view.c 24 KB
Newer Older
Bob Halley's avatar
add  
Bob Halley committed
1
/*
Bob Halley's avatar
Bob Halley committed
2
 * Copyright (C) 1999, 2000  Internet Software Consortium.
Bob Halley's avatar
add  
Bob Halley committed
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19
 * 
 * Permission to use, copy, modify, and distribute this software for any
 * purpose with or without fee is hereby granted, provided that the above
 * copyright notice and this permission notice appear in all copies.
 * 
 * THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM DISCLAIMS
 * ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES
 * OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL INTERNET SOFTWARE
 * CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL
 * DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR
 * PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS
 * ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS
 * SOFTWARE.
 */

#include <config.h>

20
#include <isc/task.h>
21
#include <isc/string.h>		/* Required for HP/UX (and others?) */
Michael Graff's avatar
Michael Graff committed
22
#include <isc/util.h>
Bob Halley's avatar
add  
Bob Halley committed
23

24
#include <dns/acl.h>
Bob Halley's avatar
add adb  
Bob Halley committed
25
#include <dns/adb.h>
26
#include <dns/cache.h>
Bob Halley's avatar
Bob Halley committed
27
#include <dns/db.h>
28
#include <dns/events.h>
29
#include <dns/keytable.h>
30
#include <dns/peer.h>
Bob Halley's avatar
Bob Halley committed
31
#include <dns/rdataset.h>
Mark Andrews's avatar
Mark Andrews committed
32
#include <dns/request.h>
33 34
#include <dns/resolver.h>
#include <dns/result.h>
Brian Wellington's avatar
Brian Wellington committed
35
#include <dns/tsig.h>
36
#include <dns/zone.h>
37
#include <dns/zt.h>
Bob Halley's avatar
add  
Bob Halley committed
38

39 40
#define RESSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_RESSHUTDOWN) != 0)
#define ADBSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_ADBSHUTDOWN) != 0)
Mark Andrews's avatar
Mark Andrews committed
41
#define REQSHUTDOWN(v)	(((v)->attributes & DNS_VIEWATTR_REQSHUTDOWN) != 0)
42 43 44

static void resolver_shutdown(isc_task_t *task, isc_event_t *event);
static void adb_shutdown(isc_task_t *task, isc_event_t *event);
Mark Andrews's avatar
Mark Andrews committed
45
static void req_shutdown(isc_task_t *task, isc_event_t *event);
46

Bob Halley's avatar
add  
Bob Halley committed
47
isc_result_t
48 49
dns_view_create(isc_mem_t *mctx, dns_rdataclass_t rdclass,
		const char *name, dns_view_t **viewp)
Bob Halley's avatar
add  
Bob Halley committed
50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76
{
	dns_view_t *view;
	isc_result_t result;

	/*
	 * Create a view.
	 */

	REQUIRE(name != NULL);
	REQUIRE(viewp != NULL && *viewp == NULL);

	view = isc_mem_get(mctx, sizeof *view);
	if (view == NULL)
		return (ISC_R_NOMEMORY);
	view->name = isc_mem_strdup(mctx, name);
	if (view->name == NULL) {
		result = ISC_R_NOMEMORY;
		goto cleanup_view;
	}
	result = isc_mutex_init(&view->lock);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_mutex_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_name;
	}
77
	result = isc_rwlock_init(&view->conflock, 1, 1);
78 79 80 81 82 83 84
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "isc_rwlock_init() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_mutex;
	}
85 86
	view->zonetable = NULL;
	result = dns_zt_create(mctx, rdclass, &view->zonetable);
Bob Halley's avatar
add  
Bob Halley committed
87 88
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
89
				 "dns_zt_create() failed: %s",
Bob Halley's avatar
add  
Bob Halley committed
90 91
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
92
		goto cleanup_rwlock;
Bob Halley's avatar
add  
Bob Halley committed
93
	}
Bob Halley's avatar
Bob Halley committed
94
	view->secroots = NULL;
95
	result = dns_keytable_create(mctx, &view->secroots);
Bob Halley's avatar
Bob Halley committed
96 97
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
98
				 "dns_keytable_create() failed: %s",
Bob Halley's avatar
Bob Halley committed
99 100
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
101
		goto cleanup_zt;
Bob Halley's avatar
Bob Halley committed
102
	}
103 104 105 106 107 108 109 110 111
	view->trustedkeys = NULL;
	result = dns_keytable_create(mctx, &view->trustedkeys);
	if (result != ISC_R_SUCCESS) {
		UNEXPECTED_ERROR(__FILE__, __LINE__,
				 "dns_keytable_create() failed: %s",
				 isc_result_totext(result));
		result = ISC_R_UNEXPECTED;
		goto cleanup_secroots;
	}
112

113
	view->cache = NULL;
Bob Halley's avatar
Bob Halley committed
114
	view->cachedb = NULL;
Bob Halley's avatar
Bob Halley committed
115
	view->hints = NULL;
Bob Halley's avatar
add  
Bob Halley committed
116
	view->resolver = NULL;
Bob Halley's avatar
add adb  
Bob Halley committed
117
	view->adb = NULL;
Mark Andrews's avatar
Mark Andrews committed
118
	view->requestmgr = NULL;
Bob Halley's avatar
add  
Bob Halley committed
119 120
	view->mctx = mctx;
	view->rdclass = rdclass;
Bob Halley's avatar
Bob Halley committed
121
	view->frozen = ISC_FALSE;
122
	view->task = NULL;
Bob Halley's avatar
add  
Bob Halley committed
123
	view->references = 1;
124
	view->weakrefs = 0;
Mark Andrews's avatar
Mark Andrews committed
125 126
	view->attributes = (DNS_VIEWATTR_RESSHUTDOWN|DNS_VIEWATTR_ADBSHUTDOWN|
			    DNS_VIEWATTR_REQSHUTDOWN);
Brian Wellington's avatar
Brian Wellington committed
127 128
	view->statickeys = NULL;
	view->dynamickeys = NULL;
129
	view->matchclients = NULL;
130
	result = dns_tsigkeyring_create(view->mctx, &view->dynamickeys);
131
	if (result != ISC_R_SUCCESS)
132
		goto cleanup_trustedkeys;
133
	view->peers = NULL;
134

135 136 137
	/*
	 * Initialize configuration data with default values.
	 */	
138 139 140
	view->recursion = ISC_TRUE;
	view->auth_nxdomain = ISC_FALSE; /* Was true in BIND 8 */
	view->transfer_format = dns_one_answer;
141 142
	view->queryacl = NULL;
	view->recursionacl = NULL;
143 144
	view->requestixfr = ISC_TRUE;
	view->provideixfr = ISC_TRUE;
145

146
	result = dns_peerlist_new(view->mctx, &view->peers);
147
	if (result != ISC_R_SUCCESS)
148
		goto cleanup_dynkeys;
Michael Graff's avatar
Michael Graff committed
149
	ISC_LINK_INIT(view, link);
150 151 152 153 154 155
	ISC_EVENT_INIT(&view->resevent, sizeof view->resevent, 0, NULL,
		       DNS_EVENT_VIEWRESSHUTDOWN, resolver_shutdown,
		       view, NULL, NULL, NULL);
	ISC_EVENT_INIT(&view->adbevent, sizeof view->adbevent, 0, NULL,
		       DNS_EVENT_VIEWADBSHUTDOWN, adb_shutdown,
		       view, NULL, NULL, NULL);
Mark Andrews's avatar
Mark Andrews committed
156 157 158
	ISC_EVENT_INIT(&view->reqevent, sizeof view->reqevent, 0, NULL,
		       DNS_EVENT_VIEWREQSHUTDOWN, req_shutdown,
		       view, NULL, NULL, NULL);
Bob Halley's avatar
add  
Bob Halley committed
159 160 161 162 163 164
	view->magic = DNS_VIEW_MAGIC;
	
	*viewp = view;

	return (ISC_R_SUCCESS);

165 166 167
 cleanup_dynkeys:
	dns_tsigkeyring_destroy(&view->dynamickeys);	

168 169 170
 cleanup_trustedkeys:
	dns_keytable_detach(&view->trustedkeys);

171
 cleanup_secroots:
172
	dns_keytable_detach(&view->secroots);
173
	
174 175
 cleanup_zt:
	dns_zt_detach(&view->zonetable);
Bob Halley's avatar
Bob Halley committed
176

177 178 179
 cleanup_rwlock:
	isc_rwlock_destroy(&view->conflock);

Bob Halley's avatar
add  
Bob Halley committed
180 181 182 183 184 185 186 187 188 189 190 191 192 193 194
 cleanup_mutex:
	isc_mutex_destroy(&view->lock);

 cleanup_name:
	isc_mem_free(mctx, view->name);

 cleanup_view:
	isc_mem_put(mctx, view, sizeof *view);

	return (result);
}

static inline void
destroy(dns_view_t *view) {
	REQUIRE(!ISC_LINK_LINKED(view, link));
195
	REQUIRE(view->references == 0);
196
	REQUIRE(view->weakrefs == 0);
197 198
	REQUIRE(RESSHUTDOWN(view));
	REQUIRE(ADBSHUTDOWN(view));
Mark Andrews's avatar
Mark Andrews committed
199
	REQUIRE(REQSHUTDOWN(view));
Bob Halley's avatar
add  
Bob Halley committed
200

201 202
	if (view->peers != NULL)
		dns_peerlist_detach(&view->peers);
203
	if (view->dynamickeys != NULL)	
204
		dns_tsigkeyring_destroy(&view->dynamickeys);
205
	if (view->statickeys != NULL)	
206
		dns_tsigkeyring_destroy(&view->statickeys);
Bob Halley's avatar
add adb  
Bob Halley committed
207 208
	if (view->adb != NULL)
		dns_adb_detach(&view->adb);
Bob Halley's avatar
add  
Bob Halley committed
209 210
	if (view->resolver != NULL)
		dns_resolver_detach(&view->resolver);
Mark Andrews's avatar
Mark Andrews committed
211 212
	if (view->requestmgr != NULL)
		dns_requestmgr_detach(&view->requestmgr);
213 214
	if (view->task != NULL)
		isc_task_detach(&view->task);
Bob Halley's avatar
Bob Halley committed
215 216
	if (view->hints != NULL)
		dns_db_detach(&view->hints);
Bob Halley's avatar
Bob Halley committed
217 218
	if (view->cachedb != NULL)
		dns_db_detach(&view->cachedb);
219 220
	if (view->cache != NULL)
		dns_cache_detach(&view->cache);
221 222
	if (view->matchclients != NULL)
		dns_acl_detach(&view->matchclients);
223 224 225 226
	if (view->queryacl != NULL)
		dns_acl_detach(&view->queryacl);
	if (view->recursionacl != NULL)
		dns_acl_detach(&view->recursionacl);
227 228
	dns_keytable_detach(&view->trustedkeys);
	dns_keytable_detach(&view->secroots);
Bob Halley's avatar
add  
Bob Halley committed
229 230 231 232 233
	isc_mutex_destroy(&view->lock);
	isc_mem_free(view->mctx, view->name);
	isc_mem_put(view->mctx, view, sizeof *view);
}

234 235 236 237 238 239
static isc_boolean_t
all_done(dns_view_t *view) {
	/*
	 * Caller must be holding the view lock.
	 */

240 241
	if (view->references == 0 && view->weakrefs == 0 &&
	    RESSHUTDOWN(view) && ADBSHUTDOWN(view) && REQSHUTDOWN(view))
242 243 244 245 246
		return (ISC_TRUE);

	return (ISC_FALSE);
}

247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263
void
dns_view_attach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);

	INSIST(source->references > 0);
	source->references++;
	INSIST(source->references != 0);

	UNLOCK(&source->lock);

	*targetp = source;
}

Bob Halley's avatar
add  
Bob Halley committed
264 265 266
void
dns_view_detach(dns_view_t **viewp) {
	dns_view_t *view;
267
	isc_boolean_t done = ISC_FALSE;
Bob Halley's avatar
add  
Bob Halley committed
268 269 270 271 272 273 274 275 276

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->references > 0);
	view->references--;
277 278 279 280 281
	if (view->references == 0) {
		if (!RESSHUTDOWN(view))
			dns_resolver_shutdown(view->resolver);
		if (!ADBSHUTDOWN(view))
			dns_adb_shutdown(view->adb);
Mark Andrews's avatar
Mark Andrews committed
282 283
		if (!REQSHUTDOWN(view))
			dns_requestmgr_shutdown(view->requestmgr);
284
		dns_zt_detach(&view->zonetable);
285 286
		done = all_done(view);
	}
Bob Halley's avatar
add  
Bob Halley committed
287 288 289 290
	UNLOCK(&view->lock);

	*viewp = NULL;

291 292 293 294
	if (done)
		destroy(view);
}

295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330
void
dns_view_weakattach(dns_view_t *source, dns_view_t **targetp) {

	REQUIRE(DNS_VIEW_VALID(source));
	REQUIRE(targetp != NULL && *targetp == NULL);

	LOCK(&source->lock);
	source->weakrefs++;
	UNLOCK(&source->lock);

	*targetp = source;
}

void
dns_view_weakdetach(dns_view_t **viewp) {
	dns_view_t *view;
	isc_boolean_t done = ISC_FALSE;

	REQUIRE(viewp != NULL);
	view = *viewp;
	REQUIRE(DNS_VIEW_VALID(view));

	LOCK(&view->lock);

	INSIST(view->weakrefs > 0);
	view->weakrefs--;
	done = all_done(view);

	UNLOCK(&view->lock);

	*viewp = NULL;

	if (done)
		destroy(view);
}

331 332
static void
resolver_shutdown(isc_task_t *task, isc_event_t *event) {
333
	dns_view_t *view = event->ev_arg;
334 335
	isc_boolean_t done;
	
336
	REQUIRE(event->ev_type == DNS_EVENT_VIEWRESSHUTDOWN);
337 338 339
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

340 341
	UNUSED(task);
	
342 343 344 345 346 347 348 349 350 351 352 353 354 355 356
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_RESSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

static void
adb_shutdown(isc_task_t *task, isc_event_t *event) {
357
	dns_view_t *view = event->ev_arg;
358 359
	isc_boolean_t done;
	
360
	REQUIRE(event->ev_type == DNS_EVENT_VIEWADBSHUTDOWN);
361 362 363
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

364 365
	UNUSED(task);
	
366 367 368 369 370 371 372 373 374 375
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_ADBSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
Bob Halley's avatar
add  
Bob Halley committed
376 377
		destroy(view);
}
378

Mark Andrews's avatar
Mark Andrews committed
379 380 381 382 383 384 385 386 387
static void
req_shutdown(isc_task_t *task, isc_event_t *event) {
	dns_view_t *view = event->ev_arg;
	isc_boolean_t done;
	
	REQUIRE(event->ev_type == DNS_EVENT_VIEWREQSHUTDOWN);
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->task == task);

388 389
	UNUSED(task);
	
Mark Andrews's avatar
Mark Andrews committed
390 391 392 393 394 395 396 397 398 399 400 401 402
	LOCK(&view->lock);

	view->attributes |= DNS_VIEWATTR_REQSHUTDOWN;
	done = all_done(view);

	UNLOCK(&view->lock);

	isc_event_free(&event);

	if (done)
		destroy(view);
}

Bob Halley's avatar
Bob Halley committed
403
isc_result_t
Bob Halley's avatar
Bob Halley committed
404 405 406 407
dns_view_createresolver(dns_view_t *view,
			isc_taskmgr_t *taskmgr, unsigned int ntasks,
			isc_socketmgr_t *socketmgr,
			isc_timermgr_t *timermgr,
408
			unsigned int options,
409
			dns_dispatchmgr_t *dispatchmgr,
410 411
			dns_dispatch_t *dispatchv4,
			dns_dispatch_t *dispatchv6)
Bob Halley's avatar
Bob Halley committed
412
{
Bob Halley's avatar
add adb  
Bob Halley committed
413
	isc_result_t result;
414
	isc_event_t *event;
Bob Halley's avatar
add adb  
Bob Halley committed
415

Bob Halley's avatar
Bob Halley committed
416
	/*
Bob Halley's avatar
add adb  
Bob Halley committed
417
	 * Create a resolver and address database for the view.
Bob Halley's avatar
Bob Halley committed
418 419
	 */

420
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
421
	REQUIRE(!view->frozen);
422
	REQUIRE(view->resolver == NULL);
423

Bob Halley's avatar
Bob Halley committed
424
	result = isc_task_create(taskmgr, 0, &view->task);
425 426
	if (result != ISC_R_SUCCESS)
		return (result);
Bob Halley's avatar
Bob Halley committed
427
	isc_task_setname(view->task, "view", view);
428

Bob Halley's avatar
add adb  
Bob Halley committed
429
	result = dns_resolver_create(view, taskmgr, ntasks, socketmgr,
430 431
				     timermgr, options, dispatchmgr,
				     dispatchv4, dispatchv6,
432
				     &view->resolver);
433 434
	if (result != ISC_R_SUCCESS) {
		isc_task_detach(&view->task);
Bob Halley's avatar
add adb  
Bob Halley committed
435
		return (result);
436 437 438 439 440
	}
	event = &view->resevent;
	dns_resolver_whenshutdown(view->resolver, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_RESSHUTDOWN;

Bob Halley's avatar
add adb  
Bob Halley committed
441 442
	result = dns_adb_create(view->mctx, view, timermgr, taskmgr,
				&view->adb);
443 444 445 446 447 448 449
	if (result != ISC_R_SUCCESS) {
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->adbevent;
	dns_adb_whenshutdown(view->adb, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_ADBSHUTDOWN;
Bob Halley's avatar
add adb  
Bob Halley committed
450

Mark Andrews's avatar
Mark Andrews committed
451
	result = dns_requestmgr_create(view->mctx, timermgr, socketmgr,
452
				       dns_resolver_taskmgr(view->resolver),
453
				       dns_resolver_dispatchmgr(view->resolver),
Mark Andrews's avatar
Mark Andrews committed
454 455 456 457 458 459 460 461 462 463 464 465
				       dns_resolver_dispatchv4(view->resolver),
				       dns_resolver_dispatchv6(view->resolver),
				       &view->requestmgr);
	if (result != ISC_R_SUCCESS) {
		dns_adb_shutdown(view->adb);
		dns_resolver_shutdown(view->resolver);
		return (result);
	}
	event = &view->reqevent;
	dns_requestmgr_whenshutdown(view->requestmgr, view->task, &event);
	view->attributes &= ~DNS_VIEWATTR_REQSHUTDOWN;

466
	return (ISC_R_SUCCESS);
467 468 469
}

void
470
dns_view_setcache(dns_view_t *view, dns_cache_t *cache) {
Bob Halley's avatar
Bob Halley committed
471 472

	/*
473
	 * Set the view's cache.
Bob Halley's avatar
Bob Halley committed
474 475
	 */

476
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
477
	REQUIRE(!view->frozen);
478

479
	if (view->cache != NULL) {
Bob Halley's avatar
add adb  
Bob Halley committed
480
		dns_db_detach(&view->cachedb);
481 482 483 484 485
		dns_cache_detach(&view->cache);
	}
	dns_cache_attach(cache, &view->cache);
	dns_cache_attachdb(cache, &view->cachedb);
	INSIST(DNS_DB_VALID(view->cachedb));
486 487
}

Bob Halley's avatar
Bob Halley committed
488 489 490 491 492 493 494 495 496 497 498 499 500 501 502
void
dns_view_sethints(dns_view_t *view, dns_db_t *hints) {

	/*
	 * Set the view's hints database.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);
	REQUIRE(view->hints == NULL);
	REQUIRE(dns_db_iszone(hints));

	dns_db_attach(hints, &view->hints);
}

Brian Wellington's avatar
Brian Wellington committed
503 504 505
void
dns_view_setkeyring(dns_view_t *view, dns_tsig_keyring_t *ring) {
	/*
506
	 * Set the view's static TSIG keyring.
Brian Wellington's avatar
Brian Wellington committed
507 508 509
	 */
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(ring != NULL);
510
	if (view->statickeys != NULL)
511
		dns_tsigkeyring_destroy(&view->statickeys);
Brian Wellington's avatar
Brian Wellington committed
512 513 514
	view->statickeys = ring;
}

515
isc_result_t
516
dns_view_addzone(dns_view_t *view, dns_zone_t *zone) {
Bob Halley's avatar
Bob Halley committed
517 518 519
	isc_result_t result;

	/*
520
	 * Add zone 'zone' to 'view'.
Bob Halley's avatar
Bob Halley committed
521 522
	 */

523
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
524 525
	REQUIRE(!view->frozen);

526
	result = dns_zt_mount(view->zonetable, zone);
527

Bob Halley's avatar
Bob Halley committed
528
	return (result);
529 530 531 532
}

void
dns_view_freeze(dns_view_t *view) {
Bob Halley's avatar
Bob Halley committed
533 534 535 536 537 538 539 540
	
	/*
	 * Freeze view.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(!view->frozen);

541 542
	if (view->resolver != NULL) {
		INSIST(view->cachedb != NULL);
Bob Halley's avatar
Bob Halley committed
543
		dns_resolver_freeze(view->resolver);
544
	}
Bob Halley's avatar
Bob Halley committed
545 546 547
	view->frozen = ISC_TRUE;
}

548
isc_result_t
549
dns_view_findzone(dns_view_t *view, dns_name_t *name, dns_zone_t **zonep) {
550 551 552 553
	isc_result_t result;

	REQUIRE(DNS_VIEW_VALID(view));

Bob Halley's avatar
Bob Halley committed
554
	result = dns_zt_find(view->zonetable, name, 0, NULL, zonep);
555
	if (result == DNS_R_PARTIALMATCH) {
556
		dns_zone_detach(zonep);
557
		result = ISC_R_NOTFOUND;
558
	}
559

560 561 562
	return (result);
}

Bob Halley's avatar
Bob Halley committed
563 564
isc_result_t
dns_view_find(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
565 566
	      isc_stdtime_t now, unsigned int options,
	      isc_boolean_t use_hints, dns_name_t *foundname,
Bob Halley's avatar
Bob Halley committed
567 568 569 570 571 572
	      dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	isc_boolean_t is_zone;
	dns_rdataset_t zrdataset, zsigrdataset;
573
	dns_zone_t *zone;
Bob Halley's avatar
Bob Halley committed
574 575 576 577 578 579

	/*
	 * Find an rdataset whose owner name is 'name', and whose type is
	 * 'type'.
	 */

580
	REQUIRE(DNS_VIEW_VALID(view));
Bob Halley's avatar
Bob Halley committed
581 582 583 584 585 586 587 588 589 590 591 592
	REQUIRE(view->frozen);
	REQUIRE(type != dns_rdatatype_any && type != dns_rdatatype_sig);

	/*
	 * Initialize.
	 */
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find a database to answer the query.
	 */
593
	zone = NULL;
Bob Halley's avatar
Bob Halley committed
594
	db = NULL;
Bob Halley's avatar
Bob Halley committed
595
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
596 597
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH) {
		result = dns_zone_getdb(zone, &db);
598
		if (result != ISC_R_SUCCESS && view->cachedb != NULL)
599
			dns_db_attach(view->cachedb, &db);
600
		else if (result != ISC_R_SUCCESS)
601 602
			goto cleanup;
	} else if (result == ISC_R_NOTFOUND && view->cachedb != NULL)
Bob Halley's avatar
Bob Halley committed
603
		dns_db_attach(view->cachedb, &db);
604
	else
Bob Halley's avatar
Bob Halley committed
605 606 607
		goto cleanup;

	is_zone = dns_db_iszone(db);
608

Bob Halley's avatar
Bob Halley committed
609 610 611 612 613
 db_find:
	/*
	 * Now look for an answer in the database.
	 */
	result = dns_db_find(db, name, NULL, type, options,
614
			     now, NULL, foundname, rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
615 616

	if (result == DNS_R_DELEGATION ||
617
	    result == ISC_R_NOTFOUND) {
618
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
619
			dns_rdataset_disassociate(rdataset);
620 621
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638
			dns_rdataset_disassociate(sigrdataset);
		if (is_zone) {
			if (view->cachedb != NULL) {
				/*
				 * Either the answer is in the cache, or we
				 * don't know it.
				 */
				is_zone = ISC_FALSE;
				dns_db_detach(&db);
				dns_db_attach(view->cachedb, &db);
				goto db_find;
			}
		} else {
			/*
			 * We don't have the data in the cache.  If we've got
			 * glue from the zone, use it.
			 */
639
			if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
640
				dns_rdataset_clone(&zrdataset, rdataset);
Bob Halley's avatar
Bob Halley committed
641
				if (sigrdataset != NULL &&
642
				    dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
643 644 645 646 647 648 649 650 651
					dns_rdataset_clone(&zsigrdataset,
							   sigrdataset);
				result = DNS_R_GLUE;
				goto cleanup;
			}
		}
		/*
		 * We don't know the answer.
		 */
652
		result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
653 654 655 656 657 658 659 660 661
	} else if (result == DNS_R_GLUE) {
		if (view->cachedb != NULL) {
			/*
			 * We found an answer, but the cache may be better.
			 * Remember what we've got and go look in the cache.
			 */
			is_zone = ISC_FALSE;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
Bob Halley's avatar
Bob Halley committed
662
			if (sigrdataset != NULL &&
663
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
664 665 666 667 668 669 670 671 672 673 674
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			goto db_find;
		}
		/*
		 * Otherwise, the glue is the best answer.
		 */
		result = ISC_R_SUCCESS;
Bob Halley's avatar
Bob Halley committed
675 676
	}

677
	if (result == ISC_R_NOTFOUND && use_hints && view->hints != NULL) {
678
		if (dns_rdataset_isassociated(rdataset))
Bob Halley's avatar
Bob Halley committed
679
			dns_rdataset_disassociate(rdataset);
680 681
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
682 683
			dns_rdataset_disassociate(sigrdataset);
		result = dns_db_find(view->hints, name, NULL, type, options,
684
				     now, NULL, foundname,
Bob Halley's avatar
Bob Halley committed
685
				     rdataset, sigrdataset);
Bob Halley's avatar
Bob Halley committed
686 687 688 689 690 691
		if (result == ISC_R_SUCCESS || result == DNS_R_GLUE) {
			/*
			 * We just used a hint.  Let the resolver know it
			 * should consider priming.
			 */
			dns_resolver_prime(view->resolver);
Bob Halley's avatar
Bob Halley committed
692
			result = DNS_R_HINT;
Bob Halley's avatar
Bob Halley committed
693
		} else if (result == DNS_R_NXDOMAIN ||
694 695
			   result == DNS_R_NXRRSET)
			result = ISC_R_NOTFOUND;
Bob Halley's avatar
Bob Halley committed
696
	}
Bob Halley's avatar
Bob Halley committed
697 698

 cleanup:
699 700 701 702
	if (result == DNS_R_NXDOMAIN || result == DNS_R_NXRRSET) {
		/*
		 * We don't care about any DNSSEC proof data in these cases.
		 */
703
		if (dns_rdataset_isassociated(rdataset))
704
			dns_rdataset_disassociate(rdataset);
705 706
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
707 708
			dns_rdataset_disassociate(sigrdataset);
	}
Bob Halley's avatar
Bob Halley committed
709

710
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
711
		dns_rdataset_disassociate(&zrdataset);
712
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
713 714 715 716
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
717 718
	if (zone != NULL)
		dns_zone_detach(&zone);
Bob Halley's avatar
Bob Halley committed
719 720

	return (result);
721
}
722

723 724 725 726 727 728 729 730 731 732 733 734 735
isc_result_t
dns_view_simplefind(dns_view_t *view, dns_name_t *name, dns_rdatatype_t type,
		    isc_stdtime_t now, unsigned int options,
		    isc_boolean_t use_hints,
		    dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_fixedname_t foundname;

	dns_fixedname_init(&foundname);
	result = dns_view_find(view, name, type, now, options, use_hints,
			       dns_fixedname_name(&foundname),
			       rdataset, sigrdataset);
736 737 738 739 740 741 742
	if (result == DNS_R_NXDOMAIN) {
		/*
		 * The rdataset and sigrdataset of the relevant NXT record
		 * may be returned, but the caller cannot use them because
		 * foundname is not returned by this simplified API.  We
		 * disassociate them here to prevent any misuse by the caller.
		 */
743
		if (dns_rdataset_isassociated(rdataset))
744
			dns_rdataset_disassociate(rdataset);
745 746
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
747 748 749 750 751 752 753
			dns_rdataset_disassociate(sigrdataset);
	} else if (result != ISC_R_SUCCESS &&
		   result != DNS_R_GLUE &&
		   result != DNS_R_HINT &&
		   result != DNS_R_NCACHENXDOMAIN &&
		   result != DNS_R_NCACHENXRRSET &&
		   result != DNS_R_NXRRSET &&
754
		   result != ISC_R_NOTFOUND) {
755
		if (dns_rdataset_isassociated(rdataset))
756
			dns_rdataset_disassociate(rdataset);
757 758
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(sigrdataset))
759
			dns_rdataset_disassociate(sigrdataset);
760
		result = ISC_R_NOTFOUND;
761 762 763 764 765
	}

	return (result);
}

Bob Halley's avatar
Bob Halley committed
766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802
isc_result_t
dns_view_findzonecut(dns_view_t *view, dns_name_t *name, dns_name_t *fname,
		     isc_stdtime_t now, unsigned int options,
		     isc_boolean_t use_hints,
		     dns_rdataset_t *rdataset, dns_rdataset_t *sigrdataset)
{
	isc_result_t result;
	dns_db_t *db;
	isc_boolean_t is_zone, use_zone, try_hints;
	dns_zone_t *zone;
	dns_name_t *zfname;
	dns_rdataset_t zrdataset, zsigrdataset;
	dns_fixedname_t zfixedname;

	/*
	 * Find the best known zonecut containing 'name'.
	 */

	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(view->frozen);

	db = NULL;
	zone = NULL;
	use_zone = ISC_FALSE;
	try_hints = ISC_FALSE;
	zfname = NULL;

	/*
	 * Initialize.
	 */
	dns_fixedname_init(&zfixedname);
	dns_rdataset_init(&zrdataset);
	dns_rdataset_init(&zsigrdataset);

	/*
	 * Find the right database.
	 */
Bob Halley's avatar
Bob Halley committed
803
	result = dns_zt_find(view->zonetable, name, 0, NULL, &zone);
804
	if (result == ISC_R_SUCCESS || result == DNS_R_PARTIALMATCH)
Bob Halley's avatar
Bob Halley committed
805 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854
		result = dns_zone_getdb(zone, &db);
	if (result == ISC_R_NOTFOUND) {
		/*
		 * We're not directly authoritative for this query name, nor
		 * is it a subdomain of any zone for which we're
		 * authoritative.
		 */
		if (view->cachedb != NULL) {
			/*
			 * We have a cache; try it.
			 */
			dns_db_attach(view->cachedb, &db);
		} else {
			/*
			 * Maybe we have hints...
			 */
			try_hints = ISC_TRUE;
			goto finish;
		}
	} else if (result != ISC_R_SUCCESS) {
		/*
		 * Something is broken.
		 */
		goto cleanup;
	}
	is_zone = dns_db_iszone(db);

 db_find:
	/*
	 * Look for the zonecut.
	 */
	if (is_zone) {
		result = dns_db_find(db, name, NULL, dns_rdatatype_ns, options,
				     now, NULL, fname, rdataset, sigrdataset);
		if (result == DNS_R_DELEGATION)
			result = ISC_R_SUCCESS;
		else if (result != ISC_R_SUCCESS)
			goto cleanup;
		if (view->cachedb != NULL && db != view->hints) {
			/*
			 * We found an answer, but the cache may be better.
			 */
			zfname = dns_fixedname_name(&zfixedname);
			result = dns_name_concatenate(fname, NULL, zfname,
						      NULL);
			if (result != ISC_R_SUCCESS)
				goto cleanup;
			dns_rdataset_clone(rdataset, &zrdataset);
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
855
			    dns_rdataset_isassociated(sigrdataset)) {
Bob Halley's avatar
Bob Halley committed
856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898
				dns_rdataset_clone(sigrdataset, &zsigrdataset);
				dns_rdataset_disassociate(sigrdataset);
			}
			dns_db_detach(&db);
			dns_db_attach(view->cachedb, &db);
			is_zone = ISC_FALSE;
			goto db_find;
		}
	} else {
		result = dns_db_findzonecut(db, name, options, now, NULL,
					    fname, rdataset, sigrdataset);
		if (result == ISC_R_SUCCESS) {
			if (zfname != NULL &&
			    !dns_name_issubdomain(fname, zfname)) {
				/*
				 * We found a zonecut in the cache, but our
				 * zone delegation is better.
				 */
				use_zone = ISC_TRUE;
			}
		} else if (result == ISC_R_NOTFOUND) {
			if (zfname != NULL) {
				/*
				 * We didn't find anything in the cache, but we
				 * have a zone delegation, so use it.
				 */
				use_zone = ISC_TRUE;
			} else {
				/*
				 * Maybe we have hints...
				 */
				try_hints = ISC_TRUE;
			}
		} else {
			/*
			 * Something bad happened.
			 */
			goto cleanup;
		}
	}

 finish:
	if (use_zone) {
899
		if (dns_rdataset_isassociated(rdataset)) {
Bob Halley's avatar
Bob Halley committed
900 901
			dns_rdataset_disassociate(rdataset);
			if (sigrdataset != NULL &&
902
			    dns_rdataset_isassociated(sigrdataset))
Bob Halley's avatar
Bob Halley committed
903 904 905 906 907 908
				dns_rdataset_disassociate(sigrdataset);
		}
		result = dns_name_concatenate(zfname, NULL, fname, NULL);
		if (result != ISC_R_SUCCESS)
			goto cleanup;
		dns_rdataset_clone(&zrdataset, rdataset);
909 910
		if (sigrdataset != NULL &&
		    dns_rdataset_isassociated(&zrdataset))
Bob Halley's avatar
Bob Halley committed
911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926 927 928
			dns_rdataset_clone(&zsigrdataset, sigrdataset);
	} else if (try_hints && use_hints && view->hints != NULL) {
		/*
		 * We've found nothing so far, but we have hints.
		 */
		result = dns_db_find(view->hints, dns_rootname, NULL,
				     dns_rdatatype_ns, 0, now, NULL, fname,
				     rdataset, NULL);
		if (result != ISC_R_SUCCESS) {
			/*
			 * We can't even find the hints for the root
			 * nameservers!
			 */
			result = ISC_R_NOTFOUND;
		}
	}

 cleanup:
929
	if (dns_rdataset_isassociated(&zrdataset)) {
Bob Halley's avatar
Bob Halley committed
930
		dns_rdataset_disassociate(&zrdataset);
931
		if (dns_rdataset_isassociated(&zsigrdataset))
Bob Halley's avatar
Bob Halley committed
932 933 934 935 936 937 938 939 940 941
			dns_rdataset_disassociate(&zsigrdataset);
	}
	if (db != NULL)
		dns_db_detach(&db);
	if (zone != NULL)
		dns_zone_detach(&zone);

	return (result);
}

942 943 944 945
isc_result_t
dns_viewlist_find(dns_viewlist_t *list, const char *name,
		  dns_rdataclass_t rdclass, dns_view_t **viewp)
{
946 947 948 949
	dns_view_t *view;

	REQUIRE(list != NULL);

950 951 952
	for (view = ISC_LIST_HEAD(*list);
	     view != NULL;
	     view = ISC_LIST_NEXT(view, link)) {
953 954 955
		if (strcmp(view->name, name) == 0 && view->rdclass == rdclass)
			break;
	}
956 957 958 959 960 961
	if (view == NULL)
		return (ISC_R_NOTFOUND);

	dns_view_attach(view, viewp);

	return (ISC_R_SUCCESS);
962
}
Mark Andrews's avatar
Mark Andrews committed
963

964 965
isc_result_t
dns_view_load(dns_view_t *view, isc_boolean_t stop) {
Mark Andrews's avatar
Mark Andrews committed
966 967 968

	REQUIRE(DNS_VIEW_VALID(view));

969
	return (dns_zt_load(view->zonetable, stop));
Mark Andrews's avatar
Mark Andrews committed
970
}
Brian Wellington's avatar
Brian Wellington committed
971 972 973 974 975 976 977 978 979 980

isc_result_t
dns_view_checksig(dns_view_t *view, isc_buffer_t *source, dns_message_t *msg) {
	REQUIRE(DNS_VIEW_VALID(view));
	REQUIRE(source != NULL);

	return dns_tsig_verify(source, msg, view->statickeys,
			       view->dynamickeys);
}