ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/branches/8.2.x/src/server.c
Revision: 3140
Committed: Wed Mar 12 19:23:20 2014 UTC (12 years, 4 months ago) by michael
Content type: text/x-csrc
Original Path: ircd-hybrid/trunk/src/s_serv.c
File size: 42736 byte(s)
Log Message:
- Get rid of halfop -> op rewriting for servers that don't support halfops

File Contents

# User Rev Content
1 adx 30 /*
2 michael 2916 * ircd-hybrid: an advanced, lightweight Internet Relay Chat Daemon (ircd)
3 adx 30 *
4 michael 2916 * Copyright (c) 1997-2014 ircd-hybrid development team
5 adx 30 *
6     * This program is free software; you can redistribute it and/or modify
7     * it under the terms of the GNU General Public License as published by
8     * the Free Software Foundation; either version 2 of the License, or
9     * (at your option) any later version.
10     *
11     * This program is distributed in the hope that it will be useful,
12     * but WITHOUT ANY WARRANTY; without even the implied warranty of
13     * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14     * GNU General Public License for more details.
15     *
16     * You should have received a copy of the GNU General Public License
17     * along with this program; if not, write to the Free Software
18     * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
19     * USA
20     */
21    
22 michael 2916 /*! \file s_serv.c
23     * \brief Server related functions.
24     * \version $Id$
25     */
26    
27 adx 30 #include "stdinc.h"
28     #ifdef HAVE_LIBCRYPTO
29     #include <openssl/rsa.h>
30     #include "rsa.h"
31     #endif
32 michael 1011 #include "list.h"
33 adx 30 #include "channel.h"
34     #include "channel_mode.h"
35     #include "client.h"
36     #include "event.h"
37     #include "fdlist.h"
38     #include "hash.h"
39     #include "irc_string.h"
40     #include "ircd.h"
41     #include "ircd_defs.h"
42     #include "s_bsd.h"
43     #include "numeric.h"
44     #include "packet.h"
45     #include "irc_res.h"
46 michael 1309 #include "conf.h"
47 adx 30 #include "s_serv.h"
48 michael 1309 #include "log.h"
49 michael 1303 #include "s_misc.h"
50 adx 30 #include "s_user.h"
51     #include "send.h"
52     #include "memory.h"
53 michael 2916 #include "channel.h"
54 michael 1243 #include "parse.h"
55 adx 30
56     #define MIN_CONN_FREQ 300
57    
58 michael 2156 dlink_list flatten_links;
59 adx 30 static dlink_list cap_list = { NULL, NULL, 0 };
60     static void server_burst(struct Client *);
61     static void burst_all(struct Client *);
62     static void send_tb(struct Client *client_p, struct Channel *chptr);
63    
64     static CNCB serv_connect_callback;
65    
66     static void burst_members(struct Client *, struct Channel *);
67    
68     /*
69     * write_links_file
70     *
71     * inputs - void pointer which is not used
72     * output - NONE
73     * side effects - called from an event, write out list of linked servers
74     * but in no particular order.
75     */
76     void
77 michael 2156 write_links_file(void *notused)
78 adx 30 {
79 michael 2156 FILE *file = NULL;
80 michael 2216 dlink_node *ptr = NULL, *ptr_next = NULL;
81 michael 2156 char buff[IRCD_BUFSIZE] = { '\0' };
82 adx 30
83 michael 2156 if ((file = fopen(LIPATH, "w")) == NULL)
84 adx 30 return;
85    
86 michael 2156 DLINK_FOREACH_SAFE(ptr, ptr_next, flatten_links.head)
87 adx 30 {
88 michael 2156 dlinkDelete(ptr, &flatten_links);
89     MyFree(ptr->data);
90     free_dlink_node(ptr);
91 adx 30 }
92    
93     DLINK_FOREACH(ptr, global_serv_list.head)
94     {
95 michael 1325 const struct Client *target_p = ptr->data;
96 adx 30
97 michael 2156 /*
98     * Skip hidden servers, aswell as ourselves, since we already send
99     * ourselves in /links
100     */
101     if (IsHidden(target_p) || IsMe(target_p))
102 adx 30 continue;
103    
104 michael 1851 if (HasFlag(target_p, FLAGS_SERVICE) && ConfigServerHide.hide_services)
105     continue;
106    
107 michael 1545 /*
108     * Attempt to format the file in such a way it follows the usual links output
109 adx 30 * ie "servername uplink :hops info"
110     * Mostly for aesthetic reasons - makes it look pretty in mIRC ;)
111     * - madmax
112     */
113 michael 2156 snprintf(buff, sizeof(buff), "%s %s :1 %s", target_p->name,
114     me.name, target_p->info);
115 michael 2212 dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
116 michael 2156 snprintf(buff, sizeof(buff), "%s %s :1 %s\n", target_p->name,
117     me.name, target_p->info);
118 adx 30
119 michael 1325 fputs(buff, file);
120 adx 30 }
121    
122 michael 1325 fclose(file);
123 adx 30 }
124    
125 michael 2216 void
126     read_links_file(void)
127     {
128     FILE *file = NULL;
129     char *p = NULL;
130     char buff[IRCD_BUFSIZE] = { '\0' };
131    
132     if ((file = fopen(LIPATH, "r")) == NULL)
133     return;
134    
135     while (fgets(buff, sizeof(buff), file))
136     {
137     if ((p = strchr(buff, '\n')) != NULL)
138     *p = '\0';
139    
140     dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
141     }
142    
143     fclose(file);
144     }
145    
146 adx 30 /* hunt_server()
147     * Do the basic thing in delivering the message (command)
148     * across the relays to the specific server (server) for
149     * actions.
150     *
151     * Note: The command is a format string and *MUST* be
152     * of prefixed style (e.g. ":%s COMMAND %s ...").
153     * Command can have only max 8 parameters.
154     *
155     * server parv[server] is the parameter identifying the
156     * target server.
157     *
158     * *WARNING*
159     * parv[server] is replaced with the pointer to the
160     * real servername from the matched client (I'm lazy
161     * now --msa).
162     *
163     * returns: (see #defines)
164     */
165     int
166     hunt_server(struct Client *client_p, struct Client *source_p, const char *command,
167 michael 1857 const int server, const int parc, char *parv[])
168 adx 30 {
169     struct Client *target_p = NULL;
170     struct Client *target_tmp = NULL;
171     dlink_node *ptr;
172     int wilds;
173    
174 michael 1344 /* Assume it's me, if no server */
175     if (parc <= server || EmptyString(parv[server]))
176     return HUNTED_ISME;
177 adx 30
178 michael 1652 if (!strcmp(parv[server], me.id) || !match(parv[server], me.name))
179 michael 1344 return HUNTED_ISME;
180    
181 adx 30 /* These are to pickup matches that would cause the following
182     * message to go in the wrong direction while doing quick fast
183     * non-matching lookups.
184     */
185     if (MyClient(source_p))
186 michael 1169 target_p = hash_find_client(parv[server]);
187 adx 30 else
188     target_p = find_person(client_p, parv[server]);
189    
190     if (target_p)
191     if (target_p->from == source_p->from && !MyConnect(target_p))
192     target_p = NULL;
193    
194 michael 1169 if (target_p == NULL && (target_p = hash_find_server(parv[server])))
195 adx 30 if (target_p->from == source_p->from && !MyConnect(target_p))
196     target_p = NULL;
197    
198 michael 1400 wilds = has_wildcards(parv[server]);
199 adx 30
200     /* Again, if there are no wild cards involved in the server
201     * name, use the hash lookup
202     */
203     if (target_p == NULL)
204     {
205     if (!wilds)
206     {
207 michael 1169 if (!(target_p = hash_find_server(parv[server])))
208 adx 30 {
209 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
210 michael 2182 return HUNTED_NOSUCH;
211 adx 30 }
212     }
213     else
214     {
215     DLINK_FOREACH(ptr, global_client_list.head)
216     {
217     target_tmp = ptr->data;
218    
219 michael 1652 if (!match(parv[server], target_tmp->name))
220 adx 30 {
221     if (target_tmp->from == source_p->from && !MyConnect(target_tmp))
222     continue;
223     target_p = ptr->data;
224    
225     if (IsRegistered(target_p) && (target_p != client_p))
226     break;
227     }
228     }
229     }
230     }
231    
232     if (target_p != NULL)
233     {
234     if(!IsRegistered(target_p))
235     {
236 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
237 adx 30 return HUNTED_NOSUCH;
238     }
239    
240     if (IsMe(target_p) || MyClient(target_p))
241     return HUNTED_ISME;
242    
243 michael 1652 if (match(target_p->name, parv[server]))
244 adx 30 parv[server] = target_p->name;
245    
246 michael 3136 /* This is a little kludgy but should work... */
247 michael 3096 sendto_one(target_p, command, ID_or_name(source_p, target_p),
248 adx 30 parv[1], parv[2], parv[3], parv[4],
249     parv[5], parv[6], parv[7], parv[8]);
250 michael 2134 return HUNTED_PASS;
251 michael 2345 }
252 adx 30
253 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
254 michael 2134 return HUNTED_NOSUCH;
255 adx 30 }
256    
257     /* try_connections()
258     *
259     * inputs - void pointer which is not used
260     * output - NONE
261     * side effects -
262     * scan through configuration and try new connections.
263     * Returns the calendar time when the next call to this
264     * function should be made latest. (No harm done if this
265     * is called earlier or later...)
266     */
267     void
268     try_connections(void *unused)
269     {
270 michael 1632 dlink_node *ptr = NULL;
271     struct MaskItem *conf;
272 adx 30 int confrq;
273    
274     /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
275     if (GlobalSetOptions.autoconn == 0)
276     return;
277    
278     DLINK_FOREACH(ptr, server_items.head)
279     {
280     conf = ptr->data;
281    
282 michael 1636 assert(conf->type == CONF_SERVER);
283 michael 1632
284 michael 2345 /* Also when already connecting! (update holdtimes) --SRB
285 adx 30 */
286 michael 1632 if (!conf->port ||!IsConfAllowAutoConn(conf))
287 adx 30 continue;
288    
289    
290     /* Skip this entry if the use of it is still on hold until
291     * future. Otherwise handle this entry (and set it on hold
292     * until next time). Will reset only hold times, if already
293     * made one successfull connection... [this algorithm is
294     * a bit fuzzy... -- msa >;) ]
295     */
296 michael 1649 if (conf->until > CurrentTime)
297 adx 30 continue;
298    
299 michael 1632 if (conf->class == NULL)
300 adx 30 confrq = DEFAULT_CONNECTFREQUENCY;
301     else
302     {
303 michael 1632 confrq = conf->class->con_freq;
304 michael 1377 if (confrq < MIN_CONN_FREQ)
305 michael 2134 confrq = MIN_CONN_FREQ;
306 adx 30 }
307    
308 michael 1649 conf->until = CurrentTime + confrq;
309 adx 30
310     /* Found a CONNECT config with port specified, scan clients
311     * and see if this server is already connected?
312     */
313 michael 1169 if (hash_find_server(conf->name) != NULL)
314 adx 30 continue;
315    
316 michael 1632 if (conf->class->ref_count < conf->class->max_total)
317 adx 30 {
318     /* Go to the end of the list, if not already last */
319     if (ptr->next != NULL)
320     {
321     dlinkDelete(ptr, &server_items);
322     dlinkAddTail(conf, &conf->node, &server_items);
323     }
324    
325     if (find_servconn_in_progress(conf->name))
326     return;
327    
328     /* We used to only print this if serv_connect() actually
329     * succeeded, but since comm_tcp_connect() can call the callback
330     * immediately if there is an error, we were getting error messages
331     * in the wrong order. SO, we just print out the activated line,
332     * and let serv_connect() / serv_connect_callback() print an
333     * error afterwards if it fails.
334     * -- adrian
335     */
336     if (ConfigServerHide.hide_server_ips)
337 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
338     "Connection to %s activated.",
339 adx 30 conf->name);
340     else
341 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
342     "Connection to %s[%s] activated.",
343 michael 1632 conf->name, conf->host);
344 adx 30
345 michael 1632 serv_connect(conf, NULL);
346 adx 30 /* We connect only one at time... */
347     return;
348     }
349     }
350     }
351    
352     int
353 michael 1115 valid_servname(const char *name)
354     {
355     unsigned int length = 0;
356     unsigned int dots = 0;
357     const char *p = name;
358    
359     for (; *p; ++p)
360     {
361     if (!IsServChar(*p))
362 michael 1118 return 0;
363 michael 1115
364     ++length;
365    
366     if (*p == '.')
367     ++dots;
368     }
369    
370 michael 1118 return dots != 0 && length <= HOSTLEN;
371 michael 1115 }
372    
373     int
374 michael 1302 check_server(const char *name, struct Client *client_p)
375 adx 30 {
376     dlink_node *ptr;
377 michael 1632 struct MaskItem *conf = NULL;
378     struct MaskItem *server_conf = NULL;
379 adx 30 int error = -1;
380    
381     assert(client_p != NULL);
382    
383     /* loop through looking for all possible connect items that might work */
384     DLINK_FOREACH(ptr, server_items.head)
385     {
386     conf = ptr->data;
387    
388 michael 1652 if (match(name, conf->name))
389 adx 30 continue;
390    
391     error = -3;
392    
393     /* XXX: Fix me for IPv6 */
394     /* XXX sockhost is the IPv4 ip as a string */
395 michael 2345 if (!match(conf->host, client_p->host) ||
396 michael 1652 !match(conf->host, client_p->sockhost))
397 adx 30 {
398     error = -2;
399    
400 michael 1632 if (!match_conf_password(client_p->localClient->passwd, conf))
401 michael 1414 return -2;
402 adx 30
403 michael 2228 if (!EmptyString(conf->certfp))
404 michael 2229 if (EmptyString(client_p->certfp) || strcasecmp(client_p->certfp, conf->certfp))
405 michael 2228 return -4;
406    
407 michael 1414 server_conf = conf;
408 adx 30 }
409     }
410    
411     if (server_conf == NULL)
412 michael 2182 return error;
413 adx 30
414     attach_conf(client_p, server_conf);
415    
416    
417 michael 1632 if (server_conf != NULL)
418 adx 30 {
419     struct sockaddr_in *v4;
420     #ifdef IPV6
421     struct sockaddr_in6 *v6;
422     #endif
423 michael 1632 switch (server_conf->aftype)
424 adx 30 {
425     #ifdef IPV6
426 michael 2345 case AF_INET6:
427 michael 1632 v6 = (struct sockaddr_in6 *)&server_conf->addr;
428 adx 30
429     if (IN6_IS_ADDR_UNSPECIFIED(&v6->sin6_addr))
430 michael 1632 memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
431 adx 30 break;
432     #endif
433     case AF_INET:
434 michael 1632 v4 = (struct sockaddr_in *)&server_conf->addr;
435 adx 30
436     if (v4->sin_addr.s_addr == INADDR_NONE)
437 michael 2345 memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
438 adx 30 break;
439     }
440     }
441    
442 michael 2182 return 0;
443 adx 30 }
444    
445     /* add_capability()
446     *
447     * inputs - string name of CAPAB
448     * - int flag of capability
449     * output - NONE
450     * side effects - Adds given capability name and bit mask to
451     * current supported capabilities. This allows
452     * modules to dynamically add or subtract their capability.
453     */
454     void
455     add_capability(const char *capab_name, int cap_flag, int add_to_default)
456     {
457 michael 885 struct Capability *cap = MyMalloc(sizeof(*cap));
458 adx 30
459 michael 1646 cap->name = xstrdup(capab_name);
460 adx 30 cap->cap = cap_flag;
461     dlinkAdd(cap, &cap->node, &cap_list);
462 michael 885
463 adx 30 if (add_to_default)
464     default_server_capabs |= cap_flag;
465     }
466    
467     /* delete_capability()
468     *
469     * inputs - string name of CAPAB
470     * output - NONE
471     * side effects - delete given capability from ones known.
472     */
473     int
474     delete_capability(const char *capab_name)
475     {
476     dlink_node *ptr;
477     dlink_node *next_ptr;
478     struct Capability *cap;
479    
480     DLINK_FOREACH_SAFE(ptr, next_ptr, cap_list.head)
481     {
482     cap = ptr->data;
483    
484     if (cap->cap != 0)
485     {
486     if (irccmp(cap->name, capab_name) == 0)
487     {
488 michael 2134 default_server_capabs &= ~(cap->cap);
489     dlinkDelete(ptr, &cap_list);
490     MyFree(cap->name);
491     MyFree(cap);
492 adx 30 }
493     }
494     }
495    
496 michael 896 return 0;
497 adx 30 }
498    
499     /*
500     * find_capability()
501     *
502     * inputs - string name of capab to find
503     * output - 0 if not found CAPAB otherwise
504     * side effects - none
505     */
506 michael 1877 unsigned int
507 adx 30 find_capability(const char *capab)
508     {
509 michael 896 const dlink_node *ptr = NULL;
510 adx 30
511     DLINK_FOREACH(ptr, cap_list.head)
512     {
513 michael 896 const struct Capability *cap = ptr->data;
514 adx 30
515 michael 896 if (cap->cap && !irccmp(cap->name, capab))
516     return cap->cap;
517 adx 30 }
518 michael 896
519     return 0;
520 adx 30 }
521    
522     /* send_capabilities()
523     *
524     * inputs - Client pointer to send to
525     * - int flag of capabilities that this server can send
526     * output - NONE
527     * side effects - send the CAPAB line to a server -orabidoo
528     *
529     */
530     void
531 michael 1632 send_capabilities(struct Client *client_p, int cap_can_send)
532 adx 30 {
533     struct Capability *cap=NULL;
534     char msgbuf[IRCD_BUFSIZE];
535     char *t;
536     int tl;
537     dlink_node *ptr;
538    
539     t = msgbuf;
540    
541     DLINK_FOREACH(ptr, cap_list.head)
542     {
543     cap = ptr->data;
544    
545     if (cap->cap & (cap_can_send|default_server_capabs))
546     {
547 michael 1793 tl = sprintf(t, "%s ", cap->name);
548 adx 30 t += tl;
549     }
550     }
551    
552 michael 319 *(t - 1) = '\0';
553 adx 30 sendto_one(client_p, "CAPAB :%s", msgbuf);
554     }
555    
556     /* sendnick_TS()
557 michael 2345 *
558 adx 30 * inputs - client (server) to send nick towards
559 adx 386 * - client to send nick for
560 adx 30 * output - NONE
561     * side effects - NICK message is sent towards given client_p
562     */
563     void
564     sendnick_TS(struct Client *client_p, struct Client *target_p)
565     {
566 michael 2691 char ubuf[IRCD_BUFSIZE];
567 adx 30
568     if (!IsClient(target_p))
569     return;
570    
571 michael 1294 send_umode(NULL, target_p, 0, SEND_UMODES, ubuf);
572 adx 30
573     if (ubuf[0] == '\0')
574     {
575     ubuf[0] = '+';
576     ubuf[1] = '\0';
577     }
578    
579 michael 1196 if (IsCapable(client_p, CAP_SVS))
580 michael 3135 sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s %s :%s",
581     target_p->servptr->id,
582     target_p->name, target_p->hopcount + 1,
583     (unsigned long) target_p->tsinfo,
584     ubuf, target_p->username, target_p->host,
585     (MyClient(target_p) && IsIPSpoof(target_p)) ?
586     "0" : target_p->sockhost, target_p->id,
587     target_p->svid, target_p->info);
588 adx 30 else
589 michael 3135 sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s :%s",
590     target_p->servptr->id,
591     target_p->name, target_p->hopcount + 1,
592     (unsigned long) target_p->tsinfo,
593     ubuf, target_p->username, target_p->host,
594     (MyClient(target_p) && IsIPSpoof(target_p)) ?
595     "0" : target_p->sockhost, target_p->id, target_p->info);
596 adx 386
597 michael 2229 if (!EmptyString(target_p->certfp))
598 michael 2228 sendto_one(client_p, ":%s CERTFP %s",
599     ID_or_name(target_p, client_p), target_p->certfp);
600    
601 michael 1519 if (target_p->away[0])
602     sendto_one(client_p, ":%s AWAY :%s", ID_or_name(target_p, client_p),
603     target_p->away);
604 adx 30
605     }
606    
607     /*
608     * show_capabilities - show current server capabilities
609     *
610     * inputs - pointer to a struct Client
611     * output - pointer to static string
612     * side effects - build up string representing capabilities of server listed
613     */
614     const char *
615 michael 2282 show_capabilities(const struct Client *target_p)
616 adx 30 {
617 michael 2309 static char msgbuf[IRCD_BUFSIZE] = "";
618 michael 2282 const dlink_node *ptr = NULL;
619 adx 30
620 michael 2309 strlcpy(msgbuf, "TS", sizeof(msgbuf));
621    
622 adx 30 DLINK_FOREACH(ptr, cap_list.head)
623     {
624     const struct Capability *cap = ptr->data;
625    
626 michael 2282 if (!IsCapable(target_p, cap->cap))
627     continue;
628    
629     strlcat(msgbuf, " ", sizeof(msgbuf));
630     strlcat(msgbuf, cap->name, sizeof(msgbuf));
631 adx 30 }
632 michael 1302
633     return msgbuf;
634 adx 30 }
635    
636     /* make_server()
637     *
638     * inputs - pointer to client struct
639     * output - pointer to struct Server
640     * side effects - add's an Server information block to a client
641     * if it was not previously allocated.
642     */
643     struct Server *
644     make_server(struct Client *client_p)
645     {
646     if (client_p->serv == NULL)
647     client_p->serv = MyMalloc(sizeof(struct Server));
648    
649     return client_p->serv;
650     }
651    
652     /* server_estab()
653     *
654     * inputs - pointer to a struct Client
655     * output -
656     * side effects -
657     */
658     void
659     server_estab(struct Client *client_p)
660     {
661 michael 1632 struct MaskItem *conf = NULL;
662 adx 30 char *host;
663     const char *inpath;
664     static char inpath_ip[HOSTLEN * 2 + USERLEN + 6];
665     dlink_node *ptr;
666 michael 1305 #ifdef HAVE_LIBCRYPTO
667     const COMP_METHOD *compression = NULL, *expansion = NULL;
668     #endif
669 adx 30
670     assert(client_p != NULL);
671    
672     strlcpy(inpath_ip, get_client_name(client_p, SHOW_IP), sizeof(inpath_ip));
673    
674     inpath = get_client_name(client_p, MASK_IP); /* "refresh" inpath with host */
675     host = client_p->name;
676    
677 michael 1632 if ((conf = find_conf_name(&client_p->localClient->confs, host, CONF_SERVER))
678 adx 30 == NULL)
679     {
680     /* This shouldn't happen, better tell the ops... -A1kmm */
681 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
682     "Warning: Lost connect{} block "
683 adx 30 "for server %s(this shouldn't happen)!", host);
684     exit_client(client_p, &me, "Lost connect{} block!");
685     return;
686     }
687    
688     MyFree(client_p->localClient->passwd);
689     client_p->localClient->passwd = NULL;
690    
691     /* Its got identd, since its a server */
692     SetGotId(client_p);
693    
694     /* If there is something in the serv_list, it might be this
695     * connecting server..
696     */
697 michael 2345 if (!ServerInfo.hub && serv_list.head)
698 adx 30 {
699     if (client_p != serv_list.head->data || serv_list.head->next)
700     {
701 michael 896 ++ServerStats.is_ref;
702 adx 30 sendto_one(client_p, "ERROR :I'm a leaf not a hub");
703     exit_client(client_p, &me, "I'm a leaf");
704     return;
705     }
706     }
707    
708 michael 1302 if (IsUnknown(client_p))
709 adx 30 {
710 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
711 adx 30
712 michael 1632 send_capabilities(client_p, 0);
713 adx 30
714     sendto_one(client_p, "SERVER %s 1 :%s%s",
715 michael 1118 me.name, ConfigServerHide.hidden ? "(H) " : "", me.info);
716 adx 30 }
717    
718 michael 1115 sendto_one(client_p, "SVINFO %d %d 0 :%lu", TS_CURRENT, TS_MIN,
719 adx 30 (unsigned long)CurrentTime);
720    
721 michael 3135 if (HasID(client_p))
722 adx 30 hash_add_id(client_p);
723    
724     /* XXX Does this ever happen? I don't think so -db */
725 michael 1632 detach_conf(client_p, CONF_OPER);
726 adx 30
727     /* *WARNING*
728     ** In the following code in place of plain server's
729     ** name we send what is returned by get_client_name
730     ** which may add the "sockhost" after the name. It's
731     ** *very* *important* that there is a SPACE between
732     ** the name and sockhost (if present). The receiving
733     ** server will start the information field from this
734     ** first blank and thus puts the sockhost into info.
735     ** ...a bit tricky, but you have been warned, besides
736     ** code is more neat this way... --msa
737     */
738     client_p->servptr = &me;
739    
740     if (IsClosing(client_p))
741     return;
742    
743     SetServer(client_p);
744    
745     /* Some day, all these lists will be consolidated *sigh* */
746 michael 889 dlinkAdd(client_p, &client_p->lnode, &me.serv->server_list);
747 adx 30
748 michael 1126 assert(dlinkFind(&unknown_list, client_p));
749 adx 30
750 michael 1126 dlink_move_node(&client_p->localClient->lclient_node,
751     &unknown_list, &serv_list);
752 adx 30
753     Count.myserver++;
754    
755     dlinkAdd(client_p, make_dlink_node(), &global_serv_list);
756     hash_add_client(client_p);
757    
758     /* doesnt duplicate client_p->serv if allocated this struct already */
759     make_server(client_p);
760    
761     /* fixing eob timings.. -gnp */
762 michael 1241 client_p->localClient->firsttime = CurrentTime;
763 adx 30
764 michael 1632 if (find_matching_name_conf(CONF_SERVICE, client_p->name, NULL, NULL, 0))
765 michael 1219 AddFlag(client_p, FLAGS_SERVICE);
766 michael 1157
767 adx 30 /* Show the real host/IP to admins */
768 michael 1305 #ifdef HAVE_LIBCRYPTO
769 michael 1303 if (client_p->localClient->fd.ssl)
770     {
771 michael 1305 compression = SSL_get_current_compression(client_p->localClient->fd.ssl);
772     expansion = SSL_get_current_expansion(client_p->localClient->fd.ssl);
773    
774 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
775 michael 1305 "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
776 michael 1303 inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
777 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
778     expansion ? SSL_COMP_get_name(expansion) : "NONE",
779 michael 1303 show_capabilities(client_p));
780     /* Now show the masked hostname/IP to opers */
781 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
782 michael 1305 "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
783 michael 1303 inpath, ssl_get_cipher(client_p->localClient->fd.ssl),
784 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
785     expansion ? SSL_COMP_get_name(expansion) : "NONE",
786 michael 1303 show_capabilities(client_p));
787 michael 1305 ilog(LOG_TYPE_IRCD, "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
788 michael 1303 inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
789 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
790     expansion ? SSL_COMP_get_name(expansion) : "NONE",
791 michael 1303 show_capabilities(client_p));
792     }
793     else
794 michael 1305 #endif
795 michael 1303 {
796 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
797 michael 1303 "Link with %s established: (Capabilities: %s)",
798 michael 1618 inpath_ip, show_capabilities(client_p));
799 michael 1303 /* Now show the masked hostname/IP to opers */
800 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
801 michael 1303 "Link with %s established: (Capabilities: %s)",
802 michael 1618 inpath, show_capabilities(client_p));
803 michael 1303 ilog(LOG_TYPE_IRCD, "Link with %s established: (Capabilities: %s)",
804     inpath_ip, show_capabilities(client_p));
805     }
806 adx 30
807 michael 1302 fd_note(&client_p->localClient->fd, "Server: %s", client_p->name);
808 adx 30
809 michael 3136 sendto_server(client_p, NOCAPS, NOCAPS, ":%s SID %s 2 %s :%s%s",
810     me.id, client_p->name, client_p->id,
811     IsHidden(client_p) ? "(H) " : "", client_p->info);
812 adx 30
813 michael 2345 /*
814     * Pass on my client information to the new server
815     *
816     * First, pass only servers (idea is that if the link gets
817     * cancelled beacause the server was already there,
818     * there are no NICK's to be cancelled...). Of course,
819     * if cancellation occurs, all this info is sent anyway,
820     * and I guess the link dies when a read is attempted...? --msa
821     *
822     * Note: Link cancellation to occur at this point means
823     * that at least two servers from my fragment are building
824     * up connection this other fragment at the same time, it's
825     * a race condition, not the normal way of operation...
826     *
827     * ALSO NOTE: using the get_client_name for server names--
828     * see previous *WARNING*!!! (Also, original inpath
829     * is destroyed...)
830     */
831 adx 30
832     DLINK_FOREACH_PREV(ptr, global_serv_list.tail)
833     {
834 michael 3137 struct Client *target_p = ptr->data;
835 adx 30
836     /* target_p->from == target_p for target_p == client_p */
837 michael 1118 if (IsMe(target_p) || target_p->from == client_p)
838 adx 30 continue;
839    
840 michael 3135 sendto_one(client_p, ":%s SID %s %d %s :%s%s",
841     ID(target_p->servptr), target_p->name, target_p->hopcount+1,
842     target_p->id, IsHidden(target_p) ? "(H) " : "",
843     target_p->info);
844 michael 1972
845     if (HasFlag(target_p, FLAGS_EOB))
846 michael 2718 sendto_one(client_p, ":%s EOB", ID_or_name(target_p, client_p));
847 adx 30 }
848    
849     server_burst(client_p);
850     }
851    
852     /* server_burst()
853     *
854     * inputs - struct Client pointer server
855     * -
856     * output - none
857     * side effects - send a server burst
858     * bugs - still too long
859     */
860     static void
861     server_burst(struct Client *client_p)
862     {
863     /* Send it in the shortened format with the TS, if
864     ** it's a TS server; walk the list of channels, sending
865     ** all the nicks that haven't been sent yet for each
866     ** channel, then send the channel itself -- it's less
867     ** obvious than sending all nicks first, but on the
868     ** receiving side memory will be allocated more nicely
869     ** saving a few seconds in the handling of a split
870     ** -orabidoo
871     */
872    
873 michael 885 burst_all(client_p);
874 adx 30
875     /* EOB stuff is now in burst_all */
876     /* Always send a PING after connect burst is done */
877     sendto_one(client_p, "PING :%s", ID_or_name(&me, client_p));
878     }
879    
880     /* burst_all()
881     *
882 michael 2345 * inputs - pointer to server to send burst to
883 adx 30 * output - NONE
884     * side effects - complete burst of channels/nicks is sent to client_p
885     */
886     static void
887     burst_all(struct Client *client_p)
888     {
889 michael 329 dlink_node *ptr = NULL;
890 adx 30
891 michael 329 DLINK_FOREACH(ptr, global_channel_list.head)
892 adx 30 {
893 michael 329 struct Channel *chptr = ptr->data;
894 adx 30
895     if (dlink_list_length(&chptr->members) != 0)
896     {
897     burst_members(client_p, chptr);
898     send_channel_modes(client_p, chptr);
899 michael 329
900 michael 1472 if (IsCapable(client_p, CAP_TBURST))
901 michael 2134 send_tb(client_p, chptr);
902 adx 30 }
903     }
904    
905     /* also send out those that are not on any channel
906     */
907     DLINK_FOREACH(ptr, global_client_list.head)
908     {
909 michael 329 struct Client *target_p = ptr->data;
910 adx 30
911 michael 1219 if (!HasFlag(target_p, FLAGS_BURSTED) && target_p->from != client_p)
912 adx 30 sendnick_TS(client_p, target_p);
913 michael 2345
914 michael 1219 DelFlag(target_p, FLAGS_BURSTED);
915 adx 30 }
916    
917     if (IsCapable(client_p, CAP_EOB))
918     sendto_one(client_p, ":%s EOB", ID_or_name(&me, client_p));
919     }
920    
921     /*
922     * send_tb
923     *
924 michael 329 * inputs - pointer to Client
925     * - pointer to channel
926     * output - NONE
927     * side effects - Called on a server burst when
928 michael 1472 * server is CAP_TBURST capable
929 adx 30 */
930     static void
931     send_tb(struct Client *client_p, struct Channel *chptr)
932     {
933 michael 329 /*
934 michael 337 * We may also send an empty topic here, but only if topic_time isn't 0,
935     * i.e. if we had a topic that got unset. This is required for syncing
936     * topics properly.
937     *
938     * Imagine the following scenario: Our downlink introduces a channel
939     * to us with a TS that is equal to ours, but the channel topic on
940     * their side got unset while the servers were in splitmode, which means
941     * their 'topic' is newer. They simply wanted to unset it, so we have to
942     * deal with it in a more sophisticated fashion instead of just resetting
943     * it to their old topic they had before. Read m_tburst.c:ms_tburst
944     * for further information -Michael
945 michael 329 */
946 michael 337 if (chptr->topic_time != 0)
947 michael 1472 sendto_one(client_p, ":%s TBURST %lu %s %lu %s :%s",
948     ID_or_name(&me, client_p),
949     (unsigned long)chptr->channelts, chptr->chname,
950     (unsigned long)chptr->topic_time,
951     chptr->topic_info,
952     chptr->topic);
953 adx 30 }
954    
955     /* burst_members()
956     *
957     * inputs - pointer to server to send members to
958     * - dlink_list pointer to membership list to send
959     * output - NONE
960     * side effects -
961     */
962     static void
963     burst_members(struct Client *client_p, struct Channel *chptr)
964     {
965     struct Client *target_p;
966     struct Membership *ms;
967     dlink_node *ptr;
968    
969     DLINK_FOREACH(ptr, chptr->members.head)
970     {
971     ms = ptr->data;
972     target_p = ms->client_p;
973    
974 michael 1219 if (!HasFlag(target_p, FLAGS_BURSTED))
975 adx 30 {
976 michael 1219 AddFlag(target_p, FLAGS_BURSTED);
977 adx 30
978     if (target_p->from != client_p)
979     sendnick_TS(client_p, target_p);
980     }
981     }
982     }
983    
984     /* New server connection code
985     * Based upon the stuff floating about in s_bsd.c
986     * -- adrian
987     */
988    
989     /* serv_connect() - initiate a server connection
990     *
991 michael 2345 * inputs - pointer to conf
992 adx 30 * - pointer to client doing the connect
993     * output -
994     * side effects -
995     *
996     * This code initiates a connection to a server. It first checks to make
997     * sure the given server exists. If this is the case, it creates a socket,
998     * creates a client, saves the socket information in the client, and
999     * initiates a connection to the server through comm_connect_tcp(). The
1000     * completion of this goes through serv_completed_connection().
1001     *
1002     * We return 1 if the connection is attempted, since we don't know whether
1003     * it suceeded or not, and 0 if it fails in here somewhere.
1004     */
1005     int
1006 michael 1632 serv_connect(struct MaskItem *conf, struct Client *by)
1007 adx 30 {
1008     struct Client *client_p;
1009 michael 1398 char buf[HOSTIPLEN + 1];
1010 adx 30
1011     /* conversion structs */
1012     struct sockaddr_in *v4;
1013 michael 1632 /* Make sure conf is useful */
1014     assert(conf != NULL);
1015 adx 30
1016    
1017 michael 1632 getnameinfo((struct sockaddr *)&conf->addr, conf->addr.ss_len,
1018 michael 1123 buf, sizeof(buf), NULL, 0, NI_NUMERICHOST);
1019 michael 1632 ilog(LOG_TYPE_IRCD, "Connect to %s[%s] @%s", conf->name, conf->host,
1020 adx 30 buf);
1021    
1022     /* Still processing a DNS lookup? -> exit */
1023 michael 1632 if (conf->dns_pending)
1024 adx 30 {
1025 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1026 michael 992 "Error connecting to %s: DNS lookup for connect{} in progress.",
1027     conf->name);
1028 adx 30 return (0);
1029     }
1030    
1031 michael 1632 if (conf->dns_failed)
1032 michael 992 {
1033 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1034 michael 992 "Error connecting to %s: DNS lookup for connect{} failed.",
1035     conf->name);
1036     return (0);
1037     }
1038    
1039 adx 30 /* Make sure this server isn't already connected
1040 michael 1632 * Note: conf should ALWAYS be a valid C: line
1041 adx 30 */
1042 michael 1169 if ((client_p = hash_find_server(conf->name)) != NULL)
1043 michael 2345 {
1044 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1045 michael 2134 "Server %s already present from %s",
1046     conf->name, get_client_name(client_p, SHOW_IP));
1047 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1048 michael 2134 "Server %s already present from %s",
1049     conf->name, get_client_name(client_p, MASK_IP));
1050 adx 30 if (by && IsClient(by) && !MyClient(by))
1051 michael 3110 sendto_one_notice(by, &me, ":Server %s already present from %s",
1052     conf->name, get_client_name(client_p, MASK_IP));
1053 michael 2134 return 0;
1054 adx 30 }
1055 michael 2345
1056 adx 30 /* Create a local client */
1057     client_p = make_client(NULL);
1058    
1059     /* Copy in the server, hostname, fd */
1060     strlcpy(client_p->name, conf->name, sizeof(client_p->name));
1061 michael 1632 strlcpy(client_p->host, conf->host, sizeof(client_p->host));
1062 adx 30
1063     /* We already converted the ip once, so lets use it - stu */
1064 michael 1115 strlcpy(client_p->sockhost, buf, sizeof(client_p->sockhost));
1065 adx 30
1066 michael 2345 /* create a socket for the server connection */
1067 michael 1632 if (comm_open(&client_p->localClient->fd, conf->addr.ss.ss_family,
1068 adx 30 SOCK_STREAM, 0, NULL) < 0)
1069     {
1070     /* Eek, failure to create the socket */
1071 michael 2134 report_error(L_ALL, "opening stream socket to %s: %s",
1072     conf->name, errno);
1073 adx 30 SetDead(client_p);
1074     exit_client(client_p, &me, "Connection failed");
1075 michael 2134 return 0;
1076 adx 30 }
1077    
1078     /* servernames are always guaranteed under HOSTLEN chars */
1079     fd_note(&client_p->localClient->fd, "Server: %s", conf->name);
1080    
1081     /* Attach config entries to client here rather than in
1082     * serv_connect_callback(). This to avoid null pointer references.
1083     */
1084 michael 1632 if (!attach_connect_block(client_p, conf->name, conf->host))
1085 adx 30 {
1086 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1087 michael 2134 "Host %s is not enabled for connecting: no connect{} block",
1088     conf->name);
1089 michael 2345 if (by && IsClient(by) && !MyClient(by))
1090 michael 3110 sendto_one_notice(by, &me, ":Connect to host %s failed.", client_p->name);
1091    
1092 adx 30 SetDead(client_p);
1093     exit_client(client_p, client_p, "Connection failed");
1094 michael 2134 return 0;
1095 adx 30 }
1096    
1097     /* at this point we have a connection in progress and C/N lines
1098     * attached to the client, the socket info should be saved in the
1099     * client and it should either be resolved or have a valid address.
1100     *
1101     * The socket has been connected or connect is in progress.
1102     */
1103     make_server(client_p);
1104    
1105     if (by && IsClient(by))
1106     strlcpy(client_p->serv->by, by->name, sizeof(client_p->serv->by));
1107     else
1108     strlcpy(client_p->serv->by, "AutoConn.", sizeof(client_p->serv->by));
1109    
1110     SetConnecting(client_p);
1111     dlinkAdd(client_p, &client_p->node, &global_client_list);
1112     /* from def_fam */
1113 michael 1632 client_p->localClient->aftype = conf->aftype;
1114 adx 30
1115     /* Now, initiate the connection */
1116 michael 2345 /* XXX assume that a non 0 type means a specific bind address
1117 adx 30 * for this connect.
1118     */
1119 michael 1632 switch (conf->aftype)
1120 adx 30 {
1121     case AF_INET:
1122 michael 1632 v4 = (struct sockaddr_in*)&conf->bind;
1123 adx 30 if (v4->sin_addr.s_addr != 0)
1124     {
1125     struct irc_ssaddr ipn;
1126     memset(&ipn, 0, sizeof(struct irc_ssaddr));
1127     ipn.ss.ss_family = AF_INET;
1128     ipn.ss_port = 0;
1129 michael 1632 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1130 michael 2134 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1131 michael 2345 (struct sockaddr *)&ipn, ipn.ss_len,
1132 michael 2134 serv_connect_callback, client_p, conf->aftype,
1133     CONNECTTIMEOUT);
1134 adx 30 }
1135     else if (ServerInfo.specific_ipv4_vhost)
1136     {
1137     struct irc_ssaddr ipn;
1138     memset(&ipn, 0, sizeof(struct irc_ssaddr));
1139     ipn.ss.ss_family = AF_INET;
1140     ipn.ss_port = 0;
1141     memcpy(&ipn, &ServerInfo.ip, sizeof(struct irc_ssaddr));
1142 michael 1632 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1143 adx 30 (struct sockaddr *)&ipn, ipn.ss_len,
1144 michael 1632 serv_connect_callback, client_p, conf->aftype,
1145 michael 2134 CONNECTTIMEOUT);
1146 adx 30 }
1147     else
1148 michael 2345 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1149     NULL, 0, serv_connect_callback, client_p, conf->aftype,
1150 adx 30 CONNECTTIMEOUT);
1151     break;
1152     #ifdef IPV6
1153     case AF_INET6:
1154     {
1155 michael 2182 struct irc_ssaddr ipn;
1156     struct sockaddr_in6 *v6;
1157     struct sockaddr_in6 *v6conf;
1158 adx 30
1159 michael 2182 memset(&ipn, 0, sizeof(struct irc_ssaddr));
1160     v6conf = (struct sockaddr_in6 *)&conf->bind;
1161     v6 = (struct sockaddr_in6 *)&ipn;
1162 adx 30
1163 michael 2182 if (memcmp(&v6conf->sin6_addr, &v6->sin6_addr, sizeof(struct in6_addr)) != 0)
1164 adx 30 {
1165 michael 2182 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1166     ipn.ss.ss_family = AF_INET6;
1167     ipn.ss_port = 0;
1168     comm_connect_tcp(&client_p->localClient->fd,
1169     conf->host, conf->port,
1170 michael 2345 (struct sockaddr *)&ipn, ipn.ss_len,
1171 michael 2182 serv_connect_callback, client_p,
1172     conf->aftype, CONNECTTIMEOUT);
1173     }
1174     else if (ServerInfo.specific_ipv6_vhost)
1175     {
1176     memcpy(&ipn, &ServerInfo.ip6, sizeof(struct irc_ssaddr));
1177     ipn.ss.ss_family = AF_INET6;
1178     ipn.ss_port = 0;
1179     comm_connect_tcp(&client_p->localClient->fd,
1180     conf->host, conf->port,
1181     (struct sockaddr *)&ipn, ipn.ss_len,
1182     serv_connect_callback, client_p,
1183     conf->aftype, CONNECTTIMEOUT);
1184     }
1185     else
1186     comm_connect_tcp(&client_p->localClient->fd,
1187 michael 2345 conf->host, conf->port,
1188 michael 2182 NULL, 0, serv_connect_callback, client_p,
1189     conf->aftype, CONNECTTIMEOUT);
1190 adx 30 }
1191     #endif
1192     }
1193 michael 2182 return 1;
1194 adx 30 }
1195    
1196 michael 1303 #ifdef HAVE_LIBCRYPTO
1197     static void
1198     finish_ssl_server_handshake(struct Client *client_p)
1199     {
1200 michael 1632 struct MaskItem *conf = NULL;
1201 michael 1303
1202     conf = find_conf_name(&client_p->localClient->confs,
1203 michael 1632 client_p->name, CONF_SERVER);
1204 michael 1303 if (conf == NULL)
1205     {
1206 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1207 michael 1303 "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1208 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1209 michael 1303 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1210    
1211     exit_client(client_p, &me, "Lost connect{} block");
1212     return;
1213     }
1214    
1215 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1216 michael 1303
1217 michael 1632 send_capabilities(client_p, 0);
1218 michael 1303
1219     sendto_one(client_p, "SERVER %s 1 :%s%s",
1220     me.name, ConfigServerHide.hidden ? "(H) " : "",
1221     me.info);
1222    
1223     /* If we've been marked dead because a send failed, just exit
1224     * here now and save everyone the trouble of us ever existing.
1225     */
1226     if (IsDead(client_p))
1227     {
1228 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1229 michael 1303 "%s[%s] went dead during handshake",
1230     client_p->name,
1231     client_p->host);
1232 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1233 michael 1303 "%s went dead during handshake", client_p->name);
1234     return;
1235     }
1236    
1237     /* don't move to serv_list yet -- we haven't sent a burst! */
1238     /* If we get here, we're ok, so lets start reading some data */
1239     comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ, read_packet, client_p, 0);
1240     }
1241    
1242     static void
1243 michael 1306 ssl_server_handshake(fde_t *fd, struct Client *client_p)
1244 michael 1303 {
1245 michael 2463 X509 *cert = NULL;
1246     int ret = 0;
1247 michael 1303
1248 michael 2463 if ((ret = SSL_connect(client_p->localClient->fd.ssl)) <= 0)
1249 michael 1303 {
1250 michael 2463 switch (SSL_get_error(client_p->localClient->fd.ssl, ret))
1251 michael 1303 {
1252     case SSL_ERROR_WANT_WRITE:
1253     comm_setselect(&client_p->localClient->fd, COMM_SELECT_WRITE,
1254 michael 1308 (PF *)ssl_server_handshake, client_p, 0);
1255 michael 1303 return;
1256     case SSL_ERROR_WANT_READ:
1257     comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ,
1258 michael 1308 (PF *)ssl_server_handshake, client_p, 0);
1259 michael 1303 return;
1260     default:
1261 michael 1308 {
1262     const char *sslerr = ERR_error_string(ERR_get_error(), NULL);
1263 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1264 michael 1308 "Error connecting to %s: %s", client_p->name,
1265     sslerr ? sslerr : "unknown SSL error");
1266 michael 1303 exit_client(client_p, client_p, "Error during SSL handshake");
1267     return;
1268 michael 1308 }
1269 michael 1303 }
1270     }
1271    
1272 michael 2463 if ((cert = SSL_get_peer_certificate(client_p->localClient->fd.ssl)))
1273     {
1274     int res = SSL_get_verify_result(client_p->localClient->fd.ssl);
1275     char buf[EVP_MAX_MD_SIZE * 2 + 1] = { '\0' };
1276     unsigned char md[EVP_MAX_MD_SIZE] = { '\0' };
1277    
1278     if (res == X509_V_OK || res == X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN ||
1279     res == X509_V_ERR_UNABLE_TO_VERIFY_LEAF_SIGNATURE ||
1280     res == X509_V_ERR_DEPTH_ZERO_SELF_SIGNED_CERT)
1281     {
1282     unsigned int i = 0, n = 0;
1283    
1284     if (X509_digest(cert, EVP_sha256(), md, &n))
1285     {
1286     for (; i < n; ++i)
1287     snprintf(buf + 2 * i, 3, "%02X", md[i]);
1288     client_p->certfp = xstrdup(buf);
1289     }
1290     }
1291     else
1292     ilog(LOG_TYPE_IRCD, "Server %s!%s@%s gave bad SSL client certificate: %d",
1293     client_p->name, client_p->username, client_p->host, res);
1294     X509_free(cert);
1295     }
1296    
1297 michael 1303 finish_ssl_server_handshake(client_p);
1298     }
1299    
1300     static void
1301 michael 1632 ssl_connect_init(struct Client *client_p, struct MaskItem *conf, fde_t *fd)
1302 michael 1303 {
1303     if ((client_p->localClient->fd.ssl = SSL_new(ServerInfo.client_ctx)) == NULL)
1304     {
1305     ilog(LOG_TYPE_IRCD, "SSL_new() ERROR! -- %s",
1306     ERR_error_string(ERR_get_error(), NULL));
1307     SetDead(client_p);
1308     exit_client(client_p, client_p, "SSL_new failed");
1309     return;
1310     }
1311    
1312     SSL_set_fd(fd->ssl, fd->fd);
1313 michael 1306
1314 michael 1632 if (!EmptyString(conf->cipher_list))
1315     SSL_set_cipher_list(client_p->localClient->fd.ssl, conf->cipher_list);
1316 michael 1306
1317     ssl_server_handshake(NULL, client_p);
1318 michael 1303 }
1319     #endif
1320    
1321 adx 30 /* serv_connect_callback() - complete a server connection.
1322 michael 2345 *
1323 adx 30 * This routine is called after the server connection attempt has
1324     * completed. If unsucessful, an error is sent to ops and the client
1325     * is closed. If sucessful, it goes through the initialisation/check
1326     * procedures, the capabilities are sent, and the socket is then
1327     * marked for reading.
1328     */
1329     static void
1330     serv_connect_callback(fde_t *fd, int status, void *data)
1331     {
1332     struct Client *client_p = data;
1333 michael 1632 struct MaskItem *conf = NULL;
1334 adx 30
1335     /* First, make sure its a real client! */
1336     assert(client_p != NULL);
1337     assert(&client_p->localClient->fd == fd);
1338    
1339     /* Next, for backward purposes, record the ip of the server */
1340     memcpy(&client_p->localClient->ip, &fd->connect.hostaddr,
1341     sizeof(struct irc_ssaddr));
1342     /* Check the status */
1343     if (status != COMM_OK)
1344     {
1345     /* We have an error, so report it and quit
1346     * Admins get to see any IP, mere opers don't *sigh*
1347     */
1348     if (ConfigServerHide.hide_server_ips)
1349 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1350 adx 30 "Error connecting to %s: %s",
1351     client_p->name, comm_errstr(status));
1352     else
1353 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1354 michael 2134 "Error connecting to %s[%s]: %s", client_p->name,
1355     client_p->host, comm_errstr(status));
1356 adx 30
1357 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1358 michael 2134 "Error connecting to %s: %s",
1359     client_p->name, comm_errstr(status));
1360 adx 30
1361     /* If a fd goes bad, call dead_link() the socket is no
1362     * longer valid for reading or writing.
1363     */
1364     dead_link_on_write(client_p, 0);
1365     return;
1366     }
1367    
1368     /* COMM_OK, so continue the connection procedure */
1369     /* Get the C/N lines */
1370     conf = find_conf_name(&client_p->localClient->confs,
1371 michael 2134 client_p->name, CONF_SERVER);
1372 adx 30 if (conf == NULL)
1373     {
1374 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1375 michael 2134 "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1376 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1377 michael 2134 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1378 adx 30
1379     exit_client(client_p, &me, "Lost connect{} block");
1380     return;
1381     }
1382    
1383     /* Next, send the initial handshake */
1384     SetHandshake(client_p);
1385    
1386     #ifdef HAVE_LIBCRYPTO
1387 michael 1632 if (IsConfSSL(conf))
1388 michael 1303 {
1389 michael 1632 ssl_connect_init(client_p, conf, fd);
1390 michael 1303 return;
1391     }
1392 adx 30 #endif
1393    
1394 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1395 adx 30
1396 michael 1632 send_capabilities(client_p, 0);
1397 adx 30
1398 michael 2134 sendto_one(client_p, "SERVER %s 1 :%s%s", me.name,
1399     ConfigServerHide.hidden ? "(H) " : "", me.info);
1400 adx 30
1401     /* If we've been marked dead because a send failed, just exit
1402     * here now and save everyone the trouble of us ever existing.
1403     */
1404 michael 2345 if (IsDead(client_p))
1405 adx 30 {
1406 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1407 michael 2134 "%s[%s] went dead during handshake",
1408 adx 30 client_p->name,
1409 michael 2134 client_p->host);
1410 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1411 michael 2134 "%s went dead during handshake", client_p->name);
1412 adx 30 return;
1413     }
1414    
1415     /* don't move to serv_list yet -- we haven't sent a burst! */
1416     /* If we get here, we're ok, so lets start reading some data */
1417     comm_setselect(fd, COMM_SELECT_READ, read_packet, client_p, 0);
1418     }
1419    
1420     struct Client *
1421     find_servconn_in_progress(const char *name)
1422     {
1423     dlink_node *ptr;
1424     struct Client *cptr;
1425    
1426     DLINK_FOREACH(ptr, unknown_list.head)
1427     {
1428     cptr = ptr->data;
1429    
1430     if (cptr && cptr->name[0])
1431 michael 1652 if (!match(name, cptr->name))
1432 adx 30 return cptr;
1433     }
1434 michael 2345
1435 adx 30 return NULL;
1436     }

Properties

Name Value
svn:eol-style native
svn:keywords Id Revision