ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/branches/8.2.x/src/s_bsd.c
(Generate patch)

Comparing ircd-hybrid/trunk/src/s_bsd.c (file contents):
Revision 1592 by michael, Sat Oct 27 21:02:32 2012 UTC vs.
Revision 2229 by michael, Thu Jun 13 20:10:27 2013 UTC

# Line 129 | Line 129 | report_error(int level, const char* text
129   {
130    who = (who) ? who : "";
131  
132 <  sendto_realops_flags(UMODE_DEBUG, level, text, who, strerror(error));
132 >  sendto_realops_flags(UMODE_DEBUG, level, SEND_NOTICE,
133 >                       text, who, strerror(error));
134    ilog(LOG_TYPE_IRCD, text, who, strerror(error));
135   }
136  
# Line 176 | Line 177 | init_comm(void)
177   void
178   close_connection(struct Client *client_p)
179   {
179  struct AccessItem *aconf;
180  struct ClassItem *aclass;
180    dlink_node *ptr = NULL;
181  
182    assert(client_p);
# Line 209 | Line 208 | close_connection(struct Client *client_p
208  
209      DLINK_FOREACH(ptr, server_items.head)
210      {
211 <      struct ConfItem *conf = ptr->data;
211 >      struct MaskItem *conf = ptr->data;
212  
213        if (irccmp(conf->name, client_p->name))
214          continue;
# Line 218 | Line 217 | close_connection(struct Client *client_p
217         * Reset next-connect cycle of all connect{} blocks that match
218         * this servername.
219         */
220 <      aconf  = map_to_conf(conf);
222 <      aclass = map_to_conf(aconf->class_ptr);
223 <      aconf->hold = CurrentTime + aclass->con_freq;
220 >      conf->until = CurrentTime + conf->class->con_freq;
221      }
222    }
223    else
# Line 242 | Line 239 | close_connection(struct Client *client_p
239    dbuf_clear(&client_p->localClient->buf_recvq);
240    
241    MyFree(client_p->localClient->passwd);
242 <  detach_conf(client_p, CONF_TYPE);
242 >  detach_conf(client_p, CONF_CLIENT|CONF_OPER|CONF_SERVER);
243    client_p->from = NULL; /* ...this should catch them! >:) --msa */
244   }
245  
246 + /*  Base16 encoding is:
247 + *  Copyright (c) 2001-2004, Roger Dingledine
248 + *  Copyright (c) 2004-2007, Roger Dingledine, Nick Mathewson
249 + *
250 + *  Redistribution and use in source and binary forms, with or without
251 + *  modification, are permitted provided that the following conditions are
252 + *  met:
253 + *
254 + *  Redistributions of source code must retain the above copyright
255 + *  notice, this list of conditions and the following disclaimer.
256 +
257 + * Redistributions in binary form must reproduce the above copyright notice,
258 + * this list of conditions and the following disclaimer
259 + * in the documentation and/or other materials provided with the distribution.
260 + *
261 + * Neither the names of the copyright owners nor the names of its
262 + * contributors may be used to endorse or promote products derived from
263 + * this software without specific prior written permission.
264 +
265 + * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
266 + * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
267 + * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
268 + * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
269 + * OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
270 + * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
271 + * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
272 + * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
273 + * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
274 + * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
275 + * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
276 + */
277 + static void
278 + base16_encode(char *dest, size_t destlen, const char *src, size_t srclen)
279 + {
280 +  const char *end;
281 +  char *cp;
282 +
283 +  assert(destlen >= srclen * 2 + 1);
284 +
285 +  cp = dest;
286 +  end = src + srclen;
287 +
288 +  while (src < end)
289 +  {
290 +    *cp++ = "0123456789ABCDEF"[(*(const uint8_t *)src) >>  4];
291 +    *cp++ = "0123456789ABCDEF"[(*(const uint8_t *)src) & 0xf];
292 +    ++src;
293 +  }
294 +
295 +  *cp = '\0';
296 + }
297 +
298   #ifdef HAVE_LIBCRYPTO
299   /*
300   * ssl_handshake - let OpenSSL initialize the protocol. Register for
# Line 254 | Line 303 | close_connection(struct Client *client_p
303   static void
304   ssl_handshake(int fd, struct Client *client_p)
305   {
306 +  X509 *cert = NULL;
307    int ret = SSL_accept(client_p->localClient->fd.ssl);
308 +  int err = SSL_get_error(client_p->localClient->fd.ssl, ret);
309 +
310 +  ilog(LOG_TYPE_IRCD, "SSL Error %d %s", err, ERR_error_string(err, NULL));
311 +
312 +  if ((cert = SSL_get_peer_certificate(client_p->localClient->fd.ssl)))
313 +  {
314 +    int res = SSL_get_verify_result(client_p->localClient->fd.ssl);
315 +    char buf[SHA_DIGEST_LENGTH * 2 + 1] = { '\0' };
316 +
317 +    if (res == X509_V_OK || res == X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN ||
318 +        res == X509_V_ERR_UNABLE_TO_VERIFY_LEAF_SIGNATURE ||
319 +        res == X509_V_ERR_DEPTH_ZERO_SELF_SIGNED_CERT)
320 +    {
321 +      base16_encode(buf, sizeof(buf),
322 +                    (const char *)cert->sha1_hash, sizeof(cert->sha1_hash));
323 +      client_p->certfp = xstrndup(buf, sizeof(buf));
324 +    }
325 +    else
326 +      ilog(LOG_TYPE_IRCD, "Client %s!%s@%s gave bad SSL client certificate: %d",
327 +           client_p->name, client_p->username, client_p->host, res);
328 +    X509_free(cert);
329 +  }
330  
331    if (ret <= 0)
332 +  {
333      switch (SSL_get_error(client_p->localClient->fd.ssl, ret))
334      {
335        case SSL_ERROR_WANT_WRITE:
# Line 273 | Line 346 | ssl_handshake(int fd, struct Client *cli
346          exit_client(client_p, client_p, "Error during SSL handshake");
347          return;
348      }
349 +  }
350  
351 <  execute_callback(auth_cb, client_p);
351 >  start_auth(client_p);
352   }
353   #endif
354  
# Line 305 | Line 379 | add_connection(struct Listener *listener
379                sizeof(new_client->sockhost), NULL, 0, NI_NUMERICHOST);
380    new_client->localClient->aftype = new_client->localClient->ip.ss.ss_family;
381  
382 + #ifdef HAVE_LIBGEOIP
383 +  /* XXX IPV6 SUPPORT XXX */
384 +  if (irn->ss.ss_family == AF_INET && geoip_ctx)
385 +  {
386 +    const struct sockaddr_in *v4 = (const struct sockaddr_in *)&new_client->localClient->ip;
387 +    new_client->localClient->country_id = GeoIP_id_by_ipnum(geoip_ctx, (unsigned long)ntohl(v4->sin_addr.s_addr));
388 +  }
389 + #endif
390 +
391    if (new_client->sockhost[0] == ':' && new_client->sockhost[1] == ':')
392    {
393      strlcpy(new_client->host, "0", sizeof(new_client->host));
# Line 336 | Line 419 | add_connection(struct Listener *listener
419    }
420    else
421   #endif
422 <    execute_callback(auth_cb, new_client);
422 >    start_auth(new_client);
423   }
424  
425   /*

Diff Legend

Removed lines
+ Added lines
< Changed lines (old)
> Changed lines (new)