view.c 24.9 KB
Newer Older
Bob Halley's avatar
add  
Bob Halley committed
1
/*
Bob Halley's avatar
Bob Halley committed
2
 * Copyright (C) 1999, 2000  Internet Software Consortium.
3
 *
Bob Halley's avatar
add  
Bob Halley committed
4 5 6
 * Permission to use, copy, modify, and distribute this software for any
 * purpose with or without fee is hereby granted, provided that the above
 * copyright notice and this permission notice appear in all copies.
7
 *
8 9 10 11 12 13 14 15
 * THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM
 * DISCLAIMS ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL
 * INTERNET SOFTWARE CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT,
 * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING
 * FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT,
 * NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION
 * WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
Bob Halley's avatar
add  
Bob Halley committed
16 17
 */

18
/* $Id: view.c,v 1.76 2000/08/17 23:54:32 gson Exp $ */
David Lawrence's avatar
David Lawrence committed
19

Bob Halley's avatar
add  
Bob Halley committed
20 21
#include <config.h>

22
#include <isc/task.h>
23
#include <isc/string.h>		/* Required for HP/UX (and others?) */
Michael Graff's avatar
Michael Graff committed
24
#include <isc/util.h>
Bob Halley's avatar
add  
Bob Halley committed
25

26
#include <dns/acl.h>
Bob Halley's avatar
add adb  
Bob Halley committed
27
#include <dns/adb.h>
28
#include <dns/cache.h>
Bob Halley's avatar
Bob Halley committed
29
#include <dns/db.h>
30
#include <dns/events.h>
31
#include <dns/keytable.h>
32
#include <dns/peer.h>
Bob Halley's avatar
Bob Halley committed
33
#include <dns/rdataset.h>
Mark Andrews's avatar
Mark Andrews committed
34
#include <dns/request.h>
35 36
#include <dns/resolver.h>
#include <dns/result.h>
Brian Wellington's avatar
Brian Wellington committed
37
#include <dns/tsig.h>
38
#include <dns/zone.h>
39
#include <dns/zt.h>
Bob Halley's avatar
add  
Bob Halley committed
40

41 42
#define RESSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_RESSHUTDOWN) != 0)
#define ADBSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_ADBSHUTDOWN) != 0)
Mark Andrews's avatar
Mark Andrews committed
43
#define REQSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_REQSHUTDOWN) != 0)
44 45 46

static void resolver_shutdown(isc_task_t *task, isc_event_t *event);
static void adb_shutdown(isc_task_t *task, isc_event_t *event);
Mark Andrews's avatar
Mark Andrews committed
47
static void req_shutdown(isc_task_t *task, isc_event_t *event);
48

Bob Halley's avatar
add  
Bob Halley committed
49
isc_result_t
50 51
dns_view_create(isc_mem_t *mctx, dns_rdataclass_t rdclass,
		const char *name, dns_view_t **viewp)
Bob Halley's avatar
add  
Bob Halley committed
52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78
{
	dns_view_t *view;
	isc_result_t result;

	/*
	 * Create a view.
	 */

	REQUIRE(name != NULL);
	REQUIRE(viewp != NULL && *viewp == NULL);

	view = isc_mem_get(mctx, sizeof *view);
	if (view == NULL)
		return (ISC_R_NOMEMORY);
	view->name = isc_mem_strdup(mctx, name);
	if (view->name == NULL) {
		result = ISC_R_NOMEMORY;
		goto cleanup_view;
	}
	result = isc_mutex_init(&view->lock);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_mutex_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_name;
	}
79
	result = isc_rwlock_init(&view->conflock, 1, 1);
80 81 82 83 84 85 86
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_rwlock_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_mutex;
	}
87 88
	view->zonetable = NULL;
	result = dns_zt_create(mctx, rdclass, &view->zonetable);
Bob Halley's avatar
add  
Bob Halley committed
89 90
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
91
				 "dns_zt_create() failed: %s",
Bob Halley's avatar
add  
Bob Halley committed
92 93
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
94
		goto cleanup_rwlock;
Bob Halley's avatar
add  
Bob Halley committed
95
	}
Bob Halley's avatar
Bob Halley committed
96
	view->secroots = NULL;
97
	result = dns_keytable_create(mctx, &view->secroots);
Bob Halley's avatar
Bob Halley committed
98 99
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
100
				 "dns_keytable_create() failed: %s",
Bob Halley's avatar
Bob Halley committed
101 102
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
103
		goto cleanup_zt;
Bob Halley's avatar
Bob Halley committed
104
	}
105 106 107 108 109 110 111 112 113
	view->trustedkeys = NULL;
	result = dns_keytable_create(mctx, &view->trustedkeys);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "dns_keytable_create() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_secroots;
	}
114

115
	view->cache = NULL;
Bob Halley's avatar
Bob Halley committed
116
	view->cachedb = NULL;
Bob Halley's avatar
Bob Halley committed
117
	view->hints = NULL;
Bob Halley's avatar
add  
Bob Halley committed
118
	view->resolver = NULL;
Bob Halley's avatar
add adb  
Bob Halley committed
119
	view->adb = NULL;
Mark Andrews's avatar
Mark Andrews committed
120
	view->requestmgr = NULL;
Bob Halley's avatar
add  
Bob Halley committed
121 122
	view->mctx = mctx;
	view->rdclass = rdclass;
Bob Halley's avatar
Bob Halley committed
123
	view->frozen = ISC_FALSE;
124
	view->task = NULL;
Bob Halley's avatar
add  
Bob Halley committed
125
	view->references = 1;
126
	view->weakrefs = 0;
Mark Andrews's avatar
Mark Andrews committed
127 128
	view->attributes = (DNS_VIEWATTR_RESSHUTDOWN|DNS_VIEWATTR_ADBSHUTDOWN|
			    DNS_VIEWATTR_REQSHUTDOWN);
Brian Wellington's avatar
Brian Wellington committed
129 130
	view->statickeys = NULL;
	view->dynamickeys = NULL;
131
	view->matchclients = NULL;
132
	result = dns_tsigkeyring_create(view->mctx, &view->dynamickeys);
133
	if (result != ISC_R_SUCCESS)
134
		goto cleanup_trustedkeys;
135
	view->peers = NULL;
136

137 138
	/*
	 * Initialize configuration data with default values.
139
	 */
140 141
	view->recursion = ISC_TRUE;
	view->auth_nxdomain = ISC_FALSE; /* Was true in BIND 8 */
Michael Graff's avatar
 
Michael Graff committed
142 143
	view->additionalfromcache = ISC_TRUE;
	view->additionalfromauth = ISC_TRUE;
144
	view->transfer_format = dns_one_answer;
145 146
	view->queryacl = NULL;
	view->recursionacl = NULL;
147 148
	view->requestixfr = ISC_TRUE;
	view->provideixfr = ISC_TRUE;
149 150
	view->maxcachettl = 7 * 24 * 3600;
	view->maxncachettl = 3 * 3600;
151
	view->dstport = 53;
152

153
	result = dns_peerlist_new(view->mctx, &view->peers);
154
	if (result != ISC_R_SUCCESS)
155
		goto cleanup_dynkeys;
Michael Graff's avatar
Michael Graff committed
156
	ISC_LINK_INIT(view, link);
157 158 159 160 161 162
	ISC_EVENT_INIT(&view->resevent, sizeof view->resevent, 0, NULL,
		       DNS_EVENT_VIEWRESSHUTDOWN, resolver_shutdown,
		       view, NULL, NULL, NULL);
	ISC_EVENT_INIT(&view->adbevent, sizeof view->adbevent, 0, NULL,
		       DNS_EVENT_VIEWADBSHUTDOWN, adb_shutdown,
		       view, NULL, NULL, NULL);
Mark Andrews's avatar
Mark Andrews committed
163 164 165
	ISC_EVENT_INIT(&view->reqevent, sizeof view->reqevent, 0, NULL,
		       DNS_EVENT_VIEWREQSHUTDOWN, req_shutdown,
		       view, NULL, NULL, NULL);
Bob Halley's avatar
add  
Bob Halley committed
166
	view->magic = DNS_VIEW_MAGIC;
167

Bob Halley's avatar
add  
Bob Halley committed
168 169 170 171
	*viewp = view;

	return (ISC_R_SUCCESS);

172
 cleanup_dynkeys:
173
	dns_tsigkeyring_destroy(&view->dynamickeys);
174

175 176 177
 cleanup_trustedkeys:
	dns_keytable_detach(&view->trustedkeys);

178
 cleanup_secroots:
179
	dns_keytable_detach(&view->secroots);
180

181 182
 cleanup_zt:
	dns_zt_detach(&view->zonetable);
Bob Halley's avatar
Bob Halley committed
183

184 185 186
 cleanup_rwlock:
	isc_rwlock_destroy(&view->conflock);

Bob Halley's avatar
add  
Bob Halley committed
187 188 189 190 191 192 193 194 195 196 197 198 199 200 201
 cleanup_mutex:
	isc_mutex_destroy(&view->lock);

 cleanup_name:
	isc_mem_free(mctx, view->name);

 cleanup_view:
	isc_mem_put(mctx, view, sizeof *view);

	return (result);
}

static inline void
destroy(dns_view_t *view) {
	REQUIRE(!ISC_LINK_LINKED(view, link));
202
	REQUIRE(view->references == 0);
203
	REQUIRE(view->weakrefs == 0);
204 205
	REQUIRE(RESSHUTDOWN(view));
	REQUIRE(ADBSHUTDOWN(view));
Mark Andrews's avatar
Mark Andrews committed
206
	REQUIRE(REQSHUTDOWN(view));
Bob Halley's avatar
add  
Bob Halley committed
207

208 209
	if (view->peers != NULL)
		dns_peerlist_detach(&view->peers);
210
	if (view->dynamickeys != NULL)
211
		dns_tsigkeyring_destroy(&view->dynamickeys);
212
	if (view->statickeys != NULL)
213
		dns_tsigkeyring_destroy(&view->statickeys);
Bob Halley's avatar
add adb  
Bob Halley committed
214 215
	if (view->adb != NULL)
		dns_adb_detach(&view->adb);
Bob Halley's avatar
add  
Bob Halley committed
216 217
	if (view->resolver != NULL)
		dns_resolver_detach(&view->resolver);
Mark Andrews's avatar
Mark Andrews committed
218 219
	if (view->requestmgr != NULL)
		dns_requestmgr_detach(&view->requestmgr);
220 221
	if (view->task != NULL)
		isc_task_detach(&view->task);
Bob Halley's avatar
Bob Halley committed
222 223
	if (view->hints != NULL)
		dns_db_detach(&view->hints);
Bob Halley's avatar
Bob Halley committed
224 225
	if (view->cachedb != NULL)
		dns_db_detach(&view->cachedb);
226 227
	if (view->cache != NULL)
		dns_cache_detach(&view->cache);
228 229
	if (view->matchclients != NULL)
		dns_acl_detach(&view->matchclients);
230 231 232 233
	if (view->queryacl != NULL)
		dns_acl_detach(&view->queryacl);
	if (view->recursionacl != NULL)
		dns_acl_detach(&view->recursionacl);
234 235
	dns_keytable_detach(&view->trustedkeys);
	dns_keytable_detach(&view->secroots);
Bob Halley's avatar
add  
Bob Halley committed
236 237 238 239 240
	isc_mutex_destroy(&view->lock);
	isc_mem_free(view->mctx, view->name);
	isc_mem_put(view->mctx, view, sizeof *view);
}

241 242 243 244
/*
 * Return true iff 'view' may be freed.
 * The caller must be holding the view lock.
 */
245 246 247
static isc_boolean_t
all_done(dns_view_t *view) {

248 249
	if (view->references == 0 && view->weakrefs == 0 &&
	    RESSHUTDOWN(view) && ADBSHUTDOWN(view) && REQSHUTDOWN(view))
250 251 252 253 254
		return (ISC_TRUE);

	return (ISC_FALSE);
}

255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271
void
dns_view_attach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);

	INSIST(source->references > 0);
	source->references++;
	INSIST(source->references != 0);

	UNLOCK(&source->lock);

	*targetp = source;
}

Bob Halley's avatar
add  
Bob Halley committed
272 273 274
void
dns_view_detach(dns_view_t **viewp) {
	dns_view_t *view;
275
	isc_boolean_t done = ISC_FALSE;
Bob Halley's avatar
add  
Bob Halley committed
276 277 278 279 280 281 282 283 284

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->references > 0);
	view->references--;
285 286 287 288 289
	if (view->references == 0) {
		if (!RESSHUTDOWN(view))
			dns_resolver_shutdown(view->resolver);
		if (!ADBSHUTDOWN(view))
			dns_adb_shutdown(view->adb);
Mark Andrews's avatar
Mark Andrews committed
290 291
		if (!REQSHUTDOWN(view))
			dns_requestmgr_shutdown(view->requestmgr);
292
		dns_zt_detach(&view->zonetable);
293 294
		done = all_done(view);
	}
Bob Halley's avatar
add  
Bob Halley committed
295 296 297 298
	UNLOCK(&view->lock);

	*viewp = NULL;

299 300 301 302
	if (done)
		destroy(view);
}

303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338
void
dns_view_weakattach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);
	source->weakrefs++;
	UNLOCK(&source->lock);

	*targetp = source;
}

void
dns_view_weakdetach(dns_view_t **viewp) {
	dns_view_t *view;
	isc_boolean_t done = ISC_FALSE;

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->weakrefs > 0);
	view->weakrefs--;
	done = all_done(view);

	UNLOCK(&view->lock);

	*viewp = NULL;

	if (done)
		destroy(view);
}

339 340
static void
resolver_shutdown(isc_task_t *task, isc_event_t *event) {
341
	dns_view_t *view = event->ev_arg;
342
	isc_boolean_t done;
343

344
	REQUIRE(event->ev_type == DNS_EVENT_VIEWRESSHUTDOWN);
345 346 347
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

348
	UNUSED(task);
349

350 351 352 353 354 355 356 357 358 359 360 361 362 363 364
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_RESSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

static void
adb_shutdown(isc_task_t *task, isc_event_t *event) {
365
	dns_view_t *view = event->ev_arg;
366
	isc_boolean_t done;
367

368
	REQUIRE(event->ev_type == DNS_EVENT_VIEWADBSHUTDOWN);
369 370 371
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

372
	UNUSED(task);
373

374 375 376 377 378 379 380 381 382 383
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_ADBSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
Bob Halley's avatar
add  
Bob Halley committed
384 385
		destroy(view);
}
386

Mark Andrews's avatar
Mark Andrews committed
387 388 389 390
static void
req_shutdown(isc_task_t *task, isc_event_t *event) {
	dns_view_t *view = event->ev_arg;
	isc_boolean_t done;
391

Mark Andrews's avatar
Mark Andrews committed
392 393 394 395
	REQUIRE(event->ev_type == DNS_EVENT_VIEWREQSHUTDOWN);
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

396
	UNUSED(task);
397

Mark Andrews's avatar
Mark Andrews committed
398 399 400 401 402 403 404 405 406 407 408 409 410
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_REQSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

Bob Halley's avatar
Bob Halley committed
411
isc_result_t
Bob Halley's avatar
Bob Halley committed
412 413 414 415
dns_view_createresolver(dns_view_t *view,
			isc_taskmgr_t *taskmgr, unsigned int ntasks,
			isc_socketmgr_t *socketmgr,
			isc_timermgr_t *timermgr,
416
			unsigned int options,
417
			dns_dispatchmgr_t *dispatchmgr,
418 419
			dns_dispatch_t *dispatchv4,
			dns_dispatch_t *dispatchv6)
Bob Halley's avatar
Bob Halley committed
420
{
Bob Halley's avatar
add adb  
Bob Halley committed
421
	isc_result_t result;
422
	isc_event_t *event;
Bob Halley's avatar
add adb  
Bob Halley committed
423

424
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
425
	REQUIRE(!view->frozen);
426
	REQUIRE(view->resolver == NULL);
427

Bob Halley's avatar
Bob Halley committed
428
	result = isc_task_create(taskmgr, 0, &view->task);
429 430
	if (result != ISC_R_SUCCESS)
		return (result);
Bob Halley's avatar
Bob Halley committed
431
	isc_task_setname(view->task, "view", view);
432

Bob Halley's avatar
add adb  
Bob Halley committed
433
	result = dns_resolver_create(view, taskmgr, ntasks, socketmgr,
434 435
				     timermgr, options, dispatchmgr,
				     dispatchv4, dispatchv6,
436
				     &view->resolver);
437 438
	if (result != ISC_R_SUCCESS) {
		isc_task_detach(&view->task);
Bob Halley's avatar
add adb  
Bob Halley committed
439
		return (result);
440 441 442 443 444
	}
	event = &view->resevent;
	dns_resolver_whenshutdown(view->resolver, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_RESSHUTDOWN;

Bob Halley's avatar
add adb  
Bob Halley committed
445 446
	result = dns_adb_create(view->mctx, view, timermgr, taskmgr,
				&view->adb);
447 448 449 450 451 452 453
	if (result != ISC_R_SUCCESS) {
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->adbevent;
	dns_adb_whenshutdown(view->adb, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_ADBSHUTDOWN;
Bob Halley's avatar
add adb  
Bob Halley committed
454

Mark Andrews's avatar
Mark Andrews committed
455
	result = dns_requestmgr_create(view->mctx, timermgr, socketmgr,
David Lawrence's avatar
David Lawrence committed
456 457 458 459 460
				      dns_resolver_taskmgr(view->resolver),
				      dns_resolver_dispatchmgr(view->resolver),
				      dns_resolver_dispatchv4(view->resolver),
				      dns_resolver_dispatchv6(view->resolver),
				      &view->requestmgr);
Mark Andrews's avatar
Mark Andrews committed
461 462 463 464 465 466 467 468 469
	if (result != ISC_R_SUCCESS) {
		dns_adb_shutdown(view->adb);
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->reqevent;
	dns_requestmgr_whenshutdown(view->requestmgr, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_REQSHUTDOWN;

470
	return (ISC_R_SUCCESS);
471 472 473
}

void
474
dns_view_setcache(dns_view_t *view, dns_cache_t *cache) {
475
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
476
	REQUIRE(!view->frozen);
477

478
	if (view->cache != NULL) {
Bob Halley's avatar
add adb  
Bob Halley committed
479
		dns_db_detach(&view->cachedb);
480 481 482 483 484
		dns_cache_detach(&view->cache);
	}
	dns_cache_attach(cache, &view->cache);
	dns_cache_attachdb(cache, &view->cachedb);
	INSIST(DNS_DB_VALID(view->cachedb));
485 486
}

Bob Halley's avatar
Bob Halley committed
487 488 489 490 491 492 493 494 495 496
void
dns_view_sethints(dns_view_t *view, dns_db_t *hints) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);
	REQUIRE(view->hints == NULL);
	REQUIRE(dns_db_iszone(hints));

	dns_db_attach(hints, &view->hints);
}

Brian Wellington's avatar
Brian Wellington committed
497 498 499 500
void
dns_view_setkeyring(dns_view_t *view, dns_tsig_keyring_t *ring) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(ring != NULL);
501
	if (view->statickeys != NULL)
502
		dns_tsigkeyring_destroy(&view->statickeys);
Brian Wellington's avatar
Brian Wellington committed
503 504 505
	view->statickeys = ring;
}

506 507 508 509 510 511
void
dns_view_setdstport(dns_view_t *view, in_port_t dstport) {
	REQUIRE(DNS_VIEW_VALID(view));
	view->dstport = dstport;
}

512
isc_result_t
513
dns_view_addzone(dns_view_t *view, dns_zone_t *zone) {
Bob Halley's avatar
Bob Halley committed
514 515
	isc_result_t result;

516
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
517 518
	REQUIRE(!view->frozen);

519
	result = dns_zt_mount(view->zonetable, zone);
520

Bob Halley's avatar
Bob Halley committed
521
	return (result);
522 523 524 525
}

void
dns_view_freeze(dns_view_t *view) {
Bob Halley's avatar
Bob Halley committed
526 527 528
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);

529 530
	if (view->resolver != NULL) {
		INSIST(view->cachedb != NULL);
Bob Halley's avatar
Bob Halley committed
531
		dns_resolver_freeze(view->resolver);
532
	}
Bob Halley's avatar
Bob Halley committed
533 534 535
	view->frozen = ISC_TRUE;
}

536
isc_result_t
537
dns_view_findzone(dns_view_t *view, dns_name_t *name, dns_zone_t **zonep) {
538 539 540 541
	isc_result_t result;

	REQUIRE(DNS_VIEW_VALID(view));

Bob Halley's avatar
Bob Halley committed
542
	result = dns_zt_find(view->zonetable, name, 0, NULL, zonep);
543
	if (result == DNS_R_PARTIALMATCH) {
544
		dns_zone_detach(zonep);
545
		result = ISC_R_NOTFOUND;
546
	}
547

548 549 550
	return (result);
}

Bob Halley's avatar
Bob Halley committed
551 552
isc_result_t
dns_view_find(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
553 554
	      isc_stdtime_t now, unsigned int options,
	      isc_boolean_t use_hints, dns_name_t *foundname,
Bob Halley's avatar
Bob Halley committed
555 556 557 558
	      dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
559
	isc_boolean_t is_cache;
Bob Halley's avatar
Bob Halley committed
560
	dns_rdataset_t zrdataset, zsigrdataset;
561
	dns_zone_t *zone;
Bob Halley's avatar
Bob Halley committed
562 563 564 565 566 567

	/*
	 * Find an rdataset whose owner name is 'name', and whose type is
	 * 'type'.
	 */

568
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
569 570 571 572 573 574 575 576 577 578 579 580
	REQUIRE(view->frozen);
	REQUIRE(type != dns_rdatatype_any && type != dns_rdatatype_sig);

	/*
	 * Initialize.
	 */
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find a database to answer the query.
	 */
581
	zone = NULL;
Bob Halley's avatar
Bob Halley committed
582
	db = NULL;
Bob Halley's avatar
Bob Halley committed
583
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
584 585
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH) {
		result = dns_zone_getdb(zone, &db);
586
		if (result != ISC_R_SUCCESS && view->cachedb != NULL)
587
			dns_db_attach(view->cachedb, &db);
588
		else if (result != ISC_R_SUCCESS)
589 590
			goto cleanup;
	} else if (result == ISC_R_NOTFOUND && view->cachedb != NULL)
Bob Halley's avatar
Bob Halley committed
591
		dns_db_attach(view->cachedb, &db);
592
	else
Bob Halley's avatar
Bob Halley committed
593 594
		goto cleanup;

595
	is_cache = dns_db_iscache(db);
596

Bob Halley's avatar
Bob Halley committed
597 598 599 600 601
 db_find:
	/*
	 * Now look for an answer in the database.
	 */
	result = dns_db_find(db, name, NULL, type, options,
602
			     now, NULL, foundname, rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
603 604

	if (result == DNS_R_DELEGATION ||
605
	    result == ISC_R_NOTFOUND) {
606
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
607
			dns_rdataset_disassociate(rdataset);
608 609
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
610
			dns_rdataset_disassociate(sigrdataset);
611
		if (!is_cache) {
Bob Halley's avatar
Bob Halley committed
612 613 614 615 616
			if (view->cachedb != NULL) {
				/*
				 * Either the answer is in the cache, or we
				 * don't know it.
				 */
617
				is_cache = ISC_TRUE;
Bob Halley's avatar
Bob Halley committed
618 619 620 621 622 623 624 625 626
				dns_db_detach(&db);
				dns_db_attach(view->cachedb, &db);
				goto db_find;
			}
		} else {
			/*
			 * We don't have the data in the cache.  If we've got
			 * glue from the zone, use it.
			 */
627
			if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
628
				dns_rdataset_clone(&zrdataset, rdataset);
Bob Halley's avatar
Bob Halley committed
629
				if (sigrdataset != NULL &&
630
				    dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
631 632 633 634 635 636 637 638 639
					dns_rdataset_clone(&zsigrdataset,
							   sigrdataset);
				result = DNS_R_GLUE;
				goto cleanup;
			}
		}
		/*
		 * We don't know the answer.
		 */
640
		result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
641 642 643 644 645 646
	} else if (result == DNS_R_GLUE) {
		if (view->cachedb != NULL) {
			/*
			 * We found an answer, but the cache may be better.
			 * Remember what we've got and go look in the cache.
			 */
647
			is_cache = ISC_TRUE;
Bob Halley's avatar
Bob Halley committed
648 649
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
650
			if (sigrdataset != NULL &&
651
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
652 653 654 655 656 657 658 659 660 661 662
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			goto db_find;
		}
		/*
		 * Otherwise, the glue is the best answer.
		 */
		result = ISC_R_SUCCESS;
Bob Halley's avatar
Bob Halley committed
663 664
	}

665
	if (result == ISC_R_NOTFOUND && use_hints && view->hints != NULL) {
666
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
667
			dns_rdataset_disassociate(rdataset);
668 669
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
670 671
			dns_rdataset_disassociate(sigrdataset);
		result = dns_db_find(view->hints, name, NULL, type, options,
672
				     now, NULL, foundname,
Bob Halley's avatar
Bob Halley committed
673
				     rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
674 675 676 677 678 679
		if (result == ISC_R_SUCCESS || result == DNS_R_GLUE) {
			/*
			 * We just used a hint.  Let the resolver know it
			 * should consider priming.
			 */
			dns_resolver_prime(view->resolver);
Bob Halley's avatar
Bob Halley committed
680
			result = DNS_R_HINT;
Bob Halley's avatar
Bob Halley committed
681
		} else if (result == DNS_R_NXDOMAIN ||
682 683
			   result == DNS_R_NXRRSET)
			result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
684
	}
Bob Halley's avatar
Bob Halley committed
685 686

 cleanup:
687 688 689 690
	if (result == DNS_R_NXDOMAIN || result == DNS_R_NXRRSET) {
		/*
		 * We don't care about any DNSSEC proof data in these cases.
		 */
691
		if (dns_rdataset_isassociated(rdataset))
692
			dns_rdataset_disassociate(rdataset);
693 694
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
695 696
			dns_rdataset_disassociate(sigrdataset);
	}
Bob Halley's avatar
Bob Halley committed
697

698
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
699
		dns_rdataset_disassociate(&zrdataset);
700
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
701 702 703 704
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
705 706
	if (zone != NULL)
		dns_zone_detach(&zone);
Bob Halley's avatar
Bob Halley committed
707 708

	return (result);
709
}
710

711 712 713 714 715 716 717 718 719 720 721 722 723
isc_result_t
dns_view_simplefind(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
		    isc_stdtime_t now, unsigned int options,
		    isc_boolean_t use_hints,
		    dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_fixedname_t foundname;

	dns_fixedname_init(&foundname);
	result = dns_view_find(view, name, type, now, options, use_hints,
			       dns_fixedname_name(&foundname),
			       rdataset, sigrdataset);
724 725 726 727 728 729 730
	if (result == DNS_R_NXDOMAIN) {
		/*
		 * The rdataset and sigrdataset of the relevant NXT record
		 * may be returned, but the caller cannot use them because
		 * foundname is not returned by this simplified API.  We
		 * disassociate them here to prevent any misuse by the caller.
		 */
731
		if (dns_rdataset_isassociated(rdataset))
732
			dns_rdataset_disassociate(rdataset);
733 734
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
735 736 737 738 739 740 741
			dns_rdataset_disassociate(sigrdataset);
	} else if (result != ISC_R_SUCCESS &&
		   result != DNS_R_GLUE &&
		   result != DNS_R_HINT &&
		   result != DNS_R_NCACHENXDOMAIN &&
		   result != DNS_R_NCACHENXRRSET &&
		   result != DNS_R_NXRRSET &&
742
		   result != ISC_R_NOTFOUND) {
743
		if (dns_rdataset_isassociated(rdataset))
744
			dns_rdataset_disassociate(rdataset);
745 746
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
747
			dns_rdataset_disassociate(sigrdataset);
748
		result = ISC_R_NOTFOUND;
749 750 751 752 753
	}

	return (result);
}

Bob Halley's avatar
Bob Halley committed
754 755 756 757 758 759 760 761
isc_result_t
dns_view_findzonecut(dns_view_t *view, dns_name_t *name, dns_name_t *fname,
		     isc_stdtime_t now, unsigned int options,
		     isc_boolean_t use_hints,
		     dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
762
	isc_boolean_t is_cache, use_zone, try_hints;
Bob Halley's avatar
Bob Halley committed
763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786
	dns_zone_t *zone;
	dns_name_t *zfname;
	dns_rdataset_t zrdataset, zsigrdataset;
	dns_fixedname_t zfixedname;

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->frozen);

	db = NULL;
	zone = NULL;
	use_zone = ISC_FALSE;
	try_hints = ISC_FALSE;
	zfname = NULL;

	/*
	 * Initialize.
	 */
	dns_fixedname_init(&zfixedname);
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find the right database.
	 */
Bob Halley's avatar
Bob Halley committed
787
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
788
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH)
Bob Halley's avatar
Bob Halley committed
789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813
		result = dns_zone_getdb(zone, &db);
	if (result == ISC_R_NOTFOUND) {
		/*
		 * We're not directly authoritative for this query name, nor
		 * is it a subdomain of any zone for which we're
		 * authoritative.
		 */
		if (view->cachedb != NULL) {
			/*
			 * We have a cache; try it.
			 */
			dns_db_attach(view->cachedb, &db);
		} else {
			/*
			 * Maybe we have hints...
			 */
			try_hints = ISC_TRUE;
			goto finish;
		}
	} else if (result != ISC_R_SUCCESS) {
		/*
		 * Something is broken.
		 */
		goto cleanup;
	}
814
	is_cache = dns_db_iscache(db);
Bob Halley's avatar
Bob Halley committed
815 816 817 818 819

 db_find:
	/*
	 * Look for the zonecut.
	 */
820
	if (!is_cache) {
Bob Halley's avatar
Bob Halley committed
821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838
		result = dns_db_find(db, name, NULL, dns_rdatatype_ns, options,
				     now, NULL, fname, rdataset, sigrdataset);
		if (result == DNS_R_DELEGATION)
			result = ISC_R_SUCCESS;
		else if (result != ISC_R_SUCCESS)
			goto cleanup;
		if (view->cachedb != NULL && db != view->hints) {
			/*
			 * We found an answer, but the cache may be better.
			 */
			zfname = dns_fixedname_name(&zfixedname);
			result = dns_name_concatenate(fname, NULL, zfname,
						      NULL);
			if (result != ISC_R_SUCCESS)
				goto cleanup;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
839
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
840 841 842 843 844
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
845
			is_cache = ISC_TRUE;
Bob Halley's avatar
Bob Halley committed
846 847 848 849 850 851 852 853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882
			goto db_find;
		}
	} else {
		result = dns_db_findzonecut(db, name, options, now, NULL,
					    fname, rdataset, sigrdataset);
		if (result == ISC_R_SUCCESS) {
			if (zfname != NULL &&
			    !dns_name_issubdomain(fname, zfname)) {
				/*
				 * We found a zonecut in the cache, but our
				 * zone delegation is better.
				 */
				use_zone = ISC_TRUE;
			}
		} else if (result == ISC_R_NOTFOUND) {
			if (zfname != NULL) {
				/*
				 * We didn't find anything in the cache, but we
				 * have a zone delegation, so use it.
				 */
				use_zone = ISC_TRUE;
			} else {
				/*
				 * Maybe we have hints...
				 */
				try_hints = ISC_TRUE;
			}
		} else {
			/*
			 * Something bad happened.
			 */
			goto cleanup;
		}
	}

 finish:
	if (use_zone) {
883
		if (dns_rdataset_isassociated(rdataset)) {
Bob Halley's avatar
Bob Halley committed
884 885
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
886
			    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
887 888 889 890 891 892
				dns_rdataset_disassociate(sigrdataset);
		}
		result = dns_name_concatenate(zfname, NULL, fname, NULL);
		if (result != ISC_R_SUCCESS)
			goto cleanup;
		dns_rdataset_clone(&zrdataset, rdataset);
893 894
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(&zrdataset))
Bob Halley's avatar
Bob Halley committed
895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912
			dns_rdataset_clone(&zsigrdataset, sigrdataset);
	} else if (try_hints && use_hints && view->hints != NULL) {
		/*
		 * We've found nothing so far, but we have hints.
		 */
		result = dns_db_find(view->hints, dns_rootname, NULL,
				     dns_rdatatype_ns, 0, now, NULL, fname,
				     rdataset, NULL);
		if (result != ISC_R_SUCCESS) {
			/*
			 * We can't even find the hints for the root
			 * nameservers!
			 */
			result = ISC_R_NOTFOUND;
		}
	}

 cleanup:
913
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
914
		dns_rdataset_disassociate(&zrdataset);
915
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
916 917 918 919 920 921 922 923 924 925
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
	if (zone != NULL)
		dns_zone_detach(&zone);

	return (result);
}

926 927 928 929
isc_result_t
dns_viewlist_find(dns_viewlist_t *list, const char *name,
		  dns_rdataclass_t rdclass, dns_view_t **viewp)
{
930 931 932 933
	dns_view_t *view;

	REQUIRE(list != NULL);

934 935 936
	for (view = ISC_LIST_HEAD(*list);
	     view != NULL;
	     view = ISC_LIST_NEXT(view, link)) {
937 938 939
		if (strcmp(view->name, name) == 0 && view->rdclass == rdclass)
			break;
	}
940 941 942 943 944 945
	if (view == NULL)
		return (ISC_R_NOTFOUND);

	dns_view_attach(view, viewp);

	return (ISC_R_SUCCESS);
946
}
Mark Andrews's avatar
Mark Andrews committed
947

948 949
isc_result_t
dns_view_load(dns_view_t *view, isc_boolean_t stop) {
Mark Andrews's avatar
Mark Andrews committed
950 951 952

	REQUIRE(DNS_VIEW_VALID(view));

953
	return (dns_zt_load(view->zonetable, stop));
Mark Andrews's avatar
Mark Andrews committed
954
}
Brian Wellington's avatar
Brian Wellington committed
955

956 957 958 959 960 961 962 963 964 965 966 967 968 969 970 971 972 973 974 975 976 977 978 979 980 981 982 983 984 985 986 987 988
isc_result_t
dns_view_gettsig(dns_view_t *view, dns_name_t *keyname, dns_tsigkey_t **keyp)
{
	isc_result_t result;
	REQUIRE(keyp != NULL && *keyp == NULL);

	result = dns_tsigkey_find(keyp, keyname, NULL,
				  view->statickeys);
	if (result == ISC_R_NOTFOUND)
		result = dns_tsigkey_find(keyp, keyname, NULL,
					  view->dynamickeys);
	return (result);
}

isc_result_t
dns_view_getpeertsig(dns_view_t *view, isc_netaddr_t *peeraddr,
		     dns_tsigkey_t **keyp)
{
	isc_result_t result;
	dns_name_t *keyname = NULL;
	dns_peer_t *peer = NULL;

	result = dns_peerlist_peerbyaddr(view->peers, peeraddr, &peer);
	if (result != ISC_R_SUCCESS)
		return (result);

	result = dns_peer_getkey(peer, &keyname);
	if (result != ISC_R_SUCCESS)
		return (result);

	return (dns_view_gettsig(view, keyname, keyp));
}

Brian Wellington's avatar
Brian Wellington committed
989 990 991 992 993
isc_result_t
dns_view_checksig(dns_view_t *view, isc_buffer_t *source, dns_message_t *msg) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(source != NULL);