SMB 91.4 KB
Newer Older
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22
/* Copyright 1998 Acorn Computers Ltd
 *
 * Licensed under the Apache License, Version 2.0 (the "License");
 * you may not use this file except in compliance with the License.
 * You may obtain a copy of the License at
 *
 *     http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS,
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 * See the License for the specific language governing permissions and
 * limitations under the License.
 */
/*
*
*  SMB.C  -- SMB Server routines
*
*  14-02-94 INH  Original
*                No WriteRaw
*  17-08-94      No 'drv' numbers passed
*  12-09-94      New NetBIOS interface
Ben Avison's avatar
Ben Avison committed
23
*  22-09-95      Tracks Uids & session keys. Uses "DOS LM1.2X002"
24 25
*                  protocol to keep Lan Manager happy.
*  26-03-97      SMB_GetAttribs call replaced for NT 4.0 bug workround
Ben Avison's avatar
Ben Avison committed
26
*  21-04-97      SMB_SetAttribs sets time/date using Open/Close on Windows95
Stewart Brodie's avatar
Stewart Brodie committed
27 28 29 30 31 32 33 34 35
*
*  04-12-98      sbrodie: started adding long filename support - controlled
*                  by LONGNAMES macro.
*  08-12-98      sbrodie: Added SMB_Transact2 with full support for setup
*                  words and the like (present only for LONGNAMES build)
*                  Several new functions added to support long filename
*                  compatible versions of some calls,  These functions have
*                  the same name as the function they upgrade with an X2 suffix
*                  added.
36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78
*/

/* A word about 'drive letters':

   Each connection from us to a shared directory or printer on a server
   is given a drive letter (starting at 'A' and working up). This is
   essentially a handle to a (server_name, share_name) pair, but it
   is made a character to allow it to be passed as the first character
   in filename strings to the SMB_xxx functions.

   LanManFS itself will allow disk-type network connections to be
   given 'mount names' so RISCOS file names take the form
     LanMan::MountName.$.<filespec>

   We never see these mount names; they are handled in c.Omni. When
   a RISCOS filename is passed to Xlt_ConvertPath, it uses
   Omni_GetDrvLetter() to convert the mount name to an SMB drive letter.

   We could allow SMB to deal directly in mount names, but (i) we'd
   have to create nonconflicting names for all the anonymous mounts
   like printers and RPC connections, (ii) the Omni module has to
   deal with mount names anyway, & has a perfectly good set of list-
   management routines there already; we'd only have to duplicate
   them & write an interface (iii) legal characters & case
   sensitivity for mount names may be different to DOS filenames,
   making a composite name a pain in the bum to validate.

   SMB treats drives, printers and the IPC$ share used for remote
   procedure call as alike; a different set of operations
   is allowed on each one, but they are all connected with
   SMB_CreateShare() & SMB_DeleteShare(), and they all have a
   'drive letter'. Hence you will find references to
   drive letters in the printer and RPC code - panic not, they
   are just connection identifiers.
*/


/* Standard includes */

#include <stdio.h>
#include <stdlib.h>
#include <string.h>
#include <ctype.h>
Stewart Brodie's avatar
Stewart Brodie committed
79
#include <time.h>
80
#include "kernel.h"
Ben Avison's avatar
Ben Avison committed
81
#include "swis.h"
82 83 84 85

/* Our includes */

#include "stdtypes.h"
Robert Sprowson's avatar
Robert Sprowson committed
86
#include "LanMan.h"
87 88 89 90
#include "BufLib.h"
#include "NetBIOS.h"
#include "SMB.h"
#include "Transact.h"
Stewart Brodie's avatar
Stewart Brodie committed
91 92 93
#ifdef LONGNAMES
#include "NameCache.h" /* for the directory entry cache */
#endif
94 95 96
#include "LMVars.h"
#include "Attr.h"   /* For InvalidateDrive */
#include "Xlate.h"  /* For string functions */
97
#include "Auth.h"
98
#include "SMBFind.h"
99 100 101 102 103 104 105 106 107 108

/* Definitions ===================================================== */

/* Our definitions */

#define MAX_SERVERS  (MAX_DRIVES + 4)
#define MAX_SHARES   (MAX_DRIVES + 4)

/* Tuning parameters */

ROOL's avatar
ROOL committed
109 110 111 112 113
#define MAX_RX_BLOCK_SIZE (3*1452)  /* Windows clients' default, see [MS-CIFS].pdf note 91 (p709) */
#define MAX_CORE_TX_BLOCK_SIZE 1024 /* Core dialect doesn't send MaxBufferSize value */
#define RDRAW_BLOCK_SIZE  32768
#define WRRAW_BLOCK_SIZE  16384
#define PRN_BLOCK_SIZE    1024
114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141

/* This structure relies on Norcroft C packing the bytes & words
   properly!
 */
typedef struct
{
  BYTE id[4];
  BYTE command;
  BYTE errclass;
  BYTE reh;
  BYTE errlo;
  BYTE errhi;
  BYTE flg;
  WORD flg2;
  WORD rsvd[6];

  WORD tid;
  WORD pid;
  WORD uid;
  WORD mid;
  BYTE wct;  /* Word count */

} SMBHDR;

/* Size of above structure - sizeof() may round to word boundary! */
#define SMBHDR_SIZE 33

/* Maximum number of word params - 14 is used by Transact */
Stewart Brodie's avatar
Stewart Brodie committed
142
#ifdef LONGNAMES
143
/* Transact2 (LONGNAMES build only) requires extra setup words.
Stewart Brodie's avatar
Stewart Brodie committed
144 145 146 147
 * The NT LM 0.12 negprot response requires 17.
 */
#define MAX_WCT (17+(MAX_SETUPWORDS)+1)
#else
148
#define MAX_WCT 17
Stewart Brodie's avatar
Stewart Brodie committed
149
#endif
150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206

/* Max number of significant characters in a shared drive
   or printer name */
#define SHARENAME_LEN 16

#define DATA_BLOCK      1
#define DATA_DIALECT    2
#define DATA_PATHNAME   3
#define DATA_ASCII      4
#define DATA_VARBLK     5

#define ECLASS_DOS      1
#define ECLASS_SRV      2
#define ECLASS_HARD     3


#define SMBmkdir      0x00   /* create directory */
#define SMBrmdir      0x01   /* delete directory */
#define SMBopen       0x02   /* open file */
#define SMBcreate     0x03   /* create file */
#define SMBclose      0x04   /* close file */
#define SMBflush      0x05   /* flush file */
#define SMBunlink     0x06   /* delete file */
#define SMBmv         0x07   /* rename file */
#define SMBgetatr     0x08   /* get file attributes */
#define SMBsetatr     0x09   /* set file attributes */
#define SMBread       0x0A   /* read from file */
#define SMBwrite      0x0B   /* write to file */
#define SMBlock       0x0C   /* lock byte range */
#define SMBunlock     0x0D   /* unlock byte range */
#define SMBctemp      0x0E   /* create temporary file */
#define SMBmknew      0x0F   /* make new file */
#define SMBchkpth     0x10   /* check directory path */
#define SMBexit       0x11   /* process exit */
#define SMBlseek      0x12   /* seek */
#define SMBreadBraw   0x1A   /* Read block raw */
#define SMBwriteBraw  0x1D   /* Write block raw */
#define SMBtransact   0x25   /* RPC transaction */
#define SMBtcon       0x70   /* tree connect */
#define SMBtdis       0x71   /* tree disconnect */
#define SMBnegprot    0x72   /* negotiate protocol */
#define SMBsesssetup  0x73   /* Session setup and X */
#define SMBdskattr    0x80   /* get disk attributes */
#define SMBsearch     0x81   /* search directory */
#define SMBsplopen    0xC0   /* open print spool file */
#define SMBsplwr      0xC1   /* write to print spool file */
#define SMBsplclose   0xC2   /* close print spool file */
#define SMBsplretq    0xC3   /* return print queue */
#define SMBsends      0xD0   /* send single block message */
#define SMBsendb      0xD1   /* send broadcast message */
#define SMBfwdname    0xD2   /* forward user name */
#define SMBcancelf    0xD3   /* cancel forward */
#define SMBgetmac     0xD4   /* get machine name */
#define SMBsendstrt   0xD5   /* send start of multi-block message */
#define SMBsendend    0xD6   /* send end of multi-block message */
#define SMBsendtxt    0xD7   /* send text of multi-block message */

Stewart Brodie's avatar
Stewart Brodie committed
207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223
#ifdef LONGNAMES
/* The following are only available with LANMAN 2.0 Extended File Sharing
 * Protocol as defined in "SMB F. S. P. Extensions Version 3.0", document
 * version 1.11, June 19, 1990.
 */
#define SMBtrans2     0x32   /* transaction2 */
#define SMBtranss2    0x33   /* transaction2 (secondary request/response) */
#define SMBfindclose2 0x34   /* terminates a TRANSACT2_FIND_FIRST/NEXT */
#define SMBecho       0x2B

/* And now the sub-commands for SMBtrans2 */
#define TRANSACT2_FINDFIRST   0x01
#define TRANSACT2_FINDNEXT    0x02
#define TRANSACT2_QUERYFSINFORMATION 0x03
#define TRANSACT2_QUERYPATHINFORMATION 0x05
#endif

224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239
#define SUCCESS   0
#define ERRDOS 0x01
#define ERRSRV 0x02
#define ERRHRD 0x03
#define ERRCMD 0xFF


#define SEARCH_TOT_SIZE 43
#define SEARCH_COUNT 10

#define PROT_USERLOGON   1
#define PROT_ENCRYPT     2
#define PROT_READRAW     4
#define PROT_WRITERAW    8
#define PROT_RWMULTI     16
#define PROT_SETDATETIME 32
Stewart Brodie's avatar
Stewart Brodie committed
240
#define PROT_HAVE_GUID   64
241 242 243

#define SMB_CASELESS   8

Stewart Brodie's avatar
Stewart Brodie committed
244 245 246 247 248 249 250 251 252 253 254 255
#ifdef LONGNAMES
#define SMB_KNOWS_LONG_NAMES	(1)
#define SMB_IS_LONG_NAME	(0x40)
#define SMB_UNICODE		(0x8000)

#define T2FLAGS_LONGNAMES	(1)
#define T2FLAGS_SWAPDATETIME	(2)
#define T2FLAGS_TESTEDSWAP	(4)

#define CAP_EXTENDED_SECURITY	(0x80000000)
#endif

256 257 258 259 260 261 262 263 264 265 266 267
/* Private structures */

#define FREE         0   /* 'flags' values: */
#define ALLOCATED    1   /* True whenever this slot is allocated */
#define CONNECTED    2   /* True if share is connected, to the best of
                             our knowledge */

/* Password fields are strewn around here as mild hacker discouragement */

struct ActiveServer
{
  int      flags;
Stewart Brodie's avatar
Stewart Brodie committed
268
  time_t   last_xact;
269 270

  hSESSION hSession;    /* Only valid if status is IN_USE */
271
  char     password[PASSWORD_LIMIT];
272 273 274 275 276

  int      Uid;        /* User identifier */
  int      Sesskey;    /* Session key */
  int      ProtFlags;  /* USERLOGON/ENCRYPT etc */
  int      SMB_flg;    /* Flags to pass in SMB_flg field */
Stewart Brodie's avatar
Stewart Brodie committed
277 278
#ifdef LONGNAMES
  int      SMB_flg2;   /* Flags to pass in SMB_flg2 field */
279
  int      t2flags;
Stewart Brodie's avatar
Stewart Brodie committed
280 281 282 283 284
#endif
  int      prot;       /* which protocol was nogitated */
  char     guid[16];   /* GUID returned from NT negprot commands */
  int      bloblen;
  BYTE     *blob;
285
  char     servname[NAME_LIMIT]; /* upper case */
286
  char     username[USERNAME_LIMIT]; /* case preserved */
ROOL's avatar
ROOL committed
287
  unsigned int maxTxBufferSize; /* maximum SMB message size the server can receive */
288 289 290 291 292 293 294 295
};

typedef struct ActiveServer *hSERVER;

struct ActiveShare
{
  int     flags;

296
  char    password[PASSWORD_LIMIT];
297 298 299 300
  hSERVER hServer;  /* Only valid if status is IN_USE */
  int     sharetype;

  int     Tid;          /* Tree ID */
Stewart Brodie's avatar
Stewart Brodie committed
301
  int     Uid;          /* User ID */
302 303 304 305 306 307 308 309 310 311
  int     Datasize;
  int     FH_base;    /* Base number for file handles */
  char    drvletter;  /* Letter for identifying 'drive' */
  char    sharename[SHARENAME_LEN];  /* upper case */
};


#define GetFid(FH) ((FH) & 0xFFFF)
#define MakeFH(pS,FID) ((pS)->FH_base | (FID & 0xFFFF) )

Stewart Brodie's avatar
Stewart Brodie committed
312 313 314
#ifdef LONGNAMES
static err_t SMB_Transact2 ( hSHARE hS, struct TransactParms *pT );
#endif
315 316 317 318 319 320 321 322 323 324 325 326 327 328

/* SMB globals ======================================================== */

static SMBHDR SMB_TxHdr;
static WORD   SMB_TxWords [MAX_WCT+1];

static SMBHDR SMB_RxHdr;
static WORD   SMB_RxWords [MAX_WCT];
static WORD   SMB_RxByteCount;
static int    SMB_RxWordCount;

static struct ActiveServer SMB_Servers[MAX_SERVERS];
static struct ActiveShare  SMB_Shares[MAX_SHARES];

Ben Avison's avatar
Ben Avison committed
329
BYTE          SMB_WorkBuf[SMBWORKBUF_SIZE];
330 331 332 333 334 335 336 337

/* SMB routines ======================================================== */

static int DOS_Errs[] =
{
  18, ENOMOREFILES,
  2,  EFILENOTFOUND,
  12, ENOTPRESENT,  /* Returned by OS2-Connect from SetAttrib */
338
  50, ENOTPRESENT,  /* Returned by W4WG from SetAttrib call */
339 340 341 342 343 344 345 346
  110, EFILENOTFOUND, /* Returned by OS2 servers for hidden files */
  3,  EPATHNOTFOUND,
  1,  EBADPARAM,
  5,  ENOACCESS,
  16, ESHARING,     /* Attempt to remove current dir on server */
  80, EFILEEXISTS,
  32, ESHARING,     /* Normal sharing violation */
  67, ENOSUCHSHARE, /* Returned by NT3.5 for bad share names */
347
  112, EDISCFULL,   /* Returned by NT3.5 when disk full */
348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417
  65, ENOACCESS,    /* Returned by W4WG on set-attribs on CDROM */
  145, EDIRNOTEMPTY, /* Attempt to remove non-empty directory */
  -1, EDOSERROR
};

/* --------------------------- */

static int SMB_Errs[] =
{
  2,  EBADPASSWD,
  4,  ENOACCESS,
  6,  ENOSUCHSHARE,
  5,  ENOACCESS,     /* Returned by W4WG when password changed */
  2239, EACCDISABLED,
  -1, ESERVERROR
};

/* --------------------------- */

static err_t Err_Translate ( int class, int code )
{
  int *p1;

  debug2(" SMB-Err class %d number %d\n", class, code );

  if ( class == 0 )
    return OK;
  else if ( class == ECLASS_DOS )
    p1 = DOS_Errs;
  else if ( class == ECLASS_SRV )
    p1 = SMB_Errs;
  else if ( class == ECLASS_HARD )
    return EHARDERROR;
  else
    return EPROTOCOLERR;

  while ( *p1 >= 0 && *p1 != code )
    p1 += 2;

  debug1(" Unknown err code %d\n", code );
  return p1[1];
}


/* --------------------- */

static BUFCHAIN MkDataBlock ( BUFCHAIN pB, int type,
                                    BYTE *ptr, int len, bool indirect )
{
  BYTE   hdrblk[4];

  if ( len > 0 )
  {
    if ( indirect )
      pB = AddChainIndirect ( pB, ptr, len );
    else
      pB = AddChain ( pB, ptr, len );

    if ( pB == NULL ) return NULL;
  }

  hdrblk[0] = type;
  hdrblk[1] = len & 0xFF;
  hdrblk[2] = len >> 8;

  return AddChain ( pB, hdrblk, 3 );
}

/* --------------------- */

Stewart Brodie's avatar
Stewart Brodie committed
418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448
/* This routine takes an ASCII string and encodes it into Unicode by
 * inserting extra zero bytes between each character and at the end
 * It adds the resulting string to the given BUFCHAIN.  It optimises
 * for strings up to AUSTC_SKIP chars long.
 */
#if 0
static BUFCHAIN AddUnicodeStringToChain ( BUFCHAIN pB, char *str )
{
#define AUSTC_SKIP 18
        int len = strlen(str)+1, skiplen, cp;
        char ucbuf[AUSTC_SKIP*2];

	skiplen = len % AUSTC_SKIP;
	len -= skiplen;

        do {
                for (cp = skiplen - 1; cp>=0; --cp) {
                        ucbuf[cp*2] = str[len + cp];
                        ucbuf[cp*2+1] = '\0';
                }
                pB = AddChain(pB, ucbuf, skiplen * 2);
                skiplen = AUSTC_SKIP;
                len -= skiplen;
        } while (pB && len >= 0);

        return pB;
}
#endif

/* --------------------- */

449
static BUFCHAIN MkDataString ( BUFCHAIN pB, int type, const char *ptr )
450 451 452
{
  BYTE   hdrblk[4];

453
  pB = AddChain ( pB, (void *)ptr, strlen(ptr)+1 );
454 455 456 457 458 459 460 461 462 463 464

  if ( pB == NULL ) return NULL;

  hdrblk[0] = type;

  return AddChain ( pB, hdrblk, 1 );
}


/* --------------------------- */

465
#define DumpBuffer(ptr, len) ddumpbuf("smb_1", ptr, len, 0)
Stewart Brodie's avatar
Stewart Brodie committed
466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533

#ifdef DEBUG
static BUFCHAIN DumpChain(BUFCHAIN pB)
{
        static char membuf[32768];
        int len = ChainLen(pB);

        GetData ( pB, membuf, len);
        FreeChain(pB);
        pB = AddChain ( NULL, membuf, len);
        if (pB == NULL)
                return NULL;
        DumpBuffer(membuf, len);
        return pB;
}
#else
#define DumpChain(pB) (pB)
#endif

#ifdef DEBUG
typedef struct {
        const char *name;
        int size;
} DumpVarStr;
#define DVS_MK(name,type) {name, sizeof(type)}
#define DVS_END {0,0}

DumpVarStr dvs_NTnegprot[] = {
	DVS_MK("dialect", WORD),
	DVS_MK("securitymode", BYTE),
	DVS_MK("maxmpx", WORD),
	DVS_MK("maxvcs", WORD),
	DVS_MK("maxbuffersize", DWORD),
	DVS_MK("maxrawsize", DWORD),
	DVS_MK("sessionkey", DWORD),
	DVS_MK("capabilities", DWORD),
	DVS_MK("systimelo", DWORD),
	DVS_MK("systimehi", DWORD),
	DVS_MK("servertimezone", WORD),
	DVS_MK("securitybloblen", BYTE),
	DVS_END
};

DumpVarStr dvs_negprot[] = {
	DVS_MK("dialect", WORD),
	DVS_MK("securitymode", WORD),
	DVS_MK("maxbuffersize", DWORD),
	DVS_MK("maxmpx", WORD),
	DVS_MK("maxvcs", WORD),
	DVS_MK("rawmode", WORD),
	DVS_MK("sessionkey", DWORD),
	DVS_MK("systime", WORD),
	DVS_MK("sysdate", WORD),
	DVS_MK("challengelen", WORD),
	DVS_MK("reserved (MBZ)", WORD),
	DVS_END
};

static void *DumpVar(void *ptr, const char *name, unsigned long sz)
{
        static const char *sizestr[] = { "<NULL>", "UCHAR", "USHORT", "????", "ULONG" };
	BYTE *bptr = ptr;
	unsigned long value = 0;
	unsigned long s;

	for (s=0; s<sz; ++s) {
	        value |= ((unsigned long)(*bptr++) << (s<<3UL));
	}
Stewart Brodie's avatar
Stewart Brodie committed
534
	dprintf(("%6s %s: %#lx (%ld)\n", sizestr[sz], name, value, value));
Stewart Brodie's avatar
Stewart Brodie committed
535 536 537 538 539 540 541 542 543 544 545 546 547 548 549 550
	return bptr;

}

static void DumpStruct(void *ptr, const DumpVarStr *dvs)
{
        while (dvs->size) {
                ptr = DumpVar(ptr, dvs->name, dvs->size);
                ++dvs;
        }
}
#else
#define DumpVar(ptr, name, sz) ((void *)(((char *)ptr)+sz))
#define DumpStruct(ptr, str) ((void)0)
#endif

551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566
/* Does one SMB command (send & reply).

   hS is the connection handle to do it on (MUST BE VALIDATED!)
   cmd is the command byte value
   wct_in is the number of Tx Words to be sent
   pB_in is any Tx Bytes to be sent afterwards, or NULL
   ppB_out is the address of a variable in which to store a pointer
        to any received bytes. If this is NULL, any received bytes
        will be discarded. If it isn't, either a pointer will be
        stored here (which MUST be freed after use), or NULL will
        be stored if there is any error.

   It will leave results in SMB_RxWords, SMB_RxWordCount and
    SMB_RxByteCount.
*/

Stewart Brodie's avatar
Stewart Brodie committed
567 568 569 570 571 572 573
/* sbrodie (15 Jan 1999)
 *
 * This function has been split into two parts so that SMB_Transact2 can share the
 * packet response code (now in Do_SMBResponse) with that used by Do_SMB.  SMB_Transact2
 * can have multiple response packets if the data is very large.
 */
static err_t Do_SMBResponse(hSHARE hS, int cmd, BUFCHAIN *ppB_out )
574
{
Stewart Brodie's avatar
Stewart Brodie committed
575
  int wct_rx;
576 577
  err_t res;
  BUFCHAIN pB_rx;
Stewart Brodie's avatar
Stewart Brodie committed
578

Stewart Brodie's avatar
Stewart Brodie committed
579 580 581 582 583 584
  if (cmd == SMBchkpth) {
    /* This was just the keep-alive message */
    debug0("Not waiting for response to SMBchkpth request\n");
    return OK;
  }

Stewart Brodie's avatar
Stewart Brodie committed
585
  /* Get reply */
Stewart Brodie's avatar
Stewart Brodie committed
586
  res = NB_GetData ( hS->hServer->hSession, &pB_rx, REPLY_TIMEOUT );
Stewart Brodie's avatar
Stewart Brodie committed
587 588 589 590
  if ( res != OK )
    return res;

  /* Extract received data */
591
  dprintf(("smb_2", "Do_SMB (cmd=0x%x) - NB_GetData => %d bytes\n", cmd, ChainLen(pB_rx)));
Stewart Brodie's avatar
Stewart Brodie committed
592 593 594 595 596 597 598 599 600 601 602 603

  SMB_RxHdr.wct = 0;
  SMB_RxByteCount = 0;
  SMB_RxWordCount = 0;

  pB_rx = GetData ( pB_rx, &SMB_RxHdr, SMBHDR_SIZE );
  wct_rx = SMB_RxHdr.wct;

/* sbrodie: moved this from just above "OK - all was well" comment */
  /* Process errors back from server */
  if ( SMB_RxHdr.errclass != 0 )
  {
604
    dprintf(("", "Do_SMB: errclass was %d\n", SMB_RxHdr.errclass));
Stewart Brodie's avatar
Stewart Brodie committed
605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630
    FreeChain(pB_rx);
    return Err_Translate ( SMB_RxHdr.errclass,
        SMB_RxHdr.errlo + (SMB_RxHdr.errhi << 8) );
  }

  if ( wct_rx > MAX_WCT )  /* Dispose of extra word results */
  {
    pB_rx = GetData ( pB_rx, SMB_RxWords, MAX_WCT*2 );
    pB_rx = GetData ( pB_rx, NULL, (wct_rx-MAX_WCT)*2 );
  }
  else if ( wct_rx > 0 )
  {
    pB_rx = GetData ( pB_rx, SMB_RxWords, wct_rx*2 );
  }

  pB_rx = GetData(pB_rx, &SMB_RxByteCount, 2); /* Get byte count */

  if ( pB_rx == NULL ) /* It's all gone horribly wrong! */
    return EDATALEN;

  /* OK - all was well */
#ifdef DEBUG
  if (cmd == SMBnegprot) debug2("Protocol negotiation returned %d words and %d bytes\n",
          wct_rx, SMB_RxByteCount);
#endif

631 632 633 634 635 636
  if (SMB_RxHdr.command == SMBchkpth) {
    /* Discard the 'ping' response */
    dprintf(("smb_1", "This response was actually to the previous chkpth call\n"));
    ppB_out = NULL;
  }

Stewart Brodie's avatar
Stewart Brodie committed
637 638 639 640 641 642 643 644 645 646 647 648 649
  SMB_RxWordCount = wct_rx;

  if ( ppB_out != NULL )
    *ppB_out = pB_rx;     /* Hand over ownership */
  else
    FreeChain(pB_rx);
  return OK;
}

static err_t Do_SMB_threadsafe ( hSHARE hS, int cmd, int wct_in, BUFCHAIN pB_in,
                      BUFCHAIN *ppB_out )
{
  err_t res;
650 651
  hSESSION hSess;

Stewart Brodie's avatar
Stewart Brodie committed
652 653
  (void) time(&hS->hServer->last_xact);

654 655 656 657 658 659 660 661 662 663
  if ( ppB_out != NULL ) /* If early exit, leave NULL in result */
    *ppB_out = NULL;

  hSess = hS->hServer->hSession;

  /* Fill in parameters for this connection */

  SMB_TxHdr.tid = hS->Tid;
  SMB_TxHdr.uid = hS->hServer->Uid;
  SMB_TxHdr.flg = hS->hServer->SMB_flg;
Stewart Brodie's avatar
Stewart Brodie committed
664 665 666
#ifdef LONGNAMES
  SMB_TxHdr.flg2 = hS->hServer->SMB_flg2;
#endif
667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686

  /* Add byte count */

  SMB_TxWords[wct_in] = ChainLen(pB_in);

  /* Add parameter words */

  pB_in = AddChain ( pB_in, SMB_TxWords, (wct_in*2) + 2 );
  if ( pB_in == NULL )
    return EOUTOFMEM;

  /* Prepare & add header */

  SMB_TxHdr.command = cmd;
  SMB_TxHdr.wct     = wct_in;

  pB_in = AddChain ( pB_in, &SMB_TxHdr, SMBHDR_SIZE );
  if ( pB_in == NULL )
    return EOUTOFMEM;

Stewart Brodie's avatar
Stewart Brodie committed
687
  /* Send data */
688

Stewart Brodie's avatar
Stewart Brodie committed
689 690 691 692 693 694
  res = NB_ClearRxQueue ( hSess );
  if (res != OK) {
    debug0("****************** NB_ClearRxQueue says there was stuff pending!!!!!!!!\n");
  }

  res = NB_SendData ( hSess, pB_in );
695 696 697
  if ( res != OK )
    return res;

698 699 700 701 702 703
  do {
    /* MUST avoid recursive calls to Do_SMBResponse */
    res = Do_SMBResponse(hS, cmd, ppB_out);
  } while (res == OK && SMB_RxHdr.command == SMBchkpth);

  return res;
Stewart Brodie's avatar
Stewart Brodie committed
704
}
705

Stewart Brodie's avatar
Stewart Brodie committed
706 707 708 709
static err_t Do_SMB ( hSHARE hS, int cmd, int wct_in, BUFCHAIN pB_in,
                      BUFCHAIN *ppB_out )
{
  static volatile int threaded = 0;
710

Stewart Brodie's avatar
Stewart Brodie committed
711
  if (threaded) {
Stewart Brodie's avatar
Stewart Brodie committed
712
    return ELANMANFSINUSE;
713
  }
Stewart Brodie's avatar
Stewart Brodie committed
714
  else {
Ben Avison's avatar
Ben Avison committed
715 716 717 718 719
    err_t res;
    ++threaded;
    res = Do_SMB_threadsafe(hS, cmd, wct_in, pB_in, ppB_out);
    --threaded;
    return res;
720 721 722
  }
}

Stewart Brodie's avatar
Stewart Brodie committed
723

724 725 726 727 728 729 730 731
/* ---------------------------- */

/* This attempts to do a ReadRaw on a given file. If there are any errors,
   or we're at end of file, it returns 0. Assume 'hS' etc. has been
   validated.
*/


732 733
static uint SMB_ReadRaw ( hSHARE hS,
                     int fid, uint offset, uint len, BYTE *where )
734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788
{
  err_t res;
  BUFCHAIN pB;
  hSESSION hSess = hS->hServer->hSession;;

  if (len>RDRAW_BLOCK_SIZE) len=RDRAW_BLOCK_SIZE;

  SMB_TxWords[0] = fid;
  SMB_TxWords[1] = (offset & 0xFFFF);
  SMB_TxWords[2] = (offset >> 16 );
  SMB_TxWords[3] = len;
  SMB_TxWords[4] = 0; /* Minimum returned byte count */

  SMB_TxWords[5] = 0xFFFF; /* Timeout */
  SMB_TxWords[6] = 0xFFFF;

  SMB_TxWords[7] = 0; /* Reserved */
  SMB_TxWords[8] = 0; /* Following byte count */

  pB = AddChain( NULL, SMB_TxWords, 18 );
  if ( pB == NULL )
    return 0;

  SMB_TxHdr.tid = hS->Tid;
  SMB_TxHdr.uid = hS->hServer->Uid;

  SMB_TxHdr.command = SMBreadBraw;
  SMB_TxHdr.wct     = 8; /* Word count */

  pB = AddChain ( pB, &SMB_TxHdr, SMBHDR_SIZE );
  if ( pB == NULL )
    return 0;

  /* Send data */

  NB_ClearRxQueue ( hSess ); /* Ensure reply is correct */

  res = NB_SendData ( hSess, pB );
  if ( res != OK )
  {
    debug1("Send data failed, %d\n", res);
    return 0;
  }

  /* Get reply (raw data block) */

  res = NB_GetBlockData ( hSess, where, &len, REPLY_TIMEOUT );
  if ( res != OK )
    return 0;

  return len;
}

/* ---------------------------- */

789 790
static err_t SMB_WriteRaw ( hSHARE hS, int fid, uint offset,
                    uint len, BYTE *where )
791 792 793 794 795 796 797 798 799 800 801 802 803 804 805
{
  err_t res;

  SMB_TxWords[0] = fid;
  SMB_TxWords[1] = len;
  SMB_TxWords[2] = 0;
  SMB_TxWords[3] = (offset & 0xFFFF);
  SMB_TxWords[4] = (offset >> 16 );
  SMB_TxWords[5] = 0xFFFF; /* Timeout */
  SMB_TxWords[6] = 0xFFFF;

  SMB_TxWords[7] = 0; /* Write mode: write-through */
  SMB_TxWords[8] = 0; /* Reserved */
  SMB_TxWords[9] = 0; /* Reserved */
  SMB_TxWords[10] = 0; /* # of data bytes immediately following */
806
  SMB_TxWords[11] = 0; /* Offset to immediate data bytes */
807 808 809 810 811 812 813 814 815 816 817 818 819

  res = Do_SMB ( hS, SMBwriteBraw, 12, NULL, NULL );
  if ( res != OK )
    return res;

  /* If no error, just send the data in a large block. Any errors
     will be picked up on the next write or close operation. If
     we get to this stage, we can assume 'drv' is validated. */

  return NB_SendBlockData ( hS->hServer->hSession, where, len );

}

Stewart Brodie's avatar
Stewart Brodie committed
820 821 822 823
/* sbrodie: Abstract the dialect strings here - means debug version can
 * call this function to find out which protocol was accepted.  The
 * offsets within the array of each string are vital to SMB_Negotiate.
 */
824
static const char *dialects[] = {
Stewart Brodie's avatar
Stewart Brodie committed
825 826 827 828 829 830 831 832 833
                "PC NETWORK PROGRAM 1.0",
                "DOS LM1.2X002",
                "LM1.2X002",
                "NT LM 0.12"
};
#define MAX_DIALECT ((sizeof(dialects)/sizeof(*dialects))-1)
#define DIALECT_BASIC 0
#define DIALECT_LM12X002 1
#define DIALECT_NT 3
834
static const char *SMB_Dialect(unsigned int num)
Stewart Brodie's avatar
Stewart Brodie committed
835 836 837 838 839
{
        if (num <= MAX_DIALECT) return dialects[num];
        return "";
}

840 841 842 843 844
/* ---------------------------- */

static err_t SMB_Negotiate( hSHARE hS )
{
  err_t res;
Stewart Brodie's avatar
Stewart Brodie committed
845
  unsigned int dcount;
846 847
  BUFCHAIN pB;

Stewart Brodie's avatar
Stewart Brodie committed
848
  pB = NULL;
849

Stewart Brodie's avatar
Stewart Brodie committed
850 851 852 853 854
  /* Must be entered in reverse order */
  for (dcount = MAX_DIALECT; ; --dcount) {
    pB = MkDataString( pB, DATA_DIALECT, SMB_Dialect(dcount));
    if (pB == NULL || dcount == 0) break;
  }
855 856 857 858

  if ( pB == NULL )
    return EOUTOFMEM;

Stewart Brodie's avatar
Stewart Brodie committed
859
  res = Do_SMB ( hS, SMBnegprot, 0, pB, &pB );
860 861 862
  if ( res != OK )
    return res;

Stewart Brodie's avatar
Stewart Brodie committed
863 864 865 866 867 868 869

  debug1("Negotiated protocol `%s'\n", SMB_Dialect(SMB_RxWords[0]));
  hS->hServer->prot = SMB_RxWords[0];
  if ( SMB_RxWords[0] >= DIALECT_LM12X002 )
  {
    if (SMB_RxWords[0] >= DIALECT_NT) {
      /* grr - different response format */
870
      hS->hServer->maxTxBufferSize = (SMB_RxWords[3] >> 8) | (SMB_RxWords[4] << 8) | (SMB_RxWords[5] << 24);
Stewart Brodie's avatar
Stewart Brodie committed
871 872 873 874
      hS->hServer->ProtFlags = PROT_RWMULTI + PROT_SETDATETIME +
         (SMB_RxWords[9] & 0x100 ? PROT_READRAW+PROT_WRITERAW : 0 ) +
         (SMB_RxWords[1] & 1 ? PROT_USERLOGON : 0 ) +
         (SMB_RxWords[1] & 2 ? PROT_ENCRYPT : 0 );
875
      if (SMB_RxWords[11] & 0x80) {
Stewart Brodie's avatar
Stewart Brodie committed
876 877 878 879 880 881 882 883 884 885
        /* CAP_EXTENDED_SECURITY */
        hS->hServer->ProtFlags |= PROT_HAVE_GUID;
        GetData(pB, hS->hServer->guid, 16);
        debug0("Found a GUID block in the data section\n");
      }
      else {
        /* No bit */
        debug0("No extended security - no GUID in the data block\n");
      }
      hS->hServer->bloblen = SMB_RxWords[16] >> 8;
886
      hS->hServer->Sesskey = (SMB_RxWords[7] >> 8) | (SMB_RxWords[8] << 8) | (SMB_RxWords[9] << 24);
Stewart Brodie's avatar
Stewart Brodie committed
887 888
    }
    else {
ROOL's avatar
ROOL committed
889
      hS->hServer->maxTxBufferSize = SMB_RxWords[2];
Stewart Brodie's avatar
Stewart Brodie committed
890 891 892 893 894
      hS->hServer->ProtFlags = PROT_RWMULTI + PROT_SETDATETIME +
         (SMB_RxWords[1] & 1 ? PROT_USERLOGON : 0 ) +
         (SMB_RxWords[1] & 2 ? PROT_ENCRYPT : 0 ) +
         (SMB_RxWords[5] & 1 ? PROT_READRAW : 0 ) +
         (SMB_RxWords[5] & 2 ? PROT_WRITERAW : 0 );
895 896
      hS->hServer->bloblen = SMB_RxWords[11];
      hS->hServer->Sesskey = SMB_RxWords[6] | (SMB_RxWords[7] << 16);
Stewart Brodie's avatar
Stewart Brodie committed
897
    }
898
    hS->hServer->SMB_flg = SMB_CASELESS;
Stewart Brodie's avatar
Stewart Brodie committed
899 900 901
#ifdef LONGNAMES
    debug0("Enabling long filenames on this share\n");
    hS->hServer->SMB_flg2 = SMB_KNOWS_LONG_NAMES; /* | SMB_IS_LONG_NAME;*/
902
    hS->hServer->t2flags = T2FLAGS_LONGNAMES;
Stewart Brodie's avatar
Stewart Brodie committed
903 904 905 906 907 908 909 910 911 912 913
#endif
    if (hS->hServer->bloblen > 0) {
      free(hS->hServer->blob);
      hS->hServer->blob = malloc(hS->hServer->bloblen);
      if (hS->hServer->blob != NULL) {
        GetData(pB, hS->hServer->blob, hS->hServer->bloblen);
      }
    }
    else {
      hS->hServer->blob = 0;
    }
914 915 916
  }
  else
  {
ROOL's avatar
ROOL committed
917
    hS->hServer->maxTxBufferSize = MAX_CORE_TX_BLOCK_SIZE;
918 919
    hS->hServer->ProtFlags = PROT_SETDATETIME;
    hS->hServer->SMB_flg = 0;
Stewart Brodie's avatar
Stewart Brodie committed
920
#ifdef LONGNAMES
921
    hS->hServer->t2flags = 0;
Stewart Brodie's avatar
Stewart Brodie committed
922 923
    hS->hServer->SMB_flg2 = 0;
#endif
924
  }
925
  FreeChain(pB);
Stewart Brodie's avatar
Stewart Brodie committed
926
  debug1("%s-level security\n", hS->hServer->ProtFlags & PROT_USERLOGON ? "User" : "Share");
927 928 929 930 931 932 933 934 935 936 937 938 939 940
  return OK;
}

/* ------------------------------- */

/* Session setup logs the user on with a given name and password */

static err_t SMB_SessSetup ( hSHARE hS, char *userid, char *passwd )
{
  BUFCHAIN pB;
  err_t res;

  SMB_TxWords[0] = 0x00FF; /* No additional command */
  SMB_TxWords[1] = 0;      /* Offset to next cmd */
ROOL's avatar
ROOL committed
941
  SMB_TxWords[2] = MAX_RX_BLOCK_SIZE; /* Maximum SMB message size we can receive */
942
  SMB_TxWords[3] = 1;      /* Max pending requests */
943 944 945 946
  SMB_TxWords[4] = 0;      /* First & only VC */
  SMB_TxWords[5] = hS->hServer->Sesskey & 0xFFFF;
  SMB_TxWords[6] = hS->hServer->Sesskey >> 16;

Stewart Brodie's avatar
Stewart Brodie committed
947 948 949 950 951 952 953 954 955 956 957 958 959 960 961 962 963
  if (hS->hServer->prot < DIALECT_NT) {
    pB = AddChain ( NULL, userid, strlen(userid)+1 );
    if ( pB != NULL ) pB = AddChain ( pB, passwd, strlen(passwd)+1 );
    if ( pB == NULL )
      return EOUTOFMEM;

    SMB_TxWords[7] = strlen ( passwd ) + 1;
    SMB_TxWords[8] = 0;
    SMB_TxWords[9] = 0;

    res = Do_SMB ( hS, SMBsesssetup, 10, pB, NULL );
  }
  else if (hS->hServer->ProtFlags & PROT_HAVE_GUID) {
    /* CAP_EXTENDED_SECURITY is supported by the server - setup session accordingly */
    SMB_TxWords[7] = hS->hServer->bloblen;
    SMB_TxWords[8] = SMB_TxWords[9] = 0; /* reserved */
    SMB_TxWords[10] = SMB_TxWords[11] = 0; /* client capabilities */
964 965 966
    pB = AddChain (NULL, "CIFS", sizeof("CIFS"));
    if (pB) pB = AddChain ( pB, "RISCOS", sizeof("RISCOS"));
    if (pB) pB = AddChain ( pB, hS->hServer->blob, hS->hServer->bloblen );
Stewart Brodie's avatar
Stewart Brodie committed
967 968 969 970 971 972
    if (pB == NULL )
      return EOUTOFMEM;
    res = Do_SMB ( hS, SMBsesssetup, 12, pB, NULL );
  }
  else {
    /* Server does not support extended security */
973 974 975 976 977 978 979 980 981 982 983 984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015
    if (hS->hServer->ProtFlags & PROT_ENCRYPT)
    {
      unsigned char lmowfv2digest[16];
      unsigned char challengeResponse[24];

      if (strlen( passwd ) != 0)
      {
        Auth_LMOWFv2( (const char *)passwd, strlen( passwd ),
                      (const char *)userid, strlen( userid ),
                      (const char *)userid, 0, /* no domain */
                      lmowfv2digest );
        Auth_LMv2ChallengeResponse( lmowfv2digest, (void *)hS->hServer->blob, challengeResponse );
        SMB_TxWords[7] = sizeof(challengeResponse);
      }
      else
      {
        SMB_TxWords[7] = 0;
      }
      SMB_TxWords[8] = 0;
      SMB_TxWords[9] = SMB_TxWords[10] = 0; /* Reserved */
      SMB_TxWords[11] = SMB_TxWords[12] = 0; /* client capabilities */
      pB = AddChain( NULL, "CIFS", sizeof("CIFS") );
      if (pB) pB = AddChain( pB, "\0RISCOS", sizeof("\0RISCOS") );
      if (pB) pB = AddChain( pB, userid, strlen(userid) + 1 );
      if (pB && (SMB_TxWords[7] != 0)) pB = AddChain( pB, challengeResponse, sizeof(challengeResponse) );
      if (pB) pB = DumpChain( pB );
      if (pB == NULL)
        return EOUTOFMEM;
    }
    else
    {
      SMB_TxWords[7] = strlen ( passwd );
      SMB_TxWords[8] = 0;
      SMB_TxWords[9] = SMB_TxWords[10] = 0; /* Reserved */
      SMB_TxWords[11] = SMB_TxWords[12] = 0; /* client capabilities */
      pB = AddChain( NULL, "CIFS", sizeof("CIFS") );
      if (pB) pB = AddChain( pB, "\0RISCOS", sizeof("\0RISCOS") );
      if (pB) pB = AddChain( pB, userid, strlen(userid) + 1 );
      if (pB) pB = AddChain( pB, passwd, strlen(passwd) );
      if (pB) pB = DumpChain( pB );
      if (pB == NULL)
        return EOUTOFMEM;
    }
Stewart Brodie's avatar
Stewart Brodie committed
1016 1017
    res = Do_SMB ( hS, SMBsesssetup, 13, pB, NULL );
  }
1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109 1110 1111 1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143
  if ( res != OK )
    return res;

  hS->hServer->Uid = SMB_RxHdr.uid;

  return OK;
}

/* ---------------------------- */

/* Keep in step with #defines in H.SMB ! */

static char *sharetype_str[4] =
{
  "A:", "LPT1:", "COMM", "IPC"
};

/* ConnectShare connects to a given share, with share name & type &
   password as given in the hSHARE structure. hS->hServer is
   assumed to be valid & connected
*/

static err_t ConnectShare ( hSHARE hS )
{
  BUFCHAIN pB;
  err_t res;

  /* Mild sanity check */

  if ( hS==NULL || hS->hServer==NULL ||
       hS->sharetype < 0 || hS->sharetype > 3 )
    return EBADPARAM;

  debug3("Connect share %c to \\\\%s\\%s\n", hS->drvletter,
            hS->hServer->servname, hS->sharename );

  pB = MkDataString( NULL, DATA_ASCII, sharetype_str[hS->sharetype] );

  if ( pB == NULL ) return EOUTOFMEM;

  /* For user-based logon schemes, there is not a password for
      tree connect */

  if ( hS->hServer->ProtFlags & PROT_USERLOGON )
    pB = MkDataString ( pB, DATA_ASCII, "" );
  else
  {
    Xlt_Unjumble ( hS->password );
    pB = MkDataString ( pB, DATA_ASCII, hS->password );
    Xlt_Jumble ( hS->password );
  }

  if ( pB == NULL ) return EOUTOFMEM;

  /* Path name is of the form \\SERVER\SHARENAME */

  sprintf( (char*)SMB_WorkBuf, "\\\\%s\\%s", hS->hServer->servname,
                                             hS->sharename );
  pB = MkDataString ( pB, DATA_ASCII, (char *)SMB_WorkBuf );

  if ( pB == NULL ) return EOUTOFMEM;

  /* Do connection */

  res = Do_SMB ( hS, SMBtcon, 0, pB, NULL );

  if ( res == OK )
  {
    hS->Tid      = SMB_RxWords[1];
    hS->Datasize = SMB_RxWords[0];
    hS->flags   |= CONNECTED;     /* Clear CONN_LOST flag */
  }

  return res;
}



/* ----------------------------- */

static err_t DisconnectShare ( hSHARE hS )
{
  if ( hS==NULL )       /* Shouldn't happen, but make sure */
    return EBADPARAM;

  debug3("Disconnect share %c from \\\\%s\\%s\n", hS->drvletter,
            hS->hServer->servname, hS->sharename );

  /* Say connection has been broken; if the operation fails it's
     probably been broken already */

  hS->flags &= ~CONNECTED;

  /* Do SMB Tree disconnect operation */
  return Do_SMB ( hS, SMBtdis, 0, NULL, NULL );
}

/* ------------------------------ */

/* ConnectServer attempts to connect to a given server. It is actually
   passed an hSHARE handle for internal reasons. It it assumed that
   hS->hServer has been set up to point to a valid server, and that
   the server name, user name & password are set up correctly.
*/

static err_t ConnectServer ( hSHARE hS )
{
  NETNAME nnserver;
  hSERVER hSrv;
  err_t res;

  if ( hS == NULL || (hSrv=hS->hServer, hSrv == NULL) )
    return EBADPARAM;

  debug1("Connect server %s\n", hSrv->servname);

  /* Set initial values */

  hSrv->ProtFlags = 0;
  hSrv->SMB_flg = 0;
  hSrv->Uid = 0;
  hSrv->Sesskey = 0;
  hSrv->hSession = NULL;

  /* Try to contact server */

Stewart Brodie's avatar
Stewart Brodie committed
1144
  debug0("NB_FormatName..\n");
1145 1146 1147 1148 1149 1150
  res = NB_FormatName ( ntSERVER, hSrv->servname, &nnserver );
  if ( res != OK )
    return res;

  /* Try to contact server */

Stewart Brodie's avatar
Stewart Brodie committed
1151
  debug0("NB_OpenSession..\n");
1152 1153 1154 1155 1156 1157
  res = NB_OpenSession( NB_MachineName, &nnserver, &(hSrv->hSession) );
  if ( res != OK )
    return res;

  /* Establish protocol */

Stewart Brodie's avatar
Stewart Brodie committed
1158
  debug0("SMB_Negotiate..\n");
1159 1160 1161 1162 1163 1164 1165 1166 1167
  res = SMB_Negotiate ( hS );
  if ( res != OK )
    goto abort_server;

  /* Logon user, if it's that sort of server */

  if (hSrv->ProtFlags & PROT_USERLOGON)
  {
    Xlt_Unjumble(hSrv->password);
Stewart Brodie's avatar
Stewart Brodie committed
1168
  debug0("SMB_SessSetup..\n");
1169 1170 1171 1172 1173 1174
    res = SMB_SessSetup ( hS, hSrv->username, hSrv->password );
    Xlt_Jumble(hSrv->password);

    if ( res != OK ) goto abort_server;
  }

Stewart Brodie's avatar
Stewart Brodie committed
1175 1176
  debug0("ConnectServer succeeds\n");

1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219 1220 1221 1222 1223 1224 1225 1226 1227 1228 1229 1230 1231 1232 1233 1234 1235 1236 1237 1238 1239
  return OK;

abort_server:
  NB_CloseSession(hSrv->hSession);
  hSrv->hSession = NULL;
  return res;
}

/* ------------------------------ */

static err_t DisconnectServer ( hSERVER hSrv )
{
  int i;
  hSHARE hS;

  if ( hSrv == NULL )
    return EBADPARAM;

  debug1("Disconnect server %s\n", hSrv->servname);

  /* Disconnect Server implicity closes all shares using it;
     fortunately, the server will do all this if we drop the
     link. All we have to do is mark the relevant shares as being
     disconnected.
  */

  hS = SMB_Shares;
  for ( i=0; i < MAX_SHARES; i++ )
  {
    if ( (hS->flags & ALLOCATED) &&
         (hS->hServer == hSrv )     )
      hS->flags &= ~CONNECTED;

    hS++;
  }

  /* Close NetBIOS session */
  if ( hSrv->hSession != NULL )
  {
    NB_CloseSession(hSrv->hSession);
    hSrv->hSession = NULL;
  }
  return OK;
}

/* As a general rule, the routines above don't perform
   any allocation/deallocation functions, only the network
   transactions themselves. These are dealt with in the following
   bits.
*/

/* ==========================================  */

static hSERVER AllocServer ( void )
{
  hSERVER hS;
  int i;

  for ( hS = SMB_Servers, i=0; i < MAX_SERVERS; hS++, i++ )
    if ( (hS->flags & ALLOCATED)==0 )
    {
      hS->flags = ALLOCATED;
      hS->hSession = 0;
Stewart Brodie's avatar
Stewart Brodie committed
1240
      hS->blob = 0;
1241 1242 1243
#ifdef LONGNAMES
      hS->t2flags = 0;
#endif
1244 1245 1246 1247 1248 1249 1250 1251 1252 1253 1254 1255 1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266 1267 1268 1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279 1280 1281 1282 1283 1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313 1314 1315 1316 1317 1318 1319 1320 1321 1322 1323 1324 1325 1326
      return hS;
    }

  return NULL;
}

/* ----------------------------------- */

static hSHARE AllocShare ( void )
{
  hSHARE hS;
  int i;

  for ( hS = SMB_Shares, i=0; i < MAX_SHARES; hS++, i++ )
    if ( (hS->flags & ALLOCATED)== 0 )
    {
      hS->flags = ALLOCATED;
      hS->hServer = NULL;
      hS->Tid=0;
      hS->Datasize=0;
      return hS;
    }

  return NULL;
}

/* ----------------------------------- */

static bool ServerInUse ( hSERVER hServ )
{
  int i;
  hSHARE hS;

  for ( hS=SMB_Shares, i=0; i<MAX_SHARES; hS++, i++ )
  {
    if ( hS->hServer == hServ && (hS->flags & ALLOCATED)  )
      return true;
  }

  return false;
}

/* ----------------------------------- */

static hSERVER FindServer ( char *serv_name )
{
  hSERVER hS;
  int i;

  for ( hS = SMB_Servers, i=0; i < MAX_SERVERS; hS++, i++ )
  {
    if ( (hS->flags & ALLOCATED) &&
         stricmp ( hS->servname, serv_name ) == 0
       )
      return hS;
  }

  return NULL;
}

/* ----------------------------------- */

static hSHARE FindShare ( hSERVER hServ, char *share_name )
{
  hSHARE hS;
  int i;

  for ( hS = SMB_Shares, i=0; i < MAX_SHARES; hS++, i++ )
  {
    if ( hS->hServer == hServ && (hS->flags & ALLOCATED) &&
         stricmp ( hS->sharename, share_name ) == 0
       )
      return hS;
  }

  return NULL;
}


/* ----------------------------------- */

static void FreeServer ( hSERVER hS )
{
Stewart Brodie's avatar
Stewart Brodie committed
1327 1328 1329 1330
  if (hS->flags != FREE) {
    free(hS->blob);
    hS->blob = NULL;
  }
1331 1332 1333 1334 1335 1336 1337 1338 1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351
  hS->flags = FREE;
}

/* ----------------------------------- */

static void FreeShare ( hSHARE hS )
{
  hS->flags = FREE;
}

/* =======================================  */

/* Validates a share, given a filename (the first character being the
   drive letter). If the link to the server has failed, it will
   attempt to reconnect it before returning.

   Unlike most routines, it returns an hSHARE as a result and an error
   via a pointer. The hSHARE will be non-Null if & only if the result is
   OK; it is acceptable to test either.
*/

Stewart Brodie's avatar
Stewart Brodie committed
1352
static hSHARE GetShare ( const char *filename, err_t *pRes )
1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367 1368 1369 1370 1371 1372 1373 1374 1375 1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397
{
  uint tmp;
  hSHARE hS;
  err_t res;

  /* Is drive letter in range & in use? */

  tmp = filename[0] - 'A';
  if ( tmp >= MAX_SHARES ||
        (hS=&SMB_Shares[tmp], (hS->flags & ALLOCATED)==0) )
  {
    *pRes = EBADDRV;
    return NULL;
  }

  /* Can we still talk to the server */

  if ( !NB_LinkOK ( hS->hServer->hSession ) )
  {
    DisconnectServer(hS->hServer);      /* Drop links, deallocate stuff */

    res = ConnectServer(hS);   /* Try to reconnect to server */
    if ( res != OK )
    {
      *pRes = res;
      return NULL;
    }
  }

  /* Server works, now see if we need reconnecting */

  if ( (hS->flags & CONNECTED) == 0 )
  {
    res = ConnectShare(hS);
    if ( res != OK )
    {
      *pRes = res;
      return NULL;
    }
  }

  *pRes = OK;
  return hS;
}

Stewart Brodie's avatar
Stewart Brodie committed
1398

1399 1400 1401 1402 1403 1404 1405 1406 1407 1408 1409 1410 1411 1412 1413 1414
/* ---------------------------- */

/* GetShareNoConn() is used to validate a drive letter when
    we aren't bothered if the connection is lost (e.g. for
    the GetConnInfo or DisconnectShare calls)
*/
static hSHARE GetShareNoConn ( uint letter )
{
  letter -= 'A';
  if ( (letter < MAX_SHARES) &&
       (SMB_Shares[letter].flags & ALLOCATED) )
    return &SMB_Shares[letter];

  return NULL;
}

Stewart Brodie's avatar
Stewart Brodie committed
1415 1416 1417

/* ---------------------------- */

1418 1419 1420 1421
#ifdef LONGNAMES
/* SMB_IsLongNameFS() returns true if the path refers to a share which is
 * using long filenames.  Xlate.c needs to know this in order to determine
 * which set of file mappings is to be used.
Stewart Brodie's avatar
Stewart Brodie committed
1422 1423 1424 1425 1426 1427
 */
bool SMB_IsLongNameFS( const char * path)
{
  hSHARE hS;

  hS = GetShareNoConn(*path);
1428
  if (hS != NULL && (hS->hServer->t2flags & T2FLAGS_LONGNAMES)) return true;
Stewart Brodie's avatar
Stewart Brodie committed
1429 1430
  return false;
}
1431
#endif
Stewart Brodie's avatar
Stewart Brodie committed
1432

1433 1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523
/* --------------------- */

/* When trying to get a share ID from a file handle, there's
   no point reconnecting, because the handle wouldn't be valid
   anyway.
*/

static hSHARE GetShareFromFH ( uint FH, err_t *pRes )
{
  FH = (FH >> 16);  /* Get share identifier from file handle */
  if ( FH < MAX_SHARES )
  {
    hSHARE hS=&SMB_Shares[FH];

    if ( (hS->flags & (ALLOCATED|CONNECTED))  == (ALLOCATED|CONNECTED) )
      return hS;
  }

  *pRes = EFILEHANDLE;
  return NULL;
}

/* ----------------------------- */

static err_t SMB_SingleOp ( int op, char *path )
{
  BUFCHAIN pB;
  hSHARE hS;
  err_t res;

  hS = GetShare (path, &res);
  if ( hS == NULL )
    return res;

  pB = MkDataString( NULL, DATA_ASCII, path+2 );
  if ( pB == NULL )
    return EOUTOFMEM;

  return Do_SMB ( hS, op, 0, pB, NULL );
}

/* Public Connect/disconnect operations ====================== */

/* CreateShare can do about five different things, depending on
    the current state of the system. See SMB.H for full
    description of the parameters. Scenarios include
    - connection to a new share on a new server
    - if we're already connected to the given server and the
        given user name is blank or the same, connect to a new
        share on the same server.
    - if we're already connected to the given server and the
        given user name is different, reconnect to the server;
        the share name may be the same as an existing name (in
        which case we're just changing user ID) or it may be
        a new one (in which case it needs adding)
    - if all of (server name, user name, share name) are the
        same, return the drive letter corresponding to this
        connection.

    This is all a bit of a logical nightmare, especially as we
    have to back out gracefully if any bit fails, so I've written
    it out using flags which get set as each thing needs to be
    done.

*/

static bool IsBlank ( char *str )
{
  while ( isspace(*str) ) str++;  /* Skip leading spaces */

  if ( iscntrl(*str) )            /* If it's the end, it's blank */
    return true;

  return false;
}

#define ALLOC_SERVER   1
#define ALLOC_SHARE    2
#define DISCONN_SERVER 4
#define CONN_SERVER    8

err_t SMB_CreateShare (  int sharetype_in,
                         int style,
                         char *servname_in, char *sharename_in,
                         char *username_in, char *password_in,
                         char *drv_letter_out )
{
  hSHARE hShare;
  hSERVER hServ;
  char uc_sharename[SHARENAME_LEN];
  char uc_servname [NAME_LIMIT];
1524
  char plain_password[PASSWORD_LIMIT];
1525 1526 1527 1528
  int to_do, done;
  err_t res;

  /* Validate & format parameters */
Stewart Brodie's avatar
Stewart Brodie committed
1529 1530 1531 1532
#ifdef TRACE
  debug2("Server name %p; share name %p\n", servname_in, sharename_in);
  debug2("Server name `%s'; share name `%s'\n", servname_in, sharename_in);
#endif
1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557 1558

  if ( servname_in == NULL || sharename_in==NULL )
    return EBADPARAM;

  strcpyn_upper ( uc_sharename, sharename_in, SHARENAME_LEN);
  strcpyn_upper ( uc_servname,  servname_in, NAME_LIMIT);

  if ( username_in == NULL ) username_in = "";
  if ( password_in == NULL ) password_in = "";

  /* Work out a list of what we have to do ------------ */

  to_do = 0;

  hServ = FindServer ( uc_servname );

  if ( hServ == NULL )  /* New server */
  {
    hShare = NULL;
    to_do |= (ALLOC_SERVER | ALLOC_SHARE | CONN_SERVER);

    /* If both names are blank, use logon names */
    if ( IsBlank(username_in) && IsBlank(password_in) )
    {
      username_in = LM_Vars.username;
      Xlt_Unjumble ( LM_Vars.password_ptr );
1559
      strcpyn ( plain_password, LM_Vars.password_ptr, PASSWORD_LIMIT );
1560 1561 1562 1563 1564 1565 1566 1567 1568 1569 1570 1571 1572 1573 1574 1575 1576 1577 1578 1579 1580 1581 1582 1583 1584 1585 1586 1587 1588 1589 1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610 1611 1612 1613 1614 1615 1616 1617 1618 1619 1620 1621 1622
      Xlt_Jumble ( LM_Vars.password_ptr );
      password_in = plain_password;
    }
  }
  else
  {
    /* Already have connection to server */
    hShare = FindShare(hServ, uc_sharename);

    if ( hShare == NULL ) /* New share on existing server */
      to_do |= (ALLOC_SHARE);

    /* Check if user name is being given. If not,
       disconnect and reconnect to force name change */

    if ( (style & CREATE_NEW_USER) && !IsBlank (username_in)  )
      to_do |= (DISCONN_SERVER | CONN_SERVER);
  }

  /* Check that's OK with the given style ----- */

  if ( (style & CREATE_NEW_SHARE) && !(to_do & ALLOC_SHARE) )
  {
    /* If the share already exists, and the 'insist it's something
       new' bit is set,  we fail the call and say  which drive letter
       it is. Otherwise, we drop through the rest of the code - the
       only thing that might happen is a disconnect/reconnect to
       change user ID */
    *drv_letter_out = hShare->drvletter;
    return ECONNEXISTS;
  }

  /* Now do each bit ----------------------- */

  done = 0;

  /* Ensure hServ is allocated */
  if ( to_do & ALLOC_SERVER )
  {
    hServ = AllocServer();
    if ( hServ == NULL )
    {
      res = ECONNLIMIT;
      goto fail;
    }
    strcpy  ( hServ->servname, uc_servname );
    done |= ALLOC_SERVER;
  }

  /* Ensure hShare is allocated & set up */
  if ( to_do & ALLOC_SHARE )
  {
    hShare = AllocShare();
    if ( hShare == NULL )
    {
      res = ECONNLIMIT;
      goto fail;
    }

    /* Assume flags don't have CONNECTED set */
    hShare->hServer = hServ;
    hShare->sharetype = sharetype_in;
    strcpy  ( hShare->sharename, uc_sharename );
Colin Granville's avatar