ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/trunk/src/server.c
(Generate patch)

Comparing:
ircd-hybrid-7.2/src/s_serv.c (file contents), Revision 948 by michael, Tue Jul 21 17:34:06 2009 UTC vs.
ircd-hybrid/trunk/src/s_serv.c (file contents), Revision 2691 by michael, Tue Dec 17 18:55:59 2013 UTC

# Line 27 | Line 27
27   #include <openssl/rsa.h>
28   #include "rsa.h"
29   #endif
30 < #include "tools.h"
30 > #include "list.h"
31   #include "channel.h"
32   #include "channel_mode.h"
33   #include "client.h"
34 #include "common.h"
34   #include "dbuf.h"
35   #include "event.h"
36   #include "fdlist.h"
37   #include "hash.h"
38   #include "irc_string.h"
40 #include "inet_misc.h"
41 #include "sprintf_irc.h"
39   #include "ircd.h"
40   #include "ircd_defs.h"
41   #include "s_bsd.h"
45 #include "irc_getnameinfo.h"
46 #include "list.h"
42   #include "numeric.h"
43   #include "packet.h"
44   #include "irc_res.h"
45 < #include "s_conf.h"
45 > #include "conf.h"
46   #include "s_serv.h"
47 < #include "s_log.h"
47 > #include "log.h"
48 > #include "s_misc.h"
49   #include "s_user.h"
50   #include "send.h"
51   #include "memory.h"
52   #include "channel.h" /* chcap_usage_counts stuff...*/
53 + #include "parse.h"
54  
55   #define MIN_CONN_FREQ 300
56  
57 + dlink_list flatten_links;
58   static dlink_list cap_list = { NULL, NULL, 0 };
59   static void server_burst(struct Client *);
62 static int fork_server(struct Client *);
60   static void burst_all(struct Client *);
61   static void send_tb(struct Client *client_p, struct Channel *chptr);
62  
63   static CNCB serv_connect_callback;
64  
68 static void start_io(struct Client *);
65   static void burst_members(struct Client *, struct Channel *);
66  
71 static SlinkRplHnd slink_error;
72 static SlinkRplHnd slink_zipstats;
73
74
75 #ifdef HAVE_LIBCRYPTO
76 struct EncCapability CipherTable[] =
77 {
78 #ifdef HAVE_EVP_BF_CFB
79  { "BF/168",     CAP_ENC_BF_168,     24, CIPHER_BF     },
80  { "BF/128",     CAP_ENC_BF_128,     16, CIPHER_BF     },
81 #endif
82 #ifdef HAVE_EVP_CAST5_CFB
83  { "CAST/128",   CAP_ENC_CAST_128,   16, CIPHER_CAST   },
84 #endif
85 #ifdef HAVE_EVP_IDEA_CFB
86  { "IDEA/128",   CAP_ENC_IDEA_128,   16, CIPHER_IDEA   },
87 #endif
88 #ifdef HAVE_EVP_RC5_32_12_16_CFB
89  { "RC5.16/128", CAP_ENC_RC5_16_128, 16, CIPHER_RC5_16 },
90  { "RC5.12/128", CAP_ENC_RC5_12_128, 16, CIPHER_RC5_12 },
91  { "RC5.8/128",  CAP_ENC_RC5_8_128,  16, CIPHER_RC5_8  },
92 #endif
93 #ifdef HAVE_EVP_DES_EDE3_CFB
94  { "3DES/168",   CAP_ENC_3DES_168,   24, CIPHER_3DES   },
95 #endif
96 #ifdef HAVE_EVP_DES_CFB
97  { "DES/56",     CAP_ENC_DES_56,      8, CIPHER_DES    },
98 #endif
99  { 0,            0,                   0, 0             }
100 };
101 #endif
102
103 struct SlinkRplDef slinkrpltab[] = {
104  { SLINKRPL_ERROR,    slink_error,    SLINKRPL_FLAG_DATA },
105  { SLINKRPL_ZIPSTATS, slink_zipstats, SLINKRPL_FLAG_DATA },
106  { 0,                 0,              0 },
107 };
108
109
110 void
111 slink_error(unsigned int rpl, unsigned int len, unsigned char *data,
112            struct Client *server_p)
113 {
114  assert(rpl == SLINKRPL_ERROR);
115  assert(len < 256);
116
117  data[len-1] = '\0';
118
119  sendto_realops_flags(UMODE_ALL, L_ALL, "SlinkError for %s: %s",
120                       server_p->name, data);
121  /* XXX should this be exit_client? */
122  exit_client(server_p, &me, "servlink error -- terminating link");
123 }
124
125 void
126 slink_zipstats(unsigned int rpl, unsigned int len, unsigned char *data,
127               struct Client *server_p)
128 {
129  struct ZipStats zipstats;
130  uint64_t in = 0, in_wire = 0, out = 0, out_wire = 0;
131  int i = 0;
132
133  assert(rpl == SLINKRPL_ZIPSTATS);
134  assert(len == 16);
135  assert(IsCapable(server_p, CAP_ZIP));
136
137  /* Yes, it needs to be done this way, no we cannot let the compiler
138   * work with the pointer to the structure.  This works around a GCC
139   * bug on SPARC that affects all versions at the time of this writing.
140   * I will feed you to the creatures living in RMS's beard if you do
141   * not leave this as is, without being sure that you are not causing
142   * regression for most of our installed SPARC base.
143   * -jmallett, 04/27/2002
144   */
145  memcpy(&zipstats, &server_p->localClient->zipstats, sizeof(struct ZipStats));
146
147  in |= (data[i++] << 24);
148  in |= (data[i++] << 16);
149  in |= (data[i++] <<  8);
150  in |= (data[i++]      );
151
152  in_wire |= (data[i++] << 24);
153  in_wire |= (data[i++] << 16);
154  in_wire |= (data[i++] <<  8);
155  in_wire |= (data[i++]      );
156
157  out |= (data[i++] << 24);
158  out |= (data[i++] << 16);
159  out |= (data[i++] <<  8);
160  out |= (data[i++]      );
161
162  out_wire |= (data[i++] << 24);
163  out_wire |= (data[i++] << 16);
164  out_wire |= (data[i++] <<  8);
165  out_wire |= (data[i++]      );
166
167  /* This macro adds b to a if a plus b is not an overflow, and sets the
168   * value of a to b if it is.
169   * Add and Set if No Overflow.
170   */
171 #define ASNO(a, b) a = (a + b >= a ? a + b : b)
172
173  ASNO(zipstats.in, in);
174  ASNO(zipstats.out, out);
175  ASNO(zipstats.in_wire, in_wire);
176  ASNO(zipstats.out_wire, out_wire);
177
178  if (zipstats.in > 0)
179    zipstats.in_ratio = (((double)(zipstats.in - zipstats.in_wire) /
180                         (double)zipstats.in) * 100.00);
181  else
182    zipstats.in_ratio = 0;
183
184  if (zipstats.out > 0)
185    zipstats.out_ratio = (((double)(zipstats.out - zipstats.out_wire) /
186                          (double)zipstats.out) * 100.00);
187  else
188    zipstats.out_ratio = 0;
189
190  memcpy(&server_p->localClient->zipstats, &zipstats, sizeof(struct ZipStats));
191 }
192
193 void
194 collect_zipstats(void *unused)
195 {
196  dlink_node *ptr = NULL;
197
198  DLINK_FOREACH(ptr, serv_list.head)
199  {
200    struct Client *target_p = ptr->data;
201
202    if (IsCapable(target_p, CAP_ZIP))
203    {
204      /* only bother if we haven't already got something queued... */
205      if (!target_p->localClient->slinkq)
206      {
207        target_p->localClient->slinkq     = MyMalloc(1); /* sigh.. */
208        target_p->localClient->slinkq[0]  = SLINKCMD_ZIPSTATS;
209        target_p->localClient->slinkq_ofs = 0;
210        target_p->localClient->slinkq_len = 1;
211        send_queued_slink_write(target_p);
212      }
213    }
214  }
215 }
216
217 #ifdef HAVE_LIBCRYPTO
218 struct EncCapability *
219 check_cipher(struct Client *client_p, struct AccessItem *aconf)
220 {
221  struct EncCapability *epref = NULL;
222
223  /* Use connect{} specific info if available */
224  if (aconf->cipher_preference)
225    epref = aconf->cipher_preference;
226  else if (ConfigFileEntry.default_cipher_preference)
227    epref = ConfigFileEntry.default_cipher_preference;
228
229  /*
230   * If the server supports the capability in hand, return the matching
231   * conf struct.  Otherwise, return NULL (an error).
232   */
233  if (epref && IsCapableEnc(client_p, epref->cap))
234    return epref;
235
236  return NULL;
237 }
238 #endif /* HAVE_LIBCRYPTO */
239
240 /* my_name_for_link()
241 * return wildcard name of my server name
242 * according to given config entry --Jto
243 */
244 const char *
245 my_name_for_link(struct ConfItem *conf)
246 {
247  struct AccessItem *aconf;
248
249  aconf = (struct AccessItem *)map_to_conf(conf);
250  if (aconf->fakename != NULL)
251    return aconf->fakename;
252  else
253    return me.name;
254 }
255
67   /*
68   * write_links_file
69   *
# Line 262 | Line 73 | my_name_for_link(struct ConfItem *conf)
73   *                but in no particular order.
74   */
75   void
76 < write_links_file(void* notused)
76 > write_links_file(void *notused)
77   {
78 <  MessageFileLine *next_mptr = 0;
79 <  MessageFileLine *mptr = 0;
80 <  MessageFileLine *currentMessageLine = 0;
270 <  MessageFileLine *newMessageLine = 0;
271 <  MessageFile *MessageFileptr;
272 <  const char *p;
273 <  FBFILE *file;
274 <  char buff[512];
275 <  dlink_node *ptr;
276 <
277 <  MessageFileptr = &ConfigFileEntry.linksfile;
78 >  FILE *file = NULL;
79 >  dlink_node *ptr = NULL, *ptr_next = NULL;
80 >  char buff[IRCD_BUFSIZE] = { '\0' };
81  
82 <  if ((file = fbopen(MessageFileptr->fileName, "w")) == NULL)
82 >  if ((file = fopen(LIPATH, "w")) == NULL)
83      return;
84  
85 <  for (mptr = MessageFileptr->contentsOfFile; mptr; mptr = next_mptr)
85 >  DLINK_FOREACH_SAFE(ptr, ptr_next, flatten_links.head)
86    {
87 <    next_mptr = mptr->next;
88 <    MyFree(mptr);
87 >    dlinkDelete(ptr, &flatten_links);
88 >    MyFree(ptr->data);
89 >    free_dlink_node(ptr);
90    }
91  
288  MessageFileptr->contentsOfFile = NULL;
289  currentMessageLine             = NULL;
290
92    DLINK_FOREACH(ptr, global_serv_list.head)
93    {
94 <    size_t nbytes = 0;
294 <    struct Client *target_p = ptr->data;
94 >    const struct Client *target_p = ptr->data;
95  
96 <    /* skip ourselves, we send ourselves in /links */
97 <    if (IsMe(target_p))
96 >    /*
97 >     * Skip hidden servers, aswell as ourselves, since we already send
98 >     * ourselves in /links
99 >     */
100 >    if (IsHidden(target_p) || IsMe(target_p))
101        continue;
102  
103 <    /* skip hidden servers */
301 <    if (IsHidden(target_p) && !ConfigServerHide.disable_hidden)
103 >    if (HasFlag(target_p, FLAGS_SERVICE) && ConfigServerHide.hide_services)
104        continue;
105  
106 <    if (target_p->info[0])
107 <      p = target_p->info;
306 <    else
307 <      p = "(Unknown Location)";
308 <
309 <    newMessageLine = MyMalloc(sizeof(MessageFileLine));
310 <
311 <    /* Attempt to format the file in such a way it follows the usual links output
106 >    /*
107 >     * Attempt to format the file in such a way it follows the usual links output
108       * ie  "servername uplink :hops info"
109       * Mostly for aesthetic reasons - makes it look pretty in mIRC ;)
110       * - madmax
111       */
112 +    snprintf(buff, sizeof(buff), "%s %s :1 %s",   target_p->name,
113 +             me.name, target_p->info);
114 +    dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
115 +    snprintf(buff, sizeof(buff), "%s %s :1 %s\n", target_p->name,
116 +             me.name, target_p->info);
117  
118 <    /*
119 <     * For now, check this ircsprintf wont overflow - it shouldnt on a
319 <     * default config but it is configurable..
320 <     * This should be changed to an snprintf at some point, but I'm wanting to
321 <     * know if this is a cause of a bug - cryogen
322 <     */
323 <    assert(strlen(target_p->name) + strlen(me.name) + 6 + strlen(p) <=
324 <            MESSAGELINELEN);
325 <    ircsprintf(newMessageLine->line, "%s %s :1 %s",
326 <               target_p->name, me.name, p);
327 <    newMessageLine->next = NULL;
118 >    fputs(buff, file);
119 >  }
120  
121 <    if (MessageFileptr->contentsOfFile)
122 <    {
331 <      if (currentMessageLine)
332 <        currentMessageLine->next = newMessageLine;
333 <      currentMessageLine = newMessageLine;
334 <    }
335 <    else
336 <    {
337 <      MessageFileptr->contentsOfFile = newMessageLine;
338 <      currentMessageLine = newMessageLine;
339 <    }
121 >  fclose(file);
122 > }
123  
124 <    nbytes = ircsprintf(buff, "%s %s :1 %s\n", target_p->name, me.name, p);
125 <    fbputs(buff, file, nbytes);
124 > void
125 > read_links_file(void)
126 > {
127 >  FILE *file = NULL;
128 >  char *p = NULL;
129 >  char buff[IRCD_BUFSIZE] = { '\0' };
130 >
131 >  if ((file = fopen(LIPATH, "r")) == NULL)
132 >    return;
133 >
134 >  while (fgets(buff, sizeof(buff), file))
135 >  {
136 >    if ((p = strchr(buff, '\n')) != NULL)
137 >      *p = '\0';
138 >
139 >    dlinkAddTail(xstrdup(buff), make_dlink_node(), &flatten_links);
140    }
141  
142 <  fbclose(file);
142 >  fclose(file);
143   }
144  
145   /* hunt_server()
# Line 366 | Line 163 | write_links_file(void* notused)
163   */
164   int
165   hunt_server(struct Client *client_p, struct Client *source_p, const char *command,
166 <            int server, int parc, char *parv[])
166 >            const int server, const int parc, char *parv[])
167   {
168    struct Client *target_p = NULL;
169    struct Client *target_tmp = NULL;
170    dlink_node *ptr;
171    int wilds;
172  
173 <  /* Assume it's me, if no server
174 <   */
175 <  if (parc <= server || EmptyString(parv[server]) ||
176 <      match(me.name, parv[server]) ||
177 <      match(parv[server], me.name) ||
178 <      !strcmp(parv[server], me.id))
382 <    return(HUNTED_ISME);
173 >  /* Assume it's me, if no server */
174 >  if (parc <= server || EmptyString(parv[server]))
175 >    return HUNTED_ISME;
176 >
177 >  if (!strcmp(parv[server], me.id) || !match(parv[server], me.name))
178 >    return HUNTED_ISME;
179  
180    /* These are to pickup matches that would cause the following
181     * message to go in the wrong direction while doing quick fast
182     * non-matching lookups.
183     */
184    if (MyClient(source_p))
185 <    target_p = find_client(parv[server]);
185 >    target_p = hash_find_client(parv[server]);
186    else
187      target_p = find_person(client_p, parv[server]);
188  
# Line 394 | Line 190 | hunt_server(struct Client *client_p, str
190      if (target_p->from == source_p->from && !MyConnect(target_p))
191        target_p = NULL;
192  
193 <  if (target_p == NULL && (target_p = find_server(parv[server])))
193 >  if (target_p == NULL && (target_p = hash_find_server(parv[server])))
194      if (target_p->from == source_p->from && !MyConnect(target_p))
195        target_p = NULL;
196  
197 <  collapse(parv[server]);
402 <  wilds = (strchr(parv[server], '?') || strchr(parv[server], '*'));
197 >  wilds = has_wildcards(parv[server]);
198  
199    /* Again, if there are no wild cards involved in the server
200     * name, use the hash lookup
# Line 408 | Line 203 | hunt_server(struct Client *client_p, str
203    {
204      if (!wilds)
205      {
206 <      if (!(target_p = find_server(parv[server])))
206 >      if (!(target_p = hash_find_server(parv[server])))
207        {
208          sendto_one(source_p, form_str(ERR_NOSUCHSERVER),
209 <                   me.name, parv[0], parv[server]);
210 <        return(HUNTED_NOSUCH);
209 >                   me.name, source_p->name, parv[server]);
210 >        return HUNTED_NOSUCH;
211        }
212      }
213      else
# Line 421 | Line 216 | hunt_server(struct Client *client_p, str
216        {
217          target_tmp = ptr->data;
218  
219 <        if (match(parv[server], target_tmp->name))
219 >        if (!match(parv[server], target_tmp->name))
220          {
221            if (target_tmp->from == source_p->from && !MyConnect(target_tmp))
222              continue;
# Line 439 | Line 234 | hunt_server(struct Client *client_p, str
234      if(!IsRegistered(target_p))
235      {
236        sendto_one(source_p, form_str(ERR_NOSUCHSERVER),
237 <                 me.name, parv[0], parv[server]);
237 >                 me.name, source_p->name, parv[server]);
238        return HUNTED_NOSUCH;
239      }
240  
241      if (IsMe(target_p) || MyClient(target_p))
242        return HUNTED_ISME;
243  
244 <    if (!match(target_p->name, parv[server]))
244 >    if (match(target_p->name, parv[server]))
245        parv[server] = target_p->name;
246  
247      /* This is a little kludgy but should work... */
# Line 458 | Line 253 | hunt_server(struct Client *client_p, str
253      sendto_one(target_p, command, parv[0],
254                 parv[1], parv[2], parv[3], parv[4],
255                 parv[5], parv[6], parv[7], parv[8]);
256 <    return(HUNTED_PASS);
257 <  }
256 >    return HUNTED_PASS;
257 >  }
258  
259    sendto_one(source_p, form_str(ERR_NOSUCHSERVER),
260 <             me.name, parv[0], parv[server]);
261 <  return(HUNTED_NOSUCH);
260 >             me.name, source_p->name, parv[server]);
261 >  return HUNTED_NOSUCH;
262   }
263  
264   /* try_connections()
# Line 479 | Line 274 | hunt_server(struct Client *client_p, str
274   void
275   try_connections(void *unused)
276   {
277 <  dlink_node *ptr;
278 <  struct ConfItem *conf;
484 <  struct AccessItem *aconf;
485 <  struct ClassItem *cltmp;
277 >  dlink_node *ptr = NULL;
278 >  struct MaskItem *conf;
279    int confrq;
280  
281    /* TODO: change this to set active flag to 0 when added to event! --Habeeb */
# Line 492 | Line 285 | try_connections(void *unused)
285    DLINK_FOREACH(ptr, server_items.head)
286    {
287      conf = ptr->data;
495    aconf = (struct AccessItem *)map_to_conf(conf);
288  
289 <    /* Also when already connecting! (update holdtimes) --SRB
289 >    assert(conf->type == CONF_SERVER);
290 >
291 >    /* Also when already connecting! (update holdtimes) --SRB
292       */
293 <    if (!(aconf->status & CONF_SERVER) || aconf->port <= 0 ||
500 <        !(IsConfAllowAutoConn(aconf)))
293 >    if (!conf->port ||!IsConfAllowAutoConn(conf))
294        continue;
295  
503    cltmp = (struct ClassItem *)map_to_conf(aconf->class_ptr);
296  
297      /* Skip this entry if the use of it is still on hold until
298       * future. Otherwise handle this entry (and set it on hold
# Line 508 | Line 300 | try_connections(void *unused)
300       * made one successfull connection... [this algorithm is
301       * a bit fuzzy... -- msa >;) ]
302       */
303 <    if (aconf->hold > CurrentTime)
303 >    if (conf->until > CurrentTime)
304        continue;
305  
306 <    if (cltmp == NULL)
306 >    if (conf->class == NULL)
307        confrq = DEFAULT_CONNECTFREQUENCY;
308      else
309      {
310 <      confrq = ConFreq(cltmp);
311 <      if (confrq < MIN_CONN_FREQ )
312 <        confrq = MIN_CONN_FREQ;
310 >      confrq = conf->class->con_freq;
311 >      if (confrq < MIN_CONN_FREQ)
312 >        confrq = MIN_CONN_FREQ;
313      }
314  
315 <    aconf->hold = CurrentTime + confrq;
315 >    conf->until = CurrentTime + confrq;
316  
317      /* Found a CONNECT config with port specified, scan clients
318       * and see if this server is already connected?
319       */
320 <    if (find_server(conf->name) != NULL)
320 >    if (hash_find_server(conf->name) != NULL)
321        continue;
322  
323 <    if (CurrUserCount(cltmp) < MaxTotal(cltmp))
323 >    if (conf->class->ref_count < conf->class->max_total)
324      {
325        /* Go to the end of the list, if not already last */
326        if (ptr->next != NULL)
# Line 549 | Line 341 | try_connections(void *unused)
341         *   -- adrian
342         */
343        if (ConfigServerHide.hide_server_ips)
344 <        sendto_realops_flags(UMODE_ALL, L_ALL, "Connection to %s activated.",
344 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
345 >                             "Connection to %s activated.",
346                               conf->name);
347        else
348 <        sendto_realops_flags(UMODE_ALL, L_ALL, "Connection to %s[%s] activated.",
349 <                             conf->name, aconf->host);
348 >        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
349 >                             "Connection to %s[%s] activated.",
350 >                             conf->name, conf->host);
351  
352 <      serv_connect(aconf, NULL);
352 >      serv_connect(conf, NULL);
353        /* We connect only one at time... */
354        return;
355      }
# Line 563 | Line 357 | try_connections(void *unused)
357   }
358  
359   int
360 < check_server(const char *name, struct Client *client_p, int cryptlink)
360 > valid_servname(const char *name)
361 > {
362 >  unsigned int length = 0;
363 >  unsigned int dots   = 0;
364 >  const char *p = name;
365 >
366 >  for (; *p; ++p)
367 >  {
368 >    if (!IsServChar(*p))
369 >      return 0;
370 >
371 >    ++length;
372 >
373 >    if (*p == '.')
374 >      ++dots;
375 >  }
376 >
377 >  return dots != 0 && length <= HOSTLEN;
378 > }
379 >
380 > int
381 > check_server(const char *name, struct Client *client_p)
382   {
383    dlink_node *ptr;
384 <  struct ConfItem *conf           = NULL;
385 <  struct ConfItem *server_conf    = NULL;
571 <  struct AccessItem *server_aconf = NULL;
572 <  struct AccessItem *aconf        = NULL;
384 >  struct MaskItem *conf        = NULL;
385 >  struct MaskItem *server_conf = NULL;
386    int error = -1;
387  
388    assert(client_p != NULL);
389  
577  if (client_p == NULL)
578    return(error);
579
580  if (strlen(name) > HOSTLEN)
581    return(-4);
582
390    /* loop through looking for all possible connect items that might work */
391    DLINK_FOREACH(ptr, server_items.head)
392    {
393      conf = ptr->data;
587    aconf = (struct AccessItem *)map_to_conf(conf);
394  
395 <    if (!match(name, conf->name))
395 >    if (match(name, conf->name))
396        continue;
397  
398      error = -3;
399  
400      /* XXX: Fix me for IPv6                    */
401      /* XXX sockhost is the IPv4 ip as a string */
402 <    if (match(aconf->host, client_p->host) ||
403 <        match(aconf->host, client_p->sockhost))
402 >    if (!match(conf->host, client_p->host) ||
403 >        !match(conf->host, client_p->sockhost))
404      {
405        error = -2;
600 #ifdef HAVE_LIBCRYPTO
601      if (cryptlink && IsConfCryptLink(aconf))
602      {
603        if (aconf->rsa_public_key)
604          server_conf = conf;
605      }
606      else if (!(cryptlink || IsConfCryptLink(aconf)))
607 #endif /* HAVE_LIBCRYPTO */
608      {
609        /* A NULL password is as good as a bad one */
610        if (EmptyString(client_p->localClient->passwd))
611          return(-2);
612
613        /* code in s_conf.c should not have allowed this to be NULL */
614        if (aconf->passwd == NULL)
615          return(-2);
406  
407 <        if (IsConfEncrypted(aconf))
408 <        {
409 <          if (strcmp(aconf->passwd,
410 <              (const char *)crypt(client_p->localClient->passwd,
411 <                                  aconf->passwd)) == 0)
412 <            server_conf = conf;
413 <        }
414 <        else
625 <        {
626 <          if (strcmp(aconf->passwd, client_p->localClient->passwd) == 0)
627 <            server_conf = conf;
628 <        }
629 <      }
407 >      if (!match_conf_password(client_p->localClient->passwd, conf))
408 >        return -2;
409 >
410 >      if (!EmptyString(conf->certfp))
411 >        if (EmptyString(client_p->certfp) || strcasecmp(client_p->certfp, conf->certfp))
412 >          return -4;
413 >
414 >      server_conf = conf;
415      }
416    }
417  
418    if (server_conf == NULL)
419 <    return(error);
419 >    return error;
420  
421    attach_conf(client_p, server_conf);
422  
638  /* Now find all leaf or hub config items for this server */
639  DLINK_FOREACH(ptr, hub_items.head)
640  {
641    conf = ptr->data;
642
643    if (!match(name, conf->name))
644      continue;
645    attach_conf(client_p, conf);
646  }
647
648  DLINK_FOREACH(ptr, leaf_items.head)
649  {
650    conf = ptr->data;
651
652    if (!match(name, conf->name))
653      continue;
654    attach_conf(client_p, conf);
655  }
656
657  server_aconf = map_to_conf(server_conf);
658
659 #ifdef HAVE_LIBZ /* otherwise, clear it unconditionally */
660  if (!IsConfCompressed(server_aconf))
661 #endif
662    ClearCap(client_p, CAP_ZIP);
663  if (!IsConfCryptLink(server_aconf))
664    ClearCap(client_p, CAP_ENC);
665  if (!IsConfTopicBurst(server_aconf))
666  {
667    ClearCap(client_p, CAP_TB);
668    ClearCap(client_p, CAP_TBURST);
669  }
423  
424 <  /* Don't unset CAP_HUB here even if the server isn't a hub,
672 <   * it only indicates if the server thinks it's lazylinks are
673 <   * leafs or not.. if you unset it, bad things will happen
674 <   */
675 <  if (aconf != NULL)
424 >  if (server_conf != NULL)
425    {
426      struct sockaddr_in *v4;
427   #ifdef IPV6
428      struct sockaddr_in6 *v6;
429   #endif
430 <    switch (aconf->aftype)
430 >    switch (server_conf->aftype)
431      {
432   #ifdef IPV6
433 <      case AF_INET6:
434 <        v6 = (struct sockaddr_in6 *)&aconf->ipnum;
433 >      case AF_INET6:
434 >        v6 = (struct sockaddr_in6 *)&server_conf->addr;
435  
436          if (IN6_IS_ADDR_UNSPECIFIED(&v6->sin6_addr))
437 <          memcpy(&aconf->ipnum, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
437 >          memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
438          break;
439   #endif
440        case AF_INET:
441 <        v4 = (struct sockaddr_in *)&aconf->ipnum;
441 >        v4 = (struct sockaddr_in *)&server_conf->addr;
442  
443          if (v4->sin_addr.s_addr == INADDR_NONE)
444 <          memcpy(&aconf->ipnum, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
444 >          memcpy(&server_conf->addr, &client_p->localClient->ip, sizeof(struct irc_ssaddr));
445          break;
446      }
447    }
448  
449 <  return(0);
449 >  return 0;
450   }
451  
452   /* add_capability()
# Line 714 | Line 463 | add_capability(const char *capab_name, i
463   {
464    struct Capability *cap = MyMalloc(sizeof(*cap));
465  
466 <  DupString(cap->name, capab_name);
466 >  cap->name = xstrdup(capab_name);
467    cap->cap = cap_flag;
468    dlinkAdd(cap, &cap->node, &cap_list);
469  
# Line 743 | Line 492 | delete_capability(const char *capab_name
492      {
493        if (irccmp(cap->name, capab_name) == 0)
494        {
495 <        default_server_capabs &= ~(cap->cap);
496 <        dlinkDelete(ptr, &cap_list);
497 <        MyFree(cap->name);
498 <        cap->name = NULL;
750 <        MyFree(cap);
495 >        default_server_capabs &= ~(cap->cap);
496 >        dlinkDelete(ptr, &cap_list);
497 >        MyFree(cap->name);
498 >        MyFree(cap);
499        }
500      }
501    }
# Line 762 | Line 510 | delete_capability(const char *capab_name
510   * output       - 0 if not found CAPAB otherwise
511   * side effects - none
512   */
513 < int
513 > unsigned int
514   find_capability(const char *capab)
515   {
516    const dlink_node *ptr = NULL;
# Line 781 | Line 529 | find_capability(const char *capab)
529   /* send_capabilities()
530   *
531   * inputs       - Client pointer to send to
784 *              - Pointer to AccessItem (for crypt)
532   *              - int flag of capabilities that this server can send
786 *              - int flag of encryption capabilities
533   * output       - NONE
534   * side effects - send the CAPAB line to a server  -orabidoo
535   *
536   */
537   void
538 < send_capabilities(struct Client *client_p, struct AccessItem *aconf,
793 <                  int cap_can_send, int enc_can_send)
538 > send_capabilities(struct Client *client_p, int cap_can_send)
539   {
540    struct Capability *cap=NULL;
541    char msgbuf[IRCD_BUFSIZE];
542    char *t;
543    int tl;
544    dlink_node *ptr;
800 #ifdef HAVE_LIBCRYPTO
801  const struct EncCapability *epref = NULL;
802  char *capend;
803  int sent_cipher = 0;
804 #endif
545  
546    t = msgbuf;
547  
# Line 811 | Line 551 | send_capabilities(struct Client *client_
551  
552      if (cap->cap & (cap_can_send|default_server_capabs))
553      {
554 <      tl = ircsprintf(t, "%s ", cap->name);
554 >      tl = sprintf(t, "%s ", cap->name);
555        t += tl;
556      }
557    }
818 #ifdef HAVE_LIBCRYPTO
819  if (enc_can_send)
820  {
821    capend = t;
822    strcpy(t, "ENC:");
823    t += 4;
824
825    /* use connect{} specific info if available */
826    if (aconf->cipher_preference)
827      epref = aconf->cipher_preference;
828    else if (ConfigFileEntry.default_cipher_preference)
829      epref = ConfigFileEntry.default_cipher_preference;
830
831    if (epref && (epref->cap & enc_can_send))
832    {
833      /* Leave the space -- it is removed later. */
834      tl = ircsprintf(t, "%s ", epref->name);
835      t += tl;
836      sent_cipher = 1;
837    }
558  
839    if (!sent_cipher)
840      t = capend; /* truncate string before ENC:, below */
841  }
842 #endif
559    *(t - 1) = '\0';
560    sendto_one(client_p, "CAPAB :%s", msgbuf);
561   }
562  
563   /* sendnick_TS()
564 < *
564 > *
565   * inputs       - client (server) to send nick towards
566   *          - client to send nick for
567   * output       - NONE
# Line 854 | Line 570 | send_capabilities(struct Client *client_
570   void
571   sendnick_TS(struct Client *client_p, struct Client *target_p)
572   {
573 <  static char ubuf[12];
573 >  char ubuf[IRCD_BUFSIZE];
574  
575    if (!IsClient(target_p))
576      return;
577  
578 <  send_umode(NULL, target_p, 0, IsOperHiddenAdmin(target_p) ?
863 <    SEND_UMODES & ~UMODE_ADMIN : SEND_UMODES, ubuf);
578 >  send_umode(NULL, target_p, 0, SEND_UMODES, ubuf);
579  
580    if (ubuf[0] == '\0')
581    {
# Line 868 | Line 583 | sendnick_TS(struct Client *client_p, str
583      ubuf[1] = '\0';
584    }
585  
586 <  /* XXX Both of these need to have a :me.name or :mySID!?!?! */
587 <  if (HasID(target_p) && IsCapable(client_p, CAP_TS6))
588 <    sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s :%s",
589 <               target_p->servptr->id,
590 <               target_p->name, target_p->hopcount + 1,
591 <               (unsigned long) target_p->tsinfo,
592 <               ubuf, target_p->username, target_p->host,
593 <               (MyClient(target_p) && IsIPSpoof(target_p)) ?
594 <               "0" : target_p->sockhost, target_p->id, target_p->info);
586 >  if (IsCapable(client_p, CAP_SVS))
587 >  {
588 >    if (HasID(target_p) && IsCapable(client_p, CAP_TS6))
589 >      sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s %s :%s",
590 >                 target_p->servptr->id,
591 >                 target_p->name, target_p->hopcount + 1,
592 >                 (unsigned long) target_p->tsinfo,
593 >                 ubuf, target_p->username, target_p->host,
594 >                 (MyClient(target_p) && IsIPSpoof(target_p)) ?
595 >                 "0" : target_p->sockhost, target_p->id,
596 >                 target_p->svid, target_p->info);
597 >    else
598 >      sendto_one(client_p, "NICK %s %d %lu %s %s %s %s %s :%s",
599 >                 target_p->name, target_p->hopcount + 1,
600 >                 (unsigned long) target_p->tsinfo,
601 >                 ubuf, target_p->username, target_p->host,
602 >                 target_p->servptr->name, target_p->svid,
603 >                 target_p->info);
604 >  }
605    else
606 <    sendto_one(client_p, "NICK %s %d %lu %s %s %s %s :%s",
607 <               target_p->name, target_p->hopcount + 1,
608 <               (unsigned long) target_p->tsinfo,
609 <               ubuf, target_p->username, target_p->host,
610 <               target_p->servptr->name, target_p->info);
611 <
612 <  if (IsConfAwayBurst((struct AccessItem *)map_to_conf(client_p->serv->sconf)))
613 <    if (!EmptyString(target_p->away))
614 <      sendto_one(client_p, ":%s AWAY :%s", target_p->name,
615 <                 target_p->away);
606 >  {
607 >    if (HasID(target_p) && IsCapable(client_p, CAP_TS6))
608 >      sendto_one(client_p, ":%s UID %s %d %lu %s %s %s %s %s :%s",
609 >                 target_p->servptr->id,
610 >                 target_p->name, target_p->hopcount + 1,
611 >                 (unsigned long) target_p->tsinfo,
612 >                 ubuf, target_p->username, target_p->host,
613 >                 (MyClient(target_p) && IsIPSpoof(target_p)) ?
614 >                 "0" : target_p->sockhost, target_p->id, target_p->info);
615 >    else
616 >      sendto_one(client_p, "NICK %s %d %lu %s %s %s %s :%s",
617 >                 target_p->name, target_p->hopcount + 1,
618 >                 (unsigned long) target_p->tsinfo,
619 >                 ubuf, target_p->username, target_p->host,
620 >                 target_p->servptr->name, target_p->info);
621 >  }
622 >
623 >  if (!EmptyString(target_p->certfp))
624 >    sendto_one(client_p, ":%s CERTFP %s",
625 >               ID_or_name(target_p, client_p), target_p->certfp);
626 >
627 >  if (target_p->away[0])
628 >    sendto_one(client_p, ":%s AWAY :%s", ID_or_name(target_p, client_p),
629 >               target_p->away);
630  
631   }
632  
# Line 899 | Line 638 | sendnick_TS(struct Client *client_p, str
638   * side effects - build up string representing capabilities of server listed
639   */
640   const char *
641 < show_capabilities(struct Client *target_p)
641 > show_capabilities(const struct Client *target_p)
642   {
643 <  static char msgbuf[IRCD_BUFSIZE];
644 <  char *t = msgbuf;
906 <  dlink_node *ptr;
643 >  static char msgbuf[IRCD_BUFSIZE] = "";
644 >  const dlink_node *ptr = NULL;
645  
646 <  t += ircsprintf(msgbuf, "TS ");
646 >  strlcpy(msgbuf, "TS", sizeof(msgbuf));
647  
648    DLINK_FOREACH(ptr, cap_list.head)
649    {
650      const struct Capability *cap = ptr->data;
651  
652 <    if (IsCapable(target_p, cap->cap))
653 <      t += ircsprintf(t, "%s ", cap->name);
652 >    if (!IsCapable(target_p, cap->cap))
653 >      continue;
654 >
655 >    strlcat(msgbuf,       " ", sizeof(msgbuf));
656 >    strlcat(msgbuf, cap->name, sizeof(msgbuf));
657    }
917 #ifdef HAVE_LIBCRYPTO
918  if (IsCapable(target_p, CAP_ENC) &&
919      target_p->localClient->in_cipher &&
920      target_p->localClient->out_cipher)
921    t += ircsprintf(t, "ENC:%s ",
922                    target_p->localClient->in_cipher->name);
923 #endif
924  *(t - 1) = '\0';
658  
659 <  return(msgbuf);
659 >  return msgbuf;
660   }
661  
662   /* make_server()
# Line 952 | Line 685 | void
685   server_estab(struct Client *client_p)
686   {
687    struct Client *target_p;
688 <  struct ConfItem *conf;
956 <  struct AccessItem *aconf=NULL;
688 >  struct MaskItem *conf = NULL;
689    char *host;
690    const char *inpath;
691    static char inpath_ip[HOSTLEN * 2 + USERLEN + 6];
960  dlink_node *m;
692    dlink_node *ptr;
693 + #ifdef HAVE_LIBCRYPTO
694 +  const COMP_METHOD *compression = NULL, *expansion = NULL;
695 + #endif
696  
697    assert(client_p != NULL);
698  
# Line 967 | Line 701 | server_estab(struct Client *client_p)
701    inpath = get_client_name(client_p, MASK_IP); /* "refresh" inpath with host */
702    host   = client_p->name;
703  
704 <  if ((conf = find_conf_name(&client_p->localClient->confs, host, SERVER_TYPE))
704 >  if ((conf = find_conf_name(&client_p->localClient->confs, host, CONF_SERVER))
705        == NULL)
706    {
707      /* This shouldn't happen, better tell the ops... -A1kmm */
708 <    sendto_realops_flags(UMODE_ALL, L_ALL, "Warning: Lost connect{} block "
708 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
709 >                         "Warning: Lost connect{} block "
710                           "for server %s(this shouldn't happen)!", host);
711      exit_client(client_p, &me, "Lost connect{} block!");
712      return;
# Line 986 | Line 721 | server_estab(struct Client *client_p)
721    /* If there is something in the serv_list, it might be this
722     * connecting server..
723     */
724 <  if (!ServerInfo.hub && serv_list.head)  
724 >  if (!ServerInfo.hub && serv_list.head)
725    {
726      if (client_p != serv_list.head->data || serv_list.head->next)
727      {
# Line 997 | Line 732 | server_estab(struct Client *client_p)
732      }
733    }
734  
735 <  aconf = (struct AccessItem *)map_to_conf(conf);
1001 <
1002 <  if (IsUnknown(client_p) && !IsConfCryptLink(aconf))
735 >  if (IsUnknown(client_p))
736    {
737 <    /* jdc -- 1.  Use EmptyString(), not [0] index reference.
1005 <     *        2.  Check aconf->spasswd, not aconf->passwd.
1006 <     */
1007 <    if (!EmptyString(aconf->spasswd))
1008 <    {
1009 <      /* only send ts6 format PASS if we have ts6 enabled */
1010 <    if (me.id[0] != '\0')               /* Send TS 6 form only if id */
1011 <        sendto_one(client_p, "PASS %s TS %d %s",
1012 <                   aconf->spasswd, TS_CURRENT, me.id);
1013 <      else
1014 <        sendto_one(client_p, "PASS %s TS 5",
1015 <                   aconf->spasswd);
1016 <    }
737 >    sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
738  
739 <    /* Pass my info to the new server
1019 <     *
1020 <     * If this is a HUB, pass on CAP_HUB
1021 <     * Pass on ZIP if supported
1022 <     * Pass on TB if supported.
1023 <     * - Dianora
1024 <     */
739 >    send_capabilities(client_p, 0);
740  
1026    send_capabilities(client_p, aconf, (ServerInfo.hub ? CAP_HUB : 0)
1027      | (IsConfCompressed(aconf) ? CAP_ZIP : 0)
1028      | (IsConfTopicBurst(aconf) ? CAP_TBURST|CAP_TB : 0), 0);
1029
1030    /* SERVER is the last command sent before switching to ziplinks.
1031     * We set TCPNODELAY on the socket to make sure it gets sent out
1032     * on the wire immediately.  Otherwise, it could be sitting in
1033     * a kernel buffer when we start sending zipped data, and the
1034     * parser on the receiving side can't hand both unzipped and zipped
1035     * data in one packet. --Rodder
1036     *
1037     * currently we only need to call send_queued_write,
1038     * Nagle is already disabled at this point --adx
1039     */
741      sendto_one(client_p, "SERVER %s 1 :%s%s",
742 <               my_name_for_link(conf),
1042 <               ConfigServerHide.hidden ? "(H) " : "",
1043 <               (me.info[0]) ? (me.info) : "IRCers United");
1044 <    send_queued_write(client_p);
1045 <  }
1046 <
1047 <  /* Hand the server off to servlink now */
1048 <  if (IsCapable(client_p, CAP_ENC) || IsCapable(client_p, CAP_ZIP))
1049 <  {
1050 <    if (fork_server(client_p) < 0)
1051 <    {
1052 <      sendto_realops_flags(UMODE_ALL, L_ADMIN,
1053 <                           "Warning: fork failed for server %s -- check servlink_path (%s)",
1054 <                           get_client_name(client_p, HIDE_IP), ConfigFileEntry.servlink_path);
1055 <      sendto_realops_flags(UMODE_ALL, L_OPER, "Warning: fork failed for server "
1056 <                           "%s -- check servlink_path (%s)",
1057 <                           get_client_name(client_p, MASK_IP),
1058 <                           ConfigFileEntry.servlink_path);
1059 <      exit_client(client_p, &me, "fork failed");
1060 <      return;
1061 <    }
1062 <
1063 <    start_io(client_p);
1064 <    SetServlink(client_p);
742 >               me.name, ConfigServerHide.hidden ? "(H) " : "", me.info);
743    }
744  
745 <  /* only send ts6 format SVINFO if we have ts6 enabled */
1068 <  sendto_one(client_p, "SVINFO %d %d 0 :%lu",
1069 <             (me.id[0] ? TS_CURRENT : 5), TS_MIN,
745 >  sendto_one(client_p, "SVINFO %d %d 0 :%lu", TS_CURRENT, TS_MIN,
746               (unsigned long)CurrentTime);
747  
748    /* assumption here is if they passed the correct TS version, they also passed an SID */
# Line 1074 | Line 750 | server_estab(struct Client *client_p)
750      hash_add_id(client_p);
751  
752    /* XXX Does this ever happen? I don't think so -db */
753 <  detach_conf(client_p, OPER_TYPE);
753 >  detach_conf(client_p, CONF_OPER);
754  
755    /* *WARNING*
756    **    In the following code in place of plain server's
# Line 1100 | Line 776 | server_estab(struct Client *client_p)
776    /* Some day, all these lists will be consolidated *sigh* */
777    dlinkAdd(client_p, &client_p->lnode, &me.serv->server_list);
778  
779 <  m = dlinkFind(&unknown_list, client_p);
1104 <  assert(NULL != m);
779 >  assert(dlinkFind(&unknown_list, client_p));
780  
781 <  dlinkDelete(m, &unknown_list);
782 <  dlinkAdd(client_p, m, &serv_list);
781 >  dlink_move_node(&client_p->localClient->lclient_node,
782 >                  &unknown_list, &serv_list);
783  
784    Count.myserver++;
785  
# Line 1115 | Line 790 | server_estab(struct Client *client_p)
790    make_server(client_p);
791  
792    /* fixing eob timings.. -gnp */
793 <  client_p->firsttime = CurrentTime;
793 >  client_p->localClient->firsttime = CurrentTime;
794  
795 <  /* Show the real host/IP to admins */
796 <  sendto_realops_flags(UMODE_ALL, L_ADMIN,
1122 <                       "Link with %s established: (%s) link",
1123 <                       inpath_ip,show_capabilities(client_p));
1124 <  /* Now show the masked hostname/IP to opers */
1125 <  sendto_realops_flags(UMODE_ALL, L_OPER,
1126 <                       "Link with %s established: (%s) link",
1127 <                       inpath,show_capabilities(client_p));
1128 <  ilog(L_NOTICE, "Link with %s established: (%s) link",
1129 <       inpath_ip, show_capabilities(client_p));
1130 <
1131 <  client_p->serv->sconf = conf;
795 >  if (find_matching_name_conf(CONF_SERVICE, client_p->name, NULL, NULL, 0))
796 >    AddFlag(client_p, FLAGS_SERVICE);
797  
798 <  if (HasServlink(client_p))
798 >  /* Show the real host/IP to admins */
799 > #ifdef HAVE_LIBCRYPTO
800 >  if (client_p->localClient->fd.ssl)
801    {
802 <    /* we won't overflow FD_DESC_SZ here, as it can hold
803 <     * client_p->name + 64
804 <     */
805 <    fd_note(&client_p->localClient->fd, "slink data: %s", client_p->name);
806 <    fd_note(&client_p->localClient->ctrlfd, "slink ctrl: %s", client_p->name);
802 >    compression = SSL_get_current_compression(client_p->localClient->fd.ssl);
803 >    expansion   = SSL_get_current_expansion(client_p->localClient->fd.ssl);
804 >
805 >    sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
806 >                         "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
807 >                         inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
808 >                         compression ? SSL_COMP_get_name(compression) : "NONE",
809 >                         expansion ? SSL_COMP_get_name(expansion) : "NONE",
810 >                         show_capabilities(client_p));
811 >    /* Now show the masked hostname/IP to opers */
812 >    sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
813 >                         "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
814 >                         inpath, ssl_get_cipher(client_p->localClient->fd.ssl),
815 >                         compression ? SSL_COMP_get_name(compression) : "NONE",
816 >                         expansion ? SSL_COMP_get_name(expansion) : "NONE",
817 >                         show_capabilities(client_p));
818 >    ilog(LOG_TYPE_IRCD, "Link with %s established: [SSL: %s, Compression/Expansion method: %s/%s] (Capabilities: %s)",
819 >         inpath_ip, ssl_get_cipher(client_p->localClient->fd.ssl),
820 >         compression ? SSL_COMP_get_name(compression) : "NONE",
821 >         expansion ? SSL_COMP_get_name(expansion) : "NONE",
822 >         show_capabilities(client_p));
823    }
824    else
825 <    fd_note(&client_p->localClient->fd, "Server: %s", client_p->name);
825 > #endif
826 >  {
827 >    sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
828 >                         "Link with %s established: (Capabilities: %s)",
829 >                         inpath_ip, show_capabilities(client_p));
830 >    /* Now show the masked hostname/IP to opers */
831 >    sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
832 >                         "Link with %s established: (Capabilities: %s)",
833 >                         inpath, show_capabilities(client_p));
834 >    ilog(LOG_TYPE_IRCD, "Link with %s established: (Capabilities: %s)",
835 >         inpath_ip, show_capabilities(client_p));
836 >  }
837 >
838 >  fd_note(&client_p->localClient->fd, "Server: %s", client_p->name);
839  
840    /* Old sendto_serv_but_one() call removed because we now
841    ** need to send different names to different servers
# Line 1152 | Line 848 | server_estab(struct Client *client_p)
848      if (target_p == client_p)
849        continue;
850  
1155    if ((conf = target_p->serv->sconf) &&
1156         match(my_name_for_link(conf), client_p->name))
1157      continue;
1158
851      if (IsCapable(target_p, CAP_TS6) && HasID(client_p))
852        sendto_one(target_p, ":%s SID %s 2 %s :%s%s",
853                   me.id, client_p->name, client_p->id,
854                   IsHidden(client_p) ? "(H) " : "",
855                   client_p->info);
856      else
857 <      sendto_one(target_p,":%s SERVER %s 2 :%s%s",
857 >      sendto_one(target_p,":%s SERVER %s 2 :%s%s",
858                   me.name, client_p->name,
859                   IsHidden(client_p) ? "(H) " : "",
860                   client_p->info);
861    }
862  
863 <  /* Pass on my client information to the new server
864 <  **
865 <  ** First, pass only servers (idea is that if the link gets
866 <  ** cancelled beacause the server was already there,
867 <  ** there are no NICK's to be cancelled...). Of course,
868 <  ** if cancellation occurs, all this info is sent anyway,
869 <  ** and I guess the link dies when a read is attempted...? --msa
870 <  **
871 <  ** Note: Link cancellation to occur at this point means
872 <  ** that at least two servers from my fragment are building
873 <  ** up connection this other fragment at the same time, it's
874 <  ** a race condition, not the normal way of operation...
875 <  **
876 <  ** ALSO NOTE: using the get_client_name for server names--
877 <  **    see previous *WARNING*!!! (Also, original inpath
878 <  **    is destroyed...)
879 <  */
880 <
1189 <  conf = client_p->serv->sconf;
863 >  /*
864 >   * Pass on my client information to the new server
865 >   *
866 >   * First, pass only servers (idea is that if the link gets
867 >   * cancelled beacause the server was already there,
868 >   * there are no NICK's to be cancelled...). Of course,
869 >   * if cancellation occurs, all this info is sent anyway,
870 >   * and I guess the link dies when a read is attempted...? --msa
871 >   *
872 >   * Note: Link cancellation to occur at this point means
873 >   * that at least two servers from my fragment are building
874 >   * up connection this other fragment at the same time, it's
875 >   * a race condition, not the normal way of operation...
876 >   *
877 >   * ALSO NOTE: using the get_client_name for server names--
878 >   *    see previous *WARNING*!!! (Also, original inpath
879 >   *    is destroyed...)
880 >   */
881  
882    DLINK_FOREACH_PREV(ptr, global_serv_list.tail)
883    {
884      target_p = ptr->data;
885  
886      /* target_p->from == target_p for target_p == client_p */
887 <    if (target_p->from == client_p)
1197 <      continue;
1198 <
1199 <    if (match(my_name_for_link(conf), target_p->name))
887 >    if (IsMe(target_p) || target_p->from == client_p)
888        continue;
889  
890      if (IsCapable(client_p, CAP_TS6))
# Line 1212 | Line 900 | server_estab(struct Client *client_p)
900                     IsHidden(target_p) ? "(H) " : "", target_p->info);
901      }
902      else
903 <      sendto_one(client_p, ":%s SERVER %s %d :%s%s",
903 >      sendto_one(client_p, ":%s SERVER %s %d :%s%s",
904                   target_p->servptr->name, target_p->name, target_p->hopcount+1,
905                   IsHidden(target_p) ? "(H) " : "", target_p->info);
1218  }
906  
907 <  server_burst(client_p);
908 < }
1222 <
1223 < static void
1224 < start_io(struct Client *server)
1225 < {
1226 <  struct LocalUser *lserver = server->localClient;
1227 <  int alloclen = 1;
1228 <  char *buf;
1229 <  dlink_node *ptr;
1230 <  struct dbuf_block *block;
1231 <
1232 <  /* calculate how many bytes to allocate */
1233 <  if (IsCapable(server, CAP_ZIP))
1234 <    alloclen += 6;
1235 < #ifdef HAVE_LIBCRYPTO
1236 <  if (IsCapable(server, CAP_ENC))
1237 <    alloclen += 16 + lserver->in_cipher->keylen + lserver->out_cipher->keylen;
1238 < #endif
1239 <  alloclen += dbuf_length(&lserver->buf_recvq);
1240 <  alloclen += dlink_list_length(&lserver->buf_recvq.blocks) * 3;
1241 <  alloclen += dbuf_length(&lserver->buf_sendq);
1242 <  alloclen += dlink_list_length(&lserver->buf_sendq.blocks) * 3;
1243 <
1244 <  /* initialize servlink control sendq */
1245 <  lserver->slinkq = buf = MyMalloc(alloclen);
1246 <  lserver->slinkq_ofs = 0;
1247 <  lserver->slinkq_len = alloclen;
1248 <
1249 <  if (IsCapable(server, CAP_ZIP))
1250 <  {
1251 <    /* ziplink */
1252 <    *buf++ = SLINKCMD_SET_ZIP_OUT_LEVEL;
1253 <    *buf++ = 0; /* |          */
1254 <    *buf++ = 1; /* \ len is 1 */
1255 <    *buf++ = ConfigFileEntry.compression_level;
1256 <    *buf++ = SLINKCMD_START_ZIP_IN;
1257 <    *buf++ = SLINKCMD_START_ZIP_OUT;
1258 <  }
1259 < #ifdef HAVE_LIBCRYPTO
1260 <  if (IsCapable(server, CAP_ENC))
1261 <  {
1262 <    /* Decryption settings */
1263 <    *buf++ = SLINKCMD_SET_CRYPT_IN_CIPHER;
1264 <    *buf++ = 0; /* /                     (upper 8-bits of len) */
1265 <    *buf++ = 1; /* \ cipher id is 1 byte (lower 8-bits of len) */
1266 <    *buf++ = lserver->in_cipher->cipherid;
1267 <    *buf++ = SLINKCMD_SET_CRYPT_IN_KEY;
1268 <    *buf++ = 0; /* keylen < 256 */
1269 <    *buf++ = lserver->in_cipher->keylen;
1270 <    memcpy(buf, lserver->in_key, lserver->in_cipher->keylen);
1271 <    buf += lserver->in_cipher->keylen;
1272 <    /* Encryption settings */
1273 <    *buf++ = SLINKCMD_SET_CRYPT_OUT_CIPHER;
1274 <    *buf++ = 0; /* /                     (upper 8-bits of len) */
1275 <    *buf++ = 1; /* \ cipher id is 1 byte (lower 8-bits of len) */
1276 <    *buf++ = lserver->out_cipher->cipherid;
1277 <    *buf++ = SLINKCMD_SET_CRYPT_OUT_KEY;
1278 <    *buf++ = 0; /* keylen < 256 */
1279 <    *buf++ = lserver->out_cipher->keylen;
1280 <    memcpy(buf, lserver->out_key, lserver->out_cipher->keylen);
1281 <    buf += lserver->out_cipher->keylen;
1282 <    *buf++ = SLINKCMD_START_CRYPT_IN;
1283 <    *buf++ = SLINKCMD_START_CRYPT_OUT;
907 >    if (HasFlag(target_p, FLAGS_EOB))
908 >      sendto_one(client_p, ":%s EOB", ID_or_name(client_p, target_p));
909    }
1285 #endif
1286
1287  /* pass the whole recvq to servlink */
1288  DLINK_FOREACH (ptr, lserver->buf_recvq.blocks.head)
1289  {
1290    block = ptr->data;
1291    *buf++ = SLINKCMD_INJECT_RECVQ;
1292    *buf++ = (block->size >> 8);
1293    *buf++ = (block->size & 0xff);
1294    memcpy(buf, &block->data[0], block->size);
1295    buf += block->size;
1296  }
1297
1298  dbuf_clear(&lserver->buf_recvq);
910  
911 <  /* pass the whole sendq to servlink */
1301 <  DLINK_FOREACH (ptr, lserver->buf_sendq.blocks.head)
1302 <  {
1303 <    block = ptr->data;
1304 <    *buf++ = SLINKCMD_INJECT_SENDQ;
1305 <    *buf++ = (block->size >> 8);
1306 <    *buf++ = (block->size & 0xff);
1307 <    memcpy(buf, &block->data[0], block->size);
1308 <    buf += block->size;
1309 <  }
1310 <
1311 <  dbuf_clear(&lserver->buf_sendq);
1312 <
1313 <  /* start io */
1314 <  *buf++ = SLINKCMD_INIT;
1315 <
1316 <  /* schedule a write */
1317 <  send_queued_slink_write(server);
1318 < }
1319 <
1320 < /* fork_server()
1321 < *
1322 < * inputs       - struct Client *server
1323 < * output       - success: 0 / failure: -1
1324 < * side effect  - fork, and exec SERVLINK to handle this connection
1325 < */
1326 < static int
1327 < fork_server(struct Client *server)
1328 < {
1329 < #ifndef HAVE_SOCKETPAIR
1330 <  return -1;
1331 < #else
1332 <  int i;
1333 <  int slink_fds[2][2];
1334 <  /* 0? - ctrl  | 1? - data  
1335 <   * ?0 - child | ?1 - parent */
1336 <
1337 <  if (socketpair(AF_UNIX, SOCK_STREAM, 0, slink_fds[0]) < 0)
1338 <    return -1;
1339 <  if (socketpair(AF_UNIX, SOCK_STREAM, 0, slink_fds[1]) < 0)
1340 <    goto free_ctrl_fds;
1341 <
1342 <  if ((i = fork()) < 0)
1343 <  {
1344 <    close(slink_fds[1][0]);  close(slink_fds[1][1]);
1345 <    free_ctrl_fds:
1346 <    close(slink_fds[0][0]);  close(slink_fds[0][1]);
1347 <    return -1;
1348 <  }
1349 <
1350 <  if (i == 0)
1351 <  {
1352 <    char fd_str[3][6];   /* store 3x sizeof("65535") */
1353 <    char *kid_argv[7];
1354 <
1355 < #ifdef O_ASYNC
1356 <    fcntl(server->localClient->fd.fd, F_SETFL,
1357 <          fcntl(server->localClient->fd.fd, F_GETFL, 0) & ~O_ASYNC);
1358 < #endif
1359 <    close_fds(&server->localClient->fd);
1360 <    close(slink_fds[0][1]);
1361 <    close(slink_fds[1][1]);
1362 <
1363 <    sprintf(fd_str[0], "%d", slink_fds[0][0]);
1364 <    sprintf(fd_str[1], "%d", slink_fds[1][0]);
1365 <    sprintf(fd_str[2], "%d", server->localClient->fd.fd);
1366 <
1367 <    kid_argv[0] = "-slink";
1368 <    kid_argv[1] = kid_argv[2] = fd_str[0];  /* ctrl */
1369 <    kid_argv[3] = kid_argv[4] = fd_str[1];  /* data */
1370 <    kid_argv[5] = fd_str[2];    /* network */
1371 <    kid_argv[6] = NULL;
1372 <
1373 <    execv(ConfigFileEntry.servlink_path, kid_argv);
1374 <
1375 <    _exit(1);
1376 <  }
1377 <
1378 <  /* close the network fd and the child ends of the pipes */
1379 <  fd_close(&server->localClient->fd);
1380 <  close(slink_fds[0][0]);
1381 <  close(slink_fds[1][0]);
1382 <
1383 <  execute_callback(setup_socket_cb, slink_fds[0][1]);
1384 <  execute_callback(setup_socket_cb, slink_fds[1][1]);
1385 <
1386 <  fd_open(&server->localClient->ctrlfd, slink_fds[0][1], 1, "slink ctrl");
1387 <  fd_open(&server->localClient->fd, slink_fds[1][1], 1, "slink data");
1388 <
1389 <  read_ctrl_packet(&server->localClient->ctrlfd, server);
1390 <  read_packet(&server->localClient->fd, server);
1391 <
1392 <  return 0;
1393 < #endif
911 >  server_burst(client_p);
912   }
913  
914   /* server_burst()
# Line 1423 | Line 941 | server_burst(struct Client *client_p)
941  
942   /* burst_all()
943   *
944 < * inputs       - pointer to server to send burst to
944 > * inputs       - pointer to server to send burst to
945   * output       - NONE
946   * side effects - complete burst of channels/nicks is sent to client_p
947   */
# Line 1441 | Line 959 | burst_all(struct Client *client_p)
959        burst_members(client_p, chptr);
960        send_channel_modes(client_p, chptr);
961  
962 <      if (IsCapable(client_p, CAP_TBURST) ||
963 <          IsCapable(client_p, CAP_TB))
1446 <        send_tb(client_p, chptr);
962 >      if (IsCapable(client_p, CAP_TBURST))
963 >        send_tb(client_p, chptr);
964      }
965    }
966  
# Line 1453 | Line 970 | burst_all(struct Client *client_p)
970    {
971      struct Client *target_p = ptr->data;
972  
973 <    if (!IsBursted(target_p) && target_p->from != client_p)
973 >    if (!HasFlag(target_p, FLAGS_BURSTED) && target_p->from != client_p)
974        sendnick_TS(client_p, target_p);
975 <    
976 <    ClearBursted(target_p);
975 >
976 >    DelFlag(target_p, FLAGS_BURSTED);
977    }
978  
1462  /* We send the time we started the burst, and let the remote host determine an EOB time,
1463  ** as otherwise we end up sending a EOB of 0   Sending here means it gets sent last -- fl
1464  */
1465  /* Its simpler to just send EOB and use the time its been connected.. --fl_ */
979    if (IsCapable(client_p, CAP_EOB))
980      sendto_one(client_p, ":%s EOB", ID_or_name(&me, client_p));
981   }
# Line 1474 | Line 987 | burst_all(struct Client *client_p)
987   *              - pointer to channel
988   * output       - NONE
989   * side effects - Called on a server burst when
990 < *                server is CAP_TB|CAP_TBURST capable
990 > *                server is CAP_TBURST capable
991   */
992   static void
993   send_tb(struct Client *client_p, struct Channel *chptr)
# Line 1493 | Line 1006 | send_tb(struct Client *client_p, struct
1006     * for further information   -Michael
1007     */
1008    if (chptr->topic_time != 0)
1009 <  {
1010 <    if (IsCapable(client_p, CAP_TBURST))
1011 <      sendto_one(client_p, ":%s TBURST %lu %s %lu %s :%s",
1012 <                 me.name, (unsigned long)chptr->channelts, chptr->chname,
1013 <                 (unsigned long)chptr->topic_time,
1014 <                 chptr->topic_info ? chptr->topic_info : "",
1502 <                 chptr->topic ? chptr->topic : "");
1503 <    else if (IsCapable(client_p, CAP_TB))
1504 <    {
1505 <      if (ConfigChannel.burst_topicwho)
1506 <      {
1507 <        sendto_one(client_p, ":%s TB %s %lu %s :%s",
1508 <                   me.name, chptr->chname,
1509 <                   (unsigned long)chptr->topic_time,
1510 <                   chptr->topic_info, chptr->topic ? chptr->topic : "");
1511 <      }
1512 <      else
1513 <      {
1514 <        sendto_one(client_p, ":%s TB %s %lu :%s",
1515 <                   me.name, chptr->chname,
1516 <                   (unsigned long)chptr->topic_time,
1517 <                   chptr->topic ? chptr->topic : "");
1518 <      }
1519 <    }
1520 <  }
1009 >    sendto_one(client_p, ":%s TBURST %lu %s %lu %s :%s",
1010 >               ID_or_name(&me, client_p),
1011 >               (unsigned long)chptr->channelts, chptr->chname,
1012 >               (unsigned long)chptr->topic_time,
1013 >               chptr->topic_info,
1014 >               chptr->topic);
1015   }
1016  
1017   /* burst_members()
# Line 1539 | Line 1033 | burst_members(struct Client *client_p, s
1033      ms       = ptr->data;
1034      target_p = ms->client_p;
1035  
1036 <    if (!IsBursted(target_p))
1036 >    if (!HasFlag(target_p, FLAGS_BURSTED))
1037      {
1038 <      SetBursted(target_p);
1038 >      AddFlag(target_p, FLAGS_BURSTED);
1039  
1040        if (target_p->from != client_p)
1041          sendnick_TS(client_p, target_p);
# Line 1556 | Line 1050 | burst_members(struct Client *client_p, s
1050  
1051   /* serv_connect() - initiate a server connection
1052   *
1053 < * inputs       - pointer to conf
1053 > * inputs       - pointer to conf
1054   *              - pointer to client doing the connect
1055   * output       -
1056   * side effects -
# Line 1571 | Line 1065 | burst_members(struct Client *client_p, s
1065   * it suceeded or not, and 0 if it fails in here somewhere.
1066   */
1067   int
1068 < serv_connect(struct AccessItem *aconf, struct Client *by)
1068 > serv_connect(struct MaskItem *conf, struct Client *by)
1069   {
1576  struct ConfItem *conf;
1070    struct Client *client_p;
1071 <  char buf[HOSTIPLEN];
1071 >  char buf[HOSTIPLEN + 1];
1072  
1073    /* conversion structs */
1074    struct sockaddr_in *v4;
1075 <  /* Make sure aconf is useful */
1076 <  assert(aconf != NULL);
1584 <
1585 <  if(aconf == NULL)
1586 <    return (0);
1075 >  /* Make sure conf is useful */
1076 >  assert(conf != NULL);
1077  
1588  /* XXX should be passing struct ConfItem in the first place */
1589  conf = unmap_conf_item(aconf);
1078  
1079 <  /* log */
1080 <  irc_getnameinfo((struct sockaddr*)&aconf->ipnum, aconf->ipnum.ss_len,
1081 <                  buf, HOSTIPLEN, NULL, 0, NI_NUMERICHOST);
1594 <  ilog(L_NOTICE, "Connect to %s[%s] @%s", aconf->user, aconf->host,
1079 >  getnameinfo((struct sockaddr *)&conf->addr, conf->addr.ss_len,
1080 >              buf, sizeof(buf), NULL, 0, NI_NUMERICHOST);
1081 >  ilog(LOG_TYPE_IRCD, "Connect to %s[%s] @%s", conf->name, conf->host,
1082         buf);
1083  
1084    /* Still processing a DNS lookup? -> exit */
1085 <  if (aconf->dns_query != NULL)
1085 >  if (conf->dns_pending)
1086    {
1087 <    sendto_realops_flags(UMODE_ALL, L_OPER,
1088 <                         "Error connecting to %s: Error during DNS lookup", conf->name);
1087 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1088 >                         "Error connecting to %s: DNS lookup for connect{} in progress.",
1089 >                         conf->name);
1090 >    return (0);
1091 >  }
1092 >
1093 >  if (conf->dns_failed)
1094 >  {
1095 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1096 >                         "Error connecting to %s: DNS lookup for connect{} failed.",
1097 >                         conf->name);
1098      return (0);
1099    }
1100  
1101    /* Make sure this server isn't already connected
1102 <   * Note: aconf should ALWAYS be a valid C: line
1102 >   * Note: conf should ALWAYS be a valid C: line
1103     */
1104 <  if ((client_p = find_server(conf->name)) != NULL)
1105 <  {
1106 <    sendto_realops_flags(UMODE_ALL, L_ADMIN,
1107 <                         "Server %s already present from %s",
1108 <                         conf->name, get_client_name(client_p, SHOW_IP));
1109 <    sendto_realops_flags(UMODE_ALL, L_OPER,
1110 <                         "Server %s already present from %s",
1111 <                         conf->name, get_client_name(client_p, MASK_IP));
1104 >  if ((client_p = hash_find_server(conf->name)) != NULL)
1105 >  {
1106 >    sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1107 >                         "Server %s already present from %s",
1108 >                         conf->name, get_client_name(client_p, SHOW_IP));
1109 >    sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1110 >                         "Server %s already present from %s",
1111 >                         conf->name, get_client_name(client_p, MASK_IP));
1112      if (by && IsClient(by) && !MyClient(by))
1113        sendto_one(by, ":%s NOTICE %s :Server %s already present from %s",
1114 <                 me.name, by->name, conf->name,
1115 <                 get_client_name(client_p, MASK_IP));
1116 <    return (0);
1114 >                 me.name, by->name, conf->name,
1115 >                 get_client_name(client_p, MASK_IP));
1116 >    return 0;
1117    }
1118 <    
1118 >
1119    /* Create a local client */
1120    client_p = make_client(NULL);
1121  
1122    /* Copy in the server, hostname, fd */
1123    strlcpy(client_p->name, conf->name, sizeof(client_p->name));
1124 <  strlcpy(client_p->host, aconf->host, sizeof(client_p->host));
1124 >  strlcpy(client_p->host, conf->host, sizeof(client_p->host));
1125  
1126    /* We already converted the ip once, so lets use it - stu */
1127 <  strlcpy(client_p->sockhost, buf, HOSTIPLEN);
1127 >  strlcpy(client_p->sockhost, buf, sizeof(client_p->sockhost));
1128  
1129 <  /* create a socket for the server connection */
1130 <  if (comm_open(&client_p->localClient->fd, aconf->ipnum.ss.ss_family,
1129 >  /* create a socket for the server connection */
1130 >  if (comm_open(&client_p->localClient->fd, conf->addr.ss.ss_family,
1131                  SOCK_STREAM, 0, NULL) < 0)
1132    {
1133      /* Eek, failure to create the socket */
1134 <    report_error(L_ALL,
1135 <                 "opening stream socket to %s: %s", conf->name, errno);
1134 >    report_error(L_ALL, "opening stream socket to %s: %s",
1135 >                 conf->name, errno);
1136      SetDead(client_p);
1137      exit_client(client_p, &me, "Connection failed");
1138 <    return (0);
1138 >    return 0;
1139    }
1140  
1141    /* servernames are always guaranteed under HOSTLEN chars */
# Line 1648 | Line 1144 | serv_connect(struct AccessItem *aconf, s
1144    /* Attach config entries to client here rather than in
1145     * serv_connect_callback(). This to avoid null pointer references.
1146     */
1147 <  if (!attach_connect_block(client_p, conf->name, aconf->host))
1147 >  if (!attach_connect_block(client_p, conf->name, conf->host))
1148    {
1149 <    sendto_realops_flags(UMODE_ALL, L_ALL,
1150 <                         "Host %s is not enabled for connecting:no C/N-line",
1151 <                         conf->name);
1152 <    if (by && IsClient(by) && !MyClient(by))  
1149 >    sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1150 >                         "Host %s is not enabled for connecting: no connect{} block",
1151 >                         conf->name);
1152 >    if (by && IsClient(by) && !MyClient(by))
1153        sendto_one(by, ":%s NOTICE %s :Connect to host %s failed.",
1154 <                 me.name, by->name, client_p->name);
1154 >                 me.name, by->name, client_p->name);
1155      SetDead(client_p);
1156      exit_client(client_p, client_p, "Connection failed");
1157 <    return (0);
1157 >    return 0;
1158    }
1159  
1160    /* at this point we have a connection in progress and C/N lines
# Line 1677 | Line 1173 | serv_connect(struct AccessItem *aconf, s
1173    SetConnecting(client_p);
1174    dlinkAdd(client_p, &client_p->node, &global_client_list);
1175    /* from def_fam */
1176 <  client_p->localClient->aftype = aconf->aftype;
1176 >  client_p->localClient->aftype = conf->aftype;
1177  
1178    /* Now, initiate the connection */
1179 <  /* XXX assume that a non 0 type means a specific bind address
1179 >  /* XXX assume that a non 0 type means a specific bind address
1180     * for this connect.
1181     */
1182 <  switch (aconf->aftype)
1182 >  switch (conf->aftype)
1183    {
1184      case AF_INET:
1185 <      v4 = (struct sockaddr_in*)&aconf->my_ipnum;
1185 >      v4 = (struct sockaddr_in*)&conf->bind;
1186        if (v4->sin_addr.s_addr != 0)
1187        {
1188          struct irc_ssaddr ipn;
1189          memset(&ipn, 0, sizeof(struct irc_ssaddr));
1190          ipn.ss.ss_family = AF_INET;
1191          ipn.ss_port = 0;
1192 <        memcpy(&ipn, &aconf->my_ipnum, sizeof(struct irc_ssaddr));
1193 <        comm_connect_tcp(&client_p->localClient->fd, aconf->host, aconf->port,
1194 <                         (struct sockaddr *)&ipn, ipn.ss_len,
1195 <                         serv_connect_callback, client_p, aconf->aftype,
1196 <                         CONNECTTIMEOUT);
1192 >        memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1193 >        comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1194 >                         (struct sockaddr *)&ipn, ipn.ss_len,
1195 >                         serv_connect_callback, client_p, conf->aftype,
1196 >                         CONNECTTIMEOUT);
1197        }
1198        else if (ServerInfo.specific_ipv4_vhost)
1199        {
# Line 1706 | Line 1202 | serv_connect(struct AccessItem *aconf, s
1202          ipn.ss.ss_family = AF_INET;
1203          ipn.ss_port = 0;
1204          memcpy(&ipn, &ServerInfo.ip, sizeof(struct irc_ssaddr));
1205 <        comm_connect_tcp(&client_p->localClient->fd, aconf->host, aconf->port,
1205 >        comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1206                           (struct sockaddr *)&ipn, ipn.ss_len,
1207 <                         serv_connect_callback, client_p, aconf->aftype,
1208 <                         CONNECTTIMEOUT);
1207 >                         serv_connect_callback, client_p, conf->aftype,
1208 >                         CONNECTTIMEOUT);
1209        }
1210        else
1211 <        comm_connect_tcp(&client_p->localClient->fd, aconf->host, aconf->port,
1212 <                         NULL, 0, serv_connect_callback, client_p, aconf->aftype,
1211 >        comm_connect_tcp(&client_p->localClient->fd, conf->host, conf->port,
1212 >                         NULL, 0, serv_connect_callback, client_p, conf->aftype,
1213                           CONNECTTIMEOUT);
1214        break;
1215   #ifdef IPV6
1216      case AF_INET6:
1217        {
1218 <        struct irc_ssaddr ipn;
1219 <        struct sockaddr_in6 *v6;
1220 <        struct sockaddr_in6 *v6conf;
1221 <
1222 <        memset(&ipn, 0, sizeof(struct irc_ssaddr));
1223 <        v6conf = (struct sockaddr_in6 *)&aconf->my_ipnum;
1224 <        v6 = (struct sockaddr_in6 *)&ipn;
1225 <
1226 <        if (memcmp(&v6conf->sin6_addr, &v6->sin6_addr,
1227 <                   sizeof(struct in6_addr)) != 0)
1228 <        {
1229 <          memcpy(&ipn, &aconf->my_ipnum, sizeof(struct irc_ssaddr));
1230 <          ipn.ss.ss_family = AF_INET6;
1231 <          ipn.ss_port = 0;
1232 <          comm_connect_tcp(&client_p->localClient->fd,
1233 <                           aconf->host, aconf->port,
1234 <                           (struct sockaddr *)&ipn, ipn.ss_len,
1235 <                           serv_connect_callback, client_p,
1236 <                           aconf->aftype, CONNECTTIMEOUT);
1237 <        }
1742 <        else if (ServerInfo.specific_ipv6_vhost)
1218 >        struct irc_ssaddr ipn;
1219 >        struct sockaddr_in6 *v6;
1220 >        struct sockaddr_in6 *v6conf;
1221 >
1222 >        memset(&ipn, 0, sizeof(struct irc_ssaddr));
1223 >        v6conf = (struct sockaddr_in6 *)&conf->bind;
1224 >        v6 = (struct sockaddr_in6 *)&ipn;
1225 >
1226 >        if (memcmp(&v6conf->sin6_addr, &v6->sin6_addr, sizeof(struct in6_addr)) != 0)
1227 >        {
1228 >          memcpy(&ipn, &conf->bind, sizeof(struct irc_ssaddr));
1229 >          ipn.ss.ss_family = AF_INET6;
1230 >          ipn.ss_port = 0;
1231 >          comm_connect_tcp(&client_p->localClient->fd,
1232 >                           conf->host, conf->port,
1233 >                           (struct sockaddr *)&ipn, ipn.ss_len,
1234 >                           serv_connect_callback, client_p,
1235 >                           conf->aftype, CONNECTTIMEOUT);
1236 >        }
1237 >        else if (ServerInfo.specific_ipv6_vhost)
1238          {
1239 <          memcpy(&ipn, &ServerInfo.ip6, sizeof(struct irc_ssaddr));
1240 <          ipn.ss.ss_family = AF_INET6;
1241 <          ipn.ss_port = 0;
1242 <          comm_connect_tcp(&client_p->localClient->fd,
1243 <                           aconf->host, aconf->port,
1244 <                           (struct sockaddr *)&ipn, ipn.ss_len,
1245 <                           serv_connect_callback, client_p,
1246 <                           aconf->aftype, CONNECTTIMEOUT);
1247 <        }
1248 <        else
1249 <          comm_connect_tcp(&client_p->localClient->fd,
1250 <                           aconf->host, aconf->port,
1251 <                           NULL, 0, serv_connect_callback, client_p,
1252 <                           aconf->aftype, CONNECTTIMEOUT);
1239 >          memcpy(&ipn, &ServerInfo.ip6, sizeof(struct irc_ssaddr));
1240 >          ipn.ss.ss_family = AF_INET6;
1241 >          ipn.ss_port = 0;
1242 >          comm_connect_tcp(&client_p->localClient->fd,
1243 >                           conf->host, conf->port,
1244 >                           (struct sockaddr *)&ipn, ipn.ss_len,
1245 >                           serv_connect_callback, client_p,
1246 >                           conf->aftype, CONNECTTIMEOUT);
1247 >        }
1248 >        else
1249 >          comm_connect_tcp(&client_p->localClient->fd,
1250 >                           conf->host, conf->port,
1251 >                           NULL, 0, serv_connect_callback, client_p,
1252 >                           conf->aftype, CONNECTTIMEOUT);
1253        }
1254   #endif
1255    }
1256 <  return (1);
1256 >  return 1;
1257 > }
1258 >
1259 > #ifdef HAVE_LIBCRYPTO
1260 > static void
1261 > finish_ssl_server_handshake(struct Client *client_p)
1262 > {
1263 >  struct MaskItem *conf = NULL;
1264 >
1265 >  conf = find_conf_name(&client_p->localClient->confs,
1266 >                        client_p->name, CONF_SERVER);
1267 >  if (conf == NULL)
1268 >  {
1269 >    sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1270 >                         "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1271 >    sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1272 >                         "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1273 >
1274 >    exit_client(client_p, &me, "Lost connect{} block");
1275 >    return;
1276 >  }
1277 >
1278 >  sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1279 >
1280 >  send_capabilities(client_p, 0);
1281 >
1282 >  sendto_one(client_p, "SERVER %s 1 :%s%s",
1283 >             me.name, ConfigServerHide.hidden ? "(H) " : "",
1284 >             me.info);
1285 >
1286 >  /* If we've been marked dead because a send failed, just exit
1287 >   * here now and save everyone the trouble of us ever existing.
1288 >   */
1289 >  if (IsDead(client_p))
1290 >  {
1291 >      sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1292 >                           "%s[%s] went dead during handshake",
1293 >                           client_p->name,
1294 >                           client_p->host);
1295 >      sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1296 >                           "%s went dead during handshake", client_p->name);
1297 >      return;
1298 >  }
1299 >
1300 >  /* don't move to serv_list yet -- we haven't sent a burst! */
1301 >  /* If we get here, we're ok, so lets start reading some data */
1302 >  comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ, read_packet, client_p, 0);
1303   }
1304  
1305 + static void
1306 + ssl_server_handshake(fde_t *fd, struct Client *client_p)
1307 + {
1308 +  X509 *cert = NULL;
1309 +  int ret = 0;
1310 +
1311 +  if ((ret = SSL_connect(client_p->localClient->fd.ssl)) <= 0)
1312 +  {
1313 +    switch (SSL_get_error(client_p->localClient->fd.ssl, ret))
1314 +    {
1315 +      case SSL_ERROR_WANT_WRITE:
1316 +        comm_setselect(&client_p->localClient->fd, COMM_SELECT_WRITE,
1317 +                       (PF *)ssl_server_handshake, client_p, 0);
1318 +        return;
1319 +      case SSL_ERROR_WANT_READ:
1320 +        comm_setselect(&client_p->localClient->fd, COMM_SELECT_READ,
1321 +                       (PF *)ssl_server_handshake, client_p, 0);
1322 +        return;
1323 +      default:
1324 +      {
1325 +        const char *sslerr = ERR_error_string(ERR_get_error(), NULL);
1326 +        sendto_realops_flags(UMODE_ALL, L_ALL, SEND_NOTICE,
1327 +                             "Error connecting to %s: %s", client_p->name,
1328 +                             sslerr ? sslerr : "unknown SSL error");
1329 +        exit_client(client_p, client_p, "Error during SSL handshake");
1330 +        return;
1331 +      }
1332 +    }
1333 +  }
1334 +
1335 +  if ((cert = SSL_get_peer_certificate(client_p->localClient->fd.ssl)))
1336 +  {
1337 +    int res = SSL_get_verify_result(client_p->localClient->fd.ssl);
1338 +    char buf[EVP_MAX_MD_SIZE * 2 + 1] = { '\0' };
1339 +    unsigned char md[EVP_MAX_MD_SIZE] = { '\0' };
1340 +
1341 +    if (res == X509_V_OK || res == X509_V_ERR_SELF_SIGNED_CERT_IN_CHAIN ||
1342 +        res == X509_V_ERR_UNABLE_TO_VERIFY_LEAF_SIGNATURE ||
1343 +        res == X509_V_ERR_DEPTH_ZERO_SELF_SIGNED_CERT)
1344 +    {
1345 +      unsigned int i = 0, n = 0;
1346 +
1347 +      if (X509_digest(cert, EVP_sha256(), md, &n))
1348 +      {
1349 +        for (; i < n; ++i)
1350 +          snprintf(buf + 2 * i, 3, "%02X", md[i]);
1351 +        client_p->certfp = xstrdup(buf);
1352 +      }
1353 +    }
1354 +    else
1355 +      ilog(LOG_TYPE_IRCD, "Server %s!%s@%s gave bad SSL client certificate: %d",
1356 +           client_p->name, client_p->username, client_p->host, res);
1357 +    X509_free(cert);
1358 +  }
1359 +
1360 +  finish_ssl_server_handshake(client_p);
1361 + }
1362 +
1363 + static void
1364 + ssl_connect_init(struct Client *client_p, struct MaskItem *conf, fde_t *fd)
1365 + {
1366 +  if ((client_p->localClient->fd.ssl = SSL_new(ServerInfo.client_ctx)) == NULL)
1367 +  {
1368 +    ilog(LOG_TYPE_IRCD, "SSL_new() ERROR! -- %s",
1369 +         ERR_error_string(ERR_get_error(), NULL));
1370 +    SetDead(client_p);
1371 +    exit_client(client_p, client_p, "SSL_new failed");
1372 +    return;
1373 +  }
1374 +
1375 +  SSL_set_fd(fd->ssl, fd->fd);
1376 +
1377 +  if (!EmptyString(conf->cipher_list))
1378 +    SSL_set_cipher_list(client_p->localClient->fd.ssl, conf->cipher_list);
1379 +
1380 +  ssl_server_handshake(NULL, client_p);
1381 + }
1382 + #endif
1383 +
1384   /* serv_connect_callback() - complete a server connection.
1385 < *
1385 > *
1386   * This routine is called after the server connection attempt has
1387   * completed. If unsucessful, an error is sent to ops and the client
1388   * is closed. If sucessful, it goes through the initialisation/check
# Line 1773 | Line 1393 | static void
1393   serv_connect_callback(fde_t *fd, int status, void *data)
1394   {
1395    struct Client *client_p = data;
1396 <  struct ConfItem *conf=NULL;
1777 <  struct AccessItem *aconf=NULL;
1396 >  struct MaskItem *conf = NULL;
1397  
1398    /* First, make sure its a real client! */
1399    assert(client_p != NULL);
# Line 1790 | Line 1409 | serv_connect_callback(fde_t *fd, int sta
1409       * Admins get to see any IP, mere opers don't *sigh*
1410       */
1411       if (ConfigServerHide.hide_server_ips)
1412 <       sendto_realops_flags(UMODE_ALL, L_ADMIN,
1412 >       sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1413                              "Error connecting to %s: %s",
1414                              client_p->name, comm_errstr(status));
1415       else
1416 <       sendto_realops_flags(UMODE_ALL, L_ADMIN,
1417 <                            "Error connecting to %s[%s]: %s", client_p->name,
1418 <                            client_p->host, comm_errstr(status));
1419 <
1420 <     sendto_realops_flags(UMODE_ALL, L_OPER,
1421 <                          "Error connecting to %s: %s",
1422 <                          client_p->name, comm_errstr(status));
1416 >       sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1417 >                            "Error connecting to %s[%s]: %s", client_p->name,
1418 >                            client_p->host, comm_errstr(status));
1419 >
1420 >     sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1421 >                          "Error connecting to %s: %s",
1422 >                          client_p->name, comm_errstr(status));
1423  
1424       /* If a fd goes bad, call dead_link() the socket is no
1425        * longer valid for reading or writing.
# Line 1812 | Line 1431 | serv_connect_callback(fde_t *fd, int sta
1431    /* COMM_OK, so continue the connection procedure */
1432    /* Get the C/N lines */
1433    conf = find_conf_name(&client_p->localClient->confs,
1434 <                        client_p->name, SERVER_TYPE);
1434 >                        client_p->name, CONF_SERVER);
1435    if (conf == NULL)
1436    {
1437 <    sendto_realops_flags(UMODE_ALL, L_ADMIN,
1438 <                         "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1439 <    sendto_realops_flags(UMODE_ALL, L_OPER,
1440 <                         "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1437 >    sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1438 >                         "Lost connect{} block for %s", get_client_name(client_p, HIDE_IP));
1439 >    sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1440 >                         "Lost connect{} block for %s", get_client_name(client_p, MASK_IP));
1441  
1442      exit_client(client_p, &me, "Lost connect{} block");
1443      return;
1444    }
1445  
1827  aconf = (struct AccessItem *)map_to_conf(conf);
1446    /* Next, send the initial handshake */
1447    SetHandshake(client_p);
1448  
1449   #ifdef HAVE_LIBCRYPTO
1450 <  /* Handle all CRYPTLINK links in cryptlink_init */
1833 <  if (IsConfCryptLink(aconf))
1450 >  if (IsConfSSL(conf))
1451    {
1452 <    cryptlink_init(client_p, conf, fd);
1452 >    ssl_connect_init(client_p, conf, fd);
1453      return;
1454    }
1455   #endif
1456  
1457 <  /* jdc -- Check and send spasswd, not passwd. */
1841 <  if (!EmptyString(aconf->spasswd) && (me.id[0] != '\0'))
1842 <      /* Send TS 6 form only if id */
1843 <    sendto_one(client_p, "PASS %s TS %d %s",
1844 <               aconf->spasswd, TS_CURRENT, me.id);
1845 <  else
1846 <    sendto_one(client_p, "PASS %s TS 5",
1847 <               aconf->spasswd);
1457 >  sendto_one(client_p, "PASS %s TS %d %s", conf->spasswd, TS_CURRENT, me.id);
1458  
1459 <  /* Pass my info to the new server
1850 <   *
1851 <   * If this is a HUB, pass on CAP_HUB
1852 <   * Pass on ZIP if supported
1853 <   * Pass on TB if supported.
1854 <   * - Dianora
1855 <   */
1856 <  send_capabilities(client_p, aconf, (ServerInfo.hub ? CAP_HUB : 0)
1857 <                    | (IsConfCompressed(aconf) ? CAP_ZIP : 0)
1858 <                    | (IsConfTopicBurst(aconf) ? CAP_TBURST|CAP_TB : 0), 0);
1459 >  send_capabilities(client_p, 0);
1460  
1461 <  sendto_one(client_p, "SERVER %s 1 :%s%s",
1462 <             my_name_for_link(conf),
1862 <             ConfigServerHide.hidden ? "(H) " : "",
1863 <             me.info);
1461 >  sendto_one(client_p, "SERVER %s 1 :%s%s", me.name,
1462 >             ConfigServerHide.hidden ? "(H) " : "", me.info);
1463  
1464    /* If we've been marked dead because a send failed, just exit
1465     * here now and save everyone the trouble of us ever existing.
1466     */
1467 <  if (IsDead(client_p))
1467 >  if (IsDead(client_p))
1468    {
1469 <      sendto_realops_flags(UMODE_ALL, L_ADMIN,
1470 <                           "%s[%s] went dead during handshake",
1469 >      sendto_realops_flags(UMODE_ALL, L_ADMIN, SEND_NOTICE,
1470 >                           "%s[%s] went dead during handshake",
1471                             client_p->name,
1472 <                           client_p->host);
1473 <      sendto_realops_flags(UMODE_ALL, L_OPER,
1474 <                           "%s went dead during handshake", client_p->name);
1472 >                           client_p->host);
1473 >      sendto_realops_flags(UMODE_ALL, L_OPER, SEND_NOTICE,
1474 >                           "%s went dead during handshake", client_p->name);
1475        return;
1476    }
1477  
# Line 1892 | Line 1491 | find_servconn_in_progress(const char *na
1491      cptr = ptr->data;
1492  
1493      if (cptr && cptr->name[0])
1494 <      if (match(cptr->name, name) || match(name, cptr->name))
1494 >      if (!match(name, cptr->name))
1495          return cptr;
1496    }
1898  
1899  return NULL;
1900 }
1901
1902 #ifdef HAVE_LIBCRYPTO
1903 /*
1904 * sends a CRYPTLINK SERV command.
1905 */
1906 void
1907 cryptlink_init(struct Client *client_p, struct ConfItem *conf, fde_t *fd)
1908 {
1909  struct AccessItem *aconf;
1910  char *encrypted;
1911  unsigned char *key_to_send;
1912  char randkey[CIPHERKEYLEN];
1913  int enc_len;
1914
1915  /* get key */
1916  if ((!ServerInfo.rsa_private_key) ||
1917      (!RSA_check_key(ServerInfo.rsa_private_key)) )
1918  {
1919    cryptlink_error(client_p, "SERV", "Invalid RSA private key",
1920                                      "Invalid RSA private key");
1921    return;
1922  }
1923
1924  aconf = (struct AccessItem *)map_to_conf(conf);
1925
1926  if (aconf->rsa_public_key == NULL)
1927  {
1928    cryptlink_error(client_p, "SERV", "Invalid RSA public key",
1929                                      "Invalid RSA public key");
1930    return;
1931  }
1932
1933  if (get_randomness((unsigned char *)randkey, CIPHERKEYLEN) != 1)
1934  {
1935    cryptlink_error(client_p, "SERV", "Couldn't generate keyphrase",
1936                                      "Couldn't generate keyphrase");
1937    return;
1938  }
1939
1940  encrypted = MyMalloc(RSA_size(ServerInfo.rsa_private_key));
1941  enc_len   = RSA_public_encrypt(CIPHERKEYLEN,
1942                                 (unsigned char *)randkey,
1943                                 (unsigned char *)encrypted,
1944                                 aconf->rsa_public_key,
1945                                 RSA_PKCS1_PADDING);
1946
1947  memcpy(client_p->localClient->in_key, randkey, CIPHERKEYLEN);
1948
1949  if (enc_len <= 0)
1950  {
1951    report_crypto_errors();
1952    MyFree(encrypted);
1953    cryptlink_error(client_p, "SERV", "Couldn't encrypt data",
1954                                      "Couldn't encrypt data");
1955    return;
1956  }
1957
1958  if (!(base64_block(&key_to_send, encrypted, enc_len)))
1959  {
1960    MyFree(encrypted);
1961    cryptlink_error(client_p, "SERV", "Couldn't base64 encode key",
1962                                      "Couldn't base64 encode key");
1963    return;
1964  }
1965
1966  send_capabilities(client_p, aconf, (ServerInfo.hub ? CAP_HUB : 0)
1967                    | (IsConfCompressed(aconf) ? CAP_ZIP : 0)
1968                    | (IsConfTopicBurst(aconf) ? CAP_TBURST|CAP_TB : 0), CAP_ENC_MASK);
1969
1970  if (me.id[0])
1971    sendto_one(client_p, "PASS . TS %d %s", TS_CURRENT, me.id);
1972
1973  sendto_one(client_p, "CRYPTLINK SERV %s %s :%s%s",
1974             my_name_for_link(conf), key_to_send,
1975             ConfigServerHide.hidden ? "(H) " : "", me.info);
1976
1977  SetHandshake(client_p);
1978  SetWaitAuth(client_p);
1979
1980  MyFree(encrypted);
1981  MyFree(key_to_send);
1982
1983  if (IsDead(client_p))
1984    cryptlink_error(client_p, "SERV", "Went dead during handshake",
1985                                      "Went dead during handshake");
1986  else if (fd != NULL)
1987    /* If we get here, we're ok, so lets start reading some data */
1988    comm_setselect(fd, COMM_SELECT_READ, read_packet, client_p, 0);
1989 }
1990
1991 void
1992 cryptlink_error(struct Client *client_p, const char *type,
1993                const char *reason, const char *client_reason)
1994 {
1995  sendto_realops_flags(UMODE_ALL, L_ADMIN, "%s: CRYPTLINK %s error - %s",
1996                       get_client_name(client_p, SHOW_IP), type, reason);
1997  sendto_realops_flags(UMODE_ALL, L_OPER,  "%s: CRYPTLINK %s error - %s",
1998                       get_client_name(client_p, MASK_IP), type, reason);
1999  ilog(L_ERROR, "%s: CRYPTLINK %s error - %s",
2000       get_client_name(client_p, SHOW_IP), type, reason);
2001
2002  /* If client_reason isn't NULL, then exit the client with the message
2003   * defined in the call.
2004   */
2005  if ((client_reason != NULL) && (!IsDead(client_p)))
2006    exit_client(client_p, &me, client_reason);
2007 }
2008
2009 static char base64_chars[] =
2010        "ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/=";
2011
2012 static char base64_values[] =
2013 {
2014 /* 00-15   */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2015 /* 16-31   */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2016 /* 32-47   */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, 62, -1, -1, -1, 63,
2017 /* 48-63   */ 52, 53, 54, 55, 56, 57, 58, 59, 60, 61, -1, -1, -1,  0, -1, -1,
2018 /* 64-79   */ -1,  0,  1,  2,  3,  4,  5,  6,  7,  8,  9, 10, 11, 12, 13, 14,
2019 /* 80-95   */ 15, 16, 17, 18, 19, 20, 21, 22, 23, 24, 25, -1, -1, -1, -1, -1,
2020 /* 96-111  */ -1, 26, 27, 28, 29, 30, 31, 32, 33, 34, 35, 36, 37, 38, 39, 40,
2021 /* 112-127 */ 41, 42, 43, 44, 45, 46, 47, 48, 49, 50, 51, -1, -1, -1, -1, -1,
2022 /* 128-143 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2023 /* 144-159 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2024 /* 160-175 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2025 /* 186-191 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2026 /* 192-207 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2027 /* 208-223 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2028 /* 224-239 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
2029 /* 240-255 */ -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1
2030 };
2031
2032 /*
2033 * base64_block will allocate and return a new block of memory
2034 * using MyMalloc().  It should be freed after use.
2035 */
2036 int
2037 base64_block(unsigned char **output, char *data, int len)
2038 {
2039  unsigned char *out;
2040  unsigned char *in = (unsigned char*)data;
2041  unsigned long int q_in;
2042  int i;
2043  int count = 0;
2044
2045  out = MyMalloc(((((len + 2) - ((len + 2) % 3)) / 3) * 4) + 1);
2046
2047  /* process 24 bits at a time */
2048  for( i = 0; i < len; i += 3)
2049  {
2050    q_in = 0;
2051
2052    if ( i + 2 < len )
2053    {
2054      q_in  = (in[i+2] & 0xc0) << 2;
2055      q_in |=  in[i+2];
2056    }
2057
2058    if ( i + 1 < len )
2059    {
2060      q_in |= (in[i+1] & 0x0f) << 10;
2061      q_in |= (in[i+1] & 0xf0) << 12;
2062    }
2063
2064    q_in |= (in[i]   & 0x03) << 20;
2065    q_in |=  in[i]           << 22;
2066
2067    q_in &= 0x3f3f3f3f;
2068
2069    out[count++] = base64_chars[((q_in >> 24)       )];
2070    out[count++] = base64_chars[((q_in >> 16) & 0xff)];
2071    out[count++] = base64_chars[((q_in >>  8) & 0xff)];
2072    out[count++] = base64_chars[((q_in      ) & 0xff)];
2073  }
2074  if ( (i - len) > 0 )
2075  {
2076    out[count-1] = '=';
2077    if ( (i - len) > 1 )
2078      out[count-2] = '=';
2079  }
2080
2081  out[count] = '\0';
2082  *output = out;
2083  return (count);
2084 }
1497  
1498 < /*
2087 < * unbase64_block will allocate and return a new block of memory
2088 < * using MyMalloc().  It should be freed after use.
2089 < */
2090 < int
2091 < unbase64_block(unsigned char **output, char *data, int len)
2092 < {
2093 <  unsigned char *out;
2094 <  unsigned char *in = (unsigned char*)data;
2095 <  unsigned long int q_in;
2096 <  int i;
2097 <  int count = 0;
2098 <
2099 <  if ((len % 4) != 0)
2100 <    return (0);
2101 <
2102 <  out = MyMalloc(((len / 4) * 3) + 1);
2103 <
2104 <  /* process 32 bits at a time */
2105 <  for( i = 0; (i + 3) < len; i+=4)
2106 <  {
2107 <    /* compress input (chars a, b, c and d) as follows:
2108 <     * (after converting ascii -> base64 value)
2109 <     *
2110 <     * |00000000aaaaaabbbbbbccccccdddddd|
2111 <     * |  765432  107654  321076  543210|
2112 <     */
2113 <
2114 <    q_in = 0;
2115 <
2116 <    if (base64_values[in[i+3]] > -1)
2117 <      q_in |= base64_values[in[i+3]]      ;
2118 <    if (base64_values[in[i+2]] > -1)
2119 <      q_in |= base64_values[in[i+2]] <<  6;
2120 <    if (base64_values[in[i+1]] > -1)
2121 <      q_in |= base64_values[in[i+1]] << 12;
2122 <    if (base64_values[in[i  ]] > -1)
2123 <      q_in |= base64_values[in[i  ]] << 18;
2124 <
2125 <    out[count++] = (q_in >> 16) & 0xff;
2126 <    out[count++] = (q_in >>  8) & 0xff;
2127 <    out[count++] = (q_in      ) & 0xff;
2128 <  }
2129 <
2130 <  if (in[i-1] == '=') count--;
2131 <  if (in[i-2] == '=') count--;
2132 <
2133 <  out[count] = '\0';
2134 <  *output = out;
2135 <  return (count);
1498 >  return NULL;
1499   }
2137
2138 #endif /* HAVE_LIBCRYPTO */
2139

Diff Legend

Removed lines
+ Added lines
< Changed lines (old)
> Changed lines (new)