Home | History | Annotate | Line # | Download | only in dns
diff.c revision 1.9
      1  1.8  christos /*	$NetBSD: diff.c,v 1.9 2024/02/21 22:52:06 christos Exp $	*/
      2  1.1  christos 
      3  1.1  christos /*
      4  1.1  christos  * Copyright (C) Internet Systems Consortium, Inc. ("ISC")
      5  1.1  christos  *
      6  1.7  christos  * SPDX-License-Identifier: MPL-2.0
      7  1.7  christos  *
      8  1.1  christos  * This Source Code Form is subject to the terms of the Mozilla Public
      9  1.1  christos  * License, v. 2.0. If a copy of the MPL was not distributed with this
     10  1.5  christos  * file, you can obtain one at https://mozilla.org/MPL/2.0/.
     11  1.1  christos  *
     12  1.1  christos  * See the COPYRIGHT file distributed with this work for additional
     13  1.1  christos  * information regarding copyright ownership.
     14  1.1  christos  */
     15  1.1  christos 
     16  1.1  christos /*! \file */
     17  1.1  christos 
     18  1.3  christos #include <inttypes.h>
     19  1.3  christos #include <stdbool.h>
     20  1.1  christos #include <stdlib.h>
     21  1.1  christos 
     22  1.1  christos #include <isc/buffer.h>
     23  1.1  christos #include <isc/file.h>
     24  1.1  christos #include <isc/mem.h>
     25  1.1  christos #include <isc/print.h>
     26  1.9  christos #include <isc/result.h>
     27  1.1  christos #include <isc/string.h>
     28  1.1  christos #include <isc/util.h>
     29  1.1  christos 
     30  1.1  christos #include <dns/db.h>
     31  1.1  christos #include <dns/diff.h>
     32  1.1  christos #include <dns/log.h>
     33  1.1  christos #include <dns/rdataclass.h>
     34  1.1  christos #include <dns/rdatalist.h>
     35  1.1  christos #include <dns/rdataset.h>
     36  1.1  christos #include <dns/rdatastruct.h>
     37  1.1  christos #include <dns/rdatatype.h>
     38  1.1  christos #include <dns/time.h>
     39  1.1  christos 
     40  1.4  christos #define CHECK(op)                            \
     41  1.4  christos 	do {                                 \
     42  1.4  christos 		result = (op);               \
     43  1.4  christos 		if (result != ISC_R_SUCCESS) \
     44  1.4  christos 			goto failure;        \
     45  1.6    rillig 	} while (0)
     46  1.1  christos 
     47  1.1  christos #define DIFF_COMMON_LOGARGS \
     48  1.1  christos 	dns_lctx, DNS_LOGCATEGORY_GENERAL, DNS_LOGMODULE_DIFF
     49  1.1  christos 
     50  1.1  christos static dns_rdatatype_t
     51  1.1  christos rdata_covers(dns_rdata_t *rdata) {
     52  1.4  christos 	return (rdata->type == dns_rdatatype_rrsig ? dns_rdata_covers(rdata)
     53  1.4  christos 						   : 0);
     54  1.1  christos }
     55  1.1  christos 
     56  1.1  christos isc_result_t
     57  1.4  christos dns_difftuple_create(isc_mem_t *mctx, dns_diffop_t op, const dns_name_t *name,
     58  1.4  christos 		     dns_ttl_t ttl, dns_rdata_t *rdata, dns_difftuple_t **tp) {
     59  1.1  christos 	dns_difftuple_t *t;
     60  1.1  christos 	unsigned int size;
     61  1.1  christos 	unsigned char *datap;
     62  1.1  christos 
     63  1.1  christos 	REQUIRE(tp != NULL && *tp == NULL);
     64  1.1  christos 
     65  1.1  christos 	/*
     66  1.1  christos 	 * Create a new tuple.  The variable-size wire-format name data and
     67  1.1  christos 	 * rdata immediately follow the dns_difftuple_t structure
     68  1.1  christos 	 * in memory.
     69  1.1  christos 	 */
     70  1.1  christos 	size = sizeof(*t) + name->length + rdata->length;
     71  1.1  christos 	t = isc_mem_allocate(mctx, size);
     72  1.1  christos 	t->mctx = NULL;
     73  1.1  christos 	isc_mem_attach(mctx, &t->mctx);
     74  1.1  christos 	t->op = op;
     75  1.1  christos 
     76  1.1  christos 	datap = (unsigned char *)(t + 1);
     77  1.1  christos 
     78  1.1  christos 	memmove(datap, name->ndata, name->length);
     79  1.1  christos 	dns_name_init(&t->name, NULL);
     80  1.1  christos 	dns_name_clone(name, &t->name);
     81  1.1  christos 	t->name.ndata = datap;
     82  1.1  christos 	datap += name->length;
     83  1.1  christos 
     84  1.1  christos 	t->ttl = ttl;
     85  1.1  christos 
     86  1.1  christos 	dns_rdata_init(&t->rdata);
     87  1.1  christos 	dns_rdata_clone(rdata, &t->rdata);
     88  1.1  christos 	if (rdata->data != NULL) {
     89  1.1  christos 		memmove(datap, rdata->data, rdata->length);
     90  1.1  christos 		t->rdata.data = datap;
     91  1.1  christos 		datap += rdata->length;
     92  1.1  christos 	} else {
     93  1.1  christos 		t->rdata.data = NULL;
     94  1.1  christos 		INSIST(rdata->length == 0);
     95  1.1  christos 	}
     96  1.1  christos 
     97  1.1  christos 	ISC_LINK_INIT(&t->rdata, link);
     98  1.1  christos 	ISC_LINK_INIT(t, link);
     99  1.1  christos 	t->magic = DNS_DIFFTUPLE_MAGIC;
    100  1.1  christos 
    101  1.1  christos 	INSIST(datap == (unsigned char *)t + size);
    102  1.1  christos 
    103  1.1  christos 	*tp = t;
    104  1.1  christos 	return (ISC_R_SUCCESS);
    105  1.1  christos }
    106  1.1  christos 
    107  1.1  christos void
    108  1.1  christos dns_difftuple_free(dns_difftuple_t **tp) {
    109  1.1  christos 	dns_difftuple_t *t = *tp;
    110  1.4  christos 	*tp = NULL;
    111  1.1  christos 	isc_mem_t *mctx;
    112  1.1  christos 
    113  1.1  christos 	REQUIRE(DNS_DIFFTUPLE_VALID(t));
    114  1.1  christos 
    115  1.1  christos 	dns_name_invalidate(&t->name);
    116  1.1  christos 	t->magic = 0;
    117  1.1  christos 	mctx = t->mctx;
    118  1.1  christos 	isc_mem_free(mctx, t);
    119  1.1  christos 	isc_mem_detach(&mctx);
    120  1.1  christos }
    121  1.1  christos 
    122  1.1  christos isc_result_t
    123  1.1  christos dns_difftuple_copy(dns_difftuple_t *orig, dns_difftuple_t **copyp) {
    124  1.1  christos 	return (dns_difftuple_create(orig->mctx, orig->op, &orig->name,
    125  1.1  christos 				     orig->ttl, &orig->rdata, copyp));
    126  1.1  christos }
    127  1.1  christos 
    128  1.1  christos void
    129  1.1  christos dns_diff_init(isc_mem_t *mctx, dns_diff_t *diff) {
    130  1.1  christos 	diff->mctx = mctx;
    131  1.1  christos 	ISC_LIST_INIT(diff->tuples);
    132  1.1  christos 	diff->magic = DNS_DIFF_MAGIC;
    133  1.1  christos }
    134  1.1  christos 
    135  1.1  christos void
    136  1.1  christos dns_diff_clear(dns_diff_t *diff) {
    137  1.1  christos 	dns_difftuple_t *t;
    138  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    139  1.1  christos 	while ((t = ISC_LIST_HEAD(diff->tuples)) != NULL) {
    140  1.1  christos 		ISC_LIST_UNLINK(diff->tuples, t, link);
    141  1.1  christos 		dns_difftuple_free(&t);
    142  1.1  christos 	}
    143  1.1  christos 	ENSURE(ISC_LIST_EMPTY(diff->tuples));
    144  1.1  christos }
    145  1.1  christos 
    146  1.1  christos void
    147  1.4  christos dns_diff_append(dns_diff_t *diff, dns_difftuple_t **tuplep) {
    148  1.1  christos 	ISC_LIST_APPEND(diff->tuples, *tuplep, link);
    149  1.1  christos 	*tuplep = NULL;
    150  1.1  christos }
    151  1.1  christos 
    152  1.1  christos /* XXX this is O(N) */
    153  1.1  christos 
    154  1.1  christos void
    155  1.4  christos dns_diff_appendminimal(dns_diff_t *diff, dns_difftuple_t **tuplep) {
    156  1.1  christos 	dns_difftuple_t *ot, *next_ot;
    157  1.1  christos 
    158  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    159  1.1  christos 	REQUIRE(DNS_DIFFTUPLE_VALID(*tuplep));
    160  1.1  christos 
    161  1.1  christos 	/*
    162  1.1  christos 	 * Look for an existing tuple with the same owner name,
    163  1.1  christos 	 * rdata, and TTL.   If we are doing an addition and find a
    164  1.1  christos 	 * deletion or vice versa, remove both the old and the
    165  1.1  christos 	 * new tuple since they cancel each other out (assuming
    166  1.1  christos 	 * that we never delete nonexistent data or add existing
    167  1.1  christos 	 * data).
    168  1.1  christos 	 *
    169  1.1  christos 	 * If we find an old update of the same kind as
    170  1.1  christos 	 * the one we are doing, there must be a programming
    171  1.1  christos 	 * error.  We report it but try to continue anyway.
    172  1.1  christos 	 */
    173  1.4  christos 	for (ot = ISC_LIST_HEAD(diff->tuples); ot != NULL; ot = next_ot) {
    174  1.1  christos 		next_ot = ISC_LIST_NEXT(ot, link);
    175  1.1  christos 		if (dns_name_caseequal(&ot->name, &(*tuplep)->name) &&
    176  1.1  christos 		    dns_rdata_compare(&ot->rdata, &(*tuplep)->rdata) == 0 &&
    177  1.1  christos 		    ot->ttl == (*tuplep)->ttl)
    178  1.1  christos 		{
    179  1.1  christos 			ISC_LIST_UNLINK(diff->tuples, ot, link);
    180  1.1  christos 			if ((*tuplep)->op == ot->op) {
    181  1.9  christos 				UNEXPECTED_ERROR("unexpected non-minimal diff");
    182  1.1  christos 			} else {
    183  1.1  christos 				dns_difftuple_free(tuplep);
    184  1.1  christos 			}
    185  1.1  christos 			dns_difftuple_free(&ot);
    186  1.1  christos 			break;
    187  1.1  christos 		}
    188  1.1  christos 	}
    189  1.1  christos 
    190  1.1  christos 	if (*tuplep != NULL) {
    191  1.1  christos 		ISC_LIST_APPEND(diff->tuples, *tuplep, link);
    192  1.1  christos 		*tuplep = NULL;
    193  1.1  christos 	}
    194  1.1  christos }
    195  1.1  christos 
    196  1.1  christos static isc_stdtime_t
    197  1.1  christos setresign(dns_rdataset_t *modified) {
    198  1.1  christos 	dns_rdata_t rdata = DNS_RDATA_INIT;
    199  1.1  christos 	dns_rdata_rrsig_t sig;
    200  1.3  christos 	int64_t when;
    201  1.1  christos 	isc_result_t result;
    202  1.1  christos 
    203  1.1  christos 	result = dns_rdataset_first(modified);
    204  1.1  christos 	INSIST(result == ISC_R_SUCCESS);
    205  1.1  christos 	dns_rdataset_current(modified, &rdata);
    206  1.1  christos 	(void)dns_rdata_tostruct(&rdata, &sig, NULL);
    207  1.4  christos 	if ((rdata.flags & DNS_RDATA_OFFLINE) != 0) {
    208  1.1  christos 		when = 0;
    209  1.4  christos 	} else {
    210  1.1  christos 		when = dns_time64_from32(sig.timeexpire);
    211  1.4  christos 	}
    212  1.1  christos 	dns_rdata_reset(&rdata);
    213  1.1  christos 
    214  1.1  christos 	result = dns_rdataset_next(modified);
    215  1.1  christos 	while (result == ISC_R_SUCCESS) {
    216  1.1  christos 		dns_rdataset_current(modified, &rdata);
    217  1.1  christos 		(void)dns_rdata_tostruct(&rdata, &sig, NULL);
    218  1.1  christos 		if ((rdata.flags & DNS_RDATA_OFFLINE) != 0) {
    219  1.1  christos 			goto next_rr;
    220  1.1  christos 		}
    221  1.4  christos 		if (when == 0 || dns_time64_from32(sig.timeexpire) < when) {
    222  1.1  christos 			when = dns_time64_from32(sig.timeexpire);
    223  1.4  christos 		}
    224  1.4  christos 	next_rr:
    225  1.1  christos 		dns_rdata_reset(&rdata);
    226  1.1  christos 		result = dns_rdataset_next(modified);
    227  1.1  christos 	}
    228  1.1  christos 	INSIST(result == ISC_R_NOMORE);
    229  1.1  christos 	return ((isc_stdtime_t)when);
    230  1.1  christos }
    231  1.1  christos 
    232  1.1  christos static void
    233  1.1  christos getownercase(dns_rdataset_t *rdataset, dns_name_t *name) {
    234  1.4  christos 	if (dns_rdataset_isassociated(rdataset)) {
    235  1.1  christos 		dns_rdataset_getownercase(rdataset, name);
    236  1.4  christos 	}
    237  1.1  christos }
    238  1.1  christos 
    239  1.1  christos static void
    240  1.1  christos setownercase(dns_rdataset_t *rdataset, const dns_name_t *name) {
    241  1.4  christos 	if (dns_rdataset_isassociated(rdataset)) {
    242  1.1  christos 		dns_rdataset_setownercase(rdataset, name);
    243  1.4  christos 	}
    244  1.1  christos }
    245  1.1  christos 
    246  1.9  christos static const char *
    247  1.9  christos optotext(dns_diffop_t op) {
    248  1.9  christos 	switch (op) {
    249  1.9  christos 	case DNS_DIFFOP_ADD:
    250  1.9  christos 		return ("add");
    251  1.9  christos 	case DNS_DIFFOP_ADDRESIGN:
    252  1.9  christos 		return ("add-resign");
    253  1.9  christos 	case DNS_DIFFOP_DEL:
    254  1.9  christos 		return ("del");
    255  1.9  christos 	case DNS_DIFFOP_DELRESIGN:
    256  1.9  christos 		return ("del-resign");
    257  1.9  christos 	default:
    258  1.9  christos 		return ("unknown");
    259  1.9  christos 	}
    260  1.9  christos }
    261  1.9  christos 
    262  1.1  christos static isc_result_t
    263  1.4  christos diff_apply(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver, bool warn) {
    264  1.1  christos 	dns_difftuple_t *t;
    265  1.1  christos 	dns_dbnode_t *node = NULL;
    266  1.1  christos 	isc_result_t result;
    267  1.1  christos 	char namebuf[DNS_NAME_FORMATSIZE];
    268  1.1  christos 	char typebuf[DNS_RDATATYPE_FORMATSIZE];
    269  1.1  christos 	char classbuf[DNS_RDATACLASS_FORMATSIZE];
    270  1.1  christos 
    271  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    272  1.1  christos 	REQUIRE(DNS_DB_VALID(db));
    273  1.1  christos 
    274  1.1  christos 	t = ISC_LIST_HEAD(diff->tuples);
    275  1.1  christos 	while (t != NULL) {
    276  1.1  christos 		dns_name_t *name;
    277  1.1  christos 
    278  1.1  christos 		INSIST(node == NULL);
    279  1.1  christos 		name = &t->name;
    280  1.1  christos 		/*
    281  1.1  christos 		 * Find the node.
    282  1.1  christos 		 * We create the node if it does not exist.
    283  1.1  christos 		 * This will cause an empty node to be created if the diff
    284  1.1  christos 		 * contains a deletion of an RR at a nonexistent name,
    285  1.1  christos 		 * but such diffs should never be created in the first
    286  1.1  christos 		 * place.
    287  1.1  christos 		 */
    288  1.1  christos 
    289  1.1  christos 		while (t != NULL && dns_name_equal(&t->name, name)) {
    290  1.1  christos 			dns_rdatatype_t type, covers;
    291  1.9  christos 			dns_rdataclass_t rdclass;
    292  1.1  christos 			dns_diffop_t op;
    293  1.1  christos 			dns_rdatalist_t rdl;
    294  1.1  christos 			dns_rdataset_t rds;
    295  1.1  christos 			dns_rdataset_t ardataset;
    296  1.1  christos 			unsigned int options;
    297  1.1  christos 
    298  1.1  christos 			op = t->op;
    299  1.1  christos 			type = t->rdata.type;
    300  1.9  christos 			rdclass = t->rdata.rdclass;
    301  1.1  christos 			covers = rdata_covers(&t->rdata);
    302  1.1  christos 
    303  1.1  christos 			/*
    304  1.1  christos 			 * Collect a contiguous set of updates with
    305  1.1  christos 			 * the same operation (add/delete) and RR type
    306  1.1  christos 			 * into a single rdatalist so that the
    307  1.1  christos 			 * database rrset merging/subtraction code
    308  1.1  christos 			 * can work more efficiently than if each
    309  1.1  christos 			 * RR were merged into / subtracted from
    310  1.1  christos 			 * the database separately.
    311  1.1  christos 			 *
    312  1.1  christos 			 * This is done by linking rdata structures from the
    313  1.1  christos 			 * diff into "rdatalist".  This uses the rdata link
    314  1.1  christos 			 * field, not the diff link field, so the structure
    315  1.1  christos 			 * of the diff itself is not affected.
    316  1.1  christos 			 */
    317  1.1  christos 
    318  1.1  christos 			dns_rdatalist_init(&rdl);
    319  1.1  christos 			rdl.type = type;
    320  1.1  christos 			rdl.covers = covers;
    321  1.1  christos 			rdl.rdclass = t->rdata.rdclass;
    322  1.1  christos 			rdl.ttl = t->ttl;
    323  1.1  christos 
    324  1.1  christos 			node = NULL;
    325  1.1  christos 			if (type != dns_rdatatype_nsec3 &&
    326  1.8  christos 			    covers != dns_rdatatype_nsec3)
    327  1.8  christos 			{
    328  1.4  christos 				CHECK(dns_db_findnode(db, name, true, &node));
    329  1.4  christos 			} else {
    330  1.3  christos 				CHECK(dns_db_findnsec3node(db, name, true,
    331  1.1  christos 							   &node));
    332  1.4  christos 			}
    333  1.1  christos 
    334  1.4  christos 			while (t != NULL && dns_name_equal(&t->name, name) &&
    335  1.4  christos 			       t->op == op && t->rdata.type == type &&
    336  1.1  christos 			       rdata_covers(&t->rdata) == covers)
    337  1.1  christos 			{
    338  1.1  christos 				/*
    339  1.1  christos 				 * Remember the add name for
    340  1.1  christos 				 * dns_rdataset_setownercase.
    341  1.1  christos 				 */
    342  1.1  christos 				name = &t->name;
    343  1.1  christos 				if (t->ttl != rdl.ttl && warn) {
    344  1.1  christos 					dns_name_format(name, namebuf,
    345  1.1  christos 							sizeof(namebuf));
    346  1.1  christos 					dns_rdatatype_format(t->rdata.type,
    347  1.1  christos 							     typebuf,
    348  1.1  christos 							     sizeof(typebuf));
    349  1.1  christos 					dns_rdataclass_format(t->rdata.rdclass,
    350  1.1  christos 							      classbuf,
    351  1.1  christos 							      sizeof(classbuf));
    352  1.1  christos 					isc_log_write(DIFF_COMMON_LOGARGS,
    353  1.4  christos 						      ISC_LOG_WARNING,
    354  1.4  christos 						      "'%s/%s/%s': TTL differs "
    355  1.4  christos 						      "in "
    356  1.4  christos 						      "rdataset, adjusting "
    357  1.4  christos 						      "%lu -> %lu",
    358  1.4  christos 						      namebuf, typebuf,
    359  1.4  christos 						      classbuf,
    360  1.4  christos 						      (unsigned long)t->ttl,
    361  1.4  christos 						      (unsigned long)rdl.ttl);
    362  1.1  christos 				}
    363  1.1  christos 				ISC_LIST_APPEND(rdl.rdata, &t->rdata, link);
    364  1.1  christos 				t = ISC_LIST_NEXT(t, link);
    365  1.1  christos 			}
    366  1.1  christos 
    367  1.1  christos 			/*
    368  1.1  christos 			 * Convert the rdatalist into a rdataset.
    369  1.1  christos 			 */
    370  1.1  christos 			dns_rdataset_init(&rds);
    371  1.1  christos 			dns_rdataset_init(&ardataset);
    372  1.1  christos 			CHECK(dns_rdatalist_tordataset(&rdl, &rds));
    373  1.1  christos 			rds.trust = dns_trust_ultimate;
    374  1.1  christos 
    375  1.1  christos 			/*
    376  1.1  christos 			 * Merge the rdataset into the database.
    377  1.1  christos 			 */
    378  1.1  christos 			switch (op) {
    379  1.1  christos 			case DNS_DIFFOP_ADD:
    380  1.1  christos 			case DNS_DIFFOP_ADDRESIGN:
    381  1.1  christos 				options = DNS_DBADD_MERGE | DNS_DBADD_EXACT |
    382  1.1  christos 					  DNS_DBADD_EXACTTTL;
    383  1.4  christos 				result = dns_db_addrdataset(db, node, ver, 0,
    384  1.4  christos 							    &rds, options,
    385  1.1  christos 							    &ardataset);
    386  1.1  christos 				break;
    387  1.1  christos 			case DNS_DIFFOP_DEL:
    388  1.1  christos 			case DNS_DIFFOP_DELRESIGN:
    389  1.1  christos 				options = DNS_DBSUB_EXACT | DNS_DBSUB_WANTOLD;
    390  1.1  christos 				result = dns_db_subtractrdataset(db, node, ver,
    391  1.1  christos 								 &rds, options,
    392  1.1  christos 								 &ardataset);
    393  1.1  christos 				break;
    394  1.1  christos 			default:
    395  1.7  christos 				UNREACHABLE();
    396  1.1  christos 			}
    397  1.1  christos 
    398  1.1  christos 			if (result == ISC_R_SUCCESS) {
    399  1.1  christos 				if (rds.type == dns_rdatatype_rrsig &&
    400  1.1  christos 				    (op == DNS_DIFFOP_DELRESIGN ||
    401  1.4  christos 				     op == DNS_DIFFOP_ADDRESIGN))
    402  1.4  christos 				{
    403  1.1  christos 					isc_stdtime_t resign;
    404  1.1  christos 					resign = setresign(&ardataset);
    405  1.1  christos 					dns_db_setsigningtime(db, &ardataset,
    406  1.1  christos 							      resign);
    407  1.1  christos 				}
    408  1.1  christos 				if (op == DNS_DIFFOP_ADD ||
    409  1.8  christos 				    op == DNS_DIFFOP_ADDRESIGN)
    410  1.8  christos 				{
    411  1.1  christos 					setownercase(&ardataset, name);
    412  1.4  christos 				}
    413  1.1  christos 				if (op == DNS_DIFFOP_DEL ||
    414  1.8  christos 				    op == DNS_DIFFOP_DELRESIGN)
    415  1.8  christos 				{
    416  1.1  christos 					getownercase(&ardataset, name);
    417  1.4  christos 				}
    418  1.1  christos 			} else if (result == DNS_R_UNCHANGED) {
    419  1.1  christos 				/*
    420  1.1  christos 				 * This will not happen when executing a
    421  1.1  christos 				 * dynamic update, because that code will
    422  1.1  christos 				 * generate strictly minimal diffs.
    423  1.1  christos 				 * It may happen when receiving an IXFR
    424  1.1  christos 				 * from a server that is not as careful.
    425  1.1  christos 				 * Issue a warning and continue.
    426  1.1  christos 				 */
    427  1.1  christos 				if (warn) {
    428  1.1  christos 					dns_name_format(dns_db_origin(db),
    429  1.1  christos 							namebuf,
    430  1.1  christos 							sizeof(namebuf));
    431  1.1  christos 					dns_rdataclass_format(dns_db_class(db),
    432  1.1  christos 							      classbuf,
    433  1.1  christos 							      sizeof(classbuf));
    434  1.1  christos 					isc_log_write(DIFF_COMMON_LOGARGS,
    435  1.1  christos 						      ISC_LOG_WARNING,
    436  1.1  christos 						      "%s/%s: dns_diff_apply: "
    437  1.1  christos 						      "update with no effect",
    438  1.1  christos 						      namebuf, classbuf);
    439  1.1  christos 				}
    440  1.1  christos 				if (op == DNS_DIFFOP_ADD ||
    441  1.8  christos 				    op == DNS_DIFFOP_ADDRESIGN)
    442  1.8  christos 				{
    443  1.1  christos 					setownercase(&ardataset, name);
    444  1.4  christos 				}
    445  1.1  christos 				if (op == DNS_DIFFOP_DEL ||
    446  1.8  christos 				    op == DNS_DIFFOP_DELRESIGN)
    447  1.8  christos 				{
    448  1.1  christos 					getownercase(&ardataset, name);
    449  1.4  christos 				}
    450  1.1  christos 			} else if (result == DNS_R_NXRRSET) {
    451  1.1  christos 				/*
    452  1.1  christos 				 * OK.
    453  1.1  christos 				 */
    454  1.1  christos 				if (op == DNS_DIFFOP_DEL ||
    455  1.8  christos 				    op == DNS_DIFFOP_DELRESIGN)
    456  1.8  christos 				{
    457  1.1  christos 					getownercase(&ardataset, name);
    458  1.4  christos 				}
    459  1.4  christos 				if (dns_rdataset_isassociated(&ardataset)) {
    460  1.1  christos 					dns_rdataset_disassociate(&ardataset);
    461  1.4  christos 				}
    462  1.1  christos 			} else {
    463  1.9  christos 				if (result == DNS_R_NOTEXACT) {
    464  1.9  christos 					dns_name_format(name, namebuf,
    465  1.9  christos 							sizeof(namebuf));
    466  1.9  christos 					dns_rdatatype_format(type, typebuf,
    467  1.9  christos 							     sizeof(typebuf));
    468  1.9  christos 					dns_rdataclass_format(rdclass, classbuf,
    469  1.9  christos 							      sizeof(classbuf));
    470  1.9  christos 					isc_log_write(
    471  1.9  christos 						DIFF_COMMON_LOGARGS,
    472  1.9  christos 						ISC_LOG_ERROR,
    473  1.9  christos 						"dns_diff_apply: %s/%s/%s: %s "
    474  1.9  christos 						"%s",
    475  1.9  christos 						namebuf, typebuf, classbuf,
    476  1.9  christos 						optotext(op),
    477  1.9  christos 						isc_result_totext(result));
    478  1.9  christos 				}
    479  1.4  christos 				if (dns_rdataset_isassociated(&ardataset)) {
    480  1.1  christos 					dns_rdataset_disassociate(&ardataset);
    481  1.4  christos 				}
    482  1.1  christos 				CHECK(result);
    483  1.1  christos 			}
    484  1.1  christos 			dns_db_detachnode(db, &node);
    485  1.4  christos 			if (dns_rdataset_isassociated(&ardataset)) {
    486  1.1  christos 				dns_rdataset_disassociate(&ardataset);
    487  1.4  christos 			}
    488  1.1  christos 		}
    489  1.1  christos 	}
    490  1.1  christos 	return (ISC_R_SUCCESS);
    491  1.1  christos 
    492  1.4  christos failure:
    493  1.4  christos 	if (node != NULL) {
    494  1.1  christos 		dns_db_detachnode(db, &node);
    495  1.4  christos 	}
    496  1.1  christos 	return (result);
    497  1.1  christos }
    498  1.1  christos 
    499  1.1  christos isc_result_t
    500  1.1  christos dns_diff_apply(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver) {
    501  1.3  christos 	return (diff_apply(diff, db, ver, true));
    502  1.1  christos }
    503  1.1  christos 
    504  1.1  christos isc_result_t
    505  1.1  christos dns_diff_applysilently(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver) {
    506  1.3  christos 	return (diff_apply(diff, db, ver, false));
    507  1.1  christos }
    508  1.1  christos 
    509  1.1  christos /* XXX this duplicates lots of code in diff_apply(). */
    510  1.1  christos 
    511  1.1  christos isc_result_t
    512  1.1  christos dns_diff_load(dns_diff_t *diff, dns_addrdatasetfunc_t addfunc,
    513  1.4  christos 	      void *add_private) {
    514  1.1  christos 	dns_difftuple_t *t;
    515  1.1  christos 	isc_result_t result;
    516  1.1  christos 
    517  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    518  1.1  christos 
    519  1.1  christos 	t = ISC_LIST_HEAD(diff->tuples);
    520  1.1  christos 	while (t != NULL) {
    521  1.1  christos 		dns_name_t *name;
    522  1.1  christos 
    523  1.1  christos 		name = &t->name;
    524  1.3  christos 		while (t != NULL && dns_name_caseequal(&t->name, name)) {
    525  1.1  christos 			dns_rdatatype_t type, covers;
    526  1.1  christos 			dns_diffop_t op;
    527  1.1  christos 			dns_rdatalist_t rdl;
    528  1.1  christos 			dns_rdataset_t rds;
    529  1.1  christos 
    530  1.1  christos 			op = t->op;
    531  1.1  christos 			type = t->rdata.type;
    532  1.1  christos 			covers = rdata_covers(&t->rdata);
    533  1.1  christos 
    534  1.1  christos 			dns_rdatalist_init(&rdl);
    535  1.1  christos 			rdl.type = type;
    536  1.1  christos 			rdl.covers = covers;
    537  1.1  christos 			rdl.rdclass = t->rdata.rdclass;
    538  1.1  christos 			rdl.ttl = t->ttl;
    539  1.1  christos 
    540  1.4  christos 			while (t != NULL &&
    541  1.4  christos 			       dns_name_caseequal(&t->name, name) &&
    542  1.1  christos 			       t->op == op && t->rdata.type == type &&
    543  1.1  christos 			       rdata_covers(&t->rdata) == covers)
    544  1.1  christos 			{
    545  1.1  christos 				ISC_LIST_APPEND(rdl.rdata, &t->rdata, link);
    546  1.1  christos 				t = ISC_LIST_NEXT(t, link);
    547  1.1  christos 			}
    548  1.1  christos 
    549  1.1  christos 			/*
    550  1.1  christos 			 * Convert the rdatalist into a rdataset.
    551  1.1  christos 			 */
    552  1.1  christos 			dns_rdataset_init(&rds);
    553  1.1  christos 			CHECK(dns_rdatalist_tordataset(&rdl, &rds));
    554  1.1  christos 			rds.trust = dns_trust_ultimate;
    555  1.1  christos 
    556  1.1  christos 			INSIST(op == DNS_DIFFOP_ADD);
    557  1.1  christos 			result = (*addfunc)(add_private, name, &rds);
    558  1.1  christos 			if (result == DNS_R_UNCHANGED) {
    559  1.1  christos 				isc_log_write(DIFF_COMMON_LOGARGS,
    560  1.1  christos 					      ISC_LOG_WARNING,
    561  1.1  christos 					      "dns_diff_load: "
    562  1.1  christos 					      "update with no effect");
    563  1.1  christos 			} else if (result == ISC_R_SUCCESS ||
    564  1.8  christos 				   result == DNS_R_NXRRSET)
    565  1.8  christos 			{
    566  1.1  christos 				/*
    567  1.1  christos 				 * OK.
    568  1.1  christos 				 */
    569  1.1  christos 			} else {
    570  1.1  christos 				CHECK(result);
    571  1.1  christos 			}
    572  1.1  christos 		}
    573  1.1  christos 	}
    574  1.1  christos 	result = ISC_R_SUCCESS;
    575  1.4  christos failure:
    576  1.1  christos 	return (result);
    577  1.1  christos }
    578  1.1  christos 
    579  1.1  christos /*
    580  1.1  christos  * XXX uses qsort(); a merge sort would be more natural for lists,
    581  1.1  christos  * and perhaps safer wrt thread stack overflow.
    582  1.1  christos  */
    583  1.1  christos isc_result_t
    584  1.1  christos dns_diff_sort(dns_diff_t *diff, dns_diff_compare_func *compare) {
    585  1.1  christos 	unsigned int length = 0;
    586  1.1  christos 	unsigned int i;
    587  1.1  christos 	dns_difftuple_t **v;
    588  1.1  christos 	dns_difftuple_t *p;
    589  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    590  1.1  christos 
    591  1.4  christos 	for (p = ISC_LIST_HEAD(diff->tuples); p != NULL;
    592  1.8  christos 	     p = ISC_LIST_NEXT(p, link))
    593  1.8  christos 	{
    594  1.1  christos 		length++;
    595  1.4  christos 	}
    596  1.4  christos 	if (length == 0) {
    597  1.1  christos 		return (ISC_R_SUCCESS);
    598  1.4  christos 	}
    599  1.1  christos 	v = isc_mem_get(diff->mctx, length * sizeof(dns_difftuple_t *));
    600  1.1  christos 	for (i = 0; i < length; i++) {
    601  1.1  christos 		p = ISC_LIST_HEAD(diff->tuples);
    602  1.1  christos 		v[i] = p;
    603  1.1  christos 		ISC_LIST_UNLINK(diff->tuples, p, link);
    604  1.1  christos 	}
    605  1.1  christos 	INSIST(ISC_LIST_HEAD(diff->tuples) == NULL);
    606  1.1  christos 	qsort(v, length, sizeof(v[0]), compare);
    607  1.1  christos 	for (i = 0; i < length; i++) {
    608  1.1  christos 		ISC_LIST_APPEND(diff->tuples, v[i], link);
    609  1.1  christos 	}
    610  1.1  christos 	isc_mem_put(diff->mctx, v, length * sizeof(dns_difftuple_t *));
    611  1.1  christos 	return (ISC_R_SUCCESS);
    612  1.1  christos }
    613  1.1  christos 
    614  1.1  christos /*
    615  1.1  christos  * Create an rdataset containing the single RR of the given
    616  1.1  christos  * tuple.  The caller must allocate the rdata, rdataset and
    617  1.1  christos  * an rdatalist structure for it to refer to.
    618  1.1  christos  */
    619  1.1  christos 
    620  1.1  christos static isc_result_t
    621  1.1  christos diff_tuple_tordataset(dns_difftuple_t *t, dns_rdata_t *rdata,
    622  1.4  christos 		      dns_rdatalist_t *rdl, dns_rdataset_t *rds) {
    623  1.1  christos 	REQUIRE(DNS_DIFFTUPLE_VALID(t));
    624  1.1  christos 	REQUIRE(rdl != NULL);
    625  1.1  christos 	REQUIRE(rds != NULL);
    626  1.1  christos 
    627  1.1  christos 	dns_rdatalist_init(rdl);
    628  1.1  christos 	rdl->type = t->rdata.type;
    629  1.1  christos 	rdl->rdclass = t->rdata.rdclass;
    630  1.1  christos 	rdl->ttl = t->ttl;
    631  1.1  christos 	dns_rdataset_init(rds);
    632  1.1  christos 	ISC_LINK_INIT(rdata, link);
    633  1.1  christos 	dns_rdata_clone(&t->rdata, rdata);
    634  1.1  christos 	ISC_LIST_APPEND(rdl->rdata, rdata, link);
    635  1.1  christos 	return (dns_rdatalist_tordataset(rdl, rds));
    636  1.1  christos }
    637  1.1  christos 
    638  1.1  christos isc_result_t
    639  1.1  christos dns_diff_print(dns_diff_t *diff, FILE *file) {
    640  1.1  christos 	isc_result_t result;
    641  1.1  christos 	dns_difftuple_t *t;
    642  1.1  christos 	char *mem = NULL;
    643  1.1  christos 	unsigned int size = 2048;
    644  1.1  christos 	const char *op = NULL;
    645  1.1  christos 
    646  1.1  christos 	REQUIRE(DNS_DIFF_VALID(diff));
    647  1.1  christos 
    648  1.1  christos 	mem = isc_mem_get(diff->mctx, size);
    649  1.1  christos 
    650  1.1  christos 	for (t = ISC_LIST_HEAD(diff->tuples); t != NULL;
    651  1.8  christos 	     t = ISC_LIST_NEXT(t, link))
    652  1.8  christos 	{
    653  1.1  christos 		isc_buffer_t buf;
    654  1.1  christos 		isc_region_t r;
    655  1.1  christos 
    656  1.1  christos 		dns_rdatalist_t rdl;
    657  1.1  christos 		dns_rdataset_t rds;
    658  1.1  christos 		dns_rdata_t rd = DNS_RDATA_INIT;
    659  1.1  christos 
    660  1.1  christos 		result = diff_tuple_tordataset(t, &rd, &rdl, &rds);
    661  1.1  christos 		if (result != ISC_R_SUCCESS) {
    662  1.9  christos 			UNEXPECTED_ERROR("diff_tuple_tordataset failed: %s",
    663  1.9  christos 					 isc_result_totext(result));
    664  1.4  christos 			result = ISC_R_UNEXPECTED;
    665  1.1  christos 			goto cleanup;
    666  1.1  christos 		}
    667  1.4  christos 	again:
    668  1.1  christos 		isc_buffer_init(&buf, mem, size);
    669  1.4  christos 		result = dns_rdataset_totext(&rds, &t->name, false, false,
    670  1.4  christos 					     &buf);
    671  1.1  christos 
    672  1.1  christos 		if (result == ISC_R_NOSPACE) {
    673  1.1  christos 			isc_mem_put(diff->mctx, mem, size);
    674  1.1  christos 			size += 1024;
    675  1.1  christos 			mem = isc_mem_get(diff->mctx, size);
    676  1.1  christos 			goto again;
    677  1.1  christos 		}
    678  1.1  christos 
    679  1.4  christos 		if (result != ISC_R_SUCCESS) {
    680  1.1  christos 			goto cleanup;
    681  1.4  christos 		}
    682  1.1  christos 		/*
    683  1.1  christos 		 * Get rid of final newline.
    684  1.1  christos 		 */
    685  1.1  christos 		INSIST(buf.used >= 1 &&
    686  1.4  christos 		       ((char *)buf.base)[buf.used - 1] == '\n');
    687  1.1  christos 		buf.used--;
    688  1.1  christos 
    689  1.1  christos 		isc_buffer_usedregion(&buf, &r);
    690  1.1  christos 		switch (t->op) {
    691  1.4  christos 		case DNS_DIFFOP_EXISTS:
    692  1.4  christos 			op = "exists";
    693  1.4  christos 			break;
    694  1.4  christos 		case DNS_DIFFOP_ADD:
    695  1.4  christos 			op = "add";
    696  1.4  christos 			break;
    697  1.4  christos 		case DNS_DIFFOP_DEL:
    698  1.4  christos 			op = "del";
    699  1.4  christos 			break;
    700  1.4  christos 		case DNS_DIFFOP_ADDRESIGN:
    701  1.4  christos 			op = "add re-sign";
    702  1.4  christos 			break;
    703  1.4  christos 		case DNS_DIFFOP_DELRESIGN:
    704  1.4  christos 			op = "del re-sign";
    705  1.4  christos 			break;
    706  1.1  christos 		}
    707  1.4  christos 		if (file != NULL) {
    708  1.4  christos 			fprintf(file, "%s %.*s\n", op, (int)r.length,
    709  1.4  christos 				(char *)r.base);
    710  1.4  christos 		} else {
    711  1.1  christos 			isc_log_write(DIFF_COMMON_LOGARGS, ISC_LOG_DEBUG(7),
    712  1.4  christos 				      "%s %.*s", op, (int)r.length,
    713  1.4  christos 				      (char *)r.base);
    714  1.4  christos 		}
    715  1.1  christos 	}
    716  1.1  christos 	result = ISC_R_SUCCESS;
    717  1.4  christos cleanup:
    718  1.4  christos 	if (mem != NULL) {
    719  1.1  christos 		isc_mem_put(diff->mctx, mem, size);
    720  1.4  christos 	}
    721  1.1  christos 	return (result);
    722  1.1  christos }
    723