Random fixes
[tpg/opendispense2.git] / src / server / server.c
1 /*
2  * OpenDispense 2 
3  * UCC (University [of WA] Computer Club) Electronic Accounting System
4  *
5  * server.c - Client Server Code
6  *
7  * This file is licenced under the 3-clause BSD Licence. See the file
8  * COPYING for full details.
9  */
10 #include <stdio.h>
11 #include <stdlib.h>
12 #include "common.h"
13 #include <sys/socket.h>
14 #include <netinet/in.h>
15 #include <arpa/inet.h>
16 #include <unistd.h>
17 #include <string.h>
18 #include <limits.h>
19 #include <stdarg.h>
20
21 #define DEBUG_TRACE_CLIENT      0
22
23 // Statistics
24 #define MAX_CONNECTION_QUEUE    5
25 #define INPUT_BUFFER_SIZE       256
26 #define CLIENT_TIMEOUT  10      // Seconds
27
28 #define HASH_TYPE       SHA1
29 #define HASH_LENGTH     20
30
31 #define MSG_STR_TOO_LONG        "499 Command too long (limit "EXPSTR(INPUT_BUFFER_SIZE)")\n"
32
33 // === TYPES ===
34 typedef struct sClient
35 {
36          int    Socket; // Client socket ID
37          int    ID;     // Client ID
38          
39          int    bIsTrusted;     // Is the connection from a trusted host/port
40         
41         char    *Username;
42         char    Salt[9];
43         
44          int    UID;
45          int    EffectiveUID;
46          int    bIsAuthed;
47 }       tClient;
48
49 // === PROTOTYPES ===
50 void    Server_Start(void);
51 void    Server_Cleanup(void);
52 void    Server_HandleClient(int Socket, int bTrusted);
53 void    Server_ParseClientCommand(tClient *Client, char *CommandString);
54 // --- Commands ---
55 void    Server_Cmd_USER(tClient *Client, char *Args);
56 void    Server_Cmd_PASS(tClient *Client, char *Args);
57 void    Server_Cmd_AUTOAUTH(tClient *Client, char *Args);
58 void    Server_Cmd_SETEUSER(tClient *Client, char *Args);
59 void    Server_Cmd_ENUMITEMS(tClient *Client, char *Args);
60 void    Server_Cmd_ITEMINFO(tClient *Client, char *Args);
61 void    Server_Cmd_DISPENSE(tClient *Client, char *Args);
62 void    Server_Cmd_GIVE(tClient *Client, char *Args);
63 void    Server_Cmd_DONATE(tClient *Client, char *Args);
64 void    Server_Cmd_ADD(tClient *Client, char *Args);
65 void    Server_Cmd_SET(tClient *Client, char *Args);
66 void    Server_Cmd_ENUMUSERS(tClient *Client, char *Args);
67 void    Server_Cmd_USERINFO(tClient *Client, char *Args);
68 void    _SendUserInfo(tClient *Client, int UserID);
69 void    Server_Cmd_USERADD(tClient *Client, char *Args);
70 void    Server_Cmd_USERFLAGS(tClient *Client, char *Args);
71 // --- Helpers ---
72 void    Debug(tClient *Client, const char *Format, ...);
73  int    sendf(int Socket, const char *Format, ...);
74  int    Server_int_ParseArgs(int bUseLongArg, char *ArgStr, ...);
75  int    Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value);
76
77 // === CONSTANTS ===
78 // - Commands
79 const struct sClientCommand {
80         const char      *Name;
81         void    (*Function)(tClient *Client, char *Arguments);
82 }       gaServer_Commands[] = {
83         {"USER", Server_Cmd_USER},
84         {"PASS", Server_Cmd_PASS},
85         {"AUTOAUTH", Server_Cmd_AUTOAUTH},
86         {"SETEUSER", Server_Cmd_SETEUSER},
87         {"ENUM_ITEMS", Server_Cmd_ENUMITEMS},
88         {"ITEM_INFO", Server_Cmd_ITEMINFO},
89         {"DISPENSE", Server_Cmd_DISPENSE},
90         {"GIVE", Server_Cmd_GIVE},
91         {"DONATE", Server_Cmd_DONATE},
92         {"ADD", Server_Cmd_ADD},
93         {"SET", Server_Cmd_SET},
94         {"ENUM_USERS", Server_Cmd_ENUMUSERS},
95         {"USER_INFO", Server_Cmd_USERINFO},
96         {"USER_ADD", Server_Cmd_USERADD},
97         {"USER_FLAGS", Server_Cmd_USERFLAGS}
98 };
99 #define NUM_COMMANDS    ((int)(sizeof(gaServer_Commands)/sizeof(gaServer_Commands[0])))
100
101 // === GLOBALS ===
102  int    giServer_Port = 11020;
103  int    giServer_NextClientID = 1;
104  int    giServer_Socket;
105
106 // === CODE ===
107 /**
108  * \brief Open listenting socket and serve connections
109  */
110 void Server_Start(void)
111 {
112          int    client_socket;
113         struct sockaddr_in      server_addr, client_addr;
114
115         atexit(Server_Cleanup);
116
117         // Create Server
118         giServer_Socket = socket(PF_INET, SOCK_STREAM, IPPROTO_TCP);
119         if( giServer_Socket < 0 ) {
120                 fprintf(stderr, "ERROR: Unable to create server socket\n");
121                 return ;
122         }
123         
124         // Make listen address
125         memset(&server_addr, 0, sizeof(server_addr));
126         server_addr.sin_family = AF_INET;       // Internet Socket
127         server_addr.sin_addr.s_addr = htonl(INADDR_ANY);        // Listen on all interfaces
128         server_addr.sin_port = htons(giServer_Port);    // Port
129
130         // Bind
131         if( bind(giServer_Socket, (struct sockaddr *) &server_addr, sizeof(server_addr)) < 0 ) {
132                 fprintf(stderr, "ERROR: Unable to bind to 0.0.0.0:%i\n", giServer_Port);
133                 perror("Binding");
134                 return ;
135         }
136         
137         // Listen
138         if( listen(giServer_Socket, MAX_CONNECTION_QUEUE) < 0 ) {
139                 fprintf(stderr, "ERROR: Unable to listen to socket\n");
140                 perror("Listen");
141                 return ;
142         }
143         
144         printf("Listening on 0.0.0.0:%i\n", giServer_Port);
145         
146         // write pidfile
147 //      {
148 //              FILE *fp = fopen("/var/run/dispsrv.pid", "w");
149 //              fprintf(fp, "%i", getpid());
150 //              fclose(fp);
151 //      }
152
153         for(;;)
154         {
155                 uint    len = sizeof(client_addr);
156                  int    bTrusted = 0;
157                 
158                 // Accept a connection
159                 client_socket = accept(giServer_Socket, (struct sockaddr *) &client_addr, &len);
160                 if(client_socket < 0) {
161                         fprintf(stderr, "ERROR: Unable to accept client connection\n");
162                         return ;
163                 }
164                 
165                 // Set a timeout on the user conneciton
166                 {
167                         struct timeval tv;
168                         tv.tv_sec = CLIENT_TIMEOUT;
169                         tv.tv_usec = 0;
170                         if( setsockopt(client_socket, SOL_SOCKET, SO_RCVTIMEO, &tv, sizeof(tv)) )
171                         {
172                                 perror("setsockopt");
173                                 return ;
174                         }
175                 }
176                 
177                 // Debug: Print the connection string
178                 if(giDebugLevel >= 2) {
179                         char    ipstr[INET_ADDRSTRLEN];
180                         inet_ntop(AF_INET, &client_addr.sin_addr, ipstr, INET_ADDRSTRLEN);
181                         printf("Client connection from %s:%i\n",
182                                 ipstr, ntohs(client_addr.sin_port));
183                 }
184                 
185                 // Doesn't matter what, localhost is trusted
186                 if( ntohl( client_addr.sin_addr.s_addr ) == 0x7F000001 )
187                         bTrusted = 1;
188                 
189                 // Trusted Connections
190                 if( ntohs(client_addr.sin_port) < 1024 )
191                 {
192                         // TODO: Make this runtime configurable
193                         switch( ntohl( client_addr.sin_addr.s_addr ) )
194                         {
195                         case 0x7F000001:        // 127.0.0.1    localhost
196                 //      case 0x825F0D00:        // 130.95.13.0
197                         case 0x825F0D07:        // 130.95.13.7  motsugo
198                         case 0x825F0D11:        // 130.95.13.17 mermaid
199                         case 0x825F0D12:        // 130.95.13.18 mussel
200                         case 0x825F0D17:        // 130.95.13.23 martello
201                         case 0x825F0D42:        // 130.95.13.66 heathred
202                                 bTrusted = 1;
203                                 break;
204                         default:
205                                 break;
206                         }
207                 }
208                 
209                 // TODO: Multithread this?
210                 Server_HandleClient(client_socket, bTrusted);
211                 
212                 close(client_socket);
213         }
214 }
215
216 void Server_Cleanup(void)
217 {
218         printf("Close(%i)\n", giServer_Socket);
219         close(giServer_Socket);
220 }
221
222 /**
223  * \brief Reads from a client socket and parses the command strings
224  * \param Socket        Client socket number/handle
225  * \param bTrusted      Is the client trusted?
226  */
227 void Server_HandleClient(int Socket, int bTrusted)
228 {
229         char    inbuf[INPUT_BUFFER_SIZE];
230         char    *buf = inbuf;
231          int    remspace = INPUT_BUFFER_SIZE-1;
232          int    bytes = -1;
233         tClient clientInfo;
234         
235         memset(&clientInfo, 0, sizeof(clientInfo));
236         
237         // Initialise Client info
238         clientInfo.Socket = Socket;
239         clientInfo.ID = giServer_NextClientID ++;
240         clientInfo.bIsTrusted = bTrusted;
241         clientInfo.EffectiveUID = -1;
242         
243         // Read from client
244         /*
245          * Notes:
246          * - The `buf` and `remspace` variables allow a line to span several
247          *   calls to recv(), if a line is not completed in one recv() call
248          *   it is saved to the beginning of `inbuf` and `buf` is updated to
249          *   the end of it.
250          */
251         // TODO: Use select() instead (to give a timeout)
252         while( (bytes = recv(Socket, buf, remspace, 0)) > 0 )
253         {
254                 char    *eol, *start;
255                 buf[bytes] = '\0';      // Allow us to use stdlib string functions on it
256                 
257                 // Split by lines
258                 start = inbuf;
259                 while( (eol = strchr(start, '\n')) )
260                 {
261                         *eol = '\0';
262                         
263                         Server_ParseClientCommand(&clientInfo, start);
264                         
265                         start = eol + 1;
266                 }
267                 
268                 // Check if there was an incomplete line
269                 if( *start != '\0' ) {
270                          int    tailBytes = bytes - (start-buf);
271                         // Roll back in buffer
272                         memcpy(inbuf, start, tailBytes);
273                         remspace -= tailBytes;
274                         if(remspace == 0) {
275                                 send(Socket, MSG_STR_TOO_LONG, sizeof(MSG_STR_TOO_LONG), 0);
276                                 buf = inbuf;
277                                 remspace = INPUT_BUFFER_SIZE - 1;
278                         }
279                 }
280                 else {
281                         buf = inbuf;
282                         remspace = INPUT_BUFFER_SIZE - 1;
283                 }
284         }
285         
286         // Check for errors
287         if( bytes < 0 ) {
288                 fprintf(stderr, "ERROR: Unable to recieve from client on socket %i\n", Socket);
289                 return ;
290         }
291         
292         if(giDebugLevel >= 2) {
293                 printf("Client %i: Disconnected\n", clientInfo.ID);
294         }
295 }
296
297 /**
298  * \brief Parses a client command and calls the required helper function
299  * \param Client        Pointer to client state structure
300  * \param CommandString Command from client (single line of the command)
301  * \return Heap String to return to the client
302  */
303 void Server_ParseClientCommand(tClient *Client, char *CommandString)
304 {
305         char    *command, *args;
306          int    i;
307         
308         if( giDebugLevel >= 2 )
309                 Debug(Client, "Server_ParseClientCommand: (CommandString = '%s')", CommandString);
310         
311         if( Server_int_ParseArgs(1, CommandString, &command, &args, NULL) )
312         {
313 //              printf("command=%s, args=%s\n", command, args);
314                 // Is this an error? (just ignore for now)
315                 //args = "";
316         }
317         
318         
319         // Find command
320         for( i = 0; i < NUM_COMMANDS; i++ )
321         {
322                 if(strcmp(command, gaServer_Commands[i].Name) == 0) {
323                         if( giDebugLevel >= 2 )
324                                 Debug(Client, "CMD %s - \"%s\"", command, args);
325                         gaServer_Commands[i].Function(Client, args);
326                         return ;
327                 }
328         }
329         
330         sendf(Client->Socket, "400 Unknown Command\n");
331 }
332
333 // ---
334 // Commands
335 // ---
336 /**
337  * \brief Set client username
338  * 
339  * Usage: USER <username>
340  */
341 void Server_Cmd_USER(tClient *Client, char *Args)
342 {
343         char    *username;
344         
345         if( Server_int_ParseArgs(0, Args, &username, NULL) )
346         {
347                 sendf(Client->Socket, "407 USER takes 1 argument\n");
348                 return ;
349         }
350         
351         // Debug!
352         if( giDebugLevel )
353                 Debug(Client, "Authenticating as '%s'", username);
354         
355         // Save username
356         if(Client->Username)
357                 free(Client->Username);
358         Client->Username = strdup(username);
359         
360         #if USE_SALT
361         // Create a salt (that changes if the username is changed)
362         // Yes, I know, I'm a little paranoid, but who isn't?
363         Client->Salt[0] = 0x21 + (rand()&0x3F);
364         Client->Salt[1] = 0x21 + (rand()&0x3F);
365         Client->Salt[2] = 0x21 + (rand()&0x3F);
366         Client->Salt[3] = 0x21 + (rand()&0x3F);
367         Client->Salt[4] = 0x21 + (rand()&0x3F);
368         Client->Salt[5] = 0x21 + (rand()&0x3F);
369         Client->Salt[6] = 0x21 + (rand()&0x3F);
370         Client->Salt[7] = 0x21 + (rand()&0x3F);
371         
372         // TODO: Also send hash type to use, (SHA1 or crypt according to [DAA])
373         sendf(Client->Socket, "100 SALT %s\n", Client->Salt);
374         #else
375         sendf(Client->Socket, "100 User Set\n");
376         #endif
377 }
378
379 /**
380  * \brief Authenticate as a user
381  * 
382  * Usage: PASS <hash>
383  */
384 void Server_Cmd_PASS(tClient *Client, char *Args)
385 {
386         char    *passhash;
387          int    flags;
388
389         if( Server_int_ParseArgs(0, Args, &passhash, NULL) )
390         {
391                 sendf(Client->Socket, "407 PASS takes 1 argument\n");
392                 return ;
393         }
394         
395         // Pass on to cokebank
396         Client->UID = Bank_GetUserAuth(Client->Salt, Client->Username, passhash);
397
398         if( Client->UID == -1 ) {
399                 sendf(Client->Socket, "401 Auth Failure\n");
400                 return ;
401         }
402
403         flags = Bank_GetFlags(Client->UID);
404         if( flags & USER_FLAG_DISABLED ) {
405                 Client->UID = -1;
406                 sendf(Client->Socket, "403 Account Disabled\n");
407                 return ;
408         }
409         if( flags & USER_FLAG_INTERNAL ) {
410                 Client->UID = -1;
411                 sendf(Client->Socket, "403 Internal account\n");
412                 return ;
413         }
414         
415         Client->bIsAuthed = 1;
416         sendf(Client->Socket, "200 Auth OK\n");
417 }
418
419 /**
420  * \brief Authenticate as a user without a password
421  * 
422  * Usage: AUTOAUTH <user>
423  */
424 void Server_Cmd_AUTOAUTH(tClient *Client, char *Args)
425 {
426         char    *username;
427          int    userflags;
428         
429         if( Server_int_ParseArgs(0, Args, &username, NULL) )
430         {
431                 sendf(Client->Socket, "407 AUTOAUTH takes 1 argument\n");
432                 return ;
433         }
434         
435         // Check if trusted
436         if( !Client->bIsTrusted ) {
437                 if(giDebugLevel)
438                         Debug(Client, "Untrusted client attempting to AUTOAUTH");
439                 sendf(Client->Socket, "401 Untrusted\n");
440                 return ;
441         }
442         
443         // Get UID
444         Client->UID = Bank_GetAcctByName( username );   
445         if( Client->UID < 0 ) {
446                 if(giDebugLevel)
447                         Debug(Client, "Unknown user '%s'", username);
448                 sendf(Client->Socket, "403 Auth Failure\n");
449                 return ;
450         }
451         
452         userflags = Bank_GetFlags(Client->UID);
453         // You can't be an internal account
454         if( userflags & USER_FLAG_INTERNAL ) {
455                 if(giDebugLevel)
456                         Debug(Client, "Autoauth as '%s', not allowed", username);
457                 Client->UID = -1;
458                 sendf(Client->Socket, "403 Account is internal\n");
459                 return ;
460         }
461
462         // Disabled accounts
463         if( userflags & USER_FLAG_DISABLED ) {
464                 Client->UID = -1;
465                 sendf(Client->Socket, "403 Account disabled\n");
466                 return ;
467         }
468
469         Client->bIsAuthed = 1;
470         
471         if(giDebugLevel)
472                 Debug(Client, "Auto authenticated as '%s' (%i)", username, Client->UID);
473         
474         sendf(Client->Socket, "200 Auth OK\n");
475 }
476
477 /**
478  * \brief Set effective user
479  */
480 void Server_Cmd_SETEUSER(tClient *Client, char *Args)
481 {
482         char    *username;
483          int    eUserFlags, userFlags;
484         
485         if( Server_int_ParseArgs(0, Args, &username, NULL) )
486         {
487                 sendf(Client->Socket, "407 SETEUSER takes 1 argument\n");
488                 return ;
489         }
490         
491         if( !strlen(Args) ) {
492                 sendf(Client->Socket, "407 SETEUSER expects an argument\n");
493                 return ;
494         }
495
496         // Check user permissions
497         userFlags = Bank_GetFlags(Client->UID);
498         if( !(userFlags & (USER_FLAG_COKE|USER_FLAG_ADMIN)) ) {
499                 sendf(Client->Socket, "403 Not in coke\n");
500                 return ;
501         }
502         
503         // Set id
504         Client->EffectiveUID = Bank_GetAcctByName(username);
505         if( Client->EffectiveUID == -1 ) {
506                 sendf(Client->Socket, "404 User not found\n");
507                 return ;
508         }
509         
510         // You can't be an internal account
511         if( !(userFlags & USER_FLAG_ADMIN) )
512         {
513                 eUserFlags = Bank_GetFlags(Client->EffectiveUID);
514                 if( eUserFlags & USER_FLAG_INTERNAL ) {
515                         Client->EffectiveUID = -1;
516                         sendf(Client->Socket, "404 User not found\n");
517                         return ;
518                 }
519                 // Disabled only avaliable to admins
520                 if( eUserFlags & USER_FLAG_DISABLED ) {
521                         Client->EffectiveUID = -1;
522                         sendf(Client->Socket, "403 Account disabled\n");
523                         return ;
524                 }
525         }
526         
527         sendf(Client->Socket, "200 User set\n");
528 }
529
530 /**
531  * \brief Send an item status to the client
532  * \param Client        Who to?
533  * \param Item  Item to send
534  */
535 void Server_int_SendItem(tClient *Client, tItem *Item)
536 {
537         char    *status = "avail";
538         
539         if( Item->Handler->CanDispense )
540         {
541                 switch(Item->Handler->CanDispense(Client->UID, Item->ID))
542                 {
543                 case  0:        status = "avail";       break;
544                 case  1:        status = "sold";        break;
545                 default:
546                 case -1:        status = "error";       break;
547                 }
548         }
549         
550         sendf(Client->Socket,
551                 "202 Item %s:%i %s %i %s\n",
552                 Item->Handler->Name, Item->ID, status, Item->Price, Item->Name
553                 );
554 }
555
556 /**
557  * \brief Enumerate the items that the server knows about
558  */
559 void Server_Cmd_ENUMITEMS(tClient *Client, char *Args)
560 {
561          int    i, count;
562
563         if( Args != NULL && strlen(Args) ) {
564                 sendf(Client->Socket, "407 ENUM_ITEMS takes no arguments\n");
565                 return ;
566         }
567         
568         // Count shown items
569         count = 0;
570         for( i = 0; i < giNumItems; i ++ ) {
571                 if( gaItems[i].bHidden )        continue;
572                 count ++;
573         }
574
575         sendf(Client->Socket, "201 Items %i\n", count);
576
577         for( i = 0; i < giNumItems; i ++ ) {
578                 if( gaItems[i].bHidden )        continue;
579                 Server_int_SendItem( Client, &gaItems[i] );
580         }
581
582         sendf(Client->Socket, "200 List end\n");
583 }
584
585 tItem *_GetItemFromString(char *String)
586 {
587         tHandler        *handler;
588         char    *type = String;
589         char    *colon = strchr(String, ':');
590          int    num, i;
591         
592         if( !colon ) {
593                 return NULL;
594         }
595
596         num = atoi(colon+1);
597         *colon = '\0';
598
599         // Find handler
600         handler = NULL;
601         for( i = 0; i < giNumHandlers; i ++ )
602         {
603                 if( strcmp(gaHandlers[i]->Name, type) == 0) {
604                         handler = gaHandlers[i];
605                         break;
606                 }
607         }
608         if( !handler ) {
609                 return NULL;
610         }
611
612         // Find item
613         for( i = 0; i < giNumItems; i ++ )
614         {
615                 if( gaItems[i].Handler != handler )     continue;
616                 if( gaItems[i].ID != num )      continue;
617                 return &gaItems[i];
618         }
619         return NULL;
620 }
621
622 /**
623  * \brief Fetch information on a specific item
624  */
625 void Server_Cmd_ITEMINFO(tClient *Client, char *Args)
626 {
627         tItem   *item;
628         char    *itemname;
629         
630         if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
631                 sendf(Client->Socket, "407 ITEMINFO takes 1 argument\n");
632                 return ;
633         }
634         item = _GetItemFromString(Args);
635         
636         if( !item ) {
637                 sendf(Client->Socket, "406 Bad Item ID\n");
638                 return ;
639         }
640         
641         Server_int_SendItem( Client, item );
642 }
643
644 void Server_Cmd_DISPENSE(tClient *Client, char *Args)
645 {
646         tItem   *item;
647          int    ret;
648          int    uid;
649         char    *itemname;
650         
651         if( Server_int_ParseArgs(0, Args, &itemname, NULL) ) {
652                 sendf(Client->Socket, "407 DISPENSE takes only 1 argument\n");
653                 return ;
654         }
655          
656         if( !Client->bIsAuthed ) {
657                 sendf(Client->Socket, "401 Not Authenticated\n");
658                 return ;
659         }
660
661         item = _GetItemFromString(itemname);
662         if( !item ) {
663                 sendf(Client->Socket, "406 Bad Item ID\n");
664                 return ;
665         }
666         
667         if( Client->EffectiveUID != -1 ) {
668                 uid = Client->EffectiveUID;
669         }
670         else {
671                 uid = Client->UID;
672         }
673
674         switch( ret = DispenseItem( Client->UID, uid, item ) )
675         {
676         case 0: sendf(Client->Socket, "200 Dispense OK\n");     return ;
677         case 1: sendf(Client->Socket, "501 Unable to dispense\n");      return ;
678         case 2: sendf(Client->Socket, "402 Poor You\n");        return ;
679         default:
680                 sendf(Client->Socket, "500 Dispense Error\n");
681                 return ;
682         }
683 }
684
685 void Server_Cmd_GIVE(tClient *Client, char *Args)
686 {
687         char    *recipient, *ammount, *reason;
688          int    uid, iAmmount;
689          int    thisUid;
690         
691         // Parse arguments
692         if( Server_int_ParseArgs(1, Args, &recipient, &ammount, &reason, NULL) ) {
693                 sendf(Client->Socket, "407 GIVE takes only 3 arguments\n");
694                 return ;
695         }
696         // Check for authed
697         if( !Client->bIsAuthed ) {
698                 sendf(Client->Socket, "401 Not Authenticated\n");
699                 return ;
700         }
701
702         // Get recipient
703         uid = Bank_GetAcctByName(recipient);
704         if( uid == -1 ) {
705                 sendf(Client->Socket, "404 Invalid target user\n");
706                 return ;
707         }
708         
709         // You can't alter an internal account
710 //      if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
711 //              sendf(Client->Socket, "404 Invalid target user\n");
712 //              return ;
713 //      }
714
715         // Parse ammount
716         iAmmount = atoi(ammount);
717         if( iAmmount <= 0 ) {
718                 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
719                 return ;
720         }
721         
722         if( Client->EffectiveUID != -1 ) {
723                 thisUid = Client->EffectiveUID;
724         }
725         else {
726                 thisUid = Client->UID;
727         }
728
729         // Do give
730         switch( DispenseGive(Client->UID, thisUid, uid, iAmmount, reason) )
731         {
732         case 0:
733                 sendf(Client->Socket, "200 Give OK\n");
734                 return ;
735         case 2:
736                 sendf(Client->Socket, "402 Poor You\n");
737                 return ;
738         default:
739                 sendf(Client->Socket, "500 Unknown error\n");
740                 return ;
741         }
742 }
743
744 void Server_Cmd_DONATE(tClient *Client, char *Args)
745 {
746         char    *ammount, *reason;
747          int    iAmmount;
748          int    thisUid;
749         
750         // Parse arguments
751         if( Server_int_ParseArgs(1, Args, &ammount, &reason, NULL) ) {
752                 sendf(Client->Socket, "407 DONATE takes 2 arguments\n");
753                 return ;
754         }
755         
756         if( !Client->bIsAuthed ) {
757                 sendf(Client->Socket, "401 Not Authenticated\n");
758                 return ;
759         }
760
761         // Parse ammount
762         iAmmount = atoi(ammount);
763         if( iAmmount <= 0 ) {
764                 sendf(Client->Socket, "407 Invalid Argument, ammount must be > zero\n");
765                 return ;
766         }
767         
768         // Handle effective users
769         if( Client->EffectiveUID != -1 ) {
770                 thisUid = Client->EffectiveUID;
771         }
772         else {
773                 thisUid = Client->UID;
774         }
775
776         // Do give
777         switch( DispenseDonate(Client->UID, thisUid, iAmmount, reason) )
778         {
779         case 0:
780                 sendf(Client->Socket, "200 Give OK\n");
781                 return ;
782         case 2:
783                 sendf(Client->Socket, "402 Poor You\n");
784                 return ;
785         default:
786                 sendf(Client->Socket, "500 Unknown error\n");
787                 return ;
788         }
789 }
790
791 void Server_Cmd_ADD(tClient *Client, char *Args)
792 {
793         char    *user, *ammount, *reason;
794          int    uid, iAmmount;
795         
796         // Parse arguments
797         if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
798                 sendf(Client->Socket, "407 ADD takes 3 arguments\n");
799                 return ;
800         }
801         
802         if( !Client->bIsAuthed ) {
803                 sendf(Client->Socket, "401 Not Authenticated\n");
804                 return ;
805         }
806
807         // Check user permissions
808         if( !(Bank_GetFlags(Client->UID) & (USER_FLAG_COKE|USER_FLAG_ADMIN))  ) {
809                 sendf(Client->Socket, "403 Not in coke\n");
810                 return ;
811         }
812
813         // Get recipient
814         uid = Bank_GetAcctByName(user);
815         if( uid == -1 ) {
816                 sendf(Client->Socket, "404 Invalid user\n");
817                 return ;
818         }
819         
820         // You can't alter an internal account
821         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) )
822         {
823                 if( Bank_GetFlags(uid) & USER_FLAG_INTERNAL ) {
824                         sendf(Client->Socket, "404 Invalid user\n");
825                         return ;
826                 }
827                 // TODO: Maybe disallow changes to disabled?
828         }
829
830         // Parse ammount
831         iAmmount = atoi(ammount);
832         if( iAmmount == 0 && ammount[0] != '0' ) {
833                 sendf(Client->Socket, "407 Invalid Argument\n");
834                 return ;
835         }
836
837         // Do give
838         switch( DispenseAdd(Client->UID, uid, iAmmount, reason) )
839         {
840         case 0:
841                 sendf(Client->Socket, "200 Add OK\n");
842                 return ;
843         case 2:
844                 sendf(Client->Socket, "402 Poor Guy\n");
845                 return ;
846         default:
847                 sendf(Client->Socket, "500 Unknown error\n");
848                 return ;
849         }
850 }
851
852 void Server_Cmd_SET(tClient *Client, char *Args)
853 {
854         char    *user, *ammount, *reason;
855          int    uid, iAmmount;
856         
857         // Parse arguments
858         if( Server_int_ParseArgs(1, Args, &user, &ammount, &reason, NULL) ) {
859                 sendf(Client->Socket, "407 SET takes 3 arguments\n");
860                 return ;
861         }
862         
863         if( !Client->bIsAuthed ) {
864                 sendf(Client->Socket, "401 Not Authenticated\n");
865                 return ;
866         }
867
868         // Check user permissions
869         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN)  ) {
870                 sendf(Client->Socket, "403 Not an admin\n");
871                 return ;
872         }
873
874         // Get recipient
875         uid = Bank_GetAcctByName(user);
876         if( uid == -1 ) {
877                 sendf(Client->Socket, "404 Invalid user\n");
878                 return ;
879         }
880
881         // Parse ammount
882         iAmmount = atoi(ammount);
883         if( iAmmount == 0 && ammount[0] != '0' ) {
884                 sendf(Client->Socket, "407 Invalid Argument\n");
885                 return ;
886         }
887
888         // Do give
889         switch( DispenseSet(Client->UID, uid, iAmmount, reason) )
890         {
891         case 0:
892                 sendf(Client->Socket, "200 Add OK\n");
893                 return ;
894         case 2:
895                 sendf(Client->Socket, "402 Poor Guy\n");
896                 return ;
897         default:
898                 sendf(Client->Socket, "500 Unknown error\n");
899                 return ;
900         }
901 }
902
903 void Server_Cmd_ENUMUSERS(tClient *Client, char *Args)
904 {
905          int    i, numRet = 0;
906         tAcctIterator   *it;
907          int    maxBal = INT_MAX, minBal = INT_MIN;
908          int    flagMask = 0, flagVal = 0;
909          int    sort = BANK_ITFLAG_SORT_NAME;
910         time_t  lastSeenAfter=0, lastSeenBefore=0;
911         
912          int    flags;  // Iterator flags
913          int    balValue;       // Balance value for iterator
914         time_t  timeValue;      // Time value for iterator
915         
916         // Parse arguments
917         if( Args && strlen(Args) )
918         {
919                 char    *space = Args, *type, *val;
920                 do
921                 {
922                         type = space;
923                         while(*type == ' ')     type ++;
924                         // Get next space
925                         space = strchr(space, ' ');
926                         if(space)       *space = '\0';
927                         
928                         // Get type
929                         val = strchr(type, ':');
930                         if( val ) {
931                                 *val = '\0';
932                                 val ++;
933                                 
934                                 // Types
935                                 // - Minium Balance
936                                 if( strcmp(type, "min_balance") == 0 ) {
937                                         minBal = atoi(val);
938                                 }
939                                 // - Maximum Balance
940                                 else if( strcmp(type, "max_balance") == 0 ) {
941                                         maxBal = atoi(val);
942                                 }
943                                 // - Flags
944                                 else if( strcmp(type, "flags") == 0 ) {
945                                         if( Server_int_ParseFlags(Client, val, &flagMask, &flagVal) )
946                                                 return ;
947                                 }
948                                 // - Last seen before timestamp
949                                 else if( strcmp(type, "last_seen_before") == 0 ) {
950                                         lastSeenAfter = atoll(val);
951                                 }
952                                 // - Last seen after timestamp
953                                 else if( strcmp(type, "last_seen_after") == 0 ) {
954                                         lastSeenAfter = atoll(val);
955                                 }
956                                 // - Sorting 
957                                 else if( strcmp(type, "sort") == 0 ) {
958                                         char    *dash = strchr(val, '-');
959                                         if( dash ) {
960                                                 *dash = '\0';
961                                                 dash ++;
962                                         }
963                                         if( strcmp(val, "name") == 0 ) {
964                                                 sort = BANK_ITFLAG_SORT_NAME;
965                                         }
966                                         else if( strcmp(val, "balance") == 0 ) {
967                                                 sort = BANK_ITFLAG_SORT_BAL;
968                                         }
969                                         else if( strcmp(val, "lastseen") == 0 ) {
970                                                 sort = BANK_ITFLAG_SORT_LASTSEEN;
971                                         }
972                                         else {
973                                                 sendf(Client->Socket, "407 Unknown sort field ('%s')\n", val);
974                                                 return ;
975                                         }
976                                         // Handle sort direction
977                                         if( dash ) {
978                                                 if( strcmp(dash, "desc") == 0 ) {
979                                                         sort |= BANK_ITFLAG_REVSORT;
980                                                 }
981                                                 else {
982                                                         sendf(Client->Socket, "407 Unknown sort direction '%s'\n", dash);
983                                                         return ;
984                                                 }
985                                                 dash[-1] = '-';
986                                         }
987                                 }
988                                 else {
989                                         sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s:%s'\n", type, val);
990                                         return ;
991                                 }
992                                 
993                                 val[-1] = ':';
994                         }
995                         else {
996                                 sendf(Client->Socket, "407 Unknown argument to ENUM_USERS '%s'\n", type);
997                                 return ;
998                         }
999                         
1000                         // Eat whitespace
1001                         if( space ) {
1002                                 *space = ' ';   // Repair (to be nice)
1003                                 space ++;
1004                                 while(*space == ' ')    space ++;
1005                         }
1006                 }       while(space);
1007         }
1008         
1009         // Create iterator
1010         if( maxBal != INT_MAX ) {
1011                 flags = sort|BANK_ITFLAG_MAXBALANCE;
1012                 balValue = maxBal;
1013         }
1014         else if( minBal != INT_MIN ) {
1015                 flags = sort|BANK_ITFLAG_MINBALANCE;
1016                 balValue = minBal;
1017         }
1018         else {
1019                 flags = sort;
1020                 balValue = 0;
1021         }
1022         if( lastSeenBefore ) {
1023                 timeValue = lastSeenBefore;
1024                 flags |= BANK_ITFLAG_SEENBEFORE;
1025         }
1026         else if( lastSeenAfter ) {
1027                 timeValue = lastSeenAfter;
1028                 flags |= BANK_ITFLAG_SEENAFTER;
1029         }
1030         else {
1031                 timeValue = 0;
1032         }
1033         it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
1034         
1035         // Get return number
1036         while( (i = Bank_IteratorNext(it)) != -1 )
1037         {
1038                 int bal = Bank_GetBalance(i);
1039                 
1040                 if( bal == INT_MIN )    continue;
1041                 
1042                 if( bal < minBal )      continue;
1043                 if( bal > maxBal )      continue;
1044                 
1045                 numRet ++;
1046         }
1047         
1048         Bank_DelIterator(it);
1049         
1050         // Send count
1051         sendf(Client->Socket, "201 Users %i\n", numRet);
1052         
1053         
1054         // Create iterator
1055         it = Bank_Iterator(flagMask, flagVal, flags, balValue, timeValue);
1056         
1057         while( (i = Bank_IteratorNext(it)) != -1 )
1058         {
1059                 int bal = Bank_GetBalance(i);
1060                 
1061                 if( bal == INT_MIN )    continue;
1062                 
1063                 if( bal < minBal )      continue;
1064                 if( bal > maxBal )      continue;
1065                 
1066                 _SendUserInfo(Client, i);
1067         }
1068         
1069         Bank_DelIterator(it);
1070         
1071         sendf(Client->Socket, "200 List End\n");
1072 }
1073
1074 void Server_Cmd_USERINFO(tClient *Client, char *Args)
1075 {
1076          int    uid;
1077         char    *user;
1078         
1079         // Parse arguments
1080         if( Server_int_ParseArgs(0, Args, &user, NULL) ) {
1081                 sendf(Client->Socket, "407 USER_INFO takes 1 argument\n");
1082                 return ;
1083         }
1084         
1085         if( giDebugLevel )      Debug(Client, "User Info '%s'", user);
1086         
1087         // Get recipient
1088         uid = Bank_GetAcctByName(user);
1089         
1090         if( giDebugLevel >= 2 ) Debug(Client, "uid = %i", uid);
1091         if( uid == -1 ) {
1092                 sendf(Client->Socket, "404 Invalid user\n");
1093                 return ;
1094         }
1095         
1096         _SendUserInfo(Client, uid);
1097 }
1098
1099 void _SendUserInfo(tClient *Client, int UserID)
1100 {
1101         char    *type, *disabled="", *door="";
1102          int    flags = Bank_GetFlags(UserID);
1103         
1104         if( flags & USER_FLAG_INTERNAL ) {
1105                 type = "internal";
1106         }
1107         else if( flags & USER_FLAG_COKE ) {
1108                 if( flags & USER_FLAG_ADMIN )
1109                         type = "coke,admin";
1110                 else
1111                         type = "coke";
1112         }
1113         else if( flags & USER_FLAG_ADMIN ) {
1114                 type = "admin";
1115         }
1116         else {
1117                 type = "user";
1118         }
1119         
1120         if( flags & USER_FLAG_DISABLED )
1121                 disabled = ",disabled";
1122         if( flags & USER_FLAG_DOORGROUP )
1123                 door = ",door";
1124         
1125         // TODO: User flags/type
1126         sendf(
1127                 Client->Socket, "202 User %s %i %s%s%s\n",
1128                 Bank_GetAcctName(UserID), Bank_GetBalance(UserID),
1129                 type, disabled, door
1130                 );
1131 }
1132
1133 void Server_Cmd_USERADD(tClient *Client, char *Args)
1134 {
1135         char    *username;
1136         
1137         // Parse arguments
1138         if( Server_int_ParseArgs(0, Args, &username, NULL) ) {
1139                 sendf(Client->Socket, "407 USER_ADD takes 1 argument\n");
1140                 return ;
1141         }
1142         
1143         // Check permissions
1144         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1145                 sendf(Client->Socket, "403 Not a coke admin\n");
1146                 return ;
1147         }
1148         
1149         // Try to create user
1150         if( Bank_CreateAcct(username) == -1 ) {
1151                 sendf(Client->Socket, "404 User exists\n");
1152                 return ;
1153         }
1154         
1155         {
1156                 char    *thisName = Bank_GetAcctName(Client->UID);
1157                 Log_Info("Account '%s' created by '%s'", username, thisName);
1158                 free(thisName);
1159         }
1160         
1161         sendf(Client->Socket, "200 User Added\n");
1162 }
1163
1164 void Server_Cmd_USERFLAGS(tClient *Client, char *Args)
1165 {
1166         char    *username, *flags;
1167          int    mask=0, value=0;
1168          int    uid;
1169         
1170         // Parse arguments
1171         if( Server_int_ParseArgs(0, Args, &username, &flags, NULL) ) {
1172                 sendf(Client->Socket, "407 USER_FLAGS takes 2 arguments\n");
1173                 return ;
1174         }
1175         
1176         // Check permissions
1177         if( !(Bank_GetFlags(Client->UID) & USER_FLAG_ADMIN) ) {
1178                 sendf(Client->Socket, "403 Not a coke admin\n");
1179                 return ;
1180         }
1181         
1182         // Get UID
1183         uid = Bank_GetAcctByName(username);
1184         if( uid == -1 ) {
1185                 sendf(Client->Socket, "404 User '%s' not found\n", username);
1186                 return ;
1187         }
1188         
1189         // Parse flags
1190         if( Server_int_ParseFlags(Client, flags, &mask, &value) )
1191                 return ;
1192         
1193         if( giDebugLevel )
1194                 Debug(Client, "Set %i(%s) flags to %x (masked %x)\n",
1195                         uid, username, mask, value);
1196         
1197         // Apply flags
1198         Bank_SetFlags(uid, mask, value);
1199         
1200         // Return OK
1201         sendf(Client->Socket, "200 User Updated\n");
1202 }
1203
1204 // --- INTERNAL HELPERS ---
1205 void Debug(tClient *Client, const char *Format, ...)
1206 {
1207         va_list args;
1208         //printf("%010i [%i] ", (int)time(NULL), Client->ID);
1209         printf("[%i] ", Client->ID);
1210         va_start(args, Format);
1211         vprintf(Format, args);
1212         va_end(args);
1213         printf("\n");
1214 }
1215
1216 int sendf(int Socket, const char *Format, ...)
1217 {
1218         va_list args;
1219          int    len;
1220         
1221         va_start(args, Format);
1222         len = vsnprintf(NULL, 0, Format, args);
1223         va_end(args);
1224         
1225         {
1226                 char    buf[len+1];
1227                 va_start(args, Format);
1228                 vsnprintf(buf, len+1, Format, args);
1229                 va_end(args);
1230                 
1231                 #if DEBUG_TRACE_CLIENT
1232                 printf("sendf: %s", buf);
1233                 #endif
1234                 
1235                 return send(Socket, buf, len, 0);
1236         }
1237 }
1238
1239 // Takes a series of char *'s in
1240 /**
1241  * \brief Parse space-separated entries into 
1242  */
1243 int Server_int_ParseArgs(int bUseLongLast, char *ArgStr, ...)
1244 {
1245         va_list args;
1246         char    savedChar;
1247         char    **dest;
1248         va_start(args, ArgStr);
1249
1250         // Check for null
1251         if( !ArgStr )
1252         {
1253                 while( (dest = va_arg(args, char **)) )
1254                         *dest = NULL;
1255                 va_end(args);
1256                 return 1;
1257         }
1258
1259         savedChar = *ArgStr;
1260         
1261         while( (dest = va_arg(args, char **)) )
1262         {
1263                 // Trim leading spaces
1264                 while( *ArgStr == ' ' || *ArgStr == '\t' )
1265                         ArgStr ++;
1266                 
1267                 // ... oops, not enough arguments
1268                 if( *ArgStr == '\0' )
1269                 {
1270                         // NULL unset arguments
1271                         do {
1272                                 *dest = NULL;
1273                         }       while( (dest = va_arg(args, char **)) );
1274                 va_end(args);
1275                         return -1;
1276                 }
1277                 
1278                 if( *ArgStr == '"' )
1279                 {
1280                         ArgStr ++;
1281                         *dest = ArgStr;
1282                         // Read until quote
1283                         while( *ArgStr && *ArgStr != '"' )
1284                                 ArgStr ++;
1285                 }
1286                 else
1287                 {
1288                         // Set destination
1289                         *dest = ArgStr;
1290                         // Read until a space
1291                         while( *ArgStr && *ArgStr != ' ' && *ArgStr != '\t' )
1292                                 ArgStr ++;
1293                 }
1294                 savedChar = *ArgStr;    // savedChar is used to un-mangle the last string
1295                 *ArgStr = '\0';
1296                 ArgStr ++;
1297         }
1298         va_end(args);
1299         
1300         // Oops, extra arguments, and greedy not set
1301         if( (savedChar == ' ' || savedChar == '\t') && !bUseLongLast ) {
1302                 return -1;
1303         }
1304         
1305         // Un-mangle last
1306         if(bUseLongLast) {
1307                 ArgStr --;
1308                 *ArgStr = savedChar;
1309         }
1310         
1311         return 0;       // Success!
1312 }
1313
1314 int Server_int_ParseFlags(tClient *Client, const char *Str, int *Mask, int *Value)
1315 {
1316         struct {
1317                 const char      *Name;
1318                  int    Mask;
1319                  int    Value;
1320         }       cFLAGS[] = {
1321                  {"disabled", USER_FLAG_DISABLED, USER_FLAG_DISABLED}
1322                 ,{"door", USER_FLAG_DOORGROUP, USER_FLAG_DOORGROUP}
1323                 ,{"coke", USER_FLAG_COKE, USER_FLAG_COKE}
1324                 ,{"admin", USER_FLAG_ADMIN, USER_FLAG_ADMIN}
1325                 ,{"internal", USER_FLAG_INTERNAL, USER_FLAG_INTERNAL}
1326         };
1327         const int       ciNumFlags = sizeof(cFLAGS)/sizeof(cFLAGS[0]);
1328         
1329         char    *space;
1330         
1331         *Mask = 0;
1332         *Value = 0;
1333         
1334         do {
1335                  int    bRemove = 0;
1336                  int    i;
1337                  int    len;
1338                 
1339                 while( *Str == ' ' )    Str ++; // Eat whitespace
1340                 space = strchr(Str, ',');       // Find the end of the flag
1341                 if(space)
1342                         len = space - Str;
1343                 else
1344                         len = strlen(Str);
1345                 
1346                 // Check for inversion/removal
1347                 if( *Str == '!' || *Str == '-' ) {
1348                         bRemove = 1;
1349                         Str ++;
1350                 }
1351                 else if( *Str == '+' ) {
1352                         Str ++;
1353                 }
1354                 
1355                 // Check flag values
1356                 for( i = 0; i < ciNumFlags; i ++ )
1357                 {
1358                         if( strncmp(Str, cFLAGS[i].Name, len) == 0 ) {
1359                                 *Mask |= cFLAGS[i].Mask;
1360                                 *Value &= ~cFLAGS[i].Mask;
1361                                 if( !bRemove )
1362                                         *Value |= cFLAGS[i].Value;
1363                                 break;
1364                         }
1365                 }
1366                 
1367                 // Error check
1368                 if( i == ciNumFlags ) {
1369                         char    val[len+1];
1370                         strncpy(val, Str, len+1);
1371                         sendf(Client->Socket, "407 Unknown flag value '%s'\n", val);
1372                         return -1;
1373                 }
1374                 
1375                 Str = space + 1;
1376         } while(space);
1377         
1378         return 0;
1379 }

UCC git Repository :: git.ucc.asn.au