Home | History | Annotate | Line # | Download | only in back-mdb
delete.c revision 1.4
      1 /*	$NetBSD: delete.c,v 1.4 2025/09/05 21:16:27 christos Exp $	*/
      2 
      3 /* delete.c - mdb backend delete routine */
      4 /* $OpenLDAP$ */
      5 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
      6  *
      7  * Copyright 2000-2024 The OpenLDAP Foundation.
      8  * All rights reserved.
      9  *
     10  * Redistribution and use in source and binary forms, with or without
     11  * modification, are permitted only as authorized by the OpenLDAP
     12  * Public License.
     13  *
     14  * A copy of this license is available in the file LICENSE in the
     15  * top-level directory of the distribution or, alternatively, at
     16  * <http://www.OpenLDAP.org/license.html>.
     17  */
     18 
     19 #include <sys/cdefs.h>
     20 __RCSID("$NetBSD: delete.c,v 1.4 2025/09/05 21:16:27 christos Exp $");
     21 
     22 #include "portable.h"
     23 
     24 #include <stdio.h>
     25 #include <ac/string.h>
     26 
     27 #include "lutil.h"
     28 #include "back-mdb.h"
     29 
     30 int
     31 mdb_delete( Operation *op, SlapReply *rs )
     32 {
     33 	struct mdb_info *mdb = (struct mdb_info *) op->o_bd->be_private;
     34 	struct berval	pdn = {0, NULL};
     35 	Entry	*e = NULL;
     36 	Entry	*p = NULL;
     37 	int		manageDSAit = get_manageDSAit( op );
     38 	AttributeDescription *children = slap_schema.si_ad_children;
     39 	AttributeDescription *entry = slap_schema.si_ad_entry;
     40 	MDB_txn		*txn = NULL;
     41 	MDB_cursor	*mc;
     42 	mdb_op_info opinfo = {{{ 0 }}}, *moi = &opinfo;
     43 
     44 	LDAPControl **preread_ctrl = NULL;
     45 	LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
     46 	int num_ctrls = 0;
     47 
     48 	int	parent_is_glue = 0;
     49 	int parent_is_leaf = 0;
     50 
     51 	Debug( LDAP_DEBUG_ARGS, "==> " LDAP_XSTRING(mdb_delete) ": %s\n",
     52 		op->o_req_dn.bv_val );
     53 
     54 	ctrls[num_ctrls] = 0;
     55 
     56 	/* begin transaction */
     57 	rs->sr_err = mdb_opinfo_get( op, mdb, 0, &moi );
     58 	rs->sr_text = NULL;
     59 	if( rs->sr_err != 0 ) {
     60 		Debug( LDAP_DEBUG_TRACE,
     61 			LDAP_XSTRING(mdb_delete) ": txn_begin failed: "
     62 			"%s (%d)\n", mdb_strerror(rs->sr_err), rs->sr_err );
     63 		rs->sr_err = LDAP_OTHER;
     64 		rs->sr_text = "internal error";
     65 		goto return_results;
     66 	}
     67 	txn = moi->moi_txn;
     68 
     69 	/* allocate CSN */
     70 	if ( BER_BVISNULL( &op->o_csn ) ) {
     71 		struct berval csn;
     72 		char csnbuf[LDAP_PVT_CSNSTR_BUFSIZE];
     73 
     74 		csn.bv_val = csnbuf;
     75 		csn.bv_len = sizeof(csnbuf);
     76 		slap_get_csn( op, &csn, 1 );
     77 	}
     78 
     79 	rs->sr_err = mdb_cursor_open( txn, mdb->mi_dn2id, &mc );
     80 	if ( rs->sr_err ) {
     81 		rs->sr_err = LDAP_OTHER;
     82 		rs->sr_text = "internal error";
     83 		goto return_results;
     84 	}
     85 
     86 	if ( !be_issuffix( op->o_bd, &op->o_req_ndn ) ) {
     87 		dnParent( &op->o_req_ndn, &pdn );
     88 
     89 		/* get parent */
     90 		rs->sr_err = mdb_dn2entry( op, txn, mc, &pdn, &p, NULL, 1 );
     91 		switch( rs->sr_err ) {
     92 		case 0:
     93 		case MDB_NOTFOUND:
     94 			break;
     95 		case LDAP_BUSY:
     96 			rs->sr_text = "ldap server busy";
     97 			goto return_results;
     98 		default:
     99 			rs->sr_err = LDAP_OTHER;
    100 			rs->sr_text = "internal error";
    101 			goto return_results;
    102 		}
    103 		if ( rs->sr_err == MDB_NOTFOUND ) {
    104 			Debug( LDAP_DEBUG_ARGS,
    105 				"<=- " LDAP_XSTRING(mdb_delete) ": no such object %s\n",
    106 				op->o_req_dn.bv_val );
    107 
    108 			if ( p && !BER_BVISEMPTY( &p->e_name )) {
    109 				rs->sr_matched = ch_strdup( p->e_name.bv_val );
    110 				if ( is_entry_referral( p )) {
    111 					BerVarray ref = get_entry_referrals( op, p );
    112 					rs->sr_ref = referral_rewrite( ref, &p->e_name,
    113 						&op->o_req_dn, LDAP_SCOPE_DEFAULT );
    114 					ber_bvarray_free( ref );
    115 				} else {
    116 					rs->sr_ref = NULL;
    117 				}
    118 			} else {
    119 				rs->sr_ref = referral_rewrite( default_referral, NULL,
    120 						&op->o_req_dn, LDAP_SCOPE_DEFAULT );
    121 			}
    122 			if ( p ) {
    123 				mdb_entry_return( op, p );
    124 				p = NULL;
    125 			}
    126 
    127 			rs->sr_err = LDAP_REFERRAL;
    128 			rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
    129 			goto return_results;
    130 		}
    131 	}
    132 
    133 	/* get entry */
    134 	rs->sr_err = mdb_dn2entry( op, txn, mc, &op->o_req_ndn, &e, NULL, 0 );
    135 	switch( rs->sr_err ) {
    136 	case MDB_NOTFOUND:
    137 		e = p;
    138 		p = NULL;
    139 	case 0:
    140 		break;
    141 	case LDAP_BUSY:
    142 		rs->sr_text = "ldap server busy";
    143 		goto return_results;
    144 	default:
    145 		rs->sr_err = LDAP_OTHER;
    146 		rs->sr_text = "internal error";
    147 		goto return_results;
    148 	}
    149 
    150 	/* FIXME : dn2entry() should return non-glue entry */
    151 	if ( rs->sr_err == MDB_NOTFOUND || ( !manageDSAit && is_entry_glue( e ))) {
    152 		Debug( LDAP_DEBUG_ARGS,
    153 			"<=- " LDAP_XSTRING(mdb_delete) ": no such object %s\n",
    154 			op->o_req_dn.bv_val );
    155 
    156 		rs->sr_ref = NULL;
    157 		if ( e ) {
    158 			rs->sr_matched = ch_strdup( e->e_dn );
    159 			if ( is_entry_referral( e )) {
    160 				BerVarray ref = get_entry_referrals( op, e );
    161 				rs->sr_ref = referral_rewrite( ref, &e->e_name,
    162 					&op->o_req_dn, LDAP_SCOPE_DEFAULT );
    163 				ber_bvarray_free( ref );
    164 			}
    165 			mdb_entry_return( op, e );
    166 			e = NULL;
    167 		}
    168 
    169 		rs->sr_err = LDAP_REFERRAL;
    170 		rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
    171 		goto return_results;
    172 	}
    173 
    174 	if ( pdn.bv_len != 0 ) {
    175 		/* check parent for "children" acl */
    176 		rs->sr_err = access_allowed( op, p,
    177 			children, NULL, ACL_WDEL, NULL );
    178 
    179 		if ( !rs->sr_err  ) {
    180 			Debug( LDAP_DEBUG_TRACE,
    181 				"<=- " LDAP_XSTRING(mdb_delete) ": no write "
    182 				"access to parent\n" );
    183 			rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
    184 			rs->sr_text = "no write access to parent";
    185 			goto return_results;
    186 		}
    187 
    188 	} else {
    189 		/* no parent, must be root to delete */
    190 		if( ! be_isroot( op ) ) {
    191 			if ( be_issuffix( op->o_bd, (struct berval *)&slap_empty_bv )
    192 				|| be_shadow_update( op ) ) {
    193 				p = (Entry *)&slap_entry_root;
    194 
    195 				/* check parent for "children" acl */
    196 				rs->sr_err = access_allowed( op, p,
    197 					children, NULL, ACL_WDEL, NULL );
    198 
    199 				p = NULL;
    200 
    201 				if ( !rs->sr_err  ) {
    202 					Debug( LDAP_DEBUG_TRACE,
    203 						"<=- " LDAP_XSTRING(mdb_delete)
    204 						": no access to parent\n" );
    205 					rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
    206 					rs->sr_text = "no write access to parent";
    207 					goto return_results;
    208 				}
    209 
    210 			} else {
    211 				Debug( LDAP_DEBUG_TRACE,
    212 					"<=- " LDAP_XSTRING(mdb_delete)
    213 					": no parent and not root\n" );
    214 				rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
    215 				goto return_results;
    216 			}
    217 		}
    218 	}
    219 
    220 	if ( get_assert( op ) &&
    221 		( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
    222 	{
    223 		rs->sr_err = LDAP_ASSERTION_FAILED;
    224 		goto return_results;
    225 	}
    226 
    227 	rs->sr_err = access_allowed( op, e,
    228 		entry, NULL, ACL_WDEL, NULL );
    229 
    230 	if ( !rs->sr_err  ) {
    231 		Debug( LDAP_DEBUG_TRACE,
    232 			"<=- " LDAP_XSTRING(mdb_delete) ": no write access "
    233 			"to entry\n" );
    234 		rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
    235 		rs->sr_text = "no write access to entry";
    236 		goto return_results;
    237 	}
    238 
    239 	if ( !manageDSAit && is_entry_referral( e ) ) {
    240 		/* entry is a referral, don't allow delete */
    241 		rs->sr_ref = get_entry_referrals( op, e );
    242 
    243 		Debug( LDAP_DEBUG_TRACE,
    244 			LDAP_XSTRING(mdb_delete) ": entry is referral\n" );
    245 
    246 		rs->sr_err = LDAP_REFERRAL;
    247 		rs->sr_matched = ch_strdup( e->e_name.bv_val );
    248 		rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
    249 		goto return_results;
    250 	}
    251 
    252 	/* pre-read */
    253 	if( op->o_preread ) {
    254 		if( preread_ctrl == NULL ) {
    255 			preread_ctrl = &ctrls[num_ctrls++];
    256 			ctrls[num_ctrls] = NULL;
    257 		}
    258 		if( slap_read_controls( op, rs, e,
    259 			&slap_pre_read_bv, preread_ctrl ) )
    260 		{
    261 			Debug( LDAP_DEBUG_TRACE,
    262 				"<=- " LDAP_XSTRING(mdb_delete) ": pre-read "
    263 				"failed!\n" );
    264 			if ( op->o_preread & SLAP_CONTROL_CRITICAL ) {
    265 				/* FIXME: is it correct to abort
    266 				 * operation if control fails? */
    267 				goto return_results;
    268 			}
    269 		}
    270 	}
    271 
    272 	rs->sr_text = NULL;
    273 
    274 	/* Can't do it if we have kids */
    275 	rs->sr_err = mdb_dn2id_children( op, txn, e );
    276 	if( rs->sr_err != MDB_NOTFOUND ) {
    277 		switch( rs->sr_err ) {
    278 		case 0:
    279 			Debug(LDAP_DEBUG_ARGS,
    280 				"<=- " LDAP_XSTRING(mdb_delete)
    281 				": non-leaf %s\n",
    282 				op->o_req_dn.bv_val );
    283 			rs->sr_err = LDAP_NOT_ALLOWED_ON_NONLEAF;
    284 			rs->sr_text = "subordinate objects must be deleted first";
    285 			break;
    286 		default:
    287 			Debug(LDAP_DEBUG_ARGS,
    288 				"<=- " LDAP_XSTRING(mdb_delete)
    289 				": has_children failed: %s (%d)\n",
    290 				mdb_strerror(rs->sr_err), rs->sr_err );
    291 			rs->sr_err = LDAP_OTHER;
    292 			rs->sr_text = "internal error";
    293 		}
    294 		goto return_results;
    295 	}
    296 
    297 	/* delete from dn2id */
    298 	rs->sr_err = mdb_dn2id_delete( op, mc, e->e_id, 1 );
    299 	mdb_cursor_close( mc );
    300 	if ( rs->sr_err != 0 ) {
    301 		Debug(LDAP_DEBUG_TRACE,
    302 			"<=- " LDAP_XSTRING(mdb_delete) ": dn2id failed: "
    303 			"%s (%d)\n", mdb_strerror(rs->sr_err), rs->sr_err );
    304 		rs->sr_text = "DN index delete failed";
    305 		rs->sr_err = LDAP_OTHER;
    306 		goto return_results;
    307 	}
    308 
    309 	/* delete indices for old attributes */
    310 	rs->sr_err = mdb_index_entry_del( op, txn, e );
    311 	if ( rs->sr_err != LDAP_SUCCESS ) {
    312 		Debug(LDAP_DEBUG_TRACE,
    313 			"<=- " LDAP_XSTRING(mdb_delete) ": index failed: "
    314 			"%s (%d)\n", mdb_strerror(rs->sr_err), rs->sr_err );
    315 		rs->sr_text = "entry index delete failed";
    316 		rs->sr_err = LDAP_OTHER;
    317 		goto return_results;
    318 	}
    319 
    320 	/* fixup delete CSN */
    321 	if ( !SLAP_SHADOW( op->o_bd )) {
    322 		struct berval vals[2];
    323 
    324 		assert( !BER_BVISNULL( &op->o_csn ) );
    325 		vals[0] = op->o_csn;
    326 		BER_BVZERO( &vals[1] );
    327 		rs->sr_err = mdb_index_values( op, txn, slap_schema.si_ad_entryCSN,
    328 			vals, 0, SLAP_INDEX_ADD_OP );
    329 		if ( rs->sr_err != LDAP_SUCCESS ) {
    330 			rs->sr_text = "entryCSN index update failed";
    331 			rs->sr_err = LDAP_OTHER;
    332 			goto return_results;
    333 		}
    334 	}
    335 
    336 	/* delete from id2entry */
    337 	rs->sr_err = mdb_id2entry_delete( op->o_bd, txn, e );
    338 	if ( rs->sr_err != 0 ) {
    339 		Debug( LDAP_DEBUG_TRACE,
    340 			"<=- " LDAP_XSTRING(mdb_delete) ": id2entry failed: "
    341 			"%s (%d)\n", mdb_strerror(rs->sr_err), rs->sr_err );
    342 		rs->sr_text = "entry delete failed";
    343 		rs->sr_err = LDAP_OTHER;
    344 		goto return_results;
    345 	}
    346 
    347 	if ( pdn.bv_len != 0 ) {
    348 		parent_is_glue = is_entry_glue(p);
    349 		rs->sr_err = mdb_dn2id_children( op, txn, p );
    350 		if ( rs->sr_err != MDB_NOTFOUND ) {
    351 			switch( rs->sr_err ) {
    352 			case 0:
    353 				break;
    354 			default:
    355 				Debug(LDAP_DEBUG_ARGS,
    356 					"<=- " LDAP_XSTRING(mdb_delete)
    357 					": has_children failed: %s (%d)\n",
    358 					mdb_strerror(rs->sr_err), rs->sr_err );
    359 				rs->sr_err = LDAP_OTHER;
    360 				rs->sr_text = "internal error";
    361 				goto return_results;
    362 			}
    363 			parent_is_leaf = 1;
    364 		}
    365 		mdb_entry_return( op, p );
    366 		p = NULL;
    367 	}
    368 
    369 	if( moi == &opinfo ) {
    370 		LDAP_SLIST_REMOVE( &op->o_extra, &opinfo.moi_oe, OpExtra, oe_next );
    371 		opinfo.moi_oe.oe_key = NULL;
    372 		if( op->o_noop ) {
    373 			mdb_txn_abort( txn );
    374 			rs->sr_err = LDAP_X_NO_OPERATION;
    375 			txn = NULL;
    376 			goto return_results;
    377 		} else {
    378 			rs->sr_err = mdb_txn_commit( txn );
    379 		}
    380 		txn = NULL;
    381 	}
    382 
    383 	if( rs->sr_err != 0 ) {
    384 		Debug( LDAP_DEBUG_ANY,
    385 			LDAP_XSTRING(mdb_delete) ": txn_%s failed: %s (%d)\n",
    386 			op->o_noop ? "abort (no-op)" : "commit",
    387 			mdb_strerror(rs->sr_err), rs->sr_err );
    388 		rs->sr_err = LDAP_OTHER;
    389 		rs->sr_text = "commit failed";
    390 
    391 		goto return_results;
    392 	}
    393 
    394 	Debug( LDAP_DEBUG_TRACE,
    395 		LDAP_XSTRING(mdb_delete) ": deleted%s id=%08lx dn=\"%s\"\n",
    396 		op->o_noop ? " (no-op)" : "",
    397 		e->e_id, op->o_req_dn.bv_val );
    398 	rs->sr_err = LDAP_SUCCESS;
    399 	rs->sr_text = NULL;
    400 	if( num_ctrls ) rs->sr_ctrls = ctrls;
    401 
    402 return_results:
    403 	if ( rs->sr_err == LDAP_SUCCESS && parent_is_glue && parent_is_leaf ) {
    404 		op->o_delete_glue_parent = 1;
    405 	}
    406 
    407 	if ( p != NULL ) {
    408 		mdb_entry_return( op, p );
    409 	}
    410 
    411 	/* free entry */
    412 	if( e != NULL ) {
    413 		mdb_entry_return( op, e );
    414 	}
    415 
    416 	if( moi == &opinfo ) {
    417 		if( txn != NULL ) {
    418 			mdb_txn_abort( txn );
    419 		}
    420 		if ( opinfo.moi_oe.oe_key ) {
    421 			LDAP_SLIST_REMOVE( &op->o_extra, &opinfo.moi_oe, OpExtra, oe_next );
    422 		}
    423 	} else {
    424 		moi->moi_ref--;
    425 	}
    426 
    427 	send_ldap_result( op, rs );
    428 	slap_graduate_commit_csn( op );
    429 
    430 	if( preread_ctrl != NULL && (*preread_ctrl) != NULL ) {
    431 		slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
    432 		slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
    433 	}
    434 
    435 #if 0
    436 	if( rs->sr_err == LDAP_SUCCESS && mdb->bi_txn_cp_kbyte ) {
    437 		TXN_CHECKPOINT( mdb->bi_dbenv,
    438 			mdb->bi_txn_cp_kbyte, mdb->bi_txn_cp_min, 0 );
    439 	}
    440 #endif
    441 	return rs->sr_err;
    442 }
    443