Merge branch 'master' of serenade.mutabah.net:opendispense2
[tpg/opendispense2.git] / src / server / server.c
1 /*
2  * OpenDispense 2 
3  * UCC (University [of WA] Computer Club) Electronic Accounting System
4  *
5  * server.c - Client Server Code
6  *
7  * This file is licenced under the 3-clause BSD Licence. See the file
8  * COPYING for full details.
9  */
10 #include <stdio.h>
11 #include <stdlib.h>
12 #include "common.h"
13 #include <sys/socket.h>
14 #include <netinet/in.h>
15 #include <arpa/inet.h>
16 #include <unistd.h>
17 #include <string.h>
18 #include <limits.h>
19 #include <stdarg.h>
20
21 #define DEBUG_TRACE_CLIENT      0
22
23 // Statistics
24 #define MAX_CONNECTION_QUEUE    5
25 #define INPUT_BUFFER_SIZE       256
26 #define CLIENT_TIMEOUT  10      // Seconds
27
28 #define HASH_TYPE       SHA1
29 #define HASH_LENGTH     20
30
31 #define MSG_STR_TOO_LONG        "499 Command too long (limit "EXPSTR(INPUT_BUFFER_SIZE)")\n"
32
33 // === TYPES ===
34 typedef struct sClient
35 {
36          int    Socket; // Client socket ID
37          int    ID;     // Client ID
38          
39          int    bIsTrusted;     // Is the connection from a trusted host/port
40         
41         char    *Username;
42         char    Salt[9];
43         
44          int    UID;
45          int    EffectiveUID;
46          int    bIsAuthed;
47 }       tClient;
48
49 // === PROTOTYPES ===
50 void    Server_Start(void);
51 void    Server_Cleanup(void);
52 void    Server_HandleClient(int Socket, int bTrusted);
53 void    Server_ParseClientCommand(tClient *Client, char *CommandString);
54 // --- Commands ---
55 void    Server_Cmd_USER(tClient *Client, char *Args);
56 void    Server_Cmd_PASS(tClient *Client, char *Args);
57 void    Server_Cmd_AUTOAUTH(tClient *Client, char *Args);
58 void    Server_Cmd_SETEUSER(tClient *Client, char *Args);
59 void    Server_Cmd_ENUMITEMS(tClient *Client, char *Args);
60 void    Server_Cmd_ITEMINFO(tClient *Client, char *Args);
61 void    Server_Cmd_DISPENSE(tClient *Client, char *Args);
62 void    Server_Cmd_GIVE(tClient *Client, char *Args);
63 void    Server_Cmd_DONATE(tClient *Client, char *Args);
64 void    Server_Cmd_ADD(tClient *Client, char *Args);
65 void    Server_Cmd_SET(tClient *Client, char *Args);
66 void    Server_Cmd_ENUMUSERS(tClient *Client, char *Args);
67 void    Server_Cmd_USERINFO(tClient *Client, char *Args);
68 void    _SendUserInfo(tClient *Client, int UserID);
69 void    Server_Cmd_USERADD(tClient *Client, char *Args);
70 void    Server_Cmd_USERFLAGS(tClient *Client, char *Args);
71 // --- Helpers ---
72 void    Debug(tClient *Client, const char *Format, ...);
73  int    sendf(int Socket, const char *Format, ...);
74  int    Server_int_ParseArgs(int bUseLongArg, char *ArgStr, ...);
75  int    Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value);
76
77 // === CONSTANTS ===
78 // - Commands
79 const struct sClientCommand {
80         const char      *Name;
81         void    (*Function)(tClient *Client, char *Arguments);
82 }       gaServer_Commands[] = {
83         {"USER", Server_Cmd_USER},
84         {"PASS", Server_Cmd_PASS},
85         {"AUTOAUTH", Server_Cmd_AUTOAUTH},
86         {"SETEUSER", Server_Cmd_SETEUSER},
87         {"ENUM_ITEMS", Server_Cmd_ENUMITEMS},
88         {"ITEM_INFO", Server_Cmd_ITEMINFO},
89         {"DISPENSE", Server_Cmd_DISPENSE},
90         {"GIVE", Server_Cmd_GIVE},
91         {"DONATE", Server_Cmd_DONATE},
92         {"ADD", Server_Cmd_ADD},
93         {"SET", Server_Cmd_SET},
94         {"ENUM_USERS", Server_Cmd_ENUMUSERS},
95         {"USER_INFO", Server_Cmd_USERINFO},
96         {"USER_ADD", Server_Cmd_USERADD},
97         {"USER_FLAGS", Server_Cmd_USERFLAGS}
98 };
99 #define NUM_COMMANDS    ((int)(sizeof(gaServer_Commands)/sizeof(gaServer_Commands[0])))
100
101 // === GLOBALS ===
102  int    giServer_Port = 1020;
103  int    giServer_NextClientID = 1;
104  int    giServer_Socket;
105
106 // === CODE ===
107 /**
108  * \brief Open listenting socket and serve connections
109  */
110 void Server_Start(void)
111 {
112          int    client_socket;
113         struct sockaddr_in      server_addr, client_addr;
114
115         atexit(Server_Cleanup);
116
117         // Create Server
118         giServer_Socket = socket(PF_INET, SOCK_STREAM, IPPROTO_TCP);
119         if( giServer_Socket < 0 ) {
120                 fprintf(stderr, "ERROR: Unable to create server socket\n");
121                 return ;
122         }
123         
124         // Make listen address
125         memset(&server_addr, 0, sizeof(server_addr));
126         server_addr.sin_family = AF_INET;       // Internet Socket
127         server_addr.sin_addr.s_addr = htonl(INADDR_ANY);        // Listen on all interfaces
128         server_addr.sin_port = htons(giServer_Port);    // Port
129
130         // Bind
131         if( bind(giServer_Socket, (struct sockaddr *) &server_addr, sizeof(server_addr)) < 0 ) {
132                 fprintf(stderr, "ERROR: Unable to bind to 0.0.0.0:%i\n", giServer_Port);
133                 perror("Binding");
134                 return ;
135         }
136         
137         // Listen
138         if( listen(giServer_Socket, MAX_CONNECTION_QUEUE) < 0 ) {
139                 fprintf(stderr, "ERROR: Unable to listen to socket\n");
140                 perror("Listen");
141                 return ;
142         }
143         
144         printf("Listening on 0.0.0.0:%i\n", giServer_Port);
145         
146         for(;;)
147         {
148                 uint    len = sizeof(client_addr);
149                  int    bTrusted = 0;
150                 
151                 // Accept a connection
152                 client_socket = accept(giServer_Socket, (struct sockaddr *) &client_addr, &len);
153                 if(client_socket < 0) {
154                         fprintf(stderr, "ERROR: Unable to accept client connection\n");
155                         return ;
156                 }
157                 
158                 // Set a timeout on the user conneciton
159                 {
160                         struct timeval tv;
161                         tv.tv_sec = CLIENT_TIMEOUT;
162                         tv.tv_usec = 0;
163                         if( setsockopt(client_socket, SOL_SOCKET, SO_RCVTIMEO, &tv, sizeof(tv)) )
164                         {
165                                 perror("setsockopt");
166                                 return ;
167                         }
168                 }
169                 
170                 // Debug: Print the connection string
171                 if(giDebugLevel >= 2) {
172                         char    ipstr[INET_ADDRSTRLEN];
173                         inet_ntop(AF_INET, &client_addr.sin_addr, ipstr, INET_ADDRSTRLEN);
174                         printf("Client connection from %s:%i\n",
175                                 ipstr, ntohs(client_addr.sin_port));
176                 }
177                 
178                 // Doesn't matter what, localhost is trusted
179                 if( ntohl( client_addr.sin_addr.s_addr ) == 0x7F000001 )
180                         bTrusted = 1;
181                 
182                 // Trusted Connections
183                 if( ntohs(client_addr.sin_port) < 1024 )
184                 {
185                         // TODO: Make this runtime configurable
186                         switch( ntohl( client_addr.sin_addr.s_addr ) )
187                         {
188                         case 0x7F000001:        // 127.0.0.1    localhost
189                 //      case 0x825E0D00:        // 130.95.13.0
190                         case 0x825E0D07:        // 130.95.13.7  motsugo
191                         case 0x825E0D11:        // 130.95.13.17 mermaid
192                         case 0x825E0D12:        // 130.95.13.18 mussel
193                         case 0x825E0D17:        // 130.95.13.23 martello
194                                 bTrusted = 1;
195                                 break;
196                         default:
197                                 break;
198                         }
199                 }
200                 
201                 // TODO: Multithread this?
202                 Server_HandleClient(client_socket, bTrusted);
203                 
204                 close(client_socket);
205         }
206 }
207
208 void Server_Cleanup(void)
209 {
210         printf("Close(%i)\n", giServer_Socket);
211         close(giServer_Socket);
212 }
213
214 /**
215  * \brief Reads from a client socket and parses the command strings
216  * \param Socket        Client socket number/handle
217  * \param bTrusted      Is the client trusted?
218  */
219 void Server_HandleClient(int Socket, int bTrusted)
220 {
221         char    inbuf[INPUT_BUFFER_SIZE];
222         char    *buf = inbuf;
223          int    remspace = INPUT_BUFFER_SIZE-1;
224          int    bytes = -1;
225         tClient clientInfo;
226         
227         memset(&clientInfo, 0, sizeof(clientInfo));
228         
229         // Initialise Client info
230         clientInfo.Socket = Socket;
231         clientInfo.ID = giServer_NextClientID ++;
232         clientInfo.bIsTrusted = bTrusted;
233         clientInfo.EffectiveUID = -1;
234         
235         // Read from client
236         /*
237          * Notes:
238          * - The `buf` and `remspace` variables allow a line to span several
239          *   calls to recv(), if a line is not completed in one recv() call
240          *   it is saved to the beginning of `inbuf` and `buf` is updated to
241          *   the end of it.
242          */
243         // TODO: Use select() instead (to give a timeout)
244         while( (bytes = recv(Socket, buf, remspace, 0)) > 0 )
245         {
246                 char    *eol, *start;
247                 buf[bytes] = '\0';      // Allow us to use stdlib string functions on it
248                 
249                 // Split by lines
250                 start = inbuf;
251                 while( (eol = strchr(start, '\n')) )
252                 {
253                         *eol = '\0';
254                         
255                         Server_ParseClientCommand(&clientInfo, start);
256                         
257                         start = eol + 1;
258                 }
259                 
260                 // Check if there was an incomplete line
261                 if( *start != '\0' ) {
262                          int    tailBytes = bytes - (start-buf);
263                         // Roll back in buffer
264                         memcpy(inbuf, start, tailBytes);
265                         remspace -= tailBytes;
266                         if(remspace == 0) {
267                                 send(Socket, MSG_STR_TOO_LONG, sizeof(MSG_STR_TOO_LONG), 0);
268                                 buf = inbuf;
269                                 remspace = INPUT_BUFFER_SIZE - 1;
270                         }
271                 }
272                 else {
273                         buf = inbuf;
274                         remspace = INPUT_BUFFER_SIZE - 1;
275                 }
276         }
277         
278         // Check for errors
279         if( bytes < 0 ) {
280                 fprintf(stderr, "ERROR: Unable to recieve from client on socket %i\n", Socket);
281                 return ;
282         }
283         
284         if(giDebugLevel >= 2) {
285                 printf("Client %i: Disconnected\n", clientInfo.ID);
286         }
287 }
288
289 /**
290  * \brief Parses a client command and calls the required helper function
291  * \param Client        Pointer to client state structure
292  * \param CommandString Command from client (single line of the command)
293  * \return Heap String to return to the client
294  */
295 void Server_ParseClientCommand(tClient *Client, char *CommandString)
296 {
297         char    *command, *args;
298          int    i;
299         #if 0
300         char    **argList;
301          int    numArgs = 0;
302         #endif
303         
304         if( Server_int_ParseArgs(1, CommandString, &command, &args, NULL) )
305         {
306                 // Is this an error? (just ignore for now)
307                 args = "";
308         }
309         
310         
311         // Find command
312         for( i = 0; i < NUM_COMMANDS; i++ )
313         {
314                 if(strcmp(CommandString, gaServer_Commands[i].Name) == 0) {
315                         gaServer_Commands[i].Function(Client, args);
316                         return ;
317                 }
318         }
319         
320         sendf(Client->Socket, "400 Unknown Command\n");
321 }
322
323 // ---
324 // Commands
325 // ---
326 /**
327  * \brief Set client username
328  * 
329  * Usage: USER <username>
330  */
331 void Server_Cmd_USER(tClient *Client, char *Args)
332 {
333         char    *username;
334         
335         Server_int_ParseArgs(0, Args, &username, NULL);
336         
337         // Debug!
338         if( giDebugLevel )
339                 Debug(Client, "Authenticating as '%s'", username);
340         
341         // Save username
342         if(Client->Username)
343                 free(Client->Username);
344         Client->Username = strdup(username);
345         
346         #if USE_SALT
347         // Create a salt (that changes if the username is changed)
348         // Yes, I know, I'm a little paranoid, but who isn't?
349         Client->Salt[0] = 0x21 + (rand()&0x3F);
350         Client->Salt[1] = 0x21 + (rand()&0x3F);
351         Client->Salt[2] = 0x21 + (rand()&0x3F);
352         Client->Salt[3] = 0x21 + (rand()&0x3F);
353         Client->Salt[4] = 0x21 + (rand()&0x3F);
354         Client->Salt[5] = 0x21 + (rand()&0x3F);
355         Client->Salt[6] = 0x21 + (rand()&0x3F);
356         Client->Salt[7] = 0x21 + (rand()&0x3F);
357         
358         // TODO: Also send hash type to use, (SHA1 or crypt according to [DAA])
359         sendf(Client->Socket, "100 SALT %s\n", Client->Salt);
360         #else
361         sendf(Client->Socket, "100 User Set\n");
362         #endif
363 }
364
365 /**
366  * \brief Authenticate as a user
367  * 
368  * Usage: PASS <hash>
369  */
370 void Server_Cmd_PASS(tClient *Client, char *Args)
371 {
372         char    *passhash;
373         
374         Server_int_ParseArgs(0, Args, &passhash, NULL);
375         
376         // Pass on to cokebank
377         Client->UID = Bank_GetUserAuth(Client->Salt, Client->Username, passhash);
378
379         if( Client->UID != -1 ) {
380                 Client->bIsAuthed = 1;
381                 sendf(Client->Socket, "200 Auth OK\n");
382                 return ;
383         }
384         
385         sendf(Client->Socket, "401 Auth Failure\n");
386 }
387
388 /**
389  * \brief Authenticate as a user without a password
390  * 
391  * Usage: AUTOAUTH <user>
392  */
393 void Server_Cmd_AUTOAUTH(tClient *Client, char *Args)
394 {
395         char    *username;
396         
397         Server_int_ParseArgs(0, Args, &username, NULL);
398         
399         // Check if trusted
400         if( !Client->bIsTrusted ) {
401                 if(giDebugLevel)
402                         Debug(Client, "Untrusted client attempting to AUTOAUTH");
403                 sendf(Client->Socket, "401 Untrusted\n");
404                 return ;
405         }
406         
407         // Get UID
408         Client->UID = Bank_GetAcctByName( username );   
409         if( Client->UID < 0 ) {
410                 if(giDebugLevel)
411                         Debug(Client, "Unknown user '%s'", username);
412                 sendf(Client->Socket, "401 Auth Failure\n");
413                 return ;
414         }
415         
416         // You can't be an internal account
417         if( Bank_GetFlags(Client->UID) & USER_FLAG_INTERNAL ) {
418                 Client->UID = -1;
419                 sendf(Client->Socket, "401 Auth Failure\n");
420                 return ;
421         }
422
423         Client->bIsAuthed = 1;
424         
425         if(giDebugLevel)
426                 Debug(Client, "Auto authenticated as '%s' (%i)", username, Client->UID);
427         
428         sendf(Client->Socket, "200 Auth OK\n");
429 }
430
431 /**
432  * \brief Set effective user
433  */
434 void Server_Cmd_SETEUSER(tClient *Client, char *Args)
435 {
436         char    *username;
437         
438         Server_int_ParseArgs(0, Args, &username, NULL);
439         
440         if( !strlen(Args) ) {
441                 sendf(Client->Socket, "407 SETEUSER expects an argument\n");
442                 return ;
443         }
444
445         // Check user permissions
446         if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
447                 sendf(Client->Socket, "403 Not in coke\n");
448                 return ;
449         }
450         
451         // Set id
452         Client->EffectiveUID = Bank_GetAcctByName(username);
453         if( Client->EffectiveUID == -1 ) {
454                 sendf(Client->Socket, "404 User not found\n");
455                 return ;
456         }
457         
458         // You can't be an internal account
459         if( Bank_GetFlags(Client->EffectiveUID) & USER_FLAG_INTERNAL ) {
460                 Client->EffectiveUID = -1;
461                 sendf(Client->Socket, "404 User not found\n");
462                 return ;
463         }
464         
465         sendf(Client->Socket, "200 User set\n");
466 }
467
468 /**
469  * \brief Enumerate the items that the server knows about
470  */
471 void Server_Cmd_ENUMITEMS(tClient *Client, char *Args)
472 {
473          int    i, count;
474
475         if( Args != NULL && strlen(Args) ) {
476                 sendf(Client->Socket, "407 ENUM_ITEMS takes no arguments\n");
477                 return ;
478         }
479         
480         // Count shown items
481         count = 0;
482         for( i = 0; i < giNumItems; i ++ ) {
483                 if( gaItems[i].bHidden )        continue;
484                 count ++;
485         }
486
487         sendf(Client->Socket, "201 Items %i\n", count);
488
489         for( i = 0; i < giNumItems; i ++ ) {
490                 if( gaItems[i].bHidden )        continue;
491                 sendf(Client->Socket,
492                         "202 Item %s:%i %i %s\n",
493                          gaItems[i].Handler->Name, gaItems[i].ID, gaItems[i].Price, gaItems[i].Name
494                          );
495         }
496
497         sendf(Client->Socket, "200 List end\n");
498 }
499
500 tItem *_GetItemFromString(char *String)
501 {
502         tHandler        *handler;
503         char    *type = String;
504         char    *colon = strchr(String, ':');
505          int    num, i;
506         
507         if( !colon ) {
508                 return NULL;
509         }
510
511         num = atoi(colon+1);
512         *colon = '\0';
513
514         // Find handler
515         handler = NULL;
516         for( i = 0; i < giNumHandlers; i ++ )
517         {
518                 if( strcmp(gaHandlers[i]->Name, type) == 0) {
519                         handler = gaHandlers[i];
520                         break;
521                 }
522         }
523         if( !handler ) {
524                 return NULL;
525         }
526
527         // Find item
528         for( i = 0; i < giNumItems; i ++ )
529         {
530                 if( gaItems[i].Handler != handler )     continue;
531                 if( gaItems[i].ID != num )      continue;
532                 return &gaItems[i];
533         }
534         return NULL;
535 }
536
537 /**
538  * \brief Fetch information on a specific item
539  */
540 void Server_Cmd_ITEMINFO(tClient *Client, char *Args)
541 {
542         tItem   *item;
543         char    *itemname;
544         
545         if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
546                 sendf(Client->Socket, "407 ITEMINFO takes 1 argument\n");
547                 return ;
548         }
549         item = _GetItemFromString(Args);
550         
551         if( !item ) {
552                 sendf(Client->Socket, "406 Bad Item ID\n");
553                 return ;
554         }
555         
556         sendf(Client->Socket,
557                 "202 Item %s:%i %i %s\n",
558                  item->Handler->Name, item->ID, item->Price, item->Name
559                  );
560 }
561
562 void Server_Cmd_DISPENSE(tClient *Client, char *Args)
563 {
564         tItem   *item;
565          int    ret;
566          int    uid;
567         char    *itemname;
568         
569         if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
570                 sendf(Client->Socket, "407 DISPENSE takes only 1 argument\n");
571                 return ;
572         }
573          
574         if( !Client->bIsAuthed ) {
575                 sendf(Client->Socket, "401 Not Authenticated\n");
576                 return ;
577         }
578
579         item = _GetItemFromString(itemname);
580         if( !item ) {
581                 sendf(Client->Socket, "406 Bad Item ID\n");
582                 return ;
583         }
584         
585         if( Client->EffectiveUID != -1 ) {
586                 uid = Client->EffectiveUID;
587         }
588         else {
589                 uid = Client->UID;
590         }
591
592         switch( ret = DispenseItem( Client->UID, uid, item ) )
593         {
594         case 0: sendf(Client->Socket, "200 Dispense OK\n");     return ;
595         case 1: sendf(Client->Socket, "501 Unable to dispense\n");      return ;
596         case 2: sendf(Client->Socket, "402 Poor You\n");        return ;
597         default:
598                 sendf(Client->Socket, "500 Dispense Error\n");
599                 return ;
600         }
601 }
602
603 void Server_Cmd_GIVE(tClient *Client, char *Args)
604 {
605         char    *recipient, *ammount, *reason;
606          int    uid, iAmmount;
607          int    thisUid;
608         
609         // Parse arguments
610         if( Server_int_ParseArgs(1, Args, &recipient, &ammount, &reason, NULL) ) {
611                 sendf(Client->Socket, "407 GIVE takes only 3 arguments\n");
612                 return ;
613         }
614         // Check for authed
615         if( !Client->bIsAuthed ) {
616                 sendf(Client->Socket, "401 Not Authenticated\n");
617                 return ;
618         }
619
620         // Get recipient
621         uid = Bank_GetAcctByName(recipient);
622         if( uid == -1 ) {
623                 sendf(Client->Socket, "404 Invalid target user\n");
624                 return ;
625         }
626         
627         // You can't alter an internal account
628         if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
629                 sendf(Client->Socket, "404 Invalid target user\n");
630                 return ;
631         }
632
633         // Parse ammount
634         iAmmount = atoi(ammount);
635         if( iAmmount <= 0 ) {
636                 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
637                 return ;
638         }
639         
640         if( Client->EffectiveUID != -1 ) {
641                 thisUid = Client->EffectiveUID;
642         }
643         else {
644                 thisUid = Client->UID;
645         }
646
647         // Do give
648         switch( DispenseGive(Client->UID, thisUid, uid, iAmmount, reason) )
649         {
650         case 0:
651                 sendf(Client->Socket, "200 Give OK\n");
652                 return ;
653         case 2:
654                 sendf(Client->Socket, "402 Poor You\n");
655                 return ;
656         default:
657                 sendf(Client->Socket, "500 Unknown error\n");
658                 return ;
659         }
660 }
661
662 void Server_Cmd_DONATE(tClient *Client, char *Args)
663 {
664         char    *ammount, *reason;
665          int    iAmmount;
666          int    thisUid;
667         
668         // Parse arguments
669         if( Server_int_ParseArgs(1, Args, &ammount, &reason, NULL) ) {
670                 sendf(Client->Socket, "407 DONATE takes 2 arguments\n");
671                 return ;
672         }
673         
674         if( !Client->bIsAuthed ) {
675                 sendf(Client->Socket, "401 Not Authenticated\n");
676                 return ;
677         }
678
679         // Parse ammount
680         iAmmount = atoi(ammount);
681         if( iAmmount <= 0 ) {
682                 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
683                 return ;
684         }
685         
686         // Handle effective users
687         if( Client->EffectiveUID != -1 ) {
688                 thisUid = Client->EffectiveUID;
689         }
690         else {
691                 thisUid = Client->UID;
692         }
693
694         // Do give
695         switch( DispenseDonate(Client->UID, thisUid, iAmmount, reason) )
696         {
697         case 0:
698                 sendf(Client->Socket, "200 Give OK\n");
699                 return ;
700         case 2:
701                 sendf(Client->Socket, "402 Poor You\n");
702                 return ;
703         default:
704                 sendf(Client->Socket, "500 Unknown error\n");
705                 return ;
706         }
707 }
708
709 void Server_Cmd_ADD(tClient *Client, char *Args)
710 {
711         char    *user, *ammount, *reason;
712          int    uid, iAmmount;
713         
714         // Parse arguments
715         if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
716                 sendf(Client->Socket, "407 ADD takes 3 arguments\n");
717                 return ;
718         }
719         
720         if( !Client->bIsAuthed ) {
721                 sendf(Client->Socket, "401 Not Authenticated\n");
722                 return ;
723         }
724
725         // Check user permissions
726         if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN))  ) {
727                 sendf(Client->Socket, "403 Not in coke\n");
728                 return ;
729         }
730
731         // Get recipient
732         uid = Bank_GetAcctByName(user);
733         if( uid == -1 ) {
734                 sendf(Client->Socket, "404 Invalid user\n");
735                 return ;
736         }
737         
738         // You can't alter an internal account
739         if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
740                 sendf(Client->Socket, "404 Invalid user\n");
741                 return ;
742         }
743
744         // Parse ammount
745         iAmmount = atoi(ammount);
746         if( iAmmount == 0 && ammount[0] != '0' ) {
747                 sendf(Client->Socket, "407 Invalid Argument\n");
748                 return ;
749         }
750
751         // Do give
752         switch( DispenseAdd(Client->UID, uid, iAmmount, reason) )
753         {
754         case 0:
755                 sendf(Client->Socket, "200 Add OK\n");
756                 return ;
757         case 2:
758                 sendf(Client->Socket, "402 Poor Guy\n");
759                 return ;
760         default:
761                 sendf(Client->Socket, "500 Unknown error\n");
762                 return ;
763         }
764 }
765
766 void Server_Cmd_SET(tClient *Client, char *Args)
767 {
768         char    *user, *ammount, *reason;
769          int    uid, iAmmount;
770         
771         // Parse arguments
772         if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
773                 sendf(Client->Socket, "407 SET takes 3 arguments\n");
774                 return ;
775         }
776         
777         if( !Client->bIsAuthed ) {
778                 sendf(Client->Socket, "401 Not Authenticated\n");
779                 return ;
780         }
781
782         // Check user permissions
783         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN)  ) {
784                 sendf(Client->Socket, "403 Not an admin\n");
785                 return ;
786         }
787
788         // Get recipient
789         uid = Bank_GetAcctByName(user);
790         if( uid == -1 ) {
791                 sendf(Client->Socket, "404 Invalid user\n");
792                 return ;
793         }
794         
795         // You can't alter an internal account
796         if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
797                 sendf(Client->Socket, "404 Invalid user\n");
798                 return ;
799         }
800
801         // Parse ammount
802         iAmmount = atoi(ammount);
803         if( iAmmount == 0 && ammount[0] != '0' ) {
804                 sendf(Client->Socket, "407 Invalid Argument\n");
805                 return ;
806         }
807
808         // Do give
809         switch( DispenseSet(Client->UID, uid, iAmmount, reason) )
810         {
811         case 0:
812                 sendf(Client->Socket, "200 Add OK\n");
813                 return ;
814         case 2:
815                 sendf(Client->Socket, "402 Poor Guy\n");
816                 return ;
817         default:
818                 sendf(Client->Socket, "500 Unknown error\n");
819                 return ;
820         }
821 }
822
823 void Server_Cmd_ENUMUSERS(tClient *Client, char *Args)
824 {
825          int    i, numRet = 0;
826         tAcctIterator   *it;
827          int    maxBal = INT_MAX, minBal = INT_MIN;
828          int    flagMask = 0, flagVal = 0;
829          int    sort = BANK_ITFLAG_SORT_NAME;
830         time_t  lastSeenAfter=0, lastSeenBefore=0;
831         
832          int    flags;  // Iterator flags
833          int    balValue;       // Balance value for iterator
834         time_t  timeValue;      // Time value for iterator
835         
836         // Parse arguments
837         if( Args && strlen(Args) )
838         {
839                 char    *space = Args, *type, *val;
840                 do
841                 {
842                         type = space;
843                         while(*type == ' ')     type ++;
844                         // Get next space
845                         space = strchr(space, ' ');
846                         if(space)       *space = '\0';
847                         
848                         // Get type
849                         val = strchr(type, ':');
850                         if( val ) {
851                                 *val = '\0';
852                                 val ++;
853                                 
854                                 // Types
855                                 // - Minium Balance
856                                 if( strcmp(type, "min_balance") == 0 ) {
857                                         minBal = atoi(val);
858                                 }
859                                 // - Maximum Balance
860                                 else if( strcmp(type, "max_balance") == 0 ) {
861                                         maxBal = atoi(val);
862                                 }
863                                 // - Flags
864                                 else if( strcmp(type, "flags") == 0 ) {
865                                         if( Server_int_ParseFlags(Client, val, &flagMask, &flagVal) )
866                                                 return ;
867                                 }
868                                 // - Last seen before timestamp
869                                 else if( strcmp(type, "last_seen_before") == 0 ) {
870                                         lastSeenAfter = atoll(val);
871                                 }
872                                 // - Last seen after timestamp
873                                 else if( strcmp(type, "last_seen_after") == 0 ) {
874                                         lastSeenAfter = atoll(val);
875                                 }
876                                 // - Sorting 
877                                 else if( strcmp(type, "sort") == 0 ) {
878                                         char    *dash = strchr(val, '-');
879                                         if( dash ) {
880                                                 *dash = '\0';
881                                                 dash ++;
882                                         }
883                                         if( strcmp(val, "name") == 0 ) {
884                                                 sort = BANK_ITFLAG_SORT_NAME;
885                                         }
886                                         else if( strcmp(val, "balance") == 0 ) {
887                                                 sort = BANK_ITFLAG_SORT_BAL;
888                                         }
889                                         else if( strcmp(val, "lastseen") == 0 ) {
890                                                 sort = BANK_ITFLAG_SORT_LASTSEEN;
891                                         }
892                                         else {
893                                                 sendf(Client->Socket, "407 Unknown sort field ('%s')\n", val);
894                                                 return ;
895                                         }
896                                         // Handle sort direction
897                                         if( dash ) {
898                                                 if( strcmp(dash, "desc") == 0 ) {
899                                                         sort |= BANK_ITFLAG_REVSORT;
900                                                 }
901                                                 else {
902                                                         sendf(Client->Socket, "407 Unknown sort direction '%s'\n", dash);
903                                                         return ;
904                                                 }
905                                                 dash[-1] = '-';
906                                         }
907                                 }
908                                 else {
909                                         sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s:%s'\n", type, val);
910                                         return ;
911                                 }
912                                 
913                                 val[-1] = ':';
914                         }
915                         else {
916                                 sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s'\n", type);
917                                 return ;
918                         }
919                         
920                         // Eat whitespace
921                         if( space ) {
922                                 *space = ' ';   // Repair (to be nice)
923                                 space ++;
924                                 while(*space == ' ')    space ++;
925                         }
926                 }       while(space);
927         }
928         
929         // Create iterator
930         if( maxBal != INT_MAX ) {
931                 flags = sort|BANK_ITFLAG_MAXBALANCE;
932                 balValue = maxBal;
933         }
934         else if( minBal != INT_MIN ) {
935                 flags = sort|BANK_ITFLAG_MINBALANCE;
936                 balValue = minBal;
937         }
938         else {
939                 flags = sort;
940                 balValue = 0;
941         }
942         if( lastSeenBefore ) {
943                 timeValue = lastSeenBefore;
944                 flags |= BANK_ITFLAG_SEENBEFORE;
945         }
946         else if( lastSeenAfter ) {
947                 timeValue = lastSeenAfter;
948                 flags |= BANK_ITFLAG_SEENAFTER;
949         }
950         else {
951                 timeValue = 0;
952         }
953         it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
954         
955         // Get return number
956         while( (i = Bank_IteratorNext(it)) != -1 )
957         {
958                 int bal = Bank_GetBalance(i);
959                 
960                 if( bal == INT_MIN )    continue;
961                 
962                 if( bal < minBal )      continue;
963                 if( bal > maxBal )      continue;
964                 
965                 numRet ++;
966         }
967         
968         Bank_DelIterator(it);
969         
970         // Send count
971         sendf(Client->Socket, "201 Users %i\n", numRet);
972         
973         
974         // Create iterator
975         it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
976         
977         while( (i = Bank_IteratorNext(it)) != -1 )
978         {
979                 int bal = Bank_GetBalance(i);
980                 
981                 if( bal == INT_MIN )    continue;
982                 
983                 if( bal < minBal )      continue;
984                 if( bal > maxBal )      continue;
985                 
986                 _SendUserInfo(Client, i);
987         }
988         
989         Bank_DelIterator(it);
990         
991         sendf(Client->Socket, "200 List End\n");
992 }
993
994 void Server_Cmd_USERINFO(tClient *Client, char *Args)
995 {
996          int    uid;
997         char    *user;
998         
999         // Parse arguments
1000         if( Server_int_ParseArgs(0, Args, &user, NULL) ) {
1001                 sendf(Client->Socket, "407 USER_INFO takes 1 argument\n");
1002                 return ;
1003         }
1004         
1005         if( giDebugLevel )      Debug(Client, "User Info '%s'", user);
1006         
1007         // Get recipient
1008         uid = Bank_GetAcctByName(user);
1009         
1010         if( giDebugLevel >= 2 ) Debug(Client, "uid = %i", uid);
1011         if( uid == -1 ) {
1012                 sendf(Client->Socket, "404 Invalid user\n");
1013                 return ;
1014         }
1015         
1016         _SendUserInfo(Client, uid);
1017 }
1018
1019 void _SendUserInfo(tClient *Client, int UserID)
1020 {
1021         char    *type, *disabled="", *door="";
1022          int    flags = Bank_GetFlags(UserID);
1023         
1024         if( flags & USER_FLAG_INTERNAL ) {
1025                 type = "internal";
1026         }
1027         else if( flags & USER_FLAG_COKE ) {
1028                 if( flags & USER_FLAG_ADMIN )
1029                         type = "coke,admin";
1030                 else
1031                         type = "coke";
1032         }
1033         else if( flags & USER_FLAG_ADMIN ) {
1034                 type = "admin";
1035         }
1036         else {
1037                 type = "user";
1038         }
1039         
1040         if( flags & USER_FLAG_DISABLED )
1041                 disabled = ",disabled";
1042         if( flags & USER_FLAG_DOORGROUP )
1043                 door = ",door";
1044         
1045         // TODO: User flags/type
1046         sendf(
1047                 Client->Socket, "202 User %s %i %s%s%s\n",
1048                 Bank_GetAcctName(UserID), Bank_GetBalance(UserID),
1049                 type, disabled, door
1050                 );
1051 }
1052
1053 void Server_Cmd_USERADD(tClient *Client, char *Args)
1054 {
1055         char    *username;
1056         
1057         // Parse arguments
1058         if( Server_int_ParseArgs(0, Args, &username, NULL) ) {
1059                 sendf(Client->Socket, "407 USER_ADD takes 1 argument\n");
1060                 return ;
1061         }
1062         
1063         // Check permissions
1064         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1065                 sendf(Client->Socket, "403 Not a coke admin\n");
1066                 return ;
1067         }
1068         
1069         // Try to create user
1070         if( Bank_CreateAcct(username) == -1 ) {
1071                 sendf(Client->Socket, "404 User exists\n");
1072                 return ;
1073         }
1074         
1075         {
1076                 char    *thisName = Bank_GetAcctName(Client->UID);
1077                 Log_Info("Account '%s' created by '%s'", username, thisName);
1078                 free(thisName);
1079         }
1080         
1081         sendf(Client->Socket, "200 User Added\n");
1082 }
1083
1084 void Server_Cmd_USERFLAGS(tClient *Client, char *Args)
1085 {
1086         char    *username, *flags;
1087          int    mask=0, value=0;
1088          int    uid;
1089         
1090         // Parse arguments
1091         if( Server_int_ParseArgs(0, Args, &username, &flags, NULL) ) {
1092                 sendf(Client->Socket, "407 USER_FLAGS takes 2 arguments\n");
1093                 return ;
1094         }
1095         
1096         // Check permissions
1097         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1098                 sendf(Client->Socket, "403 Not a coke admin\n");
1099                 return ;
1100         }
1101         
1102         // Get UID
1103         uid = Bank_GetAcctByName(username);
1104         if( uid == -1 ) {
1105                 sendf(Client->Socket, "404 User '%s' not found\n", username);
1106                 return ;
1107         }
1108         
1109         // Parse flags
1110         if( Server_int_ParseFlags(Client, flags, &mask, &value) )
1111                 return ;
1112         
1113         if( giDebugLevel )
1114                 Debug(Client, "Set %i(%s) flags to %x (masked %x)\n",
1115                         uid, username, mask, value);
1116         
1117         // Apply flags
1118         Bank_SetFlags(uid, mask, value);
1119         
1120         // Return OK
1121         sendf(Client->Socket, "200 User Updated\n");
1122 }
1123
1124 // --- INTERNAL HELPERS ---
1125 void Debug(tClient *Client, const char *Format, ...)
1126 {
1127         va_list args;
1128         //printf("%010i [%i] ", (int)time(NULL), Client->ID);
1129         printf("[%i] ", Client->ID);
1130         va_start(args, Format);
1131         vprintf(Format, args);
1132         va_end(args);
1133         printf("\n");
1134 }
1135
1136 int sendf(int Socket, const char *Format, ...)
1137 {
1138         va_list args;
1139          int    len;
1140         
1141         va_start(args, Format);
1142         len = vsnprintf(NULL, 0, Format, args);
1143         va_end(args);
1144         
1145         {
1146                 char    buf[len+1];
1147                 va_start(args, Format);
1148                 vsnprintf(buf, len+1, Format, args);
1149                 va_end(args);
1150                 
1151                 #if DEBUG_TRACE_CLIENT
1152                 printf("sendf: %s", buf);
1153                 #endif
1154                 
1155                 return send(Socket, buf, len, 0);
1156         }
1157 }
1158
1159 // Takes a series of char *'s in
1160 /**
1161  * \brief Parse space-separated entries into 
1162  */
1163 int Server_int_ParseArgs(int bUseLongLast, char *ArgStr, ...)
1164 {
1165         va_list args;
1166         char    savedChar = *ArgStr;
1167         char    **dest;
1168         va_start(args, ArgStr);
1169         
1170         while( (dest = va_arg(args, char **)) )
1171         {
1172                 // Trim leading spaces
1173                 while( *ArgStr == ' ' || *ArgStr == '\t' )
1174                         ArgStr ++;
1175                 
1176                 // ... oops, not enough arguments
1177                 if( *ArgStr == '\0' )
1178                 {
1179                         // NULL unset arguments
1180                         do {
1181                                 *dest = NULL;
1182                         }       while( (dest = va_arg(args, char **)) );
1183                         return -1;
1184                 }
1185                 
1186                 // Set destination
1187                 *dest = ArgStr;
1188                 
1189                 if( *ArgStr == '"' )
1190                 {
1191                         // Read until quote
1192                         while( *ArgStr && *ArgStr != '"' )
1193                                 ArgStr ++;
1194                 }
1195                 else
1196                 {
1197                         // Read until a space
1198                         while( *ArgStr && *ArgStr != ' ' && *ArgStr != '\t' )
1199                                 ArgStr ++;
1200                 }
1201                 savedChar = *ArgStr;    // savedChar is used to un-mangle the last string
1202                 *ArgStr = '\0';
1203         }
1204         
1205         // Oops, extra arguments, and greedy not set
1206         if( savedChar == ' ' && bUseLongLast )
1207                 return -1;
1208         
1209         // Un-mangle last
1210         if(bUseLongLast)
1211                 *ArgStr = savedChar;
1212         
1213         va_end(args);
1214         
1215         return 0;       // Success!
1216 }
1217
1218 int Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value)
1219 {
1220         struct {
1221                 const char      *Name;
1222                  int    Mask;
1223                  int    Value;
1224         }       cFLAGS[] = {
1225                  {"disabled", USER_FLAG_DISABLED, USER_FLAG_DISABLED}
1226                 ,{"door", USER_FLAG_DOORGROUP, USER_FLAG_DOORGROUP}
1227                 ,{"coke", USER_FLAG_COKE, USER_FLAG_COKE}
1228                 ,{"admin", USER_FLAG_ADMIN, USER_FLAG_ADMIN}
1229                 ,{"internal", USER_FLAG_INTERNAL, USER_FLAG_INTERNAL}
1230         };
1231         const int       ciNumFlags = sizeof(cFLAGS)/sizeof(cFLAGS[0]);
1232         
1233         char    *space;
1234         
1235         *Mask = 0;
1236         *Value = 0;
1237         
1238         do {
1239                  int    bRemove = 0;
1240                  int    i;
1241                  int    len;
1242                 
1243                 while( *Str == ' ' )    Str ++; // Eat whitespace
1244                 space = strchr(Str, ',');       // Find the end of the flag
1245                 if(space)
1246                         len = space - Str;
1247                 else
1248                         len = strlen(Str);
1249                 
1250                 // Check for inversion/removal
1251                 if( *Str == '!' || *Str == '-' ) {
1252                         bRemove = 1;
1253                         Str ++;
1254                 }
1255                 else if( *Str == '+' ) {
1256                         Str ++;
1257                 }
1258                 
1259                 // Check flag values
1260                 for( i = 0; i < ciNumFlags; i ++ )
1261                 {
1262                         if( strncmp(Str, cFLAGS[i].Name, len) == 0 ) {
1263                                 *Mask |= cFLAGS[i].Mask;
1264                                 *Value &= ~cFLAGS[i].Mask;
1265                                 if( !bRemove )
1266                                         *Value |= cFLAGS[i].Value;
1267                                 break;
1268                         }
1269                 }
1270                 
1271                 // Error check
1272                 if( i == ciNumFlags ) {
1273                         char    val[len+1];
1274                         strncpy(val, Str, len+1);
1275                         sendf(Client->Socket, "407 Unknown flag value '%s'\n", val);
1276                         return -1;
1277                 }
1278                 
1279                 Str = space + 1;
1280         } while(space);
1281         
1282         return 0;
1283 }

UCC git Repository :: git.ucc.asn.au