9832Samw@Sun.COM 
333*9832Samw@Sun.COM 	if (gid != (gid_t)-1 && setgid(gid) != 0)
334*9832Samw@Sun.COM 		goto end;
335*9832Samw@Sun.COM 
336*9832Samw@Sun.COM 	perm = priv_allocset();
337*9832Samw@Sun.COM 	if (perm == NULL)
338*9832Samw@Sun.COM 		goto end;
339*9832Samw@Sun.COM 
340*9832Samw@Sun.COM 	/* E = P */
341*9832Samw@Sun.COM 	(void) getppriv(PRIV_PERMITTED, perm);
342*9832Samw@Sun.COM 	(void) setppriv(PRIV_SET, PRIV_EFFECTIVE, perm);
343*9832Samw@Sun.COM 
344*9832Samw@Sun.COM 	/* Now reset suid and euid */
345*9832Samw@Sun.COM 	if (uid != (uid_t)-1 && setreuid(uid, uid) != 0)
346*9832Samw@Sun.COM 		goto end;
347*9832Samw@Sun.COM 
348*9832Samw@Sun.COM 	/* I = 0 */
349*9832Samw@Sun.COM 	priv_emptyset(perm);
350*9832Samw@Sun.COM 	ret = setppriv(PRIV_SET, PRIV_INHERITABLE, perm);
351*9832Samw@Sun.COM end:
352*9832Samw@Sun.COM 	priv_freeset(perm);
353*9832Samw@Sun.COM 
354*9832Samw@Sun.COM 	if (core_get_process_path(buf, sizeof (buf), getpid()) == 0 &&
355*9832Samw@Sun.COM 	    strcmp(buf, "core") == 0) {
356*9832Samw@Sun.COM 
357*9832Samw@Sun.COM 		if ((uid == (uid_t)-1 ? geteuid() : uid) == 0) {
358*9832Samw@Sun.COM 			(void) core_set_process_path(root_cp, sizeof (root_cp),
359*9832Samw@Sun.COM 			    getpid());
360*9832Samw@Sun.COM 		} else {
361*9832Samw@Sun.COM 			(void) core_set_process_path(daemon_cp,
362*9832Samw@Sun.COM 			    sizeof (daemon_cp), getpid());
363*9832Samw@Sun.COM 		}
364*9832Samw@Sun.COM 	}
365*9832Samw@Sun.COM 	(void) setpflags(__PROC_PROTECT, 0);
366*9832Samw@Sun.COM 
367*9832Samw@Sun.COM 	return (ret);
368*9832Samw@Sun.COM }
369*9832Samw@Sun.COM 
370*9832Samw@Sun.COM /*
371*9832Samw@Sun.COM  * Most privileges, except the ones that are required for smbd, are turn off
372*9832Samw@Sun.COM  * in the effective set.  They will be turn on when needed for command
373*9832Samw@Sun.COM  * execution during share connection/disconnection.
374*9832Samw@Sun.COM  */
3755331Samw static void
3765331Samw smbd_daemonize_fini(int fd, int exit_status)
3775331Samw {
378*9832Samw@Sun.COM 	priv_set_t *pset;
379*9832Samw@Sun.COM 
3805331Samw 	/*
3815331Samw 	 * Now that we're running, if a pipe fd was specified, write an exit
3825331Samw 	 * status to it to indicate that our parent process can safely detach.
3835331Samw 	 * Then proceed to loading the remaining non-built-in modules.
3845331Samw 	 */
3855331Samw 	if (fd >= 0)
3865331Samw 		(void) write(fd, &exit_status, sizeof (exit_status));
3875331Samw 
3885331Samw 	(void) close(fd);
3895331Samw 
3905331Samw 	if ((fd = open("/dev/null", O_RDWR)) >= 0) {
3915331Samw 		(void) fcntl(fd, F_DUP2FD, STDIN_FILENO);
3925331Samw 		(void) fcntl(fd, F_DUP2FD, STDOUT_FILENO);
3935331Samw 		(void) fcntl(fd, F_DUP2FD, STDERR_FILENO);
3945331Samw 		(void) close(fd);
3955331Samw 	}
3965331Samw 
397*9832Samw@Sun.COM 	pset = priv_allocset();
398*9832Samw@Sun.COM 	if (pset == NULL)
399*9832Samw@Sun.COM 		return;
400*9832Samw@Sun.COM 
401*9832Samw@Sun.COM 	priv_emptyset(pset);
402*9832Samw@Sun.COM 
403*9832Samw@Sun.COM 	/* list of privileges for smbd */
404*9832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_NET_MAC_AWARE);
405*9832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_NET_PRIVADDR);
406*9832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_PROC_AUDIT);
407*9832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_SYS_DEVICES);
408*9832Samw@Sun.COM 	(void) priv_addset(pset, PRIV_SYS_SMB);
409*9832Samw@Sun.COM 
410*9832Samw@Sun.COM 	priv_inverse(pset);
411*9832Samw@Sun.COM 
412*9832Samw@Sun.COM 	/* turn off unneeded privileges */
413*9832Samw@Sun.COM 	(void) setppriv(PRIV_OFF, PRIV_EFFECTIVE, pset);
414*9832Samw@Sun.COM 
415*9832Samw@Sun.COM 	priv_freeset(pset);
416*9832Samw@Sun.COM 
417*9832Samw@Sun.COM 	/* reenable core dumps */
418*9832Samw@Sun.COM 	__fini_daemon_priv(NULL);
4195331Samw }
4205331Samw 
4216139Sjb150015 /*
4226139Sjb150015  * smbd_service_init
4236139Sjb150015  */
4245331Samw static int
4255331Samw smbd_service_init(void)
4265331Samw {
4276432Sas200622 	int	rc;
4286432Sas200622 
429*9832Samw@Sun.COM 	smbd.s_pid = getpid();
4306139Sjb150015 	if ((mkdir(SMB_DBDIR, 0700) < 0) && (errno != EEXIST)) {
4316139Sjb150015 		smbd_report("mkdir %s: %s", SMB_DBDIR, strerror(errno));
4326139Sjb150015 		return (1);
4335331Samw 	}
4345331Samw 
4356139Sjb150015 	if ((rc = smb_ccache_init(SMB_VARRUN_DIR, SMB_CCACHE_FILE)) != 0) {
4366139Sjb150015 		if (rc == -1)
4376139Sjb150015 			smbd_report("mkdir %s: %s", SMB_VARRUN_DIR,
4386139Sjb150015 			    strerror(errno));
4396139Sjb150015 		else
4406139Sjb150015 			smbd_report("unable to set KRB5CCNAME");
4415331Samw 		return (1);
4425331Samw 	}
4435331Samw 
4446139Sjb150015 
4455331Samw 	(void) oem_language_set("english");
4465331Samw 
4476432Sas200622 	if (!smb_wka_init()) {
4485331Samw 		smbd_report("out of memory");
4495331Samw 		return (1);
4505331Samw 	}
4515331Samw 
4526432Sas200622 	if (smb_nicmon_start(SMBD_DEFAULT_INSTANCE_FMRI) != 0)
4536432Sas200622 		smbd_report("NIC monitoring failed to start");
4546432Sas200622 
4558334SJose.Borrego@Sun.COM 	(void) dyndns_start();
4565331Samw 	smbrdr_init();
4575331Samw 
4585772Sas200622 	if (smb_netbios_start() != 0)
4595772Sas200622 		smbd_report("NetBIOS services failed to start");
4605772Sas200622 	else
4615772Sas200622 		smbd_report("NetBIOS services started");
4625772Sas200622 
4635331Samw 	/* Get the ID map client handle */
4645331Samw 	if ((rc = smb_idmap_start()) != 0) {
4655331Samw 		smbd_report("no idmap handle");
4665331Samw 		return (rc);
4675331Samw 	}
4685331Samw 
4696432Sas200622 	smbd.s_secmode = smb_config_get_secmode();
470*9832Samw@Sun.COM 	if ((rc = nt_domain_init(smbd.s_secmode)) != 0) {
4715772Sas200622 		if (rc == SMB_DOMAIN_NOMACHINE_SID) {
4725772Sas200622 			smbd_report(
4735772Sas200622 			    "no machine SID: check idmap configuration");
4745772Sas200622 			return (rc);
4755772Sas200622 		}
4765331Samw 	}
4775331Samw 
4787052Samw 	smb_ads_init();
4795331Samw 	if ((rc = mlsvc_init()) != 0) {
4805331Samw 		smbd_report("msrpc initialization failed");
4815331Samw 		return (rc);
4825331Samw 	}
4835331Samw 
4847348SJose.Borrego@Sun.COM 	if (smbd.s_secmode == SMB_SECMODE_DOMAIN)
4858334SJose.Borrego@Sun.COM 		if (smbd_locate_dc_start() != 0)
4867348SJose.Borrego@Sun.COM 			smbd_report("dc discovery failed %s", strerror(errno));
4876139Sjb150015 
4886432Sas200622 	smbd.s_door_srv = smb_door_srv_start();
4896432Sas200622 	if (smbd.s_door_srv < 0)
4905331Samw 		return (rc);
4915331Samw 
4925331Samw 	if ((rc = smbd_refresh_init()) != 0)
4935331Samw 		return (rc);
4945331Samw 
4958334SJose.Borrego@Sun.COM 	dyndns_update_zones();
4965331Samw 
4975331Samw 	(void) smbd_localtime_init();
4985331Samw 
4997052Samw 	smbd.s_door_opipe = smbd_opipe_dsrv_start();
5007052Samw 	if (smbd.s_door_opipe < 0) {
5017052Samw 		smbd_report("opipe initialization failed %s",
5025521Sas200622 		    strerror(errno));
5035521Sas200622 		return (rc);
5045521Sas200622 	}
5055521Sas200622 
5065772Sas200622 	(void) smb_lgrp_start();
5076030Sjb150015 
5087052Samw 	smb_pwd_init(B_TRUE);
5096030Sjb150015 
5107961SNatalie.Li@Sun.COM 	if ((rc = smb_shr_start()) != 0) {
5117961SNatalie.Li@Sun.COM 		smbd_report("share initialization failed: %s", strerror(errno));
5127961SNatalie.Li@Sun.COM 		return (rc);
5137961SNatalie.Li@Sun.COM 	}
5147961SNatalie.Li@Sun.COM 
5157961SNatalie.Li@Sun.COM 	smbd.s_door_lmshr = smb_share_dsrv_start();
5167961SNatalie.Li@Sun.COM 	if (smbd.s_door_lmshr < 0) {
5177961SNatalie.Li@Sun.COM 		smbd_report("share initialization failed");
5187961SNatalie.Li@Sun.COM 	}
5197961SNatalie.Li@Sun.COM 
5208334SJose.Borrego@Sun.COM 	if ((rc = smbd_kernel_bind()) != 0) {
5216139Sjb150015 		smbd_report("kernel bind error: %s", strerror(errno));
5226432Sas200622 		return (rc);
5236432Sas200622 	}
5245331Samw 
5258334SJose.Borrego@Sun.COM 	if ((rc = smb_shr_load()) != 0) {
5268334SJose.Borrego@Sun.COM 		smbd_report("failed to start loading shares: %s",
5278334SJose.Borrego@Sun.COM 		    strerror(errno));
5288334SJose.Borrego@Sun.COM 		return (rc);
5298334SJose.Borrego@Sun.COM 	}
5308334SJose.Borrego@Sun.COM 
5317348SJose.Borrego@Sun.COM 	return (0);
5325521Sas200622 }
5335521Sas200622 
5345331Samw /*
5355331Samw  * Close the kernel service and shutdown smbd services.
5365331Samw  * This function is registered with atexit(): ensure that anything
5375331Samw  * called from here is safe to be called multiple times.
5385331Samw  */
5395331Samw static void
5405331Samw smbd_service_fini(void)
5415331Samw {
5427052Samw 	smbd_opipe_dsrv_stop();
5436432Sas200622 	smb_wka_fini();
5445331Samw 	smbd_refresh_fini();
5455331Samw 	smbd_kernel_unbind();
5465331Samw 	smb_door_srv_stop();
5476771Sjb150015 	smb_share_dsrv_stop();
5487052Samw 	smb_shr_stop();
5498334SJose.Borrego@Sun.COM 	dyndns_stop();
5505331Samw 	smb_nicmon_stop();
5515331Samw 	smb_idmap_stop();
5525772Sas200622 	smb_lgrp_stop();
5536139Sjb150015 	smb_ccache_remove(SMB_CCACHE_PATH);
5546030Sjb150015 	smb_pwd_fini();
555*9832Samw@Sun.COM 	nt_domain_fini();
556*9832Samw@Sun.COM 	mlsvc_fini();
557*9832Samw@Sun.COM 	smb_ads_fini();
5585331Samw }
5595331Samw 
5606139Sjb150015 
5615331Samw /*
5625331Samw  * smbd_refresh_init()
5635331Samw  *
5645331Samw  * SMB service refresh thread initialization.  This thread waits for a
5655331Samw  * refresh event and updates the daemon's view of the configuration
5665331Samw  * before going back to sleep.
5675331Samw  */
5685331Samw static int
5695331Samw smbd_refresh_init()
5705331Samw {
5716432Sas200622 	pthread_attr_t		tattr;
5726432Sas200622 	pthread_condattr_t	cattr;
5736432Sas200622 	int			rc;
5745331Samw 
5755331Samw 	(void) pthread_condattr_init(&cattr);
5765331Samw 	(void) pthread_cond_init(&refresh_cond, &cattr);
5775331Samw 	(void) pthread_condattr_destroy(&cattr);
5785331Samw 
5795331Samw 	(void) pthread_mutex_init(&refresh_mutex, NULL);
5805331Samw 
5815331Samw 	(void) pthread_attr_init(&tattr);
5825331Samw 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
5835331Samw 	rc = pthread_create(&refresh_thr, &tattr, smbd_refresh_monitor, 0);
5845331Samw 	(void) pthread_attr_destroy(&tattr);
5856432Sas200622 
5865331Samw 	return (rc);
5875331Samw }
5885331Samw 
5895331Samw /*
5905331Samw  * smbd_refresh_fini()
5915331Samw  *
5925331Samw  * Stop the refresh thread.
5935331Samw  */
5945331Samw static void
5955331Samw smbd_refresh_fini()
5965331Samw {
5975331Samw 	(void) pthread_cancel(refresh_thr);
5985331Samw 
5995331Samw 	(void) pthread_cond_destroy(&refresh_cond);
6005331Samw 	(void) pthread_mutex_destroy(&refresh_mutex);
6015331Samw }
6025331Samw 
6035331Samw /*
6045331Samw  * smbd_refresh_monitor()
6055331Samw  *
6065331Samw  * Wait for a refresh event. When this thread wakes up, update the
6075331Samw  * smbd configuration from the SMF config information then go back to
6085331Samw  * wait for the next refresh.
6095331Samw  */
6105331Samw /*ARGSUSED*/
6115331Samw static void *
6125331Samw smbd_refresh_monitor(void *arg)
6135331Samw {
614*9832Samw@Sun.COM 	smb_kmod_cfg_t	cfg;
615*9832Samw@Sun.COM 	int		error;
6166771Sjb150015 
6178334SJose.Borrego@Sun.COM 	while (!smbd.s_shutting_down) {
6188334SJose.Borrego@Sun.COM 		(void) pthread_mutex_lock(&refresh_mutex);
6198334SJose.Borrego@Sun.COM 		while ((atomic_swap_uint(&smbd.s_refreshes, 0) == 0) &&
6208334SJose.Borrego@Sun.COM 		    (!smbd.s_shutting_down))
6218334SJose.Borrego@Sun.COM 			(void) pthread_cond_wait(&refresh_cond, &refresh_mutex);
6228334SJose.Borrego@Sun.COM 		(void) pthread_mutex_unlock(&refresh_mutex);
6238334SJose.Borrego@Sun.COM 
6248334SJose.Borrego@Sun.COM 		if (smbd.s_shutting_down) {
6258334SJose.Borrego@Sun.COM 			syslog(LOG_DEBUG, "shutting down");
626*9832Samw@Sun.COM 			exit((smbd.s_fatal_error) ? SMF_EXIT_ERR_FATAL :
627*9832Samw@Sun.COM 			    SMF_EXIT_OK);
6288334SJose.Borrego@Sun.COM 		}
6298334SJose.Borrego@Sun.COM 
6305331Samw 		/*
6315331Samw 		 * We've been woken up by a refresh event so go do
6325331Samw 		 * what is necessary.
6335331Samw 		 */
6347052Samw 		smb_ads_refresh();
6356139Sjb150015 		smb_ccache_remove(SMB_CCACHE_PATH);
6366432Sas200622 
6378334SJose.Borrego@Sun.COM 		/*
6388334SJose.Borrego@Sun.COM 		 * Start the dyndns thread, if required.
6398334SJose.Borrego@Sun.COM 		 * Clear the DNS zones for the existing interfaces
6408334SJose.Borrego@Sun.COM 		 * before updating the NIC interface list.
6418334SJose.Borrego@Sun.COM 		 */
6428334SJose.Borrego@Sun.COM 		(void) dyndns_start();
6438334SJose.Borrego@Sun.COM 		dyndns_clear_zones();
6446432Sas200622 
6456432Sas200622 		/* re-initialize NIC table */
6466432Sas200622 		if (smb_nic_init() != 0)
6476432Sas200622 			smbd_report("failed to get NIC information");
6486432Sas200622 		smb_netbios_name_reconfig();
6496432Sas200622 		smb_browser_reconfig();
6508670SJose.Borrego@Sun.COM 		smbd_refresh_dc();
6518334SJose.Borrego@Sun.COM 		dyndns_update_zones();
6526432Sas200622 
6538334SJose.Borrego@Sun.COM 		if (smbd_set_netlogon_cred()) {
6546432Sas200622 			/*
6558334SJose.Borrego@Sun.COM 			 * Restart required because the domain changed
6568334SJose.Borrego@Sun.COM 			 * or the credential chain setup failed.
6576432Sas200622 			 */
6588334SJose.Borrego@Sun.COM 			if (smb_smf_restart_service() != 0) {
6598334SJose.Borrego@Sun.COM 				syslog(LOG_ERR,
6608334SJose.Borrego@Sun.COM 				    "unable to restart smb service. "
6618334SJose.Borrego@Sun.COM 				    "Run 'svcs -xv smb/server' for more "
6628334SJose.Borrego@Sun.COM 				    "information.");
6638334SJose.Borrego@Sun.COM 				smbd.s_shutting_down = B_TRUE;
6648334SJose.Borrego@Sun.COM 				exit(SMF_EXIT_OK);
6658334SJose.Borrego@Sun.COM 			}
6668334SJose.Borrego@Sun.COM 
6678334SJose.Borrego@Sun.COM 			break;
6688334SJose.Borrego@Sun.COM 		}
6698334SJose.Borrego@Sun.COM 
670*9832Samw@Sun.COM 		if (!smbd.s_kbound) {
671*9832Samw@Sun.COM 			error = smbd_kernel_bind();
672*9832Samw@Sun.COM 			if (error != 0)
6736432Sas200622 				smbd_report("kernel bind error: %s",
674*9832Samw@Sun.COM 				    strerror(error));
675*9832Samw@Sun.COM 			else
6768334SJose.Borrego@Sun.COM 				(void) smb_shr_load();
677*9832Samw@Sun.COM 
6786432Sas200622 			continue;
6796432Sas200622 		}
6806432Sas200622 
6818334SJose.Borrego@Sun.COM 		(void) smb_shr_load();
6828334SJose.Borrego@Sun.COM 
683*9832Samw@Sun.COM 		smb_load_kconfig(&cfg);
684*9832Samw@Sun.COM 		error = smb_kmod_setcfg(&cfg);
685*9832Samw@Sun.COM 		if (error < 0)
686*9832Samw@Sun.COM 			smbd_report("configuration update failed: %s",
687*9832Samw@Sun.COM 			    strerror(error));
6885331Samw 	}
6898334SJose.Borrego@Sun.COM 
6905331Samw 	return (NULL);
6915331Samw }
6925331Samw 
6938670SJose.Borrego@Sun.COM /*
6948670SJose.Borrego@Sun.COM  * Update DC information on a refresh.
6958670SJose.Borrego@Sun.COM  */
6968670SJose.Borrego@Sun.COM static void
6978670SJose.Borrego@Sun.COM smbd_refresh_dc(void)
6988670SJose.Borrego@Sun.COM {
6998670SJose.Borrego@Sun.COM 	char fqdomain[MAXHOSTNAMELEN];
7008670SJose.Borrego@Sun.COM 	if (smb_config_get_secmode() != SMB_SECMODE_DOMAIN)
7018670SJose.Borrego@Sun.COM 		return;
7028670SJose.Borrego@Sun.COM 
7038670SJose.Borrego@Sun.COM 	if (smb_getfqdomainname(fqdomain, MAXHOSTNAMELEN))
7048670SJose.Borrego@Sun.COM 		return;
7058670SJose.Borrego@Sun.COM 
7068670SJose.Borrego@Sun.COM 	if (smb_locate_dc(fqdomain, "", NULL))
7078670SJose.Borrego@Sun.COM 		smbd_report("DC discovery failed");
7088670SJose.Borrego@Sun.COM }
7098670SJose.Borrego@Sun.COM 
7108334SJose.Borrego@Sun.COM void
7118334SJose.Borrego@Sun.COM smbd_set_secmode(int secmode)
7128334SJose.Borrego@Sun.COM {
7138334SJose.Borrego@Sun.COM 	switch (secmode) {
7148334SJose.Borrego@Sun.COM 	case SMB_SECMODE_WORKGRP:
7158334SJose.Borrego@Sun.COM 	case SMB_SECMODE_DOMAIN:
7168334SJose.Borrego@Sun.COM 		(void) smb_config_set_secmode(secmode);
7178334SJose.Borrego@Sun.COM 		smbd.s_secmode = secmode;
7188334SJose.Borrego@Sun.COM 		break;
7198334SJose.Borrego@Sun.COM 
7208334SJose.Borrego@Sun.COM 	default:
7218334SJose.Borrego@Sun.COM 		syslog(LOG_ERR, "invalid security mode: %d", secmode);
7228334SJose.Borrego@Sun.COM 		syslog(LOG_ERR, "entering maintenance mode");
7238334SJose.Borrego@Sun.COM 		(void) smb_smf_maintenance_mode();
7248334SJose.Borrego@Sun.COM 	}
7258334SJose.Borrego@Sun.COM }
7265331Samw 
7275331Samw /*
7285331Samw  * If the door has already been opened by another process (non-zero pid
7295331Samw  * in target), we assume that another smbd is already running.  If there
7305331Samw  * is a race here, it will be caught later when smbsrv is opened because
7315331Samw  * only one process is allowed to open the device at a time.
7325331Samw  */
7335331Samw static int
7345331Samw smbd_already_running(void)
7355331Samw {
7365331Samw 	door_info_t info;
7375331Samw 	int door;
7385331Samw 
7396139Sjb150015 	if ((door = open(SMB_DR_SVC_NAME, O_RDONLY)) < 0)
7405331Samw 		return (0);
7415331Samw 
7425331Samw 	if (door_info(door, &info) < 0)
7435331Samw 		return (0);
7445331Samw 
7455331Samw 	if (info.di_target > 0) {
7465331Samw 		smbd_report("already running: pid %ld\n", info.di_target);
7475331Samw 		(void) close(door);
7485331Samw 		return (1);
7495331Samw 	}
7505331Samw 
7515331Samw 	(void) close(door);
7525331Samw 	return (0);
7535331Samw }
7545331Samw 
7556139Sjb150015 /*
7566139Sjb150015  * smbd_kernel_bind
7576432Sas200622  *
7586432Sas200622  * This function open the smbsrv device and start the kernel service.
7596139Sjb150015  */
7605331Samw static int
7616432Sas200622 smbd_kernel_bind(void)
7625331Samw {
763*9832Samw@Sun.COM 	int rc;
7646139Sjb150015 
7658334SJose.Borrego@Sun.COM 	smbd_kernel_unbind();
7665331Samw 
767*9832Samw@Sun.COM 	rc = smb_kmod_bind();
768*9832Samw@Sun.COM 	if (rc == 0) {
769*9832Samw@Sun.COM 		rc = smbd_kernel_start();
770*9832Samw@Sun.COM 		if (rc != 0)
771*9832Samw@Sun.COM 			smb_kmod_unbind();
772*9832Samw@Sun.COM 		else
773*9832Samw@Sun.COM 			smbd.s_kbound = B_TRUE;
7746139Sjb150015 	}
775*9832Samw@Sun.COM 	return (rc);
776*9832Samw@Sun.COM }
777*9832Samw@Sun.COM 
778*9832Samw@Sun.COM static int
779*9832Samw@Sun.COM smbd_kernel_start(void)
780*9832Samw@Sun.COM {
781*9832Samw@Sun.COM 	smb_kmod_cfg_t	cfg;
782*9832Samw@Sun.COM 	int		rc;
783*9832Samw@Sun.COM 
784*9832Samw@Sun.COM 	smb_load_kconfig(&cfg);
785*9832Samw@Sun.COM 	rc = smb_kmod_setcfg(&cfg);
786*9832Samw@Sun.COM 	if (rc != 0)
787*9832Samw@Sun.COM 		return (rc);
788*9832Samw@Sun.COM 
789*9832Samw@Sun.COM 	rc = smb_kmod_setgmtoff(smbd_gmtoff());
790*9832Samw@Sun.COM 	if (rc != 0)
791*9832Samw@Sun.COM 		return (rc);
792*9832Samw@Sun.COM 
793*9832Samw@Sun.COM 	rc = smb_kmod_start(smbd.s_door_opipe, smbd.s_door_lmshr,
794*9832Samw@Sun.COM 	    smbd.s_door_srv);
795*9832Samw@Sun.COM 	if (rc != 0)
796*9832Samw@Sun.COM 		return (rc);
7976139Sjb150015 
7989046SJose.Borrego@Sun.COM 	rc = smbd_start_listeners();
799*9832Samw@Sun.COM 	if (rc != 0)
800*9832Samw@Sun.COM 		return (rc);
801*9832Samw@Sun.COM 
802*9832Samw@Sun.COM 	return (0);
8035331Samw }
8045331Samw 
8056139Sjb150015 /*
8066139Sjb150015  * smbd_kernel_unbind
8076139Sjb150015  */
8086139Sjb150015 static void
8096139Sjb150015 smbd_kernel_unbind(void)
8106139Sjb150015 {
811*9832Samw@Sun.COM 	smbd_stop_listeners();
812*9832Samw@Sun.COM 	smb_kmod_unbind();
813*9832Samw@Sun.COM 	smbd.s_kbound = B_FALSE;
8148167Samw@Sun.COM }
8158167Samw@Sun.COM 
8165331Samw /*
8175331Samw  * Initialization of the localtime thread.
8185331Samw  * Returns 0 on success, an error number if thread creation fails.
8195331Samw  */
8205331Samw 
8215331Samw int
8225331Samw smbd_localtime_init(void)
8235331Samw {
8245331Samw 	pthread_attr_t tattr;
8255331Samw 	int rc;
8265331Samw 
8275331Samw 	(void) pthread_attr_init(&tattr);
8285331Samw 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
8295331Samw 	rc = pthread_create(&localtime_thr, &tattr, smbd_localtime_monitor, 0);
8305331Samw 	(void) pthread_attr_destroy(&tattr);
8315331Samw 	return (rc);
8325331Samw }
8335331Samw 
8345331Samw /*
8355331Samw  * Local time thread to kernel land.
8365331Samw  * Send local gmtoff to kernel module one time at startup
8375331Samw  * and each time it changes (up to twice a year).
8385331Samw  * Local gmtoff is checked once every 15 minutes and
8395331Samw  * since some timezones are aligned on half and qtr hour boundaries,
8405331Samw  * once an hour would likely suffice.
8415331Samw  */
8425331Samw 
8435331Samw /*ARGSUSED*/
8445331Samw static void *
8455331Samw smbd_localtime_monitor(void *arg)
8465331Samw {
8475331Samw 	struct tm local_tm;
8487348SJose.Borrego@Sun.COM 	time_t secs;
8497348SJose.Borrego@Sun.COM 	int32_t gmtoff, last_gmtoff = -1;
8505331Samw 	int timeout;
851*9832Samw@Sun.COM 	int error;
8528167Samw@Sun.COM 
8535331Samw 	for (;;) {
8547348SJose.Borrego@Sun.COM 		gmtoff = smbd_gmtoff();
8555331Samw 
856*9832Samw@Sun.COM 		if ((last_gmtoff != gmtoff) && smbd.s_kbound) {
857*9832Samw@Sun.COM 			error = smb_kmod_setgmtoff(gmtoff);
858*9832Samw@Sun.COM 			if (error != 0)
859*9832Samw@Sun.COM 				smbd_report("localtime set failed: %s",
860*9832Samw@Sun.COM 				    strerror(error));
8615331Samw 		}
8625331Samw 
8635331Samw 		/*
8645331Samw 		 * Align the next iteration on a fifteen minute boundary.
8655331Samw 		 */
8665331Samw 		secs = time(0);
8675331Samw 		(void) localtime_r(&secs, &local_tm);
8685331Samw 		timeout = ((15 - (local_tm.tm_min % 15)) * SECSPERMIN);
8695331Samw 		(void) sleep(timeout);
8705331Samw 
8715331Samw 		last_gmtoff = gmtoff;
8725331Samw 	}
8735331Samw 
8745331Samw 	/*NOTREACHED*/
8755331Samw 	return (NULL);
8765331Samw }
8775331Samw 
8787348SJose.Borrego@Sun.COM /*
8797348SJose.Borrego@Sun.COM  * smbd_gmtoff
8807348SJose.Borrego@Sun.COM  *
8817348SJose.Borrego@Sun.COM  * Determine offset from GMT. If daylight saving time use altzone,
8827348SJose.Borrego@Sun.COM  * otherwise use timezone.
8837348SJose.Borrego@Sun.COM  */
8847348SJose.Borrego@Sun.COM static int32_t
8857348SJose.Borrego@Sun.COM smbd_gmtoff(void)
8867348SJose.Borrego@Sun.COM {
8877348SJose.Borrego@Sun.COM 	time_t clock_val;
8887348SJose.Borrego@Sun.COM 	struct tm *atm;
8897348SJose.Borrego@Sun.COM 	int32_t gmtoff;
8907348SJose.Borrego@Sun.COM 
8917348SJose.Borrego@Sun.COM 	(void) time(&clock_val);
8927348SJose.Borrego@Sun.COM 	atm = localtime(&clock_val);
8937348SJose.Borrego@Sun.COM 
8947348SJose.Borrego@Sun.COM 	gmtoff = (atm->tm_isdst) ? altzone : timezone;
8957348SJose.Borrego@Sun.COM 
8967348SJose.Borrego@Sun.COM 	return (gmtoff);
8977348SJose.Borrego@Sun.COM }
8987348SJose.Borrego@Sun.COM 
8995331Samw static void
9005331Samw smbd_sig_handler(int sigval)
9015331Samw {
9025331Samw 	if (smbd.s_sigval == 0)
9038334SJose.Borrego@Sun.COM 		(void) atomic_swap_uint(&smbd.s_sigval, sigval);
9048334SJose.Borrego@Sun.COM 
9058334SJose.Borrego@Sun.COM 	if (sigval == SIGHUP) {
9068334SJose.Borrego@Sun.COM 		atomic_inc_uint(&smbd.s_refreshes);
9078334SJose.Borrego@Sun.COM 		(void) pthread_cond_signal(&refresh_cond);
9088334SJose.Borrego@Sun.COM 	}
9098334SJose.Borrego@Sun.COM 
9108334SJose.Borrego@Sun.COM 	if (sigval == SIGINT || sigval == SIGTERM) {
9118334SJose.Borrego@Sun.COM 		smbd.s_shutting_down = B_TRUE;
9128334SJose.Borrego@Sun.COM 		(void) pthread_cond_signal(&refresh_cond);
9138334SJose.Borrego@Sun.COM 	}
9145331Samw }
9155331Samw 
9165331Samw /*
9175331Samw  * Set up configuration options and parse the command line.
9185331Samw  * This function will determine if we will run as a daemon
9195331Samw  * or in the foreground.
9205331Samw  *
9215331Samw  * Failure to find a uid or gid results in using the default (0).
9225331Samw  */
9235331Samw static int
9245331Samw smbd_setup_options(int argc, char *argv[])
9255331Samw {
9265331Samw 	struct passwd *pwd;
9275331Samw 	struct group *grp;
9285331Samw 	int c;
9295331Samw 
9305331Samw 	if ((pwd = getpwnam("root")) != NULL)
9315331Samw 		smbd.s_uid = pwd->pw_uid;
9325331Samw 
9335331Samw 	if ((grp = getgrnam("sys")) != NULL)
9345331Samw 		smbd.s_gid = grp->gr_gid;
9355331Samw 
9365772Sas200622 	smbd.s_fg = smb_config_get_fg_flag();
9375331Samw 
9385331Samw 	while ((c = getopt(argc, argv, ":f")) != -1) {
9395331Samw 		switch (c) {
9405331Samw 		case 'f':
9415331Samw 			smbd.s_fg = 1;
9425331Samw 			break;
9435331Samw 
9445331Samw 		case ':':
9455331Samw 		case '?':
9465331Samw 		default:
9475331Samw 			smbd_usage(stderr);
9485331Samw 			return (-1);
9495331Samw 		}
9505331Samw 	}
9515331Samw 
9525331Samw 	return (0);
9535331Samw }
9545331Samw 
9555331Samw static void
9565331Samw smbd_usage(FILE *fp)
9575331Samw {
9585331Samw 	static char *help[] = {
9595331Samw 		"-f  run program in foreground"
9605331Samw 	};
9615331Samw 
9625331Samw 	int i;
9635331Samw 
9645331Samw 	(void) fprintf(fp, "Usage: %s [-f]\n", smbd.s_pname);
9655331Samw 
9665331Samw 	for (i = 0; i < sizeof (help)/sizeof (help[0]); ++i)
9675331Samw 		(void) fprintf(fp, "    %s\n", help[i]);
9685331Samw }
9695331Samw 
9705331Samw static void
9715331Samw smbd_report(const char *fmt, ...)
9725331Samw {
9735331Samw 	char buf[128];
9745331Samw 	va_list ap;
9755331Samw 
9765331Samw 	if (fmt == NULL)
9775331Samw 		return;
9785331Samw 
9795331Samw 	va_start(ap, fmt);
9805331Samw 	(void) vsnprintf(buf, 128, fmt, ap);
9815331Samw 	va_end(ap);
9825331Samw 
9835331Samw 	(void) fprintf(stderr, "smbd: %s\n", buf);
9845331Samw }
9855331Samw 
9869046SJose.Borrego@Sun.COM static int
9879046SJose.Borrego@Sun.COM smbd_start_listeners(void)
9889046SJose.Borrego@Sun.COM {
9899046SJose.Borrego@Sun.COM 	int		rc1;
9909046SJose.Borrego@Sun.COM 	int		rc2;
9919046SJose.Borrego@Sun.COM 	pthread_attr_t	tattr;
9929046SJose.Borrego@Sun.COM 
9939046SJose.Borrego@Sun.COM 	(void) pthread_attr_init(&tattr);
9949046SJose.Borrego@Sun.COM 
9959046SJose.Borrego@Sun.COM 	if (!smbd.s_nbt_listener_running) {
9969046SJose.Borrego@Sun.COM 		rc1 = pthread_create(&smbd.s_nbt_listener_id, &tattr,
9979046SJose.Borrego@Sun.COM 		    smbd_nbt_listener, NULL);
9989046SJose.Borrego@Sun.COM 		if (rc1 != 0)
9999046SJose.Borrego@Sun.COM 			smbd_report("unable to start NBT service");
10009046SJose.Borrego@Sun.COM 		else
10019046SJose.Borrego@Sun.COM 			smbd.s_nbt_listener_running = B_TRUE;
10029046SJose.Borrego@Sun.COM 	}
10039046SJose.Borrego@Sun.COM 
10049046SJose.Borrego@Sun.COM 	if (!smbd.s_tcp_listener_running) {
10059046SJose.Borrego@Sun.COM 		rc2 = pthread_create(&smbd.s_tcp_listener_id, &tattr,
10069046SJose.Borrego@Sun.COM 		    smbd_tcp_listener, NULL);
10079046SJose.Borrego@Sun.COM 		if (rc2 != 0)
10089046SJose.Borrego@Sun.COM 			smbd_report("unable to start TCP service");
10099046SJose.Borrego@Sun.COM 		else
10109046SJose.Borrego@Sun.COM 			smbd.s_tcp_listener_running = B_TRUE;
10119046SJose.Borrego@Sun.COM 	}
10129046SJose.Borrego@Sun.COM 
10139046SJose.Borrego@Sun.COM 	(void) pthread_attr_destroy(&tattr);
10149046SJose.Borrego@Sun.COM 
10159046SJose.Borrego@Sun.COM 	if (rc1 != 0)
10169046SJose.Borrego@Sun.COM 		return (rc1);
10179046SJose.Borrego@Sun.COM 	return (rc2);
10189046SJose.Borrego@Sun.COM }
10199046SJose.Borrego@Sun.COM 
10209046SJose.Borrego@Sun.COM static void
10219046SJose.Borrego@Sun.COM smbd_stop_listeners(void)
10229046SJose.Borrego@Sun.COM {
10239046SJose.Borrego@Sun.COM 	void	*status;
10249046SJose.Borrego@Sun.COM 
10259046SJose.Borrego@Sun.COM 	if (smbd.s_nbt_listener_running) {
10269046SJose.Borrego@Sun.COM 		(void) pthread_kill(smbd.s_nbt_listener_id, SIGTERM);
10279046SJose.Borrego@Sun.COM 		(void) pthread_join(smbd.s_nbt_listener_id, &status);
10289046SJose.Borrego@Sun.COM 		smbd.s_nbt_listener_running = B_FALSE;
10299046SJose.Borrego@Sun.COM 	}
10309046SJose.Borrego@Sun.COM 
10319046SJose.Borrego@Sun.COM 	if (smbd.s_tcp_listener_running) {
10329046SJose.Borrego@Sun.COM 		(void) pthread_kill(smbd.s_tcp_listener_id, SIGTERM);
10339046SJose.Borrego@Sun.COM 		(void) pthread_join(smbd.s_tcp_listener_id, &status);
10349046SJose.Borrego@Sun.COM 		smbd.s_tcp_listener_running = B_FALSE;
10359046SJose.Borrego@Sun.COM 	}
10369046SJose.Borrego@Sun.COM }
10379046SJose.Borrego@Sun.COM 
10385331Samw /*
1039*9832Samw@Sun.COM  * Perform fatal error exit.
1040*9832Samw@Sun.COM  */
1041*9832Samw@Sun.COM static void
1042*9832Samw@Sun.COM smbd_fatal_error(const char *msg)
1043*9832Samw@Sun.COM {
1044*9832Samw@Sun.COM 	if (msg == NULL)
1045*9832Samw@Sun.COM 		msg = "Fatal error";
1046*9832Samw@Sun.COM 
1047*9832Samw@Sun.COM 	smbd_report("%s", msg);
1048*9832Samw@Sun.COM 	smbd.s_fatal_error = B_TRUE;
1049*9832Samw@Sun.COM 	(void) kill(smbd.s_pid, SIGTERM);
1050*9832Samw@Sun.COM }
1051*9832Samw@Sun.COM 
1052*9832Samw@Sun.COM /*ARGSUSED*/
1053*9832Samw@Sun.COM static void *
1054*9832Samw@Sun.COM smbd_nbt_receiver(void *arg)
1055*9832Samw@Sun.COM {
1056*9832Samw@Sun.COM 	(void) smb_kmod_nbtreceive();
1057*9832Samw@Sun.COM 	return (NULL);
1058*9832Samw@Sun.COM }
1059*9832Samw@Sun.COM 
1060*9832Samw@Sun.COM /*ARGSUSED*/
1061*9832Samw@Sun.COM static void *
1062*9832Samw@Sun.COM smbd_nbt_listener(void *arg)
1063*9832Samw@Sun.COM {
1064*9832Samw@Sun.COM 	pthread_attr_t	tattr;
1065*9832Samw@Sun.COM 	sigset_t	set;
1066*9832Samw@Sun.COM 	sigset_t	oset;
1067*9832Samw@Sun.COM 	pthread_t	tid;
1068*9832Samw@Sun.COM 	int		error = 0;
1069*9832Samw@Sun.COM 
1070*9832Samw@Sun.COM 	(void) sigfillset(&set);
1071*9832Samw@Sun.COM 	(void) sigdelset(&set, SIGTERM);
1072*9832Samw@Sun.COM 	(void) sigdelset(&set, SIGINT);
1073*9832Samw@Sun.COM 	(void) pthread_sigmask(SIG_SETMASK, &set, &oset);
1074*9832Samw@Sun.COM 	(void) pthread_attr_init(&tattr);
1075*9832Samw@Sun.COM 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
1076*9832Samw@Sun.COM 
1077*9832Samw@Sun.COM 	while (smb_kmod_nbtlisten(error) == 0)
1078*9832Samw@Sun.COM 		error = pthread_create(&tid, &tattr, smbd_nbt_receiver, NULL);
1079*9832Samw@Sun.COM 
1080*9832Samw@Sun.COM 	(void) pthread_attr_destroy(&tattr);
1081*9832Samw@Sun.COM 
1082*9832Samw@Sun.COM 	if (!smbd.s_shutting_down)
1083*9832Samw@Sun.COM 		smbd_fatal_error("NBT listener thread terminated unexpectedly");
1084*9832Samw@Sun.COM 
1085*9832Samw@Sun.COM 	return (NULL);
1086*9832Samw@Sun.COM }
1087*9832Samw@Sun.COM 
1088*9832Samw@Sun.COM /*ARGSUSED*/
1089*9832Samw@Sun.COM static void *
1090*9832Samw@Sun.COM smbd_tcp_receiver(void *arg)
1091*9832Samw@Sun.COM {
1092*9832Samw@Sun.COM 	(void) smb_kmod_tcpreceive();
1093*9832Samw@Sun.COM 	return (NULL);
1094*9832Samw@Sun.COM }
1095*9832Samw@Sun.COM 
1096*9832Samw@Sun.COM /*ARGSUSED*/
1097*9832Samw@Sun.COM static void *
1098*9832Samw@Sun.COM smbd_tcp_listener(void *arg)
1099*9832Samw@Sun.COM {
1100*9832Samw@Sun.COM 	pthread_attr_t	tattr;
1101*9832Samw@Sun.COM 	sigset_t	set;
1102*9832Samw@Sun.COM 	sigset_t	oset;
1103*9832Samw@Sun.COM 	pthread_t	tid;
1104*9832Samw@Sun.COM 	int		error = 0;
1105*9832Samw@Sun.COM 
1106*9832Samw@Sun.COM 	(void) sigfillset(&set);
1107*9832Samw@Sun.COM 	(void) sigdelset(&set, SIGTERM);
1108*9832Samw@Sun.COM 	(void) sigdelset(&set, SIGINT);
1109*9832Samw@Sun.COM 	(void) pthread_sigmask(SIG_SETMASK, &set, &oset);
1110*9832Samw@Sun.COM 	(void) pthread_attr_init(&tattr);
1111*9832Samw@Sun.COM 	(void) pthread_attr_setdetachstate(&tattr, PTHREAD_CREATE_DETACHED);
1112*9832Samw@Sun.COM 
1113*9832Samw@Sun.COM 	while (smb_kmod_tcplisten(error) == 0)
1114*9832Samw@Sun.COM 		error = pthread_create(&tid, &tattr, smbd_tcp_receiver, NULL);
1115*9832Samw@Sun.COM 
1116*9832Samw@Sun.COM 	(void) pthread_attr_destroy(&tattr);
1117*9832Samw@Sun.COM 
1118*9832Samw@Sun.COM 	if (!smbd.s_shutting_down)
1119*9832Samw@Sun.COM 		smbd_fatal_error("TCP listener thread terminated unexpectedly");
1120*9832Samw@Sun.COM 
1121*9832Samw@Sun.COM 	return (NULL);
1122*9832Samw@Sun.COM }
1123*9832Samw@Sun.COM 
1124*9832Samw@Sun.COM /*
11255331Samw  * Enable libumem debugging by default on DEBUG builds.
11265331Samw  */
11275331Samw #ifdef DEBUG
11285331Samw const char *
11295331Samw _umem_debug_init(void)
11305331Samw {
11315331Samw 	return ("default,verbose"); /* $UMEM_DEBUG setting */
11325331Samw }
11335331Samw 
11345331Samw const char *
11355331Samw _umem_logging_init(void)
11365331Samw {
11375331Samw 	return ("fail,contents"); /* $UMEM_LOGGING setting */
11385331Samw }
11395331Samw #endif
1140