ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/conf_parser.y
(Generate patch)

Comparing:
ircd-hybrid-7.2/src/ircd_parser.y (file contents), Revision 102 by michael, Mon Oct 10 12:17:19 2005 UTC vs.
ircd-hybrid/trunk/src/conf_parser.y (file contents), Revision 4499 by michael, Sat Aug 16 18:29:23 2014 UTC

# Line 1 | Line 1
1   /*
2 < *  ircd-hybrid: an advanced Internet Relay Chat Daemon(ircd).
3 < *  ircd_parser.y: Parses the ircd configuration file.
2 > *  ircd-hybrid: an advanced, lightweight Internet Relay Chat Daemon (ircd)
3   *
4 < *  Copyright (C) 2005 by the past and present ircd coders, and others.
4 > *  Copyright (c) 2000-2014 ircd-hybrid development team
5   *
6   *  This program is free software; you can redistribute it and/or modify
7   *  it under the terms of the GNU General Public License as published by
# Line 18 | Line 17
17   *  along with this program; if not, write to the Free Software
18   *  Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307
19   *  USA
21 *
22 *  $Id$
20   */
21  
22 + /*! \file conf_parser.y
23 + * \brief Parses the ircd configuration file.
24 + * \version $Id$
25 + */
26 +
27 +
28   %{
29  
30   #define YY_NO_UNPUT
31   #include <sys/types.h>
32 + #include <string.h>
33  
34 + #include "config.h"
35   #include "stdinc.h"
31 #include "dalloca.h"
36   #include "ircd.h"
33 #include "tools.h"
37   #include "list.h"
38 < #include "s_conf.h"
38 > #include "conf.h"
39 > #include "conf_class.h"
40   #include "event.h"
41 < #include "s_log.h"
41 > #include "log.h"
42   #include "client.h"     /* for UMODE_ALL only */
39 #include "pcre.h"
43   #include "irc_string.h"
41 #include "irc_getaddrinfo.h"
42 #include "sprintf_irc.h"
44   #include "memory.h"
45   #include "modules.h"
46 < #include "s_serv.h" /* for CAP_LL / IsCapable */
46 > #include "server.h"
47   #include "hostmask.h"
48   #include "send.h"
49   #include "listener.h"
50   #include "resv.h"
51   #include "numeric.h"
52 < #include "s_user.h"
52 > #include "user.h"
53 > #include "motd.h"
54  
55   #ifdef HAVE_LIBCRYPTO
56   #include <openssl/rsa.h>
57   #include <openssl/bio.h>
58   #include <openssl/pem.h>
59 + #include <openssl/dh.h>
60   #endif
61  
62 < static char *class_name = NULL;
60 < static struct ConfItem *yy_conf = NULL;
61 < static struct AccessItem *yy_aconf = NULL;
62 < static struct MatchItem *yy_match_item = NULL;
63 < static struct ClassItem *yy_class = NULL;
64 < static char *yy_class_name = NULL;
65 <
66 < static dlink_list col_conf_list  = { NULL, NULL, 0 };
67 < static dlink_list hub_conf_list  = { NULL, NULL, 0 };
68 < static dlink_list leaf_conf_list = { NULL, NULL, 0 };
69 < static unsigned int listener_flags = 0;
70 < static unsigned int regex_ban = 0;
71 < static char userbuf[IRCD_BUFSIZE];
72 < static char hostbuf[IRCD_BUFSIZE];
73 < static char reasonbuf[REASONLEN + 1];
74 < static char gecos_name[REALLEN * 4];
75 <
76 < extern dlink_list gdeny_items; /* XXX */
77 <
78 < static char *resv_reason = NULL;
79 < static char *listener_address = NULL;
80 < static int not_atom = 0;
81 <
82 < struct CollectItem {
83 <  dlink_node node;
84 <  char *name;
85 <  char *user;
86 <  char *host;
87 <  char *passwd;
88 <  int  port;
89 <  int  flags;
90 < #ifdef HAVE_LIBCRYPTO
91 <  char *rsa_public_key_file;
92 <  RSA *rsa_public_key;
93 < #endif
94 < };
62 > #include "rsa.h"
63  
64 < static void
65 < free_collect_item(struct CollectItem *item)
64 > int yylex(void);
65 >
66 > static struct
67   {
68 <  MyFree(item->name);
69 <  MyFree(item->user);
70 <  MyFree(item->host);
71 <  MyFree(item->passwd);
72 < #ifdef HAVE_LIBCRYPTO
73 <  MyFree(item->rsa_public_key_file);
74 < #endif
75 <  MyFree(item);
76 < }
68 >  struct
69 >  {
70 >    dlink_list list;
71 >  } mask,
72 >    leaf,
73 >    hub;
74 >
75 >  struct
76 >  {
77 >    char buf[IRCD_BUFSIZE];
78 >  } name,
79 >    user,
80 >    host,
81 >    addr,
82 >    bind,
83 >    file,
84 >    ciph,
85 >    cert,
86 >    rpass,
87 >    spass,
88 >    class;
89 >
90 >  struct
91 >  {
92 >    unsigned int value;
93 >  } flags,
94 >    modes,
95 >    size,
96 >    type,
97 >    port,
98 >    aftype,
99 >    ping_freq,
100 >    max_perip,
101 >    con_freq,
102 >    min_idle,
103 >    max_idle,
104 >    max_total,
105 >    max_global,
106 >    max_local,
107 >    max_ident,
108 >    max_sendq,
109 >    max_recvq,
110 >    max_channels,
111 >    cidr_bitlen_ipv4,
112 >    cidr_bitlen_ipv6,
113 >    number_per_cidr;
114 > } block_state;
115  
116   static void
117 < unhook_hub_leaf_confs(void)
117 > reset_block_state(void)
118   {
119 <  dlink_node *ptr;
113 <  dlink_node *next_ptr;
114 <  struct CollectItem *yy_hconf;
115 <  struct CollectItem *yy_lconf;
119 >  dlink_node *ptr = NULL, *ptr_next = NULL;
120  
121 <  DLINK_FOREACH_SAFE(ptr, next_ptr, hub_conf_list.head)
121 >  DLINK_FOREACH_SAFE(ptr, ptr_next, block_state.mask.list.head)
122    {
123 <    yy_hconf = ptr->data;
124 <    dlinkDelete(&yy_hconf->node, &hub_conf_list);
125 <    free_collect_item(yy_hconf);
123 >    MyFree(ptr->data);
124 >    dlinkDelete(ptr, &block_state.mask.list);
125 >    free_dlink_node(ptr);
126    }
127  
128 <  DLINK_FOREACH_SAFE(ptr, next_ptr, leaf_conf_list.head)
128 >  DLINK_FOREACH_SAFE(ptr, ptr_next, block_state.leaf.list.head)
129    {
130 <    yy_lconf = ptr->data;
131 <    dlinkDelete(&yy_lconf->node, &leaf_conf_list);
132 <    free_collect_item(yy_lconf);
130 >    MyFree(ptr->data);
131 >    dlinkDelete(ptr, &block_state.leaf.list);
132 >    free_dlink_node(ptr);
133    }
134 +
135 +  DLINK_FOREACH_SAFE(ptr, ptr_next, block_state.hub.list.head)
136 +  {
137 +    MyFree(ptr->data);
138 +    dlinkDelete(ptr, &block_state.hub.list);
139 +    free_dlink_node(ptr);
140 +  }
141 +
142 +  memset(&block_state, 0, sizeof(block_state));
143   }
144  
145   %}
# Line 137 | Line 150 | unhook_hub_leaf_confs(void)
150   }
151  
152   %token  ACCEPT_PASSWORD
140 %token  ACTION
153   %token  ADMIN
154   %token  AFTYPE
143 %token  T_ALLOW
155   %token  ANTI_NICK_FLOOD
156   %token  ANTI_SPAM_EXIT_MESSAGE_TIME
157   %token  AUTOCONN
158 < %token  T_BLOCK
159 < %token  BURST_AWAY
160 < %token  BURST_TOPICWHO
150 < %token  BYTES KBYTES MBYTES GBYTES TBYTES
158 > %token  AWAY_COUNT
159 > %token  AWAY_TIME
160 > %token  BYTES KBYTES MBYTES
161   %token  CALLER_ID_WAIT
162   %token  CAN_FLOOD
153 %token  CAN_IDLE
163   %token  CHANNEL
164 < %token  CIDR_BITLEN_IPV4
165 < %token  CIDR_BITLEN_IPV6
157 < %token  CIPHER_PREFERENCE
164 > %token  CIDR_BITLEN_IPV4
165 > %token  CIDR_BITLEN_IPV6
166   %token  CLASS
159 %token  COMPRESSED
160 %token  COMPRESSION_LEVEL
167   %token  CONNECT
168   %token  CONNECTFREQ
169 < %token  CRYPTLINK
164 < %token  DEFAULT_CIPHER_PREFERENCE
169 > %token  CYCLE_ON_HOST_CHANGE
170   %token  DEFAULT_FLOODCOUNT
171   %token  DEFAULT_SPLIT_SERVER_COUNT
172   %token  DEFAULT_SPLIT_USER_COUNT
# Line 169 | Line 174 | unhook_hub_leaf_confs(void)
174   %token  DESCRIPTION
175   %token  DIE
176   %token  DISABLE_AUTH
177 < %token  DISABLE_HIDDEN
173 < %token  DISABLE_LOCAL_CHANNELS
177 > %token  DISABLE_FAKE_CHANNELS
178   %token  DISABLE_REMOTE_COMMANDS
175 %token  DOT_IN_IP6_ADDR
179   %token  DOTS_IN_IDENT
177 %token  DURATION
180   %token  EGDPOOL_PATH
181   %token  EMAIL
180 %token  ENABLE
182   %token  ENCRYPTED
183   %token  EXCEED_LIMIT
184   %token  EXEMPT
185   %token  FAILED_OPER_NOTICE
185 %token  FAKENAME
186 %token  IRCD_FLAGS
186   %token  FLATTEN_LINKS
188 %token  FFAILED_OPERLOG
189 %token  FKILLLOG
190 %token  FKLINELOG
191 %token  FGLINELOG
192 %token  FIOERRLOG
193 %token  FOPERLOG
194 %token  FOPERSPYLOG
195 %token  FUSERLOG
187   %token  GECOS
188   %token  GENERAL
189   %token  GLINE
190 < %token  GLINES
190 > %token  GLINE_DURATION
191 > %token  GLINE_ENABLE
192   %token  GLINE_EXEMPT
201 %token  GLINE_LOG
202 %token  GLINE_TIME
193   %token  GLINE_MIN_CIDR
194   %token  GLINE_MIN_CIDR6
195 + %token  GLINE_REQUEST_DURATION
196   %token  GLOBAL_KILL
206 %token  IRCD_AUTH
207 %token  NEED_IDENT
197   %token  HAVENT_READ_CONF
198   %token  HIDDEN
199 < %token  HIDDEN_ADMIN
200 < %token  HIDDEN_NAME
201 < %token  HIDDEN_OPER
199 > %token  HIDDEN_NAME
200 > %token  HIDE_CHANS
201 > %token  HIDE_IDLE
202 > %token  HIDE_IDLE_FROM_OPERS
203   %token  HIDE_SERVER_IPS
204   %token  HIDE_SERVERS
205 < %token  HIDE_SPOOF_IPS
205 > %token  HIDE_SERVICES
206 > %token  HIDE_SPOOF_IPS
207   %token  HOST
208   %token  HUB
209   %token  HUB_MASK
219 %token  IDLETIME
210   %token  IGNORE_BOGUS_TS
211   %token  INVISIBLE_ON_CONNECT
212 + %token  INVITE_CLIENT_COUNT
213 + %token  INVITE_CLIENT_TIME
214   %token  IP
215 + %token  IRCD_AUTH
216 + %token  IRCD_FLAGS
217 + %token  IRCD_SID
218 + %token  JOIN_FLOOD_COUNT
219 + %token  JOIN_FLOOD_TIME
220   %token  KILL
221 < %token  KILL_CHASE_TIME_LIMIT
221 > %token  KILL_CHASE_TIME_LIMIT
222   %token  KLINE
223   %token  KLINE_EXEMPT
224 < %token  KLINE_REASON
225 < %token  KLINE_WITH_REASON
229 < %token  KNOCK_DELAY
224 > %token  KNOCK_CLIENT_COUNT
225 > %token  KNOCK_CLIENT_TIME
226   %token  KNOCK_DELAY_CHANNEL
231 %token  LAZYLINK
227   %token  LEAF_MASK
228   %token  LINKS_DELAY
229   %token  LISTEN
230 < %token  T_LOG
236 < %token  LOGGING
237 < %token  LOG_LEVEL
230 > %token  MASK
231   %token  MAX_ACCEPT
232   %token  MAX_BANS
233 < %token  MAX_CHANS_PER_USER
233 > %token  MAX_CHANNELS
234   %token  MAX_GLOBAL
235   %token  MAX_IDENT
236 + %token  MAX_IDLE
237   %token  MAX_LOCAL
238   %token  MAX_NICK_CHANGES
239 + %token  MAX_NICK_LENGTH
240   %token  MAX_NICK_TIME
241   %token  MAX_NUMBER
242   %token  MAX_TARGETS
243 < %token  MESSAGE_LOCALE
243 > %token  MAX_TOPIC_LENGTH
244 > %token  MAX_WATCH
245 > %token  MIN_IDLE
246   %token  MIN_NONWILDCARD
247   %token  MIN_NONWILDCARD_SIMPLE
248   %token  MODULE
249   %token  MODULES
250 + %token  MOTD
251   %token  NAME
252 + %token  NEED_IDENT
253   %token  NEED_PASSWORD
254   %token  NETWORK_DESC
255   %token  NETWORK_NAME
256   %token  NICK
258 %token  NICK_CHANGES
257   %token  NO_CREATE_ON_SPLIT
258   %token  NO_JOIN_ON_SPLIT
259   %token  NO_OPER_FLOOD
260   %token  NO_TILDE
263 %token  NOT
261   %token  NUMBER
265 %token  NUMBER_PER_IDENT
262   %token  NUMBER_PER_CIDR
263   %token  NUMBER_PER_IP
268 %token  NUMBER_PER_IP_GLOBAL
269 %token  OPERATOR
270 %token  OPERS_BYPASS_CALLERID
271 %token  OPER_LOG
264   %token  OPER_ONLY_UMODES
265   %token  OPER_PASS_RESV
274 %token  OPER_SPY_T
266   %token  OPER_UMODES
267 < %token  INVITE_OPS_ONLY
268 < %token  JOIN_FLOOD_COUNT
278 < %token  JOIN_FLOOD_TIME
267 > %token  OPERATOR
268 > %token  OPERS_BYPASS_CALLERID
269   %token  PACE_WAIT
270   %token  PACE_WAIT_SIMPLE
271   %token  PASSWORD
272   %token  PATH
273   %token  PING_COOKIE
274   %token  PING_TIME
285 %token  PING_WARNING
275   %token  PORT
276   %token  QSTRING
277 < %token  QUIET_ON_BAN
277 > %token  RANDOM_IDLE
278   %token  REASON
279   %token  REDIRPORT
280   %token  REDIRSERV
292 %token  REGEX_T
281   %token  REHASH
294 %token  TREJECT_HOLD_TIME
282   %token  REMOTE
283   %token  REMOTEBAN
297 %token  RESTRICT_CHANNELS
298 %token  RESTRICTED
299 %token  RSA_PRIVATE_KEY_FILE
300 %token  RSA_PUBLIC_KEY_FILE
301 %token  SSL_CERTIFICATE_FILE
284   %token  RESV
285   %token  RESV_EXEMPT
286 < %token  SECONDS MINUTES HOURS DAYS WEEKS
287 < %token  SENDQ
286 > %token  RSA_PRIVATE_KEY_FILE
287 > %token  RSA_PUBLIC_KEY_FILE
288 > %token  SECONDS MINUTES HOURS DAYS WEEKS MONTHS YEARS
289   %token  SEND_PASSWORD
290 + %token  SENDQ
291   %token  SERVERHIDE
292   %token  SERVERINFO
309 %token  SERVLINK_PATH
310 %token  IRCD_SID
311 %token  TKLINE_EXPIRE_NOTICES
312 %token  T_SHARED
313 %token  T_CLUSTER
314 %token  TYPE
293   %token  SHORT_MOTD
316 %token  SILENT
294   %token  SPOOF
295   %token  SPOOF_NOTICE
296 + %token  SQUIT
297 + %token  SSL_CERTIFICATE_FILE
298 + %token  SSL_CERTIFICATE_FINGERPRINT
299 + %token  SSL_CONNECTION_REQUIRED
300 + %token  SSL_DH_ELLIPTIC_CURVE
301 + %token  SSL_DH_PARAM_FILE
302 + %token  SSL_MESSAGE_DIGEST_ALGORITHM
303 + %token  STATS_E_DISABLED
304   %token  STATS_I_OPER_ONLY
305   %token  STATS_K_OPER_ONLY
306   %token  STATS_O_OPER_ONLY
307   %token  STATS_P_OPER_ONLY
308 < %token  TBOOL
324 < %token  TMASKED
325 < %token  T_REJECT
326 < %token  TS_MAX_DELTA
327 < %token  TS_WARN_DELTA
328 < %token  TWODOTS
308 > %token  STATS_U_OPER_ONLY
309   %token  T_ALL
310   %token  T_BOTS
331 %token  T_SOFTCALLERID
311   %token  T_CALLERID
312   %token  T_CCONN
313 < %token  T_CLIENT_FLOOD
313 > %token  T_CLUSTER
314   %token  T_DEAF
315   %token  T_DEBUG
316 < %token  T_DRONE
316 > %token  T_DLINE
317   %token  T_EXTERNAL
318 + %token  T_FARCONNECT
319 + %token  T_FILE
320   %token  T_FULL
321 + %token  T_GLOBOPS
322   %token  T_INVISIBLE
323   %token  T_IPV4
324   %token  T_IPV6
325   %token  T_LOCOPS
326 < %token  T_LOGPATH
345 < %token  T_L_CRIT
346 < %token  T_L_DEBUG
347 < %token  T_L_ERROR
348 < %token  T_L_INFO
349 < %token  T_L_NOTICE
350 < %token  T_L_TRACE
351 < %token  T_L_WARN
326 > %token  T_LOG
327   %token  T_MAX_CLIENTS
328   %token  T_NCHANGE
329 < %token  T_OPERWALL
329 > %token  T_NONONREG
330 > %token  T_RECVQ
331   %token  T_REJ
332 + %token  T_RESTART
333 + %token  T_SERVER
334 + %token  T_SERVICE
335 + %token  T_SERVICES_NAME
336   %token  T_SERVNOTICE
337 + %token  T_SET
338 + %token  T_SHARED
339 + %token  T_SIZE
340   %token  T_SKILL
341 + %token  T_SOFTCALLERID
342   %token  T_SPY
343   %token  T_SSL
344 + %token  T_SSL_CIPHER_LIST
345   %token  T_UMODES
346   %token  T_UNAUTH
347 + %token  T_UNDLINE
348 + %token  T_UNLIMITED
349   %token  T_UNRESV
350   %token  T_UNXLINE
351   %token  T_WALLOP
352 + %token  T_WALLOPS
353 + %token  T_WEBIRC
354 + %token  TBOOL
355 + %token  THROTTLE_COUNT
356   %token  THROTTLE_TIME
357 < %token  TOPICBURST
357 > %token  TKLINE_EXPIRE_NOTICES
358 > %token  TMASKED
359   %token  TRUE_NO_OPER_FLOOD
360 < %token  TKLINE
361 < %token  TXLINE
362 < %token  TRESV
360 > %token  TS_MAX_DELTA
361 > %token  TS_WARN_DELTA
362 > %token  TWODOTS
363 > %token  TYPE
364   %token  UNKLINE
372 %token  USER
365   %token  USE_EGD
374 %token  USE_EXCEPT
375 %token  USE_INVEX
376 %token  USE_KNOCK
366   %token  USE_LOGGING
367 < %token  USE_WHOIS_ACTUALLY
367 > %token  USER
368   %token  VHOST
369   %token  VHOST6
370 + %token  WARN_NO_CONNECT_BLOCK
371   %token  XLINE
382 %token  WARN
383 %token  WARN_NO_NLINE
372  
373 < %type <string> QSTRING
374 < %type <number> NUMBER
375 < %type <number> timespec
376 < %type <number> timespec_
377 < %type <number> sizespec
378 < %type <number> sizespec_
373 > %type  <string> QSTRING
374 > %type  <number> NUMBER
375 > %type  <number> timespec
376 > %type  <number> timespec_
377 > %type  <number> sizespec
378 > %type  <number> sizespec_
379  
380   %%
381 < conf:  
381 > conf:
382          | conf conf_item
383          ;
384  
385   conf_item:        admin_entry
386                  | logging_entry
387                  | oper_entry
388 <                | channel_entry
389 <                | class_entry
388 >                | channel_entry
389 >                | class_entry
390                  | listen_entry
391                  | auth_entry
392                  | serverinfo_entry
393 <                | serverhide_entry
393 >                | serverhide_entry
394                  | resv_entry
395 +                | service_entry
396                  | shared_entry
397 <                | cluster_entry
397 >                | cluster_entry
398                  | connect_entry
399                  | kill_entry
400                  | deny_entry
401 <                | exempt_entry
402 <                | general_entry
414 <                | gline_entry
401 >                | exempt_entry
402 >                | general_entry
403                  | gecos_entry
404                  | modules_entry
405 +                | motd_entry
406                  | error ';'
407                  | error '}'
408          ;
409  
410  
411   timespec_: { $$ = 0; } | timespec;
412 < timespec:       NUMBER timespec_
413 <                {
414 <                        $$ = $1 + $2;
415 <                }
416 <                | NUMBER SECONDS timespec_
417 <                {
418 <                        $$ = $1 + $3;
419 <                }
420 <                | NUMBER MINUTES timespec_
421 <                {
422 <                        $$ = $1 * 60 + $3;
423 <                }
424 <                | NUMBER HOURS timespec_
425 <                {
426 <                        $$ = $1 * 60 * 60 + $3;
427 <                }
439 <                | NUMBER DAYS timespec_
440 <                {
441 <                        $$ = $1 * 60 * 60 * 24 + $3;
442 <                }
443 <                | NUMBER WEEKS timespec_
444 <                {
445 <                        $$ = $1 * 60 * 60 * 24 * 7 + $3;
446 <                }
447 <                ;
448 <
449 < sizespec_:      { $$ = 0; } | sizespec;
450 < sizespec:       NUMBER sizespec_ { $$ = $1 + $2; }
451 <                | NUMBER BYTES sizespec_ { $$ = $1 + $3; }
452 <                | NUMBER KBYTES sizespec_ { $$ = $1 * 1024 + $3; }
453 <                | NUMBER MBYTES sizespec_ { $$ = $1 * 1024 * 1024 + $3; }
454 <                ;
412 > timespec:  NUMBER timespec_         { $$ = $1 + $2; } |
413 >           NUMBER SECONDS timespec_ { $$ = $1 + $3; } |
414 >           NUMBER MINUTES timespec_ { $$ = $1 * 60 + $3; } |
415 >           NUMBER HOURS timespec_   { $$ = $1 * 60 * 60 + $3; } |
416 >           NUMBER DAYS timespec_    { $$ = $1 * 60 * 60 * 24 + $3; } |
417 >           NUMBER WEEKS timespec_   { $$ = $1 * 60 * 60 * 24 * 7 + $3; } |
418 >           NUMBER MONTHS timespec_  { $$ = $1 * 60 * 60 * 24 * 7 * 4 + $3; } |
419 >           NUMBER YEARS timespec_   { $$ = $1 * 60 * 60 * 24 * 365 + $3; }
420 >           ;
421 >
422 > sizespec_:  { $$ = 0; } | sizespec;
423 > sizespec:   NUMBER sizespec_ { $$ = $1 + $2; } |
424 >            NUMBER BYTES sizespec_ { $$ = $1 + $3; } |
425 >            NUMBER KBYTES sizespec_ { $$ = $1 * 1024 + $3; } |
426 >            NUMBER MBYTES sizespec_ { $$ = $1 * 1024 * 1024 + $3; }
427 >            ;
428  
429  
430   /***************************************************************************
# Line 465 | Line 438 | modules_item:   modules_module | modules
438  
439   modules_module: MODULE '=' QSTRING ';'
440   {
441 < #ifndef STATIC_MODULES /* NOOP in the static case */
442 <  if (ypass == 2)
470 <  {
471 <    char *m_bn;
472 <
473 <    m_bn = basename(yylval.string);
474 <
475 <    /* I suppose we should just ignore it if it is already loaded(since
476 <     * otherwise we would flood the opers on rehash) -A1kmm.
477 <     */
478 <    add_conf_module(yylval.string);
479 <  }
480 < #endif
441 >  if (conf_parser_ctx.pass == 2)
442 >    add_conf_module(libio_basename(yylval.string));
443   };
444  
445   modules_path: PATH '=' QSTRING ';'
446   {
447 < #ifndef STATIC_MODULES
486 <  if (ypass == 2)
447 >  if (conf_parser_ctx.pass == 2)
448      mod_add_path(yylval.string);
488 #endif
449   };
450  
491 /***************************************************************************
492 *  section serverinfo
493 ***************************************************************************/
494 serverinfo_entry: SERVERINFO
495  '{' serverinfo_items '}' ';';
451  
452 < serverinfo_items:       serverinfo_items serverinfo_item |
453 <                        serverinfo_item ;
454 < serverinfo_item:        serverinfo_name | serverinfo_vhost |
455 <                        serverinfo_hub | serverinfo_description |
456 <                        serverinfo_network_name | serverinfo_network_desc |
457 <                        serverinfo_max_clients |
458 <                        serverinfo_rsa_private_key_file | serverinfo_vhost6 |
459 <                        serverinfo_sid | serverinfo_ssl_certificate_file |
460 <                        error ';' ;
452 > serverinfo_entry: SERVERINFO '{' serverinfo_items '}' ';';
453 >
454 > serverinfo_items:       serverinfo_items serverinfo_item | serverinfo_item ;
455 > serverinfo_item:        serverinfo_name |
456 >                        serverinfo_vhost |
457 >                        serverinfo_hub |
458 >                        serverinfo_description |
459 >                        serverinfo_network_name |
460 >                        serverinfo_network_desc |
461 >                        serverinfo_max_clients |
462 >                        serverinfo_max_nick_length |
463 >                        serverinfo_max_topic_length |
464 >                        serverinfo_ssl_dh_param_file |
465 >                        serverinfo_ssl_dh_elliptic_curve |
466 >                        serverinfo_rsa_private_key_file |
467 >                        serverinfo_vhost6 |
468 >                        serverinfo_sid |
469 >                        serverinfo_ssl_certificate_file |
470 >                        serverinfo_ssl_cipher_list |
471 >                        serverinfo_ssl_message_digest_algorithm |
472 >                        error ';' ;
473 >
474  
475   serverinfo_ssl_certificate_file: SSL_CERTIFICATE_FILE '=' QSTRING ';'
476   {
477   #ifdef HAVE_LIBCRYPTO
478 <  if (ypass == 2 && ServerInfo.ctx)
478 >  if (conf_parser_ctx.pass == 2)
479    {
480 <    if (!ServerInfo.rsa_private_key_file)
480 >    if (!ConfigServerInfo.rsa_private_key_file)
481      {
482 <      yyerror("No rsa_private_key_file specified, SSL disabled");
482 >      conf_error_report("No rsa_private_key_file specified, SSL disabled");
483        break;
484      }
485  
486 <    if (SSL_CTX_use_certificate_file(ServerInfo.ctx,
487 <      yylval.string, SSL_FILETYPE_PEM) <= 0)
486 >    if (SSL_CTX_use_certificate_file(ConfigServerInfo.server_ctx, yylval.string,
487 >                                     SSL_FILETYPE_PEM) <= 0 ||
488 >        SSL_CTX_use_certificate_file(ConfigServerInfo.client_ctx, yylval.string,
489 >                                     SSL_FILETYPE_PEM) <= 0)
490      {
491 <      yyerror(ERR_lib_error_string(ERR_get_error()));
491 >      report_crypto_errors();
492 >      conf_error_report("Could not open/read certificate file");
493        break;
494      }
495  
496 <    if (SSL_CTX_use_PrivateKey_file(ServerInfo.ctx,
497 <      ServerInfo.rsa_private_key_file, SSL_FILETYPE_PEM) <= 0)
496 >    if (SSL_CTX_use_PrivateKey_file(ConfigServerInfo.server_ctx, ConfigServerInfo.rsa_private_key_file,
497 >                                    SSL_FILETYPE_PEM) <= 0 ||
498 >        SSL_CTX_use_PrivateKey_file(ConfigServerInfo.client_ctx, ConfigServerInfo.rsa_private_key_file,
499 >                                    SSL_FILETYPE_PEM) <= 0)
500      {
501 <      yyerror(ERR_lib_error_string(ERR_get_error()));
501 >      report_crypto_errors();
502 >      conf_error_report("Could not read RSA private key");
503        break;
504      }
505  
506 <    if (!SSL_CTX_check_private_key(ServerInfo.ctx))
506 >    if (!SSL_CTX_check_private_key(ConfigServerInfo.server_ctx) ||
507 >        !SSL_CTX_check_private_key(ConfigServerInfo.client_ctx))
508      {
509 <      yyerror("RSA private key does not match the SSL certificate public key!");
509 >      report_crypto_errors();
510 >      conf_error_report("Could not read RSA private key");
511        break;
512      }
513    }
# Line 541 | Line 517 | serverinfo_ssl_certificate_file: SSL_CER
517   serverinfo_rsa_private_key_file: RSA_PRIVATE_KEY_FILE '=' QSTRING ';'
518   {
519   #ifdef HAVE_LIBCRYPTO
520 <  if (ypass == 1)
520 >  BIO *file = NULL;
521 >
522 >  if (conf_parser_ctx.pass != 1)
523 >    break;
524 >
525 >  if (ConfigServerInfo.rsa_private_key)
526    {
527 <    BIO *file;
527 >    RSA_free(ConfigServerInfo.rsa_private_key);
528 >    ConfigServerInfo.rsa_private_key = NULL;
529 >  }
530  
531 <    if (ServerInfo.rsa_private_key)
532 <    {
533 <      RSA_free(ServerInfo.rsa_private_key);
534 <      ServerInfo.rsa_private_key = NULL;
535 <    }
531 >  if (ConfigServerInfo.rsa_private_key_file)
532 >  {
533 >    MyFree(ConfigServerInfo.rsa_private_key_file);
534 >    ConfigServerInfo.rsa_private_key_file = NULL;
535 >  }
536 >
537 >  ConfigServerInfo.rsa_private_key_file = xstrdup(yylval.string);
538 >
539 >  if ((file = BIO_new_file(yylval.string, "r")) == NULL)
540 >  {
541 >    conf_error_report("File open failed, ignoring");
542 >    break;
543 >  }
544 >
545 >  ConfigServerInfo.rsa_private_key = PEM_read_bio_RSAPrivateKey(file, NULL, 0, NULL);
546 >
547 >  BIO_set_close(file, BIO_CLOSE);
548 >  BIO_free(file);
549 >
550 >  if (ConfigServerInfo.rsa_private_key == NULL)
551 >  {
552 >    conf_error_report("Couldn't extract key, ignoring");
553 >    break;
554 >  }
555 >
556 >  if (!RSA_check_key(ConfigServerInfo.rsa_private_key))
557 >  {
558 >    RSA_free(ConfigServerInfo.rsa_private_key);
559 >    ConfigServerInfo.rsa_private_key = NULL;
560 >
561 >    conf_error_report("Invalid key, ignoring");
562 >    break;
563 >  }
564 >
565 >  if (RSA_size(ConfigServerInfo.rsa_private_key) < 128)
566 >  {
567 >    RSA_free(ConfigServerInfo.rsa_private_key);
568 >    ConfigServerInfo.rsa_private_key = NULL;
569 >
570 >    conf_error_report("Ignoring serverinfo::rsa_private_key_file -- need at least a 1024 bit key size");
571 >  }
572 > #endif
573 > };
574 >
575 > serverinfo_ssl_dh_param_file: SSL_DH_PARAM_FILE '=' QSTRING ';'
576 > {
577 > #ifdef HAVE_LIBCRYPTO
578 >  if (conf_parser_ctx.pass == 2)
579 >  {
580 >    BIO *file = BIO_new_file(yylval.string, "r");
581  
582 <    if (ServerInfo.rsa_private_key_file)
582 >    if (file)
583      {
584 <      MyFree(ServerInfo.rsa_private_key_file);
585 <      ServerInfo.rsa_private_key_file = NULL;
584 >      DH *dh = PEM_read_bio_DHparams(file, NULL, NULL, NULL);
585 >
586 >      BIO_free(file);
587 >
588 >      if (dh)
589 >      {
590 >        if (DH_size(dh) < 128)
591 >          conf_error_report("Ignoring serverinfo::ssl_dh_param_file -- need at least a 1024 bit DH prime size");
592 >        else
593 >          SSL_CTX_set_tmp_dh(ConfigServerInfo.server_ctx, dh);
594 >
595 >        DH_free(dh);
596 >      }
597      }
598 +    else
599 +      conf_error_report("Ignoring serverinfo::ssl_dh_param_file -- could not open/read Diffie-Hellman parameter file");
600 +  }
601 + #endif
602 + };
603  
604 <    DupString(ServerInfo.rsa_private_key_file, yylval.string);
604 > serverinfo_ssl_cipher_list: T_SSL_CIPHER_LIST '=' QSTRING ';'
605 > {
606 > #ifdef HAVE_LIBCRYPTO
607 >  if (conf_parser_ctx.pass == 2)
608 >    SSL_CTX_set_cipher_list(ConfigServerInfo.server_ctx, yylval.string);
609 > #endif
610 > };
611  
612 <    if ((file = BIO_new_file(yylval.string, "r")) == NULL)
612 > serverinfo_ssl_message_digest_algorithm: SSL_MESSAGE_DIGEST_ALGORITHM '=' QSTRING ';'
613 > {
614 > #ifdef HAVE_LIBCRYPTO
615 >  if (conf_parser_ctx.pass == 2)
616 >  {
617 >    if ((ConfigServerInfo.message_digest_algorithm = EVP_get_digestbyname(yylval.string)) == NULL)
618      {
619 <      yyerror("File open failed, ignoring");
620 <      break;
619 >      ConfigServerInfo.message_digest_algorithm = EVP_sha256();
620 >      conf_error_report("Ignoring serverinfo::ssl_message_digest_algorithm -- unknown message digest algorithm");
621      }
622 +  }
623 + #endif
624 + }
625  
626 <    ServerInfo.rsa_private_key = (RSA *)PEM_read_bio_RSAPrivateKey(file, NULL,
627 <      0, NULL);
628 <
629 <    BIO_set_close(file, BIO_CLOSE);
630 <    BIO_free(file);
626 > serverinfo_ssl_dh_elliptic_curve: SSL_DH_ELLIPTIC_CURVE '=' QSTRING ';'
627 > {
628 > #ifdef HAVE_LIBCRYPTO
629 > #if OPENSSL_VERSION_NUMBER >= 0x1000005FL && !defined(OPENSSL_NO_ECDH)
630 >  int nid = 0;
631 >  EC_KEY *key = NULL;
632  
633 <    if (ServerInfo.rsa_private_key == NULL)
633 >  if (conf_parser_ctx.pass == 2)
634 >  {
635 >    if ((nid = OBJ_sn2nid(yylval.string)) == 0)
636      {
637 <      yyerror("Couldn't extract key, ignoring");
638 <      break;
637 >        conf_error_report("Ignoring serverinfo::serverinfo_ssl_dh_elliptic_curve -- unknown curve name");
638 >        break;
639      }
640  
641 <    if (!RSA_check_key(ServerInfo.rsa_private_key))
641 >    if ((key = EC_KEY_new_by_curve_name(nid)) == NULL)
642      {
643 <      RSA_free(ServerInfo.rsa_private_key);
583 <      ServerInfo.rsa_private_key = NULL;
584 <
585 <      yyerror("Invalid key, ignoring");
643 >      conf_error_report("Ignoring serverinfo::serverinfo_ssl_dh_elliptic_curve -- could not create curve");
644        break;
645      }
646  
647 <    /* require 2048 bit (256 byte) key */
648 <    if (RSA_size(ServerInfo.rsa_private_key) != 256)
649 <    {
650 <      RSA_free(ServerInfo.rsa_private_key);
593 <      ServerInfo.rsa_private_key = NULL;
594 <
595 <      yyerror("Not a 2048 bit key, ignoring");
596 <    }
597 <  }
647 >    SSL_CTX_set_tmp_ecdh(ConfigServerInfo.server_ctx, key);
648 >    EC_KEY_free(key);
649 > }
650 > #endif
651   #endif
652   };
653  
654 < serverinfo_name: NAME '=' QSTRING ';'
654 > serverinfo_name: NAME '=' QSTRING ';'
655   {
656    /* this isn't rehashable */
657 <  if (ypass == 2)
657 >  if (conf_parser_ctx.pass == 2 && !ConfigServerInfo.name)
658    {
659 <    if (ServerInfo.name == NULL)
659 >    if (valid_servname(yylval.string))
660 >      ConfigServerInfo.name = xstrdup(yylval.string);
661 >    else
662      {
663 <      /* the ircd will exit() in main() if we dont set one */
664 <      if (strlen(yylval.string) <= HOSTLEN)
610 <        DupString(ServerInfo.name, yylval.string);
663 >      conf_error_report("Ignoring serverinfo::name -- invalid name. Aborting.");
664 >      exit(0);
665      }
666    }
667   };
668  
669 < serverinfo_sid: IRCD_SID '=' QSTRING ';'
669 > serverinfo_sid: IRCD_SID '=' QSTRING ';'
670   {
671    /* this isn't rehashable */
672 <  if (ypass == 2 && !ServerInfo.sid)
672 >  if (conf_parser_ctx.pass == 2 && !ConfigServerInfo.sid)
673    {
674 <    if ((strlen(yylval.string) == IRC_MAXSID) && IsDigit(yylval.string[0])
675 <        && IsAlNum(yylval.string[1]) && IsAlNum(yylval.string[2]))
622 <    {
623 <      DupString(ServerInfo.sid, yylval.string);
624 <    }
674 >    if (valid_sid(yylval.string))
675 >      ConfigServerInfo.sid = xstrdup(yylval.string);
676      else
677      {
678 <      ilog(L_ERROR, "Ignoring config file entry SID -- invalid SID. Aborting.");
678 >      conf_error_report("Ignoring serverinfo::sid -- invalid SID. Aborting.");
679        exit(0);
680      }
681    }
# Line 632 | Line 683 | serverinfo_sid: IRCD_SID '=' QSTRING ';'
683  
684   serverinfo_description: DESCRIPTION '=' QSTRING ';'
685   {
686 <  if (ypass == 2)
686 >  if (conf_parser_ctx.pass == 2)
687    {
688 <    MyFree(ServerInfo.description);
689 <    DupString(ServerInfo.description,yylval.string);
688 >    MyFree(ConfigServerInfo.description);
689 >    ConfigServerInfo.description = xstrdup(yylval.string);
690    }
691   };
692  
693   serverinfo_network_name: NETWORK_NAME '=' QSTRING ';'
694   {
695 <  if (ypass == 2)
695 >  if (conf_parser_ctx.pass == 2)
696    {
697      char *p;
698  
699 <    if ((p = strchr(yylval.string, ' ')) != NULL)
700 <      p = '\0';
699 >    if ((p = strchr(yylval.string, ' ')))
700 >      *p = '\0';
701  
702 <    MyFree(ServerInfo.network_name);
703 <    DupString(ServerInfo.network_name, yylval.string);
702 >    MyFree(ConfigServerInfo.network_name);
703 >    ConfigServerInfo.network_name = xstrdup(yylval.string);
704    }
705   };
706  
707   serverinfo_network_desc: NETWORK_DESC '=' QSTRING ';'
708   {
709 <  if (ypass == 2)
710 <  {
711 <    MyFree(ServerInfo.network_desc);
712 <    DupString(ServerInfo.network_desc, yylval.string);
713 <  }
709 >  if (conf_parser_ctx.pass != 2)
710 >    break;
711 >
712 >  MyFree(ConfigServerInfo.network_desc);
713 >  ConfigServerInfo.network_desc = xstrdup(yylval.string);
714   };
715  
716   serverinfo_vhost: VHOST '=' QSTRING ';'
717   {
718 <  if (ypass == 2 && *yylval.string != '*')
718 >  if (conf_parser_ctx.pass == 2 && *yylval.string != '*')
719    {
720      struct addrinfo hints, *res;
721  
# Line 674 | Line 725 | serverinfo_vhost: VHOST '=' QSTRING ';'
725      hints.ai_socktype = SOCK_STREAM;
726      hints.ai_flags    = AI_PASSIVE | AI_NUMERICHOST;
727  
728 <    if (irc_getaddrinfo(yylval.string, NULL, &hints, &res))
729 <      ilog(L_ERROR, "Invalid netmask for server vhost(%s)", yylval.string);
728 >    if (getaddrinfo(yylval.string, NULL, &hints, &res))
729 >      ilog(LOG_TYPE_IRCD, "Invalid netmask for server vhost(%s)", yylval.string);
730      else
731      {
732 <      assert(res != NULL);
732 >      assert(res);
733  
734 <      memcpy(&ServerInfo.ip, res->ai_addr, res->ai_addrlen);
735 <      ServerInfo.ip.ss.ss_family = res->ai_family;
736 <      ServerInfo.ip.ss_len = res->ai_addrlen;
737 <      irc_freeaddrinfo(res);
734 >      memcpy(&ConfigServerInfo.ip, res->ai_addr, res->ai_addrlen);
735 >      ConfigServerInfo.ip.ss.ss_family = res->ai_family;
736 >      ConfigServerInfo.ip.ss_len = res->ai_addrlen;
737 >      freeaddrinfo(res);
738  
739 <      ServerInfo.specific_ipv4_vhost = 1;
739 >      ConfigServerInfo.specific_ipv4_vhost = 1;
740      }
741    }
742   };
743  
744   serverinfo_vhost6: VHOST6 '=' QSTRING ';'
745   {
746 < #ifdef IPV6
696 <  if (ypass == 2 && *yylval.string != '*')
746 >  if (conf_parser_ctx.pass == 2 && *yylval.string != '*')
747    {
748      struct addrinfo hints, *res;
749  
# Line 703 | Line 753 | serverinfo_vhost6: VHOST6 '=' QSTRING ';
753      hints.ai_socktype = SOCK_STREAM;
754      hints.ai_flags    = AI_PASSIVE | AI_NUMERICHOST;
755  
756 <    if (irc_getaddrinfo(yylval.string, NULL, &hints, &res))
757 <      ilog(L_ERROR, "Invalid netmask for server vhost6(%s)", yylval.string);
756 >    if (getaddrinfo(yylval.string, NULL, &hints, &res))
757 >      ilog(LOG_TYPE_IRCD, "Invalid netmask for server vhost6(%s)", yylval.string);
758      else
759      {
760 <      assert(res != NULL);
760 >      assert(res);
761  
762 <      memcpy(&ServerInfo.ip6, res->ai_addr, res->ai_addrlen);
763 <      ServerInfo.ip6.ss.ss_family = res->ai_family;
764 <      ServerInfo.ip6.ss_len = res->ai_addrlen;
765 <      irc_freeaddrinfo(res);
762 >      memcpy(&ConfigServerInfo.ip6, res->ai_addr, res->ai_addrlen);
763 >      ConfigServerInfo.ip6.ss.ss_family = res->ai_family;
764 >      ConfigServerInfo.ip6.ss_len = res->ai_addrlen;
765 >      freeaddrinfo(res);
766  
767 <      ServerInfo.specific_ipv6_vhost = 1;
767 >      ConfigServerInfo.specific_ipv6_vhost = 1;
768      }
769    }
720 #endif
770   };
771  
772   serverinfo_max_clients: T_MAX_CLIENTS '=' NUMBER ';'
773   {
774 <  if (ypass == 2)
774 >  if (conf_parser_ctx.pass != 2)
775 >    break;
776 >
777 >  if ($3 < MAXCLIENTS_MIN)
778    {
779 <    recalc_fdlimit(NULL);
779 >    char buf[IRCD_BUFSIZE] = "";
780  
781 <    if ($3 < MAXCLIENTS_MIN)
782 <    {
783 <      char buf[IRCD_BUFSIZE];
784 <      ircsprintf(buf, "MAXCLIENTS too low, setting to %d", MAXCLIENTS_MIN);
785 <      yyerror(buf);
786 <    }
787 <    else if ($3 > MAXCLIENTS_MAX)
788 <    {
789 <      char buf[IRCD_BUFSIZE];
790 <      ircsprintf(buf, "MAXCLIENTS too high, setting to %d", MAXCLIENTS_MAX);
791 <      yyerror(buf);
740 <    }
741 <    else
742 <      ServerInfo.max_clients = $3;
781 >    snprintf(buf, sizeof(buf), "MAXCLIENTS too low, setting to %d", MAXCLIENTS_MIN);
782 >    conf_error_report(buf);
783 >    ConfigServerInfo.max_clients = MAXCLIENTS_MIN;
784 >  }
785 >  else if ($3 > MAXCLIENTS_MAX)
786 >  {
787 >    char buf[IRCD_BUFSIZE] = "";
788 >
789 >    snprintf(buf, sizeof(buf), "MAXCLIENTS too high, setting to %d", MAXCLIENTS_MAX);
790 >    conf_error_report(buf);
791 >    ConfigServerInfo.max_clients = MAXCLIENTS_MAX;
792    }
793 +  else
794 +    ConfigServerInfo.max_clients = $3;
795   };
796  
797 < serverinfo_hub: HUB '=' TBOOL ';'
797 > serverinfo_max_nick_length: MAX_NICK_LENGTH '=' NUMBER ';'
798   {
799 <  if (ypass == 2)
799 >  if (conf_parser_ctx.pass != 2)
800 >    break;
801 >
802 >  if ($3 < 9)
803    {
804 <    if (yylval.number)
805 <    {
806 <      /* Don't become a hub if we have a lazylink active. */
807 <      if (!ServerInfo.hub && uplink && IsCapable(uplink, CAP_LL))
808 <      {
809 <        sendto_realops_flags(UMODE_ALL, L_ALL,
756 <                             "Ignoring config file line hub=yes; "
757 <                             "due to active LazyLink (%s)", uplink->name);
758 <      }
759 <      else
760 <      {
761 <        ServerInfo.hub = 1;
762 <        uplink = NULL;
763 <        delete_capability("HUB");
764 <        add_capability("HUB", CAP_HUB, 1);
765 <      }
766 <    }
767 <    else if (ServerInfo.hub)
768 <    {
769 <      dlink_node *ptr = NULL;
804 >    conf_error_report("max_nick_length too low, setting to 9");
805 >    ConfigServerInfo.max_nick_length = 9;
806 >  }
807 >  else if ($3 > NICKLEN)
808 >  {
809 >    char buf[IRCD_BUFSIZE] = "";
810  
811 <      ServerInfo.hub = 0;
812 <      delete_capability("HUB");
811 >    snprintf(buf, sizeof(buf), "max_nick_length too high, setting to %d", NICKLEN);
812 >    conf_error_report(buf);
813 >    ConfigServerInfo.max_nick_length = NICKLEN;
814 >  }
815 >  else
816 >    ConfigServerInfo.max_nick_length = $3;
817 > };
818  
819 <      /* Don't become a leaf if we have a lazylink active. */
820 <      DLINK_FOREACH(ptr, serv_list.head)
821 <      {
822 <        const struct Client *acptr = ptr->data;
823 <        if (MyConnect(acptr) && IsCapable(acptr, CAP_LL))
824 <        {
825 <          sendto_realops_flags(UMODE_ALL, L_ALL,
826 <                               "Ignoring config file line hub=no; "
827 <                               "due to active LazyLink (%s)",
828 <                               acptr->name);
829 <          add_capability("HUB", CAP_HUB, 1);
830 <          ServerInfo.hub = 1;
831 <          break;
832 <        }
833 <      }
834 <    }
819 > serverinfo_max_topic_length: MAX_TOPIC_LENGTH '=' NUMBER ';'
820 > {
821 >  if (conf_parser_ctx.pass != 2)
822 >    break;
823 >
824 >  if ($3 < 80)
825 >  {
826 >    conf_error_report("max_topic_length too low, setting to 80");
827 >    ConfigServerInfo.max_topic_length = 80;
828 >  }
829 >  else if ($3 > TOPICLEN)
830 >  {
831 >    char buf[IRCD_BUFSIZE] = "";
832 >
833 >    snprintf(buf, sizeof(buf), "max_topic_length too high, setting to %d", TOPICLEN);
834 >    conf_error_report(buf);
835 >    ConfigServerInfo.max_topic_length = TOPICLEN;
836    }
837 +  else
838 +    ConfigServerInfo.max_topic_length = $3;
839 + };
840 +
841 + serverinfo_hub: HUB '=' TBOOL ';'
842 + {
843 +  if (conf_parser_ctx.pass == 2)
844 +    ConfigServerInfo.hub = yylval.number;
845   };
846  
847   /***************************************************************************
# Line 796 | Line 850 | serverinfo_hub: HUB '=' TBOOL ';'
850   admin_entry: ADMIN  '{' admin_items '}' ';' ;
851  
852   admin_items: admin_items admin_item | admin_item;
853 < admin_item:  admin_name | admin_description |
854 <             admin_email | error ';' ;
853 > admin_item:  admin_name |
854 >             admin_description |
855 >             admin_email |
856 >             error ';' ;
857  
858 < admin_name: NAME '=' QSTRING ';'
858 > admin_name: NAME '=' QSTRING ';'
859   {
860 <  if (ypass == 2)
861 <  {
862 <    MyFree(AdminInfo.name);
863 <    DupString(AdminInfo.name, yylval.string);
864 <  }
860 >  if (conf_parser_ctx.pass != 2)
861 >    break;
862 >
863 >  MyFree(ConfigAdminInfo.name);
864 >  ConfigAdminInfo.name = xstrdup(yylval.string);
865   };
866  
867   admin_email: EMAIL '=' QSTRING ';'
868   {
869 <  if (ypass == 2)
870 <  {
871 <    MyFree(AdminInfo.email);
872 <    DupString(AdminInfo.email, yylval.string);
873 <  }
869 >  if (conf_parser_ctx.pass != 2)
870 >    break;
871 >
872 >  MyFree(ConfigAdminInfo.email);
873 >  ConfigAdminInfo.email = xstrdup(yylval.string);
874   };
875  
876   admin_description: DESCRIPTION '=' QSTRING ';'
877   {
878 <  if (ypass == 2)
879 <  {
880 <    MyFree(AdminInfo.description);
881 <    DupString(AdminInfo.description, yylval.string);
882 <  }
878 >  if (conf_parser_ctx.pass != 2)
879 >    break;
880 >
881 >  MyFree(ConfigAdminInfo.description);
882 >  ConfigAdminInfo.description = xstrdup(yylval.string);
883   };
884  
885   /***************************************************************************
886 < *  section logging
886 > * motd section
887   ***************************************************************************/
888 < /* XXX */
889 < logging_entry:          LOGGING  '{' logging_items '}' ';' ;
888 > motd_entry: MOTD
889 > {
890 >  if (conf_parser_ctx.pass == 2)
891 >    reset_block_state();
892 > } '{' motd_items '}' ';'
893 > {
894 >  dlink_node *ptr = NULL;
895  
896 < logging_items:          logging_items logging_item |
897 <                        logging_item ;
896 >  if (conf_parser_ctx.pass != 2)
897 >    break;
898  
899 < logging_item:           logging_path | logging_oper_log |
900 <                        logging_log_level |
840 <                        logging_use_logging | logging_fuserlog |
841 <                        logging_foperlog | logging_fglinelog |
842 <                        logging_fklinelog | logging_killlog |
843 <                        logging_foperspylog | logging_ioerrlog |
844 <                        logging_ffailed_operlog |
845 <                        error ';' ;
899 >  if (!block_state.file.buf[0])
900 >    break;
901  
902 < logging_path:           T_LOGPATH '=' QSTRING ';'
903 <                        {
904 <                        };
902 >  DLINK_FOREACH(ptr, block_state.mask.list.head)
903 >    motd_add(ptr->data, block_state.file.buf);
904 > };
905  
906 < logging_oper_log:       OPER_LOG '=' QSTRING ';'
907 <                        {
853 <                        };
906 > motd_items: motd_items motd_item | motd_item;
907 > motd_item:  motd_mask | motd_file | error ';' ;
908  
909 < logging_fuserlog: FUSERLOG '=' QSTRING ';'
909 > motd_mask: MASK '=' QSTRING ';'
910   {
911 <  if (ypass == 2)
912 <    strlcpy(ConfigLoggingEntry.userlog, yylval.string,
859 <            sizeof(ConfigLoggingEntry.userlog));
911 >  if (conf_parser_ctx.pass == 2)
912 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.mask.list);
913   };
914  
915 < logging_ffailed_operlog: FFAILED_OPERLOG '=' QSTRING ';'
915 > motd_file: T_FILE '=' QSTRING ';'
916   {
917 <  if (ypass == 2)
918 <    strlcpy(ConfigLoggingEntry.failed_operlog, yylval.string,
866 <            sizeof(ConfigLoggingEntry.failed_operlog));
917 >  if (conf_parser_ctx.pass == 2)
918 >    strlcpy(block_state.file.buf, yylval.string, sizeof(block_state.file.buf));
919   };
920  
921 < logging_foperlog: FOPERLOG '=' QSTRING ';'
922 < {
923 <  if (ypass == 2)
924 <    strlcpy(ConfigLoggingEntry.operlog, yylval.string,
925 <            sizeof(ConfigLoggingEntry.operlog));
926 < };
921 > /***************************************************************************
922 > *  section logging
923 > ***************************************************************************/
924 > logging_entry:          T_LOG  '{' logging_items '}' ';' ;
925 > logging_items:          logging_items logging_item | logging_item ;
926 >
927 > logging_item:           logging_use_logging | logging_file_entry |
928 >                        error ';' ;
929  
930 < logging_foperspylog: FOPERSPYLOG '=' QSTRING ';'
930 > logging_use_logging: USE_LOGGING '=' TBOOL ';'
931   {
932 <  if (ypass == 2)
933 <    strlcpy(ConfigLoggingEntry.operspylog, yylval.string,
880 <            sizeof(ConfigLoggingEntry.operspylog));
932 >  if (conf_parser_ctx.pass == 2)
933 >    ConfigLog.use_logging = yylval.number;
934   };
935  
936 < logging_fglinelog: FGLINELOG '=' QSTRING ';'
936 > logging_file_entry:
937 > {
938 >  if (conf_parser_ctx.pass == 2)
939 >    reset_block_state();
940 > } T_FILE  '{' logging_file_items '}' ';'
941   {
942 <  if (ypass == 2)
943 <    strlcpy(ConfigLoggingEntry.glinelog, yylval.string,
944 <            sizeof(ConfigLoggingEntry.glinelog));
942 >  if (conf_parser_ctx.pass != 2)
943 >    break;
944 >
945 >  if (block_state.type.value && block_state.file.buf[0])
946 >    log_set_file(block_state.type.value, block_state.size.value,
947 >                 block_state.file.buf);
948   };
949  
950 < logging_fklinelog: FKLINELOG '=' QSTRING ';'
950 > logging_file_items: logging_file_items logging_file_item |
951 >                    logging_file_item ;
952 >
953 > logging_file_item:  logging_file_name | logging_file_type |
954 >                    logging_file_size | error ';' ;
955 >
956 > logging_file_name: NAME '=' QSTRING ';'
957   {
958 <  if (ypass == 2)
959 <    strlcpy(ConfigLoggingEntry.klinelog, yylval.string,
894 <            sizeof(ConfigLoggingEntry.klinelog));
895 < };
958 >  if (conf_parser_ctx.pass != 2)
959 >    break;
960  
961 < logging_ioerrlog: FIOERRLOG '=' QSTRING ';'
961 >  strlcpy(block_state.file.buf, yylval.string, sizeof(block_state.file.buf));
962 > }
963 >
964 > logging_file_size: T_SIZE '=' sizespec ';'
965   {
966 <  if (ypass == 2)
967 <    strlcpy(ConfigLoggingEntry.ioerrlog, yylval.string,
968 <            sizeof(ConfigLoggingEntry.ioerrlog));
966 >  block_state.size.value = $3;
967 > } | T_SIZE '=' T_UNLIMITED ';'
968 > {
969 >  block_state.size.value = 0;
970   };
971  
972 < logging_killlog: FKILLLOG '=' QSTRING ';'
972 > logging_file_type: TYPE
973   {
974 <  if (ypass == 2)
975 <    strlcpy(ConfigLoggingEntry.killlog, yylval.string,
976 <            sizeof(ConfigLoggingEntry.killlog));
909 < };
974 >  if (conf_parser_ctx.pass == 2)
975 >    block_state.type.value = 0;
976 > } '='  logging_file_type_items ';' ;
977  
978 < logging_log_level: LOG_LEVEL '=' T_L_CRIT ';'
979 < {
913 <  if (ypass == 2)
914 <    set_log_level(L_CRIT);
915 < } | LOG_LEVEL '=' T_L_ERROR ';'
978 > logging_file_type_items: logging_file_type_items ',' logging_file_type_item | logging_file_type_item;
979 > logging_file_type_item:  USER
980   {
981 <  if (ypass == 2)
982 <    set_log_level(L_ERROR);
983 < } | LOG_LEVEL '=' T_L_WARN ';'
981 >  if (conf_parser_ctx.pass == 2)
982 >    block_state.type.value = LOG_TYPE_USER;
983 > } | OPERATOR
984   {
985 <  if (ypass == 2)
986 <    set_log_level(L_WARN);
987 < } | LOG_LEVEL '=' T_L_NOTICE ';'
985 >  if (conf_parser_ctx.pass == 2)
986 >    block_state.type.value = LOG_TYPE_OPER;
987 > } | GLINE
988   {
989 <  if (ypass == 2)
990 <    set_log_level(L_NOTICE);
991 < } | LOG_LEVEL '=' T_L_TRACE ';'
989 >  if (conf_parser_ctx.pass == 2)
990 >    block_state.type.value = LOG_TYPE_GLINE;
991 > } | XLINE
992   {
993 <  if (ypass == 2)
994 <    set_log_level(L_TRACE);
995 < } | LOG_LEVEL '=' T_L_INFO ';'
993 >  if (conf_parser_ctx.pass == 2)
994 >    block_state.type.value = LOG_TYPE_XLINE;
995 > } | RESV
996   {
997 <  if (ypass == 2)
998 <    set_log_level(L_INFO);
999 < } | LOG_LEVEL '=' T_L_DEBUG ';'
997 >  if (conf_parser_ctx.pass == 2)
998 >    block_state.type.value = LOG_TYPE_RESV;
999 > } | T_DLINE
1000   {
1001 <  if (ypass == 2)
1002 <    set_log_level(L_DEBUG);
1003 < };
1004 <
1005 < logging_use_logging: USE_LOGGING '=' TBOOL ';'
1001 >  if (conf_parser_ctx.pass == 2)
1002 >    block_state.type.value = LOG_TYPE_DLINE;
1003 > } | KLINE
1004 > {
1005 >  if (conf_parser_ctx.pass == 2)
1006 >    block_state.type.value = LOG_TYPE_KLINE;
1007 > } | KILL
1008   {
1009 <  if (ypass == 2)
1010 <    ConfigLoggingEntry.use_logging = yylval.number;
1009 >  if (conf_parser_ctx.pass == 2)
1010 >    block_state.type.value = LOG_TYPE_KILL;
1011 > } | T_DEBUG
1012 > {
1013 >  if (conf_parser_ctx.pass == 2)
1014 >    block_state.type.value = LOG_TYPE_DEBUG;
1015   };
1016  
1017 +
1018   /***************************************************************************
1019   * section oper
1020   ***************************************************************************/
1021 < oper_entry: OPERATOR
1021 > oper_entry: OPERATOR
1022   {
1023 <  if (ypass == 2)
1024 <  {
1025 <    yy_conf = make_conf_item(OPER_TYPE);
1026 <    yy_aconf = map_to_conf(yy_conf);
1027 <    SetConfEncrypted(yy_aconf); /* Yes, the default is encrypted */
1028 <  }
958 <  else
959 <  {
960 <    MyFree(class_name);
961 <    class_name = NULL;
962 <  }
963 < } oper_name_b '{' oper_items '}' ';'
1023 >  if (conf_parser_ctx.pass != 2)
1024 >    break;
1025 >
1026 >  reset_block_state();
1027 >  block_state.flags.value |= CONF_FLAGS_ENCRYPTED;
1028 > } '{' oper_items '}' ';'
1029   {
1030 <  if (ypass == 2)
1030 >  dlink_node *ptr = NULL;
1031 >
1032 >  if (conf_parser_ctx.pass != 2)
1033 >    break;
1034 >
1035 >  if (!block_state.name.buf[0])
1036 >    break;
1037 > #ifdef HAVE_LIBCRYPTO
1038 >  if (!block_state.file.buf[0] &&
1039 >      !block_state.rpass.buf[0])
1040 >    break;
1041 > #else
1042 >  if (!block_state.rpass.buf[0])
1043 >    break;
1044 > #endif
1045 >
1046 >  DLINK_FOREACH(ptr, block_state.mask.list.head)
1047    {
1048 <    struct CollectItem *yy_tmp;
1049 <    dlink_node *ptr;
969 <    dlink_node *next_ptr;
1048 >    struct MaskItem *conf = NULL;
1049 >    struct split_nuh_item nuh;
1050  
1051 <    conf_add_class_to_conf(yy_conf, class_name);
1051 >    nuh.nuhmask  = ptr->data;
1052 >    nuh.nickptr  = NULL;
1053 >    nuh.userptr  = block_state.user.buf;
1054 >    nuh.hostptr  = block_state.host.buf;
1055 >    nuh.nicksize = 0;
1056 >    nuh.usersize = sizeof(block_state.user.buf);
1057 >    nuh.hostsize = sizeof(block_state.host.buf);
1058 >    split_nuh(&nuh);
1059 >
1060 >    conf         = conf_make(CONF_OPER);
1061 >    conf->name   = xstrdup(block_state.name.buf);
1062 >    conf->user   = xstrdup(block_state.user.buf);
1063 >    conf->host   = xstrdup(block_state.host.buf);
1064 >
1065 >    if (block_state.cert.buf[0])
1066 >      conf->certfp = xstrdup(block_state.cert.buf);
1067 >
1068 >    if (block_state.rpass.buf[0])
1069 >      conf->passwd = xstrdup(block_state.rpass.buf);
1070 >
1071 >    conf->flags = block_state.flags.value;
1072 >    conf->modes = block_state.modes.value;
1073 >    conf->port  = block_state.port.value;
1074 >    conf->htype = parse_netmask(conf->host, &conf->addr, &conf->bits);
1075  
1076 <    /* Now, make sure there is a copy of the "base" given oper
974 <     * block in each of the collected copies
975 <     */
1076 >    conf_add_class_to_conf(conf, block_state.class.buf);
1077  
1078 <    DLINK_FOREACH_SAFE(ptr, next_ptr, col_conf_list.head)
1078 > #ifdef HAVE_LIBCRYPTO
1079 >    if (block_state.file.buf[0])
1080      {
1081 <      struct AccessItem *new_aconf;
1082 <      struct ConfItem *new_conf;
981 <      yy_tmp = ptr->data;
982 <
983 <      new_conf = make_conf_item(OPER_TYPE);
984 <      new_aconf = (struct AccessItem *)map_to_conf(new_conf);
985 <
986 <      new_aconf->flags = yy_aconf->flags;
987 <
988 <      if (yy_conf->name != NULL)
989 <        DupString(new_conf->name, yy_conf->name);
990 <      if (yy_tmp->user != NULL)
991 <        DupString(new_aconf->user, yy_tmp->user);
992 <      else
993 <        DupString(new_aconf->user, "*");
994 <      if (yy_tmp->host != NULL)
995 <        DupString(new_aconf->host, yy_tmp->host);
996 <      else
997 <        DupString(new_aconf->host, "*");
998 <      conf_add_class_to_conf(new_conf, class_name);
999 <      if (yy_aconf->passwd != NULL)
1000 <        DupString(new_aconf->passwd, yy_aconf->passwd);
1081 >      BIO *file = NULL;
1082 >      RSA *pkey = NULL;
1083  
1084 <      new_aconf->port = yy_aconf->port;
1003 < #ifdef HAVE_LIBCRYPTO
1004 <      if (yy_aconf->rsa_public_key_file != NULL)
1084 >      if ((file = BIO_new_file(block_state.file.buf, "r")) == NULL)
1085        {
1086 <        BIO *file;
1087 <
1008 <        DupString(new_aconf->rsa_public_key_file,
1009 <                  yy_aconf->rsa_public_key_file);
1010 <
1011 <        file = BIO_new_file(yy_aconf->rsa_public_key_file, "r");
1012 <        new_aconf->rsa_public_key = (RSA *)PEM_read_bio_RSA_PUBKEY(file,
1013 <                                                           NULL, 0, NULL);
1014 <        BIO_set_close(file, BIO_CLOSE);
1015 <        BIO_free(file);
1086 >        ilog(LOG_TYPE_IRCD, "Ignoring rsa_public_key_file -- file doesn't exist");
1087 >        break;
1088        }
1017 #endif
1089  
1090 < #ifdef HAVE_LIBCRYPTO
1091 <      if (yy_tmp->name && (yy_tmp->passwd || yy_aconf->rsa_public_key)
1092 <          && yy_tmp->host)
1022 < #else
1023 <      if (yy_tmp->name && yy_tmp->passwd && yy_tmp->host)
1024 < #endif
1090 >      if ((pkey = PEM_read_bio_RSA_PUBKEY(file, NULL, 0, NULL)) == NULL)
1091 >        ilog(LOG_TYPE_IRCD, "Ignoring rsa_public_key_file -- key invalid; check key syntax");
1092 >      else
1093        {
1094 <        conf_add_class_to_conf(new_conf, class_name);
1095 <        if (yy_tmp->name != NULL)
1096 <          DupString(new_conf->name, yy_tmp->name);
1094 >        if (RSA_size(pkey) > 128)
1095 >          ilog(LOG_TYPE_IRCD, "Ignoring rsa_public_key_file -- key size must be 1024 or below");
1096 >        else
1097 >          conf->rsa_public_key = pkey;
1098        }
1099  
1100 <      dlinkDelete(&yy_tmp->node, &col_conf_list);
1101 <      free_collect_item(yy_tmp);
1100 >      BIO_set_close(file, BIO_CLOSE);
1101 >      BIO_free(file);
1102      }
1103 <
1035 <    yy_conf = NULL;
1036 <    yy_aconf = NULL;
1037 <
1038 <
1039 <    MyFree(class_name);
1040 <    class_name = NULL;
1103 > #endif /* HAVE_LIBCRYPTO */
1104    }
1105 < };
1105 > };
1106  
1044 oper_name_b: | oper_name_t;
1107   oper_items:     oper_items oper_item | oper_item;
1108 < oper_item:      oper_name | oper_user | oper_password | oper_hidden_admin |
1109 <                oper_hidden_oper | oper_umodes |
1110 <                oper_class | oper_global_kill | oper_remote |
1111 <                oper_kline | oper_xline | oper_unkline |
1112 <                oper_gline | oper_nick_changes | oper_remoteban |
1113 <                oper_die | oper_rehash | oper_admin | oper_operwall |
1114 <                oper_encrypted | oper_rsa_public_key_file |
1115 <                oper_flags | error ';' ;
1108 > oper_item:      oper_name |
1109 >                oper_user |
1110 >                oper_password |
1111 >                oper_umodes |
1112 >                oper_class |
1113 >                oper_encrypted |
1114 >                oper_rsa_public_key_file |
1115 >                oper_ssl_certificate_fingerprint |
1116 >                oper_ssl_connection_required |
1117 >                oper_flags |
1118 >                error ';' ;
1119  
1120   oper_name: NAME '=' QSTRING ';'
1121   {
1122 <  if (ypass == 2)
1123 <  {
1059 <    if (strlen(yylval.string) > OPERNICKLEN)
1060 <      yylval.string[OPERNICKLEN] = '\0';
1061 <
1062 <    MyFree(yy_conf->name);
1063 <    DupString(yy_conf->name, yylval.string);
1064 <  }
1065 < };
1066 <
1067 < oper_name_t: QSTRING
1068 < {
1069 <  if (ypass == 2)
1070 <  {
1071 <    if (strlen(yylval.string) > OPERNICKLEN)
1072 <      yylval.string[OPERNICKLEN] = '\0';
1073 <
1074 <    MyFree(yy_conf->name);
1075 <    DupString(yy_conf->name, yylval.string);
1076 <  }
1122 >  if (conf_parser_ctx.pass == 2)
1123 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
1124   };
1125  
1126   oper_user: USER '=' QSTRING ';'
1127   {
1128 <  if (ypass == 2)
1129 <  {
1083 <    struct CollectItem *yy_tmp;
1084 <
1085 <    if (yy_aconf->user == NULL)
1086 <    {
1087 <      split_nuh(yylval.string, NULL, &yy_aconf->user, &yy_aconf->host);
1088 <    }
1089 <    else
1090 <    {
1091 <      yy_tmp = (struct CollectItem *)MyMalloc(sizeof(struct CollectItem));
1092 <      split_nuh(yylval.string, NULL, &yy_tmp->user, &yy_tmp->host);
1093 <      dlinkAdd(yy_tmp, &yy_tmp->node, &col_conf_list);
1094 <    }
1095 <  }
1128 >  if (conf_parser_ctx.pass == 2)
1129 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.mask.list);
1130   };
1131  
1132   oper_password: PASSWORD '=' QSTRING ';'
1133   {
1134 <  if (ypass == 2)
1135 <  {
1102 <    if (yy_aconf->passwd != NULL)
1103 <      memset(yy_aconf->passwd, 0, strlen(yy_aconf->passwd));
1104 <
1105 <    MyFree(yy_aconf->passwd);
1106 <    DupString(yy_aconf->passwd, yylval.string);
1107 <  }
1134 >  if (conf_parser_ctx.pass == 2)
1135 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
1136   };
1137  
1138   oper_encrypted: ENCRYPTED '=' TBOOL ';'
1139   {
1140 <  if (ypass == 2)
1141 <  {
1142 <    if (yylval.number)
1143 <      SetConfEncrypted(yy_aconf);
1144 <    else
1145 <      ClearConfEncrypted(yy_aconf);
1146 <  }
1140 >  if (conf_parser_ctx.pass != 2)
1141 >    break;
1142 >
1143 >  if (yylval.number)
1144 >    block_state.flags.value |= CONF_FLAGS_ENCRYPTED;
1145 >  else
1146 >    block_state.flags.value &= ~CONF_FLAGS_ENCRYPTED;
1147   };
1148  
1149   oper_rsa_public_key_file: RSA_PUBLIC_KEY_FILE '=' QSTRING ';'
1150   {
1151 < #ifdef HAVE_LIBCRYPTO
1152 <  if (ypass == 2)
1153 <  {
1126 <    BIO *file;
1127 <
1128 <    if (yy_aconf->rsa_public_key != NULL)
1129 <    {
1130 <      RSA_free(yy_aconf->rsa_public_key);
1131 <      yy_aconf->rsa_public_key = NULL;
1132 <    }
1133 <
1134 <    if (yy_aconf->rsa_public_key_file != NULL)
1135 <    {
1136 <      MyFree(yy_aconf->rsa_public_key_file);
1137 <      yy_aconf->rsa_public_key_file = NULL;
1138 <    }
1139 <
1140 <    DupString(yy_aconf->rsa_public_key_file, yylval.string);
1141 <    file = BIO_new_file(yylval.string, "r");
1142 <
1143 <    if (file == NULL)
1144 <    {
1145 <      yyerror("Ignoring rsa_public_key_file -- file doesn't exist");
1146 <      break;
1147 <    }
1151 >  if (conf_parser_ctx.pass == 2)
1152 >    strlcpy(block_state.file.buf, yylval.string, sizeof(block_state.file.buf));
1153 > };
1154  
1155 <    yy_aconf->rsa_public_key = (RSA *)PEM_read_bio_RSA_PUBKEY(file, NULL, 0, NULL);
1155 > oper_ssl_certificate_fingerprint: SSL_CERTIFICATE_FINGERPRINT '=' QSTRING ';'
1156 > {
1157 >  if (conf_parser_ctx.pass == 2)
1158 >    strlcpy(block_state.cert.buf, yylval.string, sizeof(block_state.cert.buf));
1159 > };
1160  
1161 <    if (yy_aconf->rsa_public_key == NULL)
1162 <    {
1163 <      yyerror("Ignoring rsa_public_key_file -- Key invalid; check key syntax.");
1164 <      break;
1155 <    }
1161 > oper_ssl_connection_required: SSL_CONNECTION_REQUIRED '=' TBOOL ';'
1162 > {
1163 >  if (conf_parser_ctx.pass != 2)
1164 >    break;
1165  
1166 <    BIO_set_close(file, BIO_CLOSE);
1167 <    BIO_free(file);
1168 <  }
1169 < #endif /* HAVE_LIBCRYPTO */
1166 >  if (yylval.number)
1167 >    block_state.flags.value |= CONF_FLAGS_SSL;
1168 >  else
1169 >    block_state.flags.value &= ~CONF_FLAGS_SSL;
1170   };
1171  
1172   oper_class: CLASS '=' QSTRING ';'
1173   {
1174 <  if (ypass == 2)
1175 <  {
1167 <    MyFree(class_name);
1168 <    DupString(class_name, yylval.string);
1169 <  }
1174 >  if (conf_parser_ctx.pass == 2)
1175 >    strlcpy(block_state.class.buf, yylval.string, sizeof(block_state.class.buf));
1176   };
1177  
1178   oper_umodes: T_UMODES
1179   {
1180 <  yy_aconf->modes = 0;
1180 >  if (conf_parser_ctx.pass == 2)
1181 >    block_state.modes.value = 0;
1182   } '='  oper_umodes_items ';' ;
1183  
1184   oper_umodes_items: oper_umodes_items ',' oper_umodes_item | oper_umodes_item;
1185   oper_umodes_item:  T_BOTS
1186   {
1187 <  yy_aconf->modes |= UMODE_BOTS;
1187 >  if (conf_parser_ctx.pass == 2)
1188 >    block_state.modes.value |= UMODE_BOTS;
1189   } | T_CCONN
1190   {
1191 <  yy_aconf->modes |= UMODE_CCONN;
1191 >  if (conf_parser_ctx.pass == 2)
1192 >    block_state.modes.value |= UMODE_CCONN;
1193   } | T_DEAF
1194   {
1195 <  yy_aconf->modes |= UMODE_DEAF;
1195 >  if (conf_parser_ctx.pass == 2)
1196 >    block_state.modes.value |= UMODE_DEAF;
1197   } | T_DEBUG
1198   {
1199 <  yy_aconf->modes |= UMODE_DEBUG;
1199 >  if (conf_parser_ctx.pass == 2)
1200 >    block_state.modes.value |= UMODE_DEBUG;
1201   } | T_FULL
1202   {
1203 <  yy_aconf->modes |= UMODE_FULL;
1203 >  if (conf_parser_ctx.pass == 2)
1204 >    block_state.modes.value |= UMODE_FULL;
1205 > } | HIDDEN
1206 > {
1207 >  if (conf_parser_ctx.pass == 2)
1208 >    block_state.modes.value |= UMODE_HIDDEN;
1209 > } | HIDE_CHANS
1210 > {
1211 >  if (conf_parser_ctx.pass == 2)
1212 >    block_state.modes.value |= UMODE_HIDECHANS;
1213 > } | HIDE_IDLE
1214 > {
1215 >  if (conf_parser_ctx.pass == 2)
1216 >    block_state.modes.value |= UMODE_HIDEIDLE;
1217   } | T_SKILL
1218   {
1219 <  yy_aconf->modes |= UMODE_SKILL;
1219 >  if (conf_parser_ctx.pass == 2)
1220 >    block_state.modes.value |= UMODE_SKILL;
1221   } | T_NCHANGE
1222   {
1223 <  yy_aconf->modes |= UMODE_NCHANGE;
1223 >  if (conf_parser_ctx.pass == 2)
1224 >    block_state.modes.value |= UMODE_NCHANGE;
1225   } | T_REJ
1226   {
1227 <  yy_aconf->modes |= UMODE_REJ;
1227 >  if (conf_parser_ctx.pass == 2)
1228 >    block_state.modes.value |= UMODE_REJ;
1229   } | T_UNAUTH
1230   {
1231 <  yy_aconf->modes |= UMODE_UNAUTH;
1231 >  if (conf_parser_ctx.pass == 2)
1232 >    block_state.modes.value |= UMODE_UNAUTH;
1233   } | T_SPY
1234   {
1235 <  yy_aconf->modes |= UMODE_SPY;
1235 >  if (conf_parser_ctx.pass == 2)
1236 >    block_state.modes.value |= UMODE_SPY;
1237   } | T_EXTERNAL
1238   {
1239 <  yy_aconf->modes |= UMODE_EXTERNAL;
1240 < } | T_OPERWALL
1212 < {
1213 <  yy_aconf->modes |= UMODE_OPERWALL;
1239 >  if (conf_parser_ctx.pass == 2)
1240 >    block_state.modes.value |= UMODE_EXTERNAL;
1241   } | T_SERVNOTICE
1242   {
1243 <  yy_aconf->modes |= UMODE_SERVNOTICE;
1243 >  if (conf_parser_ctx.pass == 2)
1244 >    block_state.modes.value |= UMODE_SERVNOTICE;
1245   } | T_INVISIBLE
1246   {
1247 <  yy_aconf->modes |= UMODE_INVISIBLE;
1247 >  if (conf_parser_ctx.pass == 2)
1248 >    block_state.modes.value |= UMODE_INVISIBLE;
1249   } | T_WALLOP
1250   {
1251 <  yy_aconf->modes |= UMODE_WALLOP;
1251 >  if (conf_parser_ctx.pass == 2)
1252 >    block_state.modes.value |= UMODE_WALLOP;
1253   } | T_SOFTCALLERID
1254   {
1255 <  yy_aconf->modes |= UMODE_SOFTCALLERID;
1255 >  if (conf_parser_ctx.pass == 2)
1256 >    block_state.modes.value |= UMODE_SOFTCALLERID;
1257   } | T_CALLERID
1258   {
1259 <  yy_aconf->modes |= UMODE_CALLERID;
1259 >  if (conf_parser_ctx.pass == 2)
1260 >    block_state.modes.value |= UMODE_CALLERID;
1261   } | T_LOCOPS
1262   {
1263 <  yy_aconf->modes |= UMODE_LOCOPS;
1264 < };
1265 <
1266 < oper_global_kill: GLOBAL_KILL '=' TBOOL ';'
1263 >  if (conf_parser_ctx.pass == 2)
1264 >    block_state.modes.value |= UMODE_LOCOPS;
1265 > } | T_NONONREG
1266 > {
1267 >  if (conf_parser_ctx.pass == 2)
1268 >    block_state.modes.value |= UMODE_REGONLY;
1269 > } | T_FARCONNECT
1270   {
1271 <  if (ypass == 2)
1272 <  {
1238 <    if (yylval.number)
1239 <      yy_aconf->port |= OPER_FLAG_GLOBAL_KILL;
1240 <    else
1241 <      yy_aconf->port &= ~OPER_FLAG_GLOBAL_KILL;
1242 <  }
1243 < };
1244 <
1245 < oper_remote: REMOTE '=' TBOOL ';'
1246 < {
1247 <  if (ypass == 2)
1248 <  {
1249 <    if (yylval.number)
1250 <      yy_aconf->port |= OPER_FLAG_REMOTE;
1251 <    else
1252 <      yy_aconf->port &= ~OPER_FLAG_REMOTE;
1253 <  }
1254 < };
1255 <
1256 < oper_remoteban: REMOTEBAN '=' TBOOL ';'
1257 < {
1258 <  if (ypass == 2)
1259 <  {
1260 <    if (yylval.number)
1261 <      yy_aconf->port |= OPER_FLAG_REMOTEBAN;
1262 <    else
1263 <      yy_aconf->port &= ~OPER_FLAG_REMOTEBAN;
1264 <  }
1265 < };
1266 <
1267 < oper_kline: KLINE '=' TBOOL ';'
1268 < {
1269 <  if (ypass == 2)
1270 <  {
1271 <    if (yylval.number)
1272 <      yy_aconf->port |= OPER_FLAG_K;
1273 <    else
1274 <      yy_aconf->port &= ~OPER_FLAG_K;
1275 <  }
1276 < };
1277 <
1278 < oper_xline: XLINE '=' TBOOL ';'
1279 < {
1280 <  if (ypass == 2)
1281 <  {
1282 <    if (yylval.number)
1283 <      yy_aconf->port |= OPER_FLAG_X;
1284 <    else
1285 <      yy_aconf->port &= ~OPER_FLAG_X;
1286 <  }
1287 < };
1288 <
1289 < oper_unkline: UNKLINE '=' TBOOL ';'
1290 < {
1291 <  if (ypass == 2)
1292 <  {
1293 <    if (yylval.number)
1294 <      yy_aconf->port |= OPER_FLAG_UNKLINE;
1295 <    else
1296 <      yy_aconf->port &= ~OPER_FLAG_UNKLINE;
1297 <  }
1298 < };
1299 <
1300 < oper_gline: GLINE '=' TBOOL ';'
1301 < {
1302 <  if (ypass == 2)
1303 <  {
1304 <    if (yylval.number)
1305 <      yy_aconf->port |= OPER_FLAG_GLINE;
1306 <    else
1307 <      yy_aconf->port &= ~OPER_FLAG_GLINE;
1308 <  }
1309 < };
1310 <
1311 < oper_nick_changes: NICK_CHANGES '=' TBOOL ';'
1312 < {
1313 <  if (ypass == 2)
1314 <  {
1315 <    if (yylval.number)
1316 <      yy_aconf->port |= OPER_FLAG_N;
1317 <    else
1318 <      yy_aconf->port &= ~OPER_FLAG_N;
1319 <  }
1320 < };
1321 <
1322 < oper_die: DIE '=' TBOOL ';'
1323 < {
1324 <  if (ypass == 2)
1325 <  {
1326 <    if (yylval.number)
1327 <      yy_aconf->port |= OPER_FLAG_DIE;
1328 <    else
1329 <      yy_aconf->port &= ~OPER_FLAG_DIE;
1330 <  }
1331 < };
1332 <
1333 < oper_rehash: REHASH '=' TBOOL ';'
1334 < {
1335 <  if (ypass == 2)
1336 <  {
1337 <    if (yylval.number)
1338 <      yy_aconf->port |= OPER_FLAG_REHASH;
1339 <    else
1340 <      yy_aconf->port &= ~OPER_FLAG_REHASH;
1341 <  }
1342 < };
1343 <
1344 < oper_admin: ADMIN '=' TBOOL ';'
1345 < {
1346 <  if (ypass == 2)
1347 <  {
1348 <    if (yylval.number)
1349 <      yy_aconf->port |= OPER_FLAG_ADMIN;
1350 <    else
1351 <      yy_aconf->port &= ~OPER_FLAG_ADMIN;
1352 <  }
1353 < };
1354 <
1355 < oper_hidden_admin: HIDDEN_ADMIN '=' TBOOL ';'
1356 < {
1357 <  if (ypass == 2)
1358 <  {
1359 <    if (yylval.number)
1360 <      yy_aconf->port |= OPER_FLAG_HIDDEN_ADMIN;
1361 <    else
1362 <      yy_aconf->port &= ~OPER_FLAG_HIDDEN_ADMIN;
1363 <  }
1364 < };
1365 <
1366 < oper_hidden_oper: HIDDEN_OPER '=' TBOOL ';'
1367 < {
1368 <  if (ypass == 2)
1369 <  {
1370 <    if (yylval.number)
1371 <      yy_aconf->port |= OPER_FLAG_HIDDEN_OPER;
1372 <    else
1373 <      yy_aconf->port &= ~OPER_FLAG_HIDDEN_OPER;
1374 <  }
1375 < };
1376 <
1377 < oper_operwall: T_OPERWALL '=' TBOOL ';'
1378 < {
1379 <  if (ypass == 2)
1380 <  {
1381 <    if (yylval.number)
1382 <      yy_aconf->port |= OPER_FLAG_OPERWALL;
1383 <    else
1384 <      yy_aconf->port &= ~OPER_FLAG_OPERWALL;
1385 <  }
1271 >  if (conf_parser_ctx.pass == 2)
1272 >    block_state.modes.value |= UMODE_FARCONNECT;
1273   };
1274  
1275   oper_flags: IRCD_FLAGS
1276   {
1277 +  if (conf_parser_ctx.pass == 2)
1278 +    block_state.port.value = 0;
1279   } '='  oper_flags_items ';';
1280  
1281   oper_flags_items: oper_flags_items ',' oper_flags_item | oper_flags_item;
1282 < oper_flags_item: NOT oper_flags_item_atom { not_atom = 1; }
1394 <                | oper_flags_item_atom { not_atom = 0; };
1395 <
1396 < oper_flags_item_atom: GLOBAL_KILL
1282 > oper_flags_item: KILL ':' REMOTE
1283   {
1284 <  if (ypass == 2)
1285 <  {
1286 <    if (not_atom)yy_aconf->port &= ~OPER_FLAG_GLOBAL_KILL;
1287 <    else yy_aconf->port |= OPER_FLAG_GLOBAL_KILL;
1288 <  }
1289 < } | REMOTE
1284 >  if (conf_parser_ctx.pass == 2)
1285 >    block_state.port.value |= OPER_FLAG_KILL_REMOTE;
1286 > } | KILL
1287 > {
1288 >  if (conf_parser_ctx.pass == 2)
1289 >    block_state.port.value |= OPER_FLAG_KILL;
1290 > } | CONNECT ':' REMOTE
1291 > {
1292 >  if (conf_parser_ctx.pass == 2)
1293 >    block_state.port.value |= OPER_FLAG_CONNECT_REMOTE;
1294 > } | CONNECT
1295 > {
1296 >  if (conf_parser_ctx.pass == 2)
1297 >    block_state.port.value |= OPER_FLAG_CONNECT;
1298 > } | SQUIT ':' REMOTE
1299 > {
1300 >  if (conf_parser_ctx.pass == 2)
1301 >    block_state.port.value |= OPER_FLAG_SQUIT_REMOTE;
1302 > } | SQUIT
1303   {
1304 <  if (ypass == 2)
1305 <  {
1407 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_REMOTE;
1408 <    else yy_aconf->port |= OPER_FLAG_REMOTE;
1409 <  }
1304 >  if (conf_parser_ctx.pass == 2)
1305 >    block_state.port.value |= OPER_FLAG_SQUIT;
1306   } | KLINE
1307   {
1308 <  if (ypass == 2)
1309 <  {
1414 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_K;
1415 <    else yy_aconf->port |= OPER_FLAG_K;
1416 <  }
1308 >  if (conf_parser_ctx.pass == 2)
1309 >    block_state.port.value |= OPER_FLAG_KLINE;
1310   } | UNKLINE
1311   {
1312 <  if (ypass == 2)
1313 <  {
1314 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_UNKLINE;
1315 <    else yy_aconf->port |= OPER_FLAG_UNKLINE;
1316 <  }
1312 >  if (conf_parser_ctx.pass == 2)
1313 >    block_state.port.value |= OPER_FLAG_UNKLINE;
1314 > } | T_DLINE
1315 > {
1316 >  if (conf_parser_ctx.pass == 2)
1317 >    block_state.port.value |= OPER_FLAG_DLINE;
1318 > } | T_UNDLINE
1319 > {
1320 >  if (conf_parser_ctx.pass == 2)
1321 >    block_state.port.value |= OPER_FLAG_UNDLINE;
1322   } | XLINE
1323   {
1324 <  if (ypass == 2)
1325 <  {
1326 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_X;
1327 <    else yy_aconf->port |= OPER_FLAG_X;
1328 <  }
1324 >  if (conf_parser_ctx.pass == 2)
1325 >    block_state.port.value |= OPER_FLAG_XLINE;
1326 > } | T_UNXLINE
1327 > {
1328 >  if (conf_parser_ctx.pass == 2)
1329 >    block_state.port.value |= OPER_FLAG_UNXLINE;
1330   } | GLINE
1331   {
1332 <  if (ypass == 2)
1333 <  {
1435 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_GLINE;
1436 <    else yy_aconf->port |= OPER_FLAG_GLINE;
1437 <  }
1332 >  if (conf_parser_ctx.pass == 2)
1333 >    block_state.port.value |= OPER_FLAG_GLINE;
1334   } | DIE
1335   {
1336 <  if (ypass == 2)
1337 <  {
1338 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_DIE;
1339 <    else yy_aconf->port |= OPER_FLAG_DIE;
1340 <  }
1336 >  if (conf_parser_ctx.pass == 2)
1337 >    block_state.port.value |= OPER_FLAG_DIE;
1338 > } | T_RESTART
1339 > {
1340 >  if (conf_parser_ctx.pass == 2)
1341 >    block_state.port.value |= OPER_FLAG_RESTART;
1342   } | REHASH
1343   {
1344 <  if (ypass == 2)
1345 <  {
1449 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_REHASH;
1450 <    else yy_aconf->port |= OPER_FLAG_REHASH;
1451 <  }
1344 >  if (conf_parser_ctx.pass == 2)
1345 >    block_state.port.value |= OPER_FLAG_REHASH;
1346   } | ADMIN
1347   {
1348 <  if (ypass == 2)
1349 <  {
1350 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_ADMIN;
1351 <    else yy_aconf->port |= OPER_FLAG_ADMIN;
1352 <  }
1353 < } | HIDDEN_ADMIN
1354 < {
1461 <  if (ypass == 2)
1462 <  {
1463 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_HIDDEN_ADMIN;
1464 <    else yy_aconf->port |= OPER_FLAG_HIDDEN_ADMIN;
1465 <  }
1466 < } | NICK_CHANGES
1467 < {
1468 <  if (ypass == 2)
1469 <  {
1470 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_N;
1471 <    else yy_aconf->port |= OPER_FLAG_N;
1472 <  }
1473 < } | T_OPERWALL
1348 >  if (conf_parser_ctx.pass == 2)
1349 >    block_state.port.value |= OPER_FLAG_ADMIN;
1350 > } | T_GLOBOPS
1351 > {
1352 >  if (conf_parser_ctx.pass == 2)
1353 >    block_state.port.value |= OPER_FLAG_GLOBOPS;
1354 > } | T_WALLOPS
1355   {
1356 <  if (ypass == 2)
1357 <  {
1358 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_OPERWALL;
1478 <    else yy_aconf->port |= OPER_FLAG_OPERWALL;
1479 <  }
1480 < } | OPER_SPY_T
1481 < {
1482 <  if (ypass == 2)
1483 <  {
1484 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_OPER_SPY;
1485 <    else yy_aconf->port |= OPER_FLAG_OPER_SPY;
1486 <  }
1487 < } | HIDDEN_OPER
1356 >  if (conf_parser_ctx.pass == 2)
1357 >    block_state.port.value |= OPER_FLAG_WALLOPS;
1358 > } | T_LOCOPS
1359   {
1360 <  if (ypass == 2)
1361 <  {
1491 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_HIDDEN_OPER;
1492 <    else yy_aconf->port |= OPER_FLAG_HIDDEN_OPER;
1493 <  }
1360 >  if (conf_parser_ctx.pass == 2)
1361 >    block_state.port.value |= OPER_FLAG_LOCOPS;
1362   } | REMOTEBAN
1363   {
1364 <  if (ypass == 2)
1365 <  {
1366 <    if (not_atom) yy_aconf->port &= ~OPER_FLAG_REMOTEBAN;
1367 <    else yy_aconf->port |= OPER_FLAG_REMOTEBAN;
1368 <  }
1369 < } | ENCRYPTED
1364 >  if (conf_parser_ctx.pass == 2)
1365 >    block_state.port.value |= OPER_FLAG_REMOTEBAN;
1366 > } | T_SET
1367 > {
1368 >  if (conf_parser_ctx.pass == 2)
1369 >    block_state.port.value |= OPER_FLAG_SET;
1370 > } | MODULE
1371   {
1372 <  if (ypass == 2)
1373 <  {
1505 <    if (not_atom) ClearConfEncrypted(yy_aconf);
1506 <    else SetConfEncrypted(yy_aconf);
1507 <  }
1372 >  if (conf_parser_ctx.pass == 2)
1373 >    block_state.port.value |= OPER_FLAG_MODULE;
1374   };
1375  
1376  
# Line 1513 | Line 1379 | oper_flags_item_atom: GLOBAL_KILL
1379   ***************************************************************************/
1380   class_entry: CLASS
1381   {
1382 <  if (ypass == 1)
1383 <  {
1518 <    yy_conf = make_conf_item(CLASS_TYPE);
1519 <    yy_class = (struct ClassItem *)map_to_conf(yy_conf);
1520 <  }
1521 < } class_name_b '{' class_items '}' ';'
1522 < {
1523 <  if (ypass == 1)
1524 <  {
1525 <    struct ConfItem *cconf;
1526 <    struct ClassItem *class = NULL;
1527 <
1528 <    if (yy_class_name == NULL)
1529 <    {
1530 <      delete_conf_item(yy_conf);
1531 <    }
1532 <    else
1533 <    {
1534 <      cconf = find_exact_name_conf(CLASS_TYPE, yy_class_name, NULL, NULL);
1382 >  if (conf_parser_ctx.pass != 1)
1383 >    break;
1384  
1385 <      if (cconf != NULL)                /* The class existed already */
1537 <      {
1538 <        rebuild_cidr_class(cconf, yy_class);
1539 <        class = (struct ClassItem *) map_to_conf(cconf);
1540 <        *class = *yy_class;
1541 <        delete_conf_item(yy_conf);
1385 >  reset_block_state();
1386  
1387 <        MyFree(cconf->name);            /* Allows case change of class name */
1388 <        cconf->name = yy_class_name;
1389 <      }
1390 <      else      /* Brand new class */
1391 <      {
1392 <        MyFree(yy_conf->name);          /* just in case it was allocated */
1393 <        yy_conf->name = yy_class_name;
1394 <      }
1395 <    }
1396 <    yy_class_name = NULL;
1397 <  }
1387 >  block_state.ping_freq.value = DEFAULT_PINGFREQUENCY;
1388 >  block_state.con_freq.value  = DEFAULT_CONNECTFREQUENCY;
1389 >  block_state.max_total.value = MAXIMUM_LINKS_DEFAULT;
1390 >  block_state.max_sendq.value = DEFAULT_SENDQ;
1391 >  block_state.max_recvq.value = DEFAULT_RECVQ;
1392 > } '{' class_items '}' ';'
1393 > {
1394 >  struct ClassItem *class = NULL;
1395 >
1396 >  if (conf_parser_ctx.pass != 1)
1397 >    break;
1398 >
1399 >  if (!block_state.class.buf[0])
1400 >    break;
1401 >
1402 >  if (!(class = class_find(block_state.class.buf, 0)))
1403 >    class = class_make();
1404 >
1405 >  class->active = 1;
1406 >  MyFree(class->name);
1407 >  class->name = xstrdup(block_state.class.buf);
1408 >  class->ping_freq = block_state.ping_freq.value;
1409 >  class->max_perip = block_state.max_perip.value;
1410 >  class->con_freq = block_state.con_freq.value;
1411 >  class->max_total = block_state.max_total.value;
1412 >  class->max_global = block_state.max_global.value;
1413 >  class->max_local = block_state.max_local.value;
1414 >  class->max_ident = block_state.max_ident.value;
1415 >  class->max_sendq = block_state.max_sendq.value;
1416 >  class->max_recvq = block_state.max_recvq.value;
1417 >  class->max_channels = block_state.max_channels.value;
1418 >
1419 >  if (block_state.min_idle.value > block_state.max_idle.value)
1420 >  {
1421 >    block_state.min_idle.value = 0;
1422 >    block_state.max_idle.value = 0;
1423 >    block_state.flags.value &= ~CLASS_FLAGS_FAKE_IDLE;
1424 >  }
1425 >
1426 >  class->flags = block_state.flags.value;
1427 >  class->min_idle = block_state.min_idle.value;
1428 >  class->max_idle = block_state.max_idle.value;
1429 >
1430 >  if (class->number_per_cidr && block_state.number_per_cidr.value)
1431 >    if ((class->cidr_bitlen_ipv4 && block_state.cidr_bitlen_ipv4.value) ||
1432 >        (class->cidr_bitlen_ipv6 && block_state.cidr_bitlen_ipv6.value))
1433 >      if ((class->cidr_bitlen_ipv4 != block_state.cidr_bitlen_ipv4.value) ||
1434 >          (class->cidr_bitlen_ipv6 != block_state.cidr_bitlen_ipv6.value))
1435 >        rebuild_cidr_list(class);
1436 >
1437 >  class->cidr_bitlen_ipv4 = block_state.cidr_bitlen_ipv4.value;
1438 >  class->cidr_bitlen_ipv6 = block_state.cidr_bitlen_ipv6.value;
1439 >  class->number_per_cidr = block_state.number_per_cidr.value;
1440   };
1441  
1556 class_name_b: | class_name_t;
1557
1442   class_items:    class_items class_item | class_item;
1443   class_item:     class_name |
1444 <                class_cidr_bitlen_ipv4 | class_cidr_bitlen_ipv6 |
1444 >                class_cidr_bitlen_ipv4 |
1445 >                class_cidr_bitlen_ipv6 |
1446                  class_ping_time |
1447 <                class_ping_warning |
1563 <                class_number_per_cidr |
1447 >                class_number_per_cidr |
1448                  class_number_per_ip |
1449                  class_connectfreq |
1450 +                class_max_channels |
1451                  class_max_number |
1452 <                class_max_global |
1453 <                class_max_local |
1454 <                class_max_ident |
1455 <                class_sendq |
1456 <                error ';' ;
1457 <
1458 < class_name: NAME '=' QSTRING ';'
1459 < {
1575 <  if (ypass == 1)
1576 <  {
1577 <    MyFree(yy_class_name);
1578 <    DupString(yy_class_name, yylval.string);
1579 <  }
1580 < };
1452 >                class_max_global |
1453 >                class_max_local |
1454 >                class_max_ident |
1455 >                class_sendq | class_recvq |
1456 >                class_min_idle |
1457 >                class_max_idle |
1458 >                class_flags |
1459 >                error ';' ;
1460  
1461 < class_name_t: QSTRING
1461 > class_name: NAME '=' QSTRING ';'
1462   {
1463 <  if (ypass == 1)
1464 <  {
1586 <    MyFree(yy_class_name);
1587 <    DupString(yy_class_name, yylval.string);
1588 <  }
1463 >  if (conf_parser_ctx.pass == 1)
1464 >    strlcpy(block_state.class.buf, yylval.string, sizeof(block_state.class.buf));
1465   };
1466  
1467   class_ping_time: PING_TIME '=' timespec ';'
1468   {
1469 <  if (ypass == 1)
1470 <    PingFreq(yy_class) = $3;
1469 >  if (conf_parser_ctx.pass == 1)
1470 >    block_state.ping_freq.value = $3;
1471   };
1472  
1473 < class_ping_warning: PING_WARNING '=' timespec ';'
1473 > class_number_per_ip: NUMBER_PER_IP '=' NUMBER ';'
1474   {
1475 <  if (ypass == 1)
1476 <    PingWarning(yy_class) = $3;
1475 >  if (conf_parser_ctx.pass == 1)
1476 >    block_state.max_perip.value = $3;
1477   };
1478  
1479 < class_number_per_ip: NUMBER_PER_IP '=' NUMBER ';'
1479 > class_connectfreq: CONNECTFREQ '=' timespec ';'
1480   {
1481 <  if (ypass == 1)
1482 <    MaxPerIp(yy_class) = $3;
1481 >  if (conf_parser_ctx.pass == 1)
1482 >    block_state.con_freq.value = $3;
1483   };
1484  
1485 < class_connectfreq: CONNECTFREQ '=' timespec ';'
1485 > class_max_channels: MAX_CHANNELS '=' NUMBER ';'
1486   {
1487 <  if (ypass == 1)
1488 <    ConFreq(yy_class) = $3;
1487 >  if (conf_parser_ctx.pass == 1)
1488 >    block_state.max_channels.value = $3;
1489   };
1490  
1491   class_max_number: MAX_NUMBER '=' NUMBER ';'
1492   {
1493 <  if (ypass == 1)
1494 <    MaxTotal(yy_class) = $3;
1493 >  if (conf_parser_ctx.pass == 1)
1494 >    block_state.max_total.value = $3;
1495   };
1496  
1497   class_max_global: MAX_GLOBAL '=' NUMBER ';'
1498   {
1499 <  if (ypass == 1)
1500 <    MaxGlobal(yy_class) = $3;
1499 >  if (conf_parser_ctx.pass == 1)
1500 >    block_state.max_global.value = $3;
1501   };
1502  
1503   class_max_local: MAX_LOCAL '=' NUMBER ';'
1504   {
1505 <  if (ypass == 1)
1506 <    MaxLocal(yy_class) = $3;
1505 >  if (conf_parser_ctx.pass == 1)
1506 >    block_state.max_local.value = $3;
1507   };
1508  
1509   class_max_ident: MAX_IDENT '=' NUMBER ';'
1510   {
1511 <  if (ypass == 1)
1512 <    MaxIdent(yy_class) = $3;
1511 >  if (conf_parser_ctx.pass == 1)
1512 >    block_state.max_ident.value = $3;
1513   };
1514  
1515   class_sendq: SENDQ '=' sizespec ';'
1516   {
1517 <  if (ypass == 1)
1518 <    MaxSendq(yy_class) = $3;
1517 >  if (conf_parser_ctx.pass == 1)
1518 >    block_state.max_sendq.value = $3;
1519 > };
1520 >
1521 > class_recvq: T_RECVQ '=' sizespec ';'
1522 > {
1523 >  if (conf_parser_ctx.pass == 1)
1524 >    if ($3 >= CLIENT_FLOOD_MIN && $3 <= CLIENT_FLOOD_MAX)
1525 >      block_state.max_recvq.value = $3;
1526   };
1527  
1528   class_cidr_bitlen_ipv4: CIDR_BITLEN_IPV4 '=' NUMBER ';'
1529   {
1530 <  if (ypass == 1)
1531 <    CidrBitlenIPV4(yy_class) = $3;
1530 >  if (conf_parser_ctx.pass == 1)
1531 >    block_state.cidr_bitlen_ipv4.value = $3 > 32 ? 32 : $3;
1532   };
1533  
1534   class_cidr_bitlen_ipv6: CIDR_BITLEN_IPV6 '=' NUMBER ';'
1535   {
1536 <  if (ypass == 1)
1537 <    CidrBitlenIPV6(yy_class) = $3;
1536 >  if (conf_parser_ctx.pass == 1)
1537 >    block_state.cidr_bitlen_ipv6.value = $3 > 128 ? 128 : $3;
1538   };
1539  
1540   class_number_per_cidr: NUMBER_PER_CIDR '=' NUMBER ';'
1541   {
1542 <  if (ypass == 1)
1543 <    NumberPerCidr(yy_class) = $3;
1542 >  if (conf_parser_ctx.pass == 1)
1543 >    block_state.number_per_cidr.value = $3;
1544 > };
1545 >
1546 > class_min_idle: MIN_IDLE '=' timespec ';'
1547 > {
1548 >  if (conf_parser_ctx.pass != 1)
1549 >    break;
1550 >
1551 >  block_state.min_idle.value = $3;
1552 >  block_state.flags.value |= CLASS_FLAGS_FAKE_IDLE;
1553   };
1554  
1555 + class_max_idle: MAX_IDLE '=' timespec ';'
1556 + {
1557 +  if (conf_parser_ctx.pass != 1)
1558 +    break;
1559 +
1560 +  block_state.max_idle.value = $3;
1561 +  block_state.flags.value |= CLASS_FLAGS_FAKE_IDLE;
1562 + };
1563 +
1564 + class_flags: IRCD_FLAGS
1565 + {
1566 +  if (conf_parser_ctx.pass == 1)
1567 +    block_state.flags.value &= CLASS_FLAGS_FAKE_IDLE;
1568 + } '='  class_flags_items ';';
1569 +
1570 + class_flags_items: class_flags_items ',' class_flags_item | class_flags_item;
1571 + class_flags_item: RANDOM_IDLE
1572 + {
1573 +  if (conf_parser_ctx.pass == 1)
1574 +    block_state.flags.value |= CLASS_FLAGS_RANDOM_IDLE;
1575 + } | HIDE_IDLE_FROM_OPERS
1576 + {
1577 +  if (conf_parser_ctx.pass == 1)
1578 +    block_state.flags.value |= CLASS_FLAGS_HIDE_IDLE_FROM_OPERS;
1579 + };
1580 +
1581 +
1582   /***************************************************************************
1583   *  section listen
1584   ***************************************************************************/
1585   listen_entry: LISTEN
1586   {
1587 <  if (ypass == 2)
1588 <  {
1589 <    listener_address = NULL;
1671 <    listener_flags = 0;
1672 <  }
1673 < } '{' listen_items '}' ';'
1674 < {
1675 <  if (ypass == 2)
1676 <  {
1677 <    MyFree(listener_address);
1678 <    listener_address = NULL;
1679 <  }
1680 < };
1587 >  if (conf_parser_ctx.pass == 2)
1588 >    reset_block_state();
1589 > } '{' listen_items '}' ';';
1590  
1591   listen_flags: IRCD_FLAGS
1592   {
1593 +  block_state.flags.value = 0;
1594   } '='  listen_flags_items ';';
1595  
1596   listen_flags_items: listen_flags_items ',' listen_flags_item | listen_flags_item;
1597   listen_flags_item: T_SSL
1598   {
1599 <  if (ypass == 2)
1600 <    listener_flags |= LISTENER_SSL;
1599 >  if (conf_parser_ctx.pass == 2)
1600 >    block_state.flags.value |= LISTENER_SSL;
1601   } | HIDDEN
1602   {
1603 <  if (ypass == 2)
1604 <    listener_flags |= LISTENER_HIDDEN;
1603 >  if (conf_parser_ctx.pass == 2)
1604 >    block_state.flags.value |= LISTENER_HIDDEN;
1605 > } | T_SERVER
1606 > {
1607 >  if (conf_parser_ctx.pass == 2)
1608 >   block_state.flags.value |= LISTENER_SERVER;
1609   };
1610  
1611   listen_items:   listen_items listen_item | listen_item;
1612 < listen_item:    listen_port | listen_flags | listen_address | listen_host | error ';' ;
1612 > listen_item:    listen_port | listen_flags | listen_address | listen_host | error ';';
1613  
1614 < listen_port: PORT '=' port_items ';' ;
1614 > listen_port: PORT '=' port_items { block_state.flags.value = 0; } ';';
1615  
1616   port_items: port_items ',' port_item | port_item;
1617  
1618   port_item: NUMBER
1619   {
1620 <  if (ypass == 2)
1620 >  if (conf_parser_ctx.pass == 2)
1621    {
1622 <    if ((listener_flags & LISTENER_SSL))
1623 < #ifdef HAVE_LIBCRYPTO
1624 <      if (!ServerInfo.ctx)
1622 > #ifndef HAVE_LIBCRYPTO
1623 >    if (block_state.flags.value & LISTENER_SSL)
1624 >    {
1625 >      conf_error_report("SSL not available - port closed");
1626 >      break;
1627 >    }
1628   #endif
1629 <      {
1713 <        yyerror("SSL not available - port closed");
1714 <        break;
1715 <      }
1716 <    add_listener($1, listener_address, listener_flags);
1717 <    listener_flags = 0;
1629 >    add_listener($1, block_state.addr.buf, block_state.flags.value);
1630    }
1631   } | NUMBER TWODOTS NUMBER
1632   {
1633 <  if (ypass == 2)
1633 >  if (conf_parser_ctx.pass == 2)
1634    {
1635 <    int i;
1636 <
1637 <    if ((listener_flags & LISTENER_SSL))
1638 < #ifdef HAVE_LIBCRYPTO
1639 <      if (!ServerInfo.ctx)
1635 > #ifndef HAVE_LIBCRYPTO
1636 >    if (block_state.flags.value & LISTENER_SSL)
1637 >    {
1638 >      conf_error_report("SSL not available - port closed");
1639 >      break;
1640 >    }
1641   #endif
1729      {
1730        yyerror("SSL not available - port closed");
1731        break;
1732      }
1642  
1643 <    for (i = $1; i <= $3; ++i)
1644 <      add_listener(i, listener_address, listener_flags);
1736 <
1737 <    listener_flags = 0;
1643 >    for (int i = $1; i <= $3; ++i)
1644 >      add_listener(i, block_state.addr.buf, block_state.flags.value);
1645    }
1646   };
1647  
1648   listen_address: IP '=' QSTRING ';'
1649   {
1650 <  if (ypass == 2)
1651 <  {
1745 <    MyFree(listener_address);
1746 <    DupString(listener_address, yylval.string);
1747 <  }
1650 >  if (conf_parser_ctx.pass == 2)
1651 >    strlcpy(block_state.addr.buf, yylval.string, sizeof(block_state.addr.buf));
1652   };
1653  
1654   listen_host: HOST '=' QSTRING ';'
1655   {
1656 <  if (ypass == 2)
1657 <  {
1754 <    MyFree(listener_address);
1755 <    DupString(listener_address, yylval.string);
1756 <  }
1656 >  if (conf_parser_ctx.pass == 2)
1657 >    strlcpy(block_state.addr.buf, yylval.string, sizeof(block_state.addr.buf));
1658   };
1659  
1660   /***************************************************************************
# Line 1761 | Line 1662 | listen_host: HOST '=' QSTRING ';'
1662   ***************************************************************************/
1663   auth_entry: IRCD_AUTH
1664   {
1665 <  if (ypass == 2)
1666 <  {
1766 <    yy_conf = make_conf_item(CLIENT_TYPE);
1767 <    yy_aconf = map_to_conf(yy_conf);
1768 <  }
1769 <  else
1770 <  {
1771 <    MyFree(class_name);
1772 <    class_name = NULL;
1773 <  }
1665 >  if (conf_parser_ctx.pass == 2)
1666 >    reset_block_state();
1667   } '{' auth_items '}' ';'
1668   {
1669 <  if (ypass == 2)
1777 <  {
1778 <    struct CollectItem *yy_tmp = NULL;
1779 <    dlink_node *ptr = NULL, *next_ptr = NULL;
1780 <
1781 <    if (yy_aconf->user && yy_aconf->host)
1782 <    {
1783 <      conf_add_class_to_conf(yy_conf, class_name);
1784 <      add_conf_by_address(CONF_CLIENT, yy_aconf);
1785 <    }
1786 <    else
1787 <      delete_conf_item(yy_conf);
1669 >  dlink_node *ptr = NULL;
1670  
1671 <    /* copy over settings from first struct */
1672 <    DLINK_FOREACH_SAFE(ptr, next_ptr, col_conf_list.head)
1791 <    {
1792 <      struct AccessItem *new_aconf;
1793 <      struct ConfItem *new_conf;
1671 >  if (conf_parser_ctx.pass != 2)
1672 >    break;
1673  
1674 <      new_conf = make_conf_item(CLIENT_TYPE);
1675 <      new_aconf = map_to_conf(new_conf);
1676 <
1677 <      yy_tmp = ptr->data;
1678 <
1679 <      assert(yy_tmp->user && yy_tmp->host);
1680 <
1681 <      if (yy_aconf->passwd != NULL)
1682 <        DupString(new_aconf->passwd, yy_aconf->passwd);
1683 <      if (yy_conf->name != NULL)
1684 <        DupString(new_conf->name, yy_conf->name);
1685 <      if (yy_aconf->passwd != NULL)
1686 <        DupString(new_aconf->passwd, yy_aconf->passwd);
1687 <
1688 <      new_aconf->flags = yy_aconf->flags;
1689 <      new_aconf->port  = yy_aconf->port;
1690 <
1691 <      DupString(new_aconf->user, yy_tmp->user);
1692 <      collapse(new_aconf->user);
1693 <
1694 <      DupString(new_aconf->host, yy_tmp->host);
1695 <      collapse(new_aconf->host);
1674 >  DLINK_FOREACH(ptr, block_state.mask.list.head)
1675 >  {
1676 >    struct MaskItem *conf = NULL;
1677 >    struct split_nuh_item nuh;
1678 >
1679 >    nuh.nuhmask  = ptr->data;
1680 >    nuh.nickptr  = NULL;
1681 >    nuh.userptr  = block_state.user.buf;
1682 >    nuh.hostptr  = block_state.host.buf;
1683 >    nuh.nicksize = 0;
1684 >    nuh.usersize = sizeof(block_state.user.buf);
1685 >    nuh.hostsize = sizeof(block_state.host.buf);
1686 >    split_nuh(&nuh);
1687 >
1688 >    conf        = conf_make(CONF_CLIENT);
1689 >    conf->user  = xstrdup(block_state.user.buf);
1690 >    conf->host  = xstrdup(block_state.host.buf);
1691 >
1692 >    if (block_state.rpass.buf[0])
1693 >      conf->passwd = xstrdup(block_state.rpass.buf);
1694 >    if (block_state.name.buf[0])
1695 >      conf->name = xstrdup(block_state.name.buf);
1696  
1697 <      conf_add_class_to_conf(new_conf, class_name);
1698 <      add_conf_by_address(CONF_CLIENT, new_aconf);
1820 <      dlinkDelete(&yy_tmp->node, &col_conf_list);
1821 <      free_collect_item(yy_tmp);
1822 <    }
1697 >    conf->flags = block_state.flags.value;
1698 >    conf->port  = block_state.port.value;
1699  
1700 <    MyFree(class_name);
1701 <    class_name = NULL;
1826 <    yy_conf = NULL;
1827 <    yy_aconf = NULL;
1700 >    conf_add_class_to_conf(conf, block_state.class.buf);
1701 >    add_conf_by_address(CONF_CLIENT, conf);
1702    }
1703 < };
1703 > };
1704  
1705   auth_items:     auth_items auth_item | auth_item;
1706 < auth_item:      auth_user | auth_passwd | auth_class | auth_flags |
1707 <                auth_kline_exempt | auth_need_ident |
1708 <                auth_exceed_limit | auth_no_tilde | auth_gline_exempt |
1709 <                auth_spoof | auth_spoof_notice |
1710 <                auth_redir_serv | auth_redir_port | auth_can_flood |
1711 <                auth_need_password | auth_encrypted | error ';' ;
1706 > auth_item:      auth_user |
1707 >                auth_passwd |
1708 >                auth_class |
1709 >                auth_flags |
1710 >                auth_spoof |
1711 >                auth_redir_serv |
1712 >                auth_redir_port |
1713 >                auth_encrypted |
1714 >                error ';' ;
1715  
1716   auth_user: USER '=' QSTRING ';'
1717   {
1718 <  if (ypass == 2)
1719 <  {
1843 <    struct CollectItem *yy_tmp;
1844 <
1845 <    if (yy_aconf->user == NULL)
1846 <      split_nuh(yylval.string, NULL, &yy_aconf->user, &yy_aconf->host);
1847 <    else
1848 <    {
1849 <      yy_tmp = MyMalloc(sizeof(struct CollectItem));
1850 <      split_nuh(yylval.string, NULL, &yy_tmp->user, &yy_tmp->host);
1851 <      dlinkAdd(yy_tmp, &yy_tmp->node, &col_conf_list);
1852 <    }
1853 <  }
1718 >  if (conf_parser_ctx.pass == 2)
1719 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.mask.list);
1720   };
1721  
1856 /* XXX - IP/IPV6 tags don't exist anymore - put IP/IPV6 into user. */
1857
1722   auth_passwd: PASSWORD '=' QSTRING ';'
1723   {
1724 <  if (ypass == 2)
1725 <  {
1862 <    /* be paranoid */
1863 <    if (yy_aconf->passwd != NULL)
1864 <      memset(yy_aconf->passwd, 0, strlen(yy_aconf->passwd));
1865 <
1866 <    MyFree(yy_aconf->passwd);
1867 <    DupString(yy_aconf->passwd, yylval.string);
1868 <  }
1869 < };
1870 <
1871 < auth_spoof_notice: SPOOF_NOTICE '=' TBOOL ';'
1872 < {
1873 <  if (ypass == 2)
1874 <  {
1875 <    if (yylval.number)
1876 <      yy_aconf->flags |= CONF_FLAGS_SPOOF_NOTICE;
1877 <    else
1878 <      yy_aconf->flags &= ~CONF_FLAGS_SPOOF_NOTICE;
1879 <  }
1724 >  if (conf_parser_ctx.pass == 2)
1725 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
1726   };
1727  
1728   auth_class: CLASS '=' QSTRING ';'
1729   {
1730 <  if (ypass == 2)
1731 <  {
1886 <    MyFree(class_name);
1887 <    DupString(class_name, yylval.string);
1888 <  }
1730 >  if (conf_parser_ctx.pass == 2)
1731 >    strlcpy(block_state.class.buf, yylval.string, sizeof(block_state.class.buf));
1732   };
1733  
1734   auth_encrypted: ENCRYPTED '=' TBOOL ';'
1735   {
1736 <  if (ypass == 2)
1736 >  if (conf_parser_ctx.pass == 2)
1737    {
1738      if (yylval.number)
1739 <      SetConfEncrypted(yy_aconf);
1739 >      block_state.flags.value |= CONF_FLAGS_ENCRYPTED;
1740      else
1741 <      ClearConfEncrypted(yy_aconf);
1741 >      block_state.flags.value &= ~CONF_FLAGS_ENCRYPTED;
1742    }
1743   };
1744  
1745   auth_flags: IRCD_FLAGS
1746   {
1747 +  if (conf_parser_ctx.pass == 2)
1748 +    block_state.flags.value &= (CONF_FLAGS_ENCRYPTED | CONF_FLAGS_SPOOF_IP);
1749   } '='  auth_flags_items ';';
1750  
1751   auth_flags_items: auth_flags_items ',' auth_flags_item | auth_flags_item;
1752 < auth_flags_item: NOT auth_flags_item_atom { not_atom = 1; }
1908 <                | auth_flags_item_atom { not_atom = 0; };
1909 <
1910 < auth_flags_item_atom: SPOOF_NOTICE
1752 > auth_flags_item: SPOOF_NOTICE
1753   {
1754 <  if (ypass == 2)
1755 <  {
1914 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_SPOOF_NOTICE;
1915 <    else yy_aconf->flags |= CONF_FLAGS_SPOOF_NOTICE;
1916 <  }
1917 <
1754 >  if (conf_parser_ctx.pass == 2)
1755 >    block_state.flags.value |= CONF_FLAGS_SPOOF_NOTICE;
1756   } | EXCEED_LIMIT
1757   {
1758 <  if (ypass == 2)
1759 <  {
1922 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_NOLIMIT;
1923 <    else yy_aconf->flags |= CONF_FLAGS_NOLIMIT;
1924 <  }
1758 >  if (conf_parser_ctx.pass == 2)
1759 >    block_state.flags.value |= CONF_FLAGS_NOLIMIT;
1760   } | KLINE_EXEMPT
1761   {
1762 <  if (ypass == 2)
1763 <  {
1929 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_EXEMPTKLINE;
1930 <    else yy_aconf->flags |= CONF_FLAGS_EXEMPTKLINE;
1931 <  }
1762 >  if (conf_parser_ctx.pass == 2)
1763 >    block_state.flags.value |= CONF_FLAGS_EXEMPTKLINE;
1764   } | NEED_IDENT
1765   {
1766 <  if (ypass == 2)
1767 <  {
1936 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_NEED_IDENTD;
1937 <    else yy_aconf->flags |= CONF_FLAGS_NEED_IDENTD;
1938 <  }
1766 >  if (conf_parser_ctx.pass == 2)
1767 >    block_state.flags.value |= CONF_FLAGS_NEED_IDENTD;
1768   } | CAN_FLOOD
1769   {
1770 <  if (ypass == 2)
1771 <  {
1943 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_CAN_FLOOD;
1944 <    else yy_aconf->flags |= CONF_FLAGS_CAN_FLOOD;
1945 <  }
1946 < } | CAN_IDLE
1947 < {
1948 <  if (ypass == 2)
1949 <  {
1950 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_IDLE_LINED;
1951 <    else yy_aconf->flags |= CONF_FLAGS_IDLE_LINED;
1952 <  }
1770 >  if (conf_parser_ctx.pass == 2)
1771 >    block_state.flags.value |= CONF_FLAGS_CAN_FLOOD;
1772   } | NO_TILDE
1773   {
1774 <  if (ypass == 2)
1775 <  {
1957 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_NO_TILDE;
1958 <    else yy_aconf->flags |= CONF_FLAGS_NO_TILDE;
1959 <  }
1774 >  if (conf_parser_ctx.pass == 2)
1775 >    block_state.flags.value |= CONF_FLAGS_NO_TILDE;
1776   } | GLINE_EXEMPT
1777   {
1778 <  if (ypass == 2)
1779 <  {
1964 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_EXEMPTGLINE;
1965 <    else yy_aconf->flags |= CONF_FLAGS_EXEMPTGLINE;
1966 <  }
1778 >  if (conf_parser_ctx.pass == 2)
1779 >    block_state.flags.value |= CONF_FLAGS_EXEMPTGLINE;
1780   } | RESV_EXEMPT
1781   {
1782 <  if (ypass == 2)
1783 <  {
1784 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_EXEMPTRESV;
1785 <    else yy_aconf->flags |= CONF_FLAGS_EXEMPTRESV;
1786 <  }
1782 >  if (conf_parser_ctx.pass == 2)
1783 >    block_state.flags.value |= CONF_FLAGS_EXEMPTRESV;
1784 > } | T_WEBIRC
1785 > {
1786 >  if (conf_parser_ctx.pass == 2)
1787 >    block_state.flags.value |= CONF_FLAGS_WEBIRC;
1788   } | NEED_PASSWORD
1789   {
1790 <  if (ypass == 2)
1791 <  {
1978 <    if (not_atom) yy_aconf->flags &= ~CONF_FLAGS_NEED_PASSWORD;
1979 <    else yy_aconf->flags |= CONF_FLAGS_NEED_PASSWORD;
1980 <  }
1790 >  if (conf_parser_ctx.pass == 2)
1791 >    block_state.flags.value |= CONF_FLAGS_NEED_PASSWORD;
1792   };
1793  
1794 < auth_kline_exempt: KLINE_EXEMPT '=' TBOOL ';'
1794 > auth_spoof: SPOOF '=' QSTRING ';'
1795   {
1796 <  if (ypass == 2)
1797 <  {
1987 <    if (yylval.number)
1988 <      yy_aconf->flags |= CONF_FLAGS_EXEMPTKLINE;
1989 <    else
1990 <      yy_aconf->flags &= ~CONF_FLAGS_EXEMPTKLINE;
1991 <  }
1992 < };
1796 >  if (conf_parser_ctx.pass != 2)
1797 >    break;
1798  
1799 < auth_need_ident: NEED_IDENT '=' TBOOL ';'
1995 < {
1996 <  if (ypass == 2)
1799 >  if (valid_hostname(yylval.string))
1800    {
1801 <    if (yylval.number)
1802 <      yy_aconf->flags |= CONF_FLAGS_NEED_IDENTD;
2000 <    else
2001 <      yy_aconf->flags &= ~CONF_FLAGS_NEED_IDENTD;
1801 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
1802 >    block_state.flags.value |= CONF_FLAGS_SPOOF_IP;
1803    }
1804 +  else
1805 +    ilog(LOG_TYPE_IRCD, "Spoof either is too long or contains invalid characters. Ignoring it.");
1806   };
1807  
1808 < auth_exceed_limit: EXCEED_LIMIT '=' TBOOL ';'
1808 > auth_redir_serv: REDIRSERV '=' QSTRING ';'
1809   {
1810 <  if (ypass == 2)
1811 <  {
2009 <    if (yylval.number)
2010 <      yy_aconf->flags |= CONF_FLAGS_NOLIMIT;
2011 <    else
2012 <      yy_aconf->flags &= ~CONF_FLAGS_NOLIMIT;
2013 <  }
2014 < };
1810 >  if (conf_parser_ctx.pass != 2)
1811 >    break;
1812  
1813 < auth_can_flood: CAN_FLOOD '=' TBOOL ';'
1814 < {
2018 <  if (ypass == 2)
2019 <  {
2020 <    if (yylval.number)
2021 <      yy_aconf->flags |= CONF_FLAGS_CAN_FLOOD;
2022 <    else
2023 <      yy_aconf->flags &= ~CONF_FLAGS_CAN_FLOOD;
2024 <  }
1813 >  strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
1814 >  block_state.flags.value |= CONF_FLAGS_REDIR;
1815   };
1816  
1817 < auth_no_tilde: NO_TILDE '=' TBOOL ';'
1817 > auth_redir_port: REDIRPORT '=' NUMBER ';'
1818   {
1819 <  if (ypass == 2)
1820 <  {
1821 <    if (yylval.number)
1822 <      yy_aconf->flags |= CONF_FLAGS_NO_TILDE;
1823 <    else
2034 <      yy_aconf->flags &= ~CONF_FLAGS_NO_TILDE;
2035 <  }
1819 >  if (conf_parser_ctx.pass != 2)
1820 >    break;
1821 >
1822 >  block_state.flags.value |= CONF_FLAGS_REDIR;
1823 >  block_state.port.value = $3;
1824   };
1825  
1826 < auth_gline_exempt: GLINE_EXEMPT '=' TBOOL ';'
1826 >
1827 > /***************************************************************************
1828 > *  section resv
1829 > ***************************************************************************/
1830 > resv_entry: RESV
1831   {
1832 <  if (ypass == 2)
1833 <  {
2042 <    if (yylval.number)
2043 <      yy_aconf->flags |= CONF_FLAGS_EXEMPTGLINE;
2044 <    else
2045 <      yy_aconf->flags &= ~CONF_FLAGS_EXEMPTGLINE;
2046 <  }
2047 < };
1832 >  if (conf_parser_ctx.pass != 2)
1833 >    break;
1834  
1835 < /* XXX - need check for illegal hostnames here */
1836 < auth_spoof: SPOOF '=' QSTRING ';'
1835 >  reset_block_state();
1836 >  strlcpy(block_state.rpass.buf, CONF_NOREASON, sizeof(block_state.rpass.buf));
1837 > } '{' resv_items '}' ';'
1838   {
1839 <  if (ypass == 2)
1840 <  {
2054 <    MyFree(yy_conf->name);
1839 >  if (conf_parser_ctx.pass != 2)
1840 >    break;
1841  
1842 <    if (strlen(yylval.string) < HOSTLEN)
2057 <    {    
2058 <      DupString(yy_conf->name, yylval.string);
2059 <      yy_aconf->flags |= CONF_FLAGS_SPOOF_IP;
2060 <    }
2061 <    else
2062 <    {
2063 <      ilog(L_ERROR, "Spoofs must be less than %d..ignoring it", HOSTLEN);
2064 <      yy_conf->name = NULL;
2065 <    }
2066 <  }
1842 >  create_resv(block_state.name.buf, block_state.rpass.buf, &block_state.mask.list);
1843   };
1844  
1845 < auth_redir_serv: REDIRSERV '=' QSTRING ';'
1845 > resv_items:     resv_items resv_item | resv_item;
1846 > resv_item:      resv_mask | resv_reason | resv_exempt | error ';' ;
1847 >
1848 > resv_mask: MASK '=' QSTRING ';'
1849   {
1850 <  if (ypass == 2)
1851 <  {
2073 <    yy_aconf->flags |= CONF_FLAGS_REDIR;
2074 <    MyFree(yy_conf->name);
2075 <    DupString(yy_conf->name, yylval.string);
2076 <  }
1850 >  if (conf_parser_ctx.pass == 2)
1851 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
1852   };
1853  
1854 < auth_redir_port: REDIRPORT '=' NUMBER ';'
1854 > resv_reason: REASON '=' QSTRING ';'
1855   {
1856 <  if (ypass == 2)
1857 <  {
2083 <    yy_aconf->flags |= CONF_FLAGS_REDIR;
2084 <    yy_aconf->port = $3;
2085 <  }
1856 >  if (conf_parser_ctx.pass == 2)
1857 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
1858   };
1859  
1860 < auth_need_password: NEED_PASSWORD '=' TBOOL ';'
1860 > resv_exempt: EXEMPT '=' QSTRING ';'
1861   {
1862 <  if (ypass == 2)
1863 <  {
2092 <    if (yylval.number)
2093 <      yy_aconf->flags |= CONF_FLAGS_NEED_PASSWORD;
2094 <    else
2095 <      yy_aconf->flags &= ~CONF_FLAGS_NEED_PASSWORD;
2096 <  }
1862 >  if (conf_parser_ctx.pass == 2)
1863 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.mask.list);
1864   };
1865  
1866  
1867   /***************************************************************************
1868 < *  section resv
1868 > *  section service
1869   ***************************************************************************/
1870 < resv_entry: RESV
2104 < {
2105 <  if (ypass == 2)
2106 <  {
2107 <    MyFree(resv_reason);
2108 <    resv_reason = NULL;
2109 <  }
2110 < } '{' resv_items '}' ';'
2111 < {
2112 <  if (ypass == 2)
2113 <  {
2114 <    MyFree(resv_reason);
2115 <    resv_reason = NULL;
2116 <  }
2117 < };
1870 > service_entry: T_SERVICE '{' service_items '}' ';';
1871  
1872 < resv_items:     resv_items resv_item | resv_item;
1873 < resv_item:      resv_creason | resv_channel | resv_nick | error ';' ;
1872 > service_items:     service_items service_item | service_item;
1873 > service_item:      service_name | error;
1874  
1875 < resv_creason: REASON '=' QSTRING ';'
1875 > service_name: NAME '=' QSTRING ';'
1876   {
1877 <  if (ypass == 2)
1878 <  {
2126 <    MyFree(resv_reason);
2127 <    DupString(resv_reason, yylval.string);
2128 <  }
2129 < };
1877 >  if (conf_parser_ctx.pass != 2)
1878 >    break;
1879  
1880 < resv_channel: CHANNEL '=' QSTRING ';'
2132 < {
2133 <  if (ypass == 2)
2134 <  {
2135 <    if (IsChanPrefix(*yylval.string))
2136 <    {
2137 <      char def_reason[] = "No reason";
2138 <
2139 <      create_channel_resv(yylval.string, resv_reason != NULL ? resv_reason : def_reason, 1);
2140 <    }
2141 <  }
2142 <  /* ignore it for now.. but we really should make a warning if
2143 <   * its an erroneous name --fl_ */
2144 < };
2145 <
2146 < resv_nick: NICK '=' QSTRING ';'
2147 < {
2148 <  if (ypass == 2)
1880 >  if (valid_servname(yylval.string))
1881    {
1882 <    char def_reason[] = "No reason";
1883 <
2152 <    create_nick_resv(yylval.string, resv_reason != NULL ? resv_reason : def_reason, 1);
1882 >    struct MaskItem *conf = conf_make(CONF_SERVICE);
1883 >    conf->name = xstrdup(yylval.string);
1884    }
1885   };
1886  
# Line 2158 | Line 1889 | resv_nick: NICK '=' QSTRING ';'
1889   ***************************************************************************/
1890   shared_entry: T_SHARED
1891   {
1892 <  if (ypass == 2)
1893 <  {
1894 <    yy_conf = make_conf_item(ULINE_TYPE);
1895 <    yy_match_item = map_to_conf(yy_conf);
1896 <    yy_match_item->action = SHARED_ALL;
1897 <  }
1892 >  if (conf_parser_ctx.pass != 2)
1893 >    break;
1894 >
1895 >  reset_block_state();
1896 >
1897 >  strlcpy(block_state.name.buf, "*", sizeof(block_state.name.buf));
1898 >  strlcpy(block_state.user.buf, "*", sizeof(block_state.user.buf));
1899 >  strlcpy(block_state.host.buf, "*", sizeof(block_state.host.buf));
1900 >  block_state.flags.value = SHARED_ALL;
1901   } '{' shared_items '}' ';'
1902   {
1903 <  if (ypass == 2)
1904 <  {
1905 <    yy_conf = NULL;
1906 <  }
1903 >  struct MaskItem *conf = NULL;
1904 >
1905 >  if (conf_parser_ctx.pass != 2)
1906 >    break;
1907 >
1908 >  conf = conf_make(CONF_ULINE);
1909 >  conf->flags = block_state.flags.value;
1910 >  conf->name = xstrdup(block_state.name.buf);
1911 >  conf->user = xstrdup(block_state.user.buf);
1912 >  conf->host = xstrdup(block_state.host.buf);
1913   };
1914  
1915   shared_items: shared_items shared_item | shared_item;
# Line 2177 | Line 1917 | shared_item:  shared_name | shared_user
1917  
1918   shared_name: NAME '=' QSTRING ';'
1919   {
1920 <  if (ypass == 2)
1921 <  {
2182 <    MyFree(yy_conf->name);
2183 <    DupString(yy_conf->name, yylval.string);
2184 <  }
1920 >  if (conf_parser_ctx.pass == 2)
1921 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
1922   };
1923  
1924   shared_user: USER '=' QSTRING ';'
1925   {
1926 <  if (ypass == 2)
1926 >  if (conf_parser_ctx.pass == 2)
1927    {
1928 <    split_nuh(yylval.string, NULL, &yy_match_item->user, &yy_match_item->host);
1928 >    struct split_nuh_item nuh;
1929 >
1930 >    nuh.nuhmask  = yylval.string;
1931 >    nuh.nickptr  = NULL;
1932 >    nuh.userptr  = block_state.user.buf;
1933 >    nuh.hostptr  = block_state.host.buf;
1934 >
1935 >    nuh.nicksize = 0;
1936 >    nuh.usersize = sizeof(block_state.user.buf);
1937 >    nuh.hostsize = sizeof(block_state.host.buf);
1938 >
1939 >    split_nuh(&nuh);
1940    }
1941   };
1942  
1943   shared_type: TYPE
1944   {
1945 <  if (ypass == 2)
1946 <    yy_match_item->action = 0;
1945 >  if (conf_parser_ctx.pass == 2)
1946 >    block_state.flags.value = 0;
1947   } '=' shared_types ';' ;
1948  
1949   shared_types: shared_types ',' shared_type_item | shared_type_item;
1950   shared_type_item: KLINE
1951   {
1952 <  if (ypass == 2)
1953 <    yy_match_item->action |= SHARED_KLINE;
2206 < } | TKLINE
2207 < {
2208 <  if (ypass == 2)
2209 <    yy_match_item->action |= SHARED_TKLINE;
1952 >  if (conf_parser_ctx.pass == 2)
1953 >    block_state.flags.value |= SHARED_KLINE;
1954   } | UNKLINE
1955   {
1956 <  if (ypass == 2)
1957 <    yy_match_item->action |= SHARED_UNKLINE;
1958 < } | XLINE
1956 >  if (conf_parser_ctx.pass == 2)
1957 >    block_state.flags.value |= SHARED_UNKLINE;
1958 > } | T_DLINE
1959 > {
1960 >  if (conf_parser_ctx.pass == 2)
1961 >    block_state.flags.value |= SHARED_DLINE;
1962 > } | T_UNDLINE
1963   {
1964 <  if (ypass == 2)
1965 <    yy_match_item->action |= SHARED_XLINE;
1966 < } | TXLINE
1964 >  if (conf_parser_ctx.pass == 2)
1965 >    block_state.flags.value |= SHARED_UNDLINE;
1966 > } | XLINE
1967   {
1968 <  if (ypass == 2)
1969 <    yy_match_item->action |= SHARED_TXLINE;
1968 >  if (conf_parser_ctx.pass == 2)
1969 >    block_state.flags.value |= SHARED_XLINE;
1970   } | T_UNXLINE
1971   {
1972 <  if (ypass == 2)
1973 <    yy_match_item->action |= SHARED_UNXLINE;
1972 >  if (conf_parser_ctx.pass == 2)
1973 >    block_state.flags.value |= SHARED_UNXLINE;
1974   } | RESV
1975   {
1976 <  if (ypass == 2)
1977 <    yy_match_item->action |= SHARED_RESV;
2230 < } | TRESV
2231 < {
2232 <  if (ypass == 2)
2233 <    yy_match_item->action |= SHARED_TRESV;
1976 >  if (conf_parser_ctx.pass == 2)
1977 >    block_state.flags.value |= SHARED_RESV;
1978   } | T_UNRESV
1979   {
1980 <  if (ypass == 2)
1981 <    yy_match_item->action |= SHARED_UNRESV;
1980 >  if (conf_parser_ctx.pass == 2)
1981 >    block_state.flags.value |= SHARED_UNRESV;
1982   } | T_LOCOPS
1983   {
1984 <  if (ypass == 2)
1985 <    yy_match_item->action |= SHARED_LOCOPS;
1984 >  if (conf_parser_ctx.pass == 2)
1985 >    block_state.flags.value |= SHARED_LOCOPS;
1986   } | T_ALL
1987   {
1988 <  if (ypass == 2)
1989 <    yy_match_item->action = SHARED_ALL;
1988 >  if (conf_parser_ctx.pass == 2)
1989 >    block_state.flags.value = SHARED_ALL;
1990   };
1991  
1992   /***************************************************************************
# Line 2250 | Line 1994 | shared_type_item: KLINE
1994   ***************************************************************************/
1995   cluster_entry: T_CLUSTER
1996   {
1997 <  if (ypass == 2)
1998 <  {
1999 <    yy_conf = make_conf_item(CLUSTER_TYPE);
2000 <    yy_conf->flags = SHARED_ALL;
2001 <  }
1997 >  if (conf_parser_ctx.pass != 2)
1998 >    break;
1999 >
2000 >  reset_block_state();
2001 >
2002 >  strlcpy(block_state.name.buf, "*", sizeof(block_state.name.buf));
2003 >  block_state.flags.value = SHARED_ALL;
2004   } '{' cluster_items '}' ';'
2005   {
2006 <  if (ypass == 2)
2007 <  {
2008 <    if (yy_conf->name == NULL)
2009 <      DupString(yy_conf->name, "*");
2010 <    yy_conf = NULL;
2011 <  }
2006 >  struct MaskItem *conf = NULL;
2007 >
2008 >  if (conf_parser_ctx.pass != 2)
2009 >    break;
2010 >
2011 >  conf = conf_make(CONF_CLUSTER);
2012 >  conf->flags = block_state.flags.value;
2013 >  conf->name = xstrdup(block_state.name.buf);
2014   };
2015  
2016 < cluster_items:  cluster_items cluster_item | cluster_item;
2017 < cluster_item:   cluster_name | cluster_type | error ';' ;
2016 > cluster_items:  cluster_items cluster_item | cluster_item;
2017 > cluster_item:   cluster_name | cluster_type | error ';' ;
2018  
2019   cluster_name: NAME '=' QSTRING ';'
2020   {
2021 <  if (ypass == 2)
2022 <    DupString(yy_conf->name, yylval.string);
2021 >  if (conf_parser_ctx.pass == 2)
2022 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
2023   };
2024  
2025   cluster_type: TYPE
2026   {
2027 <  if (ypass == 2)
2028 <    yy_conf->flags = 0;
2027 >  if (conf_parser_ctx.pass == 2)
2028 >    block_state.flags.value = 0;
2029   } '=' cluster_types ';' ;
2030  
2031 < cluster_types:  cluster_types ',' cluster_type_item | cluster_type_item;
2031 > cluster_types:  cluster_types ',' cluster_type_item | cluster_type_item;
2032   cluster_type_item: KLINE
2033   {
2034 <  if (ypass == 2)
2035 <    yy_conf->flags |= SHARED_KLINE;
2288 < } | TKLINE
2289 < {
2290 <  if (ypass == 2)
2291 <    yy_conf->flags |= SHARED_TKLINE;
2034 >  if (conf_parser_ctx.pass == 2)
2035 >    block_state.flags.value |= SHARED_KLINE;
2036   } | UNKLINE
2037   {
2038 <  if (ypass == 2)
2039 <    yy_conf->flags |= SHARED_UNKLINE;
2040 < } | XLINE
2038 >  if (conf_parser_ctx.pass == 2)
2039 >    block_state.flags.value |= SHARED_UNKLINE;
2040 > } | T_DLINE
2041 > {
2042 >  if (conf_parser_ctx.pass == 2)
2043 >    block_state.flags.value |= SHARED_DLINE;
2044 > } | T_UNDLINE
2045   {
2046 <  if (ypass == 2)
2047 <    yy_conf->flags |= SHARED_XLINE;
2048 < } | TXLINE
2046 >  if (conf_parser_ctx.pass == 2)
2047 >    block_state.flags.value |= SHARED_UNDLINE;
2048 > } | XLINE
2049   {
2050 <  if (ypass == 2)
2051 <    yy_conf->flags |= SHARED_TXLINE;
2050 >  if (conf_parser_ctx.pass == 2)
2051 >    block_state.flags.value |= SHARED_XLINE;
2052   } | T_UNXLINE
2053   {
2054 <  if (ypass == 2)
2055 <    yy_conf->flags |= SHARED_UNXLINE;
2054 >  if (conf_parser_ctx.pass == 2)
2055 >    block_state.flags.value |= SHARED_UNXLINE;
2056   } | RESV
2057   {
2058 <  if (ypass == 2)
2059 <    yy_conf->flags |= SHARED_RESV;
2312 < } | TRESV
2313 < {
2314 <  if (ypass == 2)
2315 <    yy_conf->flags |= SHARED_TRESV;
2058 >  if (conf_parser_ctx.pass == 2)
2059 >    block_state.flags.value |= SHARED_RESV;
2060   } | T_UNRESV
2061   {
2062 <  if (ypass == 2)
2063 <    yy_conf->flags |= SHARED_UNRESV;
2062 >  if (conf_parser_ctx.pass == 2)
2063 >    block_state.flags.value |= SHARED_UNRESV;
2064   } | T_LOCOPS
2065   {
2066 <  if (ypass == 2)
2067 <    yy_conf->flags |= SHARED_LOCOPS;
2066 >  if (conf_parser_ctx.pass == 2)
2067 >    block_state.flags.value |= SHARED_LOCOPS;
2068   } | T_ALL
2069   {
2070 <  if (ypass == 2)
2071 <    yy_conf->flags = SHARED_ALL;
2070 >  if (conf_parser_ctx.pass == 2)
2071 >    block_state.flags.value = SHARED_ALL;
2072   };
2073  
2074   /***************************************************************************
2075   *  section connect
2076   ***************************************************************************/
2077 < connect_entry: CONNECT  
2077 > connect_entry: CONNECT
2078   {
2335  if (ypass == 2)
2336  {
2337    yy_conf = make_conf_item(SERVER_TYPE);
2338    yy_aconf = (struct AccessItem *)map_to_conf(yy_conf);
2339    yy_aconf->passwd = NULL;
2340    /* defaults */
2341    yy_aconf->port = PORTNUM;
2079  
2080 <    if (ConfigFileEntry.burst_away)
2081 <      yy_aconf->flags = CONF_FLAGS_BURST_AWAY;
2082 <  }
2083 <  else
2084 <  {
2085 <    MyFree(class_name);
2086 <    class_name = NULL;
2350 <  }
2351 < } connect_name_b '{' connect_items '}' ';'
2080 >  if (conf_parser_ctx.pass != 2)
2081 >    break;
2082 >
2083 >  reset_block_state();
2084 >  block_state.aftype.value = AF_INET;
2085 >  block_state.port.value = PORTNUM;
2086 > } '{' connect_items '}' ';'
2087   {
2088 <  if (ypass == 2)
2089 <  {
2355 <    struct CollectItem *yy_hconf=NULL;
2356 <    struct CollectItem *yy_lconf=NULL;
2357 <    dlink_node *ptr;
2358 <    dlink_node *next_ptr;
2359 < #ifdef HAVE_LIBCRYPTO
2360 <    if (yy_aconf->host &&
2361 <        ((yy_aconf->passwd && yy_aconf->spasswd) ||
2362 <         (yy_aconf->rsa_public_key && IsConfCryptLink(yy_aconf))))
2363 < #else /* !HAVE_LIBCRYPTO */
2364 <      if (yy_aconf->host && !IsConfCryptLink(yy_aconf) &&
2365 <          yy_aconf->passwd && yy_aconf->spasswd)
2366 < #endif /* !HAVE_LIBCRYPTO */
2367 <        {
2368 <          if (conf_add_server(yy_conf, scount, class_name) >= 0)
2369 <          {
2370 <            ++scount;
2371 <          }
2372 <          else
2373 <          {
2374 <            delete_conf_item(yy_conf);
2375 <            yy_conf = NULL;
2376 <            yy_aconf = NULL;
2377 <          }
2378 <        }
2379 <        else
2380 <        {
2381 <          /* Even if yy_conf ->name is NULL
2382 <           * should still unhook any hub/leaf confs still pending
2383 <           */
2384 <          unhook_hub_leaf_confs();
2088 >  struct MaskItem *conf = NULL;
2089 >  struct addrinfo hints, *res;
2090  
2091 <          if (yy_conf->name != NULL)
2092 <          {
2388 < #ifndef HAVE_LIBCRYPTO
2389 <            if (IsConfCryptLink(yy_aconf))
2390 <              yyerror("Ignoring connect block -- no OpenSSL support");
2391 < #else
2392 <            if (IsConfCryptLink(yy_aconf) && !yy_aconf->rsa_public_key)
2393 <              yyerror("Ignoring connect block -- missing key");
2394 < #endif
2395 <            if (yy_aconf->host == NULL)
2396 <              yyerror("Ignoring connect block -- missing host");
2397 <            else if (!IsConfCryptLink(yy_aconf) &&
2398 <                    (!yy_aconf->passwd || !yy_aconf->spasswd))
2399 <              yyerror("Ignoring connect block -- missing password");
2400 <          }
2401 <
2402 <
2403 <          /* XXX
2404 <           * This fixes a try_connections() core (caused by invalid class_ptr
2405 <           * pointers) reported by metalrock. That's an ugly fix, but there
2406 <           * is currently no better way. The entire config subsystem needs an
2407 <           * rewrite ASAP. make_conf_item() shouldn't really add things onto
2408 <           * a doubly linked list immediately without any sanity checks!  -Michael
2409 <           */
2410 <          delete_conf_item(yy_conf);
2411 <
2412 <          yy_aconf = NULL;
2413 <          yy_conf = NULL;
2414 <        }
2415 <
2416 <      /*
2417 <       * yy_conf is still pointing at the server that is having
2418 <       * a connect block built for it. This means, y_aconf->name
2419 <       * points to the actual irc name this server will be known as.
2420 <       * Now this new server has a set or even just one hub_mask (or leaf_mask)
2421 <       * given in the link list at yy_hconf. Fill in the HUB confs
2422 <       * from this link list now.
2423 <       */        
2424 <      DLINK_FOREACH_SAFE(ptr, next_ptr, hub_conf_list.head)
2425 <      {
2426 <        struct ConfItem *new_hub_conf;
2427 <        struct MatchItem *match_item;
2091 >  if (conf_parser_ctx.pass != 2)
2092 >    break;
2093  
2094 <        yy_hconf = ptr->data;
2094 >  if (!block_state.name.buf[0] ||
2095 >      !block_state.host.buf[0])
2096 >    break;
2097  
2098 <        /* yy_conf == NULL is a fatal error for this connect block! */
2099 <        if ((yy_conf != NULL) && (yy_conf->name != NULL))
2100 <        {
2434 <          new_hub_conf = make_conf_item(HUB_TYPE);
2435 <          match_item = (struct MatchItem *)map_to_conf(new_hub_conf);
2436 <          DupString(new_hub_conf->name, yy_conf->name);
2437 <          if (yy_hconf->user != NULL)
2438 <            DupString(match_item->user, yy_hconf->user);
2439 <          else
2440 <            DupString(match_item->user, "*");
2441 <          if (yy_hconf->host != NULL)
2442 <            DupString(match_item->host, yy_hconf->host);
2443 <          else
2444 <            DupString(match_item->host, "*");
2445 <        }
2446 <        dlinkDelete(&yy_hconf->node, &hub_conf_list);
2447 <        free_collect_item(yy_hconf);
2448 <      }
2098 >  if (!block_state.rpass.buf[0] ||
2099 >      !block_state.spass.buf[0])
2100 >    break;
2101  
2102 <      /* Ditto for the LEAF confs */
2102 >  if (has_wildcards(block_state.name.buf) ||
2103 >      has_wildcards(block_state.host.buf))
2104 >    break;
2105  
2106 <      DLINK_FOREACH_SAFE(ptr, next_ptr, leaf_conf_list.head)
2107 <      {
2108 <        struct ConfItem *new_leaf_conf;
2109 <        struct MatchItem *match_item;
2106 >  conf = conf_make(CONF_SERVER);
2107 >  conf->port = block_state.port.value;
2108 >  conf->flags = block_state.flags.value;
2109 >  conf->aftype = block_state.aftype.value;
2110 >  conf->host = xstrdup(block_state.host.buf);
2111 >  conf->name = xstrdup(block_state.name.buf);
2112 >  conf->passwd = xstrdup(block_state.rpass.buf);
2113 >  conf->spasswd = xstrdup(block_state.spass.buf);
2114  
2115 <        yy_lconf = ptr->data;
2115 >  if (block_state.cert.buf[0])
2116 >    conf->certfp = xstrdup(block_state.cert.buf);
2117  
2118 <        if ((yy_conf != NULL) && (yy_conf->name != NULL))
2119 <        {
2120 <          new_leaf_conf = make_conf_item(LEAF_TYPE);
2121 <          match_item = (struct MatchItem *)map_to_conf(new_leaf_conf);
2122 <          DupString(new_leaf_conf->name, yy_conf->name);
2123 <          if (yy_lconf->user != NULL)
2124 <            DupString(match_item->user, yy_lconf->user);
2125 <          else
2126 <            DupString(match_item->user, "*");
2127 <          if (yy_lconf->host != NULL)
2128 <            DupString(match_item->host, yy_lconf->host);
2129 <          else
2130 <            DupString(match_item->host, "*");
2131 <        }
2132 <        dlinkDelete(&yy_lconf->node, &leaf_conf_list);
2133 <        free_collect_item(yy_lconf);
2134 <      }
2135 <      MyFree(class_name);
2136 <      class_name = NULL;
2137 <      yy_conf = NULL;
2138 <      yy_aconf = NULL;
2118 >  if (block_state.ciph.buf[0])
2119 >    conf->cipher_list = xstrdup(block_state.ciph.buf);
2120 >
2121 >  dlinkMoveList(&block_state.leaf.list, &conf->leaf_list);
2122 >  dlinkMoveList(&block_state.hub.list, &conf->hub_list);
2123 >
2124 >  if (block_state.bind.buf[0])
2125 >  {
2126 >    memset(&hints, 0, sizeof(hints));
2127 >
2128 >    hints.ai_family   = AF_UNSPEC;
2129 >    hints.ai_socktype = SOCK_STREAM;
2130 >    hints.ai_flags    = AI_PASSIVE | AI_NUMERICHOST;
2131 >
2132 >    if (getaddrinfo(block_state.bind.buf, NULL, &hints, &res))
2133 >      ilog(LOG_TYPE_IRCD, "Invalid netmask for server vhost(%s)", block_state.bind.buf);
2134 >    else
2135 >    {
2136 >      assert(res);
2137 >
2138 >      memcpy(&conf->bind, res->ai_addr, res->ai_addrlen);
2139 >      conf->bind.ss.ss_family = res->ai_family;
2140 >      conf->bind.ss_len = res->ai_addrlen;
2141 >      freeaddrinfo(res);
2142 >    }
2143    }
2144 +
2145 +  conf_add_class_to_conf(conf, block_state.class.buf);
2146 +  lookup_confhost(conf);
2147   };
2148  
2483 connect_name_b: | connect_name_t;
2149   connect_items:  connect_items connect_item | connect_item;
2150 < connect_item:   connect_name | connect_host | connect_vhost |
2151 <                connect_send_password | connect_accept_password |
2152 <                connect_aftype | connect_port |
2153 <                connect_fakename | connect_flags | connect_hub_mask |
2154 <                connect_leaf_mask | connect_class | connect_auto |
2155 <                connect_encrypted | connect_compressed | connect_cryptlink |
2156 <                connect_rsa_public_key_file | connect_cipher_preference |
2150 > connect_item:   connect_name |
2151 >                connect_host |
2152 >                connect_vhost |
2153 >                connect_send_password |
2154 >                connect_accept_password |
2155 >                connect_ssl_certificate_fingerprint |
2156 >                connect_aftype |
2157 >                connect_port |
2158 >                connect_ssl_cipher_list |
2159 >                connect_flags |
2160 >                connect_hub_mask |
2161 >                connect_leaf_mask |
2162 >                connect_class |
2163 >                connect_encrypted |
2164                  error ';' ;
2165  
2166   connect_name: NAME '=' QSTRING ';'
2167   {
2168 <  if (ypass == 2)
2169 <  {
2498 <    if (yy_conf->name != NULL)
2499 <      yyerror("Multiple connect name entry");
2500 <
2501 <    MyFree(yy_conf->name);
2502 <    DupString(yy_conf->name, yylval.string);
2503 <  }
2168 >  if (conf_parser_ctx.pass == 2)
2169 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
2170   };
2171  
2172 < connect_name_t: QSTRING
2172 > connect_host: HOST '=' QSTRING ';'
2173   {
2174 <  if (ypass == 2)
2175 <  {
2510 <    if (yy_conf->name != NULL)
2511 <      yyerror("Multiple connect name entry");
2512 <
2513 <    MyFree(yy_conf->name);
2514 <    DupString(yy_conf->name, yylval.string);
2515 <  }
2174 >  if (conf_parser_ctx.pass == 2)
2175 >    strlcpy(block_state.host.buf, yylval.string, sizeof(block_state.host.buf));
2176   };
2177  
2178 < connect_host: HOST '=' QSTRING ';'
2178 > connect_vhost: VHOST '=' QSTRING ';'
2179   {
2180 <  if (ypass == 2)
2181 <  {
2522 <    MyFree(yy_aconf->host);
2523 <    DupString(yy_aconf->host, yylval.string);
2524 <  }
2180 >  if (conf_parser_ctx.pass == 2)
2181 >    strlcpy(block_state.bind.buf, yylval.string, sizeof(block_state.bind.buf));
2182   };
2183  
2527 connect_vhost: VHOST '=' QSTRING ';'
2528 {
2529  if (ypass == 2)
2530  {
2531    struct addrinfo hints, *res;
2532
2533    memset(&hints, 0, sizeof(hints));
2534
2535    hints.ai_family   = AF_UNSPEC;
2536    hints.ai_socktype = SOCK_STREAM;
2537    hints.ai_flags    = AI_PASSIVE | AI_NUMERICHOST;
2538
2539    if (irc_getaddrinfo(yylval.string, NULL, &hints, &res))
2540      ilog(L_ERROR, "Invalid netmask for server vhost(%s)", yylval.string);
2541    else
2542    {
2543      assert(res != NULL);
2544
2545      memcpy(&yy_aconf->my_ipnum, res->ai_addr, res->ai_addrlen);
2546      yy_aconf->my_ipnum.ss.ss_family = res->ai_family;
2547      yy_aconf->my_ipnum.ss_len = res->ai_addrlen;
2548      irc_freeaddrinfo(res);
2549    }
2550  }
2551 };
2552
2184   connect_send_password: SEND_PASSWORD '=' QSTRING ';'
2185   {
2186 <  if (ypass == 2)
2187 <  {
2557 <    if ($3[0] == ':')
2558 <      yyerror("Server passwords cannot begin with a colon");
2559 <    else if (strchr($3, ' ') != NULL)
2560 <      yyerror("Server passwords cannot contain spaces");
2561 <    else {
2562 <      if (yy_aconf->spasswd != NULL)
2563 <        memset(yy_aconf->spasswd, 0, strlen(yy_aconf->spasswd));
2186 >  if (conf_parser_ctx.pass != 2)
2187 >    break;
2188  
2189 <      MyFree(yy_aconf->spasswd);
2190 <      DupString(yy_aconf->spasswd, yylval.string);
2191 <    }
2192 <  }
2189 >  if ($3[0] == ':')
2190 >    conf_error_report("Server passwords cannot begin with a colon");
2191 >  else if (strchr($3, ' '))
2192 >    conf_error_report("Server passwords cannot contain spaces");
2193 >  else
2194 >    strlcpy(block_state.spass.buf, yylval.string, sizeof(block_state.spass.buf));
2195   };
2196  
2197   connect_accept_password: ACCEPT_PASSWORD '=' QSTRING ';'
2198   {
2199 <  if (ypass == 2)
2200 <  {
2575 <    if ($3[0] == ':')
2576 <      yyerror("Server passwords cannot begin with a colon");
2577 <    else if (strchr($3, ' ') != NULL)
2578 <      yyerror("Server passwords cannot contain spaces");
2579 <    else {
2580 <      if (yy_aconf->passwd != NULL)
2581 <        memset(yy_aconf->passwd, 0, strlen(yy_aconf->passwd));
2199 >  if (conf_parser_ctx.pass != 2)
2200 >    break;
2201  
2202 <      MyFree(yy_aconf->passwd);
2203 <      DupString(yy_aconf->passwd, yylval.string);
2204 <    }
2205 <  }
2202 >  if ($3[0] == ':')
2203 >    conf_error_report("Server passwords cannot begin with a colon");
2204 >  else if (strchr($3, ' '))
2205 >    conf_error_report("Server passwords cannot contain spaces");
2206 >  else
2207 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
2208 > };
2209 >
2210 > connect_ssl_certificate_fingerprint: SSL_CERTIFICATE_FINGERPRINT '=' QSTRING ';'
2211 > {
2212 >  if (conf_parser_ctx.pass == 2)
2213 >    strlcpy(block_state.cert.buf, yylval.string, sizeof(block_state.cert.buf));
2214   };
2215  
2216   connect_port: PORT '=' NUMBER ';'
2217   {
2218 <  if (ypass == 2)
2219 <    yy_aconf->port = $3;
2218 >  if (conf_parser_ctx.pass == 2)
2219 >    block_state.port.value = $3;
2220   };
2221  
2222   connect_aftype: AFTYPE '=' T_IPV4 ';'
2223   {
2224 <  if (ypass == 2)
2225 <    yy_aconf->aftype = AF_INET;
2224 >  if (conf_parser_ctx.pass == 2)
2225 >    block_state.aftype.value = AF_INET;
2226   } | AFTYPE '=' T_IPV6 ';'
2227   {
2228 < #ifdef IPV6
2229 <  if (ypass == 2)
2603 <    yy_aconf->aftype = AF_INET6;
2604 < #endif
2605 < };
2606 <
2607 < connect_fakename: FAKENAME '=' QSTRING ';'
2608 < {
2609 <  if (ypass == 2)
2610 <  {
2611 <    MyFree(yy_aconf->fakename);
2612 <    DupString(yy_aconf->fakename, yylval.string);
2613 <  }
2228 >  if (conf_parser_ctx.pass == 2)
2229 >    block_state.aftype.value = AF_INET6;
2230   };
2231  
2232   connect_flags: IRCD_FLAGS
2233   {
2234 +  block_state.flags.value &= CONF_FLAGS_ENCRYPTED;
2235   } '='  connect_flags_items ';';
2236  
2237   connect_flags_items: connect_flags_items ',' connect_flags_item | connect_flags_item;
2238 < connect_flags_item: NOT connect_flags_item_atom { not_atom = 1; }
2622 <                        | connect_flags_item_atom { not_atom = 0; };
2623 <
2624 < connect_flags_item_atom: LAZYLINK
2625 < {
2626 <  if (ypass == 2)
2627 <  {
2628 <    if (not_atom)ClearConfLazyLink(yy_aconf);
2629 <    else SetConfLazyLink(yy_aconf);
2630 <  }
2631 < } | COMPRESSED
2632 < {
2633 <  if (ypass == 2)
2634 < #ifndef HAVE_LIBZ
2635 <    yyerror("Ignoring flags = compressed; -- no zlib support");
2636 < #else
2637 < {
2638 <   if (not_atom)ClearConfCompressed(yy_aconf);
2639 <   else SetConfCompressed(yy_aconf);
2640 < }
2641 < #endif
2642 < } | CRYPTLINK
2238 > connect_flags_item: AUTOCONN
2239   {
2240 <  if (ypass == 2)
2241 <  {
2242 <    if (not_atom)ClearConfCryptLink(yy_aconf);
2647 <    else SetConfCryptLink(yy_aconf);
2648 <  }
2649 < } | AUTOCONN
2650 < {
2651 <  if (ypass == 2)
2652 <  {
2653 <    if (not_atom)ClearConfAllowAutoConn(yy_aconf);
2654 <    else SetConfAllowAutoConn(yy_aconf);
2655 <  }
2656 < } | BURST_AWAY
2657 < {
2658 <  if (ypass == 2)
2659 <  {
2660 <    if (not_atom)ClearConfAwayBurst(yy_aconf);
2661 <    else SetConfAwayBurst(yy_aconf);
2662 <  }
2663 < } | TOPICBURST
2240 >  if (conf_parser_ctx.pass == 2)
2241 >    block_state.flags.value |= CONF_FLAGS_ALLOW_AUTO_CONN;
2242 > } | T_SSL
2243   {
2244 <  if (ypass == 2)
2245 <  {
2667 <    if (not_atom)ClearConfTopicBurst(yy_aconf);
2668 <    else SetConfTopicBurst(yy_aconf);
2669 <  }
2670 < }
2671 < ;
2672 <
2673 < connect_rsa_public_key_file: RSA_PUBLIC_KEY_FILE '=' QSTRING ';'
2674 < {
2675 < #ifdef HAVE_LIBCRYPTO
2676 <  if (ypass == 2)
2677 <  {
2678 <    BIO *file;
2679 <
2680 <    if (yy_aconf->rsa_public_key != NULL)
2681 <    {
2682 <      RSA_free(yy_aconf->rsa_public_key);
2683 <      yy_aconf->rsa_public_key = NULL;
2684 <    }
2685 <
2686 <    if (yy_aconf->rsa_public_key_file != NULL)
2687 <    {
2688 <      MyFree(yy_aconf->rsa_public_key_file);
2689 <      yy_aconf->rsa_public_key_file = NULL;
2690 <    }
2691 <
2692 <    DupString(yy_aconf->rsa_public_key_file, yylval.string);
2693 <
2694 <    if ((file = BIO_new_file(yylval.string, "r")) == NULL)
2695 <    {
2696 <      yyerror("Ignoring rsa_public_key_file -- file doesn't exist");
2697 <      break;
2698 <    }
2699 <
2700 <    yy_aconf->rsa_public_key = (RSA *)PEM_read_bio_RSA_PUBKEY(file, NULL, 0, NULL);
2701 <
2702 <    if (yy_aconf->rsa_public_key == NULL)
2703 <    {
2704 <      yyerror("Ignoring rsa_public_key_file -- Key invalid; check key syntax.");
2705 <      break;
2706 <    }
2707 <      
2708 <    BIO_set_close(file, BIO_CLOSE);
2709 <    BIO_free(file);
2710 <  }
2711 < #endif /* HAVE_LIBCRYPTO */
2244 >  if (conf_parser_ctx.pass == 2)
2245 >    block_state.flags.value |= CONF_FLAGS_SSL;
2246   };
2247  
2248   connect_encrypted: ENCRYPTED '=' TBOOL ';'
2249   {
2250 <  if (ypass == 2)
2250 >  if (conf_parser_ctx.pass == 2)
2251    {
2252      if (yylval.number)
2253 <      yy_aconf->flags |= CONF_FLAGS_ENCRYPTED;
2253 >      block_state.flags.value |= CONF_FLAGS_ENCRYPTED;
2254      else
2255 <      yy_aconf->flags &= ~CONF_FLAGS_ENCRYPTED;
2255 >      block_state.flags.value &= ~CONF_FLAGS_ENCRYPTED;
2256    }
2257   };
2258  
2259 < connect_cryptlink: CRYPTLINK '=' TBOOL ';'
2259 > connect_hub_mask: HUB_MASK '=' QSTRING ';'
2260   {
2261 <  if (ypass == 2)
2262 <  {
2729 <    if (yylval.number)
2730 <      yy_aconf->flags |= CONF_FLAGS_CRYPTLINK;
2731 <    else
2732 <      yy_aconf->flags &= ~CONF_FLAGS_CRYPTLINK;
2733 <  }
2261 >  if (conf_parser_ctx.pass == 2)
2262 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.hub.list);
2263   };
2264  
2265 < connect_compressed: COMPRESSED '=' TBOOL ';'
2265 > connect_leaf_mask: LEAF_MASK '=' QSTRING ';'
2266   {
2267 <  if (ypass == 2)
2268 <  {
2740 <    if (yylval.number)
2741 < #ifndef HAVE_LIBZ
2742 <      yyerror("Ignoring compressed=yes; -- no zlib support");
2743 < #else
2744 <      yy_aconf->flags |= CONF_FLAGS_COMPRESSED;
2745 < #endif
2746 <    else
2747 <      yy_aconf->flags &= ~CONF_FLAGS_COMPRESSED;
2748 <  }
2749 < };
2750 <
2751 < connect_auto: AUTOCONN '=' TBOOL ';'
2752 < {
2753 <  if (ypass == 2)
2754 <  {
2755 <    if (yylval.number)
2756 <      yy_aconf->flags |= CONF_FLAGS_ALLOW_AUTO_CONN;
2757 <    else
2758 <      yy_aconf->flags &= ~CONF_FLAGS_ALLOW_AUTO_CONN;
2759 <  }
2760 < };
2761 <
2762 < connect_hub_mask: HUB_MASK '=' QSTRING ';'
2763 < {
2764 <  if (ypass == 2)
2765 <  {
2766 <    struct CollectItem *yy_tmp;
2767 <
2768 <    yy_tmp = (struct CollectItem *)MyMalloc(sizeof(struct CollectItem));
2769 <    DupString(yy_tmp->host, yylval.string);
2770 <    DupString(yy_tmp->user, "*");
2771 <    dlinkAdd(yy_tmp, &yy_tmp->node, &hub_conf_list);
2772 <  }
2773 < };
2774 <
2775 < connect_leaf_mask: LEAF_MASK '=' QSTRING ';'
2776 < {
2777 <  if (ypass == 2)
2778 <  {
2779 <    struct CollectItem *yy_tmp;
2780 <
2781 <    yy_tmp = (struct CollectItem *)MyMalloc(sizeof(struct CollectItem));
2782 <    DupString(yy_tmp->host, yylval.string);
2783 <    DupString(yy_tmp->user, "*");
2784 <    dlinkAdd(yy_tmp, &yy_tmp->node, &leaf_conf_list);
2785 <  }
2267 >  if (conf_parser_ctx.pass == 2)
2268 >    dlinkAdd(xstrdup(yylval.string), make_dlink_node(), &block_state.leaf.list);
2269   };
2270  
2271   connect_class: CLASS '=' QSTRING ';'
2272   {
2273 <  if (ypass == 2)
2274 <  {
2792 <    MyFree(class_name);
2793 <    DupString(class_name, yylval.string);
2794 <  }
2273 >  if (conf_parser_ctx.pass == 2)
2274 >    strlcpy(block_state.class.buf, yylval.string, sizeof(block_state.class.buf));
2275   };
2276  
2277 < connect_cipher_preference: CIPHER_PREFERENCE '=' QSTRING ';'
2277 > connect_ssl_cipher_list: T_SSL_CIPHER_LIST '=' QSTRING ';'
2278   {
2279   #ifdef HAVE_LIBCRYPTO
2280 <  if (ypass == 2)
2281 <  {
2802 <    struct EncCapability *ecap;
2803 <    const char *cipher_name;
2804 <    int found = 0;
2805 <
2806 <    yy_aconf->cipher_preference = NULL;
2807 <    cipher_name = yylval.string;
2808 <
2809 <    for (ecap = CipherTable; ecap->name; ecap++)
2810 <    {
2811 <      if ((irccmp(ecap->name, cipher_name) == 0) &&
2812 <          (ecap->cap & CAP_ENC_MASK))
2813 <      {
2814 <        yy_aconf->cipher_preference = ecap;
2815 <        found = 1;
2816 <        break;
2817 <      }
2818 <    }
2819 <
2820 <    if (!found)
2821 <      yyerror("Invalid cipher");
2822 <  }
2280 >  if (conf_parser_ctx.pass == 2)
2281 >    strlcpy(block_state.ciph.buf, yylval.string, sizeof(block_state.ciph.buf));
2282   #else
2283 <  if (ypass == 2)
2284 <    yyerror("Ignoring cipher_preference -- no OpenSSL support");
2283 >  if (conf_parser_ctx.pass == 2)
2284 >    conf_error_report("Ignoring connect::ciphers -- no OpenSSL support");
2285   #endif
2286   };
2287  
2288 +
2289   /***************************************************************************
2290   *  section kill
2291   ***************************************************************************/
2292   kill_entry: KILL
2293   {
2294 <  if (ypass == 2)
2295 <  {
2836 <    userbuf[0] = hostbuf[0] = reasonbuf[0] = '\0';
2837 <    regex_ban = 0;
2838 <  }
2294 >  if (conf_parser_ctx.pass == 2)
2295 >    reset_block_state();
2296   } '{' kill_items '}' ';'
2297   {
2298 <  if (ypass == 2)
2842 <  {
2843 <    if (userbuf[0] && hostbuf[0])
2844 <    {
2845 <      if (regex_ban)
2846 <      {
2847 <        pcre *exp_user = NULL;
2848 <        pcre *exp_host = NULL;
2849 <        const char *errptr = NULL;
2850 <
2851 <        if (!(exp_user = ircd_pcre_compile(userbuf, &errptr)) ||
2852 <            !(exp_host = ircd_pcre_compile(hostbuf, &errptr)))
2853 <        {
2854 <          ilog(L_ERROR, "Failed to add regular expression based K-Line: %s", errptr);
2855 <          break;
2856 <        }
2857 <
2858 <        yy_conf = make_conf_item(RKLINE_TYPE);
2859 <        yy_aconf->regexuser = exp_user;
2860 <        yy_aconf->regexhost = exp_host;
2298 >  struct MaskItem *conf = NULL;
2299  
2300 <        DupString(yy_aconf->user, userbuf);
2301 <        DupString(yy_aconf->host, hostbuf);
2300 >  if (conf_parser_ctx.pass != 2)
2301 >    break;
2302  
2303 <        if (reasonbuf[0])
2304 <          DupString(yy_aconf->reason, reasonbuf);
2305 <        else
2868 <          DupString(yy_aconf->reason, "No reason");
2869 <      }
2870 <      else
2871 <      {
2872 <        yy_conf = make_conf_item(KLINE_TYPE);
2873 <        yy_aconf = map_to_conf(yy_conf);
2874 <
2875 <        DupString(yy_aconf->user, userbuf);
2876 <        DupString(yy_aconf->host, hostbuf);
2877 <
2878 <        if (reasonbuf[0])
2879 <          DupString(yy_aconf->reason, reasonbuf);
2880 <        else
2881 <          DupString(yy_aconf->reason, "No reason");
2882 <        add_conf_by_address(CONF_KILL, yy_aconf);
2883 <      }
2884 <    }
2885 <    else
2886 <      delete_conf_item(yy_conf);
2303 >  if (!block_state.user.buf[0] ||
2304 >      !block_state.host.buf[0])
2305 >    break;
2306  
2307 <    yy_conf = NULL;
2308 <    yy_aconf = NULL;
2309 <  }
2891 < };
2892 <
2893 < kill_type: TYPE
2894 < {
2895 < } '='  kill_type_items ';';
2307 >  conf = conf_make(CONF_KLINE);
2308 >  conf->user = xstrdup(block_state.user.buf);
2309 >  conf->host = xstrdup(block_state.host.buf);
2310  
2311 < kill_type_items: kill_type_items ',' kill_type_item | kill_type_item;
2312 < kill_type_item: REGEX_T
2313 < {
2314 <  if (ypass == 2)
2315 <    regex_ban = 1;
2311 >  if (block_state.rpass.buf[0])
2312 >    conf->reason = xstrdup(block_state.rpass.buf);
2313 >  else
2314 >    conf->reason = xstrdup(CONF_NOREASON);
2315 >  add_conf_by_address(CONF_KLINE, conf);
2316   };
2317  
2318   kill_items:     kill_items kill_item | kill_item;
2319 < kill_item:      kill_user | kill_reason | kill_type | error;
2319 > kill_item:      kill_user | kill_reason | error;
2320  
2321   kill_user: USER '=' QSTRING ';'
2322   {
2323 <  if (ypass == 2)
2323 >
2324 >  if (conf_parser_ctx.pass == 2)
2325    {
2326 <    char *user = NULL, *host = NULL;
2326 >    struct split_nuh_item nuh;
2327  
2328 <    split_nuh(yylval.string, NULL, &user, &host);
2328 >    nuh.nuhmask  = yylval.string;
2329 >    nuh.nickptr  = NULL;
2330 >    nuh.userptr  = block_state.user.buf;
2331 >    nuh.hostptr  = block_state.host.buf;
2332  
2333 <    strlcpy(userbuf, user, sizeof(userbuf));
2334 <    strlcpy(hostbuf, host, sizeof(hostbuf));
2333 >    nuh.nicksize = 0;
2334 >    nuh.usersize = sizeof(block_state.user.buf);
2335 >    nuh.hostsize = sizeof(block_state.host.buf);
2336  
2337 <    MyFree(user);
2919 <    MyFree(host);
2337 >    split_nuh(&nuh);
2338    }
2339   };
2340  
2341 < kill_reason: REASON '=' QSTRING ';'
2341 > kill_reason: REASON '=' QSTRING ';'
2342   {
2343 <  if (ypass == 2)
2344 <    strlcpy(reasonbuf, yylval.string, sizeof(reasonbuf));
2343 >  if (conf_parser_ctx.pass == 2)
2344 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
2345   };
2346  
2347   /***************************************************************************
2348   *  section deny
2349   ***************************************************************************/
2350 < deny_entry: DENY
2350 > deny_entry: DENY
2351   {
2352 <  if (ypass == 2)
2353 <  {
2936 <    yy_conf = make_conf_item(DLINE_TYPE);
2937 <    yy_aconf = map_to_conf(yy_conf);
2938 <    /* default reason */
2939 <    DupString(yy_aconf->reason, "No reason");
2940 <  }
2352 >  if (conf_parser_ctx.pass == 2)
2353 >    reset_block_state();
2354   } '{' deny_items '}' ';'
2355   {
2356 <  if (ypass == 2)
2356 >  struct MaskItem *conf = NULL;
2357 >
2358 >  if (conf_parser_ctx.pass != 2)
2359 >    break;
2360 >
2361 >  if (!block_state.addr.buf[0])
2362 >    break;
2363 >
2364 >  if (parse_netmask(block_state.addr.buf, NULL, NULL) != HM_HOST)
2365    {
2366 <    if (yy_aconf->host && parse_netmask(yy_aconf->host, NULL, NULL) != HM_HOST)
2367 <      add_conf_by_address(CONF_DLINE, yy_aconf);
2366 >    conf = conf_make(CONF_DLINE);
2367 >    conf->host = xstrdup(block_state.addr.buf);
2368 >
2369 >    if (block_state.rpass.buf[0])
2370 >      conf->reason = xstrdup(block_state.rpass.buf);
2371      else
2372 <      delete_conf_item(yy_conf);
2373 <    yy_conf = NULL;
2950 <    yy_aconf = NULL;
2372 >      conf->reason = xstrdup(CONF_NOREASON);
2373 >    add_conf_by_address(CONF_DLINE, conf);
2374    }
2375 < };
2375 > };
2376  
2377   deny_items:     deny_items deny_item | deny_item;
2378   deny_item:      deny_ip | deny_reason | error;
2379  
2380   deny_ip: IP '=' QSTRING ';'
2381   {
2382 <  if (ypass == 2)
2383 <  {
2961 <    MyFree(yy_aconf->host);
2962 <    DupString(yy_aconf->host, yylval.string);
2963 <  }
2382 >  if (conf_parser_ctx.pass == 2)
2383 >    strlcpy(block_state.addr.buf, yylval.string, sizeof(block_state.addr.buf));
2384   };
2385  
2386 < deny_reason: REASON '=' QSTRING ';'
2386 > deny_reason: REASON '=' QSTRING ';'
2387   {
2388 <  if (ypass == 2)
2389 <  {
2970 <    MyFree(yy_aconf->reason);
2971 <    DupString(yy_aconf->reason, yylval.string);
2972 <  }
2388 >  if (conf_parser_ctx.pass == 2)
2389 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
2390   };
2391  
2392   /***************************************************************************
# Line 2982 | Line 2399 | exempt_item:      exempt_ip | error;
2399  
2400   exempt_ip: IP '=' QSTRING ';'
2401   {
2402 <  if (ypass == 2)
2402 >  if (conf_parser_ctx.pass == 2)
2403    {
2404      if (yylval.string[0] && parse_netmask(yylval.string, NULL, NULL) != HM_HOST)
2405      {
2406 <      yy_conf = make_conf_item(EXEMPTDLINE_TYPE);
2407 <      yy_aconf = map_to_conf(yy_conf);
2991 <      DupString(yy_aconf->host, yylval.string);
2406 >      struct MaskItem *conf = conf_make(CONF_EXEMPT);
2407 >      conf->host = xstrdup(yylval.string);
2408  
2409 <      add_conf_by_address(CONF_EXEMPTDLINE, yy_aconf);
2994 <
2995 <      yy_conf = NULL;
2996 <      yy_aconf = NULL;
2409 >      add_conf_by_address(CONF_EXEMPT, conf);
2410      }
2411    }
2412   };
# Line 3003 | Line 2416 | exempt_ip: IP '=' QSTRING ';'
2416   ***************************************************************************/
2417   gecos_entry: GECOS
2418   {
2419 <  if (ypass == 2)
2420 <  {
3008 <    regex_ban = 0;
3009 <    reasonbuf[0] = gecos_name[0] = '\0';
3010 <  }
2419 >  if (conf_parser_ctx.pass == 2)
2420 >    reset_block_state();
2421   } '{' gecos_items '}' ';'
2422   {
2423 <  if (ypass == 2)
3014 <  {
3015 <    if (gecos_name[0])
3016 <    {
3017 <      if (regex_ban)
3018 <      {
3019 <        pcre *exp_p = NULL;
3020 <        const char *errptr = NULL;
2423 >  struct MaskItem *conf = NULL;
2424  
2425 <        if (!(exp_p = ircd_pcre_compile(gecos_name, &errptr)))
2426 <        {
3024 <          ilog(L_ERROR, "Failed to add regular expression based X-Line: %s", errptr);
3025 <          break;
3026 <        }
2425 >  if (conf_parser_ctx.pass != 2)
2426 >    break;
2427  
2428 <        yy_conf = make_conf_item(RXLINE_TYPE);
2429 <        yy_conf->regexpname = exp_p;
3030 <      }
3031 <      else
3032 <        yy_conf = make_conf_item(XLINE_TYPE);
2428 >  if (!block_state.name.buf[0])
2429 >    break;
2430  
2431 <      yy_match_item = map_to_conf(yy_conf);
2432 <      DupString(yy_conf->name, gecos_name);
2431 >  conf = conf_make(CONF_XLINE);
2432 >  conf->name = xstrdup(block_state.name.buf);
2433  
2434 <      if (reasonbuf[0])
2435 <        DupString(yy_match_item->reason, reasonbuf);
2436 <      else
2437 <        DupString(yy_match_item->reason, "No reason");
3041 <    }
3042 <  }
3043 < };
3044 <
3045 < gecos_flags: TYPE
3046 < {
3047 < } '='  gecos_flags_items ';';
3048 <
3049 < gecos_flags_items: gecos_flags_items ',' gecos_flags_item | gecos_flags_item;
3050 < gecos_flags_item: REGEX_T
3051 < {
3052 <  if (ypass == 2)
3053 <    regex_ban = 1;
2434 >  if (block_state.rpass.buf[0])
2435 >    conf->reason = xstrdup(block_state.rpass.buf);
2436 >  else
2437 >    conf->reason = xstrdup(CONF_NOREASON);
2438   };
2439  
2440   gecos_items: gecos_items gecos_item | gecos_item;
2441 < gecos_item:  gecos_name | gecos_reason | gecos_flags | error;
2441 > gecos_item:  gecos_name | gecos_reason | error;
2442  
2443 < gecos_name: NAME '=' QSTRING ';'
2443 > gecos_name: NAME '=' QSTRING ';'
2444   {
2445 <  if (ypass == 2)
2446 <    strlcpy(gecos_name, yylval.string, sizeof(gecos_name));
2445 >  if (conf_parser_ctx.pass == 2)
2446 >    strlcpy(block_state.name.buf, yylval.string, sizeof(block_state.name.buf));
2447   };
2448  
2449 < gecos_reason: REASON '=' QSTRING ';'
2449 > gecos_reason: REASON '=' QSTRING ';'
2450   {
2451 <  if (ypass == 2)
2452 <    strlcpy(reasonbuf, yylval.string, sizeof(reasonbuf));
2451 >  if (conf_parser_ctx.pass == 2)
2452 >    strlcpy(block_state.rpass.buf, yylval.string, sizeof(block_state.rpass.buf));
2453   };
2454  
2455   /***************************************************************************
# Line 3075 | Line 2459 | general_entry: GENERAL
2459    '{' general_items '}' ';';
2460  
2461   general_items:      general_items general_item | general_item;
2462 < general_item:       general_hide_spoof_ips | general_ignore_bogus_ts |
2463 <                    general_failed_oper_notice | general_anti_nick_flood |
2464 <                    general_max_nick_time | general_max_nick_changes |
2465 <                    general_max_accept | general_anti_spam_exit_message_time |
2466 <                    general_ts_warn_delta | general_ts_max_delta |
2467 <                    general_kill_chase_time_limit | general_kline_with_reason |
2468 <                    general_kline_reason | general_invisible_on_connect |
2469 <                    general_warn_no_nline | general_dots_in_ident |
2470 <                    general_stats_o_oper_only | general_stats_k_oper_only |
2471 <                    general_pace_wait | general_stats_i_oper_only |
2472 <                    general_pace_wait_simple | general_stats_P_oper_only |
2473 <                    general_short_motd | general_no_oper_flood |
2474 <                    general_true_no_oper_flood | general_oper_pass_resv |
2475 <                    general_idletime | general_message_locale |
2476 <                    general_oper_only_umodes | general_max_targets |
2477 <                    general_use_egd | general_egdpool_path |
2478 <                    general_oper_umodes | general_caller_id_wait |
2479 <                    general_opers_bypass_callerid | general_default_floodcount |
2480 <                    general_min_nonwildcard | general_min_nonwildcard_simple |
2481 <                    general_servlink_path | general_disable_remote_commands |
2482 <                    general_default_cipher_preference |
2483 <                    general_compression_level | general_client_flood |
2484 <                    general_throttle_time | general_havent_read_conf |
2485 <                    general_dot_in_ip6_addr | general_ping_cookie |
2486 <                    general_disable_auth | general_burst_away |
2487 <                    general_tkline_expire_notices | general_gline_min_cidr |
2488 <                    general_gline_min_cidr6 | general_use_whois_actually |
2489 <                    general_reject_hold_time |
2490 <                    error;
2462 > general_item:       general_away_count |
2463 >                    general_away_time |
2464 >                    general_hide_spoof_ips |
2465 >                    general_ignore_bogus_ts |
2466 >                    general_failed_oper_notice |
2467 >                    general_anti_nick_flood |
2468 >                    general_max_nick_time |
2469 >                    general_max_nick_changes |
2470 >                    general_max_accept |
2471 >                    general_anti_spam_exit_message_time |
2472 >                    general_ts_warn_delta |
2473 >                    general_ts_max_delta |
2474 >                    general_kill_chase_time_limit |
2475 >                    general_invisible_on_connect |
2476 >                    general_warn_no_connect_block |
2477 >                    general_dots_in_ident |
2478 >                    general_stats_o_oper_only |
2479 >                    general_stats_k_oper_only |
2480 >                    general_pace_wait |
2481 >                    general_stats_i_oper_only |
2482 >                    general_pace_wait_simple |
2483 >                    general_stats_P_oper_only |
2484 >                    general_stats_u_oper_only |
2485 >                    general_short_motd |
2486 >                    general_no_oper_flood |
2487 >                    general_true_no_oper_flood |
2488 >                    general_oper_pass_resv |
2489 >                    general_oper_only_umodes |
2490 >                    general_max_targets |
2491 >                    general_oper_umodes |
2492 >                    general_caller_id_wait |
2493 >                    general_opers_bypass_callerid |
2494 >                    general_default_floodcount |
2495 >                    general_min_nonwildcard |
2496 >                    general_min_nonwildcard_simple |
2497 >                    general_throttle_count |
2498 >                    general_throttle_time |
2499 >                    general_havent_read_conf |
2500 >                    general_ping_cookie |
2501 >                    general_disable_auth |
2502 >                    general_tkline_expire_notices |
2503 >                    general_gline_enable |
2504 >                    general_gline_duration |
2505 >                    general_gline_request_duration |
2506 >                    general_gline_min_cidr |
2507 >                    general_gline_min_cidr6 |
2508 >                    general_stats_e_disabled |
2509 >                    general_max_watch |
2510 >                    general_services_name |
2511 >                    general_cycle_on_host_change |
2512 >                    error;
2513  
2514  
2515 + general_away_count: AWAY_COUNT '=' NUMBER ';'
2516 + {
2517 +  ConfigGeneral.away_count = $3;
2518 + };
2519  
2520 < general_gline_min_cidr: GLINE_MIN_CIDR '=' NUMBER ';'
2520 > general_away_time: AWAY_TIME '=' timespec ';'
2521   {
2522 <  ConfigFileEntry.gline_min_cidr = $3;
2522 >  ConfigGeneral.away_time = $3;
2523   };
2524  
2525 < general_gline_min_cidr6: GLINE_MIN_CIDR6 '=' NUMBER ';'
2525 > general_max_watch: MAX_WATCH '=' NUMBER ';'
2526   {
2527 <  ConfigFileEntry.gline_min_cidr6 = $3;
2527 >  ConfigGeneral.max_watch = $3;
2528   };
2529  
2530 < general_burst_away: BURST_AWAY '=' TBOOL ';'
2530 > general_cycle_on_host_change: CYCLE_ON_HOST_CHANGE '=' TBOOL ';'
2531   {
2532 <  ConfigFileEntry.burst_away = yylval.number;
2532 >  if (conf_parser_ctx.pass == 2)
2533 >    ConfigGeneral.cycle_on_host_change = yylval.number;
2534   };
2535  
2536 < general_use_whois_actually: USE_WHOIS_ACTUALLY '=' TBOOL ';'
2536 > general_gline_enable: GLINE_ENABLE '=' TBOOL ';'
2537   {
2538 <  ConfigFileEntry.use_whois_actually = yylval.number;
2538 >  if (conf_parser_ctx.pass == 2)
2539 >    ConfigGeneral.glines = yylval.number;
2540   };
2541  
2542 < general_reject_hold_time: TREJECT_HOLD_TIME '=' timespec ';'
2542 > general_gline_duration: GLINE_DURATION '=' timespec ';'
2543   {
2544 <  GlobalSetOptions.rejecttime = yylval.number;
2544 >  if (conf_parser_ctx.pass == 2)
2545 >    ConfigGeneral.gline_time = $3;
2546   };
2547  
2548 < general_tkline_expire_notices: TKLINE_EXPIRE_NOTICES '=' TBOOL ';'
2548 > general_gline_request_duration: GLINE_REQUEST_DURATION '=' timespec ';'
2549 > {
2550 >  if (conf_parser_ctx.pass == 2)
2551 >    ConfigGeneral.gline_request_time = $3;
2552 > };
2553 >
2554 > general_gline_min_cidr: GLINE_MIN_CIDR '=' NUMBER ';'
2555   {
2556 <  ConfigFileEntry.tkline_expire_notices = yylval.number;
2556 >  ConfigGeneral.gline_min_cidr = $3;
2557   };
2558  
2559 < general_kill_chase_time_limit: KILL_CHASE_TIME_LIMIT '=' NUMBER ';'
2559 > general_gline_min_cidr6: GLINE_MIN_CIDR6 '=' NUMBER ';'
2560   {
2561 <  ConfigFileEntry.kill_chase_time_limit = $3;
2561 >  ConfigGeneral.gline_min_cidr6 = $3;
2562   };
2563  
2564 < general_hide_spoof_ips: HIDE_SPOOF_IPS '=' TBOOL ';'
2564 > general_tkline_expire_notices: TKLINE_EXPIRE_NOTICES '=' TBOOL ';'
2565   {
2566 <  ConfigFileEntry.hide_spoof_ips = yylval.number;
2566 >  ConfigGeneral.tkline_expire_notices = yylval.number;
2567   };
2568  
2569 < general_ignore_bogus_ts: IGNORE_BOGUS_TS '=' TBOOL ';'
2569 > general_kill_chase_time_limit: KILL_CHASE_TIME_LIMIT '=' timespec ';'
2570   {
2571 <  ConfigFileEntry.ignore_bogus_ts = yylval.number;
2571 >  ConfigGeneral.kill_chase_time_limit = $3;
2572   };
2573  
2574 < general_disable_remote_commands: DISABLE_REMOTE_COMMANDS '=' TBOOL ';'
2574 > general_hide_spoof_ips: HIDE_SPOOF_IPS '=' TBOOL ';'
2575   {
2576 <  ConfigFileEntry.disable_remote = yylval.number;
2576 >  ConfigGeneral.hide_spoof_ips = yylval.number;
2577 > };
2578 >
2579 > general_ignore_bogus_ts: IGNORE_BOGUS_TS '=' TBOOL ';'
2580 > {
2581 >  ConfigGeneral.ignore_bogus_ts = yylval.number;
2582   };
2583  
2584   general_failed_oper_notice: FAILED_OPER_NOTICE '=' TBOOL ';'
2585   {
2586 <  ConfigFileEntry.failed_oper_notice = yylval.number;
2586 >  ConfigGeneral.failed_oper_notice = yylval.number;
2587   };
2588  
2589   general_anti_nick_flood: ANTI_NICK_FLOOD '=' TBOOL ';'
2590   {
2591 <  ConfigFileEntry.anti_nick_flood = yylval.number;
2591 >  ConfigGeneral.anti_nick_flood = yylval.number;
2592   };
2593  
2594   general_max_nick_time: MAX_NICK_TIME '=' timespec ';'
2595   {
2596 <  ConfigFileEntry.max_nick_time = $3;
2596 >  ConfigGeneral.max_nick_time = $3;
2597   };
2598  
2599   general_max_nick_changes: MAX_NICK_CHANGES '=' NUMBER ';'
2600   {
2601 <  ConfigFileEntry.max_nick_changes = $3;
2601 >  ConfigGeneral.max_nick_changes = $3;
2602   };
2603  
2604   general_max_accept: MAX_ACCEPT '=' NUMBER ';'
2605   {
2606 <  ConfigFileEntry.max_accept = $3;
2606 >  ConfigGeneral.max_accept = $3;
2607   };
2608  
2609   general_anti_spam_exit_message_time: ANTI_SPAM_EXIT_MESSAGE_TIME '=' timespec ';'
2610   {
2611 <  ConfigFileEntry.anti_spam_exit_message_time = $3;
2611 >  ConfigGeneral.anti_spam_exit_message_time = $3;
2612   };
2613  
2614   general_ts_warn_delta: TS_WARN_DELTA '=' timespec ';'
2615   {
2616 <  ConfigFileEntry.ts_warn_delta = $3;
2616 >  ConfigGeneral.ts_warn_delta = $3;
2617   };
2618  
2619   general_ts_max_delta: TS_MAX_DELTA '=' timespec ';'
2620   {
2621 <  if (ypass == 2)
2622 <    ConfigFileEntry.ts_max_delta = $3;
2621 >  if (conf_parser_ctx.pass == 2)
2622 >    ConfigGeneral.ts_max_delta = $3;
2623   };
2624  
2625   general_havent_read_conf: HAVENT_READ_CONF '=' NUMBER ';'
2626   {
2627 <  if (($3 > 0) && ypass == 1)
2627 >  if (($3 > 0) && conf_parser_ctx.pass == 1)
2628    {
2629 <    ilog(L_CRIT, "You haven't read your config file properly.");
2630 <    ilog(L_CRIT, "There is a line in the example conf that will kill your server if not removed.");
2631 <    ilog(L_CRIT, "Consider actually reading/editing the conf file, and removing this line.");
2629 >    ilog(LOG_TYPE_IRCD, "You haven't read your config file properly.");
2630 >    ilog(LOG_TYPE_IRCD, "There is a line in the example conf that will kill your server if not removed.");
2631 >    ilog(LOG_TYPE_IRCD, "Consider actually reading/editing the conf file, and removing this line.");
2632      exit(0);
2633    }
2634   };
2635  
2636 < general_kline_with_reason: KLINE_WITH_REASON '=' TBOOL ';'
2636 > general_invisible_on_connect: INVISIBLE_ON_CONNECT '=' TBOOL ';'
2637   {
2638 <  ConfigFileEntry.kline_with_reason = yylval.number;
2638 >  ConfigGeneral.invisible_on_connect = yylval.number;
2639   };
2640  
2641 < general_kline_reason: KLINE_REASON '=' QSTRING ';'
2641 > general_warn_no_connect_block: WARN_NO_CONNECT_BLOCK '=' TBOOL ';'
2642   {
2643 <  if (ypass == 2)
3220 <  {
3221 <    MyFree(ConfigFileEntry.kline_reason);
3222 <    DupString(ConfigFileEntry.kline_reason, yylval.string);
3223 <  }
2643 >  ConfigGeneral.warn_no_connect_block = yylval.number;
2644   };
2645  
2646 < general_invisible_on_connect: INVISIBLE_ON_CONNECT '=' TBOOL ';'
2646 > general_stats_e_disabled: STATS_E_DISABLED '=' TBOOL ';'
2647   {
2648 <  ConfigFileEntry.invisible_on_connect = yylval.number;
2648 >  ConfigGeneral.stats_e_disabled = yylval.number;
2649   };
2650  
2651 < general_warn_no_nline: WARN_NO_NLINE '=' TBOOL ';'
2651 > general_stats_o_oper_only: STATS_O_OPER_ONLY '=' TBOOL ';'
2652   {
2653 <  ConfigFileEntry.warn_no_nline = yylval.number;
2653 >  ConfigGeneral.stats_o_oper_only = yylval.number;
2654   };
2655  
2656 < general_stats_o_oper_only: STATS_O_OPER_ONLY '=' TBOOL ';'
2656 > general_stats_P_oper_only: STATS_P_OPER_ONLY '=' TBOOL ';'
2657   {
2658 <  ConfigFileEntry.stats_o_oper_only = yylval.number;
2658 >  ConfigGeneral.stats_P_oper_only = yylval.number;
2659   };
2660  
2661 < general_stats_P_oper_only: STATS_P_OPER_ONLY '=' TBOOL ';'
2661 > general_stats_u_oper_only: STATS_U_OPER_ONLY '=' TBOOL ';'
2662   {
2663 <  ConfigFileEntry.stats_P_oper_only = yylval.number;
2663 >  ConfigGeneral.stats_u_oper_only = yylval.number;
2664   };
2665  
2666   general_stats_k_oper_only: STATS_K_OPER_ONLY '=' TBOOL ';'
2667   {
2668 <  ConfigFileEntry.stats_k_oper_only = 2 * yylval.number;
2668 >  ConfigGeneral.stats_k_oper_only = 2 * yylval.number;
2669   } | STATS_K_OPER_ONLY '=' TMASKED ';'
2670   {
2671 <  ConfigFileEntry.stats_k_oper_only = 1;
2671 >  ConfigGeneral.stats_k_oper_only = 1;
2672   };
2673  
2674   general_stats_i_oper_only: STATS_I_OPER_ONLY '=' TBOOL ';'
2675   {
2676 <  ConfigFileEntry.stats_i_oper_only = 2 * yylval.number;
2676 >  ConfigGeneral.stats_i_oper_only = 2 * yylval.number;
2677   } | STATS_I_OPER_ONLY '=' TMASKED ';'
2678   {
2679 <  ConfigFileEntry.stats_i_oper_only = 1;
2679 >  ConfigGeneral.stats_i_oper_only = 1;
2680   };
2681  
2682   general_pace_wait: PACE_WAIT '=' timespec ';'
2683   {
2684 <  ConfigFileEntry.pace_wait = $3;
2684 >  ConfigGeneral.pace_wait = $3;
2685   };
2686  
2687   general_caller_id_wait: CALLER_ID_WAIT '=' timespec ';'
2688   {
2689 <  ConfigFileEntry.caller_id_wait = $3;
2689 >  ConfigGeneral.caller_id_wait = $3;
2690   };
2691  
2692   general_opers_bypass_callerid: OPERS_BYPASS_CALLERID '=' TBOOL ';'
2693   {
2694 <  ConfigFileEntry.opers_bypass_callerid = yylval.number;
2694 >  ConfigGeneral.opers_bypass_callerid = yylval.number;
2695   };
2696  
2697   general_pace_wait_simple: PACE_WAIT_SIMPLE '=' timespec ';'
2698   {
2699 <  ConfigFileEntry.pace_wait_simple = $3;
2699 >  ConfigGeneral.pace_wait_simple = $3;
2700   };
2701  
2702   general_short_motd: SHORT_MOTD '=' TBOOL ';'
2703   {
2704 <  ConfigFileEntry.short_motd = yylval.number;
2704 >  ConfigGeneral.short_motd = yylval.number;
2705   };
2706 <  
2706 >
2707   general_no_oper_flood: NO_OPER_FLOOD '=' TBOOL ';'
2708   {
2709 <  ConfigFileEntry.no_oper_flood = yylval.number;
2709 >  ConfigGeneral.no_oper_flood = yylval.number;
2710   };
2711  
2712   general_true_no_oper_flood: TRUE_NO_OPER_FLOOD '=' TBOOL ';'
2713   {
2714 <  ConfigFileEntry.true_no_oper_flood = yylval.number;
2714 >  ConfigGeneral.true_no_oper_flood = yylval.number;
2715   };
2716  
2717   general_oper_pass_resv: OPER_PASS_RESV '=' TBOOL ';'
2718   {
2719 <  ConfigFileEntry.oper_pass_resv = yylval.number;
3300 < };
3301 <
3302 < general_message_locale: MESSAGE_LOCALE '=' QSTRING ';'
3303 < {
3304 <  if (ypass == 2)
3305 <  {
3306 <    if (strlen(yylval.string) > LOCALE_LENGTH-2)
3307 <      yylval.string[LOCALE_LENGTH-1] = '\0';
3308 <
3309 <    set_locale(yylval.string);
3310 <  }
3311 < };
3312 <
3313 < general_idletime: IDLETIME '=' timespec ';'
3314 < {
3315 <  ConfigFileEntry.idletime = $3;
2719 >  ConfigGeneral.oper_pass_resv = yylval.number;
2720   };
2721  
2722   general_dots_in_ident: DOTS_IN_IDENT '=' NUMBER ';'
2723   {
2724 <  ConfigFileEntry.dots_in_ident = $3;
2724 >  ConfigGeneral.dots_in_ident = $3;
2725   };
2726  
2727   general_max_targets: MAX_TARGETS '=' NUMBER ';'
2728   {
2729 <  ConfigFileEntry.max_targets = $3;
3326 < };
3327 <
3328 < general_servlink_path: SERVLINK_PATH '=' QSTRING ';'
3329 < {
3330 <  if (ypass == 2)
3331 <  {
3332 <    MyFree(ConfigFileEntry.servlink_path);
3333 <    DupString(ConfigFileEntry.servlink_path, yylval.string);
3334 <  }
2729 >  ConfigGeneral.max_targets = $3;
2730   };
2731  
2732 < general_default_cipher_preference: DEFAULT_CIPHER_PREFERENCE '=' QSTRING ';'
2732 > general_services_name: T_SERVICES_NAME '=' QSTRING ';'
2733   {
2734 < #ifdef HAVE_LIBCRYPTO
3340 <  if (ypass == 2)
2734 >  if (conf_parser_ctx.pass == 2 && valid_servname(yylval.string))
2735    {
2736 <    struct EncCapability *ecap;
2737 <    const char *cipher_name;
3344 <    int found = 0;
3345 <
3346 <    ConfigFileEntry.default_cipher_preference = NULL;
3347 <    cipher_name = yylval.string;
3348 <
3349 <    for (ecap = CipherTable; ecap->name; ecap++)
3350 <    {
3351 <      if ((irccmp(ecap->name, cipher_name) == 0) &&
3352 <          (ecap->cap & CAP_ENC_MASK))
3353 <      {
3354 <        ConfigFileEntry.default_cipher_preference = ecap;
3355 <        found = 1;
3356 <        break;
3357 <      }
3358 <    }
3359 <
3360 <    if (!found)
3361 <      yyerror("Invalid cipher");
2736 >    MyFree(ConfigGeneral.service_name);
2737 >    ConfigGeneral.service_name = xstrdup(yylval.string);
2738    }
3363 #else
3364  if (ypass == 2)
3365    yyerror("Ignoring default_cipher_preference -- no OpenSSL support");
3366 #endif
2739   };
2740  
2741 < general_compression_level: COMPRESSION_LEVEL '=' NUMBER ';'
3370 < {
3371 <  if (ypass == 2)
3372 <  {
3373 <    ConfigFileEntry.compression_level = $3;
3374 < #ifndef HAVE_LIBZ
3375 <    yyerror("Ignoring compression_level -- no zlib support");
3376 < #else
3377 <    if ((ConfigFileEntry.compression_level < 1) ||
3378 <        (ConfigFileEntry.compression_level > 9))
3379 <    {
3380 <      yyerror("Ignoring invalid compression_level, using default");
3381 <      ConfigFileEntry.compression_level = 0;
3382 <    }
3383 < #endif
3384 <  }
3385 < };
3386 <
3387 < general_use_egd: USE_EGD '=' TBOOL ';'
3388 < {
3389 <  ConfigFileEntry.use_egd = yylval.number;
3390 < };
3391 <
3392 < general_egdpool_path: EGDPOOL_PATH '=' QSTRING ';'
2741 > general_ping_cookie: PING_COOKIE '=' TBOOL ';'
2742   {
2743 <  if (ypass == 2)
3395 <  {
3396 <    MyFree(ConfigFileEntry.egdpool_path);
3397 <    DupString(ConfigFileEntry.egdpool_path, yylval.string);
3398 <  }
2743 >  ConfigGeneral.ping_cookie = yylval.number;
2744   };
2745  
2746 < general_ping_cookie: PING_COOKIE '=' TBOOL ';'
2746 > general_disable_auth: DISABLE_AUTH '=' TBOOL ';'
2747   {
2748 <  ConfigFileEntry.ping_cookie = yylval.number;
2748 >  ConfigGeneral.disable_auth = yylval.number;
2749   };
2750  
2751 < general_disable_auth: DISABLE_AUTH '=' TBOOL ';'
2751 > general_throttle_count: THROTTLE_COUNT '=' NUMBER ';'
2752   {
2753 <  ConfigFileEntry.disable_auth = yylval.number;
2753 >  ConfigGeneral.throttle_count = $3;
2754   };
2755  
2756   general_throttle_time: THROTTLE_TIME '=' timespec ';'
2757   {
2758 <  ConfigFileEntry.throttle_time = yylval.number;
2758 >  ConfigGeneral.throttle_time = $3;
2759   };
2760  
2761   general_oper_umodes: OPER_UMODES
2762   {
2763 <  ConfigFileEntry.oper_umodes = 0;
2763 >  ConfigGeneral.oper_umodes = 0;
2764   } '='  umode_oitems ';' ;
2765  
2766   umode_oitems:    umode_oitems ',' umode_oitem | umode_oitem;
2767   umode_oitem:     T_BOTS
2768   {
2769 <  ConfigFileEntry.oper_umodes |= UMODE_BOTS;
2769 >  ConfigGeneral.oper_umodes |= UMODE_BOTS;
2770   } | T_CCONN
2771   {
2772 <  ConfigFileEntry.oper_umodes |= UMODE_CCONN;
2772 >  ConfigGeneral.oper_umodes |= UMODE_CCONN;
2773   } | T_DEAF
2774   {
2775 <  ConfigFileEntry.oper_umodes |= UMODE_DEAF;
2775 >  ConfigGeneral.oper_umodes |= UMODE_DEAF;
2776   } | T_DEBUG
2777   {
2778 <  ConfigFileEntry.oper_umodes |= UMODE_DEBUG;
2778 >  ConfigGeneral.oper_umodes |= UMODE_DEBUG;
2779   } | T_FULL
2780   {
2781 <  ConfigFileEntry.oper_umodes |= UMODE_FULL;
2781 >  ConfigGeneral.oper_umodes |= UMODE_FULL;
2782 > } | HIDDEN
2783 > {
2784 >  ConfigGeneral.oper_umodes |= UMODE_HIDDEN;
2785 > } | HIDE_CHANS
2786 > {
2787 >  ConfigGeneral.oper_umodes |= UMODE_HIDECHANS;
2788 > } | HIDE_IDLE
2789 > {
2790 >  ConfigGeneral.oper_umodes |= UMODE_HIDEIDLE;
2791   } | T_SKILL
2792   {
2793 <  ConfigFileEntry.oper_umodes |= UMODE_SKILL;
2793 >  ConfigGeneral.oper_umodes |= UMODE_SKILL;
2794   } | T_NCHANGE
2795   {
2796 <  ConfigFileEntry.oper_umodes |= UMODE_NCHANGE;
2796 >  ConfigGeneral.oper_umodes |= UMODE_NCHANGE;
2797   } | T_REJ
2798   {
2799 <  ConfigFileEntry.oper_umodes |= UMODE_REJ;
2799 >  ConfigGeneral.oper_umodes |= UMODE_REJ;
2800   } | T_UNAUTH
2801   {
2802 <  ConfigFileEntry.oper_umodes |= UMODE_UNAUTH;
2802 >  ConfigGeneral.oper_umodes |= UMODE_UNAUTH;
2803   } | T_SPY
2804   {
2805 <  ConfigFileEntry.oper_umodes |= UMODE_SPY;
2805 >  ConfigGeneral.oper_umodes |= UMODE_SPY;
2806   } | T_EXTERNAL
2807   {
2808 <  ConfigFileEntry.oper_umodes |= UMODE_EXTERNAL;
3455 < } | T_OPERWALL
3456 < {
3457 <  ConfigFileEntry.oper_umodes |= UMODE_OPERWALL;
2808 >  ConfigGeneral.oper_umodes |= UMODE_EXTERNAL;
2809   } | T_SERVNOTICE
2810   {
2811 <  ConfigFileEntry.oper_umodes |= UMODE_SERVNOTICE;
2811 >  ConfigGeneral.oper_umodes |= UMODE_SERVNOTICE;
2812   } | T_INVISIBLE
2813   {
2814 <  ConfigFileEntry.oper_umodes |= UMODE_INVISIBLE;
2814 >  ConfigGeneral.oper_umodes |= UMODE_INVISIBLE;
2815   } | T_WALLOP
2816   {
2817 <  ConfigFileEntry.oper_umodes |= UMODE_WALLOP;
2817 >  ConfigGeneral.oper_umodes |= UMODE_WALLOP;
2818   } | T_SOFTCALLERID
2819   {
2820 <  ConfigFileEntry.oper_umodes |= UMODE_SOFTCALLERID;
2820 >  ConfigGeneral.oper_umodes |= UMODE_SOFTCALLERID;
2821   } | T_CALLERID
2822   {
2823 <  ConfigFileEntry.oper_umodes |= UMODE_CALLERID;
2823 >  ConfigGeneral.oper_umodes |= UMODE_CALLERID;
2824   } | T_LOCOPS
2825   {
2826 <  ConfigFileEntry.oper_umodes |= UMODE_LOCOPS;
2826 >  ConfigGeneral.oper_umodes |= UMODE_LOCOPS;
2827 > } | T_NONONREG
2828 > {
2829 >  ConfigGeneral.oper_umodes |= UMODE_REGONLY;
2830 > } | T_FARCONNECT
2831 > {
2832 >  ConfigGeneral.oper_umodes |= UMODE_FARCONNECT;
2833   };
2834  
2835 < general_oper_only_umodes: OPER_ONLY_UMODES
2835 > general_oper_only_umodes: OPER_ONLY_UMODES
2836   {
2837 <  ConfigFileEntry.oper_only_umodes = 0;
2837 >  ConfigGeneral.oper_only_umodes = 0;
2838   } '='  umode_items ';' ;
2839  
2840 < umode_items:    umode_items ',' umode_item | umode_item;
2841 < umode_item:     T_BOTS
2840 > umode_items:  umode_items ',' umode_item | umode_item;
2841 > umode_item:   T_BOTS
2842   {
2843 <  ConfigFileEntry.oper_only_umodes |= UMODE_BOTS;
2843 >  ConfigGeneral.oper_only_umodes |= UMODE_BOTS;
2844   } | T_CCONN
2845   {
2846 <  ConfigFileEntry.oper_only_umodes |= UMODE_CCONN;
2846 >  ConfigGeneral.oper_only_umodes |= UMODE_CCONN;
2847   } | T_DEAF
2848   {
2849 <  ConfigFileEntry.oper_only_umodes |= UMODE_DEAF;
2849 >  ConfigGeneral.oper_only_umodes |= UMODE_DEAF;
2850   } | T_DEBUG
2851   {
2852 <  ConfigFileEntry.oper_only_umodes |= UMODE_DEBUG;
2852 >  ConfigGeneral.oper_only_umodes |= UMODE_DEBUG;
2853   } | T_FULL
2854 < {
2855 <  ConfigFileEntry.oper_only_umodes |= UMODE_FULL;
2854 > {
2855 >  ConfigGeneral.oper_only_umodes |= UMODE_FULL;
2856   } | T_SKILL
2857   {
2858 <  ConfigFileEntry.oper_only_umodes |= UMODE_SKILL;
2858 >  ConfigGeneral.oper_only_umodes |= UMODE_SKILL;
2859 > } | HIDDEN
2860 > {
2861 >  ConfigGeneral.oper_only_umodes |= UMODE_HIDDEN;
2862   } | T_NCHANGE
2863   {
2864 <  ConfigFileEntry.oper_only_umodes |= UMODE_NCHANGE;
2864 >  ConfigGeneral.oper_only_umodes |= UMODE_NCHANGE;
2865   } | T_REJ
2866   {
2867 <  ConfigFileEntry.oper_only_umodes |= UMODE_REJ;
2867 >  ConfigGeneral.oper_only_umodes |= UMODE_REJ;
2868   } | T_UNAUTH
2869   {
2870 <  ConfigFileEntry.oper_only_umodes |= UMODE_UNAUTH;
2870 >  ConfigGeneral.oper_only_umodes |= UMODE_UNAUTH;
2871   } | T_SPY
2872   {
2873 <  ConfigFileEntry.oper_only_umodes |= UMODE_SPY;
2873 >  ConfigGeneral.oper_only_umodes |= UMODE_SPY;
2874   } | T_EXTERNAL
2875   {
2876 <  ConfigFileEntry.oper_only_umodes |= UMODE_EXTERNAL;
3517 < } | T_OPERWALL
3518 < {
3519 <  ConfigFileEntry.oper_only_umodes |= UMODE_OPERWALL;
2876 >  ConfigGeneral.oper_only_umodes |= UMODE_EXTERNAL;
2877   } | T_SERVNOTICE
2878   {
2879 <  ConfigFileEntry.oper_only_umodes |= UMODE_SERVNOTICE;
2879 >  ConfigGeneral.oper_only_umodes |= UMODE_SERVNOTICE;
2880   } | T_INVISIBLE
2881   {
2882 <  ConfigFileEntry.oper_only_umodes |= UMODE_INVISIBLE;
2882 >  ConfigGeneral.oper_only_umodes |= UMODE_INVISIBLE;
2883   } | T_WALLOP
2884   {
2885 <  ConfigFileEntry.oper_only_umodes |= UMODE_WALLOP;
2885 >  ConfigGeneral.oper_only_umodes |= UMODE_WALLOP;
2886   } | T_SOFTCALLERID
2887   {
2888 <  ConfigFileEntry.oper_only_umodes |= UMODE_SOFTCALLERID;
2888 >  ConfigGeneral.oper_only_umodes |= UMODE_SOFTCALLERID;
2889   } | T_CALLERID
2890   {
2891 <  ConfigFileEntry.oper_only_umodes |= UMODE_CALLERID;
2891 >  ConfigGeneral.oper_only_umodes |= UMODE_CALLERID;
2892   } | T_LOCOPS
2893   {
2894 <  ConfigFileEntry.oper_only_umodes |= UMODE_LOCOPS;
2894 >  ConfigGeneral.oper_only_umodes |= UMODE_LOCOPS;
2895 > } | T_NONONREG
2896 > {
2897 >  ConfigGeneral.oper_only_umodes |= UMODE_REGONLY;
2898 > } | T_FARCONNECT
2899 > {
2900 >  ConfigGeneral.oper_only_umodes |= UMODE_FARCONNECT;
2901   };
2902  
2903   general_min_nonwildcard: MIN_NONWILDCARD '=' NUMBER ';'
2904   {
2905 <  ConfigFileEntry.min_nonwildcard = $3;
2905 >  ConfigGeneral.min_nonwildcard = $3;
2906   };
2907  
2908   general_min_nonwildcard_simple: MIN_NONWILDCARD_SIMPLE '=' NUMBER ';'
2909   {
2910 <  ConfigFileEntry.min_nonwildcard_simple = $3;
2910 >  ConfigGeneral.min_nonwildcard_simple = $3;
2911   };
2912  
2913   general_default_floodcount: DEFAULT_FLOODCOUNT '=' NUMBER ';'
2914   {
2915 <  ConfigFileEntry.default_floodcount = $3;
3553 < };
3554 <
3555 < general_client_flood: T_CLIENT_FLOOD '=' sizespec ';'
3556 < {
3557 <  ConfigFileEntry.client_flood = $3;
3558 < };
3559 <
3560 < general_dot_in_ip6_addr: DOT_IN_IP6_ADDR '=' TBOOL ';'
3561 < {
3562 <  ConfigFileEntry.dot_in_ip6_addr = yylval.number;
3563 < };
3564 <
3565 < /***************************************************************************
3566 < *  section glines
3567 < ***************************************************************************/
3568 < gline_entry: GLINES
3569 < {
3570 <  if (ypass == 2)
3571 <  {
3572 <    yy_conf = make_conf_item(GDENY_TYPE);
3573 <    yy_aconf = map_to_conf(yy_conf);
3574 <  }
3575 < } '{' gline_items '}' ';'
3576 < {
3577 <  if (ypass == 2)
3578 <  {
3579 <    /*
3580 <     * since we re-allocate yy_conf/yy_aconf after the end of action=, at the
3581 <     * end we will have one extra, so we should free it.
3582 <     */
3583 <    if (yy_conf->name == NULL || yy_aconf->user == NULL)
3584 <    {
3585 <      delete_conf_item(yy_conf);
3586 <      yy_conf = NULL;
3587 <      yy_aconf = NULL;
3588 <    }
3589 <  }
3590 < };
3591 <
3592 < gline_items:        gline_items gline_item | gline_item;
3593 < gline_item:         gline_enable |
3594 <                    gline_duration |
3595 <                    gline_logging |
3596 <                    gline_user |
3597 <                    gline_server |
3598 <                    gline_action |
3599 <                    error;
3600 <
3601 < gline_enable: ENABLE '=' TBOOL ';'
3602 < {
3603 <  if (ypass == 2)
3604 <    ConfigFileEntry.glines = yylval.number;
2915 >  ConfigGeneral.default_floodcount = $3;
2916   };
2917  
3607 gline_duration: DURATION '=' timespec ';'
3608 {
3609  if (ypass == 2)
3610    ConfigFileEntry.gline_time = $3;
3611 };
3612
3613 gline_logging: LOGGING
3614 {
3615  if (ypass == 2)
3616    ConfigFileEntry.gline_logging = 0;
3617 } '=' gline_logging_types ';';
3618 gline_logging_types:     gline_logging_types ',' gline_logging_type_item | gline_logging_type_item;
3619 gline_logging_type_item: T_REJECT
3620 {
3621  if (ypass == 2)
3622    ConfigFileEntry.gline_logging |= GDENY_REJECT;
3623 } | T_BLOCK
3624 {
3625  if (ypass == 2)
3626    ConfigFileEntry.gline_logging |= GDENY_BLOCK;
3627 };
3628
3629 gline_user: USER '=' QSTRING ';'
3630 {
3631  if (ypass == 2)
3632  {
3633    struct CollectItem *yy_tmp = NULL;
3634
3635    if (yy_aconf->user == NULL)
3636    {
3637      split_nuh(yylval.string, NULL, &yy_aconf->user, &yy_aconf->host);
3638    }
3639    else
3640    {
3641      yy_tmp = MyMalloc(sizeof(struct CollectItem));
3642      split_nuh(yylval.string, NULL, &yy_tmp->user, &yy_tmp->host);
3643      dlinkAdd(yy_tmp, &yy_tmp->node, &col_conf_list);
3644    }
3645  }
3646 };
3647
3648 gline_server: NAME '=' QSTRING ';'
3649 {
3650  if (ypass == 2)  
3651  {
3652    MyFree(yy_conf->name);
3653    DupString(yy_conf->name, yylval.string);
3654  }
3655 };
3656
3657 gline_action: ACTION
3658 {
3659  if (ypass == 2)
3660    yy_aconf->flags = 0;
3661 } '=' gdeny_types ';'
3662 {
3663  if (ypass == 2)
3664  {
3665    struct CollectItem *yy_tmp = NULL;
3666    dlink_node *ptr, *next_ptr;
3667
3668    DLINK_FOREACH_SAFE(ptr, next_ptr, col_conf_list.head)
3669    {
3670      struct AccessItem *new_aconf;
3671      struct ConfItem *new_conf;
3672
3673      yy_tmp = ptr->data;
3674      new_conf = make_conf_item(GDENY_TYPE);
3675      new_aconf = map_to_conf(new_conf);
3676
3677      new_aconf->flags = yy_aconf->flags;
3678
3679      if (yy_conf->name != NULL)
3680        DupString(new_conf->name, yy_conf->name);
3681      else
3682        DupString(new_conf->name, "*");
3683      if (yy_aconf->user != NULL)
3684         DupString(new_aconf->user, yy_tmp->user);
3685      else  
3686        DupString(new_aconf->user, "*");
3687      if (yy_aconf->host != NULL)
3688        DupString(new_aconf->host, yy_tmp->host);
3689      else
3690        DupString(new_aconf->host, "*");
3691
3692      dlinkDelete(&yy_tmp->node, &col_conf_list);
3693    }
3694
3695    /*
3696     * In case someone has fed us with more than one action= after user/name
3697     * which would leak memory  -Michael
3698     */
3699    if (yy_conf->name == NULL || yy_aconf->user == NULL)
3700      delete_conf_item(yy_conf);
3701
3702    yy_conf = make_conf_item(GDENY_TYPE);
3703    yy_aconf = map_to_conf(yy_conf);
3704  }
3705 };
3706
3707 gdeny_types: gdeny_types ',' gdeny_type_item | gdeny_type_item;
3708 gdeny_type_item: T_REJECT
3709 {
3710  if (ypass == 2)
3711    yy_aconf->flags |= GDENY_REJECT;
3712 } | T_BLOCK
3713 {
3714  if (ypass == 2)
3715    yy_aconf->flags |= GDENY_BLOCK;
3716 };
2918  
2919   /***************************************************************************
2920   *  section channel
# Line 3722 | Line 2923 | channel_entry: CHANNEL
2923    '{' channel_items '}' ';';
2924  
2925   channel_items:      channel_items channel_item | channel_item;
2926 < channel_item:       channel_disable_local_channels | channel_use_except |
2927 <                    channel_use_invex | channel_use_knock |
2928 <                    channel_max_bans | channel_knock_delay |
2929 <                    channel_knock_delay_channel | channel_invite_ops_only |
2930 <                    channel_max_chans_per_user | channel_quiet_on_ban |
2931 <                    channel_default_split_user_count |
2932 <                    channel_default_split_server_count |
2933 <                    channel_no_create_on_split | channel_restrict_channels |
2934 <                    channel_no_join_on_split | channel_burst_topicwho |
2935 <                    channel_jflood_count | channel_jflood_time |
2936 <                    error;
2937 <
2938 < channel_restrict_channels: RESTRICT_CHANNELS '=' TBOOL ';'
2939 < {
2940 <  ConfigChannel.restrict_channels = yylval.number;
3740 < };
2926 > channel_item:       channel_max_bans |
2927 >                    channel_invite_client_count |
2928 >                    channel_invite_client_time |
2929 >                    channel_knock_client_count |
2930 >                    channel_knock_client_time |
2931 >                    channel_knock_delay_channel |
2932 >                    channel_max_channels |
2933 >                    channel_default_split_user_count |
2934 >                    channel_default_split_server_count |
2935 >                    channel_no_create_on_split |
2936 >                    channel_no_join_on_split |
2937 >                    channel_jflood_count |
2938 >                    channel_jflood_time |
2939 >                    channel_disable_fake_channels |
2940 >                    error;
2941  
2942 < channel_disable_local_channels: DISABLE_LOCAL_CHANNELS '=' TBOOL ';'
2942 > channel_disable_fake_channels: DISABLE_FAKE_CHANNELS '=' TBOOL ';'
2943   {
2944 <  ConfigChannel.disable_local_channels = yylval.number;
2944 >  ConfigChannel.disable_fake_channels = yylval.number;
2945   };
2946  
2947 < channel_use_except: USE_EXCEPT '=' TBOOL ';'
2947 > channel_invite_client_count: INVITE_CLIENT_COUNT '=' NUMBER ';'
2948   {
2949 <  ConfigChannel.use_except = yylval.number;
2949 >  ConfigChannel.invite_client_count = $3;
2950   };
2951  
2952 < channel_use_invex: USE_INVEX '=' TBOOL ';'
2952 > channel_invite_client_time: INVITE_CLIENT_TIME '=' timespec ';'
2953   {
2954 <  ConfigChannel.use_invex = yylval.number;
2954 >  ConfigChannel.invite_client_time = $3;
2955   };
2956  
2957 < channel_use_knock: USE_KNOCK '=' TBOOL ';'
2957 > channel_knock_client_count: KNOCK_CLIENT_COUNT '=' NUMBER ';'
2958   {
2959 <  ConfigChannel.use_knock = yylval.number;
2959 >  ConfigChannel.knock_client_count = $3;
2960   };
2961  
2962 < channel_knock_delay: KNOCK_DELAY '=' timespec ';'
2962 > channel_knock_client_time: KNOCK_CLIENT_TIME '=' timespec ';'
2963   {
2964 <  ConfigChannel.knock_delay = $3;
2964 >  ConfigChannel.knock_client_time = $3;
2965   };
2966  
2967   channel_knock_delay_channel: KNOCK_DELAY_CHANNEL '=' timespec ';'
# Line 3769 | Line 2969 | channel_knock_delay_channel: KNOCK_DELAY
2969    ConfigChannel.knock_delay_channel = $3;
2970   };
2971  
2972 < channel_invite_ops_only: INVITE_OPS_ONLY '=' TBOOL ';'
2972 > channel_max_channels: MAX_CHANNELS '=' NUMBER ';'
2973   {
2974 <  ConfigChannel.invite_ops_only = yylval.number;
3775 < };
3776 <
3777 < channel_max_chans_per_user: MAX_CHANS_PER_USER '=' NUMBER ';'
3778 < {
3779 <  ConfigChannel.max_chans_per_user = $3;
3780 < };
3781 <
3782 < channel_quiet_on_ban: QUIET_ON_BAN '=' TBOOL ';'
3783 < {
3784 <  ConfigChannel.quiet_on_ban = yylval.number;
2974 >  ConfigChannel.max_channels = $3;
2975   };
2976  
2977   channel_max_bans: MAX_BANS '=' NUMBER ';'
# Line 3809 | Line 2999 | channel_no_join_on_split: NO_JOIN_ON_SPL
2999    ConfigChannel.no_join_on_split = yylval.number;
3000   };
3001  
3812 channel_burst_topicwho: BURST_TOPICWHO '=' TBOOL ';'
3813 {
3814  ConfigChannel.burst_topicwho = yylval.number;
3815 };
3816
3002   channel_jflood_count: JOIN_FLOOD_COUNT '=' NUMBER ';'
3003   {
3004    GlobalSetOptions.joinfloodcount = yylval.number;
# Line 3821 | Line 3006 | channel_jflood_count: JOIN_FLOOD_COUNT '
3006  
3007   channel_jflood_time: JOIN_FLOOD_TIME '=' timespec ';'
3008   {
3009 <  GlobalSetOptions.joinfloodtime = yylval.number;
3009 >  GlobalSetOptions.joinfloodtime = $3;
3010   };
3011  
3012   /***************************************************************************
# Line 3831 | Line 3016 | serverhide_entry: SERVERHIDE
3016    '{' serverhide_items '}' ';';
3017  
3018   serverhide_items:   serverhide_items serverhide_item | serverhide_item;
3019 < serverhide_item:    serverhide_flatten_links | serverhide_hide_servers |
3020 <                    serverhide_links_delay |
3021 <                    serverhide_disable_hidden |
3022 <                    serverhide_hidden | serverhide_hidden_name |
3023 <                    serverhide_hide_server_ips |
3019 > serverhide_item:    serverhide_flatten_links |
3020 >                    serverhide_disable_remote_commands |
3021 >                    serverhide_hide_servers |
3022 >                    serverhide_hide_services |
3023 >                    serverhide_links_delay |
3024 >                    serverhide_hidden |
3025 >                    serverhide_hidden_name |
3026 >                    serverhide_hide_server_ips |
3027                      error;
3028  
3029   serverhide_flatten_links: FLATTEN_LINKS '=' TBOOL ';'
3030   {
3031 <  if (ypass == 2)
3031 >  if (conf_parser_ctx.pass == 2)
3032      ConfigServerHide.flatten_links = yylval.number;
3033   };
3034  
3035 + serverhide_disable_remote_commands: DISABLE_REMOTE_COMMANDS '=' TBOOL ';'
3036 + {
3037 +  if (conf_parser_ctx.pass == 2)
3038 +    ConfigServerHide.disable_remote_commands = yylval.number;
3039 + };
3040 +
3041   serverhide_hide_servers: HIDE_SERVERS '=' TBOOL ';'
3042   {
3043 <  if (ypass == 2)
3043 >  if (conf_parser_ctx.pass == 2)
3044      ConfigServerHide.hide_servers = yylval.number;
3045   };
3046  
3047 + serverhide_hide_services: HIDE_SERVICES '=' TBOOL ';'
3048 + {
3049 +  if (conf_parser_ctx.pass == 2)
3050 +    ConfigServerHide.hide_services = yylval.number;
3051 + };
3052 +
3053   serverhide_hidden_name: HIDDEN_NAME '=' QSTRING ';'
3054   {
3055 <  if (ypass == 2)
3055 >  if (conf_parser_ctx.pass == 2)
3056    {
3057      MyFree(ConfigServerHide.hidden_name);
3058 <    DupString(ConfigServerHide.hidden_name, yylval.string);
3058 >    ConfigServerHide.hidden_name = xstrdup(yylval.string);
3059    }
3060   };
3061  
3062   serverhide_links_delay: LINKS_DELAY '=' timespec ';'
3063   {
3064 <  if (ypass == 2)
3064 >  if (conf_parser_ctx.pass == 2)
3065    {
3066      if (($3 > 0) && ConfigServerHide.links_disabled == 1)
3067      {
3068 <      eventAddIsh("write_links_file", write_links_file, NULL, $3);
3068 >      event_write_links_file.when = $3;
3069 >      event_addish(&event_write_links_file, NULL);
3070        ConfigServerHide.links_disabled = 0;
3071      }
3072  
# Line 3875 | Line 3076 | serverhide_links_delay: LINKS_DELAY '='
3076  
3077   serverhide_hidden: HIDDEN '=' TBOOL ';'
3078   {
3079 <  if (ypass == 2)
3079 >  if (conf_parser_ctx.pass == 2)
3080      ConfigServerHide.hidden = yylval.number;
3081   };
3082  
3882 serverhide_disable_hidden: DISABLE_HIDDEN '=' TBOOL ';'
3883 {
3884  if (ypass == 2)
3885    ConfigServerHide.disable_hidden = yylval.number;
3886 };
3887
3083   serverhide_hide_server_ips: HIDE_SERVER_IPS '=' TBOOL ';'
3084   {
3085 <  if (ypass == 2)
3085 >  if (conf_parser_ctx.pass == 2)
3086      ConfigServerHide.hide_server_ips = yylval.number;
3087   };

Diff Legend

Removed lines
+ Added lines
< Changed lines (old)
> Changed lines (new)