17c478bd9Sstevel@tonic-gate /* 23ee0e492Sjbeck * Copyright (c) 1999-2004, 2006 Sendmail, Inc. and its suppliers. 37c478bd9Sstevel@tonic-gate * All rights reserved. 47c478bd9Sstevel@tonic-gate * 57c478bd9Sstevel@tonic-gate * By using this file, you agree to the terms and conditions set 67c478bd9Sstevel@tonic-gate * forth in the LICENSE file which can be found at the top level of 77c478bd9Sstevel@tonic-gate * the sendmail distribution. 87c478bd9Sstevel@tonic-gate * 97c478bd9Sstevel@tonic-gate */ 107c478bd9Sstevel@tonic-gate 117c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 127c478bd9Sstevel@tonic-gate 137c478bd9Sstevel@tonic-gate #include <sm/gen.h> 14*058561cbSjbeck SM_RCSID("@(#)$Id: engine.c,v 8.155 2006/12/19 22:18:55 ca Exp $") 157c478bd9Sstevel@tonic-gate 167c478bd9Sstevel@tonic-gate #include "libmilter.h" 177c478bd9Sstevel@tonic-gate 187c478bd9Sstevel@tonic-gate #if NETINET || NETINET6 197c478bd9Sstevel@tonic-gate # include <arpa/inet.h> 207c478bd9Sstevel@tonic-gate #endif /* NETINET || NETINET6 */ 217c478bd9Sstevel@tonic-gate 227c478bd9Sstevel@tonic-gate /* generic argument for functions in the command table */ 237c478bd9Sstevel@tonic-gate struct arg_struct 247c478bd9Sstevel@tonic-gate { 257c478bd9Sstevel@tonic-gate size_t a_len; /* length of buffer */ 267c478bd9Sstevel@tonic-gate char *a_buf; /* argument string */ 277c478bd9Sstevel@tonic-gate int a_idx; /* index for macro array */ 287c478bd9Sstevel@tonic-gate SMFICTX_PTR a_ctx; /* context */ 297c478bd9Sstevel@tonic-gate }; 307c478bd9Sstevel@tonic-gate 317c478bd9Sstevel@tonic-gate typedef struct arg_struct genarg; 327c478bd9Sstevel@tonic-gate 337c478bd9Sstevel@tonic-gate /* structure for commands received from MTA */ 347c478bd9Sstevel@tonic-gate struct cmdfct_t 357c478bd9Sstevel@tonic-gate { 367c478bd9Sstevel@tonic-gate char cm_cmd; /* command */ 377c478bd9Sstevel@tonic-gate int cm_argt; /* type of arguments expected */ 387c478bd9Sstevel@tonic-gate int cm_next; /* next state */ 397c478bd9Sstevel@tonic-gate int cm_todo; /* what to do next */ 407c478bd9Sstevel@tonic-gate int cm_macros; /* index for macros */ 417c478bd9Sstevel@tonic-gate int (*cm_fct) __P((genarg *)); /* function to execute */ 427c478bd9Sstevel@tonic-gate }; 437c478bd9Sstevel@tonic-gate 447c478bd9Sstevel@tonic-gate typedef struct cmdfct_t cmdfct; 457c478bd9Sstevel@tonic-gate 467c478bd9Sstevel@tonic-gate /* possible values for cm_argt */ 477c478bd9Sstevel@tonic-gate #define CM_ARG0 0 /* no args */ 487c478bd9Sstevel@tonic-gate #define CM_ARG1 1 /* one arg (string) */ 497c478bd9Sstevel@tonic-gate #define CM_ARG2 2 /* two args (strings) */ 507c478bd9Sstevel@tonic-gate #define CM_ARGA 4 /* one string and _SOCK_ADDR */ 517c478bd9Sstevel@tonic-gate #define CM_ARGO 5 /* two integers */ 527c478bd9Sstevel@tonic-gate #define CM_ARGV 8 /* \0 separated list of args, NULL-terminated */ 537c478bd9Sstevel@tonic-gate #define CM_ARGN 9 /* \0 separated list of args (strings) */ 547c478bd9Sstevel@tonic-gate 557c478bd9Sstevel@tonic-gate /* possible values for cm_todo */ 567c478bd9Sstevel@tonic-gate #define CT_CONT 0x0000 /* continue reading commands */ 577c478bd9Sstevel@tonic-gate #define CT_IGNO 0x0001 /* continue even when error */ 587c478bd9Sstevel@tonic-gate 597c478bd9Sstevel@tonic-gate /* not needed right now, done via return code instead */ 607c478bd9Sstevel@tonic-gate #define CT_KEEP 0x0004 /* keep buffer (contains symbols) */ 61*058561cbSjbeck #define CT_END 0x0008 /* last command of session, stop replying */ 627c478bd9Sstevel@tonic-gate 637c478bd9Sstevel@tonic-gate /* index in macro array: macros only for these commands */ 647c478bd9Sstevel@tonic-gate #define CI_NONE (-1) 657c478bd9Sstevel@tonic-gate #define CI_CONN 0 667c478bd9Sstevel@tonic-gate #define CI_HELO 1 677c478bd9Sstevel@tonic-gate #define CI_MAIL 2 687c478bd9Sstevel@tonic-gate #define CI_RCPT 3 69*058561cbSjbeck #define CI_DATA 4 70*058561cbSjbeck #define CI_EOM 5 71*058561cbSjbeck #define CI_EOH 6 72*058561cbSjbeck #define CI_LAST CI_EOH 73*058561cbSjbeck #if CI_LAST < CI_DATA 74*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_DATA 75*058561cbSjbeck #endif 76*058561cbSjbeck #if CI_LAST < CI_EOM 77*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_EOM 78*058561cbSjbeck #endif 79*058561cbSjbeck #if CI_LAST < CI_EOH 80*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_EOH 81*058561cbSjbeck #endif 82*058561cbSjbeck #if CI_LAST < CI_ENVRCPT 83*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_ENVRCPT 84*058561cbSjbeck #endif 85*058561cbSjbeck #if CI_LAST < CI_ENVFROM 86*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_ENVFROM 87*058561cbSjbeck #endif 88*058561cbSjbeck #if CI_LAST < CI_HELO 89*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_HELO 90*058561cbSjbeck #endif 91*058561cbSjbeck #if CI_LAST < CI_CONNECT 92*058561cbSjbeck ERROR: do not compile with CI_LAST < CI_CONNECT 93*058561cbSjbeck #endif 94*058561cbSjbeck #if CI_LAST >= MAX_MACROS_ENTRIES 95*058561cbSjbeck ERROR: do not compile with CI_LAST >= MAX_MACROS_ENTRIES 967c478bd9Sstevel@tonic-gate #endif 977c478bd9Sstevel@tonic-gate 987c478bd9Sstevel@tonic-gate /* function prototypes */ 997c478bd9Sstevel@tonic-gate static int st_abortfct __P((genarg *)); 1007c478bd9Sstevel@tonic-gate static int st_macros __P((genarg *)); 1017c478bd9Sstevel@tonic-gate static int st_optionneg __P((genarg *)); 1027c478bd9Sstevel@tonic-gate static int st_bodychunk __P((genarg *)); 1037c478bd9Sstevel@tonic-gate static int st_connectinfo __P((genarg *)); 1047c478bd9Sstevel@tonic-gate static int st_bodyend __P((genarg *)); 1057c478bd9Sstevel@tonic-gate static int st_helo __P((genarg *)); 1067c478bd9Sstevel@tonic-gate static int st_header __P((genarg *)); 1077c478bd9Sstevel@tonic-gate static int st_sender __P((genarg *)); 1087c478bd9Sstevel@tonic-gate static int st_rcpt __P((genarg *)); 1097c478bd9Sstevel@tonic-gate static int st_unknown __P((genarg *)); 1107c478bd9Sstevel@tonic-gate static int st_data __P((genarg *)); 1117c478bd9Sstevel@tonic-gate static int st_eoh __P((genarg *)); 1127c478bd9Sstevel@tonic-gate static int st_quit __P((genarg *)); 1137c478bd9Sstevel@tonic-gate static int sendreply __P((sfsistat, socket_t, struct timeval *, SMFICTX_PTR)); 1147c478bd9Sstevel@tonic-gate static void fix_stm __P((SMFICTX_PTR)); 1157c478bd9Sstevel@tonic-gate static bool trans_ok __P((int, int)); 1167c478bd9Sstevel@tonic-gate static char **dec_argv __P((char *, size_t)); 1177c478bd9Sstevel@tonic-gate static int dec_arg2 __P((char *, size_t, char **, char **)); 1187c478bd9Sstevel@tonic-gate 119*058561cbSjbeck #if _FFR_WORKERS_POOL 120*058561cbSjbeck static bool mi_rd_socket_ready __P((int)); 121*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 122*058561cbSjbeck 1237c478bd9Sstevel@tonic-gate /* states */ 1247c478bd9Sstevel@tonic-gate #define ST_NONE (-1) 1257c478bd9Sstevel@tonic-gate #define ST_INIT 0 /* initial state */ 1267c478bd9Sstevel@tonic-gate #define ST_OPTS 1 /* option negotiation */ 1277c478bd9Sstevel@tonic-gate #define ST_CONN 2 /* connection info */ 1287c478bd9Sstevel@tonic-gate #define ST_HELO 3 /* helo */ 1297c478bd9Sstevel@tonic-gate #define ST_MAIL 4 /* mail from */ 1307c478bd9Sstevel@tonic-gate #define ST_RCPT 5 /* rcpt to */ 1317c478bd9Sstevel@tonic-gate #define ST_DATA 6 /* data */ 1327c478bd9Sstevel@tonic-gate #define ST_HDRS 7 /* headers */ 1337c478bd9Sstevel@tonic-gate #define ST_EOHS 8 /* end of headers */ 1347c478bd9Sstevel@tonic-gate #define ST_BODY 9 /* body */ 1357c478bd9Sstevel@tonic-gate #define ST_ENDM 10 /* end of message */ 1367c478bd9Sstevel@tonic-gate #define ST_QUIT 11 /* quit */ 1377c478bd9Sstevel@tonic-gate #define ST_ABRT 12 /* abort */ 1387c478bd9Sstevel@tonic-gate #define ST_UNKN 13 /* unknown SMTP command */ 139*058561cbSjbeck #define ST_Q_NC 14 /* quit, new connection follows */ 140*058561cbSjbeck #define ST_LAST ST_Q_NC /* last valid state */ 141*058561cbSjbeck #define ST_SKIP 16 /* not a state but required for the state table */ 1427c478bd9Sstevel@tonic-gate 1437c478bd9Sstevel@tonic-gate /* in a mail transaction? must be before eom according to spec. */ 1447c478bd9Sstevel@tonic-gate #define ST_IN_MAIL(st) ((st) >= ST_MAIL && (st) < ST_ENDM) 1457c478bd9Sstevel@tonic-gate 1467c478bd9Sstevel@tonic-gate /* 1477c478bd9Sstevel@tonic-gate ** set of next states 1487c478bd9Sstevel@tonic-gate ** each state (ST_*) corresponds to bit in an int value (1 << state) 1497c478bd9Sstevel@tonic-gate ** each state has a set of allowed transitions ('or' of bits of states) 1507c478bd9Sstevel@tonic-gate ** so a state transition is valid if the mask of the next state 1517c478bd9Sstevel@tonic-gate ** is set in the NX_* value 1527c478bd9Sstevel@tonic-gate ** this function is coded in trans_ok(), see below. 1537c478bd9Sstevel@tonic-gate */ 1547c478bd9Sstevel@tonic-gate 1557c478bd9Sstevel@tonic-gate #define MI_MASK(x) (0x0001 << (x)) /* generate a bit "mask" for a state */ 1567c478bd9Sstevel@tonic-gate #define NX_INIT (MI_MASK(ST_OPTS)) 1577c478bd9Sstevel@tonic-gate #define NX_OPTS (MI_MASK(ST_CONN) | MI_MASK(ST_UNKN)) 1587c478bd9Sstevel@tonic-gate #define NX_CONN (MI_MASK(ST_HELO) | MI_MASK(ST_MAIL) | MI_MASK(ST_UNKN)) 1597c478bd9Sstevel@tonic-gate #define NX_HELO (MI_MASK(ST_HELO) | MI_MASK(ST_MAIL) | MI_MASK(ST_UNKN)) 1607c478bd9Sstevel@tonic-gate #define NX_MAIL (MI_MASK(ST_RCPT) | MI_MASK(ST_ABRT) | MI_MASK(ST_UNKN)) 1617c478bd9Sstevel@tonic-gate #define NX_RCPT (MI_MASK(ST_HDRS) | MI_MASK(ST_EOHS) | MI_MASK(ST_DATA) | \ 1627c478bd9Sstevel@tonic-gate MI_MASK(ST_BODY) | MI_MASK(ST_ENDM) | \ 1637c478bd9Sstevel@tonic-gate MI_MASK(ST_RCPT) | MI_MASK(ST_ABRT) | MI_MASK(ST_UNKN)) 1647c478bd9Sstevel@tonic-gate #define NX_DATA (MI_MASK(ST_EOHS) | MI_MASK(ST_HDRS) | MI_MASK(ST_ABRT)) 1657c478bd9Sstevel@tonic-gate #define NX_HDRS (MI_MASK(ST_EOHS) | MI_MASK(ST_HDRS) | MI_MASK(ST_ABRT)) 1667c478bd9Sstevel@tonic-gate #define NX_EOHS (MI_MASK(ST_BODY) | MI_MASK(ST_ENDM) | MI_MASK(ST_ABRT)) 1677c478bd9Sstevel@tonic-gate #define NX_BODY (MI_MASK(ST_ENDM) | MI_MASK(ST_BODY) | MI_MASK(ST_ABRT)) 168*058561cbSjbeck #define NX_ENDM (MI_MASK(ST_QUIT) | MI_MASK(ST_MAIL) | MI_MASK(ST_UNKN) | \ 169*058561cbSjbeck MI_MASK(ST_Q_NC)) 1707c478bd9Sstevel@tonic-gate #define NX_QUIT 0 1717c478bd9Sstevel@tonic-gate #define NX_ABRT 0 1727c478bd9Sstevel@tonic-gate #define NX_UNKN (MI_MASK(ST_HELO) | MI_MASK(ST_MAIL) | \ 1737c478bd9Sstevel@tonic-gate MI_MASK(ST_RCPT) | MI_MASK(ST_ABRT) | \ 1747c478bd9Sstevel@tonic-gate MI_MASK(ST_DATA) | \ 1757c478bd9Sstevel@tonic-gate MI_MASK(ST_BODY) | MI_MASK(ST_UNKN) | \ 176*058561cbSjbeck MI_MASK(ST_ABRT) | MI_MASK(ST_QUIT) | MI_MASK(ST_Q_NC)) 177*058561cbSjbeck #define NX_Q_NC (MI_MASK(ST_CONN) | MI_MASK(ST_UNKN)) 1787c478bd9Sstevel@tonic-gate #define NX_SKIP MI_MASK(ST_SKIP) 1797c478bd9Sstevel@tonic-gate 1807c478bd9Sstevel@tonic-gate static int next_states[] = 1817c478bd9Sstevel@tonic-gate { 182*058561cbSjbeck NX_INIT 183*058561cbSjbeck , NX_OPTS 184*058561cbSjbeck , NX_CONN 185*058561cbSjbeck , NX_HELO 186*058561cbSjbeck , NX_MAIL 187*058561cbSjbeck , NX_RCPT 188*058561cbSjbeck , NX_DATA 189*058561cbSjbeck , NX_HDRS 190*058561cbSjbeck , NX_EOHS 191*058561cbSjbeck , NX_BODY 192*058561cbSjbeck , NX_ENDM 193*058561cbSjbeck , NX_QUIT 194*058561cbSjbeck , NX_ABRT 195*058561cbSjbeck , NX_UNKN 196*058561cbSjbeck , NX_Q_NC 1977c478bd9Sstevel@tonic-gate }; 1987c478bd9Sstevel@tonic-gate 1993ee0e492Sjbeck #define SIZE_NEXT_STATES (sizeof(next_states) / sizeof(next_states[0])) 2003ee0e492Sjbeck 2017c478bd9Sstevel@tonic-gate /* commands received by milter */ 2027c478bd9Sstevel@tonic-gate static cmdfct cmds[] = 2037c478bd9Sstevel@tonic-gate { 204*058561cbSjbeck {SMFIC_ABORT, CM_ARG0, ST_ABRT, CT_CONT, CI_NONE, st_abortfct } 205*058561cbSjbeck , {SMFIC_MACRO, CM_ARGV, ST_NONE, CT_KEEP, CI_NONE, st_macros } 206*058561cbSjbeck , {SMFIC_BODY, CM_ARG1, ST_BODY, CT_CONT, CI_NONE, st_bodychunk } 207*058561cbSjbeck , {SMFIC_CONNECT, CM_ARG2, ST_CONN, CT_CONT, CI_CONN, st_connectinfo } 208*058561cbSjbeck , {SMFIC_BODYEOB, CM_ARG1, ST_ENDM, CT_CONT, CI_EOM, st_bodyend } 209*058561cbSjbeck , {SMFIC_HELO, CM_ARG1, ST_HELO, CT_CONT, CI_HELO, st_helo } 210*058561cbSjbeck , {SMFIC_HEADER, CM_ARG2, ST_HDRS, CT_CONT, CI_NONE, st_header } 211*058561cbSjbeck , {SMFIC_MAIL, CM_ARGV, ST_MAIL, CT_CONT, CI_MAIL, st_sender } 212*058561cbSjbeck , {SMFIC_OPTNEG, CM_ARGO, ST_OPTS, CT_CONT, CI_NONE, st_optionneg } 213*058561cbSjbeck , {SMFIC_EOH, CM_ARG0, ST_EOHS, CT_CONT, CI_EOH, st_eoh } 214*058561cbSjbeck , {SMFIC_QUIT, CM_ARG0, ST_QUIT, CT_END, CI_NONE, st_quit } 215*058561cbSjbeck , {SMFIC_DATA, CM_ARG0, ST_DATA, CT_CONT, CI_DATA, st_data } 216*058561cbSjbeck , {SMFIC_RCPT, CM_ARGV, ST_RCPT, CT_IGNO, CI_RCPT, st_rcpt } 2177c478bd9Sstevel@tonic-gate , {SMFIC_UNKNOWN, CM_ARG1, ST_UNKN, CT_IGNO, CI_NONE, st_unknown } 218*058561cbSjbeck , {SMFIC_QUIT_NC, CM_ARG0, ST_Q_NC, CT_CONT, CI_NONE, st_quit } 2197c478bd9Sstevel@tonic-gate }; 2207c478bd9Sstevel@tonic-gate 221*058561cbSjbeck /* 222*058561cbSjbeck ** Additional (internal) reply codes; 223*058561cbSjbeck ** must be coordinated wit libmilter/mfapi.h 224*058561cbSjbeck */ 225*058561cbSjbeck 2267c478bd9Sstevel@tonic-gate #define _SMFIS_KEEP 20 2277c478bd9Sstevel@tonic-gate #define _SMFIS_ABORT 21 2287c478bd9Sstevel@tonic-gate #define _SMFIS_OPTIONS 22 229*058561cbSjbeck #define _SMFIS_NOREPLY SMFIS_NOREPLY 2307c478bd9Sstevel@tonic-gate #define _SMFIS_FAIL (-1) 2317c478bd9Sstevel@tonic-gate #define _SMFIS_NONE (-2) 2327c478bd9Sstevel@tonic-gate 2337c478bd9Sstevel@tonic-gate /* 2347c478bd9Sstevel@tonic-gate ** MI_ENGINE -- receive commands and process them 2357c478bd9Sstevel@tonic-gate ** 2367c478bd9Sstevel@tonic-gate ** Parameters: 2377c478bd9Sstevel@tonic-gate ** ctx -- context structure 2387c478bd9Sstevel@tonic-gate ** 2397c478bd9Sstevel@tonic-gate ** Returns: 2407c478bd9Sstevel@tonic-gate ** MI_FAILURE/MI_SUCCESS 2417c478bd9Sstevel@tonic-gate */ 242*058561cbSjbeck 2437c478bd9Sstevel@tonic-gate int 2447c478bd9Sstevel@tonic-gate mi_engine(ctx) 2457c478bd9Sstevel@tonic-gate SMFICTX_PTR ctx; 2467c478bd9Sstevel@tonic-gate { 2477c478bd9Sstevel@tonic-gate size_t len; 2487c478bd9Sstevel@tonic-gate int i; 2497c478bd9Sstevel@tonic-gate socket_t sd; 2507c478bd9Sstevel@tonic-gate int ret = MI_SUCCESS; 2517c478bd9Sstevel@tonic-gate int ncmds = sizeof(cmds) / sizeof(cmdfct); 2527c478bd9Sstevel@tonic-gate int curstate = ST_INIT; 2537c478bd9Sstevel@tonic-gate int newstate; 2547c478bd9Sstevel@tonic-gate bool call_abort; 2557c478bd9Sstevel@tonic-gate sfsistat r; 2567c478bd9Sstevel@tonic-gate char cmd; 2577c478bd9Sstevel@tonic-gate char *buf = NULL; 2587c478bd9Sstevel@tonic-gate genarg arg; 2597c478bd9Sstevel@tonic-gate struct timeval timeout; 2607c478bd9Sstevel@tonic-gate int (*f) __P((genarg *)); 2617c478bd9Sstevel@tonic-gate sfsistat (*fi_abort) __P((SMFICTX *)); 2627c478bd9Sstevel@tonic-gate sfsistat (*fi_close) __P((SMFICTX *)); 2637c478bd9Sstevel@tonic-gate 2647c478bd9Sstevel@tonic-gate arg.a_ctx = ctx; 2657c478bd9Sstevel@tonic-gate sd = ctx->ctx_sd; 2667c478bd9Sstevel@tonic-gate fi_abort = ctx->ctx_smfi->xxfi_abort; 267*058561cbSjbeck #if _FFR_WORKERS_POOL 268*058561cbSjbeck curstate = ctx->ctx_state; 269*058561cbSjbeck if (curstate == ST_INIT) 270*058561cbSjbeck { 2717c478bd9Sstevel@tonic-gate mi_clr_macros(ctx, 0); 2727c478bd9Sstevel@tonic-gate fix_stm(ctx); 273*058561cbSjbeck } 274*058561cbSjbeck #else /* _FFR_WORKERS_POOL */ 275*058561cbSjbeck mi_clr_macros(ctx, 0); 276*058561cbSjbeck fix_stm(ctx); 277*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 2787c478bd9Sstevel@tonic-gate r = _SMFIS_NONE; 2797c478bd9Sstevel@tonic-gate do 2807c478bd9Sstevel@tonic-gate { 2817c478bd9Sstevel@tonic-gate /* call abort only if in a mail transaction */ 2827c478bd9Sstevel@tonic-gate call_abort = ST_IN_MAIL(curstate); 2837c478bd9Sstevel@tonic-gate timeout.tv_sec = ctx->ctx_timeout; 2847c478bd9Sstevel@tonic-gate timeout.tv_usec = 0; 2857c478bd9Sstevel@tonic-gate if (mi_stop() == MILTER_ABRT) 2867c478bd9Sstevel@tonic-gate { 2877c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 3) 288*058561cbSjbeck sm_dprintf("[%ld] milter_abort\n", 289*058561cbSjbeck (long) ctx->ctx_id); 2907c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 2917c478bd9Sstevel@tonic-gate break; 2927c478bd9Sstevel@tonic-gate } 2937c478bd9Sstevel@tonic-gate 2947c478bd9Sstevel@tonic-gate /* 2957c478bd9Sstevel@tonic-gate ** Notice: buf is allocated by mi_rd_cmd() and it will 2967c478bd9Sstevel@tonic-gate ** usually be free()d after it has been used in f(). 2977c478bd9Sstevel@tonic-gate ** However, if the function returns _SMFIS_KEEP then buf 2987c478bd9Sstevel@tonic-gate ** contains macros and will not be free()d. 2997c478bd9Sstevel@tonic-gate ** Hence r must be set to _SMFIS_NONE if a new buf is 3007c478bd9Sstevel@tonic-gate ** allocated to avoid problem with housekeeping, esp. 3017c478bd9Sstevel@tonic-gate ** if the code "break"s out of the loop. 3027c478bd9Sstevel@tonic-gate */ 3037c478bd9Sstevel@tonic-gate 304*058561cbSjbeck #if _FFR_WORKERS_POOL 305*058561cbSjbeck /* Is the socket ready to be read ??? */ 306*058561cbSjbeck if (!mi_rd_socket_ready(sd)) 307*058561cbSjbeck { 308*058561cbSjbeck ret = MI_CONTINUE; 309*058561cbSjbeck break; 310*058561cbSjbeck } 311*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 312*058561cbSjbeck 3137c478bd9Sstevel@tonic-gate r = _SMFIS_NONE; 3147c478bd9Sstevel@tonic-gate if ((buf = mi_rd_cmd(sd, &timeout, &cmd, &len, 3157c478bd9Sstevel@tonic-gate ctx->ctx_smfi->xxfi_name)) == NULL && 3167c478bd9Sstevel@tonic-gate cmd < SMFIC_VALIDCMD) 3177c478bd9Sstevel@tonic-gate { 3187c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 5) 319*058561cbSjbeck sm_dprintf("[%ld] mi_engine: mi_rd_cmd error (%x)\n", 320*058561cbSjbeck (long) ctx->ctx_id, (int) cmd); 3217c478bd9Sstevel@tonic-gate 3227c478bd9Sstevel@tonic-gate /* 3237c478bd9Sstevel@tonic-gate ** eof is currently treated as failure -> 3247c478bd9Sstevel@tonic-gate ** abort() instead of close(), otherwise use: 3257c478bd9Sstevel@tonic-gate ** if (cmd != SMFIC_EOF) 3267c478bd9Sstevel@tonic-gate */ 3277c478bd9Sstevel@tonic-gate 3287c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 3297c478bd9Sstevel@tonic-gate break; 3307c478bd9Sstevel@tonic-gate } 3317c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 4) 332*058561cbSjbeck sm_dprintf("[%ld] got cmd '%c' len %d\n", 333*058561cbSjbeck (long) ctx->ctx_id, cmd, (int) len); 3347c478bd9Sstevel@tonic-gate for (i = 0; i < ncmds; i++) 3357c478bd9Sstevel@tonic-gate { 3367c478bd9Sstevel@tonic-gate if (cmd == cmds[i].cm_cmd) 3377c478bd9Sstevel@tonic-gate break; 3387c478bd9Sstevel@tonic-gate } 3397c478bd9Sstevel@tonic-gate if (i >= ncmds) 3407c478bd9Sstevel@tonic-gate { 3417c478bd9Sstevel@tonic-gate /* unknown command */ 3427c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 1) 343*058561cbSjbeck sm_dprintf("[%ld] cmd '%c' unknown\n", 344*058561cbSjbeck (long) ctx->ctx_id, cmd); 3457c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 3467c478bd9Sstevel@tonic-gate break; 3477c478bd9Sstevel@tonic-gate } 3487c478bd9Sstevel@tonic-gate if ((f = cmds[i].cm_fct) == NULL) 3497c478bd9Sstevel@tonic-gate { 3507c478bd9Sstevel@tonic-gate /* stop for now */ 3517c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 1) 352*058561cbSjbeck sm_dprintf("[%ld] cmd '%c' not impl\n", 353*058561cbSjbeck (long) ctx->ctx_id, cmd); 3547c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 3557c478bd9Sstevel@tonic-gate break; 3567c478bd9Sstevel@tonic-gate } 3577c478bd9Sstevel@tonic-gate 3587c478bd9Sstevel@tonic-gate /* is new state ok? */ 3597c478bd9Sstevel@tonic-gate newstate = cmds[i].cm_next; 3607c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 5) 361*058561cbSjbeck sm_dprintf("[%ld] cur %x new %x nextmask %x\n", 362*058561cbSjbeck (long) ctx->ctx_id, 3637c478bd9Sstevel@tonic-gate curstate, newstate, next_states[curstate]); 3647c478bd9Sstevel@tonic-gate 3657c478bd9Sstevel@tonic-gate if (newstate != ST_NONE && !trans_ok(curstate, newstate)) 3667c478bd9Sstevel@tonic-gate { 3677c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 1) 368*058561cbSjbeck sm_dprintf("[%ld] abort: cur %d (%x) new %d (%x) next %x\n", 369*058561cbSjbeck (long) ctx->ctx_id, 3707c478bd9Sstevel@tonic-gate curstate, MI_MASK(curstate), 3717c478bd9Sstevel@tonic-gate newstate, MI_MASK(newstate), 3727c478bd9Sstevel@tonic-gate next_states[curstate]); 3737c478bd9Sstevel@tonic-gate 3747c478bd9Sstevel@tonic-gate /* call abort only if in a mail transaction */ 3757c478bd9Sstevel@tonic-gate if (fi_abort != NULL && call_abort) 3767c478bd9Sstevel@tonic-gate (void) (*fi_abort)(ctx); 3777c478bd9Sstevel@tonic-gate 3787c478bd9Sstevel@tonic-gate /* 3797c478bd9Sstevel@tonic-gate ** try to reach the new state from HELO 3807c478bd9Sstevel@tonic-gate ** if it can't be reached, ignore the command. 3817c478bd9Sstevel@tonic-gate */ 3827c478bd9Sstevel@tonic-gate 3837c478bd9Sstevel@tonic-gate curstate = ST_HELO; 3847c478bd9Sstevel@tonic-gate if (!trans_ok(curstate, newstate)) 3857c478bd9Sstevel@tonic-gate { 3867c478bd9Sstevel@tonic-gate if (buf != NULL) 3877c478bd9Sstevel@tonic-gate { 3887c478bd9Sstevel@tonic-gate free(buf); 3897c478bd9Sstevel@tonic-gate buf = NULL; 3907c478bd9Sstevel@tonic-gate } 3917c478bd9Sstevel@tonic-gate continue; 3927c478bd9Sstevel@tonic-gate } 3937c478bd9Sstevel@tonic-gate } 3947c478bd9Sstevel@tonic-gate arg.a_len = len; 3957c478bd9Sstevel@tonic-gate arg.a_buf = buf; 3967c478bd9Sstevel@tonic-gate if (newstate != ST_NONE) 3977c478bd9Sstevel@tonic-gate { 3987c478bd9Sstevel@tonic-gate curstate = newstate; 3997c478bd9Sstevel@tonic-gate ctx->ctx_state = curstate; 4007c478bd9Sstevel@tonic-gate } 4017c478bd9Sstevel@tonic-gate arg.a_idx = cmds[i].cm_macros; 4027c478bd9Sstevel@tonic-gate call_abort = ST_IN_MAIL(curstate); 4037c478bd9Sstevel@tonic-gate 4047c478bd9Sstevel@tonic-gate /* call function to deal with command */ 405*058561cbSjbeck MI_MONITOR_BEGIN(ctx, cmd); 4067c478bd9Sstevel@tonic-gate r = (*f)(&arg); 407*058561cbSjbeck MI_MONITOR_END(ctx, cmd); 4087c478bd9Sstevel@tonic-gate if (r != _SMFIS_KEEP && buf != NULL) 4097c478bd9Sstevel@tonic-gate { 4107c478bd9Sstevel@tonic-gate free(buf); 4117c478bd9Sstevel@tonic-gate buf = NULL; 4127c478bd9Sstevel@tonic-gate } 4137c478bd9Sstevel@tonic-gate if (sendreply(r, sd, &timeout, ctx) != MI_SUCCESS) 4147c478bd9Sstevel@tonic-gate { 4157c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 4167c478bd9Sstevel@tonic-gate break; 4177c478bd9Sstevel@tonic-gate } 4187c478bd9Sstevel@tonic-gate 4197c478bd9Sstevel@tonic-gate if (r == SMFIS_ACCEPT) 4207c478bd9Sstevel@tonic-gate { 4217c478bd9Sstevel@tonic-gate /* accept mail, no further actions taken */ 4227c478bd9Sstevel@tonic-gate curstate = ST_HELO; 4237c478bd9Sstevel@tonic-gate } 4247c478bd9Sstevel@tonic-gate else if (r == SMFIS_REJECT || r == SMFIS_DISCARD || 4257c478bd9Sstevel@tonic-gate r == SMFIS_TEMPFAIL) 4267c478bd9Sstevel@tonic-gate { 4277c478bd9Sstevel@tonic-gate /* 4287c478bd9Sstevel@tonic-gate ** further actions depend on current state 4297c478bd9Sstevel@tonic-gate ** if the IGNO bit is set: "ignore" the error, 4307c478bd9Sstevel@tonic-gate ** i.e., stay in the current state 4317c478bd9Sstevel@tonic-gate */ 4327c478bd9Sstevel@tonic-gate if (!bitset(CT_IGNO, cmds[i].cm_todo)) 4337c478bd9Sstevel@tonic-gate curstate = ST_HELO; 4347c478bd9Sstevel@tonic-gate } 4357c478bd9Sstevel@tonic-gate else if (r == _SMFIS_ABORT) 4367c478bd9Sstevel@tonic-gate { 4377c478bd9Sstevel@tonic-gate if (ctx->ctx_dbg > 5) 438*058561cbSjbeck sm_dprintf("[%ld] function returned abort\n", 439*058561cbSjbeck (long) ctx->ctx_id); 4407c478bd9Sstevel@tonic-gate ret = MI_FAILURE; 4417c478bd9Sstevel@tonic-gate break; 4427c478bd9Sstevel@tonic-gate } 4437c478bd9Sstevel@tonic-gate } while (!bitset(CT_END, cmds[i].cm_todo)); 4447c478bd9Sstevel@tonic-gate 445*058561cbSjbeck ctx->ctx_state = curstate; 446*058561cbSjbeck 447*058561cbSjbeck if (ret == MI_FAILURE) 4487c478bd9Sstevel@tonic-gate { 4497c478bd9Sstevel@tonic-gate /* call abort only if in a mail transaction */ 4507c478bd9Sstevel@tonic-gate if (fi_abort != NULL && call_abort) 4517c478bd9Sstevel@tonic-gate (void) (*fi_abort)(ctx); 4527c478bd9Sstevel@tonic-gate } 4537c478bd9Sstevel@tonic-gate 454*058561cbSjbeck /* has close been called? */ 455*058561cbSjbeck if (ctx->ctx_state != ST_QUIT 456*058561cbSjbeck #if _FFR_WORKERS_POOL 457*058561cbSjbeck && ret != MI_CONTINUE 458*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 459*058561cbSjbeck ) 460*058561cbSjbeck { 4617c478bd9Sstevel@tonic-gate if ((fi_close = ctx->ctx_smfi->xxfi_close) != NULL) 4627c478bd9Sstevel@tonic-gate (void) (*fi_close)(ctx); 463*058561cbSjbeck } 4647c478bd9Sstevel@tonic-gate if (r != _SMFIS_KEEP && buf != NULL) 4657c478bd9Sstevel@tonic-gate free(buf); 466*058561cbSjbeck #if !_FFR_WORKERS_POOL 4677c478bd9Sstevel@tonic-gate mi_clr_macros(ctx, 0); 468*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 4697c478bd9Sstevel@tonic-gate return ret; 4707c478bd9Sstevel@tonic-gate } 471*058561cbSjbeck 472*058561cbSjbeck static size_t milter_addsymlist __P((SMFICTX_PTR, char *, char **)); 473*058561cbSjbeck 474*058561cbSjbeck static size_t 475*058561cbSjbeck milter_addsymlist(ctx, buf, newbuf) 476*058561cbSjbeck SMFICTX_PTR ctx; 477*058561cbSjbeck char *buf; 478*058561cbSjbeck char **newbuf; 479*058561cbSjbeck { 480*058561cbSjbeck size_t len; 481*058561cbSjbeck int i; 482*058561cbSjbeck mi_int32 v; 483*058561cbSjbeck char *buffer; 484*058561cbSjbeck 485*058561cbSjbeck SM_ASSERT(ctx != NULL); 486*058561cbSjbeck SM_ASSERT(buf != NULL); 487*058561cbSjbeck SM_ASSERT(newbuf != NULL); 488*058561cbSjbeck len = 0; 489*058561cbSjbeck for (i = 0; i < MAX_MACROS_ENTRIES; i++) 490*058561cbSjbeck { 491*058561cbSjbeck if (ctx->ctx_mac_list[i] != NULL) 492*058561cbSjbeck { 493*058561cbSjbeck len += strlen(ctx->ctx_mac_list[i]) + 1 + 494*058561cbSjbeck MILTER_LEN_BYTES; 495*058561cbSjbeck } 496*058561cbSjbeck } 497*058561cbSjbeck if (len > 0) 498*058561cbSjbeck { 499*058561cbSjbeck size_t offset; 500*058561cbSjbeck 501*058561cbSjbeck SM_ASSERT(len + MILTER_OPTLEN > len); 502*058561cbSjbeck len += MILTER_OPTLEN; 503*058561cbSjbeck buffer = malloc(len); 504*058561cbSjbeck if (buffer != NULL) 505*058561cbSjbeck { 506*058561cbSjbeck (void) memcpy(buffer, buf, MILTER_OPTLEN); 507*058561cbSjbeck offset = MILTER_OPTLEN; 508*058561cbSjbeck for (i = 0; i < MAX_MACROS_ENTRIES; i++) 509*058561cbSjbeck { 510*058561cbSjbeck size_t l; 511*058561cbSjbeck 512*058561cbSjbeck if (ctx->ctx_mac_list[i] == NULL) 513*058561cbSjbeck continue; 514*058561cbSjbeck 515*058561cbSjbeck SM_ASSERT(offset + MILTER_LEN_BYTES < len); 516*058561cbSjbeck v = htonl(i); 517*058561cbSjbeck (void) memcpy(buffer + offset, (void *) &v, 518*058561cbSjbeck MILTER_LEN_BYTES); 519*058561cbSjbeck offset += MILTER_LEN_BYTES; 520*058561cbSjbeck l = strlen(ctx->ctx_mac_list[i]) + 1; 521*058561cbSjbeck SM_ASSERT(offset + l <= len); 522*058561cbSjbeck (void) memcpy(buffer + offset, 523*058561cbSjbeck ctx->ctx_mac_list[i], l); 524*058561cbSjbeck offset += l; 525*058561cbSjbeck } 526*058561cbSjbeck } 527*058561cbSjbeck else 528*058561cbSjbeck { 529*058561cbSjbeck /* oops ... */ 530*058561cbSjbeck } 531*058561cbSjbeck } 532*058561cbSjbeck else 533*058561cbSjbeck { 534*058561cbSjbeck len = MILTER_OPTLEN; 535*058561cbSjbeck buffer = buf; 536*058561cbSjbeck } 537*058561cbSjbeck *newbuf = buffer; 538*058561cbSjbeck return len; 539*058561cbSjbeck } 540*058561cbSjbeck 541*058561cbSjbeck /* 542*058561cbSjbeck ** GET_NR_BIT -- get "no reply" bit matching state 543*058561cbSjbeck ** 544*058561cbSjbeck ** Parameters: 545*058561cbSjbeck ** state -- current protocol stage 546*058561cbSjbeck ** 547*058561cbSjbeck ** Returns: 548*058561cbSjbeck ** 0: no matching bit 549*058561cbSjbeck ** >0: the matching "no reply" bit 550*058561cbSjbeck */ 551*058561cbSjbeck 552*058561cbSjbeck static unsigned long get_nr_bit __P((int)); 553*058561cbSjbeck 554*058561cbSjbeck static unsigned long 555*058561cbSjbeck get_nr_bit(state) 556*058561cbSjbeck int state; 557*058561cbSjbeck { 558*058561cbSjbeck unsigned long bit; 559*058561cbSjbeck 560*058561cbSjbeck switch (state) 561*058561cbSjbeck { 562*058561cbSjbeck case ST_CONN: 563*058561cbSjbeck bit = SMFIP_NR_CONN; 564*058561cbSjbeck break; 565*058561cbSjbeck case ST_HELO: 566*058561cbSjbeck bit = SMFIP_NR_HELO; 567*058561cbSjbeck break; 568*058561cbSjbeck case ST_MAIL: 569*058561cbSjbeck bit = SMFIP_NR_MAIL; 570*058561cbSjbeck break; 571*058561cbSjbeck case ST_RCPT: 572*058561cbSjbeck bit = SMFIP_NR_RCPT; 573*058561cbSjbeck break; 574*058561cbSjbeck case ST_DATA: 575*058561cbSjbeck bit = SMFIP_NR_DATA; 576*058561cbSjbeck break; 577*058561cbSjbeck case ST_UNKN: 578*058561cbSjbeck bit = SMFIP_NR_UNKN; 579*058561cbSjbeck break; 580*058561cbSjbeck case ST_HDRS: 581*058561cbSjbeck bit = SMFIP_NR_HDR; 582*058561cbSjbeck break; 583*058561cbSjbeck case ST_EOHS: 584*058561cbSjbeck bit = SMFIP_NR_EOH; 585*058561cbSjbeck break; 586*058561cbSjbeck case ST_BODY: 587*058561cbSjbeck bit = SMFIP_NR_BODY; 588*058561cbSjbeck break; 589*058561cbSjbeck default: 590*058561cbSjbeck bit = 0; 591*058561cbSjbeck break; 592*058561cbSjbeck } 593*058561cbSjbeck return bit; 594*058561cbSjbeck } 595*058561cbSjbeck 5967c478bd9Sstevel@tonic-gate /* 5977c478bd9Sstevel@tonic-gate ** SENDREPLY -- send a reply to the MTA 5987c478bd9Sstevel@tonic-gate ** 5997c478bd9Sstevel@tonic-gate ** Parameters: 6007c478bd9Sstevel@tonic-gate ** r -- reply code 6017c478bd9Sstevel@tonic-gate ** sd -- socket descriptor 6027c478bd9Sstevel@tonic-gate ** timeout_ptr -- (ptr to) timeout to use for sending 6037c478bd9Sstevel@tonic-gate ** ctx -- context structure 6047c478bd9Sstevel@tonic-gate ** 6057c478bd9Sstevel@tonic-gate ** Returns: 6067c478bd9Sstevel@tonic-gate ** MI_SUCCESS/MI_FAILURE 6077c478bd9Sstevel@tonic-gate */ 6087c478bd9Sstevel@tonic-gate 6097c478bd9Sstevel@tonic-gate static int 6107c478bd9Sstevel@tonic-gate sendreply(r, sd, timeout_ptr, ctx) 6117c478bd9Sstevel@tonic-gate sfsistat r; 6127c478bd9Sstevel@tonic-gate socket_t sd; 6137c478bd9Sstevel@tonic-gate struct timeval *timeout_ptr; 6147c478bd9Sstevel@tonic-gate SMFICTX_PTR ctx; 6157c478bd9Sstevel@tonic-gate { 616*058561cbSjbeck int ret; 617*058561cbSjbeck unsigned long bit; 618*058561cbSjbeck 619*058561cbSjbeck ret = MI_SUCCESS; 620*058561cbSjbeck 621*058561cbSjbeck bit = get_nr_bit(ctx->ctx_state); 622*058561cbSjbeck if (bit != 0 && (ctx->ctx_pflags & bit) != 0 && r != SMFIS_NOREPLY) 623*058561cbSjbeck { 624*058561cbSjbeck if (r >= SMFIS_CONTINUE && r < _SMFIS_KEEP) 625*058561cbSjbeck { 626*058561cbSjbeck /* milter said it wouldn't reply, but it lied... */ 627*058561cbSjbeck smi_log(SMI_LOG_ERR, 628*058561cbSjbeck "%s: milter claimed not to reply in state %d but did anyway %d\n", 629*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 630*058561cbSjbeck ctx->ctx_state, r); 631*058561cbSjbeck 632*058561cbSjbeck } 633*058561cbSjbeck 634*058561cbSjbeck /* 635*058561cbSjbeck ** Force specified behavior, otherwise libmilter 636*058561cbSjbeck ** and MTA will fail to communicate properly. 637*058561cbSjbeck */ 638*058561cbSjbeck 639*058561cbSjbeck switch (r) 640*058561cbSjbeck { 641*058561cbSjbeck case SMFIS_CONTINUE: 642*058561cbSjbeck case SMFIS_TEMPFAIL: 643*058561cbSjbeck case SMFIS_REJECT: 644*058561cbSjbeck case SMFIS_DISCARD: 645*058561cbSjbeck case SMFIS_ACCEPT: 646*058561cbSjbeck case SMFIS_SKIP: 647*058561cbSjbeck case _SMFIS_OPTIONS: 648*058561cbSjbeck r = SMFIS_NOREPLY; 649*058561cbSjbeck break; 650*058561cbSjbeck } 651*058561cbSjbeck } 6527c478bd9Sstevel@tonic-gate 6537c478bd9Sstevel@tonic-gate switch (r) 6547c478bd9Sstevel@tonic-gate { 6557c478bd9Sstevel@tonic-gate case SMFIS_CONTINUE: 6567c478bd9Sstevel@tonic-gate ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_CONTINUE, NULL, 0); 6577c478bd9Sstevel@tonic-gate break; 6587c478bd9Sstevel@tonic-gate case SMFIS_TEMPFAIL: 6597c478bd9Sstevel@tonic-gate case SMFIS_REJECT: 6607c478bd9Sstevel@tonic-gate if (ctx->ctx_reply != NULL && 6617c478bd9Sstevel@tonic-gate ((r == SMFIS_TEMPFAIL && *ctx->ctx_reply == '4') || 6627c478bd9Sstevel@tonic-gate (r == SMFIS_REJECT && *ctx->ctx_reply == '5'))) 6637c478bd9Sstevel@tonic-gate { 6647c478bd9Sstevel@tonic-gate ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_REPLYCODE, 6657c478bd9Sstevel@tonic-gate ctx->ctx_reply, 6667c478bd9Sstevel@tonic-gate strlen(ctx->ctx_reply) + 1); 6677c478bd9Sstevel@tonic-gate free(ctx->ctx_reply); 6687c478bd9Sstevel@tonic-gate ctx->ctx_reply = NULL; 6697c478bd9Sstevel@tonic-gate } 6707c478bd9Sstevel@tonic-gate else 6717c478bd9Sstevel@tonic-gate { 6727c478bd9Sstevel@tonic-gate ret = mi_wr_cmd(sd, timeout_ptr, r == SMFIS_REJECT ? 6737c478bd9Sstevel@tonic-gate SMFIR_REJECT : SMFIR_TEMPFAIL, NULL, 0); 6747c478bd9Sstevel@tonic-gate } 6757c478bd9Sstevel@tonic-gate break; 6767c478bd9Sstevel@tonic-gate case SMFIS_DISCARD: 6777c478bd9Sstevel@tonic-gate ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_DISCARD, NULL, 0); 6787c478bd9Sstevel@tonic-gate break; 6797c478bd9Sstevel@tonic-gate case SMFIS_ACCEPT: 6807c478bd9Sstevel@tonic-gate ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_ACCEPT, NULL, 0); 6817c478bd9Sstevel@tonic-gate break; 682*058561cbSjbeck case SMFIS_SKIP: 683*058561cbSjbeck ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_SKIP, NULL, 0); 684*058561cbSjbeck break; 6857c478bd9Sstevel@tonic-gate case _SMFIS_OPTIONS: 6867c478bd9Sstevel@tonic-gate { 6877c478bd9Sstevel@tonic-gate mi_int32 v; 688*058561cbSjbeck size_t len; 689*058561cbSjbeck char *buffer; 690*058561cbSjbeck char buf[MILTER_OPTLEN]; 6917c478bd9Sstevel@tonic-gate 692*058561cbSjbeck v = htonl(ctx->ctx_prot_vers2mta); 693*058561cbSjbeck (void) memcpy(&(buf[0]), (void *) &v, 694*058561cbSjbeck MILTER_LEN_BYTES); 695*058561cbSjbeck v = htonl(ctx->ctx_aflags); 6967c478bd9Sstevel@tonic-gate (void) memcpy(&(buf[MILTER_LEN_BYTES]), (void *) &v, 6977c478bd9Sstevel@tonic-gate MILTER_LEN_BYTES); 698*058561cbSjbeck v = htonl(ctx->ctx_pflags2mta); 699*058561cbSjbeck (void) memcpy(&(buf[MILTER_LEN_BYTES * 2]), 700*058561cbSjbeck (void *) &v, MILTER_LEN_BYTES); 701*058561cbSjbeck len = milter_addsymlist(ctx, buf, &buffer); 702*058561cbSjbeck if (buffer != NULL) 703*058561cbSjbeck ret = mi_wr_cmd(sd, timeout_ptr, SMFIC_OPTNEG, 704*058561cbSjbeck buffer, len); 705*058561cbSjbeck else 706*058561cbSjbeck ret = MI_FAILURE; 707*058561cbSjbeck } 708*058561cbSjbeck break; 709*058561cbSjbeck case SMFIS_NOREPLY: 710*058561cbSjbeck if (bit != 0 && 711*058561cbSjbeck (ctx->ctx_pflags & bit) != 0 && 712*058561cbSjbeck (ctx->ctx_mta_pflags & bit) == 0) 713*058561cbSjbeck { 714*058561cbSjbeck /* 715*058561cbSjbeck ** milter doesn't want to send a reply, 716*058561cbSjbeck ** but the MTA doesn't have that feature: fake it. 717*058561cbSjbeck */ 718*058561cbSjbeck 719*058561cbSjbeck ret = mi_wr_cmd(sd, timeout_ptr, SMFIR_CONTINUE, NULL, 720*058561cbSjbeck 0); 7217c478bd9Sstevel@tonic-gate } 7227c478bd9Sstevel@tonic-gate break; 7237c478bd9Sstevel@tonic-gate default: /* don't send a reply */ 7247c478bd9Sstevel@tonic-gate break; 7257c478bd9Sstevel@tonic-gate } 7267c478bd9Sstevel@tonic-gate return ret; 7277c478bd9Sstevel@tonic-gate } 7287c478bd9Sstevel@tonic-gate 7297c478bd9Sstevel@tonic-gate /* 7307c478bd9Sstevel@tonic-gate ** CLR_MACROS -- clear set of macros starting from a given index 7317c478bd9Sstevel@tonic-gate ** 7327c478bd9Sstevel@tonic-gate ** Parameters: 7337c478bd9Sstevel@tonic-gate ** ctx -- context structure 7347c478bd9Sstevel@tonic-gate ** m -- index from which to clear all macros 7357c478bd9Sstevel@tonic-gate ** 7367c478bd9Sstevel@tonic-gate ** Returns: 7377c478bd9Sstevel@tonic-gate ** None. 7387c478bd9Sstevel@tonic-gate */ 7397c478bd9Sstevel@tonic-gate void 7407c478bd9Sstevel@tonic-gate mi_clr_macros(ctx, m) 7417c478bd9Sstevel@tonic-gate SMFICTX_PTR ctx; 7427c478bd9Sstevel@tonic-gate int m; 7437c478bd9Sstevel@tonic-gate { 7447c478bd9Sstevel@tonic-gate int i; 7457c478bd9Sstevel@tonic-gate 7467c478bd9Sstevel@tonic-gate for (i = m; i < MAX_MACROS_ENTRIES; i++) 7477c478bd9Sstevel@tonic-gate { 7487c478bd9Sstevel@tonic-gate if (ctx->ctx_mac_ptr[i] != NULL) 7497c478bd9Sstevel@tonic-gate { 7507c478bd9Sstevel@tonic-gate free(ctx->ctx_mac_ptr[i]); 7517c478bd9Sstevel@tonic-gate ctx->ctx_mac_ptr[i] = NULL; 7527c478bd9Sstevel@tonic-gate } 7537c478bd9Sstevel@tonic-gate if (ctx->ctx_mac_buf[i] != NULL) 7547c478bd9Sstevel@tonic-gate { 7557c478bd9Sstevel@tonic-gate free(ctx->ctx_mac_buf[i]); 7567c478bd9Sstevel@tonic-gate ctx->ctx_mac_buf[i] = NULL; 7577c478bd9Sstevel@tonic-gate } 7587c478bd9Sstevel@tonic-gate } 7597c478bd9Sstevel@tonic-gate } 760*058561cbSjbeck 7617c478bd9Sstevel@tonic-gate /* 7627c478bd9Sstevel@tonic-gate ** ST_OPTIONNEG -- negotiate options 7637c478bd9Sstevel@tonic-gate ** 7647c478bd9Sstevel@tonic-gate ** Parameters: 7657c478bd9Sstevel@tonic-gate ** g -- generic argument structure 7667c478bd9Sstevel@tonic-gate ** 7677c478bd9Sstevel@tonic-gate ** Returns: 7687c478bd9Sstevel@tonic-gate ** abort/send options/continue 7697c478bd9Sstevel@tonic-gate */ 7707c478bd9Sstevel@tonic-gate 7717c478bd9Sstevel@tonic-gate static int 7727c478bd9Sstevel@tonic-gate st_optionneg(g) 7737c478bd9Sstevel@tonic-gate genarg *g; 7747c478bd9Sstevel@tonic-gate { 775*058561cbSjbeck mi_int32 i, v, fake_pflags; 776*058561cbSjbeck SMFICTX_PTR ctx; 777*058561cbSjbeck int (*fi_negotiate) __P((SMFICTX *, 778*058561cbSjbeck unsigned long, unsigned long, 779*058561cbSjbeck unsigned long, unsigned long, 780*058561cbSjbeck unsigned long *, unsigned long *, 781*058561cbSjbeck unsigned long *, unsigned long *)); 7827c478bd9Sstevel@tonic-gate 7837c478bd9Sstevel@tonic-gate if (g == NULL || g->a_ctx->ctx_smfi == NULL) 7847c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 785*058561cbSjbeck ctx = g->a_ctx; 786*058561cbSjbeck mi_clr_macros(ctx, g->a_idx + 1); 787*058561cbSjbeck ctx->ctx_prot_vers = SMFI_PROT_VERSION; 7887c478bd9Sstevel@tonic-gate 7897c478bd9Sstevel@tonic-gate /* check for minimum length */ 7907c478bd9Sstevel@tonic-gate if (g->a_len < MILTER_OPTLEN) 7917c478bd9Sstevel@tonic-gate { 7927c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 793*058561cbSjbeck "%s: st_optionneg[%ld]: len too short %d < %d", 794*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 795*058561cbSjbeck (long) ctx->ctx_id, (int) g->a_len, 7967c478bd9Sstevel@tonic-gate MILTER_OPTLEN); 7977c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 7987c478bd9Sstevel@tonic-gate } 7997c478bd9Sstevel@tonic-gate 800*058561cbSjbeck /* protocol version */ 801*058561cbSjbeck (void) memcpy((void *) &i, (void *) &(g->a_buf[0]), MILTER_LEN_BYTES); 8027c478bd9Sstevel@tonic-gate v = ntohl(i); 803*058561cbSjbeck 804*058561cbSjbeck #define SMFI_PROT_VERSION_MIN 2 805*058561cbSjbeck 806*058561cbSjbeck /* check for minimum version */ 807*058561cbSjbeck if (v < SMFI_PROT_VERSION_MIN) 8087c478bd9Sstevel@tonic-gate { 8097c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 810*058561cbSjbeck "%s: st_optionneg[%ld]: protocol version too old %d < %d", 811*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 812*058561cbSjbeck (long) ctx->ctx_id, v, SMFI_PROT_VERSION_MIN); 8137c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 8147c478bd9Sstevel@tonic-gate } 815*058561cbSjbeck ctx->ctx_mta_prot_vers = v; 816*058561cbSjbeck if (ctx->ctx_prot_vers < ctx->ctx_mta_prot_vers) 817*058561cbSjbeck ctx->ctx_prot_vers2mta = ctx->ctx_prot_vers; 818*058561cbSjbeck else 819*058561cbSjbeck ctx->ctx_prot_vers2mta = ctx->ctx_mta_prot_vers; 8207c478bd9Sstevel@tonic-gate 8217c478bd9Sstevel@tonic-gate (void) memcpy((void *) &i, (void *) &(g->a_buf[MILTER_LEN_BYTES]), 8227c478bd9Sstevel@tonic-gate MILTER_LEN_BYTES); 8237c478bd9Sstevel@tonic-gate v = ntohl(i); 8247c478bd9Sstevel@tonic-gate 8257c478bd9Sstevel@tonic-gate /* no flags? set to default value for V1 actions */ 8267c478bd9Sstevel@tonic-gate if (v == 0) 8277c478bd9Sstevel@tonic-gate v = SMFI_V1_ACTS; 828*058561cbSjbeck ctx->ctx_mta_aflags = v; /* MTA action flags */ 8297c478bd9Sstevel@tonic-gate 8307c478bd9Sstevel@tonic-gate (void) memcpy((void *) &i, (void *) &(g->a_buf[MILTER_LEN_BYTES * 2]), 8317c478bd9Sstevel@tonic-gate MILTER_LEN_BYTES); 8327c478bd9Sstevel@tonic-gate v = ntohl(i); 8337c478bd9Sstevel@tonic-gate 8347c478bd9Sstevel@tonic-gate /* no flags? set to default value for V1 protocol */ 8357c478bd9Sstevel@tonic-gate if (v == 0) 8367c478bd9Sstevel@tonic-gate v = SMFI_V1_PROT; 837*058561cbSjbeck ctx->ctx_mta_pflags = v; /* MTA protocol flags */ 838*058561cbSjbeck 839*058561cbSjbeck /* 840*058561cbSjbeck ** Copy flags from milter struct into libmilter context; 841*058561cbSjbeck ** this variable will be used later on to check whether 842*058561cbSjbeck ** the MTA "actions" can fulfill the milter requirements, 843*058561cbSjbeck ** but it may be overwritten by the negotiate callback. 844*058561cbSjbeck */ 845*058561cbSjbeck 846*058561cbSjbeck ctx->ctx_aflags = ctx->ctx_smfi->xxfi_flags; 847*058561cbSjbeck fake_pflags = SMFIP_NR_CONN 848*058561cbSjbeck |SMFIP_NR_HELO 849*058561cbSjbeck |SMFIP_NR_MAIL 850*058561cbSjbeck |SMFIP_NR_RCPT 851*058561cbSjbeck |SMFIP_NR_DATA 852*058561cbSjbeck |SMFIP_NR_UNKN 853*058561cbSjbeck |SMFIP_NR_HDR 854*058561cbSjbeck |SMFIP_NR_EOH 855*058561cbSjbeck |SMFIP_NR_BODY 856*058561cbSjbeck ; 857*058561cbSjbeck 858*058561cbSjbeck if (g->a_ctx->ctx_smfi != NULL && 859*058561cbSjbeck (fi_negotiate = g->a_ctx->ctx_smfi->xxfi_negotiate) != NULL) 860*058561cbSjbeck { 861*058561cbSjbeck int r; 862*058561cbSjbeck unsigned long m_aflags, m_pflags, m_f2, m_f3; 863*058561cbSjbeck 864*058561cbSjbeck /* 865*058561cbSjbeck ** let milter decide whether the features offered by the 866*058561cbSjbeck ** MTA are "good enough". 867*058561cbSjbeck ** Notes: 868*058561cbSjbeck ** - libmilter can "fake" some features (e.g., SMFIP_NR_HDR) 869*058561cbSjbeck ** - m_f2, m_f3 are for future extensions 870*058561cbSjbeck */ 871*058561cbSjbeck 872*058561cbSjbeck m_f2 = m_f3 = 0; 873*058561cbSjbeck m_aflags = ctx->ctx_mta_aflags; 874*058561cbSjbeck m_pflags = ctx->ctx_pflags; 875*058561cbSjbeck if ((SMFIP_SKIP & ctx->ctx_mta_pflags) != 0) 876*058561cbSjbeck m_pflags |= SMFIP_SKIP; 877*058561cbSjbeck r = fi_negotiate(g->a_ctx, 878*058561cbSjbeck ctx->ctx_mta_aflags, 879*058561cbSjbeck ctx->ctx_mta_pflags|fake_pflags, 880*058561cbSjbeck 0, 0, 881*058561cbSjbeck &m_aflags, &m_pflags, &m_f2, &m_f3); 882*058561cbSjbeck 883*058561cbSjbeck /* 884*058561cbSjbeck ** Types of protocol flags (pflags): 885*058561cbSjbeck ** 1. do NOT send protocol step X 886*058561cbSjbeck ** 2. MTA can do/understand something extra (SKIP, 887*058561cbSjbeck ** send unknown RCPTs) 888*058561cbSjbeck ** 3. MTA can deal with "no reply" for various protocol steps 889*058561cbSjbeck ** Note: this mean that it isn't possible to simply set all 890*058561cbSjbeck ** flags to get "everything": 891*058561cbSjbeck ** setting a flag of type 1 turns off a step 892*058561cbSjbeck ** (it should be the other way around: 893*058561cbSjbeck ** a flag means a protocol step can be sent) 894*058561cbSjbeck ** setting a flag of type 3 requires that milter 895*058561cbSjbeck ** never sends a reply for the corresponding step. 896*058561cbSjbeck ** Summary: the "negation" of protocol flags is causing 897*058561cbSjbeck ** problems, but at least for type 3 there is no simple 898*058561cbSjbeck ** solution. 899*058561cbSjbeck ** 900*058561cbSjbeck ** What should "all options" mean? 901*058561cbSjbeck ** send all protocol steps _except_ those for which there is 902*058561cbSjbeck ** no callback (currently registered in ctx_pflags) 903*058561cbSjbeck ** expect SKIP as return code? Yes 904*058561cbSjbeck ** send unknown RCPTs? No, 905*058561cbSjbeck ** must be explicitly requested? 906*058561cbSjbeck ** "no reply" for some protocol steps? No, 907*058561cbSjbeck ** must be explicitly requested. 908*058561cbSjbeck */ 909*058561cbSjbeck 910*058561cbSjbeck if (SMFIS_ALL_OPTS == r) 911*058561cbSjbeck { 912*058561cbSjbeck ctx->ctx_aflags = ctx->ctx_mta_aflags; 913*058561cbSjbeck ctx->ctx_pflags2mta = ctx->ctx_pflags; 914*058561cbSjbeck if ((SMFIP_SKIP & ctx->ctx_mta_pflags) != 0) 915*058561cbSjbeck ctx->ctx_pflags2mta |= SMFIP_SKIP; 916*058561cbSjbeck } 917*058561cbSjbeck else if (r != SMFIS_CONTINUE) 9187c478bd9Sstevel@tonic-gate { 9197c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 920*058561cbSjbeck "%s: st_optionneg[%ld]: xxfi_negotiate returned %d (protocol options=0x%lx, actions=0x%lx)", 921*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 922*058561cbSjbeck (long) ctx->ctx_id, r, ctx->ctx_mta_pflags, 923*058561cbSjbeck ctx->ctx_mta_aflags); 924*058561cbSjbeck return _SMFIS_ABORT; 925*058561cbSjbeck } 926*058561cbSjbeck else 927*058561cbSjbeck { 928*058561cbSjbeck ctx->ctx_aflags = m_aflags; 929*058561cbSjbeck ctx->ctx_pflags = m_pflags; 930*058561cbSjbeck ctx->ctx_pflags2mta = m_pflags; 931*058561cbSjbeck } 932*058561cbSjbeck 933*058561cbSjbeck /* check whether some flags need to be "faked" */ 934*058561cbSjbeck i = ctx->ctx_pflags2mta; 935*058561cbSjbeck if ((ctx->ctx_mta_pflags & i) != i) 936*058561cbSjbeck { 937*058561cbSjbeck unsigned int idx; 938*058561cbSjbeck unsigned long b; 939*058561cbSjbeck 940*058561cbSjbeck /* 941*058561cbSjbeck ** If some behavior can be faked (set in fake_pflags), 942*058561cbSjbeck ** but the MTA doesn't support it, then unset 943*058561cbSjbeck ** that flag in the value that is sent to the MTA. 944*058561cbSjbeck */ 945*058561cbSjbeck 946*058561cbSjbeck for (idx = 0; idx < 32; idx++) 947*058561cbSjbeck { 948*058561cbSjbeck b = 1 << idx; 949*058561cbSjbeck if ((ctx->ctx_mta_pflags & b) != b && 950*058561cbSjbeck (fake_pflags & b) == b) 951*058561cbSjbeck ctx->ctx_pflags2mta &= ~b; 952*058561cbSjbeck } 953*058561cbSjbeck } 954*058561cbSjbeck } 955*058561cbSjbeck else 956*058561cbSjbeck { 957*058561cbSjbeck /* 958*058561cbSjbeck ** Set the protocol flags based on the values determined 959*058561cbSjbeck ** in mi_listener() which checked the defined callbacks. 960*058561cbSjbeck */ 961*058561cbSjbeck 962*058561cbSjbeck ctx->ctx_pflags2mta = ctx->ctx_pflags; 963*058561cbSjbeck } 964*058561cbSjbeck 965*058561cbSjbeck /* check whether actions and protocol requirements can be satisfied */ 966*058561cbSjbeck i = ctx->ctx_aflags; 967*058561cbSjbeck if ((i & ctx->ctx_mta_aflags) != i) 968*058561cbSjbeck { 969*058561cbSjbeck smi_log(SMI_LOG_ERR, 970*058561cbSjbeck "%s: st_optionneg[%ld]: 0x%lx does not fulfill action requirements 0x%x", 971*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 972*058561cbSjbeck (long) ctx->ctx_id, ctx->ctx_mta_aflags, i); 9737c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 9747c478bd9Sstevel@tonic-gate } 9757c478bd9Sstevel@tonic-gate 976*058561cbSjbeck i = ctx->ctx_pflags2mta; 977*058561cbSjbeck if ((ctx->ctx_mta_pflags & i) != i) 978*058561cbSjbeck { 979*058561cbSjbeck /* 980*058561cbSjbeck ** Older MTAs do not support some protocol steps. 981*058561cbSjbeck ** As this protocol is a bit "wierd" (it asks for steps 982*058561cbSjbeck ** NOT to be taken/sent) we have to check whether we 983*058561cbSjbeck ** should turn off those "negative" requests. 984*058561cbSjbeck ** Currently these are only SMFIP_NODATA and SMFIP_NOUNKNOWN. 985*058561cbSjbeck */ 986*058561cbSjbeck 987*058561cbSjbeck if (bitset(SMFIP_NODATA, ctx->ctx_pflags2mta) && 988*058561cbSjbeck !bitset(SMFIP_NODATA, ctx->ctx_mta_pflags)) 989*058561cbSjbeck ctx->ctx_pflags2mta &= ~SMFIP_NODATA; 990*058561cbSjbeck if (bitset(SMFIP_NOUNKNOWN, ctx->ctx_pflags2mta) && 991*058561cbSjbeck !bitset(SMFIP_NOUNKNOWN, ctx->ctx_mta_pflags)) 992*058561cbSjbeck ctx->ctx_pflags2mta &= ~SMFIP_NOUNKNOWN; 993*058561cbSjbeck i = ctx->ctx_pflags2mta; 994*058561cbSjbeck } 995*058561cbSjbeck 996*058561cbSjbeck if ((ctx->ctx_mta_pflags & i) != i) 997*058561cbSjbeck { 998*058561cbSjbeck smi_log(SMI_LOG_ERR, 999*058561cbSjbeck "%s: st_optionneg[%ld]: 0x%lx does not fulfill protocol requirements 0x%x", 1000*058561cbSjbeck ctx->ctx_smfi->xxfi_name, 1001*058561cbSjbeck (long) ctx->ctx_id, ctx->ctx_mta_pflags, i); 1002*058561cbSjbeck return _SMFIS_ABORT; 1003*058561cbSjbeck } 1004*058561cbSjbeck 1005*058561cbSjbeck if (ctx->ctx_dbg > 3) 1006*058561cbSjbeck sm_dprintf("[%ld] milter_negotiate:" 1007*058561cbSjbeck " mta_actions=0x%lx, mta_flags=0x%lx" 1008*058561cbSjbeck " actions=0x%lx, flags=0x%lx\n" 1009*058561cbSjbeck , (long) ctx->ctx_id 1010*058561cbSjbeck , ctx->ctx_mta_aflags, ctx->ctx_mta_pflags 1011*058561cbSjbeck , ctx->ctx_aflags, ctx->ctx_pflags); 1012*058561cbSjbeck 10137c478bd9Sstevel@tonic-gate return _SMFIS_OPTIONS; 10147c478bd9Sstevel@tonic-gate } 1015*058561cbSjbeck 10167c478bd9Sstevel@tonic-gate /* 10177c478bd9Sstevel@tonic-gate ** ST_CONNECTINFO -- receive connection information 10187c478bd9Sstevel@tonic-gate ** 10197c478bd9Sstevel@tonic-gate ** Parameters: 10207c478bd9Sstevel@tonic-gate ** g -- generic argument structure 10217c478bd9Sstevel@tonic-gate ** 10227c478bd9Sstevel@tonic-gate ** Returns: 10237c478bd9Sstevel@tonic-gate ** continue or filter-specified value 10247c478bd9Sstevel@tonic-gate */ 10257c478bd9Sstevel@tonic-gate 10267c478bd9Sstevel@tonic-gate static int 10277c478bd9Sstevel@tonic-gate st_connectinfo(g) 10287c478bd9Sstevel@tonic-gate genarg *g; 10297c478bd9Sstevel@tonic-gate { 10307c478bd9Sstevel@tonic-gate size_t l; 10317c478bd9Sstevel@tonic-gate size_t i; 10327c478bd9Sstevel@tonic-gate char *s, family; 10337c478bd9Sstevel@tonic-gate unsigned short port = 0; 10347c478bd9Sstevel@tonic-gate _SOCK_ADDR sockaddr; 10357c478bd9Sstevel@tonic-gate sfsistat (*fi_connect) __P((SMFICTX *, char *, _SOCK_ADDR *)); 10367c478bd9Sstevel@tonic-gate 10377c478bd9Sstevel@tonic-gate if (g == NULL) 10387c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 10397c478bd9Sstevel@tonic-gate mi_clr_macros(g->a_ctx, g->a_idx + 1); 10407c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi == NULL || 10417c478bd9Sstevel@tonic-gate (fi_connect = g->a_ctx->ctx_smfi->xxfi_connect) == NULL) 10427c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 10437c478bd9Sstevel@tonic-gate 10447c478bd9Sstevel@tonic-gate s = g->a_buf; 10457c478bd9Sstevel@tonic-gate i = 0; 10467c478bd9Sstevel@tonic-gate l = g->a_len; 10477c478bd9Sstevel@tonic-gate while (s[i] != '\0' && i <= l) 10487c478bd9Sstevel@tonic-gate ++i; 10497c478bd9Sstevel@tonic-gate if (i + 1 >= l) 10507c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 10517c478bd9Sstevel@tonic-gate 10527c478bd9Sstevel@tonic-gate /* Move past trailing \0 in host string */ 10537c478bd9Sstevel@tonic-gate i++; 10547c478bd9Sstevel@tonic-gate family = s[i++]; 10557c478bd9Sstevel@tonic-gate (void) memset(&sockaddr, '\0', sizeof sockaddr); 10567c478bd9Sstevel@tonic-gate if (family != SMFIA_UNKNOWN) 10577c478bd9Sstevel@tonic-gate { 10587c478bd9Sstevel@tonic-gate if (i + sizeof port >= l) 10597c478bd9Sstevel@tonic-gate { 10607c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 1061*058561cbSjbeck "%s: connect[%ld]: wrong len %d >= %d", 10627c478bd9Sstevel@tonic-gate g->a_ctx->ctx_smfi->xxfi_name, 1063*058561cbSjbeck (long) g->a_ctx->ctx_id, (int) i, (int) l); 10647c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 10657c478bd9Sstevel@tonic-gate } 10667c478bd9Sstevel@tonic-gate (void) memcpy((void *) &port, (void *) (s + i), 10677c478bd9Sstevel@tonic-gate sizeof port); 10687c478bd9Sstevel@tonic-gate i += sizeof port; 10697c478bd9Sstevel@tonic-gate 10707c478bd9Sstevel@tonic-gate /* make sure string is terminated */ 10717c478bd9Sstevel@tonic-gate if (s[l - 1] != '\0') 10727c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 10737c478bd9Sstevel@tonic-gate # if NETINET 10747c478bd9Sstevel@tonic-gate if (family == SMFIA_INET) 10757c478bd9Sstevel@tonic-gate { 10767c478bd9Sstevel@tonic-gate if (inet_aton(s + i, (struct in_addr *) &sockaddr.sin.sin_addr) 10777c478bd9Sstevel@tonic-gate != 1) 10787c478bd9Sstevel@tonic-gate { 10797c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 1080*058561cbSjbeck "%s: connect[%ld]: inet_aton failed", 10817c478bd9Sstevel@tonic-gate g->a_ctx->ctx_smfi->xxfi_name, 1082*058561cbSjbeck (long) g->a_ctx->ctx_id); 10837c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 10847c478bd9Sstevel@tonic-gate } 10857c478bd9Sstevel@tonic-gate sockaddr.sa.sa_family = AF_INET; 10867c478bd9Sstevel@tonic-gate if (port > 0) 10877c478bd9Sstevel@tonic-gate sockaddr.sin.sin_port = port; 10887c478bd9Sstevel@tonic-gate } 10897c478bd9Sstevel@tonic-gate else 10907c478bd9Sstevel@tonic-gate # endif /* NETINET */ 10917c478bd9Sstevel@tonic-gate # if NETINET6 10927c478bd9Sstevel@tonic-gate if (family == SMFIA_INET6) 10937c478bd9Sstevel@tonic-gate { 10947c478bd9Sstevel@tonic-gate if (mi_inet_pton(AF_INET6, s + i, 10957c478bd9Sstevel@tonic-gate &sockaddr.sin6.sin6_addr) != 1) 10967c478bd9Sstevel@tonic-gate { 10977c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 1098*058561cbSjbeck "%s: connect[%ld]: mi_inet_pton failed", 10997c478bd9Sstevel@tonic-gate g->a_ctx->ctx_smfi->xxfi_name, 1100*058561cbSjbeck (long) g->a_ctx->ctx_id); 11017c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 11027c478bd9Sstevel@tonic-gate } 11037c478bd9Sstevel@tonic-gate sockaddr.sa.sa_family = AF_INET6; 11047c478bd9Sstevel@tonic-gate if (port > 0) 11057c478bd9Sstevel@tonic-gate sockaddr.sin6.sin6_port = port; 11067c478bd9Sstevel@tonic-gate } 11077c478bd9Sstevel@tonic-gate else 11087c478bd9Sstevel@tonic-gate # endif /* NETINET6 */ 11097c478bd9Sstevel@tonic-gate # if NETUNIX 11107c478bd9Sstevel@tonic-gate if (family == SMFIA_UNIX) 11117c478bd9Sstevel@tonic-gate { 11127c478bd9Sstevel@tonic-gate if (sm_strlcpy(sockaddr.sunix.sun_path, s + i, 11137c478bd9Sstevel@tonic-gate sizeof sockaddr.sunix.sun_path) >= 11147c478bd9Sstevel@tonic-gate sizeof sockaddr.sunix.sun_path) 11157c478bd9Sstevel@tonic-gate { 11167c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 1117*058561cbSjbeck "%s: connect[%ld]: path too long", 11187c478bd9Sstevel@tonic-gate g->a_ctx->ctx_smfi->xxfi_name, 1119*058561cbSjbeck (long) g->a_ctx->ctx_id); 11207c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 11217c478bd9Sstevel@tonic-gate } 11227c478bd9Sstevel@tonic-gate sockaddr.sunix.sun_family = AF_UNIX; 11237c478bd9Sstevel@tonic-gate } 11247c478bd9Sstevel@tonic-gate else 11257c478bd9Sstevel@tonic-gate # endif /* NETUNIX */ 11267c478bd9Sstevel@tonic-gate { 11277c478bd9Sstevel@tonic-gate smi_log(SMI_LOG_ERR, 1128*058561cbSjbeck "%s: connect[%ld]: unknown family %d", 11297c478bd9Sstevel@tonic-gate g->a_ctx->ctx_smfi->xxfi_name, 1130*058561cbSjbeck (long) g->a_ctx->ctx_id, family); 11317c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 11327c478bd9Sstevel@tonic-gate } 11337c478bd9Sstevel@tonic-gate } 11347c478bd9Sstevel@tonic-gate return (*fi_connect)(g->a_ctx, g->a_buf, 11357c478bd9Sstevel@tonic-gate family != SMFIA_UNKNOWN ? &sockaddr : NULL); 11367c478bd9Sstevel@tonic-gate } 11377c478bd9Sstevel@tonic-gate 11387c478bd9Sstevel@tonic-gate /* 11397c478bd9Sstevel@tonic-gate ** ST_EOH -- end of headers 11407c478bd9Sstevel@tonic-gate ** 11417c478bd9Sstevel@tonic-gate ** Parameters: 11427c478bd9Sstevel@tonic-gate ** g -- generic argument structure 11437c478bd9Sstevel@tonic-gate ** 11447c478bd9Sstevel@tonic-gate ** Returns: 11457c478bd9Sstevel@tonic-gate ** continue or filter-specified value 11467c478bd9Sstevel@tonic-gate */ 11477c478bd9Sstevel@tonic-gate 11487c478bd9Sstevel@tonic-gate static int 11497c478bd9Sstevel@tonic-gate st_eoh(g) 11507c478bd9Sstevel@tonic-gate genarg *g; 11517c478bd9Sstevel@tonic-gate { 11527c478bd9Sstevel@tonic-gate sfsistat (*fi_eoh) __P((SMFICTX *)); 11537c478bd9Sstevel@tonic-gate 11547c478bd9Sstevel@tonic-gate if (g == NULL) 11557c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 11567c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL && 11577c478bd9Sstevel@tonic-gate (fi_eoh = g->a_ctx->ctx_smfi->xxfi_eoh) != NULL) 11587c478bd9Sstevel@tonic-gate return (*fi_eoh)(g->a_ctx); 11597c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 11607c478bd9Sstevel@tonic-gate } 11617c478bd9Sstevel@tonic-gate 11627c478bd9Sstevel@tonic-gate /* 11637c478bd9Sstevel@tonic-gate ** ST_DATA -- DATA command 11647c478bd9Sstevel@tonic-gate ** 11657c478bd9Sstevel@tonic-gate ** Parameters: 11667c478bd9Sstevel@tonic-gate ** g -- generic argument structure 11677c478bd9Sstevel@tonic-gate ** 11687c478bd9Sstevel@tonic-gate ** Returns: 11697c478bd9Sstevel@tonic-gate ** continue or filter-specified value 11707c478bd9Sstevel@tonic-gate */ 11717c478bd9Sstevel@tonic-gate 11727c478bd9Sstevel@tonic-gate static int 11737c478bd9Sstevel@tonic-gate st_data(g) 11747c478bd9Sstevel@tonic-gate genarg *g; 11757c478bd9Sstevel@tonic-gate { 11767c478bd9Sstevel@tonic-gate sfsistat (*fi_data) __P((SMFICTX *)); 11777c478bd9Sstevel@tonic-gate 11787c478bd9Sstevel@tonic-gate if (g == NULL) 11797c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 11807c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL && 11817c478bd9Sstevel@tonic-gate (fi_data = g->a_ctx->ctx_smfi->xxfi_data) != NULL) 11827c478bd9Sstevel@tonic-gate return (*fi_data)(g->a_ctx); 11837c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 11847c478bd9Sstevel@tonic-gate } 11857c478bd9Sstevel@tonic-gate 11867c478bd9Sstevel@tonic-gate /* 11877c478bd9Sstevel@tonic-gate ** ST_HELO -- helo/ehlo command 11887c478bd9Sstevel@tonic-gate ** 11897c478bd9Sstevel@tonic-gate ** Parameters: 11907c478bd9Sstevel@tonic-gate ** g -- generic argument structure 11917c478bd9Sstevel@tonic-gate ** 11927c478bd9Sstevel@tonic-gate ** Returns: 11937c478bd9Sstevel@tonic-gate ** continue or filter-specified value 11947c478bd9Sstevel@tonic-gate */ 11957c478bd9Sstevel@tonic-gate static int 11967c478bd9Sstevel@tonic-gate st_helo(g) 11977c478bd9Sstevel@tonic-gate genarg *g; 11987c478bd9Sstevel@tonic-gate { 11997c478bd9Sstevel@tonic-gate sfsistat (*fi_helo) __P((SMFICTX *, char *)); 12007c478bd9Sstevel@tonic-gate 12017c478bd9Sstevel@tonic-gate if (g == NULL) 12027c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 12037c478bd9Sstevel@tonic-gate mi_clr_macros(g->a_ctx, g->a_idx + 1); 12047c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL && 12057c478bd9Sstevel@tonic-gate (fi_helo = g->a_ctx->ctx_smfi->xxfi_helo) != NULL) 12067c478bd9Sstevel@tonic-gate { 12077c478bd9Sstevel@tonic-gate /* paranoia: check for terminating '\0' */ 12087c478bd9Sstevel@tonic-gate if (g->a_len == 0 || g->a_buf[g->a_len - 1] != '\0') 12097c478bd9Sstevel@tonic-gate return MI_FAILURE; 12107c478bd9Sstevel@tonic-gate return (*fi_helo)(g->a_ctx, g->a_buf); 12117c478bd9Sstevel@tonic-gate } 12127c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 12137c478bd9Sstevel@tonic-gate } 12147c478bd9Sstevel@tonic-gate /* 12157c478bd9Sstevel@tonic-gate ** ST_HEADER -- header line 12167c478bd9Sstevel@tonic-gate ** 12177c478bd9Sstevel@tonic-gate ** Parameters: 12187c478bd9Sstevel@tonic-gate ** g -- generic argument structure 12197c478bd9Sstevel@tonic-gate ** 12207c478bd9Sstevel@tonic-gate ** Returns: 12217c478bd9Sstevel@tonic-gate ** continue or filter-specified value 12227c478bd9Sstevel@tonic-gate */ 12237c478bd9Sstevel@tonic-gate 12247c478bd9Sstevel@tonic-gate static int 12257c478bd9Sstevel@tonic-gate st_header(g) 12267c478bd9Sstevel@tonic-gate genarg *g; 12277c478bd9Sstevel@tonic-gate { 12287c478bd9Sstevel@tonic-gate char *hf, *hv; 12297c478bd9Sstevel@tonic-gate sfsistat (*fi_header) __P((SMFICTX *, char *, char *)); 12307c478bd9Sstevel@tonic-gate 12317c478bd9Sstevel@tonic-gate if (g == NULL) 12327c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 12337c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi == NULL || 12347c478bd9Sstevel@tonic-gate (fi_header = g->a_ctx->ctx_smfi->xxfi_header) == NULL) 12357c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 12367c478bd9Sstevel@tonic-gate if (dec_arg2(g->a_buf, g->a_len, &hf, &hv) == MI_SUCCESS) 12377c478bd9Sstevel@tonic-gate return (*fi_header)(g->a_ctx, hf, hv); 12387c478bd9Sstevel@tonic-gate else 12397c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 12407c478bd9Sstevel@tonic-gate } 12417c478bd9Sstevel@tonic-gate 12427c478bd9Sstevel@tonic-gate #define ARGV_FCT(lf, rf, idx) \ 12437c478bd9Sstevel@tonic-gate char **argv; \ 12447c478bd9Sstevel@tonic-gate sfsistat (*lf) __P((SMFICTX *, char **)); \ 12457c478bd9Sstevel@tonic-gate int r; \ 12467c478bd9Sstevel@tonic-gate \ 12477c478bd9Sstevel@tonic-gate if (g == NULL) \ 12487c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; \ 12497c478bd9Sstevel@tonic-gate mi_clr_macros(g->a_ctx, g->a_idx + 1); \ 12507c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi == NULL || \ 12517c478bd9Sstevel@tonic-gate (lf = g->a_ctx->ctx_smfi->rf) == NULL) \ 12527c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; \ 12537c478bd9Sstevel@tonic-gate if ((argv = dec_argv(g->a_buf, g->a_len)) == NULL) \ 12547c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; \ 12557c478bd9Sstevel@tonic-gate r = (*lf)(g->a_ctx, argv); \ 12567c478bd9Sstevel@tonic-gate free(argv); \ 12577c478bd9Sstevel@tonic-gate return r; 12587c478bd9Sstevel@tonic-gate 12597c478bd9Sstevel@tonic-gate /* 12607c478bd9Sstevel@tonic-gate ** ST_SENDER -- MAIL FROM command 12617c478bd9Sstevel@tonic-gate ** 12627c478bd9Sstevel@tonic-gate ** Parameters: 12637c478bd9Sstevel@tonic-gate ** g -- generic argument structure 12647c478bd9Sstevel@tonic-gate ** 12657c478bd9Sstevel@tonic-gate ** Returns: 12667c478bd9Sstevel@tonic-gate ** continue or filter-specified value 12677c478bd9Sstevel@tonic-gate */ 12687c478bd9Sstevel@tonic-gate 12697c478bd9Sstevel@tonic-gate static int 12707c478bd9Sstevel@tonic-gate st_sender(g) 12717c478bd9Sstevel@tonic-gate genarg *g; 12727c478bd9Sstevel@tonic-gate { 12737c478bd9Sstevel@tonic-gate ARGV_FCT(fi_envfrom, xxfi_envfrom, CI_MAIL) 12747c478bd9Sstevel@tonic-gate } 1275*058561cbSjbeck 12767c478bd9Sstevel@tonic-gate /* 12777c478bd9Sstevel@tonic-gate ** ST_RCPT -- RCPT TO command 12787c478bd9Sstevel@tonic-gate ** 12797c478bd9Sstevel@tonic-gate ** Parameters: 12807c478bd9Sstevel@tonic-gate ** g -- generic argument structure 12817c478bd9Sstevel@tonic-gate ** 12827c478bd9Sstevel@tonic-gate ** Returns: 12837c478bd9Sstevel@tonic-gate ** continue or filter-specified value 12847c478bd9Sstevel@tonic-gate */ 12857c478bd9Sstevel@tonic-gate 12867c478bd9Sstevel@tonic-gate static int 12877c478bd9Sstevel@tonic-gate st_rcpt(g) 12887c478bd9Sstevel@tonic-gate genarg *g; 12897c478bd9Sstevel@tonic-gate { 12907c478bd9Sstevel@tonic-gate ARGV_FCT(fi_envrcpt, xxfi_envrcpt, CI_RCPT) 12917c478bd9Sstevel@tonic-gate } 12927c478bd9Sstevel@tonic-gate 12937c478bd9Sstevel@tonic-gate /* 12947c478bd9Sstevel@tonic-gate ** ST_UNKNOWN -- unrecognized or unimplemented command 12957c478bd9Sstevel@tonic-gate ** 12967c478bd9Sstevel@tonic-gate ** Parameters: 12977c478bd9Sstevel@tonic-gate ** g -- generic argument structure 12987c478bd9Sstevel@tonic-gate ** 12997c478bd9Sstevel@tonic-gate ** Returns: 13007c478bd9Sstevel@tonic-gate ** continue or filter-specified value 13017c478bd9Sstevel@tonic-gate */ 13027c478bd9Sstevel@tonic-gate 13037c478bd9Sstevel@tonic-gate static int 13047c478bd9Sstevel@tonic-gate st_unknown(g) 13057c478bd9Sstevel@tonic-gate genarg *g; 13067c478bd9Sstevel@tonic-gate { 1307*058561cbSjbeck sfsistat (*fi_unknown) __P((SMFICTX *, const char *)); 13087c478bd9Sstevel@tonic-gate 13097c478bd9Sstevel@tonic-gate if (g == NULL) 13107c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 13117c478bd9Sstevel@tonic-gate mi_clr_macros(g->a_ctx, g->a_idx + 1); 13127c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL && 13137c478bd9Sstevel@tonic-gate (fi_unknown = g->a_ctx->ctx_smfi->xxfi_unknown) != NULL) 1314*058561cbSjbeck return (*fi_unknown)(g->a_ctx, (const char *) g->a_buf); 13157c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 13167c478bd9Sstevel@tonic-gate } 13177c478bd9Sstevel@tonic-gate 13187c478bd9Sstevel@tonic-gate /* 13197c478bd9Sstevel@tonic-gate ** ST_MACROS -- deal with macros received from the MTA 13207c478bd9Sstevel@tonic-gate ** 13217c478bd9Sstevel@tonic-gate ** Parameters: 13227c478bd9Sstevel@tonic-gate ** g -- generic argument structure 13237c478bd9Sstevel@tonic-gate ** 13247c478bd9Sstevel@tonic-gate ** Returns: 13257c478bd9Sstevel@tonic-gate ** continue/keep 13267c478bd9Sstevel@tonic-gate ** 13277c478bd9Sstevel@tonic-gate ** Side effects: 13287c478bd9Sstevel@tonic-gate ** set pointer in macro array to current values. 13297c478bd9Sstevel@tonic-gate */ 13307c478bd9Sstevel@tonic-gate 13317c478bd9Sstevel@tonic-gate static int 13327c478bd9Sstevel@tonic-gate st_macros(g) 13337c478bd9Sstevel@tonic-gate genarg *g; 13347c478bd9Sstevel@tonic-gate { 13357c478bd9Sstevel@tonic-gate int i; 13367c478bd9Sstevel@tonic-gate char **argv; 13377c478bd9Sstevel@tonic-gate 13387c478bd9Sstevel@tonic-gate if (g == NULL || g->a_len < 1) 13397c478bd9Sstevel@tonic-gate return _SMFIS_FAIL; 13407c478bd9Sstevel@tonic-gate if ((argv = dec_argv(g->a_buf + 1, g->a_len - 1)) == NULL) 13417c478bd9Sstevel@tonic-gate return _SMFIS_FAIL; 13427c478bd9Sstevel@tonic-gate switch (g->a_buf[0]) 13437c478bd9Sstevel@tonic-gate { 13447c478bd9Sstevel@tonic-gate case SMFIC_CONNECT: 13457c478bd9Sstevel@tonic-gate i = CI_CONN; 13467c478bd9Sstevel@tonic-gate break; 13477c478bd9Sstevel@tonic-gate case SMFIC_HELO: 13487c478bd9Sstevel@tonic-gate i = CI_HELO; 13497c478bd9Sstevel@tonic-gate break; 13507c478bd9Sstevel@tonic-gate case SMFIC_MAIL: 13517c478bd9Sstevel@tonic-gate i = CI_MAIL; 13527c478bd9Sstevel@tonic-gate break; 13537c478bd9Sstevel@tonic-gate case SMFIC_RCPT: 13547c478bd9Sstevel@tonic-gate i = CI_RCPT; 13557c478bd9Sstevel@tonic-gate break; 1356*058561cbSjbeck case SMFIC_DATA: 1357*058561cbSjbeck i = CI_DATA; 1358*058561cbSjbeck break; 13597c478bd9Sstevel@tonic-gate case SMFIC_BODYEOB: 13607c478bd9Sstevel@tonic-gate i = CI_EOM; 13617c478bd9Sstevel@tonic-gate break; 1362*058561cbSjbeck case SMFIC_EOH: 1363*058561cbSjbeck i = CI_EOH; 1364*058561cbSjbeck break; 13657c478bd9Sstevel@tonic-gate default: 13667c478bd9Sstevel@tonic-gate free(argv); 13677c478bd9Sstevel@tonic-gate return _SMFIS_FAIL; 13687c478bd9Sstevel@tonic-gate } 13697c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_mac_ptr[i] != NULL) 13707c478bd9Sstevel@tonic-gate free(g->a_ctx->ctx_mac_ptr[i]); 13717c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_mac_buf[i] != NULL) 13727c478bd9Sstevel@tonic-gate free(g->a_ctx->ctx_mac_buf[i]); 13737c478bd9Sstevel@tonic-gate g->a_ctx->ctx_mac_ptr[i] = argv; 13747c478bd9Sstevel@tonic-gate g->a_ctx->ctx_mac_buf[i] = g->a_buf; 13757c478bd9Sstevel@tonic-gate return _SMFIS_KEEP; 13767c478bd9Sstevel@tonic-gate } 13777c478bd9Sstevel@tonic-gate /* 13787c478bd9Sstevel@tonic-gate ** ST_QUIT -- quit command 13797c478bd9Sstevel@tonic-gate ** 13807c478bd9Sstevel@tonic-gate ** Parameters: 13817c478bd9Sstevel@tonic-gate ** g -- generic argument structure 13827c478bd9Sstevel@tonic-gate ** 13837c478bd9Sstevel@tonic-gate ** Returns: 13847c478bd9Sstevel@tonic-gate ** noreply 13857c478bd9Sstevel@tonic-gate */ 13867c478bd9Sstevel@tonic-gate 13877c478bd9Sstevel@tonic-gate /* ARGSUSED */ 13887c478bd9Sstevel@tonic-gate static int 13897c478bd9Sstevel@tonic-gate st_quit(g) 13907c478bd9Sstevel@tonic-gate genarg *g; 13917c478bd9Sstevel@tonic-gate { 1392*058561cbSjbeck sfsistat (*fi_close) __P((SMFICTX *)); 1393*058561cbSjbeck 1394*058561cbSjbeck if (g == NULL) 1395*058561cbSjbeck return _SMFIS_ABORT; 1396*058561cbSjbeck if (g->a_ctx->ctx_smfi != NULL && 1397*058561cbSjbeck (fi_close = g->a_ctx->ctx_smfi->xxfi_close) != NULL) 1398*058561cbSjbeck (void) (*fi_close)(g->a_ctx); 1399*058561cbSjbeck mi_clr_macros(g->a_ctx, 0); 14007c478bd9Sstevel@tonic-gate return _SMFIS_NOREPLY; 14017c478bd9Sstevel@tonic-gate } 14027c478bd9Sstevel@tonic-gate /* 14037c478bd9Sstevel@tonic-gate ** ST_BODYCHUNK -- deal with a piece of the mail body 14047c478bd9Sstevel@tonic-gate ** 14057c478bd9Sstevel@tonic-gate ** Parameters: 14067c478bd9Sstevel@tonic-gate ** g -- generic argument structure 14077c478bd9Sstevel@tonic-gate ** 14087c478bd9Sstevel@tonic-gate ** Returns: 14097c478bd9Sstevel@tonic-gate ** continue or filter-specified value 14107c478bd9Sstevel@tonic-gate */ 14117c478bd9Sstevel@tonic-gate 14127c478bd9Sstevel@tonic-gate static int 14137c478bd9Sstevel@tonic-gate st_bodychunk(g) 14147c478bd9Sstevel@tonic-gate genarg *g; 14157c478bd9Sstevel@tonic-gate { 14167c478bd9Sstevel@tonic-gate sfsistat (*fi_body) __P((SMFICTX *, unsigned char *, size_t)); 14177c478bd9Sstevel@tonic-gate 14187c478bd9Sstevel@tonic-gate if (g == NULL) 14197c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 14207c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL && 14217c478bd9Sstevel@tonic-gate (fi_body = g->a_ctx->ctx_smfi->xxfi_body) != NULL) 14227c478bd9Sstevel@tonic-gate return (*fi_body)(g->a_ctx, (unsigned char *)g->a_buf, 14237c478bd9Sstevel@tonic-gate g->a_len); 14247c478bd9Sstevel@tonic-gate return SMFIS_CONTINUE; 14257c478bd9Sstevel@tonic-gate } 14267c478bd9Sstevel@tonic-gate /* 14277c478bd9Sstevel@tonic-gate ** ST_BODYEND -- deal with the last piece of the mail body 14287c478bd9Sstevel@tonic-gate ** 14297c478bd9Sstevel@tonic-gate ** Parameters: 14307c478bd9Sstevel@tonic-gate ** g -- generic argument structure 14317c478bd9Sstevel@tonic-gate ** 14327c478bd9Sstevel@tonic-gate ** Returns: 14337c478bd9Sstevel@tonic-gate ** continue or filter-specified value 14347c478bd9Sstevel@tonic-gate ** 14357c478bd9Sstevel@tonic-gate ** Side effects: 14367c478bd9Sstevel@tonic-gate ** sends a reply for the body part (if non-empty). 14377c478bd9Sstevel@tonic-gate */ 14387c478bd9Sstevel@tonic-gate 14397c478bd9Sstevel@tonic-gate static int 14407c478bd9Sstevel@tonic-gate st_bodyend(g) 14417c478bd9Sstevel@tonic-gate genarg *g; 14427c478bd9Sstevel@tonic-gate { 14437c478bd9Sstevel@tonic-gate sfsistat r; 14447c478bd9Sstevel@tonic-gate sfsistat (*fi_body) __P((SMFICTX *, unsigned char *, size_t)); 14457c478bd9Sstevel@tonic-gate sfsistat (*fi_eom) __P((SMFICTX *)); 14467c478bd9Sstevel@tonic-gate 14477c478bd9Sstevel@tonic-gate if (g == NULL) 14487c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 14497c478bd9Sstevel@tonic-gate r = SMFIS_CONTINUE; 14507c478bd9Sstevel@tonic-gate if (g->a_ctx->ctx_smfi != NULL) 14517c478bd9Sstevel@tonic-gate { 14527c478bd9Sstevel@tonic-gate if ((fi_body = g->a_ctx->ctx_smfi->xxfi_body) != NULL && 14537c478bd9Sstevel@tonic-gate g->a_len > 0) 14547c478bd9Sstevel@tonic-gate { 14557c478bd9Sstevel@tonic-gate socket_t sd; 14567c478bd9Sstevel@tonic-gate struct timeval timeout; 14577c478bd9Sstevel@tonic-gate 14587c478bd9Sstevel@tonic-gate timeout.tv_sec = g->a_ctx->ctx_timeout; 14597c478bd9Sstevel@tonic-gate timeout.tv_usec = 0; 14607c478bd9Sstevel@tonic-gate sd = g->a_ctx->ctx_sd; 14617c478bd9Sstevel@tonic-gate r = (*fi_body)(g->a_ctx, (unsigned char *)g->a_buf, 14627c478bd9Sstevel@tonic-gate g->a_len); 14637c478bd9Sstevel@tonic-gate if (r != SMFIS_CONTINUE && 14647c478bd9Sstevel@tonic-gate sendreply(r, sd, &timeout, g->a_ctx) != MI_SUCCESS) 14657c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 14667c478bd9Sstevel@tonic-gate } 14677c478bd9Sstevel@tonic-gate } 14687c478bd9Sstevel@tonic-gate if (r == SMFIS_CONTINUE && 14697c478bd9Sstevel@tonic-gate (fi_eom = g->a_ctx->ctx_smfi->xxfi_eom) != NULL) 14707c478bd9Sstevel@tonic-gate return (*fi_eom)(g->a_ctx); 14717c478bd9Sstevel@tonic-gate return r; 14727c478bd9Sstevel@tonic-gate } 14737c478bd9Sstevel@tonic-gate /* 14747c478bd9Sstevel@tonic-gate ** ST_ABORTFCT -- deal with aborts 14757c478bd9Sstevel@tonic-gate ** 14767c478bd9Sstevel@tonic-gate ** Parameters: 14777c478bd9Sstevel@tonic-gate ** g -- generic argument structure 14787c478bd9Sstevel@tonic-gate ** 14797c478bd9Sstevel@tonic-gate ** Returns: 14807c478bd9Sstevel@tonic-gate ** abort or filter-specified value 14817c478bd9Sstevel@tonic-gate */ 14827c478bd9Sstevel@tonic-gate 14837c478bd9Sstevel@tonic-gate static int 14847c478bd9Sstevel@tonic-gate st_abortfct(g) 14857c478bd9Sstevel@tonic-gate genarg *g; 14867c478bd9Sstevel@tonic-gate { 14877c478bd9Sstevel@tonic-gate sfsistat (*fi_abort) __P((SMFICTX *)); 14887c478bd9Sstevel@tonic-gate 14897c478bd9Sstevel@tonic-gate if (g == NULL) 14907c478bd9Sstevel@tonic-gate return _SMFIS_ABORT; 14917c478bd9Sstevel@tonic-gate if (g != NULL && g->a_ctx->ctx_smfi != NULL && 14927c478bd9Sstevel@tonic-gate (fi_abort = g->a_ctx->ctx_smfi->xxfi_abort) != NULL) 14937c478bd9Sstevel@tonic-gate (void) (*fi_abort)(g->a_ctx); 14947c478bd9Sstevel@tonic-gate return _SMFIS_NOREPLY; 14957c478bd9Sstevel@tonic-gate } 14967c478bd9Sstevel@tonic-gate /* 14977c478bd9Sstevel@tonic-gate ** TRANS_OK -- is the state transition ok? 14987c478bd9Sstevel@tonic-gate ** 14997c478bd9Sstevel@tonic-gate ** Parameters: 15007c478bd9Sstevel@tonic-gate ** old -- old state 15017c478bd9Sstevel@tonic-gate ** new -- new state 15027c478bd9Sstevel@tonic-gate ** 15037c478bd9Sstevel@tonic-gate ** Returns: 15047c478bd9Sstevel@tonic-gate ** state transition ok 15057c478bd9Sstevel@tonic-gate */ 15067c478bd9Sstevel@tonic-gate 15077c478bd9Sstevel@tonic-gate static bool 15087c478bd9Sstevel@tonic-gate trans_ok(old, new) 15097c478bd9Sstevel@tonic-gate int old, new; 15107c478bd9Sstevel@tonic-gate { 15117c478bd9Sstevel@tonic-gate int s, n; 15127c478bd9Sstevel@tonic-gate 15137c478bd9Sstevel@tonic-gate s = old; 15143ee0e492Sjbeck if (s >= SIZE_NEXT_STATES) 15153ee0e492Sjbeck return false; 15167c478bd9Sstevel@tonic-gate do 15177c478bd9Sstevel@tonic-gate { 15187c478bd9Sstevel@tonic-gate /* is this state transition allowed? */ 15197c478bd9Sstevel@tonic-gate if ((MI_MASK(new) & next_states[s]) != 0) 15207c478bd9Sstevel@tonic-gate return true; 15217c478bd9Sstevel@tonic-gate 15227c478bd9Sstevel@tonic-gate /* 15237c478bd9Sstevel@tonic-gate ** no: try next state; 15247c478bd9Sstevel@tonic-gate ** this works since the relevant states are ordered 15257c478bd9Sstevel@tonic-gate ** strict sequentially 15267c478bd9Sstevel@tonic-gate */ 15277c478bd9Sstevel@tonic-gate 15287c478bd9Sstevel@tonic-gate n = s + 1; 15293ee0e492Sjbeck if (n >= SIZE_NEXT_STATES) 15303ee0e492Sjbeck return false; 15317c478bd9Sstevel@tonic-gate 15327c478bd9Sstevel@tonic-gate /* 15337c478bd9Sstevel@tonic-gate ** can we actually "skip" this state? 15347c478bd9Sstevel@tonic-gate ** see fix_stm() which sets this bit for those 15357c478bd9Sstevel@tonic-gate ** states which the filter program is not interested in 15367c478bd9Sstevel@tonic-gate */ 15377c478bd9Sstevel@tonic-gate 15387c478bd9Sstevel@tonic-gate if (bitset(NX_SKIP, next_states[n])) 15397c478bd9Sstevel@tonic-gate s = n; 15407c478bd9Sstevel@tonic-gate else 15417c478bd9Sstevel@tonic-gate return false; 15423ee0e492Sjbeck } while (s < SIZE_NEXT_STATES); 15437c478bd9Sstevel@tonic-gate return false; 15447c478bd9Sstevel@tonic-gate } 15457c478bd9Sstevel@tonic-gate /* 15467c478bd9Sstevel@tonic-gate ** FIX_STM -- add "skip" bits to the state transition table 15477c478bd9Sstevel@tonic-gate ** 15487c478bd9Sstevel@tonic-gate ** Parameters: 15497c478bd9Sstevel@tonic-gate ** ctx -- context structure 15507c478bd9Sstevel@tonic-gate ** 15517c478bd9Sstevel@tonic-gate ** Returns: 15527c478bd9Sstevel@tonic-gate ** None. 15537c478bd9Sstevel@tonic-gate ** 15547c478bd9Sstevel@tonic-gate ** Side effects: 15557c478bd9Sstevel@tonic-gate ** may change state transition table. 15567c478bd9Sstevel@tonic-gate */ 15577c478bd9Sstevel@tonic-gate 15587c478bd9Sstevel@tonic-gate static void 15597c478bd9Sstevel@tonic-gate fix_stm(ctx) 15607c478bd9Sstevel@tonic-gate SMFICTX_PTR ctx; 15617c478bd9Sstevel@tonic-gate { 15627c478bd9Sstevel@tonic-gate unsigned long fl; 15637c478bd9Sstevel@tonic-gate 15647c478bd9Sstevel@tonic-gate if (ctx == NULL || ctx->ctx_smfi == NULL) 15657c478bd9Sstevel@tonic-gate return; 15667c478bd9Sstevel@tonic-gate fl = ctx->ctx_pflags; 15677c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOCONNECT, fl)) 15687c478bd9Sstevel@tonic-gate next_states[ST_CONN] |= NX_SKIP; 15697c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOHELO, fl)) 15707c478bd9Sstevel@tonic-gate next_states[ST_HELO] |= NX_SKIP; 15717c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOMAIL, fl)) 15727c478bd9Sstevel@tonic-gate next_states[ST_MAIL] |= NX_SKIP; 15737c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NORCPT, fl)) 15747c478bd9Sstevel@tonic-gate next_states[ST_RCPT] |= NX_SKIP; 15757c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOHDRS, fl)) 15767c478bd9Sstevel@tonic-gate next_states[ST_HDRS] |= NX_SKIP; 15777c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOEOH, fl)) 15787c478bd9Sstevel@tonic-gate next_states[ST_EOHS] |= NX_SKIP; 15797c478bd9Sstevel@tonic-gate if (bitset(SMFIP_NOBODY, fl)) 15807c478bd9Sstevel@tonic-gate next_states[ST_BODY] |= NX_SKIP; 1581*058561cbSjbeck if (bitset(SMFIP_NODATA, fl)) 1582*058561cbSjbeck next_states[ST_DATA] |= NX_SKIP; 1583*058561cbSjbeck if (bitset(SMFIP_NOUNKNOWN, fl)) 1584*058561cbSjbeck next_states[ST_UNKN] |= NX_SKIP; 15857c478bd9Sstevel@tonic-gate } 1586*058561cbSjbeck 15877c478bd9Sstevel@tonic-gate /* 15887c478bd9Sstevel@tonic-gate ** DEC_ARGV -- split a buffer into a list of strings, NULL terminated 15897c478bd9Sstevel@tonic-gate ** 15907c478bd9Sstevel@tonic-gate ** Parameters: 15917c478bd9Sstevel@tonic-gate ** buf -- buffer with several strings 15927c478bd9Sstevel@tonic-gate ** len -- length of buffer 15937c478bd9Sstevel@tonic-gate ** 15947c478bd9Sstevel@tonic-gate ** Returns: 15957c478bd9Sstevel@tonic-gate ** array of pointers to the individual strings 15967c478bd9Sstevel@tonic-gate */ 15977c478bd9Sstevel@tonic-gate 15987c478bd9Sstevel@tonic-gate static char ** 15997c478bd9Sstevel@tonic-gate dec_argv(buf, len) 16007c478bd9Sstevel@tonic-gate char *buf; 16017c478bd9Sstevel@tonic-gate size_t len; 16027c478bd9Sstevel@tonic-gate { 16037c478bd9Sstevel@tonic-gate char **s; 16047c478bd9Sstevel@tonic-gate size_t i; 16057c478bd9Sstevel@tonic-gate int elem, nelem; 16067c478bd9Sstevel@tonic-gate 16077c478bd9Sstevel@tonic-gate nelem = 0; 16087c478bd9Sstevel@tonic-gate for (i = 0; i < len; i++) 16097c478bd9Sstevel@tonic-gate { 16107c478bd9Sstevel@tonic-gate if (buf[i] == '\0') 16117c478bd9Sstevel@tonic-gate ++nelem; 16127c478bd9Sstevel@tonic-gate } 16137c478bd9Sstevel@tonic-gate if (nelem == 0) 16147c478bd9Sstevel@tonic-gate return NULL; 16157c478bd9Sstevel@tonic-gate 16167c478bd9Sstevel@tonic-gate /* last entry is only for the name */ 16177c478bd9Sstevel@tonic-gate s = (char **)malloc((nelem + 1) * (sizeof *s)); 16187c478bd9Sstevel@tonic-gate if (s == NULL) 16197c478bd9Sstevel@tonic-gate return NULL; 16207c478bd9Sstevel@tonic-gate s[0] = buf; 16217c478bd9Sstevel@tonic-gate for (i = 0, elem = 0; i < len && elem < nelem; i++) 16227c478bd9Sstevel@tonic-gate { 16237c478bd9Sstevel@tonic-gate if (buf[i] == '\0') 16247c478bd9Sstevel@tonic-gate { 16257c478bd9Sstevel@tonic-gate ++elem; 16267c478bd9Sstevel@tonic-gate if (i + 1 >= len) 16277c478bd9Sstevel@tonic-gate s[elem] = NULL; 16287c478bd9Sstevel@tonic-gate else 16297c478bd9Sstevel@tonic-gate s[elem] = &(buf[i + 1]); 16307c478bd9Sstevel@tonic-gate } 16317c478bd9Sstevel@tonic-gate } 16327c478bd9Sstevel@tonic-gate 16337c478bd9Sstevel@tonic-gate /* overwrite last entry (already done above, just paranoia) */ 16347c478bd9Sstevel@tonic-gate s[elem] = NULL; 16357c478bd9Sstevel@tonic-gate return s; 16367c478bd9Sstevel@tonic-gate } 16377c478bd9Sstevel@tonic-gate /* 16387c478bd9Sstevel@tonic-gate ** DEC_ARG2 -- split a buffer into two strings 16397c478bd9Sstevel@tonic-gate ** 16407c478bd9Sstevel@tonic-gate ** Parameters: 16417c478bd9Sstevel@tonic-gate ** buf -- buffer with two strings 16427c478bd9Sstevel@tonic-gate ** len -- length of buffer 16437c478bd9Sstevel@tonic-gate ** s1,s2 -- pointer to result strings 16447c478bd9Sstevel@tonic-gate ** 16457c478bd9Sstevel@tonic-gate ** Returns: 16467c478bd9Sstevel@tonic-gate ** MI_FAILURE/MI_SUCCESS 16477c478bd9Sstevel@tonic-gate */ 16487c478bd9Sstevel@tonic-gate 16497c478bd9Sstevel@tonic-gate static int 16507c478bd9Sstevel@tonic-gate dec_arg2(buf, len, s1, s2) 16517c478bd9Sstevel@tonic-gate char *buf; 16527c478bd9Sstevel@tonic-gate size_t len; 16537c478bd9Sstevel@tonic-gate char **s1; 16547c478bd9Sstevel@tonic-gate char **s2; 16557c478bd9Sstevel@tonic-gate { 16567c478bd9Sstevel@tonic-gate size_t i; 16577c478bd9Sstevel@tonic-gate 16587c478bd9Sstevel@tonic-gate /* paranoia: check for terminating '\0' */ 16597c478bd9Sstevel@tonic-gate if (len == 0 || buf[len - 1] != '\0') 16607c478bd9Sstevel@tonic-gate return MI_FAILURE; 16617c478bd9Sstevel@tonic-gate *s1 = buf; 16627c478bd9Sstevel@tonic-gate for (i = 1; i < len && buf[i] != '\0'; i++) 16637c478bd9Sstevel@tonic-gate continue; 16647c478bd9Sstevel@tonic-gate if (i >= len - 1) 16657c478bd9Sstevel@tonic-gate return MI_FAILURE; 16667c478bd9Sstevel@tonic-gate *s2 = buf + i + 1; 16677c478bd9Sstevel@tonic-gate return MI_SUCCESS; 16687c478bd9Sstevel@tonic-gate } 16697c478bd9Sstevel@tonic-gate /* 16707c478bd9Sstevel@tonic-gate ** SENDOK -- is it ok for the filter to send stuff to the MTA? 16717c478bd9Sstevel@tonic-gate ** 16727c478bd9Sstevel@tonic-gate ** Parameters: 16737c478bd9Sstevel@tonic-gate ** ctx -- context structure 16747c478bd9Sstevel@tonic-gate ** flag -- flag to check 16757c478bd9Sstevel@tonic-gate ** 16767c478bd9Sstevel@tonic-gate ** Returns: 16777c478bd9Sstevel@tonic-gate ** sending allowed (in current state) 16787c478bd9Sstevel@tonic-gate */ 16797c478bd9Sstevel@tonic-gate 16807c478bd9Sstevel@tonic-gate bool 16817c478bd9Sstevel@tonic-gate mi_sendok(ctx, flag) 16827c478bd9Sstevel@tonic-gate SMFICTX_PTR ctx; 16837c478bd9Sstevel@tonic-gate int flag; 16847c478bd9Sstevel@tonic-gate { 16857c478bd9Sstevel@tonic-gate if (ctx == NULL || ctx->ctx_smfi == NULL) 16867c478bd9Sstevel@tonic-gate return false; 16877c478bd9Sstevel@tonic-gate 16887c478bd9Sstevel@tonic-gate /* did the milter request this operation? */ 1689*058561cbSjbeck if (flag != 0 && !bitset(flag, ctx->ctx_aflags)) 16907c478bd9Sstevel@tonic-gate return false; 16917c478bd9Sstevel@tonic-gate 16927c478bd9Sstevel@tonic-gate /* are we in the correct state? It must be "End of Message". */ 16937c478bd9Sstevel@tonic-gate return ctx->ctx_state == ST_ENDM; 16947c478bd9Sstevel@tonic-gate } 1695*058561cbSjbeck 1696*058561cbSjbeck #if _FFR_WORKERS_POOL 1697*058561cbSjbeck /* 1698*058561cbSjbeck ** MI_RD_SOCKET_READY - checks if the socket is ready for read(2) 1699*058561cbSjbeck ** 1700*058561cbSjbeck ** Parameters: 1701*058561cbSjbeck ** sd -- socket_t 1702*058561cbSjbeck ** 1703*058561cbSjbeck ** Returns: 1704*058561cbSjbeck ** true iff socket is ready for read(2) 1705*058561cbSjbeck */ 1706*058561cbSjbeck 1707*058561cbSjbeck #define MI_RD_CMD_TO 1 1708*058561cbSjbeck #define MI_RD_MAX_ERR 16 1709*058561cbSjbeck 1710*058561cbSjbeck static bool 1711*058561cbSjbeck mi_rd_socket_ready (sd) 1712*058561cbSjbeck socket_t sd; 1713*058561cbSjbeck { 1714*058561cbSjbeck int n; 1715*058561cbSjbeck int nerr = 0; 1716*058561cbSjbeck #if SM_CONF_POLL 1717*058561cbSjbeck struct pollfd pfd; 1718*058561cbSjbeck #else /* SM_CONF_POLL */ 1719*058561cbSjbeck fd_set rd_set, exc_set; 1720*058561cbSjbeck #endif /* SM_CONF_POLL */ 1721*058561cbSjbeck 1722*058561cbSjbeck do 1723*058561cbSjbeck { 1724*058561cbSjbeck #if SM_CONF_POLL 1725*058561cbSjbeck pfd.fd = sd; 1726*058561cbSjbeck pfd.events = POLLIN; 1727*058561cbSjbeck pfd.revents = 0; 1728*058561cbSjbeck 1729*058561cbSjbeck n = poll(&pfd, 1, MI_RD_CMD_TO); 1730*058561cbSjbeck #else /* SM_CONF_POLL */ 1731*058561cbSjbeck struct timeval timeout; 1732*058561cbSjbeck 1733*058561cbSjbeck FD_ZERO(&rd_set); 1734*058561cbSjbeck FD_ZERO(&exc_set); 1735*058561cbSjbeck FD_SET(sd, &rd_set); 1736*058561cbSjbeck FD_SET(sd, &exc_set); 1737*058561cbSjbeck 1738*058561cbSjbeck timeout.tv_sec = MI_RD_CMD_TO / 1000; 1739*058561cbSjbeck timeout.tv_usec = 0; 1740*058561cbSjbeck n = select(sd + 1, &rd_set, NULL, &exc_set, &timeout); 1741*058561cbSjbeck #endif /* SM_CONF_POLL */ 1742*058561cbSjbeck 1743*058561cbSjbeck if (n < 0) 1744*058561cbSjbeck { 1745*058561cbSjbeck if (errno == EINTR) 1746*058561cbSjbeck { 1747*058561cbSjbeck nerr++; 1748*058561cbSjbeck continue; 1749*058561cbSjbeck } 1750*058561cbSjbeck return true; 1751*058561cbSjbeck } 1752*058561cbSjbeck 1753*058561cbSjbeck if (n == 0) 1754*058561cbSjbeck return false; 1755*058561cbSjbeck break; 1756*058561cbSjbeck } while (nerr < MI_RD_MAX_ERR); 1757*058561cbSjbeck if (nerr >= MI_RD_MAX_ERR) 1758*058561cbSjbeck return false; 1759*058561cbSjbeck 1760*058561cbSjbeck #if SM_CONF_POLL 1761*058561cbSjbeck return (pfd.revents != 0); 1762*058561cbSjbeck #else /* SM_CONF_POLL */ 1763*058561cbSjbeck return FD_ISSET(sd, &rd_set) || FD_ISSET(sd, &exc_set); 1764*058561cbSjbeck #endif /* SM_CONF_POLL */ 1765*058561cbSjbeck } 1766*058561cbSjbeck #endif /* _FFR_WORKERS_POOL */ 1767