ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/conf.c
(Generate patch)

Comparing:
ircd-hybrid-7.2/src/s_conf.c (file contents), Revision 967 by michael, Sun Aug 2 18:05:28 2009 UTC vs.
ircd-hybrid/trunk/src/conf.c (file contents), Revision 2525 by michael, Sat Nov 2 17:07:38 2013 UTC

# Line 1 | Line 1
1   /*
2   *  ircd-hybrid: an advanced Internet Relay Chat Daemon(ircd).
3 < *  s_conf.c: Configuration file functions.
3 > *  conf.c: Configuration file functions.
4   *
5   *  Copyright (C) 2002 by the past and present ircd coders, and others.
6   *
# Line 23 | Line 23
23   */
24  
25   #include "stdinc.h"
26 + #include "list.h"
27   #include "ircd_defs.h"
28 < #include "tools.h"
28 < #include "s_conf.h"
28 > #include "conf.h"
29   #include "s_serv.h"
30   #include "resv.h"
31   #include "channel.h"
32   #include "client.h"
33 #include "common.h"
33   #include "event.h"
35 #include "hash.h"
34   #include "hook.h"
35   #include "irc_string.h"
38 #include "sprintf_irc.h"
36   #include "s_bsd.h"
40 #include "irc_getaddrinfo.h"
37   #include "ircd.h"
42 #include "list.h"
38   #include "listener.h"
39   #include "hostmask.h"
40   #include "modules.h"
41   #include "numeric.h"
42   #include "fdlist.h"
43 < #include "s_log.h"
43 > #include "log.h"
44   #include "send.h"
45   #include "s_gline.h"
51 #include "fileio.h"
46   #include "memory.h"
47 + #include "mempool.h"
48   #include "irc_res.h"
49   #include "userhost.h"
50   #include "s_user.h"
51   #include "channel_mode.h"
52 + #include "parse.h"
53 + #include "s_misc.h"
54 + #include "conf_db.h"
55 + #include "conf_class.h"
56 + #include "motd.h"
57  
58 struct Callback *client_check_cb = NULL;
58   struct config_server_hide ConfigServerHide;
59  
60   /* general conf items link list root, other than k lines etc. */
61 + dlink_list service_items = { NULL, NULL, 0 };
62   dlink_list server_items  = { NULL, NULL, 0 };
63   dlink_list cluster_items = { NULL, NULL, 0 };
64 dlink_list hub_items     = { NULL, NULL, 0 };
65 dlink_list leaf_items    = { NULL, NULL, 0 };
64   dlink_list oconf_items   = { NULL, NULL, 0 };
65   dlink_list uconf_items   = { NULL, NULL, 0 };
66   dlink_list xconf_items   = { NULL, NULL, 0 };
69 dlink_list rxconf_items  = { NULL, NULL, 0 };
70 dlink_list rkconf_items  = { NULL, NULL, 0 };
67   dlink_list nresv_items   = { NULL, NULL, 0 };
68 < dlink_list class_items   = { NULL, NULL, 0 };
73 < dlink_list gdeny_items   = { NULL, NULL, 0 };
74 <
75 < dlink_list temporary_klines  = { NULL, NULL, 0 };
76 < dlink_list temporary_dlines  = { NULL, NULL, 0 };
77 < dlink_list temporary_xlines  = { NULL, NULL, 0 };
78 < dlink_list temporary_rklines = { NULL, NULL, 0 };
79 < dlink_list temporary_glines  = { NULL, NULL, 0 };
80 < dlink_list temporary_rxlines = { NULL, NULL, 0 };
81 < dlink_list temporary_resv = { NULL, NULL, 0 };
68 > dlink_list cresv_items = { NULL, NULL, 0 };
69  
70   extern unsigned int lineno;
71   extern char linebuf[];
72   extern char conffilebuf[IRCD_BUFSIZE];
86 extern char yytext[];
73   extern int yyparse(); /* defined in y.tab.c */
74  
75   struct conf_parser_context conf_parser_ctx = { 0, 0, NULL };
76  
77   /* internally defined functions */
78 < static void lookup_confhost(struct ConfItem *);
93 < static void set_default_conf(void);
94 < static void validate_conf(void);
95 < static void read_conf(FBFILE *);
78 > static void read_conf(FILE *);
79   static void clear_out_old_conf(void);
97 static void flush_deleted_I_P(void);
80   static void expire_tklines(dlink_list *);
81   static void garbage_collect_ip_entries(void);
82   static int hash_ip(struct irc_ssaddr *);
83 < static int verify_access(struct Client *, const char *);
84 < static int attach_iline(struct Client *, struct ConfItem *);
83 > static int verify_access(struct Client *);
84 > static int attach_iline(struct Client *, struct MaskItem *);
85   static struct ip_entry *find_or_add_ip(struct irc_ssaddr *);
86 < static void parse_conf_file(int, int);
105 < static dlink_list *map_to_list(ConfType);
106 < static struct AccessItem *find_regexp_kline(const char *[]);
86 > static dlink_list *map_to_list(enum maskitem_type);
87   static int find_user_host(struct Client *, char *, char *, char *, unsigned int);
88  
109 /*
110 * bit_len
111 */
112 static int cidr_limit_reached(int, struct irc_ssaddr *, struct ClassItem *);
113 static void remove_from_cidr_check(struct irc_ssaddr *, struct ClassItem *);
114 static void destroy_cidr_class(struct ClassItem *);
115
116 static void flags_to_ascii(unsigned int, const unsigned int[], char *, int);
117
118 /* address of default class conf */
119 static struct ConfItem *class_default;
89  
90   /* usually, with hash tables, you use a prime number...
91   * but in this case I am dealing with ip addresses,
# Line 127 | Line 96 | static struct ConfItem *class_default;
96   struct ip_entry
97   {
98    struct irc_ssaddr ip;
99 <  int count;
99 >  unsigned int count;
100    time_t last_attempt;
101    struct ip_entry *next;
102   };
103  
104   static struct ip_entry *ip_hash_table[IP_HASH_SIZE];
105 < static BlockHeap *ip_entry_heap = NULL;
105 > static mp_pool_t *ip_entry_pool = NULL;
106   static int ip_entries_count = 0;
107  
108  
140 inline void *
141 map_to_conf(struct ConfItem *aconf)
142 {
143  void *conf;
144  conf = (void *)((unsigned long)aconf +
145                  (unsigned long)sizeof(struct ConfItem));
146  return(conf);
147 }
148
149 inline struct ConfItem *
150 unmap_conf_item(void *aconf)
151 {
152  struct ConfItem *conf;
153
154  conf = (struct ConfItem *)((unsigned long)aconf -
155                             (unsigned long)sizeof(struct ConfItem));
156  return(conf);
157 }
158
109   /* conf_dns_callback()
110   *
111 < * inputs       - pointer to struct AccessItem
111 > * inputs       - pointer to struct MaskItem
112   *              - pointer to DNSReply reply
113   * output       - none
114   * side effects - called when resolver query finishes
# Line 167 | Line 117 | unmap_conf_item(void *aconf)
117   * if successful save hp in the conf item it was called with
118   */
119   static void
120 < conf_dns_callback(void *vptr, struct DNSReply *reply)
120 > conf_dns_callback(void *vptr, const struct irc_ssaddr *addr, const char *name)
121   {
122 <  struct AccessItem *aconf = (struct AccessItem *)vptr;
173 <  struct ConfItem *conf;
122 >  struct MaskItem *conf = vptr;
123  
124 <  MyFree(aconf->dns_query);
176 <  aconf->dns_query = NULL;
124 >  conf->dns_pending = 0;
125  
126 <  if (reply != NULL)
127 <    memcpy(&aconf->ipnum, &reply->addr, sizeof(reply->addr));
128 <  else {
129 <    ilog(L_NOTICE, "Host not found: %s, ignoring connect{} block",
182 <         aconf->host);
183 <    conf = unmap_conf_item(aconf);
184 <    sendto_realops_flags(UMODE_ALL, L_ALL,
185 <                         "Ignoring connect{} block for %s - host not found",
186 <                         conf->name);
187 <    delete_conf_item(conf);
188 <  }
126 >  if (addr != NULL)
127 >    memcpy(&conf->addr, addr, sizeof(conf->addr));
128 >  else
129 >    conf->dns_failed = 1;
130   }
131  
132   /* conf_dns_lookup()
# Line 195 | Line 136 | conf_dns_callback(void *vptr, struct DNS
136   * allocate a dns_query and start ns lookup.
137   */
138   static void
139 < conf_dns_lookup(struct AccessItem *aconf)
139 > conf_dns_lookup(struct MaskItem *conf)
140   {
141 <  if (aconf->dns_query == NULL)
141 >  if (!conf->dns_pending)
142    {
143 <    aconf->dns_query = MyMalloc(sizeof(struct DNSQuery));
144 <    aconf->dns_query->ptr = aconf;
204 <    aconf->dns_query->callback = conf_dns_callback;
205 <    gethost_byname(aconf->host, aconf->dns_query);
143 >    conf->dns_pending = 1;
144 >    gethost_byname(conf_dns_callback, conf, conf->host);
145    }
146   }
147  
148 < /* make_conf_item()
149 < *
211 < * inputs       - type of item
212 < * output       - pointer to new conf entry
213 < * side effects - none
214 < */
215 < struct ConfItem *
216 < make_conf_item(ConfType type)
148 > struct MaskItem *
149 > conf_make(enum maskitem_type type)
150   {
151 <  struct ConfItem *conf = NULL;
152 <  struct AccessItem *aconf = NULL;
220 <  struct ClassItem *aclass = NULL;
221 <  int status = 0;
222 <
223 <  switch (type)
224 <  {
225 <  case DLINE_TYPE:
226 <  case EXEMPTDLINE_TYPE:
227 <  case GLINE_TYPE:
228 <  case KLINE_TYPE:
229 <  case CLIENT_TYPE:
230 <  case OPER_TYPE:
231 <  case SERVER_TYPE:
232 <    conf = MyMalloc(sizeof(struct ConfItem) +
233 <                    sizeof(struct AccessItem));
234 <    aconf = map_to_conf(conf);
235 <    aconf->aftype = AF_INET;
236 <
237 <    /* Yes, sigh. switch on type again */
238 <    switch (type)
239 <    {
240 <    case EXEMPTDLINE_TYPE:
241 <      status = CONF_EXEMPTDLINE;
242 <      break;
151 >  struct MaskItem *conf = MyMalloc(sizeof(*conf));
152 >  dlink_list *list = NULL;
153  
154 <    case DLINE_TYPE:
155 <      status = CONF_DLINE;
156 <      break;
247 <
248 <    case KLINE_TYPE:
249 <      status = CONF_KLINE;
250 <      break;
251 <
252 <    case GLINE_TYPE:
253 <      status = CONF_GLINE;
254 <      break;
255 <
256 <    case CLIENT_TYPE:
257 <      status = CONF_CLIENT;
258 <      break;
259 <
260 <    case OPER_TYPE:
261 <      status = CONF_OPERATOR;
262 <      dlinkAdd(conf, &conf->node, &oconf_items);
263 <      break;
264 <
265 <    case SERVER_TYPE:
266 <      status = CONF_SERVER;
267 <      dlinkAdd(conf, &conf->node, &server_items);
268 <      break;
269 <
270 <    default:
271 <      break;
272 <    }
273 <    aconf->status = status;
274 <    break;
275 <
276 <  case LEAF_TYPE:
277 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
278 <                                       sizeof(struct MatchItem));
279 <    dlinkAdd(conf, &conf->node, &leaf_items);
280 <    break;
281 <
282 <  case HUB_TYPE:
283 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
284 <                                       sizeof(struct MatchItem));
285 <    dlinkAdd(conf, &conf->node, &hub_items);
286 <    break;
287 <
288 <  case ULINE_TYPE:
289 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
290 <                                       sizeof(struct MatchItem));
291 <    dlinkAdd(conf, &conf->node, &uconf_items);
292 <    break;
293 <
294 <  case GDENY_TYPE:
295 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
296 <                                       sizeof(struct AccessItem));
297 <    dlinkAdd(conf, &conf->node, &gdeny_items);
298 <    break;
299 <
300 <  case XLINE_TYPE:
301 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
302 <                                       sizeof(struct MatchItem));
303 <    dlinkAdd(conf, &conf->node, &xconf_items);
304 <    break;
305 <
306 <  case RXLINE_TYPE:
307 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
308 <                                       sizeof(struct MatchItem));
309 <    dlinkAdd(conf, &conf->node, &rxconf_items);
310 <    break;
311 <
312 <  case RKLINE_TYPE:
313 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
314 <                                       sizeof(struct AccessItem));
315 <    aconf = map_to_conf(conf);
316 <    aconf->status = CONF_KLINE;
317 <    dlinkAdd(conf, &conf->node, &rkconf_items);
318 <    break;
319 <
320 <  case CLUSTER_TYPE:
321 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem));
322 <    dlinkAdd(conf, &conf->node, &cluster_items);
323 <    break;
324 <
325 <  case CRESV_TYPE:
326 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
327 <                                       sizeof(struct ResvChannel));
328 <    break;
329 <
330 <  case NRESV_TYPE:
331 <    conf = (struct ConfItem *)MyMalloc(sizeof(struct ConfItem) +
332 <                                       sizeof(struct MatchItem));
333 <    dlinkAdd(conf, &conf->node, &nresv_items);
334 <    break;
335 <
336 <  case CLASS_TYPE:
337 <    conf = MyMalloc(sizeof(struct ConfItem) +
338 <                           sizeof(struct ClassItem));
339 <    dlinkAdd(conf, &conf->node, &class_items);
340 <
341 <    aclass = map_to_conf(conf);
342 <    aclass->active = 1;
343 <    ConFreq(aclass) = DEFAULT_CONNECTFREQUENCY;
344 <    PingFreq(aclass) = DEFAULT_PINGFREQUENCY;
345 <    MaxTotal(aclass) = MAXIMUM_LINKS_DEFAULT;
346 <    MaxSendq(aclass) = DEFAULT_SENDQ;
347 <
348 <    break;
349 <
350 <  default:
351 <    conf = NULL;
352 <    break;
353 <  }
354 <
355 <  /* XXX Yes, this will core if default is hit. I want it to for now - db */
356 <  conf->type = type;
154 >  conf->type   = type;
155 >  conf->active = 1;
156 >  conf->aftype = AF_INET;
157  
158 +  if ((list = map_to_list(type)))
159 +    dlinkAdd(conf, &conf->node, list);
160    return conf;
161   }
162  
163   void
164 < delete_conf_item(struct ConfItem *conf)
164 > conf_free(struct MaskItem *conf)
165   {
166 <  dlink_node *m = NULL;
167 <  struct MatchItem *match_item;
168 <  struct AccessItem *aconf;
169 <  ConfType type = conf->type;
166 >  dlink_node *ptr = NULL, *ptr_next = NULL;
167 >  dlink_list *list = NULL;
168 >
169 >  if (conf->node.next)
170 >    if ((list = map_to_list(conf->type)))
171 >      dlinkDelete(&conf->node, list);
172  
173    MyFree(conf->name);
370  conf->name = NULL;
174  
175 <  switch(type)
176 <  {
177 <  case DLINE_TYPE:
178 <  case EXEMPTDLINE_TYPE:
179 <  case GLINE_TYPE:
180 <  case KLINE_TYPE:
181 <  case CLIENT_TYPE:
182 <  case OPER_TYPE:
183 <  case SERVER_TYPE:
184 <    aconf = map_to_conf(conf);
185 <
186 <    if (aconf->dns_query != NULL)
187 <    {
188 <      delete_resolver_queries(aconf->dns_query);
189 <      MyFree(aconf->dns_query);
387 <    }
388 <    if (aconf->passwd != NULL)
389 <      memset(aconf->passwd, 0, strlen(aconf->passwd));
390 <    if (aconf->spasswd != NULL)
391 <      memset(aconf->spasswd, 0, strlen(aconf->spasswd));
392 <    aconf->class_ptr = NULL;
393 <
394 <    MyFree(aconf->passwd);
395 <    MyFree(aconf->spasswd);
396 <    MyFree(aconf->reason);
397 <    MyFree(aconf->oper_reason);
398 <    MyFree(aconf->user);
399 <    MyFree(aconf->host);
400 <    MyFree(aconf->fakename);
175 >  if (conf->dns_pending)
176 >    delete_resolver_queries(conf);
177 >  if (conf->passwd != NULL)
178 >    memset(conf->passwd, 0, strlen(conf->passwd));
179 >  if (conf->spasswd != NULL)
180 >    memset(conf->spasswd, 0, strlen(conf->spasswd));
181 >
182 >  conf->class = NULL;
183 >
184 >  MyFree(conf->passwd);
185 >  MyFree(conf->spasswd);
186 >  MyFree(conf->reason);
187 >  MyFree(conf->certfp);
188 >  MyFree(conf->user);
189 >  MyFree(conf->host);
190   #ifdef HAVE_LIBCRYPTO
191 <    if (aconf->rsa_public_key)
403 <      RSA_free(aconf->rsa_public_key);
404 <    MyFree(aconf->rsa_public_key_file);
405 < #endif
406 <
407 <    /* Yes, sigh. switch on type again */
408 <    switch(type)
409 <    {
410 <    case EXEMPTDLINE_TYPE:
411 <    case DLINE_TYPE:
412 <    case GLINE_TYPE:
413 <    case KLINE_TYPE:
414 <    case CLIENT_TYPE:
415 <      MyFree(conf);
416 <      break;
417 <
418 <    case OPER_TYPE:
419 <      aconf = map_to_conf(conf);
420 <      if (!IsConfIllegal(aconf))
421 <        dlinkDelete(&conf->node, &oconf_items);
422 <      MyFree(conf);
423 <      break;
424 <
425 <    case SERVER_TYPE:
426 <      aconf = map_to_conf(conf);
427 <      if (!IsConfIllegal(aconf))
428 <        dlinkDelete(&conf->node, &server_items);
429 <      MyFree(conf);
430 <      break;
431 <
432 <    default:
433 <      break;
434 <    }
435 <    break;
436 <
437 <  case HUB_TYPE:
438 <    match_item = map_to_conf(conf);
439 <    MyFree(match_item->user);
440 <    MyFree(match_item->host);
441 <    MyFree(match_item->reason);
442 <    MyFree(match_item->oper_reason);
443 <    /* If marked illegal, its already been pulled off of the hub_items list */
444 <    if (!match_item->illegal)
445 <      dlinkDelete(&conf->node, &hub_items);
446 <    MyFree(conf);
447 <    break;
448 <
449 <  case LEAF_TYPE:
450 <    match_item = map_to_conf(conf);
451 <    MyFree(match_item->user);
452 <    MyFree(match_item->host);
453 <    MyFree(match_item->reason);
454 <    MyFree(match_item->oper_reason);
455 <    /* If marked illegal, its already been pulled off of the leaf_items list */
456 <    if (!match_item->illegal)
457 <      dlinkDelete(&conf->node, &leaf_items);
458 <    MyFree(conf);
459 <    break;
460 <
461 <  case ULINE_TYPE:
462 <    match_item = map_to_conf(conf);
463 <    MyFree(match_item->user);
464 <    MyFree(match_item->host);
465 <    MyFree(match_item->reason);
466 <    MyFree(match_item->oper_reason);
467 <    dlinkDelete(&conf->node, &uconf_items);
468 <    MyFree(conf);
469 <    break;
470 <
471 <  case XLINE_TYPE:
472 <    match_item = map_to_conf(conf);
473 <    MyFree(match_item->user);
474 <    MyFree(match_item->host);
475 <    MyFree(match_item->reason);
476 <    MyFree(match_item->oper_reason);
477 <    dlinkDelete(&conf->node, &xconf_items);
478 <    MyFree(conf);
479 <    break;
480 <
481 <  case RKLINE_TYPE:
482 <    aconf = map_to_conf(conf);
483 <    MyFree(aconf->regexuser);
484 <    MyFree(aconf->regexhost);
485 <    MyFree(aconf->user);
486 <    MyFree(aconf->host);
487 <    MyFree(aconf->reason);
488 <    MyFree(aconf->oper_reason);
489 <    dlinkDelete(&conf->node, &rkconf_items);
490 <    MyFree(conf);
491 <    break;
492 <
493 <  case RXLINE_TYPE:
494 <    MyFree(conf->regexpname);
495 <    match_item = map_to_conf(conf);
496 <    MyFree(match_item->user);
497 <    MyFree(match_item->host);
498 <    MyFree(match_item->reason);
499 <    MyFree(match_item->oper_reason);
500 <    dlinkDelete(&conf->node, &rxconf_items);
501 <    MyFree(conf);
502 <    break;
503 <
504 <  case NRESV_TYPE:
505 <    match_item = map_to_conf(conf);
506 <    MyFree(match_item->user);
507 <    MyFree(match_item->host);
508 <    MyFree(match_item->reason);
509 <    MyFree(match_item->oper_reason);
510 <    dlinkDelete(&conf->node, &nresv_items);
511 <
512 <    if (conf->flags & CONF_FLAGS_TEMPORARY)
513 <      if ((m = dlinkFindDelete(&temporary_resv, conf)) != NULL)
514 <        free_dlink_node(m);
191 >  MyFree(conf->cipher_list);
192  
193 <    MyFree(conf);
194 <    break;
195 <
196 <  case GDENY_TYPE:
197 <    aconf = map_to_conf(conf);
198 <    MyFree(aconf->user);
199 <    MyFree(aconf->host);
523 <    dlinkDelete(&conf->node, &gdeny_items);
524 <    MyFree(conf);
525 <    break;
526 <
527 <  case CLUSTER_TYPE:
528 <    dlinkDelete(&conf->node, &cluster_items);
529 <    MyFree(conf);
530 <    break;
531 <
532 <  case CRESV_TYPE:
533 <    if (conf->flags & CONF_FLAGS_TEMPORARY)
534 <      if ((m = dlinkFindDelete(&temporary_resv, conf)) != NULL)
535 <        free_dlink_node(m);
536 <
537 <    MyFree(conf);
538 <    break;
539 <
540 <  case CLASS_TYPE:
541 <    dlinkDelete(&conf->node, &class_items);
542 <    MyFree(conf);
543 <    break;
544 <
545 <  default:
546 <    break;
193 >  if (conf->rsa_public_key)
194 >    RSA_free(conf->rsa_public_key);
195 > #endif
196 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->hub_list.head)
197 >  {
198 >    MyFree(ptr->data);
199 >    free_dlink_node(ptr);
200    }
548 }
549
550 /* free_access_item()
551 *
552 * inputs       - pointer to conf to free
553 * output       - none
554 * side effects - crucial password fields are zeroed, conf is freed
555 */
556 void
557 free_access_item(struct AccessItem *aconf)
558 {
559  struct ConfItem *conf;
560
561  if (aconf == NULL)
562    return;
563  conf = unmap_conf_item(aconf);
564  delete_conf_item(conf);
565 }
566
567 static const unsigned int shared_bit_table[] =
568  { 'K', 'k', 'U', 'X', 'x', 'Y', 'Q', 'q', 'R', 'L', 0};
201  
202 < /* report_confitem_types()
571 < *
572 < * inputs       - pointer to client requesting confitem report
573 < *              - ConfType to report
574 < * output       - none
575 < * side effects -
576 < */
577 < void
578 < report_confitem_types(struct Client *source_p, ConfType type, int temp)
579 < {
580 <  dlink_node *ptr = NULL;
581 <  struct ConfItem *conf = NULL;
582 <  struct AccessItem *aconf = NULL;
583 <  struct MatchItem *matchitem = NULL;
584 <  struct ClassItem *classitem = NULL;
585 <  char buf[12];
586 <  char *p = NULL;
587 <  const char *pfx = NULL;
588 <
589 <  switch (type)
202 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->leaf_list.head)
203    {
204 <  case GDENY_TYPE:
205 <    DLINK_FOREACH(ptr, gdeny_items.head)
206 <    {
594 <      conf = ptr->data;
595 <      aconf = map_to_conf(conf);
596 <
597 <      p = buf;
598 <
599 <      if (aconf->flags & GDENY_BLOCK)
600 <        *p++ = 'B';
601 <      else
602 <        *p++ = 'b';
603 <
604 <      if (aconf->flags & GDENY_REJECT)
605 <        *p++ = 'R';
606 <      else
607 <        *p++ = 'r';
608 <
609 <      *p = '\0';
610 <
611 <      sendto_one(source_p, ":%s %d %s V %s@%s %s %s",
612 <                 me.name, RPL_STATSDEBUG, source_p->name,
613 <                 aconf->user, aconf->host, conf->name, buf);
614 <    }
615 <    break;
616 <
617 <  case XLINE_TYPE:
618 <    DLINK_FOREACH(ptr, xconf_items.head)
619 <    {
620 <      conf = ptr->data;
621 <      matchitem = map_to_conf(conf);
622 <
623 <      sendto_one(source_p, form_str(RPL_STATSXLINE),
624 <                 me.name, source_p->name,
625 <                 matchitem->hold ? "x": "X", matchitem->count,
626 <                 conf->name, matchitem->reason);
627 <    }
628 <    break;
629 <
630 <  case RXLINE_TYPE:
631 <    DLINK_FOREACH(ptr, rxconf_items.head)
632 <    {
633 <      conf = ptr->data;
634 <      matchitem = map_to_conf(conf);
635 <
636 <      sendto_one(source_p, form_str(RPL_STATSXLINE),
637 <                 me.name, source_p->name,
638 <                 matchitem->hold ? "xR": "XR", matchitem->count,
639 <                 conf->name, matchitem->reason);
640 <    }
641 <    break;
642 <
643 <  case RKLINE_TYPE:
644 <    pfx = temp ? "kR" : "KR";
645 <
646 <    DLINK_FOREACH(ptr, rkconf_items.head)
647 <    {
648 <      aconf = map_to_conf((conf = ptr->data));
649 <
650 <      if (temp && !(conf->flags & CONF_FLAGS_TEMPORARY))
651 <        continue;
652 <
653 <      sendto_one(source_p, form_str(RPL_STATSKLINE), me.name,
654 <                 source_p->name, pfx, aconf->host, aconf->user,
655 <                 aconf->reason, aconf->oper_reason ? aconf->oper_reason : "");
656 <    }
657 <    break;
658 <
659 <  case ULINE_TYPE:
660 <    DLINK_FOREACH(ptr, uconf_items.head)
661 <    {
662 <      conf = ptr->data;
663 <      matchitem = map_to_conf(conf);
664 <
665 <      p = buf;
666 <
667 <      /* some of these are redundant for the sake of
668 <       * consistency with cluster{} flags
669 <       */
670 <      *p++ = 'c';
671 <      flags_to_ascii(matchitem->action, shared_bit_table, p, 0);
672 <
673 <      sendto_one(source_p, form_str(RPL_STATSULINE),
674 <                 me.name, source_p->name, conf->name,
675 <                 matchitem->user?matchitem->user: "*",
676 <                 matchitem->host?matchitem->host: "*", buf);
677 <    }
678 <
679 <    DLINK_FOREACH(ptr, cluster_items.head)
680 <    {
681 <      conf = ptr->data;
682 <
683 <      p = buf;
684 <
685 <      *p++ = 'C';
686 <      flags_to_ascii(conf->flags, shared_bit_table, p, 0);
687 <
688 <      sendto_one(source_p, form_str(RPL_STATSULINE),
689 <                 me.name, source_p->name, conf->name,
690 <                 "*", "*", buf);
691 <    }
692 <
693 <    break;
694 <
695 <  case OPER_TYPE:
696 <    DLINK_FOREACH(ptr, oconf_items.head)
697 <    {
698 <      conf = ptr->data;
699 <      aconf = map_to_conf(conf);
700 <
701 <      /* Don't allow non opers to see oper privs */
702 <      if (IsOper(source_p))
703 <        sendto_one(source_p, form_str(RPL_STATSOLINE),
704 <                   me.name, source_p->name, 'O', aconf->user, aconf->host,
705 <                   conf->name, oper_privs_as_string(aconf->port),
706 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
707 <      else
708 <        sendto_one(source_p, form_str(RPL_STATSOLINE),
709 <                   me.name, source_p->name, 'O', aconf->user, aconf->host,
710 <                   conf->name, "0",
711 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
712 <    }
713 <    break;
714 <
715 <  case CLASS_TYPE:
716 <    DLINK_FOREACH(ptr, class_items.head)
717 <    {
718 <      conf = ptr->data;
719 <      classitem = map_to_conf(conf);
720 <      sendto_one(source_p, form_str(RPL_STATSYLINE),
721 <                 me.name, source_p->name, 'Y',
722 <                 conf->name, PingFreq(classitem),
723 <                 ConFreq(classitem),
724 <                 MaxTotal(classitem), MaxSendq(classitem),
725 <                 CurrUserCount(classitem),
726 <                 classitem->active ? "active" : "disabled");
727 <    }
728 <    break;
729 <
730 <  case CONF_TYPE:
731 <  case CLIENT_TYPE:
732 <    break;
733 <
734 <  case SERVER_TYPE:
735 <    DLINK_FOREACH(ptr, server_items.head)
736 <    {
737 <      p = buf;
738 <
739 <      conf = ptr->data;
740 <      aconf = map_to_conf(conf);
741 <
742 <      buf[0] = '\0';
743 <
744 <      if (IsConfAllowAutoConn(aconf))
745 <        *p++ = 'A';
746 <      if (IsConfCryptLink(aconf))
747 <        *p++ = 'C';
748 <      if (aconf->fakename)
749 <        *p++ = 'M';
750 <      if (IsConfTopicBurst(aconf))
751 <        *p++ = 'T';
752 <      if (IsConfCompressed(aconf))
753 <        *p++ = 'Z';
754 <      if (buf[0] == '\0')
755 <        *p++ = '*';
756 <
757 <      *p = '\0';
758 <
759 <      /*
760 <       * Allow admins to see actual ips unless hide_server_ips is enabled
761 <       */
762 <      if (!ConfigServerHide.hide_server_ips && IsAdmin(source_p))
763 <        sendto_one(source_p, form_str(RPL_STATSCLINE),
764 <                   me.name, source_p->name, 'C', aconf->host,
765 <                   buf, conf->name, aconf->port,
766 <                   aconf->class_ptr ? aconf->class_ptr->name : "<default>");
767 <        else
768 <          sendto_one(source_p, form_str(RPL_STATSCLINE),
769 <                     me.name, source_p->name, 'C',
770 <                     "*@127.0.0.1", buf, conf->name, aconf->port,
771 <                     aconf->class_ptr ? aconf->class_ptr->name : "<default>");
772 <    }
773 <    break;
774 <
775 <  case HUB_TYPE:
776 <    DLINK_FOREACH(ptr, hub_items.head)
777 <    {
778 <      conf = ptr->data;
779 <      matchitem = map_to_conf(conf);
780 <      sendto_one(source_p, form_str(RPL_STATSHLINE), me.name,
781 <                 source_p->name, 'H', matchitem->host, conf->name, 0, "*");
782 <    }
783 <    break;
204 >    MyFree(ptr->data);
205 >    free_dlink_node(ptr);
206 >  }
207  
208 <  case LEAF_TYPE:
209 <    DLINK_FOREACH(ptr, leaf_items.head)
210 <    {
788 <      conf = ptr->data;
789 <      matchitem = map_to_conf(conf);
790 <      sendto_one(source_p, form_str(RPL_STATSLLINE), me.name,
791 <                 source_p->name, 'L', matchitem->host, conf->name, 0, "*");
792 <    }
793 <    break;
208 >  DLINK_FOREACH_SAFE(ptr, ptr_next, conf->exempt_list.head)
209 >  {
210 >    struct exempt *exptr = ptr->data;
211  
212 <  case GLINE_TYPE:
213 <  case KLINE_TYPE:
214 <  case DLINE_TYPE:
215 <  case EXEMPTDLINE_TYPE:
799 <  case CRESV_TYPE:
800 <  case NRESV_TYPE:
801 <  case CLUSTER_TYPE:
802 <    break;
212 >    MyFree(exptr->name);
213 >    MyFree(exptr->user);
214 >    MyFree(exptr->host);
215 >    MyFree(exptr);
216    }
217 +
218 +  MyFree(conf);
219   }
220  
221   /* check_client()
# Line 816 | Line 231 | report_confitem_types(struct Client *sou
231   *                Look for conf lines which have the same
232   *                status as the flags passed.
233   */
234 < static void *
235 < check_client(va_list args)
234 > int
235 > check_client(struct Client *source_p)
236   {
822  struct Client *source_p = va_arg(args, struct Client *);
823  const char *username = va_arg(args, const char *);
237    int i;
238  
239 <  /* I'm already in big trouble if source_p->localClient is NULL -db */
240 <  if ((i = verify_access(source_p, username)))
828 <    ilog(L_INFO, "Access denied: %s[%s]",
239 >  if ((i = verify_access(source_p)))
240 >    ilog(LOG_TYPE_IRCD, "Access denied: %s[%s]",
241           source_p->name, source_p->sockhost);
242  
243    switch (i)
244    {
245      case TOO_MANY:
246 <      sendto_realops_flags(UMODE_FULL, L_ALL,
246 >      sendto_realops_flags(UMODE_FULL, L_ALL, SEND_NOTICE,
247                             "Too many on IP for %s (%s).",
248 <                           get_client_name(source_p, SHOW_IP),
249 <                           source_p->sockhost);
250 <      ilog(L_INFO,"Too many connections on IP from %s.",
251 <           get_client_name(source_p, SHOW_IP));
248 >                           get_client_name(source_p, SHOW_IP),
249 >                           source_p->sockhost);
250 >      ilog(LOG_TYPE_IRCD, "Too many connections on IP from %s.",
251 >           get_client_name(source_p, SHOW_IP));
252        ++ServerStats.is_ref;
253        exit_client(source_p, &me, "No more connections allowed on that IP");
254        break;
255  
256      case I_LINE_FULL:
257 <      sendto_realops_flags(UMODE_FULL, L_ALL,
258 <                           "I-line is full for %s (%s).",
259 <                           get_client_name(source_p, SHOW_IP),
260 <                           source_p->sockhost);
261 <      ilog(L_INFO,"Too many connections from %s.",
262 <           get_client_name(source_p, SHOW_IP));
257 >      sendto_realops_flags(UMODE_FULL, L_ALL, SEND_NOTICE,
258 >                           "auth{} block is full for %s (%s).",
259 >                           get_client_name(source_p, SHOW_IP),
260 >                           source_p->sockhost);
261 >      ilog(LOG_TYPE_IRCD, "Too many connections from %s.",
262 >           get_client_name(source_p, SHOW_IP));
263        ++ServerStats.is_ref;
264        exit_client(source_p, &me,
265 <                "No more connections allowed in your connection class");
265 >                  "No more connections allowed in your connection class");
266        break;
267  
268      case NOT_AUTHORIZED:
269        ++ServerStats.is_ref;
270        /* jdc - lists server name & port connections are on */
271        /*       a purely cosmetical change */
272 <      sendto_realops_flags(UMODE_UNAUTH, L_ALL,
273 <                           "Unauthorized client connection from %s [%s] on [%s/%u].",
274 <                           get_client_name(source_p, SHOW_IP),
275 <                           source_p->sockhost,
276 <                           source_p->localClient->listener->name,
277 <                           source_p->localClient->listener->port);
278 <      ilog(L_INFO,
279 <          "Unauthorized client connection from %s on [%s/%u].",
280 <          get_client_name(source_p, SHOW_IP),
281 <          source_p->localClient->listener->name,
282 <          source_p->localClient->listener->port);
283 <
284 <      /* XXX It is prolematical whether it is better to use the
873 <       * capture reject code here or rely on the connecting too fast code.
874 <       * - Dianora
875 <       */
876 <      if (REJECT_HOLD_TIME > 0)
877 <      {
878 <        sendto_one(source_p, ":%s NOTICE %s :You are not authorized to use this server",
879 <                   me.name, source_p->name);
880 <        source_p->localClient->reject_delay = CurrentTime + REJECT_HOLD_TIME;
881 <        SetCaptured(source_p);
882 <      }
883 <      else
884 <        exit_client(source_p, &me, "You are not authorized to use this server");
272 >      sendto_realops_flags(UMODE_UNAUTH, L_ALL, SEND_NOTICE,
273 >                           "Unauthorized client connection from %s [%s] on [%s/%u].",
274 >                           get_client_name(source_p, SHOW_IP),
275 >                           source_p->sockhost,
276 >                           source_p->localClient->listener->name,
277 >                           source_p->localClient->listener->port);
278 >      ilog(LOG_TYPE_IRCD,
279 >           "Unauthorized client connection from %s on [%s/%u].",
280 >           get_client_name(source_p, SHOW_IP),
281 >           source_p->localClient->listener->name,
282 >           source_p->localClient->listener->port);
283 >
284 >      exit_client(source_p, &me, "You are not authorized to use this server");
285        break;
286  
287     case BANNED_CLIENT:
288 <     /*
889 <      * Don't exit them immediately, play with them a bit.
890 <      * - Dianora
891 <      */
892 <     if (REJECT_HOLD_TIME > 0)
893 <     {
894 <       source_p->localClient->reject_delay = CurrentTime + REJECT_HOLD_TIME;
895 <       SetCaptured(source_p);
896 <     }
897 <     else
898 <       exit_client(source_p, &me, "Banned");
288 >     exit_client(source_p, &me, "Banned");
289       ++ServerStats.is_ref;
290       break;
291  
# Line 904 | Line 294 | check_client(va_list args)
294       break;
295    }
296  
297 <  return (i < 0 ? NULL : source_p);
297 >  return (i < 0 ? 0 : 1);
298   }
299  
300   /* verify_access()
301   *
302   * inputs       - pointer to client to verify
913 *              - pointer to proposed username
303   * output       - 0 if success -'ve if not
304   * side effect  - find the first (best) I line to attach.
305   */
306   static int
307 < verify_access(struct Client *client_p, const char *username)
307 > verify_access(struct Client *client_p)
308   {
309 <  struct AccessItem *aconf = NULL, *rkconf = NULL;
921 <  struct ConfItem *conf = NULL;
309 >  struct MaskItem *conf = NULL;
310    char non_ident[USERLEN + 1] = { '~', '\0' };
923  const char *uhi[3];
311  
312    if (IsGotId(client_p))
313    {
314 <    aconf = find_address_conf(client_p->host, client_p->username,
315 <                             &client_p->localClient->ip,
316 <                             client_p->localClient->aftype,
314 >    conf = find_address_conf(client_p->host, client_p->username,
315 >                             &client_p->localClient->ip,
316 >                             client_p->localClient->aftype,
317                               client_p->localClient->passwd);
318    }
319    else
320    {
321 <    strlcpy(non_ident+1, username, sizeof(non_ident)-1);
322 <    aconf = find_address_conf(client_p->host,non_ident,
323 <                             &client_p->localClient->ip,
324 <                             client_p->localClient->aftype,
325 <                             client_p->localClient->passwd);
321 >    strlcpy(non_ident + 1, client_p->username, sizeof(non_ident) - 1);
322 >    conf = find_address_conf(client_p->host,non_ident,
323 >                             &client_p->localClient->ip,
324 >                             client_p->localClient->aftype,
325 >                             client_p->localClient->passwd);
326    }
327  
328 <  uhi[0] = IsGotId(client_p) ? client_p->username : non_ident;
942 <  uhi[1] = client_p->host;
943 <  uhi[2] = client_p->sockhost;
944 <
945 <  rkconf = find_regexp_kline(uhi);
946 <
947 <  if (aconf != NULL)
328 >  if (conf != NULL)
329    {
330 <    if (IsConfClient(aconf) && !rkconf)
330 >    if (IsConfClient(conf))
331      {
332 <      conf = unmap_conf_item(aconf);
952 <
953 <      if (IsConfRedir(aconf))
332 >      if (IsConfRedir(conf))
333        {
334          sendto_one(client_p, form_str(RPL_REDIR),
335                     me.name, client_p->name,
336                     conf->name ? conf->name : "",
337 <                   aconf->port);
338 <        return(NOT_AUTHORIZED);
337 >                   conf->port);
338 >        return NOT_AUTHORIZED;
339        }
340  
341 <      if (IsConfDoIdentd(aconf))
342 <        SetNeedId(client_p);
341 >      if (IsConfDoIdentd(conf))
342 >        SetNeedId(client_p);
343  
344        /* Thanks for spoof idea amm */
345 <      if (IsConfDoSpoofIp(aconf))
345 >      if (IsConfDoSpoofIp(conf))
346        {
347 <        conf = unmap_conf_item(aconf);
348 <
349 <        if (!ConfigFileEntry.hide_spoof_ips && IsConfSpoofNotice(aconf))
971 <          sendto_realops_flags(UMODE_ALL, L_ADMIN, "%s spoofing: %s as %s",
347 >        if (!ConfigFileEntry.hide_spoof_ips && IsConfSpoofNotice(conf))
348 >          sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
349 >                               "%s spoofing: %s as %s",
350                                 client_p->name, client_p->host, conf->name);
351          strlcpy(client_p->host, conf->name, sizeof(client_p->host));
352 <        SetIPSpoof(client_p);
352 >        AddFlag(client_p, FLAGS_IP_SPOOFING | FLAGS_AUTH_SPOOF);
353        }
354  
355 <      return(attach_iline(client_p, conf));
355 >      return attach_iline(client_p, conf);
356      }
357 <    else if (rkconf || IsConfKill(aconf) || (ConfigFileEntry.glines && IsConfGline(aconf)))
357 >    else if (IsConfKill(conf) || (ConfigFileEntry.glines && IsConfGline(conf)))
358      {
359 <      /* XXX */
982 <      aconf = rkconf ? rkconf : aconf;
983 <      if (IsConfGline(aconf))
359 >      if (IsConfGline(conf))
360          sendto_one(client_p, ":%s NOTICE %s :*** G-lined", me.name,
361                     client_p->name);
362 <      if (ConfigFileEntry.kline_with_reason)
363 <        sendto_one(client_p, ":%s NOTICE %s :*** Banned %s",
364 <                  me.name, client_p->name, aconf->reason);
989 <      return(BANNED_CLIENT);
362 >      sendto_one(client_p, ":%s NOTICE %s :*** Banned: %s",
363 >                 me.name, client_p->name, conf->reason);
364 >      return BANNED_CLIENT;
365      }
366    }
367  
368 <  return(NOT_AUTHORIZED);
368 >  return NOT_AUTHORIZED;
369   }
370  
371   /* attach_iline()
# Line 1001 | Line 376 | verify_access(struct Client *client_p, c
376   * side effects - do actual attach
377   */
378   static int
379 < attach_iline(struct Client *client_p, struct ConfItem *conf)
379 > attach_iline(struct Client *client_p, struct MaskItem *conf)
380   {
381 <  struct AccessItem *aconf;
1007 <  struct ClassItem *aclass;
381 >  struct ClassItem *class = NULL;
382    struct ip_entry *ip_found;
383    int a_limit_reached = 0;
384 <  int local = 0, global = 0, ident = 0;
384 >  unsigned int local = 0, global = 0, ident = 0;
385 >
386 >  assert(conf->class);
387  
388    ip_found = find_or_add_ip(&client_p->localClient->ip);
389    ip_found->count++;
390    SetIpHash(client_p);
391  
392 <  aconf = map_to_conf(conf);
1017 <  if (aconf->class_ptr == NULL)
1018 <    return NOT_AUTHORIZED;  /* If class is missing, this is best */
1019 <
1020 <  aclass = map_to_conf(aconf->class_ptr);
392 >  class = conf->class;
393  
394    count_user_host(client_p->username, client_p->host,
395                    &global, &local, &ident);
# Line 1026 | Line 398 | attach_iline(struct Client *client_p, st
398     * setting a_limit_reached if any limit is reached.
399     * - Dianora
400     */
401 <  if (MaxTotal(aclass) != 0 && CurrUserCount(aclass) >= MaxTotal(aclass))
401 >  if (class->max_total != 0 && class->ref_count >= class->max_total)
402      a_limit_reached = 1;
403 <  else if (MaxPerIp(aclass) != 0 && ip_found->count > MaxPerIp(aclass))
403 >  else if (class->max_perip != 0 && ip_found->count > class->max_perip)
404      a_limit_reached = 1;
405 <  else if (MaxLocal(aclass) != 0 && local >= MaxLocal(aclass))
405 >  else if (class->max_local != 0 && local >= class->max_local)
406      a_limit_reached = 1;
407 <  else if (MaxGlobal(aclass) != 0 && global >= MaxGlobal(aclass))
407 >  else if (class->max_global != 0 && global >= class->max_global)
408      a_limit_reached = 1;
409 <  else if (MaxIdent(aclass) != 0 && ident >= MaxIdent(aclass) &&
409 >  else if (class->max_ident != 0 && ident >= class->max_ident &&
410             client_p->username[0] != '~')
411      a_limit_reached = 1;
412  
413    if (a_limit_reached)
414    {
415 <    if (!IsConfExemptLimits(aconf))
415 >    if (!IsConfExemptLimits(conf))
416        return TOO_MANY;   /* Already at maximum allowed */
417  
418      sendto_one(client_p,
# Line 1061 | Line 433 | attach_iline(struct Client *client_p, st
433   void
434   init_ip_hash_table(void)
435   {
436 <  ip_entry_heap = BlockHeapCreate("ip", sizeof(struct ip_entry),
1065 <    2 * hard_fdlimit);
436 >  ip_entry_pool = mp_pool_new(sizeof(struct ip_entry), MP_CHUNK_SIZE_IP_ENTRY);
437    memset(ip_hash_table, 0, sizeof(ip_hash_table));
438   }
439  
# Line 1111 | Line 482 | find_or_add_ip(struct irc_ssaddr *ip_in)
482    if (ip_entries_count >= 2 * hard_fdlimit)
483      garbage_collect_ip_entries();
484  
485 <  newptr = BlockHeapAlloc(ip_entry_heap);
485 >  newptr = mp_pool_get(ip_entry_pool);
486 >  memset(newptr, 0, sizeof(*newptr));
487    ip_entries_count++;
488    memcpy(&newptr->ip, ip_in, sizeof(struct irc_ssaddr));
489  
# Line 1162 | Line 534 | remove_one_ip(struct irc_ssaddr *ip_in)
534      if (ptr->count > 0)
535        ptr->count--;
536      if (ptr->count == 0 &&
537 <        (CurrentTime-ptr->last_attempt) >= ConfigFileEntry.throttle_time)
537 >        (CurrentTime-ptr->last_attempt) >= ConfigFileEntry.throttle_time)
538      {
539        if (last_ptr != NULL)
540 <        last_ptr->next = ptr->next;
540 >        last_ptr->next = ptr->next;
541        else
542 <        ip_hash_table[hash_index] = ptr->next;
542 >        ip_hash_table[hash_index] = ptr->next;
543  
544 <      BlockHeapFree(ip_entry_heap, ptr);
544 >      mp_pool_release(ptr);
545        ip_entries_count--;
546        return;
547      }
# Line 1190 | Line 562 | hash_ip(struct irc_ssaddr *addr)
562    {
563      struct sockaddr_in *v4 = (struct sockaddr_in *)addr;
564      int hash;
565 <    u_int32_t ip;
565 >    uint32_t ip;
566  
567      ip   = ntohl(v4->sin_addr.s_addr);
568      hash = ((ip >> 12) + ip) & (IP_HASH_SIZE-1);
# Line 1201 | Line 573 | hash_ip(struct irc_ssaddr *addr)
573    {
574      int hash;
575      struct sockaddr_in6 *v6 = (struct sockaddr_in6 *)addr;
576 <    u_int32_t *ip = (u_int32_t *)&v6->sin6_addr.s6_addr;
576 >    uint32_t *ip = (uint32_t *)&v6->sin6_addr.s6_addr;
577  
578      hash  = ip[0] ^ ip[3];
579      hash ^= hash >> 16;  
# Line 1272 | Line 644 | garbage_collect_ip_entries(void)
644            last_ptr->next = ptr->next;
645          else
646            ip_hash_table[i] = ptr->next;
647 <        BlockHeapFree(ip_entry_heap, ptr);
647 >        mp_pool_release(ptr);
648          ip_entries_count--;
649        }
650        else
# Line 1289 | Line 661 | garbage_collect_ip_entries(void)
661   * side effects - Disassociate configuration from the client.
662   *                Also removes a class from the list if marked for deleting.
663   */
664 < int
665 < detach_conf(struct Client *client_p, ConfType type)
664 > void
665 > detach_conf(struct Client *client_p, enum maskitem_type type)
666   {
667 <  dlink_node *ptr, *next_ptr;
1296 <  struct ConfItem *conf;
1297 <  struct ClassItem *aclass;
1298 <  struct AccessItem *aconf;
1299 <  struct ConfItem *aclass_conf;
1300 <  struct MatchItem *match_item;
667 >  dlink_node *ptr = NULL, *next_ptr = NULL;
668  
669    DLINK_FOREACH_SAFE(ptr, next_ptr, client_p->localClient->confs.head)
670    {
671 <    conf = ptr->data;
1305 <
1306 <    if (type == CONF_TYPE || conf->type == type)
1307 <    {
1308 <      dlinkDelete(ptr, &client_p->localClient->confs);
1309 <      free_dlink_node(ptr);
1310 <
1311 <      switch (conf->type)
1312 <      {
1313 <      case CLIENT_TYPE:
1314 <      case OPER_TYPE:
1315 <      case SERVER_TYPE:
1316 <        aconf = map_to_conf(conf);
1317 <
1318 <        assert(aconf->clients > 0);
1319 <
1320 <        if ((aclass_conf = ClassPtr(aconf)) != NULL)
1321 <        {
1322 <          aclass = map_to_conf(aclass_conf);
671 >    struct MaskItem *conf = ptr->data;
672  
673 <          assert(aclass->curr_user_count > 0);
673 >    assert(conf->type & (CONF_CLIENT | CONF_OPER | CONF_SERVER));
674 >    assert(conf->ref_count > 0);
675 >    assert(conf->class->ref_count > 0);
676  
677 <          if (conf->type == CLIENT_TYPE)
678 <            remove_from_cidr_check(&client_p->localClient->ip, aclass);
1328 <          if (--aclass->curr_user_count == 0 && aclass->active == 0)
1329 <            delete_conf_item(aclass_conf);
1330 <        }
1331 <
1332 <        if (--aconf->clients == 0 && IsConfIllegal(aconf))
1333 <          delete_conf_item(conf);
677 >    if (!(conf->type & type))
678 >      continue;
679  
680 <        break;
680 >    dlinkDelete(ptr, &client_p->localClient->confs);
681 >    free_dlink_node(ptr);
682  
683 <      case LEAF_TYPE:
684 <      case HUB_TYPE:
1339 <        match_item = map_to_conf(conf);
1340 <        if (match_item->ref_count == 0 && match_item->illegal)
1341 <          delete_conf_item(conf);
1342 <        break;
1343 <      default:
1344 <        break;
1345 <      }
683 >    if (conf->type == CONF_CLIENT)
684 >      remove_from_cidr_check(&client_p->localClient->ip, conf->class);
685  
686 <      if (type != CONF_TYPE)
687 <        return 0;
686 >    if (--conf->class->ref_count == 0 && conf->class->active == 0)
687 >    {
688 >      class_free(conf->class);
689 >      conf->class = NULL;
690      }
1350  }
691  
692 <  return -1;
692 >    if (--conf->ref_count == 0 && conf->active == 0)
693 >      conf_free(conf);
694 >  }
695   }
696  
697   /* attach_conf()
# Line 1363 | Line 705 | detach_conf(struct Client *client_p, Con
705   *                attachment if there was an old one...
706   */
707   int
708 < attach_conf(struct Client *client_p, struct ConfItem *conf)
708 > attach_conf(struct Client *client_p, struct MaskItem *conf)
709   {
710    if (dlinkFind(&client_p->localClient->confs, conf) != NULL)
711      return 1;
712  
713 <  if (conf->type == CLIENT_TYPE ||
714 <      conf->type == SERVER_TYPE ||
715 <      conf->type == OPER_TYPE)
716 <  {
1375 <    struct AccessItem *aconf = map_to_conf(conf);
1376 <    struct ClassItem *aclass = map_to_conf(aconf->class_ptr);
1377 <
1378 <    if (IsConfIllegal(aconf))
1379 <      return NOT_AUTHORIZED;
713 >  if (conf->type == CONF_CLIENT)
714 >    if (cidr_limit_reached(IsConfExemptLimits(conf),
715 >                           &client_p->localClient->ip, conf->class))
716 >      return TOO_MANY;    /* Already at maximum allowed */
717  
718 <    if (conf->type == CLIENT_TYPE)
719 <      if (cidr_limit_reached(IsConfExemptLimits(aconf),
1383 <                             &client_p->localClient->ip, aclass))
1384 <        return TOO_MANY;    /* Already at maximum allowed */
1385 <
1386 <    CurrUserCount(aclass)++;
1387 <    aconf->clients++;
1388 <  }
1389 <  else if (conf->type == HUB_TYPE || conf->type == LEAF_TYPE)
1390 <  {
1391 <    struct MatchItem *match_item = map_to_conf(conf);
1392 <    match_item->ref_count++;
1393 <  }
718 >  conf->class->ref_count++;
719 >  conf->ref_count++;
720  
721    dlinkAdd(conf, make_dlink_node(), &client_p->localClient->confs);
722  
# Line 1410 | Line 736 | attach_connect_block(struct Client *clie
736                       const char *host)
737   {
738    dlink_node *ptr;
739 <  struct ConfItem *conf;
1414 <  struct AccessItem *aconf;
739 >  struct MaskItem *conf = NULL;
740  
741    assert(client_p != NULL);
742    assert(host != NULL);
# Line 1422 | Line 747 | attach_connect_block(struct Client *clie
747    DLINK_FOREACH(ptr, server_items.head)
748    {
749      conf = ptr->data;
1425    aconf = map_to_conf(conf);
750  
751 <    if (match(conf->name, name) == 0 || match(aconf->host, host) == 0)
751 >    if (match(conf->name, name) || match(conf->host, host))
752        continue;
753  
754      attach_conf(client_p, conf);
# Line 1434 | Line 758 | attach_connect_block(struct Client *clie
758    return 0;
759   }
760  
1437 /* find_conf_exact()
1438 *
1439 * inputs       - type of ConfItem
1440 *              - pointer to name to find
1441 *              - pointer to username to find
1442 *              - pointer to host to find
1443 * output       - NULL or pointer to conf found
1444 * side effects - find a conf entry which matches the hostname
1445 *                and has the same name.
1446 */
1447 struct ConfItem *
1448 find_conf_exact(ConfType type, const char *name, const char *user,
1449                const char *host)
1450 {
1451  dlink_node *ptr;
1452  dlink_list *list_p;
1453  struct ConfItem *conf = NULL;
1454  struct AccessItem *aconf;
1455
1456  /* Only valid for OPER_TYPE and ...? */
1457  list_p = map_to_list(type);
1458
1459  DLINK_FOREACH(ptr, (*list_p).head)
1460  {
1461    conf = ptr->data;
1462
1463    if (conf->name == NULL)
1464      continue;
1465    aconf = map_to_conf(conf);
1466    if (aconf->host == NULL)
1467      continue;
1468    if (irccmp(conf->name, name) != 0)
1469      continue;
1470
1471    /*
1472    ** Accept if the *real* hostname (usually sockethost)
1473    ** socket host) matches *either* host or name field
1474    ** of the configuration.
1475    */
1476    if (!match(aconf->host, host) || !match(aconf->user, user))
1477      continue;
1478    if (type == OPER_TYPE)
1479    {
1480      struct ClassItem *aclass = map_to_conf(aconf->class_ptr);
1481
1482      if (aconf->clients >= MaxTotal(aclass))
1483        continue;
1484    }
1485
1486    return conf;
1487  }
1488
1489  return NULL;
1490 }
1491
761   /* find_conf_name()
762   *
763   * inputs       - pointer to conf link list to search
# Line 1498 | Line 767 | find_conf_exact(ConfType type, const cha
767   * side effects - find a conf entry which matches the name
768   *                and has the given mask.
769   */
770 < struct ConfItem *
771 < find_conf_name(dlink_list *list, const char *name, ConfType type)
770 > struct MaskItem *
771 > find_conf_name(dlink_list *list, const char *name, enum maskitem_type type)
772   {
773    dlink_node *ptr;
774 <  struct ConfItem* conf;
774 >  struct MaskItem* conf;
775  
776    DLINK_FOREACH(ptr, list->head)
777    {
# Line 1511 | Line 780 | find_conf_name(dlink_list *list, const c
780      if (conf->type == type)
781      {
782        if (conf->name && (irccmp(conf->name, name) == 0 ||
783 <                         match(conf->name, name)))
783 >                         !match(conf->name, name)))
784        return conf;
785      }
786    }
# Line 1526 | Line 795 | find_conf_name(dlink_list *list, const c
795   * side effects - none
796   */
797   static dlink_list *
798 < map_to_list(ConfType type)
798 > map_to_list(enum maskitem_type type)
799   {
800    switch(type)
801    {
802 <  case RXLINE_TYPE:
1534 <    return(&rxconf_items);
1535 <    break;
1536 <  case XLINE_TYPE:
802 >  case CONF_XLINE:
803      return(&xconf_items);
804      break;
805 <  case ULINE_TYPE:
805 >  case CONF_ULINE:
806      return(&uconf_items);
807      break;
808 <  case NRESV_TYPE:
808 >  case CONF_NRESV:
809      return(&nresv_items);
810      break;
811 <  case OPER_TYPE:
811 >  case CONF_CRESV:
812 >    return(&cresv_items);
813 >  case CONF_OPER:
814      return(&oconf_items);
815      break;
816 <  case CLASS_TYPE:
1549 <    return(&class_items);
1550 <    break;
1551 <  case SERVER_TYPE:
816 >  case CONF_SERVER:
817      return(&server_items);
818      break;
819 <  case CLUSTER_TYPE:
819 >  case CONF_SERVICE:
820 >    return(&service_items);
821 >    break;
822 >  case CONF_CLUSTER:
823      return(&cluster_items);
824      break;
1557  case CONF_TYPE:
1558  case GLINE_TYPE:
1559  case KLINE_TYPE:
1560  case DLINE_TYPE:
1561  case CRESV_TYPE:
825    default:
826      return NULL;
827    }
# Line 1570 | Line 833 | map_to_list(ConfType type)
833   *              - pointer to name string to find
834   *              - pointer to user
835   *              - pointer to host
836 < *              - optional action to match on as well
837 < * output       - NULL or pointer to found struct MatchItem
836 > *              - optional flags to match on as well
837 > * output       - NULL or pointer to found struct MaskItem
838   * side effects - looks for a match on name field
839   */
840 < struct ConfItem *
841 < find_matching_name_conf(ConfType type, const char *name, const char *user,
842 <                        const char *host, int action)
840 > struct MaskItem *
841 > find_matching_name_conf(enum maskitem_type type, const char *name, const char *user,
842 >                        const char *host, unsigned int flags)
843   {
844    dlink_node *ptr=NULL;
845 <  struct ConfItem *conf=NULL;
1583 <  struct AccessItem *aconf=NULL;
1584 <  struct MatchItem *match_item=NULL;
845 >  struct MaskItem *conf=NULL;
846    dlink_list *list_p = map_to_list(type);
847  
848    switch (type)
849    {
850 <    case RXLINE_TYPE:
851 <      DLINK_FOREACH(ptr, list_p->head)
852 <      {
853 <        conf = ptr->data;
1593 <        assert(conf->regexpname);
850 >  case CONF_SERVICE:
851 >    DLINK_FOREACH(ptr, list_p->head)
852 >    {
853 >      conf = ptr->data;
854  
855 <        if (!ircd_pcre_exec(conf->regexpname, name))
856 <          return conf;
857 <      }
858 <      break;
855 >      if (EmptyString(conf->name))
856 >        continue;
857 >      if ((name != NULL) && !irccmp(name, conf->name))
858 >        return conf;
859 >    }
860 >    break;
861  
862 <  case XLINE_TYPE:
863 <  case ULINE_TYPE:
864 <  case NRESV_TYPE:
862 >  case CONF_XLINE:
863 >  case CONF_ULINE:
864 >  case CONF_NRESV:
865 >  case CONF_CRESV:
866      DLINK_FOREACH(ptr, list_p->head)
867      {
868        conf = ptr->data;
869  
1607      match_item = map_to_conf(conf);
870        if (EmptyString(conf->name))
871 <        continue;
872 <      if ((name != NULL) && match_esc(conf->name, name))
871 >        continue;
872 >      if ((name != NULL) && !match(conf->name, name))
873        {
874 <        if ((user == NULL && (host == NULL)))
875 <          return conf;
876 <        if ((match_item->action & action) != action)
874 >        if ((user == NULL && (host == NULL)))
875 >          return conf;
876 >        if ((conf->flags & flags) != flags)
877            continue;
878 <        if (EmptyString(match_item->user) || EmptyString(match_item->host))
879 <          return conf;
880 <        if (match(match_item->user, user) && match(match_item->host, host))
881 <          return conf;
878 >        if (EmptyString(conf->user) || EmptyString(conf->host))
879 >          return conf;
880 >        if (!match(conf->user, user) && !match(conf->host, host))
881 >          return conf;
882        }
883      }
884        break;
885  
886 <  case SERVER_TYPE:
886 >  case CONF_SERVER:
887      DLINK_FOREACH(ptr, list_p->head)
888      {
889        conf = ptr->data;
1628      aconf = map_to_conf(conf);
890  
891 <      if ((name != NULL) && match_esc(name, conf->name))
891 >      if ((name != NULL) && !match(name, conf->name))
892          return conf;
893 <      else if ((host != NULL) && match_esc(host, aconf->host))
893 >      else if ((host != NULL) && !match(host, conf->host))
894          return conf;
895      }
896      break;
# Line 1646 | Line 907 | find_matching_name_conf(ConfType type, c
907   *              - pointer to name string to find
908   *              - pointer to user
909   *              - pointer to host
910 < * output       - NULL or pointer to found struct MatchItem
910 > * output       - NULL or pointer to found struct MaskItem
911   * side effects - looks for an exact match on name field
912   */
913 < struct ConfItem *
914 < find_exact_name_conf(ConfType type, const char *name,
913 > struct MaskItem *
914 > find_exact_name_conf(enum maskitem_type type, const struct Client *who, const char *name,
915                       const char *user, const char *host)
916   {
917    dlink_node *ptr = NULL;
918 <  struct AccessItem *aconf;
919 <  struct ConfItem *conf;
1659 <  struct MatchItem *match_item;
1660 <  dlink_list *list_p;
1661 <
1662 <  list_p = map_to_list(type);
918 >  struct MaskItem *conf;
919 >  dlink_list *list_p = map_to_list(type);
920  
921    switch(type)
922    {
923 <  case RXLINE_TYPE:
924 <  case XLINE_TYPE:
925 <  case ULINE_TYPE:
926 <  case NRESV_TYPE:
923 >  case CONF_XLINE:
924 >  case CONF_ULINE:
925 >  case CONF_NRESV:
926 >  case CONF_CRESV:
927  
928      DLINK_FOREACH(ptr, list_p->head)
929      {
930        conf = ptr->data;
931 <      match_item = (struct MatchItem *)map_to_conf(conf);
931 >
932        if (EmptyString(conf->name))
933 <        continue;
933 >        continue;
934      
935        if (irccmp(conf->name, name) == 0)
936        {
937 <        if ((user == NULL && (host == NULL)))
938 <          return (conf);
939 <        if (EmptyString(match_item->user) || EmptyString(match_item->host))
940 <          return (conf);
941 <        if (match(match_item->user, user) && match(match_item->host, host))
942 <          return (conf);
937 >        if ((user == NULL && (host == NULL)))
938 >          return conf;
939 >        if (EmptyString(conf->user) || EmptyString(conf->host))
940 >          return conf;
941 >        if (!match(conf->user, user) && !match(conf->host, host))
942 >          return conf;
943        }
944      }
945      break;
946  
947 <  case OPER_TYPE:
947 >  case CONF_OPER:
948      DLINK_FOREACH(ptr, list_p->head)
949      {
950        conf = ptr->data;
951 <      aconf = (struct AccessItem *)map_to_conf(conf);
951 >
952        if (EmptyString(conf->name))
953 <        continue;
954 <    
955 <      if (irccmp(conf->name, name) == 0)
953 >        continue;
954 >
955 >      if (!irccmp(conf->name, name))
956        {
957 <        if ((user == NULL && (host == NULL)))
958 <          return (conf);
959 <        if (EmptyString(aconf->user) || EmptyString(aconf->host))
960 <          return (conf);
961 <        if (match(aconf->user, user) && match(aconf->host, host))
962 <          return (conf);
957 >        if (!who)
958 >          return conf;
959 >        if (EmptyString(conf->user) || EmptyString(conf->host))
960 >          return NULL;
961 >        if (!match(conf->user, who->username))
962 >        {
963 >          switch (conf->htype)
964 >          {
965 >            case HM_HOST:
966 >              if (!match(conf->host, who->host) || !match(conf->host, who->sockhost))
967 >                if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
968 >                  return conf;
969 >              break;
970 >            case HM_IPV4:
971 >              if (who->localClient->aftype == AF_INET)
972 >                if (match_ipv4(&who->localClient->ip, &conf->addr, conf->bits))
973 >                  if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
974 >                    return conf;
975 >              break;
976 > #ifdef IPV6
977 >            case HM_IPV6:
978 >              if (who->localClient->aftype == AF_INET6)
979 >                if (match_ipv6(&who->localClient->ip, &conf->addr, conf->bits))
980 >                  if (!conf->class->max_total || conf->class->ref_count < conf->class->max_total)
981 >                    return conf;
982 >              break;
983 > #endif
984 >            default:
985 >              assert(0);
986 >          }
987 >        }
988        }
989      }
990 +
991      break;
992  
993 <  case SERVER_TYPE:
993 >  case CONF_SERVER:
994      DLINK_FOREACH(ptr, list_p->head)
995      {
996        conf = ptr->data;
997 <      aconf = (struct AccessItem *)map_to_conf(conf);
997 >
998        if (EmptyString(conf->name))
999 <        continue;
999 >        continue;
1000      
1001        if (name == NULL)
1002        {
1003 <        if (EmptyString(aconf->host))
1004 <          continue;
1005 <        if (irccmp(aconf->host, host) == 0)
1006 <          return(conf);
1003 >        if (EmptyString(conf->host))
1004 >          continue;
1005 >        if (irccmp(conf->host, host) == 0)
1006 >          return conf;
1007        }
1008        else if (irccmp(conf->name, name) == 0)
1009 <      {
1727 <          return (conf);
1728 <      }
1009 >        return conf;
1010      }
1730    break;
1011  
1732  case CLASS_TYPE:
1733    DLINK_FOREACH(ptr, list_p->head)
1734    {
1735      conf = ptr->data;
1736      if (EmptyString(conf->name))
1737        continue;
1738    
1739      if (irccmp(conf->name, name) == 0)
1740        return (conf);
1741    }
1012      break;
1013  
1014    default:
1015      break;
1016    }
1017 <  return(NULL);
1017 >
1018 >  return NULL;
1019   }
1020  
1021   /* rehash()
# Line 1757 | Line 1028 | int
1028   rehash(int sig)
1029   {
1030    if (sig != 0)
1031 <    sendto_realops_flags(UMODE_ALL, L_ALL,
1031 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1032                           "Got signal SIGHUP, reloading ircd.conf file");
1033  
1763 #ifndef _WIN32
1034    restart_resolver();
1035 < #endif
1035 >
1036    /* don't close listeners until we know we can go ahead with the rehash */
1037  
1038    /* Check to see if we magically got(or lost) IPv6 support */
# Line 1773 | Line 1043 | rehash(int sig)
1043    if (ServerInfo.description != NULL)
1044      strlcpy(me.info, ServerInfo.description, sizeof(me.info));
1045  
1776 #ifndef STATIC_MODULES
1046    load_conf_modules();
1778 #endif
1779
1780  flush_deleted_I_P();
1047  
1048    rehashed_klines = 1;
1049  
1050 <  if (ConfigLoggingEntry.use_logging)
1785 <    reopen_log(logFileName);
1786 <
1787 <  return(0);
1050 >  return 0;
1051   }
1052  
1053   /* set_default_conf()
# Line 1802 | Line 1065 | set_default_conf(void)
1065    /* verify init_class() ran, this should be an unnecessary check
1066     * but its not much work.
1067     */
1068 <  assert(class_default == (struct ConfItem *) class_items.tail->data);
1068 >  assert(class_default == class_get_list()->tail->data);
1069  
1070   #ifdef HAVE_LIBCRYPTO
1071    ServerInfo.rsa_private_key = NULL;
# Line 1812 | Line 1075 | set_default_conf(void)
1075    /* ServerInfo.name is not rehashable */
1076    /* ServerInfo.name = ServerInfo.name; */
1077    ServerInfo.description = NULL;
1078 <  DupString(ServerInfo.network_name, NETWORK_NAME_DEFAULT);
1079 <  DupString(ServerInfo.network_desc, NETWORK_DESC_DEFAULT);
1078 >  ServerInfo.network_name = xstrdup(NETWORK_NAME_DEFAULT);
1079 >  ServerInfo.network_desc = xstrdup(NETWORK_DESC_DEFAULT);
1080  
1081    memset(&ServerInfo.ip, 0, sizeof(ServerInfo.ip));
1082    ServerInfo.specific_ipv4_vhost = 0;
# Line 1821 | Line 1084 | set_default_conf(void)
1084    ServerInfo.specific_ipv6_vhost = 0;
1085  
1086    ServerInfo.max_clients = MAXCLIENTS_MAX;
1087 +  ServerInfo.max_nick_length = 9;
1088 +  ServerInfo.max_topic_length = 80;
1089  
1090    ServerInfo.hub = 0;
1826  delete_capability("HUB");
1091    ServerInfo.dns_host.sin_addr.s_addr = 0;
1092    ServerInfo.dns_host.sin_port = 0;
1093    AdminInfo.name = NULL;
1094    AdminInfo.email = NULL;
1095    AdminInfo.description = NULL;
1096  
1097 <  set_log_level(L_NOTICE);
1097 >  log_del_all();
1098 >
1099    ConfigLoggingEntry.use_logging = 1;
1100 <  ConfigLoggingEntry.operlog[0] = '\0';
1101 <  ConfigLoggingEntry.userlog[0] = '\0';
1837 <  ConfigLoggingEntry.klinelog[0] = '\0';
1838 <  ConfigLoggingEntry.glinelog[0] = '\0';
1839 <  ConfigLoggingEntry.killlog[0] = '\0';
1840 <  ConfigLoggingEntry.operspylog[0] = '\0';
1841 <  ConfigLoggingEntry.ioerrlog[0] = '\0';
1842 <  ConfigLoggingEntry.failed_operlog[0] = '\0';
1843 <
1844 <  ConfigChannel.disable_fake_channels = NO;
1845 <  ConfigChannel.restrict_channels = NO;
1846 <  ConfigChannel.disable_local_channels = NO;
1847 <  ConfigChannel.use_invex = YES;
1848 <  ConfigChannel.use_except = YES;
1849 <  ConfigChannel.use_knock = YES;
1100 >
1101 >  ConfigChannel.disable_fake_channels = 0;
1102    ConfigChannel.knock_delay = 300;
1103    ConfigChannel.knock_delay_channel = 60;
1104 <  ConfigChannel.max_chans_per_user = 15;
1105 <  ConfigChannel.quiet_on_ban = YES;
1104 >  ConfigChannel.max_chans_per_user = 25;
1105 >  ConfigChannel.max_chans_per_oper = 50;
1106    ConfigChannel.max_bans = 25;
1107    ConfigChannel.default_split_user_count = 0;
1108    ConfigChannel.default_split_server_count = 0;
1109 <  ConfigChannel.no_join_on_split = NO;
1110 <  ConfigChannel.no_create_on_split = NO;
1859 <  ConfigChannel.burst_topicwho = YES;
1109 >  ConfigChannel.no_join_on_split = 0;
1110 >  ConfigChannel.no_create_on_split = 0;
1111  
1112 <  ConfigServerHide.flatten_links = NO;
1112 >  ConfigServerHide.flatten_links = 0;
1113    ConfigServerHide.links_delay = 300;
1114 <  ConfigServerHide.hidden = NO;
1115 <  ConfigServerHide.disable_hidden = NO;
1116 <  ConfigServerHide.hide_servers = NO;
1117 <  DupString(ConfigServerHide.hidden_name, NETWORK_NAME_DEFAULT);
1118 <  ConfigServerHide.hide_server_ips = NO;
1114 >  ConfigServerHide.hidden = 0;
1115 >  ConfigServerHide.hide_servers = 0;
1116 >  ConfigServerHide.hide_services = 0;
1117 >  ConfigServerHide.hidden_name = xstrdup(NETWORK_NAME_DEFAULT);
1118 >  ConfigServerHide.hide_server_ips = 0;
1119 >  ConfigServerHide.disable_remote_commands = 0;
1120  
1121    
1122 +  ConfigFileEntry.service_name = xstrdup(SERVICE_NAME_DEFAULT);
1123    ConfigFileEntry.max_watch = WATCHSIZE_DEFAULT;
1124 +  ConfigFileEntry.cycle_on_host_change = 1;
1125 +  ConfigFileEntry.glines = 0;
1126 +  ConfigFileEntry.gline_time = 12 * 3600;
1127 +  ConfigFileEntry.gline_request_time = GLINE_REQUEST_EXPIRE_DEFAULT;
1128    ConfigFileEntry.gline_min_cidr = 16;
1129    ConfigFileEntry.gline_min_cidr6 = 48;
1130 <  ConfigFileEntry.invisible_on_connect = YES;
1131 <  ConfigFileEntry.burst_away = NO;
1132 <  ConfigFileEntry.use_whois_actually = YES;
1133 <  ConfigFileEntry.tkline_expire_notices = YES;
1134 <  ConfigFileEntry.hide_spoof_ips = YES;
1878 <  ConfigFileEntry.ignore_bogus_ts = NO;
1879 <  ConfigFileEntry.disable_auth = NO;
1880 <  ConfigFileEntry.disable_remote = NO;
1130 >  ConfigFileEntry.invisible_on_connect = 1;
1131 >  ConfigFileEntry.tkline_expire_notices = 1;
1132 >  ConfigFileEntry.hide_spoof_ips = 1;
1133 >  ConfigFileEntry.ignore_bogus_ts = 0;
1134 >  ConfigFileEntry.disable_auth = 0;
1135    ConfigFileEntry.kill_chase_time_limit = 90;
1136 <  ConfigFileEntry.default_floodcount = 8; /* XXX */
1137 <  ConfigFileEntry.failed_oper_notice = YES;
1138 <  ConfigFileEntry.dots_in_ident = 0;      /* XXX */
1885 <  ConfigFileEntry.dot_in_ip6_addr = YES;
1136 >  ConfigFileEntry.default_floodcount = 8;
1137 >  ConfigFileEntry.failed_oper_notice = 1;
1138 >  ConfigFileEntry.dots_in_ident = 0;
1139    ConfigFileEntry.min_nonwildcard = 4;
1140    ConfigFileEntry.min_nonwildcard_simple = 3;
1141    ConfigFileEntry.max_accept = 20;
1142 <  ConfigFileEntry.anti_nick_flood = NO;   /* XXX */
1142 >  ConfigFileEntry.anti_nick_flood = 0;
1143    ConfigFileEntry.max_nick_time = 20;
1144    ConfigFileEntry.max_nick_changes = 5;
1145 <  ConfigFileEntry.anti_spam_exit_message_time = 0;  /* XXX */
1145 >  ConfigFileEntry.anti_spam_exit_message_time = 0;
1146    ConfigFileEntry.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
1147 <  ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;  /* XXX */
1148 <  ConfigFileEntry.kline_with_reason = YES;
1149 <  ConfigFileEntry.kline_reason = NULL;
1897 <  ConfigFileEntry.warn_no_nline = YES;
1898 <  ConfigFileEntry.stats_o_oper_only = NO; /* XXX */
1147 >  ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;
1148 >  ConfigFileEntry.warn_no_nline = 1;
1149 >  ConfigFileEntry.stats_o_oper_only = 0;
1150    ConfigFileEntry.stats_k_oper_only = 1;  /* masked */
1151    ConfigFileEntry.stats_i_oper_only = 1;  /* masked */
1152 <  ConfigFileEntry.stats_P_oper_only = NO;
1152 >  ConfigFileEntry.stats_P_oper_only = 0;
1153 >  ConfigFileEntry.stats_u_oper_only = 0;
1154    ConfigFileEntry.caller_id_wait = 60;
1155 <  ConfigFileEntry.opers_bypass_callerid = NO;
1155 >  ConfigFileEntry.opers_bypass_callerid = 0;
1156    ConfigFileEntry.pace_wait = 10;
1157    ConfigFileEntry.pace_wait_simple = 1;
1158 <  ConfigFileEntry.short_motd = NO;
1159 <  ConfigFileEntry.ping_cookie = NO;
1160 <  ConfigFileEntry.no_oper_flood = NO;     /* XXX */
1161 <  ConfigFileEntry.true_no_oper_flood = NO;  /* XXX */
1162 <  ConfigFileEntry.oper_pass_resv = YES;
1911 <  ConfigFileEntry.glines = NO;            /* XXX */
1912 <  ConfigFileEntry.gline_time = 12 * 3600; /* XXX */
1913 <  ConfigFileEntry.idletime = 0;
1158 >  ConfigFileEntry.short_motd = 0;
1159 >  ConfigFileEntry.ping_cookie = 0;
1160 >  ConfigFileEntry.no_oper_flood = 0;
1161 >  ConfigFileEntry.true_no_oper_flood = 0;
1162 >  ConfigFileEntry.oper_pass_resv = 1;
1163    ConfigFileEntry.max_targets = MAX_TARGETS_DEFAULT;
1164 <  ConfigFileEntry.client_flood = CLIENT_FLOOD_DEFAULT;
1916 <  ConfigFileEntry.oper_only_umodes = UMODE_DEBUG;  /* XXX */
1164 >  ConfigFileEntry.oper_only_umodes = UMODE_DEBUG;
1165    ConfigFileEntry.oper_umodes = UMODE_BOTS | UMODE_LOCOPS | UMODE_SERVNOTICE |
1166 <    UMODE_OPERWALL | UMODE_WALLOP;        /* XXX */
1167 <  DupString(ConfigFileEntry.servlink_path, SLPATH);
1920 < #ifdef HAVE_LIBCRYPTO
1921 <  /* jdc -- This is our default value for a cipher.  According to the
1922 <   *        CRYPTLINK document (doc/cryptlink.txt), BF/128 must be supported
1923 <   *        under all circumstances if cryptlinks are enabled.  So,
1924 <   *        this will be our default.
1925 <   *
1926 <   *        NOTE: I apologise for the hard-coded value of "1" (BF/128).
1927 <   *              This should be moved into a find_cipher() routine.
1928 <   */
1929 <  ConfigFileEntry.default_cipher_preference = &CipherTable[1];
1930 < #endif
1931 <  ConfigFileEntry.use_egd = NO;
1166 >    UMODE_OPERWALL | UMODE_WALLOP;
1167 >  ConfigFileEntry.use_egd = 0;
1168    ConfigFileEntry.egdpool_path = NULL;
1933 #ifdef HAVE_LIBZ
1934  ConfigFileEntry.compression_level = 0;
1935 #endif
1169    ConfigFileEntry.throttle_time = 10;
1170   }
1171  
1172 + static void
1173 + validate_conf(void)
1174 + {
1175 +  if (ConfigFileEntry.ts_warn_delta < TS_WARN_DELTA_MIN)
1176 +    ConfigFileEntry.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
1177 +
1178 +  if (ConfigFileEntry.ts_max_delta < TS_MAX_DELTA_MIN)
1179 +    ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;
1180 +
1181 +  if (ServerInfo.network_name == NULL)
1182 +    ServerInfo.network_name = xstrdup(NETWORK_NAME_DEFAULT);
1183 +
1184 +  if (ServerInfo.network_desc == NULL)
1185 +    ServerInfo.network_desc = xstrdup(NETWORK_DESC_DEFAULT);
1186 +
1187 +  if (ConfigFileEntry.service_name == NULL)
1188 +    ConfigFileEntry.service_name = xstrdup(SERVICE_NAME_DEFAULT);
1189 +
1190 +  ConfigFileEntry.max_watch = IRCD_MAX(ConfigFileEntry.max_watch, WATCHSIZE_MIN);
1191 + }
1192 +
1193   /* read_conf()
1194   *
1195   * inputs       - file descriptor pointing to config file to use
# Line 1943 | Line 1197 | set_default_conf(void)
1197   * side effects - Read configuration file.
1198   */
1199   static void
1200 < read_conf(FBFILE *file)
1200 > read_conf(FILE *file)
1201   {
1202    lineno = 0;
1203  
1204    set_default_conf(); /* Set default values prior to conf parsing */
1205    conf_parser_ctx.pass = 1;
1206 <  yyparse();          /* pick up the classes first */
1206 >  yyparse();          /* pick up the classes first */
1207  
1208 <  fbrewind(file);
1208 >  rewind(file);
1209  
1210    conf_parser_ctx.pass = 2;
1211    yyparse();          /* Load the values from the conf */
1212    validate_conf();    /* Check to make sure some values are still okay. */
1213                        /* Some global values are also loaded here. */
1214 <  check_class();      /* Make sure classes are valid */
1961 < }
1962 <
1963 < static void
1964 < validate_conf(void)
1965 < {
1966 <  if (ConfigFileEntry.ts_warn_delta < TS_WARN_DELTA_MIN)
1967 <    ConfigFileEntry.ts_warn_delta = TS_WARN_DELTA_DEFAULT;
1968 <
1969 <  if (ConfigFileEntry.ts_max_delta < TS_MAX_DELTA_MIN)
1970 <    ConfigFileEntry.ts_max_delta = TS_MAX_DELTA_DEFAULT;
1971 <
1972 <  if (ConfigFileEntry.servlink_path == NULL)
1973 <    DupString(ConfigFileEntry.servlink_path, SLPATH);
1974 <
1975 <  if (ServerInfo.network_name == NULL)
1976 <    DupString(ServerInfo.network_name,NETWORK_NAME_DEFAULT);
1977 <
1978 <  if (ServerInfo.network_desc == NULL)
1979 <    DupString(ServerInfo.network_desc,NETWORK_DESC_DEFAULT);
1980 <
1981 <  if ((ConfigFileEntry.client_flood < CLIENT_FLOOD_MIN) ||
1982 <      (ConfigFileEntry.client_flood > CLIENT_FLOOD_MAX))
1983 <    ConfigFileEntry.client_flood = CLIENT_FLOOD_MAX;
1984 <
1985 <  ConfigFileEntry.max_watch = IRCD_MAX(ConfigFileEntry.max_watch, WATCHSIZE_MIN);
1214 >  class_delete_marked();      /* Make sure classes are valid */
1215   }
1216  
1217   /* lookup_confhost()
# Line 1990 | Line 1219 | validate_conf(void)
1219   * start DNS lookups of all hostnames in the conf
1220   * line and convert an IP addresses in a.b.c.d number for to IP#s.
1221   */
1222 < static void
1223 < lookup_confhost(struct ConfItem *conf)
1222 > void
1223 > lookup_confhost(struct MaskItem *conf)
1224   {
1996  struct AccessItem *aconf;
1225    struct addrinfo hints, *res;
1226  
1999  aconf = map_to_conf(conf);
2000
2001  if (EmptyString(aconf->host) ||
2002      EmptyString(aconf->user))
2003  {
2004    ilog(L_ERROR, "Host/server name error: (%s) (%s)",
2005         aconf->host, conf->name);
2006    return;
2007  }
2008
2009  if (strchr(aconf->host, '*') ||
2010      strchr(aconf->host, '?'))
2011    return;
2012
1227    /* Do name lookup now on hostnames given and store the
1228     * ip numbers in conf structure.
1229     */
# Line 2021 | Line 1235 | lookup_confhost(struct ConfItem *conf)
1235    /* Get us ready for a bind() and don't bother doing dns lookup */
1236    hints.ai_flags = AI_PASSIVE | AI_NUMERICHOST;
1237  
1238 <  if (irc_getaddrinfo(aconf->host, NULL, &hints, &res))
1238 >  if (getaddrinfo(conf->host, NULL, &hints, &res))
1239    {
1240 <    conf_dns_lookup(aconf);
1240 >    conf_dns_lookup(conf);
1241      return;
1242    }
1243  
1244    assert(res != NULL);
1245  
1246 <  memcpy(&aconf->ipnum, res->ai_addr, res->ai_addrlen);
1247 <  aconf->ipnum.ss_len = res->ai_addrlen;
1248 <  aconf->ipnum.ss.ss_family = res->ai_family;
1249 <  irc_freeaddrinfo(res);
1246 >  memcpy(&conf->addr, res->ai_addr, res->ai_addrlen);
1247 >  conf->addr.ss_len = res->ai_addrlen;
1248 >  conf->addr.ss.ss_family = res->ai_family;
1249 >
1250 >  freeaddrinfo(res);
1251   }
1252  
1253   /* conf_connect_allowed()
# Line 2046 | Line 1261 | int
1261   conf_connect_allowed(struct irc_ssaddr *addr, int aftype)
1262   {
1263    struct ip_entry *ip_found;
1264 <  struct AccessItem *aconf = find_dline_conf(addr, aftype);
1264 >  struct MaskItem *conf = find_dline_conf(addr, aftype);
1265  
1266    /* DLINE exempt also gets you out of static limits/pacing... */
1267 <  if (aconf && (aconf->status & CONF_EXEMPTDLINE))
1267 >  if (conf && (conf->type == CONF_EXEMPT))
1268      return 0;
1269  
1270 <  if (aconf != NULL)
1270 >  if (conf != NULL)
1271      return BANNED_CLIENT;
1272  
1273    ip_found = find_or_add_ip(addr);
# Line 2068 | Line 1283 | conf_connect_allowed(struct irc_ssaddr *
1283    return 0;
1284   }
1285  
2071 static struct AccessItem *
2072 find_regexp_kline(const char *uhi[])
2073 {
2074  const dlink_node *ptr = NULL;
2075
2076  DLINK_FOREACH(ptr, rkconf_items.head)
2077  {
2078    struct AccessItem *aptr = map_to_conf(ptr->data);
2079
2080    assert(aptr->regexuser);
2081    assert(aptr->regexhost);
2082
2083    if (!ircd_pcre_exec(aptr->regexuser, uhi[0]) &&
2084        (!ircd_pcre_exec(aptr->regexhost, uhi[1]) ||
2085         !ircd_pcre_exec(aptr->regexhost, uhi[2])))
2086      return aptr;
2087  }
2088
2089  return NULL;
2090 }
2091
2092 /* find_kill()
2093 *
2094 * inputs       - pointer to client structure
2095 * output       - pointer to struct AccessItem if found
2096 * side effects - See if this user is klined already,
2097 *                and if so, return struct AccessItem pointer
2098 */
2099 struct AccessItem *
2100 find_kill(struct Client *client_p)
2101 {
2102  struct AccessItem *aconf = NULL;
2103  const char *uhi[3];
2104
2105  uhi[0] = client_p->username;
2106  uhi[1] = client_p->host;
2107  uhi[2] = client_p->sockhost;
2108
2109  assert(client_p != NULL);
2110
2111  aconf = find_kline_conf(client_p->host, client_p->username,
2112                          &client_p->localClient->ip,
2113                          client_p->localClient->aftype);
2114  if (aconf == NULL)
2115    aconf = find_regexp_kline(uhi);
2116
2117  if (aconf && (aconf->status & CONF_KLINE))
2118    return aconf;
2119
2120  return NULL;
2121 }
2122
2123 struct AccessItem *
2124 find_gline(struct Client *client_p)
2125 {
2126  struct AccessItem *aconf;
2127
2128  assert(client_p != NULL);
2129
2130  aconf = find_gline_conf(client_p->host, client_p->username,
2131                          &client_p->localClient->ip,
2132                          client_p->localClient->aftype);
2133
2134  if (aconf && (aconf->status & CONF_GLINE))
2135    return aconf;
2136
2137  return NULL;
2138 }
2139
2140 /* add_temp_line()
2141 *
2142 * inputs        - pointer to struct ConfItem
2143 * output        - none
2144 * Side effects  - links in given struct ConfItem into
2145 *                 temporary *line link list
2146 */
2147 void
2148 add_temp_line(struct ConfItem *conf)
2149 {
2150  struct AccessItem *aconf;
2151
2152  if (conf->type == DLINE_TYPE)
2153  {
2154    aconf = map_to_conf(conf);
2155    SetConfTemporary(aconf);
2156    dlinkAdd(conf, &conf->node, &temporary_dlines);
2157    MyFree(aconf->user);
2158    aconf->user = NULL;
2159    add_conf_by_address(CONF_DLINE, aconf);
2160  }
2161  else if (conf->type == KLINE_TYPE)
2162  {
2163    aconf = map_to_conf(conf);
2164    SetConfTemporary(aconf);
2165    dlinkAdd(conf, &conf->node, &temporary_klines);
2166    add_conf_by_address(CONF_KILL, aconf);
2167  }
2168  else if (conf->type == GLINE_TYPE)
2169  {
2170    aconf = map_to_conf(conf);
2171    SetConfTemporary(aconf);
2172    dlinkAdd(conf, &conf->node, &temporary_glines);
2173    add_conf_by_address(CONF_GLINE, aconf);
2174  }
2175  else if (conf->type == XLINE_TYPE)
2176  {
2177    conf->flags |= CONF_FLAGS_TEMPORARY;
2178    dlinkAdd(conf, make_dlink_node(), &temporary_xlines);
2179  }
2180  else if (conf->type == RXLINE_TYPE)
2181  {
2182    conf->flags |= CONF_FLAGS_TEMPORARY;
2183    dlinkAdd(conf, make_dlink_node(), &temporary_rxlines);
2184  }
2185  else if (conf->type == RKLINE_TYPE)
2186  {
2187    conf->flags |= CONF_FLAGS_TEMPORARY;
2188    dlinkAdd(conf, make_dlink_node(), &temporary_rklines);
2189  }
2190  else if ((conf->type == NRESV_TYPE) || (conf->type == CRESV_TYPE))
2191  {
2192    conf->flags |= CONF_FLAGS_TEMPORARY;
2193    dlinkAdd(conf, make_dlink_node(), &temporary_resv);
2194  }
2195 }
2196
1286   /* cleanup_tklines()
1287   *
1288   * inputs       - NONE
# Line 2204 | Line 1293 | add_temp_line(struct ConfItem *conf)
1293   void
1294   cleanup_tklines(void *notused)
1295   {
1296 <  expire_tklines(&temporary_glines);
1297 <  expire_tklines(&temporary_klines);
1298 <  expire_tklines(&temporary_dlines);
1299 <  expire_tklines(&temporary_xlines);
2211 <  expire_tklines(&temporary_rxlines);
2212 <  expire_tklines(&temporary_rklines);
2213 <  expire_tklines(&temporary_resv);
1296 >  hostmask_expire_temporary();
1297 >  expire_tklines(&xconf_items);
1298 >  expire_tklines(&nresv_items);
1299 >  expire_tklines(&cresv_items);
1300   }
1301  
1302   /* expire_tklines()
# Line 2224 | Line 1310 | expire_tklines(dlink_list *tklist)
1310   {
1311    dlink_node *ptr;
1312    dlink_node *next_ptr;
1313 <  struct ConfItem *conf;
2228 <  struct MatchItem *xconf;
2229 <  struct MatchItem *nconf;
2230 <  struct AccessItem *aconf;
2231 <  struct ResvChannel *cconf;
1313 >  struct MaskItem *conf;
1314  
1315    DLINK_FOREACH_SAFE(ptr, next_ptr, tklist->head)
1316    {
1317      conf = ptr->data;
2236    if (conf->type == GLINE_TYPE ||
2237        conf->type == KLINE_TYPE ||
2238        conf->type == DLINE_TYPE)
2239    {
2240      aconf = (struct AccessItem *)map_to_conf(conf);
2241      if (aconf->hold <= CurrentTime)
2242      {
2243        /* XXX - Do we want GLINE expiry notices?? */
2244        /* Alert opers that a TKline expired - Hwy */
2245        if (ConfigFileEntry.tkline_expire_notices)
2246        {
2247          if (aconf->status & CONF_KILL)
2248          {
2249            sendto_realops_flags(UMODE_ALL, L_ALL,
2250                                 "Temporary K-line for [%s@%s] expired",
2251                                 (aconf->user) ? aconf->user : "*",
2252                                 (aconf->host) ? aconf->host : "*");
2253          }
2254          else if (conf->type == DLINE_TYPE)
2255          {
2256            sendto_realops_flags(UMODE_ALL, L_ALL,
2257                                 "Temporary D-line for [%s] expired",
2258                                 (aconf->host) ? aconf->host : "*");
2259          }
2260        }
1318  
1319 <        dlinkDelete(ptr, tklist);
1320 <        delete_one_address_conf(aconf->host, aconf);
1321 <      }
1322 <    }
2266 <    else if (conf->type == XLINE_TYPE ||
2267 <             conf->type == RXLINE_TYPE)
2268 <    {
2269 <      xconf = (struct MatchItem *)map_to_conf(conf);
2270 <      if (xconf->hold <= CurrentTime)
2271 <      {
2272 <        if (ConfigFileEntry.tkline_expire_notices)
2273 <          sendto_realops_flags(UMODE_ALL, L_ALL,
2274 <                               "Temporary X-line for [%s] %sexpired", conf->name,
2275 <                               conf->type == RXLINE_TYPE ? "(REGEX) " : "");
2276 <        dlinkDelete(ptr, tklist);
2277 <        free_dlink_node(ptr);
2278 <        delete_conf_item(conf);
2279 <      }
2280 <    }
2281 <    else if (conf->type == RKLINE_TYPE)
1319 >    if (!conf->until || conf->until > CurrentTime)
1320 >      continue;
1321 >
1322 >    if (conf->type == CONF_XLINE)
1323      {
1324 <      aconf = map_to_conf(conf);
1325 <      if (aconf->hold <= CurrentTime)
1326 <      {
1327 <        if (ConfigFileEntry.tkline_expire_notices)
2287 <           sendto_realops_flags(UMODE_ALL, L_ALL,
2288 <                                "Temporary K-line for [%s@%s] (REGEX) expired",
2289 <                                (aconf->user) ? aconf->user : "*",
2290 <                                (aconf->host) ? aconf->host : "*");
2291 <        dlinkDelete(ptr, tklist);
2292 <        free_dlink_node(ptr);
2293 <        delete_conf_item(conf);
2294 <      }
1324 >      if (ConfigFileEntry.tkline_expire_notices)
1325 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1326 >                               "Temporary X-line for [%s] expired", conf->name);
1327 >      conf_free(conf);
1328      }
1329 <    else if (conf->type == NRESV_TYPE)
1329 >    else if (conf->type == CONF_NRESV || conf->type == CONF_CRESV)
1330      {
1331 <      nconf = (struct MatchItem *)map_to_conf(conf);
1332 <      if (nconf->hold <= CurrentTime)
2300 <      {
2301 <        if (ConfigFileEntry.tkline_expire_notices)
2302 <          sendto_realops_flags(UMODE_ALL, L_ALL,
1331 >      if (ConfigFileEntry.tkline_expire_notices)
1332 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1333                                 "Temporary RESV for [%s] expired", conf->name);
1334 <        dlinkDelete(ptr, tklist);
2305 <        free_dlink_node(ptr);
2306 <        delete_conf_item(conf);
2307 <      }
2308 <    }
2309 <    else if (conf->type == CRESV_TYPE)
2310 <    {
2311 <      cconf = (struct ResvChannel *)map_to_conf(conf);
2312 <      if (cconf->hold <= CurrentTime)
2313 <      {
2314 <        if (ConfigFileEntry.tkline_expire_notices)
2315 <          sendto_realops_flags(UMODE_ALL, L_ALL,
2316 <                               "Temporary RESV for [%s] expired", cconf->name);
2317 <        delete_channel_resv(cconf);
2318 <      }
1334 >      conf_free(conf);
1335      }
1336    }
1337   }
# Line 2328 | Line 1344 | expire_tklines(dlink_list *tklist)
1344   */
1345   static const struct oper_privs
1346   {
1347 <  const unsigned int oprivs;
2332 <  const unsigned int hidden;
1347 >  const unsigned int flag;
1348    const unsigned char c;
1349   } flag_list[] = {
1350 <  { OPER_FLAG_ADMIN,       OPER_FLAG_HIDDEN_ADMIN,  'A' },
1351 <  { OPER_FLAG_REMOTEBAN,   0,                       'B' },
1352 <  { OPER_FLAG_DIE,         0,                       'D' },
1353 <  { OPER_FLAG_GLINE,       0,                       'G' },
1354 <  { OPER_FLAG_REHASH,      0,                       'H' },
1355 <  { OPER_FLAG_K,           0,                       'K' },
1356 <  { OPER_FLAG_OPERWALL,    0,                       'L' },
1357 <  { OPER_FLAG_N,           0,                       'N' },
1358 <  { OPER_FLAG_GLOBAL_KILL, 0,                       'O' },
1359 <  { OPER_FLAG_REMOTE,      0,                       'R' },
1360 <  { OPER_FLAG_OPER_SPY,    0,                       'S' },
1361 <  { OPER_FLAG_UNKLINE,     0,                       'U' },
1362 <  { OPER_FLAG_X,           0,                       'X' },
1363 <  { 0, 0, '\0' }
1350 >  { OPER_FLAG_ADMIN,          'A' },
1351 >  { OPER_FLAG_REMOTEBAN,      'B' },
1352 >  { OPER_FLAG_DIE,            'D' },
1353 >  { OPER_FLAG_GLINE,          'G' },
1354 >  { OPER_FLAG_REHASH,         'H' },
1355 >  { OPER_FLAG_K,              'K' },
1356 >  { OPER_FLAG_OPERWALL,       'L' },
1357 >  { OPER_FLAG_KILL,           'N' },
1358 >  { OPER_FLAG_KILL_REMOTE,    'O' },
1359 >  { OPER_FLAG_CONNECT,        'P' },
1360 >  { OPER_FLAG_CONNECT_REMOTE, 'Q' },
1361 >  { OPER_FLAG_SQUIT,          'R' },
1362 >  { OPER_FLAG_SQUIT_REMOTE,   'S' },
1363 >  { OPER_FLAG_UNKLINE,        'U' },
1364 >  { OPER_FLAG_X,              'X' },
1365 >  { 0, '\0' }
1366   };
1367  
1368   char *
# Line 2353 | Line 1370 | oper_privs_as_string(const unsigned int
1370   {
1371    static char privs_out[16];
1372    char *privs_ptr = privs_out;
1373 <  unsigned int i = 0;
1373 >  const struct oper_privs *opriv = flag_list;
1374  
1375 <  for (; flag_list[i].oprivs; ++i)
1375 >  for (; opriv->flag; ++opriv)
1376    {
1377 <    if ((port & flag_list[i].oprivs) &&
1378 <        (port & flag_list[i].hidden) == 0)
2362 <      *privs_ptr++ = flag_list[i].c;
1377 >    if (port & opriv->flag)
1378 >      *privs_ptr++ = opriv->c;
1379      else
1380 <      *privs_ptr++ = ToLowerTab[flag_list[i].c];
1380 >      *privs_ptr++ = ToLower(opriv->c);
1381    }
1382  
1383    *privs_ptr = '\0';
# Line 2375 | Line 1391 | oper_privs_as_string(const unsigned int
1391   *         "oper" is server name for remote opers
1392   * Side effects: None.
1393   */
1394 < char *
1394 > const char *
1395   get_oper_name(const struct Client *client_p)
1396   {
1397 <  dlink_node *cnode;
2382 <  struct ConfItem *conf;
2383 <  struct AccessItem *aconf;
2384 <
1397 >  dlink_node *cnode = NULL;
1398    /* +5 for !,@,{,} and null */
1399 <  static char buffer[NICKLEN+USERLEN+HOSTLEN+HOSTLEN+5];
1399 >  static char buffer[NICKLEN + USERLEN + HOSTLEN + HOSTLEN + 5];
1400  
1401    if (MyConnect(client_p))
1402    {
1403 <    DLINK_FOREACH(cnode, client_p->localClient->confs.head)
1403 >    if ((cnode = client_p->localClient->confs.head))
1404      {
1405 <      conf = cnode->data;
2393 <      aconf = map_to_conf(conf);
1405 >      struct MaskItem *conf = cnode->data;
1406  
1407 <      if (IsConfOperator(aconf))
1407 >      if (IsConfOperator(conf))
1408        {
1409 <        ircsprintf(buffer, "%s!%s@%s{%s}", client_p->name,
1410 <                   client_p->username, client_p->host,
1411 <                   conf->name);
2400 <        return buffer;
1409 >        snprintf(buffer, sizeof(buffer), "%s!%s@%s{%s}", client_p->name,
1410 >                 client_p->username, client_p->host, conf->name);
1411 >        return buffer;
1412        }
1413      }
1414  
# Line 2407 | Line 1418 | get_oper_name(const struct Client *clien
1418      assert(0); /* Oper without oper conf! */
1419    }
1420  
1421 <  ircsprintf(buffer, "%s!%s@%s{%s}", client_p->name,
1422 <             client_p->username, client_p->host, client_p->servptr->name);
1421 >  snprintf(buffer, sizeof(buffer), "%s!%s@%s{%s}", client_p->name,
1422 >           client_p->username, client_p->host, client_p->servptr->name);
1423    return buffer;
1424   }
1425  
# Line 2426 | Line 1437 | read_conf_files(int cold)
1437    char chanlimit[32];
1438  
1439    conf_parser_ctx.boot = cold;
1440 <  filename = get_conf_name(CONF_TYPE);
1440 >  filename = ConfigFileEntry.configfile;
1441  
1442    /* We need to know the initial filename for the yyerror() to report
1443       FIXME: The full path is in conffilenamebuf first time since we
# Line 2436 | Line 1447 | read_conf_files(int cold)
1447    */
1448    strlcpy(conffilebuf, filename, sizeof(conffilebuf));
1449  
1450 <  if ((conf_parser_ctx.conf_file = fbopen(filename, "r")) == NULL)
1450 >  if ((conf_parser_ctx.conf_file = fopen(filename, "r")) == NULL)
1451    {
1452      if (cold)
1453      {
1454 <      ilog(L_CRIT, "Unable to read configuration file '%s': %s",
1454 >      ilog(LOG_TYPE_IRCD, "Unable to read configuration file '%s': %s",
1455             filename, strerror(errno));
1456        exit(-1);
1457      }
1458      else
1459      {
1460 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1461 <                           "Unable to read configuration file '%s': %s",
1462 <                           filename, strerror(errno));
1460 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1461 >                           "Unable to read configuration file '%s': %s",
1462 >                           filename, strerror(errno));
1463        return;
1464      }
1465    }
# Line 2457 | Line 1468 | read_conf_files(int cold)
1468      clear_out_old_conf();
1469  
1470    read_conf(conf_parser_ctx.conf_file);
1471 <  fbclose(conf_parser_ctx.conf_file);
1471 >  fclose(conf_parser_ctx.conf_file);
1472  
1473 +  log_reopen_all();
1474 +
1475 +  add_isupport("NICKLEN", NULL, ServerInfo.max_nick_length);
1476    add_isupport("NETWORK", ServerInfo.network_name, -1);
1477 <  ircsprintf(chanmodes, "b%s%s:%d", ConfigChannel.use_except ? "e" : "",
1478 <             ConfigChannel.use_invex ? "I" : "", ConfigChannel.max_bans);
1477 >
1478 >  snprintf(chanmodes, sizeof(chanmodes), "beI:%d", ConfigChannel.max_bans);
1479    add_isupport("MAXLIST", chanmodes, -1);
1480    add_isupport("MAXTARGETS", NULL, ConfigFileEntry.max_targets);
1481 <  if (ConfigChannel.disable_local_channels)
1482 <    add_isupport("CHANTYPES", "#", -1);
1483 <  else
1484 <    add_isupport("CHANTYPES", "#&", -1);
2471 <  ircsprintf(chanlimit, "%s:%d", ConfigChannel.disable_local_channels ? "#" : "#&",
2472 <             ConfigChannel.max_chans_per_user);
1481 >  add_isupport("CHANTYPES", "#", -1);
1482 >
1483 >  snprintf(chanlimit, sizeof(chanlimit), "#:%d",
1484 >           ConfigChannel.max_chans_per_user);
1485    add_isupport("CHANLIMIT", chanlimit, -1);
1486 <  ircsprintf(chanmodes, "%s%s%s", ConfigChannel.use_except ? "e" : "",
2475 <             ConfigChannel.use_invex ? "I" : "", "b,k,l,imnpst");
1486 >  snprintf(chanmodes, sizeof(chanmodes), "%s", "beI,k,l,imnprstORS");
1487    add_isupport("CHANNELLEN", NULL, LOCAL_CHANNELLEN);
1488 <  if (ConfigChannel.use_except)
2478 <    add_isupport("EXCEPTS", "e", -1);
2479 <  if (ConfigChannel.use_invex)
2480 <    add_isupport("INVEX", "I", -1);
1488 >  add_isupport("TOPICLEN", NULL, ServerInfo.max_topic_length);
1489    add_isupport("CHANMODES", chanmodes, -1);
1490  
1491    /*
# Line 2485 | Line 1493 | read_conf_files(int cold)
1493     * on strlen(form_str(RPL_ISUPPORT))
1494     */
1495    rebuild_isupport_message_line();
2488
2489  parse_conf_file(KLINE_TYPE, cold);
2490  parse_conf_file(RKLINE_TYPE, cold);
2491  parse_conf_file(DLINE_TYPE, cold);
2492  parse_conf_file(XLINE_TYPE, cold);
2493  parse_conf_file(RXLINE_TYPE, cold);
2494  parse_conf_file(NRESV_TYPE, cold);
2495  parse_conf_file(CRESV_TYPE, cold);
2496 }
2497
2498 /* parse_conf_file()
2499 *
2500 * inputs       - type of conf file to parse
2501 * output       - none
2502 * side effects - conf file for givenconf type is opened and read then parsed
2503 */
2504 static void
2505 parse_conf_file(int type, int cold)
2506 {
2507  FBFILE *file = NULL;
2508  const char *filename = get_conf_name(type);
2509
2510  if ((file = fbopen(filename, "r")) == NULL)
2511  {
2512    if (cold)
2513      ilog(L_ERROR, "Unable to read configuration file '%s': %s",
2514           filename, strerror(errno));
2515    else
2516      sendto_realops_flags(UMODE_ALL, L_ALL,
2517                    "Unable to read configuration file '%s': %s",
2518                           filename, strerror(errno));
2519  }
2520  else
2521  {
2522    parse_csv_file(file, type);
2523    fbclose(file);
2524  }
1496   }
1497  
1498   /* clear_out_old_conf()
# Line 2534 | Line 1505 | static void
1505   clear_out_old_conf(void)
1506   {
1507    dlink_node *ptr = NULL, *next_ptr = NULL;
1508 <  struct ConfItem *conf;
2538 <  struct AccessItem *aconf;
2539 <  struct ClassItem *cltmp;
2540 <  struct MatchItem *match_item;
1508 >  struct MaskItem *conf;
1509    dlink_list *free_items [] = {
1510 <    &server_items,   &oconf_items,    &hub_items, &leaf_items,
1511 <     &uconf_items,   &xconf_items, &rxconf_items, &rkconf_items,
1512 <     &nresv_items, &cluster_items,  &gdeny_items, NULL
1510 >    &server_items,   &oconf_items,
1511 >     &uconf_items,   &xconf_items,
1512 >     &nresv_items, &cluster_items,  &service_items, &cresv_items, NULL
1513    };
1514  
1515    dlink_list ** iterator = free_items; /* C is dumb */
# Line 2555 | Line 1523 | clear_out_old_conf(void)
1523      DLINK_FOREACH_SAFE(ptr, next_ptr, (*iterator)->head)
1524      {
1525        conf = ptr->data;
2558      /* XXX This is less than pretty */
2559      if (conf->type == SERVER_TYPE)
2560      {
2561        aconf = map_to_conf(conf);
1526  
1527 <        if (aconf->clients != 0)
2564 <        {
2565 <          SetConfIllegal(aconf);
2566 <          dlinkDelete(&conf->node, &server_items);
2567 <        }
2568 <        else
2569 <        {
2570 <          delete_conf_item(conf);
2571 <        }
2572 <      }
2573 <      else if (conf->type == OPER_TYPE)
2574 <      {
2575 <        aconf = map_to_conf(conf);
1527 >      dlinkDelete(&conf->node, map_to_list(conf->type));
1528  
1529 <        if (aconf->clients != 0)
1530 <        {
2579 <          SetConfIllegal(aconf);
2580 <          dlinkDelete(&conf->node, &oconf_items);
2581 <        }
2582 <        else
2583 <        {
2584 <          delete_conf_item(conf);
2585 <        }
2586 <      }
2587 <      else if (conf->type == CLIENT_TYPE)
1529 >      /* XXX This is less than pretty */
1530 >      if (conf->type == CONF_SERVER || conf->type == CONF_OPER)
1531        {
1532 <        aconf = map_to_conf(conf);
1533 <
2591 <        if (aconf->clients != 0)
2592 <        {
2593 <          SetConfIllegal(aconf);
2594 <        }
2595 <        else
2596 <        {
2597 <          delete_conf_item(conf);
2598 <        }
1532 >        if (!conf->ref_count)
1533 >          conf_free(conf);
1534        }
1535 <      else if (conf->type == XLINE_TYPE  ||
2601 <               conf->type == RXLINE_TYPE ||
2602 <               conf->type == RKLINE_TYPE)
1535 >      else if (conf->type == CONF_XLINE)
1536        {
1537 <        /* temporary (r)xlines are also on
1538 <         * the (r)xconf items list */
2606 <        if (conf->flags & CONF_FLAGS_TEMPORARY)
2607 <          continue;
2608 <
2609 <        delete_conf_item(conf);
1537 >        if (!conf->until)
1538 >          conf_free(conf);
1539        }
1540        else
1541 <      {
2613 <        if ((conf->type == LEAF_TYPE) || (conf->type == HUB_TYPE))
2614 <        {
2615 <          match_item = map_to_conf(conf);
2616 <          if (match_item->ref_count <= 0)
2617 <            delete_conf_item(conf);
2618 <          else
2619 <          {
2620 <            match_item->illegal = 1;
2621 <            dlinkDelete(&conf->node, *iterator);
2622 <          }
2623 <        }
2624 <        else
2625 <          delete_conf_item(conf);
2626 <      }
1541 >        conf_free(conf);
1542      }
1543    }
1544  
1545 +  motd_clear();
1546 +
1547    /*
1548     * don't delete the class table, rather mark all entries
1549 <   * for deletion. The table is cleaned up by check_class. - avalon
1549 >   * for deletion. The table is cleaned up by class_delete_marked. - avalon
1550     */
1551 <  DLINK_FOREACH(ptr, class_items.head)
2635 <  {
2636 <    cltmp = map_to_conf(ptr->data);
2637 <
2638 <    if (ptr != class_items.tail)  /* never mark the "default" class */
2639 <      cltmp->active = 0;
2640 <  }
1551 >  class_mark_for_deletion();
1552  
1553    clear_out_address_conf();
1554  
1555    /* clean out module paths */
2645 #ifndef STATIC_MODULES
1556    mod_clear_paths();
2647 #endif
1557  
1558    /* clean out ServerInfo */
1559    MyFree(ServerInfo.description);
# Line 2664 | Line 1573 | clear_out_old_conf(void)
1573  
1574    MyFree(ServerInfo.rsa_private_key_file);
1575    ServerInfo.rsa_private_key_file = NULL;
2667 #endif
1576  
1577 <  /* clean out old resvs from the conf */
1578 <  clear_conf_resv();
1577 >  if (ServerInfo.server_ctx)
1578 >    SSL_CTX_set_options(ServerInfo.server_ctx, SSL_OP_NO_SSLv2|
1579 >                                               SSL_OP_NO_SSLv3|
1580 >                                               SSL_OP_NO_TLSv1);
1581 >  if (ServerInfo.client_ctx)
1582 >    SSL_CTX_set_options(ServerInfo.client_ctx, SSL_OP_NO_SSLv2|
1583 >                                               SSL_OP_NO_SSLv3|
1584 >                                               SSL_OP_NO_TLSv1);
1585 > #endif
1586  
1587    /* clean out AdminInfo */
1588    MyFree(AdminInfo.name);
# Line 2677 | Line 1592 | clear_out_old_conf(void)
1592    MyFree(AdminInfo.description);
1593    AdminInfo.description = NULL;
1594  
2680  /* operator{} and class{} blocks are freed above */
1595    /* clean out listeners */
1596    close_listeners();
1597  
2684  /* auth{}, quarantine{}, shared{}, connect{}, kill{}, deny{},
2685   * exempt{} and gecos{} blocks are freed above too
2686   */
2687
1598    /* clean out general */
1599 <  MyFree(ConfigFileEntry.servlink_path);
1600 <  ConfigFileEntry.servlink_path = NULL;
2691 < #ifdef HAVE_LIBCRYPTO
2692 <  ConfigFileEntry.default_cipher_preference = NULL;
2693 < #endif /* HAVE_LIBCRYPTO */
2694 <  delete_isupport("INVEX");
2695 <  delete_isupport("EXCEPTS");
2696 < }
2697 <
2698 < /* flush_deleted_I_P()
2699 < *
2700 < * inputs       - none
2701 < * output       - none
2702 < * side effects - This function removes I/P conf items
2703 < */
2704 < static void
2705 < flush_deleted_I_P(void)
2706 < {
2707 <  dlink_node *ptr;
2708 <  dlink_node *next_ptr;
2709 <  struct ConfItem *conf;
2710 <  struct AccessItem *aconf;
2711 <  dlink_list * free_items [] = {
2712 <    &server_items, &oconf_items, NULL
2713 <  };
2714 <  dlink_list ** iterator = free_items; /* C is dumb */
2715 <
2716 <  /* flush out deleted I and P lines
2717 <   * although still in use.
2718 <   */
2719 <  for (; *iterator != NULL; iterator++)
2720 <  {
2721 <    DLINK_FOREACH_SAFE(ptr, next_ptr, (*iterator)->head)
2722 <    {
2723 <      conf = ptr->data;
2724 <      aconf = (struct AccessItem *)map_to_conf(conf);
2725 <
2726 <      if (IsConfIllegal(aconf))
2727 <      {
2728 <        dlinkDelete(ptr, *iterator);
2729 <
2730 <        if (aconf->clients == 0)
2731 <          delete_conf_item(conf);
2732 <      }
2733 <    }
2734 <  }
2735 < }
2736 <
2737 < /* get_conf_name()
2738 < *
2739 < * inputs       - type of conf file to return name of file for
2740 < * output       - pointer to filename for type of conf
2741 < * side effects - none
2742 < */
2743 < const char *
2744 < get_conf_name(ConfType type)
2745 < {
2746 <  switch (type)
2747 <  {
2748 <    case CONF_TYPE:
2749 <      return ConfigFileEntry.configfile;
2750 <      break;
2751 <    case KLINE_TYPE:
2752 <      return ConfigFileEntry.klinefile;
2753 <      break;
2754 <    case RKLINE_TYPE:
2755 <      return ConfigFileEntry.rklinefile;
2756 <      break;
2757 <    case DLINE_TYPE:
2758 <      return ConfigFileEntry.dlinefile;
2759 <      break;
2760 <    case XLINE_TYPE:
2761 <      return ConfigFileEntry.xlinefile;
2762 <      break;
2763 <    case RXLINE_TYPE:
2764 <      return ConfigFileEntry.rxlinefile;
2765 <      break;
2766 <    case CRESV_TYPE:
2767 <      return ConfigFileEntry.cresvfile;
2768 <      break;
2769 <    case NRESV_TYPE:
2770 <      return ConfigFileEntry.nresvfile;
2771 <      break;
2772 <    case GLINE_TYPE:
2773 <      return ConfigFileEntry.glinefile;
2774 <      break;
2775 <
2776 <    default:
2777 <      return NULL;  /* This should NEVER HAPPEN since we call this function
2778 <                       only with the above values, this will cause us to core
2779 <                       at some point if this happens so we know where it was */
2780 <  }
2781 < }
2782 <
2783 < #define BAD_PING (-1)
2784 <
2785 < /* get_conf_ping()
2786 < *
2787 < * inputs       - pointer to struct AccessItem
2788 < *              - pointer to a variable that receives ping warning time
2789 < * output       - ping frequency
2790 < * side effects - NONE
2791 < */
2792 < static int
2793 < get_conf_ping(struct ConfItem *conf, int *pingwarn)
2794 < {
2795 <  struct ClassItem *aclass;
2796 <  struct AccessItem *aconf;
2797 <
2798 <  if (conf != NULL)
2799 <  {
2800 <    aconf = (struct AccessItem *)map_to_conf(conf);
2801 <    if (aconf->class_ptr != NULL)
2802 <    {
2803 <      aclass = (struct ClassItem *)map_to_conf(aconf->class_ptr);
2804 <      *pingwarn = PingWarning(aclass);
2805 <      return PingFreq(aclass);
2806 <    }
2807 <  }
2808 <
2809 <  return BAD_PING;
2810 < }
2811 <
2812 < /* get_client_class()
2813 < *
2814 < * inputs       - pointer to client struct
2815 < * output       - pointer to name of class
2816 < * side effects - NONE
2817 < */
2818 < const char *
2819 < get_client_class(struct Client *target_p)
2820 < {
2821 <  dlink_node *ptr;
2822 <  struct ConfItem *conf;
2823 <  struct AccessItem *aconf;
2824 <
2825 <  if (target_p != NULL && !IsMe(target_p) &&
2826 <      target_p->localClient->confs.head != NULL)
2827 <  {
2828 <    DLINK_FOREACH(ptr, target_p->localClient->confs.head)
2829 <    {
2830 <      conf = ptr->data;
2831 <
2832 <      if (conf->type == CLIENT_TYPE || conf->type == SERVER_TYPE ||
2833 <          conf->type == OPER_TYPE)
2834 <      {
2835 <        aconf = (struct AccessItem *) map_to_conf(conf);
2836 <        if (aconf->class_ptr != NULL)
2837 <          return aconf->class_ptr->name;
2838 <      }
2839 <    }
2840 <  }
2841 <
2842 <  return "default";
2843 < }
2844 <
2845 < /* get_client_ping()
2846 < *
2847 < * inputs       - pointer to client struct
2848 < *              - pointer to a variable that receives ping warning time
2849 < * output       - ping frequency
2850 < * side effects - NONE
2851 < */
2852 < int
2853 < get_client_ping(struct Client *target_p, int *pingwarn)
2854 < {
2855 <  int ping;
2856 <  struct ConfItem *conf;
2857 <  dlink_node *nlink;
2858 <
2859 <  if (target_p->localClient->confs.head != NULL)
2860 <    DLINK_FOREACH(nlink, target_p->localClient->confs.head)
2861 <    {
2862 <      conf = nlink->data;
2863 <
2864 <      if ((conf->type == CLIENT_TYPE) || (conf->type == SERVER_TYPE) ||
2865 <          (conf->type == OPER_TYPE))
2866 <      {
2867 <        ping = get_conf_ping(conf, pingwarn);
2868 <        if (ping > 0)
2869 <          return ping;
2870 <      }
2871 <    }
2872 <
2873 <  *pingwarn = 0;
2874 <  return DEFAULT_PINGFREQUENCY;
2875 < }
2876 <
2877 < /* find_class()
2878 < *
2879 < * inputs       - string name of class
2880 < * output       - corresponding Class pointer
2881 < * side effects - NONE
2882 < */
2883 < struct ConfItem *
2884 < find_class(const char *classname)
2885 < {
2886 <  struct ConfItem *conf;
2887 <
2888 <  if ((conf = find_exact_name_conf(CLASS_TYPE, classname, NULL, NULL)) != NULL)
2889 <    return conf;
2890 <
2891 <  return class_default;
2892 < }
2893 <
2894 < /* check_class()
2895 < *
2896 < * inputs       - NONE
2897 < * output       - NONE
2898 < * side effects -
2899 < */
2900 < void
2901 < check_class(void)
2902 < {
2903 <  dlink_node *ptr = NULL, *next_ptr = NULL;
2904 <
2905 <  DLINK_FOREACH_SAFE(ptr, next_ptr, class_items.head)
2906 <  {
2907 <    struct ClassItem *aclass = map_to_conf(ptr->data);
2908 <
2909 <    if (!aclass->active && !CurrUserCount(aclass))
2910 <    {
2911 <      destroy_cidr_class(aclass);
2912 <      delete_conf_item(ptr->data);
2913 <    }
2914 <  }
2915 < }
2916 <
2917 < /* init_class()
2918 < *
2919 < * inputs       - NONE
2920 < * output       - NONE
2921 < * side effects -
2922 < */
2923 < void
2924 < init_class(void)
2925 < {
2926 <  struct ClassItem *aclass;
2927 <
2928 <  class_default = make_conf_item(CLASS_TYPE);
2929 <
2930 <  aclass = map_to_conf(class_default);
2931 <  aclass->active = 1;
2932 <  DupString(class_default->name, "default");
2933 <  ConFreq(aclass)  = DEFAULT_CONNECTFREQUENCY;
2934 <  PingFreq(aclass) = DEFAULT_PINGFREQUENCY;
2935 <  MaxTotal(aclass) = MAXIMUM_LINKS_DEFAULT;
2936 <  MaxSendq(aclass) = DEFAULT_SENDQ;
2937 <
2938 <  client_check_cb = register_callback("check_client", check_client);
2939 < }
2940 <
2941 < /* get_sendq()
2942 < *
2943 < * inputs       - pointer to client
2944 < * output       - sendq for this client as found from its class
2945 < * side effects - NONE
2946 < */
2947 < unsigned int
2948 < get_sendq(struct Client *client_p)
2949 < {
2950 <  unsigned int sendq = DEFAULT_SENDQ;
2951 <  dlink_node *ptr;
2952 <  struct ConfItem *conf;
2953 <  struct ConfItem *class_conf;
2954 <  struct ClassItem *aclass;
2955 <  struct AccessItem *aconf;
2956 <
2957 <  if (client_p && !IsMe(client_p) && (client_p->localClient->confs.head))
2958 <  {
2959 <    DLINK_FOREACH(ptr, client_p->localClient->confs.head)
2960 <    {
2961 <      conf = ptr->data;
2962 <      if ((conf->type == SERVER_TYPE) || (conf->type == OPER_TYPE)
2963 <          || (conf->type == CLIENT_TYPE))
2964 <      {
2965 <        aconf = (struct AccessItem *)map_to_conf(conf);
2966 <        if ((class_conf = aconf->class_ptr) == NULL)
2967 <          continue;
2968 <        aclass = (struct ClassItem *)map_to_conf(class_conf);
2969 <        sendq = MaxSendq(aclass);
2970 <        return sendq;
2971 <      }
2972 <    }
2973 <  }
2974 <  /* XXX return a default?
2975 <   * if here, then there wasn't an attached conf with a sendq
2976 <   * that is very bad -Dianora
2977 <   */
2978 <  return DEFAULT_SENDQ;
1599 >  MyFree(ConfigFileEntry.service_name);
1600 >  ConfigFileEntry.service_name = NULL;
1601   }
1602  
1603   /* conf_add_class_to_conf()
# Line 2985 | Line 1607 | get_sendq(struct Client *client_p)
1607   * side effects - Add a class pointer to a conf
1608   */
1609   void
1610 < conf_add_class_to_conf(struct ConfItem *conf, const char *class_name)
1610 > conf_add_class_to_conf(struct MaskItem *conf, const char *class_name)
1611   {
2990  struct AccessItem *aconf = map_to_conf(conf);
2991  struct ClassItem *class = NULL;
2992
1612    if (class_name == NULL)
1613    {
1614 <    aconf->class_ptr = class_default;
1614 >    conf->class = class_default;
1615  
1616 <    if (conf->type == CLIENT_TYPE)
1617 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1618 <                           "Warning *** Defaulting to default class for %s@%s",
1619 <                           aconf->user, aconf->host);
1616 >    if (conf->type == CONF_CLIENT)
1617 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1618 >                           "Warning *** Defaulting to default class for %s@%s",
1619 >                           conf->user, conf->host);
1620      else
1621 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1622 <                           "Warning *** Defaulting to default class for %s",
1623 <                           conf->name);
1621 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1622 >                           "Warning *** Defaulting to default class for %s",
1623 >                           conf->name);
1624    }
1625    else
1626 <    aconf->class_ptr = find_class(class_name);
3008 <
3009 <  if (aconf->class_ptr)
3010 <    class = map_to_conf(aconf->class_ptr);
1626 >    conf->class = class_find(class_name, 1);
1627  
1628 <  if (aconf->class_ptr == NULL || !class->active)
1628 >  if (conf->class == NULL)
1629    {
1630 <    if (conf->type == CLIENT_TYPE)
1631 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1632 <                           "Warning *** Defaulting to default class for %s@%s",
1633 <                           aconf->user, aconf->host);
1630 >    if (conf->type == CONF_CLIENT)
1631 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1632 >                           "Warning *** Defaulting to default class for %s@%s",
1633 >                           conf->user, conf->host);
1634      else
1635 <      sendto_realops_flags(UMODE_ALL, L_ALL,
1636 <                           "Warning *** Defaulting to default class for %s",
1637 <                           conf->name);
1638 <    aconf->class_ptr = class_default;
3023 <  }
3024 < }
3025 <
3026 < /* conf_add_server()
3027 < *
3028 < * inputs       - pointer to config item
3029 < *              - pointer to link count already on this conf
3030 < * output       - NONE
3031 < * side effects - Add a connect block
3032 < */
3033 < int
3034 < conf_add_server(struct ConfItem *conf, const char *class_name)
3035 < {
3036 <  struct AccessItem *aconf;
3037 <  struct split_nuh_item nuh;
3038 <  char conf_user[USERLEN + 1];
3039 <  char conf_host[HOSTLEN + 1];
3040 <
3041 <  aconf = map_to_conf(conf);
3042 <
3043 <  conf_add_class_to_conf(conf, class_name);
3044 <
3045 <  if (!aconf->host || !conf->name)
3046 <  {
3047 <    sendto_realops_flags(UMODE_ALL, L_ALL, "Bad connect block");
3048 <    ilog(L_WARN, "Bad connect block");
3049 <    return -1;
3050 <  }
3051 <
3052 <  if (EmptyString(aconf->passwd) && !IsConfCryptLink(aconf))
3053 <  {
3054 <    sendto_realops_flags(UMODE_ALL, L_ALL, "Bad connect block, name %s",
3055 <                         conf->name);
3056 <    ilog(L_WARN, "Bad connect block, host %s", conf->name);
3057 <    return -1;
3058 <  }
3059 <
3060 <  nuh.nuhmask  = aconf->host;
3061 <  nuh.nickptr  = NULL;
3062 <  nuh.userptr  = conf_user;
3063 <  nuh.hostptr  = conf_host;
3064 <
3065 <  nuh.nicksize = 0;
3066 <  nuh.usersize = sizeof(conf_user);
3067 <  nuh.hostsize = sizeof(conf_host);
3068 <
3069 <  split_nuh(&nuh);
3070 <
3071 <  MyFree(aconf->host);
3072 <  aconf->host = NULL;
3073 <
3074 <  DupString(aconf->user, conf_user); /* somehow username checking for servers
3075 <                                 got lost in H6/7, will have to be re-added */
3076 <  DupString(aconf->host, conf_host);
3077 <
3078 <  lookup_confhost(conf);
3079 <
3080 <  return 0;
3081 < }
3082 <
3083 < /* conf_add_d_conf()
3084 < *
3085 < * inputs       - pointer to config item
3086 < * output       - NONE
3087 < * side effects - Add a d/D line
3088 < */
3089 < void
3090 < conf_add_d_conf(struct AccessItem *aconf)
3091 < {
3092 <  if (aconf->host == NULL)
3093 <    return;
3094 <
3095 <  aconf->user = NULL;
3096 <
3097 <  /* XXX - Should 'd' ever be in the old conf? For new conf we don't
3098 <   *       need this anyway, so I will disable it for now... -A1kmm
3099 <   */
3100 <  if (parse_netmask(aconf->host, NULL, NULL) == HM_HOST)
3101 <  {
3102 <    ilog(L_WARN, "Invalid Dline %s ignored", aconf->host);
3103 <    free_access_item(aconf);
3104 <  }
3105 <  else
3106 <  {
3107 <    /* XXX ensure user is NULL */
3108 <    MyFree(aconf->user);
3109 <    aconf->user = NULL;
3110 <    add_conf_by_address(CONF_DLINE, aconf);
1635 >      sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1636 >                           "Warning *** Defaulting to default class for %s",
1637 >                           conf->name);
1638 >    conf->class = class_default;
1639    }
1640   }
1641  
# Line 3126 | Line 1654 | yyerror(const char *msg)
1654      return;
1655  
1656    strip_tabs(newlinebuf, linebuf, sizeof(newlinebuf));
1657 <  sendto_realops_flags(UMODE_ALL, L_ALL, "\"%s\", line %u: %s: %s",
1657 >  sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1658 >                       "\"%s\", line %u: %s: %s",
1659                         conffilebuf, lineno + 1, msg, newlinebuf);
1660 <  ilog(L_WARN, "\"%s\", line %u: %s: %s",
1660 >  ilog(LOG_TYPE_IRCD, "\"%s\", line %u: %s: %s",
1661         conffilebuf, lineno + 1, msg, newlinebuf);
1662   }
1663  
1664 < int
1665 < conf_fbgets(char *lbuf, unsigned int max_size, FBFILE *fb)
1664 > void
1665 > conf_error_report(const char *msg)
1666   {
1667 <  if (fbgets(lbuf, max_size, fb) == NULL)
3139 <    return 0;
3140 <
3141 <  return strlen(lbuf);
3142 < }
1667 >  char newlinebuf[IRCD_BUFSIZE];
1668  
1669 < int
1670 < conf_yy_fatal_error(const char *msg)
1671 < {
1672 <  return 0;
1669 >  strip_tabs(newlinebuf, linebuf, sizeof(newlinebuf));
1670 >  sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1671 >                       "\"%s\", line %u: %s: %s",
1672 >                       conffilebuf, lineno + 1, msg, newlinebuf);
1673 >  ilog(LOG_TYPE_IRCD, "\"%s\", line %u: %s: %s",
1674 >       conffilebuf, lineno + 1, msg, newlinebuf);
1675   }
1676  
1677   /*
# Line 3158 | Line 1685 | conf_yy_fatal_error(const char *msg)
1685   * Originally written by Dianora (Diane, db@db.net)
1686   */
1687   time_t
1688 < valid_tkline(char *p, int minutes)
1688 > valid_tkline(const char *data, const int minutes)
1689   {
1690 +  const unsigned char *p = (const unsigned char *)data;
1691 +  unsigned char tmpch = '\0';
1692    time_t result = 0;
1693  
1694 <  while (*p)
1694 >  while ((tmpch = *p++))
1695    {
1696 <    if (IsDigit(*p))
3168 <    {
3169 <      result *= 10;
3170 <      result += ((*p) & 0xF);
3171 <      p++;
3172 <    }
3173 <    else
1696 >    if (!IsDigit(tmpch))
1697        return 0;
1698 +
1699 +    result *= 10;
1700 +    result += (tmpch & 0xF);
1701    }
1702  
1703 <  /* in the degenerate case where oper does a /quote kline 0 user@host :reason
1703 >  /*
1704 >   * In the degenerate case where oper does a /quote kline 0 user@host :reason
1705     * i.e. they specifically use 0, I am going to return 1 instead
1706     * as a return value of non-zero is used to flag it as a temporary kline
1707     */
3181
1708    if (result == 0)
1709      result = 1;
1710  
# Line 3187 | Line 1713 | valid_tkline(char *p, int minutes)
1713     * of this calculation
1714     */
1715    if (!minutes)
1716 <    result = result / (time_t)60;
1716 >    result = result / 60;
1717  
1718    if (result > MAX_TDKLINE_TIME)
1719      result = MAX_TDKLINE_TIME;
1720  
1721 <  result = result * (time_t)60;  /* turn it into seconds */
1721 >  result = result * 60;  /* turn it into seconds */
1722  
1723    return result;
1724   }
1725  
1726 + /* valid_wild_card_simple()
1727 + *
1728 + * inputs       - data to check for sufficient non-wildcard characters
1729 + * outputs      - 1 if valid, else 0
1730 + * side effects - none
1731 + */
1732 + int
1733 + valid_wild_card_simple(const char *data)
1734 + {
1735 +  const unsigned char *p = (const unsigned char *)data;
1736 +  unsigned char tmpch = '\0';
1737 +  int nonwild = 0;
1738 +
1739 +  while ((tmpch = *p++))
1740 +  {
1741 +    if (tmpch == '\\')
1742 +    {
1743 +      ++p;
1744 +      if (++nonwild >= ConfigFileEntry.min_nonwildcard_simple)
1745 +        return 1;
1746 +    }
1747 +    else if (!IsMWildChar(tmpch))
1748 +    {
1749 +      if (++nonwild >= ConfigFileEntry.min_nonwildcard_simple)
1750 +        return 1;
1751 +    }
1752 +  }
1753 +
1754 +  return 0;
1755 + }
1756 +
1757   /* valid_wild_card()
1758   *
1759   * input        - pointer to client
# Line 3208 | Line 1765 | valid_tkline(char *p, int minutes)
1765   int
1766   valid_wild_card(struct Client *source_p, int warn, int count, ...)
1767   {
3211  char *p;
1768    char tmpch;
1769    int nonwild = 0;
1770    va_list args;
# Line 3229 | Line 1785 | valid_wild_card(struct Client *source_p,
1785  
1786    while (count--)
1787    {
1788 <    p = va_arg(args, char *);
1788 >    const char *p = va_arg(args, const char *);
1789      if (p == NULL)
1790        continue;
1791  
# Line 3285 | Line 1841 | valid_wild_card(struct Client *source_p,
1841   */
1842   int
1843   parse_aline(const char *cmd, struct Client *source_p,
1844 <            int parc, char **parv,
1845 <            int parse_flags, char **up_p, char **h_p, time_t *tkline_time,
1846 <            char **target_server, char **reason)
1844 >            int parc, char **parv,
1845 >            int parse_flags, char **up_p, char **h_p, time_t *tkline_time,
1846 >            char **target_server, char **reason)
1847   {
1848    int found_tkline_time=0;
1849    static char def_reason[] = "No Reason";
# Line 3309 | Line 1865 | parse_aline(const char *cmd, struct Clie
1865      else
1866      {
1867        sendto_one(source_p, ":%s NOTICE %s :temp_line not supported by %s",
1868 <                 me.name, source_p->name, cmd);
1868 >                 me.name, source_p->name, cmd);
1869        return -1;
1870      }
1871    }
# Line 3344 | Line 1900 | parse_aline(const char *cmd, struct Clie
1900  
1901        if (target_server == NULL)
1902        {
1903 <        sendto_one(source_p, ":%s NOTICE %s :ON server not supported by %s",
1904 <                   me.name, source_p->name, cmd);
1905 <        return -1;
1903 >        sendto_one(source_p, ":%s NOTICE %s :ON server not supported by %s",
1904 >                   me.name, source_p->name, cmd);
1905 >        return -1;
1906        }
1907  
1908 <      if (!IsOperRemoteBan(source_p))
1908 >      if (!HasOFlag(source_p, OPER_FLAG_REMOTEBAN))
1909        {
1910          sendto_one(source_p, form_str(ERR_NOPRIVS),
1911                     me.name, source_p->name, "remoteban");
# Line 3358 | Line 1914 | parse_aline(const char *cmd, struct Clie
1914  
1915        if (parc == 0 || EmptyString(*parv))
1916        {
1917 <        sendto_one(source_p, form_str(ERR_NEEDMOREPARAMS),
1918 <                   me.name, source_p->name, cmd);
1919 <        return -1;
1917 >        sendto_one(source_p, form_str(ERR_NEEDMOREPARAMS),
1918 >                   me.name, source_p->name, cmd);
1919 >        return -1;
1920        }
1921  
1922        *target_server = *parv;
# Line 3373 | Line 1929 | parse_aline(const char *cmd, struct Clie
1929         * caller probably NULL'd it first, but no harm to do it again -db
1930         */
1931        if (target_server != NULL)
1932 <        *target_server = NULL;
1932 >        *target_server = NULL;
1933      }
1934    }
1935  
# Line 3386 | Line 1942 | parse_aline(const char *cmd, struct Clie
1942        return -1;
1943      }
1944  
1945 <    if ((parse_flags & AWILD) && !valid_wild_card(source_p, YES, 2, *up_p, *h_p))
1945 >    if ((parse_flags & AWILD) && !valid_wild_card(source_p, 1, 2, *up_p, *h_p))
1946        return -1;
1947    }
1948    else
1949 <    if ((parse_flags & AWILD) && !valid_wild_card(source_p, YES, 1, *up_p))
1949 >    if ((parse_flags & AWILD) && !valid_wild_card(source_p, 1, 1, *up_p))
1950        return -1;
1951  
1952    if (reason != NULL)
# Line 3398 | Line 1954 | parse_aline(const char *cmd, struct Clie
1954      if (parc != 0 && !EmptyString(*parv))
1955      {
1956        *reason = *parv;
1957 <      if (!valid_comment(source_p, *reason, YES))
1958 <        return -1;
1957 >      if (!valid_comment(source_p, *reason, 1))
1958 >        return -1;
1959      }
1960      else
1961        *reason = def_reason;
# Line 3438 | Line 1994 | find_user_host(struct Client *source_p,
1994      {
1995        *(hostp++) = '\0';                       /* short and squat */
1996        if (*user_host_or_nick)
1997 <        strlcpy(luser, user_host_or_nick, USERLEN*4 + 1); /* here is my user */
1997 >        strlcpy(luser, user_host_or_nick, USERLEN*4 + 1); /* here is my user */
1998        else
1999 <        strcpy(luser, "*");
1999 >        strcpy(luser, "*");
2000 >
2001        if (*hostp)
2002 <        strlcpy(lhost, hostp, HOSTLEN + 1);    /* here is my host */
2002 >        strlcpy(lhost, hostp, HOSTLEN + 1);    /* here is my host */
2003        else
2004 <        strcpy(lhost, "*");
2004 >        strcpy(lhost, "*");
2005      }
2006      else
2007      {
2008        luser[0] = '*';             /* no @ found, assume its *@somehost */
2009 <      luser[1] = '\0';    
2009 >      luser[1] = '\0';
2010        strlcpy(lhost, user_host_or_nick, HOSTLEN*4 + 1);
2011      }
2012      
2013      return 1;
2014    }
2015 <  else if (!(flags & NOUSERLOOKUP))
2015 >  else
2016    {
2017      /* Try to find user@host mask from nick */
2018      /* Okay to use source_p as the first param, because source_p == client_p */
2019      if ((target_p =
2020 <        find_chasing(source_p, source_p, user_host_or_nick, NULL)) == NULL)
2020 >        find_chasing(source_p, user_host_or_nick, NULL)) == NULL)
2021        return 0;
2022  
2023      if (IsExemptKline(target_p))
2024      {
2025        if (!IsServer(source_p))
2026 <        sendto_one(source_p,
2027 <                   ":%s NOTICE %s :%s is E-lined",
2028 <                   me.name, source_p->name, target_p->name);
2026 >        sendto_one(source_p,
2027 >                   ":%s NOTICE %s :%s is E-lined",
2028 >                   me.name, source_p->name, target_p->name);
2029        return 0;
2030      }
2031  
# Line 3503 | Line 2060 | find_user_host(struct Client *source_p,
2060   int
2061   valid_comment(struct Client *source_p, char *comment, int warn)
2062   {
3506  if (strchr(comment, '"'))
3507  {
3508    if (warn)
3509      sendto_one(source_p, ":%s NOTICE %s :Invalid character '\"' in comment",
3510                 me.name, source_p->name);
3511    return 0;
3512  }
3513
2063    if (strlen(comment) > REASONLEN)
2064      comment[REASONLEN-1] = '\0';
2065  
# Line 3525 | Line 2074 | valid_comment(struct Client *source_p, c
2074   * side effects - none
2075   */
2076   int
2077 < match_conf_password(const char *password, const struct AccessItem *aconf)
2077 > match_conf_password(const char *password, const struct MaskItem *conf)
2078   {
2079    const char *encr = NULL;
2080  
2081 <  if (password == NULL || aconf->passwd == NULL)
2081 >  if (EmptyString(password) || EmptyString(conf->passwd))
2082      return 0;
2083  
2084 <  if (aconf->flags & CONF_FLAGS_ENCRYPTED)
2085 <  {
3537 <    /* use first two chars of the password they send in as salt */
3538 <    /* If the password in the conf is MD5, and ircd is linked
3539 <     * to scrypt on FreeBSD, or the standard crypt library on
3540 <     * glibc Linux, then this code will work fine on generating
3541 <     * the proper encrypted hash for comparison.
3542 <     */
3543 <    if (*aconf->passwd)
3544 <      encr = crypt(password, aconf->passwd);
3545 <    else
3546 <      encr = "";
3547 <  }
2084 >  if (conf->flags & CONF_FLAGS_ENCRYPTED)
2085 >    encr = crypt(password, conf->passwd);
2086    else
2087      encr = password;
2088  
2089 <  return !strcmp(encr, aconf->passwd);
2089 >  return !strcmp(encr, conf->passwd);
2090   }
2091  
2092   /*
# Line 3557 | Line 2095 | match_conf_password(const char *password
2095   * inputs       - client sending the cluster
2096   *              - command name "KLINE" "XLINE" etc.
2097   *              - capab -- CAP_KLN etc. from s_serv.h
2098 < *              - cluster type -- CLUSTER_KLINE etc. from s_conf.h
2098 > *              - cluster type -- CLUSTER_KLINE etc. from conf.h
2099   *              - pattern and args to send along
2100   * output       - none
2101   * side effects - Take source_p send the pattern with args given
# Line 3577 | Line 2115 | cluster_a_line(struct Client *source_p,
2115  
2116    DLINK_FOREACH(ptr, cluster_items.head)
2117    {
2118 <    const struct ConfItem *conf = ptr->data;
2118 >    const struct MaskItem *conf = ptr->data;
2119  
2120      if (conf->flags & cluster_type)
2121        sendto_match_servs(source_p, conf->name, CAP_CLUSTER|capab,
2122 <                         "%s %s %s", command, conf->name, buffer);
2122 >                         "%s %s %s", command, conf->name, buffer);
2123    }
2124   }
2125  
# Line 3632 | Line 2170 | split_nuh(struct split_nuh_item *const i
2170      if (iptr->nickptr && *iptr->nuhmask != '\0')
2171        strlcpy(iptr->nickptr, iptr->nuhmask, iptr->nicksize);
2172  
2173 <    if ((q = strchr(++p, '@'))) {
2173 >    if ((q = strchr(++p, '@')))
2174 >    {
2175        *q++ = '\0';
2176  
2177        if (*p != '\0')
# Line 3671 | Line 2210 | split_nuh(struct split_nuh_item *const i
2210      }
2211    }
2212   }
3674
3675 /*
3676 * flags_to_ascii
3677 *
3678 * inputs       - flags is a bitmask
3679 *              - pointer to table of ascii letters corresponding
3680 *                to each bit
3681 *              - flag 1 for convert ToLower if bit missing
3682 *                0 if ignore.
3683 * output       - none
3684 * side effects - string pointed to by p has bitmap chars written to it
3685 */
3686 static void
3687 flags_to_ascii(unsigned int flags, const unsigned int bit_table[], char *p,
3688               int lowerit)
3689 {
3690  unsigned int mask = 1;
3691  int i = 0;
3692
3693  for (mask = 1; (mask != 0) && (bit_table[i] != 0); mask <<= 1, i++)
3694  {
3695    if (flags & mask)
3696      *p++ = bit_table[i];
3697    else if (lowerit)
3698      *p++ = ToLower(bit_table[i]);
3699  }
3700  *p = '\0';
3701 }
3702
3703 /*
3704 * cidr_limit_reached
3705 *
3706 * inputs       - int flag allowing over_rule of limits
3707 *              - pointer to the ip to be added
3708 *              - pointer to the class
3709 * output       - non zero if limit reached
3710 *                0 if limit not reached
3711 * side effects -
3712 */
3713 static int
3714 cidr_limit_reached(int over_rule,
3715                   struct irc_ssaddr *ip, struct ClassItem *aclass)
3716 {
3717  dlink_node *ptr = NULL;
3718  struct CidrItem *cidr;
3719
3720  if (NumberPerCidr(aclass) <= 0)
3721    return 0;
3722
3723  if (ip->ss.ss_family == AF_INET)
3724  {
3725    if (CidrBitlenIPV4(aclass) <= 0)
3726      return 0;
3727
3728    DLINK_FOREACH(ptr, aclass->list_ipv4.head)
3729    {
3730      cidr = ptr->data;
3731      if (match_ipv4(ip, &cidr->mask, CidrBitlenIPV4(aclass)))
3732      {
3733        if (!over_rule && (cidr->number_on_this_cidr >= NumberPerCidr(aclass)))
3734          return -1;
3735        cidr->number_on_this_cidr++;
3736        return 0;
3737      }
3738    }
3739    cidr = MyMalloc(sizeof(struct CidrItem));
3740    cidr->number_on_this_cidr = 1;
3741    cidr->mask = *ip;
3742    mask_addr(&cidr->mask, CidrBitlenIPV4(aclass));
3743    dlinkAdd(cidr, &cidr->node, &aclass->list_ipv4);
3744  }
3745 #ifdef IPV6
3746  else if (CidrBitlenIPV6(aclass) > 0)
3747  {
3748    DLINK_FOREACH(ptr, aclass->list_ipv6.head)
3749    {
3750      cidr = ptr->data;
3751      if (match_ipv6(ip, &cidr->mask, CidrBitlenIPV6(aclass)))
3752      {
3753        if (!over_rule && (cidr->number_on_this_cidr >= NumberPerCidr(aclass)))
3754          return -1;
3755        cidr->number_on_this_cidr++;
3756        return 0;
3757      }
3758    }
3759    cidr = MyMalloc(sizeof(struct CidrItem));
3760    cidr->number_on_this_cidr = 1;
3761    cidr->mask = *ip;
3762    mask_addr(&cidr->mask, CidrBitlenIPV6(aclass));
3763    dlinkAdd(cidr, &cidr->node, &aclass->list_ipv6);
3764  }
3765 #endif
3766  return 0;
3767 }
3768
3769 /*
3770 * remove_from_cidr_check
3771 *
3772 * inputs       - pointer to the ip to be removed
3773 *              - pointer to the class
3774 * output       - NONE
3775 * side effects -
3776 */
3777 static void
3778 remove_from_cidr_check(struct irc_ssaddr *ip, struct ClassItem *aclass)
3779 {
3780  dlink_node *ptr = NULL;
3781  dlink_node *next_ptr = NULL;
3782  struct CidrItem *cidr;
3783
3784  if (NumberPerCidr(aclass) == 0)
3785    return;
3786
3787  if (ip->ss.ss_family == AF_INET)
3788  {
3789    if (CidrBitlenIPV4(aclass) <= 0)
3790      return;
3791
3792    DLINK_FOREACH_SAFE(ptr, next_ptr, aclass->list_ipv4.head)
3793    {
3794      cidr = ptr->data;
3795      if (match_ipv4(ip, &cidr->mask, CidrBitlenIPV4(aclass)))
3796      {
3797        cidr->number_on_this_cidr--;
3798        if (cidr->number_on_this_cidr == 0)
3799        {
3800          dlinkDelete(ptr, &aclass->list_ipv4);
3801          MyFree(cidr);
3802          return;
3803        }
3804      }
3805    }
3806  }
3807 #ifdef IPV6
3808  else if (CidrBitlenIPV6(aclass) > 0)
3809  {
3810    DLINK_FOREACH_SAFE(ptr, next_ptr, aclass->list_ipv6.head)
3811    {
3812      cidr = ptr->data;
3813      if (match_ipv6(ip, &cidr->mask, CidrBitlenIPV6(aclass)))
3814      {
3815        cidr->number_on_this_cidr--;
3816        if (cidr->number_on_this_cidr == 0)
3817        {
3818          dlinkDelete(ptr, &aclass->list_ipv6);
3819          MyFree(cidr);
3820          return;
3821        }
3822      }
3823    }
3824  }
3825 #endif
3826 }
3827
3828 static void
3829 rebuild_cidr_list(int aftype, struct ConfItem *oldcl, struct ClassItem *newcl,
3830                  dlink_list *old_list, dlink_list *new_list, int changed)
3831 {
3832  dlink_node *ptr;
3833  struct Client *client_p;
3834  struct ConfItem *conf;
3835  struct AccessItem *aconf;
3836
3837  if (!changed)
3838  {
3839    *new_list = *old_list;
3840    old_list->head = old_list->tail = NULL;
3841    old_list->length = 0;
3842    return;
3843  }
3844
3845  DLINK_FOREACH(ptr, local_client_list.head)
3846  {
3847    client_p = ptr->data;
3848    if (client_p->localClient->aftype != aftype)
3849      continue;
3850    if (dlink_list_length(&client_p->localClient->confs) == 0)
3851      continue;
3852
3853    conf = client_p->localClient->confs.tail->data;
3854    if (conf->type == CLIENT_TYPE)
3855    {
3856      aconf = map_to_conf(conf);
3857      if (aconf->class_ptr == oldcl)
3858        cidr_limit_reached(1, &client_p->localClient->ip, newcl);
3859    }
3860  }
3861 }
3862
3863 /*
3864 * rebuild_cidr_class
3865 *
3866 * inputs       - pointer to old conf
3867 *              - pointer to new_class
3868 * output       - none
3869 * side effects - rebuilds the class link list of cidr blocks
3870 */
3871 void
3872 rebuild_cidr_class(struct ConfItem *conf, struct ClassItem *new_class)
3873 {
3874  struct ClassItem *old_class = map_to_conf(conf);
3875
3876  if (NumberPerCidr(old_class) > 0 && NumberPerCidr(new_class) > 0)
3877  {
3878    if (CidrBitlenIPV4(old_class) > 0 && CidrBitlenIPV4(new_class) > 0)
3879      rebuild_cidr_list(AF_INET, conf, new_class,
3880                        &old_class->list_ipv4, &new_class->list_ipv4,
3881                        CidrBitlenIPV4(old_class) != CidrBitlenIPV4(new_class));
3882
3883 #ifdef IPV6
3884    if (CidrBitlenIPV6(old_class) > 0 && CidrBitlenIPV6(new_class) > 0)
3885      rebuild_cidr_list(AF_INET6, conf, new_class,
3886                        &old_class->list_ipv6, &new_class->list_ipv6,
3887                        CidrBitlenIPV6(old_class) != CidrBitlenIPV6(new_class));
3888 #endif
3889  }
3890
3891  destroy_cidr_class(old_class);
3892 }
3893
3894 /*
3895 * destroy_cidr_list
3896 *
3897 * inputs       - pointer to class dlink list of cidr blocks
3898 * output       - none
3899 * side effects - completely destroys the class link list of cidr blocks
3900 */
3901 static void
3902 destroy_cidr_list(dlink_list *list)
3903 {
3904  dlink_node *ptr = NULL, *next_ptr = NULL;
3905
3906  DLINK_FOREACH_SAFE(ptr, next_ptr, list->head)
3907  {
3908    dlinkDelete(ptr, list);
3909    MyFree(ptr->data);
3910  }
3911 }
3912
3913 /*
3914 * destroy_cidr_class
3915 *
3916 * inputs       - pointer to class
3917 * output       - none
3918 * side effects - completely destroys the class link list of cidr blocks
3919 */
3920 static void
3921 destroy_cidr_class(struct ClassItem *aclass)
3922 {
3923  destroy_cidr_list(&aclass->list_ipv4);
3924  destroy_cidr_list(&aclass->list_ipv6);
3925 }

Diff Legend

Removed lines
+ Added lines
< Changed lines (old)
> Changed lines (new)