2009-07-02 10:17:30 +02:00
/*
Unix SMB / CIFS implementation .
Core SMB2 server
Copyright ( C ) Stefan Metzmacher 2009
2010-04-28 14:56:12 -07:00
Copyright ( C ) Jeremy Allison 2010
2009-07-02 10:17:30 +02:00
This program is free software ; you can redistribute it and / or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation ; either version 3 of the License , or
( at your option ) any later version .
This program is distributed in the hope that it will be useful ,
but WITHOUT ANY WARRANTY ; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE . See the
GNU General Public License for more details .
You should have received a copy of the GNU General Public License
along with this program . If not , see < http : //www.gnu.org/licenses/>.
*/
# include "includes.h"
2011-03-22 16:57:01 +01:00
# include "smbd/smbd.h"
2009-07-02 10:17:30 +02:00
# include "smbd/globals.h"
2009-08-12 17:52:55 +02:00
# include "../libcli/smb/smb_common.h"
2011-02-25 00:03:01 +01:00
# include "trans2.h"
2011-04-28 17:38:09 +02:00
# include "../lib/util/tevent_ntstatus.h"
2009-07-02 10:17:30 +02:00
static struct tevent_req * smbd_smb2_getinfo_send ( TALLOC_CTX * mem_ctx ,
struct tevent_context * ev ,
struct smbd_smb2_request * smb2req ,
uint8_t in_info_type ,
uint8_t in_file_info_class ,
uint32_t in_output_buffer_length ,
DATA_BLOB in_input_buffer ,
uint32_t in_additional_information ,
uint32_t in_flags ,
uint64_t in_file_id_volatile ) ;
static NTSTATUS smbd_smb2_getinfo_recv ( struct tevent_req * req ,
TALLOC_CTX * mem_ctx ,
2010-04-26 20:11:59 -07:00
DATA_BLOB * out_output_buffer ,
NTSTATUS * p_call_status ) ;
2009-07-02 10:17:30 +02:00
static void smbd_smb2_request_getinfo_done ( struct tevent_req * subreq ) ;
NTSTATUS smbd_smb2_request_process_getinfo ( struct smbd_smb2_request * req )
{
2011-09-06 14:01:43 +02:00
NTSTATUS status ;
2009-07-02 10:17:30 +02:00
const uint8_t * inbody ;
int i = req - > current_idx ;
uint8_t in_info_type ;
uint8_t in_file_info_class ;
uint32_t in_output_buffer_length ;
uint16_t in_input_buffer_offset ;
uint32_t in_input_buffer_length ;
DATA_BLOB in_input_buffer ;
uint32_t in_additional_information ;
uint32_t in_flags ;
uint64_t in_file_id_persistent ;
uint64_t in_file_id_volatile ;
struct tevent_req * subreq ;
2011-09-06 14:01:43 +02:00
status = smbd_smb2_request_verify_sizes ( req , 0x29 ) ;
if ( ! NT_STATUS_IS_OK ( status ) ) {
return smbd_smb2_request_error ( req , status ) ;
2009-07-02 10:17:30 +02:00
}
inbody = ( const uint8_t * ) req - > in . vector [ i + 1 ] . iov_base ;
in_info_type = CVAL ( inbody , 0x02 ) ;
in_file_info_class = CVAL ( inbody , 0x03 ) ;
in_output_buffer_length = IVAL ( inbody , 0x04 ) ;
in_input_buffer_offset = SVAL ( inbody , 0x08 ) ;
/* 0x0A 2 bytes reserved */
in_input_buffer_length = IVAL ( inbody , 0x0C ) ;
in_additional_information = IVAL ( inbody , 0x10 ) ;
in_flags = IVAL ( inbody , 0x14 ) ;
in_file_id_persistent = BVAL ( inbody , 0x18 ) ;
in_file_id_volatile = BVAL ( inbody , 0x20 ) ;
if ( in_input_buffer_offset = = 0 & & in_input_buffer_length = = 0 ) {
/* This is ok */
} else if ( in_input_buffer_offset ! =
2011-09-06 14:01:43 +02:00
( SMB2_HDR_BODY + req - > in . vector [ i + 1 ] . iov_len ) ) {
2009-07-02 10:17:30 +02:00
return smbd_smb2_request_error ( req , NT_STATUS_INVALID_PARAMETER ) ;
}
if ( in_input_buffer_length > req - > in . vector [ i + 2 ] . iov_len ) {
return smbd_smb2_request_error ( req , NT_STATUS_INVALID_PARAMETER ) ;
}
in_input_buffer . data = ( uint8_t * ) req - > in . vector [ i + 2 ] . iov_base ;
in_input_buffer . length = in_input_buffer_length ;
2011-10-12 17:46:50 +02:00
if ( in_input_buffer . length > req - > sconn - > smb2 . max_trans ) {
return smbd_smb2_request_error ( req , NT_STATUS_INVALID_PARAMETER ) ;
}
if ( in_output_buffer_length > req - > sconn - > smb2 . max_trans ) {
return smbd_smb2_request_error ( req , NT_STATUS_INVALID_PARAMETER ) ;
}
2009-07-02 10:17:30 +02:00
if ( req - > compat_chain_fsp ) {
/* skip check */
2010-05-19 19:28:26 -07:00
} else if ( in_file_id_persistent ! = in_file_id_volatile ) {
2009-07-02 10:17:30 +02:00
return smbd_smb2_request_error ( req , NT_STATUS_FILE_CLOSED ) ;
}
subreq = smbd_smb2_getinfo_send ( req ,
2011-12-12 14:15:03 +01:00
req - > sconn - > ev_ctx ,
2009-07-02 10:17:30 +02:00
req ,
in_info_type ,
in_file_info_class ,
in_output_buffer_length ,
in_input_buffer ,
in_additional_information ,
in_flags ,
in_file_id_volatile ) ;
if ( subreq = = NULL ) {
return smbd_smb2_request_error ( req , NT_STATUS_NO_MEMORY ) ;
}
tevent_req_set_callback ( subreq , smbd_smb2_request_getinfo_done , req ) ;
2011-11-14 15:42:55 +01:00
return smbd_smb2_request_pending_queue ( req , subreq , 500 ) ;
2009-07-02 10:17:30 +02:00
}
static void smbd_smb2_request_getinfo_done ( struct tevent_req * subreq )
{
struct smbd_smb2_request * req = tevent_req_callback_data ( subreq ,
struct smbd_smb2_request ) ;
DATA_BLOB outbody ;
DATA_BLOB outdyn ;
uint16_t out_output_buffer_offset ;
2009-07-24 10:21:07 -04:00
DATA_BLOB out_output_buffer = data_blob_null ;
2009-07-02 10:17:30 +02:00
NTSTATUS status ;
2010-07-04 17:49:30 +02:00
NTSTATUS call_status = NT_STATUS_OK ;
2009-07-02 10:17:30 +02:00
NTSTATUS error ; /* transport error */
status = smbd_smb2_getinfo_recv ( subreq ,
req ,
2010-04-26 20:11:59 -07:00
& out_output_buffer ,
& call_status ) ;
2009-07-02 10:17:30 +02:00
TALLOC_FREE ( subreq ) ;
if ( ! NT_STATUS_IS_OK ( status ) ) {
error = smbd_smb2_request_error ( req , status ) ;
if ( ! NT_STATUS_IS_OK ( error ) ) {
2009-08-07 15:21:07 +02:00
smbd_server_connection_terminate ( req - > sconn ,
2009-07-02 10:17:30 +02:00
nt_errstr ( error ) ) ;
return ;
}
return ;
}
2010-04-26 20:11:59 -07:00
if ( ! NT_STATUS_IS_OK ( call_status ) ) {
/* Return a specific error with data. */
error = smbd_smb2_request_error_ex ( req ,
call_status ,
& out_output_buffer ,
__location__ ) ;
if ( ! NT_STATUS_IS_OK ( error ) ) {
smbd_server_connection_terminate ( req - > sconn ,
nt_errstr ( error ) ) ;
return ;
}
return ;
}
2009-07-02 10:17:30 +02:00
out_output_buffer_offset = SMB2_HDR_BODY + 0x08 ;
outbody = data_blob_talloc ( req - > out . vector , NULL , 0x08 ) ;
if ( outbody . data = = NULL ) {
error = smbd_smb2_request_error ( req , NT_STATUS_NO_MEMORY ) ;
if ( ! NT_STATUS_IS_OK ( error ) ) {
2009-08-07 15:21:07 +02:00
smbd_server_connection_terminate ( req - > sconn ,
2009-07-02 10:17:30 +02:00
nt_errstr ( error ) ) ;
return ;
}
return ;
}
SSVAL ( outbody . data , 0x00 , 0x08 + 1 ) ; /* struct size */
SSVAL ( outbody . data , 0x02 ,
out_output_buffer_offset ) ; /* output buffer offset */
SIVAL ( outbody . data , 0x04 ,
out_output_buffer . length ) ; /* output buffer length */
outdyn = out_output_buffer ;
error = smbd_smb2_request_done ( req , outbody , & outdyn ) ;
if ( ! NT_STATUS_IS_OK ( error ) ) {
2009-08-07 15:21:07 +02:00
smbd_server_connection_terminate ( req - > sconn ,
2009-07-02 10:17:30 +02:00
nt_errstr ( error ) ) ;
return ;
}
}
struct smbd_smb2_getinfo_state {
struct smbd_smb2_request * smb2req ;
NTSTATUS status ;
DATA_BLOB out_output_buffer ;
} ;
2011-01-28 13:07:08 -08:00
static void smb2_ipc_getinfo ( struct tevent_req * req ,
struct smbd_smb2_getinfo_state * state ,
struct tevent_context * ev ,
uint8_t in_info_type ,
uint8_t in_file_info_class )
{
/* We want to reply to SMB2_GETINFO_FILE
with a class of SMB2_FILE_STANDARD_INFO as
otherwise a Win7 client issues this request
twice ( 2 xroundtrips ) if we return NOT_SUPPORTED .
NB . We do the same for SMB1 in call_trans2qpipeinfo ( ) */
if ( in_info_type = = 0x01 & & /* SMB2_GETINFO_FILE */
in_file_info_class = = 0x05 ) { /* SMB2_FILE_STANDARD_INFO */
state - > out_output_buffer = data_blob_talloc ( state ,
NULL , 24 ) ;
if ( tevent_req_nomem ( state - > out_output_buffer . data , req ) ) {
return ;
}
memset ( state - > out_output_buffer . data , 0 , 24 ) ;
SOFF_T ( state - > out_output_buffer . data , 0 , 4096LL ) ;
SIVAL ( state - > out_output_buffer . data , 16 , 1 ) ;
SIVAL ( state - > out_output_buffer . data , 20 , 1 ) ;
tevent_req_done ( req ) ;
} else {
tevent_req_nterror ( req , NT_STATUS_NOT_SUPPORTED ) ;
}
}
2009-07-02 10:17:30 +02:00
static struct tevent_req * smbd_smb2_getinfo_send ( TALLOC_CTX * mem_ctx ,
struct tevent_context * ev ,
struct smbd_smb2_request * smb2req ,
uint8_t in_info_type ,
uint8_t in_file_info_class ,
uint32_t in_output_buffer_length ,
DATA_BLOB in_input_buffer ,
uint32_t in_additional_information ,
uint32_t in_flags ,
uint64_t in_file_id_volatile )
{
struct tevent_req * req ;
struct smbd_smb2_getinfo_state * state ;
struct smb_request * smbreq ;
connection_struct * conn = smb2req - > tcon - > compat_conn ;
files_struct * fsp ;
2010-04-26 20:11:59 -07:00
NTSTATUS status ;
2009-07-02 10:17:30 +02:00
req = tevent_req_create ( mem_ctx , & state ,
struct smbd_smb2_getinfo_state ) ;
if ( req = = NULL ) {
return NULL ;
}
state - > smb2req = smb2req ;
2010-04-26 20:11:59 -07:00
state - > status = NT_STATUS_OK ;
2009-07-02 10:17:30 +02:00
state - > out_output_buffer = data_blob_null ;
DEBUG ( 10 , ( " smbd_smb2_getinfo_send: file_id[0x%016llX] \n " ,
( unsigned long long ) in_file_id_volatile ) ) ;
smbreq = smbd_smb2_fake_smb_request ( smb2req ) ;
if ( tevent_req_nomem ( smbreq , req ) ) {
return tevent_req_post ( req , ev ) ;
}
fsp = file_fsp ( smbreq , ( uint16_t ) in_file_id_volatile ) ;
if ( fsp = = NULL ) {
tevent_req_nterror ( req , NT_STATUS_FILE_CLOSED ) ;
return tevent_req_post ( req , ev ) ;
}
if ( conn ! = fsp - > conn ) {
tevent_req_nterror ( req , NT_STATUS_FILE_CLOSED ) ;
return tevent_req_post ( req , ev ) ;
}
if ( smb2req - > session - > vuid ! = fsp - > vuid ) {
tevent_req_nterror ( req , NT_STATUS_FILE_CLOSED ) ;
return tevent_req_post ( req , ev ) ;
}
2009-07-10 20:39:08 +02:00
if ( IS_IPC ( conn ) ) {
2011-01-28 13:07:08 -08:00
smb2_ipc_getinfo ( req , state , ev ,
in_info_type , in_file_info_class ) ;
2009-07-10 20:39:08 +02:00
return tevent_req_post ( req , ev ) ;
}
switch ( in_info_type ) {
case 0x01 : /* SMB2_GETINFO_FILE */
{
uint16_t file_info_level ;
char * data = NULL ;
unsigned int data_size = 0 ;
bool delete_pending = false ;
struct timespec write_time_ts ;
struct file_id fileid ;
struct ea_list * ea_list = NULL ;
int lock_data_count = 0 ;
char * lock_data = NULL ;
ZERO_STRUCT ( write_time_ts ) ;
switch ( in_file_info_class ) {
case 0x0F : /* RAW_FILEINFO_SMB2_ALL_EAS */
file_info_level = 0xFF00 | in_file_info_class ;
break ;
case 0x12 : /* RAW_FILEINFO_SMB2_ALL_INFORMATION */
file_info_level = 0xFF00 | in_file_info_class ;
break ;
default :
/* the levels directly map to the passthru levels */
file_info_level = in_file_info_class + 1000 ;
break ;
}
if ( fsp - > fake_file_handle ) {
/*
* This is actually for the QUOTA_FAKE_FILE - - metze
*/
/* We know this name is ok, it's already passed the checks. */
2011-02-07 20:46:36 -08:00
} else if ( fsp & & fsp - > fh - > fd = = - 1 ) {
2009-07-10 20:39:08 +02:00
/*
* This is actually a QFILEINFO on a directory
* handle ( returned from an NT SMB ) . NT5 .0 seems
* to do this call . JRA .
*/
if ( INFO_LEVEL_IS_UNIX ( file_info_level ) ) {
/* Always do lstat for UNIX calls. */
2009-07-10 14:50:37 -07:00
if ( SMB_VFS_LSTAT ( conn , fsp - > fsp_name ) ) {
2009-07-13 09:23:36 +02:00
DEBUG ( 3 , ( " smbd_smb2_getinfo_send: "
2009-07-10 20:39:08 +02:00
" SMB_VFS_LSTAT of %s failed "
2009-07-10 14:50:37 -07:00
" (%s) \n " , fsp_str_dbg ( fsp ) ,
2009-07-10 20:39:08 +02:00
strerror ( errno ) ) ) ;
status = map_nt_error_from_unix ( errno ) ;
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
2009-07-10 14:50:37 -07:00
} else if ( SMB_VFS_STAT ( conn , fsp - > fsp_name ) ) {
2009-07-13 09:23:36 +02:00
DEBUG ( 3 , ( " smbd_smb2_getinfo_send: "
2009-07-10 20:39:08 +02:00
" SMB_VFS_STAT of %s failed (%s) \n " ,
2009-07-10 14:50:37 -07:00
fsp_str_dbg ( fsp ) ,
2009-07-10 20:39:08 +02:00
strerror ( errno ) ) ) ;
status = map_nt_error_from_unix ( errno ) ;
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
2009-07-10 14:50:37 -07:00
fileid = vfs_file_id_from_sbuf ( conn ,
& fsp - > fsp_name - > st ) ;
2011-01-25 14:23:19 -08:00
get_file_infos ( fileid , fsp - > name_hash ,
& delete_pending , & write_time_ts ) ;
2009-07-10 20:39:08 +02:00
} else {
/*
* Original code - this is an open file .
*/
2009-07-10 14:50:37 -07:00
if ( SMB_VFS_FSTAT ( fsp , & fsp - > fsp_name - > st ) ! = 0 ) {
2009-07-13 09:23:36 +02:00
DEBUG ( 3 , ( " smbd_smb2_getinfo_send: "
" fstat of fnum %d failed (%s) \n " ,
2009-07-10 20:39:08 +02:00
fsp - > fnum , strerror ( errno ) ) ) ;
status = map_nt_error_from_unix ( errno ) ;
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
2009-07-10 14:50:37 -07:00
fileid = vfs_file_id_from_sbuf ( conn ,
& fsp - > fsp_name - > st ) ;
2011-01-25 14:23:19 -08:00
get_file_infos ( fileid , fsp - > name_hash ,
& delete_pending , & write_time_ts ) ;
2009-07-10 20:39:08 +02:00
}
status = smbd_do_qfilepathinfo ( conn , state ,
file_info_level ,
fsp ,
2009-07-10 14:50:37 -07:00
fsp - > fsp_name ,
2009-07-10 20:39:08 +02:00
delete_pending ,
write_time_ts ,
ea_list ,
lock_data_count ,
lock_data ,
STR_UNICODE ,
in_output_buffer_length ,
& data ,
& data_size ) ;
if ( ! NT_STATUS_IS_OK ( status ) ) {
SAFE_FREE ( data ) ;
2009-07-13 09:23:36 +02:00
if ( NT_STATUS_EQUAL ( status , NT_STATUS_INVALID_LEVEL ) ) {
status = NT_STATUS_INVALID_INFO_CLASS ;
}
2009-07-13 12:08:20 +02:00
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
if ( data_size > 0 ) {
state - > out_output_buffer = data_blob_talloc ( state ,
data ,
data_size ) ;
SAFE_FREE ( data ) ;
if ( tevent_req_nomem ( state - > out_output_buffer . data , req ) ) {
return tevent_req_post ( req , ev ) ;
}
}
SAFE_FREE ( data ) ;
break ;
}
case 0x02 : /* SMB2_GETINFO_FS */
{
uint16_t file_info_level ;
char * data = NULL ;
int data_size = 0 ;
/* the levels directly map to the passthru levels */
file_info_level = in_file_info_class + 1000 ;
status = smbd_do_qfsinfo ( conn , state ,
file_info_level ,
STR_UNICODE ,
in_output_buffer_length ,
& data ,
& data_size ) ;
if ( ! NT_STATUS_IS_OK ( status ) ) {
SAFE_FREE ( data ) ;
if ( NT_STATUS_EQUAL ( status , NT_STATUS_INVALID_LEVEL ) ) {
status = NT_STATUS_INVALID_INFO_CLASS ;
}
2009-07-10 20:39:08 +02:00
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
if ( data_size > 0 ) {
state - > out_output_buffer = data_blob_talloc ( state ,
data ,
data_size ) ;
SAFE_FREE ( data ) ;
if ( tevent_req_nomem ( state - > out_output_buffer . data , req ) ) {
return tevent_req_post ( req , ev ) ;
}
}
SAFE_FREE ( data ) ;
break ;
}
2010-04-26 20:11:59 -07:00
case 0x03 : /* SMB2_GETINFO_SEC */
{
uint8_t * p_marshalled_sd = NULL ;
size_t sd_size = 0 ;
status = smbd_do_query_security_desc ( conn ,
state ,
fsp ,
/* Security info wanted. */
in_additional_information ,
in_output_buffer_length ,
& p_marshalled_sd ,
& sd_size ) ;
if ( NT_STATUS_EQUAL ( status , NT_STATUS_BUFFER_TOO_SMALL ) ) {
/* Return needed size. */
state - > out_output_buffer = data_blob_talloc ( state ,
NULL ,
4 ) ;
if ( tevent_req_nomem ( state - > out_output_buffer . data , req ) ) {
return tevent_req_post ( req , ev ) ;
}
SIVAL ( state - > out_output_buffer . data , 0 , ( uint32_t ) sd_size ) ;
state - > status = NT_STATUS_BUFFER_TOO_SMALL ;
break ;
}
if ( ! NT_STATUS_IS_OK ( status ) ) {
DEBUG ( 10 , ( " smbd_smb2_getinfo_send: "
" smbd_do_query_security_desc of %s failed "
" (%s) \n " , fsp_str_dbg ( fsp ) ,
nt_errstr ( status ) ) ) ;
tevent_req_nterror ( req , status ) ;
return tevent_req_post ( req , ev ) ;
}
if ( sd_size > 0 ) {
state - > out_output_buffer = data_blob_talloc ( state ,
p_marshalled_sd ,
sd_size ) ;
if ( tevent_req_nomem ( state - > out_output_buffer . data , req ) ) {
return tevent_req_post ( req , ev ) ;
}
}
break ;
}
2009-07-10 20:39:08 +02:00
default :
2010-04-26 20:11:59 -07:00
DEBUG ( 10 , ( " smbd_smb2_getinfo_send: "
" unknown in_info_type of %u "
" for file %s \n " ,
( unsigned int ) in_info_type ,
fsp_str_dbg ( fsp ) ) ) ;
2009-07-10 20:39:08 +02:00
tevent_req_nterror ( req , NT_STATUS_INVALID_PARAMETER ) ;
return tevent_req_post ( req , ev ) ;
}
tevent_req_done ( req ) ;
2009-07-02 10:17:30 +02:00
return tevent_req_post ( req , ev ) ;
}
static NTSTATUS smbd_smb2_getinfo_recv ( struct tevent_req * req ,
TALLOC_CTX * mem_ctx ,
2010-04-26 20:11:59 -07:00
DATA_BLOB * out_output_buffer ,
NTSTATUS * pstatus )
2009-07-02 10:17:30 +02:00
{
NTSTATUS status ;
struct smbd_smb2_getinfo_state * state = tevent_req_data ( req ,
struct smbd_smb2_getinfo_state ) ;
if ( tevent_req_is_nterror ( req , & status ) ) {
tevent_req_received ( req ) ;
return status ;
}
* out_output_buffer = state - > out_output_buffer ;
talloc_steal ( mem_ctx , out_output_buffer - > data ) ;
2010-04-26 20:11:59 -07:00
* pstatus = state - > status ;
2009-07-02 10:17:30 +02:00
tevent_req_received ( req ) ;
return NT_STATUS_OK ;
}