3 * UCC (University [of WA] Computer Club) Electronic Accounting System
5 * server.c - Client Server Code
7 * This file is licenced under the 3-clause BSD Licence. See the file
8 * COPYING for full details.
13 #include <sys/socket.h>
14 #include <netinet/in.h>
15 #include <arpa/inet.h>
17 #include <fcntl.h> // O_*
21 #include <signal.h> // Signal handling
22 #include <ident.h> // AUTHIDENT
23 #include <time.h> // time(2)
25 #define DEBUG_TRACE_CLIENT 0
26 #define HACK_NO_REFUNDS 1
29 #define MAX_CONNECTION_QUEUE 5
30 #define INPUT_BUFFER_SIZE 256
31 #define CLIENT_TIMEOUT 10 // Seconds
33 #define HASH_TYPE SHA1
34 #define HASH_LENGTH 20
36 #define MSG_STR_TOO_LONG "499 Command too long (limit "EXPSTR(INPUT_BUFFER_SIZE)")\n"
38 #define IDENT_TRUSTED_NETWORK 0x825F0D00
39 #define IDENT_TRUSTED_NETMASK 0xFFFFFFC0
42 typedef struct sClient
44 int Socket; // Client socket ID
48 int bCanAutoAuth; // Is the connection from a trusted host/port
59 void Server_Start(void);
60 void Server_Cleanup(void);
61 void Server_HandleClient(int Socket, int bTrustedHost, int bRootPort);
62 void Server_ParseClientCommand(tClient *Client, char *CommandString);
64 void Server_Cmd_USER(tClient *Client, char *Args);
65 void Server_Cmd_PASS(tClient *Client, char *Args);
66 void Server_Cmd_AUTOAUTH(tClient *Client, char *Args);
67 void Server_Cmd_AUTHIDENT(tClient *Client, char *Args);
68 void Server_Cmd_SETEUSER(tClient *Client, char *Args);
69 void Server_Cmd_ENUMITEMS(tClient *Client, char *Args);
70 void Server_Cmd_ITEMINFO(tClient *Client, char *Args);
71 void Server_Cmd_DISPENSE(tClient *Client, char *Args);
72 void Server_Cmd_REFUND(tClient *Client, char *Args);
73 void Server_Cmd_GIVE(tClient *Client, char *Args);
74 void Server_Cmd_DONATE(tClient *Client, char *Args);
75 void Server_Cmd_ADD(tClient *Client, char *Args);
76 void Server_Cmd_SET(tClient *Client, char *Args);
77 void Server_Cmd_ENUMUSERS(tClient *Client, char *Args);
78 void Server_Cmd_USERINFO(tClient *Client, char *Args);
79 void _SendUserInfo(tClient *Client, int UserID);
80 void Server_Cmd_USERADD(tClient *Client, char *Args);
81 void Server_Cmd_USERFLAGS(tClient *Client, char *Args);
82 void Server_Cmd_UPDATEITEM(tClient *Client, char *Args);
84 void Debug(tClient *Client, const char *Format, ...);
85 int sendf(int Socket, const char *Format, ...);
86 int Server_int_ParseArgs(int bUseLongArg, char *ArgStr, ...);
87 int Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value);
91 const struct sClientCommand {
93 void (*Function)(tClient *Client, char *Arguments);
94 } gaServer_Commands[] = {
95 {"USER", Server_Cmd_USER},
96 {"PASS", Server_Cmd_PASS},
97 {"AUTOAUTH", Server_Cmd_AUTOAUTH},
98 {"AUTHIDENT", Server_Cmd_AUTHIDENT},
99 {"SETEUSER", Server_Cmd_SETEUSER},
100 {"ENUM_ITEMS", Server_Cmd_ENUMITEMS},
101 {"ITEM_INFO", Server_Cmd_ITEMINFO},
102 {"DISPENSE", Server_Cmd_DISPENSE},
103 {"REFUND", Server_Cmd_REFUND},
104 {"GIVE", Server_Cmd_GIVE},
105 {"DONATE", Server_Cmd_DONATE},
106 {"ADD", Server_Cmd_ADD},
107 {"SET", Server_Cmd_SET},
108 {"ENUM_USERS", Server_Cmd_ENUMUSERS},
109 {"USER_INFO", Server_Cmd_USERINFO},
110 {"USER_ADD", Server_Cmd_USERADD},
111 {"USER_FLAGS", Server_Cmd_USERFLAGS},
112 {"UPDATE_ITEM", Server_Cmd_UPDATEITEM}
114 #define NUM_COMMANDS ((int)(sizeof(gaServer_Commands)/sizeof(gaServer_Commands[0])))
118 int giServer_Port = 11020;
119 int gbServer_RunInBackground = 0;
120 char *gsServer_LogFile = "/var/log/dispsrv.log";
121 char *gsServer_ErrorLog = "/var/log/dispsrv.err";
122 int giServer_NumTrustedHosts;
123 struct in_addr *gaServer_TrustedHosts;
125 int giServer_Socket; // Server socket
126 int giServer_NextClientID = 1; // Debug client ID
131 * \brief Open listenting socket and serve connections
133 void Server_Start(void)
136 struct sockaddr_in server_addr, client_addr;
138 // Parse trusted hosts list
139 giServer_NumTrustedHosts = Config_GetValueCount("trusted_host");
140 gaServer_TrustedHosts = malloc(giServer_NumTrustedHosts * sizeof(*gaServer_TrustedHosts));
141 for( int i = 0; i < giServer_NumTrustedHosts; i ++ )
143 const char *addr = Config_GetValue("trusted_host", i);
145 if( inet_aton(addr, &gaServer_TrustedHosts[i]) == 0 ) {
146 fprintf(stderr, "Invalid IP address '%s'\n", addr);
151 atexit(Server_Cleanup);
152 // Ignore SIGPIPE (stops crashes when the client exits early)
153 signal(SIGPIPE, SIG_IGN);
156 giServer_Socket = socket(PF_INET, SOCK_STREAM, IPPROTO_TCP);
157 if( giServer_Socket < 0 ) {
158 fprintf(stderr, "ERROR: Unable to create server socket\n");
162 // Make listen address
163 memset(&server_addr, 0, sizeof(server_addr));
164 server_addr.sin_family = AF_INET; // Internet Socket
165 server_addr.sin_addr.s_addr = htonl(INADDR_ANY); // Listen on all interfaces
166 server_addr.sin_port = htons(giServer_Port); // Port
169 if( bind(giServer_Socket, (struct sockaddr *) &server_addr, sizeof(server_addr)) < 0 ) {
170 fprintf(stderr, "ERROR: Unable to bind to 0.0.0.0:%i\n", giServer_Port);
175 // Fork into background
176 if( gbServer_RunInBackground )
180 fprintf(stderr, "ERROR: Unable to fork\n");
181 perror("fork background");
186 printf("Forked child %i\n", pid);
190 // - Sort out stdin/stdout
192 dup2( open("/dev/null", O_RDONLY, 0644), STDIN_FILENO );
193 dup2( open(gsServer_LogFile, O_CREAT|O_APPEND, 0644), STDOUT_FILENO );
194 dup2( open(gsServer_ErrorLog, O_CREAT|O_APPEND, 0644), STDERR_FILENO );
196 freopen("/dev/null", "r", stdin);
197 freopen(gsServer_LogFile, "a", stdout);
198 freopen(gsServer_ErrorLog, "a", stderr);
199 fprintf(stdout, "OpenDispense 2 Server Started at %lld\n", (long long)time(NULL));
200 fprintf(stderr, "OpenDispense 2 Server Started at %lld\n", (long long)time(NULL));
204 // Start the helper thread
205 StartPeriodicThread();
208 if( listen(giServer_Socket, MAX_CONNECTION_QUEUE) < 0 ) {
209 fprintf(stderr, "ERROR: Unable to listen to socket\n");
214 printf("Listening on 0.0.0.0:%i\n", giServer_Port);
218 FILE *fp = fopen("/var/run/dispsrv.pid", "w");
220 fprintf(fp, "%i", getpid());
227 uint len = sizeof(client_addr);
231 // Accept a connection
232 client_socket = accept(giServer_Socket, (struct sockaddr *) &client_addr, &len);
233 if(client_socket < 0) {
234 fprintf(stderr, "ERROR: Unable to accept client connection\n");
238 // Set a timeout on the user conneciton
241 tv.tv_sec = CLIENT_TIMEOUT;
243 if( setsockopt(client_socket, SOL_SOCKET, SO_RCVTIMEO, &tv, sizeof(tv)) )
245 perror("setsockopt");
250 // Debug: Print the connection string
251 if(giDebugLevel >= 2) {
252 char ipstr[INET_ADDRSTRLEN];
253 inet_ntop(AF_INET, &client_addr.sin_addr, ipstr, INET_ADDRSTRLEN);
254 printf("Client connection from %s:%i\n",
255 ipstr, ntohs(client_addr.sin_port));
258 // Doesn't matter what, localhost is trusted
259 if( ntohl( client_addr.sin_addr.s_addr ) == 0x7F000001 )
262 // Check if the host is on the trusted list
263 for( int i = 0; i < giServer_NumTrustedHosts; i ++ )
265 if( memcmp(&client_addr.sin_addr, &gaServer_TrustedHosts[i], sizeof(struct in_addr)) == 0 )
272 // Root port (can AUTOAUTH if also a trusted machine
273 if( ntohs(client_addr.sin_port) < 1024 )
278 // TODO: Make this runtime configurable
279 switch( ntohl( client_addr.sin_addr.s_addr ) )
281 case 0x7F000001: // 127.0.0.1 localhost
282 // case 0x825F0D00: // 130.95.13.0
283 case 0x825F0D04: // 130.95.13.4 merlo
284 // case 0x825F0D05: // 130.95.13.5 heathred (MR)
285 case 0x825F0D07: // 130.95.13.7 motsugo
286 case 0x825F0D11: // 130.95.13.17 mermaid
287 case 0x825F0D12: // 130.95.13.18 mussel
288 case 0x825F0D17: // 130.95.13.23 martello
289 case 0x825F0D2A: // 130.95.13.42 meersau
290 // case 0x825F0D42: // 130.95.13.66 heathred (Clubroom)
299 // TODO: Multithread this?
300 Server_HandleClient(client_socket, bTrusted, bRootPort);
302 close(client_socket);
306 void Server_Cleanup(void)
308 printf("\nClose(%i)\n", giServer_Socket);
309 close(giServer_Socket);
310 unlink("/var/run/dispsrv.pid");
314 * \brief Reads from a client socket and parses the command strings
315 * \param Socket Client socket number/handle
316 * \param bTrusted Is the client trusted?
318 void Server_HandleClient(int Socket, int bTrusted, int bRootPort)
320 char inbuf[INPUT_BUFFER_SIZE];
322 int remspace = INPUT_BUFFER_SIZE-1;
326 memset(&clientInfo, 0, sizeof(clientInfo));
328 // Initialise Client info
329 clientInfo.Socket = Socket;
330 clientInfo.ID = giServer_NextClientID ++;
331 clientInfo.bTrustedHost = bTrusted;
332 clientInfo.bCanAutoAuth = bTrusted && bRootPort;
333 clientInfo.EffectiveUID = -1;
338 * - The `buf` and `remspace` variables allow a line to span several
339 * calls to recv(), if a line is not completed in one recv() call
340 * it is saved to the beginning of `inbuf` and `buf` is updated to
343 // TODO: Use select() instead (to give a timeout)
344 while( (bytes = recv(Socket, buf, remspace, 0)) > 0 )
347 buf[bytes] = '\0'; // Allow us to use stdlib string functions on it
351 while( (eol = strchr(start, '\n')) )
355 Server_ParseClientCommand(&clientInfo, start);
360 // Check if there was an incomplete line
361 if( *start != '\0' ) {
362 int tailBytes = bytes - (start-buf);
363 // Roll back in buffer
364 memcpy(inbuf, start, tailBytes);
365 remspace -= tailBytes;
367 send(Socket, MSG_STR_TOO_LONG, sizeof(MSG_STR_TOO_LONG), 0);
369 remspace = INPUT_BUFFER_SIZE - 1;
374 remspace = INPUT_BUFFER_SIZE - 1;
380 fprintf(stderr, "ERROR: Unable to recieve from client on socket %i\n", Socket);
384 if(giDebugLevel >= 2) {
385 printf("Client %i: Disconnected\n", clientInfo.ID);
390 * \brief Parses a client command and calls the required helper function
391 * \param Client Pointer to client state structure
392 * \param CommandString Command from client (single line of the command)
393 * \return Heap String to return to the client
395 void Server_ParseClientCommand(tClient *Client, char *CommandString)
397 char *command, *args;
400 if( giDebugLevel >= 2 )
401 Debug(Client, "Server_ParseClientCommand: (CommandString = '%s')", CommandString);
403 if( Server_int_ParseArgs(1, CommandString, &command, &args, NULL) )
405 if( command == NULL ) return ;
406 // Is this an error? (just ignore for now)
411 for( i = 0; i < NUM_COMMANDS; i++ )
413 if(strcmp(command, gaServer_Commands[i].Name) == 0) {
414 if( giDebugLevel >= 2 )
415 Debug(Client, "CMD %s - \"%s\"", command, args);
416 gaServer_Commands[i].Function(Client, args);
421 sendf(Client->Socket, "400 Unknown Command\n");
428 * \brief Set client username
430 * Usage: USER <username>
432 void Server_Cmd_USER(tClient *Client, char *Args)
436 if( Server_int_ParseArgs(0, Args, &username, NULL) )
438 sendf(Client->Socket, "407 USER takes 1 argument\n");
444 Debug(Client, "Authenticating as '%s'", username);
448 free(Client->Username);
449 Client->Username = strdup(username);
452 // Create a salt (that changes if the username is changed)
453 // Yes, I know, I'm a little paranoid, but who isn't?
454 Client->Salt[0] = 0x21 + (rand()&0x3F);
455 Client->Salt[1] = 0x21 + (rand()&0x3F);
456 Client->Salt[2] = 0x21 + (rand()&0x3F);
457 Client->Salt[3] = 0x21 + (rand()&0x3F);
458 Client->Salt[4] = 0x21 + (rand()&0x3F);
459 Client->Salt[5] = 0x21 + (rand()&0x3F);
460 Client->Salt[6] = 0x21 + (rand()&0x3F);
461 Client->Salt[7] = 0x21 + (rand()&0x3F);
463 // TODO: Also send hash type to use, (SHA1 or crypt according to [DAA])
464 sendf(Client->Socket, "100 SALT %s\n", Client->Salt);
466 sendf(Client->Socket, "100 User Set\n");
471 * \brief Authenticate as a user
475 void Server_Cmd_PASS(tClient *Client, char *Args)
480 if( Server_int_ParseArgs(0, Args, &passhash, NULL) )
482 sendf(Client->Socket, "407 PASS takes 1 argument\n");
486 // Pass on to cokebank
487 Client->UID = Bank_GetUserAuth(Client->Salt, Client->Username, passhash);
489 if( Client->UID == -1 ) {
490 sendf(Client->Socket, "401 Auth Failure\n");
494 flags = Bank_GetFlags(Client->UID);
495 if( flags & USER_FLAG_DISABLED ) {
497 sendf(Client->Socket, "403 Account Disabled\n");
500 if( flags & USER_FLAG_INTERNAL ) {
502 sendf(Client->Socket, "403 Internal account\n");
506 Client->bIsAuthed = 1;
507 sendf(Client->Socket, "200 Auth OK\n");
511 * \brief Authenticate as a user without a password
513 * Usage: AUTOAUTH <user>
515 void Server_Cmd_AUTOAUTH(tClient *Client, char *Args)
520 if( Server_int_ParseArgs(0, Args, &username, NULL) )
522 sendf(Client->Socket, "407 AUTOAUTH takes 1 argument\n");
527 if( !Client->bCanAutoAuth ) {
529 Debug(Client, "Untrusted client attempting to AUTOAUTH");
530 sendf(Client->Socket, "401 Untrusted\n");
535 Client->UID = Bank_GetAcctByName( username, 0 );
536 if( Client->UID < 0 ) {
538 Debug(Client, "Unknown user '%s'", username);
539 sendf(Client->Socket, "403 Auth Failure\n");
543 userflags = Bank_GetFlags(Client->UID);
544 // You can't be an internal account
545 if( userflags & USER_FLAG_INTERNAL ) {
547 Debug(Client, "Autoauth as '%s', not allowed", username);
549 sendf(Client->Socket, "403 Account is internal\n");
554 if( userflags & USER_FLAG_DISABLED ) {
556 sendf(Client->Socket, "403 Account disabled\n");
562 free(Client->Username);
563 Client->Username = strdup(username);
565 Client->bIsAuthed = 1;
568 Debug(Client, "Auto authenticated as '%s' (%i)", username, Client->UID);
570 sendf(Client->Socket, "200 Auth OK\n");
574 * \brief Authenticate as a user using the IDENT protocol
578 void Server_Cmd_AUTHIDENT(tClient *Client, char *Args)
582 const int ident_timeout = 5;
584 if( Args != NULL && strlen(Args) ) {
585 sendf(Client->Socket, "407 AUTHIDENT takes no arguments\n");
590 if( !Client->bTrustedHost ) {
592 Debug(Client, "Untrusted client attempting to AUTHIDENT");
593 sendf(Client->Socket, "401 Untrusted\n");
597 // Get username via IDENT
598 username = ident_id(Client->Socket, ident_timeout);
600 perror("AUTHIDENT - IDENT timed out");
601 sendf(Client->Socket, "403 Authentication failure: IDENT auth timed out\n");
606 Client->UID = Bank_GetAcctByName( username, 0 );
607 if( Client->UID < 0 ) {
609 Debug(Client, "Unknown user '%s'", username);
610 sendf(Client->Socket, "403 Authentication failure: unknown account\n");
615 userflags = Bank_GetFlags(Client->UID);
616 // You can't be an internal account
617 if( userflags & USER_FLAG_INTERNAL ) {
619 Debug(Client, "IDENT auth as '%s', not allowed", username);
621 sendf(Client->Socket, "403 Authentication failure: that account is internal\n");
627 if( userflags & USER_FLAG_DISABLED ) {
629 sendf(Client->Socket, "403 Authentication failure: account disabled\n");
636 free(Client->Username);
637 Client->Username = strdup(username);
639 Client->bIsAuthed = 1;
642 Debug(Client, "IDENT authenticated as '%s' (%i)", username, Client->UID);
645 sendf(Client->Socket, "200 Auth OK\n");
649 * \brief Set effective user
651 void Server_Cmd_SETEUSER(tClient *Client, char *Args)
654 int eUserFlags, userFlags;
656 if( Server_int_ParseArgs(0, Args, &username, NULL) )
658 sendf(Client->Socket, "407 SETEUSER takes 1 argument\n");
662 if( !strlen(Args) ) {
663 sendf(Client->Socket, "407 SETEUSER expects an argument\n");
667 // Check authentication
668 if( !Client->bIsAuthed ) {
669 sendf(Client->Socket, "401 Not Authenticated\n");
673 // Check user permissions
674 userFlags = Bank_GetFlags(Client->UID);
675 if( !(userFlags & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
676 sendf(Client->Socket, "403 Not in coke\n");
681 Client->EffectiveUID = Bank_GetAcctByName(username, 0);
682 if( Client->EffectiveUID == -1 ) {
683 sendf(Client->Socket, "404 User not found\n");
687 // You can't be an internal account
688 if( !(userFlags & USER_FLAG_ADMIN) )
690 eUserFlags = Bank_GetFlags(Client->EffectiveUID);
691 if( eUserFlags & USER_FLAG_INTERNAL ) {
692 Client->EffectiveUID = -1;
693 sendf(Client->Socket, "404 User not found\n");
696 // Disabled only avaliable to admins
697 if( eUserFlags & USER_FLAG_DISABLED ) {
698 Client->EffectiveUID = -1;
699 sendf(Client->Socket, "403 Account disabled\n");
705 if( userFlags & USER_FLAG_DISABLED ) {
707 sendf(Client->Socket, "403 Account disabled\n");
711 sendf(Client->Socket, "200 User set\n");
715 * \brief Send an item status to the client
716 * \param Client Who to?
717 * \param Item Item to send
719 void Server_int_SendItem(tClient *Client, tItem *Item)
721 char *status = "avail";
723 if( Item->Handler->CanDispense )
725 switch(Item->Handler->CanDispense(Client->UID, Item->ID))
727 case 0: status = "avail"; break;
728 case 1: status = "sold"; break;
730 case -1: status = "error"; break;
734 if( Item->Price == 0 )
736 // KNOWN HACK: Naming a slot 'dead' disables it
737 if( strcmp(Item->Name, "dead") == 0 )
738 status = "sold"; // Another status?
740 sendf(Client->Socket,
741 "202 Item %s:%i %s %i %s\n",
742 Item->Handler->Name, Item->ID, status, Item->Price, Item->Name
747 * \brief Enumerate the items that the server knows about
749 void Server_Cmd_ENUMITEMS(tClient *Client, char *Args)
753 if( Args != NULL && strlen(Args) ) {
754 sendf(Client->Socket, "407 ENUM_ITEMS takes no arguments\n");
760 for( i = 0; i < giNumItems; i ++ ) {
761 if( gaItems[i].bHidden ) continue;
765 sendf(Client->Socket, "201 Items %i\n", count);
767 for( i = 0; i < giNumItems; i ++ ) {
768 if( gaItems[i].bHidden ) continue;
769 Server_int_SendItem( Client, &gaItems[i] );
772 sendf(Client->Socket, "200 List end\n");
775 tItem *_GetItemFromString(char *String)
779 char *colon = strchr(String, ':');
791 for( i = 0; i < giNumHandlers; i ++ )
793 if( strcmp(gaHandlers[i]->Name, type) == 0) {
794 handler = gaHandlers[i];
803 for( i = 0; i < giNumItems; i ++ )
805 if( gaItems[i].Handler != handler ) continue;
806 if( gaItems[i].ID != num ) continue;
813 * \brief Fetch information on a specific item
815 void Server_Cmd_ITEMINFO(tClient *Client, char *Args)
820 if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
821 sendf(Client->Socket, "407 ITEMINFO takes 1 argument\n");
824 item = _GetItemFromString(Args);
827 sendf(Client->Socket, "406 Bad Item ID\n");
831 Server_int_SendItem( Client, item );
834 void Server_Cmd_DISPENSE(tClient *Client, char *Args)
841 if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
842 sendf(Client->Socket, "407 DISPENSE takes only 1 argument\n");
846 if( !Client->bIsAuthed ) {
847 sendf(Client->Socket, "401 Not Authenticated\n");
851 item = _GetItemFromString(itemname);
853 sendf(Client->Socket, "406 Bad Item ID\n");
857 if( Client->EffectiveUID != -1 ) {
858 uid = Client->EffectiveUID;
864 switch( ret = DispenseItem( Client->UID, uid, item ) )
866 case 0: sendf(Client->Socket, "200 Dispense OK\n"); return ;
867 case 1: sendf(Client->Socket, "501 Unable to dispense\n"); return ;
868 case 2: sendf(Client->Socket, "402 Poor You\n"); return ;
870 sendf(Client->Socket, "500 Dispense Error (%i)\n", ret);
875 void Server_Cmd_REFUND(tClient *Client, char *Args)
878 int uid, price_override = 0;
879 char *username, *itemname, *price_str;
881 if( Server_int_ParseArgs(0, Args, &username, &itemname, &price_str, NULL) ) {
882 if( !itemname || price_str ) {
883 sendf(Client->Socket, "407 REFUND takes 2 or 3 arguments\n");
888 if( !Client->bIsAuthed ) {
889 sendf(Client->Socket, "401 Not Authenticated\n");
893 // Check user permissions
894 if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
895 sendf(Client->Socket, "403 Not in coke\n");
899 uid = Bank_GetAcctByName(username, 0);
901 sendf(Client->Socket, "404 Unknown user\n");
905 item = _GetItemFromString(itemname);
907 sendf(Client->Socket, "406 Bad Item ID\n");
912 price_override = atoi(price_str);
914 switch( DispenseRefund( Client->UID, uid, item, price_override ) )
916 case 0: sendf(Client->Socket, "200 Item Refunded\n"); return ;
918 sendf(Client->Socket, "500 Dispense Error\n");
923 void Server_Cmd_GIVE(tClient *Client, char *Args)
925 char *recipient, *ammount, *reason;
930 if( Server_int_ParseArgs(1, Args, &recipient, &ammount, &reason, NULL) ) {
931 sendf(Client->Socket, "407 GIVE takes only 3 arguments\n");
936 if( !Client->bIsAuthed ) {
937 sendf(Client->Socket, "401 Not Authenticated\n");
942 uid = Bank_GetAcctByName(recipient, 0);
944 sendf(Client->Socket, "404 Invalid target user\n");
948 // You can't alter an internal account
949 // if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
950 // sendf(Client->Socket, "404 Invalid target user\n");
955 iAmmount = atoi(ammount);
956 if( iAmmount <= 0 ) {
957 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
961 if( Client->EffectiveUID != -1 ) {
962 thisUid = Client->EffectiveUID;
965 thisUid = Client->UID;
969 switch( DispenseGive(Client->UID, thisUid, uid, iAmmount, reason) )
972 sendf(Client->Socket, "200 Give OK\n");
975 sendf(Client->Socket, "402 Poor You\n");
978 sendf(Client->Socket, "500 Unknown error\n");
983 void Server_Cmd_DONATE(tClient *Client, char *Args)
985 char *ammount, *reason;
990 if( Server_int_ParseArgs(1, Args, &ammount, &reason, NULL) ) {
991 sendf(Client->Socket, "407 DONATE takes 2 arguments\n");
995 if( !Client->bIsAuthed ) {
996 sendf(Client->Socket, "401 Not Authenticated\n");
1001 iAmmount = atoi(ammount);
1002 if( iAmmount <= 0 ) {
1003 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
1007 // Handle effective users
1008 if( Client->EffectiveUID != -1 ) {
1009 thisUid = Client->EffectiveUID;
1012 thisUid = Client->UID;
1016 switch( DispenseDonate(Client->UID, thisUid, iAmmount, reason) )
1019 sendf(Client->Socket, "200 Give OK\n");
1022 sendf(Client->Socket, "402 Poor You\n");
1025 sendf(Client->Socket, "500 Unknown error\n");
1030 void Server_Cmd_ADD(tClient *Client, char *Args)
1032 char *user, *ammount, *reason;
1036 if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
1037 sendf(Client->Socket, "407 ADD takes 3 arguments\n");
1041 if( !Client->bIsAuthed ) {
1042 sendf(Client->Socket, "401 Not Authenticated\n");
1046 // Check user permissions
1047 if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
1048 sendf(Client->Socket, "403 Not in coke\n");
1053 if( strcmp( Client->Username, "root" ) == 0 ) {
1054 // Allow adding for new users
1055 if( strcmp(reason, "treasurer: new user") != 0 ) {
1056 sendf(Client->Socket, "403 Root may not add\n");
1063 if( strstr(reason, "refund") != NULL || strstr(reason, "misdispense") != NULL )
1065 sendf(Client->Socket, "499 Don't use `dispense acct` for refunds, use `dispense refund` (and `dispense -G` to get item IDs)\n");
1071 uid = Bank_GetAcctByName(user, 0);
1073 sendf(Client->Socket, "404 Invalid user\n");
1077 // You can't alter an internal account
1078 if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) )
1080 if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
1081 sendf(Client->Socket, "404 Invalid user\n");
1084 // TODO: Maybe disallow changes to disabled?
1088 iAmmount = atoi(ammount);
1089 if( iAmmount == 0 && ammount[0] != '0' ) {
1090 sendf(Client->Socket, "407 Invalid Argument\n");
1095 switch( DispenseAdd(Client->UID, uid, iAmmount, reason) )
1098 sendf(Client->Socket, "200 Add OK\n");
1101 sendf(Client->Socket, "402 Poor Guy\n");
1104 sendf(Client->Socket, "500 Unknown error\n");
1109 void Server_Cmd_SET(tClient *Client, char *Args)
1111 char *user, *ammount, *reason;
1115 if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
1116 sendf(Client->Socket, "407 SET takes 3 arguments\n");
1120 if( !Client->bIsAuthed ) {
1121 sendf(Client->Socket, "401 Not Authenticated\n");
1125 // Check user permissions
1126 if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1127 sendf(Client->Socket, "403 Not an admin\n");
1132 uid = Bank_GetAcctByName(user, 0);
1134 sendf(Client->Socket, "404 Invalid user\n");
1139 iAmmount = atoi(ammount);
1140 if( iAmmount == 0 && ammount[0] != '0' ) {
1141 sendf(Client->Socket, "407 Invalid Argument\n");
1146 switch( DispenseSet(Client->UID, uid, iAmmount, reason) )
1149 sendf(Client->Socket, "200 Add OK\n");
1152 sendf(Client->Socket, "402 Poor Guy\n");
1155 sendf(Client->Socket, "500 Unknown error\n");
1160 void Server_Cmd_ENUMUSERS(tClient *Client, char *Args)
1164 int maxBal = INT_MAX, minBal = INT_MIN;
1165 int flagMask = 0, flagVal = 0;
1166 int sort = BANK_ITFLAG_SORT_NAME;
1167 time_t lastSeenAfter=0, lastSeenBefore=0;
1169 int flags; // Iterator flags
1170 int balValue; // Balance value for iterator
1171 time_t timeValue; // Time value for iterator
1174 if( Args && strlen(Args) )
1176 char *space = Args, *type, *val;
1180 while(*type == ' ') type ++;
1182 space = strchr(space, ' ');
1183 if(space) *space = '\0';
1186 val = strchr(type, ':');
1193 if( strcmp(type, "min_balance") == 0 ) {
1196 // - Maximum Balance
1197 else if( strcmp(type, "max_balance") == 0 ) {
1201 else if( strcmp(type, "flags") == 0 ) {
1202 if( Server_int_ParseFlags(Client, val, &flagMask, &flagVal) )
1205 // - Last seen before timestamp
1206 else if( strcmp(type, "last_seen_before") == 0 ) {
1207 lastSeenAfter = atoll(val);
1209 // - Last seen after timestamp
1210 else if( strcmp(type, "last_seen_after") == 0 ) {
1211 lastSeenAfter = atoll(val);
1214 else if( strcmp(type, "sort") == 0 ) {
1215 char *dash = strchr(val, '-');
1220 if( strcmp(val, "name") == 0 ) {
1221 sort = BANK_ITFLAG_SORT_NAME;
1223 else if( strcmp(val, "balance") == 0 ) {
1224 sort = BANK_ITFLAG_SORT_BAL;
1226 else if( strcmp(val, "lastseen") == 0 ) {
1227 sort = BANK_ITFLAG_SORT_LASTSEEN;
1230 sendf(Client->Socket, "407 Unknown sort field ('%s')\n", val);
1233 // Handle sort direction
1235 if( strcmp(dash, "desc") == 0 ) {
1236 sort |= BANK_ITFLAG_REVSORT;
1239 sendf(Client->Socket, "407 Unknown sort direction '%s'\n", dash);
1246 sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s:%s'\n", type, val);
1253 sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s'\n", type);
1259 *space = ' '; // Repair (to be nice)
1261 while(*space == ' ') space ++;
1267 if( maxBal != INT_MAX ) {
1268 flags = sort|BANK_ITFLAG_MAXBALANCE;
1271 else if( minBal != INT_MIN ) {
1272 flags = sort|BANK_ITFLAG_MINBALANCE;
1279 if( lastSeenBefore ) {
1280 timeValue = lastSeenBefore;
1281 flags |= BANK_ITFLAG_SEENBEFORE;
1283 else if( lastSeenAfter ) {
1284 timeValue = lastSeenAfter;
1285 flags |= BANK_ITFLAG_SEENAFTER;
1290 it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
1292 // Get return number
1293 while( (i = Bank_IteratorNext(it)) != -1 )
1295 int bal = Bank_GetBalance(i);
1297 if( bal == INT_MIN ) continue;
1299 if( bal < minBal ) continue;
1300 if( bal > maxBal ) continue;
1305 Bank_DelIterator(it);
1308 sendf(Client->Socket, "201 Users %i\n", numRet);
1312 it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
1314 while( (i = Bank_IteratorNext(it)) != -1 )
1316 int bal = Bank_GetBalance(i);
1318 if( bal == INT_MIN ) continue;
1320 if( bal < minBal ) continue;
1321 if( bal > maxBal ) continue;
1323 _SendUserInfo(Client, i);
1326 Bank_DelIterator(it);
1328 sendf(Client->Socket, "200 List End\n");
1331 void Server_Cmd_USERINFO(tClient *Client, char *Args)
1337 if( Server_int_ParseArgs(0, Args, &user, NULL) ) {
1338 sendf(Client->Socket, "407 USER_INFO takes 1 argument\n");
1342 if( giDebugLevel ) Debug(Client, "User Info '%s'", user);
1345 uid = Bank_GetAcctByName(user, 0);
1347 if( giDebugLevel >= 2 ) Debug(Client, "uid = %i", uid);
1349 sendf(Client->Socket, "404 Invalid user\n");
1353 _SendUserInfo(Client, uid);
1356 void _SendUserInfo(tClient *Client, int UserID)
1358 char *type, *disabled="", *door="";
1359 int flags = Bank_GetFlags(UserID);
1361 if( flags & USER_FLAG_INTERNAL ) {
1364 else if( flags & USER_FLAG_COKE ) {
1365 if( flags & USER_FLAG_ADMIN )
1366 type = "coke,admin";
1370 else if( flags & USER_FLAG_ADMIN ) {
1377 if( flags & USER_FLAG_DISABLED )
1378 disabled = ",disabled";
1379 if( flags & USER_FLAG_DOORGROUP )
1382 // TODO: User flags/type
1384 Client->Socket, "202 User %s %i %s%s%s\n",
1385 Bank_GetAcctName(UserID), Bank_GetBalance(UserID),
1386 type, disabled, door
1390 void Server_Cmd_USERADD(tClient *Client, char *Args)
1395 if( Server_int_ParseArgs(0, Args, &username, NULL) ) {
1396 sendf(Client->Socket, "407 USER_ADD takes 1 argument\n");
1400 // Check authentication
1401 if( !Client->bIsAuthed ) {
1402 sendf(Client->Socket, "401 Not Authenticated\n");
1406 // Check permissions
1407 if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1408 sendf(Client->Socket, "403 Not a coke admin\n");
1412 // Try to create user
1413 if( Bank_CreateAcct(username) == -1 ) {
1414 sendf(Client->Socket, "404 User exists\n");
1419 char *thisName = Bank_GetAcctName(Client->UID);
1420 Log_Info("Account '%s' created by '%s'", username, thisName);
1424 sendf(Client->Socket, "200 User Added\n");
1427 void Server_Cmd_USERFLAGS(tClient *Client, char *Args)
1429 char *username, *flags, *reason=NULL;
1430 int mask=0, value=0;
1434 if( Server_int_ParseArgs(1, Args, &username, &flags, &reason, NULL) ) {
1436 sendf(Client->Socket, "407 USER_FLAGS takes at least 2 arguments\n");
1442 // Check authentication
1443 if( !Client->bIsAuthed ) {
1444 sendf(Client->Socket, "401 Not Authenticated\n");
1448 // Check permissions
1449 if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1450 sendf(Client->Socket, "403 Not a coke admin\n");
1455 uid = Bank_GetAcctByName(username, 0);
1457 sendf(Client->Socket, "404 User '%s' not found\n", username);
1462 if( Server_int_ParseFlags(Client, flags, &mask, &value) )
1466 Debug(Client, "Set %i(%s) flags to %x (masked %x)\n",
1467 uid, username, mask, value);
1470 Bank_SetFlags(uid, mask, value);
1473 Log_Info("Updated '%s' with flag set '%s' by '%s' - Reason: %s",
1474 username, flags, Client->Username, reason);
1477 sendf(Client->Socket, "200 User Updated\n");
1480 void Server_Cmd_UPDATEITEM(tClient *Client, char *Args)
1482 char *itemname, *price_str, *description;
1486 if( Server_int_ParseArgs(1, Args, &itemname, &price_str, &description, NULL) ) {
1487 sendf(Client->Socket, "407 UPDATE_ITEM takes 3 arguments\n");
1491 if( !Client->bIsAuthed ) {
1492 sendf(Client->Socket, "401 Not Authenticated\n");
1496 // Check user permissions
1497 if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
1498 sendf(Client->Socket, "403 Not in coke\n");
1502 item = _GetItemFromString(itemname);
1504 // TODO: Create item?
1505 sendf(Client->Socket, "406 Bad Item ID\n");
1509 price = atoi(price_str);
1510 if( price <= 0 && price_str[0] != '0' ) {
1511 sendf(Client->Socket, "407 Invalid price set\n");
1514 switch( DispenseUpdateItem( Client->UID, item, description, price ) )
1518 sendf(Client->Socket, "200 Item updated\n");
1525 // --- INTERNAL HELPERS ---
1526 void Debug(tClient *Client, const char *Format, ...)
1529 //printf("%010i [%i] ", (int)time(NULL), Client->ID);
1530 printf("[%i] ", Client->ID);
1531 va_start(args, Format);
1532 vprintf(Format, args);
1537 int sendf(int Socket, const char *Format, ...)
1542 va_start(args, Format);
1543 len = vsnprintf(NULL, 0, Format, args);
1548 va_start(args, Format);
1549 vsnprintf(buf, len+1, Format, args);
1552 #if DEBUG_TRACE_CLIENT
1553 printf("sendf: %s", buf);
1556 return send(Socket, buf, len, 0);
1560 // Takes a series of char *'s in
1562 * \brief Parse space-separated entries into
1564 int Server_int_ParseArgs(int bUseLongLast, char *ArgStr, ...)
1569 va_start(args, ArgStr);
1574 while( (dest = va_arg(args, char **)) )
1580 savedChar = *ArgStr;
1582 while( (dest = va_arg(args, char **)) )
1584 // Trim leading spaces
1585 while( *ArgStr == ' ' || *ArgStr == '\t' )
1588 // ... oops, not enough arguments
1589 if( *ArgStr == '\0' )
1591 // NULL unset arguments
1594 } while( (dest = va_arg(args, char **)) );
1599 if( *ArgStr == '"' )
1604 while( *ArgStr && *ArgStr != '"' )
1611 // Read until a space
1612 while( *ArgStr && *ArgStr != ' ' && *ArgStr != '\t' )
1615 savedChar = *ArgStr; // savedChar is used to un-mangle the last string
1621 // Oops, extra arguments, and greedy not set
1622 if( (savedChar == ' ' || savedChar == '\t') && !bUseLongLast ) {
1629 *ArgStr = savedChar;
1632 return 0; // Success!
1635 int Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value)
1642 {"disabled", USER_FLAG_DISABLED, USER_FLAG_DISABLED}
1643 ,{"door", USER_FLAG_DOORGROUP, USER_FLAG_DOORGROUP}
1644 ,{"coke", USER_FLAG_COKE, USER_FLAG_COKE}
1645 ,{"admin", USER_FLAG_ADMIN, USER_FLAG_ADMIN}
1646 ,{"internal", USER_FLAG_INTERNAL, USER_FLAG_INTERNAL}
1648 const int ciNumFlags = sizeof(cFLAGS)/sizeof(cFLAGS[0]);
1660 while( *Str == ' ' ) Str ++; // Eat whitespace
1661 space = strchr(Str, ','); // Find the end of the flag
1667 // Check for inversion/removal
1668 if( *Str == '!' || *Str == '-' ) {
1672 else if( *Str == '+' ) {
1676 // Check flag values
1677 for( i = 0; i < ciNumFlags; i ++ )
1679 if( strncmp(Str, cFLAGS[i].Name, len) == 0 ) {
1680 *Mask |= cFLAGS[i].Mask;
1681 *Value &= ~cFLAGS[i].Mask;
1683 *Value |= cFLAGS[i].Value;
1689 if( i == ciNumFlags ) {
1691 strncpy(val, Str, len+1);
1692 sendf(Client->Socket, "407 Unknown flag value '%s'\n", val);