view.c 24.1 KB
Newer Older
Bob Halley's avatar
add  
Bob Halley committed
1
/*
Bob Halley's avatar
Bob Halley committed
2
 * Copyright (C) 1999, 2000  Internet Software Consortium.
Bob Halley's avatar
add  
Bob Halley committed
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19
 * 
 * Permission to use, copy, modify, and distribute this software for any
 * purpose with or without fee is hereby granted, provided that the above
 * copyright notice and this permission notice appear in all copies.
 * 
 * THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM DISCLAIMS
 * ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES
 * OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL INTERNET SOFTWARE
 * CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL
 * DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR
 * PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS
 * ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS
 * SOFTWARE.
 */

#include <config.h>

20
#include <isc/task.h>
21
#include <isc/string.h>		/* Required for HP/UX (and others?) */
Michael Graff's avatar
Michael Graff committed
22
#include <isc/util.h>
Bob Halley's avatar
add  
Bob Halley committed
23

24
#include <dns/acl.h>
Bob Halley's avatar
add adb  
Bob Halley committed
25
#include <dns/adb.h>
26
#include <dns/cache.h>
Bob Halley's avatar
Bob Halley committed
27
#include <dns/db.h>
28
#include <dns/events.h>
29
#include <dns/keytable.h>
30
#include <dns/peer.h>
Bob Halley's avatar
Bob Halley committed
31
#include <dns/rdataset.h>
Mark Andrews's avatar
Mark Andrews committed
32
#include <dns/request.h>
33 34
#include <dns/resolver.h>
#include <dns/result.h>
Brian Wellington's avatar
Brian Wellington committed
35
#include <dns/tsig.h>
36
#include <dns/zone.h>
37
#include <dns/zt.h>
Bob Halley's avatar
add  
Bob Halley committed
38

39 40
#define RESSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_RESSHUTDOWN) != 0)
#define ADBSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_ADBSHUTDOWN) != 0)
Mark Andrews's avatar
Mark Andrews committed
41
#define REQSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_REQSHUTDOWN) != 0)
42 43 44

static void resolver_shutdown(isc_task_t *task, isc_event_t *event);
static void adb_shutdown(isc_task_t *task, isc_event_t *event);
Mark Andrews's avatar
Mark Andrews committed
45
static void req_shutdown(isc_task_t *task, isc_event_t *event);
46

Bob Halley's avatar
add  
Bob Halley committed
47
isc_result_t
48 49
dns_view_create(isc_mem_t *mctx, dns_rdataclass_t rdclass,
		const char *name, dns_view_t **viewp)
Bob Halley's avatar
add  
Bob Halley committed
50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76
{
	dns_view_t *view;
	isc_result_t result;

	/*
	 * Create a view.
	 */

	REQUIRE(name != NULL);
	REQUIRE(viewp != NULL && *viewp == NULL);

	view = isc_mem_get(mctx, sizeof *view);
	if (view == NULL)
		return (ISC_R_NOMEMORY);
	view->name = isc_mem_strdup(mctx, name);
	if (view->name == NULL) {
		result = ISC_R_NOMEMORY;
		goto cleanup_view;
	}
	result = isc_mutex_init(&view->lock);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_mutex_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_name;
	}
77
	result = isc_rwlock_init(&view->conflock, 1, 1);
78 79 80 81 82 83 84
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_rwlock_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_mutex;
	}
85 86
	view->zonetable = NULL;
	result = dns_zt_create(mctx, rdclass, &view->zonetable);
Bob Halley's avatar
add  
Bob Halley committed
87 88
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
89
				 "dns_zt_create() failed: %s",
Bob Halley's avatar
add  
Bob Halley committed
90 91
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
92
		goto cleanup_rwlock;
Bob Halley's avatar
add  
Bob Halley committed
93
	}
Bob Halley's avatar
Bob Halley committed
94
	view->secroots = NULL;
95
	result = dns_keytable_create(mctx, &view->secroots);
Bob Halley's avatar
Bob Halley committed
96 97
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
98
				 "dns_keytable_create() failed: %s",
Bob Halley's avatar
Bob Halley committed
99 100
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
101
		goto cleanup_zt;
Bob Halley's avatar
Bob Halley committed
102
	}
103 104 105 106 107 108 109 110 111
	view->trustedkeys = NULL;
	result = dns_keytable_create(mctx, &view->trustedkeys);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "dns_keytable_create() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_secroots;
	}
112

113
	view->cache = NULL;
Bob Halley's avatar
Bob Halley committed
114
	view->cachedb = NULL;
Bob Halley's avatar
Bob Halley committed
115
	view->hints = NULL;
Bob Halley's avatar
add  
Bob Halley committed
116
	view->resolver = NULL;
Bob Halley's avatar
add adb  
Bob Halley committed
117
	view->adb = NULL;
Mark Andrews's avatar
Mark Andrews committed
118
	view->requestmgr = NULL;
Bob Halley's avatar
add  
Bob Halley committed
119 120
	view->mctx = mctx;
	view->rdclass = rdclass;
Bob Halley's avatar
Bob Halley committed
121
	view->frozen = ISC_FALSE;
122
	view->task = NULL;
Bob Halley's avatar
add  
Bob Halley committed
123
	view->references = 1;
124
	view->weakrefs = 0;
Mark Andrews's avatar
Mark Andrews committed
125 126
	view->attributes = (DNS_VIEWATTR_RESSHUTDOWN|DNS_VIEWATTR_ADBSHUTDOWN|
			    DNS_VIEWATTR_REQSHUTDOWN);
Brian Wellington's avatar
Brian Wellington committed
127 128
	view->statickeys = NULL;
	view->dynamickeys = NULL;
129
	view->matchclients = NULL;
130
	result = dns_tsigkeyring_create(view->mctx, &view->dynamickeys);
131
	if (result != ISC_R_SUCCESS)
132
		goto cleanup_trustedkeys;
133
	view->peers = NULL;
134

135 136 137
	/*
	 * Initialize configuration data with default values.
	 */	
138 139 140
	view->recursion = ISC_TRUE;
	view->auth_nxdomain = ISC_FALSE; /* Was true in BIND 8 */
	view->transfer_format = dns_one_answer;
141 142
	view->queryacl = NULL;
	view->recursionacl = NULL;
143 144
	view->requestixfr = ISC_TRUE;
	view->provideixfr = ISC_TRUE;
145 146
	view->maxcachettl = 7 * 24 * 3600;
	view->maxncachettl = 3 * 3600;
147
	view->dstport = 53;
148

149
	result = dns_peerlist_new(view->mctx, &view->peers);
150
	if (result != ISC_R_SUCCESS)
151
		goto cleanup_dynkeys;
Michael Graff's avatar
Michael Graff committed
152
	ISC_LINK_INIT(view, link);
153 154 155 156 157 158
	ISC_EVENT_INIT(&view->resevent, sizeof view->resevent, 0, NULL,
		       DNS_EVENT_VIEWRESSHUTDOWN, resolver_shutdown,
		       view, NULL, NULL, NULL);
	ISC_EVENT_INIT(&view->adbevent, sizeof view->adbevent, 0, NULL,
		       DNS_EVENT_VIEWADBSHUTDOWN, adb_shutdown,
		       view, NULL, NULL, NULL);
Mark Andrews's avatar
Mark Andrews committed
159 160 161
	ISC_EVENT_INIT(&view->reqevent, sizeof view->reqevent, 0, NULL,
		       DNS_EVENT_VIEWREQSHUTDOWN, req_shutdown,
		       view, NULL, NULL, NULL);
Bob Halley's avatar
add  
Bob Halley committed
162 163 164 165 166 167
	view->magic = DNS_VIEW_MAGIC;
	
	*viewp = view;

	return (ISC_R_SUCCESS);

168 169 170
 cleanup_dynkeys:
	dns_tsigkeyring_destroy(&view->dynamickeys);	

171 172 173
 cleanup_trustedkeys:
	dns_keytable_detach(&view->trustedkeys);

174
 cleanup_secroots:
175
	dns_keytable_detach(&view->secroots);
176
	
177 178
 cleanup_zt:
	dns_zt_detach(&view->zonetable);
Bob Halley's avatar
Bob Halley committed
179

180 181 182
 cleanup_rwlock:
	isc_rwlock_destroy(&view->conflock);

Bob Halley's avatar
add  
Bob Halley committed
183 184 185 186 187 188 189 190 191 192 193 194 195 196 197
 cleanup_mutex:
	isc_mutex_destroy(&view->lock);

 cleanup_name:
	isc_mem_free(mctx, view->name);

 cleanup_view:
	isc_mem_put(mctx, view, sizeof *view);

	return (result);
}

static inline void
destroy(dns_view_t *view) {
	REQUIRE(!ISC_LINK_LINKED(view, link));
198
	REQUIRE(view->references == 0);
199
	REQUIRE(view->weakrefs == 0);
200 201
	REQUIRE(RESSHUTDOWN(view));
	REQUIRE(ADBSHUTDOWN(view));
Mark Andrews's avatar
Mark Andrews committed
202
	REQUIRE(REQSHUTDOWN(view));
Bob Halley's avatar
add  
Bob Halley committed
203

204 205
	if (view->peers != NULL)
		dns_peerlist_detach(&view->peers);
206
	if (view->dynamickeys != NULL)	
207
		dns_tsigkeyring_destroy(&view->dynamickeys);
208
	if (view->statickeys != NULL)	
209
		dns_tsigkeyring_destroy(&view->statickeys);
Bob Halley's avatar
add adb  
Bob Halley committed
210 211
	if (view->adb != NULL)
		dns_adb_detach(&view->adb);
Bob Halley's avatar
add  
Bob Halley committed
212 213
	if (view->resolver != NULL)
		dns_resolver_detach(&view->resolver);
Mark Andrews's avatar
Mark Andrews committed
214 215
	if (view->requestmgr != NULL)
		dns_requestmgr_detach(&view->requestmgr);
216 217
	if (view->task != NULL)
		isc_task_detach(&view->task);
Bob Halley's avatar
Bob Halley committed
218 219
	if (view->hints != NULL)
		dns_db_detach(&view->hints);
Bob Halley's avatar
Bob Halley committed
220 221
	if (view->cachedb != NULL)
		dns_db_detach(&view->cachedb);
222 223
	if (view->cache != NULL)
		dns_cache_detach(&view->cache);
224 225
	if (view->matchclients != NULL)
		dns_acl_detach(&view->matchclients);
226 227 228 229
	if (view->queryacl != NULL)
		dns_acl_detach(&view->queryacl);
	if (view->recursionacl != NULL)
		dns_acl_detach(&view->recursionacl);
230 231
	dns_keytable_detach(&view->trustedkeys);
	dns_keytable_detach(&view->secroots);
Bob Halley's avatar
add  
Bob Halley committed
232 233 234 235 236
	isc_mutex_destroy(&view->lock);
	isc_mem_free(view->mctx, view->name);
	isc_mem_put(view->mctx, view, sizeof *view);
}

237 238 239 240 241 242
static isc_boolean_t
all_done(dns_view_t *view) {
	/*
	 * Caller must be holding the view lock.
	 */

243 244
	if (view->references == 0 && view->weakrefs == 0 &&
	    RESSHUTDOWN(view) && ADBSHUTDOWN(view) && REQSHUTDOWN(view))
245 246 247 248 249
		return (ISC_TRUE);

	return (ISC_FALSE);
}

250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266
void
dns_view_attach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);

	INSIST(source->references > 0);
	source->references++;
	INSIST(source->references != 0);

	UNLOCK(&source->lock);

	*targetp = source;
}

Bob Halley's avatar
add  
Bob Halley committed
267 268 269
void
dns_view_detach(dns_view_t **viewp) {
	dns_view_t *view;
270
	isc_boolean_t done = ISC_FALSE;
Bob Halley's avatar
add  
Bob Halley committed
271 272 273 274 275 276 277 278 279

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->references > 0);
	view->references--;
280 281 282 283 284
	if (view->references == 0) {
		if (!RESSHUTDOWN(view))
			dns_resolver_shutdown(view->resolver);
		if (!ADBSHUTDOWN(view))
			dns_adb_shutdown(view->adb);
Mark Andrews's avatar
Mark Andrews committed
285 286
		if (!REQSHUTDOWN(view))
			dns_requestmgr_shutdown(view->requestmgr);
287
		dns_zt_detach(&view->zonetable);
288 289
		done = all_done(view);
	}
Bob Halley's avatar
add  
Bob Halley committed
290 291 292 293
	UNLOCK(&view->lock);

	*viewp = NULL;

294 295 296 297
	if (done)
		destroy(view);
}

298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333
void
dns_view_weakattach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);
	source->weakrefs++;
	UNLOCK(&source->lock);

	*targetp = source;
}

void
dns_view_weakdetach(dns_view_t **viewp) {
	dns_view_t *view;
	isc_boolean_t done = ISC_FALSE;

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->weakrefs > 0);
	view->weakrefs--;
	done = all_done(view);

	UNLOCK(&view->lock);

	*viewp = NULL;

	if (done)
		destroy(view);
}

334 335
static void
resolver_shutdown(isc_task_t *task, isc_event_t *event) {
336
	dns_view_t *view = event->ev_arg;
337 338
	isc_boolean_t done;
	
339
	REQUIRE(event->ev_type == DNS_EVENT_VIEWRESSHUTDOWN);
340 341 342
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

343 344
	UNUSED(task);
	
345 346 347 348 349 350 351 352 353 354 355 356 357 358 359
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_RESSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

static void
adb_shutdown(isc_task_t *task, isc_event_t *event) {
360
	dns_view_t *view = event->ev_arg;
361 362
	isc_boolean_t done;
	
363
	REQUIRE(event->ev_type == DNS_EVENT_VIEWADBSHUTDOWN);
364 365 366
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

367 368
	UNUSED(task);
	
369 370 371 372 373 374 375 376 377 378
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_ADBSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
Bob Halley's avatar
add  
Bob Halley committed
379 380
		destroy(view);
}
381

Mark Andrews's avatar
Mark Andrews committed
382 383 384 385 386 387 388 389 390
static void
req_shutdown(isc_task_t *task, isc_event_t *event) {
	dns_view_t *view = event->ev_arg;
	isc_boolean_t done;
	
	REQUIRE(event->ev_type == DNS_EVENT_VIEWREQSHUTDOWN);
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

391 392
	UNUSED(task);
	
Mark Andrews's avatar
Mark Andrews committed
393 394 395 396 397 398 399 400 401 402 403 404 405
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_REQSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

Bob Halley's avatar
Bob Halley committed
406
isc_result_t
Bob Halley's avatar
Bob Halley committed
407 408 409 410
dns_view_createresolver(dns_view_t *view,
			isc_taskmgr_t *taskmgr, unsigned int ntasks,
			isc_socketmgr_t *socketmgr,
			isc_timermgr_t *timermgr,
411
			unsigned int options,
412
			dns_dispatchmgr_t *dispatchmgr,
413 414
			dns_dispatch_t *dispatchv4,
			dns_dispatch_t *dispatchv6)
Bob Halley's avatar
Bob Halley committed
415
{
Bob Halley's avatar
add adb  
Bob Halley committed
416
	isc_result_t result;
417
	isc_event_t *event;
Bob Halley's avatar
add adb  
Bob Halley committed
418

Bob Halley's avatar
Bob Halley committed
419
	/*
Bob Halley's avatar
add adb  
Bob Halley committed
420
	 * Create a resolver and address database for the view.
Bob Halley's avatar
Bob Halley committed
421 422
	 */

423
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
424
	REQUIRE(!view->frozen);
425
	REQUIRE(view->resolver == NULL);
426

Bob Halley's avatar
Bob Halley committed
427
	result = isc_task_create(taskmgr, 0, &view->task);
428 429
	if (result != ISC_R_SUCCESS)
		return (result);
Bob Halley's avatar
Bob Halley committed
430
	isc_task_setname(view->task, "view", view);
431

Bob Halley's avatar
add adb  
Bob Halley committed
432
	result = dns_resolver_create(view, taskmgr, ntasks, socketmgr,
433 434
				     timermgr, options, dispatchmgr,
				     dispatchv4, dispatchv6,
435
				     &view->resolver);
436 437
	if (result != ISC_R_SUCCESS) {
		isc_task_detach(&view->task);
Bob Halley's avatar
add adb  
Bob Halley committed
438
		return (result);
439 440 441 442 443
	}
	event = &view->resevent;
	dns_resolver_whenshutdown(view->resolver, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_RESSHUTDOWN;

Bob Halley's avatar
add adb  
Bob Halley committed
444 445
	result = dns_adb_create(view->mctx, view, timermgr, taskmgr,
				&view->adb);
446 447 448 449 450 451 452
	if (result != ISC_R_SUCCESS) {
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->adbevent;
	dns_adb_whenshutdown(view->adb, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_ADBSHUTDOWN;
Bob Halley's avatar
add adb  
Bob Halley committed
453

Mark Andrews's avatar
Mark Andrews committed
454
	result = dns_requestmgr_create(view->mctx, timermgr, socketmgr,
David Lawrence's avatar
David Lawrence committed
455 456 457 458 459
				      dns_resolver_taskmgr(view->resolver),
				      dns_resolver_dispatchmgr(view->resolver),
				      dns_resolver_dispatchv4(view->resolver),
				      dns_resolver_dispatchv6(view->resolver),
				      &view->requestmgr);
Mark Andrews's avatar
Mark Andrews committed
460 461 462 463 464 465 466 467 468
	if (result != ISC_R_SUCCESS) {
		dns_adb_shutdown(view->adb);
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->reqevent;
	dns_requestmgr_whenshutdown(view->requestmgr, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_REQSHUTDOWN;

469
	return (ISC_R_SUCCESS);
470 471 472
}

void
473
dns_view_setcache(dns_view_t *view, dns_cache_t *cache) {
Bob Halley's avatar
Bob Halley committed
474 475

	/*
476
	 * Set the view's cache.
Bob Halley's avatar
Bob Halley committed
477 478
	 */

479
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
480
	REQUIRE(!view->frozen);
481

482
	if (view->cache != NULL) {
Bob Halley's avatar
add adb  
Bob Halley committed
483
		dns_db_detach(&view->cachedb);
484 485 486 487 488
		dns_cache_detach(&view->cache);
	}
	dns_cache_attach(cache, &view->cache);
	dns_cache_attachdb(cache, &view->cachedb);
	INSIST(DNS_DB_VALID(view->cachedb));
489 490
}

Bob Halley's avatar
Bob Halley committed
491 492 493 494 495 496 497 498 499 500 501 502 503 504 505
void
dns_view_sethints(dns_view_t *view, dns_db_t *hints) {

	/*
	 * Set the view's hints database.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);
	REQUIRE(view->hints == NULL);
	REQUIRE(dns_db_iszone(hints));

	dns_db_attach(hints, &view->hints);
}

Brian Wellington's avatar
Brian Wellington committed
506 507 508
void
dns_view_setkeyring(dns_view_t *view, dns_tsig_keyring_t *ring) {
	/*
509
	 * Set the view's static TSIG keyring.
Brian Wellington's avatar
Brian Wellington committed
510 511 512
	 */
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(ring != NULL);
513
	if (view->statickeys != NULL)
514
		dns_tsigkeyring_destroy(&view->statickeys);
Brian Wellington's avatar
Brian Wellington committed
515 516 517
	view->statickeys = ring;
}

518
isc_result_t
519
dns_view_addzone(dns_view_t *view, dns_zone_t *zone) {
Bob Halley's avatar
Bob Halley committed
520 521 522
	isc_result_t result;

	/*
523
	 * Add zone 'zone' to 'view'.
Bob Halley's avatar
Bob Halley committed
524 525
	 */

526
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
527 528
	REQUIRE(!view->frozen);

529
	result = dns_zt_mount(view->zonetable, zone);
530

Bob Halley's avatar
Bob Halley committed
531
	return (result);
532 533 534 535
}

void
dns_view_freeze(dns_view_t *view) {
Bob Halley's avatar
Bob Halley committed
536 537 538 539 540 541 542 543
	
	/*
	 * Freeze view.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);

544 545
	if (view->resolver != NULL) {
		INSIST(view->cachedb != NULL);
Bob Halley's avatar
Bob Halley committed
546
		dns_resolver_freeze(view->resolver);
547
	}
Bob Halley's avatar
Bob Halley committed
548 549 550
	view->frozen = ISC_TRUE;
}

551
isc_result_t
552
dns_view_findzone(dns_view_t *view, dns_name_t *name, dns_zone_t **zonep) {
553 554 555 556
	isc_result_t result;

	REQUIRE(DNS_VIEW_VALID(view));

Bob Halley's avatar
Bob Halley committed
557
	result = dns_zt_find(view->zonetable, name, 0, NULL, zonep);
558
	if (result == DNS_R_PARTIALMATCH) {
559
		dns_zone_detach(zonep);
560
		result = ISC_R_NOTFOUND;
561
	}
562

563 564 565
	return (result);
}

Bob Halley's avatar
Bob Halley committed
566 567
isc_result_t
dns_view_find(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
568 569
	      isc_stdtime_t now, unsigned int options,
	      isc_boolean_t use_hints, dns_name_t *foundname,
Bob Halley's avatar
Bob Halley committed
570 571 572 573 574 575
	      dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	isc_boolean_t is_zone;
	dns_rdataset_t zrdataset, zsigrdataset;
576
	dns_zone_t *zone;
Bob Halley's avatar
Bob Halley committed
577 578 579 580 581 582

	/*
	 * Find an rdataset whose owner name is 'name', and whose type is
	 * 'type'.
	 */

583
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
584 585 586 587 588 589 590 591 592 593 594 595
	REQUIRE(view->frozen);
	REQUIRE(type != dns_rdatatype_any && type != dns_rdatatype_sig);

	/*
	 * Initialize.
	 */
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find a database to answer the query.
	 */
596
	zone = NULL;
Bob Halley's avatar
Bob Halley committed
597
	db = NULL;
Bob Halley's avatar
Bob Halley committed
598
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
599 600
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH) {
		result = dns_zone_getdb(zone, &db);
601
		if (result != ISC_R_SUCCESS && view->cachedb != NULL)
602
			dns_db_attach(view->cachedb, &db);
603
		else if (result != ISC_R_SUCCESS)
604 605
			goto cleanup;
	} else if (result == ISC_R_NOTFOUND && view->cachedb != NULL)
Bob Halley's avatar
Bob Halley committed
606
		dns_db_attach(view->cachedb, &db);
607
	else
Bob Halley's avatar
Bob Halley committed
608 609 610
		goto cleanup;

	is_zone = dns_db_iszone(db);
611

Bob Halley's avatar
Bob Halley committed
612 613 614 615 616
 db_find:
	/*
	 * Now look for an answer in the database.
	 */
	result = dns_db_find(db, name, NULL, type, options,
617
			     now, NULL, foundname, rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
618 619

	if (result == DNS_R_DELEGATION ||
620
	    result == ISC_R_NOTFOUND) {
621
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
622
			dns_rdataset_disassociate(rdataset);
623 624
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641
			dns_rdataset_disassociate(sigrdataset);
		if (is_zone) {
			if (view->cachedb != NULL) {
				/*
				 * Either the answer is in the cache, or we
				 * don't know it.
				 */
				is_zone = ISC_FALSE;
				dns_db_detach(&db);
				dns_db_attach(view->cachedb, &db);
				goto db_find;
			}
		} else {
			/*
			 * We don't have the data in the cache.  If we've got
			 * glue from the zone, use it.
			 */
642
			if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
643
				dns_rdataset_clone(&zrdataset, rdataset);
Bob Halley's avatar
Bob Halley committed
644
				if (sigrdataset != NULL &&
645
				    dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
646 647 648 649 650 651 652 653 654
					dns_rdataset_clone(&zsigrdataset,
							   sigrdataset);
				result = DNS_R_GLUE;
				goto cleanup;
			}
		}
		/*
		 * We don't know the answer.
		 */
655
		result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
656 657 658 659 660 661 662 663 664
	} else if (result == DNS_R_GLUE) {
		if (view->cachedb != NULL) {
			/*
			 * We found an answer, but the cache may be better.
			 * Remember what we've got and go look in the cache.
			 */
			is_zone = ISC_FALSE;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
665
			if (sigrdataset != NULL &&
666
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
667 668 669 670 671 672 673 674 675 676 677
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			goto db_find;
		}
		/*
		 * Otherwise, the glue is the best answer.
		 */
		result = ISC_R_SUCCESS;
Bob Halley's avatar
Bob Halley committed
678 679
	}

680
	if (result == ISC_R_NOTFOUND && use_hints && view->hints != NULL) {
681
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
682
			dns_rdataset_disassociate(rdataset);
683 684
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
685 686
			dns_rdataset_disassociate(sigrdataset);
		result = dns_db_find(view->hints, name, NULL, type, options,
687
				     now, NULL, foundname,
Bob Halley's avatar
Bob Halley committed
688
				     rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
689 690 691 692 693 694
		if (result == ISC_R_SUCCESS || result == DNS_R_GLUE) {
			/*
			 * We just used a hint.  Let the resolver know it
			 * should consider priming.
			 */
			dns_resolver_prime(view->resolver);
Bob Halley's avatar
Bob Halley committed
695
			result = DNS_R_HINT;
Bob Halley's avatar
Bob Halley committed
696
		} else if (result == DNS_R_NXDOMAIN ||
697 698
			   result == DNS_R_NXRRSET)
			result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
699
	}
Bob Halley's avatar
Bob Halley committed
700 701

 cleanup:
702 703 704 705
	if (result == DNS_R_NXDOMAIN || result == DNS_R_NXRRSET) {
		/*
		 * We don't care about any DNSSEC proof data in these cases.
		 */
706
		if (dns_rdataset_isassociated(rdataset))
707
			dns_rdataset_disassociate(rdataset);
708 709
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
710 711
			dns_rdataset_disassociate(sigrdataset);
	}
Bob Halley's avatar
Bob Halley committed
712

713
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
714
		dns_rdataset_disassociate(&zrdataset);
715
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
716 717 718 719
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
720 721
	if (zone != NULL)
		dns_zone_detach(&zone);
Bob Halley's avatar
Bob Halley committed
722 723

	return (result);
724
}
725

726 727 728 729 730 731 732 733 734 735 736 737 738
isc_result_t
dns_view_simplefind(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
		    isc_stdtime_t now, unsigned int options,
		    isc_boolean_t use_hints,
		    dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_fixedname_t foundname;

	dns_fixedname_init(&foundname);
	result = dns_view_find(view, name, type, now, options, use_hints,
			       dns_fixedname_name(&foundname),
			       rdataset, sigrdataset);
739 740 741 742 743 744 745
	if (result == DNS_R_NXDOMAIN) {
		/*
		 * The rdataset and sigrdataset of the relevant NXT record
		 * may be returned, but the caller cannot use them because
		 * foundname is not returned by this simplified API.  We
		 * disassociate them here to prevent any misuse by the caller.
		 */
746
		if (dns_rdataset_isassociated(rdataset))
747
			dns_rdataset_disassociate(rdataset);
748 749
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
750 751 752 753 754 755 756
			dns_rdataset_disassociate(sigrdataset);
	} else if (result != ISC_R_SUCCESS &&
		   result != DNS_R_GLUE &&
		   result != DNS_R_HINT &&
		   result != DNS_R_NCACHENXDOMAIN &&
		   result != DNS_R_NCACHENXRRSET &&
		   result != DNS_R_NXRRSET &&
757
		   result != ISC_R_NOTFOUND) {
758
		if (dns_rdataset_isassociated(rdataset))
759
			dns_rdataset_disassociate(rdataset);
760 761
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
762
			dns_rdataset_disassociate(sigrdataset);
763
		result = ISC_R_NOTFOUND;
764 765 766 767 768
	}

	return (result);
}

Bob Halley's avatar
Bob Halley committed
769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805
isc_result_t
dns_view_findzonecut(dns_view_t *view, dns_name_t *name, dns_name_t *fname,
		     isc_stdtime_t now, unsigned int options,
		     isc_boolean_t use_hints,
		     dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	isc_boolean_t is_zone, use_zone, try_hints;
	dns_zone_t *zone;
	dns_name_t *zfname;
	dns_rdataset_t zrdataset, zsigrdataset;
	dns_fixedname_t zfixedname;

	/*
	 * Find the best known zonecut containing 'name'.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->frozen);

	db = NULL;
	zone = NULL;
	use_zone = ISC_FALSE;
	try_hints = ISC_FALSE;
	zfname = NULL;

	/*
	 * Initialize.
	 */
	dns_fixedname_init(&zfixedname);
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find the right database.
	 */
Bob Halley's avatar
Bob Halley committed
806
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
807
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH)
Bob Halley's avatar
Bob Halley committed
808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857
		result = dns_zone_getdb(zone, &db);
	if (result == ISC_R_NOTFOUND) {
		/*
		 * We're not directly authoritative for this query name, nor
		 * is it a subdomain of any zone for which we're
		 * authoritative.
		 */
		if (view->cachedb != NULL) {
			/*
			 * We have a cache; try it.
			 */
			dns_db_attach(view->cachedb, &db);
		} else {
			/*
			 * Maybe we have hints...
			 */
			try_hints = ISC_TRUE;
			goto finish;
		}
	} else if (result != ISC_R_SUCCESS) {
		/*
		 * Something is broken.
		 */
		goto cleanup;
	}
	is_zone = dns_db_iszone(db);

 db_find:
	/*
	 * Look for the zonecut.
	 */
	if (is_zone) {
		result = dns_db_find(db, name, NULL, dns_rdatatype_ns, options,
				     now, NULL, fname, rdataset, sigrdataset);
		if (result == DNS_R_DELEGATION)
			result = ISC_R_SUCCESS;
		else if (result != ISC_R_SUCCESS)
			goto cleanup;
		if (view->cachedb != NULL && db != view->hints) {
			/*
			 * We found an answer, but the cache may be better.
			 */
			zfname = dns_fixedname_name(&zfixedname);
			result = dns_name_concatenate(fname, NULL, zfname,
						      NULL);
			if (result != ISC_R_SUCCESS)
				goto cleanup;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
858
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			is_zone = ISC_FALSE;
			goto db_find;
		}
	} else {
		result = dns_db_findzonecut(db, name, options, now, NULL,
					    fname, rdataset, sigrdataset);
		if (result == ISC_R_SUCCESS) {
			if (zfname != NULL &&
			    !dns_name_issubdomain(fname, zfname)) {
				/*
				 * We found a zonecut in the cache, but our
				 * zone delegation is better.
				 */
				use_zone = ISC_TRUE;
			}
		} else if (result == ISC_R_NOTFOUND) {
			if (zfname != NULL) {
				/*
				 * We didn't find anything in the cache, but we
				 * have a zone delegation, so use it.
				 */
				use_zone = ISC_TRUE;
			} else {
				/*
				 * Maybe we have hints...
				 */
				try_hints = ISC_TRUE;
			}
		} else {
			/*
			 * Something bad happened.
			 */
			goto cleanup;
		}
	}

 finish:
	if (use_zone) {
902
		if (dns_rdataset_isassociated(rdataset)) {
Bob Halley's avatar
Bob Halley committed
903 904
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
905
			    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
906 907 908 909 910 911
				dns_rdataset_disassociate(sigrdataset);
		}
		result = dns_name_concatenate(zfname, NULL, fname, NULL);
		if (result != ISC_R_SUCCESS)
			goto cleanup;
		dns_rdataset_clone(&zrdataset, rdataset);
912 913
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(&zrdataset))
Bob Halley's avatar
Bob Halley committed
914 915 916 917 918 919 920 921 922 923 924 925 926 927 928 929 930 931
			dns_rdataset_clone(&zsigrdataset, sigrdataset);
	} else if (try_hints && use_hints && view->hints != NULL) {
		/*
		 * We've found nothing so far, but we have hints.
		 */
		result = dns_db_find(view->hints, dns_rootname, NULL,
				     dns_rdatatype_ns, 0, now, NULL, fname,
				     rdataset, NULL);
		if (result != ISC_R_SUCCESS) {
			/*
			 * We can't even find the hints for the root
			 * nameservers!
			 */
			result = ISC_R_NOTFOUND;
		}
	}

 cleanup:
932
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
933
		dns_rdataset_disassociate(&zrdataset);
934
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
935 936 937 938 939 940 941 942 943 944
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
	if (zone != NULL)
		dns_zone_detach(&zone);

	return (result);
}

945 946 947 948
isc_result_t
dns_viewlist_find(dns_viewlist_t *list, const char *name,
		  dns_rdataclass_t rdclass, dns_view_t **viewp)
{
949 950 951 952
	dns_view_t *view;

	REQUIRE(list != NULL);

953 954 955
	for (view = ISC_LIST_HEAD(*list);
	     view != NULL;
	     view = ISC_LIST_NEXT(view, link)) {
956 957 958
		if (strcmp(view->name, name) == 0 && view->rdclass == rdclass)
			break;
	}
959 960 961 962 963 964
	if (view == NULL)
		return (ISC_R_NOTFOUND);

	dns_view_attach(view, viewp);

	return (ISC_R_SUCCESS);
965
}
Mark Andrews's avatar
Mark Andrews committed
966

967 968
isc_result_t
dns_view_load(dns_view_t *view, isc_boolean_t stop) {
Mark Andrews's avatar
Mark Andrews committed
969 970 971

	REQUIRE(DNS_VIEW_VALID(view));

972
	return (dns_zt_load(view->zonetable, stop));
Mark Andrews's avatar
Mark Andrews committed
973
}
Brian Wellington's avatar
Brian Wellington committed
974 975 976 977 978 979 980 981 982 983

isc_result_t
dns_view_checksig(dns_view_t *view, isc_buffer_t *source, dns_message_t *msg) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(source != NULL);

	return dns_tsig_verify(source, msg, view->statickeys,
			       view->dynamickeys);
}