view.c 21.8 KB
Newer Older
Bob Halley's avatar
add  
Bob Halley committed
1
/*
Bob Halley's avatar
Bob Halley committed
2
 * Copyright (C) 1999, 2000  Internet Software Consortium.
Bob Halley's avatar
add  
Bob Halley committed
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26
 * 
 * Permission to use, copy, modify, and distribute this software for any
 * purpose with or without fee is hereby granted, provided that the above
 * copyright notice and this permission notice appear in all copies.
 * 
 * THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM DISCLAIMS
 * ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES
 * OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL INTERNET SOFTWARE
 * CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL
 * DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR
 * PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS
 * ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS
 * SOFTWARE.
 */

#include <config.h>

#include <string.h>

#include <isc/types.h>
#include <isc/result.h>
#include <isc/mem.h>
#include <isc/assertions.h>
#include <isc/error.h>
Michael Graff's avatar
Michael Graff committed
27
#include <isc/util.h>
Bob Halley's avatar
add  
Bob Halley committed
28 29

#include <dns/types.h>
30
#include <dns/acl.h>
Bob Halley's avatar
add adb  
Bob Halley committed
31
#include <dns/adb.h>
32
#include <dns/cache.h>
Bob Halley's avatar
add  
Bob Halley committed
33
#include <dns/dbtable.h>
Bob Halley's avatar
Bob Halley committed
34
#include <dns/db.h>
35
#include <dns/events.h>
Bob Halley's avatar
Bob Halley committed
36
#include <dns/fixedname.h>
37
#include <dns/keytable.h>
38
#include <dns/peer.h>
Bob Halley's avatar
Bob Halley committed
39
#include <dns/rbt.h>
Bob Halley's avatar
Bob Halley committed
40
#include <dns/rdataset.h>
Bob Halley's avatar
add  
Bob Halley committed
41
#include <dns/resolver.h>
Brian Wellington's avatar
Brian Wellington committed
42
#include <dns/tsig.h>
Bob Halley's avatar
add  
Bob Halley committed
43
#include <dns/view.h>
44
#include <dns/zone.h>
45
#include <dns/zt.h>
Bob Halley's avatar
add  
Bob Halley committed
46

47 48 49 50 51 52
#define RESSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_RESSHUTDOWN) != 0)
#define ADBSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_ADBSHUTDOWN) != 0)

static void resolver_shutdown(isc_task_t *task, isc_event_t *event);
static void adb_shutdown(isc_task_t *task, isc_event_t *event);

Bob Halley's avatar
add  
Bob Halley committed
53
isc_result_t
54 55
dns_view_create(isc_mem_t *mctx, dns_rdataclass_t rdclass,
		const char *name, dns_view_t **viewp)
Bob Halley's avatar
add  
Bob Halley committed
56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82
{
	dns_view_t *view;
	isc_result_t result;

	/*
	 * Create a view.
	 */

	REQUIRE(name != NULL);
	REQUIRE(viewp != NULL && *viewp == NULL);

	view = isc_mem_get(mctx, sizeof *view);
	if (view == NULL)
		return (ISC_R_NOMEMORY);
	view->name = isc_mem_strdup(mctx, name);
	if (view->name == NULL) {
		result = ISC_R_NOMEMORY;
		goto cleanup_view;
	}
	result = isc_mutex_init(&view->lock);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_mutex_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_name;
	}
83
	result = isc_rwlock_init(&view->conflock, 1, 1);
84 85 86 87 88 89 90
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_rwlock_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_mutex;
	}
91 92
	view->zonetable = NULL;
	result = dns_zt_create(mctx, rdclass, &view->zonetable);
Bob Halley's avatar
add  
Bob Halley committed
93 94
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
95
				 "dns_zt_create() failed: %s",
Bob Halley's avatar
add  
Bob Halley committed
96 97
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
98
		goto cleanup_rwlock;
Bob Halley's avatar
add  
Bob Halley committed
99
	}
Bob Halley's avatar
Bob Halley committed
100
	view->secroots = NULL;
101
	result = dns_keytable_create(mctx, &view->secroots);
Bob Halley's avatar
Bob Halley committed
102 103
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
104
				 "dns_keytable_create() failed: %s",
Bob Halley's avatar
Bob Halley committed
105 106
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
107
		goto cleanup_zt;
Bob Halley's avatar
Bob Halley committed
108
	}
109 110 111 112 113 114 115 116 117
	view->trustedkeys = NULL;
	result = dns_keytable_create(mctx, &view->trustedkeys);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "dns_keytable_create() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_secroots;
	}
118

119
	view->cache = NULL;
Bob Halley's avatar
Bob Halley committed
120
	view->cachedb = NULL;
Bob Halley's avatar
Bob Halley committed
121
	view->hints = NULL;
Bob Halley's avatar
add  
Bob Halley committed
122
	view->resolver = NULL;
Bob Halley's avatar
add adb  
Bob Halley committed
123
	view->adb = NULL;
Bob Halley's avatar
add  
Bob Halley committed
124 125
	view->mctx = mctx;
	view->rdclass = rdclass;
Bob Halley's avatar
Bob Halley committed
126
	view->frozen = ISC_FALSE;
127
	view->task = NULL;
Bob Halley's avatar
add  
Bob Halley committed
128
	view->references = 1;
129
	view->attributes = (DNS_VIEWATTR_RESSHUTDOWN|DNS_VIEWATTR_ADBSHUTDOWN);
Brian Wellington's avatar
Brian Wellington committed
130 131
	view->statickeys = NULL;
	view->dynamickeys = NULL;
132
	view->matchclients = NULL;
133
	result = dns_tsigkeyring_create(view->mctx, &view->dynamickeys);
134
	if (result != ISC_R_SUCCESS)
135
		goto cleanup_trustedkeys;
136
	view->peers = NULL;
137 138 139 140 141

	/* Initialize configuration data with default values. */	
	view->recursion = ISC_TRUE;
	view->auth_nxdomain = ISC_FALSE; /* Was true in BIND 8 */
	view->transfer_format = dns_one_answer;
142 143
	view->queryacl = NULL;
	view->recursionacl = NULL;
144 145
	view->requestixfr = ISC_TRUE;
	view->provideixfr = ISC_TRUE;
146

147
	result = dns_peerlist_new(view->mctx, &view->peers);
148
	if (result != ISC_R_SUCCESS)
149
		goto cleanup_dynkeys;
Michael Graff's avatar
Michael Graff committed
150
	ISC_LINK_INIT(view, link);
151 152 153 154 155 156
	ISC_EVENT_INIT(&view->resevent, sizeof view->resevent, 0, NULL,
		       DNS_EVENT_VIEWRESSHUTDOWN, resolver_shutdown,
		       view, NULL, NULL, NULL);
	ISC_EVENT_INIT(&view->adbevent, sizeof view->adbevent, 0, NULL,
		       DNS_EVENT_VIEWADBSHUTDOWN, adb_shutdown,
		       view, NULL, NULL, NULL);
Bob Halley's avatar
add  
Bob Halley committed
157 158 159 160 161 162
	view->magic = DNS_VIEW_MAGIC;
	
	*viewp = view;

	return (ISC_R_SUCCESS);

163 164 165
 cleanup_dynkeys:
	dns_tsigkeyring_destroy(&view->dynamickeys);	

166 167 168
 cleanup_trustedkeys:
	dns_keytable_detach(&view->trustedkeys);

169
 cleanup_secroots:
170
	dns_keytable_detach(&view->secroots);
171
	
172 173
 cleanup_zt:
	dns_zt_detach(&view->zonetable);
Bob Halley's avatar
Bob Halley committed
174

175 176 177
 cleanup_rwlock:
	isc_rwlock_destroy(&view->conflock);

Bob Halley's avatar
add  
Bob Halley committed
178 179 180 181 182 183 184 185 186 187 188 189 190 191
 cleanup_mutex:
	isc_mutex_destroy(&view->lock);

 cleanup_name:
	isc_mem_free(mctx, view->name);

 cleanup_view:
	isc_mem_put(mctx, view, sizeof *view);

	return (result);
}

void
dns_view_attach(dns_view_t *source, dns_view_t **targetp) {
Bob Halley's avatar
Bob Halley committed
192 193 194 195 196

	/*
	 * Attach '*targetp' to 'source'.
	 */

Bob Halley's avatar
add  
Bob Halley committed
197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213
	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);

	INSIST(source->references > 0);
	source->references++;
	INSIST(source->references != 0);

	UNLOCK(&source->lock);

	*targetp = source;
}

static inline void
destroy(dns_view_t *view) {
	REQUIRE(!ISC_LINK_LINKED(view, link));
214 215 216
	REQUIRE(view->references == 0);
	REQUIRE(RESSHUTDOWN(view));
	REQUIRE(ADBSHUTDOWN(view));
Bob Halley's avatar
add  
Bob Halley committed
217

218 219
	if (view->peers != NULL)
		dns_peerlist_detach(&view->peers);
220
	if (view->dynamickeys != NULL)	
221
		dns_tsigkeyring_destroy(&view->dynamickeys);
222
	if (view->statickeys != NULL)	
223
		dns_tsigkeyring_destroy(&view->statickeys);
Bob Halley's avatar
add adb  
Bob Halley committed
224 225
	if (view->adb != NULL)
		dns_adb_detach(&view->adb);
Bob Halley's avatar
add  
Bob Halley committed
226 227
	if (view->resolver != NULL)
		dns_resolver_detach(&view->resolver);
228 229
	if (view->task != NULL)
		isc_task_detach(&view->task);
Bob Halley's avatar
Bob Halley committed
230 231
	if (view->hints != NULL)
		dns_db_detach(&view->hints);
Bob Halley's avatar
Bob Halley committed
232 233
	if (view->cachedb != NULL)
		dns_db_detach(&view->cachedb);
234 235
	if (view->cache != NULL)
		dns_cache_detach(&view->cache);
236 237
	if (view->matchclients != NULL)
		dns_acl_detach(&view->matchclients);
238 239 240 241
	if (view->queryacl != NULL)
		dns_acl_detach(&view->queryacl);
	if (view->recursionacl != NULL)
		dns_acl_detach(&view->recursionacl);
242
	dns_zt_detach(&view->zonetable);
243 244
	dns_keytable_detach(&view->trustedkeys);
	dns_keytable_detach(&view->secroots);
Bob Halley's avatar
add  
Bob Halley committed
245 246 247 248 249
	isc_mutex_destroy(&view->lock);
	isc_mem_free(view->mctx, view->name);
	isc_mem_put(view->mctx, view, sizeof *view);
}

250 251 252 253 254 255 256 257 258 259 260 261
static isc_boolean_t
all_done(dns_view_t *view) {
	/*
	 * Caller must be holding the view lock.
	 */

	if (view->references == 0 && RESSHUTDOWN(view) && ADBSHUTDOWN(view))
		return (ISC_TRUE);

	return (ISC_FALSE);
}

Bob Halley's avatar
add  
Bob Halley committed
262 263 264
void
dns_view_detach(dns_view_t **viewp) {
	dns_view_t *view;
265
	isc_boolean_t done = ISC_FALSE;
Bob Halley's avatar
add  
Bob Halley committed
266

Bob Halley's avatar
Bob Halley committed
267 268 269 270
	/*
	 * Detach '*viewp' from its view.
	 */

Bob Halley's avatar
add  
Bob Halley committed
271 272 273 274 275 276 277 278
	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->references > 0);
	view->references--;
279 280 281 282 283 284 285
	if (view->references == 0) {
		if (!RESSHUTDOWN(view))
			dns_resolver_shutdown(view->resolver);
		if (!ADBSHUTDOWN(view))
			dns_adb_shutdown(view->adb);
		done = all_done(view);
	}
Bob Halley's avatar
add  
Bob Halley committed
286 287 288 289
	UNLOCK(&view->lock);

	*viewp = NULL;

290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334
	if (done)
		destroy(view);
}

static void
resolver_shutdown(isc_task_t *task, isc_event_t *event) {
	dns_view_t *view = event->arg;
	isc_boolean_t done;
	
	REQUIRE(event->type == DNS_EVENT_VIEWRESSHUTDOWN);
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_RESSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

static void
adb_shutdown(isc_task_t *task, isc_event_t *event) {
	dns_view_t *view = event->arg;
	isc_boolean_t done;
	
	REQUIRE(event->type == DNS_EVENT_VIEWADBSHUTDOWN);
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_ADBSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
Bob Halley's avatar
add  
Bob Halley committed
335 336
		destroy(view);
}
337

Bob Halley's avatar
Bob Halley committed
338
isc_result_t
Bob Halley's avatar
Bob Halley committed
339 340 341 342
dns_view_createresolver(dns_view_t *view,
			isc_taskmgr_t *taskmgr, unsigned int ntasks,
			isc_socketmgr_t *socketmgr,
			isc_timermgr_t *timermgr,
343 344 345
			unsigned int options,
			dns_dispatch_t *dispatchv4,
			dns_dispatch_t *dispatchv6)
Bob Halley's avatar
Bob Halley committed
346
{
Bob Halley's avatar
add adb  
Bob Halley committed
347
	isc_result_t result;
348
	isc_event_t *event;
Bob Halley's avatar
add adb  
Bob Halley committed
349

Bob Halley's avatar
Bob Halley committed
350
	/*
Bob Halley's avatar
add adb  
Bob Halley committed
351
	 * Create a resolver and address database for the view.
Bob Halley's avatar
Bob Halley committed
352 353
	 */

354
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
355
	REQUIRE(!view->frozen);
356
	REQUIRE(view->resolver == NULL);
357 358 359 360

	result = isc_task_create(taskmgr, view->mctx, 0, &view->task);
	if (result != ISC_R_SUCCESS)
		return (result);
Bob Halley's avatar
Bob Halley committed
361
	isc_task_setname(view->task, "view", view);
362

Bob Halley's avatar
add adb  
Bob Halley committed
363
	result = dns_resolver_create(view, taskmgr, ntasks, socketmgr,
364 365
				     timermgr, options, dispatchv4, dispatchv6,
				     &view->resolver);
366 367
	if (result != ISC_R_SUCCESS) {
		isc_task_detach(&view->task);
Bob Halley's avatar
add adb  
Bob Halley committed
368
		return (result);
369 370 371 372 373
	}
	event = &view->resevent;
	dns_resolver_whenshutdown(view->resolver, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_RESSHUTDOWN;

Bob Halley's avatar
add adb  
Bob Halley committed
374 375
	result = dns_adb_create(view->mctx, view, timermgr, taskmgr,
				&view->adb);
376 377 378 379 380 381 382
	if (result != ISC_R_SUCCESS) {
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->adbevent;
	dns_adb_whenshutdown(view->adb, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_ADBSHUTDOWN;
Bob Halley's avatar
add adb  
Bob Halley committed
383

384
	return (ISC_R_SUCCESS);
385 386 387
}

void
388
dns_view_setcache(dns_view_t *view, dns_cache_t *cache) {
Bob Halley's avatar
Bob Halley committed
389 390

	/*
391
	 * Set the view's cache.
Bob Halley's avatar
Bob Halley committed
392 393
	 */

394
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
395
	REQUIRE(!view->frozen);
396

397
	if (view->cache != NULL) {
Bob Halley's avatar
add adb  
Bob Halley committed
398
		dns_db_detach(&view->cachedb);
399 400 401 402 403
		dns_cache_detach(&view->cache);
	}
	dns_cache_attach(cache, &view->cache);
	dns_cache_attachdb(cache, &view->cachedb);
	INSIST(DNS_DB_VALID(view->cachedb));
404 405
}

Bob Halley's avatar
Bob Halley committed
406 407 408 409 410 411 412 413 414 415 416 417 418 419 420
void
dns_view_sethints(dns_view_t *view, dns_db_t *hints) {

	/*
	 * Set the view's hints database.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);
	REQUIRE(view->hints == NULL);
	REQUIRE(dns_db_iszone(hints));

	dns_db_attach(hints, &view->hints);
}

Brian Wellington's avatar
Brian Wellington committed
421 422 423
void
dns_view_setkeyring(dns_view_t *view, dns_tsig_keyring_t *ring) {
	/*
424
	 * Set the view's static TSIG keyring.
Brian Wellington's avatar
Brian Wellington committed
425 426 427
	 */
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(ring != NULL);
428
	if (view->statickeys != NULL)
429
		dns_tsigkeyring_destroy(&view->statickeys);
Brian Wellington's avatar
Brian Wellington committed
430 431 432
	view->statickeys = ring;
}

433
isc_result_t
434
dns_view_addzone(dns_view_t *view, dns_zone_t *zone) {
Bob Halley's avatar
Bob Halley committed
435 436 437
	isc_result_t result;

	/*
438
	 * Add zone 'zone' to 'view'.
Bob Halley's avatar
Bob Halley committed
439 440
	 */

441
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
442 443
	REQUIRE(!view->frozen);

444
	result = dns_zt_mount(view->zonetable, zone);
445
	dns_zone_setview(zone, view);
446

Bob Halley's avatar
Bob Halley committed
447
	return (result);
448 449 450 451
}

void
dns_view_freeze(dns_view_t *view) {
Bob Halley's avatar
Bob Halley committed
452 453 454 455 456 457 458 459
	
	/*
	 * Freeze view.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);

460 461
	if (view->resolver != NULL) {
		INSIST(view->cachedb != NULL);
Bob Halley's avatar
Bob Halley committed
462
		dns_resolver_freeze(view->resolver);
463
	}
Bob Halley's avatar
Bob Halley committed
464 465 466
	view->frozen = ISC_TRUE;
}

467
isc_result_t
468
dns_view_findzone(dns_view_t *view, dns_name_t *name, dns_zone_t **zonep) {
469 470 471 472
	isc_result_t result;

	REQUIRE(DNS_VIEW_VALID(view));

473
	result = dns_zt_find(view->zonetable, name, NULL, zonep);
474
	if (result == DNS_R_PARTIALMATCH) {
475
		dns_zone_detach(zonep);
476
		result = ISC_R_NOTFOUND;
477
	}
478

479 480 481
	return (result);
}

Bob Halley's avatar
Bob Halley committed
482 483
isc_result_t
dns_view_find(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
484 485
	      isc_stdtime_t now, unsigned int options,
	      isc_boolean_t use_hints, dns_name_t *foundname,
Bob Halley's avatar
Bob Halley committed
486 487 488 489 490 491 492
	      dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	dns_dbversion_t *version;
	isc_boolean_t is_zone;
	dns_rdataset_t zrdataset, zsigrdataset;
493
	dns_zone_t *zone;
Bob Halley's avatar
Bob Halley committed
494 495 496 497 498 499

	/*
	 * Find an rdataset whose owner name is 'name', and whose type is
	 * 'type'.
	 */

500
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
501 502 503 504 505 506 507 508 509 510 511 512
	REQUIRE(view->frozen);
	REQUIRE(type != dns_rdatatype_any && type != dns_rdatatype_sig);

	/*
	 * Initialize.
	 */
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find a database to answer the query.
	 */
513
	zone = NULL;
Bob Halley's avatar
Bob Halley committed
514
	db = NULL;
515 516 517
	result = dns_zt_find(view->zonetable, name, NULL, &zone);
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH) {
		result = dns_zone_getdb(zone, &db);
518
		if (result != ISC_R_SUCCESS && view->cachedb != NULL)
519
			dns_db_attach(view->cachedb, &db);
520
		else if (result != ISC_R_SUCCESS)
521 522
			goto cleanup;
	} else if (result == ISC_R_NOTFOUND && view->cachedb != NULL)
Bob Halley's avatar
Bob Halley committed
523
		dns_db_attach(view->cachedb, &db);
524
	else
Bob Halley's avatar
Bob Halley committed
525 526 527
		goto cleanup;

	is_zone = dns_db_iszone(db);
528

Bob Halley's avatar
Bob Halley committed
529 530 531 532 533
 db_find:
	/*
	 * Now look for an answer in the database.
	 */
	result = dns_db_find(db, name, NULL, type, options,
534
			     now, NULL, foundname, rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
535 536

	if (result == DNS_R_DELEGATION ||
537
	    result == ISC_R_NOTFOUND) {
Bob Halley's avatar
Bob Halley committed
538 539
		if (rdataset->methods != NULL)
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
540
		if (sigrdataset != NULL && sigrdataset->methods != NULL)
Bob Halley's avatar
Bob Halley committed
541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560
			dns_rdataset_disassociate(sigrdataset);
		if (is_zone) {
			if (view->cachedb != NULL) {
				/*
				 * Either the answer is in the cache, or we
				 * don't know it.
				 */
				is_zone = ISC_FALSE;
				version = NULL;
				dns_db_detach(&db);
				dns_db_attach(view->cachedb, &db);
				goto db_find;
			}
		} else {
			/*
			 * We don't have the data in the cache.  If we've got
			 * glue from the zone, use it.
			 */
			if (zrdataset.methods != NULL) {
				dns_rdataset_clone(&zrdataset, rdataset);
Bob Halley's avatar
Bob Halley committed
561 562
				if (sigrdataset != NULL &&
				    zsigrdataset.methods != NULL)
Bob Halley's avatar
Bob Halley committed
563 564 565 566 567 568 569 570 571
					dns_rdataset_clone(&zsigrdataset,
							   sigrdataset);
				result = DNS_R_GLUE;
				goto cleanup;
			}
		}
		/*
		 * We don't know the answer.
		 */
572
		result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
573 574 575 576 577 578 579 580 581 582
	} else if (result == DNS_R_GLUE) {
		if (view->cachedb != NULL) {
			/*
			 * We found an answer, but the cache may be better.
			 * Remember what we've got and go look in the cache.
			 */
			is_zone = ISC_FALSE;
			version = NULL;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
583 584
			if (sigrdataset != NULL &&
			    sigrdataset->methods != NULL) {
Bob Halley's avatar
Bob Halley committed
585 586 587 588 589 590 591 592 593 594 595
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			goto db_find;
		}
		/*
		 * Otherwise, the glue is the best answer.
		 */
		result = ISC_R_SUCCESS;
Bob Halley's avatar
Bob Halley committed
596 597
	}

598
	if (result == ISC_R_NOTFOUND && use_hints && view->hints != NULL) {
Bob Halley's avatar
Bob Halley committed
599 600
		if (rdataset->methods != NULL)
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
601
		if (sigrdataset != NULL && sigrdataset->methods != NULL)
Bob Halley's avatar
Bob Halley committed
602 603
			dns_rdataset_disassociate(sigrdataset);
		result = dns_db_find(view->hints, name, NULL, type, options,
604
				     now, NULL, foundname,
Bob Halley's avatar
Bob Halley committed
605
				     rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
606 607 608 609 610 611
		if (result == ISC_R_SUCCESS || result == DNS_R_GLUE) {
			/*
			 * We just used a hint.  Let the resolver know it
			 * should consider priming.
			 */
			dns_resolver_prime(view->resolver);
Bob Halley's avatar
Bob Halley committed
612
			result = DNS_R_HINT;
Bob Halley's avatar
Bob Halley committed
613
		} else if (result == DNS_R_NXDOMAIN ||
614 615
			   result == DNS_R_NXRRSET)
			result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
616
	}
Bob Halley's avatar
Bob Halley committed
617 618

 cleanup:
619 620 621 622 623 624 625 626 627
	if (result == DNS_R_NXDOMAIN || result == DNS_R_NXRRSET) {
		/*
		 * We don't care about any DNSSEC proof data in these cases.
		 */
		if (rdataset->methods != NULL)
			dns_rdataset_disassociate(rdataset);
		if (sigrdataset != NULL && sigrdataset->methods != NULL)
			dns_rdataset_disassociate(sigrdataset);
	}
Bob Halley's avatar
Bob Halley committed
628

Bob Halley's avatar
Bob Halley committed
629 630 631 632 633 634 635
	if (zrdataset.methods != NULL) {
		dns_rdataset_disassociate(&zrdataset);
		if (zsigrdataset.methods != NULL)
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
636 637
	if (zone != NULL)
		dns_zone_detach(&zone);
Bob Halley's avatar
Bob Halley committed
638 639

	return (result);
640
}
641

642 643 644 645 646 647 648 649 650 651 652 653 654
isc_result_t
dns_view_simplefind(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
		    isc_stdtime_t now, unsigned int options,
		    isc_boolean_t use_hints,
		    dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_fixedname_t foundname;

	dns_fixedname_init(&foundname);
	result = dns_view_find(view, name, type, now, options, use_hints,
			       dns_fixedname_name(&foundname),
			       rdataset, sigrdataset);
655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671
	if (result == DNS_R_NXDOMAIN) {
		/*
		 * The rdataset and sigrdataset of the relevant NXT record
		 * may be returned, but the caller cannot use them because
		 * foundname is not returned by this simplified API.  We
		 * disassociate them here to prevent any misuse by the caller.
		 */
		if (rdataset->methods != NULL)
			dns_rdataset_disassociate(rdataset);
		if (sigrdataset != NULL && sigrdataset->methods != NULL)
			dns_rdataset_disassociate(sigrdataset);
	} else if (result != ISC_R_SUCCESS &&
		   result != DNS_R_GLUE &&
		   result != DNS_R_HINT &&
		   result != DNS_R_NCACHENXDOMAIN &&
		   result != DNS_R_NCACHENXRRSET &&
		   result != DNS_R_NXRRSET &&
672
		   result != ISC_R_NOTFOUND) {
673 674 675 676
		if (rdataset->methods != NULL)
			dns_rdataset_disassociate(rdataset);
		if (sigrdataset != NULL && sigrdataset->methods != NULL)
			dns_rdataset_disassociate(sigrdataset);
677
		result = ISC_R_NOTFOUND;
678 679 680 681 682
	}

	return (result);
}

Bob Halley's avatar
Bob Halley committed
683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711 712 713 714 715 716 717 718 719 720
isc_result_t
dns_view_findzonecut(dns_view_t *view, dns_name_t *name, dns_name_t *fname,
		     isc_stdtime_t now, unsigned int options,
		     isc_boolean_t use_hints,
		     dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	isc_boolean_t is_zone, use_zone, try_hints;
	dns_zone_t *zone;
	dns_name_t *zfname;
	dns_rdataset_t zrdataset, zsigrdataset;
	dns_fixedname_t zfixedname;

	/*
	 * Find the best known zonecut containing 'name'.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->frozen);

	db = NULL;
	zone = NULL;
	use_zone = ISC_FALSE;
	try_hints = ISC_FALSE;
	zfname = NULL;

	/*
	 * Initialize.
	 */
	dns_fixedname_init(&zfixedname);
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find the right database.
	 */
	result = dns_zt_find(view->zonetable, name, NULL, &zone);
721
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH)
Bob Halley's avatar
Bob Halley committed
722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857
		result = dns_zone_getdb(zone, &db);
	if (result == ISC_R_NOTFOUND) {
		/*
		 * We're not directly authoritative for this query name, nor
		 * is it a subdomain of any zone for which we're
		 * authoritative.
		 */
		if (view->cachedb != NULL) {
			/*
			 * We have a cache; try it.
			 */
			dns_db_attach(view->cachedb, &db);
		} else {
			/*
			 * Maybe we have hints...
			 */
			try_hints = ISC_TRUE;
			goto finish;
		}
	} else if (result != ISC_R_SUCCESS) {
		/*
		 * Something is broken.
		 */
		goto cleanup;
	}
	is_zone = dns_db_iszone(db);

 db_find:
	/*
	 * Look for the zonecut.
	 */
	if (is_zone) {
		result = dns_db_find(db, name, NULL, dns_rdatatype_ns, options,
				     now, NULL, fname, rdataset, sigrdataset);
		if (result == DNS_R_DELEGATION)
			result = ISC_R_SUCCESS;
		else if (result != ISC_R_SUCCESS)
			goto cleanup;
		if (view->cachedb != NULL && db != view->hints) {
			/*
			 * We found an answer, but the cache may be better.
			 */
			zfname = dns_fixedname_name(&zfixedname);
			result = dns_name_concatenate(fname, NULL, zfname,
						      NULL);
			if (result != ISC_R_SUCCESS)
				goto cleanup;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
			    sigrdataset->methods != NULL) {
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			is_zone = ISC_FALSE;
			goto db_find;
		}
	} else {
		result = dns_db_findzonecut(db, name, options, now, NULL,
					    fname, rdataset, sigrdataset);
		if (result == ISC_R_SUCCESS) {
			if (zfname != NULL &&
			    !dns_name_issubdomain(fname, zfname)) {
				/*
				 * We found a zonecut in the cache, but our
				 * zone delegation is better.
				 */
				use_zone = ISC_TRUE;
			}
		} else if (result == ISC_R_NOTFOUND) {
			if (zfname != NULL) {
				/*
				 * We didn't find anything in the cache, but we
				 * have a zone delegation, so use it.
				 */
				use_zone = ISC_TRUE;
			} else {
				/*
				 * Maybe we have hints...
				 */
				try_hints = ISC_TRUE;
			}
		} else {
			/*
			 * Something bad happened.
			 */
			goto cleanup;
		}
	}

 finish:
	if (use_zone) {
		if (rdataset->methods != NULL) {
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
			    sigrdataset->methods != NULL)
				dns_rdataset_disassociate(sigrdataset);
		}
		result = dns_name_concatenate(zfname, NULL, fname, NULL);
		if (result != ISC_R_SUCCESS)
			goto cleanup;
		dns_rdataset_clone(&zrdataset, rdataset);
		if (sigrdataset != NULL && zrdataset.methods != NULL)
			dns_rdataset_clone(&zsigrdataset, sigrdataset);
	} else if (try_hints && use_hints && view->hints != NULL) {
		/*
		 * We've found nothing so far, but we have hints.
		 */
		result = dns_db_find(view->hints, dns_rootname, NULL,
				     dns_rdatatype_ns, 0, now, NULL, fname,
				     rdataset, NULL);
		if (result != ISC_R_SUCCESS) {
			/*
			 * We can't even find the hints for the root
			 * nameservers!
			 */
			result = ISC_R_NOTFOUND;
		}
	}

 cleanup:
	if (zrdataset.methods != NULL) {
		dns_rdataset_disassociate(&zrdataset);
		if (zsigrdataset.methods != NULL)
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
	if (zone != NULL)
		dns_zone_detach(&zone);

	return (result);
}

858 859 860 861
isc_result_t
dns_viewlist_find(dns_viewlist_t *list, const char *name,
		  dns_rdataclass_t rdclass, dns_view_t **viewp)
{
862 863 864 865
	dns_view_t *view;

	REQUIRE(list != NULL);

866 867 868
	for (view = ISC_LIST_HEAD(*list);
	     view != NULL;
	     view = ISC_LIST_NEXT(view, link)) {
869 870 871
		if (strcmp(view->name, name) == 0 && view->rdclass == rdclass)
			break;
	}
872 873 874 875 876 877
	if (view == NULL)
		return (ISC_R_NOTFOUND);

	dns_view_attach(view, viewp);

	return (ISC_R_SUCCESS);
878
}
Mark Andrews's avatar
Mark Andrews committed
879

880 881
isc_result_t
dns_view_load(dns_view_t *view, isc_boolean_t stop) {
Mark Andrews's avatar
Mark Andrews committed
882 883 884

	REQUIRE(DNS_VIEW_VALID(view));

885
	return (dns_zt_load(view->zonetable, stop));
Mark Andrews's avatar
Mark Andrews committed
886
}
Brian Wellington's avatar
Brian Wellington committed
887 888 889 890 891 892 893 894 895 896

isc_result_t
dns_view_checksig(dns_view_t *view, isc_buffer_t *source, dns_message_t *msg) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(source != NULL);

	return dns_tsig_verify(source, msg, view->statickeys,
			       view->dynamickeys);
}