hdb-mdb.c revision 1.3 1 1.1 christos /* $NetBSD: hdb-mdb.c,v 1.3 2019/12/15 22:50:49 christos Exp $ */
2 1.1 christos
3 1.1 christos /*
4 1.1 christos * Copyright (c) 1997 - 2006 Kungliga Tekniska Hgskolan
5 1.1 christos * (Royal Institute of Technology, Stockholm, Sweden).
6 1.1 christos * Copyright (c) 2011 - Howard Chu, Symas Corp.
7 1.1 christos * All rights reserved.
8 1.1 christos *
9 1.1 christos * Redistribution and use in source and binary forms, with or without
10 1.1 christos * modification, are permitted provided that the following conditions
11 1.1 christos * are met:
12 1.1 christos *
13 1.1 christos * 1. Redistributions of source code must retain the above copyright
14 1.1 christos * notice, this list of conditions and the following disclaimer.
15 1.1 christos *
16 1.1 christos * 2. Redistributions in binary form must reproduce the above copyright
17 1.1 christos * notice, this list of conditions and the following disclaimer in the
18 1.1 christos * documentation and/or other materials provided with the distribution.
19 1.1 christos *
20 1.1 christos * 3. Neither the name of the Institute nor the names of its contributors
21 1.1 christos * may be used to endorse or promote products derived from this software
22 1.1 christos * without specific prior written permission.
23 1.1 christos *
24 1.1 christos * THIS SOFTWARE IS PROVIDED BY THE INSTITUTE AND CONTRIBUTORS ``AS IS'' AND
25 1.1 christos * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
26 1.1 christos * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
27 1.1 christos * ARE DISCLAIMED. IN NO EVENT SHALL THE INSTITUTE OR CONTRIBUTORS BE LIABLE
28 1.1 christos * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
29 1.1 christos * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
30 1.1 christos * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
31 1.1 christos * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
32 1.1 christos * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
33 1.1 christos * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 1.1 christos * SUCH DAMAGE.
35 1.1 christos */
36 1.1 christos
37 1.1 christos #include "hdb_locl.h"
38 1.1 christos
39 1.1 christos #if HAVE_LMDB
40 1.1 christos
41 1.1 christos /* LMDB */
42 1.1 christos
43 1.1 christos #include <lmdb.h>
44 1.1 christos
45 1.1 christos #define KILO 1024
46 1.1 christos
47 1.1 christos typedef struct mdb_info {
48 1.1 christos MDB_env *e;
49 1.1 christos MDB_txn *t;
50 1.1 christos MDB_dbi d;
51 1.1 christos MDB_cursor *c;
52 1.1 christos } mdb_info;
53 1.1 christos
54 1.1 christos static krb5_error_code
55 1.1 christos DB_close(krb5_context context, HDB *db)
56 1.1 christos {
57 1.1 christos mdb_info *mi = (mdb_info *)db->hdb_db;
58 1.1 christos
59 1.1 christos mdb_cursor_close(mi->c);
60 1.1 christos mdb_txn_abort(mi->t);
61 1.1 christos mdb_env_close(mi->e);
62 1.1 christos mi->c = 0;
63 1.1 christos mi->t = 0;
64 1.1 christos mi->e = 0;
65 1.1 christos return 0;
66 1.1 christos }
67 1.1 christos
68 1.1 christos static krb5_error_code
69 1.1 christos DB_destroy(krb5_context context, HDB *db)
70 1.1 christos {
71 1.1 christos krb5_error_code ret;
72 1.1 christos
73 1.1 christos ret = hdb_clear_master_key (context, db);
74 1.1 christos free(db->hdb_name);
75 1.1 christos free(db->hdb_db);
76 1.1 christos free(db);
77 1.1 christos return ret;
78 1.1 christos }
79 1.1 christos
80 1.1 christos static krb5_error_code
81 1.3 christos DB_set_sync(krb5_context context, HDB *db, int on)
82 1.3 christos {
83 1.3 christos mdb_info *mi = (mdb_info *)db->hdb_db;
84 1.3 christos
85 1.3 christos mdb_env_set_flags(mi->e, MDB_NOSYNC, !on);
86 1.3 christos return mdb_env_sync(mi->e, 0);
87 1.3 christos }
88 1.3 christos
89 1.3 christos static krb5_error_code
90 1.1 christos DB_lock(krb5_context context, HDB *db, int operation)
91 1.1 christos {
92 1.1 christos db->lock_count++;
93 1.1 christos return 0;
94 1.1 christos }
95 1.1 christos
96 1.1 christos static krb5_error_code
97 1.1 christos DB_unlock(krb5_context context, HDB *db)
98 1.1 christos {
99 1.1 christos if (db->lock_count > 1) {
100 1.1 christos db->lock_count--;
101 1.1 christos return 0;
102 1.1 christos }
103 1.1 christos heim_assert(db->lock_count == 1, "HDB lock/unlock sequence does not match");
104 1.1 christos db->lock_count--;
105 1.1 christos return 0;
106 1.1 christos }
107 1.1 christos
108 1.1 christos
109 1.1 christos static krb5_error_code
110 1.1 christos DB_seq(krb5_context context, HDB *db,
111 1.1 christos unsigned flags, hdb_entry_ex *entry, int flag)
112 1.1 christos {
113 1.1 christos mdb_info *mi = db->hdb_db;
114 1.1 christos MDB_val key, value;
115 1.1 christos krb5_data key_data, data;
116 1.1 christos int code;
117 1.1 christos
118 1.1 christos key.mv_size = 0;
119 1.1 christos value.mv_size = 0;
120 1.1 christos code = mdb_cursor_get(mi->c, &key, &value, flag);
121 1.1 christos if (code == MDB_NOTFOUND)
122 1.1 christos return HDB_ERR_NOENTRY;
123 1.1 christos if (code)
124 1.1 christos return code;
125 1.1 christos
126 1.1 christos key_data.data = key.mv_data;
127 1.1 christos key_data.length = key.mv_size;
128 1.1 christos data.data = value.mv_data;
129 1.1 christos data.length = value.mv_size;
130 1.1 christos memset(entry, 0, sizeof(*entry));
131 1.1 christos if (hdb_value2entry(context, &data, &entry->entry))
132 1.1 christos return DB_seq(context, db, flags, entry, MDB_NEXT);
133 1.1 christos if (db->hdb_master_key_set && (flags & HDB_F_DECRYPT)) {
134 1.1 christos code = hdb_unseal_keys (context, db, &entry->entry);
135 1.1 christos if (code)
136 1.1 christos hdb_free_entry (context, entry);
137 1.1 christos }
138 1.1 christos if (entry->entry.principal == NULL) {
139 1.1 christos entry->entry.principal = malloc(sizeof(*entry->entry.principal));
140 1.1 christos if (entry->entry.principal == NULL) {
141 1.1 christos hdb_free_entry (context, entry);
142 1.1 christos krb5_set_error_message(context, ENOMEM, "malloc: out of memory");
143 1.1 christos return ENOMEM;
144 1.1 christos } else {
145 1.1 christos hdb_key2principal(context, &key_data, entry->entry.principal);
146 1.1 christos }
147 1.1 christos }
148 1.1 christos return 0;
149 1.1 christos }
150 1.1 christos
151 1.1 christos
152 1.1 christos static krb5_error_code
153 1.1 christos DB_firstkey(krb5_context context, HDB *db, unsigned flags, hdb_entry_ex *entry)
154 1.1 christos {
155 1.1 christos mdb_info *mi = db->hdb_db;
156 1.1 christos int code;
157 1.1 christos
158 1.1 christos /* Always start with a fresh cursor to pick up latest DB state */
159 1.1 christos if (mi->t)
160 1.1 christos mdb_txn_abort(mi->t);
161 1.1 christos
162 1.1 christos code = mdb_txn_begin(mi->e, NULL, MDB_RDONLY, &mi->t);
163 1.1 christos if (code)
164 1.1 christos return code;
165 1.1 christos
166 1.1 christos code = mdb_cursor_open(mi->t, mi->d, &mi->c);
167 1.1 christos if (code)
168 1.1 christos return code;
169 1.1 christos
170 1.1 christos return DB_seq(context, db, flags, entry, MDB_FIRST);
171 1.1 christos }
172 1.1 christos
173 1.1 christos
174 1.1 christos static krb5_error_code
175 1.1 christos DB_nextkey(krb5_context context, HDB *db, unsigned flags, hdb_entry_ex *entry)
176 1.1 christos {
177 1.1 christos return DB_seq(context, db, flags, entry, MDB_NEXT);
178 1.1 christos }
179 1.1 christos
180 1.1 christos static krb5_error_code
181 1.1 christos DB_rename(krb5_context context, HDB *db, const char *new_name)
182 1.1 christos {
183 1.1 christos int ret;
184 1.1 christos char *old, *new;
185 1.1 christos
186 1.1 christos if (strncmp(new_name, "mdb:", sizeof("mdb:") - 1) == 0)
187 1.1 christos new_name += sizeof("mdb:") - 1;
188 1.1 christos else if (strncmp(new_name, "lmdb:", sizeof("lmdb:") - 1) == 0)
189 1.1 christos new_name += sizeof("lmdb:") - 1;
190 1.1 christos if (asprintf(&old, "%s.mdb", db->hdb_name) == -1)
191 1.1 christos return ENOMEM;
192 1.1 christos if (asprintf(&new, "%s.mdb", new_name) == -1) {
193 1.1 christos free(old);
194 1.1 christos return ENOMEM;
195 1.1 christos }
196 1.1 christos ret = rename(old, new);
197 1.1 christos free(old);
198 1.1 christos free(new);
199 1.1 christos if(ret)
200 1.1 christos return errno;
201 1.1 christos
202 1.1 christos free(db->hdb_name);
203 1.1 christos db->hdb_name = strdup(new_name);
204 1.1 christos return 0;
205 1.1 christos }
206 1.1 christos
207 1.1 christos static krb5_error_code
208 1.1 christos DB__get(krb5_context context, HDB *db, krb5_data key, krb5_data *reply)
209 1.1 christos {
210 1.1 christos mdb_info *mi = (mdb_info*)db->hdb_db;
211 1.1 christos MDB_txn *txn;
212 1.1 christos MDB_val k, v;
213 1.1 christos int code;
214 1.1 christos
215 1.1 christos k.mv_data = key.data;
216 1.1 christos k.mv_size = key.length;
217 1.1 christos
218 1.1 christos code = mdb_txn_begin(mi->e, NULL, MDB_RDONLY, &txn);
219 1.1 christos if (code)
220 1.1 christos return code;
221 1.1 christos
222 1.1 christos code = mdb_get(txn, mi->d, &k, &v);
223 1.1 christos if (code == 0)
224 1.1 christos krb5_data_copy(reply, v.mv_data, v.mv_size);
225 1.1 christos mdb_txn_abort(txn);
226 1.1 christos if(code == MDB_NOTFOUND)
227 1.1 christos return HDB_ERR_NOENTRY;
228 1.1 christos return code;
229 1.1 christos }
230 1.1 christos
231 1.1 christos static krb5_error_code
232 1.1 christos DB__put(krb5_context context, HDB *db, int replace,
233 1.1 christos krb5_data key, krb5_data value)
234 1.1 christos {
235 1.1 christos mdb_info *mi = (mdb_info*)db->hdb_db;
236 1.1 christos MDB_txn *txn;
237 1.1 christos MDB_val k, v;
238 1.1 christos int code;
239 1.1 christos
240 1.1 christos k.mv_data = key.data;
241 1.1 christos k.mv_size = key.length;
242 1.1 christos v.mv_data = value.data;
243 1.1 christos v.mv_size = value.length;
244 1.1 christos
245 1.1 christos code = mdb_txn_begin(mi->e, NULL, 0, &txn);
246 1.1 christos if (code)
247 1.1 christos return code;
248 1.1 christos
249 1.1 christos code = mdb_put(txn, mi->d, &k, &v, replace ? 0 : MDB_NOOVERWRITE);
250 1.1 christos if (code)
251 1.1 christos mdb_txn_abort(txn);
252 1.1 christos else
253 1.1 christos code = mdb_txn_commit(txn);
254 1.3 christos /*
255 1.3 christos * No need to call mdb_env_sync(); it's done automatically if MDB_NOSYNC is
256 1.3 christos * not set.
257 1.3 christos */
258 1.1 christos if(code == MDB_KEYEXIST)
259 1.1 christos return HDB_ERR_EXISTS;
260 1.1 christos return code;
261 1.1 christos }
262 1.1 christos
263 1.1 christos static krb5_error_code
264 1.1 christos DB__del(krb5_context context, HDB *db, krb5_data key)
265 1.1 christos {
266 1.1 christos mdb_info *mi = (mdb_info*)db->hdb_db;
267 1.1 christos MDB_txn *txn;
268 1.1 christos MDB_val k;
269 1.1 christos krb5_error_code code;
270 1.1 christos
271 1.1 christos k.mv_data = key.data;
272 1.1 christos k.mv_size = key.length;
273 1.1 christos
274 1.1 christos code = mdb_txn_begin(mi->e, NULL, 0, &txn);
275 1.1 christos if (code)
276 1.1 christos return code;
277 1.1 christos
278 1.1 christos code = mdb_del(txn, mi->d, &k, NULL);
279 1.1 christos if (code)
280 1.1 christos mdb_txn_abort(txn);
281 1.1 christos else
282 1.1 christos code = mdb_txn_commit(txn);
283 1.3 christos /*
284 1.3 christos * No need to call mdb_env_sync(); it's done automatically if MDB_NOSYNC is
285 1.3 christos * not set.
286 1.3 christos */
287 1.1 christos if(code == MDB_NOTFOUND)
288 1.1 christos return HDB_ERR_NOENTRY;
289 1.1 christos return code;
290 1.1 christos }
291 1.1 christos
292 1.1 christos static krb5_error_code
293 1.1 christos DB_open(krb5_context context, HDB *db, int flags, mode_t mode)
294 1.1 christos {
295 1.1 christos mdb_info *mi = (mdb_info *)db->hdb_db;
296 1.1 christos MDB_txn *txn;
297 1.1 christos char *fn;
298 1.1 christos krb5_error_code ret;
299 1.1 christos int myflags = MDB_NOSUBDIR, tmp;
300 1.1 christos
301 1.1 christos if((flags & O_ACCMODE) == O_RDONLY)
302 1.1 christos myflags |= MDB_RDONLY;
303 1.1 christos
304 1.1 christos if (asprintf(&fn, "%s.mdb", db->hdb_name) == -1)
305 1.1 christos return krb5_enomem(context);
306 1.1 christos if (mdb_env_create(&mi->e)) {
307 1.1 christos free(fn);
308 1.1 christos return krb5_enomem(context);
309 1.1 christos }
310 1.1 christos
311 1.1 christos tmp = krb5_config_get_int_default(context, NULL, 0, "kdc",
312 1.1 christos "hdb-mdb-maxreaders", NULL);
313 1.1 christos if (tmp) {
314 1.1 christos ret = mdb_env_set_maxreaders(mi->e, tmp);
315 1.1 christos if (ret) {
316 1.1 christos free(fn);
317 1.1 christos krb5_set_error_message(context, ret, "setting maxreaders on %s: %s",
318 1.1 christos db->hdb_name, mdb_strerror(ret));
319 1.1 christos return ret;
320 1.1 christos }
321 1.1 christos }
322 1.1 christos
323 1.1 christos tmp = krb5_config_get_int_default(context, NULL, 0, "kdc",
324 1.1 christos "hdb-mdb-mapsize", NULL);
325 1.1 christos if (tmp) {
326 1.1 christos size_t maps = tmp;
327 1.1 christos maps *= KILO;
328 1.1 christos ret = mdb_env_set_mapsize(mi->e, maps);
329 1.1 christos if (ret) {
330 1.1 christos free(fn);
331 1.1 christos krb5_set_error_message(context, ret, "setting mapsize on %s: %s",
332 1.1 christos db->hdb_name, mdb_strerror(ret));
333 1.1 christos return ret;
334 1.1 christos }
335 1.1 christos }
336 1.1 christos
337 1.1 christos ret = mdb_env_open(mi->e, fn, myflags, mode);
338 1.1 christos free(fn);
339 1.1 christos if (ret) {
340 1.1 christos fail:
341 1.1 christos mdb_env_close(mi->e);
342 1.1 christos mi->e = 0;
343 1.1 christos krb5_set_error_message(context, ret, "opening %s: %s",
344 1.1 christos db->hdb_name, mdb_strerror(ret));
345 1.1 christos return ret;
346 1.1 christos }
347 1.1 christos
348 1.1 christos ret = mdb_txn_begin(mi->e, NULL, MDB_RDONLY, &txn);
349 1.1 christos if (ret)
350 1.1 christos goto fail;
351 1.1 christos
352 1.1 christos ret = mdb_open(txn, NULL, 0, &mi->d);
353 1.1 christos mdb_txn_abort(txn);
354 1.1 christos if (ret)
355 1.1 christos goto fail;
356 1.1 christos
357 1.1 christos if((flags & O_ACCMODE) == O_RDONLY)
358 1.1 christos ret = hdb_check_db_format(context, db);
359 1.1 christos else
360 1.1 christos ret = hdb_init_db(context, db);
361 1.1 christos if(ret == HDB_ERR_NOENTRY)
362 1.1 christos return 0;
363 1.1 christos if (ret) {
364 1.1 christos DB_close(context, db);
365 1.1 christos krb5_set_error_message(context, ret, "hdb_open: failed %s database %s",
366 1.1 christos (flags & O_ACCMODE) == O_RDONLY ?
367 1.1 christos "checking format of" : "initialize",
368 1.1 christos db->hdb_name);
369 1.1 christos }
370 1.1 christos
371 1.1 christos return ret;
372 1.1 christos }
373 1.1 christos
374 1.1 christos krb5_error_code
375 1.1 christos hdb_mdb_create(krb5_context context, HDB **db,
376 1.1 christos const char *filename)
377 1.1 christos {
378 1.1 christos *db = calloc(1, sizeof(**db));
379 1.1 christos if (*db == NULL) {
380 1.1 christos krb5_set_error_message(context, ENOMEM, "malloc: out of memory");
381 1.1 christos return ENOMEM;
382 1.1 christos }
383 1.1 christos
384 1.1 christos (*db)->hdb_db = calloc(1, sizeof(mdb_info));
385 1.1 christos if ((*db)->hdb_db == NULL) {
386 1.1 christos free(*db);
387 1.1 christos *db = NULL;
388 1.1 christos krb5_set_error_message(context, ENOMEM, "malloc: out of memory");
389 1.1 christos return ENOMEM;
390 1.1 christos }
391 1.1 christos (*db)->hdb_name = strdup(filename);
392 1.1 christos if ((*db)->hdb_name == NULL) {
393 1.1 christos free((*db)->hdb_db);
394 1.1 christos free(*db);
395 1.1 christos *db = NULL;
396 1.1 christos krb5_set_error_message(context, ENOMEM, "malloc: out of memory");
397 1.1 christos return ENOMEM;
398 1.1 christos }
399 1.1 christos (*db)->hdb_master_key_set = 0;
400 1.1 christos (*db)->hdb_openp = 0;
401 1.1 christos (*db)->hdb_capability_flags = HDB_CAP_F_HANDLE_ENTERPRISE_PRINCIPAL;
402 1.1 christos (*db)->hdb_open = DB_open;
403 1.1 christos (*db)->hdb_close = DB_close;
404 1.1 christos (*db)->hdb_fetch_kvno = _hdb_fetch_kvno;
405 1.1 christos (*db)->hdb_store = _hdb_store;
406 1.1 christos (*db)->hdb_remove = _hdb_remove;
407 1.1 christos (*db)->hdb_firstkey = DB_firstkey;
408 1.1 christos (*db)->hdb_nextkey= DB_nextkey;
409 1.1 christos (*db)->hdb_lock = DB_lock;
410 1.1 christos (*db)->hdb_unlock = DB_unlock;
411 1.1 christos (*db)->hdb_rename = DB_rename;
412 1.1 christos (*db)->hdb__get = DB__get;
413 1.1 christos (*db)->hdb__put = DB__put;
414 1.1 christos (*db)->hdb__del = DB__del;
415 1.1 christos (*db)->hdb_destroy = DB_destroy;
416 1.3 christos (*db)->hdb_set_sync = DB_set_sync;
417 1.1 christos return 0;
418 1.1 christos }
419 1.1 christos #endif /* HAVE_LMDB */
420