1 /* +------------------------------------+
2 * | Inspire Internet Relay Chat Daemon |
3 * +------------------------------------+
5 * InspIRCd: (C) 2002-2007 InspIRCd Development Team
6 * See: http://www.inspircd.org/wiki/index.php/Credits
8 * This program is free but copyrighted software; see
9 * the file COPYING for details.
11 * ---------------------------------------------------
15 #include "commands/cmd_whois.h"
16 #include "commands/cmd_stats.h"
20 #include "transport.h"
22 #include "socketengine.h"
24 #include "m_spanningtree/main.h"
25 #include "m_spanningtree/utils.h"
26 #include "m_spanningtree/treeserver.h"
27 #include "m_spanningtree/link.h"
28 #include "m_spanningtree/treesocket.h"
29 #include "m_spanningtree/resolvers.h"
30 #include "m_spanningtree/handshaketimer.h"
32 /* $ModDep: m_spanningtree/timesynctimer.h m_spanningtree/resolvers.h m_spanningtree/main.h m_spanningtree/utils.h m_spanningtree/treeserver.h m_spanningtree/link.h m_spanningtree/treesocket.h m_hash.h */
35 /** Because most of the I/O gubbins are encapsulated within
36 * BufferedSocket, we just call the superclass constructor for
37 * most of the action, and append a few of our own values
40 TreeSocket::TreeSocket(SpanningTreeUtilities* Util, InspIRCd* SI, std::string host, int port, bool listening, unsigned long maxtime, Module* HookMod)
41 : BufferedSocket(SI, host, port, listening, maxtime), Utils(Util), Hook(HookMod)
44 this->LinkState = LISTENER;
45 theirchallenge.clear();
47 if (listening && Hook)
48 BufferedSocketHookRequest(this, (Module*)Utils->Creator, Hook).Send();
51 TreeSocket::TreeSocket(SpanningTreeUtilities* Util, InspIRCd* SI, std::string host, int port, bool listening, unsigned long maxtime, const std::string &ServerName, const std::string &bindto, Module* HookMod)
52 : BufferedSocket(SI, host, port, listening, maxtime, bindto), Utils(Util), Hook(HookMod)
55 theirchallenge.clear();
57 this->LinkState = CONNECTING;
59 BufferedSocketHookRequest(this, (Module*)Utils->Creator, Hook).Send();
62 /** When a listening socket gives us a new file descriptor,
63 * we must associate it with a socket without creating a new
64 * connection. This constructor is used for this purpose.
66 TreeSocket::TreeSocket(SpanningTreeUtilities* Util, InspIRCd* SI, int newfd, char* ip, Module* HookMod)
67 : BufferedSocket(SI, newfd, ip), Utils(Util), Hook(HookMod)
69 this->LinkState = WAIT_AUTH_1;
70 theirchallenge.clear();
73 /* If we have a transport module hooked to the parent, hook the same module to this
74 * socket, and set a timer waiting for handshake before we send CAPAB etc.
77 BufferedSocketHookRequest(this, (Module*)Utils->Creator, Hook).Send();
79 Instance->Timers->AddTimer(new HandshakeTimer(Instance, this, &(Utils->LinkBlocks[0]), this->Utils, 1));
82 ServerState TreeSocket::GetLinkState()
84 return this->LinkState;
87 Module* TreeSocket::GetHook()
92 TreeSocket::~TreeSocket()
95 BufferedSocketUnhookRequest(this, (Module*)Utils->Creator, Hook).Send();
97 Utils->DelBurstingServer(this);
100 const std::string& TreeSocket::GetOurChallenge()
102 return this->ourchallenge;
105 void TreeSocket::SetOurChallenge(const std::string &c)
107 this->ourchallenge = c;
110 const std::string& TreeSocket::GetTheirChallenge()
112 return this->theirchallenge;
115 void TreeSocket::SetTheirChallenge(const std::string &c)
117 this->theirchallenge = c;
120 std::string TreeSocket::MakePass(const std::string &password, const std::string &challenge)
122 /* This is a simple (maybe a bit hacky?) HMAC algorithm, thanks to jilles for
123 * suggesting the use of HMAC to secure the password against various attacks.
125 * Note: If m_sha256.so is not loaded, we MUST fall back to plaintext with no
126 * HMAC challenge/response.
128 Module* sha256 = Instance->Modules->Find("m_sha256.so");
129 if (Utils->ChallengeResponse && sha256 && !challenge.empty())
131 /* XXX: This is how HMAC is supposed to be done:
133 * sha256( (pass xor 0x5c) + sha256((pass xor 0x36) + m) )
135 * Note that we are encoding the hex hash, not the binary
136 * output of the hash which is slightly different to standard.
138 * Don't ask me why its always 0x5c and 0x36... it just is.
140 std::string hmac1, hmac2;
142 for (size_t n = 0; n < password.length(); n++)
144 hmac1 += static_cast<char>(password[n] ^ 0x5C);
145 hmac2 += static_cast<char>(password[n] ^ 0x36);
149 HashResetRequest(Utils->Creator, sha256).Send();
150 hmac2 = HashSumRequest(Utils->Creator, sha256, hmac2).Send();
152 HashResetRequest(Utils->Creator, sha256).Send();
153 std::string hmac = hmac1 + hmac2;
154 hmac = HashSumRequest(Utils->Creator, sha256, hmac).Send();
156 return "HMAC-SHA256:"+ hmac;
158 else if (!challenge.empty() && !sha256)
159 Instance->Log(DEFAULT,"Not authenticating to server using SHA256/HMAC because we don't have m_sha256 loaded!");
164 /** When an outbound connection finishes connecting, we receive
165 * this event, and must send our SERVER string to the other
166 * side. If the other side is happy, as outlined in the server
167 * to server docs on the inspircd.org site, the other side
168 * will then send back its own server string.
170 bool TreeSocket::OnConnected()
172 if (this->LinkState == CONNECTING)
174 /* we do not need to change state here. */
175 for (std::vector<Link>::iterator x = Utils->LinkBlocks.begin(); x < Utils->LinkBlocks.end(); x++)
177 if (x->Name == this->myhost)
179 Utils->Creator->RemoteMessage(NULL,"Connection to \2%s\2[%s] started.", myhost.c_str(), (x->HiddenFromStats ? "<hidden>" : this->GetIP().c_str()));
182 BufferedSocketHookRequest(this, (Module*)Utils->Creator, Hook).Send();
183 Utils->Creator->RemoteMessage(NULL,"Connection to \2%s\2[%s] using transport \2%s\2", myhost.c_str(), (x->HiddenFromStats ? "<hidden>" : this->GetIP().c_str()),
186 this->OutboundPass = x->SendPass;
189 /* found who we're supposed to be connecting to, send the neccessary gubbins. */
191 Instance->Timers->AddTimer(new HandshakeTimer(Instance, this, &(*x), this->Utils, 1));
193 this->SendCapabilities();
199 /* There is a (remote) chance that between the /CONNECT and the connection
200 * being accepted, some muppet has removed the <link> block and rehashed.
201 * If that happens the connection hangs here until it's closed. Unlikely
202 * and rather harmless.
204 this->Utils->Creator->RemoteMessage(NULL,"Connection to \2%s\2 lost link tag(!)", myhost.c_str());
208 void TreeSocket::OnError(BufferedSocketError e)
212 if (this->LinkState == LISTENER)
218 Utils->Creator->RemoteMessage(NULL,"Connection failed: Connection to \002%s\002 refused", myhost.c_str());
219 MyLink = Utils->FindLink(myhost);
221 Utils->DoFailOver(MyLink);
224 Utils->Creator->RemoteMessage(NULL,"Connection failed: Could not create socket");
227 Utils->Creator->RemoteMessage(NULL,"Connection failed: Error binding socket to address or port");
230 Utils->Creator->RemoteMessage(NULL,"Connection failed: I/O error on connection");
232 case I_ERR_NOMOREFDS:
233 Utils->Creator->RemoteMessage(NULL,"Connection failed: Operating system is out of file descriptors!");
236 if ((errno) && (errno != EINPROGRESS) && (errno != EAGAIN))
237 Utils->Creator->RemoteMessage(NULL,"Connection to \002%s\002 failed with OS error: %s", myhost.c_str(), strerror(errno));
242 int TreeSocket::OnDisconnect()
244 /* For the same reason as above, we don't
245 * handle OnDisconnect()
250 /** Recursively send the server tree with distances as hops.
251 * This is used during network burst to inform the other server
252 * (and any of ITS servers too) of what servers we know about.
253 * If at any point any of these servers already exist on the other
254 * end, our connection may be terminated. The hopcounts given
255 * by this function are relative, this doesn't matter so long as
256 * they are all >1, as all the remote servers re-calculate them
257 * to be relative too, with themselves as hop 0.
259 void TreeSocket::SendServers(TreeServer* Current, TreeServer* s, int hops)
262 for (unsigned int q = 0; q < Current->ChildCount(); q++)
264 TreeServer* recursive_server = Current->GetChild(q);
265 if (recursive_server != s)
267 snprintf(command,1024,":%s SERVER %s * %d %s :%s",Current->GetName().c_str(),recursive_server->GetName().c_str(),hops,
268 recursive_server->GetID().c_str(),
269 recursive_server->GetDesc().c_str());
270 this->WriteLine(command);
271 this->WriteLine(":"+recursive_server->GetName()+" VERSION :"+recursive_server->GetVersion());
272 /* down to next level */
273 this->SendServers(recursive_server, s, hops+1);
278 std::string TreeSocket::MyCapabilities()
280 std::vector<std::string> modlist;
281 std::string capabilities;
282 for (int i = 0; i <= this->Instance->Modules->GetCount(); i++)
284 if (this->Instance->Modules->modules[i]->GetVersion().Flags & VF_COMMON)
285 modlist.push_back(this->Instance->Config->module_names[i]);
287 sort(modlist.begin(),modlist.end());
288 for (unsigned int i = 0; i < modlist.size(); i++)
291 capabilities = capabilities + ",";
292 capabilities = capabilities + modlist[i];
297 std::string TreeSocket::RandString(unsigned int length)
299 char* randombuf = new char[length+1];
304 int fd = open("/dev/urandom", O_RDONLY, 0);
310 read(fd, randombuf, length);
316 for (unsigned int i = 0; i < length; i++)
317 randombuf[i] = rand();
320 for (unsigned int i = 0; i < length; i++)
322 char randchar = static_cast<char>((randombuf[i] & 0x7F) | 0x21);
323 out += (randchar == '=' ? '_' : randchar);
330 void TreeSocket::SendCapabilities()
336 irc::commasepstream modulelist(MyCapabilities());
337 this->WriteLine("CAPAB START");
339 /* Send module names, split at 509 length */
341 std::string line = "CAPAB MODULES ";
342 while (modulelist.GetToken(item))
344 if (line.length() + item.length() + 1 > 509)
346 this->WriteLine(line);
347 line = "CAPAB MODULES ";
350 if (line != "CAPAB MODULES ")
355 if (line != "CAPAB MODULES ")
356 this->WriteLine(line);
363 #ifdef SUPPORT_IP6LINKS
367 /* Do we have sha256 available? If so, we send a challenge */
368 if (Utils->ChallengeResponse && (Instance->Modules->Find("m_sha256.so")))
370 this->SetOurChallenge(RandString(20));
371 extra = " CHALLENGE=" + this->GetOurChallenge();
374 this->WriteLine("CAPAB CAPABILITIES :NICKMAX="+ConvToStr(NICKMAX)+" HALFOP="+ConvToStr(this->Instance->Config->AllowHalfop)+" CHANMAX="+ConvToStr(CHANMAX)+" MAXMODES="+ConvToStr(MAXMODES)+" IDENTMAX="+ConvToStr(IDENTMAX)+" MAXQUIT="+ConvToStr(MAXQUIT)+" MAXTOPIC="+ConvToStr(MAXTOPIC)+" MAXKICK="+ConvToStr(MAXKICK)+" MAXGECOS="+ConvToStr(MAXGECOS)+" MAXAWAY="+ConvToStr(MAXAWAY)+" IP6NATIVE="+ConvToStr(ip6)+" IP6SUPPORT="+ConvToStr(ip6support)+" PROTOCOL="+ConvToStr(ProtocolVersion)+extra+" PREFIX="+Instance->Modes->BuildPrefixes()+" CHANMODES="+Instance->Modes->ChanModes()+" SVSPART=1");
376 this->WriteLine("CAPAB END");
379 /* Check a comma seperated list for an item */
380 bool TreeSocket::HasItem(const std::string &list, const std::string &item)
382 irc::commasepstream seplist(list);
385 while (seplist.GetToken(item2))
393 /* Isolate and return the elements that are different between two comma seperated lists */
394 std::string TreeSocket::ListDifference(const std::string &one, const std::string &two)
396 irc::commasepstream list_one(one);
399 while (list_one.GetToken(item))
401 if (!HasItem(two, item))
410 void TreeSocket::SendError(const std::string &errormessage)
412 /* Display the error locally as well as sending it remotely */
413 Utils->Creator->RemoteMessage(NULL, "Sent \2ERROR\2 to %s: %s", (this->InboundServerName.empty() ? "<unknown>" : this->InboundServerName.c_str()), errormessage.c_str());
414 this->WriteLine("ERROR :"+errormessage);
415 /* One last attempt to make sure the error reaches its target */
416 this->FlushWriteBuffer();
419 bool TreeSocket::Capab(const std::deque<std::string> ¶ms)
421 if (params.size() < 1)
423 this->SendError("Invalid number of parameters for CAPAB - Mismatched version");
426 if (params[0] == "START")
428 this->ModuleList.clear();
429 this->CapKeys.clear();
431 else if (params[0] == "END")
435 #ifdef SUPPORT_IP6LINKS
438 /* Compare ModuleList and check CapKeys...
439 * Maybe this could be tidier? -- Brain
441 if ((this->ModuleList != this->MyCapabilities()) && (this->ModuleList.length()))
443 std::string diff = ListDifference(this->ModuleList, this->MyCapabilities());
446 diff = "your server:" + ListDifference(this->MyCapabilities(), this->ModuleList);
450 diff = "this server:" + diff;
452 if (diff.length() == 12)
453 reason = "Module list in CAPAB is not alphabetically ordered, cannot compare lists.";
455 reason = "Modules loaded on these servers are not correctly matched, these modules are not loaded on " + diff;
458 cap_validation valid_capab[] = {
459 {"Maximum nickname lengths differ or remote nickname length not specified", "NICKMAX", NICKMAX},
460 {"Maximum ident lengths differ or remote ident length not specified", "IDENTMAX", IDENTMAX},
461 {"Maximum channel lengths differ or remote channel length not specified", "CHANMAX", CHANMAX},
462 {"Maximum modes per line differ or remote modes per line not specified", "MAXMODES", MAXMODES},
463 {"Maximum quit lengths differ or remote quit length not specified", "MAXQUIT", MAXQUIT},
464 {"Maximum topic lengths differ or remote topic length not specified", "MAXTOPIC", MAXTOPIC},
465 {"Maximum kick lengths differ or remote kick length not specified", "MAXKICK", MAXKICK},
466 {"Maximum GECOS (fullname) lengths differ or remote GECOS length not specified", "MAXGECOS", MAXGECOS},
467 {"Maximum awaymessage lengths differ or remote awaymessage length not specified", "MAXAWAY", MAXAWAY},
471 if (((this->CapKeys.find("IP6SUPPORT") == this->CapKeys.end()) && (ip6support)) || ((this->CapKeys.find("IP6SUPPORT") != this->CapKeys.end()) && (this->CapKeys.find("IP6SUPPORT")->second != ConvToStr(ip6support))))
472 reason = "We don't both support linking to IPV6 servers";
473 if (((this->CapKeys.find("IP6NATIVE") != this->CapKeys.end()) && (this->CapKeys.find("IP6NATIVE")->second == "1")) && (!ip6support))
474 reason = "The remote server is IPV6 native, and we don't support linking to IPV6 servers";
475 if (((this->CapKeys.find("PROTOCOL") == this->CapKeys.end()) || ((this->CapKeys.find("PROTOCOL") != this->CapKeys.end()) && (this->CapKeys.find("PROTOCOL")->second != ConvToStr(ProtocolVersion)))))
477 if (this->CapKeys.find("PROTOCOL") != this->CapKeys.end())
478 reason = "Mismatched protocol versions "+this->CapKeys.find("PROTOCOL")->second+" and "+ConvToStr(ProtocolVersion);
480 reason = "Protocol version not specified";
483 if(this->CapKeys.find("PREFIX") != this->CapKeys.end() && this->CapKeys.find("PREFIX")->second != this->Instance->Modes->BuildPrefixes())
484 reason = "One or more of the prefixes on the remote server are invalid on this server.";
486 if (((this->CapKeys.find("HALFOP") == this->CapKeys.end()) && (Instance->Config->AllowHalfop)) || ((this->CapKeys.find("HALFOP") != this->CapKeys.end()) && (this->CapKeys.find("HALFOP")->second != ConvToStr(Instance->Config->AllowHalfop))))
487 reason = "We don't both have halfop support enabled/disabled identically";
489 for (int x = 0; valid_capab[x].size; ++x)
491 if (((this->CapKeys.find(valid_capab[x].key) == this->CapKeys.end()) || ((this->CapKeys.find(valid_capab[x].key) != this->CapKeys.end()) &&
492 (this->CapKeys.find(valid_capab[x].key)->second != ConvToStr(valid_capab[x].size)))))
493 reason = valid_capab[x].reason;
496 /* Challenge response, store their challenge for our password */
497 std::map<std::string,std::string>::iterator n = this->CapKeys.find("CHALLENGE");
498 if (Utils->ChallengeResponse && (n != this->CapKeys.end()) && (Instance->Modules->Find("m_sha256.so")))
500 /* Challenge-response is on now */
501 this->SetTheirChallenge(n->second);
502 if (!this->GetTheirChallenge().empty() && (this->LinkState == CONNECTING))
504 this->WriteLine(std::string("SERVER ")+this->Instance->Config->ServerName+" "+this->MakePass(OutboundPass, this->GetTheirChallenge())+" 0 "+
505 Instance->Config->GetSID()+" :"+this->Instance->Config->ServerDesc);
510 /* They didnt specify a challenge or we don't have m_sha256.so, we use plaintext */
511 if (this->LinkState == CONNECTING)
512 this->WriteLine(std::string("SERVER ")+this->Instance->Config->ServerName+" "+OutboundPass+" 0 "+Instance->Config->GetSID()+" :"+this->Instance->Config->ServerDesc);
517 this->SendError("CAPAB negotiation failed: "+reason);
521 else if ((params[0] == "MODULES") && (params.size() == 2))
523 if (!this->ModuleList.length())
525 this->ModuleList.append(params[1]);
529 this->ModuleList.append(",");
530 this->ModuleList.append(params[1]);
534 else if ((params[0] == "CAPABILITIES") && (params.size() == 2))
536 irc::tokenstream capabs(params[1]);
539 while ((more = capabs.GetToken(item)))
541 /* Process each key/value pair */
542 std::string::size_type equals = item.rfind('=');
543 if (equals != std::string::npos)
545 std::string var = item.substr(0, equals);
546 std::string value = item.substr(equals+1, item.length());
547 CapKeys[var] = value;
554 /** This function forces this server to quit, removing this server
555 * and any users on it (and servers and users below that, etc etc).
556 * It's very slow and pretty clunky, but luckily unless your network
557 * is having a REAL bad hair day, this function shouldnt be called
558 * too many times a month ;-)
560 void TreeSocket::SquitServer(std::string &from, TreeServer* Current)
562 /* recursively squit the servers attached to 'Current'.
563 * We're going backwards so we don't remove users
564 * while we still need them ;)
566 for (unsigned int q = 0; q < Current->ChildCount(); q++)
568 TreeServer* recursive_server = Current->GetChild(q);
569 this->SquitServer(from,recursive_server);
571 /* Now we've whacked the kids, whack self */
573 num_lost_users += Current->QuitUsers(from);
576 /** This is a wrapper function for SquitServer above, which
577 * does some validation first and passes on the SQUIT to all
578 * other remaining servers.
580 void TreeSocket::Squit(TreeServer* Current, const std::string &reason)
582 if ((Current) && (Current != Utils->TreeRoot))
584 Event rmode((char*)Current->GetName().c_str(), (Module*)Utils->Creator, "lost_server");
585 rmode.Send(Instance);
587 std::deque<std::string> params;
588 params.push_back(Current->GetName());
589 params.push_back(":"+reason);
590 Utils->DoOneToAllButSender(Current->GetParent()->GetName(),"SQUIT",params,Current->GetName());
591 if (Current->GetParent() == Utils->TreeRoot)
593 this->Instance->SNO->WriteToSnoMask('l',"Server \002"+Current->GetName()+"\002 split: "+reason);
597 this->Instance->SNO->WriteToSnoMask('l',"Server \002"+Current->GetName()+"\002 split from server \002"+Current->GetParent()->GetName()+"\002 with reason: "+reason);
599 num_lost_servers = 0;
601 std::string from = Current->GetParent()->GetName()+" "+Current->GetName();
602 SquitServer(from, Current);
604 Current->GetParent()->DelChild(Current);
606 this->Instance->SNO->WriteToSnoMask('l',"Netsplit complete, lost \002%d\002 users on \002%d\002 servers.", num_lost_users, num_lost_servers);
609 Instance->Log(DEFAULT,"Squit from unknown server");
612 /** FMODE command - server mode with timestamp checks */
613 bool TreeSocket::ForceMode(const std::string &source, std::deque<std::string> ¶ms)
615 /* Chances are this is a 1.0 FMODE without TS */
616 if (params.size() < 3)
618 /* No modes were in the command, probably a channel with no modes set on it */
623 std::string sourceserv;
624 /* Are we dealing with an FMODE from a user, or from a server? */
625 User* who = this->Instance->FindNick(source);
628 /* FMODE from a user, set sourceserv to the users server name */
629 sourceserv = who->server;
633 /* FMODE from a server, use a fake user to receive mode feedback */
634 who = this->Instance->FakeClient;
635 smode = true; /* Setting this flag tells us we should free the User later */
636 sourceserv = source; /* Set sourceserv to the actual source string */
638 const char* modelist[64];
641 memset(&modelist,0,sizeof(modelist));
642 for (unsigned int q = 0; (q < params.size()) && (q < 64); q++)
646 /* The timestamp is in this position.
647 * We don't want to pass that up to the
648 * server->client protocol!
650 TS = atoi(params[q].c_str());
654 /* Everything else is fine to append to the modelist */
655 modelist[n++] = params[q].c_str();
659 /* Extract the TS value of the object, either User or Channel */
660 User* dst = this->Instance->FindNick(params[0]);
661 Channel* chan = NULL;
669 chan = this->Instance->FindChan(params[0]);
675 /* Oops, channel doesnt exist! */
681 Instance->Log(DEFAULT,"*** BUG? *** TS of 0 sent to FMODE. Are some services authors smoking craq, or is it 1970 again?. Dropped.");
682 Instance->SNO->WriteToSnoMask('d', "WARNING: The server %s is sending FMODE with a TS of zero. Total craq. Mode was dropped.", sourceserv.c_str());
686 /* TS is equal or less: Merge the mode changes into ours and pass on.
690 if ((TS < ourTS) && (!dst))
691 Instance->Log(DEFAULT,"*** BUG *** Channel TS sent in FMODE to %s is %lu which is not equal to %lu!", params[0].c_str(), TS, ourTS);
695 this->Instance->SendMode(modelist, n, who);
699 this->Instance->CallCommandHandler("MODE", modelist, n, who);
701 /* HOT POTATO! PASS IT ON! */
702 Utils->DoOneToAllButSender(source,"FMODE",params,sourceserv);
704 /* If the TS is greater than ours, we drop the mode and dont pass it anywhere.
709 /** FTOPIC command */
710 bool TreeSocket::ForceTopic(const std::string &source, std::deque<std::string> ¶ms)
712 if (params.size() != 4)
714 time_t ts = atoi(params[1].c_str());
715 std::string nsource = source;
716 Channel* c = this->Instance->FindChan(params[0]);
719 if ((ts >= c->topicset) || (!*c->topic))
721 std::string oldtopic = c->topic;
722 strlcpy(c->topic,params[3].c_str(),MAXTOPIC);
723 strlcpy(c->setby,params[2].c_str(),127);
725 /* if the topic text is the same as the current topic,
726 * dont bother to send the TOPIC command out, just silently
727 * update the set time and set nick.
729 if (oldtopic != params[3])
731 User* user = this->Instance->FindNick(source);
734 c->WriteChannelWithServ(Instance->Config->ServerName, "TOPIC %s :%s", c->name, c->topic);
738 c->WriteChannel(user, "TOPIC %s :%s", c->name, c->topic);
739 nsource = user->server;
741 /* all done, send it on its way */
742 params[3] = ":" + params[3];
743 Utils->DoOneToAllButSender(source,"FTOPIC",params,nsource);
751 /** FJOIN, similar to TS6 SJOIN, but not quite. */
752 bool TreeSocket::ForceJoin(const std::string &source, std::deque<std::string> ¶ms)
754 /* 1.1 FJOIN works as follows:
756 * Each FJOIN is sent along with a timestamp, and the side with the lowest
757 * timestamp 'wins'. From this point on we will refer to this side as the
758 * winner. The side with the higher timestamp loses, from this point on we
759 * will call this side the loser or losing side. This should be familiar to
760 * anyone who's dealt with dreamforge or TS6 before.
762 * When two sides of a split heal and this occurs, the following things
765 * If the timestamps are exactly equal, both sides merge their privilages
766 * and users, as in InspIRCd 1.0 and ircd2.8. The channels have not been
767 * re-created during a split, this is safe to do.
769 * If the timestamps are NOT equal, the losing side removes all of its
770 * modes from the channel, before introducing new users into the channel
771 * which are listed in the FJOIN command's parameters. The losing side then
772 * LOWERS its timestamp value of the channel to match that of the winning
773 * side, and the modes of the users of the winning side are merged in with
776 * The winning side on the other hand will ignore all user modes from the
777 * losing side, so only its own modes get applied. Life is simple for those
778 * who succeed at internets. :-)
780 * NOTE: Unlike TS6 and dreamforge and other protocols which have SJOIN,
781 * FJOIN does not contain the simple-modes such as +iklmnsp. Why not,
782 * you ask? Well, quite simply because we don't need to. They'll be sent
783 * after the FJOIN by FMODE, and FMODE is timestamped, so in the event
784 * the losing side sends any modes for the channel which shouldnt win,
785 * they wont as their timestamp will be too high :-)
788 if (params.size() < 3)
791 irc::modestacker modestack(true); /* Modes to apply from the users in the user list */
792 User* who = NULL; /* User we are currently checking */
793 std::string channel = params[0]; /* Channel name, as a string */
794 time_t TS = atoi(params[1].c_str()); /* Timestamp given to us for remote side */
795 irc::tokenstream users(params[2]); /* Users from the user list */
796 bool apply_other_sides_modes = true; /* True if we are accepting the other side's modes */
797 Channel* chan = this->Instance->FindChan(channel); /* The channel we're sending joins to */
798 time_t ourTS = chan ? chan->age : Instance->Time(true)+600; /* The TS of our side of the link */
799 bool created = !chan; /* True if the channel doesnt exist here yet */
800 std::string item; /* One item in the list of nicks */
802 params[2] = ":" + params[2];
803 Utils->DoOneToAllButSender(source,"FJOIN",params,source);
807 Instance->Log(DEFAULT,"*** BUG? *** TS of 0 sent to FJOIN. Are some services authors smoking craq, or is it 1970 again?. Dropped.");
808 Instance->SNO->WriteToSnoMask('d', "WARNING: The server %s is sending FJOIN with a TS of zero. Total craq. Command was dropped.", source.c_str());
812 /* If our TS is less than theirs, we dont accept their modes */
814 apply_other_sides_modes = false;
816 /* Our TS greater than theirs, clear all our modes from the channel, accept theirs. */
819 std::deque<std::string> param_list;
820 if (Utils->AnnounceTSChange && chan)
821 chan->WriteChannelWithServ(Instance->Config->ServerName, "NOTICE %s :TS for %s changed from %lu to %lu", chan->name, chan->name, ourTS, TS);
826 param_list.push_back(channel);
827 this->RemoveStatus(Instance->Config->GetSID(), param_list);
831 /* Now, process every 'prefixes,nick' pair */
832 while (users.GetToken(item))
834 const char* usr = item.c_str();
837 const char* permissions = usr;
838 /* Iterate through all the prefix values, convert them from prefixes to mode letters */
840 while ((*permissions) && (*permissions != ','))
842 ModeHandler* mh = Instance->Modes->FindPrefix(*permissions);
844 modes = modes + mh->GetModeChar();
847 this->SendError(std::string("Invalid prefix '")+(*permissions)+"' in FJOIN");
853 /* Advance past the comma, to the nick */
856 /* Check the user actually exists */
857 who = this->Instance->FindUUID(usr);
860 /* Check that the user's 'direction' is correct */
861 TreeServer* route_back_again = Utils->BestRouteTo(who->server);
862 if ((!route_back_again) || (route_back_again->GetSocket() != this))
865 /* Add any permissions this user had to the mode stack */
866 for (std::string::iterator x = modes.begin(); x != modes.end(); ++x)
867 modestack.Push(*x, who->nick);
869 Channel::JoinUser(this->Instance, who, channel.c_str(), true, "", TS);
873 Instance->Log(SPARSE,"Warning! Invalid user %s in FJOIN to channel %s IGNORED", usr, channel.c_str());
879 /* Flush mode stacker if we lost the FJOIN or had equal TS */
880 if (apply_other_sides_modes)
882 std::deque<std::string> stackresult;
883 const char* mode_junk[MAXMODES+2];
884 mode_junk[0] = channel.c_str();
886 while (modestack.GetStackedLine(stackresult))
888 for (size_t j = 0; j < stackresult.size(); j++)
890 mode_junk[j+1] = stackresult[j].c_str();
892 Instance->SendMode(mode_junk, stackresult.size() + 1, Instance->FakeClient);
900 * Yes, this function looks a little ugly.
901 * However, in some circumstances we may not have a User, so we need to do things this way.
902 * Returns 1 if colliding local client, 2 if colliding remote, 3 if colliding both.
903 * Sends SVSNICKs as appropriate and forces nickchanges too.
905 int TreeSocket::DoCollision(User *u, time_t remotets, const char *remoteident, const char *remoteip, const char *remoteuid)
908 * Under old protocol rules, we would have had to kill both clients.
909 * Really, this sucks.
910 * These days, we have UID. And, so what we do is, force nick change client(s)
911 * involved according to timestamp rules.
915 * Force nick change on OLDER timestamped client
917 * Force nick change on NEWER timestamped client
921 * This stops abusive use of collisions, simplifies problems with loops, and so on.
924 bool bChangeLocal = true;
925 bool bChangeRemote = true;
927 /* for brevity, don't use the User */
928 time_t localts = u->age;
929 const char *localident = u->ident;
930 const char *localip = u->GetIPString();
932 /* mmk. let's do this again. */
933 if (remotets == localts)
935 /* equal. fuck them both! do nada, let the handler at the bottom figure this out. */
939 /* fuck. now it gets complex. */
941 /* first, let's see if ident@host matches. */
942 bool SamePerson = !strcmp(localident, remoteident)
943 && !strcmp(localip, remoteip);
946 * if ident@ip is equal, and theirs is newer, or
947 * ident@ip differ, and ours is newer
949 if((SamePerson && remotets < localts) ||
950 (!SamePerson && remotets > localts))
952 /* remote needs to change */
953 bChangeLocal = false;
957 /* ours needs to change */
958 bChangeRemote = false;
965 u->ForceNickChange(u->uuid);
973 * Cheat a little here. Instead of a dedicated command to change UID,
974 * use SVSNICK and accept their client with it's UID (as we know the SVSNICK will
975 * not fail under any circumstances -- UIDs are netwide exclusive).
977 * This means that each side of a collide will generate one extra NICK back to where
978 * they have just linked (and where it got the SVSNICK from), however, it will
979 * be dropped harmlessly as it will come in as :928AAAB NICK 928AAAB, and we already
980 * have 928AAAB's nick set to that.
983 User *remote = this->Instance->FindUUID(remoteuid);
987 /* buh.. nick change collide. force change their nick. */
988 remote->ForceNickChange(remote->uuid);
992 /* user has not been introduced yet, just inform their server */
993 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" SVSNICK "+remoteuid+" " + remoteuid + " " + ConvToStr(remotets));
1003 bool TreeSocket::ParseUID(const std::string &source, std::deque<std::string> ¶ms)
1005 /** Do we have enough parameters:
1006 * UID uuid age nick host dhost ident +modestr ip.string :gecos
1008 if (params.size() != 10)
1010 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" KILL "+params[0]+" :Invalid client introduction ("+params[0]+" with only "+
1011 ConvToStr(params.size())+" of 10 parameters?)");
1015 time_t age = ConvToInt(params[1]);
1016 time_t signon = ConvToInt(params[8]);
1017 const char* tempnick = params[2].c_str();
1020 /* XXX probably validate UID length too -- w00t */
1021 cmd_validation valid[] = { {"Nickname", 2, NICKMAX}, {"Hostname", 3, 64}, {"Displayed hostname", 4, 64}, {"Ident", 5, IDENTMAX}, {"GECOS", 9, MAXGECOS}, {"", 0, 0} };
1023 TreeServer* remoteserver = Utils->FindServer(source);
1027 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" KILL "+params[0]+" :Invalid client introduction (Unknown server "+source+")");
1031 /* Check parameters for validity before introducing the client, discovered by dmb */
1034 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" KILL "+params[0]+" :Invalid client introduction (Invalid TS?)");
1038 for (size_t x = 0; valid[x].length; ++x)
1040 if (params[valid[x].param].length() > valid[x].length)
1042 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" KILL "+params[0]+" :Invalid client introduction (" + valid[x].item + " > " + ConvToStr(valid[x].length) + ")");
1048 /* check for collision */
1049 user_hash::iterator iter = this->Instance->clientlist->find(tempnick);
1051 if (iter != this->Instance->clientlist->end())
1056 Instance->Log(DEBUG,"*** Collision on %s", tempnick);
1057 int collide = this->DoCollision(iter->second, age, params[5].c_str(), params[7].c_str(), params[0].c_str());
1061 /* remote client changed, make sure we change their nick for the hash too */
1062 tempnick = params[0].c_str();
1066 /* IMPORTANT NOTE: For remote users, we pass the UUID in the constructor. This automatically
1067 * sets it up in the UUID hash for us.
1072 _new = new User(this->Instance, params[0]);
1076 SendError("Protocol violation - Duplicate UUID '" + params[0] + "' on introduction of new user");
1079 (*(this->Instance->clientlist))[tempnick] = _new;
1080 _new->SetFd(FD_MAGIC_NUMBER);
1081 strlcpy(_new->nick, tempnick, NICKMAX - 1);
1082 strlcpy(_new->host, params[3].c_str(),64);
1083 strlcpy(_new->dhost, params[4].c_str(),64);
1084 _new->server = this->Instance->FindServerNamePtr(remoteserver->GetName().c_str());
1085 strlcpy(_new->ident, params[5].c_str(),IDENTMAX);
1086 strlcpy(_new->fullname, params[9].c_str(),MAXGECOS);
1087 _new->registered = REG_ALL;
1088 _new->signon = signon;
1091 /* we need to remove the + from the modestring, so we can do our stuff */
1092 std::string::size_type pos_after_plus = params[6].find_first_not_of('+');
1093 if (pos_after_plus != std::string::npos)
1094 params[6] = params[6].substr(pos_after_plus);
1096 for (std::string::iterator v = params[6].begin(); v != params[6].end(); v++)
1098 /* For each mode thats set, increase counter */
1099 ModeHandler* mh = Instance->Modes->FindMode(*v, MODETYPE_USER);
1103 mh->OnModeChange(_new, _new, NULL, empty, true);
1104 _new->SetMode(*v, true);
1109 /* now we've done with modes processing, put the + back for remote servers */
1110 params[6] = "+" + params[6];
1112 #ifdef SUPPORT_IP6LINKS
1113 if (params[7].find_first_of(":") != std::string::npos)
1114 _new->SetSockAddr(AF_INET6, params[7].c_str(), 0);
1117 _new->SetSockAddr(AF_INET, params[7].c_str(), 0);
1119 Instance->AddGlobalClone(_new);
1121 bool dosend = !(((this->Utils->quiet_bursts) && (this->bursting || Utils->FindRemoteBurstServer(remoteserver))) || (this->Instance->SilentULine(_new->server)));
1124 this->Instance->SNO->WriteToSnoMask('C',"Client connecting at %s: %s!%s@%s [%s] [%s]",_new->server,_new->nick,_new->ident,_new->host, _new->GetIPString(), _new->fullname);
1126 params[9] = ":" + params[9];
1127 Utils->DoOneToAllButSender(source, "UID", params, source);
1129 // Increment the Source Servers User Count..
1130 TreeServer* SourceServer = Utils->FindServer(source);
1133 SourceServer->AddUserCount();
1136 FOREACH_MOD_I(Instance,I_OnPostConnect,OnPostConnect(_new));
1141 /** Send one or more FJOINs for a channel of users.
1142 * If the length of a single line is more than 480-NICKMAX
1143 * in length, it is split over multiple lines.
1145 void TreeSocket::SendFJoins(TreeServer* Current, Channel* c)
1149 std::string individual_halfops = std::string(":")+this->Instance->Config->GetSID()+" FMODE "+c->name+" "+ConvToStr(c->age);
1151 size_t dlen, curlen;
1152 dlen = curlen = snprintf(list,MAXBUF,":%s FJOIN %s %lu",this->Instance->Config->GetSID().c_str(),c->name,(unsigned long)c->age);
1154 char* ptr = list + dlen;
1156 CUList *ulist = c->GetUsers();
1160 for (CUList::iterator i = ulist->begin(); i != ulist->end(); i++)
1162 // The first parameter gets a : before it
1163 size_t ptrlen = snprintf(ptr, MAXBUF, " %s%s,%s", !numusers ? ":" : "", c->GetAllPrefixChars(i->first), i->first->uuid);
1170 if (curlen > (480-NICKMAX))
1172 buffer.append(list).append("\r\n");
1173 dlen = curlen = snprintf(list,MAXBUF,":%s FJOIN %s %lu",this->Instance->Config->GetSID().c_str(),c->name,(unsigned long)c->age);
1181 buffer.append(list).append("\r\n");
1183 buffer.append(":").append(this->Instance->Config->GetSID()).append(" FMODE ").append(c->name).append(" ").append(ConvToStr(c->age)).append(" +").append(c->ChanModes(true)).append("\r\n");
1186 for (BanList::iterator b = c->bans.begin(); b != c->bans.end(); b++)
1188 int size = strlen(b->data) + 2;
1189 int currsize = linesize + size;
1190 if (currsize <= 350)
1193 params.append(" ").append(b->data);
1196 if ((params.length() >= MAXMODES) || (currsize > 350))
1198 /* Wrap at MAXMODES */
1199 buffer.append(":").append(this->Instance->Config->GetSID()).append(" FMODE ").append(c->name).append(" ").append(ConvToStr(c->age)).append(" +").append(modes).append(params).append("\r\n");
1206 /* Only send these if there are any */
1208 buffer.append(":").append(this->Instance->Config->GetSID()).append(" FMODE ").append(c->name).append(" ").append(ConvToStr(c->age)).append(" +").append(modes).append(params);
1210 this->WriteLine(buffer);
1213 /** Send G, Q, Z and E lines */
1214 void TreeSocket::SendXLines(TreeServer* Current)
1218 std::string n = this->Instance->Config->GetSID();
1219 const char* sn = n.c_str();
1220 /* Yes, these arent too nice looking, but they get the job done */
1222 /* FIXME: FOR THE LOVE OF ZOMBIE JESUS, FIX ME */
1224 /* for (std::vector<ZLine*>::iterator i = Instance->XLines->zlines.begin(); i != Instance->XLines->zlines.end(); i++)
1226 snprintf(data,MAXBUF,":%s ADDLINE Z %s %s %lu %lu :%s\r\n",sn,(*i)->ipaddr,(*i)->source,(unsigned long)(*i)->set_time,(unsigned long)(*i)->duration,(*i)->reason);
1227 buffer.append(data);
1229 for (std::vector<QLine*>::iterator i = Instance->XLines->qlines.begin(); i != Instance->XLines->qlines.end(); i++)
1231 snprintf(data,MAXBUF,":%s ADDLINE Q %s %s %lu %lu :%s\r\n",sn,(*i)->nick,(*i)->source,(unsigned long)(*i)->set_time,(unsigned long)(*i)->duration,(*i)->reason);
1232 buffer.append(data);
1234 for (std::vector<GLine*>::iterator i = Instance->XLines->glines.begin(); i != Instance->XLines->glines.end(); i++)
1236 snprintf(data,MAXBUF,":%s ADDLINE G %s@%s %s %lu %lu :%s\r\n",sn,(*i)->identmask,(*i)->hostmask,(*i)->source,(unsigned long)(*i)->set_time,(unsigned long)(*i)->duration,(*i)->reason);
1237 buffer.append(data);
1239 for (std::vector<ELine*>::iterator i = Instance->XLines->elines.begin(); i != Instance->XLines->elines.end(); i++)
1241 snprintf(data,MAXBUF,":%s ADDLINE E %s@%s %s %lu %lu :%s\r\n",sn,(*i)->identmask,(*i)->hostmask,(*i)->source,(unsigned long)(*i)->set_time,(unsigned long)(*i)->duration,(*i)->reason);
1242 buffer.append(data);
1245 if (!buffer.empty())
1246 this->WriteLine(buffer);
1249 /** Send channel modes and topics */
1250 void TreeSocket::SendChannelModes(TreeServer* Current)
1253 std::deque<std::string> list;
1254 std::string n = this->Instance->Config->GetSID();
1255 const char* sn = n.c_str();
1256 Instance->Log(DEBUG,"Sending channels and modes, %d to send", this->Instance->chanlist->size());
1257 for (chan_hash::iterator c = this->Instance->chanlist->begin(); c != this->Instance->chanlist->end(); c++)
1259 SendFJoins(Current, c->second);
1260 if (*c->second->topic)
1262 snprintf(data,MAXBUF,":%s FTOPIC %s %lu %s :%s",sn,c->second->name,(unsigned long)c->second->topicset,c->second->setby,c->second->topic);
1263 this->WriteLine(data);
1265 FOREACH_MOD_I(this->Instance,I_OnSyncChannel,OnSyncChannel(c->second,(Module*)Utils->Creator,(void*)this));
1267 c->second->GetExtList(list);
1268 for (unsigned int j = 0; j < list.size(); j++)
1270 FOREACH_MOD_I(this->Instance,I_OnSyncChannelMetaData,OnSyncChannelMetaData(c->second,(Module*)Utils->Creator,(void*)this,list[j]));
1275 /** send all users and their oper state/modes */
1276 void TreeSocket::SendUsers(TreeServer* Current)
1279 std::deque<std::string> list;
1280 std::string dataline;
1281 for (user_hash::iterator u = this->Instance->clientlist->begin(); u != this->Instance->clientlist->end(); u++)
1283 if (u->second->registered == REG_ALL)
1285 TreeServer* theirserver = Utils->FindServer(u->second->server);
1288 snprintf(data,MAXBUF,":%s UID %s %lu %s %s %s %s +%s %s %lu :%s", theirserver->GetID().c_str(), u->second->uuid,
1289 (unsigned long)u->second->age, u->second->nick, u->second->host, u->second->dhost,
1290 u->second->ident, u->second->FormatModes(), u->second->GetIPString(),
1291 (unsigned long)u->second->signon, u->second->fullname);
1292 this->WriteLine(data);
1293 if (*u->second->oper)
1295 snprintf(data,MAXBUF,":%s OPERTYPE %s", u->second->uuid, u->second->oper);
1296 this->WriteLine(data);
1298 if (*u->second->awaymsg)
1300 snprintf(data,MAXBUF,":%s AWAY :%s", u->second->uuid, u->second->awaymsg);
1301 this->WriteLine(data);
1305 FOREACH_MOD_I(this->Instance,I_OnSyncUser,OnSyncUser(u->second,(Module*)Utils->Creator,(void*)this));
1307 u->second->GetExtList(list);
1308 for (unsigned int j = 0; j < list.size(); j++)
1310 FOREACH_MOD_I(this->Instance,I_OnSyncUserMetaData,OnSyncUserMetaData(u->second,(Module*)Utils->Creator,(void*)this,list[j]));
1316 /** This function is called when we want to send a netburst to a local
1317 * server. There is a set order we must do this, because for example
1318 * users require their servers to exist, and channels require their
1319 * users to exist. You get the idea.
1321 void TreeSocket::DoBurst(TreeServer* s)
1323 std::string name = s->GetName();
1324 std::string burst = "BURST "+ConvToStr(Instance->Time(true));
1325 std::string endburst = "ENDBURST";
1326 this->Instance->SNO->WriteToSnoMask('l',"Bursting to \2%s\2 (Authentication: %s).", name.c_str(), this->GetTheirChallenge().empty() ? "plaintext password" : "SHA256-HMAC challenge-response");
1327 this->WriteLine(burst);
1328 /* send our version string */
1329 this->WriteLine(std::string(":")+this->Instance->Config->GetSID()+" VERSION :"+this->Instance->GetVersionString());
1330 /* Send server tree */
1331 this->SendServers(Utils->TreeRoot,s,1);
1332 /* Send users and their oper status */
1334 /* Send everything else (channel modes, xlines etc) */
1335 this->SendChannelModes(s);
1336 this->SendXLines(s);
1337 FOREACH_MOD_I(this->Instance,I_OnSyncOtherMetaData,OnSyncOtherMetaData((Module*)Utils->Creator,(void*)this));
1338 this->WriteLine(endburst);
1339 this->Instance->SNO->WriteToSnoMask('l',"Finished bursting to \2"+name+"\2.");
1342 /** This function is called when we receive data from a remote
1343 * server. We buffer the data in a std::string (it doesnt stay
1344 * there for long), reading using BufferedSocket::Read() which can
1345 * read up to 16 kilobytes in one operation.
1347 * IF THIS FUNCTION RETURNS FALSE, THE CORE CLOSES AND DELETES
1348 * THE SOCKET OBJECT FOR US.
1350 bool TreeSocket::OnDataReady()
1352 char* data = this->Read();
1353 /* Check that the data read is a valid pointer and it has some content */
1356 this->in_buffer.append(data);
1357 /* While there is at least one new line in the buffer,
1358 * do something useful (we hope!) with it.
1360 while (in_buffer.find("\n") != std::string::npos)
1362 std::string ret = in_buffer.substr(0,in_buffer.find("\n")-1);
1363 in_buffer = in_buffer.substr(in_buffer.find("\n")+1,in_buffer.length()-in_buffer.find("\n"));
1364 /* Use rfind here not find, as theres more
1365 * chance of the \r being near the end of the
1366 * string, not the start.
1368 if (ret.find("\r") != std::string::npos)
1369 ret = in_buffer.substr(0,in_buffer.find("\r")-1);
1370 /* Process this one, abort if it
1371 * didnt return true.
1373 if (!this->ProcessLine(ret))
1380 /* EAGAIN returns an empty but non-NULL string, so this
1381 * evaluates to TRUE for EAGAIN but to FALSE for EOF.
1383 return (data && !*data);