ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/conf.c
(Generate patch)

Comparing:
ircd-hybrid-8/src/conf.c (file contents), Revision 1526 by michael, Mon Sep 10 18:06:06 2012 UTC vs.
ircd-hybrid/trunk/src/conf.c (file contents), Revision 4744 by michael, Thu Oct 16 11:46:19 2014 UTC

# Line 1 | Line 1
1   /*
2 < *  ircd-hybrid: an advanced Internet Relay Chat Daemon(ircd).
3 < *  conf.c: Configuration file functions.
2 > *  ircd-hybrid: an advanced, lightweight Internet Relay Chat Daemon (ircd)
3   *
4 < *  Copyright (C) 2002 by the past and present ircd coders, and others.
4 > *  Copyright (c) 1997-2014 ircd-hybrid development team
5   *
6   *  This program is free software; you can redistribute it and/or modify
7   *  it under the terms of the GNU General Public License as published by
# Line 16 | Line 15
15   *
16   *  You should have received a copy of the GNU General Public License
17   *  along with this program; if not, write to the Free Software
18 < *  Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307
18 > *  Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301
19   *  USA
20 < *
21 < *  $Id$
20 > */
21 >
22 > /*! \file conf.c
23 > * \brief Configuration file functions.
24 > * \version $Id$
25   */
26  
27   #include "stdinc.h"
28   #include "list.h"
29   #include "ircd_defs.h"
28 #include "balloc.h"
30   #include "conf.h"
31 < #include "s_serv.h"
31 > #include "conf_pseudo.h"
32 > #include "server.h"
33   #include "resv.h"
34   #include "channel.h"
35   #include "client.h"
36   #include "event.h"
35 #include "hook.h"
37   #include "irc_string.h"
38   #include "s_bsd.h"
39   #include "ircd.h"
# Line 43 | Line 44
44   #include "fdlist.h"
45   #include "log.h"
46   #include "send.h"
46 #include "s_gline.h"
47   #include "memory.h"
48 < #include "irc_res.h"
48 > #include "res.h"
49   #include "userhost.h"
50 < #include "s_user.h"
50 > #include "user.h"
51   #include "channel_mode.h"
52   #include "parse.h"
53 < #include "s_misc.h"
53 > #include "misc.h"
54 > #include "conf_db.h"
55 > #include "conf_class.h"
56 > #include "motd.h"
57 > #include "ipcache.h"
58  
55 struct Callback *client_check_cb = NULL;
56 struct config_server_hide ConfigServerHide;
59  
60   /* general conf items link list root, other than k lines etc. */
61   dlink_list service_items = { NULL, NULL, 0 };
# Line 62 | Line 64 | dlink_list cluster_items = { NULL, NULL,
64   dlink_list oconf_items   = { NULL, NULL, 0 };
65   dlink_list uconf_items   = { NULL, NULL, 0 };
66   dlink_list xconf_items   = { NULL, NULL, 0 };
65 dlink_list rxconf_items  = { NULL, NULL, 0 };
66 dlink_list rkconf_items  = { NULL, NULL, 0 };
67   dlink_list nresv_items   = { NULL, NULL, 0 };
68 < dlink_list class_items   = { NULL, NULL, 0 };
69 <
70 < dlink_list temporary_xlines  = { NULL, NULL, 0 };
71 < dlink_list temporary_resv = { NULL, NULL, 0 };
68 > dlink_list cresv_items   = { NULL, NULL, 0 };
69  
70   extern unsigned int lineno;
71   extern char linebuf[];
72   extern char conffilebuf[IRCD_BUFSIZE];
73   extern int yyparse(); /* defined in y.tab.c */
74  
78 struct conf_parser_context conf_parser_ctx = { 0, 0, NULL };
79
75   /* internally defined functions */
76   static void read_conf(FILE *);
77   static void clear_out_old_conf(void);
83 static void flush_deleted_I_P(void);
78   static void expire_tklines(dlink_list *);
79 < static void garbage_collect_ip_entries(void);
80 < static int hash_ip(struct irc_ssaddr *);
81 < static int verify_access(struct Client *, const char *);
88 < static int attach_iline(struct Client *, struct ConfItem *);
89 < static struct ip_entry *find_or_add_ip(struct irc_ssaddr *);
90 < static void parse_conf_file(int, int);
91 < static dlink_list *map_to_list(ConfType);
92 < static struct AccessItem *find_regexp_kline(const char *[]);
79 > static int verify_access(struct Client *);
80 > static int attach_iline(struct Client *, struct MaskItem *);
81 > static dlink_list *map_to_list(enum maskitem_type);
82   static int find_user_host(struct Client *, char *, char *, char *, unsigned int);
83  
95 /*
96 * bit_len
97 */
98 static int cidr_limit_reached(int, struct irc_ssaddr *, struct ClassItem *);
99 static void remove_from_cidr_check(struct irc_ssaddr *, struct ClassItem *);
100 static void destroy_cidr_class(struct ClassItem *);
101
102 static void flags_to_ascii(unsigned int, const unsigned int[], char *, int);
103
104 /* address of default class conf */
105 static struct ConfItem *class_default;
106
107 /* usually, with hash tables, you use a prime number...
108 * but in this case I am dealing with ip addresses,
109 * not ascii strings.
110 */
111 #define IP_HASH_SIZE 0x1000
112
113 struct ip_entry
114 {
115  struct irc_ssaddr ip;
116  int count;
117  time_t last_attempt;
118  struct ip_entry *next;
119 };
120
121 static struct ip_entry *ip_hash_table[IP_HASH_SIZE];
122 static BlockHeap *ip_entry_heap = NULL;
123 static int ip_entries_count = 0;
124
125
126 void *
127 map_to_conf(struct ConfItem *aconf)
128 {
129  void *conf;
130  conf = (void *)((uintptr_t)aconf +
131                  (uintptr_t)sizeof(struct ConfItem));
132  return(conf);
133 }
134
135 struct ConfItem *
136 unmap_conf_item(void *aconf)
137 {
138  struct ConfItem *conf;
139
140  conf = (struct ConfItem *)((uintptr_t)aconf -
141                             (uintptr_t)sizeof(struct ConfItem));
142  return(conf);
143 }
84  
85   /* conf_dns_callback()
86   *
87 < * inputs       - pointer to struct AccessItem
87 > * inputs       - pointer to struct MaskItem
88   *              - pointer to DNSReply reply
89   * output       - none
90   * side effects - called when resolver query finishes
# Line 153 | Line 93 | unmap_conf_item(void *aconf)
93   * if successful save hp in the conf item it was called with
94   */
95   static void
96 < conf_dns_callback(void *vptr, const struct irc_ssaddr *addr, const char *name)
96 > conf_dns_callback(void *vptr, const struct irc_ssaddr *addr, const char *name, size_t namelength)
97   {
98 <  struct AccessItem *aconf = vptr;
98 >  struct MaskItem *conf = vptr;
99  
100 <  aconf->dns_pending = 0;
100 >  conf->dns_pending = 0;
101  
102 <  if (addr != NULL)
103 <    memcpy(&aconf->addr, addr, sizeof(aconf->addr));
102 >  if (addr)
103 >    memcpy(&conf->addr, addr, sizeof(conf->addr));
104    else
105 <    aconf->dns_failed = 1;
105 >    conf->dns_failed = 1;
106   }
107  
108   /* conf_dns_lookup()
# Line 172 | Line 112 | conf_dns_callback(void *vptr, const stru
112   * allocate a dns_query and start ns lookup.
113   */
114   static void
115 < conf_dns_lookup(struct AccessItem *aconf)
115 > conf_dns_lookup(struct MaskItem *conf)
116   {
117 <  if (!aconf->dns_pending)
117 >  if (!conf->dns_pending)
118    {
119 <    aconf->dns_pending = 1;
120 <    gethost_byname(conf_dns_callback, aconf, aconf->host);
119 >    conf->dns_pending = 1;
120 >
121 >    if (conf->aftype == AF_INET)
122 >      gethost_byname_type(conf_dns_callback, conf, conf->host, T_A);
123 >    else
124 >      gethost_byname_type(conf_dns_callback, conf, conf->host, T_AAAA);
125    }
126   }
127  
128 < /* make_conf_item()
129 < *
186 < * inputs       - type of item
187 < * output       - pointer to new conf entry
188 < * side effects - none
189 < */
190 < struct ConfItem *
191 < make_conf_item(ConfType type)
128 > struct MaskItem *
129 > conf_make(enum maskitem_type type)
130   {
131 <  struct ConfItem *conf = NULL;
132 <  struct AccessItem *aconf = NULL;
195 <  struct ClassItem *aclass = NULL;
196 <  int status = 0;
197 <
198 <  switch (type)
199 <  {
200 <  case DLINE_TYPE:
201 <  case EXEMPTDLINE_TYPE:
202 <  case GLINE_TYPE:
203 <  case KLINE_TYPE:
204 <  case CLIENT_TYPE:
205 <  case OPER_TYPE:
206 <  case SERVER_TYPE:
207 <    conf = MyMalloc(sizeof(struct ConfItem) +
208 <                    sizeof(struct AccessItem));
209 <    aconf = map_to_conf(conf);
210 <    aconf->aftype = AF_INET;
211 <
212 <    /* Yes, sigh. switch on type again */
213 <    switch (type)
214 <    {
215 <    case EXEMPTDLINE_TYPE:
216 <      status = CONF_EXEMPTDLINE;
217 <      break;
218 <
219 <    case DLINE_TYPE:
220 <      status = CONF_DLINE;
221 <      break;
222 <
223 <    case KLINE_TYPE:
224 <      status = CONF_KLINE;
225 <      break;
226 <
227 <    case GLINE_TYPE:
228 <      status = CONF_GLINE;
229 <      break;
230 <
231 <    case CLIENT_TYPE:
232 <      status = CONF_CLIENT;
233 <      break;
234 <
235 <    case OPER_TYPE:
236 <      status = CONF_OPERATOR;
237 <      dlinkAdd(conf, &conf->node, &oconf_items);
238 <      break;
239 <
240 <    case SERVER_TYPE:
241 <      status = CONF_SERVER;
242 <      dlinkAdd(conf, &conf->node, &server_items);
243 <      break;
244 <
245 <    default:
246 <      break;
247 <    }
248 <    aconf->status = status;
249 <    break;
250 <
251 <  case ULINE_TYPE:
252 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
253 <                                       sizeof(struct MatchItem));
254 <    dlinkAdd(conf, &conf->node, &uconf_items);
255 <    break;
256 <
257 <  case XLINE_TYPE:
258 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
259 <                                       sizeof(struct MatchItem));
260 <    dlinkAdd(conf, &conf->node, &xconf_items);
261 <    break;
262 < #ifdef HAVE_LIBPCRE
263 <  case RXLINE_TYPE:
264 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
265 <                                       sizeof(struct MatchItem));
266 <    dlinkAdd(conf, &conf->node, &rxconf_items);
267 <    break;
268 <
269 <  case RKLINE_TYPE:
270 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
271 <                                       sizeof(struct AccessItem));
272 <    aconf = map_to_conf(conf);
273 <    aconf->status = CONF_KLINE;
274 <    dlinkAdd(conf, &conf->node, &rkconf_items);
275 <    break;
276 < #endif
277 <  case CLUSTER_TYPE:
278 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem));
279 <    dlinkAdd(conf, &conf->node, &cluster_items);
280 <    break;
281 <
282 <  case CRESV_TYPE:
283 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
284 <                                       sizeof(struct ResvChannel));
285 <    break;
131 >  struct MaskItem *conf = MyCalloc(sizeof(*conf));
132 >  dlink_list *list = NULL;
133  
134 <  case NRESV_TYPE:
135 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
136 <                                       sizeof(struct MatchItem));
290 <    dlinkAdd(conf, &conf->node, &nresv_items);
291 <    break;
292 <
293 <  case SERVICE_TYPE:
294 <    status = CONF_SERVICE;
295 <    conf = MyMalloc(sizeof(struct ConfItem));
296 <    dlinkAdd(conf, &conf->node, &service_items);
297 <    break;
298 <
299 <  case CLASS_TYPE:
300 <    conf = MyMalloc(sizeof(struct ConfItem) +
301 <                           sizeof(struct ClassItem));
302 <    dlinkAdd(conf, &conf->node, &class_items);
303 <
304 <    aclass = map_to_conf(conf);
305 <    aclass->active = 1;
306 <    aclass->con_freq = DEFAULT_CONNECTFREQUENCY;
307 <    aclass->ping_freq = DEFAULT_PINGFREQUENCY;
308 <    aclass->max_total = MAXIMUM_LINKS_DEFAULT;
309 <    aclass->max_sendq = DEFAULT_SENDQ;
310 <    aclass->max_recvq = DEFAULT_RECVQ;
311 <
312 <    break;
313 <
314 <  default:
315 <    conf = NULL;
316 <    break;
317 <  }
318 <
319 <  /* XXX Yes, this will core if default is hit. I want it to for now - db */
320 <  conf->type = type;
134 >  conf->type   = type;
135 >  conf->active = 1;
136 >  conf->aftype = AF_INET;
137  
138 +  if ((list = map_to_list(type)))
139 +    dlinkAdd(conf, &conf->node, list);
140    return conf;
141   }
142  
143   void
144 < delete_conf_item(struct ConfItem *conf)
144 > conf_free(struct MaskItem *conf)
145   {
146 <  dlink_node *m = NULL, *m_next = NULL;
147 <  struct MatchItem *match_item;
148 <  struct AccessItem *aconf;
149 <  ConfType type = conf->type;
146 >  dlink_node *ptr = NULL, *ptr_next = NULL;
147 >  dlink_list *list = NULL;
148 >
149 >  if ((list = map_to_list(conf->type)))
150 >    dlinkFindDelete(list, conf);
151  
152    MyFree(conf->name);
334  conf->name = NULL;
153  
154 <  switch(type)
155 <  {
156 <  case DLINE_TYPE:
157 <  case EXEMPTDLINE_TYPE:
158 <  case GLINE_TYPE:
159 <  case KLINE_TYPE:
160 <  case CLIENT_TYPE:
161 <  case OPER_TYPE:
162 <  case SERVER_TYPE:
163 <    aconf = map_to_conf(conf);
164 <
165 <    if (aconf->dns_pending)
166 <      delete_resolver_queries(aconf);
167 <    if (aconf->passwd != NULL)
168 <      memset(aconf->passwd, 0, strlen(aconf->passwd));
351 <    if (aconf->spasswd != NULL)
352 <      memset(aconf->spasswd, 0, strlen(aconf->spasswd));
353 <    aconf->class_ptr = NULL;
354 <
355 <    MyFree(aconf->passwd);
356 <    MyFree(aconf->spasswd);
357 <    MyFree(aconf->reason);
358 <    MyFree(aconf->oper_reason);
359 <    MyFree(aconf->user);
360 <    MyFree(aconf->host);
154 >  if (conf->dns_pending)
155 >    delete_resolver_queries(conf);
156 >  if (conf->passwd)
157 >    memset(conf->passwd, 0, strlen(conf->passwd));
158 >  if (conf->spasswd)
159 >    memset(conf->spasswd, 0, strlen(conf->spasswd));
160 >
161 >  conf->class = NULL;
162 >
163 >  MyFree(conf->passwd);
164 >  MyFree(conf->spasswd);
165 >  MyFree(conf->reason);
166 >  MyFree(conf->certfp);
167 >  MyFree(conf->user);
168 >  MyFree(conf->host);
169   #ifdef HAVE_LIBCRYPTO
170 <    MyFree(aconf->cipher_list);
363 <
364 <    if (aconf->rsa_public_key)
365 <      RSA_free(aconf->rsa_public_key);
366 <    MyFree(aconf->rsa_public_key_file);
367 < #endif
368 <
369 <    /* Yes, sigh. switch on type again */
370 <    switch(type)
371 <    {
372 <    case EXEMPTDLINE_TYPE:
373 <    case DLINE_TYPE:
374 <    case GLINE_TYPE:
375 <    case KLINE_TYPE:
376 <    case CLIENT_TYPE:
377 <      MyFree(conf);
378 <      break;
379 <
380 <    case OPER_TYPE:
381 <      aconf = map_to_conf(conf);
382 <      if (!IsConfIllegal(aconf))
383 <        dlinkDelete(&conf->node, &oconf_items);
384 <      MyFree(conf);
385 <      break;
386 <
387 <    case SERVER_TYPE:
388 <      aconf = map_to_conf(conf);
389 <
390 <      DLINK_FOREACH_SAFE(m, m_next, aconf->hub_list.head)
391 <      {
392 <        MyFree(m->data);
393 <        free_dlink_node(m);
394 <      }
395 <
396 <      DLINK_FOREACH_SAFE(m, m_next, aconf->leaf_list.head)
397 <      {
398 <        MyFree(m->data);
399 <        free_dlink_node(m);  
400 <      }
401 <
402 <      if (!IsConfIllegal(aconf))
403 <        dlinkDelete(&conf->node, &server_items);
404 <      MyFree(conf);
405 <      break;
406 <
407 <    default:
408 <      break;
409 <    }
410 <    break;
170 >  MyFree(conf->cipher_list);
171  
172 <  case ULINE_TYPE:
173 <    match_item = map_to_conf(conf);
414 <    MyFree(match_item->user);
415 <    MyFree(match_item->host);
416 <    MyFree(match_item->reason);
417 <    MyFree(match_item->oper_reason);
418 <    dlinkDelete(&conf->node, &uconf_items);
419 <    MyFree(conf);
420 <    break;
421 <
422 <  case XLINE_TYPE:
423 <    match_item = map_to_conf(conf);
424 <    MyFree(match_item->user);
425 <    MyFree(match_item->host);
426 <    MyFree(match_item->reason);
427 <    MyFree(match_item->oper_reason);
428 <    dlinkDelete(&conf->node, &xconf_items);
429 <    MyFree(conf);
430 <    break;
431 < #ifdef HAVE_LIBPCRE
432 <  case RKLINE_TYPE:
433 <    aconf = map_to_conf(conf);
434 <    MyFree(aconf->regexuser);
435 <    MyFree(aconf->regexhost);
436 <    MyFree(aconf->user);
437 <    MyFree(aconf->host);
438 <    MyFree(aconf->reason);
439 <    MyFree(aconf->oper_reason);
440 <    dlinkDelete(&conf->node, &rkconf_items);
441 <    MyFree(conf);
442 <    break;
443 <
444 <  case RXLINE_TYPE:
445 <    MyFree(conf->regexpname);
446 <    match_item = map_to_conf(conf);
447 <    MyFree(match_item->user);
448 <    MyFree(match_item->host);
449 <    MyFree(match_item->reason);
450 <    MyFree(match_item->oper_reason);
451 <    dlinkDelete(&conf->node, &rxconf_items);
452 <    MyFree(conf);
453 <    break;
172 >  if (conf->rsa_public_key)
173 >    RSA_free(conf->rsa_public_key);
174   #endif
175 <  case NRESV_TYPE:
176 <    match_item = map_to_conf(conf);
177 <    MyFree(match_item->user);
178 <    MyFree(match_item->host);
179 <    MyFree(match_item->reason);
460 <    MyFree(match_item->oper_reason);
461 <    dlinkDelete(&conf->node, &nresv_items);
462 <
463 <    if (conf->flags & CONF_FLAGS_TEMPORARY)
464 <      if ((m = dlinkFindDelete(&temporary_resv, conf)) != NULL)
465 <        free_dlink_node(m);
466 <
467 <    MyFree(conf);
468 <    break;
469 <
470 <  case CLUSTER_TYPE:
471 <    dlinkDelete(&conf->node, &cluster_items);
472 <    MyFree(conf);
473 <    break;
474 <
475 <  case CRESV_TYPE:
476 <    if (conf->flags & CONF_FLAGS_TEMPORARY)
477 <      if ((m = dlinkFindDelete(&temporary_resv, conf)) != NULL)
478 <        free_dlink_node(m);
479 <
480 <    MyFree(conf);
481 <    break;
482 <
483 <  case CLASS_TYPE:
484 <    dlinkDelete(&conf->node, &class_items);
485 <    MyFree(conf);
486 <    break;
487 <
488 <  case SERVICE_TYPE:
489 <    dlinkDelete(&conf->node, &service_items);
490 <    MyFree(conf);
491 <    break;
492 <
493 <  default:
494 <    break;
175 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->hub_list.head)
176 >  {
177 >    MyFree(ptr->data);
178 >    dlinkDelete(ptr, &conf->hub_list);
179 >    free_dlink_node(ptr);
180    }
496 }
181  
182 < /* free_access_item()
499 < *
500 < * inputs       - pointer to conf to free
501 < * output       - none
502 < * side effects - crucial password fields are zeroed, conf is freed
503 < */
504 < void
505 < free_access_item(struct AccessItem *aconf)
506 < {
507 <  struct ConfItem *conf;
508 <
509 <  if (aconf == NULL)
510 <    return;
511 <  conf = unmap_conf_item(aconf);
512 <  delete_conf_item(conf);
513 < }
514 <
515 < static const unsigned int shared_bit_table[] =
516 <  { 'K', 'k', 'U', 'X', 'x', 'Y', 'Q', 'q', 'R', 'L', 0};
517 <
518 < /* report_confitem_types()
519 < *
520 < * inputs       - pointer to client requesting confitem report
521 < *              - ConfType to report
522 < * output       - none
523 < * side effects -
524 < */
525 < void
526 < report_confitem_types(struct Client *source_p, ConfType type)
527 < {
528 <  dlink_node *ptr = NULL, *dptr = NULL;
529 <  struct ConfItem *conf = NULL;
530 <  struct AccessItem *aconf = NULL;
531 <  struct MatchItem *matchitem = NULL;
532 <  struct ClassItem *classitem = NULL;
533 <  char buf[12];
534 <  char *p = NULL;
535 <
536 <  switch (type)
182 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->leaf_list.head)
183    {
184 <  case XLINE_TYPE:
185 <    DLINK_FOREACH(ptr, xconf_items.head)
186 <    {
187 <      conf = ptr->data;
542 <      matchitem = map_to_conf(conf);
543 <
544 <      sendto_one(source_p, form_str(RPL_STATSXLINE),
545 <                 me.name, source_p->name,
546 <                 matchitem->hold ? "x": "X", matchitem->count,
547 <                 conf->name, matchitem->reason);
548 <    }
549 <    break;
550 <
551 < #ifdef HAVE_LIBPCRE
552 <  case RXLINE_TYPE:
553 <    DLINK_FOREACH(ptr, rxconf_items.head)
554 <    {
555 <      conf = ptr->data;
556 <      matchitem = map_to_conf(conf);
557 <
558 <      sendto_one(source_p, form_str(RPL_STATSXLINE),
559 <                 me.name, source_p->name,
560 <                 "XR", matchitem->count,
561 <                 conf->name, matchitem->reason);
562 <    }
563 <    break;
564 <
565 <  case RKLINE_TYPE:
566 <    DLINK_FOREACH(ptr, rkconf_items.head)
567 <    {
568 <      aconf = map_to_conf((conf = ptr->data));
569 <
570 <      sendto_one(source_p, form_str(RPL_STATSKLINE), me.name,
571 <                 source_p->name, "KR", aconf->host, aconf->user,
572 <                 aconf->reason, aconf->oper_reason ? aconf->oper_reason : "");
573 <    }
574 <    break;
575 < #endif
576 <
577 <  case ULINE_TYPE:
578 <    DLINK_FOREACH(ptr, uconf_items.head)
579 <    {
580 <      conf = ptr->data;
581 <      matchitem = map_to_conf(conf);
582 <
583 <      p = buf;
584 <
585 <      /* some of these are redundant for the sake of
586 <       * consistency with cluster{} flags
587 <       */
588 <      *p++ = 'c';
589 <      flags_to_ascii(matchitem->action, shared_bit_table, p, 0);
590 <
591 <      sendto_one(source_p, form_str(RPL_STATSULINE),
592 <                 me.name, source_p->name, conf->name,
593 <                 matchitem->user?matchitem->user: "*",
594 <                 matchitem->host?matchitem->host: "*", buf);
595 <    }
596 <
597 <    DLINK_FOREACH(ptr, cluster_items.head)
598 <    {
599 <      conf = ptr->data;
600 <
601 <      p = buf;
602 <
603 <      *p++ = 'C';
604 <      flags_to_ascii(conf->flags, shared_bit_table, p, 0);
605 <
606 <      sendto_one(source_p, form_str(RPL_STATSULINE),
607 <                 me.name, source_p->name, conf->name,
608 <                 "*", "*", buf);
609 <    }
610 <
611 <    break;
612 <
613 <  case OPER_TYPE:
614 <    DLINK_FOREACH(ptr, oconf_items.head)
615 <    {
616 <      conf = ptr->data;
617 <      aconf = map_to_conf(conf);
618 <
619 <      /* Don't allow non opers to see oper privs */
620 <      if (HasUMode(source_p, UMODE_OPER))
621 <        sendto_one(source_p, form_str(RPL_STATSOLINE),
622 <                   me.name, source_p->name, 'O', aconf->user, aconf->host,
623 <                   conf->name, oper_privs_as_string(aconf->port),
624 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
625 <      else
626 <        sendto_one(source_p, form_str(RPL_STATSOLINE),
627 <                   me.name, source_p->name, 'O', aconf->user, aconf->host,
628 <                   conf->name, "0",
629 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
630 <    }
631 <    break;
632 <
633 <  case CLASS_TYPE:
634 <    DLINK_FOREACH(ptr, class_items.head)
635 <    {
636 <      conf = ptr->data;
637 <      classitem = map_to_conf(conf);
638 <      sendto_one(source_p, form_str(RPL_STATSYLINE),
639 <                 me.name, source_p->name, 'Y',
640 <                 conf->name, classitem->ping_freq,
641 <                 classitem->con_freq,
642 <                 classitem->max_total, classitem->max_sendq,
643 <                 classitem->max_recvq,
644 <                 classitem->curr_user_count,
645 <                 classitem->number_per_cidr, classitem->cidr_bitlen_ipv4,
646 <                 classitem->number_per_cidr, classitem->cidr_bitlen_ipv6,
647 <                 classitem->active ? "active" : "disabled");
648 <    }
649 <    break;
650 <
651 <  case CONF_TYPE:
652 <  case CLIENT_TYPE:
653 <    break;
654 <
655 <  case SERVICE_TYPE:
656 <    DLINK_FOREACH(ptr, service_items.head)
657 <    {
658 <      conf = ptr->data;
659 <      sendto_one(source_p, form_str(RPL_STATSSERVICE),
660 <                 me.name, source_p->name, 'S', "*", conf->name, 0, 0);
661 <    }
662 <    break;
663 <
664 <  case SERVER_TYPE:
665 <    DLINK_FOREACH(ptr, server_items.head)
666 <    {
667 <      p = buf;
668 <
669 <      conf = ptr->data;
670 <      aconf = map_to_conf(conf);
671 <
672 <      buf[0] = '\0';
673 <
674 <      if (IsConfAllowAutoConn(aconf))
675 <        *p++ = 'A';
676 <      if (IsConfSSL(aconf))
677 <        *p++ = 'S';
678 <      if (buf[0] == '\0')
679 <        *p++ = '*';
680 <
681 <      *p = '\0';
682 <
683 <      /*
684 <       * Allow admins to see actual ips unless hide_server_ips is enabled
685 <       */
686 <      if (!ConfigServerHide.hide_server_ips && HasUMode(source_p, UMODE_ADMIN))
687 <        sendto_one(source_p, form_str(RPL_STATSCLINE),
688 <                   me.name, source_p->name, 'C', aconf->host,
689 <                   buf, conf->name, aconf->port,
690 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
691 <        else
692 <          sendto_one(source_p, form_str(RPL_STATSCLINE),
693 <                     me.name, source_p->name, 'C',
694 <                     "*@127.0.0.1", buf, conf->name, aconf->port,
695 <                     aconf->class_ptr ? aconf->class_ptr->name : "<default>");
696 <    }
697 <    break;
698 <
699 <  case HUB_TYPE:
700 <    DLINK_FOREACH(ptr, server_items.head)
701 <    {
702 <      conf = ptr->data;
703 <      aconf = map_to_conf(conf);
704 <
705 <      DLINK_FOREACH(dptr, aconf->hub_list.head)
706 <        sendto_one(source_p, form_str(RPL_STATSHLINE), me.name,
707 <                   source_p->name, 'H', dptr->data, conf->name, 0, "*");
708 <    }
709 <    break;
710 <
711 <  case LEAF_TYPE:
712 <    DLINK_FOREACH(ptr, server_items.head)
713 <    {
714 <      conf = ptr->data;
715 <      aconf = map_to_conf(conf);
184 >    MyFree(ptr->data);
185 >    dlinkDelete(ptr, &conf->leaf_list);
186 >    free_dlink_node(ptr);
187 >  }
188  
189 <      DLINK_FOREACH(dptr, aconf->leaf_list.head)
190 <        sendto_one(source_p, form_str(RPL_STATSLLINE), me.name,
191 <                   source_p->name, 'L', dptr->data, conf->name, 0, "*");
720 <    }
721 <    break;
189 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->exempt_list.head)
190 >  {
191 >    struct exempt *exptr = ptr->data;
192  
193 <  case GLINE_TYPE:
194 <  case KLINE_TYPE:
195 <  case DLINE_TYPE:
196 <  case EXEMPTDLINE_TYPE:
197 <  case CRESV_TYPE:
728 <  case NRESV_TYPE:
729 <  case CLUSTER_TYPE:
730 <  default:
731 <    break;
193 >    dlinkDelete(ptr, &conf->exempt_list);
194 >    MyFree(exptr->name);
195 >    MyFree(exptr->user);
196 >    MyFree(exptr->host);
197 >    MyFree(exptr);
198    }
199 +
200 +  MyFree(conf);
201   }
202  
203   /* check_client()
# Line 745 | Line 213 | report_confitem_types(struct Client *sou
213   *                Look for conf lines which have the same
214   *                status as the flags passed.
215   */
216 < static void *
217 < check_client(va_list args)
216 > int
217 > check_client(struct Client *source_p)
218   {
751  struct Client *source_p = va_arg(args, struct Client *);
752  const char *username = va_arg(args, const char *);
219    int i;
220 <
221 <  /* I'm already in big trouble if source_p->localClient is NULL -db */
222 <  if ((i = verify_access(source_p, username)))
757 <    ilog(LOG_TYPE_IRCD, "Access denied: %s[%s]",
220 >
221 >  if ((i = verify_access(source_p)))
222 >    ilog(LOG_TYPE_IRCD, "Access denied: %s[%s]",
223           source_p->name, source_p->sockhost);
224  
225    switch (i)
226    {
227      case TOO_MANY:
228 <      sendto_realops_flags(UMODE_FULL, L_ALL,
228 >      sendto_realops_flags(UMODE_FULL, L_ALL, SEND_NOTICE,
229                             "Too many on IP for %s (%s).",
230 <                           get_client_name(source_p, SHOW_IP),
231 <                           source_p->sockhost);
230 >                           get_client_name(source_p, SHOW_IP),
231 >                           source_p->sockhost);
232        ilog(LOG_TYPE_IRCD, "Too many connections on IP from %s.",
233 <           get_client_name(source_p, SHOW_IP));
233 >           get_client_name(source_p, SHOW_IP));
234        ++ServerStats.is_ref;
235 <      exit_client(source_p, &me, "No more connections allowed on that IP");
235 >      exit_client(source_p, "No more connections allowed on that IP");
236        break;
237  
238      case I_LINE_FULL:
239 <      sendto_realops_flags(UMODE_FULL, L_ALL,
240 <                           "I-line is full for %s (%s).",
241 <                           get_client_name(source_p, SHOW_IP),
242 <                           source_p->sockhost);
239 >      sendto_realops_flags(UMODE_FULL, L_ALL, SEND_NOTICE,
240 >                           "auth{} block is full for %s (%s).",
241 >                           get_client_name(source_p, SHOW_IP),
242 >                           source_p->sockhost);
243        ilog(LOG_TYPE_IRCD, "Too many connections from %s.",
244 <           get_client_name(source_p, SHOW_IP));
244 >           get_client_name(source_p, SHOW_IP));
245        ++ServerStats.is_ref;
246 <      exit_client(source_p, &me,
782 <                "No more connections allowed in your connection class");
246 >      exit_client(source_p, "No more connections allowed in your connection class");
247        break;
248  
249      case NOT_AUTHORIZED:
250        ++ServerStats.is_ref;
251        /* jdc - lists server name & port connections are on */
252        /*       a purely cosmetical change */
253 <      sendto_realops_flags(UMODE_UNAUTH, L_ALL,
254 <                           "Unauthorized client connection from %s [%s] on [%s/%u].",
255 <                           get_client_name(source_p, SHOW_IP),
256 <                           source_p->sockhost,
257 <                           source_p->localClient->listener->name,
258 <                           source_p->localClient->listener->port);
253 >      sendto_realops_flags(UMODE_UNAUTH, L_ALL, SEND_NOTICE,
254 >                           "Unauthorized client connection from %s [%s] on [%s/%u].",
255 >                           get_client_name(source_p, SHOW_IP),
256 >                           source_p->sockhost,
257 >                           source_p->connection->listener->name,
258 >                           source_p->connection->listener->port);
259        ilog(LOG_TYPE_IRCD,
260 <          "Unauthorized client connection from %s on [%s/%u].",
261 <          get_client_name(source_p, SHOW_IP),
262 <          source_p->localClient->listener->name,
263 <          source_p->localClient->listener->port);
264 <
265 <      /* XXX It is prolematical whether it is better to use the
802 <       * capture reject code here or rely on the connecting too fast code.
803 <       * - Dianora
804 <       */
805 <      if (REJECT_HOLD_TIME > 0)
806 <      {
807 <        sendto_one(source_p, ":%s NOTICE %s :You are not authorized to use this server",
808 <                   me.name, source_p->name);
809 <        source_p->localClient->reject_delay = CurrentTime + REJECT_HOLD_TIME;
810 <        SetCaptured(source_p);
811 <      }
812 <      else
813 <        exit_client(source_p, &me, "You are not authorized to use this server");
260 >           "Unauthorized client connection from %s on [%s/%u].",
261 >           get_client_name(source_p, SHOW_IP),
262 >           source_p->connection->listener->name,
263 >           source_p->connection->listener->port);
264 >
265 >      exit_client(source_p, "You are not authorized to use this server");
266        break;
267  
268     case BANNED_CLIENT:
269 <     /*
818 <      * Don't exit them immediately, play with them a bit.
819 <      * - Dianora
820 <      */
821 <     if (REJECT_HOLD_TIME > 0)
822 <     {
823 <       source_p->localClient->reject_delay = CurrentTime + REJECT_HOLD_TIME;
824 <       SetCaptured(source_p);
825 <     }
826 <     else
827 <       exit_client(source_p, &me, "Banned");
269 >     exit_client(source_p, "Banned");
270       ++ServerStats.is_ref;
271       break;
272  
# Line 833 | Line 275 | check_client(va_list args)
275       break;
276    }
277  
278 <  return (i < 0 ? NULL : source_p);
278 >  return (i < 0 ? 0 : 1);
279   }
280  
281   /* verify_access()
282   *
283   * inputs       - pointer to client to verify
842 *              - pointer to proposed username
284   * output       - 0 if success -'ve if not
285   * side effect  - find the first (best) I line to attach.
286   */
287   static int
288 < verify_access(struct Client *client_p, const char *username)
288 > verify_access(struct Client *client_p)
289   {
290 <  struct AccessItem *aconf = NULL, *rkconf = NULL;
291 <  struct ConfItem *conf = NULL;
851 <  char non_ident[USERLEN + 1] = { '~', '\0' };
852 <  const char *uhi[3];
290 >  struct MaskItem *conf = NULL;
291 >  char non_ident[USERLEN + 1] = "~";
292  
293    if (IsGotId(client_p))
294    {
295 <    aconf = find_address_conf(client_p->host, client_p->username,
296 <                             &client_p->localClient->ip,
297 <                             client_p->localClient->aftype,
298 <                             client_p->localClient->passwd);
295 >    conf = find_address_conf(client_p->host, client_p->username,
296 >                             &client_p->connection->ip,
297 >                             client_p->connection->aftype,
298 >                             client_p->connection->password);
299    }
300    else
301    {
302 <    strlcpy(non_ident+1, username, sizeof(non_ident)-1);
303 <    aconf = find_address_conf(client_p->host,non_ident,
304 <                             &client_p->localClient->ip,
305 <                             client_p->localClient->aftype,
306 <                             client_p->localClient->passwd);
302 >    strlcpy(non_ident + 1, client_p->username, sizeof(non_ident) - 1);
303 >    conf = find_address_conf(client_p->host,non_ident,
304 >                             &client_p->connection->ip,
305 >                             client_p->connection->aftype,
306 >                             client_p->connection->password);
307    }
308  
309 <  uhi[0] = IsGotId(client_p) ? client_p->username : non_ident;
871 <  uhi[1] = client_p->host;
872 <  uhi[2] = client_p->sockhost;
873 <
874 <  rkconf = find_regexp_kline(uhi);
875 <
876 <  if (aconf != NULL)
309 >  if (conf)
310    {
311 <    if (IsConfClient(aconf) && !rkconf)
311 >    if (IsConfClient(conf))
312      {
313 <      conf = unmap_conf_item(aconf);
881 <
882 <      if (IsConfRedir(aconf))
313 >      if (IsConfRedir(conf))
314        {
315 <        sendto_one(client_p, form_str(RPL_REDIR),
316 <                   me.name, client_p->name,
317 <                   conf->name ? conf->name : "",
318 <                   aconf->port);
888 <        return(NOT_AUTHORIZED);
315 >        sendto_one_numeric(client_p, &me, RPL_REDIR,
316 >                           conf->name ? conf->name : "",
317 >                           conf->port);
318 >        return NOT_AUTHORIZED;
319        }
320  
321 <      if (IsConfDoIdentd(aconf))
322 <        SetNeedId(client_p);
321 >      if (IsConfDoIdentd(conf))
322 >        SetNeedId(client_p);
323  
324        /* Thanks for spoof idea amm */
325 <      if (IsConfDoSpoofIp(aconf))
325 >      if (IsConfDoSpoofIp(conf))
326        {
327 <        conf = unmap_conf_item(aconf);
328 <
329 <        if (!ConfigFileEntry.hide_spoof_ips && IsConfSpoofNotice(aconf))
900 <          sendto_realops_flags(UMODE_ALL, L_ADMIN, "%s spoofing: %s as %s",
327 >        if (!ConfigGeneral.hide_spoof_ips && IsConfSpoofNotice(conf))
328 >          sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
329 >                               "%s spoofing: %s as %s",
330                                 client_p->name, client_p->host, conf->name);
331          strlcpy(client_p->host, conf->name, sizeof(client_p->host));
332 <        SetIPSpoof(client_p);
332 >        AddFlag(client_p, FLAGS_IP_SPOOFING | FLAGS_AUTH_SPOOF);
333        }
334  
335 <      return(attach_iline(client_p, conf));
335 >      return attach_iline(client_p, conf);
336      }
337 <    else if (rkconf || IsConfKill(aconf) || (ConfigFileEntry.glines && IsConfGline(aconf)))
337 >    else if (IsConfKill(conf) || (ConfigGeneral.glines && IsConfGline(conf)))
338      {
339 <      /* XXX */
340 <      aconf = rkconf ? rkconf : aconf;
341 <      if (IsConfGline(aconf))
342 <        sendto_one(client_p, ":%s NOTICE %s :*** G-lined", me.name,
914 <                   client_p->name);
915 <      if (ConfigFileEntry.kline_with_reason)
916 <        sendto_one(client_p, ":%s NOTICE %s :*** Banned %s",
917 <                  me.name, client_p->name, aconf->reason);
918 <      return(BANNED_CLIENT);
339 >      if (IsConfGline(conf))
340 >        sendto_one_notice(client_p, &me, ":*** G-lined");
341 >      sendto_one_notice(client_p, &me, ":*** Banned: %s", conf->reason);
342 >      return BANNED_CLIENT;
343      }
344    }
345  
346 <  return(NOT_AUTHORIZED);
346 >  return NOT_AUTHORIZED;
347   }
348  
349   /* attach_iline()
# Line 930 | Line 354 | verify_access(struct Client *client_p, c
354   * side effects - do actual attach
355   */
356   static int
357 < attach_iline(struct Client *client_p, struct ConfItem *conf)
357 > attach_iline(struct Client *client_p, struct MaskItem *conf)
358   {
359 <  struct AccessItem *aconf;
936 <  struct ClassItem *aclass;
359 >  const struct ClassItem *class = conf->class;
360    struct ip_entry *ip_found;
361    int a_limit_reached = 0;
362 <  int local = 0, global = 0, ident = 0;
362 >  unsigned int local = 0, global = 0, ident = 0;
363  
364 <  ip_found = find_or_add_ip(&client_p->localClient->ip);
364 >  ip_found = ipcache_find_or_add_address(&client_p->connection->ip);
365    ip_found->count++;
366 <  SetIpHash(client_p);
944 <
945 <  aconf = map_to_conf(conf);
946 <  if (aconf->class_ptr == NULL)
947 <    return NOT_AUTHORIZED;  /* If class is missing, this is best */
948 <
949 <  aclass = map_to_conf(aconf->class_ptr);
366 >  AddFlag(client_p, FLAGS_IPHASH);
367  
368    count_user_host(client_p->username, client_p->host,
369                    &global, &local, &ident);
# Line 955 | Line 372 | attach_iline(struct Client *client_p, st
372     * setting a_limit_reached if any limit is reached.
373     * - Dianora
374     */
375 <  if (aclass->max_total != 0 && aclass->curr_user_count >= aclass->max_total)
375 >  if (class->max_total && class->ref_count >= class->max_total)
376      a_limit_reached = 1;
377 <  else if (aclass->max_perip != 0 && ip_found->count > aclass->max_perip)
377 >  else if (class->max_perip && ip_found->count > class->max_perip)
378      a_limit_reached = 1;
379 <  else if (aclass->max_local != 0 && local >= aclass->max_local)
379 >  else if (class->max_local && local >= class->max_local)
380      a_limit_reached = 1;
381 <  else if (aclass->max_global != 0 && global >= aclass->max_global)
381 >  else if (class->max_global && global >= class->max_global)
382      a_limit_reached = 1;
383 <  else if (aclass->max_ident != 0 && ident >= aclass->max_ident &&
383 >  else if (class->max_ident && ident >= class->max_ident &&
384             client_p->username[0] != '~')
385      a_limit_reached = 1;
386  
387    if (a_limit_reached)
388    {
389 <    if (!IsConfExemptLimits(aconf))
389 >    if (!IsConfExemptLimits(conf))
390        return TOO_MANY;   /* Already at maximum allowed */
391  
392 <    sendto_one(client_p,
393 <               ":%s NOTICE %s :*** Your connection class is full, "
977 <               "but you have exceed_limit = yes;", me.name, client_p->name);
392 >    sendto_one_notice(client_p, &me, ":*** Your connection class is full, "
393 >                      "but you have exceed_limit = yes;");
394    }
395  
396    return attach_conf(client_p, conf);
397   }
398  
983 /* init_ip_hash_table()
984 *
985 * inputs               - NONE
986 * output               - NONE
987 * side effects         - allocate memory for ip_entry(s)
988 *                      - clear the ip hash table
989 */
990 void
991 init_ip_hash_table(void)
992 {
993  ip_entry_heap = BlockHeapCreate("ip", sizeof(struct ip_entry),
994    2 * hard_fdlimit);
995  memset(ip_hash_table, 0, sizeof(ip_hash_table));
996 }
997
998 /* find_or_add_ip()
999 *
1000 * inputs       - pointer to struct irc_ssaddr
1001 * output       - pointer to a struct ip_entry
1002 * side effects -
1003 *
1004 * If the ip # was not found, a new struct ip_entry is created, and the ip
1005 * count set to 0.
1006 */
1007 static struct ip_entry *
1008 find_or_add_ip(struct irc_ssaddr *ip_in)
1009 {
1010  struct ip_entry *ptr, *newptr;
1011  int hash_index = hash_ip(ip_in), res;
1012  struct sockaddr_in *v4 = (struct sockaddr_in *)ip_in, *ptr_v4;
1013 #ifdef IPV6
1014  struct sockaddr_in6 *v6 = (struct sockaddr_in6 *)ip_in, *ptr_v6;
1015 #endif
1016
1017  for (ptr = ip_hash_table[hash_index]; ptr; ptr = ptr->next)
1018  {
1019 #ifdef IPV6
1020    if (ptr->ip.ss.ss_family != ip_in->ss.ss_family)
1021      continue;
1022    if (ip_in->ss.ss_family == AF_INET6)
1023    {
1024      ptr_v6 = (struct sockaddr_in6 *)&ptr->ip;
1025      res = memcmp(&v6->sin6_addr, &ptr_v6->sin6_addr, sizeof(struct in6_addr));
1026    }
1027    else
1028 #endif
1029    {
1030      ptr_v4 = (struct sockaddr_in *)&ptr->ip;
1031      res = memcmp(&v4->sin_addr, &ptr_v4->sin_addr, sizeof(struct in_addr));
1032    }
1033    if (res == 0)
1034    {
1035      /* Found entry already in hash, return it. */
1036      return ptr;
1037    }
1038  }
1039
1040  if (ip_entries_count >= 2 * hard_fdlimit)
1041    garbage_collect_ip_entries();
1042
1043  newptr = BlockHeapAlloc(ip_entry_heap);
1044  ip_entries_count++;
1045  memcpy(&newptr->ip, ip_in, sizeof(struct irc_ssaddr));
1046
1047  newptr->next = ip_hash_table[hash_index];
1048  ip_hash_table[hash_index] = newptr;
1049
1050  return newptr;
1051 }
1052
1053 /* remove_one_ip()
1054 *
1055 * inputs        - unsigned long IP address value
1056 * output        - NONE
1057 * side effects  - The ip address given, is looked up in ip hash table
1058 *                 and number of ip#'s for that ip decremented.
1059 *                 If ip # count reaches 0 and has expired,
1060 *                 the struct ip_entry is returned to the ip_entry_heap
1061 */
1062 void
1063 remove_one_ip(struct irc_ssaddr *ip_in)
1064 {
1065  struct ip_entry *ptr;
1066  struct ip_entry *last_ptr = NULL;
1067  int hash_index = hash_ip(ip_in), res;
1068  struct sockaddr_in *v4 = (struct sockaddr_in *)ip_in, *ptr_v4;
1069 #ifdef IPV6
1070  struct sockaddr_in6 *v6 = (struct sockaddr_in6 *)ip_in, *ptr_v6;
1071 #endif
1072
1073  for (ptr = ip_hash_table[hash_index]; ptr; ptr = ptr->next)
1074  {
1075 #ifdef IPV6
1076    if (ptr->ip.ss.ss_family != ip_in->ss.ss_family)
1077      continue;
1078    if (ip_in->ss.ss_family == AF_INET6)
1079    {
1080      ptr_v6 = (struct sockaddr_in6 *)&ptr->ip;
1081      res = memcmp(&v6->sin6_addr, &ptr_v6->sin6_addr, sizeof(struct in6_addr));
1082    }
1083    else
1084 #endif
1085    {
1086      ptr_v4 = (struct sockaddr_in *)&ptr->ip;
1087      res = memcmp(&v4->sin_addr, &ptr_v4->sin_addr, sizeof(struct in_addr));
1088    }
1089    if (res)
1090      continue;
1091    if (ptr->count > 0)
1092      ptr->count--;
1093    if (ptr->count == 0 &&
1094        (CurrentTime-ptr->last_attempt) >= ConfigFileEntry.throttle_time)
1095    {
1096      if (last_ptr != NULL)
1097        last_ptr->next = ptr->next;
1098      else
1099        ip_hash_table[hash_index] = ptr->next;
1100
1101      BlockHeapFree(ip_entry_heap, ptr);
1102      ip_entries_count--;
1103      return;
1104    }
1105    last_ptr = ptr;
1106  }
1107 }
1108
1109 /* hash_ip()
1110 *
1111 * input        - pointer to an irc_inaddr
1112 * output       - integer value used as index into hash table
1113 * side effects - hopefully, none
1114 */
1115 static int
1116 hash_ip(struct irc_ssaddr *addr)
1117 {
1118  if (addr->ss.ss_family == AF_INET)
1119  {
1120    struct sockaddr_in *v4 = (struct sockaddr_in *)addr;
1121    int hash;
1122    uint32_t ip;
1123
1124    ip   = ntohl(v4->sin_addr.s_addr);
1125    hash = ((ip >> 12) + ip) & (IP_HASH_SIZE-1);
1126    return hash;
1127  }
1128 #ifdef IPV6
1129  else
1130  {
1131    int hash;
1132    struct sockaddr_in6 *v6 = (struct sockaddr_in6 *)addr;
1133    uint32_t *ip = (uint32_t *)&v6->sin6_addr.s6_addr;
1134
1135    hash  = ip[0] ^ ip[3];
1136    hash ^= hash >> 16;  
1137    hash ^= hash >> 8;  
1138    hash  = hash & (IP_HASH_SIZE - 1);
1139    return hash;
1140  }
1141 #else
1142  return 0;
1143 #endif
1144 }
1145
1146 /* count_ip_hash()
1147 *
1148 * inputs        - pointer to counter of number of ips hashed
1149 *               - pointer to memory used for ip hash
1150 * output        - returned via pointers input
1151 * side effects  - NONE
1152 *
1153 * number of hashed ip #'s is counted up, plus the amount of memory
1154 * used in the hash.
1155 */
1156 void
1157 count_ip_hash(unsigned int *number_ips_stored, uint64_t *mem_ips_stored)
1158 {
1159  struct ip_entry *ptr;
1160  int i;
1161
1162  *number_ips_stored = 0;
1163  *mem_ips_stored    = 0;
1164
1165  for (i = 0; i < IP_HASH_SIZE; i++)
1166  {
1167    for (ptr = ip_hash_table[i]; ptr; ptr = ptr->next)
1168    {
1169      *number_ips_stored += 1;
1170      *mem_ips_stored += sizeof(struct ip_entry);
1171    }
1172  }
1173 }
1174
1175 /* garbage_collect_ip_entries()
1176 *
1177 * input        - NONE
1178 * output       - NONE
1179 * side effects - free up all ip entries with no connections
1180 */
1181 static void
1182 garbage_collect_ip_entries(void)
1183 {
1184  struct ip_entry *ptr;
1185  struct ip_entry *last_ptr;
1186  struct ip_entry *next_ptr;
1187  int i;
1188
1189  for (i = 0; i < IP_HASH_SIZE; i++)
1190  {
1191    last_ptr = NULL;
1192
1193    for (ptr = ip_hash_table[i]; ptr; ptr = next_ptr)
1194    {
1195      next_ptr = ptr->next;
1196
1197      if (ptr->count == 0 &&
1198          (CurrentTime - ptr->last_attempt) >= ConfigFileEntry.throttle_time)
1199      {
1200        if (last_ptr != NULL)
1201          last_ptr->next = ptr->next;
1202        else
1203          ip_hash_table[i] = ptr->next;
1204        BlockHeapFree(ip_entry_heap, ptr);
1205        ip_entries_count--;
1206      }
1207      else
1208        last_ptr = ptr;
1209    }
1210  }
1211 }
1212
399   /* detach_conf()
400   *
401   * inputs       - pointer to client to detach
# Line 1218 | Line 404 | garbage_collect_ip_entries(void)
404   * side effects - Disassociate configuration from the client.
405   *                Also removes a class from the list if marked for deleting.
406   */
407 < int
408 < detach_conf(struct Client *client_p, ConfType type)
407 > void
408 > detach_conf(struct Client *client_p, enum maskitem_type type)
409   {
410 <  dlink_node *ptr, *next_ptr;
1225 <  struct ConfItem *conf;
1226 <  struct ClassItem *aclass;
1227 <  struct AccessItem *aconf;
1228 <  struct ConfItem *aclass_conf;
410 >  dlink_node *ptr = NULL, *ptr_next = NULL;
411  
412 <  DLINK_FOREACH_SAFE(ptr, next_ptr, client_p->localClient->confs.head)
412 >  DLINK_FOREACH_SAFE(ptr, ptr_next, client_p->connection->confs.head)
413    {
414 <    conf = ptr->data;
414 >    struct MaskItem *conf = ptr->data;
415  
416 <    if (type == CONF_TYPE || conf->type == type)
417 <    {
418 <      dlinkDelete(ptr, &client_p->localClient->confs);
1237 <      free_dlink_node(ptr);
416 >    assert(conf->type & (CONF_CLIENT | CONF_OPER | CONF_SERVER));
417 >    assert(conf->ref_count > 0);
418 >    assert(conf->class->ref_count > 0);
419  
420 <      switch (conf->type)
421 <      {
1241 <      case CLIENT_TYPE:
1242 <      case OPER_TYPE:
1243 <      case SERVER_TYPE:
1244 <        aconf = map_to_conf(conf);
1245 <
1246 <        assert(aconf->clients > 0);
1247 <
1248 <        if ((aclass_conf = aconf->class_ptr) != NULL)
1249 <        {
1250 <          aclass = map_to_conf(aclass_conf);
1251 <
1252 <          assert(aclass->curr_user_count > 0);
420 >    if (!(conf->type & type))
421 >      continue;
422  
423 <          if (conf->type == CLIENT_TYPE)
424 <            remove_from_cidr_check(&client_p->localClient->ip, aclass);
1256 <          if (--aclass->curr_user_count == 0 && aclass->active == 0)
1257 <            delete_conf_item(aclass_conf);
1258 <        }
423 >    dlinkDelete(ptr, &client_p->connection->confs);
424 >    free_dlink_node(ptr);
425  
426 <        if (--aconf->clients == 0 && IsConfIllegal(aconf))
427 <          delete_conf_item(conf);
426 >    if (conf->type == CONF_CLIENT)
427 >      remove_from_cidr_check(&client_p->connection->ip, conf->class);
428  
429 <        break;
430 <      default:
431 <        break;
432 <      }
1267 <
1268 <      if (type != CONF_TYPE)
1269 <        return 0;
429 >    if (--conf->class->ref_count == 0 && conf->class->active == 0)
430 >    {
431 >      class_free(conf->class);
432 >      conf->class = NULL;
433      }
1271  }
434  
435 <  return -1;
435 >    if (--conf->ref_count == 0 && conf->active == 0)
436 >      conf_free(conf);
437 >  }
438   }
439  
440   /* attach_conf()
# Line 1284 | Line 448 | detach_conf(struct Client *client_p, Con
448   *                attachment if there was an old one...
449   */
450   int
451 < attach_conf(struct Client *client_p, struct ConfItem *conf)
451 > attach_conf(struct Client *client_p, struct MaskItem *conf)
452   {
453 <  struct AccessItem *aconf = map_to_conf(conf);
1290 <  struct ClassItem *aclass = map_to_conf(aconf->class_ptr);
1291 <
1292 <  if (dlinkFind(&client_p->localClient->confs, conf) != NULL)
453 >  if (dlinkFind(&client_p->connection->confs, conf))
454      return 1;
455  
456 <  if (IsConfIllegal(aconf)) /* TBV: can't happen */
457 <    return NOT_AUTHORIZED;
458 <
1298 <  if (conf->type == CLIENT_TYPE)
1299 <    if (cidr_limit_reached(IsConfExemptLimits(aconf),
1300 <                           &client_p->localClient->ip, aclass))
456 >  if (conf->type == CONF_CLIENT)
457 >    if (cidr_limit_reached(IsConfExemptLimits(conf),
458 >                           &client_p->connection->ip, conf->class))
459        return TOO_MANY;    /* Already at maximum allowed */
460  
461 <  aclass->curr_user_count++;
462 <  aconf->clients++;
461 >  conf->class->ref_count++;
462 >  conf->ref_count++;
463  
464 <  dlinkAdd(conf, make_dlink_node(), &client_p->localClient->confs);
464 >  dlinkAdd(conf, make_dlink_node(), &client_p->connection->confs);
465  
466    return 0;
467   }
# Line 1321 | Line 479 | attach_connect_block(struct Client *clie
479                       const char *host)
480   {
481    dlink_node *ptr;
482 <  struct ConfItem *conf;
1325 <  struct AccessItem *aconf;
482 >  struct MaskItem *conf = NULL;
483  
484    assert(client_p != NULL);
485    assert(host != NULL);
# Line 1333 | Line 490 | attach_connect_block(struct Client *clie
490    DLINK_FOREACH(ptr, server_items.head)
491    {
492      conf = ptr->data;
1336    aconf = map_to_conf(conf);
493  
494 <    if (match(conf->name, name) == 0 || match(aconf->host, host) == 0)
494 >    if (match(conf->name, name) || match(conf->host, host))
495        continue;
496  
497      attach_conf(client_p, conf);
# Line 1345 | Line 501 | attach_connect_block(struct Client *clie
501    return 0;
502   }
503  
1348 /* find_conf_exact()
1349 *
1350 * inputs       - type of ConfItem
1351 *              - pointer to name to find
1352 *              - pointer to username to find
1353 *              - pointer to host to find
1354 * output       - NULL or pointer to conf found
1355 * side effects - find a conf entry which matches the hostname
1356 *                and has the same name.
1357 */
1358 struct ConfItem *
1359 find_conf_exact(ConfType type, const char *name, const char *user,
1360                const char *host)
1361 {
1362  dlink_node *ptr;
1363  dlink_list *list_p;
1364  struct ConfItem *conf = NULL;
1365  struct AccessItem *aconf;
1366
1367  /* Only valid for OPER_TYPE and ...? */
1368  list_p = map_to_list(type);
1369
1370  DLINK_FOREACH(ptr, (*list_p).head)
1371  {
1372    conf = ptr->data;
1373
1374    if (conf->name == NULL)
1375      continue;
1376    aconf = map_to_conf(conf);
1377    if (aconf->host == NULL)
1378      continue;
1379    if (irccmp(conf->name, name) != 0)
1380      continue;
1381
1382    /*
1383    ** Accept if the *real* hostname (usually sockethost)
1384    ** socket host) matches *either* host or name field
1385    ** of the configuration.
1386    */
1387    if (!match(aconf->host, host) || !match(aconf->user, user))
1388      continue;
1389    if (type == OPER_TYPE)
1390    {
1391      struct ClassItem *aclass = map_to_conf(aconf->class_ptr);
1392
1393      if (aconf->clients >= aclass->max_total)
1394        continue;
1395    }
1396
1397    return conf;
1398  }
1399
1400  return NULL;
1401 }
1402
504   /* find_conf_name()
505   *
506   * inputs       - pointer to conf link list to search
# Line 1409 | Line 510 | find_conf_exact(ConfType type, const cha
510   * side effects - find a conf entry which matches the name
511   *                and has the given mask.
512   */
513 < struct ConfItem *
514 < find_conf_name(dlink_list *list, const char *name, ConfType type)
513 > struct MaskItem *
514 > find_conf_name(dlink_list *list, const char *name, enum maskitem_type type)
515   {
516    dlink_node *ptr;
517 <  struct ConfItem* conf;
517 >  struct MaskItem* conf;
518  
519    DLINK_FOREACH(ptr, list->head)
520    {
521      conf = ptr->data;
522 <    
522 >
523      if (conf->type == type)
524      {
525 <      if (conf->name && (irccmp(conf->name, name) == 0 ||
526 <                         match(conf->name, name)))
1426 <      return conf;
525 >      if (conf->name && !irccmp(conf->name, name))
526 >        return conf;
527      }
528    }
529  
# Line 1437 | Line 537 | find_conf_name(dlink_list *list, const c
537   * side effects - none
538   */
539   static dlink_list *
540 < map_to_list(ConfType type)
540 > map_to_list(enum maskitem_type type)
541   {
542    switch(type)
543    {
544 <  case RXLINE_TYPE:
1445 <    return(&rxconf_items);
1446 <    break;
1447 <  case XLINE_TYPE:
544 >  case CONF_XLINE:
545      return(&xconf_items);
546      break;
547 <  case ULINE_TYPE:
547 >  case CONF_ULINE:
548      return(&uconf_items);
549      break;
550 <  case NRESV_TYPE:
550 >  case CONF_NRESV:
551      return(&nresv_items);
552      break;
553 <  case OPER_TYPE:
553 >  case CONF_CRESV:
554 >    return(&cresv_items);
555 >  case CONF_OPER:
556      return(&oconf_items);
557      break;
558 <  case CLASS_TYPE:
1460 <    return(&class_items);
1461 <    break;
1462 <  case SERVER_TYPE:
558 >  case CONF_SERVER:
559      return(&server_items);
560      break;
561 <  case SERVICE_TYPE:
561 >  case CONF_SERVICE:
562      return(&service_items);
563      break;
564 <  case CLUSTER_TYPE:
564 >  case CONF_CLUSTER:
565      return(&cluster_items);
566      break;
1471  case CONF_TYPE:
1472  case GLINE_TYPE:
1473  case KLINE_TYPE:
1474  case DLINE_TYPE:
1475  case CRESV_TYPE:
567    default:
568      return NULL;
569    }
# Line 1484 | Line 575 | map_to_list(ConfType type)
575   *              - pointer to name string to find
576   *              - pointer to user
577   *              - pointer to host
578 < *              - optional action to match on as well
579 < * output       - NULL or pointer to found struct MatchItem
578 > *              - optional flags to match on as well
579 > * output       - NULL or pointer to found struct MaskItem
580   * side effects - looks for a match on name field
581   */
582 < struct ConfItem *
583 < find_matching_name_conf(ConfType type, const char *name, const char *user,
584 <                        const char *host, int action)
582 > struct MaskItem *
583 > find_matching_name_conf(enum maskitem_type type, const char *name, const char *user,
584 >                        const char *host, unsigned int flags)
585   {
586    dlink_node *ptr=NULL;
587 <  struct ConfItem *conf=NULL;
1497 <  struct AccessItem *aconf=NULL;
1498 <  struct MatchItem *match_item=NULL;
587 >  struct MaskItem *conf=NULL;
588    dlink_list *list_p = map_to_list(type);
589  
590    switch (type)
591    {
592 < #ifdef HAVE_LIBPCRE
1504 <  case RXLINE_TYPE:
1505 <      DLINK_FOREACH(ptr, list_p->head)
1506 <      {
1507 <        conf = ptr->data;
1508 <        assert(conf->regexpname);
1509 <
1510 <        if (!ircd_pcre_exec(conf->regexpname, name))
1511 <          return conf;
1512 <      }
1513 <      break;
1514 < #endif
1515 <  case SERVICE_TYPE:
592 >  case CONF_SERVICE:
593      DLINK_FOREACH(ptr, list_p->head)
594      {
595        conf = ptr->data;
# Line 1524 | Line 601 | find_matching_name_conf(ConfType type, c
601      }
602      break;
603  
604 <  case XLINE_TYPE:
605 <  case ULINE_TYPE:
606 <  case NRESV_TYPE:
604 >  case CONF_XLINE:
605 >  case CONF_ULINE:
606 >  case CONF_NRESV:
607 >  case CONF_CRESV:
608      DLINK_FOREACH(ptr, list_p->head)
609      {
610        conf = ptr->data;
611  
1534      match_item = map_to_conf(conf);
612        if (EmptyString(conf->name))
613 <        continue;
614 <      if ((name != NULL) && match_esc(conf->name, name))
613 >        continue;
614 >      if ((name != NULL) && !match(conf->name, name))
615        {
616 <        if ((user == NULL && (host == NULL)))
617 <          return conf;
618 <        if ((match_item->action & action) != action)
616 >        if ((user == NULL && (host == NULL)))
617 >          return conf;
618 >        if ((conf->flags & flags) != flags)
619            continue;
620 <        if (EmptyString(match_item->user) || EmptyString(match_item->host))
621 <          return conf;
622 <        if (match(match_item->user, user) && match(match_item->host, host))
623 <          return conf;
620 >        if (EmptyString(conf->user) || EmptyString(conf->host))
621 >          return conf;
622 >        if (!match(conf->user, user) && !match(conf->host, host))
623 >          return conf;
624        }
625      }
626        break;
627  
628 <  case SERVER_TYPE:
628 >  case CONF_SERVER:
629      DLINK_FOREACH(ptr, list_p->head)
630      {
631        conf = ptr->data;
1555      aconf = map_to_conf(conf);
632  
633 <      if ((name != NULL) && match_esc(name, conf->name))
633 >      if ((name != NULL) && !match(name, conf->name))
634          return conf;
635 <      else if ((host != NULL) && match_esc(host, aconf->host))
635 >      else if ((host != NULL) && !match(host, conf->host))
636          return conf;
637      }
638      break;
639 <  
639 >
640    default:
641      break;
642    }
# Line 1573 | Line 649 | find_matching_name_conf(ConfType type, c
649   *              - pointer to name string to find
650   *              - pointer to user
651   *              - pointer to host
652 < * output       - NULL or pointer to found struct MatchItem
652 > * output       - NULL or pointer to found struct MaskItem
653   * side effects - looks for an exact match on name field
654   */
655 < struct ConfItem *
656 < find_exact_name_conf(ConfType type, const struct Client *who, const char *name,
655 > struct MaskItem *
656 > find_exact_name_conf(enum maskitem_type type, const struct Client *who, const char *name,
657                       const char *user, const char *host)
658   {
659    dlink_node *ptr = NULL;
660 <  struct AccessItem *aconf;
661 <  struct ConfItem *conf;
1586 <  struct MatchItem *match_item;
1587 <  dlink_list *list_p;
1588 <
1589 <  list_p = map_to_list(type);
660 >  struct MaskItem *conf;
661 >  dlink_list *list_p = map_to_list(type);
662  
663    switch(type)
664    {
665 <  case RXLINE_TYPE:
666 <  case XLINE_TYPE:
667 <  case ULINE_TYPE:
668 <  case NRESV_TYPE:
665 >  case CONF_XLINE:
666 >  case CONF_ULINE:
667 >  case CONF_NRESV:
668 >  case CONF_CRESV:
669  
670      DLINK_FOREACH(ptr, list_p->head)
671      {
672        conf = ptr->data;
673 <      match_item = (struct MatchItem *)map_to_conf(conf);
673 >
674        if (EmptyString(conf->name))
675 <        continue;
676 <    
675 >        continue;
676 >
677        if (irccmp(conf->name, name) == 0)
678        {
679 <        if ((user == NULL && (host == NULL)))
680 <          return (conf);
681 <        if (EmptyString(match_item->user) || EmptyString(match_item->host))
682 <          return (conf);
683 <        if (match(match_item->user, user) && match(match_item->host, host))
684 <          return (conf);
679 >        if ((user == NULL && (host == NULL)))
680 >          return conf;
681 >        if (EmptyString(conf->user) || EmptyString(conf->host))
682 >          return conf;
683 >        if (!match(conf->user, user) && !match(conf->host, host))
684 >          return conf;
685        }
686      }
687      break;
688  
689 <  case OPER_TYPE:
689 >  case CONF_OPER:
690      DLINK_FOREACH(ptr, list_p->head)
691      {
692        conf = ptr->data;
1621      aconf = map_to_conf(conf);
693  
694        if (EmptyString(conf->name))
695          continue;
# Line 1627 | Line 698 | find_exact_name_conf(ConfType type, cons
698        {
699          if (!who)
700            return conf;
701 <        if (EmptyString(aconf->user) || EmptyString(aconf->host))
702 <          return conf;
703 <        if (match(aconf->user, who->username))
701 >        if (EmptyString(conf->user) || EmptyString(conf->host))
702 >          return NULL;
703 >        if (!match(conf->user, who->username))
704          {
705 <          switch (aconf->type)
705 >          switch (conf->htype)
706            {
707              case HM_HOST:
708 <              if (match(aconf->host, who->host) || match(aconf->host, who->sockhost))
709 <                return conf;
708 >              if (!match(conf->host, who->host) || !match(conf->host, who->sockhost))
709 >                if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
710 >                  return conf;
711                break;
712              case HM_IPV4:
713 <              if (who->localClient->aftype == AF_INET)
714 <                if (match_ipv4(&who->localClient->ip, &aconf->addr, aconf->bits))
715 <                  return conf;
713 >              if (who->connection->aftype == AF_INET)
714 >                if (match_ipv4(&who->connection->ip, &conf->addr, conf->bits))
715 >                  if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
716 >                    return conf;
717                break;
1645 #ifdef IPV6
718              case HM_IPV6:
719 <              if (who->localClient->aftype == AF_INET6)
720 <                if (match_ipv6(&who->localClient->ip, &aconf->addr, aconf->bits))
721 <                  return conf;
719 >              if (who->connection->aftype == AF_INET6)
720 >                if (match_ipv6(&who->connection->ip, &conf->addr, conf->bits))
721 >                  if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
722 >                    return conf;
723                break;
1651 #endif
724              default:
725                assert(0);
726            }
# Line 1658 | Line 730 | find_exact_name_conf(ConfType type, cons
730  
731      break;
732  
733 <  case SERVER_TYPE:
733 >  case CONF_SERVER:
734      DLINK_FOREACH(ptr, list_p->head)
735      {
736        conf = ptr->data;
737 <      aconf = (struct AccessItem *)map_to_conf(conf);
737 >
738        if (EmptyString(conf->name))
739 <        continue;
740 <    
739 >        continue;
740 >
741        if (name == NULL)
742        {
743 <        if (EmptyString(aconf->host))
744 <          continue;
745 <        if (irccmp(aconf->host, host) == 0)
746 <          return(conf);
743 >        if (EmptyString(conf->host))
744 >          continue;
745 >        if (irccmp(conf->host, host) == 0)
746 >          return conf;
747        }
748        else if (irccmp(conf->name, name) == 0)
749 <      {
1678 <          return (conf);
1679 <      }
749 >        return conf;
750      }
1681    break;
751  
1683  case CLASS_TYPE:
1684    DLINK_FOREACH(ptr, list_p->head)
1685    {
1686      conf = ptr->data;
1687      if (EmptyString(conf->name))
1688        continue;
1689    
1690      if (irccmp(conf->name, name) == 0)
1691        return (conf);
1692    }
752      break;
753  
754    default:
755      break;
756    }
757 <  return(NULL);
757 >
758 >  return NULL;
759   }
760  
761   /* rehash()
# Line 1707 | Line 767 | find_exact_name_conf(ConfType type, cons
767   int
768   rehash(int sig)
769   {
770 <  if (sig != 0)
771 <    sendto_realops_flags(UMODE_ALL, L_ALL,
772 <                         "Got signal SIGHUP, reloading ircd.conf file");
770 >  if (sig)
771 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
772 >                         "Got signal SIGHUP, reloading configuration file(s)");
773  
774    restart_resolver();
775  
776    /* don't close listeners until we know we can go ahead with the rehash */
777  
1718  /* Check to see if we magically got(or lost) IPv6 support */
1719  check_can_use_v6();
1720
778    read_conf_files(0);
779  
1723  if (ServerInfo.description != NULL)
1724    strlcpy(me.info, ServerInfo.description, sizeof(me.info));
1725
780    load_conf_modules();
781 +  check_conf_klines();
782  
783 <  flush_deleted_I_P();
1729 <
1730 <  rehashed_klines = 1;
1731 < /* XXX */
1732 <  if (ConfigLoggingEntry.use_logging)
1733 <    log_close_all();
1734 <
1735 <  return(0);
783 >  return 0;
784   }
785  
786   /* set_default_conf()
# Line 1750 | Line 798 | set_default_conf(void)
798    /* verify init_class() ran, this should be an unnecessary check
799     * but its not much work.
800     */
801 <  assert(class_default == (struct ConfItem *) class_items.tail->data);
801 >  assert(class_default == class_get_list()->tail->data);
802  
803   #ifdef HAVE_LIBCRYPTO
804 <  ServerInfo.rsa_private_key = NULL;
805 <  ServerInfo.rsa_private_key_file = NULL;
804 > #if OPENSSL_VERSION_NUMBER >= 0x009080FFL && !defined(OPENSSL_NO_ECDH)
805 >  {
806 >    EC_KEY *key = EC_KEY_new_by_curve_name(NID_X9_62_prime256v1);
807 >
808 >    if (key)
809 >    {
810 >      SSL_CTX_set_tmp_ecdh(ConfigServerInfo.server_ctx, key);
811 >      EC_KEY_free(key);
812 >    }
813 >  }
814 >
815 >  SSL_CTX_set_options(ConfigServerInfo.server_ctx, SSL_OP_SINGLE_ECDH_USE);
816   #endif
817  
818 <  /* ServerInfo.name is not rehashable */
819 <  /* ServerInfo.name = ServerInfo.name; */
820 <  ServerInfo.description = NULL;
821 <  DupString(ServerInfo.network_name, NETWORK_NAME_DEFAULT);
822 <  DupString(ServerInfo.network_desc, NETWORK_DESC_DEFAULT);
823 <
824 <  memset(&ServerInfo.ip, 0, sizeof(ServerInfo.ip));
825 <  ServerInfo.specific_ipv4_vhost = 0;
826 <  memset(&ServerInfo.ip6, 0, sizeof(ServerInfo.ip6));
827 <  ServerInfo.specific_ipv6_vhost = 0;
828 <
829 <  ServerInfo.max_clients = MAXCLIENTS_MAX;
830 <
831 <  ServerInfo.hub = 0;
832 <  ServerInfo.dns_host.sin_addr.s_addr = 0;
833 <  ServerInfo.dns_host.sin_port = 0;
834 <  AdminInfo.name = NULL;
835 <  AdminInfo.email = NULL;
836 <  AdminInfo.description = NULL;
818 >  ConfigServerInfo.message_digest_algorithm = EVP_sha256();
819 >  ConfigServerInfo.rsa_private_key = NULL;
820 >  ConfigServerInfo.rsa_private_key_file = NULL;
821 > #endif
822 >
823 >  /* ConfigServerInfo.name is not rehashable */
824 >  /* ConfigServerInfo.name = ConfigServerInfo.name; */
825 >  ConfigServerInfo.description = NULL;
826 >  ConfigServerInfo.network_name = xstrdup(NETWORK_NAME_DEFAULT);
827 >  ConfigServerInfo.network_desc = xstrdup(NETWORK_DESC_DEFAULT);
828 >
829 >  memset(&ConfigServerInfo.ip, 0, sizeof(ConfigServerInfo.ip));
830 >  ConfigServerInfo.specific_ipv4_vhost = 0;
831 >  memset(&ConfigServerInfo.ip6, 0, sizeof(ConfigServerInfo.ip6));
832 >  ConfigServerInfo.specific_ipv6_vhost = 0;
833 >
834 >  ConfigServerInfo.max_clients = MAXCLIENTS_MAX;
835 >  ConfigServerInfo.max_nick_length = 9;
836 >  ConfigServerInfo.max_topic_length = 80;
837 >  ConfigServerInfo.hub = 0;
838 >
839 >  ConfigAdminInfo.name = NULL;
840 >  ConfigAdminInfo.email = NULL;
841 >  ConfigAdminInfo.description = NULL;
842  
843 <  log_close_all();
843 >  log_del_all();
844  
845 <  ConfigLoggingEntry.use_logging = 1;
845 >  ConfigLog.use_logging = 1;
846  
847    ConfigChannel.disable_fake_channels = 0;
848 <  ConfigChannel.restrict_channels = 0;
849 <  ConfigChannel.knock_delay = 300;
848 >  ConfigChannel.invite_client_count = 10;
849 >  ConfigChannel.invite_client_time = 300;
850 >  ConfigChannel.knock_client_count = 1;
851 >  ConfigChannel.knock_client_time = 300;
852    ConfigChannel.knock_delay_channel = 60;
853 <  ConfigChannel.max_chans_per_user = 25;
1789 <  ConfigChannel.max_chans_per_oper = 50;
1790 <  ConfigChannel.quiet_on_ban = 1;
853 >  ConfigChannel.max_channels = 25;
854    ConfigChannel.max_bans = 25;
855    ConfigChannel.default_split_user_count = 0;
856    ConfigChannel.default_split_server_count = 0;
# Line 1798 | Line 861 | set_default_conf(void)
861    ConfigServerHide.links_delay = 300;
862    ConfigServerHide.hidden = 0;
863    ConfigServerHide.hide_servers = 0;
864 <  DupString(ConfigServerHide.hidden_name, NETWORK_NAME_DEFAULT);
864 >  ConfigServerHide.hide_services = 0;
865 >  ConfigServerHide.hidden_name = xstrdup(NETWORK_NAME_DEFAULT);
866    ConfigServerHide.hide_server_ips = 0;
867 +  ConfigServerHide.disable_remote_commands = 0;
868  
869 <  
870 <  DupString(ConfigFileEntry.service_name, SERVICE_NAME_DEFAULT);
871 <  ConfigFileEntry.max_watch = WATCHSIZE_DEFAULT;
872 <  ConfigFileEntry.glines = 0;
873 <  ConfigFileEntry.gline_time = 12 * 3600;
874 <  ConfigFileEntry.gline_request_time = GLINE_REQUEST_EXPIRE_DEFAULT;
875 <  ConfigFileEntry.gline_min_cidr = 16;
876 <  ConfigFileEntry.gline_min_cidr6 = 48;
877 <  ConfigFileEntry.invisible_on_connect = 1;
878 <  ConfigFileEntry.use_whois_actually = 1;
879 <  ConfigFileEntry.tkline_expire_notices = 1;
880 <  ConfigFileEntry.hide_spoof_ips = 1;
881 <  ConfigFileEntry.ignore_bogus_ts = 0;
882 <  ConfigFileEntry.disable_auth = 0;
883 <  ConfigFileEntry.disable_remote = 0;
884 <  ConfigFileEntry.kill_chase_time_limit = 90;
885 <  ConfigFileEntry.default_floodcount = 8;
886 <  ConfigFileEntry.failed_oper_notice = 1;
887 <  ConfigFileEntry.dots_in_ident = 0;
888 <  ConfigFileEntry.min_nonwildcard = 4;
889 <  ConfigFileEntry.min_nonwildcard_simple = 3;
890 <  ConfigFileEntry.max_accept = 20;
891 <  ConfigFileEntry.anti_nick_flood = 0;
892 <  ConfigFileEntry.max_nick_time = 20;
893 <  ConfigFileEntry.max_nick_changes = 5;
894 <  ConfigFileEntry.anti_spam_exit_message_time = 0;
895 <  ConfigFileEntry.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
896 <  ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;
897 <  ConfigFileEntry.kline_with_reason = 1;
898 <  ConfigFileEntry.kline_reason = NULL;
899 <  ConfigFileEntry.warn_no_nline = 1;
900 <  ConfigFileEntry.stats_o_oper_only = 0;
901 <  ConfigFileEntry.stats_k_oper_only = 1;  /* masked */
902 <  ConfigFileEntry.stats_i_oper_only = 1;  /* masked */
903 <  ConfigFileEntry.stats_P_oper_only = 0;
904 <  ConfigFileEntry.caller_id_wait = 60;
905 <  ConfigFileEntry.opers_bypass_callerid = 0;
906 <  ConfigFileEntry.pace_wait = 10;
907 <  ConfigFileEntry.pace_wait_simple = 1;
908 <  ConfigFileEntry.short_motd = 0;
909 <  ConfigFileEntry.ping_cookie = 0;
910 <  ConfigFileEntry.no_oper_flood = 0;
911 <  ConfigFileEntry.true_no_oper_flood = 0;
912 <  ConfigFileEntry.oper_pass_resv = 1;
913 <  ConfigFileEntry.max_targets = MAX_TARGETS_DEFAULT;
914 <  ConfigFileEntry.oper_only_umodes = UMODE_DEBUG;
915 <  ConfigFileEntry.oper_umodes = UMODE_BOTS | UMODE_LOCOPS | UMODE_SERVNOTICE |
916 <    UMODE_OPERWALL | UMODE_WALLOP;
1852 <  ConfigFileEntry.use_egd = 0;
1853 <  ConfigFileEntry.egdpool_path = NULL;
1854 <  ConfigFileEntry.throttle_time = 10;
869 >  ConfigGeneral.away_count = 2;
870 >  ConfigGeneral.away_time = 10;
871 >  ConfigGeneral.max_watch = WATCHSIZE_DEFAULT;
872 >  ConfigGeneral.cycle_on_host_change = 1;
873 >  ConfigGeneral.glines = 0;
874 >  ConfigGeneral.gline_time = 12 * 3600;
875 >  ConfigGeneral.gline_request_time = GLINE_REQUEST_EXPIRE_DEFAULT;
876 >  ConfigGeneral.gline_min_cidr = 16;
877 >  ConfigGeneral.gline_min_cidr6 = 48;
878 >  ConfigGeneral.invisible_on_connect = 1;
879 >  ConfigGeneral.tkline_expire_notices = 1;
880 >  ConfigGeneral.hide_spoof_ips = 1;
881 >  ConfigGeneral.ignore_bogus_ts = 0;
882 >  ConfigGeneral.disable_auth = 0;
883 >  ConfigGeneral.kill_chase_time_limit = 90;
884 >  ConfigGeneral.default_floodcount = 8;
885 >  ConfigGeneral.failed_oper_notice = 1;
886 >  ConfigGeneral.dots_in_ident = 0;
887 >  ConfigGeneral.min_nonwildcard = 4;
888 >  ConfigGeneral.min_nonwildcard_simple = 3;
889 >  ConfigGeneral.max_accept = 20;
890 >  ConfigGeneral.anti_nick_flood = 0;
891 >  ConfigGeneral.max_nick_time = 20;
892 >  ConfigGeneral.max_nick_changes = 5;
893 >  ConfigGeneral.anti_spam_exit_message_time = 0;
894 >  ConfigGeneral.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
895 >  ConfigGeneral.ts_max_delta = TS_MAX_DELTA_DEFAULT;
896 >  ConfigGeneral.warn_no_connect_block = 1;
897 >  ConfigGeneral.stats_e_disabled = 0;
898 >  ConfigGeneral.stats_o_oper_only = 0;
899 >  ConfigGeneral.stats_k_oper_only = 1;  /* 1 = masked */
900 >  ConfigGeneral.stats_i_oper_only = 1;  /* 1 = masked */
901 >  ConfigGeneral.stats_P_oper_only = 0;
902 >  ConfigGeneral.stats_u_oper_only = 0;
903 >  ConfigGeneral.caller_id_wait = 60;
904 >  ConfigGeneral.opers_bypass_callerid = 0;
905 >  ConfigGeneral.pace_wait = 10;
906 >  ConfigGeneral.pace_wait_simple = 1;
907 >  ConfigGeneral.short_motd = 0;
908 >  ConfigGeneral.ping_cookie = 0;
909 >  ConfigGeneral.no_oper_flood = 0;
910 >  ConfigGeneral.true_no_oper_flood = 0;
911 >  ConfigGeneral.oper_pass_resv = 1;
912 >  ConfigGeneral.max_targets = MAX_TARGETS_DEFAULT;
913 >  ConfigGeneral.oper_only_umodes = UMODE_DEBUG;
914 >  ConfigGeneral.oper_umodes = UMODE_BOTS | UMODE_LOCOPS | UMODE_SERVNOTICE | UMODE_WALLOP;
915 >  ConfigGeneral.throttle_count = 1;
916 >  ConfigGeneral.throttle_time = 1;
917   }
918  
919   static void
920   validate_conf(void)
921   {
922 <  if (ConfigFileEntry.ts_warn_delta < TS_WARN_DELTA_MIN)
923 <    ConfigFileEntry.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
922 >  if (ConfigGeneral.ts_warn_delta < TS_WARN_DELTA_MIN)
923 >    ConfigGeneral.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
924  
925 <  if (ConfigFileEntry.ts_max_delta < TS_MAX_DELTA_MIN)
926 <    ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;
925 >  if (ConfigGeneral.ts_max_delta < TS_MAX_DELTA_MIN)
926 >    ConfigGeneral.ts_max_delta = TS_MAX_DELTA_DEFAULT;
927  
928 <  if (ServerInfo.network_name == NULL)
929 <    DupString(ServerInfo.network_name,NETWORK_NAME_DEFAULT);
928 >  if (ConfigServerInfo.network_name == NULL)
929 >    ConfigServerInfo.network_name = xstrdup(NETWORK_NAME_DEFAULT);
930  
931 <  if (ServerInfo.network_desc == NULL)
932 <    DupString(ServerInfo.network_desc,NETWORK_DESC_DEFAULT);
931 >  if (ConfigServerInfo.network_desc == NULL)
932 >    ConfigServerInfo.network_desc = xstrdup(NETWORK_DESC_DEFAULT);
933  
934 <  if (ConfigFileEntry.service_name == NULL)
1873 <    DupString(ConfigFileEntry.service_name, SERVICE_NAME_DEFAULT);
1874 <
1875 <  ConfigFileEntry.max_watch = IRCD_MAX(ConfigFileEntry.max_watch, WATCHSIZE_MIN);
934 >  ConfigGeneral.max_watch = IRCD_MAX(ConfigGeneral.max_watch, WATCHSIZE_MIN);
935   }
936  
937 < /* read_conf()
937 > /* read_conf()
938   *
939   * inputs       - file descriptor pointing to config file to use
940   * output       - None
# Line 1886 | Line 945 | read_conf(FILE *file)
945   {
946    lineno = 0;
947  
948 <  set_default_conf(); /* Set default values prior to conf parsing */
948 >  set_default_conf();  /* Set default values prior to conf parsing */
949    conf_parser_ctx.pass = 1;
950 <  yyparse();          /* pick up the classes first */
950 >  yyparse();  /* Pick up the classes first */
951  
952    rewind(file);
953  
954    conf_parser_ctx.pass = 2;
955 <  yyparse();          /* Load the values from the conf */
956 <  validate_conf();    /* Check to make sure some values are still okay. */
957 <                      /* Some global values are also loaded here. */
958 <  check_class();      /* Make sure classes are valid */
955 >  yyparse();  /* Load the values from the conf */
956 >  validate_conf();  /* Check to make sure some values are still okay. */
957 >                    /* Some global values are also loaded here. */
958 >  class_delete_marked();  /* Delete unused classes that are marked for deletion */
959   }
960  
961   /* lookup_confhost()
# Line 1904 | Line 963 | read_conf(FILE *file)
963   * start DNS lookups of all hostnames in the conf
964   * line and convert an IP addresses in a.b.c.d number for to IP#s.
965   */
966 < static void
967 < lookup_confhost(struct ConfItem *conf)
966 > void
967 > lookup_confhost(struct MaskItem *conf)
968   {
1910  struct AccessItem *aconf;
969    struct addrinfo hints, *res;
970  
971 <  aconf = map_to_conf(conf);
972 <
1915 <  if (has_wildcards(aconf->host))
1916 <  {
1917 <    ilog(LOG_TYPE_IRCD, "Host/server name error: (%s) (%s)",
1918 <         aconf->host, conf->name);
1919 <    return;
1920 <  }
1921 <
1922 <  /* Do name lookup now on hostnames given and store the
971 >  /*
972 >   * Do name lookup now on hostnames given and store the
973     * ip numbers in conf structure.
974     */
975    memset(&hints, 0, sizeof(hints));
# Line 1930 | Line 980 | lookup_confhost(struct ConfItem *conf)
980    /* Get us ready for a bind() and don't bother doing dns lookup */
981    hints.ai_flags = AI_PASSIVE | AI_NUMERICHOST;
982  
983 <  if (getaddrinfo(aconf->host, NULL, &hints, &res))
983 >  if (getaddrinfo(conf->host, NULL, &hints, &res))
984    {
985 <    conf_dns_lookup(aconf);
985 >    conf_dns_lookup(conf);
986      return;
987    }
988  
989 <  assert(res != NULL);
989 >  assert(res);
990 >
991 >  memcpy(&conf->addr, res->ai_addr, res->ai_addrlen);
992 >  conf->addr.ss_len = res->ai_addrlen;
993 >  conf->addr.ss.ss_family = res->ai_family;
994  
1941  memcpy(&aconf->addr, res->ai_addr, res->ai_addrlen);
1942  aconf->addr.ss_len = res->ai_addrlen;
1943  aconf->addr.ss.ss_family = res->ai_family;
995    freeaddrinfo(res);
996   }
997  
# Line 1954 | Line 1005 | lookup_confhost(struct ConfItem *conf)
1005   int
1006   conf_connect_allowed(struct irc_ssaddr *addr, int aftype)
1007   {
1008 <  struct ip_entry *ip_found;
1009 <  struct AccessItem *aconf = find_dline_conf(addr, aftype);
1008 >  struct ip_entry *ip_found = NULL;
1009 >  struct MaskItem *conf = find_dline_conf(addr, aftype);
1010  
1011    /* DLINE exempt also gets you out of static limits/pacing... */
1012 <  if (aconf && (aconf->status & CONF_EXEMPTDLINE))
1012 >  if (conf && (conf->type == CONF_EXEMPT))
1013      return 0;
1014  
1015 <  if (aconf != NULL)
1015 >  if (conf)
1016      return BANNED_CLIENT;
1017  
1018 <  ip_found = find_or_add_ip(addr);
1018 >  ip_found = ipcache_find_or_add_address(addr);
1019  
1020 <  if ((CurrentTime - ip_found->last_attempt) <
1970 <      ConfigFileEntry.throttle_time)
1020 >  if ((CurrentTime - ip_found->last_attempt) < ConfigGeneral.throttle_time)
1021    {
1022 <    ip_found->last_attempt = CurrentTime;
1023 <    return TOO_FAST;
1022 >    if (ip_found->connection_count >= ConfigGeneral.throttle_count)
1023 >      return TOO_FAST;
1024 >
1025 >    ++ip_found->connection_count;
1026    }
1027 +  else
1028 +    ip_found->connection_count = 1;
1029  
1030    ip_found->last_attempt = CurrentTime;
1031    return 0;
1032   }
1033  
1980 static struct AccessItem *
1981 find_regexp_kline(const char *uhi[])
1982 {
1983 #ifdef HAVE_LIBPCRE
1984  const dlink_node *ptr = NULL;
1985
1986  DLINK_FOREACH(ptr, rkconf_items.head)
1987  {
1988    struct AccessItem *aptr = map_to_conf(ptr->data);
1989
1990    assert(aptr->regexuser);
1991    assert(aptr->regexhost);
1992
1993    if (!ircd_pcre_exec(aptr->regexuser, uhi[0]) &&
1994        (!ircd_pcre_exec(aptr->regexhost, uhi[1]) ||
1995         !ircd_pcre_exec(aptr->regexhost, uhi[2])))
1996      return aptr;
1997  }
1998 #endif
1999  return NULL;
2000 }
2001
2002 /* find_kill()
2003 *
2004 * inputs       - pointer to client structure
2005 * output       - pointer to struct AccessItem if found
2006 * side effects - See if this user is klined already,
2007 *                and if so, return struct AccessItem pointer
2008 */
2009 struct AccessItem *
2010 find_kill(struct Client *client_p)
2011 {
2012  struct AccessItem *aconf = NULL;
2013  const char *uhi[3];
2014
2015  uhi[0] = client_p->username;
2016  uhi[1] = client_p->host;
2017  uhi[2] = client_p->sockhost;
2018
2019  assert(client_p != NULL);
2020
2021  aconf = find_conf_by_address(client_p->host, &client_p->localClient->ip,
2022                               CONF_KLINE, client_p->localClient->aftype,
2023                               client_p->username, NULL, 1);
2024  if (aconf == NULL)
2025    aconf = find_regexp_kline(uhi);
2026
2027  return aconf;
2028 }
2029
2030 struct AccessItem *
2031 find_gline(struct Client *client_p)
2032 {
2033  struct AccessItem *aconf;
2034
2035  assert(client_p != NULL);
2036
2037  aconf = find_conf_by_address(client_p->host, &client_p->localClient->ip,
2038                               CONF_GLINE, client_p->localClient->aftype,
2039                               client_p->username, NULL, 1);
2040  return aconf;
2041 }
2042
2043 /* add_temp_line()
2044 *
2045 * inputs        - pointer to struct ConfItem
2046 * output        - none
2047 * Side effects  - links in given struct ConfItem into
2048 *                 temporary *line link list
2049 */
2050 void
2051 add_temp_line(struct ConfItem *conf)
2052 {
2053  if (conf->type == XLINE_TYPE)
2054  {
2055    conf->flags |= CONF_FLAGS_TEMPORARY;
2056    dlinkAdd(conf, make_dlink_node(), &temporary_xlines);
2057  }
2058  else if ((conf->type == NRESV_TYPE) || (conf->type == CRESV_TYPE))
2059  {
2060    conf->flags |= CONF_FLAGS_TEMPORARY;
2061    dlinkAdd(conf, make_dlink_node(), &temporary_resv);
2062  }
2063 }
2064
1034   /* cleanup_tklines()
1035   *
1036   * inputs       - NONE
# Line 2070 | Line 1039 | add_temp_line(struct ConfItem *conf)
1039   *                This is an event started off in ircd.c
1040   */
1041   void
1042 < cleanup_tklines(void *notused)
1042 > cleanup_tklines(void *unused)
1043   {
1044    hostmask_expire_temporary();
1045 <  expire_tklines(&temporary_xlines);
1046 <  expire_tklines(&temporary_resv);
1045 >  expire_tklines(&xconf_items);
1046 >  expire_tklines(&nresv_items);
1047 >  expire_tklines(&cresv_items);
1048   }
1049  
1050   /* expire_tklines()
# Line 2086 | Line 1056 | cleanup_tklines(void *notused)
1056   static void
1057   expire_tklines(dlink_list *tklist)
1058   {
1059 <  dlink_node *ptr;
1060 <  dlink_node *next_ptr;
2091 <  struct ConfItem *conf;
2092 <  struct MatchItem *xconf;
2093 <  struct MatchItem *nconf;
2094 <  struct ResvChannel *cconf;
1059 >  dlink_node *ptr = NULL, *ptr_next = NULL;
1060 >  struct MaskItem *conf = NULL;
1061  
1062 <  DLINK_FOREACH_SAFE(ptr, next_ptr, tklist->head)
1062 >  DLINK_FOREACH_SAFE(ptr, ptr_next, tklist->head)
1063    {
1064      conf = ptr->data;
1065  
1066 <    if (conf->type == XLINE_TYPE)
1066 >    if (!conf->until || conf->until > CurrentTime)
1067 >      continue;
1068 >
1069 >    if (conf->type == CONF_XLINE)
1070      {
1071 <      xconf = (struct MatchItem *)map_to_conf(conf);
1072 <      if (xconf->hold <= CurrentTime)
1073 <      {
1074 <        if (ConfigFileEntry.tkline_expire_notices)
2106 <          sendto_realops_flags(UMODE_ALL, L_ALL,
2107 <                               "Temporary X-line for [%s] sexpired", conf->name);
2108 <        dlinkDelete(ptr, tklist);
2109 <        free_dlink_node(ptr);
2110 <        delete_conf_item(conf);
2111 <      }
1071 >      if (ConfigGeneral.tkline_expire_notices)
1072 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1073 >                               "Temporary X-line for [%s] expired", conf->name);
1074 >      conf_free(conf);
1075      }
1076 <    else if (conf->type == NRESV_TYPE)
1076 >    else if (conf->type == CONF_NRESV || conf->type == CONF_CRESV)
1077      {
1078 <      nconf = (struct MatchItem *)map_to_conf(conf);
1079 <      if (nconf->hold <= CurrentTime)
2117 <      {
2118 <        if (ConfigFileEntry.tkline_expire_notices)
2119 <          sendto_realops_flags(UMODE_ALL, L_ALL,
1078 >      if (ConfigGeneral.tkline_expire_notices)
1079 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1080                                 "Temporary RESV for [%s] expired", conf->name);
1081 <        dlinkDelete(ptr, tklist);
2122 <        free_dlink_node(ptr);
2123 <        delete_conf_item(conf);
2124 <      }
2125 <    }
2126 <    else if (conf->type == CRESV_TYPE)
2127 <    {
2128 <      cconf = (struct ResvChannel *)map_to_conf(conf);
2129 <      if (cconf->hold <= CurrentTime)
2130 <      {
2131 <        if (ConfigFileEntry.tkline_expire_notices)
2132 <          sendto_realops_flags(UMODE_ALL, L_ALL,
2133 <                               "Temporary RESV for [%s] expired", cconf->name);
2134 <        delete_channel_resv(cconf);
2135 <      }
1081 >      conf_free(conf);
1082      }
1083    }
1084   }
# Line 2145 | Line 1091 | expire_tklines(dlink_list *tklist)
1091   */
1092   static const struct oper_privs
1093   {
1094 <  const unsigned int oprivs;
1094 >  const unsigned int flag;
1095    const unsigned char c;
1096   } flag_list[] = {
1097 <  { OPER_FLAG_ADMIN,       'A' },
1098 <  { OPER_FLAG_REMOTEBAN,   'B' },
1099 <  { OPER_FLAG_DIE,         'D' },
1100 <  { OPER_FLAG_GLINE,       'G' },
1101 <  { OPER_FLAG_REHASH,      'H' },
1102 <  { OPER_FLAG_K,           'K' },
1103 <  { OPER_FLAG_OPERWALL,    'L' },
1104 <  { OPER_FLAG_N,           'N' },
1105 <  { OPER_FLAG_GLOBAL_KILL, 'O' },
1106 <  { OPER_FLAG_REMOTE,      'R' },
1107 <  { OPER_FLAG_OPER_SPY,    'S' },
1108 <  { OPER_FLAG_UNKLINE,     'U' },
1109 <  { OPER_FLAG_X,           'X' },
1097 >  { OPER_FLAG_ADMIN,          'A' },
1098 >  { OPER_FLAG_REMOTEBAN,      'B' },
1099 >  { OPER_FLAG_DIE,            'D' },
1100 >  { OPER_FLAG_GLINE,          'G' },
1101 >  { OPER_FLAG_REHASH,         'H' },
1102 >  { OPER_FLAG_KLINE,          'K' },
1103 >  { OPER_FLAG_KILL,           'N' },
1104 >  { OPER_FLAG_KILL_REMOTE,    'O' },
1105 >  { OPER_FLAG_CONNECT,        'P' },
1106 >  { OPER_FLAG_CONNECT_REMOTE, 'Q' },
1107 >  { OPER_FLAG_SQUIT,          'R' },
1108 >  { OPER_FLAG_SQUIT_REMOTE,   'S' },
1109 >  { OPER_FLAG_UNKLINE,        'U' },
1110 >  { OPER_FLAG_XLINE,          'X' },
1111    { 0, '\0' }
1112   };
1113  
1114   char *
1115   oper_privs_as_string(const unsigned int port)
1116   {
1117 <  static char privs_out[16];
1117 >  static char privs_out[IRCD_BUFSIZE];
1118    char *privs_ptr = privs_out;
2172  unsigned int i = 0;
1119  
1120 <  for (; flag_list[i].oprivs; ++i)
1120 >  for (const struct oper_privs *opriv = flag_list; opriv->flag; ++opriv)
1121    {
1122 <    if (port & flag_list[i].oprivs)
1123 <      *privs_ptr++ = flag_list[i].c;
1122 >    if (port & opriv->flag)
1123 >      *privs_ptr++ = opriv->c;
1124      else
1125 <      *privs_ptr++ = ToLowerTab[flag_list[i].c];
1125 >      *privs_ptr++ = ToLower(opriv->c);
1126    }
1127  
1128    *privs_ptr = '\0';
# Line 2185 | Line 1131 | oper_privs_as_string(const unsigned int
1131   }
1132  
1133   /*
1134 < * Input: A client to find the active oper{} name for.
1134 > * Input: A client to find the active operator {} name for.
1135   * Output: The nick!user@host{oper} of the oper.
1136   *         "oper" is server name for remote opers
1137   * Side effects: None.
# Line 2193 | Line 1139 | oper_privs_as_string(const unsigned int
1139   const char *
1140   get_oper_name(const struct Client *client_p)
1141   {
1142 <  dlink_node *cnode = NULL;
1142 >  const dlink_node *cnode = NULL;
1143    /* +5 for !,@,{,} and null */
1144    static char buffer[NICKLEN + USERLEN + HOSTLEN + HOSTLEN + 5];
1145  
1146 +  if (IsServer(client_p))
1147 +    return client_p->name;
1148 +
1149    if (MyConnect(client_p))
1150    {
1151 <    if ((cnode = client_p->localClient->confs.head))
1151 >    if ((cnode = client_p->connection->confs.head))
1152      {
1153 <      struct ConfItem *conf = cnode->data;
2205 <      const struct AccessItem *aconf = map_to_conf(conf);
1153 >      const struct MaskItem *conf = cnode->data;
1154  
1155 <      if (IsConfOperator(aconf))
1155 >      if (IsConfOperator(conf))
1156        {
1157 <        snprintf(buffer, sizeof(buffer), "%s!%s@%s{%s}", client_p->name,
1157 >        snprintf(buffer, sizeof(buffer), "%s!%s@%s{%s}", client_p->name,
1158                   client_p->username, client_p->host, conf->name);
1159 <        return buffer;
1159 >        return buffer;
1160        }
1161      }
1162  
1163 <    /* Probably should assert here for now. If there is an oper out there
1164 <     * with no oper{} conf attached, it would be good for us to know...
1163 >    /*
1164 >     * Probably should assert here for now. If there is an oper out there
1165 >     * with no operator {} conf attached, it would be good for us to know...
1166       */
1167 <    assert(0); /* Oper without oper conf! */
1167 >    assert(0);  /* Oper without oper conf! */
1168    }
1169  
1170    snprintf(buffer, sizeof(buffer), "%s!%s@%s{%s}", client_p->name,
1171 <           client_p->username, client_p->host, client_p->servptr->name);
1171 >           client_p->username, client_p->host, client_p->servptr->name);
1172    return buffer;
1173   }
1174  
# Line 2232 | Line 1181 | get_oper_name(const struct Client *clien
1181   void
1182   read_conf_files(int cold)
1183   {
1184 <  const char *filename;
1185 <  char chanmodes[32];
1186 <  char chanlimit[32];
1184 >  const char *filename = NULL;
1185 >  char chanmodes[IRCD_BUFSIZE] = "";
1186 >  char chanlimit[IRCD_BUFSIZE] = "";
1187  
1188    conf_parser_ctx.boot = cold;
1189 <  filename = get_conf_name(CONF_TYPE);
1189 >  filename = ConfigGeneral.configfile;
1190  
1191    /* We need to know the initial filename for the yyerror() to report
1192       FIXME: The full path is in conffilenamebuf first time since we
1193 <             dont know anything else
1193 >             don't know anything else
1194  
1195 <     - Gozem 2002-07-21
1195 >     - Gozem 2002-07-21
1196    */
1197    strlcpy(conffilebuf, filename, sizeof(conffilebuf));
1198  
# Line 2257 | Line 1206 | read_conf_files(int cold)
1206      }
1207      else
1208      {
1209 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1210 <                           "Unable to read configuration file '%s': %s",
1211 <                           filename, strerror(errno));
1209 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1210 >                           "Unable to read configuration file '%s': %s",
1211 >                           filename, strerror(errno));
1212        return;
1213      }
1214    }
# Line 2270 | Line 1219 | read_conf_files(int cold)
1219    read_conf(conf_parser_ctx.conf_file);
1220    fclose(conf_parser_ctx.conf_file);
1221  
1222 <  add_isupport("NETWORK", ServerInfo.network_name, -1);
2274 <  snprintf(chanmodes, sizeof(chanmodes), "beI:%d",
2275 <           ConfigChannel.max_bans);
2276 <  add_isupport("MAXLIST", chanmodes, -1);
2277 <  add_isupport("MAXTARGETS", NULL, ConfigFileEntry.max_targets);
1222 >  log_reopen_all();
1223  
1224 +  add_isupport("NICKLEN", NULL, ConfigServerInfo.max_nick_length);
1225 +  add_isupport("NETWORK", ConfigServerInfo.network_name, -1);
1226 +
1227 +  snprintf(chanmodes, sizeof(chanmodes), "beI:%d", ConfigChannel.max_bans);
1228 +  add_isupport("MAXLIST", chanmodes, -1);
1229 +  add_isupport("MAXTARGETS", NULL, ConfigGeneral.max_targets);
1230    add_isupport("CHANTYPES", "#", -1);
1231  
1232    snprintf(chanlimit, sizeof(chanlimit), "#:%d",
1233 <           ConfigChannel.max_chans_per_user);
1233 >           ConfigChannel.max_channels);
1234    add_isupport("CHANLIMIT", chanlimit, -1);
1235 <  snprintf(chanmodes, sizeof(chanmodes), "%s",
1236 <           "beI,k,l,imnprstORS");
1237 <  add_isupport("CHANNELLEN", NULL, LOCAL_CHANNELLEN);
2287 <
2288 <  add_isupport("EXCEPTS", "e", -1);
2289 <  add_isupport("INVEX", "I", -1);
1235 >  snprintf(chanmodes, sizeof(chanmodes), "%s", "beI,k,l,cimnprstMORS");
1236 >  add_isupport("CHANNELLEN", NULL, CHANNELLEN);
1237 >  add_isupport("TOPICLEN", NULL, ConfigServerInfo.max_topic_length);
1238    add_isupport("CHANMODES", chanmodes, -1);
1239  
1240    /*
# Line 2294 | Line 1242 | read_conf_files(int cold)
1242     * on strlen(form_str(RPL_ISUPPORT))
1243     */
1244    rebuild_isupport_message_line();
2297
2298 #ifdef HAVE_LIBPCRE
2299  parse_conf_file(RKLINE_TYPE, cold);
2300  parse_conf_file(RXLINE_TYPE, cold);
2301 #endif
2302  parse_conf_file(KLINE_TYPE, cold);
2303  parse_conf_file(DLINE_TYPE, cold);
2304  parse_conf_file(XLINE_TYPE, cold);
2305  parse_conf_file(NRESV_TYPE, cold);
2306  parse_conf_file(CRESV_TYPE, cold);
2307 }
2308
2309 /* parse_conf_file()
2310 *
2311 * inputs       - type of conf file to parse
2312 * output       - none
2313 * side effects - conf file for givenconf type is opened and read then parsed
2314 */
2315 static void
2316 parse_conf_file(int type, int cold)
2317 {
2318  FILE *file = NULL;
2319  const char *filename = get_conf_name(type);
2320
2321  if ((file = fopen(filename, "r")) == NULL)
2322  {
2323    if (cold)
2324      ilog(LOG_TYPE_IRCD, "Unable to read configuration file '%s': %s",
2325           filename, strerror(errno));
2326    else
2327      sendto_realops_flags(UMODE_ALL, L_ALL,
2328                    "Unable to read configuration file '%s': %s",
2329                           filename, strerror(errno));
2330  }
2331  else
2332  {
2333    parse_csv_file(file, type);
2334    fclose(file);
2335  }
1245   }
1246  
1247   /* clear_out_old_conf()
# Line 2345 | Line 1254 | static void
1254   clear_out_old_conf(void)
1255   {
1256    dlink_node *ptr = NULL, *next_ptr = NULL;
2348  struct ConfItem *conf;
2349  struct AccessItem *aconf;
2350  struct ClassItem *cltmp;
1257    dlink_list *free_items [] = {
1258      &server_items,   &oconf_items,
1259 <     &uconf_items,   &xconf_items, &rxconf_items, &rkconf_items,
1260 <     &nresv_items, &cluster_items,  &service_items, NULL
1259 >     &uconf_items,   &xconf_items,
1260 >     &nresv_items, &cluster_items,  &service_items, &cresv_items, NULL
1261    };
1262  
1263    dlink_list ** iterator = free_items; /* C is dumb */
# Line 2359 | Line 1265 | clear_out_old_conf(void)
1265    /* We only need to free anything allocated by yyparse() here.
1266     * Resetting structs, etc, is taken care of by set_default_conf().
1267     */
1268 <  
1268 >
1269    for (; *iterator != NULL; iterator++)
1270    {
1271      DLINK_FOREACH_SAFE(ptr, next_ptr, (*iterator)->head)
1272      {
1273 <      conf = ptr->data;
2368 <      /* XXX This is less than pretty */
2369 <      if (conf->type == SERVER_TYPE)
2370 <      {
2371 <        aconf = map_to_conf(conf);
1273 >      struct MaskItem *conf = ptr->data;
1274  
1275 <        if (aconf->clients != 0)
1276 <        {
2375 <          SetConfIllegal(aconf);
2376 <          dlinkDelete(&conf->node, &server_items);
2377 <        }
2378 <        else
2379 <        {
2380 <          delete_conf_item(conf);
2381 <        }
2382 <      }
2383 <      else if (conf->type == OPER_TYPE)
2384 <      {
2385 <        aconf = map_to_conf(conf);
1275 >      conf->active = 0;
1276 >      dlinkDelete(&conf->node, *iterator);
1277  
1278 <        if (aconf->clients != 0)
1279 <        {
2389 <          SetConfIllegal(aconf);
2390 <          dlinkDelete(&conf->node, &oconf_items);
2391 <        }
2392 <        else
2393 <        {
2394 <          delete_conf_item(conf);
2395 <        }
2396 <      }
2397 <      else if (conf->type == XLINE_TYPE  ||
2398 <               conf->type == RXLINE_TYPE ||
2399 <               conf->type == RKLINE_TYPE)
1278 >      /* XXX This is less than pretty */
1279 >      if (conf->type == CONF_SERVER || conf->type == CONF_OPER)
1280        {
1281 <        /* temporary (r)xlines are also on
1282 <         * the (r)xconf items list */
2403 <        if (conf->flags & CONF_FLAGS_TEMPORARY)
2404 <          continue;
2405 <
2406 <        delete_conf_item(conf);
1281 >        if (!conf->ref_count)
1282 >          conf_free(conf);
1283        }
1284 <      else
1284 >      else if (conf->type == CONF_XLINE)
1285        {
1286 <          delete_conf_item(conf);
1286 >        if (!conf->until)
1287 >          conf_free(conf);
1288        }
1289 +      else
1290 +        conf_free(conf);
1291      }
1292    }
1293  
1294 +  motd_clear();
1295 +
1296    /*
1297     * don't delete the class table, rather mark all entries
1298 <   * for deletion. The table is cleaned up by check_class. - avalon
1298 >   * for deletion. The table is cleaned up by class_delete_marked. - avalon
1299     */
1300 <  DLINK_FOREACH(ptr, class_items.head)
2420 <  {
2421 <    cltmp = map_to_conf(ptr->data);
2422 <
2423 <    if (ptr != class_items.tail)  /* never mark the "default" class */
2424 <      cltmp->active = 0;
2425 <  }
1300 >  class_mark_for_deletion();
1301  
1302    clear_out_address_conf();
1303  
1304    /* clean out module paths */
1305    mod_clear_paths();
1306  
1307 <  /* clean out ServerInfo */
1308 <  MyFree(ServerInfo.description);
1309 <  ServerInfo.description = NULL;
1310 <  MyFree(ServerInfo.network_name);
1311 <  ServerInfo.network_name = NULL;
1312 <  MyFree(ServerInfo.network_desc);
1313 <  ServerInfo.network_desc = NULL;
1314 <  MyFree(ConfigFileEntry.egdpool_path);
1315 <  ConfigFileEntry.egdpool_path = NULL;
1307 >  pseudo_clear();
1308 >
1309 >  /* clean out ConfigServerInfo */
1310 >  MyFree(ConfigServerInfo.description);
1311 >  ConfigServerInfo.description = NULL;
1312 >  MyFree(ConfigServerInfo.network_name);
1313 >  ConfigServerInfo.network_name = NULL;
1314 >  MyFree(ConfigServerInfo.network_desc);
1315 >  ConfigServerInfo.network_desc = NULL;
1316   #ifdef HAVE_LIBCRYPTO
1317 <  if (ServerInfo.rsa_private_key != NULL)
1317 >  if (ConfigServerInfo.rsa_private_key)
1318    {
1319 <    RSA_free(ServerInfo.rsa_private_key);
1320 <    ServerInfo.rsa_private_key = NULL;
1319 >    RSA_free(ConfigServerInfo.rsa_private_key);
1320 >    ConfigServerInfo.rsa_private_key = NULL;
1321    }
1322  
1323 <  MyFree(ServerInfo.rsa_private_key_file);
1324 <  ServerInfo.rsa_private_key_file = NULL;
2450 <
2451 <  if (ServerInfo.server_ctx)
2452 <    SSL_CTX_set_options(ServerInfo.server_ctx, SSL_OP_NO_SSLv2|
2453 <                                               SSL_OP_NO_SSLv3|
2454 <                                               SSL_OP_NO_TLSv1);
2455 <  if (ServerInfo.client_ctx)
2456 <    SSL_CTX_set_options(ServerInfo.client_ctx, SSL_OP_NO_SSLv2|
2457 <                                               SSL_OP_NO_SSLv3|
2458 <                                               SSL_OP_NO_TLSv1);
1323 >  MyFree(ConfigServerInfo.rsa_private_key_file);
1324 >  ConfigServerInfo.rsa_private_key_file = NULL;
1325   #endif
1326  
1327 <  /* clean out old resvs from the conf */
1328 <  clear_conf_resv();
1329 <
1330 <  /* clean out AdminInfo */
1331 <  MyFree(AdminInfo.name);
1332 <  AdminInfo.name = NULL;
1333 <  MyFree(AdminInfo.email);
2468 <  AdminInfo.email = NULL;
2469 <  MyFree(AdminInfo.description);
2470 <  AdminInfo.description = NULL;
1327 >  /* clean out ConfigAdminInfo */
1328 >  MyFree(ConfigAdminInfo.name);
1329 >  ConfigAdminInfo.name = NULL;
1330 >  MyFree(ConfigAdminInfo.email);
1331 >  ConfigAdminInfo.email = NULL;
1332 >  MyFree(ConfigAdminInfo.description);
1333 >  ConfigAdminInfo.description = NULL;
1334  
2472  /* operator{} and class{} blocks are freed above */
1335    /* clean out listeners */
1336    close_listeners();
2475
2476  /* auth{}, quarantine{}, shared{}, connect{}, kill{}, deny{},
2477   * exempt{} and gecos{} blocks are freed above too
2478   */
2479
2480  /* clean out general */
2481  MyFree(ConfigFileEntry.service_name);
2482  ConfigFileEntry.service_name = NULL;
2483
2484  delete_isupport("INVEX");
2485  delete_isupport("EXCEPTS");
2486 }
2487
2488 /* flush_deleted_I_P()
2489 *
2490 * inputs       - none
2491 * output       - none
2492 * side effects - This function removes I/P conf items
2493 */
2494 static void
2495 flush_deleted_I_P(void)
2496 {
2497  dlink_node *ptr;
2498  dlink_node *next_ptr;
2499  struct ConfItem *conf;
2500  struct AccessItem *aconf;
2501  dlink_list * free_items [] = {
2502    &server_items, &oconf_items, NULL
2503  };
2504  dlink_list ** iterator = free_items; /* C is dumb */
2505
2506  /* flush out deleted I and P lines
2507   * although still in use.
2508   */
2509  for (; *iterator != NULL; iterator++)
2510  {
2511    DLINK_FOREACH_SAFE(ptr, next_ptr, (*iterator)->head)
2512    {
2513      conf = ptr->data;
2514      aconf = (struct AccessItem *)map_to_conf(conf);
2515
2516      if (IsConfIllegal(aconf))
2517      {
2518        dlinkDelete(ptr, *iterator);
2519
2520        if (aconf->clients == 0)
2521          delete_conf_item(conf);
2522      }
2523    }
2524  }
2525 }
2526
2527 /* get_conf_name()
2528 *
2529 * inputs       - type of conf file to return name of file for
2530 * output       - pointer to filename for type of conf
2531 * side effects - none
2532 */
2533 const char *
2534 get_conf_name(ConfType type)
2535 {
2536  switch (type)
2537  {
2538    case CONF_TYPE:
2539      return ConfigFileEntry.configfile;
2540      break;
2541    case KLINE_TYPE:
2542      return ConfigFileEntry.klinefile;
2543      break;
2544    case DLINE_TYPE:
2545      return ConfigFileEntry.dlinefile;
2546      break;
2547    case XLINE_TYPE:
2548      return ConfigFileEntry.xlinefile;
2549      break;
2550    case CRESV_TYPE:
2551      return ConfigFileEntry.cresvfile;
2552      break;
2553    case NRESV_TYPE:
2554      return ConfigFileEntry.nresvfile;
2555      break;
2556    default:
2557      return NULL;  /* This should NEVER HAPPEN since we call this function
2558                       only with the above values, this will cause us to core
2559                       at some point if this happens so we know where it was */
2560  }
2561 }
2562
2563 #define BAD_PING (-1)
2564
2565 /* get_conf_ping()
2566 *
2567 * inputs       - pointer to struct AccessItem
2568 *              - pointer to a variable that receives ping warning time
2569 * output       - ping frequency
2570 * side effects - NONE
2571 */
2572 static int
2573 get_conf_ping(struct ConfItem *conf, int *pingwarn)
2574 {
2575  struct ClassItem *aclass;
2576  struct AccessItem *aconf;
2577
2578  if (conf != NULL)
2579  {
2580    aconf = (struct AccessItem *)map_to_conf(conf);
2581    if (aconf->class_ptr != NULL)
2582    {
2583      aclass = (struct ClassItem *)map_to_conf(aconf->class_ptr);
2584      *pingwarn = aclass->ping_warning;
2585      return aclass->ping_freq;
2586    }
2587  }
2588
2589  return BAD_PING;
2590 }
2591
2592 /* get_client_class()
2593 *
2594 * inputs       - pointer to client struct
2595 * output       - pointer to name of class
2596 * side effects - NONE
2597 */
2598 const char *
2599 get_client_class(struct Client *target_p)
2600 {
2601  dlink_node *cnode = NULL;
2602  struct AccessItem *aconf = NULL;
2603
2604  assert(!IsMe(target_p));
2605
2606  if ((cnode = target_p->localClient->confs.head))
2607  {
2608    struct ConfItem *conf = cnode->data;
2609
2610    assert((conf->type == CLIENT_TYPE) || (conf->type == SERVER_TYPE) ||
2611          (conf->type == OPER_TYPE));
2612
2613    aconf = map_to_conf(conf);
2614    if (aconf->class_ptr != NULL)
2615      return aconf->class_ptr->name;
2616  }
2617
2618  return "default";
2619 }
2620
2621 /* get_client_ping()
2622 *
2623 * inputs       - pointer to client struct
2624 *              - pointer to a variable that receives ping warning time
2625 * output       - ping frequency
2626 * side effects - NONE
2627 */
2628 int
2629 get_client_ping(struct Client *target_p, int *pingwarn)
2630 {
2631  int ping = 0;
2632  dlink_node *cnode = NULL;
2633
2634  if ((cnode = target_p->localClient->confs.head))
2635  {
2636    struct ConfItem *conf = cnode->data;
2637
2638    assert((conf->type == CLIENT_TYPE) || (conf->type == SERVER_TYPE) ||
2639          (conf->type == OPER_TYPE));
2640
2641    ping = get_conf_ping(conf, pingwarn);
2642    if (ping > 0)
2643      return ping;
2644  }
2645
2646  *pingwarn = 0;
2647  return DEFAULT_PINGFREQUENCY;
2648 }
2649
2650 /* find_class()
2651 *
2652 * inputs       - string name of class
2653 * output       - corresponding Class pointer
2654 * side effects - NONE
2655 */
2656 struct ConfItem *
2657 find_class(const char *classname)
2658 {
2659  struct ConfItem *conf;
2660
2661  if ((conf = find_exact_name_conf(CLASS_TYPE, NULL, classname, NULL, NULL)) != NULL)
2662    return conf;
2663
2664  return class_default;
2665 }
2666
2667 /* check_class()
2668 *
2669 * inputs       - NONE
2670 * output       - NONE
2671 * side effects -
2672 */
2673 void
2674 check_class(void)
2675 {
2676  dlink_node *ptr = NULL, *next_ptr = NULL;
2677
2678  DLINK_FOREACH_SAFE(ptr, next_ptr, class_items.head)
2679  {
2680    struct ClassItem *aclass = map_to_conf(ptr->data);
2681
2682    if (!aclass->active && !aclass->curr_user_count)
2683    {
2684      destroy_cidr_class(aclass);
2685      delete_conf_item(ptr->data);
2686    }
2687  }
2688 }
2689
2690 /* init_class()
2691 *
2692 * inputs       - NONE
2693 * output       - NONE
2694 * side effects -
2695 */
2696 void
2697 init_class(void)
2698 {
2699  struct ClassItem *aclass;
2700
2701  class_default = make_conf_item(CLASS_TYPE);
2702
2703  aclass = map_to_conf(class_default);
2704  aclass->active = 1;
2705  DupString(class_default->name, "default");
2706  aclass->con_freq  = DEFAULT_CONNECTFREQUENCY;
2707  aclass->ping_freq = DEFAULT_PINGFREQUENCY;
2708  aclass->max_total = MAXIMUM_LINKS_DEFAULT;
2709  aclass->max_sendq = DEFAULT_SENDQ;
2710  aclass->max_recvq = DEFAULT_RECVQ;
2711
2712  client_check_cb = register_callback("check_client", check_client);
2713 }
2714
2715 /* get_sendq()
2716 *
2717 * inputs       - pointer to client
2718 * output       - sendq for this client as found from its class
2719 * side effects - NONE
2720 */
2721 unsigned int
2722 get_sendq(struct Client *client_p)
2723 {
2724  unsigned int sendq = DEFAULT_SENDQ;
2725  dlink_node *cnode;
2726  struct ConfItem *class_conf;
2727  struct ClassItem *aclass;
2728  struct AccessItem *aconf;
2729
2730  assert(!IsMe(client_p));
2731
2732  if ((cnode = client_p->localClient->confs.head))
2733  {
2734    struct ConfItem *conf = cnode->data;
2735
2736    assert((conf->type == CLIENT_TYPE) || (conf->type == SERVER_TYPE) ||
2737          (conf->type == OPER_TYPE));
2738
2739    aconf = map_to_conf(conf);
2740
2741    if ((class_conf = aconf->class_ptr) == NULL)
2742      return DEFAULT_SENDQ; /* TBV: shouldn't be possible at all */
2743
2744    aclass = map_to_conf(class_conf);
2745    sendq = aclass->max_sendq;
2746    return sendq;
2747  }
2748
2749  /* XXX return a default?
2750   * if here, then there wasn't an attached conf with a sendq
2751   * that is very bad -Dianora
2752   */
2753  return DEFAULT_SENDQ;
2754 }
2755
2756 unsigned int
2757 get_recvq(struct Client *client_p)
2758 {
2759  unsigned int recvq = DEFAULT_RECVQ;
2760  dlink_node *cnode;
2761  struct ConfItem *class_conf;
2762  struct ClassItem *aclass;
2763  struct AccessItem *aconf;
2764
2765  assert(!IsMe(client_p));
2766
2767  if ((cnode = client_p->localClient->confs.head))
2768  {
2769    struct ConfItem *conf = cnode->data;
2770
2771    assert((conf->type == CLIENT_TYPE) || (conf->type == SERVER_TYPE) ||
2772          (conf->type == OPER_TYPE));
2773
2774    aconf = map_to_conf(conf);
2775
2776    if ((class_conf = aconf->class_ptr) == NULL)
2777      return DEFAULT_RECVQ; /* TBV: shouldn't be possible at all */
2778
2779    aclass = map_to_conf(class_conf);
2780    recvq = aclass->max_recvq;
2781    return recvq;
2782  }
2783
2784  /* XXX return a default?
2785   * if here, then there wasn't an attached conf with a recvq
2786   * that is very bad -Dianora
2787   */
2788  return DEFAULT_RECVQ;
1337   }
1338  
1339   /* conf_add_class_to_conf()
1340   *
1341   * inputs       - pointer to config item
1342   * output       - NONE
1343 < * side effects - Add a class pointer to a conf
1343 > * side effects - Add a class pointer to a conf
1344   */
1345   void
1346 < conf_add_class_to_conf(struct ConfItem *conf, const char *class_name)
1346 > conf_add_class_to_conf(struct MaskItem *conf, const char *class_name)
1347   {
1348 <  struct AccessItem *aconf = map_to_conf(conf);
2801 <  struct ClassItem *class = NULL;
2802 <
2803 <  if (class_name == NULL)
1348 >  if (class_name == NULL)
1349    {
1350 <    aconf->class_ptr = class_default;
1350 >    conf->class = class_default;
1351  
1352 <    if (conf->type == CLIENT_TYPE)
1353 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1354 <                           "Warning *** Defaulting to default class for %s@%s",
1355 <                           aconf->user, aconf->host);
1352 >    if (conf->type == CONF_CLIENT)
1353 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1354 >                           "Warning *** Defaulting to default class for %s@%s",
1355 >                           conf->user, conf->host);
1356      else
1357 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1358 <                           "Warning *** Defaulting to default class for %s",
1359 <                           conf->name);
1357 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1358 >                           "Warning *** Defaulting to default class for %s",
1359 >                           conf->name);
1360    }
1361    else
1362 <    aconf->class_ptr = find_class(class_name);
1362 >    conf->class = class_find(class_name, 1);
1363  
1364 <  if (aconf->class_ptr)
2820 <    class = map_to_conf(aconf->class_ptr);
2821 <
2822 <  if (aconf->class_ptr == NULL || !class->active)
1364 >  if (conf->class == NULL)
1365    {
1366 <    if (conf->type == CLIENT_TYPE)
1367 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1368 <                           "Warning *** Defaulting to default class for %s@%s",
1369 <                           aconf->user, aconf->host);
1366 >    if (conf->type == CONF_CLIENT)
1367 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1368 >                           "Warning *** Defaulting to default class for %s@%s",
1369 >                           conf->user, conf->host);
1370      else
1371 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1372 <                           "Warning *** Defaulting to default class for %s",
1373 <                           conf->name);
1374 <    aconf->class_ptr = class_default;
1371 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1372 >                           "Warning *** Defaulting to default class for %s",
1373 >                           conf->name);
1374 >    conf->class = class_default;
1375    }
1376   }
1377  
2836 /* conf_add_server()
2837 *
2838 * inputs       - pointer to config item
2839 *              - pointer to link count already on this conf
2840 * output       - NONE
2841 * side effects - Add a connect block
2842 */
2843 int
2844 conf_add_server(struct ConfItem *conf, const char *class_name)
2845 {
2846  struct AccessItem *aconf = map_to_conf(conf);
2847
2848  conf_add_class_to_conf(conf, class_name);
2849
2850  if (!aconf->host || !conf->name)
2851  {
2852    sendto_realops_flags(UMODE_ALL, L_ALL, "Bad connect block");
2853    ilog(LOG_TYPE_IRCD, "Bad connect block");
2854    return -1;
2855  }
2856
2857  if (EmptyString(aconf->passwd))
2858  {
2859    sendto_realops_flags(UMODE_ALL, L_ALL, "Bad connect block, name %s",
2860                         conf->name);
2861    ilog(LOG_TYPE_IRCD, "Bad connect block, host %s", conf->name);
2862    return -1;
2863  }
2864
2865  lookup_confhost(conf);
2866
2867  return 0;
2868 }
2869
1378   /* yyerror()
1379   *
1380   * inputs       - message from parser
# Line 2882 | Line 1390 | yyerror(const char *msg)
1390      return;
1391  
1392    strip_tabs(newlinebuf, linebuf, sizeof(newlinebuf));
1393 <  sendto_realops_flags(UMODE_ALL, L_ALL, "\"%s\", line %u: %s: %s",
1393 >  sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1394 >                       "\"%s\", line %u: %s: %s",
1395 >                       conffilebuf, lineno + 1, msg, newlinebuf);
1396 >  ilog(LOG_TYPE_IRCD, "\"%s\", line %u: %s: %s",
1397 >       conffilebuf, lineno + 1, msg, newlinebuf);
1398 > }
1399 >
1400 > void
1401 > conf_error_report(const char *msg)
1402 > {
1403 >  char newlinebuf[IRCD_BUFSIZE];
1404 >
1405 >  strip_tabs(newlinebuf, linebuf, sizeof(newlinebuf));
1406 >  sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1407 >                       "\"%s\", line %u: %s: %s",
1408                         conffilebuf, lineno + 1, msg, newlinebuf);
1409    ilog(LOG_TYPE_IRCD, "\"%s\", line %u: %s: %s",
1410         conffilebuf, lineno + 1, msg, newlinebuf);
# Line 2890 | Line 1412 | yyerror(const char *msg)
1412  
1413   /*
1414   * valid_tkline()
1415 < *
1415 > *
1416   * inputs       - pointer to ascii string to check
1417   *              - whether the specified time is in seconds or minutes
1418   * output       - -1 not enough parameters
# Line 2899 | Line 1421 | yyerror(const char *msg)
1421   * Originally written by Dianora (Diane, db@db.net)
1422   */
1423   time_t
1424 < valid_tkline(const char *p, int minutes)
1424 > valid_tkline(const char *data, const int minutes)
1425   {
1426 +  const unsigned char *p = (const unsigned char *)data;
1427 +  unsigned char tmpch = '\0';
1428    time_t result = 0;
1429  
1430 <  for (; *p; ++p)
1430 >  while ((tmpch = *p++))
1431    {
1432 <    if (!IsDigit(*p))
1432 >    if (!IsDigit(tmpch))
1433        return 0;
1434  
1435      result *= 10;
1436 <    result += ((*p) & 0xF);
1436 >    result += (tmpch & 0xF);
1437    }
1438  
1439    /*
1440 <   * In the degenerate case where oper does a /quote kline 0 user@host :reason
1440 >   * In the degenerate case where oper does a /quote kline 0 user@host :reason
1441     * i.e. they specifically use 0, I am going to return 1 instead
1442     * as a return value of non-zero is used to flag it as a temporary kline
1443     */
1444    if (result == 0)
1445      result = 1;
1446  
1447 <  /*
1447 >  /*
1448     * If the incoming time is in seconds convert it to minutes for the purpose
1449     * of this calculation
1450     */
1451    if (!minutes)
1452 <    result = result / (time_t)60;
1452 >    result = result / 60;
1453  
1454    if (result > MAX_TDKLINE_TIME)
1455      result = MAX_TDKLINE_TIME;
1456  
1457 <  result = result * (time_t)60;  /* turn it into seconds */
1457 >  result = result * 60;  /* turn it into seconds */
1458  
1459    return result;
1460   }
1461  
1462 + /* valid_wild_card_simple()
1463 + *
1464 + * inputs       - data to check for sufficient non-wildcard characters
1465 + * outputs      - 1 if valid, else 0
1466 + * side effects - none
1467 + */
1468 + int
1469 + valid_wild_card_simple(const char *data)
1470 + {
1471 +  const unsigned char *p = (const unsigned char *)data;
1472 +  unsigned char tmpch = '\0';
1473 +  unsigned int nonwild = 0;
1474 +
1475 +  while ((tmpch = *p++))
1476 +  {
1477 +    if (tmpch == '\\' && *p)
1478 +    {
1479 +      ++p;
1480 +      if (++nonwild >= ConfigGeneral.min_nonwildcard_simple)
1481 +        return 1;
1482 +    }
1483 +    else if (!IsMWildChar(tmpch))
1484 +    {
1485 +      if (++nonwild >= ConfigGeneral.min_nonwildcard_simple)
1486 +        return 1;
1487 +    }
1488 +  }
1489 +
1490 +  return 0;
1491 + }
1492 +
1493   /* valid_wild_card()
1494   *
1495   * input        - pointer to client
# Line 2946 | Line 1501 | valid_tkline(const char *p, int minutes)
1501   int
1502   valid_wild_card(struct Client *source_p, int warn, int count, ...)
1503   {
1504 <  char *p;
1505 <  char tmpch;
2951 <  int nonwild = 0;
1504 >  unsigned char tmpch = '\0';
1505 >  unsigned int nonwild = 0;
1506    va_list args;
1507  
1508    /*
# Line 2967 | Line 1521 | valid_wild_card(struct Client *source_p,
1521  
1522    while (count--)
1523    {
1524 <    p = va_arg(args, char *);
1524 >    const unsigned char *p = va_arg(args, const unsigned char *);
1525      if (p == NULL)
1526        continue;
1527  
# Line 2979 | Line 1533 | valid_wild_card(struct Client *source_p,
1533           * If we find enough non-wild characters, we can
1534           * break - no point in searching further.
1535           */
1536 <        if (++nonwild >= ConfigFileEntry.min_nonwildcard)
1536 >        if (++nonwild >= ConfigGeneral.min_nonwildcard)
1537 >        {
1538 >          va_end(args);
1539            return 1;
1540 +        }
1541        }
1542      }
1543    }
1544  
1545    if (warn)
1546 <    sendto_one(source_p, ":%s NOTICE %s :Please include at least %d non-wildcard characters with the mask",
1547 <               me.name, source_p->name, ConfigFileEntry.min_nonwildcard);
1546 >    sendto_one_notice(source_p, &me,
1547 >                      ":Please include at least %u non-wildcard characters with the mask",
1548 >                      ConfigGeneral.min_nonwildcard);
1549 >  va_end(args);
1550    return 0;
1551   }
1552  
# Line 3001 | Line 1560 | valid_wild_card(struct Client *source_p,
1560   *              - parse_flags bit map of things to test
1561   *              - pointer to user or string to parse into
1562   *              - pointer to host or NULL to parse into if non NULL
1563 < *              - pointer to optional tkline time or NULL
1563 > *              - pointer to optional tkline time or NULL
1564   *              - pointer to target_server to parse into if non NULL
1565   *              - pointer to reason to parse into
1566   *
# Line 3023 | Line 1582 | valid_wild_card(struct Client *source_p,
1582   */
1583   int
1584   parse_aline(const char *cmd, struct Client *source_p,
1585 <            int parc, char **parv,
1586 <            int parse_flags, char **up_p, char **h_p, time_t *tkline_time,
1587 <            char **target_server, char **reason)
1585 >            int parc, char **parv,
1586 >            int parse_flags, char **up_p, char **h_p, time_t *tkline_time,
1587 >            char **target_server, char **reason)
1588   {
1589    int found_tkline_time=0;
1590 <  static char def_reason[] = "No Reason";
1590 >  static char def_reason[] = CONF_NOREASON;
1591    static char user[USERLEN*4+1];
1592    static char host[HOSTLEN*4+1];
1593  
# Line 3046 | Line 1605 | parse_aline(const char *cmd, struct Clie
1605        *tkline_time = found_tkline_time;
1606      else
1607      {
1608 <      sendto_one(source_p, ":%s NOTICE %s :temp_line not supported by %s",
3050 <                 me.name, source_p->name, cmd);
1608 >      sendto_one_notice(source_p, &me, ":temp_line not supported by %s", cmd);
1609        return -1;
1610      }
1611    }
1612  
1613    if (parc == 0)
1614    {
1615 <    sendto_one(source_p, form_str(ERR_NEEDMOREPARAMS),
3058 <               me.name, source_p->name, cmd);
1615 >    sendto_one_numeric(source_p, &me, ERR_NEEDMOREPARAMS, cmd);
1616      return -1;
1617    }
1618  
# Line 3069 | Line 1626 | parse_aline(const char *cmd, struct Clie
1626      *up_p = user;
1627      *h_p = host;
1628    }
1629 <
1629 >
1630    parc--;
1631    parv++;
1632  
# Line 3082 | Line 1639 | parse_aline(const char *cmd, struct Clie
1639  
1640        if (target_server == NULL)
1641        {
1642 <        sendto_one(source_p, ":%s NOTICE %s :ON server not supported by %s",
1643 <                   me.name, source_p->name, cmd);
3087 <        return -1;
1642 >        sendto_one_notice(source_p, &me, ":ON server not supported by %s", cmd);
1643 >        return -1;
1644        }
1645  
1646        if (!HasOFlag(source_p, OPER_FLAG_REMOTEBAN))
1647        {
1648 <        sendto_one(source_p, form_str(ERR_NOPRIVS),
3093 <                   me.name, source_p->name, "remoteban");
1648 >        sendto_one_numeric(source_p, &me, ERR_NOPRIVS, "remoteban");
1649          return -1;
1650        }
1651  
1652        if (parc == 0 || EmptyString(*parv))
1653        {
1654 <        sendto_one(source_p, form_str(ERR_NEEDMOREPARAMS),
1655 <                   me.name, source_p->name, cmd);
3101 <        return -1;
1654 >        sendto_one_numeric(source_p, &me, ERR_NEEDMOREPARAMS, cmd);
1655 >        return -1;
1656        }
1657  
1658        *target_server = *parv;
# Line 3111 | Line 1665 | parse_aline(const char *cmd, struct Clie
1665         * caller probably NULL'd it first, but no harm to do it again -db
1666         */
1667        if (target_server != NULL)
1668 <        *target_server = NULL;
1668 >        *target_server = NULL;
1669      }
1670    }
1671  
# Line 3119 | Line 1673 | parse_aline(const char *cmd, struct Clie
1673    {
1674      if (strchr(user, '!') != NULL)
1675      {
1676 <      sendto_one(source_p, ":%s NOTICE %s :Invalid character '!' in kline",
3123 <                 me.name, source_p->name);
1676 >      sendto_one_notice(source_p, &me, ":Invalid character '!' in kline");
1677        return -1;
1678      }
1679  
# Line 3137 | Line 1690 | parse_aline(const char *cmd, struct Clie
1690      {
1691        *reason = *parv;
1692        if (!valid_comment(source_p, *reason, 1))
1693 <        return -1;
1693 >        return -1;
1694      }
1695      else
1696        *reason = def_reason;
# Line 3176 | Line 1729 | find_user_host(struct Client *source_p,
1729      {
1730        *(hostp++) = '\0';                       /* short and squat */
1731        if (*user_host_or_nick)
1732 <        strlcpy(luser, user_host_or_nick, USERLEN*4 + 1); /* here is my user */
1732 >        strlcpy(luser, user_host_or_nick, USERLEN*4 + 1); /* here is my user */
1733        else
1734 <        strcpy(luser, "*");
1734 >        strcpy(luser, "*");
1735 >
1736        if (*hostp)
1737 <        strlcpy(lhost, hostp, HOSTLEN + 1);    /* here is my host */
1737 >        strlcpy(lhost, hostp, HOSTLEN + 1);    /* here is my host */
1738        else
1739 <        strcpy(lhost, "*");
1739 >        strcpy(lhost, "*");
1740      }
1741      else
1742      {
1743        luser[0] = '*';             /* no @ found, assume its *@somehost */
1744 <      luser[1] = '\0';    
1744 >      luser[1] = '\0';
1745        strlcpy(lhost, user_host_or_nick, HOSTLEN*4 + 1);
1746      }
1747 <    
1747 >
1748      return 1;
1749    }
1750    else
1751    {
1752      /* Try to find user@host mask from nick */
1753      /* Okay to use source_p as the first param, because source_p == client_p */
1754 <    if ((target_p =
1755 <        find_chasing(source_p, source_p, user_host_or_nick, NULL)) == NULL)
1756 <      return 0;
1754 >    if ((target_p =
1755 >        find_chasing(source_p, user_host_or_nick)) == NULL)
1756 >      return 0;  /* find_chasing sends ERR_NOSUCHNICK */
1757  
1758      if (IsExemptKline(target_p))
1759      {
1760 <      if (!IsServer(source_p))
1761 <        sendto_one(source_p,
3208 <                   ":%s NOTICE %s :%s is E-lined",
3209 <                   me.name, source_p->name, target_p->name);
1760 >      if (IsClient(source_p))
1761 >        sendto_one_notice(source_p, &me, ":%s is E-lined", target_p->name);
1762        return 0;
1763      }
1764  
# Line 3219 | Line 1771 | find_user_host(struct Client *source_p,
1771      if (target_p->username[0] == '~')
1772        luser[0] = '*';
1773  
1774 <    if (target_p->sockhost[0] == '\0' ||
3223 <        (target_p->sockhost[0] == '0' && target_p->sockhost[1] == '\0'))
1774 >    if (!strcmp(target_p->sockhost, "0"))
1775        strlcpy(lhost, target_p->host, HOSTLEN*4 + 1);
1776      else
1777        strlcpy(lhost, target_p->sockhost, HOSTLEN*4 + 1);
# Line 3241 | Line 1792 | find_user_host(struct Client *source_p,
1792   int
1793   valid_comment(struct Client *source_p, char *comment, int warn)
1794   {
3244  if (strchr(comment, '"'))
3245  {
3246    if (warn)
3247      sendto_one(source_p, ":%s NOTICE %s :Invalid character '\"' in comment",
3248                 me.name, source_p->name);
3249    return 0;
3250  }
3251
1795    if (strlen(comment) > REASONLEN)
1796      comment[REASONLEN-1] = '\0';
1797  
# Line 3263 | Line 1806 | valid_comment(struct Client *source_p, c
1806   * side effects - none
1807   */
1808   int
1809 < match_conf_password(const char *password, const struct AccessItem *aconf)
1809 > match_conf_password(const char *password, const struct MaskItem *conf)
1810   {
1811    const char *encr = NULL;
1812  
1813 <  if (EmptyString(password) || EmptyString(aconf->passwd))
1813 >  if (EmptyString(password) || EmptyString(conf->passwd))
1814      return 0;
1815  
1816 <  if (aconf->flags & CONF_FLAGS_ENCRYPTED)
1817 <    encr = crypt(password, aconf->passwd);
1816 >  if (conf->flags & CONF_FLAGS_ENCRYPTED)
1817 >    encr = crypt(password, conf->passwd);
1818    else
1819      encr = password;
1820  
1821 <  return !strcmp(encr, aconf->passwd);
1821 >  return encr && !strcmp(encr, conf->passwd);
1822   }
1823  
1824   /*
# Line 3283 | Line 1826 | match_conf_password(const char *password
1826   *
1827   * inputs       - client sending the cluster
1828   *              - command name "KLINE" "XLINE" etc.
1829 < *              - capab -- CAP_KLN etc. from s_serv.h
1829 > *              - capab -- CAP_KLN etc. from server.h
1830   *              - cluster type -- CLUSTER_KLINE etc. from conf.h
1831   *              - pattern and args to send along
1832   * output       - none
# Line 3295 | Line 1838 | cluster_a_line(struct Client *source_p,
1838                 int capab, int cluster_type, const char *pattern, ...)
1839   {
1840    va_list args;
1841 <  char buffer[IRCD_BUFSIZE];
1841 >  char buffer[IRCD_BUFSIZE] = "";
1842    const dlink_node *ptr = NULL;
1843  
1844    va_start(args, pattern);
# Line 3304 | Line 1847 | cluster_a_line(struct Client *source_p,
1847  
1848    DLINK_FOREACH(ptr, cluster_items.head)
1849    {
1850 <    const struct ConfItem *conf = ptr->data;
1850 >    const struct MaskItem *conf = ptr->data;
1851  
1852      if (conf->flags & cluster_type)
1853        sendto_match_servs(source_p, conf->name, CAP_CLUSTER|capab,
1854 <                         "%s %s %s", command, conf->name, buffer);
1854 >                         "%s %s %s", command, conf->name, buffer);
1855    }
1856   }
1857  
# Line 3356 | Line 1899 | split_nuh(struct split_nuh_item *const i
1899    {
1900      *p = '\0';
1901  
1902 <    if (iptr->nickptr && *iptr->nuhmask != '\0')
1902 >    if (iptr->nickptr && *iptr->nuhmask)
1903        strlcpy(iptr->nickptr, iptr->nuhmask, iptr->nicksize);
1904  
1905 <    if ((q = strchr(++p, '@'))) {
1905 >    if ((q = strchr(++p, '@')))
1906 >    {
1907        *q++ = '\0';
1908  
1909 <      if (*p != '\0')
1909 >      if (*p)
1910          strlcpy(iptr->userptr, p, iptr->usersize);
1911  
1912 <      if (*q != '\0')
1912 >      if (*q)
1913          strlcpy(iptr->hostptr, q, iptr->hostsize);
1914      }
1915      else
1916      {
1917 <      if (*p != '\0')
1917 >      if (*p)
1918          strlcpy(iptr->userptr, p, iptr->usersize);
1919      }
1920    }
# Line 3382 | Line 1926 | split_nuh(struct split_nuh_item *const i
1926        /* if found a @ */
1927        *p++ = '\0';
1928  
1929 <      if (*iptr->nuhmask != '\0')
1929 >      if (*iptr->nuhmask)
1930          strlcpy(iptr->userptr, iptr->nuhmask, iptr->usersize);
1931  
1932 <      if (*p != '\0')
1932 >      if (*p)
1933          strlcpy(iptr->hostptr, p, iptr->hostsize);
1934      }
1935      else
# Line 3398 | Line 1942 | split_nuh(struct split_nuh_item *const i
1942      }
1943    }
1944   }
3401
3402 /*
3403 * flags_to_ascii
3404 *
3405 * inputs       - flags is a bitmask
3406 *              - pointer to table of ascii letters corresponding
3407 *                to each bit
3408 *              - flag 1 for convert ToLower if bit missing
3409 *                0 if ignore.
3410 * output       - none
3411 * side effects - string pointed to by p has bitmap chars written to it
3412 */
3413 static void
3414 flags_to_ascii(unsigned int flags, const unsigned int bit_table[], char *p,
3415               int lowerit)
3416 {
3417  unsigned int mask = 1;
3418  int i = 0;
3419
3420  for (mask = 1; (mask != 0) && (bit_table[i] != 0); mask <<= 1, i++)
3421  {
3422    if (flags & mask)
3423      *p++ = bit_table[i];
3424    else if (lowerit)
3425      *p++ = ToLower(bit_table[i]);
3426  }
3427  *p = '\0';
3428 }
3429
3430 /*
3431 * cidr_limit_reached
3432 *
3433 * inputs       - int flag allowing over_rule of limits
3434 *              - pointer to the ip to be added
3435 *              - pointer to the class
3436 * output       - non zero if limit reached
3437 *                0 if limit not reached
3438 * side effects -
3439 */
3440 static int
3441 cidr_limit_reached(int over_rule,
3442                   struct irc_ssaddr *ip, struct ClassItem *aclass)
3443 {
3444  dlink_node *ptr = NULL;
3445  struct CidrItem *cidr;
3446
3447  if (aclass->number_per_cidr <= 0)
3448    return 0;
3449
3450  if (ip->ss.ss_family == AF_INET)
3451  {
3452    if (aclass->cidr_bitlen_ipv4 <= 0)
3453      return 0;
3454
3455    DLINK_FOREACH(ptr, aclass->list_ipv4.head)
3456    {
3457      cidr = ptr->data;
3458      if (match_ipv4(ip, &cidr->mask, aclass->cidr_bitlen_ipv4))
3459      {
3460        if (!over_rule && (cidr->number_on_this_cidr >= aclass->number_per_cidr))
3461          return -1;
3462        cidr->number_on_this_cidr++;
3463        return 0;
3464      }
3465    }
3466    cidr = MyMalloc(sizeof(struct CidrItem));
3467    cidr->number_on_this_cidr = 1;
3468    cidr->mask = *ip;
3469    mask_addr(&cidr->mask, aclass->cidr_bitlen_ipv4);
3470    dlinkAdd(cidr, &cidr->node, &aclass->list_ipv4);
3471  }
3472 #ifdef IPV6
3473  else if (aclass->cidr_bitlen_ipv6 > 0)
3474  {
3475    DLINK_FOREACH(ptr, aclass->list_ipv6.head)
3476    {
3477      cidr = ptr->data;
3478      if (match_ipv6(ip, &cidr->mask, aclass->cidr_bitlen_ipv6))
3479      {
3480        if (!over_rule && (cidr->number_on_this_cidr >= aclass->number_per_cidr))
3481          return -1;
3482        cidr->number_on_this_cidr++;
3483        return 0;
3484      }
3485    }
3486    cidr = MyMalloc(sizeof(struct CidrItem));
3487    cidr->number_on_this_cidr = 1;
3488    cidr->mask = *ip;
3489    mask_addr(&cidr->mask, aclass->cidr_bitlen_ipv6);
3490    dlinkAdd(cidr, &cidr->node, &aclass->list_ipv6);
3491  }
3492 #endif
3493  return 0;
3494 }
3495
3496 /*
3497 * remove_from_cidr_check
3498 *
3499 * inputs       - pointer to the ip to be removed
3500 *              - pointer to the class
3501 * output       - NONE
3502 * side effects -
3503 */
3504 static void
3505 remove_from_cidr_check(struct irc_ssaddr *ip, struct ClassItem *aclass)
3506 {
3507  dlink_node *ptr = NULL;
3508  dlink_node *next_ptr = NULL;
3509  struct CidrItem *cidr;
3510
3511  if (aclass->number_per_cidr == 0)
3512    return;
3513
3514  if (ip->ss.ss_family == AF_INET)
3515  {
3516    if (aclass->cidr_bitlen_ipv4 <= 0)
3517      return;
3518
3519    DLINK_FOREACH_SAFE(ptr, next_ptr, aclass->list_ipv4.head)
3520    {
3521      cidr = ptr->data;
3522      if (match_ipv4(ip, &cidr->mask, aclass->cidr_bitlen_ipv4))
3523      {
3524        cidr->number_on_this_cidr--;
3525        if (cidr->number_on_this_cidr == 0)
3526        {
3527          dlinkDelete(ptr, &aclass->list_ipv4);
3528          MyFree(cidr);
3529          return;
3530        }
3531      }
3532    }
3533  }
3534 #ifdef IPV6
3535  else if (aclass->cidr_bitlen_ipv6 > 0)
3536  {
3537    DLINK_FOREACH_SAFE(ptr, next_ptr, aclass->list_ipv6.head)
3538    {
3539      cidr = ptr->data;
3540      if (match_ipv6(ip, &cidr->mask, aclass->cidr_bitlen_ipv6))
3541      {
3542        cidr->number_on_this_cidr--;
3543        if (cidr->number_on_this_cidr == 0)
3544        {
3545          dlinkDelete(ptr, &aclass->list_ipv6);
3546          MyFree(cidr);
3547          return;
3548        }
3549      }
3550    }
3551  }
3552 #endif
3553 }
3554
3555 static void
3556 rebuild_cidr_list(int aftype, struct ConfItem *oldcl, struct ClassItem *newcl,
3557                  dlink_list *old_list, dlink_list *new_list, int changed)
3558 {
3559  dlink_node *ptr;
3560  struct Client *client_p;
3561  struct ConfItem *conf;
3562  struct AccessItem *aconf;
3563
3564  if (!changed)
3565  {
3566    *new_list = *old_list;
3567    old_list->head = old_list->tail = NULL;
3568    old_list->length = 0;
3569    return;
3570  }
3571
3572  DLINK_FOREACH(ptr, local_client_list.head)
3573  {
3574    client_p = ptr->data;
3575    if (client_p->localClient->aftype != aftype)
3576      continue;
3577    if (dlink_list_length(&client_p->localClient->confs) == 0)
3578      continue;
3579
3580    conf = client_p->localClient->confs.tail->data;
3581    if (conf->type == CLIENT_TYPE)
3582    {
3583      aconf = map_to_conf(conf);
3584      if (aconf->class_ptr == oldcl)
3585        cidr_limit_reached(1, &client_p->localClient->ip, newcl);
3586    }
3587  }
3588 }
3589
3590 /*
3591 * rebuild_cidr_class
3592 *
3593 * inputs       - pointer to old conf
3594 *              - pointer to new_class
3595 * output       - none
3596 * side effects - rebuilds the class link list of cidr blocks
3597 */
3598 void
3599 rebuild_cidr_class(struct ConfItem *conf, struct ClassItem *new_class)
3600 {
3601  struct ClassItem *old_class = map_to_conf(conf);
3602
3603  if (old_class->number_per_cidr > 0 && new_class->number_per_cidr > 0)
3604  {
3605    if (old_class->cidr_bitlen_ipv4 > 0 && new_class->cidr_bitlen_ipv4 > 0)
3606      rebuild_cidr_list(AF_INET, conf, new_class,
3607                        &old_class->list_ipv4, &new_class->list_ipv4,
3608                        old_class->cidr_bitlen_ipv4 != new_class->cidr_bitlen_ipv4);
3609
3610 #ifdef IPV6
3611    if (old_class->cidr_bitlen_ipv6 > 0 && new_class->cidr_bitlen_ipv6 > 0)
3612      rebuild_cidr_list(AF_INET6, conf, new_class,
3613                        &old_class->list_ipv6, &new_class->list_ipv6,
3614                        old_class->cidr_bitlen_ipv6 != new_class->cidr_bitlen_ipv6);
3615 #endif
3616  }
3617
3618  destroy_cidr_class(old_class);
3619 }
3620
3621 /*
3622 * destroy_cidr_list
3623 *
3624 * inputs       - pointer to class dlink list of cidr blocks
3625 * output       - none
3626 * side effects - completely destroys the class link list of cidr blocks
3627 */
3628 static void
3629 destroy_cidr_list(dlink_list *list)
3630 {
3631  dlink_node *ptr = NULL, *next_ptr = NULL;
3632
3633  DLINK_FOREACH_SAFE(ptr, next_ptr, list->head)
3634  {
3635    dlinkDelete(ptr, list);
3636    MyFree(ptr->data);
3637  }
3638 }
3639
3640 /*
3641 * destroy_cidr_class
3642 *
3643 * inputs       - pointer to class
3644 * output       - none
3645 * side effects - completely destroys the class link list of cidr blocks
3646 */
3647 static void
3648 destroy_cidr_class(struct ClassItem *aclass)
3649 {
3650  destroy_cidr_list(&aclass->list_ipv4);
3651  destroy_cidr_list(&aclass->list_ipv6);
3652 }

Diff Legend

Removed lines
+ Added lines
< Changed lines (old)
> Changed lines (new)