ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/server.c
Revision: 3135
Committed: Mon Mar 10 21:11:25 2014 UTC (11 years, 5 months ago) by michael
Content type: text/x-csrc
Original Path: ircd-hybrid/trunk/src/s_serv.c
File size: 43091 byte(s)
Log Message:
- Server now no longer accepts TS5 links

File Contents

# User Rev Content
1 adx 30 /*
2 michael 2916 * ircd-hybrid: an advanced, lightweight Internet Relay Chat Daemon (ircd)
3 adx 30 *
4 michael 2916 * Copyright (c) 1997-2014 ircd-hybrid development team
5 adx 30 *
6     * This program is free software; you can redistribute it and/or modify
7     * it under the terms of the GNU General Public License as published by
8     * the Free Software Foundation; either version 2 of the License, or
9     * (at your option) any later version.
10     *
11     * This program is distributed in the hope that it will be useful,
12     * but WITHOUT ANY WARRANTY; without even the implied warranty of
13     * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14     * GNU General Public License for more details.
15     *
16     * You should have received a copy of the GNU General Public License
17     * along with this program; if not, write to the Free Software
18     * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
19     * USA
20     */
21    
22 michael 2916 /*! \file s_serv.c
23     * \brief Server related functions.
24     * \version $Id$
25     */
26    
27 adx 30 #include "stdinc.h"
28     #ifdef HAVE_LIBCRYPTO
29     #include <openssl/rsa.h>
30     #include "rsa.h"
31     #endif
32 michael 1011 #include "list.h"
33 adx 30 #include "channel.h"
34     #include "channel_mode.h"
35     #include "client.h"
36     #include "event.h"
37     #include "fdlist.h"
38     #include "hash.h"
39     #include "irc_string.h"
40     #include "ircd.h"
41     #include "ircd_defs.h"
42     #include "s_bsd.h"
43     #include "numeric.h"
44     #include "packet.h"
45     #include "irc_res.h"
46 michael 1309 #include "conf.h"
47 adx 30 #include "s_serv.h"
48 michael 1309 #include "log.h"
49 michael 1303 #include "s_misc.h"
50 adx 30 #include "s_user.h"
51     #include "send.h"
52     #include "memory.h"
53 michael 2916 #include "channel.h"
54 michael 1243 #include "parse.h"
55 adx 30
56     #define MIN_CONN_FREQ 300
57    
58 michael 2156 dlink_list flatten_links;
59 adx 30 static dlink_list cap_list = { NULL, NULL, 0 };
60     static void server_burst(struct Client *);
61     static void burst_all(struct Client *);
62     static void send_tb(struct Client *client_p, struct Channel *chptr);
63    
64     static CNCB serv_connect_callback;
65    
66     static void burst_members(struct Client *, struct Channel *);
67    
68     /*
69     * write_links_file
70     *
71     * inputs - void pointer which is not used
72     * output - NONE
73     * side effects - called from an event, write out list of linked servers
74     * but in no particular order.
75     */
76     void
77 michael 2156 write_links_file(void *notused)
78 adx 30 {
79 michael 2156 FILE *file = NULL;
80 michael 2216 dlink_node *ptr = NULL, *ptr_next = NULL;
81 michael 2156 char buff[IRCD_BUFSIZE] = { '\0' };
82 adx 30
83 michael 2156 if ((file = fopen(LIPATH, "w")) == NULL)
84 adx 30 return;
85    
86 michael 2156 DLINK_FOREACH_SAFE(ptr, ptr_next, flatten_links.head)
87 adx 30 {
88 michael 2156 dlinkDelete(ptr, &flatten_links);
89     MyFree(ptr->data);
90     free_dlink_node(ptr);
91 adx 30 }
92    
93     DLINK_FOREACH(ptr, global_serv_list.head)
94     {
95 michael 1325 const struct Client *target_p = ptr->data;
96 adx 30
97 michael 2156 /*
98     * Skip hidden servers, aswell as ourselves, since we already send
99     * ourselves in /links
100     */
101     if (IsHidden(target_p) || IsMe(target_p))
102 adx 30 continue;
103    
104 michael 1851 if (HasFlag(target_p, FLAGS_SERVICE) && ConfigServerHide.hide_services)
105     continue;
106    
107 michael 1545 /*
108     * Attempt to format the file in such a way it follows the usual links output
109 adx 30 * ie "servername uplink :hops info"
110     * Mostly for aesthetic reasons - makes it look pretty in mIRC ;)
111     * - madmax
112     */
113 michael 2156 snprintf(buff, sizeof(buff), "%s %s :1 %s", target_p->name,
114     me.name, target_p->info);
115 michael 2212 dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
116 michael 2156 snprintf(buff, sizeof(buff), "%s %s :1 %s\n", target_p->name,
117     me.name, target_p->info);
118 adx 30
119 michael 1325 fputs(buff, file);
120 adx 30 }
121    
122 michael 1325 fclose(file);
123 adx 30 }
124    
125 michael 2216 void
126     read_links_file(void)
127     {
128     FILE *file = NULL;
129     char *p = NULL;
130     char buff[IRCD_BUFSIZE] = { '\0' };
131    
132     if ((file = fopen(LIPATH, "r")) == NULL)
133     return;
134    
135     while (fgets(buff, sizeof(buff), file))
136     {
137     if ((p = strchr(buff, '\n')) != NULL)
138     *p = '\0';
139    
140     dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
141     }
142    
143     fclose(file);
144     }
145    
146 adx 30 /* hunt_server()
147     * Do the basic thing in delivering the message (command)
148     * across the relays to the specific server (server) for
149     * actions.
150     *
151     * Note: The command is a format string and *MUST* be
152     * of prefixed style (e.g. ":%s COMMAND %s ...").
153     * Command can have only max 8 parameters.
154     *
155     * server parv[server] is the parameter identifying the
156     * target server.
157     *
158     * *WARNING*
159     * parv[server] is replaced with the pointer to the
160     * real servername from the matched client (I'm lazy
161     * now --msa).
162     *
163     * returns: (see #defines)
164     */
165     int
166     hunt_server(struct Client *client_p, struct Client *source_p, const char *command,
167 michael 1857 const int server, const int parc, char *parv[])
168 adx 30 {
169     struct Client *target_p = NULL;
170     struct Client *target_tmp = NULL;
171     dlink_node *ptr;
172     int wilds;
173    
174 michael 1344 /* Assume it's me, if no server */
175     if (parc <= server || EmptyString(parv[server]))
176     return HUNTED_ISME;
177 adx 30
178 michael 1652 if (!strcmp(parv[server], me.id) || !match(parv[server], me.name))
179 michael 1344 return HUNTED_ISME;
180    
181 adx 30 /* These are to pickup matches that would cause the following
182     * message to go in the wrong direction while doing quick fast
183     * non-matching lookups.
184     */
185     if (MyClient(source_p))
186 michael 1169 target_p = hash_find_client(parv[server]);
187 adx 30 else
188     target_p = find_person(client_p, parv[server]);
189    
190     if (target_p)
191     if (target_p->from == source_p->from && !MyConnect(target_p))
192     target_p = NULL;
193    
194 michael 1169 if (target_p == NULL && (target_p = hash_find_server(parv[server])))
195 adx 30 if (target_p->from == source_p->from && !MyConnect(target_p))
196     target_p = NULL;
197    
198 michael 1400 wilds = has_wildcards(parv[server]);
199 adx 30
200     /* Again, if there are no wild cards involved in the server
201     * name, use the hash lookup
202     */
203     if (target_p == NULL)
204     {
205     if (!wilds)
206     {
207 michael 1169 if (!(target_p = hash_find_server(parv[server])))
208 adx 30 {
209 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
210 michael 2182 return HUNTED_NOSUCH;
211 adx 30 }
212     }
213     else
214     {
215     DLINK_FOREACH(ptr, global_client_list.head)
216     {
217     target_tmp = ptr->data;
218    
219 michael 1652 if (!match(parv[server], target_tmp->name))
220 adx 30 {
221     if (target_tmp->from == source_p->from && !MyConnect(target_tmp))
222     continue;
223     target_p = ptr->data;
224    
225     if (IsRegistered(target_p) && (target_p != client_p))
226     break;
227     }
228     }
229     }
230     }
231    
232     if (target_p != NULL)
233     {
234     if(!IsRegistered(target_p))
235     {
236 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
237 adx 30 return HUNTED_NOSUCH;
238     }
239    
240     if (IsMe(target_p) || MyClient(target_p))
241     return HUNTED_ISME;
242    
243 michael 1652 if (match(target_p->name, parv[server]))
244 adx 30 parv[server] = target_p->name;
245    
246 michael 3096 sendto_one(target_p, command, ID_or_name(source_p, target_p),
247 adx 30 parv[1], parv[2], parv[3], parv[4],
248     parv[5], parv[6], parv[7], parv[8]);
249 michael 2134 return HUNTED_PASS;
250 michael 2345 }
251 adx 30
252 michael 3109 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
253 michael 2134 return HUNTED_NOSUCH;
254 adx 30 }
255    
256     /* try_connections()
257     *
258     * inputs - void pointer which is not used
259     * output - NONE
260     * side effects -
261     * scan through configuration and try new connections.
262     * Returns the calendar time when the next call to this
263     * function should be made latest. (No harm done if this
264     * is called earlier or later...)
265     */
266     void
267     try_connections(void *unused)
268     {
269 michael 1632 dlink_node *ptr = NULL;
270     struct MaskItem *conf;
271 adx 30 int confrq;
272    
273     /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
274     if (GlobalSetOptions.autoconn == 0)
275     return;
276    
277     DLINK_FOREACH(ptr, server_items.head)
278     {
279     conf = ptr->data;
280    
281 michael 1636 assert(conf->type == CONF_SERVER);
282 michael 1632
283 michael 2345 /* Also when already connecting! (update holdtimes) --SRB
284 adx 30 */
285 michael 1632 if (!conf->port ||!IsConfAllowAutoConn(conf))
286 adx 30 continue;
287    
288    
289     /* Skip this entry if the use of it is still on hold until
290     * future. Otherwise handle this entry (and set it on hold
291     * until next time). Will reset only hold times, if already
292     * made one successfull connection... [this algorithm is
293     * a bit fuzzy... -- msa >;) ]
294     */
295 michael 1649 if (conf->until > CurrentTime)
296 adx 30 continue;
297    
298 michael 1632 if (conf->class == NULL)
299 adx 30 confrq = DEFAULT_CONNECTFREQUENCY;
300     else
301     {
302 michael 1632 confrq = conf->class->con_freq;
303 michael 1377 if (confrq < MIN_CONN_FREQ)
304 michael 2134 confrq = MIN_CONN_FREQ;
305 adx 30 }
306    
307 michael 1649 conf->until = CurrentTime + confrq;
308 adx 30
309     /* Found a CONNECT config with port specified, scan clients
310     * and see if this server is already connected?
311     */
312 michael 1169 if (hash_find_server(conf->name) != NULL)
313 adx 30 continue;
314    
315 michael 1632 if (conf->class->ref_count < conf->class->max_total)
316 adx 30 {
317     /* Go to the end of the list, if not already last */
318     if (ptr->next != NULL)
319     {
320     dlinkDelete(ptr, &server_items);
321     dlinkAddTail(conf, &conf->node, &server_items);
322     }
323    
324     if (find_servconn_in_progress(conf->name))
325     return;
326    
327     /* We used to only print this if serv_connect() actually
328     * succeeded, but since comm_tcp_connect() can call the callback
329     * immediately if there is an error, we were getting error messages
330     * in the wrong order. SO, we just print out the activated line,
331     * and let serv_connect() / serv_connect_callback() print an
332     * error afterwards if it fails.
333     * -- adrian
334     */
335     if (ConfigServerHide.hide_server_ips)
336 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
337     "Connection to %s activated.",
338 adx 30 conf->name);
339     else
340 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
341     "Connection to %s[%s] activated.",
342 michael 1632 conf->name, conf->host);
343 adx 30
344 michael 1632 serv_connect(conf, NULL);
345 adx 30 /* We connect only one at time... */
346     return;
347     }
348     }
349     }
350    
351     int
352 michael 1115 valid_servname(const char *name)
353     {
354     unsigned int length = 0;
355     unsigned int dots = 0;
356     const char *p = name;
357    
358     for (; *p; ++p)
359     {
360     if (!IsServChar(*p))
361 michael 1118 return 0;
362 michael 1115
363     ++length;
364    
365     if (*p == '.')
366     ++dots;
367     }
368    
369 michael 1118 return dots != 0 && length <= HOSTLEN;
370 michael 1115 }
371    
372     int
373 michael 1302 check_server(const char *name, struct Client *client_p)
374 adx 30 {
375     dlink_node *ptr;
376 michael 1632 struct MaskItem *conf = NULL;
377     struct MaskItem *server_conf = NULL;
378 adx 30 int error = -1;
379    
380     assert(client_p != NULL);
381    
382     /* loop through looking for all possible connect items that might work */
383     DLINK_FOREACH(ptr, server_items.head)
384     {
385     conf = ptr->data;
386    
387 michael 1652 if (match(name, conf->name))
388 adx 30 continue;
389    
390     error = -3;
391    
392     /* XXX: Fix me for IPv6 */
393     /* XXX sockhost is the IPv4 ip as a string */
394 michael 2345 if (!match(conf->host, client_p->host) ||
395 michael 1652 !match(conf->host, client_p->sockhost))
396 adx 30 {
397     error = -2;
398    
399 michael 1632 if (!match_conf_password(client_p->localClient->passwd, conf))
400 michael 1414 return -2;
401 adx 30
402 michael 2228 if (!EmptyString(conf->certfp))
403 michael 2229 if (EmptyString(client_p->certfp) || strcasecmp(client_p->certfp, conf->certfp))
404 michael 2228 return -4;
405    
406 michael 1414 server_conf = conf;
407 adx 30 }
408     }
409    
410     if (server_conf == NULL)
411 michael 2182 return error;
412 adx 30
413     attach_conf(client_p, server_conf);
414    
415    
416 michael 1632 if (server_conf != NULL)
417 adx 30 {
418     struct sockaddr_in *v4;
419     #ifdef IPV6
420     struct sockaddr_in6 *v6;
421     #endif
422 michael 1632 switch (server_conf->aftype)
423 adx 30 {
424     #ifdef IPV6
425 michael 2345 case AF_INET6:
426 michael 1632 v6 = (struct sockaddr_in6 *)&server_conf->addr;
427 adx 30
428     if (IN6_IS_ADDR_UNSPECIFIED(&v6->sin6_addr))
429 michael 1632 memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
430 adx 30 break;
431     #endif
432     case AF_INET:
433 michael 1632 v4 = (struct sockaddr_in *)&server_conf->addr;
434 adx 30
435     if (v4->sin_addr.s_addr == INADDR_NONE)
436 michael 2345 memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
437 adx 30 break;
438     }
439     }
440    
441 michael 2182 return 0;
442 adx 30 }
443    
444     /* add_capability()
445     *
446     * inputs - string name of CAPAB
447     * - int flag of capability
448     * output - NONE
449     * side effects - Adds given capability name and bit mask to
450     * current supported capabilities. This allows
451     * modules to dynamically add or subtract their capability.
452     */
453     void
454     add_capability(const char *capab_name, int cap_flag, int add_to_default)
455     {
456 michael 885 struct Capability *cap = MyMalloc(sizeof(*cap));
457 adx 30
458 michael 1646 cap->name = xstrdup(capab_name);
459 adx 30 cap->cap = cap_flag;
460     dlinkAdd(cap, &cap->node, &cap_list);
461 michael 885
462 adx 30 if (add_to_default)
463     default_server_capabs |= cap_flag;
464     }
465    
466     /* delete_capability()
467     *
468     * inputs - string name of CAPAB
469     * output - NONE
470     * side effects - delete given capability from ones known.
471     */
472     int
473     delete_capability(const char *capab_name)
474     {
475     dlink_node *ptr;
476     dlink_node *next_ptr;
477     struct Capability *cap;
478    
479     DLINK_FOREACH_SAFE(ptr, next_ptr, cap_list.head)
480     {
481     cap = ptr->data;
482    
483     if (cap->cap != 0)
484     {
485     if (irccmp(cap->name, capab_name) == 0)
486     {
487 michael 2134 default_server_capabs &= ~(cap->cap);
488     dlinkDelete(ptr, &cap_list);
489     MyFree(cap->name);
490     MyFree(cap);
491 adx 30 }
492     }
493     }
494    
495 michael 896 return 0;
496 adx 30 }
497    
498     /*
499     * find_capability()
500     *
501     * inputs - string name of capab to find
502     * output - 0 if not found CAPAB otherwise
503     * side effects - none
504     */
505 michael 1877 unsigned int
506 adx 30 find_capability(const char *capab)
507     {
508 michael 896 const dlink_node *ptr = NULL;
509 adx 30
510     DLINK_FOREACH(ptr, cap_list.head)
511     {
512 michael 896 const struct Capability *cap = ptr->data;
513 adx 30
514 michael 896 if (cap->cap && !irccmp(cap->name, capab))
515     return cap->cap;
516 adx 30 }
517 michael 896
518     return 0;
519 adx 30 }
520    
521     /* send_capabilities()
522     *
523     * inputs - Client pointer to send to
524     * - int flag of capabilities that this server can send
525     * output - NONE
526     * side effects - send the CAPAB line to a server -orabidoo
527     *
528     */
529     void
530 michael 1632 send_capabilities(struct Client *client_p, int cap_can_send)
531 adx 30 {
532     struct Capability *cap=NULL;
533     char msgbuf[IRCD_BUFSIZE];
534     char *t;
535     int tl;
536     dlink_node *ptr;
537    
538     t = msgbuf;
539    
540     DLINK_FOREACH(ptr, cap_list.head)
541     {
542     cap = ptr->data;
543    
544     if (cap->cap & (cap_can_send|default_server_capabs))
545     {
546 michael 1793 tl = sprintf(t, "%s ", cap->name);
547 adx 30 t += tl;
548     }
549     }
550    
551 michael 319 *(t - 1) = '\0';
552 adx 30 sendto_one(client_p, "CAPAB :%s", msgbuf);
553     }
554    
555     /* sendnick_TS()
556 michael 2345 *
557 adx 30 * inputs - client (server) to send nick towards
558 adx 386 * - client to send nick for
559 adx 30 * output - NONE
560     * side effects - NICK message is sent towards given client_p
561     */
562     void
563     sendnick_TS(struct Client *client_p, struct Client *target_p)
564     {
565 michael 2691 char ubuf[IRCD_BUFSIZE];
566 adx 30
567     if (!IsClient(target_p))
568     return;
569    
570 michael 1294 send_umode(NULL, target_p, 0, SEND_UMODES, ubuf);
571 adx 30
572     if (ubuf[0] == '\0')
573     {
574     ubuf[0] = '+';
575     ubuf[1] = '\0';
576     }
577    
578 michael 1196 if (IsCapable(client_p, CAP_SVS))
579 michael 3135 sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s %s :%s",
580     target_p->servptr->id,
581     target_p->name, target_p->hopcount + 1,
582     (unsigned long) target_p->tsinfo,
583     ubuf, target_p->username, target_p->host,
584     (MyClient(target_p) && IsIPSpoof(target_p)) ?
585     "0" : target_p->sockhost, target_p->id,
586     target_p->svid, target_p->info);
587 adx 30 else
588 michael 3135 sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s :%s",
589     target_p->servptr->id,
590     target_p->name, target_p->hopcount + 1,
591     (unsigned long) target_p->tsinfo,
592     ubuf, target_p->username, target_p->host,
593     (MyClient(target_p) && IsIPSpoof(target_p)) ?
594     "0" : target_p->sockhost, target_p->id, target_p->info);
595 adx 386
596 michael 2229 if (!EmptyString(target_p->certfp))
597 michael 2228 sendto_one(client_p, ":%s CERTFP %s",
598     ID_or_name(target_p, client_p), target_p->certfp);
599    
600 michael 1519 if (target_p->away[0])
601     sendto_one(client_p, ":%s AWAY :%s", ID_or_name(target_p, client_p),
602     target_p->away);
603 adx 30
604     }
605    
606     /*
607     * show_capabilities - show current server capabilities
608     *
609     * inputs - pointer to a struct Client
610     * output - pointer to static string
611     * side effects - build up string representing capabilities of server listed
612     */
613     const char *
614 michael 2282 show_capabilities(const struct Client *target_p)
615 adx 30 {
616 michael 2309 static char msgbuf[IRCD_BUFSIZE] = "";
617 michael 2282 const dlink_node *ptr = NULL;
618 adx 30
619 michael 2309 strlcpy(msgbuf, "TS", sizeof(msgbuf));
620    
621 adx 30 DLINK_FOREACH(ptr, cap_list.head)
622     {
623     const struct Capability *cap = ptr->data;
624    
625 michael 2282 if (!IsCapable(target_p, cap->cap))
626     continue;
627    
628     strlcat(msgbuf, " ", sizeof(msgbuf));
629     strlcat(msgbuf, cap->name, sizeof(msgbuf));
630 adx 30 }
631 michael 1302
632     return msgbuf;
633 adx 30 }
634    
635     /* make_server()
636     *
637     * inputs - pointer to client struct
638     * output - pointer to struct Server
639     * side effects - add's an Server information block to a client
640     * if it was not previously allocated.
641     */
642     struct Server *
643     make_server(struct Client *client_p)
644     {
645     if (client_p->serv == NULL)
646     client_p->serv = MyMalloc(sizeof(struct Server));
647    
648     return client_p->serv;
649     }
650    
651     /* server_estab()
652     *
653     * inputs - pointer to a struct Client
654     * output -
655     * side effects -
656     */
657     void
658     server_estab(struct Client *client_p)
659     {
660     struct Client *target_p;
661 michael 1632 struct MaskItem *conf = NULL;
662 adx 30 char *host;
663     const char *inpath;
664     static char inpath_ip[HOSTLEN * 2 + USERLEN + 6];
665     dlink_node *ptr;
666 michael 1305 #ifdef HAVE_LIBCRYPTO
667     const COMP_METHOD *compression = NULL, *expansion = NULL;
668     #endif
669 adx 30
670     assert(client_p != NULL);
671    
672     strlcpy(inpath_ip, get_client_name(client_p, SHOW_IP), sizeof(inpath_ip));
673    
674     inpath = get_client_name(client_p, MASK_IP); /* "refresh" inpath with host */
675     host = client_p->name;
676    
677 michael 1632 if ((conf = find_conf_name(&client_p->localClient->confs, host, CONF_SERVER))
678 adx 30 == NULL)
679     {
680     /* This shouldn't happen, better tell the ops... -A1kmm */
681 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
682     "Warning: Lost connect{} block "
683 adx 30 "for server %s(this shouldn't happen)!", host);
684     exit_client(client_p, &me, "Lost connect{} block!");
685     return;
686     }
687    
688     MyFree(client_p->localClient->passwd);
689     client_p->localClient->passwd = NULL;
690    
691     /* Its got identd, since its a server */
692     SetGotId(client_p);
693    
694     /* If there is something in the serv_list, it might be this
695     * connecting server..
696     */
697 michael 2345 if (!ServerInfo.hub && serv_list.head)
698 adx 30 {
699     if (client_p != serv_list.head->data || serv_list.head->next)
700     {
701 michael 896 ++ServerStats.is_ref;
702 adx 30 sendto_one(client_p, "ERROR :I'm a leaf not a hub");
703     exit_client(client_p, &me, "I'm a leaf");
704     return;
705     }
706     }
707    
708 michael 1302 if (IsUnknown(client_p))
709 adx 30 {
710 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
711 adx 30
712 michael 1632 send_capabilities(client_p, 0);
713 adx 30
714     sendto_one(client_p, "SERVER %s 1 :%s%s",
715 michael 1118 me.name, ConfigServerHide.hidden ? "(H) " : "", me.info);
716 adx 30 }
717    
718 michael 1115 sendto_one(client_p, "SVINFO %d %d 0 :%lu", TS_CURRENT, TS_MIN,
719 adx 30 (unsigned long)CurrentTime);
720    
721 michael 3135 if (HasID(client_p))
722 adx 30 hash_add_id(client_p);
723    
724     /* XXX Does this ever happen? I don't think so -db */
725 michael 1632 detach_conf(client_p, CONF_OPER);
726 adx 30
727     /* *WARNING*
728     ** In the following code in place of plain server's
729     ** name we send what is returned by get_client_name
730     ** which may add the "sockhost" after the name. It's
731     ** *very* *important* that there is a SPACE between
732     ** the name and sockhost (if present). The receiving
733     ** server will start the information field from this
734     ** first blank and thus puts the sockhost into info.
735     ** ...a bit tricky, but you have been warned, besides
736     ** code is more neat this way... --msa
737     */
738     client_p->servptr = &me;
739    
740     if (IsClosing(client_p))
741     return;
742    
743     SetServer(client_p);
744    
745     /* Update the capability combination usage counts. -A1kmm */
746     set_chcap_usage_counts(client_p);
747    
748     /* Some day, all these lists will be consolidated *sigh* */
749 michael 889 dlinkAdd(client_p, &client_p->lnode, &me.serv->server_list);
750 adx 30
751 michael 1126 assert(dlinkFind(&unknown_list, client_p));
752 adx 30
753 michael 1126 dlink_move_node(&client_p->localClient->lclient_node,
754     &unknown_list, &serv_list);
755 adx 30
756     Count.myserver++;
757    
758     dlinkAdd(client_p, make_dlink_node(), &global_serv_list);
759     hash_add_client(client_p);
760    
761     /* doesnt duplicate client_p->serv if allocated this struct already */
762     make_server(client_p);
763    
764     /* fixing eob timings.. -gnp */
765 michael 1241 client_p->localClient->firsttime = CurrentTime;
766 adx 30
767 michael 1632 if (find_matching_name_conf(CONF_SERVICE, client_p->name, NULL, NULL, 0))
768 michael 1219 AddFlag(client_p, FLAGS_SERVICE);
769 michael 1157
770 adx 30 /* Show the real host/IP to admins */
771 michael 1305 #ifdef HAVE_LIBCRYPTO
772 michael 1303 if (client_p->localClient->fd.ssl)
773     {
774 michael 1305 compression = SSL_get_current_compression(client_p->localClient->fd.ssl);
775     expansion = SSL_get_current_expansion(client_p->localClient->fd.ssl);
776    
777 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
778 michael 1305 "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
779 michael 1303 inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
780 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
781     expansion ? SSL_COMP_get_name(expansion) : "NONE",
782 michael 1303 show_capabilities(client_p));
783     /* Now show the masked hostname/IP to opers */
784 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
785 michael 1305 "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
786 michael 1303 inpath, ssl_get_cipher(client_p->localClient->fd.ssl),
787 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
788     expansion ? SSL_COMP_get_name(expansion) : "NONE",
789 michael 1303 show_capabilities(client_p));
790 michael 1305 ilog(LOG_TYPE_IRCD, "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
791 michael 1303 inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
792 michael 1305 compression ? SSL_COMP_get_name(compression) : "NONE",
793     expansion ? SSL_COMP_get_name(expansion) : "NONE",
794 michael 1303 show_capabilities(client_p));
795     }
796     else
797 michael 1305 #endif
798 michael 1303 {
799 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
800 michael 1303 "Link with %s established: (Capabilities: %s)",
801 michael 1618 inpath_ip, show_capabilities(client_p));
802 michael 1303 /* Now show the masked hostname/IP to opers */
803 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
804 michael 1303 "Link with %s established: (Capabilities: %s)",
805 michael 1618 inpath, show_capabilities(client_p));
806 michael 1303 ilog(LOG_TYPE_IRCD, "Link with %s established: (Capabilities: %s)",
807     inpath_ip, show_capabilities(client_p));
808     }
809 adx 30
810 michael 1302 fd_note(&client_p->localClient->fd, "Server: %s", client_p->name);
811 adx 30
812     /* Old sendto_serv_but_one() call removed because we now
813     ** need to send different names to different servers
814     ** (domain name matching) Send new server to other servers.
815     */
816     DLINK_FOREACH(ptr, serv_list.head)
817     {
818     target_p = ptr->data;
819    
820     if (target_p == client_p)
821     continue;
822    
823 michael 3135 sendto_one(target_p, ":%s SID %s 2 %s :%s%s",
824     me.id, client_p->name, client_p->id,
825     IsHidden(client_p) ? "(H) " : "",
826     client_p->info);
827 adx 30 }
828    
829 michael 2345 /*
830     * Pass on my client information to the new server
831     *
832     * First, pass only servers (idea is that if the link gets
833     * cancelled beacause the server was already there,
834     * there are no NICK's to be cancelled...). Of course,
835     * if cancellation occurs, all this info is sent anyway,
836     * and I guess the link dies when a read is attempted...? --msa
837     *
838     * Note: Link cancellation to occur at this point means
839     * that at least two servers from my fragment are building
840     * up connection this other fragment at the same time, it's
841     * a race condition, not the normal way of operation...
842     *
843     * ALSO NOTE: using the get_client_name for server names--
844     * see previous *WARNING*!!! (Also, original inpath
845     * is destroyed...)
846     */
847 adx 30
848     DLINK_FOREACH_PREV(ptr, global_serv_list.tail)
849     {
850     target_p = ptr->data;
851    
852     /* target_p->from == target_p for target_p == client_p */
853 michael 1118 if (IsMe(target_p) || target_p->from == client_p)
854 adx 30 continue;
855    
856 michael 3135 sendto_one(client_p, ":%s SID %s %d %s :%s%s",
857     ID(target_p->servptr), target_p->name, target_p->hopcount+1,
858     target_p->id, IsHidden(target_p) ? "(H) " : "",
859     target_p->info);
860 michael 1972
861     if (HasFlag(target_p, FLAGS_EOB))
862 michael 2718 sendto_one(client_p, ":%s EOB", ID_or_name(target_p, client_p));
863 adx 30 }
864    
865     server_burst(client_p);
866     }
867    
868     /* server_burst()
869     *
870     * inputs - struct Client pointer server
871     * -
872     * output - none
873     * side effects - send a server burst
874     * bugs - still too long
875     */
876     static void
877     server_burst(struct Client *client_p)
878     {
879     /* Send it in the shortened format with the TS, if
880     ** it's a TS server; walk the list of channels, sending
881     ** all the nicks that haven't been sent yet for each
882     ** channel, then send the channel itself -- it's less
883     ** obvious than sending all nicks first, but on the
884     ** receiving side memory will be allocated more nicely
885     ** saving a few seconds in the handling of a split
886     ** -orabidoo
887     */
888    
889 michael 885 burst_all(client_p);
890 adx 30
891     /* EOB stuff is now in burst_all */
892     /* Always send a PING after connect burst is done */
893     sendto_one(client_p, "PING :%s", ID_or_name(&me, client_p));
894     }
895    
896     /* burst_all()
897     *
898 michael 2345 * inputs - pointer to server to send burst to
899 adx 30 * output - NONE
900     * side effects - complete burst of channels/nicks is sent to client_p
901     */
902     static void
903     burst_all(struct Client *client_p)
904     {
905 michael 329 dlink_node *ptr = NULL;
906 adx 30
907 michael 329 DLINK_FOREACH(ptr, global_channel_list.head)
908 adx 30 {
909 michael 329 struct Channel *chptr = ptr->data;
910 adx 30
911     if (dlink_list_length(&chptr->members) != 0)
912     {
913     burst_members(client_p, chptr);
914     send_channel_modes(client_p, chptr);
915 michael 329
916 michael 1472 if (IsCapable(client_p, CAP_TBURST))
917 michael 2134 send_tb(client_p, chptr);
918 adx 30 }
919     }
920    
921     /* also send out those that are not on any channel
922     */
923     DLINK_FOREACH(ptr, global_client_list.head)
924     {
925 michael 329 struct Client *target_p = ptr->data;
926 adx 30
927 michael 1219 if (!HasFlag(target_p, FLAGS_BURSTED) && target_p->from != client_p)
928 adx 30 sendnick_TS(client_p, target_p);
929 michael 2345
930 michael 1219 DelFlag(target_p, FLAGS_BURSTED);
931 adx 30 }
932    
933     if (IsCapable(client_p, CAP_EOB))
934     sendto_one(client_p, ":%s EOB", ID_or_name(&me, client_p));
935     }
936    
937     /*
938     * send_tb
939     *
940 michael 329 * inputs - pointer to Client
941     * - pointer to channel
942     * output - NONE
943     * side effects - Called on a server burst when
944 michael 1472 * server is CAP_TBURST capable
945 adx 30 */
946     static void
947     send_tb(struct Client *client_p, struct Channel *chptr)
948     {
949 michael 329 /*
950 michael 337 * We may also send an empty topic here, but only if topic_time isn't 0,
951     * i.e. if we had a topic that got unset. This is required for syncing
952     * topics properly.
953     *
954     * Imagine the following scenario: Our downlink introduces a channel
955     * to us with a TS that is equal to ours, but the channel topic on
956     * their side got unset while the servers were in splitmode, which means
957     * their 'topic' is newer. They simply wanted to unset it, so we have to
958     * deal with it in a more sophisticated fashion instead of just resetting
959     * it to their old topic they had before. Read m_tburst.c:ms_tburst
960     * for further information -Michael
961 michael 329 */
962 michael 337 if (chptr->topic_time != 0)
963 michael 1472 sendto_one(client_p, ":%s TBURST %lu %s %lu %s :%s",
964     ID_or_name(&me, client_p),
965     (unsigned long)chptr->channelts, chptr->chname,
966     (unsigned long)chptr->topic_time,
967     chptr->topic_info,
968     chptr->topic);
969 adx 30 }
970    
971     /* burst_members()
972     *
973     * inputs - pointer to server to send members to
974     * - dlink_list pointer to membership list to send
975     * output - NONE
976     * side effects -
977     */
978     static void
979     burst_members(struct Client *client_p, struct Channel *chptr)
980     {
981     struct Client *target_p;
982     struct Membership *ms;
983     dlink_node *ptr;
984    
985     DLINK_FOREACH(ptr, chptr->members.head)
986     {
987     ms = ptr->data;
988     target_p = ms->client_p;
989    
990 michael 1219 if (!HasFlag(target_p, FLAGS_BURSTED))
991 adx 30 {
992 michael 1219 AddFlag(target_p, FLAGS_BURSTED);
993 adx 30
994     if (target_p->from != client_p)
995     sendnick_TS(client_p, target_p);
996     }
997     }
998     }
999    
1000     /* New server connection code
1001     * Based upon the stuff floating about in s_bsd.c
1002     * -- adrian
1003     */
1004    
1005     /* serv_connect() - initiate a server connection
1006     *
1007 michael 2345 * inputs - pointer to conf
1008 adx 30 * - pointer to client doing the connect
1009     * output -
1010     * side effects -
1011     *
1012     * This code initiates a connection to a server. It first checks to make
1013     * sure the given server exists. If this is the case, it creates a socket,
1014     * creates a client, saves the socket information in the client, and
1015     * initiates a connection to the server through comm_connect_tcp(). The
1016     * completion of this goes through serv_completed_connection().
1017     *
1018     * We return 1 if the connection is attempted, since we don't know whether
1019     * it suceeded or not, and 0 if it fails in here somewhere.
1020     */
1021     int
1022 michael 1632 serv_connect(struct MaskItem *conf, struct Client *by)
1023 adx 30 {
1024     struct Client *client_p;
1025 michael 1398 char buf[HOSTIPLEN + 1];
1026 adx 30
1027     /* conversion structs */
1028     struct sockaddr_in *v4;
1029 michael 1632 /* Make sure conf is useful */
1030     assert(conf != NULL);
1031 adx 30
1032    
1033 michael 1632 getnameinfo((struct sockaddr *)&conf->addr, conf->addr.ss_len,
1034 michael 1123 buf, sizeof(buf), NULL, 0, NI_NUMERICHOST);
1035 michael 1632 ilog(LOG_TYPE_IRCD, "Connect to %s[%s] @%s", conf->name, conf->host,
1036 adx 30 buf);
1037    
1038     /* Still processing a DNS lookup? -> exit */
1039 michael 1632 if (conf->dns_pending)
1040 adx 30 {
1041 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1042 michael 992 "Error connecting to %s: DNS lookup for connect{} in progress.",
1043     conf->name);
1044 adx 30 return (0);
1045     }
1046    
1047 michael 1632 if (conf->dns_failed)
1048 michael 992 {
1049 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1050 michael 992 "Error connecting to %s: DNS lookup for connect{} failed.",
1051     conf->name);
1052     return (0);
1053     }
1054    
1055 adx 30 /* Make sure this server isn't already connected
1056 michael 1632 * Note: conf should ALWAYS be a valid C: line
1057 adx 30 */
1058 michael 1169 if ((client_p = hash_find_server(conf->name)) != NULL)
1059 michael 2345 {
1060 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1061 michael 2134 "Server %s already present from %s",
1062     conf->name, get_client_name(client_p, SHOW_IP));
1063 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1064 michael 2134 "Server %s already present from %s",
1065     conf->name, get_client_name(client_p, MASK_IP));
1066 adx 30 if (by && IsClient(by) && !MyClient(by))
1067 michael 3110 sendto_one_notice(by, &me, ":Server %s already present from %s",
1068     conf->name, get_client_name(client_p, MASK_IP));
1069 michael 2134 return 0;
1070 adx 30 }
1071 michael 2345
1072 adx 30 /* Create a local client */
1073     client_p = make_client(NULL);
1074    
1075     /* Copy in the server, hostname, fd */
1076     strlcpy(client_p->name, conf->name, sizeof(client_p->name));
1077 michael 1632 strlcpy(client_p->host, conf->host, sizeof(client_p->host));
1078 adx 30
1079     /* We already converted the ip once, so lets use it - stu */
1080 michael 1115 strlcpy(client_p->sockhost, buf, sizeof(client_p->sockhost));
1081 adx 30
1082 michael 2345 /* create a socket for the server connection */
1083 michael 1632 if (comm_open(&client_p->localClient->fd, conf->addr.ss.ss_family,
1084 adx 30 SOCK_STREAM, 0, NULL) < 0)
1085     {
1086     /* Eek, failure to create the socket */
1087 michael 2134 report_error(L_ALL, "opening stream socket to %s: %s",
1088     conf->name, errno);
1089 adx 30 SetDead(client_p);
1090     exit_client(client_p, &me, "Connection failed");
1091 michael 2134 return 0;
1092 adx 30 }
1093    
1094     /* servernames are always guaranteed under HOSTLEN chars */
1095     fd_note(&client_p->localClient->fd, "Server: %s", conf->name);
1096    
1097     /* Attach config entries to client here rather than in
1098     * serv_connect_callback(). This to avoid null pointer references.
1099     */
1100 michael 1632 if (!attach_connect_block(client_p, conf->name, conf->host))
1101 adx 30 {
1102 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1103 michael 2134 "Host %s is not enabled for connecting: no connect{} block",
1104     conf->name);
1105 michael 2345 if (by && IsClient(by) && !MyClient(by))
1106 michael 3110 sendto_one_notice(by, &me, ":Connect to host %s failed.", client_p->name);
1107    
1108 adx 30 SetDead(client_p);
1109     exit_client(client_p, client_p, "Connection failed");
1110 michael 2134 return 0;
1111 adx 30 }
1112    
1113     /* at this point we have a connection in progress and C/N lines
1114     * attached to the client, the socket info should be saved in the
1115     * client and it should either be resolved or have a valid address.
1116     *
1117     * The socket has been connected or connect is in progress.
1118     */
1119     make_server(client_p);
1120    
1121     if (by && IsClient(by))
1122     strlcpy(client_p->serv->by, by->name, sizeof(client_p->serv->by));
1123     else
1124     strlcpy(client_p->serv->by, "AutoConn.", sizeof(client_p->serv->by));
1125    
1126     SetConnecting(client_p);
1127     dlinkAdd(client_p, &client_p->node, &global_client_list);
1128     /* from def_fam */
1129 michael 1632 client_p->localClient->aftype = conf->aftype;
1130 adx 30
1131     /* Now, initiate the connection */
1132 michael 2345 /* XXX assume that a non 0 type means a specific bind address
1133 adx 30 * for this connect.
1134     */
1135 michael 1632 switch (conf->aftype)
1136 adx 30 {
1137     case AF_INET:
1138 michael 1632 v4 = (struct sockaddr_in*)&conf->bind;
1139 adx 30 if (v4->sin_addr.s_addr != 0)
1140     {
1141     struct irc_ssaddr ipn;
1142     memset(&ipn, 0, sizeof(struct irc_ssaddr));
1143     ipn.ss.ss_family = AF_INET;
1144     ipn.ss_port = 0;
1145 michael 1632 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1146 michael 2134 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1147 michael 2345 (struct sockaddr *)&ipn, ipn.ss_len,
1148 michael 2134 serv_connect_callback, client_p, conf->aftype,
1149     CONNECTTIMEOUT);
1150 adx 30 }
1151     else if (ServerInfo.specific_ipv4_vhost)
1152     {
1153     struct irc_ssaddr ipn;
1154     memset(&ipn, 0, sizeof(struct irc_ssaddr));
1155     ipn.ss.ss_family = AF_INET;
1156     ipn.ss_port = 0;
1157     memcpy(&ipn, &ServerInfo.ip, sizeof(struct irc_ssaddr));
1158 michael 1632 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1159 adx 30 (struct sockaddr *)&ipn, ipn.ss_len,
1160 michael 1632 serv_connect_callback, client_p, conf->aftype,
1161 michael 2134 CONNECTTIMEOUT);
1162 adx 30 }
1163     else
1164 michael 2345 comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1165     NULL, 0, serv_connect_callback, client_p, conf->aftype,
1166 adx 30 CONNECTTIMEOUT);
1167     break;
1168     #ifdef IPV6
1169     case AF_INET6:
1170     {
1171 michael 2182 struct irc_ssaddr ipn;
1172     struct sockaddr_in6 *v6;
1173     struct sockaddr_in6 *v6conf;
1174 adx 30
1175 michael 2182 memset(&ipn, 0, sizeof(struct irc_ssaddr));
1176     v6conf = (struct sockaddr_in6 *)&conf->bind;
1177     v6 = (struct sockaddr_in6 *)&ipn;
1178 adx 30
1179 michael 2182 if (memcmp(&v6conf->sin6_addr, &v6->sin6_addr, sizeof(struct in6_addr)) != 0)
1180 adx 30 {
1181 michael 2182 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1182     ipn.ss.ss_family = AF_INET6;
1183     ipn.ss_port = 0;
1184     comm_connect_tcp(&client_p->localClient->fd,
1185     conf->host, conf->port,
1186 michael 2345 (struct sockaddr *)&ipn, ipn.ss_len,
1187 michael 2182 serv_connect_callback, client_p,
1188     conf->aftype, CONNECTTIMEOUT);
1189     }
1190     else if (ServerInfo.specific_ipv6_vhost)
1191     {
1192     memcpy(&ipn, &ServerInfo.ip6, sizeof(struct irc_ssaddr));
1193     ipn.ss.ss_family = AF_INET6;
1194     ipn.ss_port = 0;
1195     comm_connect_tcp(&client_p->localClient->fd,
1196     conf->host, conf->port,
1197     (struct sockaddr *)&ipn, ipn.ss_len,
1198     serv_connect_callback, client_p,
1199     conf->aftype, CONNECTTIMEOUT);
1200     }
1201     else
1202     comm_connect_tcp(&client_p->localClient->fd,
1203 michael 2345 conf->host, conf->port,
1204 michael 2182 NULL, 0, serv_connect_callback, client_p,
1205     conf->aftype, CONNECTTIMEOUT);
1206 adx 30 }
1207     #endif
1208     }
1209 michael 2182 return 1;
1210 adx 30 }
1211    
1212 michael 1303 #ifdef HAVE_LIBCRYPTO
1213     static void
1214     finish_ssl_server_handshake(struct Client *client_p)
1215     {
1216 michael 1632 struct MaskItem *conf = NULL;
1217 michael 1303
1218     conf = find_conf_name(&client_p->localClient->confs,
1219 michael 1632 client_p->name, CONF_SERVER);
1220 michael 1303 if (conf == NULL)
1221     {
1222 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1223 michael 1303 "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1224 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1225 michael 1303 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1226    
1227     exit_client(client_p, &me, "Lost connect{} block");
1228     return;
1229     }
1230    
1231 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1232 michael 1303
1233 michael 1632 send_capabilities(client_p, 0);
1234 michael 1303
1235     sendto_one(client_p, "SERVER %s 1 :%s%s",
1236     me.name, ConfigServerHide.hidden ? "(H) " : "",
1237     me.info);
1238    
1239     /* If we've been marked dead because a send failed, just exit
1240     * here now and save everyone the trouble of us ever existing.
1241     */
1242     if (IsDead(client_p))
1243     {
1244 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1245 michael 1303 "%s[%s] went dead during handshake",
1246     client_p->name,
1247     client_p->host);
1248 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1249 michael 1303 "%s went dead during handshake", client_p->name);
1250     return;
1251     }
1252    
1253     /* don't move to serv_list yet -- we haven't sent a burst! */
1254     /* If we get here, we're ok, so lets start reading some data */
1255     comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ, read_packet, client_p, 0);
1256     }
1257    
1258     static void
1259 michael 1306 ssl_server_handshake(fde_t *fd, struct Client *client_p)
1260 michael 1303 {
1261 michael 2463 X509 *cert = NULL;
1262     int ret = 0;
1263 michael 1303
1264 michael 2463 if ((ret = SSL_connect(client_p->localClient->fd.ssl)) <= 0)
1265 michael 1303 {
1266 michael 2463 switch (SSL_get_error(client_p->localClient->fd.ssl, ret))
1267 michael 1303 {
1268     case SSL_ERROR_WANT_WRITE:
1269     comm_setselect(&client_p->localClient->fd, COMM_SELECT_WRITE,
1270 michael 1308 (PF *)ssl_server_handshake, client_p, 0);
1271 michael 1303 return;
1272     case SSL_ERROR_WANT_READ:
1273     comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ,
1274 michael 1308 (PF *)ssl_server_handshake, client_p, 0);
1275 michael 1303 return;
1276     default:
1277 michael 1308 {
1278     const char *sslerr = ERR_error_string(ERR_get_error(), NULL);
1279 michael 1618 sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1280 michael 1308 "Error connecting to %s: %s", client_p->name,
1281     sslerr ? sslerr : "unknown SSL error");
1282 michael 1303 exit_client(client_p, client_p, "Error during SSL handshake");
1283     return;
1284 michael 1308 }
1285 michael 1303 }
1286     }
1287    
1288 michael 2463 if ((cert = SSL_get_peer_certificate(client_p->localClient->fd.ssl)))
1289     {
1290     int res = SSL_get_verify_result(client_p->localClient->fd.ssl);
1291     char buf[EVP_MAX_MD_SIZE * 2 + 1] = { '\0' };
1292     unsigned char md[EVP_MAX_MD_SIZE] = { '\0' };
1293    
1294     if (res == X509_V_OK || res == X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN ||
1295     res == X509_V_ERR_UNABLE_TO_VERIFY_LEAF_SIGNATURE ||
1296     res == X509_V_ERR_DEPTH_ZERO_SELF_SIGNED_CERT)
1297     {
1298     unsigned int i = 0, n = 0;
1299    
1300     if (X509_digest(cert, EVP_sha256(), md, &n))
1301     {
1302     for (; i < n; ++i)
1303     snprintf(buf + 2 * i, 3, "%02X", md[i]);
1304     client_p->certfp = xstrdup(buf);
1305     }
1306     }
1307     else
1308     ilog(LOG_TYPE_IRCD, "Server %s!%s@%s gave bad SSL client certificate: %d",
1309     client_p->name, client_p->username, client_p->host, res);
1310     X509_free(cert);
1311     }
1312    
1313 michael 1303 finish_ssl_server_handshake(client_p);
1314     }
1315    
1316     static void
1317 michael 1632 ssl_connect_init(struct Client *client_p, struct MaskItem *conf, fde_t *fd)
1318 michael 1303 {
1319     if ((client_p->localClient->fd.ssl = SSL_new(ServerInfo.client_ctx)) == NULL)
1320     {
1321     ilog(LOG_TYPE_IRCD, "SSL_new() ERROR! -- %s",
1322     ERR_error_string(ERR_get_error(), NULL));
1323     SetDead(client_p);
1324     exit_client(client_p, client_p, "SSL_new failed");
1325     return;
1326     }
1327    
1328     SSL_set_fd(fd->ssl, fd->fd);
1329 michael 1306
1330 michael 1632 if (!EmptyString(conf->cipher_list))
1331     SSL_set_cipher_list(client_p->localClient->fd.ssl, conf->cipher_list);
1332 michael 1306
1333     ssl_server_handshake(NULL, client_p);
1334 michael 1303 }
1335     #endif
1336    
1337 adx 30 /* serv_connect_callback() - complete a server connection.
1338 michael 2345 *
1339 adx 30 * This routine is called after the server connection attempt has
1340     * completed. If unsucessful, an error is sent to ops and the client
1341     * is closed. If sucessful, it goes through the initialisation/check
1342     * procedures, the capabilities are sent, and the socket is then
1343     * marked for reading.
1344     */
1345     static void
1346     serv_connect_callback(fde_t *fd, int status, void *data)
1347     {
1348     struct Client *client_p = data;
1349 michael 1632 struct MaskItem *conf = NULL;
1350 adx 30
1351     /* First, make sure its a real client! */
1352     assert(client_p != NULL);
1353     assert(&client_p->localClient->fd == fd);
1354    
1355     /* Next, for backward purposes, record the ip of the server */
1356     memcpy(&client_p->localClient->ip, &fd->connect.hostaddr,
1357     sizeof(struct irc_ssaddr));
1358     /* Check the status */
1359     if (status != COMM_OK)
1360     {
1361     /* We have an error, so report it and quit
1362     * Admins get to see any IP, mere opers don't *sigh*
1363     */
1364     if (ConfigServerHide.hide_server_ips)
1365 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1366 adx 30 "Error connecting to %s: %s",
1367     client_p->name, comm_errstr(status));
1368     else
1369 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1370 michael 2134 "Error connecting to %s[%s]: %s", client_p->name,
1371     client_p->host, comm_errstr(status));
1372 adx 30
1373 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1374 michael 2134 "Error connecting to %s: %s",
1375     client_p->name, comm_errstr(status));
1376 adx 30
1377     /* If a fd goes bad, call dead_link() the socket is no
1378     * longer valid for reading or writing.
1379     */
1380     dead_link_on_write(client_p, 0);
1381     return;
1382     }
1383    
1384     /* COMM_OK, so continue the connection procedure */
1385     /* Get the C/N lines */
1386     conf = find_conf_name(&client_p->localClient->confs,
1387 michael 2134 client_p->name, CONF_SERVER);
1388 adx 30 if (conf == NULL)
1389     {
1390 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1391 michael 2134 "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1392 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1393 michael 2134 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1394 adx 30
1395     exit_client(client_p, &me, "Lost connect{} block");
1396     return;
1397     }
1398    
1399     /* Next, send the initial handshake */
1400     SetHandshake(client_p);
1401    
1402     #ifdef HAVE_LIBCRYPTO
1403 michael 1632 if (IsConfSSL(conf))
1404 michael 1303 {
1405 michael 1632 ssl_connect_init(client_p, conf, fd);
1406 michael 1303 return;
1407     }
1408 adx 30 #endif
1409    
1410 michael 2134 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1411 adx 30
1412 michael 1632 send_capabilities(client_p, 0);
1413 adx 30
1414 michael 2134 sendto_one(client_p, "SERVER %s 1 :%s%s", me.name,
1415     ConfigServerHide.hidden ? "(H) " : "", me.info);
1416 adx 30
1417     /* If we've been marked dead because a send failed, just exit
1418     * here now and save everyone the trouble of us ever existing.
1419     */
1420 michael 2345 if (IsDead(client_p))
1421 adx 30 {
1422 michael 1618 sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1423 michael 2134 "%s[%s] went dead during handshake",
1424 adx 30 client_p->name,
1425 michael 2134 client_p->host);
1426 michael 1618 sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1427 michael 2134 "%s went dead during handshake", client_p->name);
1428 adx 30 return;
1429     }
1430    
1431     /* don't move to serv_list yet -- we haven't sent a burst! */
1432     /* If we get here, we're ok, so lets start reading some data */
1433     comm_setselect(fd, COMM_SELECT_READ, read_packet, client_p, 0);
1434     }
1435    
1436     struct Client *
1437     find_servconn_in_progress(const char *name)
1438     {
1439     dlink_node *ptr;
1440     struct Client *cptr;
1441    
1442     DLINK_FOREACH(ptr, unknown_list.head)
1443     {
1444     cptr = ptr->data;
1445    
1446     if (cptr && cptr->name[0])
1447 michael 1652 if (!match(name, cptr->name))
1448 adx 30 return cptr;
1449     }
1450 michael 2345
1451 adx 30 return NULL;
1452     }

Properties

Name Value
svn:eol-style native
svn:keywords Id Revision