2 Unix SMB/CIFS Implementation.
4 DSDB replication service - RID allocation code
6 Copyright (C) Andrew Tridgell 2010
7 Copyright (C) Andrew Bartlett 2010
9 based on drepl_notify.c
11 This program is free software; you can redistribute it and/or modify
12 it under the terms of the GNU General Public License as published by
13 the Free Software Foundation; either version 3 of the License, or
14 (at your option) any later version.
16 This program is distributed in the hope that it will be useful,
17 but WITHOUT ANY WARRANTY; without even the implied warranty of
18 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
19 GNU General Public License for more details.
21 You should have received a copy of the GNU General Public License
22 along with this program. If not, see <http://www.gnu.org/licenses/>.
27 #include "ldb_module.h"
28 #include "dsdb/samdb/samdb.h"
29 #include "samba/service.h"
30 #include "dsdb/repl/drepl_service.h"
31 #include "param/param.h"
34 #define DBGC_CLASS DBGC_DRS_REPL
37 called when a rid allocation request has completed
39 static void drepl_new_rid_pool_callback(struct dreplsrv_service
*service
,
41 enum drsuapi_DsExtendedError ext_err
,
44 if (!W_ERROR_IS_OK(werr
)) {
45 DEBUG(0,(__location__
": RID Manager failed RID allocation - %s - extended_ret[0x%X]\n",
46 win_errstr(werr
), ext_err
));
48 DEBUG(3,(__location__
": RID Manager completed RID allocation OK\n"));
51 service
->rid_alloc_in_progress
= false;
55 schedule a getncchanges request to the RID Manager to ask for a new
56 set of RIDs using DRSUAPI_EXOP_FSMO_RID_ALLOC
58 static WERROR
drepl_request_new_rid_pool(struct dreplsrv_service
*service
,
59 struct ldb_dn
*rid_manager_dn
, struct ldb_dn
*fsmo_role_dn
,
62 WERROR werr
= drepl_request_extended_op(service
,
65 DRSUAPI_EXOP_FSMO_RID_ALLOC
,
68 drepl_new_rid_pool_callback
, NULL
);
69 if (W_ERROR_IS_OK(werr
)) {
70 service
->rid_alloc_in_progress
= true;
77 see if we are on the last pool we have
79 static int drepl_ridalloc_pool_exhausted(struct ldb_context
*ldb
,
81 uint64_t *_alloc_pool
)
83 struct ldb_dn
*server_dn
, *machine_dn
, *rid_set_dn
;
84 TALLOC_CTX
*tmp_ctx
= talloc_new(ldb
);
87 uint32_t prev_pool_lo
, prev_pool_hi
;
89 static const char * const attrs
[] = {
91 "rIDPreviousAllocationPool",
96 struct ldb_result
*res
;
99 *_alloc_pool
= UINT64_MAX
;
101 server_dn
= ldb_dn_get_parent(tmp_ctx
, samdb_ntds_settings_dn(ldb
, tmp_ctx
));
103 talloc_free(tmp_ctx
);
104 return ldb_operr(ldb
);
107 ret
= samdb_reference_dn(ldb
, tmp_ctx
, server_dn
, "serverReference", &machine_dn
);
108 if (ret
!= LDB_SUCCESS
) {
109 DEBUG(0,(__location__
": Failed to find serverReference in %s - %s\n",
110 ldb_dn_get_linearized(server_dn
), ldb_errstring(ldb
)));
111 talloc_free(tmp_ctx
);
115 ret
= samdb_reference_dn(ldb
, tmp_ctx
, machine_dn
, "rIDSetReferences", &rid_set_dn
);
116 if (ret
== LDB_ERR_NO_SUCH_ATTRIBUTE
) {
119 talloc_free(tmp_ctx
);
122 if (ret
!= LDB_SUCCESS
) {
123 DEBUG(0,(__location__
": Failed to find rIDSetReferences in %s - %s\n",
124 ldb_dn_get_linearized(machine_dn
), ldb_errstring(ldb
)));
125 talloc_free(tmp_ctx
);
129 ret
= ldb_search(ldb
, tmp_ctx
, &res
, rid_set_dn
, LDB_SCOPE_BASE
, attrs
, NULL
);
130 if (ret
!= LDB_SUCCESS
) {
131 DEBUG(0,(__location__
": Failed to load RID Set attrs from %s - %s\n",
132 ldb_dn_get_linearized(rid_set_dn
), ldb_errstring(ldb
)));
133 talloc_free(tmp_ctx
);
137 alloc_pool
= ldb_msg_find_attr_as_uint64(res
->msgs
[0], "rIDAllocationPool", 0);
138 prev_pool
= ldb_msg_find_attr_as_uint64(res
->msgs
[0], "rIDPreviousAllocationPool", 0);
139 prev_pool_lo
= prev_pool
& 0xFFFFFFFF;
140 prev_pool_hi
= prev_pool
>> 32;
141 next_rid
= ldb_msg_find_attr_as_uint(res
->msgs
[0], "rIDNextRid", 0);
143 if (alloc_pool
!= prev_pool
) {
144 talloc_free(tmp_ctx
);
148 if (next_rid
< (prev_pool_hi
+ prev_pool_lo
)/2) {
149 talloc_free(tmp_ctx
);
154 *_alloc_pool
= alloc_pool
;
155 talloc_free(tmp_ctx
);
161 see if we are low on RIDs in the RID Set rIDAllocationPool. If we
162 are, then schedule a replication call with DRSUAPI_EXOP_FSMO_RID_ALLOC
165 WERROR
dreplsrv_ridalloc_check_rid_pool(struct dreplsrv_service
*service
)
167 struct ldb_dn
*rid_manager_dn
, *fsmo_role_dn
;
168 TALLOC_CTX
*tmp_ctx
= talloc_new(service
);
169 struct ldb_context
*ldb
= service
->samdb
;
176 if (service
->am_rodc
) {
177 talloc_free(tmp_ctx
);
181 if (service
->rid_alloc_in_progress
) {
182 talloc_free(tmp_ctx
);
188 - find who the RID Manager is
189 - if we are the RID Manager then nothing to do
190 - find our RID Set object
191 - load rIDAllocationPool and rIDPreviousAllocationPool
192 - if rIDAllocationPool != rIDPreviousAllocationPool then
194 - schedule a getncchanges with DRSUAPI_EXOP_FSMO_RID_ALLOC
198 /* work out who is the RID Manager */
199 ret
= samdb_rid_manager_dn(ldb
, tmp_ctx
, &rid_manager_dn
);
200 if (ret
!= LDB_SUCCESS
) {
201 DEBUG(0, (__location__
": Failed to find RID Manager object - %s\n", ldb_errstring(ldb
)));
202 talloc_free(tmp_ctx
);
203 return WERR_DS_DRA_INTERNAL_ERROR
;
206 /* find the DN of the RID Manager */
207 ret
= samdb_reference_dn(ldb
, tmp_ctx
, rid_manager_dn
, "fSMORoleOwner", &fsmo_role_dn
);
208 if (ret
!= LDB_SUCCESS
) {
209 DEBUG(0,(__location__
": Failed to find fSMORoleOwner in RID Manager object - %s\n",
210 ldb_errstring(ldb
)));
211 talloc_free(tmp_ctx
);
212 return WERR_DS_DRA_INTERNAL_ERROR
;
215 ret
= samdb_dn_is_our_ntdsa(ldb
, fsmo_role_dn
, &is_us
);
216 if (ret
!= LDB_SUCCESS
) {
217 DEBUG(0,(__location__
": Failed to find determine if %s is our ntdsDsa object - %s\n",
218 ldb_dn_get_linearized(fsmo_role_dn
), ldb_errstring(ldb
)));
219 talloc_free(tmp_ctx
);
220 return WERR_DS_DRA_INTERNAL_ERROR
;
224 /* we are the RID Manager - no need to do a
225 DRSUAPI_EXOP_FSMO_RID_ALLOC */
226 talloc_free(tmp_ctx
);
230 ret
= drepl_ridalloc_pool_exhausted(ldb
, &exhausted
, &alloc_pool
);
231 if (ret
!= LDB_SUCCESS
) {
232 talloc_free(tmp_ctx
);
233 return WERR_DS_DRA_INTERNAL_ERROR
;
237 /* don't need a new pool */
238 talloc_free(tmp_ctx
);
242 DEBUG(2,(__location__
": Requesting more RIDs from RID Manager\n"));
244 werr
= drepl_request_new_rid_pool(service
, rid_manager_dn
, fsmo_role_dn
, alloc_pool
);
245 talloc_free(tmp_ctx
);
249 /* called by the samldb ldb module to tell us to ask for a new RID
251 void dreplsrv_allocate_rid(struct imessaging_context
*msg
,
254 struct server_id server_id
,
259 struct dreplsrv_service
*service
= talloc_get_type(private_data
, struct dreplsrv_service
);
261 DBG_WARNING("Received %zu fds, ignoring message\n", num_fds
);
264 dreplsrv_ridalloc_check_rid_pool(service
);