ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/server.c
Revision: 7105
Committed: Sat Jan 23 20:11:27 2016 UTC (9 years, 7 months ago) by michael
Content type: text/x-csrc
File size: 28311 byte(s)
Log Message:
- Incorporate gnutls support by Adam & Attila

File Contents

# Content
1 /*
2 * ircd-hybrid: an advanced, lightweight Internet Relay Chat Daemon (ircd)
3 *
4 * Copyright (c) 1997-2016 ircd-hybrid development team
5 *
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 2 of the License, or
9 * (at your option) any later version.
10 *
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
15 *
16 * You should have received a copy of the GNU General Public License
17 * along with this program; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301
19 * USA
20 */
21
22 /*! \file s_serv.c
23 * \brief Server related functions.
24 * \version $Id$
25 */
26
27 #include "stdinc.h"
28 #include "list.h"
29 #include "client.h"
30 #include "event.h"
31 #include "hash.h"
32 #include "irc_string.h"
33 #include "ircd.h"
34 #include "ircd_defs.h"
35 #include "s_bsd.h"
36 #include "numeric.h"
37 #include "packet.h"
38 #include "conf.h"
39 #include "server.h"
40 #include "log.h"
41 #include "user.h"
42 #include "send.h"
43 #include "memory.h"
44 #include "channel.h"
45 #include "parse.h"
46
47
48 dlink_list flatten_links;
49 static dlink_list server_capabilities_list;
50 static void serv_connect_callback(fde_t *, int, void *);
51
52
53 /*
54 * write_links_file
55 *
56 * inputs - void pointer which is not used
57 * output - NONE
58 * side effects - called from an event, write out list of linked servers
59 * but in no particular order.
60 */
61 void
62 write_links_file(void *unused)
63 {
64 FILE *file = NULL;
65 dlink_node *node = NULL, *node_next = NULL;
66 char buff[IRCD_BUFSIZE] = "";
67
68 if (EmptyString(ConfigServerHide.flatten_links_file))
69 return;
70
71 if ((file = fopen(ConfigServerHide.flatten_links_file, "w")) == NULL)
72 {
73 ilog(LOG_TYPE_IRCD, "Couldn't open \"%s\": %s", ConfigServerHide.flatten_links_file,
74 strerror(errno));
75 return;
76 }
77
78 DLINK_FOREACH_SAFE(node, node_next, flatten_links.head)
79 {
80 dlinkDelete(node, &flatten_links);
81 xfree(node->data);
82 free_dlink_node(node);
83 }
84
85 DLINK_FOREACH(node, global_server_list.head)
86 {
87 const struct Client *target_p = node->data;
88
89 /*
90 * Skip hidden servers, aswell as ourselves, since we already send
91 * ourselves in /links
92 */
93 if (IsHidden(target_p) || IsMe(target_p))
94 continue;
95
96 if (HasFlag(target_p, FLAGS_SERVICE) && ConfigServerHide.hide_services)
97 continue;
98
99 /*
100 * Attempt to format the file in such a way it follows the usual links output
101 * ie "servername uplink :hops info"
102 * Mostly for aesthetic reasons - makes it look pretty in mIRC ;)
103 * - madmax
104 */
105 snprintf(buff, sizeof(buff), "%s %s :1 %s", target_p->name,
106 me.name, target_p->info);
107 dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
108 snprintf(buff, sizeof(buff), "%s %s :1 %s\n", target_p->name,
109 me.name, target_p->info);
110
111 fputs(buff, file);
112 }
113
114 fclose(file);
115 }
116
117 void
118 read_links_file(void)
119 {
120 FILE *file = NULL;
121 char *p = NULL;
122 char buff[IRCD_BUFSIZE] = "";
123
124 if (EmptyString(ConfigServerHide.flatten_links_file))
125 return;
126
127 if ((file = fopen(ConfigServerHide.flatten_links_file, "r")) == NULL)
128 {
129 ilog(LOG_TYPE_IRCD, "Couldn't open \"%s\": %s", ConfigServerHide.flatten_links_file,
130 strerror(errno));
131 return;
132 }
133
134 while (fgets(buff, sizeof(buff), file))
135 {
136 if ((p = strchr(buff, '\n')))
137 *p = '\0';
138
139 dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
140 }
141
142 fclose(file);
143 }
144
145 /* hunt_server()
146 * Do the basic thing in delivering the message (command)
147 * across the relays to the specific server (server) for
148 * actions.
149 *
150 * Note: The command is a format string and *MUST* be
151 * of prefixed style (e.g. ":%s COMMAND %s ...").
152 * Command can have only max 8 parameters.
153 *
154 * server parv[server] is the parameter identifying the
155 * target server.
156 *
157 * *WARNING*
158 * parv[server] is replaced with the pointer to the
159 * real servername from the matched client (I'm lazy
160 * now --msa).
161 *
162 * returns: (see #defines)
163 */
164 int
165 hunt_server(struct Client *source_p, const char *command,
166 const int server, const int parc, char *parv[])
167 {
168 struct Client *target_p = NULL;
169 dlink_node *node = NULL;
170
171 /* Assume it's me, if no server */
172 if (parc <= server || EmptyString(parv[server]))
173 return HUNTED_ISME;
174
175 if ((target_p = find_person(source_p, parv[server])) == NULL)
176 target_p = hash_find_server(parv[server]);
177
178 /*
179 * These are to pickup matches that would cause the following
180 * message to go in the wrong direction while doing quick fast
181 * non-matching lookups.
182 */
183 if (target_p)
184 if (target_p->from == source_p->from && !MyConnect(target_p))
185 target_p = NULL;
186
187 if (!target_p && has_wildcards(parv[server]))
188 {
189 DLINK_FOREACH(node, global_server_list.head)
190 {
191 struct Client *tmp = node->data;
192
193 assert(IsMe(tmp) || IsServer(tmp));
194 if (!match(parv[server], tmp->name))
195 {
196 if (tmp->from == source_p->from && !MyConnect(tmp))
197 continue;
198
199 target_p = node->data;
200 break;
201 }
202 }
203
204 if (!target_p)
205 {
206 DLINK_FOREACH(node, global_client_list.head)
207 {
208 struct Client *tmp = node->data;
209
210 assert(IsMe(tmp) || IsServer(tmp) || IsClient(tmp));
211 if (!match(parv[server], tmp->name))
212 {
213 if (tmp->from == source_p->from && !MyConnect(tmp))
214 continue;
215
216 target_p = node->data;
217 break;
218 }
219 }
220 }
221 }
222
223 if (target_p)
224 {
225 assert(IsMe(target_p) || IsServer(target_p) || IsClient(target_p));
226 if (IsMe(target_p) || MyClient(target_p))
227 return HUNTED_ISME;
228
229 parv[server] = target_p->id;
230 sendto_one(target_p, command, source_p->id,
231 parv[1], parv[2], parv[3], parv[4],
232 parv[5], parv[6], parv[7], parv[8]);
233 return HUNTED_PASS;
234 }
235
236 sendto_one_numeric(source_p, &me, ERR_NOSUCHSERVER, parv[server]);
237 return HUNTED_NOSUCH;
238 }
239
240 /* try_connections()
241 *
242 * inputs - void pointer which is not used
243 * output - NONE
244 * side effects -
245 * scan through configuration and try new connections.
246 * Returns the calendar time when the next call to this
247 * function should be made latest. (No harm done if this
248 * is called earlier or later...)
249 */
250 void
251 try_connections(void *unused)
252 {
253 dlink_node *node = NULL;
254
255 if (GlobalSetOptions.autoconn == 0)
256 return;
257
258 DLINK_FOREACH(node, server_items.head)
259 {
260 struct MaskItem *conf = node->data;
261
262 assert(conf->type == CONF_SERVER);
263
264 /* Also when already connecting! (update holdtimes) --SRB */
265 if (!conf->port || !IsConfAllowAutoConn(conf))
266 continue;
267
268 /*
269 * Skip this entry if the use of it is still on hold until
270 * future. Otherwise handle this entry (and set it on hold
271 * until next time). Will reset only hold times, if already
272 * made one successfull connection... [this algorithm is
273 * a bit fuzzy... -- msa >;) ]
274 */
275 if (conf->until > CurrentTime)
276 continue;
277
278 assert(conf->class);
279
280 conf->until = CurrentTime + conf->class->con_freq;
281
282 /*
283 * Found a CONNECT config with port specified, scan clients
284 * and see if this server is already connected?
285 */
286 if (hash_find_server(conf->name))
287 continue;
288
289 if (conf->class->ref_count < conf->class->max_total)
290 {
291 /* Move this entry to the end of the list, if not already last */
292 if (node->next)
293 {
294 dlinkDelete(node, &server_items);
295 dlinkAddTail(conf, &conf->node, &server_items);
296 }
297
298 if (find_servconn_in_progress(conf->name))
299 return;
300
301 /*
302 * We used to only print this if serv_connect() actually
303 * succeeded, but since comm_tcp_connect() can call the callback
304 * immediately if there is an error, we were getting error messages
305 * in the wrong order. SO, we just print out the activated line,
306 * and let serv_connect() / serv_connect_callback() print an
307 * error afterwards if it fails.
308 * -- adrian
309 */
310 if (ConfigServerHide.hide_server_ips)
311 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
312 "Connection to %s activated.",
313 conf->name);
314 else
315 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
316 "Connection to %s[%s] activated.",
317 conf->name, conf->host);
318
319 serv_connect(conf, NULL);
320 /* We connect only one at time... */
321 return;
322 }
323 }
324 }
325
326 int
327 valid_servname(const char *name)
328 {
329 unsigned int dots = 0;
330 const char *p = name;
331
332 for (; *p; ++p)
333 {
334 if (!IsServChar(*p))
335 return 0;
336
337 if (*p == '.')
338 ++dots;
339 }
340
341 return dots && (p - name) <= HOSTLEN;
342 }
343
344 int
345 check_server(const char *name, struct Client *client_p)
346 {
347 dlink_node *node = NULL;
348 struct MaskItem *conf = NULL;
349 struct MaskItem *server_conf = NULL;
350 int error = -1;
351
352 assert(client_p);
353
354 /* Loop through looking for all possible connect items that might work */
355 DLINK_FOREACH(node, server_items.head)
356 {
357 conf = node->data;
358
359 if (match(name, conf->name))
360 continue;
361
362 error = -3;
363
364 if (!match(conf->host, client_p->host) ||
365 !match(conf->host, client_p->sockhost))
366 {
367 error = -2;
368
369 if (!match_conf_password(client_p->connection->password, conf))
370 return -2;
371
372 if (!EmptyString(conf->certfp))
373 if (EmptyString(client_p->certfp) || strcasecmp(client_p->certfp, conf->certfp))
374 return -4;
375
376 server_conf = conf;
377 }
378 }
379
380 if (server_conf == NULL)
381 return error;
382
383 attach_conf(client_p, server_conf);
384
385 switch (server_conf->aftype)
386 {
387 case AF_INET6:
388 {
389 const struct sockaddr_in6 *v6 = (struct sockaddr_in6 *)&server_conf->addr;
390
391 if (IN6_IS_ADDR_UNSPECIFIED(&v6->sin6_addr))
392 memcpy(&server_conf->addr, &client_p->connection->ip, sizeof(struct irc_ssaddr));
393 break;
394 }
395 case AF_INET:
396 {
397 const struct sockaddr_in *v4 = (struct sockaddr_in *)&server_conf->addr;
398
399 if (v4->sin_addr.s_addr == INADDR_NONE)
400 memcpy(&server_conf->addr, &client_p->connection->ip, sizeof(struct irc_ssaddr));
401 break;
402 }
403 }
404
405 return 0;
406 }
407
408 /* add_capability()
409 *
410 * inputs - string name of CAPAB
411 * - int flag of capability
412 * output - NONE
413 * side effects - Adds given capability name and bit mask to
414 * current supported capabilities. This allows
415 * modules to dynamically add or subtract their capability.
416 */
417 void
418 add_capability(const char *name, unsigned int flag)
419 {
420 struct Capability *cap = xcalloc(sizeof(*cap));
421
422 cap->name = xstrdup(name);
423 cap->cap = flag;
424 dlinkAdd(cap, &cap->node, &server_capabilities_list);
425 }
426
427 /* delete_capability()
428 *
429 * inputs - string name of CAPAB
430 * output - NONE
431 * side effects - delete given capability from ones known.
432 */
433 void
434 delete_capability(const char *name)
435 {
436 dlink_node *node = NULL, *node_next = NULL;
437
438 DLINK_FOREACH_SAFE(node, node_next, server_capabilities_list.head)
439 {
440 struct Capability *cap = node->data;
441
442 if (!irccmp(cap->name, name))
443 {
444 dlinkDelete(node, &server_capabilities_list);
445 xfree(cap->name);
446 xfree(cap);
447 }
448 }
449 }
450
451 /*
452 * find_capability()
453 *
454 * inputs - string name of capab to find
455 * output - 0 if not found CAPAB otherwise
456 * side effects - none
457 */
458 unsigned int
459 find_capability(const char *name)
460 {
461 const dlink_node *node = NULL;
462
463 DLINK_FOREACH(node, server_capabilities_list.head)
464 {
465 const struct Capability *cap = node->data;
466
467 if (!irccmp(cap->name, name))
468 return cap->cap;
469 }
470
471 return 0;
472 }
473
474 /* send_capabilities()
475 *
476 * inputs - Client pointer to send to
477 * - int flag of capabilities that this server can send
478 * output - NONE
479 * side effects - send the CAPAB line to a server -orabidoo
480 *
481 */
482 void
483 send_capabilities(struct Client *client_p)
484 {
485 char buf[IRCD_BUFSIZE] = "";
486 const dlink_node *node = NULL;
487
488 DLINK_FOREACH(node, server_capabilities_list.head)
489 {
490 const struct Capability *cap = node->data;
491
492 strlcat(buf, cap->name, sizeof(buf));
493
494 if (node->next)
495 strlcat(buf, " ", sizeof(buf));
496 }
497
498 sendto_one(client_p, "CAPAB :%s", buf);
499 }
500
501 /*
502 * show_capabilities - show current server capabilities
503 *
504 * inputs - pointer to a struct Client
505 * output - pointer to static string
506 * side effects - build up string representing capabilities of server listed
507 */
508 const char *
509 show_capabilities(const struct Client *target_p)
510 {
511 static char msgbuf[IRCD_BUFSIZE] = "";
512 const dlink_node *node = NULL;
513
514 strlcpy(msgbuf, "TS", sizeof(msgbuf));
515
516 DLINK_FOREACH(node, server_capabilities_list.head)
517 {
518 const struct Capability *cap = node->data;
519
520 if (!IsCapable(target_p, cap->cap))
521 continue;
522
523 strlcat(msgbuf, " ", sizeof(msgbuf));
524 strlcat(msgbuf, cap->name, sizeof(msgbuf));
525 }
526
527 return msgbuf;
528 }
529
530 /* make_server()
531 *
532 * inputs - pointer to client struct
533 * output - pointer to struct Server
534 * side effects - add's an Server information block to a client
535 * if it was not previously allocated.
536 */
537 struct Server *
538 make_server(struct Client *client_p)
539 {
540 if (client_p->serv == NULL)
541 client_p->serv = xcalloc(sizeof(struct Server));
542
543 return client_p->serv;
544 }
545
546 /* New server connection code
547 * Based upon the stuff floating about in s_bsd.c
548 * -- adrian
549 */
550
551 /* serv_connect() - initiate a server connection
552 *
553 * inputs - pointer to conf
554 * - pointer to client doing the connect
555 * output -
556 * side effects -
557 *
558 * This code initiates a connection to a server. It first checks to make
559 * sure the given server exists. If this is the case, it creates a socket,
560 * creates a client, saves the socket information in the client, and
561 * initiates a connection to the server through comm_connect_tcp(). The
562 * completion of this goes through serv_completed_connection().
563 *
564 * We return 1 if the connection is attempted, since we don't know whether
565 * it suceeded or not, and 0 if it fails in here somewhere.
566 */
567 int
568 serv_connect(struct MaskItem *conf, struct Client *by)
569 {
570 struct Client *client_p = NULL;
571 char buf[HOSTIPLEN + 1] = "";
572
573 /* conversion structs */
574 struct sockaddr_in *v4;
575
576 /* Make sure conf is useful */
577 assert(conf);
578
579 getnameinfo((const struct sockaddr *)&conf->addr, conf->addr.ss_len,
580 buf, sizeof(buf), NULL, 0, NI_NUMERICHOST);
581 ilog(LOG_TYPE_IRCD, "Connect to %s[%s] @%s", conf->name, conf->host,
582 buf);
583
584 /* Still processing a DNS lookup? -> exit */
585 if (conf->dns_pending)
586 {
587 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
588 "Error connecting to %s: DNS lookup for connect{} in progress.",
589 conf->name);
590 return 0;
591 }
592
593 if (conf->dns_failed)
594 {
595 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
596 "Error connecting to %s: DNS lookup for connect{} failed.",
597 conf->name);
598 return 0;
599 }
600
601 /*
602 * Make sure this server isn't already connected.
603 * Note: conf should ALWAYS be a valid connect {} block
604 */
605 if ((client_p = hash_find_server(conf->name)))
606 {
607 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
608 "Server %s already present from %s",
609 conf->name, get_client_name(client_p, SHOW_IP));
610 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
611 "Server %s already present from %s",
612 conf->name, get_client_name(client_p, MASK_IP));
613 if (by && IsClient(by) && !MyClient(by))
614 sendto_one_notice(by, &me, ":Server %s already present from %s",
615 conf->name, get_client_name(client_p, MASK_IP));
616 return 0;
617 }
618
619 /* Create a local client */
620 client_p = make_client(NULL);
621
622 /* Copy in the server, hostname, fd */
623 strlcpy(client_p->name, conf->name, sizeof(client_p->name));
624 strlcpy(client_p->host, conf->host, sizeof(client_p->host));
625
626 /* We already converted the ip once, so lets use it - stu */
627 strlcpy(client_p->sockhost, buf, sizeof(client_p->sockhost));
628
629 /* Create a socket for the server connection */
630 if (comm_open(&client_p->connection->fd, conf->addr.ss.ss_family, SOCK_STREAM, 0, NULL) < 0)
631 {
632 /* Eek, failure to create the socket */
633 report_error(L_ALL, "opening stream socket to %s: %s", conf->name, errno);
634
635 SetDead(client_p);
636 exit_client(client_p, "Connection failed");
637 return 0;
638 }
639
640 /* Server names are always guaranteed under HOSTLEN chars */
641 fd_note(&client_p->connection->fd, "Server: %s", client_p->name);
642
643 /*
644 * Attach config entries to client here rather than in serv_connect_callback().
645 * This to avoid null pointer references.
646 */
647 if (!attach_connect_block(client_p, conf->name, conf->host))
648 {
649 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
650 "Host %s is not enabled for connecting: no connect {} block",
651 conf->name);
652 if (by && IsClient(by) && !MyClient(by))
653 sendto_one_notice(by, &me, ":Connect to host %s failed: no connect {} block", client_p->name);
654
655 SetDead(client_p);
656 exit_client(client_p, "Connection failed");
657 return 0;
658 }
659
660 /*
661 * At this point we have a connection in progress and a connect {} block
662 * attached to the client, the socket info should be saved in the client
663 * and it should either be resolved or have a valid address.
664 *
665 * The socket has been connected or connect is in progress.
666 */
667 make_server(client_p);
668
669 if (by && IsClient(by))
670 strlcpy(client_p->serv->by, by->name, sizeof(client_p->serv->by));
671 else
672 strlcpy(client_p->serv->by, "AutoConn.", sizeof(client_p->serv->by));
673
674 SetConnecting(client_p);
675 client_p->connection->aftype = conf->aftype;
676
677 /* Now, initiate the connection */
678 /* XXX assume that a non 0 type means a specific bind address
679 * for this connect.
680 */
681 switch (conf->aftype)
682 {
683 case AF_INET:
684 v4 = (struct sockaddr_in*)&conf->bind;
685 if (v4->sin_addr.s_addr)
686 {
687 struct irc_ssaddr ipn;
688 memset(&ipn, 0, sizeof(struct irc_ssaddr));
689 ipn.ss.ss_family = AF_INET;
690 ipn.ss_port = 0;
691 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
692 comm_connect_tcp(&client_p->connection->fd, conf->host, conf->port,
693 (struct sockaddr *)&ipn, ipn.ss_len,
694 serv_connect_callback, client_p, conf->aftype,
695 CONNECTTIMEOUT);
696 }
697 else if (ConfigServerInfo.specific_ipv4_vhost)
698 {
699 struct irc_ssaddr ipn;
700 memset(&ipn, 0, sizeof(struct irc_ssaddr));
701 ipn.ss.ss_family = AF_INET;
702 ipn.ss_port = 0;
703 memcpy(&ipn, &ConfigServerInfo.ip, sizeof(struct irc_ssaddr));
704 comm_connect_tcp(&client_p->connection->fd, conf->host, conf->port,
705 (struct sockaddr *)&ipn, ipn.ss_len,
706 serv_connect_callback, client_p, conf->aftype,
707 CONNECTTIMEOUT);
708 }
709 else
710 comm_connect_tcp(&client_p->connection->fd, conf->host, conf->port,
711 NULL, 0, serv_connect_callback, client_p, conf->aftype,
712 CONNECTTIMEOUT);
713 break;
714 case AF_INET6:
715 {
716 struct irc_ssaddr ipn;
717 struct sockaddr_in6 *v6;
718 struct sockaddr_in6 *v6conf;
719
720 memset(&ipn, 0, sizeof(struct irc_ssaddr));
721 v6conf = (struct sockaddr_in6 *)&conf->bind;
722 v6 = (struct sockaddr_in6 *)&ipn;
723
724 if (memcmp(&v6conf->sin6_addr, &v6->sin6_addr, sizeof(struct in6_addr)))
725 {
726 memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
727 ipn.ss.ss_family = AF_INET6;
728 ipn.ss_port = 0;
729 comm_connect_tcp(&client_p->connection->fd,
730 conf->host, conf->port,
731 (struct sockaddr *)&ipn, ipn.ss_len,
732 serv_connect_callback, client_p,
733 conf->aftype, CONNECTTIMEOUT);
734 }
735 else if (ConfigServerInfo.specific_ipv6_vhost)
736 {
737 memcpy(&ipn, &ConfigServerInfo.ip6, sizeof(struct irc_ssaddr));
738 ipn.ss.ss_family = AF_INET6;
739 ipn.ss_port = 0;
740 comm_connect_tcp(&client_p->connection->fd,
741 conf->host, conf->port,
742 (struct sockaddr *)&ipn, ipn.ss_len,
743 serv_connect_callback, client_p,
744 conf->aftype, CONNECTTIMEOUT);
745 }
746 else
747 comm_connect_tcp(&client_p->connection->fd,
748 conf->host, conf->port,
749 NULL, 0, serv_connect_callback, client_p,
750 conf->aftype, CONNECTTIMEOUT);
751 }
752 }
753
754 return 1;
755 }
756
757 #ifdef HAVE_TLS
758 static void
759 finish_ssl_server_handshake(struct Client *client_p)
760 {
761 struct MaskItem *conf = NULL;
762
763 conf = find_conf_name(&client_p->connection->confs,
764 client_p->name, CONF_SERVER);
765 if (conf == NULL)
766 {
767 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
768 "Lost connect{} block for %s", get_client_name(client_p, SHOW_IP));
769 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
770 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
771
772 exit_client(client_p, "Lost connect{} block");
773 return;
774 }
775
776 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
777
778 send_capabilities(client_p);
779
780 sendto_one(client_p, "SERVER %s 1 :%s%s",
781 me.name, ConfigServerHide.hidden ? "(H) " : "",
782 me.info);
783
784 /*
785 * If we've been marked dead because a send failed, just exit
786 * here now and save everyone the trouble of us ever existing.
787 */
788 if (IsDead(client_p))
789 {
790 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
791 "%s went dead during handshake", get_client_name(client_p, SHOW_IP));
792 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
793 "%s went dead during handshake", get_client_name(client_p, MASK_IP));
794 return;
795 }
796
797 /* don't move to serv_list yet -- we haven't sent a burst! */
798 /* If we get here, we're ok, so lets start reading some data */
799 comm_setselect(&client_p->connection->fd, COMM_SELECT_READ, read_packet, client_p, 0);
800 }
801
802 static void
803 ssl_server_handshake(fde_t *fd, void *data)
804 {
805 struct Client *client_p = data;
806 int res = 0;
807 const char *sslerr = NULL;
808
809 tls_handshake_status_t ret = tls_handshake(&client_p->connection->fd.ssl, TLS_ROLE_CLIENT, &sslerr);
810 if (ret != TLS_HANDSHAKE_DONE)
811 {
812 if ((CurrentTime - client_p->connection->firsttime) > CONNECTTIMEOUT)
813 {
814 exit_client(client_p, "Timeout during TLS handshake");
815 return;
816 }
817
818 switch (ret)
819 {
820 case TLS_HANDSHAKE_WANT_WRITE:
821 comm_setselect(&client_p->connection->fd, COMM_SELECT_WRITE,
822 ssl_server_handshake, client_p, CONNECTTIMEOUT);
823 return;
824 case TLS_HANDSHAKE_WANT_READ:
825 comm_setselect(&client_p->connection->fd, COMM_SELECT_READ,
826 ssl_server_handshake, client_p, CONNECTTIMEOUT);
827 return;
828 default:
829 {
830 sendto_realops_flags(UMODE_SERVNOTICE, L_ALL, SEND_NOTICE,
831 "Error connecting to %s: %s", client_p->name,
832 sslerr ? sslerr : "unknown TLS error");
833 exit_client(client_p, "Error during TLS handshake");
834 return;
835 }
836 }
837 }
838
839 comm_settimeout(&client_p->connection->fd, 0, NULL, NULL);
840
841 if (!tls_verify_cert(&client_p->connection->fd.ssl, ConfigServerInfo.message_digest_algorithm, &client_p->certfp, &res))
842 ilog(LOG_TYPE_IRCD, "Server %s!%s@%s gave bad TLS client certificate: %d",
843 client_p->name, client_p->username, client_p->host, res);
844
845 finish_ssl_server_handshake(client_p);
846 }
847
848 static void
849 ssl_connect_init(struct Client *client_p, const struct MaskItem *conf, fde_t *fd)
850 {
851 if (!tls_new(&client_p->connection->fd.ssl, fd->fd, TLS_ROLE_CLIENT))
852 {
853 SetDead(client_p);
854 exit_client(client_p, "TLS context initialization failed");
855 return;
856 }
857
858 if (!EmptyString(conf->cipher_list))
859 tls_set_ciphers(&client_p->connection->fd.ssl, conf->cipher_list);
860
861 ssl_server_handshake(NULL, client_p);
862 }
863 #endif
864
865 /* serv_connect_callback() - complete a server connection.
866 *
867 * This routine is called after the server connection attempt has
868 * completed. If unsucessful, an error is sent to ops and the client
869 * is closed. If sucessful, it goes through the initialisation/check
870 * procedures, the capabilities are sent, and the socket is then
871 * marked for reading.
872 */
873 static void
874 serv_connect_callback(fde_t *fd, int status, void *data)
875 {
876 struct Client *const client_p = data;
877 const struct MaskItem *conf = NULL;
878
879 /* First, make sure it's a real client! */
880 assert(client_p);
881 assert(&client_p->connection->fd == fd);
882
883 /* Next, for backward purposes, record the ip of the server */
884 memcpy(&client_p->connection->ip, &fd->connect.hostaddr,
885 sizeof(struct irc_ssaddr));
886
887 /* Check the status */
888 if (status != COMM_OK)
889 {
890 /* We have an error, so report it and quit */
891 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
892 "Error connecting to %s: %s",
893 get_client_name(client_p, SHOW_IP), comm_errstr(status));
894 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
895 "Error connecting to %s: %s",
896 get_client_name(client_p, MASK_IP), comm_errstr(status));
897
898 /*
899 * If a fd goes bad, call dead_link() the socket is no
900 * longer valid for reading or writing.
901 */
902 dead_link_on_write(client_p, 0);
903 return;
904 }
905
906 /* COMM_OK, so continue the connection procedure */
907 /* Get the C/N lines */
908 conf = find_conf_name(&client_p->connection->confs,
909 client_p->name, CONF_SERVER);
910 if (conf == NULL)
911 {
912 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
913 "Lost connect{} block for %s", get_client_name(client_p, SHOW_IP));
914 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
915 "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
916
917 exit_client(client_p, "Lost connect{} block");
918 return;
919 }
920
921 /* Next, send the initial handshake */
922 SetHandshake(client_p);
923
924 #ifdef HAVE_TLS
925 if (IsConfSSL(conf))
926 {
927 ssl_connect_init(client_p, conf, fd);
928 return;
929 }
930 #endif
931
932 sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
933
934 send_capabilities(client_p);
935
936 sendto_one(client_p, "SERVER %s 1 :%s%s", me.name,
937 ConfigServerHide.hidden ? "(H) " : "", me.info);
938
939 /*
940 * If we've been marked dead because a send failed, just exit
941 * here now and save everyone the trouble of us ever existing.
942 */
943 if (IsDead(client_p))
944 {
945 sendto_realops_flags(UMODE_SERVNOTICE, L_ADMIN, SEND_NOTICE,
946 "%s went dead during handshake", get_client_name(client_p, SHOW_IP));
947 sendto_realops_flags(UMODE_SERVNOTICE, L_OPER, SEND_NOTICE,
948 "%s went dead during handshake", get_client_name(client_p, MASK_IP));
949 return;
950 }
951
952 /* don't move to serv_list yet -- we haven't sent a burst! */
953 /* If we get here, we're ok, so lets start reading some data */
954 comm_setselect(fd, COMM_SELECT_READ, read_packet, client_p, 0);
955 }
956
957 struct Client *
958 find_servconn_in_progress(const char *name)
959 {
960 dlink_node *ptr;
961 struct Client *cptr;
962
963 DLINK_FOREACH(ptr, unknown_list.head)
964 {
965 cptr = ptr->data;
966
967 if (cptr && cptr->name[0])
968 if (!match(name, cptr->name))
969 return cptr;
970 }
971
972 return NULL;
973 }

Properties

Name Value
svn:eol-style native
svn:keywords Id Revision